AKS Create and Delete Cluster: Difference between revisions

From NovaOrdis Knowledge Base
Jump to navigation Jump to search
Line 5: Line 5:


=Creation Procedure=
=Creation Procedure=
==Console==


Go to https://portal.azure.com.
Go to https://portal.azure.com.
Line 10: Line 11:
Create a resource → Containers → Kubernetes Service  
Create a resource → Containers → Kubernetes Service  


==Basic==
===Basic===


Subscription:
Subscription:
Line 32: Line 33:
Node count: 3
Node count: 3


==Node pools==
===Node pools===


No additional node pools.
No additional node pools.
Line 40: Line 41:
Enable virtual machine scale sets: yes by default (required)
Enable virtual machine scale sets: yes by default (required)


==Authentication==
===Authentication===


Cluster infrastructure: [[AKS_Concepts#Service_Principal|Service principal]] or [[AKS_Concepts#System-Assigned_Managed_Identity|System-assigned managed identity]].  
Cluster infrastructure: [[AKS_Concepts#Service_Principal|Service principal]] or [[AKS_Concepts#System-Assigned_Managed_Identity|System-assigned managed identity]].  
Line 56: Line 57:
Encryption type: Default Encryption at-rest with a platform-managed key.
Encryption type: Default Encryption at-rest with a platform-managed key.


==Networking==
===Networking===


Networking configuration: Kubenet or Azure CNI.
Networking configuration: Kubenet or Azure CNI.
Line 76: Line 77:
Network policy
Network policy


==Integration==
===Integration===
===Azure Container Registry===
====Azure Container Registry====
{{Internal|AKS_Concepts#Azure_Container_Registry|Azure Container Registry}}
{{Internal|AKS_Concepts#Azure_Container_Registry|Azure Container Registry}}
No container registry declared.
No container registry declared.
===Azure Monitor===
====Azure Monitor====
===Azure Policy===
====Azure Policy====
==CLI==


=Deletion Procedure=
=Deletion Procedure=

Revision as of 01:36, 1 April 2021

External

Internal

Creation Procedure

Console

Go to https://portal.azure.com.

Create a resource → Containers → Kubernetes Service

Basic

Subscription:

Resource group: aks-dev

Cluster details:

Cluster names: aks-dev

Region: ...

Availability zones: 1, 2, 3.

Kubernetes version: 1.19.7

Primary node pool

Node size: Standard D8as_v4

Node count: 3

Node pools

No additional node pools.

Enable virtual nodes: no

Enable virtual machine scale sets: yes by default (required)

Authentication

Cluster infrastructure: Service principal or System-assigned managed identity.

Use System-assigned managed identity.

Kubernetes authentication and authorization

Role-based access control (RBAC): Enabled

AKS-managed Azure Active Directory: Disabled

Node pool OS disk encryption.

Encryption type: Default Encryption at-rest with a platform-managed key.

Networking

Networking configuration: Kubenet or Azure CNI.

Use Kubenet.

DNS name prefix. This is the DNS name prefix to use with the hosted Kubernetes API server FQDN:

aks-dev

Traffic routing:

Load balancer: Standard

Enable HTTP application routing.

Enable private cluster. Disable.

Network policy

Integration

Azure Container Registry

Azure Container Registry

No container registry declared.

Azure Monitor

Azure Policy

CLI

Deletion Procedure