Time ago at one of the customer was solving deployment of a Supervisor cluster. Really trivial thing, you mean, but I have been facing with a few things, which have not been exactly documented in any KB.
Deployment in the first phase run really smoothly.
- Cluster s NSX
- Customer is using NSX, resp. VCF in licensing, but installed manually part by part on the vSphere 8.
- Storage policies
- Even when customer is not using vSAN, for Tanzu deployment (vSphere Kubernetes Services), it is required to have Storage policy in place. Using them K8s know where to place persistent objects.
- You have to create Tags for Storage policies
- Assign those Tags to appropriate Datastores, to be at least one Datastore "Compatible" during Storage policy selection.
- Create Storage Policies. If you don't have vSAN in place, they will be based only on Tag based placement.
- Load Balancer
- Musíte si při vytváření Supervisor vybrat, zda budete používat NSX load balancer, nebo máte AVI. AVI se licencuje zvlášť, ale má více funkcionalit. Musíte si vždy udělat rozvahu, zda se Vám to vyplatí či nikoli.
- Zákazník si vybral „jen“ NSX.
- 3 IP subnety, které jsou routovatelné
- 1 pro Supervisor MGMT – lze použít VDS portgroup.
- 5 po sobě jdoucích IP adres
- 1 pro Ingress – Služby, které budou publikované ven přes LB
- 1 pro Egress – přístup všech kontejnerů a TKG clusterů do internetu „SNAT“
- 1 pro Supervisor MGMT – lze použít VDS portgroup.
- 2 IP subnety pro interní K8S konektivitu
- 1 subnet pro K8S konektivitu Supervisor Services podů a TKG clusterů
- 1 subnet pro K8S service objekty
- Subnety se nesmí překrývat s jinými supervisor subnety







