118 lines
2.4 KiB
Nix
118 lines
2.4 KiB
Nix
{ pkgs, cluster, customize ? {}, lib, config, ... }:
|
|
with lib;
|
|
let
|
|
cfg = cluster;
|
|
|
|
pki = import ./pki.nix { inherit pkgs; ca = cfg.initca; };
|
|
|
|
mkCert = host: {
|
|
${host.name} = pki.gencert {
|
|
cn = host.name;
|
|
ca = cfg.ca;
|
|
o = cfg.clusterName;
|
|
};
|
|
};
|
|
|
|
baseDeployment = nodes: attrs:
|
|
let
|
|
hosts =
|
|
builtins.foldl'
|
|
(a: x: a // { ${x.name} = mkHost x _; }) {} nodes;
|
|
hosts' = lib.recursiveUpdate hosts attrs;
|
|
names = builtins.attrNames hosts;
|
|
in
|
|
builtins.foldl' (a: x: a // { ${x} = self: hosts'.${x}; }) {} names;
|
|
|
|
in {
|
|
k8s = rec {
|
|
apiserver = host: self: {
|
|
deployment.targetHost = host.address;
|
|
|
|
inherit customize;
|
|
|
|
cluster = mkMerge [
|
|
cfg
|
|
{
|
|
hostName = host.name;
|
|
cert = mkCert host.name;
|
|
k8s.master.enable = true;
|
|
k8s.node.enable = true;
|
|
}
|
|
];
|
|
|
|
imports = [ host.hw ./modules.nix ];
|
|
};
|
|
|
|
node = host: self: {
|
|
deployment.targetHost = host.address;
|
|
|
|
inherit customize;
|
|
|
|
cluster = mkMerge [
|
|
cfg
|
|
{
|
|
hostName = host.name;
|
|
cert = mkCert host.name;
|
|
k8s.node.enable = true;
|
|
}
|
|
];
|
|
|
|
imports = [ host.hw ./modules.nix ];
|
|
};
|
|
|
|
mkDeployment = master: nodes:
|
|
let
|
|
server = { "${master.name}" = apiserver master; };
|
|
in
|
|
builtins.foldl' (a: x:
|
|
a // { "${x.name}" = node x; }) server nodes;
|
|
};
|
|
|
|
fs = rec {
|
|
mkNode = host: self: {
|
|
deployment.targetHost = host.address;
|
|
|
|
inherit customize;
|
|
|
|
cluster = mkMerge [
|
|
cfg
|
|
{
|
|
hostName = host.name;
|
|
cert = mkCert host.name;
|
|
}
|
|
];
|
|
|
|
imports = [ host.hw ./modules.nix ];
|
|
};
|
|
|
|
mkDeployment = nodes:
|
|
builtins.foldl' (a: x:
|
|
a // { "${x.name}" = mkNode x; }) {} nodes;
|
|
} ;
|
|
|
|
host = rec {
|
|
node = host: self: {
|
|
deployment.targetHost = host.address;
|
|
|
|
inherit customize;
|
|
|
|
cluster = mkMerge [
|
|
cfg
|
|
{
|
|
hostName = host.name;
|
|
cert = mkCert host.name;
|
|
}
|
|
];
|
|
|
|
imports = [ host.hw ./modules.nix ];
|
|
};
|
|
|
|
mkDeployment = masterNode: workerNodes:
|
|
let
|
|
master = { "${master.name}" = apiserver masterNode; };
|
|
in
|
|
builtins.foldl' (a: x:
|
|
a // { "${x.name}" = mkWorker x; }) master workerNodes;
|
|
};
|
|
}
|