Helm/PostgreSQL: Difference between revisions

From Chorke Wiki
Jump to navigation Jump to search
 
(4 intermediate revisions by the same user not shown)
Line 61: Line 61:
         -- create user
         -- create user
         CREATE USER chorke WITH ENCRYPTED PASSWORD 'sadaqah!';
         CREATE USER chorke WITH ENCRYPTED PASSWORD 'sadaqah!';
         -- ALTER USER chorke WITH SUPERUSER;
         -- ALTER USER chorke WITH NOSUPERUSER;
        -- ALTER USER chorke WITH SUPERUSER;


         -- grant owner
         -- grant owner
Line 290: Line 291:
{|
{|
| valign="top" |
| valign="top" |
* [https://stackoverflow.com/questions/75596795/ Helm » Pass YAML/JSON using <code>stdin</code>]
* [https://tyk.io/docs/deployment-and-operations/tyk-self-managed/deployment-lifecycle/installations/kubernetes/tyk-helm-tyk-stack-postgresql/ Helm » PostgreSQL » Quick Start]
* [https://tyk.io/docs/deployment-and-operations/tyk-self-managed/deployment-lifecycle/installations/kubernetes/tyk-helm-tyk-stack-postgresql/ Helm » PostgreSQL » Quick Start]
* [https://stackoverflow.com/questions/76489284/ Helm » PostgreSQL » Init Script]
* [https://stackoverflow.com/questions/76489284/ Helm » PostgreSQL » Init Script]
Line 298: Line 298:
* [https://artifacthub.io/packages/helm/bitnami/postgresql Helm » PostgreSQL]
* [https://artifacthub.io/packages/helm/bitnami/postgresql Helm » PostgreSQL]
* [[Helm/MariaDB|Helm » MariaDB]]
* [[Helm/MariaDB|Helm » MariaDB]]
* [[Minikube MetalLB|Helm » MetalLB]]
* [[Helm/GitLab|Helm » GitLab]]
* [[Helm/GitLab|Helm » GitLab]]
* [[Helm]]
* [[Helm]]


| valign="top" |
| valign="top" |
* [https://stackoverflow.com/questions/75596795/ Helm » Pass YAML/JSON using <code>stdin</code>]
* [[Helm/PostgreSQL/PV|Helm » PostgreSQL » PV]]
* [[Helm/PgAdmin4|Helm » PgAdmin4]]
* [[Helm/PgAdmin4|Helm » PgAdmin4]]


Line 342: Line 345:
* [https://kubernetes.io/docs/reference/kubectl/generated/kubectl_rollout/ K8s » <code>kubectl rollout</code>]
* [https://kubernetes.io/docs/reference/kubectl/generated/kubectl_rollout/ K8s » <code>kubectl rollout</code>]
* [[K8s/CSI Hostpath Driver|K8s » CSI Hostpath Driver]]
* [[K8s/CSI Hostpath Driver|K8s » CSI Hostpath Driver]]
* [[K8s/Storage|K8s » Storage]]
* [[K8s/Ingress|K8s » Ingress]]
* [[K8s/Ingress|K8s » Ingress]]
* [[K8s/Service|K8s » Service]]
* [[K8s/Service|K8s » Service]]

Latest revision as of 02:52, 13 June 2025

helm repo add bitnami https://charts.bitnami.com/bitnami
helm repo update && helm repo list
kubectl config get-contexts

Config

export KUBECONFIG="${HOME}/.kube/dev-kubeconfig.yaml"
export KUBECONFIG="${HOME}/.kube/gcp-kubeconfig.yaml"
export KUBECONFIG="${HOME}/.kube/config"

Install

helm show values bitnami/postgresql --version=15.5.20|less
helm show values bitnami/postgresql --version=15.5.21|less
kubectl get ns|grep postgresql
kubectl delete ns   postgresql
kubectl get ns|grep postgresql
kubectl create ns   postgresql

cat <<YML | helm -n postgresql install    postgresql bitnami/postgresql --version=15.5.21 -f -
---
global:
  defaultStorageClass: standard
  postgresql:
    auth:
      postgresPassword: sadaqah!
      username: academia
      password: sadaqah!
      database: academia
primary:
  service:
    type: LoadBalancer
    loadBalancerIP: 192.168.49.102
  initdb:
    scripts:
      init-chorke.sql: |
         -- create database
         CREATE DATABASE academia_flair_staging;
         CREATE DATABASE academia_audit_staging;
         CREATE DATABASE academia_quote_staging;
         CREATE DATABASE academia_users_staging;
         
         -- create user
         CREATE USER chorke WITH ENCRYPTED PASSWORD 'sadaqah!';
         -- ALTER USER chorke WITH NOSUPERUSER;
         -- ALTER USER chorke WITH SUPERUSER;

         -- grant owner
         ALTER DATABASE academia_flair_staging OWNER TO chorke;
         ALTER DATABASE academia_audit_staging OWNER TO chorke;
         ALTER DATABASE academia_quote_staging OWNER TO chorke;
         ALTER DATABASE academia_users_staging OWNER TO chorke;
         
         -- grant access
         GRANT ALL PRIVILEGES ON DATABASE academia_flair_staging TO chorke;
         GRANT ALL PRIVILEGES ON DATABASE academia_audit_staging TO chorke;
         GRANT ALL PRIVILEGES ON DATABASE academia_quote_staging TO chorke;
         GRANT ALL PRIVILEGES ON DATABASE academia_users_staging TO chorke;
YML

sudo arp -s 192.168.49.102 02:42:c0:a8:31:02
sudo arp -d 192.168.49.102 # for delete
arp -n
arp -a

echo -n password: ; read -s PGPASSWORD; export PGPASSWORD; echo
psql -h192.168.49.102 -p5432 -Uacademia academia
psql -h192.168.49.102 -p5432 -Upostgres postgres
echo -n password: ; read -s PGPASSWORD; export PGPASSWORD; echo
psql 'postgres://academia:@192.168.49.102:5432/academia'
psql 'postgres://postgres:@192.168.49.102:5432/postgres'

Uninstall

helm uninstall -n postgresql postgresql
kubectl delete namespace postgresql

Swiss Knife

kubectl -n postgresql run -i --tty --rm psql --image=alpine --restart=Never -- sh
echo -n password: ; read -s PGPASSWORD; export PGPASSWORD; echo
apk --update add --no-cache postgresql-client inetutils-telnet

psql -d postgres -U postgres -h postgresql.postgresql.svc.cluster.local
psql -d postgres -U postgres -h postgresql.postgresql.svc
psql -d postgres -U postgres -h postgresql.postgresql
psql -d postgres -U postgres -h postgresql

AWS » EKS

AWS » EKS » EBS

cat << YML | kubectl apply -f -
---
apiVersion: v1
kind: PersistentVolume
metadata:
  name: postgresql-pv
spec:
  accessModes:
  - ReadWriteOnce
  awsElasticBlockStore:
    fsType: ext4
    volumeID: aws://ap-southeast-1/vol-0bbbd80804f1ae62a
  capacity:
    storage: 10Gi
  persistentVolumeReclaimPolicy: Retain
  storageClassName: "gp2"
---
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
  labels:
    app.kubernetes.io/name: postgresql
  name: postgresql-pvc
  namespace: postgresql
spec:
  accessModes:
  - ReadWriteOnce
  resources:
    requests:
      storage: 10Gi
  storageClassName: "gp2"
  volumeName: postgresql-pv
YML

AWS » EKS » Patch

kubectl -n postgresql get sts/postgresql -ojson|jq -r '.spec.template.spec.nodeSelector'

cat <<YML | kubectl -n postgresql patch sts/postgresql --patch-file=/dev/stdin
---
spec:
  template:
    spec:
      nodeSelector:
        topology.kubernetes.io/zone: minikube
YML
cat <<YML | kubectl -n postgresql patch sts/postgresql --patch-file=/dev/stdin
---
spec:
  template:
    spec:
      nodeSelector:
        topology.kubernetes.io/zone: ap-southeast-1a
YML

kubectl -n postgresql get sts/postgresql -ojson|jq -r '.spec.template.spec.nodeSelector'
kubectl -n postgresql delete pods --all

Playground

helm -n postgresql install    postgresql bitnami/postgresql --version=15.5.20
helm -n postgresql upgrade -i postgresql bitnami/postgresql --version=15.5.21
helm show values bitnami/postgresql --version=15.5.21|less

kubectl -n postgresql get secret postgresql -o json|jq -r '.data."postgres-password"'|base64 -d;echo
kubectl -n postgresql get secret postgresql -o json|jq -r '.data.password'|base64 -d;echo

kubectl -n postgresql exec -it svc/postgresql -c postgresql -- psql -Upostgres
kubectl -n postgresql exec -it svc/postgresql -c postgresql -- bash
kubectl -n postgresql exec -it svc/postgresql -- psql -Upostgres

kubectl config --kubeconfig=${HOME}/.kube/aws-kubeconfig.yaml view --flatten
kubectl config --kubeconfig=${HOME}/.kube/dev-kubeconfig.yaml view --flatten
kubectl config --kubeconfig=${HOME}/.kube/gcp-kubeconfig.yaml view --flatten
kubectl config --kubeconfig=${HOME}/.kube/config view --flatten

kubectl -n postgresql delete all --all
kubectl -n postgresql delete ing --all
kubectl -n postgresql delete sts --all
kubectl -n postgresql delete svc --all
kubectl -n postgresql delete pvc --all
kubectl -n postgresql delete pv  --all

kubectl -n postgresql rollout history sts postgresql
kubectl -n postgresql rollout restart sts postgresql
kubectl -n postgresql rollout status  sts postgresql
kubectl -n postgresql exec -it postgresql-0  -- psql -Upostgres
kubectl -n postgresql logs -f svc/postgresql -c postgresql
kubectl -n postgresql logs -f svc/postgresql

References