Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Setup docker-compose like k8s deployment #1054

Merged
merged 56 commits into from
Jan 13, 2025
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
56 commits
Select commit Hold shift + click to select a range
19007a5
Unstructured configs that configure and deploy things to k8s
gregschohn Sep 1, 2024
3e7d858
more k8s & helm experimentation.
gregschohn Sep 2, 2024
785312e
Another checkpoint in slowly (& inconsistently) getting more services…
gregschohn Sep 5, 2024
10fac7d
K8s Checkpoint. With minimal testing, the proxy, ES/OS, grafana seem…
gregschohn Sep 5, 2024
f79142e
K8s checkpoint. Working on getting kafka resources deployed as a hel…
gregschohn Sep 7, 2024
0bffeca
Merge branch 'main' into KubernetesExperimentation
gregschohn Sep 30, 2024
0e201c2
Minor cleanup
gregschohn Oct 1, 2024
9c6f6f4
another checkpoint
gregschohn Oct 3, 2024
e33f89a
Merge remote-tracking branch 'schohn/KubernetesExperimentation' into …
lewijacn Oct 10, 2024
1cd8782
Experiment with k8 structure pattern
lewijacn Oct 11, 2024
4abd50e
Partial working state for test environment
lewijacn Oct 12, 2024
cdbe2b5
Checkpoint - Basic replayer functionality
lewijacn Oct 14, 2024
03e3431
Update services.yaml endpoint
lewijacn Oct 14, 2024
032227b
Basic working Replayer and RFS in local k8
lewijacn Oct 16, 2024
8054cdc
Swap out to use Kafka operator
lewijacn Oct 16, 2024
53057ae
Add opensearch operator (not working)
lewijacn Oct 17, 2024
8614014
Checkpoint after moving to shared volume charts, otel collector in sh…
lewijacn Oct 20, 2024
e174444
Add documentation for getting started with K8 and minor changes
lewijacn Oct 22, 2024
29ff913
another checkpoint
gregschohn Oct 3, 2024
cc31d0d
Start structure change
lewijacn Oct 24, 2024
9b6115e
Merge branch 'main' into KubernetesExperimentation
gregschohn Oct 24, 2024
5981d40
Merge branch 'KubernetesExperimentation' of github.com:gregschohn/ope…
gregschohn Oct 24, 2024
233ac38
Checkpoint 10-24 fill in structure more, a couple more services need …
lewijacn Oct 24, 2024
b1567d4
Modify volume structure and checkpoint
lewijacn Oct 25, 2024
76cab7f
Checkpoint probably working state after refactoring
lewijacn Oct 25, 2024
00001e4
Reorder MA helm chart dependencies
gregschohn Oct 27, 2024
c70cf6d
Merge branch 'tanners-initial-k8' into KubernetesExperimentation
gregschohn Oct 27, 2024
0a07d37
Update README for restructuring
lewijacn Oct 28, 2024
f9751f9
Move original captureProxy chart from k8s and fold the k8 version int…
gregschohn Oct 30, 2024
38799c3
Cleanup to refactor the common helm helpers and to try to support ins…
gregschohn Oct 31, 2024
e6aa8eb
Simple but useful template that can be used JUST to make values templ…
gregschohn Oct 31, 2024
59b0c62
Canonicalize/merge the charts for replayer, PVC components, and MA (o…
gregschohn Oct 31, 2024
4ccc3f1
Checking bugfixes so that the proxy can startup with helm install com…
gregschohn Oct 31, 2024
296886d
excise the roots for the jaeger and prometheus localTesting values so…
gregschohn Oct 31, 2024
ff16308
Checkpoint - Further changes that destabilize the helm charts but are…
gregschohn Nov 5, 2024
ef3018a
Checkpoint that's working on introducing global/shared configuration …
gregschohn Nov 5, 2024
5fd0b96
Updates for basic AWS EKS testing
lewijacn Nov 5, 2024
901cbfa
Move helmCommon into sharedResources directory
gregschohn Nov 6, 2024
bc5ff89
Add camel case parameter names in addition to snake case ones.
gregschohn Nov 9, 2024
156142c
Checkpoint - BulkLoad, Console, and Replayer are coming along as K8s …
gregschohn Nov 9, 2024
2ab2578
Checkpoint to start cleaning up namespaces and unifying namespace man…
gregschohn Nov 11, 2024
a4a2011
Checkpoint to start cleaning up namespaces and unifying namespace man…
gregschohn Nov 11, 2024
eb0f534
update RFS to accept camel case arguments to make it easier to work w…
gregschohn Dec 30, 2024
ea65a87
Checkpoint. With the default values, I can install aggregates/migrat…
gregschohn Dec 30, 2024
1d21b9d
wait for kafka before starting up the capture proxy
gregschohn Dec 30, 2024
8e10ce9
Merge branch 'main' into KubernetesExperimentation
gregschohn Dec 30, 2024
6ba7a39
Merge branch 'KubernetesExperimentation' of github.com:gregschohn/ope…
gregschohn Dec 30, 2024
23038b1
Checkin missing files and fixes so that the replayer, captured traffi…
gregschohn Dec 31, 2024
b6d3bae
Refactoring helm charts - especially common templates to be clearer a…
gregschohn Jan 8, 2025
5e51f5b
Refactorings to simplify to helm packages
gregschohn Jan 8, 2025
290edd0
Rough in-progress checkin to get a test console pod setup.
gregschohn Jan 9, 2025
9443402
Merge branch 'tanners-initial-k8' into KubernetesExperimentation
gregschohn Jan 9, 2025
98d4fa3
Remove old code and preserve a few bits that haven't been integrated …
gregschohn Jan 10, 2025
98a3385
Improvements based upon PR feedback.
gregschohn Jan 10, 2025
722b073
Merge branch 'main' into KubernetesExperimentation
gregschohn Jan 10, 2025
a31e9dc
PR feedback + a simple bugfix to compensate for the merge bug in helm…
gregschohn Jan 11, 2025
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
Original file line number Diff line number Diff line change
Expand Up @@ -76,93 +76,93 @@ public static class Args {
private boolean help;

@Parameter(required = true,
names = { "--snapshot-name" },
names = { "--snapshot-name", "--snapshotName" },
peternied marked this conversation as resolved.
Show resolved Hide resolved
description = "The name of the snapshot to migrate")
public String snapshotName;

@Parameter(required = false,
names = { "--snapshot-local-dir" },
names = { "--snapshot-local-dir", "--snapshotLocalDir" },
description = ("The absolute path to the directory on local disk where the snapshot exists. " +
"Use this parameter if have a copy of the snapshot disk. Mutually exclusive with " +
"Use this parameter if there is a reachable copy of the snapshot on disk. Mutually exclusive with " +
"--s3-local-dir, --s3-repo-uri, and --s3-region."))
public String snapshotLocalDir = null;

@Parameter(required = false,
names = { "--s3-local-dir" },
names = { "--s3-local-dir", "--s3LocalDir" },
description = ("The absolute path to the directory on local disk to download S3 files to. " +
"If you supply this, you must also supply --s3-repo-uri and --s3-region. " +
"Mutually exclusive with --snapshot-local-dir."))
public String s3LocalDir = null;

@Parameter(required = false,
names = {"--s3-repo-uri" },
names = {"--s3-repo-uri", "--s3RepoUri" },
description = ("The S3 URI of the snapshot repo, like: s3://my-bucket/dir1/dir2. " +
"If you supply this, you must also supply --s3-local-dir and --s3-region. " +
"Mutually exclusive with --snapshot-local-dir."))
public String s3RepoUri = null;

@Parameter(required = false,
names = { "--s3-region" },
names = { "--s3-region", "--s3Region" },
description = ("The AWS Region the S3 bucket is in, like: us-east-2. If you supply this, you must"
+ " also supply --s3-local-dir and --s3-repo-uri. Mutually exclusive with --snapshot-local-dir."))
public String s3Region = null;

@Parameter(required = true,
names = { "--lucene-dir" },
names = { "--lucene-dir", "--luceneDir" },
description = "The absolute path to the directory where we'll put the Lucene docs")
public String luceneDir;

@ParametersDelegate
public ConnectionContext.TargetArgs targetArgs = new ConnectionContext.TargetArgs();

@Parameter(required = false,
names = { "--index-allowlist" },
names = { "--index-allowlist", "--indexAllowlist" },
description = ("Optional. List of index names to migrate (e.g. 'logs_2024_01, logs_2024_02'). " +
"Default: all non-system indices (e.g. those not starting with '.')"))
public List<String> indexAllowlist = List.of();

@Parameter(required = false,
names = { "--max-shard-size-bytes" },
names = { "--max-shard-size-bytes", "--maxShardSizeBytes" },
description = ("Optional. The maximum shard size, in bytes, to allow when " +
"performing the document migration. " +
"Useful for preventing disk overflow. Default: 80 * 1024 * 1024 * 1024 (80 GB)"))
public long maxShardSizeBytes = 80 * 1024 * 1024 * 1024L;

@Parameter(required = false,
names = { "--initial-lease-duration" },
names = { "--initial-lease-duration", "--initialLeaseDuration" },
converter = DurationConverter.class,
description = "Optional. The time that the first attempt to migrate a shard's documents should take. " +
"If a process takes longer than this the process will terminate, allowing another process to " +
"attempt the migration, but with double the amount of time than the last time. Default: PT10M")
public Duration initialLeaseDuration = Duration.ofMinutes(10);

@Parameter(required = false,
names = { "--otel-collector-endpoint" },
names = { "--otel-collector-endpoint", "--otelCollectorEndpoint" },
arity = 1,
description = "Endpoint (host:port) for the OpenTelemetry Collector to which metrics logs should be"
+ "forwarded. If no value is provided, metrics will not be forwarded.")
String otelCollectorEndpoint;

@Parameter(required = false,
names = "--documents-per-bulk-request",
names = {"--documents-per-bulk-request", "--documentsPerBulkRequest"},
description = "Optional. The number of documents to be included within each bulk request sent. " +
"Default no max (controlled by documents size)")
int numDocsPerBulkRequest = Integer.MAX_VALUE;

@Parameter(required = false,
names = "--documents-size-per-bulk-request",
names = { "--documents-size-per-bulk-request", "--documentsSizePerBulkRequest" },
description = "Optional. The maximum aggregate document size to be used in bulk requests in bytes. " +
"Note does not apply to single document requests. Default 10 MiB")
long numBytesPerBulkRequest = 10 * 1024L * 1024L;

@Parameter(required = false,
names = "--max-connections",
names = {"--max-connections", "--maxConnections" },
description = "Optional. The maximum number of connections to simultaneously " +
"used to communicate to the target, default 10")
int maxConnections = 10;

@Parameter(required = true,
names = { "--source-version" },
names = { "--source-version", "--sourceVersion" },
converter = VersionConverter.class,
description = ("Version of the source cluster."))
public Version sourceVersion = Version.fromString("ES 7.10");
Expand Down Expand Up @@ -239,7 +239,8 @@ public static void validateArgs(Args args) {
public static void main(String[] args) throws Exception {
// TODO: Add back arg printing after not consuming plaintext password MIGRATIONS-1915
var workerId = ProcessHelpers.getNodeInstanceName();
log.info("Starting RfsMigrateDocuments with workerId =" + workerId);
System.err.println("Starting program with: " + String.join(" ", args));
log.info("Starting RfsMigrateDocuments with workerId=" + workerId);

Args arguments = new Args();
JCommander jCommander = JCommander.newBuilder().addObject(arguments).build();
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -103,28 +103,41 @@ default ConnectionContext toConnectionContext() {

@Getter
public static class TargetArgs implements IParams {
@Parameter(names = {
"--target-host" }, description = "The target host and port (e.g. http://localhost:9200)", required = true)
@Parameter(
names = {"--target-host", "--targetHost" },
description = "The target host and port (e.g. http://localhost:9200)",
required = true)
public String host;

@Parameter(names = {
"--target-username" }, description = "Optional. The target username; if not provided, will assume no auth on target", required = false)
@Parameter(
names = {"--target-username", "--targetUsername" },
description = "Optional. The target username; if not provided, will assume no auth on target",
required = false)
public String username = null;

@Parameter(names = {
"--target-password" }, description = "Optional. The target password; if not provided, will assume no auth on target", required = false)
@Parameter(
names = {"--target-password", "--targetPassword" },
description = "Optional. The target password; if not provided, will assume no auth on target",
required = false)
public String password = null;

@Parameter(names = {
"--target-aws-region" }, description = "Optional. The target aws region. Required only if sigv4 auth is used", required = false)
@Parameter(
names = {"--target-aws-region", "--targetAwsRegion" },
description = "Optional. The target aws region. Required only if sigv4 auth is used",
required = false)
public String awsRegion = null;

@Parameter(names = {
"--target-aws-service-signing-name" }, description = "Optional. The target aws service signing name, e.g 'es' for Amazon OpenSearch Service and 'aoss' for Amazon OpenSearch Serverless. Required if sigv4 auth is used.", required = false)
@Parameter(
names = {"--target-aws-service-signing-name", "--targetAwsServiceSigningName" },
description = "Optional. The target aws service signing name, e.g 'es' for " +
"Amazon OpenSearch Service and 'aoss' for Amazon OpenSearch Serverless. " +
"Required if sigv4 auth is used.",
required = false)
public String awsServiceSigningName = null;

@Parameter(names = {
"--target-insecure" }, description = "Allow untrusted SSL certificates for target", required = false)
@Parameter(
names = { "--target-insecure", "--targetInsecure" },
description = "Allow untrusted SSL certificates for target", required = false)
public boolean insecure = false;

@ParametersDelegate
Expand All @@ -139,35 +152,50 @@ public boolean isCompressionEnabled() {
// Flags that require more testing and validation before recommendations are made
@Getter
public static class TargetAdvancedArgs {
@Parameter(names = {
"--target-compression" }, description = "**Advanced**. Allow request compression to target", required = false)
@Parameter(names = {"--target-compression", "--targetCompression" },
description = "**Advanced**. Allow request compression to target",
required = false)
public boolean compressionEnabled = false;
}

@Getter
public static class SourceArgs implements IParams {
@Parameter(names = {
"--source-host" }, description = "The source host and port (e.g. http://localhost:9200)", required = false)
@Parameter(
names = {"--source-host", "--sourceHost" },
description = "The source host and port (e.g. http://localhost:9200)",
required = false)
public String host = null;

@Parameter(names = {
"--source-username" }, description = "The source username; if not provided, will assume no auth on source", required = false)
@Parameter(
names = {"--source-username", "--sourceUsername" },
description = "The source username; if not provided, will assume no auth on source",
required = false)
public String username = null;

@Parameter(names = {
"--source-password" }, description = "The source password; if not provided, will assume no auth on source", required = false)
@Parameter(
names = {"--source-password", "--sourcePassword" },
description = "The source password; if not provided, will assume no auth on source",
required = false)
public String password = null;

@Parameter(names = {
"--source-aws-region" }, description = "Optional. The source aws region, e.g. 'us-east-1'. Required if sigv4 auth is used", required = false)
@Parameter(
names = {"--source-aws-region", "--sourceAwsRegion" },
description = "Optional. The source aws region, e.g. 'us-east-1'. Required if sigv4 auth is used",
required = false)
public String awsRegion = null;

@Parameter(names = {
"--source-aws-service-signing-name" }, description = "Optional. The source aws service signing name, e.g 'es' for Amazon OpenSearch Service and 'aoss' for Amazon OpenSearch Serverless. Required if sigv4 auth is used.", required = false)
@Parameter(
names = {"--source-aws-service-signing-name", "--sourceAwsServiceSigningName" },
description = "Optional. The source aws service signing name, e.g 'es' for " +
"Amazon OpenSearch Service and 'aoss' for Amazon OpenSearch Serverless. " +
"Required if sigv4 auth is used.",
required = false)
public String awsServiceSigningName = null;

@Parameter(names = {
"--source-insecure" }, description = "Allow untrusted SSL certificates for source", required = false)
@Parameter(
names = {"--source-insecure", "--sourceInsecure" },
description = "Allow untrusted SSL certificates for source",
required = false)
public boolean insecure = false;

public boolean isCompressionEnabled() {
Expand Down
2 changes: 2 additions & 0 deletions TrafficCapture/dockerSolution/build.gradle
Original file line number Diff line number Diff line change
Expand Up @@ -18,6 +18,7 @@ dependencies {
def dockerFilesForExternalServices = [
"elasticsearch_searchguard": "elasticsearchWithSearchGuard",
"capture_proxy_base": "captureProxyBase",
"k8s_config_map_util_scripts": "k8sConfigMapUtilScripts",
"elasticsearch_client_test_console": "elasticsearchTestConsole",
"migration_console": "migrationConsole",
"otel_collector": "otelCollector",
Expand Down Expand Up @@ -125,6 +126,7 @@ dockerCompose {
}

task buildDockerImages {
dependsOn buildDockerImage_k8s_config_map_util_scripts
dependsOn buildDockerImage_elasticsearch_searchguard
dependsOn buildDockerImage_migration_console
dependsOn buildDockerImage_otel_collector
Expand Down
Original file line number Diff line number Diff line change
@@ -0,0 +1,39 @@
FROM amazonlinux:2023

ENV PIP_ROOT_USER_ACTION ignore
ENV LANG C.UTF-8

RUN dnf install -y \
jq \
less \
python3.11 \
python3.11-devel \
python3.11-pip \
python3.11-wheel \
tar \
unzip \
vim \
wget \
&& \
dnf clean all && \
rm -rf /var/cache/dnf

# Define the virtual environment path to use for all pipenv runs
ENV WORKON_HOME=/
ENV PIPENV_CUSTOM_VENV_NAME=.venv
ENV PIPENV_DEFAULT_PYTHON_VERSION=3.11
ENV PIPENV_MAX_DEPTH=1

RUN python3.11 -m pip install pipenv
WORKDIR /
RUN python3.11 -m venv .venv

WORKDIR /root
COPY Pipfile .
COPY Pipfile.lock .
RUN pipenv install --deploy

COPY configmap2yaml/* /root/
RUN chmod ug+x /root/*.py

ENTRYPOINT ["tail", "-f", "/dev/null"]
Original file line number Diff line number Diff line change
@@ -0,0 +1,14 @@
[[source]]
url = "https://pypi.org/simple"
verify_ssl = true
name = "pypi"

[packages]
kubernetes = ">=30.1.0"
pyyaml = ">=6.0.2"
Jinja2 = ">=3.1.4"

[dev-packages]

[requires]
python_version = "3.11"
Loading
Loading