Upgrade to Pro — share decks privately, control downloads, hide ads and more …

K8s in AWS: Europe, US and The Great Wall of China

K8s in AWS: Europe, US and The Great Wall of China

K8s in AWS: Europe, US and The Great Wall of China

DevOpsPorto

October 10, 2019
Tweet

More Decks by DevOpsPorto

Other Decks in Technology

Transcript

  1. Joy in Motion
    +351 220 114 366 | +351 220 114 368
    criticaltechworks.com
    [email protected]
    K8s in AWS: Europe, US and
    The Great Wall of China

    View Slide

  2. criticaltechworks.com
    Joy in Motion
    2
    About me

    View Slide

  3. criticaltechworks.com
    Joy in Motion
    3
    Critical TechWorks

    View Slide

  4. criticaltechworks.com
    Joy in Motion
    4
    DevOps @ CTW

    View Slide

  5. criticaltechworks.com
    Joy in Motion
    5
    Proof of Concept

    View Slide

  6. criticaltechworks.com
    Joy in Motion
    6
    KOPS @ AWS

    View Slide

  7. criticaltechworks.com
    Joy in Motion
    7
    KOPS @ AWS - Enterprise
    • IAM Permissions
    • AmazonEC2FullAccess
    • AmazonRoute53FullAccess
    • AmazonS3FullAccess
    • VPC already created with no IGW
    • IAM k8s policies already created

    View Slide

  8. criticaltechworks.com
    Joy in Motion
    8
    KOPS @ AWS - Enterprise
    • Add proxy configuration

    View Slide

  9. criticaltechworks.com
    Joy in Motion
    9
    KOPS @ AWS - Enterprise

    View Slide

  10. criticaltechworks.com
    Joy in Motion
    10
    KOPS @ AWS - Enterprise
    • Update cluster

    View Slide

  11. criticaltechworks.com
    Joy in Motion
    11
    KOPS @ AWS - Enterprise

    View Slide

  12. criticaltechworks.com
    Joy in Motion
    12
    AWS Frankfurt

    View Slide

  13. criticaltechworks.com
    Joy in Motion
    13
    AWS Frankfurt – Kentrikos

    View Slide

  14. criticaltechworks.com
    Joy in Motion
    14
    AWS North Virginia – Kentrikos
    EQUAL

    View Slide

  15. criticaltechworks.com
    Joy in Motion
    15
    AWS Beijing – Kentrikos
    EXPENSIVE

    View Slide

  16. criticaltechworks.com
    Joy in Motion
    16
    AWS Beijing – Issues

    View Slide

  17. criticaltechworks.com
    Joy in Motion
    17
    AWS Beijing – Issues

    View Slide

  18. criticaltechworks.com
    Joy in Motion
    18
    AWS Beijing – Issues
    • No good internet access
    • No access to some sources
    • Only two availability zones
    • Small amount of AWS services implemented
    • No Route53
    • No AuroraDB
    • No EKS
    • No Secret Manager

    View Slide

  19. criticaltechworks.com
    Joy in Motion
    19
    AWS Beijing – Solution

    View Slide

  20. criticaltechworks.com
    Joy in Motion
    20
    AWS Beijing – Solution

    View Slide

  21. criticaltechworks.com
    Joy in Motion
    21
    Lessons Learned
    • Not easy to find documentation for enterprise grade K8s solutions
    • Beijing AWS region != Any other AWS region
    • Think about China solutions separately
    • No access to google in China (Great Wall of China)
    • Beijing AWS + Kubernetes = LOTS OF PAIN

    View Slide

  22. criticaltechworks.com
    Joy in Motion
    22
    Questions

    View Slide

  23. +351 220 114 366 | +351 220 114 368
    criticaltechworks.com
    [email protected]
    Joy in Motion
    Porto | Lisbon
    João Peixoto

    View Slide