ansible-devops/scripts/keepalived.sh

217 lines
6.4 KiB
Bash
Raw Normal View History

2025-10-29 17:36:30 +08:00
#!/bin/bash
set -euo pipefail
2025-10-30 14:05:06 +08:00
# ========================== 全局配置 ==========================
2025-10-30 14:05:49 +08:00
# a颜色定义
2025-10-30 14:05:06 +08:00
RED='\033[0;31m'
GREEN='\033[0;32m'
YELLOW='\033[1;33m'
BLUE='\033[0;34m'
NC='\033[0m'
# 打印工具函数
info() { echo -e "${YELLOW}[INFO]${NC} $1"; }
success() { echo -e "${GREEN}[SUCCESS]${NC} $1"; }
error() { echo -e "${RED}[ERROR]${NC} $1"; exit 1; }
step() { echo -e "\n${BLUE}>> $1${NC}"; }
# 配置参数
2025-10-29 17:36:30 +08:00
ACTION=""
VIP=""
PRIORITY=150
INTERFACE=""
KEEPALIVED_CONF="/etc/keepalived/keepalived.conf"
CHECK_SCRIPT="/usr/local/bin/check_haproxy.sh"
2025-10-30 14:05:06 +08:00
# ========================== 帮助信息 ==========================
2025-10-29 17:36:30 +08:00
usage() {
2025-10-30 14:05:06 +08:00
cat << EOF
Keepalived 高可用配置脚本适配K8s VIP管理
功能:安装/卸载Keepalived配置虚拟IP(VIP)及HAProxy健康检查
2025-10-29 17:36:30 +08:00
2025-10-30 14:05:06 +08:00
用法: $0 [操作] [选项]
操作:
--install 安装并配置Keepalived
--uninstall 卸载Keepalived及清理配置
2025-10-29 17:36:30 +08:00
2025-10-30 14:05:06 +08:00
安装选项:
--vip <VIP> 必选虚拟IP格式192.168.1.100/24
--priority <数值> 可选节点优先级默认150主节点建议150+备节点140-
2025-10-29 17:36:30 +08:00
2025-10-30 14:05:06 +08:00
示例:
主节点安装: $0 --install --vip 192.168.61.200/24 --priority 150
备节点安装: $0 --install --vip 192.168.61.200/24 --priority 140
卸载: $0 --uninstall
EOF
2025-10-29 17:36:30 +08:00
exit 1
2025-10-30 14:05:06 +08:00
}
2025-10-29 17:36:30 +08:00
2025-10-30 14:05:06 +08:00
# ========================== 工具函数 ==========================
# 获取默认网卡(非回环,第一个激活的网卡)
2025-10-29 17:36:30 +08:00
get_default_interface() {
2025-10-30 14:05:06 +08:00
INTERFACE=$(ip -br link show up | grep -v LOOPBACK | awk '{print $1}' | head -n1)
[[ -z "$INTERFACE" ]] && error "无法获取有效网卡,请检查网络接口状态"
info "自动获取网卡:$INTERFACE"
2025-10-29 17:36:30 +08:00
}
2025-10-30 14:05:06 +08:00
# ========================== 安装逻辑 ==========================
2025-10-29 17:36:30 +08:00
install_keepalived() {
2025-10-30 14:05:06 +08:00
# 参数校验
[[ -z "$VIP" ]] && error "必须通过--vip指定虚拟IP格式IP/子网掩码如192.168.61.200/24"
[[ ! "$VIP" =~ ^[0-9]+\.[0-9]+\.[0-9]+\.[0-9]+/[0-9]+$ ]] && error "VIP格式无效正确格式192.168.61.200/24"
[[ ! "$PRIORITY" =~ ^[0-9]+$ ]] && error "优先级必须是整数如150"
2025-10-29 17:36:30 +08:00
2025-10-30 14:05:06 +08:00
step "开始安装Keepalived"
2025-10-29 17:36:30 +08:00
# 获取网卡
get_default_interface
2025-10-30 14:05:06 +08:00
# 安装软件静默模式去除apt警告
info "安装Keepalived软件包..."
apt update -qq >/dev/null 2>&1
apt install -y -qq keepalived >/dev/null 2>&1 || error "Keepalived安装失败"
success "Keepalived软件包安装完成"
2025-10-29 17:36:30 +08:00
2025-10-30 14:05:06 +08:00
# 备份原有配置
2025-10-29 17:36:30 +08:00
if [[ -f "$KEEPALIVED_CONF" ]]; then
2025-10-30 14:05:06 +08:00
local backup="${KEEPALIVED_CONF}.bak.$(date +%F_%H%M%S)"
mv "$KEEPALIVED_CONF" "$backup"
info "原有配置已备份至:$backup"
2025-10-29 17:36:30 +08:00
fi
2025-10-30 14:05:06 +08:00
# 创建健康检查脚本监控HAProxy状态
info "创建HAProxy健康检查脚本..."
2025-10-29 17:36:30 +08:00
cat > "$CHECK_SCRIPT" << 'EOF'
#!/bin/bash
2025-10-30 14:05:06 +08:00
pgrep -x "haproxy" >/dev/null 2>&1 || { systemctl stop keepalived; exit 1; }
exit 0
2025-10-29 17:36:30 +08:00
EOF
2025-10-30 14:05:06 +08:00
chmod +x "$CHECK_SCRIPT" || error "健康检查脚本权限设置失败"
success "健康检查脚本已创建:$CHECK_SCRIPT"
2025-10-29 17:36:30 +08:00
# 生成配置文件
2025-10-30 14:05:06 +08:00
info "生成Keepalived配置..."
local state="BACKUP"
[[ "$PRIORITY" -ge 150 ]] && state="MASTER" # 优先级≥150默认为主节点
2025-10-29 17:36:30 +08:00
cat > "$KEEPALIVED_CONF" << EOF
global_defs {
router_id LVS_K8S_$(hostname)
2025-10-29 20:30:42 +08:00
script_security 2
2025-10-30 14:05:06 +08:00
enable_script_security
2025-10-29 17:36:30 +08:00
}
vrrp_script check_haproxy {
script "$CHECK_SCRIPT"
interval 2
2025-10-29 20:28:20 +08:00
weight -5
2025-10-29 17:36:30 +08:00
}
vrrp_instance VI_1 {
2025-10-30 14:05:06 +08:00
state $state
2025-10-29 17:36:30 +08:00
interface $INTERFACE
virtual_router_id 51
priority $PRIORITY
advert_int 1
authentication {
auth_type PASS
auth_pass k8s_ha_auth_2024
}
virtual_ipaddress {
$VIP
}
track_script {
check_haproxy
}
}
EOF
2025-10-30 14:05:06 +08:00
[[ -f "$KEEPALIVED_CONF" ]] || error "配置文件生成失败"
success "配置文件已生成:$KEEPALIVED_CONF"
2025-10-29 17:36:30 +08:00
# 启动服务
2025-10-30 14:05:06 +08:00
info "启动并设置开机自启..."
systemctl enable --now keepalived >/dev/null 2>&1 || error "Keepalived启动失败日志journalctl -u keepalived"
[[ "$(systemctl is-active keepalived)" == "active" ]] || error "Keepalived启动后状态异常"
# 安装完成汇总
echo -e "\n${GREEN}===== 安装完成 =====${NC}"
echo " VIP: $VIP"
echo " 节点角色: $state(优先级: $PRIORITY"
echo " 绑定网卡: $INTERFACE"
echo " 健康检查: $CHECK_SCRIPT"
echo " 服务状态: 运行中"
2025-10-29 17:36:30 +08:00
}
2025-10-30 14:05:06 +08:00
# ========================== 卸载逻辑 ==========================
2025-10-29 17:36:30 +08:00
uninstall_keepalived() {
2025-10-30 14:05:06 +08:00
step "开始卸载Keepalived"
2025-10-29 17:36:30 +08:00
# 停止服务
if systemctl is-active --quiet keepalived; then
2025-10-30 14:05:06 +08:00
info "停止Keepalived服务..."
systemctl stop keepalived >/dev/null 2>&1 || info "服务停止失败,继续卸载"
success "服务已停止"
else
info "Keepalived未运行跳过停止步骤"
2025-10-29 17:36:30 +08:00
fi
# 卸载软件
if dpkg -l keepalived &>/dev/null; then
2025-10-30 14:05:06 +08:00
info "卸载软件包..."
apt purge -y -qq keepalived >/dev/null 2>&1 || error "软件包卸载失败"
apt autoremove -y -qq >/dev/null 2>&1
success "软件包已卸载"
2025-10-29 17:36:30 +08:00
else
2025-10-30 14:05:06 +08:00
info "Keepalived未安装跳过卸载"
2025-10-29 17:36:30 +08:00
fi
2025-10-30 14:05:06 +08:00
# 清理配置
2025-10-29 17:36:30 +08:00
if [[ -d /etc/keepalived/ ]]; then
2025-10-30 14:05:06 +08:00
local backup="/etc/keepalived.bak.$(date +%F_%H%M%S)"
mv /etc/keepalived/ "$backup"
success "配置目录已备份至:$backup"
2025-10-29 17:36:30 +08:00
fi
# 清理健康检查脚本
if [[ -f "$CHECK_SCRIPT" ]]; then
rm -f "$CHECK_SCRIPT"
2025-10-30 14:05:06 +08:00
success "健康检查脚本已删除:$CHECK_SCRIPT"
2025-10-29 17:36:30 +08:00
fi
2025-10-30 14:05:06 +08:00
# 卸载完成
echo -e "\n${GREEN}===== 卸载完成 =====${NC}"
}
# ========================== 主逻辑 ==========================
main() {
# 解析参数
while [[ $# -gt 0 ]]; do
case "$1" in
--install|--uninstall) ACTION="$1"; shift ;;
--vip) [[ $# -lt 2 ]] && error "--vip需指定IP/子网掩码"; VIP="$2"; shift 2 ;;
--priority) [[ $# -lt 2 ]] && error "--priority需指定数值"; PRIORITY="$2"; shift 2 ;;
*) error "未知参数:$1" ;;
esac
done
# 校验操作
[[ -z "$ACTION" ]] && error "必须指定--install安装或--uninstall卸载"
# 检查root权限
[[ $EUID -ne 0 ]] && error "请使用root权限运行sudo $0 ..."
# 执行操作
case "$ACTION" in
--install) install_keepalived ;;
--uninstall) uninstall_keepalived ;;
esac
2025-10-29 17:36:30 +08:00
}
2025-10-30 14:05:06 +08:00
main "$@"