检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
Public services, such as Elastic Cloud Server (ECS), Elastic Volume Service (EVS), Object Storage Service (OBS), Virtual Private Cloud (VPC), Elastic IP (EIP), and Image Management Service (IMS), are shared within the same region.
To make the change take effect immediately, restart the ECS or log in to the ECS to cause the DHCP lease to automatically renew.
ECS You can renew a yearly/monthly node on the console at any time before it is automatically deleted. Automatically Renewing a CCE Resource Cluster You can enable auto-renewal to automatically renew a cluster before it expires.
AOM ECS ReadOnlyAccess AOM obtains system metrics and logs using UniAgents and ICAgents installed on ECSs. AOM LTS FullAccess AOM obtains logs from LTS. AOM CCI FullAccess AOM synchronizes container metrics from CCI.
Similarly, to enable an ECS to access the IP address of a pod in a cluster that is in the same VPC as the ECS, the ECS CIDR block must be added to this parameter.
Cluster management (IAM) permissions: apply to cloud services and used to manage CCE clusters and peripheral resources (such as VPC, ELB, and ECS).
Cluster management (IAM) permissions: apply to cloud services and used to manage CCE clusters and peripheral resources (such as VPC, ELB, and ECS).
For example, if a cluster using the VPC network model needs to access an ECS in a different VPC, you must allow the VPC CIDR block where the cluster is located and its container CIDR block to pass through the ECS security group.
Table 1 Resource and cost planning Resource Description Quantity Estimated Fee ECS Pay-per-use recommended VM type: general computing-plus Node flavor: 4 vCPUs | 8 GiB OS: Ubuntu 22.04 System disk: 40 GiB | General purpose SSD EIP specification: billed by bandwidth, 5 Mbit/s 1 USD0.3123
Node management ECS If the permission assigned to an IAM user is CCE Administrator, creating or deleting a node requires the ECS FullAccess or ECS Administrator policy and the VPC Administrator policy.
If yearly/monthly ECS nodes are managed in a cluster, you are not allowed to renew them on the CCE console. Instead, renew the ECSs on the ECS console. CCE underlying resources such as ECS nodes are limited by quota and their inventory.
Allowed adding a taint to a spot ECS before its release for the node to evict pods. Synchronized time zones used by the add-on and the node.
ECS (VM) Table 2 ECS (VM) OSs OS Cluster Version CCE Standard Cluster CCE Turbo Cluster Latest Kernel VPC Network Tunnel Network Cloud Native Network 2.0 Huawei Cloud EulerOS 2.0 v1.32 √ √ √ 5.10.0-182.0.0.95.r2673_211.hce2.x86_64 v1.31 √ √ √ 5.10.0-182.0.0.95.r2673_211.hce2.x86_64
During the acceptance of an ECS, do not perform any operation on the ECS through the ECS console. Notes and Constraints BMSs and ECSs, as well as DeHs can be managed.
Run the following command on the ECS console: ping {ECS address} Take the cluster in vpc-ER-demo2 as an example. Log in to the er-demo2-04260 node and access the er-demo1-61379 node in the cluster in vpc-ER-demo1.
In the ECS list, locate the target ECS and click its name. On the page displayed, click the EIPs tab. In the EIP list, locate the row containing the target EIP, click Unbind, and then click Yes.
There is an ECS whose IP address is 192.168.10.25 in the VPC (outside the cluster). The security group rules of the ECS only allow access from the cluster CIDR block.
AOM ECS ReadOnlyAccess AOM obtains system metrics and logs from the UniAgent and ICAgent installed on an ECS. AOM LTS FullAccess AOM obtains logs from LTS. AOM CCI FullAccess AOM synchronizes container metrics from CCI.
If an ECS that is not in a cluster in the same VPC needs to access the cluster, Secure Network Address Translation (SNAT) is performed. The pod source address is the node IP address instead of the pod IP address.
Key Capabilities Diverse cost types: Both the management costs of CCE clusters and the costs of ECS and EVS resources associated with each CCE cluster are analyzed and displayed.