有没有人在gitlab上为CI工作成功设置kubernetes executor / runner?我设置了我的,但它坚持无限期地执行我的管道 .
我正在kubernetes集群上运行一个作为docker容器的运行器,并连接到我的gitlab实例来处理我的CI构建 .
任何工作配置文件将不胜感激 .
我的跑步者配置如下所示:
[[runners]]
name = "kube-executor"
url = "https://gitlab.example.ltd/"
token = "some-token"
executor = "kubernetes"
[runners.cache]
[runners.kubernetes]
host = "https://my-kubernetes-api-address:443"
ca_file = "/etc/ssl/certs/ca.crt"
cert_file = "/etc/ssl/certs/server.crt"
key_file = "/etc/ssl/certs/server.key"
image = "docker:latest"
namespace = "gitlab"
namespace_overwrite_allowed = "ci-.*"
privileged = true
cpu_limit = "1"
memory_limit = "1Gi"
service_cpu_limit = "1"
service_memory_limit = "1Gi"
helper_cpu_limit = "500m"
helper_memory_limit = "100Mi"
poll_interval = 5
poll_timeout = 3600
[runners.kubernetes.volumes]
这会引发此错误: ERROR: Job failed (system failure): Post https://my-kubernetes-api-address:443/api/v1/namespaces/gitlab/secrets: x509: certificate signed by unknown authority
1 回答
您使用的是https,那么证书在哪里,是自签名证书吗?如果是,你必须在你的configmap中提到
--tls-cert-file
和--tls-private-key-file
标志 .复制自https://stackoverflow.com/a/43362697/432115