一、使用etcd集群外的节点
生成etcd新节点需要的证书 新节点IP为100.7.36.60,主机名node60
1、etcd数据备份
ETCDCTL_API=3 etcdctl --endpoints=https://100.7.36.80:2379 --cacert=/etc/ssl/etcd/ssl/ca.pem --cert=/etc/ssl/etcd/ssl/member-node80.pem --key=/etc/ssl/etcd/ssl/member-node80-key.pem snapshot save /tmp/snapshot.db
使用snapshot恢复的(需要在所有节点执行快照恢复命令)
ETCDCTL_API=3 etcdctl --endpoints=https://100.7.36.80:2379 --cacert=/etc/ssl/etcd/ssl/ca.pem --cert=/etc/ssl/etcd/ssl/member-node80.pem --key=/etc/ssl/etcd/ssl/member-node80-key.pem snapshot restore snapshot.db --name --initial-cluster master1=https://:2380,master2=https://:2380,master3=https://:2380 --initial-advertise-peer-urls=https://:2380 --data-dir=
2、将master节点/etc/ssl/etcd/ssl 文件复制到新节点100.7.36.60 /etc/ssl/etcd/目录
3、在master节点的目录的文件/usr/local/bin/etcd-scripts/make-ssl-etcd.sh和文件/etc/ssl/etcd/openssl.conf复制100.7.