| 123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888 |
- package cmd
- import (
- "context"
- "errors"
- "fmt"
- "io"
- "os"
- "strings"
- "time"
- "github.com/fatih/color"
- api "github.com/porter-dev/porter/api/client"
- "github.com/porter-dev/porter/api/types"
- "github.com/porter-dev/porter/cli/cmd/utils"
- "github.com/spf13/cobra"
- batchv1 "k8s.io/api/batch/v1"
- batchv1beta1 "k8s.io/api/batch/v1beta1"
- v1 "k8s.io/api/core/v1"
- rbacv1 "k8s.io/api/rbac/v1"
- metav1 "k8s.io/apimachinery/pkg/apis/meta/v1"
- "k8s.io/apimachinery/pkg/fields"
- "k8s.io/apimachinery/pkg/watch"
- "k8s.io/kubectl/pkg/util/term"
- "k8s.io/apimachinery/pkg/runtime"
- "k8s.io/apimachinery/pkg/runtime/schema"
- "k8s.io/client-go/kubernetes"
- "k8s.io/client-go/rest"
- "k8s.io/client-go/tools/clientcmd"
- "k8s.io/client-go/tools/remotecommand"
- )
- var namespace string
- var verbose bool
- // runCmd represents the "porter run" base command when called
- // without any subcommands
- var runCmd = &cobra.Command{
- Use: "run [release] -- COMMAND [args...]",
- Args: cobra.MinimumNArgs(2),
- Short: "Runs a command inside a connected cluster container.",
- Run: func(cmd *cobra.Command, args []string) {
- err := checkLoginAndRun(args, run)
- if err != nil {
- os.Exit(1)
- }
- },
- }
- // cleanupCmd represents the "porter run cleanup" subcommand
- var cleanupCmd = &cobra.Command{
- Use: "cleanup",
- Args: cobra.NoArgs,
- Short: "Delete any lingering ephemeral pods that were created with \"porter run\".",
- Run: func(cmd *cobra.Command, args []string) {
- err := checkLoginAndRun(args, cleanup)
- if err != nil {
- os.Exit(1)
- }
- },
- }
- var existingPod bool
- func init() {
- rootCmd.AddCommand(runCmd)
- runCmd.PersistentFlags().StringVar(
- &namespace,
- "namespace",
- "default",
- "namespace of release to connect to",
- )
- runCmd.PersistentFlags().BoolVarP(
- &existingPod,
- "existing_pod",
- "e",
- false,
- "whether to connect to an existing pod",
- )
- runCmd.PersistentFlags().BoolVarP(
- &verbose,
- "verbose",
- "v",
- false,
- "whether to print verbose output",
- )
- runCmd.AddCommand(cleanupCmd)
- }
- func run(_ *types.GetAuthenticatedUserResponse, client *api.Client, args []string) error {
- color.New(color.FgGreen).Println("Running", strings.Join(args[1:], " "), "for release", args[0])
- podsSimple, err := getPods(client, namespace, args[0])
- if err != nil {
- return fmt.Errorf("Could not retrieve list of pods: %s", err.Error())
- }
- // if length of pods is 0, throw error
- var selectedPod podSimple
- if len(podsSimple) == 0 {
- return fmt.Errorf("At least one pod must exist in this deployment.")
- } else if len(podsSimple) == 1 || !existingPod {
- selectedPod = podsSimple[0]
- } else {
- podNames := make([]string, 0)
- for _, podSimple := range podsSimple {
- podNames = append(podNames, podSimple.Name)
- }
- selectedPodName, err := utils.PromptSelect("Select the pod:", podNames)
- if err != nil {
- return err
- }
- // find selected pod
- for _, podSimple := range podsSimple {
- if selectedPodName == podSimple.Name {
- selectedPod = podSimple
- }
- }
- }
- var selectedContainerName string
- // if the selected pod has multiple container, spawn selector
- if len(selectedPod.ContainerNames) == 0 {
- return fmt.Errorf("At least one pod must exist in this deployment.")
- } else if len(selectedPod.ContainerNames) == 1 {
- selectedContainerName = selectedPod.ContainerNames[0]
- } else {
- selectedContainer, err := utils.PromptSelect("Select the container:", selectedPod.ContainerNames)
- if err != nil {
- return err
- }
- selectedContainerName = selectedContainer
- }
- config := &PorterRunSharedConfig{
- Client: client,
- }
- err = config.setSharedConfig()
- if err != nil {
- return fmt.Errorf("Could not retrieve kube credentials: %s", err.Error())
- }
- if existingPod {
- return executeRun(config, namespace, selectedPod.Name, selectedContainerName, args[1:])
- }
- return executeRunEphemeral(config, namespace, selectedPod.Name, selectedContainerName, args[1:])
- }
- func cleanup(_ *types.GetAuthenticatedUserResponse, client *api.Client, _ []string) error {
- config := &PorterRunSharedConfig{
- Client: client,
- }
- err := config.setSharedConfig()
- if err != nil {
- return fmt.Errorf("Could not retrieve kube credentials: %s", err.Error())
- }
- proceed, err := utils.PromptSelect(
- fmt.Sprintf("You have chosen the '%s' namespace for cleanup. Do you want to proceed?", namespace),
- []string{"Yes", "No", "All namespaces"},
- )
- if err != nil {
- return err
- }
- if proceed == "No" {
- return nil
- }
- var podNames []string
- color.New(color.FgGreen).Println("Fetching ephemeral pods for cleanup")
- if proceed == "All namespaces" {
- namespaces, err := config.Clientset.CoreV1().Namespaces().List(context.Background(), metav1.ListOptions{})
- if err != nil {
- return err
- }
- for _, namespace := range namespaces.Items {
- if pods, err := getEphemeralPods(namespace.Name, config.Clientset); err == nil {
- podNames = append(podNames, pods...)
- } else {
- return err
- }
- }
- } else {
- if pods, err := getEphemeralPods(namespace, config.Clientset); err == nil {
- podNames = append(podNames, pods...)
- } else {
- return err
- }
- }
- if len(podNames) == 0 {
- color.New(color.FgBlue).Println("No ephemeral pods to delete")
- return nil
- }
- selectedPods, err := utils.PromptMultiselect("Select ephemeral pods to delete", podNames)
- if err != nil {
- return err
- }
- for _, podName := range selectedPods {
- color.New(color.FgBlue).Printf("Deleting ephemeral pod: %s\n", podName)
- err = config.Clientset.CoreV1().Pods(namespace).Delete(
- context.Background(), podName, metav1.DeleteOptions{},
- )
- if err != nil {
- return err
- }
- }
- return nil
- }
- func getEphemeralPods(namespace string, clientset *kubernetes.Clientset) ([]string, error) {
- var podNames []string
- pods, err := clientset.CoreV1().Pods(namespace).List(
- context.Background(), metav1.ListOptions{LabelSelector: "porter/ephemeral-pod"},
- )
- if err != nil {
- return nil, err
- }
- for _, pod := range pods.Items {
- podNames = append(podNames, pod.Name)
- }
- return podNames, nil
- }
- type PorterRunSharedConfig struct {
- Client *api.Client
- RestConf *rest.Config
- Clientset *kubernetes.Clientset
- RestClient *rest.RESTClient
- }
- func (p *PorterRunSharedConfig) setSharedConfig() error {
- pID := cliConf.Project
- cID := cliConf.Cluster
- kubeResp, err := p.Client.GetKubeconfig(context.Background(), pID, cID, cliConf.Kubeconfig)
- if err != nil {
- return err
- }
- kubeBytes := kubeResp.Kubeconfig
- cmdConf, err := clientcmd.NewClientConfigFromBytes(kubeBytes)
- if err != nil {
- return err
- }
- restConf, err := cmdConf.ClientConfig()
- if err != nil {
- return err
- }
- restConf.GroupVersion = &schema.GroupVersion{
- Group: "api",
- Version: "v1",
- }
- restConf.NegotiatedSerializer = runtime.NewSimpleNegotiatedSerializer(runtime.SerializerInfo{})
- p.RestConf = restConf
- clientset, err := kubernetes.NewForConfig(restConf)
- if err != nil {
- return err
- }
- p.Clientset = clientset
- restClient, err := rest.RESTClientFor(restConf)
- if err != nil {
- return err
- }
- p.RestClient = restClient
- return nil
- }
- type podSimple struct {
- Name string
- ContainerNames []string
- }
- func getPods(client *api.Client, namespace, releaseName string) ([]podSimple, error) {
- pID := cliConf.Project
- cID := cliConf.Cluster
- resp, err := client.GetK8sAllPods(context.TODO(), pID, cID, namespace, releaseName)
- if err != nil {
- return nil, err
- }
- pods := *resp
- res := make([]podSimple, 0)
- for _, pod := range pods {
- if pod.Status.Phase == v1.PodRunning {
- containerNames := make([]string, 0)
- for _, container := range pod.Spec.Containers {
- containerNames = append(containerNames, container.Name)
- }
- res = append(res, podSimple{
- Name: pod.ObjectMeta.Name,
- ContainerNames: containerNames,
- })
- }
- }
- return res, nil
- }
- func executeRun(config *PorterRunSharedConfig, namespace, name, container string, args []string) error {
- req := config.RestClient.Post().
- Resource("pods").
- Name(name).
- Namespace(namespace).
- SubResource("exec")
- for _, arg := range args {
- req.Param("command", arg)
- }
- req.Param("stdin", "true")
- req.Param("stdout", "true")
- req.Param("tty", "true")
- req.Param("container", container)
- t := term.TTY{
- In: os.Stdin,
- Out: os.Stdout,
- Raw: true,
- }
- size := t.GetSize()
- sizeQueue := t.MonitorSize(size)
- return t.Safe(func() error {
- exec, err := remotecommand.NewSPDYExecutor(config.RestConf, "POST", req.URL())
- if err != nil {
- return err
- }
- return exec.Stream(remotecommand.StreamOptions{
- Stdin: os.Stdin,
- Stdout: os.Stdout,
- Stderr: os.Stderr,
- Tty: true,
- TerminalSizeQueue: sizeQueue,
- })
- })
- }
- func executeRunEphemeral(config *PorterRunSharedConfig, namespace, name, container string, args []string) error {
- existing, err := getExistingPod(config, name, namespace)
- if err != nil {
- return err
- }
- newPod, err := createEphemeralPodFromExisting(config, existing, args)
- if err != nil {
- return err
- }
- podName := newPod.ObjectMeta.Name
- // delete the ephemeral pod no matter what
- defer deletePod(config, podName, namespace)
- color.New(color.FgYellow).Printf("Waiting for pod %s to be ready...", podName)
- if err = waitForPod(config, newPod); err != nil {
- color.New(color.FgRed).Println("failed")
- return handlePodAttachError(err, config, namespace, podName, container)
- }
- err = checkForPodDeletionCronJob(config)
- if err != nil {
- return err
- }
- // refresh pod info for latest status
- newPod, err = config.Clientset.CoreV1().
- Pods(newPod.Namespace).
- Get(context.Background(), newPod.Name, metav1.GetOptions{})
- // pod exited while we were waiting. maybe an error maybe not.
- // we dont know if the user wanted an interactive shell or not.
- // if it was an error the logs hopefully say so.
- if isPodExited(newPod) {
- color.New(color.FgGreen).Println("complete!")
- var writtenBytes int64
- writtenBytes, _ = pipePodLogsToStdout(config, namespace, podName, container, false)
- if verbose || writtenBytes == 0 {
- color.New(color.FgYellow).Println("Could not get logs. Pod events:")
- pipeEventsToStdout(config, namespace, podName, container, false)
- }
- return nil
- }
- color.New(color.FgGreen).Println("ready!")
- color.New(color.FgYellow).Println("Attempting connection to the container. If you don't see a command prompt, try pressing enter.")
- req := config.RestClient.Post().
- Resource("pods").
- Name(podName).
- Namespace(namespace).
- SubResource("attach")
- req.Param("stdin", "true")
- req.Param("stdout", "true")
- req.Param("tty", "true")
- req.Param("container", container)
- t := term.TTY{
- In: os.Stdin,
- Out: os.Stdout,
- Raw: true,
- }
- size := t.GetSize()
- sizeQueue := t.MonitorSize(size)
- if err = t.Safe(func() error {
- exec, err := remotecommand.NewSPDYExecutor(config.RestConf, "POST", req.URL())
- if err != nil {
- return err
- }
- return exec.Stream(remotecommand.StreamOptions{
- Stdin: os.Stdin,
- Stdout: os.Stdout,
- Stderr: os.Stderr,
- Tty: true,
- TerminalSizeQueue: sizeQueue,
- })
- }); err != nil {
- // ugly way to catch no TTY errors, such as when running command "echo \"hello\""
- return handlePodAttachError(err, config, namespace, podName, container)
- }
- if verbose {
- color.New(color.FgYellow).Println("Pod events:")
- pipeEventsToStdout(config, namespace, podName, container, false)
- }
- return err
- }
- func checkForPodDeletionCronJob(config *PorterRunSharedConfig) error {
- namespaces, err := config.Clientset.CoreV1().Namespaces().List(context.Background(), metav1.ListOptions{})
- if err != nil {
- return err
- }
- for _, namespace := range namespaces.Items {
- cronJobs, err := config.Clientset.BatchV1beta1().CronJobs(namespace.Name).List(
- context.Background(), metav1.ListOptions{},
- )
- if err != nil {
- return err
- }
- if namespace.Name != "default" {
- for _, cronJob := range cronJobs.Items {
- if cronJob.Name == "porter-ephemeral-pod-deletion-cronjob" {
- err = config.Clientset.BatchV1beta1().CronJobs(namespace.Name).Delete(
- context.Background(), cronJob.Name, metav1.DeleteOptions{},
- )
- if err != nil {
- return err
- }
- }
- }
- }
- for _, cronJob := range cronJobs.Items {
- if namespace.Name == "default" && cronJob.Name == "porter-ephemeral-pod-deletion-cronjob" {
- return nil
- }
- }
- }
- // try and create the cron job and all of the other required resources as necessary,
- // starting with the service account, then role and then a role binding
- err = checkForServiceAccount(config)
- if err != nil {
- return err
- }
- err = checkForClusterRole(config)
- if err != nil {
- return err
- }
- err = checkForRoleBinding(config)
- if err != nil {
- return err
- }
- // create the cronjob
- cronJob := &batchv1beta1.CronJob{
- ObjectMeta: metav1.ObjectMeta{
- Name: "porter-ephemeral-pod-deletion-cronjob",
- },
- Spec: batchv1beta1.CronJobSpec{
- Schedule: "0 * * * *",
- JobTemplate: batchv1beta1.JobTemplateSpec{
- Spec: batchv1.JobSpec{
- Template: v1.PodTemplateSpec{
- Spec: v1.PodSpec{
- ServiceAccountName: "porter-ephemeral-pod-deletion-service-account",
- RestartPolicy: v1.RestartPolicyNever,
- Containers: []v1.Container{
- {
- Name: "ephemeral-pods-manager",
- Image: "public.ecr.aws/o1j4x7p4/porter-ephemeral-pods-manager:latest",
- ImagePullPolicy: v1.PullAlways,
- Args: []string{"delete"},
- },
- },
- },
- },
- },
- },
- },
- }
- _, err = config.Clientset.BatchV1beta1().CronJobs("default").Create(
- context.Background(), cronJob, metav1.CreateOptions{},
- )
- if err != nil {
- return err
- }
- return nil
- }
- func checkForServiceAccount(config *PorterRunSharedConfig) error {
- serviceAccounts, err := config.Clientset.CoreV1().ServiceAccounts(namespace).List(
- context.Background(), metav1.ListOptions{},
- )
- if err != nil {
- return err
- }
- for _, serviceAccount := range serviceAccounts.Items {
- if serviceAccount.Name == "porter-ephemeral-pod-deletion-service-account" {
- return nil
- }
- }
- serviceAccount := &v1.ServiceAccount{
- ObjectMeta: metav1.ObjectMeta{
- Name: "porter-ephemeral-pod-deletion-service-account",
- },
- }
- _, err = config.Clientset.CoreV1().ServiceAccounts(namespace).Create(
- context.Background(), serviceAccount, metav1.CreateOptions{},
- )
- if err != nil {
- return err
- }
- return nil
- }
- func checkForClusterRole(config *PorterRunSharedConfig) error {
- roles, err := config.Clientset.RbacV1().ClusterRoles().List(
- context.Background(), metav1.ListOptions{},
- )
- if err != nil {
- return err
- }
- for _, role := range roles.Items {
- if role.Name == "porter-ephemeral-pod-deletion-cluster-role" {
- return nil
- }
- }
- role := &rbacv1.ClusterRole{
- ObjectMeta: metav1.ObjectMeta{
- Name: "porter-ephemeral-pod-deletion-cluster-role",
- },
- Rules: []rbacv1.PolicyRule{
- {
- APIGroups: []string{""},
- Resources: []string{"pods"},
- Verbs: []string{"list", "delete"},
- },
- {
- APIGroups: []string{""},
- Resources: []string{"namespaces"},
- Verbs: []string{"list"},
- },
- },
- }
- _, err = config.Clientset.RbacV1().ClusterRoles().Create(
- context.Background(), role, metav1.CreateOptions{},
- )
- if err != nil {
- return err
- }
- return nil
- }
- func checkForRoleBinding(config *PorterRunSharedConfig) error {
- bindings, err := config.Clientset.RbacV1().ClusterRoleBindings().List(
- context.Background(), metav1.ListOptions{},
- )
- if err != nil {
- return err
- }
- for _, binding := range bindings.Items {
- if binding.Name == "porter-ephemeral-pod-deletion-cluster-rolebinding" {
- return nil
- }
- }
- binding := &rbacv1.ClusterRoleBinding{
- ObjectMeta: metav1.ObjectMeta{
- Name: "porter-ephemeral-pod-deletion-cluster-rolebinding",
- },
- RoleRef: rbacv1.RoleRef{
- APIGroup: "rbac.authorization.k8s.io",
- Kind: "ClusterRole",
- Name: "porter-ephemeral-pod-deletion-cluster-role",
- },
- Subjects: []rbacv1.Subject{
- {
- APIGroup: "",
- Kind: "ServiceAccount",
- Name: "porter-ephemeral-pod-deletion-service-account",
- Namespace: "default",
- },
- },
- }
- _, err = config.Clientset.RbacV1().ClusterRoleBindings().Create(
- context.Background(), binding, metav1.CreateOptions{},
- )
- if err != nil {
- return err
- }
- return nil
- }
- func waitForPod(config *PorterRunSharedConfig, pod *v1.Pod) error {
- var (
- w watch.Interface
- err error
- ok bool
- )
- // immediately after creating a pod, the API may return a 404. heuristically 1
- // second seems to be plenty.
- watchRetries := 3
- for i := 0; i < watchRetries; i++ {
- selector := fields.OneTermEqualSelector("metadata.name", pod.Name).String()
- w, err = config.Clientset.CoreV1().
- Pods(pod.Namespace).
- Watch(context.Background(), metav1.ListOptions{FieldSelector: selector})
- if err == nil {
- break
- }
- time.Sleep(time.Second)
- }
- if err != nil {
- return err
- }
- defer w.Stop()
- for {
- select {
- case <-time.Tick(time.Second):
- // poll every second in case we already missed the ready event while
- // creating the listener.
- pod, err = config.Clientset.CoreV1().
- Pods(pod.Namespace).
- Get(context.Background(), pod.Name, metav1.GetOptions{})
- if isPodReady(pod) || isPodExited(pod) {
- return nil
- }
- case evt := <-w.ResultChan():
- pod, ok = evt.Object.(*v1.Pod)
- if !ok {
- return fmt.Errorf("unexpected object type: %T", evt.Object)
- }
- if isPodReady(pod) || isPodExited(pod) {
- return nil
- }
- case <-time.After(time.Second * 10):
- return errors.New("timed out waiting for pod")
- }
- }
- }
- func isPodReady(pod *v1.Pod) bool {
- ready := false
- conditions := pod.Status.Conditions
- for i := range conditions {
- if conditions[i].Type == v1.PodReady {
- ready = pod.Status.Conditions[i].Status == v1.ConditionTrue
- }
- }
- return ready
- }
- func isPodExited(pod *v1.Pod) bool {
- return pod.Status.Phase == v1.PodSucceeded || pod.Status.Phase == v1.PodFailed
- }
- func handlePodAttachError(err error, config *PorterRunSharedConfig, namespace, podName, container string) error {
- if verbose {
- color.New(color.FgYellow).Printf("Error: %s\n", err)
- }
- color.New(color.FgYellow).Println("Could not open a shell to this container. Container logs:")
- var writtenBytes int64
- writtenBytes, _ = pipePodLogsToStdout(config, namespace, podName, container, false)
- if verbose || writtenBytes == 0 {
- color.New(color.FgYellow).Println("Could not get logs. Pod events:")
- pipeEventsToStdout(config, namespace, podName, container, false)
- }
- return err
- }
- func pipePodLogsToStdout(config *PorterRunSharedConfig, namespace, name, container string, follow bool) (int64, error) {
- podLogOpts := v1.PodLogOptions{
- Container: container,
- Follow: follow,
- }
- req := config.Clientset.CoreV1().Pods(namespace).GetLogs(name, &podLogOpts)
- podLogs, err := req.Stream(
- context.Background(),
- )
- if err != nil {
- return 0, err
- }
- defer podLogs.Close()
- return io.Copy(os.Stdout, podLogs)
- }
- func pipeEventsToStdout(config *PorterRunSharedConfig, namespace, name, container string, follow bool) error {
- // update the config in case the operation has taken longer than token expiry time
- config.setSharedConfig()
- // creates the clientset
- resp, err := config.Clientset.CoreV1().Events(namespace).List(
- context.TODO(),
- metav1.ListOptions{
- FieldSelector: fmt.Sprintf("involvedObject.name=%s,involvedObject.namespace=%s", name, namespace),
- },
- )
- if err != nil {
- return err
- }
- for _, event := range resp.Items {
- color.New(color.FgRed).Println(event.Message)
- }
- return nil
- }
- func getExistingPod(config *PorterRunSharedConfig, name, namespace string) (*v1.Pod, error) {
- return config.Clientset.CoreV1().Pods(namespace).Get(
- context.Background(),
- name,
- metav1.GetOptions{},
- )
- }
- func deletePod(config *PorterRunSharedConfig, name, namespace string) error {
- // update the config in case the operation has taken longer than token expiry time
- config.setSharedConfig()
- err := config.Clientset.CoreV1().Pods(namespace).Delete(
- context.Background(),
- name,
- metav1.DeleteOptions{},
- )
- if err != nil {
- color.New(color.FgRed).Printf("Could not delete ephemeral pod: %s\n", err.Error())
- return err
- }
- color.New(color.FgGreen).Println("Sucessfully deleted ephemeral pod")
- return nil
- }
- func createEphemeralPodFromExisting(config *PorterRunSharedConfig, existing *v1.Pod, args []string) (*v1.Pod, error) {
- newPod := existing.DeepCopy()
- // only copy the pod spec, overwrite metadata
- newPod.ObjectMeta = metav1.ObjectMeta{
- Name: strings.ToLower(fmt.Sprintf("%s-copy-%s", existing.ObjectMeta.Name, utils.String(4))),
- Namespace: existing.ObjectMeta.Namespace,
- }
- newPod.Status = v1.PodStatus{}
- // only use "primary" container
- newPod.Spec.Containers = newPod.Spec.Containers[0:1]
- // set restart policy to never
- newPod.Spec.RestartPolicy = v1.RestartPolicyNever
- // change the command in the pod to the passed in pod command
- cmdRoot := args[0]
- cmdArgs := make([]string, 0)
- // annotate with the ephemeral pod tag
- newPod.Labels = make(map[string]string)
- newPod.Labels["porter/ephemeral-pod"] = "true"
- if len(args) > 1 {
- cmdArgs = args[1:]
- }
- newPod.Spec.Containers[0].Command = []string{cmdRoot}
- newPod.Spec.Containers[0].Args = cmdArgs
- newPod.Spec.Containers[0].TTY = true
- newPod.Spec.Containers[0].Stdin = true
- newPod.Spec.Containers[0].StdinOnce = true
- newPod.Spec.NodeName = ""
- // remove health checks and probes
- newPod.Spec.Containers[0].LivenessProbe = nil
- newPod.Spec.Containers[0].ReadinessProbe = nil
- newPod.Spec.Containers[0].StartupProbe = nil
- // create the pod and return it
- return config.Clientset.CoreV1().Pods(existing.ObjectMeta.Namespace).Create(
- context.Background(),
- newPod,
- metav1.CreateOptions{},
- )
- }
|