OCP4 Tips P.04/Day 2 Operations
Remon Ibrahim
Linux/Openshift Administrator at MDI | Former DevOps AutomationEngineer at OBS| Former Cloud and System Administrator at Vodafone Egypt | RHCA? | CKS? | CKA? | RHCE?| RHCSA? | VCP-DCV?|VMware VCA?
Hello Everyone, today will answer one of the important questions, what should we do after day 1 implementation/install the cluster, what are the next steps we should do in day 2 before we can say that we have production ready cluster
In this article I will list the Day 2 Tasks I mostly do, and in the upcoming articles we can talk about each task in more details
below you will find the list , the order may vary little based on your environment , and not all list is a must it depends on your company policy/environment
01. Create infra and ODF machineset
02. Create infra and odf MCP
03. Migrate default ingress controller and registry to infra nodes
04. Disabling project self provisioning
05. Config localusers htpasswd identity provider
06. Configure OAuth with Active Directory
07. Remove default kubeadmin user
08. Syncing groups from ldap
09. Apply chrony machineconfig
10. Remove the worker label from infra and odf nodes
11. Change ingress controller cert
12. Change api cert
13. Create additional Ingress controller for external load balancing
14. Config oc bash completion
15. Deploy ODF
16. Config storage for monitoring stack
17. Install logging stack
18. Install FIM operator
19. Install Compliance operator
20. Define project template
21. config internal image registry
22. config list of allawed registry
23. config egress
24. create etcd backup cronjob
25. config etcd encryption
We have talked before on task 11 and 12 . How to change API and Ingress Cert , you can find more details on below links
SRE/DevOps Engineer | Open Source Evangelist
1 年Man, we have a DevOps meetup every month. Would you like to join?