Files
polaris/pkg/validator/container.go
2018-12-18 12:16:47 -08:00

106 lines
2.7 KiB
Go

// Copyright 2018 ReactiveOps
//
// Licensed under the Apache License, Version 2.0 (the "License");
// you may not use this file except in compliance with the License.
// You may obtain a copy of the License at
//
// http://www.apache.org/licenses/LICENSE-2.0
//
// Unless required by applicable law or agreed to in writing, software
// distributed under the License is distributed on an "AS IS" BASIS,
// WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
// See the License for the specific language governing permissions and
// limitations under the License.
package validator
import (
"fmt"
"strings"
conf "github.com/reactiveops/fairwinds/pkg/config"
corev1 "k8s.io/api/core/v1"
"k8s.io/apimachinery/pkg/api/resource"
)
type containerResults struct {
Name string
Reason string
}
func validateContainer(conf conf.Configuration, container corev1.Container) containerResults {
var sb strings.Builder
results := containerResults{
Name: container.Name,
}
sb.WriteString(resources(conf.Resources, container))
sb.WriteString(probes(container))
sb.WriteString(tag(container))
results.Reason = sb.String()
return results
}
func resources(conf conf.ResourceListRange, c corev1.Container) string {
var sb strings.Builder
confCPUmin, err := resource.ParseQuantity(conf["cpu"].Min)
if err != nil {
log.Error(err, "cpu min parse quan")
}
// CPUmax, err := resource.ParseQuantity(conf["cpu"].Max)
// if err != nil {
// log.Error(err, "cpu max parse quan")
// }
ctrRequests := c.Resources.Requests.Cpu().MilliValue()
configMin := confCPUmin.MilliValue()
if ctrRequests < configMin {
s := fmt.Sprintf("- CPU requests are too low. Expected greater than: %d, Actual: %d.\n", configMin, ctrRequests)
sb.WriteString(s)
}
if c.Resources.Requests.Memory().IsZero() {
sb.WriteString("- Memory requests are not set.\n")
}
if c.Resources.Limits.Cpu().IsZero() {
sb.WriteString("- CPU limits are not set.\n")
}
if c.Resources.Limits.Memory().IsZero() {
sb.WriteString("- Memory limits are not set.\n")
}
return sb.String()
}
func probes(c corev1.Container) string {
var sb strings.Builder
if c.ReadinessProbe == nil {
sb.WriteString("- Readiness Probe is not set.\n")
}
if c.LivenessProbe == nil {
sb.WriteString("- Liveness Probe is not set.\n")
}
return sb.String()
}
func tag(c corev1.Container) string {
var sb strings.Builder
img := strings.Split(c.Image, ":")
if len(img) == 1 || img[1] == "latest" {
sb.WriteString("- Image tag is latest.\n")
}
return sb.String()
}
func hostPort(c corev1.Container) string {
var sb strings.Builder
for _, port := range c.Ports {
if port.HostPort != 0 {
sb.WriteString("- Host Port set.\n")
}
}
return sb.String()
}