资源对象是k8s核心概念
查看防火墙规则 32002 端口的去向
[root@kubeadm-master1 ~]# iptables -t nat -vnL |grep 3200
    0     0 KUBE-MARK-MASQ  tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            /* kubernetes-dashboard/kubernetes-dashboard */ tcp dpt:32002
    0     0 KUBE-SVC-CEZPIJSAUFW5MYPQ  tcp  --  *      *       0.0.0.0/0            0.0.0.0/0            /* kubernetes-dashboard/kubernetes-dashboard */ tcp dpt:32002


走到了 kubernetes 中
[root@kubeadm-master1 ~]# kubectl get svc
NAME                  TYPE        CLUSTER-IP       EXTERNAL-IP   PORT(S)        AGE
kubernetes            ClusterIP   10.200.0.1       <none>        443/TCP        47h
test-nginx-service    NodePort    10.200.189.111   <none>        80:30004/TCP   30h
test-tomcat-service   NodePort    10.200.23.13     <none>        80:30005/TCP   30h

10.200.0.1 转到了 pod 里
[root@kubeadm-master1 ~]# kubectl get ep
NAME                  ENDPOINTS                                                      AGE
kubernetes            108.18..210:6443,108.18..212:6443,192.168.1.209:6443   47h
test-nginx-service    10.100.4.9:80                                                  30h
test-tomcat-service   10.100.3.10:8080                                               30h

12-23 02:20