๐Ÿ“‚
Amazon EKS
  • Amazon EKS
  • ์›Œํฌ์ŠคํŽ˜์ด์Šค ์ƒ์„ฑํ•˜๊ธฐ
    • Cloud9 IDE ํ™˜๊ฒฝ ๊ตฌ์„ฑ
    • IAM ์—ญํ•  ์ƒ์„ฑ
    • SSH & CMK Key ์ƒ์„ฑํ•˜๊ธฐ
  • EKS ํด๋Ÿฌ์Šคํ„ฐ ๊ตฌ์ถ•
    • EKS ํด๋Ÿฌ์Šคํ„ฐ ๋งŒ๋“ค๊ธฐ
  • ์ฟ ๋ฒ„๋„คํ‹ฐ์Šค ๋Œ€์‹œ๋ณด๋“œ ๋ฐฐํฌ
    • Kubernetes ๊ณต์‹ ๋Œ€์‹œ๋ณด๋“œ ๋ฐฐํฌ
  • ๋งˆ์ดํฌ๋กœ์„œ๋น„์Šค ๋ฐฐํฌ
    • ์˜ˆ์ œ ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜ ๋ฐฐํฌ
    • ์„œ๋น„์Šค ์Šค์ผ€์ผ(Scaling)
    • ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜ ์ •๋ฆฌํ•˜๊ธฐ
  • ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜ ๋ฐฐํฌ - Helm
    • HELM ์„ค์น˜
    • Helm์œผ๋กœ Nginx ๋ฐฐํฌ
    • Helm์„ ์‚ฌ์šฉํ•˜์—ฌ ๋งˆ์ดํฌ๋กœ์„œ๋น„์Šค ๋ฐฐํฌ
    • ์ •๋ฆฌํ•˜๊ธฐ
  • ๋ฆฌ์†Œ์Šค ๊ด€๋ฆฌ - POD ๋ฐฐ์น˜
    • NodeSelector
    • Affinity and Anti-affinity
    • ๋” ์‹ค์šฉ์ ์ธ ์‚ฌ์šฉ ์‚ฌ๋ก€
    • ์ •๋ฆฌํ•˜๊ธฐ
  • ๋ฆฌ์†Œ์Šค ๊ด€๋ฆฌ - Health Checks
    • Liveness ํ”„๋กœ๋ธŒ ๊ตฌ์„ฑ
    • Readiness ํ”„๋กœ๋ธŒ ๊ตฌ์„ฑ
    • ์ •๋ฆฌํ•˜๊ธฐ
  • ๋ฆฌ์†Œ์Šค ๊ด€๋ฆฌ - AutoScaling
    • HPA ๊ตฌ์„ฑํ•˜๊ธฐ
    • CA ๊ตฌ์„ฑํ•˜๊ธฐ
    • ์ •๋ฆฌํ•˜๊ธฐ
  • ๋„คํŠธ์›Œํ‚น - ์„œ๋น„์Šค ๋…ธ์ถœ
    • ์„œ๋น„์Šค์™€ ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜ ์—ฐ๊ฒฐ
    • ์„œ๋น„์Šค์— ์ ‘๊ทผํ•˜๊ธฐ
    • ์„œ๋น„์Šค ๋…ธ์ถœ
    • Ingress
    • Ingress Controller
    • ์ •๋ฆฌํ•˜๊ธฐ
  • ๋„คํŠธ์›Œํฌ - Calico ์ •์ฑ…
    • Calico ์„ค์น˜ํ•˜๊ธฐ
    • Stars Policy Demo
    • ์ •๋ฆฌํ•˜๊ธฐ
  • Updating ๊ถŒํ•œ์„ค์ • - RBAC
    • ํ…Œ์ŠคํŠธ POD ์„ค์น˜
    • ์‚ฌ์šฉ์ž ์ƒ์„ฑ ๋ฐ ๋งตํ•‘
    • ์—ญํ• ๊ณผ ๋ฐ”์ธ๋”ฉ
    • ์ •๋ฆฌํ•˜๊ธฐ
  • Updating ๊ถŒํ•œ์„ค์ • - IAM ๊ทธ๋ฃน
    • IAM Role, Group & User ์ƒ์„ฑํ•˜๊ธฐ
    • RBAC ์„ค์ •ํ•˜๊ธฐ
    • EKS ์—‘์„ธ์Šค ํ…Œ์ŠคํŠธ
    • ์ •๋ฆฌํ•˜๊ธฐ
  • Updating ๊ถŒํ•œ์„ค์ • - Service account
    • OIDC ์ž๊ฒฉ ์ฆ๋ช… ๊ณต๊ธ‰์ž ์ƒ์„ฑํ•˜๊ธฐ
    • IAM ์—ญํ•  ์ƒ์„ฑ ๋ฐ ์ง€์ •
    • ์ƒ˜ํ”Œ POD ๋ฐฐํฌ
    • ์ •๋ฆฌํ•˜๊ธฐ
  • Updating - ๋„คํŠธ์›Œํฌ - POD Security Group
    • SG ์ƒ์„ฑํ•˜๊ธฐ
    • RDS ์ƒ์„ฑํ•˜๊ธฐ
    • CNI ๊ตฌ์„ฑํ•˜๊ธฐ
    • SG ์ •์ฑ…
    • Pod ๋ฐฐํฌํ•˜๊ธฐ
    • ์ •๋ฆฌํ•˜๊ธฐ
  • Updating - ๋ชจ๋‹ˆํ„ฐ๋ง - Prometheus and Grafana
    • Prometheus ๋ฐฐํฌํ•˜๊ธฐ
    • Grafana ๋ฐฐํฌํ•˜๊ธฐ
    • ์ •๋ฆฌํ•˜๊ธฐ(Optional)
  • Updating ๋ชจ๋‹ˆํ„ฐ๋ง - X-Ray
    • X-Ray DaemonSet ๋ฐฐํฌํ•˜๊ธฐ
    • ์ƒ˜ํ”Œ ๋งˆ์ดํฌ๋กœ์„œ๋น„์Šค ๋ฐฐํฌ
    • X-Ray console ํ™•์ธ
    • ์ •๋ฆฌํ•˜๊ธฐ(Optional)
  • Updating ๋ชจ๋‹ˆํ„ฐ๋ง - Container Insights
    • ์‚ฌ์ „ ์ค€๋น„
    • Container Insights ๊ตฌ์„ฑํ•˜๊ธฐ
    • ๋ถ€ํ•˜ ํ…Œ์ŠคํŠธ
    • Container Insights ํ™•์ธํ•˜๊ธฐ
    • ์ •๋ฆฌํ•˜๊ธฐ(Optional)
  • Updating CD - Gitops with Flux
    • ์‚ฌ์ „ ์ค€๋น„
    • Codepipeline
    • EKS์— ๋ฐฐํฌ
    • ์ •๋ฆฌํ•˜๊ธฐ
  • Updating Argo Rollouts
  • Updating Service Mesh - AWS App Mesh
    • Fargate ๋ฐ OBSERVABILITY ๊ตฌ์„ฑ
    • Product Catalog App ๋ฐฐํฌ
    • APP MESH ์„ค์น˜
    • Porting to APP MESH
    • Virtual Gateway ๊ตฌ์„ฑ
    • Canary
    • Observability
  • Updating ๋ฒ„์ „ ์—…๊ทธ๋ ˆ์ด๋“œ - EKS Cluster
    • Upgrade EKS control Plane
    • Upgrade EKS CORE ADD-ONs
    • Upgrade Managed Node Group
Powered by GitBook
On this page
  • 1. Container Insights
  • 2. Cloudwatch logs
  • 3. Prometheus Metrics
  • 4. X-ray Trace

Was this helpful?

  1. Updating Service Mesh - AWS App Mesh

Observability

PreviousCanaryNextUpdating ๋ฒ„์ „ ์—…๊ทธ๋ ˆ์ด๋“œ - EKS Cluster

Last updated 3 years ago

Was this helpful?

์ด ์žฅ์—์„œ๋Š” AWS ํ™˜๊ฒฝ์—์„œ ๋ฉ”ํŠธ๋ฆญ ๋ชจ๋‹ˆํ„ฐ๋ง, ๋กœ๊ทธ ์ˆ˜์ง‘, ๊ฒฝ๊ณ  ํŠธ๋ฆฌ๊ฑฐ ๋ฐ ๋ถ„์‚ฐ ์„œ๋น„์Šค ์ถ”์  ๊ธฐ๋Šฅ์„ ๊ทน๋Œ€ํ™”ํ•˜๋Š” ๋ฐ ํ™œ์šฉํ•  ์ˆ˜ ์žˆ๋Š” CloudWatch Container Insights, Cloudwatch Logs ๋ฐ Prometeus์™€ ๊ฐ™์€ ์ฃผ์š” ์šด์˜ ๋ฐ์ดํ„ฐ ๋ฐ ํˆด์— ๋Œ€ํ•ด ์‚ดํŽด๋ณด๊ฒ ์Šต๋‹ˆ๋‹ค.

Observability์—๋Š” ์• ํ”„๋ฆฌ์ผ€์ด์…˜์˜ ์ „๋ฐ˜์ ์ธ ์ƒํƒœ๋ฅผ ๋ชจ๋‹ˆํ„ฐ๋งํ•˜๊ธฐ ์œ„ํ•ด ๋‹ค์–‘ํ•œ ์‹ ํ˜ธ(์ธก์ •, ์ถ”์ , ๋กœ๊ทธ)๋ฅผ ์‚ฌ์šฉํ•˜๋Š” ๊ฒƒ์ด ํฌํ•จ๋ฉ๋‹ˆ๋‹ค. ๋˜ํ•œ ์ด ์‹ค์Šต์—์„œ๋Š” ๋‹ค์Œ ๋ฐ์ดํ„ฐ์™€ ํˆด์„ ์‚ฌ์šฉํ•˜์—ฌ EKS์— ๊ตฌ์ถ•๋œ ์ œํ’ˆ ์นดํƒˆ๋กœ๊ทธ ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜์— ์—”๋“œ ํˆฌ ์—”๋“œ vissibility๋ฅผ ์ œ๊ณตํ•ฉ๋‹ˆ๋‹ค.

  • Container Insights

  • Cloudwatch Container logs

  • Prometheus App Mesh Metrics

  • Fargate Container logs

  • AWS X-Ray Tracing

1. Container Insights

CloudWatch Container Insights๋Š” Amazon EKS ๋ฉ”ํŠธ๋ฆญ ๋ฐ ๋กœ๊ทธ๋ฅผ ์ˆ˜์ง‘, ์ง‘๊ณ„ ๋ฐ ์š”์•ฝํ•˜๋Š” ์™„์ „ํžˆ ๊ด€๋ฆฌ๋˜๋Š” ์„œ๋น„์Šค์ž…๋‹ˆ๋‹ค. CloudWatch Container Insights ๋Œ€์‹œ๋ณด๋“œ๋Š” ๋‹ค์Œ ์ •๋ณด์— ๋Œ€ํ•œ ์•ก์„ธ์Šค๋ฅผ ์ œ๊ณตํ•ฉ๋‹ˆ๋‹ค.

  • CPU ๋ฐ ๋ฉ”๋ชจ๋ฆฌ ์‚ฌ์šฉ๋ฅ 

  • ์ž‘์—… ๋ฐ ์„œ๋น„์Šค ์ˆ˜

  • ์ฝ๊ธฐ/์“ฐ๊ธฐ ์ €์žฅ์†Œ

  • ๋„คํŠธ์›Œํฌ Rx/Tx

  • ํด๋Ÿฌ์Šคํ„ฐ, ์„œ๋น„์Šค ๋ฐ ์ž‘์—…์— ๋Œ€ํ•œ ์ปจํ…Œ์ด๋„ˆ ์ธ์Šคํ„ด์Šค ์ˆ˜

์ฝ˜์†”์—์„œ Cloudwatch -> Container Insights -> ์„ฑ๋Šฅ ๋ชจ๋‹ˆํ„ฐ๋ง์œผ๋กœ ์ด๋™ํ•˜์—ฌ EKS ํด๋Ÿฌ์Šคํ„ฐ Insight์„ ๋ณผ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

2. Cloudwatch logs

๋กœ๊ทธ๋Š” EKS ๋…ธ๋“œ์—์„œ ์‹คํ–‰ ์ค‘์ธ Fluentd ๋ฐ๋ชฌ์…‹๊ณผ Fargate์—์„œ ๋กœ๊ทธ๋ฅผ ์ˆ˜์ง‘ํ•˜์—ฌ Cloudwatch๋กœ ์ „์†กํ•˜๋Š” Fluentbit ๋ฐ๋ชฌ์…‹์— ์˜ํ•ด ์ˆ˜์ง‘๋ฉ๋‹ˆ๋‹ค.

Container Insights๋ฅผ ์„ค์ •ํ•  ๋•Œ ๊ธฐ๋ณธ์ ์œผ๋กœ ๋‹ค์Œ๊ณผ ๊ฐ™์€ CloudWatch ๋กœ๊ทธ ๊ทธ๋ฃน์ด ์ƒ์„ฑ๋ฉ๋‹ˆ๋‹ค.

  • /aws/containerinsights/cluster-name/application

  • /aws/containerinsights/cluster-name/dataplane

  • /aws/containerinsights/cluster-name/hostNodegroup Container Logs

  • /aws/containerinsights/cluster-name/performance

  • /aws/eks/eksworkshop-eksctl/cluster

  • fluent-bit-cloudwatch

์ฝ˜์†” Cloudwatch -> LogGroups๋กœ ์ด๋™ํ•ฉ๋‹ˆ๋‹ค. ์•„๋ž˜ ๋กœ๊ทธ ๊ทธ๋ฃน์ด ํ‘œ์‹œ๋ฉ๋‹ˆ๋‹ค.

Nodegroup Container Logs

application LogGroup์„ ํด๋ฆญํ•˜๊ณ  Search All ์„ ํด๋ฆญํ•ฉ๋‹ˆ๋‹ค.

Search Box์— Catalog Detail Version ์„ ์ž‘์„ฑํ•˜์—ฌ proddetail backend service ๋กœ๊ทธ๋ฅผ ํ™•์ธ ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

Fargate Container Logs

์ฝ˜์†”์—์„œ Cloudwatch -> LogGroups -> Click on fluent-bit-cloudwatch LogGroup -> Click on Search All ํ›„์— Search box์— Get Request succeeded ๋ฅผ ์ž‘์„ฑํ•˜์—ฌ Fargate container log๋ฅผ ํ™•์ธํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

Control Plane Logging

์ฝ˜์†”์—์„œ Cloudwatch -> LogGroups ์—์„œ /aws/eks/eksworkshop-eksctl/cluster ๋กœ๊ทธ ๊ทธ๋ฃน์œผ๋กœ Control Plane ๋กœ๊ทธ๋ฅผ ํ™•์ธํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

3. Prometheus Metrics

CloudWatch Container Insights for Prometeus ๋ชจ๋‹ˆํ„ฐ๋ง์€ ์ปจํ…Œ์ด๋„ˆํ˜• ์‹œ์Šคํ…œ ๋ฐ ์›Œํฌ๋กœ๋“œ์—์„œ Prometeus ๋ฉ”ํŠธ๋ฆญ์„ ์ž๋™์œผ๋กœ ๊ฒ€์ƒ‰ํ•ฉ๋‹ˆ๋‹ค.

Amazon EKS ๋ฐ Kubernetes ํด๋Ÿฌ์Šคํ„ฐ์˜ ๋กœ๊ทธ ์ด๋ฒคํŠธ๋Š” Amazon CloudWatch ๋กœ๊ทธ์˜ /aws/containerinsights/cluster_name/prometheus LogGroup์— ์ €์žฅ๋ฉ๋‹ˆ๋‹ค.

์ฝ˜์†”์—์„œ Cloudwatch -> LogGroups๋กœ ์ด๋™ํ•ฉ๋‹ˆ๋‹ค. /aws/containerinsights/eksworkshop-eksctl/prometheus LogGroup์„ ํ™•์ธํ•˜๊ณ  ์ด ํ•ญ๋ชฉ์„ ์„ ํƒํ•˜๋ฉด ์—ฌ๊ธฐ์— ๊ธฐ๋ก๋œ ๋ชจ๋“  ์ปจํ…Œ์ด๋„ˆ์— ๋Œ€ํ•œ ๋ฉ”ํŠธ๋ฆญ์„ ๋ณผ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

4. X-ray Trace

AWS X-ray๋Š” DevOps ๊ธฐ์ˆ ์ž๊ณผ ๊ฐœ๋ฐœ์ž๋“ค์ด ๋น ๋ฅด๊ฒŒ ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜์˜ ๊ด€๊ณ„๊ณผ ์„ฑ๋Šฅ์„ ํŒŒ์•…ํ•  ์ˆ˜ ์žˆ๋„๋ก ๋„์›€์„ ์ค๋‹ˆ๋‹ค. AWS App Mesh์™€ ๊ฒฐํ•ฉ๋˜๋ฉด ๊ฐ•๋ ฅํ•œ ๋ถ„์„ ๋„๊ตฌ๋ฅผ ๋งŒ๋“ค์–ด ๋ƒ…๋‹ˆ๋‹ค.

์ฝ˜์†”์— ๋กœ๊ทธ์ธํ•˜๊ณ  X-Ray๋กœ ์ด๋™ํ•ฉ๋‹ˆ๋‹ค. AWS X-Ray Service map์€ ํด๋ผ์ด์–ธํŠธ์—์„œ ๋‹ค์šด์ŠคํŠธ๋ฆผ ์„œ๋น„์Šค๋กœ์˜ ํ˜ธ์ถœ์— ๋Œ€ํ•œ ์ •๋ณด๋ฅผ ํ‘œ์‹œํ•ฉ๋‹ˆ๋‹ค. ์„œ๋น„์Šค ๊ทธ๋ž˜ํ”„ ํ™”์‚ดํ‘œ๋Š” ์„œ๋น„์Šค ๊ฐ„์˜ ๊ด€๊ณ„๋ฅผ ์ดํ•ดํ•˜๋Š” ๋ฐ ๋„์›€์ด ๋˜๋Š” ์š”์ฒญ ์›Œํฌํ”Œ๋กœ์šฐ๋ฅผ ํ‘œ์‹œํ•ฉ๋‹ˆ๋‹ค. ์•„๋ž˜ ๊ทธ๋ž˜ํ”„๋Š” ๋กœ๋“œ ๋ฐธ๋Ÿฐ์„œ ์—”๋“œํฌ์ธํŠธ์—์„œ ์ œํ’ˆ ์นดํƒˆ๋กœ๊ทธ ์• ํ”Œ๋ฆฌ์ผ€์ด์…˜์— ์•ก์„ธ์Šคํ•  ๋•Œ์˜ ์ถ”์ ์„ ๋ณด์—ฌ์ค๋‹ˆ๋‹ค.

CloudWatch ์—์ด์ „ํŠธ๋Š” Prometeus ์„ค๋ช…์„œ์˜ ์— ์„ค๋ช…๋œ ํ‘œ์ค€ Prometeus ์Šคํฌ๋žฉ ๊ตฌ์„ฑ์„ ์ง€์›ํ•ฉ๋‹ˆ๋‹ค. ์—์„œ ์„ค์ •ํ•œ CloudWatch ์—์ด์ „ํŠธ YAML์—๋Š” ์Šคํฌ๋žฉ๋œ ์ž‘์—…์ด ๊ตฌ์„ฑ๋˜์–ด ๋ฉ”ํŠธ๋ฆญ์ด CloudWatch๋กœ ์ „์†ก๋ฉ๋‹ˆ๋‹ค.

์• ํ”Œ๋ฆฌ์ผ€์ด์…˜ ์ฝ”๋“œ๋ฅผ ๊ณ„์ธกํ•˜๋ ค๋ฉด .๋ฅผ ์‚ฌ์šฉํ•ฉ๋‹ˆ๋‹ค. SDK๋Š” ์ˆ˜์‹  ๋ฐ ์†ก์‹  ์š”์ฒญ์— ๋Œ€ํ•œ ๋ฐ์ดํ„ฐ๋ฅผ ๊ธฐ๋กํ•˜๊ณ  ์ด๋ฅผ X-Ray ๋ฐ๋ชฌ์œผ๋กœ ์ „์†กํ•˜์—ฌ ๋ฐ์ดํ„ฐ๋ฅผ ์ผ๊ด„์ ์œผ๋กœ X-Ray๋กœ ์ค‘๊ณ„ํ•ฉ๋‹ˆ๋‹ค. ์ œํ’ˆ ์นดํƒˆ๋กœ๊ทธ ๋ฐ๋ชจ ์‘์šฉ ํ”„๋กœ๊ทธ๋žจ์€ ์•„๋ž˜ ์ฝ”๋“œ์˜ ์˜ˆ๋ฅผ ์ฐธ์กฐํ•˜์‹ญ์‹œ์˜ค.

X-Ray SDK
Frontend
Product Catalog
Catalog Detail
scrape_config
์ด์ „ ์žฅ