forked from segmentio/kafka-go
-
Notifications
You must be signed in to change notification settings - Fork 1
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
[DP-1901] - Convert Wurstmeister Kafka image to Bitnami for Kafka-go (s…
…egmentio#1255) * [DP-1901] - Convert Wurstmeister Kafka image to Bitnami for Kafka-go * [DP-1901] - removing duplicate env in config * [DP-1901] - adding KAFKA_VERSION * [DP-1901] - FIXING KAFKA_VERSION * [DP-1901] - minor fixtures to KAFKA_VERSION * [DP-1901] - minor fixtures in lint * [DP-1901] - fixing KAFKA_VERSION to 0.10.2.1 * [DP-1901] - minor fixtures to KAFKA_VERSION * [DP-1901] - fixing zookeeper connect * [DP-1901] - fixing KAFKA_VERSION to 0.10.2.1 * [DP-1901] - fixing kafka-011 * [DP-1901] - fixing kafka-011 environment * [DP-1901] - fixing zookeeper kafka-011 * [DP-1901] - fixing KAFKA_VERSION kafka-011 * [DP-1901] - fixing KAFKA_VERSION kafka-011 * [DP-1901] - fixing KAFKA_VERSION kafka-011 * [DP-1901] - Adding AUTHORIZER kafka-011 * [DP-1901] - reset kafka-011 * [DP-1901] - bitnami for kafka-011 * [DP-1901] - bitnami for kafka-011 zookeeper fixtures * [DP-1901] - fixtures to circleci and creating docker_compose_versions folder * [DP-1901] - zookeeper fix * [DP-1901] - fixtures to circleci. removed unsupported kafka * [DP-1901] - fixtures to circleci 2.3.1. fixing examples folder * [DP-1901] - examples docker-compose fix to bitnami * [DP-1901] - minor README.md fixtures * [DP-1901] - minor README.md fixtures * [DP-1901] - minor README.md fixtures * [DP-1901] - minor README.md fixtures * [DP-1901] - Grammatical fixtures in README.md * [DP-1901] - Adding support for v281 and v361 in circleci * [DP-1901] - touch README.md for circleci trigger * [DP-1901] - Creating v361docker and modify circleci * [DP-1901] - Creating v361 docker and modify circleci * [DP-1901] - touch README.md for circleci trigger * [DP-1901] - removing v361 from circleci
- Loading branch information
1 parent
2af3101
commit 1b64d17
Showing
15 changed files
with
625 additions
and
250 deletions.
There are no files selected for viewing
Large diffs are not rendered by default.
Oops, something went wrong.
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file was deleted.
Oops, something went wrong.
This file was deleted.
Oops, something went wrong.
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,34 +1,42 @@ | ||
version: "3" | ||
# See https://hub.docker.com/r/bitnami/kafka/tags for the complete list. | ||
version: '3' | ||
services: | ||
zookeeper: | ||
container_name: zookeeper | ||
hostname: zookeeper | ||
image: bitnami/zookeeper:latest | ||
ports: | ||
- 2181:2181 | ||
environment: | ||
ALLOW_ANONYMOUS_LOGIN: yes | ||
kafka: | ||
image: wurstmeister/kafka:2.12-2.3.1 | ||
container_name: kafka | ||
image: bitnami/kafka:2.3.1-ol-7-r61 | ||
restart: on-failure:3 | ||
links: | ||
- zookeeper | ||
- zookeeper | ||
ports: | ||
- 9092:9092 | ||
- 9093:9093 | ||
- 9092:9092 | ||
- 9093:9093 | ||
environment: | ||
KAFKA_VERSION: '2.3.1' | ||
KAFKA_BROKER_ID: '1' | ||
KAFKA_CREATE_TOPICS: 'test-writer-0:3:1,test-writer-1:3:1' | ||
KAFKA_DELETE_TOPIC_ENABLE: 'true' | ||
KAFKA_ADVERTISED_HOST_NAME: 'localhost' | ||
KAFKA_ADVERTISED_PORT: '9092' | ||
KAFKA_ZOOKEEPER_CONNECT: 'zookeeper:2181' | ||
KAFKA_AUTO_CREATE_TOPICS_ENABLE: 'true' | ||
KAFKA_MESSAGE_MAX_BYTES: '200000000' | ||
KAFKA_LISTENERS: 'PLAINTEXT://:9092,SASL_PLAINTEXT://:9093' | ||
KAFKA_ADVERTISED_LISTENERS: 'PLAINTEXT://localhost:9092,SASL_PLAINTEXT://localhost:9093' | ||
KAFKA_SASL_ENABLED_MECHANISMS: 'PLAIN,SCRAM-SHA-256,SCRAM-SHA-512' | ||
KAFKA_AUTHORIZER_CLASS_NAME: 'kafka.security.auth.SimpleAclAuthorizer' | ||
KAFKA_ALLOW_EVERYONE_IF_NO_ACL_FOUND: 'true' | ||
KAFKA_OPTS: "-Djava.security.auth.login.config=/opt/kafka/config/kafka_server_jaas.conf" | ||
CUSTOM_INIT_SCRIPT: |- | ||
echo -e 'KafkaServer {\norg.apache.kafka.common.security.scram.ScramLoginModule required\n username="adminscram"\n password="admin-secret";\n org.apache.kafka.common.security.plain.PlainLoginModule required\n username="adminplain"\n password="admin-secret"\n user_adminplain="admin-secret";\n };' > /opt/kafka/config/kafka_server_jaas.conf; | ||
/opt/kafka/bin/kafka-configs.sh --zookeeper zookeeper:2181 --alter --add-config 'SCRAM-SHA-256=[password=admin-secret-256],SCRAM-SHA-512=[password=admin-secret-512]' --entity-type users --entity-name adminscram | ||
zookeeper: | ||
image: wurstmeister/zookeeper | ||
ports: | ||
- 2181:2181 | ||
KAFKA_CFG_BROKER_ID: 1 | ||
KAFKA_CFG_DELETE_TOPIC_ENABLE: 'true' | ||
KAFKA_CFG_ADVERTISED_HOST_NAME: 'localhost' | ||
KAFKA_CFG_ADVERTISED_PORT: '9092' | ||
KAFKA_CFG_ZOOKEEPER_CONNECT: zookeeper:2181 | ||
KAFKA_CFG_AUTO_CREATE_TOPICS_ENABLE: 'true' | ||
KAFKA_CFG_MESSAGE_MAX_BYTES: '200000000' | ||
KAFKA_CFG_LISTENERS: 'PLAINTEXT://:9092,SASL_PLAINTEXT://:9093' | ||
KAFKA_CFG_ADVERTISED_LISTENERS: 'PLAINTEXT://localhost:9092,SASL_PLAINTEXT://localhost:9093' | ||
KAFKA_CFG_SASL_ENABLED_MECHANISMS: 'PLAIN,SCRAM-SHA-256,SCRAM-SHA-512' | ||
KAFKA_CFG_AUTHORIZER_CLASS_NAME: 'kafka.security.auth.SimpleAclAuthorizer' | ||
KAFKA_CFG_ALLOW_EVERYONE_IF_NO_ACL_FOUND: 'true' | ||
KAFKA_INTER_BROKER_USER: adminplain | ||
KAFKA_INTER_BROKER_PASSWORD: admin-secret | ||
KAFKA_BROKER_USER: adminplain | ||
KAFKA_BROKER_PASSWORD: admin-secret | ||
ALLOW_PLAINTEXT_LISTENER: yes | ||
entrypoint: | ||
- "/bin/bash" | ||
- "-c" | ||
- /opt/bitnami/kafka/bin/kafka-configs.sh --zookeeper zookeeper:2181 --alter --add-config "SCRAM-SHA-256=[password=admin-secret-256],SCRAM-SHA-512=[password=admin-secret-512]" --entity-type users --entity-name adminscram; exec /entrypoint.sh /run.sh |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,152 @@ | ||
# Bitnami Kafka | ||
|
||
This document outlines how to create a docker-compose file for a specific Bitnami Kafka version. | ||
|
||
|
||
## Steps to create docker-compose | ||
|
||
- Refer to [docker-hub Bitnami Kafka tags](https://hub.docker.com/r/bitnami/kafka/tags) and sort by NEWEST to locate the image preferred, for example: `2.7.0` | ||
- There is documentation in the (main branch)[https://github.com/bitnami/containers/blob/main/bitnami/kafka/README.md] for environment config setup information. Refer to the `Notable Changes` section. | ||
- Sometimes there is a need to understand how the set up is being done. To locate the appropriate Kafka release in the repo [bitnami/containers](https://github.com/bitnami/containers), go through the [kafka commit history](https://github.com/bitnami/containers/commits/main/bitnami/kafka). | ||
- Once a commit is located, Refer to README.md, Dockerfile, entrypoint and various init scripts to understand the environment variables to config server.properties mapping conventions. Alternatively, you can spin up the required Kafka image and refer the mapping inside the container. | ||
- Ensure you follow the environment variable conventions in your docker-compose. Without proper environment variables, the Kafka cluster cannot start or can start with undesired configs. For example, Since Kafka version 2.3, all server.properties docker-compose environment configs start with `KAFKA_CFG_<config_with_underscore>` | ||
- Older versions of Bitnami Kafka have different conventions and limited docker-compose environment variables exposed for configs needed in server.properties | ||
|
||
|
||
In kafka-go, for all the test cases to succeed, Kafka cluster should have following server.properties along with a relevant kafka_jaas.conf mentioned in the KAFKA_OPTS. Goal is to ensure that the docker-compose file generates below server.properties. | ||
|
||
|
||
server.properties | ||
``` | ||
advertised.host.name=localhost | ||
advertised.listeners=PLAINTEXT://localhost:9092,SASL_PLAINTEXT://localhost:9093 | ||
advertised.port=9092 | ||
auto.create.topics.enable=true | ||
broker.id=1 | ||
delete.topic.enable=true | ||
group.initial.rebalance.delay.ms=0 | ||
listeners=PLAINTEXT://:9092,SASL_PLAINTEXT://:9093 | ||
log.dirs=/kafka/kafka-logs-1d5951569d78 | ||
log.retention.check.interval.ms=300000 | ||
log.retention.hours=168 | ||
log.segment.bytes=1073741824 | ||
message.max.bytes=200000000 | ||
num.io.threads=8 | ||
num.network.threads=3 | ||
num.partitions=1 | ||
num.recovery.threads.per.data.dir=1 | ||
offsets.topic.replication.factor=1 | ||
port=9092 | ||
sasl.enabled.mechanisms=PLAIN,SCRAM-SHA-256,SCRAM-SHA-512 | ||
socket.receive.buffer.bytes=102400 | ||
socket.request.max.bytes=104857600 | ||
socket.send.buffer.bytes=102400 | ||
transaction.state.log.min.isr=1 | ||
transaction.state.log.replication.factor=1 | ||
zookeeper.connect=zookeeper:2181 | ||
zookeeper.connection.timeout.ms=6000 | ||
``` | ||
|
||
|
||
## run docker-compose and test cases | ||
|
||
run docker-compose | ||
``` | ||
# docker-compose -f ./docker_compose_versions/docker-compose-<kafka_version>.yml up -d | ||
``` | ||
|
||
|
||
run test cases | ||
``` | ||
# go clean -cache; KAFKA_SKIP_NETTEST=1 KAFKA_VERSION=<a.b.c> go test -race -cover ./...; | ||
``` | ||
|
||
|
||
## Various Bitnami Kafka version issues observed in circleci | ||
|
||
|
||
### Kafka v101, v111, v201, v211 and v221 | ||
|
||
|
||
In kafka-go repo, all the tests require sasl.enabled.mechanisms as PLAIN,SCRAM-SHA-256,SCRAM-SHA-512 for the Kafka cluster. | ||
|
||
|
||
It has been observed for Kafka v101, v111, v201, v211 and v221 which are used in the circleci for build have issues with SCRAM. | ||
|
||
|
||
There is no way to override the config sasl.enabled.mechanisms causing Kafka cluster to start up as PLAIN. | ||
|
||
|
||
There has been some attempts made to override sasl.enabled.mechanisms | ||
- Modified entrypoint in docker-compose to append the server.properties with relevant configs sasl.enabled.mechanisms before running entrypoint.sh. This resulted in failures for Kafka v101, v111, v201, v211 and v221. Once Kafka server starts, server.properties gets appended with default value of sasl.enabled.mechanisms there by cluster to start with out PLAIN,SCRAM-SHA-256,SCRAM-SHA-512 | ||
- Mounted a docker-compose volume for server.propeties. However, This also resulted in failures for Kafka v101, v111, v201, v211 and v221. Once Kafka server starts, server.properties gets appended with default value of sasl.enabled.mechanisms there by cluster to start with out PLAIN,SCRAM-SHA-256,SCRAM-SHA-512 | ||
|
||
|
||
NOTE: | ||
- Kafka v101, v111, v201, v211 and v221 have no docker-compose files since we need SCRAM for kafka-go test cases to succeed. | ||
- There is no Bitnami Kafka image for v222 hence testing has been performed on v221 | ||
|
||
|
||
### Kafka v231 | ||
|
||
In Bitnami Kafka v2.3, all server.properties docker-compose environment configs start with `KAFKA_CFG_<config_with_underscore>`. However, it is not picking the custom populated kafka_jaas.conf. | ||
|
||
|
||
After a lot of debugging, it has been noticed that there aren't enough privileges to create the kafka_jaas.conf. Hence the environment variables below need to be added in docker-compose to generate the kafka_jaas.conf. This issue is not noticed after kafka v2.3 | ||
|
||
|
||
``` | ||
KAFKA_INTER_BROKER_USER: adminplain | ||
KAFKA_INTER_BROKER_PASSWORD: admin-secret | ||
KAFKA_BROKER_USER: adminplain | ||
KAFKA_BROKER_PASSWORD: admin-secret | ||
``` | ||
|
||
There is a docker-compose file `docker-compose-231.yml` in the folder `kafka-go/docker_compose_versions` for reference. | ||
|
||
|
||
## References | ||
|
||
|
||
For user reference, please find the some of the older kafka versions commits from the [kafka commit history](https://github.com/bitnami/containers/commits/main/bitnami/kafka). For Kafka versions with no commit history, data is populated with the latest version available for the tag. | ||
|
||
|
||
### Kafka v010: docker-compose reference: `kafka-go/docker_compose_versions/docker-compose-010.yml` | ||
- [tag](https://hub.docker.com/r/bitnami/kafka/tags?page=1&ordering=last_updated&name=0.10.2.1) | ||
- [kafka commit](https://github.com/bitnami/containers/tree/c4240f0525916a418245c7ef46d9534a7a212c92/bitnami/kafka) | ||
|
||
|
||
### Kafka v011: docker-compose reference: `kafka-go/docker_compose_versions/docker-compose-011.yml` | ||
- [tag](https://hub.docker.com/r/bitnami/kafka/tags?page=1&ordering=last_updated&name=0.11.0) | ||
- [kafka commit](https://github.com/bitnami/containers/tree/7724adf655e4ca9aac69d606d41ad329ef31eeca/bitnami/kafka) | ||
|
||
|
||
### Kafka v101: docker-compose reference: N/A | ||
- [tag](https://hub.docker.com/r/bitnami/kafka/tags?page=1&ordering=last_updated&name=1.0.1) | ||
- [kafka commit](https://github.com/bitnami/containers/tree/44cc8f4c43ead6edebd3758c8df878f4f9da82c2/bitnami/kafka) | ||
|
||
|
||
### Kafka v111: docker-compose reference: N/A | ||
- [tag](https://hub.docker.com/r/bitnami/kafka/tags?page=1&ordering=last_updated&name=1.1.1) | ||
- [kafka commit](https://github.com/bitnami/containers/tree/cb593dc98c2eb7a39f2792641e741d395dbe50e7/bitnami/kafka) | ||
|
||
|
||
### Kafka v201: docker-compose reference: N/A | ||
- [tag](https://hub.docker.com/r/bitnami/kafka/tags?page=1&ordering=last_updated&name=2.0.1) | ||
- [kafka commit](https://github.com/bitnami/containers/tree/9ff8763df265c87c8b59f8d7ff0cf69299d636c9/bitnami/kafka) | ||
|
||
|
||
### Kafka v211: docker-compose reference: N/A | ||
- [tag](https://hub.docker.com/r/bitnami/kafka/tags?page=1&ordering=last_updated&name=2.1.1) | ||
- [kafka commit](https://github.com/bitnami/containers/tree/d3a9d40afc2b7e7de53486538a63084c1a565d43/bitnami/kafka) | ||
|
||
|
||
### Kafka v221: docker-compose reference: N/A | ||
- [tag](https://hub.docker.com/r/bitnami/kafka/tags?page=1&ordering=last_updated&name=2.2.1) | ||
- [kafka commit](https://github.com/bitnami/containers/tree/f132ef830d1ba9b78392ec4619174b4640c276c9/bitnami/kafka) | ||
|
||
|
||
### Kafka v231: docker-compose reference: `kafka-go/docker_compose_versions/docker-compose-231.yml` | ||
- [tag](https://hub.docker.com/r/bitnami/kafka/tags?page=1&ordering=last_updated&name=2.3.1) | ||
- [kafka commit](https://github.com/bitnami/containers/tree/ae572036b5281456b0086345fec0bdb74f7cf3a3/bitnami/kafka) | ||
|
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,39 @@ | ||
# See https://hub.docker.com/r/bitnami/kafka/tags for the complete list. | ||
version: '3' | ||
services: | ||
zookeeper: | ||
container_name: zookeeper | ||
hostname: zookeeper | ||
image: bitnami/zookeeper:latest | ||
ports: | ||
- 2181:2181 | ||
environment: | ||
ALLOW_ANONYMOUS_LOGIN: yes | ||
kafka: | ||
container_name: kafka | ||
image: bitnami/kafka:0.10.2.1 | ||
restart: on-failure:3 | ||
links: | ||
- zookeeper | ||
ports: | ||
- 9092:9092 | ||
- 9093:9093 | ||
environment: | ||
KAFKA_BROKER_ID: 1 | ||
KAFKA_DELETE_TOPIC_ENABLE: 'true' | ||
KAFKA_ADVERTISED_HOST_NAME: 'localhost' | ||
KAFKA_ADVERTISED_PORT: '9092' | ||
KAFKA_ZOOKEEPER_CONNECT: zookeeper:2181 | ||
KAFKA_AUTO_CREATE_TOPICS_ENABLE: 'true' | ||
KAFKA_MESSAGE_MAX_BYTES: '200000000' | ||
KAFKA_LISTENERS: 'PLAINTEXT://:9092,SASL_PLAINTEXT://:9093' | ||
KAFKA_ADVERTISED_LISTENERS: 'PLAINTEXT://localhost:9092,SASL_PLAINTEXT://localhost:9093' | ||
KAFKA_SASL_ENABLED_MECHANISMS: 'PLAIN,SCRAM-SHA-256,SCRAM-SHA-512' | ||
KAFKA_AUTHORIZER_CLASS_NAME: 'kafka.security.auth.SimpleAclAuthorizer' | ||
KAFKA_ALLOW_EVERYONE_IF_NO_ACL_FOUND: 'true' | ||
KAFKA_OPTS: "-Djava.security.auth.login.config=/opt/bitnami/kafka/config/kafka_server_jaas.conf" | ||
ALLOW_PLAINTEXT_LISTENER: yes | ||
entrypoint: | ||
- "/bin/bash" | ||
- "-c" | ||
- echo -e 'KafkaServer {\norg.apache.kafka.common.security.scram.ScramLoginModule required\n username="adminscram"\n password="admin-secret";\n org.apache.kafka.common.security.plain.PlainLoginModule required\n username="adminplain"\n password="admin-secret"\n user_adminplain="admin-secret";\n };' > /opt/bitnami/kafka/config/kafka_server_jaas.conf; /opt/bitnami/kafka/bin/kafka-configs.sh --zookeeper zookeeper:2181 --alter --add-config 'SCRAM-SHA-256=[password=admin-secret-256],SCRAM-SHA-512=[password=admin-secret-512]' --entity-type users --entity-name adminscram; exec /app-entrypoint.sh /start-kafka.sh |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,36 @@ | ||
# See https://hub.docker.com/r/bitnami/kafka/tags for the complete list. | ||
version: '3' | ||
services: | ||
zookeeper: | ||
container_name: zookeeper | ||
hostname: zookeeper | ||
image: bitnami/zookeeper:latest | ||
ports: | ||
- 2181:2181 | ||
environment: | ||
ALLOW_ANONYMOUS_LOGIN: yes | ||
kafka: | ||
container_name: kafka | ||
image: bitnami/kafka:0.11.0-1-r1 | ||
restart: on-failure:3 | ||
links: | ||
- zookeeper | ||
ports: | ||
- 9092:9092 | ||
- 9093:9093 | ||
environment: | ||
KAFKA_BROKER_ID: 1 | ||
KAFKA_DELETE_TOPIC_ENABLE: 'true' | ||
KAFKA_ADVERTISED_HOST_NAME: 'localhost' | ||
KAFKA_ADVERTISED_PORT: '9092' | ||
KAFKA_ZOOKEEPER_CONNECT: zookeeper:2181 | ||
KAFKA_LISTENERS: 'PLAINTEXT://:9092,SASL_PLAINTEXT://:9093' | ||
KAFKA_ADVERTISED_LISTENERS: 'PLAINTEXT://localhost:9092,SASL_PLAINTEXT://localhost:9093' | ||
KAFKA_ALLOW_EVERYONE_IF_NO_ACL_FOUND: 'true' | ||
KAFKA_OPTS: "-Djava.security.auth.login.config=/opt/bitnami/kafka/config/kafka_server_jaas.conf" | ||
ALLOW_PLAINTEXT_LISTENER: "yes" | ||
entrypoint: | ||
- "/bin/bash" | ||
- "-c" | ||
# 0.11.0 image is not honoring some configs required in server.properties | ||
- echo -e '\nsasl.enabled.mechanisms=PLAIN,SCRAM-SHA-256,SCRAM-SHA-512\nmessage.max.bytes=200000000\nauto.create.topics.enable=true\nport=9092' >> /opt/bitnami/kafka/config/server.properties; echo -e 'KafkaServer {\norg.apache.kafka.common.security.scram.ScramLoginModule required\n username="adminscram"\n password="admin-secret";\n org.apache.kafka.common.security.plain.PlainLoginModule required\n username="adminplain"\n password="admin-secret"\n user_adminplain="admin-secret";\n };' > /opt/bitnami/kafka/config/kafka_server_jaas.conf; /opt/bitnami/kafka/bin/kafka-configs.sh --zookeeper zookeeper:2181 --alter --add-config 'SCRAM-SHA-256=[password=admin-secret-256],SCRAM-SHA-512=[password=admin-secret-512]' --entity-type users --entity-name adminscram; exec /app-entrypoint.sh /run.sh |
Oops, something went wrong.