##关闭 selinux
setenforce 0
sed -i 's/^SELINUX=enforcing/SELINUX=disabled/' /etc/selinux/config
##关闭 swap
swapoff -a
sed -ri 's/.*swap.*/#&/' /etc/fstab
##允许 iptables 检查桥接流量
cat <<EOF | tee /etc/modules-load.d/k8s.conf
br_netfilter
EOF
cat <<EOF | tee /etc/sysctl.d/k8s.conf
net.bridge.bridge-nf-call-ip6tables = 1
net.bridge.bridge-nf-call-ip6ables = 1
EOF
sysctl –system
[root@k8smaster ~]# systemctl stop firewalld
[root@k8smaster ~]# systemctl enable firewalld
echo 1 > /proc/sys/net/ipv4/ip_forward
echo 1 > /proc/sys/net/bridge/bridge-nf-call-iptables
评论