aquasec/codesec-connectorArgon Broker Client 是一个轻量级的消息代理客户端,旨在简化与各类消息代理服务(如 Kafka、RabbitMQ、MQTT 等)的集成过程。该 Docker 镜像封装了客户端核心功能,提供了统一的接口和配置方式,使开发者能够快速部署和使用消息代理客户端,而无需关注复杂的环境配置。
主要用途包括:
bashdocker run -d \ --name argon-broker-client \ -e BROKER_TYPE=kafka \ -e BROKER_URL=kafka-broker:9092 \ -e TOPIC_NAME=test-topic \ -e CLIENT_ROLE=producer \ argon/broker-client:latest
yamlversion: '3.8' services: argon-broker-client: image: argon/broker-client:latest container_name: argon-broker-client environment: - BROKER_TYPE=kafka - BROKER_URL=kafka:9092 - TOPIC_NAME=order-events - CLIENT_ROLE=consumer - GROUP_ID=order-service-group - AUTO_OFFSET_RESET=earliest volumes: - ./config:/app/config - ./data:/app/data restart: unless-stopped depends_on: - kafka
| 环境变量名 | 描述 | 可选值 | 默认值 | 是否必填 |
|---|---|---|---|---|
| BROKER_TYPE | 消息代理类型 | kafka, rabbitmq, mqtt, redis | 无 | 是 |
| BROKER_URL | 消息代理连接地址 | 取决于代理类型 | 无 | 是 |
| CLIENT_ROLE | 客户端角色 | producer, consumer, both | 无 | 是 |
| LOG_LEVEL | 日志级别 | trace, debug, info, warn, error | info | 否 |
| CONFIG_FILE | 外部配置文件路径 | 容器内路径 | /app/config/config.yaml | 否 |
| MAX_RETRIES | 最大重试次数 | 数字 | 3 | 否 |
| RETRY_DELAY | 重试延迟(毫秒) | 数字 | 1000 | 否 |
| CONNECT_TIMEOUT | 连接超时(毫秒) | 数字 | 5000 | 否 |
Kafka 特定配置
| 环境变量名 | 描述 | 默认值 |
|---|---|---|
| TOPIC_NAME | Kafka 主题名称 | 无 |
| GROUP_ID | 消费者组 ID | 无 |
| AUTO_OFFSET_RESET | 偏移量重置策略 | latest |
| PARTITION_COUNT | 主题分区数 | 1 |
| REPLICATION_FACTOR | 副本因子 | 1 |
| FETCH_MIN_BYTES | 最小获取字节数 | 1 |
| FETCH_MAX_WAIT_MS | 最大等待时间 | 500 |
RabbitMQ 特定配置
| 环境变量名 | 描述 | 默认值 |
|---|---|---|
| QUEUE_NAME | 队列名称 | 无 |
| EXCHANGE_NAME | 交换机名称 | 无 |
| ROUTING_KEY | 路由键 | 无 |
| EXCHANGE_TYPE | 交换机类型 | direct |
| DURABLE | 是否持久化 | true |
| AUTO_ACK | 是否自动确认 | true |
MQTT 特定配置
| 环境变量名 | 描述 | 默认值 |
|---|---|---|
| TOPIC_FILTER | MQTT 主题过滤器 | 无 |
| QOS_LEVEL | 服务质量等级 | 0 |
| CLEAN_SESSION | 清除会话标志 | true |
| KEEP_ALIVE_INTERVAL | 保活间隔(秒) | 60 |
| WILL_MESSAGE | 遗嘱消息 | 无 |
除了环境变量配置外,还支持通过 YAML 配置文件进行更详细的配置。配置文件默认路径为 /app/config/config.yaml,可以通过 CONFIG_FILE 环境变量指定自定义路径。
示例配置文件 (config.yaml):
yamlbroker: type: kafka url: kafka-broker:9092 security: enabled: true tls: cert_file: /app/certs/client.crt key_file: /app/certs/client.key ca_file: /app/certs/ca.crt client: role: consumer name: order-service-client batch_size: 100 max_wait_time: 500 kafka: topic: order-events group_id: order-service-group auto_offset_reset: earliest consumer: fetch_min_bytes: 1024 fetch_max_wait_ms: 1000 producer: acks: all retries: 5 compression_type: gzip logging: level: info format: json file_path: /app/logs/client.log metrics: enabled: true port: 9090 path: /metrics
如需持久化配置文件或数据,可通过挂载卷实现:
bashdocker run -d \ --name argon-broker-client \ -v ./config:/app/config \ -v ./data:/app/data \ -v ./logs:/app/logs \ argon/broker-client:latest
容器内置健康检查机制,可通过以下命令手动检查:
bashdocker exec argon-broker-client /app/healthcheck.sh
yaml# docker-compose.prod.yaml version: '3.8' services: argon-broker-client: image: argon/broker-client:latest container_name: argon-broker-client environment: - BROKER_TYPE=kafka - BROKER_URL=kafka-1:9092,kafka-2:9092,kafka-3:9092 - CLIENT_ROLE=both - CONFIG_FILE=/app/config/prod.yaml - LOG_LEVEL=warn volumes: - ./config/prod.yaml:/app/config/prod.yaml - ./data:/app/data - ./logs:/app/logs - ./certs:/app/certs restart: always healthcheck: test: ["CMD", "/app/healthcheck.sh"] interval: 30s timeout: 10s retries: 3 start_period: 60s deploy: resources: limits: cpus: '1' memory: 512M reservations: cpus: '0.5' memory: 256M
yaml# argon-broker-client-deployment.yaml apiVersion: apps/v1 kind: Deployment metadata: name: argon-broker-client namespace: messaging spec: replicas: 3 selector: matchLabels: app: argon-broker-client template: metadata: labels: app: argon-broker-client spec: containers: - name: argon-broker-client image: argon/broker-client:latest ports: - containerPort: 9090 env: - name: BROKER_TYPE value: "kafka" - name: CLIENT_ROLE value: "consumer" - name: LOG_LEVEL value: "info" volumeMounts: - name: config-volume mountPath: /app/config - name: cert-volume mountPath: /app/certs readOnly: true livenessProbe: httpGet: path: /health port: 9090 initialDelaySeconds: 60 periodSeconds: 30 readinessProbe: httpGet: path: /ready port: 9090 initialDelaySeconds: 10 periodSeconds: 5 resources: limits: cpu: "1" memory: "512Mi" requests: cpu: "500m" memory: "256Mi" volumes: - name: config-volume configMap: name: argon-broker-client-config - name: cert-volume secret: secretName: broker-tls-cert
BROKER_URL 配置是否正确docker exec 进入容器测试)查看容器日志:
bashdocker logs -f argon-broker-client
查看特定时间段日志:
bashdocker logs --since 30m argon-broker-client
最新稳定版本:v1.2.0
更新日志摘要:
manifest unknown 错误
TLS 证书验证失败
DNS 解析超时
410 错误:版本过低
402 错误:流量耗尽
身份认证失败错误
429 限流错误
凭证保存错误
来自真实用户的反馈,见证轩辕镜像的优质服务