OpenShift 3.11 on Azure Government

By Jamie Duncan 07 May 2019
OpenShift 3.11 on Azure Government

Note: This post goes hand in hand with the Red Hat Summit breakout session I’m doing on May 9 at 1 pm.

The 2019 edition of Red Hat Summit is all about OpenShift. OpenShift 4.0, Operators, new container-based storage. All sorts of massive improvements for what I think is the best option in the industry to manage your applications for the next 5–7 years.

Our session (with Chris Green from the Microsoft Azure Government team) is about how to successfully deploy a production-grade instance of OpenShift in the Azure Government regions.

To accomplish this quickly we used the self-managed OpenShift template from the Azure Gov marketplace. It defaults to an HA control plane, HA infrastructure nodes, N application nodes, and adding logging, metrics, container-based storage, and even the Azure cloud provider are essentially point and click. The entire process takes approximately 90 minutes. At a high level, it looks like this:

OpenShift on Azure Gov architecture overview

OpenShift on Azure Gov architecture overview

There are a couple of caveats:

  • After deploying the initial 3.11 cluster using the Azure ARM template, additional cluster lifecycle events are managed using the OpenShift 3.x standard of openshift-ansible.

  • ARM templates have a built-in 90 minute timeout. If you add log aggregation and metrics into your OpenShift cluster, you can creep past this time limit. I did. The template said I errored, but the only error was a timeout condition in the Azure API. I logged into the bastion host doing the deployment and the logs looked complete. Turns out the cluster finished just after the 90 minute mark and was fully functional. The Azure team who maintains this template is aware of the issue and working on it.

To walk through the entire process, including some point and click fun to double-check the entire cluster was operational, I made a youTube video for your enjoyment.

If you’re at Red Hat Summit this week, and this topic is in your brain somewhere, please come by the session, or find me somewhere in the convention center and let’s talk about it!

comments powered by Disqus