health-check

HealthCheck CRD, GVK: net.demo.orkestra.io/v1alpha1, Kind=HealthCheck

healthy network-suite 0.1.0 uptime 52h52m43s

Overview

health-check is a custom resource managed by the network-suite operator running on Orkestra. Resources of this type are namespace-scoped.

FieldValue
API Versionnet.demo.orkestra.io/v1alpha1
KindHealthCheck
GVR (plural)net.demo.orkestra.io/v1alpha1, Resource=healthchecks
ScopeNamespaced

Reconcile Mode

This CRD runs in dynamic mode. Orkestra works directly with the raw unstructured Kubernetes object — no Go code is required. Reconcile logic is expressed declaratively in the Katalog YAML using template expressions like {{ .spec.field }}.

The Generic Reconciler manages the full CR lifecycle: it ensures managed labels are set on every reconcile, adds and removes finalizers, runs onCreate and onReconcile template blocks, emits events, increments metrics, and reports health status.


Configuration

The operator maintains 3 worker goroutines to process reconcile events concurrently. Each worker dequeues one CR key at a time, reconciles it, and returns. The queue has a maximum depth of 100 events.

Orkestra resyncs all managed resources every 15s by re-enqueueing every CR key. This ensures drift caused by external changes is corrected even without a Kubernetes watch event.


Child Resources

When the operator reconciles a health-check instance it creates and manages the following Kubernetes resources on its behalf. These are owned by the CR via owner references and are deleted automatically when the CR is deleted (unless deletion protection is active).

Resources listed under onCreate are created on the first reconcile. Resources listed under onReconcile are re-applied on every reconcile cycle. A resource appearing in both phases is created once and kept in sync thereafter.

Kind Count Lifecycle phases
ConfigMap 1 onCreate

To see the actual child resources created for a running instance, navigate to the instance's detail page from the network-suite control panel.


kubectl Reference

Use the commands below to interact with health-check resources from the command line.

List resources

kubectl get healthcheck -n <namespace>

Describe a resource

kubectl describe healthcheck <name> -n <namespace>

Get YAML

kubectl get healthcheck <name> -n <namespace> -o yaml

Watch for changes

kubectl get healthcheck -n <namespace> -w

Delete a resource

kubectl delete healthcheck <name> -n <namespace>

Filter by Orkestra managed label

kubectl get healthcheck -l orkestra.orkspace.io/managed=true -n <namespace>

Access Control

The operator holds the following RBAC permissions to manage health-check resources. 1 configmaps, 1 healthchecks, 1 healthchecks/status

API GroupsResourcesVerbs
net.demo.orkestra.io healthchecks get list watch create update patch delete
net.demo.orkestra.io healthchecks/status get update patch
core configmaps get list watch create update patch delete