Ukukhishwa kwenguqulo entsha ye-Kubernetes 1.24 kumenyezelwe, inguqulo lapho ezinye izici ziqinisiwe futhi ephinde igqamise ukuthuthela esigabeni se-beta se-Kubelet, ukuthuthukiswa okuthile nokunye.
Kulabo abasha ku-Kubernetes, kufanele wazi ukuthi lokhu ivumela ukuphatha iqoqo leziqukathi ezihlukanisiwe njengebhizinisi elilodwa futhi inikeza izindlela zokusatshalaliswa, ukunakekela, kanye nokukala izinhlelo zokusebenza ezisebenza ezitsheni.
Iphrojekthi yaqalwa i-Google, kodwa kamuva yadluliselwa endaweni ehlukile yi-Linux Foundation. Inkundla ibekwe njengesixazululo sendawo yonke esakhiwe umphakathi, esingaboshelwe ezinhlelweni ngazinye futhi ekwazi ukusebenza nanoma yiluphi uhlelo lokusebenza kunoma iyiphi indawo yamafu. Ikhodi ye-Kubernetes ibhalwe ku-Go futhi ikhishwa ngaphansi kwelayisensi ye-Apache 2.0.
Izici zihlinzekelwe ukuthunyelwa nokuphathwa kwengqalasizinda, njengokugcinwa kwesizindalwazi se-DNS, ukulinganisa komthwalo, ukusatshalaliswa kweziqukathi kuwo wonke ama-cluster node (ukufuduka kwesitsha okusekelwe ekushintsheni komthwalo nezidingo zomsebenzisi). isevisi), ukuhlolwa kwezempilo kwezinga lohlelo lokusebenza, ukuphathwa kwe-akhawunti, ukubuyekezwa, kanye namandla. ukukala iqoqo eligijimayo ngaphandle kokulimisa.
Amaphuzu avelele eKubernetes 1.24
Kule nguqulo entsha ye-Kubernetes 1.24 eyethulwa, kugqanyiswe lokho ukulandelela umthamo wesitoreji uzinzile ukuze kuqashwe indawo ekhululekile kuma-partitions futhi uthumele idatha ku-node yokulawula ukuze ugweme ukusebenzisa ama-pods kuma-node anendawo yamahhala enganele.
Kubuye kuqhakanjiswe lokho amandla okunweba izingxenye zesitoreji azinzile. Umsebenzisi angashintsha usayizi wama-partitions akhona futhi i-Kubernetes izonweba ngokuzenzakalelayo ukwahlukanisa kanye nesistimu yakho yefayela ehlotshaniswayo ngaphandle kokumisa umsebenzi wakho.
Olunye ushintsho olugqamayo kule nguqulo entsha ye-Kubernetes 1.24 yilelo Isikhathi sokusebenza se-Dockershim simisiwe, eyabekwa njengesixazululo sesikhashana sokusebenzisa i-Docker ku-Kubernetes, engasekeli isixhumi esibonakalayo esijwayelekile se-CRI (Container Runtime Interface) futhi esiholela enkingeni eyengeziwe ye-kubelet. Ukuze uphathe iziqukathi ezine-sandboxed, kunconywa ukuthi usebenzise isikhathi sokusebenza esisekela isixhumi esibonakalayo se-CRI esifana nesiqukathi kanye ne-CRI-O, noma usebenzise i-cri-dockerd wrapper esebenzisa isixhumi esibonakalayo se-CRI phezu kwe-Docker injini API.
Ngaphezu kwalokhu, kuyaphawulwa ukuthi inikeze ukwesekwa kokuhlolwa kokuqinisekisa izithombe zesiqukathi esinamasiginesha edijithali ngesevisi ye-Sigstore, egcina ukubhaliswa komphakathi ukuze kuqinisekiswe (ukubhaliswa okungafihli). Ukuze uvimbele ukuhlaselwa kwe-supply chain nokushintshwa kwengxenye, ama-artifact ahlobene nenguqulo, okuhlanganisa nama-binaries e-Kubernetes afakiwe, nawo asayinwa ngedijithali.
Umhlinzeki wokuqinisekisa U-Kubelet ungene esigabeni sokuhlola i-beta, okukuvumela ukuthi ukwazi ukubuyisa iziqinisekiso zenqolobane yesithombe sesiqukathi ngokuvula ama-plugin, ngaphandle kokugcina imininingwane kusistimu yefayela lomsingathi.
Ngakolunye uhlangothi, inikeze ikhono lokubekisa ububanzi bamakheli e-IP ukuze kwabiwe amasevisi. Uma le nketho inikwe amandla, iqoqo lizonikeza izinsizakalo ngokuzenzakalelayo kuphela amakheli e-IP asuka endaweni yokubhukuda eyabelwe ngaphambili yesevisi ngayinye, egwema ukungqubuzana ngokukhipha amakheli amahhala asuka ku-common pool.
Kwezinye izinguquko ezigqamile kule nguqulo entsha:
- Ngokuzenzakalela, amaqoqo akhubaze ama-API aku-beta (ama-API okuhlola engezwe ezinguqulweni zangaphambilini ayagcinwa, ushintsho luthinta kuphela ama-API amasha).
- Usekelo lokuhlola olusetshenzisiwe lwefomethi ye-OpenAPI v3.
- Kwethulwe umzamo kuma-port plugin okusebenza ngesitoreji ku-Unified Interface CSI (I-Container Storage Interface) kuyilapho kugcinwa ukuhambisana ezingeni le-API.
- I-Azure Disk kanye nama-plugin e-OpenStack Cinder ahunyushelwe ku-CSI.
Okokugcina uma unentshisekelo yokwazi kabanzi ngakho, ungabonisana imininingwane ekulesi sixhumanisi esilandelayo.