*Updated the course material on Jan 2024 ãã®ã³ãŒã¹ãäžæã§ãŸãšãããšïŒ ãã®ã³ãŒã¹ã¯ãAWSãKubernetesäžçŽè
以äžã®DevOpsã®æ¹ããAWS EKSã¯ã©ã¹ã¿ãŒãåããŠæ§ç¯ããæ¬çªéçšåãã®æ§ã
ãªãã¹ããã©ã¯ãã£ã¹(Helm, Dashboard, Ingress, SSLèšŒææž, AWS IAMãŠãŒã¶ãŒãPodã®èªèšŒèªå¯: RBAC, IRSA, ã¹ã±ãŒãªã³ã°: CA, HPA, Monitoring: Prometheus, Grafana).ãŸã§åŠã¶ã³ãŒã¹ã§ãã æ³šé: ãã®ã³ãŒã¹ã¯K8sã®ã¢ãããã¹ãã¬ãŒã¿ãŒïŒDevOpsïŒãšããŠAWS EKSäžã§K8sã¯ã©ã¹ã¿ãŒãæ§ç¯ããããã®ç¬¬äžæ©ã§ãã ãŸããã¢ããªãããããŒã§Kubernetesã¯ã©ã¹ã¿ãŒã®æ§ç¯ã»ç®¡çãŸã§èå³ããªãæ¹ã¯å¯Ÿè±¡å€ã§ããAWS EKSã§ã®ïŒããæ¬çªéçšãŸã§ãåŠã³ããDevOpsãã¿ãŒã²ããã«ãªããŸãã âã³ãŒã¹å
容ã確èªããäžã§åè¬ãããã ããããã«ãç¡æãã¬ãã¥ãŒãå
¬éããŠãŸãããã²ã芧ãã ããâ ãããããŠãããªã¯ä»äžèšã«åœãŠã¯ãŸããŸããïŒ AWS EKSãã¯ããããã£ããããªã DockerãããŒã«ã«ãã¹ãã®Minikubeã§åããã ãã§ãªããAWSäžã§åãããŠã¿ããâŒÂ DevOpsãšããŠããããŒãžãKubernetesã¯ã©ã¹ã¿ãŒãAWS EKSã§æ§ç¯ããã DockerãšKubernetesã¯ãªããšãªãããã£ãããããæ¬¡ã¯AWSã§KubernetesãåŠãŒãïŒ AWS EKSã®æ¬çªéçšåãã®ãã¹ããã©ã¯ãã£ã¹ç¥ããã Kubernetesããã·ã¥ããŒããRBACèªå¯ã䜿ã£ãŠã»ããã¢ããããã Helm chartã䜿ã£ãŠPrometheusãšGrafanaã䜿ã£ãŠã¯ã©ã¹ã¿ãŒãPodãã¢ãã¿ãªã³ã°ããã K8s serviceããAWSã®ããŒããã©ã³ãµãŒãäœæããSSLèšŒææžãèšå®ãELBã®ã¢ã¯ã»ã¹ãã°ãæå¹åããæ¹æ³ãåŠã³ãã AWS EKSå
ã§ã®AWS IAMãŠãŒã¶ãŒã®èªèšŒãšèªå¯ã®ããã»ã¹ãç¥ãããïŒaws-iam-authenticator, aws-auth ConfigMap, RBAC: Role Based Access ControlïŒ AWS EKSå
ã§ã®K8s Podã®AWSãžã®èªå¯(IRSA: IAM Role for Service Account)ãããŸãã¡ããããªãã»ã»ã» AWSã®EC2ã䜿ã£ãŠK8sã®ã¯ãŒã«ãŒããŒããAutoscaleãããä»çµã¿ãæ§ç¯ãããïŒCluster AutoscalerïŒ æ¬çªéçšåãã®EKSã¯ã©ã¹ã¿ãŒå
ã®ã¢ãã¿ãªã³ã°ã®ä»æ¹ãããããªãã»ã»ã» åœã³ãŒã¹ãåãã¹ã人 ãã§ã«AWSã®ãã³ãºãªã³çµéšãïŒãŒïŒã¶æä»¥äžãã人ïŒEC2, ELB, VPC, Subnet, IAM, S3, CloudWatchïŒ Dockerã®çµéšã1âïŒã¶æä»¥äžããïŒDockeräžçŽè
ä»¥äžæšå¥šãç§ã®Dockerå®å
šå
¥éã³ãŒã¹ãšKuberneteså®å
šå
¥éã³ãŒã¹ãçµããŠãããã®ã³ãŒã¹ããå§ãããŸãïŒ ãã§ã«Kubernetesã®ç¥èãšçµéšãã1âïŒã¶æä»¥äžãããK8sãªããžã§ã¯ãã®åºç€ãçè§£ããŠãã人ïŒPod, Service, Deployment, IngressãConfigMap, ClusterRole, etcïŒïŒKubernetesäžçŽè
ä»¥äžæšå¥šãç§ã®Kuberneteså®å
šå
¥éã³ãŒã¹ãçµããŠãããã®ã³ãŒã¹ããå§ãããŸãïŒ AWS EKSãã¯ããããã£ããããªãããŸã EKSãæ§ç¯ããããšããªã人 K8sã®YAMLãªãœãŒã¹ã䜿ã£ãããšã®ãã人 AWS EKSã®æ¬çªéçšåãã®ãã¹ããã©ã¯ãã£ã¹ïŒSecurity, Monitoring, Scaling, PerformanceïŒç¥ããã DevOpsãšã³ãžãã¢ãšããŠKubernetesã¯ã©ã¹ã¿ãŒãAWSã§æ¬çªéçšåãã®æ§ç¯ã®ä»æ¹ããäžå¯§ãªå³è§£èª¬ã§æ¬è³ªããã¹ã¿ãŒããã åœã³ãŒã¹ãäžèŠãªäºº ãã§ã«AWS EKSã®çè«ãå®è·µãããããç¥ã£ãŠãã ç¹ã«KubernetesãAWSã§äœ¿çšããããšãèããŠããããããã«ãŒãK8sã«ã«èå³ãªã