Fedora 42
Sponsored Link

Kubernetes : Dynamic Volume Provisioning (NFS)2025/04/25

 

To use Dynamic Volume Provisioning feature when using Persistent Storage, it's possible to create PV (Persistent Volume) dynamically without creating PV manually by Cluster Administrator when created PVC (Persistent Volume Claim) by users.

This example is based on the environment like follows.

For example, run NFS Server on Control Plane Node and configure dynamic volume provisioning with NFS provisioner.

-----------+---------------------------+--------------------------+------------
           |                           |                          |
       eth0|10.0.0.30              eth0|10.0.0.51             eth0|10.0.0.52
+----------+-----------+   +-----------+----------+   +-----------+----------+
|   [ dlp.srv.world ]  |   | [ node01.srv.world ] |   | [ node02.srv.world ] |
|     Control Plane    |   |      Worker Node     |   |      Worker Node     |
+----------------------+   +----------------------+   +----------------------+

[1]

Run NFS Server in your local network, refer to here.
On this example, configure [/home/nfsshare] directory as NFS share.

[2]

Worker Nodes need to be able to mount NFS share on NFS server.

[3] Install NFS Client Provisioner.
[root@dlp ~]#
dnf -y install helm
[root@dlp ~]#
helm repo add nfs-subdir-external-provisioner https://kubernetes-sigs.github.io/nfs-subdir-external-provisioner/
# nfs.server = (NFS server's hostname or IP address)
# nfs.path = (NFS share Path)

[root@dlp ~]#
helm install nfs-client -n kube-system --set nfs.server=10.0.0.35 --set nfs.path=/home/nfsshare nfs-subdir-external-provisioner/nfs-subdir-external-provisioner
NAME: nfs-client
LAST DEPLOYED: Fri Apr 25 19:16:08 2025
NAMESPACE: kube-system
STATUS: deployed
REVISION: 1
TEST SUITE: None

[root@dlp ~]#
kubectl get pods -n kube-system

NAME                                                         READY   STATUS    RESTARTS       AGE
.....
.....
nfs-client-nfs-subdir-external-provisioner-864f5ff99b-nfw8h   1/1     Running   0          23s
[4] This is an example to use dynamic volume provisioning by a Pod.
[root@dlp ~]#
kubectl get pv

No resources found in default namespace.
[root@dlp ~]#
kubectl get pvc

No resources found in default namespace.
[root@dlp ~]#
kubectl get storageclass

NAME         PROVISIONER                                                RECLAIMPOLICY   VOLUMEBINDINGMODE   ALLOWVOLUMEEXPANSION   AGE
nfs-client   cluster.local/nfs-client-nfs-subdir-external-provisioner   Delete          Immediate           true                   46s

# create PVC

[root@dlp ~]#
vi my-pvc.yml
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
  name: my-provisioner
spec:
  accessModes:
    - ReadWriteOnce
  resources:
    requests:
      # volume size
      storage: 5Gi
  # specify StorageClass name
  storageClassName: nfs-client

[root@dlp ~]#
kubectl apply -f my-pvc.yml

persistentvolumeclaim/my-provisioner created
[root@dlp ~]#
kubectl get pvc

NAME             STATUS   VOLUME                                     CAPACITY   ACCESS MODES   STORAGECLASS   VOLUMEATTRIBUTESCLASS   AGE
my-provisioner   Bound    pvc-c578c373-745c-43d2-9ab1-fca02ac957ff   5Gi        RWO            nfs-client     <unset>                 5s

# PV is generated dynamically

[root@dlp ~]#
kubectl get pv

NAME                                       CAPACITY   ACCESS MODES   RECLAIM POLICY   STATUS   CLAIM                    STORAGECLASS   VOLUMEATTRIBUTESCLASS   REASON   AGE
pvc-c578c373-745c-43d2-9ab1-fca02ac957ff   5Gi        RWO            Delete           Bound    default/my-provisioner   nfs-client     <unset>                          26s

[root@dlp ~]#
vi my-pod.yml
apiVersion: v1
kind: Pod
metadata:
  name: my-mginx
spec:
  containers:
    - name: my-mginx
      image: nginx
      ports:
        - containerPort: 80
          name: web
      volumeMounts:
      - mountPath: /usr/share/nginx/html
        name: nginx-pvc
  volumes:
    - name: nginx-pvc
      persistentVolumeClaim:
        # PVC name you created
        claimName: my-provisioner

[root@dlp ~]#
kubectl apply -f my-pod.yml

pod/my-mginx created
[root@dlp ~]#
kubectl get pod my-mginx -o wide

NAME       READY   STATUS    RESTARTS   AGE   IP               NODE               NOMINATED NODE   READINESS GATES
my-mginx   1/1     Running   0          8s    192.168.40.201   node01.srv.world   <none>           <none>

[root@dlp ~]#
kubectl exec my-mginx -- df /usr/share/nginx/html

Filesystem                                                                               1K-blocks  Used Available Use% Mounted on
10.0.0.35:/home/nfsshare/default-my-provisioner-pvc-c578c373-745c-43d2-9ab1-fca02ac957ff 164028416     0 155623424   0% /usr/share/nginx/html

# verify accessing to create test index file

[root@dlp ~]#
echo "Nginx Index" > index.html

[root@dlp ~]#
kubectl cp index.html my-mginx:/usr/share/nginx/html/index.html

[root@dlp ~]#
curl 192.168.40.201

Nginx Index
# when removing, to remove PVC, then PV is also removed dynamically

[root@dlp ~]#
kubectl delete pod my-mginx

pod "my-mginx" deleted
[root@dlp ~]#
kubectl delete pvc my-provisioner

persistentvolumeclaim "my-provisioner" deleted
[root@dlp ~]#
kubectl get pv

No resources found in default namespace.
[5] To use StatefulSet, it's possible to specify [volumeClaimTemplates].
[root@dlp ~]#
kubectl get pv

No resources found in default namespace.
[root@dlp ~]#
kubectl get pvc

No resources found in default namespace.
[root@dlp ~]#
kubectl get storageclass

NAME         PROVISIONER                                                RECLAIMPOLICY   VOLUMEBINDINGMODE   ALLOWVOLUMEEXPANSION   AGE
nfs-client   cluster.local/nfs-client-nfs-subdir-external-provisioner   Delete          Immediate           true                   9m42s

[root@dlp ~]#
vi statefulset.yml
apiVersion: apps/v1
kind: StatefulSet
metadata:
  name: my-mginx
spec:
  serviceName: my-mginx
  replicas: 1
  selector:
    matchLabels:
      app: my-mginx
  template:
    metadata:
      labels:
        app: my-mginx
    spec:
      containers:
      - name: my-mginx
        image: nginx
        volumeMounts:
        - name: data
          mountPath: /usr/share/nginx/html
  volumeClaimTemplates:
  - metadata:
      name: data
    spec:
      # specify StorageClass name
      storageClassName: nfs-client
      accessModes: [ "ReadWriteOnce" ]
      resources:
        requests:
          storage: 5Gi

[root@dlp ~]#
kubectl apply -f statefulset.yml

statefulset.apps/my-mginx created
[root@dlp ~]#
kubectl get statefulset

NAME       READY   AGE
my-mginx   1/1     13s

[root@dlp ~]#
kubectl get pods -o wide

NAME         READY   STATUS    RESTARTS   AGE   IP                NODE               NOMINATED NODE   READINESS GATES
my-mginx-0   1/1     Running   0          11s   192.168.241.135   node02.srv.world   <none>           <none>

[root@dlp ~]#
kubectl get pvc

NAME              STATUS   VOLUME                                     CAPACITY   ACCESS MODES   STORAGECLASS   VOLUMEATTRIBUTESCLASS   AGE
data-my-mginx-0   Bound    pvc-361a9be1-6c90-4962-b418-54ed47e6cdb1   5Gi        RWO            nfs-client     <unset>                 45s

[root@dlp ~]#
kubectl get pv

NAME                                       CAPACITY   ACCESS MODES   RECLAIM POLICY   STATUS   CLAIM                     STORAGECLASS   VOLUMEATTRIBUTESCLASS   REASON   AGE
pvc-361a9be1-6c90-4962-b418-54ed47e6cdb1   5Gi        RWO            Delete           Bound    default/data-my-mginx-0   nfs-client     <unset>                          64s
Matched Content