Flannel下对容器端口访问的结果

文章展示了Kubernetes集群中节点(node)与Pod的IP配置详情,包括Pod的对外IP、节点IP、Flannel网络接口以及服务IP的交互关系,揭示了集群内部通信的网络架构。

摘要生成于 C知道 ,由 DeepSeek-R1 满血版支持, 前往体验 >

环境如下 

root@ubuntu:/home/test/Downloads# kubectl get pod -o wide
NAME                        READY   STATUS    RESTARTS         AGE     IP            NODE    NOMINATED NODE   READINESS GATES
nginx11-86697f68dd-sdj6h    2/2     Running   0                10h     10.244.1.68   node1   <none>           <none>
tomcat01-84df8b98cc-ndzht   2/2     Running   67 (8m43s ago)   2d15h   10.244.1.4    node1   <none>           <none>
root@ubuntu:/home/test/Downloads# kubectl get node -o wide
NAME     STATUS   ROLES                  AGE     VERSION   INTERNAL-IP     EXTERNAL-IP   OS-IMAGE             KERNEL-VERSION      CONTAINER-RUNTIME
node1    Ready    <none>                 2d15h   v1.23.6   192.168.1.179   <none>        Ubuntu 20.04.1 LTS   5.4.0-42-generic    docker://20.10.12
ubuntu   Ready    control-plane,master   158d    v1.23.6   192.168.1.182   <none>        Ubuntu 20.04.1 LTS   5.15.0-69-generic   docker://20.10.21

master网卡信息

1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
    link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
    inet 127.0.0.1/8 scope host lo
       valid_lft forever preferred_lft forever
    inet6 ::1/128 scope host 
       valid_lft forever preferred_lft forever
2: ens33: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UP group default qlen 1000
    link/ether 00:0c:29:27:87:38 brd ff:ff:ff:ff:ff:ff
    altname enp2s1
    inet 192.168.1.182/24 brd 192.168.1.255 scope global dynamic noprefixroute ens33
       valid_lft 180330sec preferred_lft 180330sec
    inet6 2408:8340:e21:7240:1d6d:c7b:4b1c:fbe6/64 scope global temporary dynamic 
       valid_lft 2629sec preferred_lft 2629sec
    inet6 2408:8340:e21:7240:6ec7:3003:9e6f:99da/64 scope global dynamic mngtmpaddr noprefixroute 
       valid_lft 2629sec preferred_lft 2629sec
    inet6 fe80::fa15:3d74:cf77:caaf/64 scope link noprefixroute 
       valid_lft forever preferred_lft forever
3: docker0: <NO-CARRIER,BROADCAST,MULTICAST,UP> mtu 1500 qdisc noqueue state DOWN group default 
    link/ether 02:42:02:23:02:b5 brd ff:ff:ff:ff:ff:ff
    inet 172.17.0.1/16 brd 172.17.255.255 scope global docker0
       valid_lft forever preferred_lft forever
4: flannel.1: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1450 qdisc noqueue state UNKNOWN group default 
    link/ether 6a:d3:10:b3:45:42 brd ff:ff:ff:ff:ff:ff
    inet 10.244.0.0/32 scope global flannel.1
       valid_lft forever preferred_lft forever
    inet6 fe80::68d3:10ff:feb3:4542/64 scope link 
       valid_lft forever preferred_lft forever
5: cni0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1450 qdisc noqueue state UP group default qlen 1000
    link/ether 62:80:d6:f9:a5:ca brd ff:ff:ff:ff:ff:ff
    inet 10.244.0.1/24 brd 10.244.0.255 scope global cni0
       valid_lft forever preferred_lft forever
    inet6 fe80::6080:d6ff:fef9:a5ca/64 scope link 
       valid_lft forever preferred_lft forever

node1网卡信息 

1: lo: <LOOPBACK,UP,LOWER_UP> mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000
    link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
    inet 127.0.0.1/8 scope host lo
       valid_lft forever preferred_lft forever
    inet6 ::1/128 scope host 
       valid_lft forever preferred_lft forever
2: ens33: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc fq_codel state UP group default qlen 1000
    link/ether 00:0c:29:db:d6:f7 brd ff:ff:ff:ff:ff:ff
    inet 192.168.1.179/24 brd 192.168.1.255 scope global dynamic noprefixroute ens33
       valid_lft 162691sec preferred_lft 162691sec
    inet6 240e:390:e66:1050::5/128 scope global dynamic noprefixroute 
       valid_lft 162694sec preferred_lft 76294sec
    inet6 2408:8340:e21:7240:8cf1:5506:146a:902/64 scope global temporary dynamic 
       valid_lft 2685sec preferred_lft 2685sec
    inet6 2408:8340:e21:7240:113d:fd60:37f7:5223/64 scope global dynamic mngtmpaddr noprefixroute 
       valid_lft 2685sec preferred_lft 2685sec
    inet6 fe80::f7e0:bb78:c9cd:d14a/64 scope link noprefixroute 
       valid_lft forever preferred_lft forever
3: docker0: <NO-CARRIER,BROADCAST,MULTICAST,UP> mtu 1500 qdisc noqueue state DOWN group default 
    link/ether 02:42:a4:d3:c9:e9 brd ff:ff:ff:ff:ff:ff
    inet 172.17.0.1/16 brd 172.17.255.255 scope global docker0
       valid_lft forever preferred_lft forever
4: flannel.1: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1450 qdisc noqueue state UNKNOWN group default 
    link/ether 4e:cc:51:d5:b0:9c brd ff:ff:ff:ff:ff:ff
    inet 10.244.1.0/32 scope global flannel.1
       valid_lft forever preferred_lft forever
    inet6 fe80::4ccc:51ff:fed5:b09c/64 scope link 
       valid_lft forever preferred_lft forever
5: cni0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1450 qdisc noqueue state UP group default qlen 1000
    link/ether de:d3:0f:43:05:73 brd ff:ff:ff:ff:ff:ff
    inet 10.244.1.1/24 brd 10.244.1.255 scope global cni0
       valid_lft forever preferred_lft forever
    inet6 fe80::dcd3:fff:fe43:573/64 scope link 
       valid_lft forever preferred_lft forever

POD->对外

10.244.1.68->39.156.66.10

Master主机->POD(POD IP)

10.244.0.0 10.244.1.68

Master主机->POD(Cluster ip)

10.244.0.0 10.244.1.68

Master主机->POD(SERVICE IP)

10.244.1.1 10.244.1.68

Node主机->POD(POD IP)

10.244.1.1 10.244.1.68

Node主机->POD(CLUSTER IP)

10.244.1.1 10.244.1.68

Node主机->POD(SERVICE IP)

10.244.1.1 10.244.1.68

WEB访问->POD(SERVICE IP)

10.244.1.1 10.244.1.68

评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包

打赏作者

信安成长日记

你的鼓励将是我创作的最大动力

¥1 ¥2 ¥4 ¥6 ¥10 ¥20
扫码支付:¥1
获取中
扫码支付

您的余额不足,请更换扫码支付或充值

打赏作者

实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值