a850c5356b
* zh-trans: update docs/reference/kubectl/kubectl.md * Updates per PR comments
21 KiB
21 KiB
title, notitle
| title | notitle |
|---|---|
| kubectl | true |
kubectl
kubectl 用来控制 Kubernetes 集群管理器
摘要
kubectl 用来控制 Kubernetes 集群管理器。
更多信息参见 https://kubernetes.io/docs/reference/kubectl/overview/
kubectl [flags]
Options
<tr>
<td colspan="2">--allow-verification-with-non-compliant-keys</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">Allow a SignatureVerifier to use keys which are technically non-compliant with RFC6962.</td> -->
<td style="line-height: 130%; word-wrap: break-word;">允许 `SignatureVerifier` 使用和 RFC6962 技术上不兼容的键值。</td>
</tr>
<tr>
<td colspan="2">--alsologtostderr</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">log to standard error as well as files</td> -->
<td style="line-height: 130%; word-wrap: break-word;">同时将日志写到标准输出和文件中</td>
</tr>
<tr>
<td colspan="2">--as string</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">Username to impersonate for the operation</td> -->
<td style="line-height: 130%; word-wrap: break-word;">执行操作时假冒的用户名</td>
</tr>
<tr>
<td colspan="2">--as-group stringArray</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">Group to impersonate for the operation, this flag can be repeated to specify multiple groups.</td> -->
<td style="line-height: 130%; word-wrap: break-word;">执行操作时假冒的组名。此参数可以多次使用,以设置多个组名。</td>
</tr>
<tr>
<td colspan="2">--azure-container-registry-config string</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">Path to the file containing Azure container registry configuration information.</td> -->
<td style="line-height: 130%; word-wrap: break-word;">Azure 容器仓库配置信息文件的路径。</td>
</tr>
<tr>
<!-- <td colspan="2">--cache-dir string Default: "$HOME/.kube/http-cache"</td> -->
<td colspan="2">--cache-dir string 默认值: "$HOME/.kube/http-cache"</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">Default HTTP cache directory</td> -->
<td style="line-height: 130%; word-wrap: break-word;">默认的 HTTP 缓存路径</td>
</tr>
<tr>
<td colspan="2">--certificate-authority string</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">Path to a cert file for the certificate authority</td> -->
<td style="line-height: 130%; word-wrap: break-word;">CA 证书机构的证书文件路径</td>
</tr>
<tr>
<td colspan="2">--client-certificate string</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">Path to a client certificate file for TLS</td> -->
<td style="line-height: 130%; word-wrap: break-word;">TLS 的客户端证书的文件路径</td>
</tr>
<tr>
<td colspan="2">--client-key string</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">Path to a client key file for TLS</td> -->
<td style="line-height: 130%; word-wrap: break-word;">TLS 客户端密钥文件的路径</td>
</tr>
<tr>
<!-- <td colspan="2">--cloud-provider-gce-lb-src-cidrs cidrs Default: 130.211.0.0/22,209.85.152.0/22,209.85.204.0/22,35.191.0.0/16</td> -->
<td colspan="2">--cloud-provider-gce-lb-src-cidrs cidrs 默认值: 130.211.0.0/22,209.85.152.0/22,209.85.204.0/22,35.191.0.0/16</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">CIDRs opened in GCE firewall for LB traffic proxy & health checks</td> -->
<td style="line-height: 130%; word-wrap: break-word;">在 GCE 防火墙中开放的 CIDRs,用于负载均衡器流量代理和健康检查。</td>
</tr>
<tr>
<td colspan="2">--cluster string</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">The name of the kubeconfig cluster to use</td> -->
<td style="line-height: 130%; word-wrap: break-word;">所要使用的 kubeconfig 集群名</td>
</tr>
<tr>
<td colspan="2">--context string</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">The name of the kubeconfig context to use</td> -->
<td style="line-height: 130%; word-wrap: break-word;">所要使用的 kubeconfig 上下文名</td>
</tr>
<tr>
<!-- <td colspan="2">--default-not-ready-toleration-seconds int Default: 300</td> -->
<td colspan="2">--default-not-ready-toleration-seconds int 默认值:300</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">Indicates the tolerationSeconds of the toleration for notReady:NoExecute that is added by default to every pod that does not already have such a toleration.</td> -->
<td style="line-height: 130%; word-wrap: break-word;">针对 `notReady:NoExecute` 污点的容忍时间(`tolerationSeconds`);对于没有设置该容忍度的 Pods,Kubernetes 会添加此容忍度设置。</td>
</tr>
<tr>
<!-- <td colspan="2">--default-unreachable-toleration-seconds int Default: 300</td> -->
<td colspan="2">--default-unreachable-toleration-seconds int 容忍度:300</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">Indicates the tolerationSeconds of the toleration for unreachable:NoExecute that is added by default to every pod that does not already have such a toleration.</td> -->
<td style="line-height: 130%; word-wrap: break-word;">针对 `unreachable:NoExecute` 污点的容忍时间(`tolerationSeconds`);对于没有设置该容忍度的 Pods,Kubernetes 会添加此容忍度设置。</td>
</tr>
<tr>
<td colspan="2">-h, --help</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">help for kubectl</td> -->
<td style="line-height: 130%; word-wrap: break-word;">kubectl 帮助选项</td>
</tr>
<tr>
<td colspan="2">--insecure-skip-tls-verify</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">If true, the server's certificate will not be checked for validity. This will make your HTTPS connections insecure</td> -->
<td style="line-height: 130%; word-wrap: break-word;">如果设置为 true,kubectl 将不会验证服务器的证书。这样设置时,HTTPS 链接将不安全。</td>
</tr>
<tr>
<td colspan="2">--kubeconfig string</td>
</tr>
<tr>
<!-- <td></td><td style="line-height: 130%; word-wrap: break-word;">Path to the kubeconfig file to use for CLI requests.</td> -->
<td></td><td style="line-height: 130%; word-wrap: break-word;">kubeconfig 的文件路径,供 CLI 请求之用。</td>
</tr>
<tr>
<!-- <td colspan="2">--log-backtrace-at traceLocation Default: :0</td> -->
<td colspan="2">--log-backtrace-at traceLocation 默认值::0</td>
</tr>
<tr>
<!-- <td></td><td style="line-height: 130%; word-wrap: break-word;">when logging hits line file:N, emit a stack trace</td> -->
<td></td><td style="line-height: 130%; word-wrap: break-word;">格式为“file:N”;在为文件 file 的第 N 行打印日志时,打印调用堆栈的跟踪信息。</td>
</tr>
<tr>
<td colspan="2">--log-dir string</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">If non-empty, write log files in this directory</td> -->
<td style="line-height: 130%; word-wrap: break-word;">如果此参数不为空,将在所指定的路径下保存日志文件。</td>
</tr>
<tr>
<!-- <td colspan="2">--log-flush-frequency duration Default: 5s</td> -->
<td colspan="2">--log-flush-frequency duration 默认值:5s</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">Maximum number of seconds between log flushes</td> -->
<td style="line-height: 130%; word-wrap: break-word;">清刷日志数据的最大间隔秒数。</td>
</tr>
<tr>
<!-- <td colspan="2">--logtostderr Default: true</td> -->
<td colspan="2">--logtostderr 默认值:true</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">log to standard error instead of files</td> -->
<td style="line-height: 130%; word-wrap: break-word;">将日志输出到标准错误输出而非文件中。</td>
</tr>
<tr>
<td colspan="2">--match-server-version</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">Require server version to match client version</td> -->
<td style="line-height: 130%; word-wrap: break-word;">要求服务器的版本和客户端版本一致</td>
</tr>
<tr>
<td colspan="2">-n, --namespace string</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">If present, the namespace scope for this CLI request</td> -->
<td style="line-height: 130%; word-wrap: break-word;">此参数如果设置,用来控制 CLI 请求的名字空间范畴</td>
</tr>
<tr>
<!-- <td colspan="2">--request-timeout string Default: "0"</td> -->
<td colspan="2">--request-timeout string 默认值:"0"</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">The length of time to wait before giving up on a single server request. Non-zero values should contain a corresponding time unit (e.g. 1s, 2m, 3h). A value of zero means don't timeout requests.</td> -->
<td style="line-height: 130%; word-wrap: break-word;">放弃单个服务请求前的等待时间。非零数值必须要包含时间单位(例如,1s,2m,3h)。零值意味着不会发生请求超时。</td>
</tr>
<tr>
<td colspan="2">-s, --server string</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">The address and port of the Kubernetes API server</td> -->
<td style="line-height: 130%; word-wrap: break-word;">Kubernetes API 服务器的地址和端口</td>
</tr>
<tr>
<!-- <td colspan="2">--stderrthreshold severity Default: 2</td> -->
<td colspan="2">--stderrthreshold severity 默认值:2</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">logs at or above this threshold go to stderr</td> -->
<td style="line-height: 130%; word-wrap: break-word;">严重级别整数值;严重级别高于或等于此值的日志都将会输出到标准错误输出</td>
</tr>
<tr>
<td colspan="2">--token string</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">Bearer token for authentication to the API server</td> -->
<td style="line-height: 130%; word-wrap: break-word;">持有者令牌(Bearer Token),用于向 API 服务器认证身份</td>
</tr>
<tr>
<td colspan="2">--user string</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">The name of the kubeconfig user to use</td> -->
<td style="line-height: 130%; word-wrap: break-word;">所要使用的 kubeconfig 用户名</td>
</tr>
<tr>
<td colspan="2">-v, --v Level</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">log level for V logs</td>
related issue: https://github.com/kubernetes/kubernetes/issues/35054
-->
<td style="line-height: 130%; word-wrap: break-word;">设定日志输出的等级</td>
</tr>
<tr>
<td colspan="2">--version version[=true]</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">Print version information and quit</td> -->
<td style="line-height: 130%; word-wrap: break-word;">打印版本信息,然后退出</td>
</tr>
<tr>
<td colspan="2">--vmodule moduleSpec</td>
</tr>
<tr>
<td></td>
<!-- <td style="line-height: 130%; word-wrap: break-word;">comma-separated list of pattern=N settings for file-filtered logging</td> -->
<td style="line-height: 130%; word-wrap: break-word;">逗号分隔的字符串表,每个元素都是 pattern=N 格式,用于基于文件名进行过滤的日志设置</td>
</tr>
更多资源
- kubectl alpha - kubectl alpha 功能
- kubectl annotate - 更新资源所关联的注解
- kubectl api-resources - 打印服务器上所支持的 API 资源
- kubectl api-versions - 以“组/版本”的格式输出服务端支持的 API 版本
- kubectl apply - 基于文件名或标准输入,将新的配置应用到资源上
- kubectl attach - 连接到一个正在运行的容器
- kubectl auth - 检视授权信息
- kubectl autoscale - 对一个资源对象( Deployment、ReplicaSet 或 ReplicationController )进行扩缩
- kubectl certificate - 修改证书资源
- kubectl cluster-info - 显示集群信息
- kubectl completion - 根据已经给出的 Shell(bash 或 zsh),输出 Shell 补全后的代码
- kubectl config - 修改 kubeconfig 配置文件
- kubectl convert - 在不同的 API 版本之间转换配置文件
- kubectl cordon - 标记节点为不可调度的
- kubectl cp - 将文件和路径拷入/拷出容器。
- kubectl create - 通过文件或标准输入来创建资源
- kubectl delete - 通过文件名、标准输入、资源和名字删除资源,或者通过资源和标签选择器来删除资源
- kubectl describe - 显示某个资源或某组资源的详细信息
- kubectl drain - 腾空节点,准备维护
- kubectl edit - 修改服务器上的某资源
- kubectl exec - 在容器中执行命令
- kubectl explain - 显示资源说明
- kubectl expose - 给定副本控制器、服务、Deployment 或 Pod,将其暴露为新的 kubernetes Service
- kubectl get - 显示一个或者多个资源信息
- kubectl label - 更新资源的标签
- kubectl logs - 输出 pod 中某容器的日志
- kubectl options - 打印所有命令都支持的共有参数列表
- kubectl patch - 基于策略性合并修补(Stategic Merge Patch)规则更新某资源中的字段
- kubectl plugin - 运行命令行插件
- kubectl port-forward - 将一个或者多个本地端口转发到 pod
- kubectl proxy - 运行一个 kubernetes API 服务器代理
- kubectl replace - 基于文件名或标准输入替换资源
- kubectl rollout - 管理资源的上线
- kubectl run - 在集群中使用指定镜像启动容器
- kubectl scale - 为一个 Deployment、ReplicaSet、ReplicationController 或 Job 设置一个新的规模尺寸值
- kubectl set - 在资源对象设置特定的功能
- kubectl taint - 在一个或者多个节点上更新污点配置
- kubectl top - 显示资源(CPU /内存/存储)使用率
- kubectl uncordon - 标记节点为可调度的
- kubectl version - 打印客户端和服务器的版本信息
- kubectl wait - 实验性:等待一个或多个资源达到某种状态