debian-mirror-gitlab/doc/user/clusters/management_project.md

114 lines
3.5 KiB
Markdown
Raw Normal View History

2019-12-21 20:55:43 +05:30
# Cluster management project (alpha)
CAUTION: **Warning:**
This is an _alpha_ feature, and it is subject to change at any time without
prior notice.
2019-12-26 22:10:19 +05:30
> [Introduced](https://gitlab.com/gitlab-org/gitlab/issues/32810) in GitLab 12.5
2019-12-21 20:55:43 +05:30
A project can be designated as the management project for a cluster.
A management project can be used to run deployment jobs with
Kubernetes
[`cluster-admin`](https://kubernetes.io/docs/reference/access-authn-authz/rbac/#user-facing-roles)
privileges.
This can be useful for:
2020-04-22 19:07:51 +05:30
- Creating pipelines to install cluster-wide applications into your cluster, see [Install using GitLab CI/CD (alpha)](applications.md#install-using-gitlab-cicd-alpha) for details.
2019-12-21 20:55:43 +05:30
- Any jobs that require `cluster-admin` privileges.
## Permissions
Only the management project will receive `cluster-admin` privileges. All
2019-12-26 22:10:19 +05:30
other projects will continue to receive [namespace scoped `edit` level privileges](../project/clusters/add_remove_clusters.md#rbac-cluster-resources).
Management projects are restricted to the following:
2020-03-13 15:44:24 +05:30
- For project-level clusters, the management project must be in the same
2019-12-26 22:10:19 +05:30
namespace (or descendants) as the cluster's project.
2020-03-13 15:44:24 +05:30
- For group-level clusters, the management project must be in the same
2020-04-22 19:07:51 +05:30
group (or descendants) as the cluster's group.
2019-12-26 22:10:19 +05:30
- For instance-level clusters, there are no such restrictions.
2019-12-21 20:55:43 +05:30
## Usage
2019-12-26 22:10:19 +05:30
To use a cluster management project for a cluster:
1. Select the project.
1. Configure your pipelines.
1. Set an environment scope.
2019-12-21 20:55:43 +05:30
### Selecting a cluster management project
2019-12-26 22:10:19 +05:30
To select a cluster management project to use:
1. Navigate to the appropriate configuration page. For a:
- [Project-level cluster](../project/clusters/index.md), navigate to your project's
**Operations > Kubernetes** page.
- [Group-level cluster](../group/clusters/index.md), navigate to your group's **Kubernetes**
page.
2020-04-22 19:07:51 +05:30
- [Instance-level cluster](../instance/clusters/index.md), navigate to Admin Area's **Kubernetes**
page.
2019-12-26 22:10:19 +05:30
1. Select the project using **Cluster management project field** in the **Advanced settings**
section.
![Selecting a cluster management project under Advanced settings](img/advanced-settings-cluster-management-project-v12_5.png)
2019-12-21 20:55:43 +05:30
### Configuring your pipeline
After designating a project as the management project for the cluster,
2020-01-01 13:55:28 +05:30
write a [`.gitlab-ci.yml`](../../ci/yaml/README.md) in that project. For example:
2019-12-21 20:55:43 +05:30
```yaml
configure cluster:
stage: deploy
script: kubectl get namespaces
environment:
name: production
```
### Setting the environment scope **(PREMIUM)**
[Environment
scopes](../project/clusters/index.md#setting-the-environment-scope-premium)
are usable when associating multiple clusters to the same management
project.
Each scope can only be used by a single cluster for a management project.
For example, let's say the following Kubernetes clusters are associated
to a management project:
| Cluster | Environment scope |
| ----------- | ----------------- |
| Development | `*` |
| Staging | `staging` |
| Production | `production` |
2019-12-26 22:10:19 +05:30
The following environments set in
2019-12-21 20:55:43 +05:30
[`.gitlab-ci.yml`](../../ci/yaml/README.md) will deploy to the
Development, Staging, and Production cluster respectively.
```yaml
stages:
- deploy
configure development cluster:
stage: deploy
script: kubectl get namespaces
environment:
name: development
configure staging cluster:
stage: deploy
script: kubectl get namespaces
environment:
name: staging
configure production cluster:
stage: deploy
script: kubectl get namespaces
environment:
name: production
```