[dolphinscheduler-operator] 01/44: feat(operator): add operator feature to git

chufenggao pushed a commit to branch master
commit 9121251aa5a5cb40e374a8cd6c14cb906d97e7f2
Author: nobolity <>
AuthorDate: Wed May 25 15:03:43 2022 +0800

    feat(operator): add operator feature to git
 .dockerignore                                      |    4 +
 .gitignore                                         |   44 +
 Dockerfile                                         |   27 +
 Makefile                                           |  130 ++
 PROJECT                                            |   25 +
 api/v1alpha1/ds_public.go                          |  120 ++
 api/v1alpha1/dsmaster_types.go                     |  112 ++
 api/v1alpha1/dsworker_types.go                     |  122 ++
 api/v1alpha1/groupversion_info.go                  |   36 +
 api/v1alpha1/zz_generated.deepcopy.go              |  333 ++++
 config/configmap/alert/application.yaml            |   70 +
 config/configmap/alert/ds-alert-configmap.yaml     |    7 +
 config/configmap/alert/ds-alert-deployment.yaml    |   34 +
 config/configmap/alert/ds-alert-service.yaml       |   18 +
 config/configmap/api/application.yaml              |  143 ++
 config/configmap/api/ds-api-configmap.yaml         |    7 +
 config/configmap/api/ds-api-deployment.yaml        |   37 +
 config/configmap/api/ds-api-service.yaml           |   18 +
 config/configmap/ds-pv.yaml                        |   15 +
 config/configmap/ds-pvc.yaml                       |   17 +
 config/configmap/master/application.yaml           |  142 ++
 .../configmap/postgreSQL/postgres-configmap.yaml   |   11 +
 .../configmap/postgreSQL/postgres-deployment.yaml  |   33 +
 config/configmap/postgreSQL/postgres-pv.yaml       |   16 +
 config/configmap/postgreSQL/postgres-pvc.yaml      |   14 +
 config/configmap/postgreSQL/postgres-service.yaml  |   16 +
 config/configmap/worker/application.yaml           |   91 ++
 config/configmap/zookeeper/zookeeper.yaml          |   41 +
 .../ds.apache.dolphinscheduler.dev_dsmasters.yaml  | 1581 +++++++++++++++++++
 .../ds.apache.dolphinscheduler.dev_dsworkers.yaml  | 1585 ++++++++++++++++++++
 config/crd/kustomization.yaml                      |   24 +
 config/crd/kustomizeconfig.yaml                    |   19 +
 config/crd/patches/cainjection_in_dsmasters.yaml   |    7 +
 config/crd/patches/cainjection_in_dsworkers.yaml   |    7 +
 config/crd/patches/webhook_in_dsmasters.yaml       |   16 +
 config/crd/patches/webhook_in_dsworkers.yaml       |   16 +
 config/default/kustomization.yaml                  |   74 +
 config/default/manager_auth_proxy_patch.yaml       |   34 +
 config/default/manager_config_patch.yaml           |   20 +
 config/manager/controller_manager_config.yaml      |   11 +
 config/manager/kustomization.yaml                  |   10 +
 config/manager/manager.yaml                        |   60 +
 config/prometheus/kustomization.yaml               |    2 +
 config/prometheus/monitor.yaml                     |   20 +
 config/rbac/auth_proxy_client_clusterrole.yaml     |    9 +
 config/rbac/auth_proxy_role.yaml                   |   17 +
 config/rbac/auth_proxy_role_binding.yaml           |   12 +
 config/rbac/auth_proxy_service.yaml                |   15 +
 config/rbac/dsmaster_editor_role.yaml              |   24 +
 config/rbac/dsmaster_viewer_role.yaml              |   20 +
 config/rbac/dsworker_editor_role.yaml              |   24 +
 config/rbac/dsworker_viewer_role.yaml              |   20 +
 config/rbac/kustomization.yaml                     |   18 +
 config/rbac/leader_election_role.yaml              |   37 +
 config/rbac/leader_election_role_binding.yaml      |   12 +
 config/rbac/role.yaml                              |   59 +
 config/rbac/role_binding.yaml                      |   12 +
 config/rbac/service_account.yaml                   |    5 +
 config/samples/ds_v1alpha1_dsmaster.yaml           |   13 +
 config/samples/ds_v1alpha1_dsworker.yaml           |   12 +
 config/test/busybox.yaml                           |   14 +
 config/test/ndsutils.yaml                          |   11 +
 config/test/nginx.yaml                             |   41 +
 controllers/dsmaster_controller.go                 |  320 ++++
 controllers/dsworker_controller.go                 |  256 ++++
 controllers/master_reconcile.go                    |  181 +++
 controllers/member.go                              |  150 ++
 controllers/pod.go                                 |  266 ++++
 controllers/suite_test.go                          |   80 +
 controllers/worker_reconcile.go                    |  162 ++
 go.mod                                             |   74 +
 go.sum                                             |  960 ++++++++++++
 hack/boilerplate.go.txt                            |   15 +
 main.go                                            |  111 ++
 74 files changed, 8119 insertions(+)

diff --git a/.dockerignore b/.dockerignore
new file mode 100644
index 0000000..0f04682
--- /dev/null
+++ b/.dockerignore
@@ -0,0 +1,4 @@
+# More info:
+# Ignore build and test binaries.
diff --git a/.gitignore b/.gitignore
new file mode 100644
index 0000000..1299c19
--- /dev/null
+++ b/.gitignore
@@ -0,0 +1,44 @@
+# Binaries for programs and plugins
+# Test binary, build with `go test -c`
+# Output of the go coverage tool, specifically when used with LiteIDE
+# Kubernetes Generated files - skip generated files, except for vendored files
+# editor and IDE paraphernalia
+### Go template
+# Binaries for programs and plugins
+# Test binary, built with `go test -c`
+# Output of the go coverage tool, specifically when used with LiteIDE
+# Dependency directories (remove the comment below to include it)
+# vendor/
diff --git a/Dockerfile b/Dockerfile
new file mode 100644
index 0000000..456533d
--- /dev/null
+++ b/Dockerfile
@@ -0,0 +1,27 @@
+# Build the manager binary
+FROM golang:1.17 as builder
+WORKDIR /workspace
+# Copy the Go Modules manifests
+COPY go.mod go.mod
+COPY go.sum go.sum
+# cache deps before building and copying source so that we don't need to re-download as much
+# and so that source changes don't invalidate our downloaded layer
+RUN go mod download
+# Copy the go source
+COPY main.go main.go
+COPY api/ api/
+COPY controllers/ controllers/
+# Build
+RUN CGO_ENABLED=0 GOOS=linux GOARCH=amd64 go build -a -o manager main.go
+# Use distroless as minimal base image to package the manager binary
+# Refer to for more details
+COPY --from=builder /workspace/manager .
+USER 65532:65532
+ENTRYPOINT ["/manager"]
diff --git a/Makefile b/Makefile
new file mode 100644
index 0000000..5592f2c
--- /dev/null
+++ b/Makefile
@@ -0,0 +1,130 @@
+# Image URL to use all building/pushing image targets
+IMG ?= controller:latest
+# ENVTEST_K8S_VERSION refers to the version of kubebuilder assets to be downloaded by envtest binary.
+# Get the currently used golang install path (in GOPATH/bin, unless GOBIN is set)
+ifeq (,$(shell go env GOBIN))
+GOBIN=$(shell go env GOPATH)/bin
+GOBIN=$(shell go env GOBIN)
+# Setting SHELL to bash allows bash commands to be executed by recipes.
+# This is a requirement for '' in the test target.
+# Options are set to exit when a recipe line exits non-zero or a piped command fails.
+SHELL = /usr/bin/env bash -o pipefail
+.PHONY: all
+all: build
+##@ General
+# The help target prints out all targets with their descriptions organized
+# beneath their categories. The categories are represented by '##@' and the
+# target descriptions by '##'. The awk commands is responsible for reading the
+# entire set of makefiles included in this invocation, looking for lines of the
+# file as xyz: ## something, and then pretty-format the target and help. Then,
+# if there's a line with ##@ something, that gets pretty-printed as a category.
+# More info on the usage of ANSI control characters for terminal formatting:
+# More info on the awk command:
+.PHONY: help
+help: ## Display this help.
+	@awk 'BEGIN {FS = ":.*##"; printf "\nUsage:\n  make \033[36m<target>\033[0m\n"} /^[a-zA-Z_0-9-]+:.*?##/ { printf "  \033[36m%-15s\033[0m %s\n", $$1, $$2 } /^##@/ { printf "\n\033[1m%s\033[0m\n", substr($$0, 5) } ' $(MAKEFILE_LIST)
+##@ Development
+.PHONY: manifests
+manifests: controller-gen ## Generate WebhookConfiguration, ClusterRole and CustomResourceDefinition objects.
+	$(CONTROLLER_GEN) rbac:roleName=manager-role crd webhook paths="./..." output:crd:artifacts:config=config/crd/bases
+.PHONY: generate
+generate: controller-gen ## Generate code containing DeepCopy, DeepCopyInto, and DeepCopyObject method implementations.
+	$(CONTROLLER_GEN) object:headerFile="hack/boilerplate.go.txt" paths="./..."
+.PHONY: fmt
+fmt: ## Run go fmt against code.
+	go fmt ./...
+.PHONY: vet
+vet: ## Run go vet against code.
+	go vet ./...
+.PHONY: test
+test: manifests generate fmt vet envtest ## Run tests.
+	KUBEBUILDER_ASSETS="$(shell $(ENVTEST) use $(ENVTEST_K8S_VERSION) -p path)" go test ./... -coverprofile cover.out
+##@ Build
+.PHONY: build
+build: generate fmt vet ## Build manager binary.
+	go build -o bin/manager main.go
+.PHONY: run
+run: manifests generate fmt vet ## Run a controller from your host.
+	go run ./main.go
+.PHONY: docker-build
+docker-build: test ## Build docker image with the manager.
+	docker build -t ${IMG} .
+.PHONY: docker-push
+docker-push: ## Push docker image with the manager.
+	docker push ${IMG}
+##@ Deployment
+ifndef ignore-not-found
+  ignore-not-found = false
+.PHONY: install
+install: manifests kustomize ## Install CRDs into the K8s cluster specified in ~/.kube/config.
+	$(KUSTOMIZE) build config/crd | kubectl apply -f -
+.PHONY: uninstall
+uninstall: manifests kustomize ## Uninstall CRDs from the K8s cluster specified in ~/.kube/config. Call with ignore-not-found=true to ignore resource not found errors during deletion.
+	$(KUSTOMIZE) build config/crd | kubectl delete --ignore-not-found=$(ignore-not-found) -f -
+.PHONY: deploy
+deploy: manifests kustomize ## Deploy controller to the K8s cluster specified in ~/.kube/config.
+	cd config/manager && $(KUSTOMIZE) edit set image controller=${IMG}
+	$(KUSTOMIZE) build config/default | kubectl apply -f -
+.PHONY: undeploy
+undeploy: ## Undeploy controller from the K8s cluster specified in ~/.kube/config. Call with ignore-not-found=true to ignore resource not found errors during deletion.
+	$(KUSTOMIZE) build config/default | kubectl delete --ignore-not-found=$(ignore-not-found) -f -
+CONTROLLER_GEN = $(shell pwd)/bin/controller-gen
+.PHONY: controller-gen
+controller-gen: ## Download controller-gen locally if necessary.
+	$(call go-get-tool,$(CONTROLLER_GEN),
+KUSTOMIZE = $(shell pwd)/bin/kustomize
+.PHONY: kustomize
+kustomize: ## Download kustomize locally if necessary.
+	$(call go-get-tool,$(KUSTOMIZE),
+ENVTEST = $(shell pwd)/bin/setup-envtest
+.PHONY: envtest
+envtest: ## Download envtest-setup locally if necessary.
+	$(call go-get-tool,$(ENVTEST),
+# go-get-tool will 'go get' any package $2 and install it to $1.
+PROJECT_DIR := $(shell dirname $(abspath $(lastword $(MAKEFILE_LIST))))
+define go-get-tool
+@[ -f $(1) ] || { \
+set -e ;\
+TMP_DIR=$$(mktemp -d) ;\
+cd $$TMP_DIR ;\
+go mod init tmp ;\
+echo "Downloading $(2)" ;\
+GOBIN=$(PROJECT_DIR)/bin go get $(2) ;\
+rm -rf $$TMP_DIR ;\
diff --git a/PROJECT b/PROJECT
new file mode 100644
index 0000000..6245a8a
--- /dev/null
@@ -0,0 +1,25 @@
+projectName: dolphinscheduler-operator
+repo: dolphinscheduler-operator
+- api:
+    crdVersion: v1
+    namespaced: true
+  controller: true
+  domain:
+  group: ds
+  kind: DSMaster
+  path: dolphinscheduler-operator/api/v1alpha1
+  version: v1alpha1
+- api:
+    crdVersion: v1
+    namespaced: true
+  controller: true
+  domain:
+  group: ds
+  kind: DSWorker
+  path: dolphinscheduler-operator/api/v1alpha1
+  version: v1alpha1
+version: "3"
diff --git a/api/v1alpha1/ds_public.go b/api/v1alpha1/ds_public.go
new file mode 100644
index 0000000..78f31d0
--- /dev/null
+++ b/api/v1alpha1/ds_public.go
@@ -0,0 +1,120 @@
+package v1alpha1
+import (
+	corev1 ""
+	"math/rand"
+	"time"
+type DsPhase string
+type DsConditionType string
+const (
+	DsPhaseNone     DsPhase = ""
+	DsPhaseCreating         = "Creating"
+	DsPhaseRunning          = "Running"
+	DsPhaseFailed           = "Failed"
+	DsPhaseFinished         = "Finished"
+	DsConditionAvailable DsConditionType = "Available"
+	DsConditionScaling                   = "Scaling"
+	DsConditionUpgrading                 = "Upgrading"
+	ClusterMembersAnnotation      = ""
+	ClusterUpgradeAnnotation      = ""
+	ClusterBootStrappedAnnotation = ""
+	DsAppName           = "app"
+	DsVersionLabel      = "ds-version"
+	FinalizerName       = ""
+	DsServiceLabel      = "service-name"
+	DsServiceLabelValue = "ds-service"
+// DsCondition represents one current condition of a ds cluster.
+// A condition might not show up if it is not happening.
+// For example, if a cluster is not upgrading, the Upgrading condition would not show up.
+// If a cluster is upgrading and encountered a problem that prevents the upgrade,
+// the Upgrading condition's status will would be False and communicate the problem back.
+type DsCondition struct {
+	// Type of cluster condition.
+	Type DsConditionType `json:"type"`
+	// Status of the condition, one of True, False, Unknown.
+	Status corev1.ConditionStatus `json:"status"`
+	// The last time this condition was updated.
+	LastUpdateTime string `json:"lastUpdateTime,omitempty"`
+	// Last time the condition transitioned from one status to another.
+	LastTransitionTime string `json:"lastTransitionTime,omitempty"`
+	// The reason for the condition's last transition.
+	Reason string `json:"reason,omitempty"`
+	// A human readable message indicating details about the transition.
+	Message string `json:"message,omitempty"`
+// PodPolicy defines the policy to create pod for the dm-master container.
+type PodPolicy struct {
+	// Labels specifies the labels to attach to pods the operator creates for the
+	// dm-master cluster.
+	// "app" and "dm-master_*" labels are reserved for the internal use of the dm-master operator.
+	// Do not overwrite them.
+	Labels map[string]string `json:"labels,omitempty"`
+	// NodeSelector specifies a map of key-value pairs. For the pod to be eligible
+	// to run on a node, the node must have each of the indicated key-value pairs as
+	// labels.
+	NodeSelector map[string]string `json:"nodeSelector,omitempty"`
+	// The scheduling constraints on dm-master pods.
+	Affinity *corev1.Affinity `json:"affinity,omitempty"`
+	// **DEPRECATED**. Use Affinity instead.
+	AntiAffinity bool `json:"antiAffinity,omitempty"`
+	// Resources is the resource requirements for the dm-master container.
+	// This field cannot be updated once the cluster is created.
+	Resources corev1.ResourceRequirements `json:"resources,omitempty"`
+	// Tolerations specifies the pod's tolerations.
+	Tolerations []corev1.Toleration `json:"tolerations,omitempty"`
+	// List of environment variables to set in the dm-master container.
+	// This is used to configure dm-master process. dm-master cluster cannot be created, when
+	// bad environement variables are provided. Do not overwrite any flags used to
+	// bootstrap the cluster (for example `--initial-cluster` flag).
+	// This field cannot be updated.
+	Envs []corev1.EnvVar `json:"dm-masterEnv,omitempty"`
+	// PersistentVolumeClaimSpec is the spec to describe PVC for the dm-master container
+	// This field is optional. If no PVC spec, dm-master container will use emptyDir as volume
+	// Note. This feature is in alpha stage. It is currently only used as non-stable storage,
+	// not the stable storage. Future work need to make it used as stable storage.
+	PersistentVolumeClaimSpec *corev1.PersistentVolumeClaimSpec `json:"persistentVolumeClaimSpec,omitempty"`
+	// Annotations specifies the annotations to attach to pods the operator creates for the
+	// dm-master cluster.
+	// The "dm-master.version" annotation is reserved for the internal use of the dm-master operator.
+	Annotations map[string]string `json:"annotations,omitempty"`
+	// SecurityContext specifies the security context for the entire pod
+	// More info:
+	SecurityContext *corev1.PodSecurityContext `json:"securityContext,omitempty"`
+type MembersStatus struct {
+	// Ready are the dsMaster members that are ready to serve requests
+	// The member names are the same as the dsMaster pod names
+	Ready []string `json:"ready,omitempty"`
+	// Unready are the etcd members not ready to serve requests
+	Unready []string `json:"unready,omitempty"`
+func RandStr(length int) string {
+	str := "0123456789abcdefghijklmnopqrstuvwxyz"
+	bytes := []byte(str)
+	result := []byte{}
+	rand.Seed(time.Now().UnixNano() + int64(rand.Intn(100)))
+	for i := 0; i < length; i++ {
+		result = append(result, bytes[rand.Intn(len(bytes))])
+	}
+	return string(result)
diff --git a/api/v1alpha1/dsmaster_types.go b/api/v1alpha1/dsmaster_types.go
new file mode 100644
index 0000000..7909da7
--- /dev/null
+++ b/api/v1alpha1/dsmaster_types.go
@@ -0,0 +1,112 @@
+Copyright 2022.
+Licensed under the Apache License, Version 2.0 (the "License");
+you may not use this file except in compliance with the License.
+You may obtain a copy of the License at
+Unless required by applicable law or agreed to in writing, software
+distributed under the License is distributed on an "AS IS" BASIS,
+See the License for the specific language governing permissions and
+limitations under the License.
+package v1alpha1
+import (
+	metav1 ""
+// NOTE: json tags are required.  Any new fields you add must have json tags for the fields to be serialized.
+// DSMasterSpec defines the desired state of DSMaster
+type DSMasterSpec struct {
+	// INSERT ADDITIONAL SPEC FIELDS - desired state of cluster
+	// Important: Run "make" to regenerate code after modifying this file
+	// Version is the expected version of the ds cluster.
+	// The ds-operator will eventually make the ds cluster version
+	// equal to the expected version.
+	// If version is not set, default is "3.0.0-alpha".
+	// +kubebuilder:default="3.0.0-alpha"
+	Version string `json:"version,omitempty"`
+	// Repository is the name of the repository that hosts
+	// ds container images. It should be direct clone of the repository in official
+	// By default, it is `apache/dolphinscheduler-master`.
+	// +kubebuilder:default=apache/dolphinscheduler-master
+	Repository string `json:"repository,omitempty"`
+	// Replicas is the expected size of the ms-master.
+	// The ds-master-operator will eventually make the size of the running
+	//  equal to the expected size.
+	// The vaild range of the size is from 1 to 7.
+	// +kubebuilder:default=3
+	// +kubebuilder:validation:Minimum=1
+	// +kubebuilder:validation:Maximum=7
+	Replicas int `json:"replicas"`
+	//ZookeeperConnect  is the address string of zookeeper ,and it will be written to ENV
+	ZookeeperConnect string `json:"zookeeper_connect,omitempty"`
+	// Pod defines the policy to create pod for the dm-master pod.
+	// Updating Pod does not take effect on any existing dm-master pods.
+	Pod *PodPolicy `json:"pod,omitempty"`
+	// Paused is to pause the control of the operator for the ds-master .
+	// +kubebuilder:default=false
+	Paused bool `json:"paused,omitempty"`
+	//LogPvcName defines the  log capacity of application ,the position is /opt/dolphinscheduler/logs eg 20Gi
+	LogPvcName string `json:"log_pvc_name,omitempty"`
+// DSMasterStatus defines the observed state of DSMaster
+type DSMasterStatus struct {
+	// INSERT ADDITIONAL STATUS FIELD - define observed state of cluster
+	// Important: Run "make" to regenerate code after modifying this file
+	// Phase is the cluster running phase
+	// +kubebuilder:validation:Enum="";Creating;Running;Failed;Finished
+	Phase DsPhase `json:"phase,omitempty"`
+	// ControlPaused indicates the operator pauses the control of the cluster.
+	// +kubebuilder:default=false
+	ControlPaused bool `json:"controlPaused,omitempty"`
+	// Condition keeps track of all cluster conditions, if they exist.
+	Conditions []DsCondition `json:"conditions,omitempty"`
+	// Replicas is the current size of the cluster
+	// +kubebuilder:default=0
+	Replicas int `json:"replicas,omitempty"`
+	// Members are the dsMaster members in the cluster
+	Members MembersStatus `json:"members,omitempty"`
+// DSMaster is the Schema for the dsmasters API
+type DSMaster struct {
+	metav1.TypeMeta   `json:",inline"`
+	metav1.ObjectMeta `json:"metadata,omitempty"`
+	Spec   DSMasterSpec   `json:"spec,omitempty"`
+	Status DSMasterStatus `json:"status,omitempty"`
+// DSMasterList contains a list of DSMaster
+type DSMasterList struct {
+	metav1.TypeMeta `json:",inline"`
+	metav1.ListMeta `json:"metadata,omitempty"`
+	Items           []DSMaster `json:"items"`
+func init() {
+	SchemeBuilder.Register(&DSMaster{}, &DSMasterList{})
diff --git a/api/v1alpha1/dsworker_types.go b/api/v1alpha1/dsworker_types.go
new file mode 100644
index 0000000..d33ca6e
--- /dev/null
+++ b/api/v1alpha1/dsworker_types.go
@@ -0,0 +1,122 @@
+Copyright 2022.
+Licensed under the Apache License, Version 2.0 (the "License");
+you may not use this file except in compliance with the License.
+You may obtain a copy of the License at
+Unless required by applicable law or agreed to in writing, software
+distributed under the License is distributed on an "AS IS" BASIS,
+See the License for the specific language governing permissions and
+limitations under the License.
+package v1alpha1
+import (
+	metav1 ""
+// NOTE: json tags are required.  Any new fields you add must have json tags for the fields to be serialized.
+// DSWorkerSpec defines the desired state of DSWorker
+type DSWorkerSpec struct {
+	// INSERT ADDITIONAL SPEC FIELDS - desired state of cluster
+	// Important: Run "make" to regenerate code after modifying this file
+	// Version is the expected version of the ds cluster.
+	// The ds-operator will eventually make the ds cluster version
+	// equal to the expected version.
+	// If version is not set, default is "3.0.0-alpha".
+	// +kubebuilder:default="3.0.0-alpha"
+	Version string `json:"version,omitempty"`
+	// Repository is the name of the repository that hosts
+	// ds container images. It should be direct clone of the repository in official
+	// By default, it is `apache/dolphinscheduler-worker`.
+	// +kubebuilder:default=apache/dolphinscheduler-worker
+	Repository string `json:"repository,omitempty"`
+	// Replicas is the expected size of the ms-worker.
+	// The ds-worker-operator will eventually make the size of the running
+	//  equal to the expected size.
+	// The vaild range of the size is from 1 to 7.
+	// +kubebuilder:default=3
+	// +kubebuilder:validation:Minimum=1
+	// +kubebuilder:validation:Maximum=7
+	Replicas int `json:"replicas"`
+	//ZookeeperConnect  is the address string of zookeeper ,and it will be written to ENV
+	ZookeeperConnect string `json:"zookeeper_connect,omitempty"`
+	// Pod defines the policy to create pod for the dm-worker pod.
+	// Updating Pod does not take effect on any existing dm-worker pods.
+	Pod *PodPolicy `json:"pod,omitempty"`
+	// Paused is to pause the control of the operator for the ds-worker .
+	// +kubebuilder:default=false
+	Paused bool `json:"paused,omitempty"`
+	//LogPvcName defines the address of log pvc ,the position is /opt/dolphinscheduler/logs
+	LogPvcName string `json:"log_pvc_name,omitempty"`
+	//LibPvcName define the address of lib pvc,the position is /opt/soft
+	LibPvcName string `json:"lib_pvc_name,omitempty"`
+// DSWorkerStatus defines the observed state of DSWorker
+type DSWorkerStatus struct {
+	// INSERT ADDITIONAL STATUS FIELD - define observed state of cluster
+	// Important: Run "make" to regenerate code after modifying this file
+	// Phase is the cluster running phase
+	// +kubebuilder:validation:Enum="";Creating;Running;Failed;Finished
+	Phase DsPhase `json:"phase,omitempty"`
+	// ControlPaused indicates the operator pauses the control of the cluster.
+	// +kubebuilder:default=false
+	ControlPaused bool `json:"controlPaused,omitempty"`
+	// Condition keeps track of all cluster conditions, if they exist.
+	Conditions []DsCondition `json:"conditions,omitempty"`
+	// Replicas is the current size of the cluster
+	// +kubebuilder:default=0
+	Replicas int `json:"replicas,omitempty"`
+	// Members are the dsWorker members in the cluster
+	Members MembersStatus `json:"members,omitempty"`
+// DSWorker is the Schema for the dsworkers API
+type DSWorker struct {
+	metav1.TypeMeta   `json:",inline"`
+	metav1.ObjectMeta `json:"metadata,omitempty"`
+	Spec   DSWorkerSpec   `json:"spec,omitempty"`
+	Status DSWorkerStatus `json:"status,omitempty"`
+// DSWorkerList contains a list of DSWorker
+type DSWorkerList struct {
+	metav1.TypeMeta `json:",inline"`
+	metav1.ListMeta `json:"metadata,omitempty"`
+	Items           []DSWorker `json:"items"`
+func init() {
+	SchemeBuilder.Register(&DSWorker{}, &DSWorkerList{})
+func (c *DSWorker) IsPodPVEnabled() bool {
+	if podPolicy := c.Spec.Pod; podPolicy != nil {
+		return podPolicy.PersistentVolumeClaimSpec != nil
+	}
+	return false
diff --git a/api/v1alpha1/groupversion_info.go b/api/v1alpha1/groupversion_info.go
new file mode 100644
index 0000000..e621979
--- /dev/null
+++ b/api/v1alpha1/groupversion_info.go
@@ -0,0 +1,36 @@
+Copyright 2022.
+Licensed under the Apache License, Version 2.0 (the "License");
+you may not use this file except in compliance with the License.
+You may obtain a copy of the License at
+Unless required by applicable law or agreed to in writing, software
+distributed under the License is distributed on an "AS IS" BASIS,
+See the License for the specific language governing permissions and
+limitations under the License.
+// Package v1alpha1 contains API Schema definitions for the ds v1alpha1 API group
+package v1alpha1
+import (
+	""
+	""
+var (
+	// GroupVersion is group version used to register these objects
+	GroupVersion = schema.GroupVersion{Group: "", Version: "v1alpha1"}
+	// SchemeBuilder is used to add go types to the GroupVersionKind scheme
+	SchemeBuilder = &scheme.Builder{GroupVersion: GroupVersion}
+	// AddToScheme adds the types in this group-version to the given scheme.
+	AddToScheme = SchemeBuilder.AddToScheme
diff --git a/api/v1alpha1/zz_generated.deepcopy.go b/api/v1alpha1/zz_generated.deepcopy.go
new file mode 100644
index 0000000..ee5ab85
--- /dev/null
+++ b/api/v1alpha1/zz_generated.deepcopy.go
@@ -0,0 +1,333 @@
+//go:build !ignore_autogenerated
+// +build !ignore_autogenerated
+Copyright 2022.
+Licensed under the Apache License, Version 2.0 (the "License");
+you may not use this file except in compliance with the License.
+You may obtain a copy of the License at
+Unless required by applicable law or agreed to in writing, software
+distributed under the License is distributed on an "AS IS" BASIS,
+See the License for the specific language governing permissions and
+limitations under the License.
+// Code generated by controller-gen. DO NOT EDIT.
+package v1alpha1
+import (
+	""
+	runtime ""
+// DeepCopyInto is an autogenerated deepcopy function, copying the receiver, writing into out. in must be non-nil.
+func (in *DSMaster) DeepCopyInto(out *DSMaster) {
+	*out = *in
+	out.TypeMeta = in.TypeMeta
+	in.ObjectMeta.DeepCopyInto(&out.ObjectMeta)
+	in.Spec.DeepCopyInto(&out.Spec)
+	in.Status.DeepCopyInto(&out.Status)
+// DeepCopy is an autogenerated deepcopy function, copying the receiver, creating a new DSMaster.
+func (in *DSMaster) DeepCopy() *DSMaster {
+	if in == nil {
+		return nil
+	}
+	out := new(DSMaster)
+	in.DeepCopyInto(out)
+	return out
+// DeepCopyObject is an autogenerated deepcopy function, copying the receiver, creating a new runtime.Object.
+func (in *DSMaster) DeepCopyObject() runtime.Object {
+	if c := in.DeepCopy(); c != nil {
+		return c
+	}
+	return nil
+// DeepCopyInto is an autogenerated deepcopy function, copying the receiver, writing into out. in must be non-nil.
+func (in *DSMasterList) DeepCopyInto(out *DSMasterList) {
+	*out = *in
+	out.TypeMeta = in.TypeMeta
+	in.ListMeta.DeepCopyInto(&out.ListMeta)
+	if in.Items != nil {
+		in, out := &in.Items, &out.Items
+		*out = make([]DSMaster, len(*in))
+		for i := range *in {
+			(*in)[i].DeepCopyInto(&(*out)[i])
+		}
+	}
+// DeepCopy is an autogenerated deepcopy function, copying the receiver, creating a new DSMasterList.
+func (in *DSMasterList) DeepCopy() *DSMasterList {
+	if in == nil {
+		return nil
+	}
+	out := new(DSMasterList)
+	in.DeepCopyInto(out)
+	return out
+// DeepCopyObject is an autogenerated deepcopy function, copying the receiver, creating a new runtime.Object.
+func (in *DSMasterList) DeepCopyObject() runtime.Object {
+	if c := in.DeepCopy(); c != nil {
+		return c
+	}
+	return nil
+// DeepCopyInto is an autogenerated deepcopy function, copying the receiver, writing into out. in must be non-nil.
+func (in *DSMasterSpec) DeepCopyInto(out *DSMasterSpec) {
+	*out = *in
+	if in.Pod != nil {
+		in, out := &in.Pod, &out.Pod
+		*out = new(PodPolicy)
+		(*in).DeepCopyInto(*out)
+	}
+// DeepCopy is an autogenerated deepcopy function, copying the receiver, creating a new DSMasterSpec.
+func (in *DSMasterSpec) DeepCopy() *DSMasterSpec {
+	if in == nil {
+		return nil
+	}
+	out := new(DSMasterSpec)
+	in.DeepCopyInto(out)
+	return out
+// DeepCopyInto is an autogenerated deepcopy function, copying the receiver, writing into out. in must be non-nil.
+func (in *DSMasterStatus) DeepCopyInto(out *DSMasterStatus) {
+	*out = *in
+	if in.Conditions != nil {
+		in, out := &in.Conditions, &out.Conditions
+		*out = make([]DsCondition, len(*in))
+		copy(*out, *in)
+	}
+	in.Members.DeepCopyInto(&out.Members)
+// DeepCopy is an autogenerated deepcopy function, copying the receiver, creating a new DSMasterStatus.
+func (in *DSMasterStatus) DeepCopy() *DSMasterStatus {
+	if in == nil {
+		return nil
+	}
+	out := new(DSMasterStatus)
+	in.DeepCopyInto(out)
+	return out
+// DeepCopyInto is an autogenerated deepcopy function, copying the receiver, writing into out. in must be non-nil.
+func (in *DSWorker) DeepCopyInto(out *DSWorker) {
+	*out = *in
+	out.TypeMeta = in.TypeMeta
+	in.ObjectMeta.DeepCopyInto(&out.ObjectMeta)
+	in.Spec.DeepCopyInto(&out.Spec)
+	in.Status.DeepCopyInto(&out.Status)
+// DeepCopy is an autogenerated deepcopy function, copying the receiver, creating a new DSWorker.
+func (in *DSWorker) DeepCopy() *DSWorker {
+	if in == nil {
+		return nil
+	}
+	out := new(DSWorker)
+	in.DeepCopyInto(out)
+	return out
+// DeepCopyObject is an autogenerated deepcopy function, copying the receiver, creating a new runtime.Object.
+func (in *DSWorker) DeepCopyObject() runtime.Object {
+	if c := in.DeepCopy(); c != nil {
+		return c
+	}
+	return nil
+// DeepCopyInto is an autogenerated deepcopy function, copying the receiver, writing into out. in must be non-nil.
+func (in *DSWorkerList) DeepCopyInto(out *DSWorkerList) {
+	*out = *in
+	out.TypeMeta = in.TypeMeta
+	in.ListMeta.DeepCopyInto(&out.ListMeta)
+	if in.Items != nil {
+		in, out := &in.Items, &out.Items
+		*out = make([]DSWorker, len(*in))
+		for i := range *in {
+			(*in)[i].DeepCopyInto(&(*out)[i])
+		}
+	}
+// DeepCopy is an autogenerated deepcopy function, copying the receiver, creating a new DSWorkerList.
+func (in *DSWorkerList) DeepCopy() *DSWorkerList {
+	if in == nil {
+		return nil
+	}
+	out := new(DSWorkerList)
+	in.DeepCopyInto(out)
+	return out
+// DeepCopyObject is an autogenerated deepcopy function, copying the receiver, creating a new runtime.Object.
+func (in *DSWorkerList) DeepCopyObject() runtime.Object {
+	if c := in.DeepCopy(); c != nil {
+		return c
+	}
+	return nil
+// DeepCopyInto is an autogenerated deepcopy function, copying the receiver, writing into out. in must be non-nil.
+func (in *DSWorkerSpec) DeepCopyInto(out *DSWorkerSpec) {
+	*out = *in
+	if in.Pod != nil {
+		in, out := &in.Pod, &out.Pod
+		*out = new(PodPolicy)
+		(*in).DeepCopyInto(*out)
+	}
+// DeepCopy is an autogenerated deepcopy function, copying the receiver, creating a new DSWorkerSpec.
+func (in *DSWorkerSpec) DeepCopy() *DSWorkerSpec {
+	if in == nil {
+		return nil
+	}
+	out := new(DSWorkerSpec)
+	in.DeepCopyInto(out)
+	return out
+// DeepCopyInto is an autogenerated deepcopy function, copying the receiver, writing into out. in must be non-nil.
+func (in *DSWorkerStatus) DeepCopyInto(out *DSWorkerStatus) {
+	*out = *in
+	if in.Conditions != nil {
+		in, out := &in.Conditions, &out.Conditions
+		*out = make([]DsCondition, len(*in))
+		copy(*out, *in)
+	}
+	in.Members.DeepCopyInto(&out.Members)
+// DeepCopy is an autogenerated deepcopy function, copying the receiver, creating a new DSWorkerStatus.
+func (in *DSWorkerStatus) DeepCopy() *DSWorkerStatus {
+	if in == nil {
+		return nil
+	}
+	out := new(DSWorkerStatus)
+	in.DeepCopyInto(out)
+	return out
+// DeepCopyInto is an autogenerated deepcopy function, copying the receiver, writing into out. in must be non-nil.
+func (in *DsCondition) DeepCopyInto(out *DsCondition) {
+	*out = *in
+// DeepCopy is an autogenerated deepcopy function, copying the receiver, creating a new DsCondition.
+func (in *DsCondition) DeepCopy() *DsCondition {
+	if in == nil {
+		return nil
+	}
+	out := new(DsCondition)
+	in.DeepCopyInto(out)
+	return out
+// DeepCopyInto is an autogenerated deepcopy function, copying the receiver, writing into out. in must be non-nil.
+func (in *MembersStatus) DeepCopyInto(out *MembersStatus) {
+	*out = *in
+	if in.Ready != nil {
+		in, out := &in.Ready, &out.Ready
+		*out = make([]string, len(*in))
+		copy(*out, *in)
+	}
+	if in.Unready != nil {
+		in, out := &in.Unready, &out.Unready
+		*out = make([]string, len(*in))
+		copy(*out, *in)
+	}
+// DeepCopy is an autogenerated deepcopy function, copying the receiver, creating a new MembersStatus.
+func (in *MembersStatus) DeepCopy() *MembersStatus {
+	if in == nil {
+		return nil
+	}
+	out := new(MembersStatus)
+	in.DeepCopyInto(out)
+	return out
+// DeepCopyInto is an autogenerated deepcopy function, copying the receiver, writing into out. in must be non-nil.
+func (in *PodPolicy) DeepCopyInto(out *PodPolicy) {
+	*out = *in
+	if in.Labels != nil {
+		in, out := &in.Labels, &out.Labels
+		*out = make(map[string]string, len(*in))
+		for key, val := range *in {
+			(*out)[key] = val
+		}
+	}
+	if in.NodeSelector != nil {
+		in, out := &in.NodeSelector, &out.NodeSelector
+		*out = make(map[string]string, len(*in))
+		for key, val := range *in {
+			(*out)[key] = val
+		}
+	}
+	if in.Affinity != nil {
+		in, out := &in.Affinity, &out.Affinity
+		*out = new(v1.Affinity)
+		(*in).DeepCopyInto(*out)
+	}
+	in.Resources.DeepCopyInto(&out.Resources)
+	if in.Tolerations != nil {
+		in, out := &in.Tolerations, &out.Tolerations
+		*out = make([]v1.Toleration, len(*in))
+		for i := range *in {
+			(*in)[i].DeepCopyInto(&(*out)[i])
+		}
+	}
+	if in.Envs != nil {
+		in, out := &in.Envs, &out.Envs
+		*out = make([]v1.EnvVar, len(*in))
+		for i := range *in {
+			(*in)[i].DeepCopyInto(&(*out)[i])
+		}
+	}
+	if in.PersistentVolumeClaimSpec != nil {
+		in, out := &in.PersistentVolumeClaimSpec, &out.PersistentVolumeClaimSpec
+		*out = new(v1.PersistentVolumeClaimSpec)
+		(*in).DeepCopyInto(*out)
+	}
+	if in.Annotations != nil {
+		in, out := &in.Annotations, &out.Annotations
+		*out = make(map[string]string, len(*in))
+		for key, val := range *in {
+			(*out)[key] = val
+		}
+	}
+	if in.SecurityContext != nil {
+		in, out := &in.SecurityContext, &out.SecurityContext
+		*out = new(v1.PodSecurityContext)
+		(*in).DeepCopyInto(*out)
+	}
+// DeepCopy is an autogenerated deepcopy function, copying the receiver, creating a new PodPolicy.
+func (in *PodPolicy) DeepCopy() *PodPolicy {
+	if in == nil {
+		return nil
+	}
+	out := new(PodPolicy)
+	in.DeepCopyInto(out)
+	return out
diff --git a/config/configmap/alert/application.yaml b/config/configmap/alert/application.yaml
new file mode 100644
index 0000000..ea30a8d
--- /dev/null
+++ b/config/configmap/alert/application.yaml
@@ -0,0 +1,70 @@
+# Licensed to the Apache Software Foundation (ASF) under one or more
+# contributor license agreements.  See the NOTICE file distributed with
+# this work for additional information regarding copyright ownership.
+# The ASF licenses this file to You under the Apache License, Version 2.0
+# (the "License"); you may not use this file except in compliance with
+# the License.  You may obtain a copy of the License at
+# Unless required by applicable law or agreed to in writing, software
+# distributed under the License is distributed on an "AS IS" BASIS,
+# See the License for the specific language governing permissions and
+# limitations under the License.
+  application:
+    name: alert-server
+  jackson:
+    time-zone: UTC
+    date-format: "yyyy-MM-dd HH:mm:ss"
+  banner:
+    charset: UTF-8
+  datasource:
+    driver-class-name: org.postgresql.Driver
+    url: jdbc:postgresql://
+    username: postgresadmin
+    password: admin12345
+    hikari:
+      connection-test-query: select 1
+      minimum-idle: 5
+      auto-commit: true
+      validation-timeout: 3000
+      pool-name: DolphinScheduler
+      maximum-pool-size: 50
+      connection-timeout: 30000
+      idle-timeout: 600000
+      leak-detection-threshold: 0
+      initialization-fail-timeout: 1
+  port: 50053
+  endpoints:
+    web:
+      exposure:
+        include: '*'
+  metrics:
+    tags:
+      application: ${}
+  port: 50052
+  enabled: true
+# Override by profile
+  config:
+    activate:
+      on-profile: mysql
+  datasource:
+    driver-class-name: com.mysql.jdbc.Driver
+    url: jdbc:mysql://
diff --git a/config/configmap/alert/ds-alert-configmap.yaml b/config/configmap/alert/ds-alert-configmap.yaml
new file mode 100644
index 0000000..12a0065
--- /dev/null
+++ b/config/configmap/alert/ds-alert-configmap.yaml
@@ -0,0 +1,7 @@
+apiVersion: v1
+kind: ConfigMap
+  name: ds-alert-configmap
+  labels:
+    app: ds-alert
+  namespace: ds
diff --git a/config/configmap/alert/ds-alert-deployment.yaml b/config/configmap/alert/ds-alert-deployment.yaml
new file mode 100644
index 0000000..c752995
--- /dev/null
+++ b/config/configmap/alert/ds-alert-deployment.yaml
@@ -0,0 +1,34 @@
+apiVersion: apps/v1
+kind: Deployment
+  name: ds-alert-deployment
+  namespace: ds
+  replicas: 1
+  selector:
+    matchLabels:
+      app: ds-alert
+  template:
+    metadata:
+      labels:
+        app: ds-alert
+    spec:
+      containers:
+        - name: ds-alert
+          image: apache/dolphinscheduler-alert-server:3.0.0-alpha
+          imagePullPolicy: "IfNotPresent"
+          ports:
+            - containerPort: 50052
+          volumeMounts:
+            - mountPath: /opt/dolphinscheduler/conf/application.yaml
+              name: config-map
+              subPath: application.yaml
+      #          command:
+      #            - "/bin/sh"
+      #          args:
+      #            - "-c"
+      #            - "while true; do echo hello; sleep 10;done"
+      volumes:
+        - name: config-map
+          configMap:
+            name: ds-alert-config
\ No newline at end of file
diff --git a/config/configmap/alert/ds-alert-service.yaml b/config/configmap/alert/ds-alert-service.yaml
new file mode 100644
index 0000000..8761644
--- /dev/null
+++ b/config/configmap/alert/ds-alert-service.yaml
@@ -0,0 +1,18 @@
+apiVersion: v1
+kind: Service
+  name: ds-alert-service
+  namespace: ds
+  type: NodePort
+  ports:
+    - protocol: TCP
+      port: 50052
+      targetPort: 50052
+      nodePort: 30002
+  selector:
+    app: ds-api
diff --git a/config/configmap/api/application.yaml b/config/configmap/api/application.yaml
new file mode 100644
index 0000000..a11d1b7
--- /dev/null
+++ b/config/configmap/api/application.yaml
@@ -0,0 +1,143 @@
+# Licensed to the Apache Software Foundation (ASF) under one or more
+# contributor license agreements.  See the NOTICE file distributed with
+# this work for additional information regarding copyright ownership.
+# The ASF licenses this file to You under the Apache License, Version 2.0
+# (the "License"); you may not use this file except in compliance with
+# the License.  You may obtain a copy of the License at
+# Unless required by applicable law or agreed to in writing, software
+# distributed under the License is distributed on an "AS IS" BASIS,
+# See the License for the specific language governing permissions and
+# limitations under the License.
+  port: 12345
+  servlet:
+    session:
+      timeout: 120m
+    context-path: /dolphinscheduler/
+  compression:
+    enabled: true
+    mime-types: text/html,text/xml,text/plain,text/css,text/javascript,application/javascript,application/json,application/xml
+  jetty:
+    max-http-form-post-size: 5000000
+  application:
+    name: api-server
+  banner:
+    charset: UTF-8
+  jackson:
+    time-zone: UTC
+    date-format: "yyyy-MM-dd HH:mm:ss"
+  servlet:
+    multipart:
+      max-file-size: 1024MB
+      max-request-size: 1024MB
+  messages:
+    basename: i18n/messages
+  datasource:
+    driver-class-name: org.postgresql.Driver
+    url: jdbc:postgresql://
+    username: postgresadmin
+    password: admin12345
+    hikari:
+      connection-test-query: select 1
+      minimum-idle: 5
+      auto-commit: true
+      validation-timeout: 3000
+      pool-name: DolphinScheduler
+      maximum-pool-size: 50
+      connection-timeout: 30000
+      idle-timeout: 600000
+      leak-detection-threshold: 0
+      initialization-fail-timeout: 1
+  quartz:
+    auto-startup: false
+    job-store-type: jdbc
+    jdbc:
+      initialize-schema: never
+    properties:
+      org.quartz.threadPool:threadPriority: 5
+      org.quartz.jobStore.isClustered: true
+      org.quartz.jobStore.class: org.quartz.impl.jdbcjobstore.JobStoreTX
+      org.quartz.scheduler.instanceId: AUTO
+      org.quartz.jobStore.tablePrefix: QRTZ_
+      org.quartz.jobStore.acquireTriggersWithinLock: true
+      org.quartz.scheduler.instanceName: DolphinScheduler
+      org.quartz.threadPool.class: org.quartz.simpl.SimpleThreadPool
+      org.quartz.jobStore.useProperties: false
+      org.quartz.threadPool.makeThreadsDaemons: true
+      org.quartz.threadPool.threadCount: 25
+      org.quartz.jobStore.misfireThreshold: 60000
+      org.quartz.scheduler.makeSchedulerThreadDaemon: true
+      org.quartz.jobStore.driverDelegateClass: org.quartz.impl.jdbcjobstore.PostgreSQLDelegate
+      org.quartz.jobStore.clusterCheckinInterval: 5000
+  endpoints:
+    web:
+      exposure:
+        include: '*'
+  metrics:
+    tags:
+      application: ${}
+  type: zookeeper
+  zookeeper:
+    namespace: dolphinscheduler
+    connect-string: localhost:2181
+    retry-policy:
+      base-sleep-time: 60ms
+      max-sleep: 300ms
+      max-retries: 5
+    session-timeout: 30s
+    connection-timeout: 9s
+    block-until-connected: 600ms
+    digest: ~
+  enabled: false
+  enabled: true
+  # Weather enable python gateway server or not. The default value is true.
+  enabled: true
+  # The address of Python gateway server start. Set its value to `` if your Python API run in different
+  # between Python gateway server. It could be be specific to other address like `` or `localhost`
+  gateway-server-address:
+  # The port of Python gateway server start. Define which port you could connect to Python gateway server from
+  # Python API side.
+  gateway-server-port: 25333
+  # The address of Python callback client.
+  python-address:
+  # The port of Python callback client.
+  python-port: 25334
+  # Close connection of socket server if no other request accept after x milliseconds. Define value is (0 = infinite),
+  # and socket server would never close even though no requests accept
+  connect-timeout: 0
+  # Close each active connection of socket server if python program not active after x milliseconds. Define value is
+  # (0 = infinite), and socket server would never close even though no requests accept
+  read-timeout: 0
+# Override by profile
+  config:
+    activate:
+      on-profile: mysql
+  datasource:
+    driver-class-name: com.mysql.jdbc.Driver
+    url: jdbc:mysql://
+  quartz:
+    properties:
+      org.quartz.jobStore.driverDelegateClass: org.quartz.impl.jdbcjobstore.StdJDBCDelegate
diff --git a/config/configmap/api/ds-api-configmap.yaml b/config/configmap/api/ds-api-configmap.yaml
new file mode 100644
index 0000000..b786e1c
--- /dev/null
+++ b/config/configmap/api/ds-api-configmap.yaml
@@ -0,0 +1,7 @@
+apiVersion: v1
+kind: ConfigMap
+  name: ds-api-configmap
+  labels:
+    app: ds-api
+  namespace: ds
diff --git a/config/configmap/api/ds-api-deployment.yaml b/config/configmap/api/ds-api-deployment.yaml
new file mode 100644
index 0000000..2451d10
--- /dev/null
+++ b/config/configmap/api/ds-api-deployment.yaml
@@ -0,0 +1,37 @@
+apiVersion: apps/v1
+kind: Deployment
+  name: ds-api-deployment
+  namespace: ds
+  replicas: 1
+  selector:
+    matchLabels:
+      app: ds-api
+  template:
+    metadata:
+      labels:
+        app: ds-api
+    spec:
+      containers:
+        - name: ds-api
+          image: apache/dolphinscheduler-api:3.0.0-alpha
+          imagePullPolicy: "IfNotPresent"
+          env:
+              value:
+          ports:
+            - containerPort: 12345
+          volumeMounts:
+            - mountPath: /opt/dolphinscheduler/conf/application.yaml
+              name: config-map
+              subPath: application.yaml
+      #          command:
+      #            - "/bin/sh"
+      #          args:
+      #            - "-c"
+      #            - "while true; do echo hello; sleep 10;done"
+      volumes:
+        - name: config-map
+          configMap:
+            name: ds-api-config
\ No newline at end of file
diff --git a/config/configmap/api/ds-api-service.yaml b/config/configmap/api/ds-api-service.yaml
new file mode 100644
index 0000000..58c2fe5
--- /dev/null
+++ b/config/configmap/api/ds-api-service.yaml
@@ -0,0 +1,18 @@
+apiVersion: v1
+kind: Service
+  name: ds-api-service
+  namespace: ds
+  type: NodePort
+  ports:
+    - protocol: TCP
+      port: 12345
+      targetPort: 12345
+      nodePort: 30001
+  selector:
+    app: ds-api
diff --git a/config/configmap/ds-pv.yaml b/config/configmap/ds-pv.yaml
new file mode 100644
index 0000000..f1ad043
--- /dev/null
+++ b/config/configmap/ds-pv.yaml
@@ -0,0 +1,15 @@
+kind: PersistentVolume
+apiVersion: v1
+  name: ds-pv-volume
+  labels:
+    app: pv
+  namespace: ds
+  storageClassName: standard
+  capacity:
+    storage: 4Gi
+  accessModes:
+    - ReadWriteMany
+  hostPath:
+    path: "/Volumes/ds/logs"
diff --git a/config/configmap/ds-pvc.yaml b/config/configmap/ds-pvc.yaml
new file mode 100644
index 0000000..74bdbbc
--- /dev/null
+++ b/config/configmap/ds-pvc.yaml
@@ -0,0 +1,17 @@
+kind: PersistentVolumeClaim
+apiVersion: v1
+  name: ds-pv-claim
+  labels:
+    app: ds-pvc
+  namespace: ds
+  storageClassName: standard
+  accessModes:
+    - ReadWriteMany
+  resources:
+    requests:
+      storage: 100Mi
+  selector:
+    matchLabels:
+      app: pv
diff --git a/config/configmap/master/application.yaml b/config/configmap/master/application.yaml
new file mode 100644
index 0000000..d92656e
--- /dev/null
+++ b/config/configmap/master/application.yaml
@@ -0,0 +1,142 @@
+# Licensed to the Apache Software Foundation (ASF) under one or more
+# contributor license agreements.  See the NOTICE file distributed with
+# this work for additional information regarding copyright ownership.
+# The ASF licenses this file to You under the Apache License, Version 2.0
+# (the "License"); you may not use this file except in compliance with
+# the License.  You may obtain a copy of the License at
+# Unless required by applicable law or agreed to in writing, software
+# distributed under the License is distributed on an "AS IS" BASIS,
+# See the License for the specific language governing permissions and
+# limitations under the License.
+  banner:
+    charset: UTF-8
+  application:
+    name: master-server
+  jackson:
+    time-zone: UTC
+    date-format: "yyyy-MM-dd HH:mm:ss"
+  cache:
+    # default enable cache, you can disable by `type: none`
+    type: none
+    cache-names:
+      - tenant
+      - user
+      - processDefinition
+      - processTaskRelation
+      - taskDefinition
+    caffeine:
+      spec: maximumSize=100,expireAfterWrite=300s,recordStats
+  datasource:
+    driver-class-name: org.postgresql.Driver
+    url: jdbc:postgresql://
+    username: postgresadmin
+    password: admin12345
+    hikari:
+      connection-test-query: select 1
+      minimum-idle: 5
+      auto-commit: true
+      validation-timeout: 3000
+      pool-name: DolphinScheduler
+      maximum-pool-size: 50
+      connection-timeout: 30000
+      idle-timeout: 600000
+      leak-detection-threshold: 0
+      initialization-fail-timeout: 1
+  quartz:
+    job-store-type: jdbc
+    jdbc:
+      initialize-schema: never
+    properties:
+      org.quartz.threadPool:threadPriority: 5
+      org.quartz.jobStore.isClustered: true
+      org.quartz.jobStore.class: org.quartz.impl.jdbcjobstore.JobStoreTX
+      org.quartz.scheduler.instanceId: AUTO
+      org.quartz.jobStore.tablePrefix: QRTZ_
+      org.quartz.jobStore.acquireTriggersWithinLock: true
+      org.quartz.scheduler.instanceName: DolphinScheduler
+      org.quartz.threadPool.class: org.quartz.simpl.SimpleThreadPool
+      org.quartz.jobStore.useProperties: false
+      org.quartz.threadPool.makeThreadsDaemons: true
+      org.quartz.threadPool.threadCount: 25
+      org.quartz.jobStore.misfireThreshold: 60000
+      org.quartz.scheduler.makeSchedulerThreadDaemon: true
+      org.quartz.jobStore.driverDelegateClass: org.quartz.impl.jdbcjobstore.PostgreSQLDelegate
+      org.quartz.jobStore.clusterCheckinInterval: 5000
+  type: zookeeper
+  zookeeper:
+    namespace: dolphinscheduler
+    connect-string:
+    retry-policy:
+      base-sleep-time: 60ms
+      max-sleep: 300ms
+      max-retries: 5
+    session-timeout: 30s
+    connection-timeout: 9s
+    block-until-connected: 600ms
+    digest: ~
+  listen-port: 5678
+  # master fetch command num
+  fetch-command-num: 10
+  # master prepare execute thread number to limit handle commands in parallel
+  pre-exec-threads: 10
+  # master execute thread number to limit process instances in parallel
+  exec-threads: 100
+  # master dispatch task number per batch
+  dispatch-task-number: 3
+  # master host selector to select a suitable worker, default value: LowerWeight. Optional values include random, round_robin, lower_weight
+  host-selector: lower_weight
+  # master heartbeat interval, the unit is second
+  heartbeat-interval: 10
+  # master commit task retry times
+  task-commit-retry-times: 5
+  # master commit task interval, the unit is millisecond
+  task-commit-interval: 1000
+  state-wheel-interval: 5
+  # master max cpuload avg, only higher than the system cpu load average, master server can schedule. default value -1: the number of cpu cores * 2
+  max-cpu-load-avg: -1
+  # master reserved memory, only lower than system available memory, master server can schedule. default value 0.3, the unit is G
+  reserved-memory: 0.3
+  # failover interval, the unit is minute
+  failover-interval: 10
+  # kill yarn jon when failover taskInstance, default true
+  kill-yarn-job-when-task-failover: true
+  port: 5679
+  endpoints:
+    web:
+      exposure:
+        include: '*'
+  metrics:
+    tags:
+      application: ${}
+  enabled: true
+# Override by profile
+  config:
+    activate:
+      on-profile: mysql
+  datasource:
+    driver-class-name: com.mysql.jdbc.Driver
+    url: jdbc:mysql://
+  quartz:
+    properties:
+      org.quartz.jobStore.driverDelegateClass: org.quartz.impl.jdbcjobstore.StdJDBCDelegate
diff --git a/config/configmap/postgreSQL/postgres-configmap.yaml b/config/configmap/postgreSQL/postgres-configmap.yaml
new file mode 100644
index 0000000..5ff2779
--- /dev/null
+++ b/config/configmap/postgreSQL/postgres-configmap.yaml
@@ -0,0 +1,11 @@
+apiVersion: v1
+kind: ConfigMap
+  name: postgres-config
+  labels:
+    app: postgres
+  namespace: ds
+  POSTGRES_DB: dolphinscheduler
+  POSTGRES_USER: postgresadmin
+  POSTGRES_PASSWORD: admin12345
\ No newline at end of file
diff --git a/config/configmap/postgreSQL/postgres-deployment.yaml b/config/configmap/postgreSQL/postgres-deployment.yaml
new file mode 100644
index 0000000..63d8c43
--- /dev/null
+++ b/config/configmap/postgreSQL/postgres-deployment.yaml
@@ -0,0 +1,33 @@
+apiVersion: apps/v1
+kind: Deployment
+  name: postgres-deployment
+  namespace: ds
+  strategy:
+    type: Recreate
+  selector:
+    matchLabels:
+      app: postgres
+  replicas: 1
+  template:
+    metadata:
+      labels:
+        app: postgres
+    spec:
+      containers:
+        - name: postgres
+          image: postgres:13
+          imagePullPolicy: "IfNotPresent"
+          ports:
+            - containerPort: 5432
+          envFrom:
+            - configMapRef:
+                name: postgres-config
+          volumeMounts:
+            - mountPath: /var/lib/postgresql/data
+              name: postgredb
+      volumes:
+        - name: postgredb
+          persistentVolumeClaim:
+            claimName: postgres-pv-claim
\ No newline at end of file
diff --git a/config/configmap/postgreSQL/postgres-pv.yaml b/config/configmap/postgreSQL/postgres-pv.yaml
new file mode 100644
index 0000000..9e5867b
--- /dev/null
+++ b/config/configmap/postgreSQL/postgres-pv.yaml
@@ -0,0 +1,16 @@
+kind: PersistentVolume
+apiVersion: v1
+  name: postgres-pv-volume
+  labels:
+    type: local
+    app: postgres
+  namespace: ds
+  storageClassName: standard
+  capacity:
+    storage: 2Gi
+  accessModes:
+    - ReadWriteMany
+  hostPath:
+    path: "/Volumes/ds/pg/data"
diff --git a/config/configmap/postgreSQL/postgres-pvc.yaml b/config/configmap/postgreSQL/postgres-pvc.yaml
new file mode 100644
index 0000000..0281eaa
--- /dev/null
+++ b/config/configmap/postgreSQL/postgres-pvc.yaml
@@ -0,0 +1,14 @@
+kind: PersistentVolumeClaim
+apiVersion: v1
+  name: postgres-pv-claim
+  labels:
+    app: postgres
+  namespace: ds
+  storageClassName: standard
+  accessModes:
+    - ReadWriteMany
+  resources:
+    requests:
+      storage: 500Mi
\ No newline at end of file
diff --git a/config/configmap/postgreSQL/postgres-service.yaml b/config/configmap/postgreSQL/postgres-service.yaml
new file mode 100644
index 0000000..0ec5c0a
--- /dev/null
+++ b/config/configmap/postgreSQL/postgres-service.yaml
@@ -0,0 +1,16 @@
+apiVersion: v1
+kind: Service
+  name: postgres-service
+  labels:
+    app: postgres
+  namespace: ds
+  type: NodePort
+  ports:
+    - port: 5432
+      targetPort: 5432
+      nodePort: 30022
+      protocol: TCP
+  selector:
+    app: postgres
\ No newline at end of file
diff --git a/config/configmap/worker/application.yaml b/config/configmap/worker/application.yaml
new file mode 100644
index 0000000..48c89ae
--- /dev/null
+++ b/config/configmap/worker/application.yaml
@@ -0,0 +1,91 @@
+# Licensed to the Apache Software Foundation (ASF) under one or more
+# contributor license agreements.  See the NOTICE file distributed with
+# this work for additional information regarding copyright ownership.
+# The ASF licenses this file to You under the Apache License, Version 2.0
+# (the "License"); you may not use this file except in compliance with
+# the License.  You may obtain a copy of the License at
+# Unless required by applicable law or agreed to in writing, software
+# distributed under the License is distributed on an "AS IS" BASIS,
+# See the License for the specific language governing permissions and
+# limitations under the License.
+  banner:
+    charset: UTF-8
+  application:
+    name: worker-server
+  jackson:
+    time-zone: UTC
+    date-format: "yyyy-MM-dd HH:mm:ss"
+  datasource:
+    driver-class-name: org.postgresql.Driver
+    url: jdbc:postgresql://
+    username: postgresadmin
+    password: admin12345
+    hikari:
+      connection-test-query: select 1
+      minimum-idle: 5
+      auto-commit: true
+      validation-timeout: 3000
+      pool-name: DolphinScheduler
+      maximum-pool-size: 50
+      connection-timeout: 30000
+      idle-timeout: 600000
+      leak-detection-threshold: 0
+      initialization-fail-timeout: 1
+  type: zookeeper
+  zookeeper:
+    namespace: dolphinscheduler
+    connect-string: localhost:2181
+    retry-policy:
+      base-sleep-time: 60ms
+      max-sleep: 300ms
+      max-retries: 5
+    session-timeout: 30s
+    connection-timeout: 9s
+    block-until-connected: 600ms
+    digest: ~
+  # worker listener port
+  listen-port: 1234
+  # worker execute thread number to limit task instances in parallel
+  exec-threads: 100
+  # worker heartbeat interval, the unit is second
+  heartbeat-interval: 10
+  # worker host weight to dispatch tasks, default value 100
+  host-weight: 100
+  # worker tenant auto create
+  tenant-auto-create: true
+  # worker max cpuload avg, only higher than the system cpu load average, worker server can be dispatched tasks. default value -1: the number of cpu cores * 2
+  max-cpu-load-avg: -1
+  # worker reserved memory, only lower than system available memory, worker server can be dispatched tasks. default value 0.3, the unit is G
+  reserved-memory: 0.3
+  # default worker groups separated by comma, like 'worker.groups=default,test'
+  groups:
+    - default
+  # alert server listen host
+  alert-listen-host: localhost
+  alert-listen-port: 50052
+  port: 1235
+  endpoints:
+    web:
+      exposure:
+        include: '*'
+  metrics:
+    tags:
+      application: ${}
+  enabled: true
diff --git a/config/configmap/zookeeper/zookeeper.yaml b/config/configmap/zookeeper/zookeeper.yaml
new file mode 100644
index 0000000..547764d
--- /dev/null
+++ b/config/configmap/zookeeper/zookeeper.yaml
@@ -0,0 +1,41 @@
+apiVersion: apps/v1
+kind: Deployment
+  labels:
+    app: zookeeper
+  name: zookeeper
+  namespace: ds
+  replicas: 1
+  selector:
+    matchLabels:
+      app: zookeeper
+  template:
+    metadata:
+      labels:
+        app: zookeeper
+    spec:
+      containers:
+        - image:
+          imagePullPolicy: IfNotPresent
+          name: zookeeper
+          ports:
+            - containerPort: 2181
+apiVersion: v1
+kind: Service
+  labels:
+    app: zookeeper-service
+  name: zookeeper-service
+  namespace: ds
+  type: NodePort
+  ports:
+    - name: zookeeper-port
+      port: 2181
+      targetPort: 2181
+      nodePort: 31281
+  selector:
+    app: zookeeper
diff --git a/config/crd/bases/ds.apache.dolphinscheduler.dev_dsmasters.yaml b/config/crd/bases/ds.apache.dolphinscheduler.dev_dsmasters.yaml
new file mode 100644
index 0000000..8250f94
--- /dev/null
+++ b/config/crd/bases/ds.apache.dolphinscheduler.dev_dsmasters.yaml
@@ -0,0 +1,1581 @@
+kind: CustomResourceDefinition
+  annotations:
+ v0.8.0
+  creationTimestamp: null
+  name:
+  group:
+  names:
+    kind: DSMaster
+    listKind: DSMasterList
+    plural: dsmasters
+    singular: dsmaster
+  scope: Namespaced
+  versions:
+  - name: v1alpha1
+    schema:
+      openAPIV3Schema:
+        description: DSMaster is the Schema for the dsmasters API
+        properties:
+          apiVersion:
+            description: 'APIVersion defines the versioned schema of this representation
+              of an object. Servers should convert recognized schemas to the latest
+              internal value, and may reject unrecognized values. More info:'
+            type: string
+          kind:
+            description: 'Kind is a string value representing the REST resource this
+              object represents. Servers may infer this from the endpoint the client
+              submits requests to. Cannot be updated. In CamelCase. More info:'
+            type: string
+          metadata:
+            type: object
+          spec:
+            description: DSMasterSpec defines the desired state of DSMaster
+            properties:
+              log_pvc_name:
+                description: LogPvcName defines the  log capacity of application ,the
+                  position is /opt/dolphinscheduler/logs eg 20Gi
+                type: string
+              paused:
+                default: false
+                description: Paused is to pause the control of the operator for the
+                  ds-master .
+                type: boolean
+              pod:
+                description: Pod defines the policy to create pod for the dm-master
+                  pod. Updating Pod does not take effect on any existing dm-master
+                  pods.
+                properties:
+                  affinity:
+                    description: The scheduling constraints on dm-master pods.
+                    properties:
+                      nodeAffinity:
+                        description: Describes node affinity scheduling rules for
+                          the pod.
+                        properties:
+                          preferredDuringSchedulingIgnoredDuringExecution:
+                            description: The scheduler will prefer to schedule pods
+                              to nodes that satisfy the affinity expressions specified
+                              by this field, but it may choose a node that violates
+                              one or more of the expressions. The node that is most
+                              preferred is the one with the greatest sum of weights,
+                              i.e. for each node that meets all of the scheduling
+                              requirements (resource request, requiredDuringScheduling
+                              affinity expressions, etc.), compute a sum by iterating
+                              through the elements of this field and adding "weight"
+                              to the sum if the node matches the corresponding matchExpressions;
+                              the node(s) with the highest sum are the most preferred.
+                            items:
+                              description: An empty preferred scheduling term matches
+                                all objects with implicit weight 0 (i.e. it's a no-op).
+                                A null preferred scheduling term matches no objects
+                                (i.e. is also a no-op).
+                              properties:
+                                preference:
+                                  description: A node selector term, associated with
+                                    the corresponding weight.
+                                  properties:
+                                    matchExpressions:
+                                      description: A list of node selector requirements
+                                        by node's labels.
+                                      items:
+                                        description: A node selector requirement is
+                                          a selector that contains values, a key,
+                                          and an operator that relates the key and
+                                          values.
+                                        properties:
+                                          key:
+                                            description: The label key that the selector
+                                              applies to.
+                                            type: string
+                                          operator:
+                                            description: Represents a key's relationship
+                                              to a set of values. Valid operators
+                                              are In, NotIn, Exists, DoesNotExist.
+                                              Gt, and Lt.
+                                            type: string
+                                          values:
+                                            description: An array of string values.
+                                              If the operator is In or NotIn, the
+                                              values array must be non-empty. If the
+                                              operator is Exists or DoesNotExist,
+                                              the values array must be empty. If the
+                                              operator is Gt or Lt, the values array
+                                              must have a single element, which will
+                                              be interpreted as an integer. This array
+                                              is replaced during a strategic merge
+                                              patch.
+                                            items:
+                                              type: string
+                                            type: array
+                                        required:
+                                        - key
+                                        - operator
+                                        type: object
+                                      type: array
+                                    matchFields:
+                                      description: A list of node selector requirements
+                                        by node's fields.
+                                      items:
+                                        description: A node selector requirement is
+                                          a selector that contains values, a key,
+                                          and an operator that relates the key and
+                                          values.
+                                        properties:
+                                          key:
+                                            description: The label key that the selector
+                                              applies to.
+                                            type: string
+                                          operator:
+                                            description: Represents a key's relationship
+                                              to a set of values. Valid operators
+                                              are In, NotIn, Exists, DoesNotExist.
+                                              Gt, and Lt.
+                                            type: string
+                                          values:
+                                            description: An array of string values.
+                                              If the operator is In or NotIn, the
+                                              values array must be non-empty. If the
+                                              operator is Exists or DoesNotExist,
+                                              the values array must be empty. If the
+                                              operator is Gt or Lt, the values array
+                                              must have a single element, which will
+                                              be interpreted as an integer. This array
+                                              is replaced during a strategic merge
+                                              patch.
+                                            items:
+                                              type: string
+                                            type: array
+                                        required:
+                                        - key
+                                        - operator
+                                        type: object
+                                      type: array
+                                  type: object
+                                weight:
+                                  description: Weight associated with matching the
+                                    corresponding nodeSelectorTerm, in the range 1-100.
+                                  format: int32
+                                  type: integer
+                              required:
+                              - preference
+                              - weight
+                              type: object
+                            type: array
+                          requiredDuringSchedulingIgnoredDuringExecution:
+                            description: If the affinity requirements specified by
+                              this field are not met at scheduling time, the pod will
+                              not be scheduled onto the node. If the affinity requirements
+                              specified by this field cease to be met at some point
+                              during pod execution (e.g. due to an update), the system
+                              may or may not try to eventually evict the pod from
+                              its node.
+                            properties:
+                              nodeSelectorTerms:
+                                description: Required. A list of node selector terms.
+                                  The terms are ORed.
+                                items:
+                                  description: A null or empty node selector term
+                                    matches no objects. The requirements of them are
+                                    ANDed. The TopologySelectorTerm type implements
+                                    a subset of the NodeSelectorTerm.
+                                  properties:
+                                    matchExpressions:
+                                      description: A list of node selector requirements
+                                        by node's labels.
+                                      items:
+                                        description: A node selector requirement is
+                                          a selector that contains values, a key,
+                                          and an operator that relates the key and
+                                          values.
+                                        properties:
+                                          key:
+                                            description: The label key that the selector
+                                              applies to.
+                                            type: string
+                                          operator:
+                                            description: Represents a key's relationship
+                                              to a set of values. Valid operators
+                                              are In, NotIn, Exists, DoesNotExist.
+                                              Gt, and Lt.
+                                            type: string
+                                          values:
+                                            description: An array of string values.
+                                              If the operator is In or NotIn, the
+                                              values array must be non-empty. If the
+                                              operator is Exists or DoesNotExist,
+                                              the values array must be empty. If the
+                                              operator is Gt or Lt, the values array
+                                              must have a single element, which will
+                                              be interpreted as an integer. This array
+                                              is replaced during a strategic merge
+                                              patch.
+                                            items:
+                                              type: string
+                                            type: array
+                                        required:
+                                        - key
+                                        - operator
+                                        type: object
+                                      type: array
+                                    matchFields:
+                                      description: A list of node selector requirements
+                                        by node's fields.
+                                      items:
+                                        description: A node selector requirement is
+                                          a selector that contains values, a key,
+                                          and an operator that relates the key and
+                                          values.
+                                        properties:
+                                          key:
+                                            description: The label key that the selector
+                                              applies to.
+                                            type: string
+                                          operator:
+                                            description: Represents a key's relationship
+                                              to a set of values. Valid operators
+                                              are In, NotIn, Exists, DoesNotExist.
+                                              Gt, and Lt.
+                                            type: string
+                                          values:
+                                            description: An array of string values.
+                                              If the operator is In or NotIn, the
+                                              values array must be non-empty. If the
+                                              operator is Exists or DoesNotExist,
+                                              the values array must be empty. If the
+                                              operator is Gt or Lt, the values array
+                                              must have a single element, which will
+                                              be interpreted as an integer. This array
+                                              is replaced during a strategic merge
+                                              patch.
+                                            items:
+                                              type: string
+                                            type: array
+                                        required:
+                                        - key
+                                        - operator
+                                        type: object
+                                      type: array
+                                  type: object
+                                type: array
+                            required:
+                            - nodeSelectorTerms
+                            type: object
+                        type: object
+                      podAffinity:
+                        description: Describes pod affinity scheduling rules (e.g.
+                          co-locate this pod in the same node, zone, etc. as some
+                          other pod(s)).
+                        properties:
+                          preferredDuringSchedulingIgnoredDuringExecution:
+                            description: The scheduler will prefer to schedule pods
+                              to nodes that satisfy the affinity expressions specified
+                              by this field, but it may choose a node that violates
+                              one or more of the expressions. The node that is most
+                              preferred is the one with the greatest sum of weights,
+                              i.e. for each node that meets all of the scheduling
+                              requirements (resource request, requiredDuringScheduling
+                              affinity expressions, etc.), compute a sum by iterating
+                              through the elements of this field and adding "weight"
+                              to the sum if the node has pods which matches the corresponding
+                              podAffinityTerm; the node(s) with the highest sum are
+                              the most preferred.
+                            items:
+                              description: The weights of all of the matched WeightedPodAffinityTerm
+                                fields are added per-node to find the most preferred
+                                node(s)
+                              properties:
+                                podAffinityTerm:
+                                  description: Required. A pod affinity term, associated
+                                    with the corresponding weight.
+                                  properties:
+                                    labelSelector:
+                                      description: A label query over a set of resources,
+                                        in this case pods.
+                                      properties:
+                                        matchExpressions:
+                                          description: matchExpressions is a list
+                                            of label selector requirements. The requirements
+                                            are ANDed.
+                                          items:
+                                            description: A label selector requirement
+                                              is a selector that contains values,
+                                              a key, and an operator that relates
+                                              the key and values.
+                                            properties:
+                                              key:
+                                                description: key is the label key
+                                                  that the selector applies to.
+                                                type: string
+                                              operator:
+                                                description: operator represents a
+                                                  key's relationship to a set of values.
+                                                  Valid operators are In, NotIn, Exists
+                                                  and DoesNotExist.
+                                                type: string
+                                              values:
+                                                description: values is an array of
+                                                  string values. If the operator is
+                                                  In or NotIn, the values array must
+                                                  be non-empty. If the operator is
+                                                  Exists or DoesNotExist, the values
+                                                  array must be empty. This array
+                                                  is replaced during a strategic merge
+                                                  patch.
+                                                items:
+                                                  type: string
+                                                type: array
+                                            required:
+                                            - key
+                                            - operator
+                                            type: object
+                                          type: array
+                                        matchLabels:
+                                          additionalProperties:
+                                            type: string
+                                          description: matchLabels is a map of {key,value}
+                                            pairs. A single {key,value} in the matchLabels
+                                            map is equivalent to an element of matchExpressions,
+                                            whose key field is "key", the operator
+                                            is "In", and the values array contains
+                                            only "value". The requirements are ANDed.
+                                          type: object
+                                      type: object
+                                    namespaceSelector:
+                                      description: A label query over the set of namespaces
+                                        that the term applies to. The term is applied
+                                        to the union of the namespaces selected by
+                                        this field and the ones listed in the namespaces
+                                        field. null selector and null or empty namespaces
+                                        list means "this pod's namespace". An empty
+                                        selector ({}) matches all namespaces. This
+                                        field is beta-level and is only honored when
+                                        PodAffinityNamespaceSelector feature is enabled.
+                                      properties:
+                                        matchExpressions:
+                                          description: matchExpressions is a list
+                                            of label selector requirements. The requirements
+                                            are ANDed.
+                                          items:
+                                            description: A label selector requirement
+                                              is a selector that contains values,
+                                              a key, and an operator that relates
+                                              the key and values.
+                                            properties:
+                                              key:
+                                                description: key is the label key
+                                                  that the selector applies to.
+                                                type: string
+                                              operator:
+                                                description: operator represents a
+                                                  key's relationship to a set of values.
+                                                  Valid operators are In, NotIn, Exists
+                                                  and DoesNotExist.
+                                                type: string
+                                              values:
+                                                description: values is an array of
+                                                  string values. If the operator is
+                                                  In or NotIn, the values array must
+                                                  be non-empty. If the operator is
+                                                  Exists or DoesNotExist, the values
+                                                  array must be empty. This array
+                                                  is replaced during a strategic merge
+                                                  patch.
+                                                items:
+                                                  type: string
+                                                type: array
+                                            required:
+                                            - key
+                                            - operator
+                                            type: object
+                                          type: array
+                                        matchLabels:
+                                          additionalProperties:
+                                            type: string
+                                          description: matchLabels is a map of {key,value}
+                                            pairs. A single {key,value} in the matchLabels
+                                            map is equivalent to an element of matchExpressions,
+                                            whose key field is "key", the operator
+                                            is "In", and the values array contains
+                                            only "value". The requirements are ANDed.
+                                          type: object
+                                      type: object
+                                    namespaces:
+                                      description: namespaces specifies a static list
+                                        of namespace names that the term applies to.
+                                        The term is applied to the union of the namespaces
+                                        listed in this field and the ones selected
+                                        by namespaceSelector. null or empty namespaces
+                                        list and null namespaceSelector means "this
+                                        pod's namespace"
+                                      items:
+                                        type: string
+                                      type: array
+                                    topologyKey:
+                                      description: This pod should be co-located (affinity)
+                                        or not co-located (anti-affinity) with the
+                                        pods matching the labelSelector in the specified
+                                        namespaces, where co-located is defined as
+                                        running on a node whose value of the label
+                                        with key topologyKey matches that of any node
+                                        on which any of the selected pods is running.
+                                        Empty topologyKey is not allowed.
+                                      type: string
+                                  required:
+                                  - topologyKey
+                                  type: object
+                                weight:
+                                  description: weight associated with matching the
+                                    corresponding podAffinityTerm, in the range 1-100.
+                                  format: int32
+                                  type: integer
+                              required:
+                              - podAffinityTerm
+                              - weight
+                              type: object
+                            type: array
+                          requiredDuringSchedulingIgnoredDuringExecution:
+                            description: If the affinity requirements specified by
+                              this field are not met at scheduling time, the pod will
+                              not be scheduled onto the node. If the affinity requirements
+                              specified by this field cease to be met at some point
+                              during pod execution (e.g. due to a pod label update),
+                              the system may or may not try to eventually evict the
+                              pod from its node. When there are multiple elements,
+                              the lists of nodes corresponding to each podAffinityTerm
+                              are intersected, i.e. all terms must be satisfied.
+                            items:
+                              description: Defines a set of pods (namely those matching
+                                the labelSelector relative to the given namespace(s))
+                                that this pod should be co-located (affinity) or not
+                                co-located (anti-affinity) with, where co-located
+                                is defined as running on a node whose value of the
+                                label with key <topologyKey> matches that of any node
+                                on which a pod of the set of pods is running
+                              properties:
+                                labelSelector:
+                                  description: A label query over a set of resources,
+                                    in this case pods.
+                                  properties:
+                                    matchExpressions:
+                                      description: matchExpressions is a list of label
+                                        selector requirements. The requirements are
+                                        ANDed.
+                                      items:
+                                        description: A label selector requirement
+                                          is a selector that contains values, a key,
+                                          and an operator that relates the key and
+                                          values.
+                                        properties:
+                                          key:
+                                            description: key is the label key that
+                                              the selector applies to.
+                                            type: string
+                                          operator:
+                                            description: operator represents a key's
+                                              relationship to a set of values. Valid
+                                              operators are In, NotIn, Exists and
+                                              DoesNotExist.
+                                            type: string
+                                          values:
+                                            description: values is an array of string
+                                              values. If the operator is In or NotIn,
+                                              the values array must be non-empty.
+                                              If the operator is Exists or DoesNotExist,
+                                              the values array must be empty. This
+                                              array is replaced during a strategic
+                                              merge patch.
+                                            items:
+                                              type: string
+                                            type: array
+                                        required:
+                                        - key
+                                        - operator
+                                        type: object
+                                      type: array
+                                    matchLabels:
+                                      additionalProperties:
+                                        type: string
+                                      description: matchLabels is a map of {key,value}
+                                        pairs. A single {key,value} in the matchLabels
+                                        map is equivalent to an element of matchExpressions,
+                                        whose key field is "key", the operator is
+                                        "In", and the values array contains only "value".
+                                        The requirements are ANDed.
+                                      type: object
+                                  type: object
+                                namespaceSelector:
+                                  description: A label query over the set of namespaces
+                                    that the term applies to. The term is applied
+                                    to the union of the namespaces selected by this
+                                    field and the ones listed in the namespaces field.
+                                    null selector and null or empty namespaces list
+                                    means "this pod's namespace". An empty selector
+                                    ({}) matches all namespaces. This field is beta-level
+                                    and is only honored when PodAffinityNamespaceSelector
+                                    feature is enabled.
+                                  properties:
+                                    matchExpressions:
+                                      description: matchExpressions is a list of label
+                                        selector requirements. The requirements are
+                                        ANDed.
+                                      items:
+                                        description: A label selector requirement
+                                          is a selector that contains values, a key,
+                                          and an operator that relates the key and
+                                          values.
+                                        properties:
+                                          key:
+                                            description: key is the label key that
+                                              the selector applies to.
+                                            type: string
+                                          operator:
+                                            description: operator represents a key's
+                                              relationship to a set of values. Valid
+                                              operators are In, NotIn, Exists and
+                                              DoesNotExist.
+                                            type: string
+                                          values:
+                                            description: values is an array of string
+                                              values. If the operator is In or NotIn,
+                                              the values array must be non-empty.
+                                              If the operator is Exists or DoesNotExist,
+                                              the values array must be empty. This
+                                              array is replaced during a strategic
+                                              merge patch.
+                                            items:
+                                              type: string
+                                            type: array
+                                        required:
+                                        - key
+                                        - operator
+                                        type: object
+                                      type: array
+                                    matchLabels:
+                                      additionalProperties:
+                                        type: string
+                                      description: matchLabels is a map of {key,value}
+                                        pairs. A single {key,value} in the matchLabels
+                                        map is equivalent to an element of matchExpressions,
+                                        whose key field is "key", the operator is
+                                        "In", and the values array contains only "value".
+                                        The requirements are ANDed.
+                                      type: object
+                                  type: object
+                                namespaces:
+                                  description: namespaces specifies a static list
+                                    of namespace names that the term applies to. The
+                                    term is applied to the union of the namespaces
+                                    listed in this field and the ones selected by
+                                    namespaceSelector. null or empty namespaces list
+                                    and null namespaceSelector means "this pod's namespace"
+                                  items:
+                                    type: string
+                                  type: array
+                                topologyKey:
+                                  description: This pod should be co-located (affinity)
+                                    or not co-located (anti-affinity) with the pods
+                                    matching the labelSelector in the specified namespaces,
+                                    where co-located is defined as running on a node
+                                    whose value of the label with key topologyKey
+                                    matches that of any node on which any of the selected
+                                    pods is running. Empty topologyKey is not allowed.
+                                  type: string
+                              required:
+                              - topologyKey
+                              type: object
+                            type: array
+                        type: object
+                      podAntiAffinity:
+                        description: Describes pod anti-affinity scheduling rules
+                          (e.g. avoid putting this pod in the same node, zone, etc.
+                          as some other pod(s)).
+                        properties:
+                          preferredDuringSchedulingIgnoredDuringExecution:
+                            description: The scheduler will prefer to schedule pods
+                              to nodes that satisfy the anti-affinity expressions
+                              specified by this field, but it may choose a node that
+                              violates one or more of the expressions. The node that
+                              is most preferred is the one with the greatest sum of
+                              weights, i.e. for each node that meets all of the scheduling
+                              requirements (resource request, requiredDuringScheduling
+                              anti-affinity expressions, etc.), compute a sum by iterating
+                              through the elements of this field and adding "weight"
+                              to the sum if the node has pods which matches the corresponding
+                              podAffinityTerm; the node(s) with the highest sum are
+                              the most preferred.
+                            items:
+                              description: The weights of all of the matched WeightedPodAffinityTerm
+                                fields are added per-node to find the most preferred
+                                node(s)
+                              properties:
+                                podAffinityTerm:
+                                  description: Required. A pod affinity term, associated
+                                    with the corresponding weight.
+                                  properties:
+                                    labelSelector:
+                                      description: A label query over a set of resources,
+                                        in this case pods.
+                                      properties:
+                                        matchExpressions:
+                                          description: matchExpressions is a list
+                                            of label selector requirements. The requirements
+                                            are ANDed.
+                                          items:
+                                            description: A label selector requirement
+                                              is a selector that contains values,
+                                              a key, and an operator that relates
+                                              the key and values.
+                                            properties:
+                                              key:
+                                                description: key is the label key
+                                                  that the selector applies to.
+                                                type: string
+                                              operator:
+                                                description: operator represents a
+                                                  key's relationship to a set of values.
+                                                  Valid operators are In, NotIn, Exists
+                                                  and DoesNotExist.
+                                                type: string
+                                              values:
+                                                description: values is an array of
+                                                  string values. If the operator is
+                                                  In or NotIn, the values array must
+                                                  be non-empty. If the operator is
+                                                  Exists or DoesNotExist, the values
+                                                  array must be empty. This array
+                                                  is replaced during a strategic merge
+                                                  patch.
+                                                items:
+                                                  type: string
+                                                type: array
+                                            required:
+                                            - key
+                                            - operator
+                                            type: object
+                                          type: array
+                                        matchLabels:
+                                          additionalProperties:
+                                            type: string
+                                          description: matchLabels is a map of {key,value}
+                                            pairs. A single {key,value} in the matchLabels
+                                            map is equivalent to an element of matchExpressions,
+                                            whose key field is "key", the operator
+                                            is "In", and the values array contains
+                                            only "value". The requirements are ANDed.
+                                          type: object
+                                      type: object
+                                    namespaceSelector:
+                                      description: A label query over the set of namespaces
+                                        that the term applies to. The term is applied
+                                        to the union of the namespaces selected by
+                                        this field and the ones listed in the namespaces
+                                        field. null selector and null or empty namespaces
+                                        list means "this pod's namespace". An empty
+                                        selector ({}) matches all namespaces. This
+                                        field is beta-level and is only honored when
+                                        PodAffinityNamespaceSelector feature is enabled.
+                                      properties:
+                                        matchExpressions:
+                                          description: matchExpressions is a list
+                                            of label selector requirements. The requirements
+                                            are ANDed.
+                                          items:
+                                            description: A label selector requirement
+                                              is a selector that contains values,
+                                              a key, and an operator that relates
+                                              the key and values.
+                                            properties:
+                                              key:
+                                                description: key is the label key
+                                                  that the selector applies to.
+                                                type: string
+                                              operator:
+                                                description: operator represents a
+                                                  key's relationship to a set of values.
+                                                  Valid operators are In, NotIn, Exists
+                                                  and DoesNotExist.
+                                                type: string
+                                              values:
+                                                description: values is an array of
+                                                  string values. If the operator is
+                                                  In or NotIn, the values array must
+                                                  be non-empty. If the operator is
+                                                  Exists or DoesNotExist, the values
+                                                  array must be empty. This array
+                                                  is replaced during a strategic merge
+                                                  patch.
+                                                items:
+                                                  type: string
+                                                type: array
+                                            required:
+                                            - key
+                                            - operator
+                                            type: object
+                                          type: array
+                                        matchLabels:
+                                          additionalProperties:
+                                            type: string
+                                          description: matchLabels is a map of {key,value}
+                                            pairs. A single {key,value} in the matchLabels
+                                            map is equivalent to an element of matchExpressions,
+                                            whose key field is "key", the operator
+                                            is "In", and the values array contains
+                                            only "value". The requirements are ANDed.
+                                          type: object
+                                      type: object
+                                    namespaces:
+                                      description: namespaces specifies a static list
+                                        of namespace names that the term applies to.
+                                        The term is applied to the union of the namespaces
+                                        listed in this field and the ones selected
+                                        by namespaceSelector. null or empty namespaces
+                                        list and null namespaceSelector means "this
+                                        pod's namespace"
+                                      items:
+                                        type: string
+                                      type: array
+                                    topologyKey:
+                                      description: This pod should be co-located (affinity)
+                                        or not co-located (anti-affinity) with the
+                                        pods matching the labelSelector in the specified
+                                        namespaces, where co-located is defined as
+                                        running on a node whose value of the label
+                                        with key topologyKey matches that of any node
+                                        on which any of the selected pods is running.
+                                        Empty topologyKey is not allowed.
+                                      type: string
+                                  required:
+                                  - topologyKey
+                                  type: object
+                                weight:
+                                  description: weight associated with matching the
+                                    corresponding podAffinityTerm, in the range 1-100.
+                                  format: int32
+                                  type: integer
+                              required:
+                              - podAffinityTerm
+                              - weight
+                              type: object
+                            type: array
+                          requiredDuringSchedulingIgnoredDuringExecution:
+                            description: If the anti-affinity requirements specified
+                              by this field are not met at scheduling time, the pod
+                              will not be scheduled onto the node. If the anti-affinity
+                              requirements specified by this field cease to be met
+                              at some point during pod execution (e.g. due to a pod
+                              label update), the system may or may not try to eventually
+                              evict the pod from its node. When there are multiple
+                              elements, the lists of nodes corresponding to each podAffinityTerm
+                              are intersected, i.e. all terms must be satisfied.
+                            items:
+                              description: Defines a set of pods (namely those matching
+                                the labelSelector relative to the given namespace(s))
+                                that this pod should be co-located (affinity) or not
+                                co-located (anti-affinity) with, where co-located
+                                is defined as running on a node whose value of the
+                                label with key <topologyKey> matches that of any node
+                                on which a pod of the set of pods is running
+                              properties:
+                                labelSelector:
+                                  description: A label query over a set of resources,
+                                    in this case pods.
+                                  properties:
+                                    matchExpressions:
+                                      description: matchExpressions is a list of label
+                                        selector requirements. The requirements are
+                                        ANDed.
+                                      items:
+                                        description: A label selector requirement
+                                          is a selector that contains values, a key,
+                                          and an operator that relates the key and
+                                          values.
+                                        properties:
+                                          key:
+                                            description: key is the label key that
+                                              the selector applies to.
+                                            type: string
+                                          operator:
+                                            description: operator represents a key's
+                                              relationship to a set of values. Valid
+                                              operators are In, NotIn, Exists and
+                                              DoesNotExist.
+                                            type: string
+                                          values:
+                                            description: values is an array of string
+                                              values. If the operator is In or NotIn,
+                                              the values array must be non-empty.
+                                              If the operator is Exists or DoesNotExist,
+                                              the values array must be empty. This
+                                              array is replaced during a strategic
+                                              merge patch.
+                                            items:
+                                              type: string
+                                            type: array
+                                        required:
+                                        - key
+                                        - operator
+                                        type: object
+                                      type: array
+                                    matchLabels:
+                                      additionalProperties:
+                                        type: string
+                                      description: matchLabels is a map of {key,value}
+                                        pairs. A single {key,value} in the matchLabels
+                                        map is equivalent to an element of matchExpressions,
+                                        whose key field is "key", the operator is
+                                        "In", and the values array contains only "value".
+                                        The requirements are ANDed.
+                                      type: object
+                                  type: object
+                                namespaceSelector:
+                                  description: A label query over the set of namespaces
+                                    that the term applies to. The term is applied
+                                    to the union of the namespaces selected by this
+                                    field and the ones listed in the namespaces field.
+                                    null selector and null or empty namespaces list
+                                    means "this pod's namespace". An empty selector
+                                    ({}) matches all namespaces. This field is beta-level
+                                    and is only honored when PodAffinityNamespaceSelector
+                                    feature is enabled.
+                                  properties:
+                                    matchExpressions:
+                                      description: matchExpressions is a list of label
+                                        selector requirements. The requirements are
+                                        ANDed.
+                                      items:
+                                        description: A label selector requirement
+                                          is a selector that contains values, a key,
+                                          and an operator that relates the key and
+                                          values.
+                                        properties:
+                                          key:
+                                            description: key is the label key that
+                                              the selector applies to.
+                                            type: string
+                                          operator:
+                                            description: operator represents a key's
+                                              relationship to a set of values. Valid
+                                              operators are In, NotIn, Exists and
+                                              DoesNotExist.
+                                            type: string
+                                          values:
+                                            description: values is an array of string
+                                              values. If the operator is In or NotIn,
+                                              the values array must be non-empty.
+                                              If the operator is Exists or DoesNotExist,
+                                              the values array must be empty. This
+                                              array is replaced during a strategic
+                                              merge patch.
+                                            items:
+                                              type: string
+                                            type: array
+                                        required:
+                                        - key
+                                        - operator
+                                        type: object
+                                      type: array
+                                    matchLabels:
+                                      additionalProperties:
+                                        type: string
+                                      description: matchLabels is a map of {key,value}
+                                        pairs. A single {key,value} in the matchLabels
+                                        map is equivalent to an element of matchExpressions,
+                                        whose key field is "key", the operator is
+                                        "In", and the values array contains only "value".
+                                        The requirements are ANDed.
+                                      type: object
+                                  type: object
+                                namespaces:
+                                  description: namespaces specifies a static list
+                                    of namespace names that the term applies to. The
+                                    term is applied to the union of the namespaces
+                                    listed in this field and the ones selected by
+                                    namespaceSelector. null or empty namespaces list
+                                    and null namespaceSelector means "this pod's namespace"
+                                  items:
+                                    type: string
+                                  type: array
+                                topologyKey:
+                                  description: This pod should be co-located (affinity)
+                                    or not co-located (anti-affinity) with the pods
+                                    matching the labelSelector in the specified namespaces,
+                                    where co-located is defined as running on a node
+                                    whose value of the label with key topologyKey
+                                    matches that of any node on which any of the selected
+                                    pods is running. Empty topologyKey is not allowed.
+                                  type: string
+                              required:
+                              - topologyKey
+                              type: object
+                            type: array
+                        type: object
+                    type: object
+                  annotations:
+                    additionalProperties:
+                      type: string
+                    description: Annotations specifies the annotations to attach to
+                      pods the operator creates for the dm-master cluster. The "dm-master.version"
+                      annotation is reserved for the internal use of the dm-master
+                      operator.
+                    type: object
+                  antiAffinity:
+                    description: '**DEPRECATED**. Use Affinity instead.'
+                    type: boolean
+                  dm-masterEnv:
+                    description: List of environment variables to set in the dm-master
+                      container. This is used to configure dm-master process. dm-master
+                      cluster cannot be created, when bad environement variables are
+                      provided. Do not overwrite any flags used to bootstrap the cluster
+                      (for example `--initial-cluster` flag). This field cannot be
+                      updated.
+                    items:
+                      description: EnvVar represents an environment variable present
+                        in a Container.
+                      properties:
+                        name:
+                          description: Name of the environment variable. Must be a
+                            C_IDENTIFIER.
+                          type: string
+                        value:
+                          description: 'Variable references $(VAR_NAME) are expanded
+                            using the previously defined environment variables in
+                            the container and any service environment variables. If
+                            a variable cannot be resolved, the reference in the input
+                            string will be unchanged. Double $$ are reduced to a single
+                            $, which allows for escaping the $(VAR_NAME) syntax: i.e.
+                            "$$(VAR_NAME)" will produce the string literal "$(VAR_NAME)".
+                            Escaped references will never be expanded, regardless
+                            of whether the variable exists or not. Defaults to "".'
+                          type: string
+                        valueFrom:
+                          description: Source for the environment variable's value.
+                            Cannot be used if value is not empty.
+                          properties:
+                            configMapKeyRef:
+                              description: Selects a key of a ConfigMap.
+                              properties:
+                                key:
+                                  description: The key to select.
+                                  type: string
+                                name:
+                                  description: 'Name of the referent. More info:
+                                    TODO: Add other useful fields. apiVersion, kind,
+                                    uid?'
+                                  type: string
+                                optional:
+                                  description: Specify whether the ConfigMap or its
+                                    key must be defined
+                                  type: boolean
+                              required:
+                              - key
+                              type: object
+                            fieldRef:
+                              description: 'Selects a field of the pod: supports,
+                                metadata.namespace, `metadata.labels[''<KEY>'']`,
+                                `metadata.annotations[''<KEY>'']`, spec.nodeName,
+                                spec.serviceAccountName, status.hostIP, status.podIP,
+                                status.podIPs.'
+                              properties:
+                                apiVersion:
+                                  description: Version of the schema the FieldPath
+                                    is written in terms of, defaults to "v1".
+                                  type: string
+                                fieldPath:
+                                  description: Path of the field to select in the
+                                    specified API version.
+                                  type: string
+                              required:
+                              - fieldPath
+                              type: object
+                            resourceFieldRef:
+                              description: 'Selects a resource of the container: only
+                                resources limits and requests (limits.cpu, limits.memory,
+                                limits.ephemeral-storage, requests.cpu, requests.memory
+                                and requests.ephemeral-storage) are currently supported.'
+                              properties:
+                                containerName:
+                                  description: 'Container name: required for volumes,
+                                    optional for env vars'
+                                  type: string
+                                divisor:
+                                  anyOf:
+                                  - type: integer
+                                  - type: string
+                                  description: Specifies the output format of the
+                                    exposed resources, defaults to "1"
+                                  pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$
+                                  x-kubernetes-int-or-string: true
+                                resource:
+                                  description: 'Required: resource to select'
+                                  type: string
+                              required:
+                              - resource
+                              type: object
+                            secretKeyRef:
+                              description: Selects a key of a secret in the pod's
+                                namespace
+                              properties:
+                                key:
+                                  description: The key of the secret to select from.  Must
+                                    be a valid secret key.
+                                  type: string
+                                name:
+                                  description: 'Name of the referent. More info:
+                                    TODO: Add other useful fields. apiVersion, kind,
+                                    uid?'
+                                  type: string
+                                optional:
+                                  description: Specify whether the Secret or its key
+                                    must be defined
+                                  type: boolean
+                              required:
+                              - key
+                              type: object
+                          type: object
+                      required:
+                      - name
+                      type: object
+                    type: array
+                  labels:
+                    additionalProperties:
+                      type: string
+                    description: Labels specifies the labels to attach to pods the
+                      operator creates for the dm-master cluster. "app" and "dm-master_*"
+                      labels are reserved for the internal use of the dm-master operator.
+                      Do not overwrite them.
+                    type: object
+                  nodeSelector:
+                    additionalProperties:
+                      type: string
+                    description: NodeSelector specifies a map of key-value pairs.
+                      For the pod to be eligible to run on a node, the node must have
+                      each of the indicated key-value pairs as labels.
+                    type: object
+                  persistentVolumeClaimSpec:
+                    description: PersistentVolumeClaimSpec is the spec to describe
+                      PVC for the dm-master container This field is optional. If no
+                      PVC spec, dm-master container will use emptyDir as volume Note.
+                      This feature is in alpha stage. It is currently only used as
+                      non-stable storage, not the stable storage. Future work need
+                      to make it used as stable storage.
+                    properties:
+                      accessModes:
+                        description: 'AccessModes contains the desired access modes
+                          the volume should have. More info:'
+                        items:
+                          type: string
+                        type: array
+                      dataSource:
+                        description: 'This field can be used to specify either: *
+                          An existing VolumeSnapshot object (
+                          * An existing PVC (PersistentVolumeClaim) If the provisioner
+                          or an external controller can support the specified data
+                          source, it will create a new volume based on the contents
+                          of the specified data source. If the AnyVolumeDataSource
+                          feature gate is enabled, this field will always have the
+                          same contents as the DataSourceRef field.'
+                        properties:
+                          apiGroup:
+                            description: APIGroup is the group for the resource being
+                              referenced. If APIGroup is not specified, the specified
+                              Kind must be in the core API group. For any other third-party
+                              types, APIGroup is required.
+                            type: string
+                          kind:
+                            description: Kind is the type of resource being referenced
+                            type: string
+                          name:
+                            description: Name is the name of resource being referenced
+                            type: string
+                        required:
+                        - kind
+                        - name
+                        type: object
+                      dataSourceRef:
+                        description: 'Specifies the object from which to populate
+                          the volume with data, if a non-empty volume is desired.
+                          This may be any local object from a non-empty API group
+                          (non core object) or a PersistentVolumeClaim object. When
+                          this field is specified, volume binding will only succeed
+                          if the type of the specified object matches some installed
+                          volume populator or dynamic provisioner. This field will
+                          replace the functionality of the DataSource field and as
+                          such if both fields are non-empty, they must have the same
+                          value. For backwards compatibility, both fields (DataSource
+                          and DataSourceRef) will be set to the same value automatically
+                          if one of them is empty and the other is non-empty. There
+                          are two important differences between DataSource and DataSourceRef:
+                          * While DataSource only allows two specific types of objects,
+                          DataSourceRef allows any non-core object, as well as PersistentVolumeClaim
+                          objects. * While DataSource ignores disallowed values (dropping
+                          them), DataSourceRef preserves all values, and generates
+                          an error if a disallowed value is specified. (Alpha) Using
+                          this field requires the AnyVolumeDataSource feature gate
+                          to be enabled.'
+                        properties:
+                          apiGroup:
+                            description: APIGroup is the group for the resource being
+                              referenced. If APIGroup is not specified, the specified
+                              Kind must be in the core API group. For any other third-party
+                              types, APIGroup is required.
+                            type: string
+                          kind:
+                            description: Kind is the type of resource being referenced
+                            type: string
+                          name:
+                            description: Name is the name of resource being referenced
+                            type: string
+                        required:
+                        - kind
+                        - name
+                        type: object
+                      resources:
+                        description: 'Resources represents the minimum resources the
+                          volume should have. If RecoverVolumeExpansionFailure feature
+                          is enabled users are allowed to specify resource requirements
+                          that are lower than previous value but must still be higher
+                          than capacity recorded in the status field of the claim.
+                          More info:'
+                        properties:
+                          limits:
+                            additionalProperties:
+                              anyOf:
+                              - type: integer
+                              - type: string
+                              pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$
+                              x-kubernetes-int-or-string: true
+                            description: 'Limits describes the maximum amount of compute
+                              resources allowed. More info:'
+                            type: object
+                          requests:
+                            additionalProperties:
+                              anyOf:
+                              - type: integer
+                              - type: string
+                              pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$
+                              x-kubernetes-int-or-string: true
+                            description: 'Requests describes the minimum amount of
+                              compute resources required. If Requests is omitted for
+                              a container, it defaults to Limits if that is explicitly
+                              specified, otherwise to an implementation-defined value.
+                              More info:'
+                            type: object
+                        type: object
+                      selector:
+                        description: A label query over volumes to consider for binding.
+                        properties:
+                          matchExpressions:
+                            description: matchExpressions is a list of label selector
+                              requirements. The requirements are ANDed.
+                            items:
+                              description: A label selector requirement is a selector
+                                that contains values, a key, and an operator that
+                                relates the key and values.
+                              properties:
+                                key:
+                                  description: key is the label key that the selector
+                                    applies to.
+                                  type: string
+                                operator:
+                                  description: operator represents a key's relationship
+                                    to a set of values. Valid operators are In, NotIn,
+                                    Exists and DoesNotExist.
+                                  type: string
+                                values:
+                                  description: values is an array of string values.
+                                    If the operator is In or NotIn, the values array
+                                    must be non-empty. If the operator is Exists or
+                                    DoesNotExist, the values array must be empty.
+                                    This array is replaced during a strategic merge
+                                    patch.
+                                  items:
+                                    type: string
+                                  type: array
+                              required:
+                              - key
+                              - operator
+                              type: object
+                            type: array
+                          matchLabels:
+                            additionalProperties:
+                              type: string
+                            description: matchLabels is a map of {key,value} pairs.
+                              A single {key,value} in the matchLabels map is equivalent
+                              to an element of matchExpressions, whose key field is
+                              "key", the operator is "In", and the values array contains
+                              only "value". The requirements are ANDed.
+                            type: object
+                        type: object
+                      storageClassName:
+                        description: 'Name of the StorageClass required by the claim.
+                          More info:'
+                        type: string
+                      volumeMode:
+                        description: volumeMode defines what type of volume is required
+                          by the claim. Value of Filesystem is implied when not included
+                          in claim spec.
+                        type: string
+                      volumeName:
+                        description: VolumeName is the binding reference to the PersistentVolume
+                          backing this claim.
+                        type: string
+                    type: object
+                  resources:
+                    description: Resources is the resource requirements for the dm-master
+                      container. This field cannot be updated once the cluster is
+                      created.
+                    properties:
+                      limits:
+                        additionalProperties:
+                          anyOf:
+                          - type: integer
+                          - type: string
+                          pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$
+                          x-kubernetes-int-or-string: true
+                        description: 'Limits describes the maximum amount of compute
+                          resources allowed. More info:'
+                        type: object
+                      requests:
+                        additionalProperties:
+                          anyOf:
+                          - type: integer
+                          - type: string
+                          pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$
+                          x-kubernetes-int-or-string: true
+                        description: 'Requests describes the minimum amount of compute
+                          resources required. If Requests is omitted for a container,
+                          it defaults to Limits if that is explicitly specified, otherwise
+                          to an implementation-defined value. More info:'
+                        type: object
+                    type: object
+                  securityContext:
+                    description: 'SecurityContext specifies the security context for
+                      the entire pod More info:'
+                    properties:
+                      fsGroup:
+                        description: "A special supplemental group that applies to
+                          all containers in a pod. Some volume types allow the Kubelet
+                          to change the ownership of that volume to be owned by the
+                          pod: \n 1. The owning GID will be the FSGroup 2. The setgid
+                          bit is set (new files created in the volume will be owned
+                          by FSGroup) 3. The permission bits are OR'd with rw-rw----
+                          \n If unset, the Kubelet will not modify the ownership and
+                          permissions of any volume. Note that this field cannot be
+                          set when is windows."
+                        format: int64
+                        type: integer
+                      fsGroupChangePolicy:
+                        description: 'fsGroupChangePolicy defines behavior of changing
+                          ownership and permission of the volume before being exposed
+                          inside Pod. This field will only apply to volume types which
+                          support fsGroup based ownership(and permissions). It will
+                          have no effect on ephemeral volume types such as: secret,
+                          configmaps and emptydir. Valid values are "OnRootMismatch"
+                          and "Always". If not specified, "Always" is used. Note that
+                          this field cannot be set when is windows.'
+                        type: string
+                      runAsGroup:
+                        description: The GID to run the entrypoint of the container
+                          process. Uses runtime default if unset. May also be set
+                          in SecurityContext.  If set in both SecurityContext and
+                          PodSecurityContext, the value specified in SecurityContext
+                          takes precedence for that container. Note that this field
+                          cannot be set when is windows.
+                        format: int64
+                        type: integer
+                      runAsNonRoot:
+                        description: Indicates that the container must run as a non-root
+                          user. If true, the Kubelet will validate the image at runtime
+                          to ensure that it does not run as UID 0 (root) and fail
+                          to start the container if it does. If unset or false, no
+                          such validation will be performed. May also be set in SecurityContext.  If
+                          set in both SecurityContext and PodSecurityContext, the
+                          value specified in SecurityContext takes precedence.
+                        type: boolean
+                      runAsUser:
+                        description: The UID to run the entrypoint of the container
+                          process. Defaults to user specified in image metadata if
+                          unspecified. May also be set in SecurityContext.  If set
+                          in both SecurityContext and PodSecurityContext, the value
+                          specified in SecurityContext takes precedence for that container.
+                          Note that this field cannot be set when is
+                          windows.
+                        format: int64
+                        type: integer
+                      seLinuxOptions:
+                        description: The SELinux context to be applied to all containers.
+                          If unspecified, the container runtime will allocate a random
+                          SELinux context for each container.  May also be set in
+                          SecurityContext.  If set in both SecurityContext and PodSecurityContext,
+                          the value specified in SecurityContext takes precedence
+                          for that container. Note that this field cannot be set when
+                 is windows.
+                        properties:
+                          level:
+                            description: Level is SELinux level label that applies
+                              to the container.
+                            type: string
+                          role:
+                            description: Role is a SELinux role label that applies
+                              to the container.
+                            type: string
+                          type:
+                            description: Type is a SELinux type label that applies
+                              to the container.
+                            type: string
+                          user:
+                            description: User is a SELinux user label that applies
+                              to the container.
+                            type: string
+                        type: object
+                      seccompProfile:
+                        description: The seccomp options to use by the containers
+                          in this pod. Note that this field cannot be set when
+                          is windows.
+                        properties:
+                          localhostProfile:
+                            description: localhostProfile indicates a profile defined
+                              in a file on the node should be used. The profile must
+                              be preconfigured on the node to work. Must be a descending
+                              path, relative to the kubelet's configured seccomp profile
+                              location. Must only be set if type is "Localhost".
+                            type: string
+                          type:
+                            description: "type indicates which kind of seccomp profile
+                              will be applied. Valid options are: \n Localhost - a
+                              profile defined in a file on the node should be used.
+                              RuntimeDefault - the container runtime default profile
+                              should be used. Unconfined - no profile should be applied."
+                            type: string
+                        required:
+                        - type
+                        type: object
+                      supplementalGroups:
+                        description: A list of groups applied to the first process
+                          run in each container, in addition to the container's primary
+                          GID.  If unspecified, no groups will be added to any container.
+                          Note that this field cannot be set when is
+                          windows.
+                        items:
+                          format: int64
+                          type: integer
+                        type: array
+                      sysctls:
+                        description: Sysctls hold a list of namespaced sysctls used
+                          for the pod. Pods with unsupported sysctls (by the container
+                          runtime) might fail to launch. Note that this field cannot
+                          be set when is windows.
+                        items:
+                          description: Sysctl defines a kernel parameter to be set
+                          properties:
+                            name:
+                              description: Name of a property to set
+                              type: string
+                            value:
+                              description: Value of a property to set
+                              type: string
+                          required:
+                          - name
+                          - value
+                          type: object
+                        type: array
+                      windowsOptions:
+                        description: The Windows specific settings applied to all
+                          containers. If unspecified, the options within a container's
+                          SecurityContext will be used. If set in both SecurityContext
+                          and PodSecurityContext, the value specified in SecurityContext
+                          takes precedence. Note that this field cannot be set when
+                 is linux.
+                        properties:
+                          gmsaCredentialSpec:
+                            description: GMSACredentialSpec is where the GMSA admission
+                              webhook (
+                              inlines the contents of the GMSA credential spec named
+                              by the GMSACredentialSpecName field.
+                            type: string
+                          gmsaCredentialSpecName:
+                            description: GMSACredentialSpecName is the name of the
+                              GMSA credential spec to use.
+                            type: string
+                          hostProcess:
+                            description: HostProcess determines if a container should
+                              be run as a 'Host Process' container. This field is
+                              alpha-level and will only be honored by components that
+                              enable the WindowsHostProcessContainers feature flag.
+                              Setting this field without the feature flag will result
+                              in errors when validating the Pod. All of a Pod's containers
+                              must have the same effective HostProcess value (it is
+                              not allowed to have a mix of HostProcess containers
+                              and non-HostProcess containers).  In addition, if HostProcess
+                              is true then HostNetwork must also be set to true.
+                            type: boolean
+                          runAsUserName:
+                            description: The UserName in Windows to run the entrypoint
+                              of the container process. Defaults to the user specified
+                              in image metadata if unspecified. May also be set in
+                              PodSecurityContext. If set in both SecurityContext and
+                              PodSecurityContext, the value specified in SecurityContext
+                              takes precedence.
+                            type: string
+                        type: object
+                    type: object
+                  tolerations:
+                    description: Tolerations specifies the pod's tolerations.
+                    items:
+                      description: The pod this Toleration is attached to tolerates
+                        any taint that matches the triple <key,value,effect> using
+                        the matching operator <operator>.
+                      properties:
+                        effect:
+                          description: Effect indicates the taint effect to match.
+                            Empty means match all taint effects. When specified, allowed
+                            values are NoSchedule, PreferNoSchedule and NoExecute.
+                          type: string
+                        key:
+                          description: Key is the taint key that the toleration applies
+                            to. Empty means match all taint keys. If the key is empty,
+                            operator must be Exists; this combination means to match
+                            all values and all keys.
+                          type: string
+                        operator:
+                          description: Operator represents a key's relationship to
+                            the value. Valid operators are Exists and Equal. Defaults
+                            to Equal. Exists is equivalent to wildcard for value,
+                            so that a pod can tolerate all taints of a particular
+                            category.
+                          type: string
+                        tolerationSeconds:
+                          description: TolerationSeconds represents the period of
+                            time the toleration (which must be of effect NoExecute,
+                            otherwise this field is ignored) tolerates the taint.
+                            By default, it is not set, which means tolerate the taint
+                            forever (do not evict). Zero and negative values will
+                            be treated as 0 (evict immediately) by the system.
+                          format: int64
+                          type: integer
+                        value:
+                          description: Value is the taint value the toleration matches
+                            to. If the operator is Exists, the value should be empty,
+                            otherwise just a regular string.
+                          type: string
+                      type: object
+                    type: array
+                type: object
+              replicas:
+                default: 3
+                description: Replicas is the expected size of the ms-master. The ds-master-operator
+                  will eventually make the size of the running equal to the expected
+                  size. The vaild range of the size is from 1 to 7.
+                maximum: 7
+                minimum: 1
+                type: integer
+              repository:
+                default: apache/dolphinscheduler-master
+                description: Repository is the name of the repository that hosts ds
+                  container images. It should be direct clone of the repository in
+                  official By default, it is `apache/dolphinscheduler-master`.
+                type: string
+              version:
+                default: 3.0.0-alpha
+                description: Version is the expected version of the ds cluster. The
+                  ds-operator will eventually make the ds cluster version equal to
+                  the expected version. If version is not set, default is "3.0.0-alpha".
+                type: string
+              zookeeper_connect:
+                description: ZookeeperConnect  is the address string of zookeeper
+                  ,and it will be written to ENV
+                type: string
+            required:
+            - replicas
+            type: object
+          status:
+            description: DSMasterStatus defines the observed state of DSMaster
+            properties:
+              conditions:
+                description: Condition keeps track of all cluster conditions, if they
+                  exist.
+                items:
+                  description: DsCondition represents one current condition of a ds
+                    cluster. A condition might not show up if it is not happening.
+                    For example, if a cluster is not upgrading, the Upgrading condition
+                    would not show up. If a cluster is upgrading and encountered a
+                    problem that prevents the upgrade, the Upgrading condition's status
+                    will would be False and communicate the problem back.
+                  properties:
+                    lastTransitionTime:
+                      description: Last time the condition transitioned from one status
+                        to another.
+                      type: string
+                    lastUpdateTime:
+                      description: The last time this condition was updated.
+                      type: string
+                    message:
+                      description: A human readable message indicating details about
+                        the transition.
+                      type: string
+                    reason:
+                      description: The reason for the condition's last transition.
+                      type: string
+                    status:
+                      description: Status of the condition, one of True, False, Unknown.
+                      type: string
+                    type:
+                      description: Type of cluster condition.
+                      type: string
+                  required:
+                  - status
+                  - type
+                  type: object
+                type: array
+              controlPaused:
+                default: false
+                description: ControlPaused indicates the operator pauses the control
+                  of the cluster.
+                type: boolean
+              members:
+                description: Members are the dsMaster members in the cluster
+                properties:
+                  ready:
+                    description: Ready are the dsMaster members that are ready to
+                      serve requests The member names are the same as the dsMaster
+                      pod names
+                    items:
+                      type: string
+                    type: array
+                  unready:
+                    description: Unready are the etcd members not ready to serve requests
+                    items:
+                      type: string
+                    type: array
+                type: object
+              phase:
+                description: 'INSERT ADDITIONAL STATUS FIELD - define observed state
+                  of cluster Important: Run "make" to regenerate code after modifying
+                  this file Phase is the cluster running phase'
+                enum:
+                - ""
+                - Creating
+                - Running
+                - Failed
+                - Finished
+                type: string
+              replicas:
+                default: 0
+                description: Replicas is the current size of the cluster
+                type: integer
+            type: object
+        type: object
+    served: true
+    storage: true
+    subresources:
+      status: {}
+  acceptedNames:
+    kind: ""
+    plural: ""
+  conditions: []
+  storedVersions: []
diff --git a/config/crd/bases/ds.apache.dolphinscheduler.dev_dsworkers.yaml b/config/crd/bases/ds.apache.dolphinscheduler.dev_dsworkers.yaml
new file mode 100644
index 0000000..9ab3831
--- /dev/null
+++ b/config/crd/bases/ds.apache.dolphinscheduler.dev_dsworkers.yaml
@@ -0,0 +1,1585 @@
+kind: CustomResourceDefinition
+  annotations:
+ v0.8.0
+  creationTimestamp: null
+  name:
+  group:
+  names:
+    kind: DSWorker
+    listKind: DSWorkerList
+    plural: dsworkers
+    singular: dsworker
+  scope: Namespaced
+  versions:
+  - name: v1alpha1
+    schema:
+      openAPIV3Schema:
+        description: DSWorker is the Schema for the dsworkers API
+        properties:
+          apiVersion:
+            description: 'APIVersion defines the versioned schema of this representation
+              of an object. Servers should convert recognized schemas to the latest
+              internal value, and may reject unrecognized values. More info:'
+            type: string
+          kind:
+            description: 'Kind is a string value representing the REST resource this
+              object represents. Servers may infer this from the endpoint the client
+              submits requests to. Cannot be updated. In CamelCase. More info:'
+            type: string
+          metadata:
+            type: object
+          spec:
+            description: DSWorkerSpec defines the desired state of DSWorker
+            properties:
+              lib_pvc_name:
+                description: LibPvcName define the address of lib pvc,the position
+                  is /opt/soft
+                type: string
+              log_pvc_name:
+                description: LogPvcName defines the address of log pvc ,the position
+                  is /opt/dolphinscheduler/logs
+                type: string
+              paused:
+                default: false
+                description: Paused is to pause the control of the operator for the
+                  ds-worker .
+                type: boolean
+              pod:
+                description: Pod defines the policy to create pod for the dm-worker
+                  pod. Updating Pod does not take effect on any existing dm-worker
+                  pods.
+                properties:
+                  affinity:
+                    description: The scheduling constraints on dm-master pods.
+                    properties:
+                      nodeAffinity:
+                        description: Describes node affinity scheduling rules for
+                          the pod.
+                        properties:
+                          preferredDuringSchedulingIgnoredDuringExecution:
+                            description: The scheduler will prefer to schedule pods
+                              to nodes that satisfy the affinity expressions specified
+                              by this field, but it may choose a node that violates
+                              one or more of the expressions. The node that is most
+                              preferred is the one with the greatest sum of weights,
+                              i.e. for each node that meets all of the scheduling
+                              requirements (resource request, requiredDuringScheduling
+                              affinity expressions, etc.), compute a sum by iterating
+                              through the elements of this field and adding "weight"
+                              to the sum if the node matches the corresponding matchExpressions;
+                              the node(s) with the highest sum are the most preferred.
+                            items:
+                              description: An empty preferred scheduling term matches
+                                all objects with implicit weight 0 (i.e. it's a no-op).
+                                A null preferred scheduling term matches no objects
+                                (i.e. is also a no-op).
+                              properties:
+                                preference:
+                                  description: A node selector term, associated with
+                                    the corresponding weight.
+                                  properties:
+                                    matchExpressions:
+                                      description: A list of node selector requirements
+                                        by node's labels.
+                                      items:
+                                        description: A node selector requirement is
+                                          a selector that contains values, a key,
+                                          and an operator that relates the key and
+                                          values.
+                                        properties:
+                                          key:
+                                            description: The label key that the selector
+                                              applies to.
+                                            type: string
+                                          operator:
+                                            description: Represents a key's relationship
+                                              to a set of values. Valid operators
+                                              are In, NotIn, Exists, DoesNotExist.
+                                              Gt, and Lt.
+                                            type: string
+                                          values:
+                                            description: An array of string values.
+                                              If the operator is In or NotIn, the
+                                              values array must be non-empty. If the
+                                              operator is Exists or DoesNotExist,
+                                              the values array must be empty. If the
+                                              operator is Gt or Lt, the values array
+                                              must have a single element, which will
+                                              be interpreted as an integer. This array
+                                              is replaced during a strategic merge
+                                              patch.
+                                            items:
+                                              type: string
+                                            type: array
+                                        required:
+                                        - key
+                                        - operator
+                                        type: object
+                                      type: array
+                                    matchFields:
+                                      description: A list of node selector requirements
+                                        by node's fields.
+                                      items:
+                                        description: A node selector requirement is
+                                          a selector that contains values, a key,
+                                          and an operator that relates the key and
+                                          values.
+                                        properties:
+                                          key:
+                                            description: The label key that the selector
+                                              applies to.
+                                            type: string
+                                          operator:
+                                            description: Represents a key's relationship
+                                              to a set of values. Valid operators
+                                              are In, NotIn, Exists, DoesNotExist.
+                                              Gt, and Lt.
+                                            type: string
+                                          values:
+                                            description: An array of string values.
+                                              If the operator is In or NotIn, the
+                                              values array must be non-empty. If the
+                                              operator is Exists or DoesNotExist,
+                                              the values array must be empty. If the
+                                              operator is Gt or Lt, the values array
+                                              must have a single element, which will
+                                              be interpreted as an integer. This array
+                                              is replaced during a strategic merge
+                                              patch.
+                                            items:
+                                              type: string
+                                            type: array
+                                        required:
+                                        - key
+                                        - operator
+                                        type: object
+                                      type: array
+                                  type: object
+                                weight:
+                                  description: Weight associated with matching the
+                                    corresponding nodeSelectorTerm, in the range 1-100.
+                                  format: int32
+                                  type: integer
+                              required:
+                              - preference
+                              - weight
+                              type: object
+                            type: array
+                          requiredDuringSchedulingIgnoredDuringExecution:
+                            description: If the affinity requirements specified by
+                              this field are not met at scheduling time, the pod will
+                              not be scheduled onto the node. If the affinity requirements
+                              specified by this field cease to be met at some point
+                              during pod execution (e.g. due to an update), the system
+                              may or may not try to eventually evict the pod from
+                              its node.
+                            properties:
+                              nodeSelectorTerms:
+                                description: Required. A list of node selector terms.
+                                  The terms are ORed.
+                                items:
+                                  description: A null or empty node selector term
+                                    matches no objects. The requirements of them are
+                                    ANDed. The TopologySelectorTerm type implements
+                                    a subset of the NodeSelectorTerm.
+                                  properties:
+                                    matchExpressions:
+                                      description: A list of node selector requirements
+                                        by node's labels.
+                                      items:
+                                        description: A node selector requirement is
+                                          a selector that contains values, a key,
+                                          and an operator that relates the key and
+                                          values.
+                                        properties:
+                                          key:
+                                            description: The label key that the selector
+                                              applies to.
+                                            type: string
+                                          operator:
+                                            description: Represents a key's relationship
+                                              to a set of values. Valid operators
+                                              are In, NotIn, Exists, DoesNotExist.
+                                              Gt, and Lt.
+                                            type: string
+                                          values:
+                                            description: An array of string values.
+                                              If the operator is In or NotIn, the
+                                              values array must be non-empty. If the
+                                              operator is Exists or DoesNotExist,
+                                              the values array must be empty. If the
+                                              operator is Gt or Lt, the values array
+                                              must have a single element, which will
+                                              be interpreted as an integer. This array
+                                              is replaced during a strategic merge
+                                              patch.
+                                            items:
+                                              type: string
+                                            type: array
+                                        required:
+                                        - key
+                                        - operator
+                                        type: object
+                                      type: array
+                                    matchFields:
+                                      description: A list of node selector requirements
+                                        by node's fields.
+                                      items:
+                                        description: A node selector requirement is
+                                          a selector that contains values, a key,
+                                          and an operator that relates the key and
+                                          values.
+                                        properties:
+                                          key:
+                                            description: The label key that the selector
+                                              applies to.
+                                            type: string
+                                          operator:
+                                            description: Represents a key's relationship
+                                              to a set of values. Valid operators
+                                              are In, NotIn, Exists, DoesNotExist.
+                                              Gt, and Lt.
+                                            type: string
+                                          values:
+                                            description: An array of string values.
+                                              If the operator is In or NotIn, the
+                                              values array must be non-empty. If the
+                                              operator is Exists or DoesNotExist,
+                                              the values array must be empty. If the
+                                              operator is Gt or Lt, the values array
+                                              must have a single element, which will
+                                              be interpreted as an integer. This array
+                                              is replaced during a strategic merge
+                                              patch.
+                                            items:
+                                              type: string
+                                            type: array
+                                        required:
+                                        - key
+                                        - operator
+                                        type: object
+                                      type: array
+                                  type: object
+                                type: array
+                            required:
+                            - nodeSelectorTerms
+                            type: object
+                        type: object
+                      podAffinity:
+                        description: Describes pod affinity scheduling rules (e.g.
+                          co-locate this pod in the same node, zone, etc. as some
+                          other pod(s)).
+                        properties:
+                          preferredDuringSchedulingIgnoredDuringExecution:
+                            description: The scheduler will prefer to schedule pods
+                              to nodes that satisfy the affinity expressions specified
+                              by this field, but it may choose a node that violates
+                              one or more of the expressions. The node that is most
+                              preferred is the one with the greatest sum of weights,
+                              i.e. for each node that meets all of the scheduling
+                              requirements (resource request, requiredDuringScheduling
+                              affinity expressions, etc.), compute a sum by iterating
+                              through the elements of this field and adding "weight"
+                              to the sum if the node has pods which matches the corresponding
+                              podAffinityTerm; the node(s) with the highest sum are
+                              the most preferred.
+                            items:
+                              description: The weights of all of the matched WeightedPodAffinityTerm
+                                fields are added per-node to find the most preferred
+                                node(s)
+                              properties:
+                                podAffinityTerm:
+                                  description: Required. A pod affinity term, associated
+                                    with the corresponding weight.
+                                  properties:
+                                    labelSelector:
+                                      description: A label query over a set of resources,
+                                        in this case pods.
+                                      properties:
+                                        matchExpressions:
+                                          description: matchExpressions is a list
+                                            of label selector requirements. The requirements
+                                            are ANDed.
+                                          items:
+                                            description: A label selector requirement
+                                              is a selector that contains values,
+                                              a key, and an operator that relates
+                                              the key and values.
+                                            properties:
+                                              key:
+                                                description: key is the label key
+                                                  that the selector applies to.
+                                                type: string
+                                              operator:
+                                                description: operator represents a
+                                                  key's relationship to a set of values.
+                                                  Valid operators are In, NotIn, Exists
+                                                  and DoesNotExist.
+                                                type: string
+                                              values:
+                                                description: values is an array of
+                                                  string values. If the operator is
+                                                  In or NotIn, the values array must
+                                                  be non-empty. If the operator is
+                                                  Exists or DoesNotExist, the values
+                                                  array must be empty. This array
+                                                  is replaced during a strategic merge
+                                                  patch.
+                                                items:
+                                                  type: string
+                                                type: array
+                                            required:
+                                            - key
+                                            - operator
+                                            type: object
+                                          type: array
+                                        matchLabels:
+                                          additionalProperties:
+                                            type: string
+                                          description: matchLabels is a map of {key,value}
+                                            pairs. A single {key,value} in the matchLabels
+                                            map is equivalent to an element of matchExpressions,
+                                            whose key field is "key", the operator
+                                            is "In", and the values array contains
+                                            only "value". The requirements are ANDed.
+                                          type: object
+                                      type: object
+                                    namespaceSelector:
+                                      description: A label query over the set of namespaces
+                                        that the term applies to. The term is applied
+                                        to the union of the namespaces selected by
+                                        this field and the ones listed in the namespaces
+                                        field. null selector and null or empty namespaces
+                                        list means "this pod's namespace". An empty
+                                        selector ({}) matches all namespaces. This
+                                        field is beta-level and is only honored when
+                                        PodAffinityNamespaceSelector feature is enabled.
+                                      properties:
+                                        matchExpressions:
+                                          description: matchExpressions is a list
+                                            of label selector requirements. The requirements
+                                            are ANDed.
+                                          items:
+                                            description: A label selector requirement
+                                              is a selector that contains values,
+                                              a key, and an operator that relates
+                                              the key and values.
+                                            properties:
+                                              key:
+                                                description: key is the label key
+                                                  that the selector applies to.
+                                                type: string
+                                              operator:
+                                                description: operator represents a
+                                                  key's relationship to a set of values.
+                                                  Valid operators are In, NotIn, Exists
+                                                  and DoesNotExist.
+                                                type: string
+                                              values:
+                                                description: values is an array of
+                                                  string values. If the operator is
+                                                  In or NotIn, the values array must
+                                                  be non-empty. If the operator is
+                                                  Exists or DoesNotExist, the values
+                                                  array must be empty. This array
+                                                  is replaced during a strategic merge
+                                                  patch.
+                                                items:
+                                                  type: string
+                                                type: array
+                                            required:
+                                            - key
+                                            - operator
+                                            type: object
+                                          type: array
+                                        matchLabels:
+                                          additionalProperties:
+                                            type: string
+                                          description: matchLabels is a map of {key,value}
+                                            pairs. A single {key,value} in the matchLabels
+                                            map is equivalent to an element of matchExpressions,
+                                            whose key field is "key", the operator
+                                            is "In", and the values array contains
+                                            only "value". The requirements are ANDed.
+                                          type: object
+                                      type: object
+                                    namespaces:
+                                      description: namespaces specifies a static list
+                                        of namespace names that the term applies to.
+                                        The term is applied to the union of the namespaces
+                                        listed in this field and the ones selected
+                                        by namespaceSelector. null or empty namespaces
+                                        list and null namespaceSelector means "this
+                                        pod's namespace"
+                                      items:
+                                        type: string
+                                      type: array
+                                    topologyKey:
+                                      description: This pod should be co-located (affinity)
+                                        or not co-located (anti-affinity) with the
+                                        pods matching the labelSelector in the specified
+                                        namespaces, where co-located is defined as
+                                        running on a node whose value of the label
+                                        with key topologyKey matches that of any node
+                                        on which any of the selected pods is running.
+                                        Empty topologyKey is not allowed.
+                                      type: string
+                                  required:
+                                  - topologyKey
+                                  type: object
+                                weight:
+                                  description: weight associated with matching the
+                                    corresponding podAffinityTerm, in the range 1-100.
+                                  format: int32
+                                  type: integer
+                              required:
+                              - podAffinityTerm
+                              - weight
+                              type: object
+                            type: array
+                          requiredDuringSchedulingIgnoredDuringExecution:
+                            description: If the affinity requirements specified by
+                              this field are not met at scheduling time, the pod will
+                              not be scheduled onto the node. If the affinity requirements
+                              specified by this field cease to be met at some point
+                              during pod execution (e.g. due to a pod label update),
+                              the system may or may not try to eventually evict the
+                              pod from its node. When there are multiple elements,
+                              the lists of nodes corresponding to each podAffinityTerm
+                              are intersected, i.e. all terms must be satisfied.
+                            items:
+                              description: Defines a set of pods (namely those matching
+                                the labelSelector relative to the given namespace(s))
+                                that this pod should be co-located (affinity) or not
+                                co-located (anti-affinity) with, where co-located
+                                is defined as running on a node whose value of the
+                                label with key <topologyKey> matches that of any node
+                                on which a pod of the set of pods is running
+                              properties:
+                                labelSelector:
+                                  description: A label query over a set of resources,
+                                    in this case pods.
+                                  properties:
+                                    matchExpressions:
+                                      description: matchExpressions is a list of label
+                                        selector requirements. The requirements are
+                                        ANDed.
+                                      items:
+                                        description: A label selector requirement
+                                          is a selector that contains values, a key,
+                                          and an operator that relates the key and
+                                          values.
+                                        properties:
+                                          key:
+                                            description: key is the label key that
+                                              the selector applies to.
+                                            type: string
+                                          operator:
+                                            description: operator represents a key's
+                                              relationship to a set of values. Valid
+                                              operators are In, NotIn, Exists and
+                                              DoesNotExist.
+                                            type: string
+                                          values:
+                                            description: values is an array of string
+                                              values. If the operator is In or NotIn,
+                                              the values array must be non-empty.
+                                              If the operator is Exists or DoesNotExist,
+                                              the values array must be empty. This
+                                              array is replaced during a strategic
+                                              merge patch.
+                                            items:
+                                              type: string
+                                            type: array
+                                        required:
+                                        - key
+                                        - operator
+                                        type: object
+                                      type: array
+                                    matchLabels:
+                                      additionalProperties:
+                                        type: string
+                                      description: matchLabels is a map of {key,value}
+                                        pairs. A single {key,value} in the matchLabels
+                                        map is equivalent to an element of matchExpressions,
+                                        whose key field is "key", the operator is
+                                        "In", and the values array contains only "value".
+                                        The requirements are ANDed.
+                                      type: object
+                                  type: object
+                                namespaceSelector:
+                                  description: A label query over the set of namespaces
+                                    that the term applies to. The term is applied
+                                    to the union of the namespaces selected by this
+                                    field and the ones listed in the namespaces field.
+                                    null selector and null or empty namespaces list
+                                    means "this pod's namespace". An empty selector
+                                    ({}) matches all namespaces. This field is beta-level
+                                    and is only honored when PodAffinityNamespaceSelector
+                                    feature is enabled.
+                                  properties:
+                                    matchExpressions:
+                                      description: matchExpressions is a list of label
+                                        selector requirements. The requirements are
+                                        ANDed.
+                                      items:
+                                        description: A label selector requirement
+                                          is a selector that contains values, a key,
+                                          and an operator that relates the key and
+                                          values.
+                                        properties:
+                                          key:
+                                            description: key is the label key that
+                                              the selector applies to.
+                                            type: string
+                                          operator:
+                                            description: operator represents a key's
+                                              relationship to a set of values. Valid
+                                              operators are In, NotIn, Exists and
+                                              DoesNotExist.
+                                            type: string
+                                          values:
+                                            description: values is an array of string
+                                              values. If the operator is In or NotIn,
+                                              the values array must be non-empty.
+                                              If the operator is Exists or DoesNotExist,
+                                              the values array must be empty. This
+                                              array is replaced during a strategic
+                                              merge patch.
+                                            items:
+                                              type: string
+                                            type: array
+                                        required:
+                                        - key
+                                        - operator
+                                        type: object
+                                      type: array
+                                    matchLabels:
+                                      additionalProperties:
+                                        type: string
+                                      description: matchLabels is a map of {key,value}
+                                        pairs. A single {key,value} in the matchLabels
+                                        map is equivalent to an element of matchExpressions,
+                                        whose key field is "key", the operator is
+                                        "In", and the values array contains only "value".
+                                        The requirements are ANDed.
+                                      type: object
+                                  type: object
+                                namespaces:
+                                  description: namespaces specifies a static list
+                                    of namespace names that the term applies to. The
+                                    term is applied to the union of the namespaces
+                                    listed in this field and the ones selected by
+                                    namespaceSelector. null or empty namespaces list
+                                    and null namespaceSelector means "this pod's namespace"
+                                  items:
+                                    type: string
+                                  type: array
+                                topologyKey:
+                                  description: This pod should be co-located (affinity)
+                                    or not co-located (anti-affinity) with the pods
+                                    matching the labelSelector in the specified namespaces,
+                                    where co-located is defined as running on a node
+                                    whose value of the label with key topologyKey
+                                    matches that of any node on which any of the selected
+                                    pods is running. Empty topologyKey is not allowed.
+                                  type: string
+                              required:
+                              - topologyKey
+                              type: object
+                            type: array
+                        type: object
+                      podAntiAffinity:
+                        description: Describes pod anti-affinity scheduling rules
+                          (e.g. avoid putting this pod in the same node, zone, etc.
+                          as some other pod(s)).
+                        properties:
+                          preferredDuringSchedulingIgnoredDuringExecution:
+                            description: The scheduler will prefer to schedule pods
+                              to nodes that satisfy the anti-affinity expressions
+                              specified by this field, but it may choose a node that
+                              violates one or more of the expressions. The node that
+                              is most preferred is the one with the greatest sum of
+                              weights, i.e. for each node that meets all of the scheduling
+                              requirements (resource request, requiredDuringScheduling
+                              anti-affinity expressions, etc.), compute a sum by iterating
+                              through the elements of this field and adding "weight"
+                              to the sum if the node has pods which matches the corresponding
+                              podAffinityTerm; the node(s) with the highest sum are
+                              the most preferred.
+                            items:
+                              description: The weights of all of the matched WeightedPodAffinityTerm
+                                fields are added per-node to find the most preferred
+                                node(s)
+                              properties:
+                                podAffinityTerm:
+                                  description: Required. A pod affinity term, associated
+                                    with the corresponding weight.
+                                  properties:
+                                    labelSelector:
+                                      description: A label query over a set of resources,
+                                        in this case pods.
+                                      properties:
+                                        matchExpressions:
+                                          description: matchExpressions is a list
+                                            of label selector requirements. The requirements
+                                            are ANDed.
+                                          items:
+                                            description: A label selector requirement
+                                              is a selector that contains values,
+                                              a key, and an operator that relates
+                                              the key and values.
+                                            properties:
+                                              key:
+                                                description: key is the label key
+                                                  that the selector applies to.
+                                                type: string
+                                              operator:
+                                                description: operator represents a
+                                                  key's relationship to a set of values.
+                                                  Valid operators are In, NotIn, Exists
+                                                  and DoesNotExist.
+                                                type: string
+                                              values:
+                                                description: values is an array of
+                                                  string values. If the operator is
+                                                  In or NotIn, the values array must
+                                                  be non-empty. If the operator is
+                                                  Exists or DoesNotExist, the values
+                                                  array must be empty. This array
+                                                  is replaced during a strategic merge
+                                                  patch.
+                                                items:
+                                                  type: string
+                                                type: array
+                                            required:
+                                            - key
+                                            - operator
+                                            type: object
+                                          type: array
+                                        matchLabels:
+                                          additionalProperties:
+                                            type: string
+                                          description: matchLabels is a map of {key,value}
+                                            pairs. A single {key,value} in the matchLabels
+                                            map is equivalent to an element of matchExpressions,
+                                            whose key field is "key", the operator
+                                            is "In", and the values array contains
+                                            only "value". The requirements are ANDed.
+                                          type: object
+                                      type: object
+                                    namespaceSelector:
+                                      description: A label query over the set of namespaces
+                                        that the term applies to. The term is applied
+                                        to the union of the namespaces selected by
+                                        this field and the ones listed in the namespaces
+                                        field. null selector and null or empty namespaces
+                                        list means "this pod's namespace". An empty
+                                        selector ({}) matches all namespaces. This
+                                        field is beta-level and is only honored when
+                                        PodAffinityNamespaceSelector feature is enabled.
+                                      properties:
+                                        matchExpressions:
+                                          description: matchExpressions is a list
+                                            of label selector requirements. The requirements
+                                            are ANDed.
+                                          items:
+                                            description: A label selector requirement
+                                              is a selector that contains values,
+                                              a key, and an operator that relates
+                                              the key and values.
+                                            properties:
+                                              key:
+                                                description: key is the label key
+                                                  that the selector applies to.
+                                                type: string
+                                              operator:
+                                                description: operator represents a
+                                                  key's relationship to a set of values.
+                                                  Valid operators are In, NotIn, Exists
+                                                  and DoesNotExist.
+                                                type: string
+                                              values:
+                                                description: values is an array of
+                                                  string values. If the operator is
+                                                  In or NotIn, the values array must
+                                                  be non-empty. If the operator is
+                                                  Exists or DoesNotExist, the values
+                                                  array must be empty. This array
+                                                  is replaced during a strategic merge
+                                                  patch.
+                                                items:
+                                                  type: string
+                                                type: array
+                                            required:
+                                            - key
+                                            - operator
+                                            type: object
+                                          type: array
+                                        matchLabels:
+                                          additionalProperties:
+                                            type: string
+                                          description: matchLabels is a map of {key,value}
+                                            pairs. A single {key,value} in the matchLabels
+                                            map is equivalent to an element of matchExpressions,
+                                            whose key field is "key", the operator
+                                            is "In", and the values array contains
+                                            only "value". The requirements are ANDed.
+                                          type: object
+                                      type: object
+                                    namespaces:
+                                      description: namespaces specifies a static list
+                                        of namespace names that the term applies to.
+                                        The term is applied to the union of the namespaces
+                                        listed in this field and the ones selected
+                                        by namespaceSelector. null or empty namespaces
+                                        list and null namespaceSelector means "this
+                                        pod's namespace"
+                                      items:
+                                        type: string
+                                      type: array
+                                    topologyKey:
+                                      description: This pod should be co-located (affinity)
+                                        or not co-located (anti-affinity) with the
+                                        pods matching the labelSelector in the specified
+                                        namespaces, where co-located is defined as
+                                        running on a node whose value of the label
+                                        with key topologyKey matches that of any node
+                                        on which any of the selected pods is running.
+                                        Empty topologyKey is not allowed.
+                                      type: string
+                                  required:
+                                  - topologyKey
+                                  type: object
+                                weight:
+                                  description: weight associated with matching the
+                                    corresponding podAffinityTerm, in the range 1-100.
+                                  format: int32
+                                  type: integer
+                              required:
+                              - podAffinityTerm
+                              - weight
+                              type: object
+                            type: array
+                          requiredDuringSchedulingIgnoredDuringExecution:
+                            description: If the anti-affinity requirements specified
+                              by this field are not met at scheduling time, the pod
+                              will not be scheduled onto the node. If the anti-affinity
+                              requirements specified by this field cease to be met
+                              at some point during pod execution (e.g. due to a pod
+                              label update), the system may or may not try to eventually
+                              evict the pod from its node. When there are multiple
+                              elements, the lists of nodes corresponding to each podAffinityTerm
+                              are intersected, i.e. all terms must be satisfied.
+                            items:
+                              description: Defines a set of pods (namely those matching
+                                the labelSelector relative to the given namespace(s))
+                                that this pod should be co-located (affinity) or not
+                                co-located (anti-affinity) with, where co-located
+                                is defined as running on a node whose value of the
+                                label with key <topologyKey> matches that of any node
+                                on which a pod of the set of pods is running
+                              properties:
+                                labelSelector:
+                                  description: A label query over a set of resources,
+                                    in this case pods.
+                                  properties:
+                                    matchExpressions:
+                                      description: matchExpressions is a list of label
+                                        selector requirements. The requirements are
+                                        ANDed.
+                                      items:
+                                        description: A label selector requirement
+                                          is a selector that contains values, a key,
+                                          and an operator that relates the key and
+                                          values.
+                                        properties:
+                                          key:
+                                            description: key is the label key that
+                                              the selector applies to.
+                                            type: string
+                                          operator:
+                                            description: operator represents a key's
+                                              relationship to a set of values. Valid
+                                              operators are In, NotIn, Exists and
+                                              DoesNotExist.
+                                            type: string
+                                          values:
+                                            description: values is an array of string
+                                              values. If the operator is In or NotIn,
+                                              the values array must be non-empty.
+                                              If the operator is Exists or DoesNotExist,
+                                              the values array must be empty. This
+                                              array is replaced during a strategic
+                                              merge patch.
+                                            items:
+                                              type: string
+                                            type: array
+                                        required:
+                                        - key
+                                        - operator
+                                        type: object
+                                      type: array
+                                    matchLabels:
+                                      additionalProperties:
+                                        type: string
+                                      description: matchLabels is a map of {key,value}
+                                        pairs. A single {key,value} in the matchLabels
+                                        map is equivalent to an element of matchExpressions,
+                                        whose key field is "key", the operator is
+                                        "In", and the values array contains only "value".
+                                        The requirements are ANDed.
+                                      type: object
+                                  type: object
+                                namespaceSelector:
+                                  description: A label query over the set of namespaces
+                                    that the term applies to. The term is applied
+                                    to the union of the namespaces selected by this
+                                    field and the ones listed in the namespaces field.
+                                    null selector and null or empty namespaces list
+                                    means "this pod's namespace". An empty selector
+                                    ({}) matches all namespaces. This field is beta-level
+                                    and is only honored when PodAffinityNamespaceSelector
+                                    feature is enabled.
+                                  properties:
+                                    matchExpressions:
+                                      description: matchExpressions is a list of label
+                                        selector requirements. The requirements are
+                                        ANDed.
+                                      items:
+                                        description: A label selector requirement
+                                          is a selector that contains values, a key,
+                                          and an operator that relates the key and
+                                          values.
+                                        properties:
+                                          key:
+                                            description: key is the label key that
+                                              the selector applies to.
+                                            type: string
+                                          operator:
+                                            description: operator represents a key's
+                                              relationship to a set of values. Valid
+                                              operators are In, NotIn, Exists and
+                                              DoesNotExist.
+                                            type: string
+                                          values:
+                                            description: values is an array of string
+                                              values. If the operator is In or NotIn,
+                                              the values array must be non-empty.
+                                              If the operator is Exists or DoesNotExist,
+                                              the values array must be empty. This
+                                              array is replaced during a strategic
+                                              merge patch.
+                                            items:
+                                              type: string
+                                            type: array
+                                        required:
+                                        - key
+                                        - operator
+                                        type: object
+                                      type: array
+                                    matchLabels:
+                                      additionalProperties:
+                                        type: string
+                                      description: matchLabels is a map of {key,value}
+                                        pairs. A single {key,value} in the matchLabels
+                                        map is equivalent to an element of matchExpressions,
+                                        whose key field is "key", the operator is
+                                        "In", and the values array contains only "value".
+                                        The requirements are ANDed.
+                                      type: object
+                                  type: object
+                                namespaces:
+                                  description: namespaces specifies a static list
+                                    of namespace names that the term applies to. The
+                                    term is applied to the union of the namespaces
+                                    listed in this field and the ones selected by
+                                    namespaceSelector. null or empty namespaces list
+                                    and null namespaceSelector means "this pod's namespace"
+                                  items:
+                                    type: string
+                                  type: array
+                                topologyKey:
+                                  description: This pod should be co-located (affinity)
+                                    or not co-located (anti-affinity) with the pods
+                                    matching the labelSelector in the specified namespaces,
+                                    where co-located is defined as running on a node
+                                    whose value of the label with key topologyKey
+                                    matches that of any node on which any of the selected
+                                    pods is running. Empty topologyKey is not allowed.
+                                  type: string
+                              required:
+                              - topologyKey
+                              type: object
+                            type: array
+                        type: object
+                    type: object
+                  annotations:
+                    additionalProperties:
+                      type: string
+                    description: Annotations specifies the annotations to attach to
+                      pods the operator creates for the dm-master cluster. The "dm-master.version"
+                      annotation is reserved for the internal use of the dm-master
+                      operator.
+                    type: object
+                  antiAffinity:
+                    description: '**DEPRECATED**. Use Affinity instead.'
+                    type: boolean
+                  dm-masterEnv:
+                    description: List of environment variables to set in the dm-master
+                      container. This is used to configure dm-master process. dm-master
+                      cluster cannot be created, when bad environement variables are
+                      provided. Do not overwrite any flags used to bootstrap the cluster
+                      (for example `--initial-cluster` flag). This field cannot be
+                      updated.
+                    items:
+                      description: EnvVar represents an environment variable present
+                        in a Container.
+                      properties:
+                        name:
+                          description: Name of the environment variable. Must be a
+                            C_IDENTIFIER.
+                          type: string
+                        value:
+                          description: 'Variable references $(VAR_NAME) are expanded
+                            using the previously defined environment variables in
+                            the container and any service environment variables. If
+                            a variable cannot be resolved, the reference in the input
+                            string will be unchanged. Double $$ are reduced to a single
+                            $, which allows for escaping the $(VAR_NAME) syntax: i.e.
+                            "$$(VAR_NAME)" will produce the string literal "$(VAR_NAME)".
+                            Escaped references will never be expanded, regardless
+                            of whether the variable exists or not. Defaults to "".'
+                          type: string
+                        valueFrom:
+                          description: Source for the environment variable's value.
+                            Cannot be used if value is not empty.
+                          properties:
+                            configMapKeyRef:
+                              description: Selects a key of a ConfigMap.
+                              properties:
+                                key:
+                                  description: The key to select.
+                                  type: string
+                                name:
+                                  description: 'Name of the referent. More info:
+                                    TODO: Add other useful fields. apiVersion, kind,
+                                    uid?'
+                                  type: string
+                                optional:
+                                  description: Specify whether the ConfigMap or its
+                                    key must be defined
+                                  type: boolean
+                              required:
+                              - key
+                              type: object
+                            fieldRef:
+                              description: 'Selects a field of the pod: supports,
+                                metadata.namespace, `metadata.labels[''<KEY>'']`,
+                                `metadata.annotations[''<KEY>'']`, spec.nodeName,
+                                spec.serviceAccountName, status.hostIP, status.podIP,
+                                status.podIPs.'
+                              properties:
+                                apiVersion:
+                                  description: Version of the schema the FieldPath
+                                    is written in terms of, defaults to "v1".
+                                  type: string
+                                fieldPath:
+                                  description: Path of the field to select in the
+                                    specified API version.
+                                  type: string
+                              required:
+                              - fieldPath
+                              type: object
+                            resourceFieldRef:
+                              description: 'Selects a resource of the container: only
+                                resources limits and requests (limits.cpu, limits.memory,
+                                limits.ephemeral-storage, requests.cpu, requests.memory
+                                and requests.ephemeral-storage) are currently supported.'
+                              properties:
+                                containerName:
+                                  description: 'Container name: required for volumes,
+                                    optional for env vars'
+                                  type: string
+                                divisor:
+                                  anyOf:
+                                  - type: integer
+                                  - type: string
+                                  description: Specifies the output format of the
+                                    exposed resources, defaults to "1"
+                                  pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$
+                                  x-kubernetes-int-or-string: true
+                                resource:
+                                  description: 'Required: resource to select'
+                                  type: string
+                              required:
+                              - resource
+                              type: object
+                            secretKeyRef:
+                              description: Selects a key of a secret in the pod's
+                                namespace
+                              properties:
+                                key:
+                                  description: The key of the secret to select from.  Must
+                                    be a valid secret key.
+                                  type: string
+                                name:
+                                  description: 'Name of the referent. More info:
+                                    TODO: Add other useful fields. apiVersion, kind,
+                                    uid?'
+                                  type: string
+                                optional:
+                                  description: Specify whether the Secret or its key
+                                    must be defined
+                                  type: boolean
+                              required:
+                              - key
+                              type: object
+                          type: object
+                      required:
+                      - name
+                      type: object
+                    type: array
+                  labels:
+                    additionalProperties:
+                      type: string
+                    description: Labels specifies the labels to attach to pods the
+                      operator creates for the dm-master cluster. "app" and "dm-master_*"
+                      labels are reserved for the internal use of the dm-master operator.
+                      Do not overwrite them.
+                    type: object
+                  nodeSelector:
+                    additionalProperties:
+                      type: string
+                    description: NodeSelector specifies a map of key-value pairs.
+                      For the pod to be eligible to run on a node, the node must have
+                      each of the indicated key-value pairs as labels.
+                    type: object
+                  persistentVolumeClaimSpec:
+                    description: PersistentVolumeClaimSpec is the spec to describe
+                      PVC for the dm-master container This field is optional. If no
+                      PVC spec, dm-master container will use emptyDir as volume Note.
+                      This feature is in alpha stage. It is currently only used as
+                      non-stable storage, not the stable storage. Future work need
+                      to make it used as stable storage.
+                    properties:
+                      accessModes:
+                        description: 'AccessModes contains the desired access modes
+                          the volume should have. More info:'
+                        items:
+                          type: string
+                        type: array
+                      dataSource:
+                        description: 'This field can be used to specify either: *
+                          An existing VolumeSnapshot object (
+                          * An existing PVC (PersistentVolumeClaim) If the provisioner
+                          or an external controller can support the specified data
+                          source, it will create a new volume based on the contents
+                          of the specified data source. If the AnyVolumeDataSource
+                          feature gate is enabled, this field will always have the
+                          same contents as the DataSourceRef field.'
+                        properties:
+                          apiGroup:
+                            description: APIGroup is the group for the resource being
+                              referenced. If APIGroup is not specified, the specified
+                              Kind must be in the core API group. For any other third-party
+                              types, APIGroup is required.
+                            type: string
+                          kind:
+                            description: Kind is the type of resource being referenced
+                            type: string
+                          name:
+                            description: Name is the name of resource being referenced
+                            type: string
+                        required:
+                        - kind
+                        - name
+                        type: object
+                      dataSourceRef:
+                        description: 'Specifies the object from which to populate
+                          the volume with data, if a non-empty volume is desired.
+                          This may be any local object from a non-empty API group
+                          (non core object) or a PersistentVolumeClaim object. When
+                          this field is specified, volume binding will only succeed
+                          if the type of the specified object matches some installed
+                          volume populator or dynamic provisioner. This field will
+                          replace the functionality of the DataSource field and as
+                          such if both fields are non-empty, they must have the same
+                          value. For backwards compatibility, both fields (DataSource
+                          and DataSourceRef) will be set to the same value automatically
+                          if one of them is empty and the other is non-empty. There
+                          are two important differences between DataSource and DataSourceRef:
+                          * While DataSource only allows two specific types of objects,
+                          DataSourceRef allows any non-core object, as well as PersistentVolumeClaim
+                          objects. * While DataSource ignores disallowed values (dropping
+                          them), DataSourceRef preserves all values, and generates
+                          an error if a disallowed value is specified. (Alpha) Using
+                          this field requires the AnyVolumeDataSource feature gate
+                          to be enabled.'
+                        properties:
+                          apiGroup:
+                            description: APIGroup is the group for the resource being
+                              referenced. If APIGroup is not specified, the specified
+                              Kind must be in the core API group. For any other third-party
+                              types, APIGroup is required.
+                            type: string
+                          kind:
+                            description: Kind is the type of resource being referenced
+                            type: string
+                          name:
+                            description: Name is the name of resource being referenced
+                            type: string
+                        required:
+                        - kind
+                        - name
+                        type: object
+                      resources:
+                        description: 'Resources represents the minimum resources the
+                          volume should have. If RecoverVolumeExpansionFailure feature
+                          is enabled users are allowed to specify resource requirements
+                          that are lower than previous value but must still be higher
+                          than capacity recorded in the status field of the claim.
+                          More info:'
+                        properties:
+                          limits:
+                            additionalProperties:
+                              anyOf:
+                              - type: integer
+                              - type: string
+                              pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$
+                              x-kubernetes-int-or-string: true
+                            description: 'Limits describes the maximum amount of compute
+                              resources allowed. More info:'
+                            type: object
+                          requests:
+                            additionalProperties:
+                              anyOf:
+                              - type: integer
+                              - type: string
+                              pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$
+                              x-kubernetes-int-or-string: true
+                            description: 'Requests describes the minimum amount of
+                              compute resources required. If Requests is omitted for
+                              a container, it defaults to Limits if that is explicitly
+                              specified, otherwise to an implementation-defined value.
+                              More info:'
+                            type: object
+                        type: object
+                      selector:
+                        description: A label query over volumes to consider for binding.
+                        properties:
+                          matchExpressions:
+                            description: matchExpressions is a list of label selector
+                              requirements. The requirements are ANDed.
+                            items:
+                              description: A label selector requirement is a selector
+                                that contains values, a key, and an operator that
+                                relates the key and values.
+                              properties:
+                                key:
+                                  description: key is the label key that the selector
+                                    applies to.
+                                  type: string
+                                operator:
+                                  description: operator represents a key's relationship
+                                    to a set of values. Valid operators are In, NotIn,
+                                    Exists and DoesNotExist.
+                                  type: string
+                                values:
+                                  description: values is an array of string values.
+                                    If the operator is In or NotIn, the values array
+                                    must be non-empty. If the operator is Exists or
+                                    DoesNotExist, the values array must be empty.
+                                    This array is replaced during a strategic merge
+                                    patch.
+                                  items:
+                                    type: string
+                                  type: array
+                              required:
+                              - key
+                              - operator
+                              type: object
+                            type: array
+                          matchLabels:
+                            additionalProperties:
+                              type: string
+                            description: matchLabels is a map of {key,value} pairs.
+                              A single {key,value} in the matchLabels map is equivalent
+                              to an element of matchExpressions, whose key field is
+                              "key", the operator is "In", and the values array contains
+                              only "value". The requirements are ANDed.
+                            type: object
+                        type: object
+                      storageClassName:
+                        description: 'Name of the StorageClass required by the claim.
+                          More info:'
+                        type: string
+                      volumeMode:
+                        description: volumeMode defines what type of volume is required
+                          by the claim. Value of Filesystem is implied when not included
+                          in claim spec.
+                        type: string
+                      volumeName:
+                        description: VolumeName is the binding reference to the PersistentVolume
+                          backing this claim.
+                        type: string
+                    type: object
+                  resources:
+                    description: Resources is the resource requirements for the dm-master
+                      container. This field cannot be updated once the cluster is
+                      created.
+                    properties:
+                      limits:
+                        additionalProperties:
+                          anyOf:
+                          - type: integer
+                          - type: string
+                          pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$
+                          x-kubernetes-int-or-string: true
+                        description: 'Limits describes the maximum amount of compute
+                          resources allowed. More info:'
+                        type: object
+                      requests:
+                        additionalProperties:
+                          anyOf:
+                          - type: integer
+                          - type: string
+                          pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$
+                          x-kubernetes-int-or-string: true
+                        description: 'Requests describes the minimum amount of compute
+                          resources required. If Requests is omitted for a container,
+                          it defaults to Limits if that is explicitly specified, otherwise
+                          to an implementation-defined value. More info:'
+                        type: object
+                    type: object
+                  securityContext:
+                    description: 'SecurityContext specifies the security context for
+                      the entire pod More info:'
+                    properties:
+                      fsGroup:
+                        description: "A special supplemental group that applies to
+                          all containers in a pod. Some volume types allow the Kubelet
+                          to change the ownership of that volume to be owned by the
+                          pod: \n 1. The owning GID will be the FSGroup 2. The setgid
+                          bit is set (new files created in the volume will be owned
+                          by FSGroup) 3. The permission bits are OR'd with rw-rw----
+                          \n If unset, the Kubelet will not modify the ownership and
+                          permissions of any volume. Note that this field cannot be
+                          set when is windows."
+                        format: int64
+                        type: integer
+                      fsGroupChangePolicy:
+                        description: 'fsGroupChangePolicy defines behavior of changing
+                          ownership and permission of the volume before being exposed
+                          inside Pod. This field will only apply to volume types which
+                          support fsGroup based ownership(and permissions). It will
+                          have no effect on ephemeral volume types such as: secret,
+                          configmaps and emptydir. Valid values are "OnRootMismatch"
+                          and "Always". If not specified, "Always" is used. Note that
+                          this field cannot be set when is windows.'
+                        type: string
+                      runAsGroup:
+                        description: The GID to run the entrypoint of the container
+                          process. Uses runtime default if unset. May also be set
+                          in SecurityContext.  If set in both SecurityContext and
+                          PodSecurityContext, the value specified in SecurityContext
+                          takes precedence for that container. Note that this field
+                          cannot be set when is windows.
+                        format: int64
+                        type: integer
+                      runAsNonRoot:
+                        description: Indicates that the container must run as a non-root
+                          user. If true, the Kubelet will validate the image at runtime
+                          to ensure that it does not run as UID 0 (root) and fail
+                          to start the container if it does. If unset or false, no
+                          such validation will be performed. May also be set in SecurityContext.  If
+                          set in both SecurityContext and PodSecurityContext, the
+                          value specified in SecurityContext takes precedence.
+                        type: boolean
+                      runAsUser:
+                        description: The UID to run the entrypoint of the container
+                          process. Defaults to user specified in image metadata if
+                          unspecified. May also be set in SecurityContext.  If set
+                          in both SecurityContext and PodSecurityContext, the value
+                          specified in SecurityContext takes precedence for that container.
+                          Note that this field cannot be set when is
+                          windows.
+                        format: int64
+                        type: integer
+                      seLinuxOptions:
+                        description: The SELinux context to be applied to all containers.
+                          If unspecified, the container runtime will allocate a random
+                          SELinux context for each container.  May also be set in
+                          SecurityContext.  If set in both SecurityContext and PodSecurityContext,
+                          the value specified in SecurityContext takes precedence
+                          for that container. Note that this field cannot be set when
+                 is windows.
+                        properties:
+                          level:
+                            description: Level is SELinux level label that applies
+                              to the container.
+                            type: string
+                          role:
+                            description: Role is a SELinux role label that applies
+                              to the container.
+                            type: string
+                          type:
+                            description: Type is a SELinux type label that applies
+                              to the container.
+                            type: string
+                          user:
+                            description: User is a SELinux user label that applies
+                              to the container.
+                            type: string
+                        type: object
+                      seccompProfile:
+                        description: The seccomp options to use by the containers
+                          in this pod. Note that this field cannot be set when
+                          is windows.
+                        properties:
+                          localhostProfile:
+                            description: localhostProfile indicates a profile defined
+                              in a file on the node should be used. The profile must
+                              be preconfigured on the node to work. Must be a descending
+                              path, relative to the kubelet's configured seccomp profile
+                              location. Must only be set if type is "Localhost".
+                            type: string
+                          type:
+                            description: "type indicates which kind of seccomp profile
+                              will be applied. Valid options are: \n Localhost - a
+                              profile defined in a file on the node should be used.
+                              RuntimeDefault - the container runtime default profile
+                              should be used. Unconfined - no profile should be applied."
+                            type: string
+                        required:
+                        - type
+                        type: object
+                      supplementalGroups:
+                        description: A list of groups applied to the first process
+                          run in each container, in addition to the container's primary
+                          GID.  If unspecified, no groups will be added to any container.
+                          Note that this field cannot be set when is
+                          windows.
+                        items:
+                          format: int64
+                          type: integer
+                        type: array
+                      sysctls:
+                        description: Sysctls hold a list of namespaced sysctls used
+                          for the pod. Pods with unsupported sysctls (by the container
+                          runtime) might fail to launch. Note that this field cannot
+                          be set when is windows.
+                        items:
+                          description: Sysctl defines a kernel parameter to be set
+                          properties:
+                            name:
+                              description: Name of a property to set
+                              type: string
+                            value:
+                              description: Value of a property to set
+                              type: string
+                          required:
+                          - name
+                          - value
+                          type: object
+                        type: array
+                      windowsOptions:
+                        description: The Windows specific settings applied to all
+                          containers. If unspecified, the options within a container's
+                          SecurityContext will be used. If set in both SecurityContext
+                          and PodSecurityContext, the value specified in SecurityContext
+                          takes precedence. Note that this field cannot be set when
+                 is linux.
+                        properties:
+                          gmsaCredentialSpec:
+                            description: GMSACredentialSpec is where the GMSA admission
+                              webhook (
+                              inlines the contents of the GMSA credential spec named
+                              by the GMSACredentialSpecName field.
+                            type: string
+                          gmsaCredentialSpecName:
+                            description: GMSACredentialSpecName is the name of the
+                              GMSA credential spec to use.
+                            type: string
+                          hostProcess:
+                            description: HostProcess determines if a container should
+                              be run as a 'Host Process' container. This field is
+                              alpha-level and will only be honored by components that
+                              enable the WindowsHostProcessContainers feature flag.
+                              Setting this field without the feature flag will result
+                              in errors when validating the Pod. All of a Pod's containers
+                              must have the same effective HostProcess value (it is
+                              not allowed to have a mix of HostProcess containers
+                              and non-HostProcess containers).  In addition, if HostProcess
+                              is true then HostNetwork must also be set to true.
+                            type: boolean
+                          runAsUserName:
+                            description: The UserName in Windows to run the entrypoint
+                              of the container process. Defaults to the user specified
+                              in image metadata if unspecified. May also be set in
+                              PodSecurityContext. If set in both SecurityContext and
+                              PodSecurityContext, the value specified in SecurityContext
+                              takes precedence.
+                            type: string
+                        type: object
+                    type: object
+                  tolerations:
+                    description: Tolerations specifies the pod's tolerations.
+                    items:
+                      description: The pod this Toleration is attached to tolerates
+                        any taint that matches the triple <key,value,effect> using
+                        the matching operator <operator>.
+                      properties:
+                        effect:
+                          description: Effect indicates the taint effect to match.
+                            Empty means match all taint effects. When specified, allowed
+                            values are NoSchedule, PreferNoSchedule and NoExecute.
+                          type: string
+                        key:
+                          description: Key is the taint key that the toleration applies
+                            to. Empty means match all taint keys. If the key is empty,
+                            operator must be Exists; this combination means to match
+                            all values and all keys.
+                          type: string
+                        operator:
+                          description: Operator represents a key's relationship to
+                            the value. Valid operators are Exists and Equal. Defaults
+                            to Equal. Exists is equivalent to wildcard for value,
+                            so that a pod can tolerate all taints of a particular
+                            category.
+                          type: string
+                        tolerationSeconds:
+                          description: TolerationSeconds represents the period of
+                            time the toleration (which must be of effect NoExecute,
+                            otherwise this field is ignored) tolerates the taint.
+                            By default, it is not set, which means tolerate the taint
+                            forever (do not evict). Zero and negative values will
+                            be treated as 0 (evict immediately) by the system.
+                          format: int64
+                          type: integer
+                        value:
+                          description: Value is the taint value the toleration matches
+                            to. If the operator is Exists, the value should be empty,
+                            otherwise just a regular string.
+                          type: string
+                      type: object
+                    type: array
+                type: object
+              replicas:
+                default: 3
+                description: Replicas is the expected size of the ms-worker. The ds-worker-operator
+                  will eventually make the size of the running equal to the expected
+                  size. The vaild range of the size is from 1 to 7.
+                maximum: 7
+                minimum: 1
+                type: integer
+              repository:
+                default: apache/dolphinscheduler-worker
+                description: Repository is the name of the repository that hosts ds
+                  container images. It should be direct clone of the repository in
+                  official By default, it is `apache/dolphinscheduler-worker`.
+                type: string
+              version:
+                default: 3.0.0-alpha
+                description: Version is the expected version of the ds cluster. The
+                  ds-operator will eventually make the ds cluster version equal to
+                  the expected version. If version is not set, default is "3.0.0-alpha".
+                type: string
+              zookeeper_connect:
+                description: ZookeeperConnect  is the address string of zookeeper
+                  ,and it will be written to ENV
+                type: string
+            required:
+            - replicas
+            type: object
+          status:
+            description: DSWorkerStatus defines the observed state of DSWorker
+            properties:
+              conditions:
+                description: Condition keeps track of all cluster conditions, if they
+                  exist.
+                items:
+                  description: DsCondition represents one current condition of a ds
+                    cluster. A condition might not show up if it is not happening.
+                    For example, if a cluster is not upgrading, the Upgrading condition
+                    would not show up. If a cluster is upgrading and encountered a
+                    problem that prevents the upgrade, the Upgrading condition's status
+                    will would be False and communicate the problem back.
+                  properties:
+                    lastTransitionTime:
+                      description: Last time the condition transitioned from one status
+                        to another.
+                      type: string
+                    lastUpdateTime:
+                      description: The last time this condition was updated.
+                      type: string
+                    message:
+                      description: A human readable message indicating details about
+                        the transition.
+                      type: string
+                    reason:
+                      description: The reason for the condition's last transition.
+                      type: string
+                    status:
+                      description: Status of the condition, one of True, False, Unknown.
+                      type: string
+                    type:
+                      description: Type of cluster condition.
+                      type: string
+                  required:
+                  - status
+                  - type
+                  type: object
+                type: array
+              controlPaused:
+                default: false
+                description: ControlPaused indicates the operator pauses the control
+                  of the cluster.
+                type: boolean
+              members:
+                description: Members are the dsWorker members in the cluster
+                properties:
+                  ready:
+                    description: Ready are the dsMaster members that are ready to
+                      serve requests The member names are the same as the dsMaster
+                      pod names
+                    items:
+                      type: string
+                    type: array
+                  unready:
+                    description: Unready are the etcd members not ready to serve requests
+                    items:
+                      type: string
+                    type: array
+                type: object
+              phase:
+                description: 'INSERT ADDITIONAL STATUS FIELD - define observed state
+                  of cluster Important: Run "make" to regenerate code after modifying
+                  this file Phase is the cluster running phase'
+                enum:
+                - ""
+                - Creating
+                - Running
+                - Failed
+                - Finished
+                type: string
+              replicas:
+                default: 0
+                description: Replicas is the current size of the cluster
+                type: integer
+            type: object
+        type: object
+    served: true
+    storage: true
+    subresources:
+      status: {}
+  acceptedNames:
+    kind: ""
+    plural: ""
+  conditions: []
+  storedVersions: []
+# This kustomization.yaml is not intended to be run by itself,
+# since it depends on service name and namespace that are out of this kustomize package.
+# It should be run by config/default
+- bases/ds.apache.dolphinscheduler.dev_dsmasters.yaml
+- bases/ds.apache.dolphinscheduler.dev_dsworkers.yaml
+# [WEBHOOK] To enable webhook, uncomment all the sections with [WEBHOOK] prefix.
+# patches here are for enabling the conversion webhook for each CRD
+#- patches/webhook_in_dsmasters.yaml
+#- patches/webhook_in_dsworkers.yaml
+# [CERTMANAGER] To enable cert-manager, uncomment all the sections with [CERTMANAGER] prefix.
+# patches here are for enabling the CA injection for each CRD
+#- patches/cainjection_in_dsmasters.yaml
+#- patches/cainjection_in_dsworkers.yaml
+# the following config is for teaching kustomize how to do kustomization for CRDs.
+- kustomizeconfig.yaml
+# This file is for teaching kustomize how to substitute name and namespace reference in CRD
+- kind: Service
+  version: v1
+  fieldSpecs:
+  - kind: CustomResourceDefinition
+    version: v1
+    group:
+    path: spec/conversion/webhook/clientConfig/service/name
+- kind: CustomResourceDefinition
+  version: v1
+  group:
+  path: spec/conversion/webhook/clientConfig/service/namespace
+  create: false
+- path: metadata/annotations
+# The following patch adds a directive for certmanager to inject CA into the CRD
+kind: CustomResourceDefinition
+  annotations:
+  name:
+# The following patch adds a directive for certmanager to inject CA into the CRD
+kind: CustomResourceDefinition
+  annotations:
+  name:
+# The following patch enables a conversion webhook for the CRD
+kind: CustomResourceDefinition
+  name:
+  conversion:
+    strategy: Webhook
+    webhook:
+      clientConfig:
+        service:
+          namespace: system
+          name: webhook-service
+          path: /convert
+      conversionReviewVersions:
+      - v1
diff --git a/config/crd/patches/webhook_in_dsworkers.yaml b/config/crd/patches/webhook_in_dsworkers.yaml
new file mode 100644
index 0000000..d57db20
--- /dev/null
+++ b/config/crd/patches/webhook_in_dsworkers.yaml
@@ -0,0 +1,16 @@
+# The following patch enables a conversion webhook for the CRD
+kind: CustomResourceDefinition
+  name:
+  conversion:
+    strategy: Webhook
+    webhook:
+      clientConfig:
+        service:
+          namespace: system
+          name: webhook-service
+          path: /convert
+      conversionReviewVersions:
+      - v1
diff --git a/config/default/kustomization.yaml b/config/default/kustomization.yaml
new file mode 100644
index 0000000..88ee4c0
--- /dev/null
+++ b/config/default/kustomization.yaml
@@ -0,0 +1,74 @@
+# Adds namespace to all resources.
+namespace: dolphinscheduler-operator-system
+# Value of this field is prepended to the
+# names of all resources, e.g. a deployment named
+# "wordpress" becomes "alices-wordpress".
+# Note that it should also match with the prefix (text before '-') of the namespace
+# field above.
+namePrefix: dolphinscheduler-operator-
+# Labels to add to all resources and selectors.
+#  someName: someValue
+- ../crd
+- ../rbac
+- ../manager
+# [WEBHOOK] To enable webhook, uncomment all the sections with [WEBHOOK] prefix including the one in
+# crd/kustomization.yaml
+#- ../webhook
+# [CERTMANAGER] To enable cert-manager, uncomment all sections with 'CERTMANAGER'. 'WEBHOOK' components are required.
+#- ../certmanager
+# [PROMETHEUS] To enable prometheus monitor, uncomment all sections with 'PROMETHEUS'.
+#- ../prometheus
+# Protect the /metrics endpoint by putting it behind auth.
+# If you want your controller-manager to expose the /metrics
+# endpoint w/o any authn/z, please comment the following line.
+- manager_auth_proxy_patch.yaml
+# Mount the controller config file for loading manager configurations
+# through a ComponentConfig type
+#- manager_config_patch.yaml
+# [WEBHOOK] To enable webhook, uncomment all the sections with [WEBHOOK] prefix including the one in
+# crd/kustomization.yaml
+#- manager_webhook_patch.yaml
+# [CERTMANAGER] To enable cert-manager, uncomment all sections with 'CERTMANAGER'.
+# Uncomment 'CERTMANAGER' sections in crd/kustomization.yaml to enable the CA injection in the admission webhooks.
+# 'CERTMANAGER' needs to be enabled to use ca injection
+#- webhookcainjection_patch.yaml
+# the following config is for teaching kustomize how to do var substitution
+# [CERTMANAGER] To enable cert-manager, uncomment all sections with 'CERTMANAGER' prefix.
+#- name: CERTIFICATE_NAMESPACE # namespace of the certificate CR
+#  objref:
+#    kind: Certificate
+#    group:
+#    version: v1
+#    name: serving-cert # this name should match the one in certificate.yaml
+#  fieldref:
+#    fieldpath: metadata.namespace
+#  objref:
+#    kind: Certificate
+#    group:
+#    version: v1
+#    name: serving-cert # this name should match the one in certificate.yaml
+#- name: SERVICE_NAMESPACE # namespace of the service
+#  objref:
+#    kind: Service
+#    version: v1
+#    name: webhook-service
+#  fieldref:
+#    fieldpath: metadata.namespace
+#- name: SERVICE_NAME
+#  objref:
+#    kind: Service
+#    version: v1
+#    name: webhook-service
diff --git a/config/default/manager_auth_proxy_patch.yaml b/config/default/manager_auth_proxy_patch.yaml
new file mode 100644
index 0000000..45be318
--- /dev/null
+++ b/config/default/manager_auth_proxy_patch.yaml
@@ -0,0 +1,34 @@
+# This patch inject a sidecar container which is a HTTP proxy for the
+# controller manager, it performs RBAC authorization against the Kubernetes API using SubjectAccessReviews.
+apiVersion: apps/v1
+kind: Deployment
+  name: controller-manager
+  namespace: system
+  template:
+    spec:
+      containers:
+      - name: kube-rbac-proxy
+        image:
+        args:
+        - "--secure-listen-address="
+        - "--upstream="
+        - "--logtostderr=true"
+        - "--v=0"
+        ports:
+        - containerPort: 8443
+          protocol: TCP
+          name: https
+        resources:
+          limits:
+            cpu: 500m
+            memory: 128Mi
+          requests:
+            cpu: 5m
+            memory: 64Mi
+      - name: manager
+        args:
+        - "--health-probe-bind-address=:8081"
+        - "--metrics-bind-address="
+        - "--leader-elect"
diff --git a/config/default/manager_config_patch.yaml b/config/default/manager_config_patch.yaml
new file mode 100644
index 0000000..6c40015
--- /dev/null
+++ b/config/default/manager_config_patch.yaml
@@ -0,0 +1,20 @@
+apiVersion: apps/v1
+kind: Deployment
+  name: controller-manager
+  namespace: system
+  template:
+    spec:
+      containers:
+      - name: manager
+        args:
+        - "--config=controller_manager_config.yaml"
+        volumeMounts:
+        - name: manager-config
+          mountPath: /controller_manager_config.yaml
+          subPath: controller_manager_config.yaml
+      volumes:
+      - name: manager-config
+        configMap:
+          name: manager-config
diff --git a/config/manager/controller_manager_config.yaml b/config/manager/controller_manager_config.yaml
new file mode 100644
index 0000000..56107d7
--- /dev/null
+++ b/config/manager/controller_manager_config.yaml
@@ -0,0 +1,11 @@
+kind: ControllerManagerConfig
+  healthProbeBindAddress: :8081
+  bindAddress:
+  port: 9443
+  leaderElect: true
+  resourceName:
diff --git a/config/manager/kustomization.yaml b/config/manager/kustomization.yaml
new file mode 100644
index 0000000..2bcd3ee
--- /dev/null
+++ b/config/manager/kustomization.yaml
@@ -0,0 +1,10 @@
+- manager.yaml
+  disableNameSuffixHash: true
+- name: manager-config
+  files:
+  - controller_manager_config.yaml
diff --git a/config/manager/manager.yaml b/config/manager/manager.yaml
new file mode 100644
index 0000000..cf11cec
--- /dev/null
+++ b/config/manager/manager.yaml
@@ -0,0 +1,60 @@
+apiVersion: v1
+kind: Namespace
+  labels:
+    control-plane: controller-manager
+  name: system
+apiVersion: apps/v1
+kind: Deployment
+  name: controller-manager
+  namespace: system
+  labels:
+    control-plane: controller-manager
+  selector:
+    matchLabels:
+      control-plane: controller-manager
+  replicas: 1
+  template:
+    metadata:
+      annotations:
+ manager
+      labels:
+        control-plane: controller-manager
+    spec:
+      securityContext:
+        runAsNonRoot: true
+      containers:
+      - command:
+        - /manager
+        args:
+        - --leader-elect
+        image: controller:latest
+        name: manager
+        securityContext:
+          allowPrivilegeEscalation: false
+        livenessProbe:
+          httpGet:
+            path: /healthz
+            port: 8081
+          initialDelaySeconds: 15
+          periodSeconds: 20
+        readinessProbe:
+          httpGet:
+            path: /readyz
+            port: 8081
+          initialDelaySeconds: 5
+          periodSeconds: 10
+        # TODO(user): Configure the resources accordingly based on the project requirements.
+        # More info:
+        resources:
+          limits:
+            cpu: 500m
+            memory: 128Mi
+          requests:
+            cpu: 10m
+            memory: 64Mi
+      serviceAccountName: controller-manager
+      terminationGracePeriodSeconds: 10
diff --git a/config/prometheus/kustomization.yaml b/config/prometheus/kustomization.yaml
new file mode 100644
index 0000000..ed13716
--- /dev/null
+++ b/config/prometheus/kustomization.yaml
@@ -0,0 +1,2 @@
+- monitor.yaml
diff --git a/config/prometheus/monitor.yaml b/config/prometheus/monitor.yaml
new file mode 100644
index 0000000..d19136a
--- /dev/null
+++ b/config/prometheus/monitor.yaml
@@ -0,0 +1,20 @@
+# Prometheus Monitor Service (Metrics)
+kind: ServiceMonitor
+  labels:
+    control-plane: controller-manager
+  name: controller-manager-metrics-monitor
+  namespace: system
+  endpoints:
+    - path: /metrics
+      port: https
+      scheme: https
+      bearerTokenFile: /var/run/secrets/
+      tlsConfig:
+        insecureSkipVerify: true
+  selector:
+    matchLabels:
+      control-plane: controller-manager
diff --git a/config/rbac/auth_proxy_client_clusterrole.yaml b/config/rbac/auth_proxy_client_clusterrole.yaml
new file mode 100644
index 0000000..51a75db
--- /dev/null
+++ b/config/rbac/auth_proxy_client_clusterrole.yaml
@@ -0,0 +1,9 @@
+kind: ClusterRole
+  name: metrics-reader
+- nonResourceURLs:
+  - "/metrics"
+  verbs:
+  - get
diff --git a/config/rbac/auth_proxy_role.yaml b/config/rbac/auth_proxy_role.yaml
new file mode 100644
index 0000000..80e1857
--- /dev/null
+++ b/config/rbac/auth_proxy_role.yaml
@@ -0,0 +1,17 @@
+kind: ClusterRole
+  name: proxy-role
+- apiGroups:
+  -
+  resources:
+  - tokenreviews
+  verbs:
+  - create
+- apiGroups:
+  -
+  resources:
+  - subjectaccessreviews
+  verbs:
+  - create
diff --git a/config/rbac/auth_proxy_role_binding.yaml b/config/rbac/auth_proxy_role_binding.yaml
new file mode 100644
index 0000000..ec7acc0
--- /dev/null
+++ b/config/rbac/auth_proxy_role_binding.yaml
@@ -0,0 +1,12 @@
+kind: ClusterRoleBinding
+  name: proxy-rolebinding
+  apiGroup:
+  kind: ClusterRole
+  name: proxy-role
+- kind: ServiceAccount
+  name: controller-manager
+  namespace: system
diff --git a/config/rbac/auth_proxy_service.yaml b/config/rbac/auth_proxy_service.yaml
new file mode 100644
index 0000000..71f1797
--- /dev/null
+++ b/config/rbac/auth_proxy_service.yaml
@@ -0,0 +1,15 @@
+apiVersion: v1
+kind: Service
+  labels:
+    control-plane: controller-manager
+  name: controller-manager-metrics-service
+  namespace: system
+  ports:
+  - name: https
+    port: 8443
+    protocol: TCP
+    targetPort: https
+  selector:
+    control-plane: controller-manager
diff --git a/config/rbac/dsmaster_editor_role.yaml b/config/rbac/dsmaster_editor_role.yaml
new file mode 100644
index 0000000..9b0de4f
--- /dev/null
+++ b/config/rbac/dsmaster_editor_role.yaml
@@ -0,0 +1,24 @@
+# permissions for end users to edit dsmasters.
+kind: ClusterRole
+  name: dsmaster-editor-role
+- apiGroups:
+  -
+  resources:
+  - dsmasters
+  verbs:
+  - create
+  - delete
+  - get
+  - list
+  - patch
+  - update
+  - watch
+- apiGroups:
+  -
+  resources:
+  - dsmasters/status
+  verbs:
+  - get
diff --git a/config/rbac/dsmaster_viewer_role.yaml b/config/rbac/dsmaster_viewer_role.yaml
new file mode 100644
index 0000000..26b5840
--- /dev/null
+++ b/config/rbac/dsmaster_viewer_role.yaml
@@ -0,0 +1,20 @@
+# permissions for end users to view dsmasters.
+kind: ClusterRole
+  name: dsmaster-viewer-role
+- apiGroups:
+  -
+  resources:
+  - dsmasters
+  verbs:
+  - get
+  - list
+  - watch
+- apiGroups:
+  -
+  resources:
+  - dsmasters/status
+  verbs:
+  - get
diff --git a/config/rbac/dsworker_editor_role.yaml b/config/rbac/dsworker_editor_role.yaml
new file mode 100644
index 0000000..c7da24d
--- /dev/null
+++ b/config/rbac/dsworker_editor_role.yaml
@@ -0,0 +1,24 @@
+# permissions for end users to edit dsworkers.
+kind: ClusterRole
+  name: dsworker-editor-role
+- apiGroups:
+  -
+  resources:
+  - dsworkers
+  verbs:
+  - create
+  - delete
+  - get
+  - list
+  - patch
+  - update
+  - watch
+- apiGroups:
+  -
+  resources:
+  - dsworkers/status
+  verbs:
+  - get
diff --git a/config/rbac/dsworker_viewer_role.yaml b/config/rbac/dsworker_viewer_role.yaml
new file mode 100644
index 0000000..73d9082
--- /dev/null
+++ b/config/rbac/dsworker_viewer_role.yaml
@@ -0,0 +1,20 @@
+# permissions for end users to view dsworkers.
+kind: ClusterRole
+  name: dsworker-viewer-role
+- apiGroups:
+  -
+  resources:
+  - dsworkers
+  verbs:
+  - get
+  - list
+  - watch
+- apiGroups:
+  -
+  resources:
+  - dsworkers/status
+  verbs:
+  - get
diff --git a/config/rbac/kustomization.yaml b/config/rbac/kustomization.yaml
new file mode 100644
index 0000000..731832a
--- /dev/null
+++ b/config/rbac/kustomization.yaml
@@ -0,0 +1,18 @@
+# All RBAC will be applied under this service account in
+# the deployment namespace. You may comment out this resource
+# if your manager will use a service account that exists at
+# runtime. Be sure to update RoleBinding and ClusterRoleBinding
+# subjects if changing service account names.
+- service_account.yaml
+- role.yaml
+- role_binding.yaml
+- leader_election_role.yaml
+- leader_election_role_binding.yaml
+# Comment the following 4 lines if you want to disable
+# the auth proxy (
+# which protects your /metrics endpoint.
+- auth_proxy_service.yaml
+- auth_proxy_role.yaml
+- auth_proxy_role_binding.yaml
+- auth_proxy_client_clusterrole.yaml
diff --git a/config/rbac/leader_election_role.yaml b/config/rbac/leader_election_role.yaml
new file mode 100644
index 0000000..4190ec8
--- /dev/null
+++ b/config/rbac/leader_election_role.yaml
@@ -0,0 +1,37 @@
+# permissions to do leader election.
+kind: Role
+  name: leader-election-role
+- apiGroups:
+  - ""
+  resources:
+  - configmaps
+  verbs:
+  - get
+  - list
+  - watch
+  - create
+  - update
+  - patch
+  - delete
+- apiGroups:
+  -
+  resources:
+  - leases
+  verbs:
+  - get
+  - list
+  - watch
+  - create
+  - update
+  - patch
+  - delete
+- apiGroups:
+  - ""
+  resources:
+  - events
+  verbs:
+  - create
+  - patch
diff --git a/config/rbac/leader_election_role_binding.yaml b/config/rbac/leader_election_role_binding.yaml
new file mode 100644
index 0000000..1d1321e
--- /dev/null
+++ b/config/rbac/leader_election_role_binding.yaml
@@ -0,0 +1,12 @@
+kind: RoleBinding
+  name: leader-election-rolebinding
+  apiGroup:
+  kind: Role
+  name: leader-election-role
+- kind: ServiceAccount
+  name: controller-manager
+  namespace: system
diff --git a/config/rbac/role.yaml b/config/rbac/role.yaml
new file mode 100644
index 0000000..edb21b7
--- /dev/null
+++ b/config/rbac/role.yaml
@@ -0,0 +1,59 @@
+kind: ClusterRole
+  creationTimestamp: null
+  name: manager-role
+- apiGroups:
+  -
+  resources:
+  - dsmasters
+  verbs:
+  - create
+  - delete
+  - get
+  - list
+  - patch
+  - update
+  - watch
+- apiGroups:
+  -
+  resources:
+  - dsmasters/finalizers
+  verbs:
+  - update
+- apiGroups:
+  -
+  resources:
+  - dsmasters/status
+  verbs:
+  - get
+  - patch
+  - update
+- apiGroups:
+  -
+  resources:
+  - dsworkers
+  verbs:
+  - create
+  - delete
+  - get
+  - list
+  - patch
+  - update
+  - watch
+- apiGroups:
+  -
+  resources:
+  - dsworkers/finalizers
+  verbs:
+  - update
+- apiGroups:
+  -
+  resources:
+  - dsworkers/status
+  verbs:
+  - get
+  - patch
+  - update
diff --git a/config/rbac/role_binding.yaml b/config/rbac/role_binding.yaml
new file mode 100644
index 0000000..2070ede
--- /dev/null
+++ b/config/rbac/role_binding.yaml
@@ -0,0 +1,12 @@
+kind: ClusterRoleBinding
+  name: manager-rolebinding
+  apiGroup:
+  kind: ClusterRole
+  name: manager-role
+- kind: ServiceAccount
+  name: controller-manager
+  namespace: system
diff --git a/config/rbac/service_account.yaml b/config/rbac/service_account.yaml
new file mode 100644
index 0000000..7cd6025
--- /dev/null
+++ b/config/rbac/service_account.yaml
@@ -0,0 +1,5 @@
+apiVersion: v1
+kind: ServiceAccount
+  name: controller-manager
+  namespace: system
diff --git a/config/samples/ds_v1alpha1_dsmaster.yaml b/config/samples/ds_v1alpha1_dsmaster.yaml
new file mode 100644
index 0000000..034b762
--- /dev/null
+++ b/config/samples/ds_v1alpha1_dsmaster.yaml
@@ -0,0 +1,13 @@
+kind: DSMaster
+  name: ds-master
+  namespace: ds
+  labels:
+    app: ds-master
+  replicas: 1
+  zookeeper_connect: ""
+  version: 3.0.0-alpha
+  repository: apache/dolphinscheduler-master
diff --git a/config/samples/ds_v1alpha1_dsworker.yaml b/config/samples/ds_v1alpha1_dsworker.yaml
new file mode 100644
index 0000000..f3421b9
--- /dev/null
+++ b/config/samples/ds_v1alpha1_dsworker.yaml
@@ -0,0 +1,12 @@
+kind: DSWorker
+  name: ds-worker
+  namespace: ds
+  labels:
+    app: ds-worker
+  replicas: 3
+  zookeeper_connect: ""
+  version: 3.0.0-alpha
+  repository: apache/dolphinscheduler-worker
\ No newline at end of file
diff --git a/config/test/busybox.yaml b/config/test/busybox.yaml
new file mode 100644
index 0000000..b8cc0c4
--- /dev/null
+++ b/config/test/busybox.yaml
@@ -0,0 +1,14 @@
+apiVersion: v1
+kind: Pod
+  name: busybox
+  namespace: default
+  containers:
+    - name: busybox
+      image: busybox
+      command:
+        - sleep
+        - "3600"
+      imagePullPolicy: IfNotPresent
+  restartPolicy: Always
\ No newline at end of file
diff --git a/config/test/ndsutils.yaml b/config/test/ndsutils.yaml
new file mode 100644
index 0000000..0974cbe
--- /dev/null
+++ b/config/test/ndsutils.yaml
@@ -0,0 +1,11 @@
+apiVersion: v1
+kind: Pod
+  name: dnsutils
+  namespace: kube-system
+  containers:
+    - name: dnsutils
+      image: mydlqclub/dnsutils:1.3
+      imagePullPolicy: IfNotPresent
+      command: ["sleep","3600"]
\ No newline at end of file
diff --git a/config/test/nginx.yaml b/config/test/nginx.yaml
new file mode 100644
index 0000000..5840c45
--- /dev/null
+++ b/config/test/nginx.yaml
@@ -0,0 +1,41 @@
+apiVersion: v1
+kind: Service
+  name: nginx
+  namespace : test
+  labels:
+    app: nginx
+  ports:
+    - port: 80
+      name: web
+  clusterIP: None
+  selector:
+    app: nginx
+apiVersion: apps/v1
+kind: StatefulSet
+  name: web
+  namespace : test
+  selector:
+    matchLabels:
+      app: nginx # has to match .spec.template.metadata.labels
+  serviceName: "nginx"  #声明它属于哪个Headless Service.
+  replicas: 3 # by default is 1
+  template:
+    metadata:
+      labels:
+        app: nginx # has to match .spec.selector.matchLabels
+    spec:
+      terminationGracePeriodSeconds: 10
+      containers:
+        - name: nginx
+          image: nginx
+          ports:
+            - containerPort: 80
+              name: web
diff --git a/controllers/dsmaster_controller.go b/controllers/dsmaster_controller.go
new file mode 100644
index 0000000..9bb5c1a
--- /dev/null
+++ b/controllers/dsmaster_controller.go
@@ -0,0 +1,320 @@
+Copyright 2022.
+Licensed under the Apache License, Version 2.0 (the "License");
+you may not use this file except in compliance with the License.
+You may obtain a copy of the License at
+Unless required by applicable law or agreed to in writing, software
+distributed under the License is distributed on an "AS IS" BASIS,
+See the License for the specific language governing permissions and
+limitations under the License.
+package controllers
+import (
+	"context"
+	corev1 ""
+	""
+	apierrors ""
+	metav1 ""
+	""
+	""
+	""
+	""
+	""
+	""
+	ctrl ""
+	""
+	""
+	"time"
+	dsv1alpha1 "dolphinscheduler-operator/api/v1alpha1"
+const (
+	dsMasterLabel  = "ds-master"
+	dsMasterConfig = "ds-master-config"
+	dsServiceLabel = "ds-operator-service"
+	dsServiceName  = "ds-operator-service"
+var (
+	logger = ctrl.Log.WithName("DSMaster-controller")
+// DSMasterReconciler reconciles a DSMaster object
+type DSMasterReconciler struct {
+	client.Client
+	Scheme   *runtime.Scheme
+	Recorder record.EventRecorder
+// Reconcile is part of the main kubernetes reconciliation loop which aims to
+// move the current state of the cluster closer to the desired state.
+// the DSMaster object against the actual cluster state, and then
+// perform operations to make the cluster state reflect the state specified by
+// the user.
+// For more details, check Reconcile and its Result here:
+// -
+func (r *DSMasterReconciler) Reconcile(ctx context.Context, req ctrl.Request) (ctrl.Result, error) {
+	logger.Info("dmMaster start reconcile logic")
+	defer logger.Info("dmMaster Reconcile end ---------------------------------------------")
+	cluster := &dsv1alpha1.DSMaster{}
+	if err := r.Client.Get(ctx, req.NamespacedName, cluster); err != nil {
+		if errors.IsNotFound(err) {
+			r.Recorder.Event(cluster, corev1.EventTypeWarning, "dsMaster is not Found", "dsMaster is not Found")
+			return ctrl.Result{}, nil
+		}
+		return ctrl.Result{}, err
+	}
+	desired := cluster.DeepCopy()
+	// Handler finalizer
+	// examine DeletionTimestamp to determine if object is under deletion
+	if cluster.ObjectMeta.DeletionTimestamp.IsZero() {
+		ms, _ := r.podMemberSet(ctx, cluster)
+		logger.Info("pods is", "pod", ms)
+		// The object is not being deleted, so if it does not have our finalizer,
+		// then lets add the finalizer and update the object. This is equivalent
+		// registering our finalizer.
+		if !controllerutil.ContainsFinalizer(desired, dsv1alpha1.FinalizerName) {
+			controllerutil.AddFinalizer(desired, dsv1alpha1.FinalizerName)
+			if err := r.Update(ctx, desired); err != nil {
+				return ctrl.Result{}, err
+			}
+		}
+	} else {
+		// The object is being deleted
+		if controllerutil.ContainsFinalizer(desired, dsv1alpha1.FinalizerName) {
+			// our finalizer is present, so lets handle any external dependency
+			if err := r.ensureDSMasterDeleted(ctx, cluster); err != nil {
+				return ctrl.Result{}, err
+			}
+			// remove our finalizer from the list and update it.
+			controllerutil.RemoveFinalizer(desired, dsv1alpha1.FinalizerName)
+			if err := r.Update(ctx, desired); err != nil {
+				return ctrl.Result{}, err
+			}
+		}
+		ms, _ := r.podMemberSet(ctx, cluster)
+		logger.Info("pods is", "pod", ms)
+		// Stop reconciliation as the item is being deleted
+		return ctrl.Result{}, nil
+	}
+	// If dsmaster-cluster is paused, we do nothing on things changed.
+	// Until dsmaster-cluster is un-paused, we will reconcile to the the state of that point.
+	if cluster.Spec.Paused {
+		logger.Info("ds-master control has been paused: ", "ds-master-name", cluster.Name)
+		desired.Status.ControlPaused = true
+		if err := r.Status().Patch(ctx, desired, client.MergeFrom(cluster)); err != nil {
+			return ctrl.Result{}, err
+		}
+		r.Recorder.Event(cluster, corev1.EventTypeNormal, "the spec status is paused", "do nothing")
+		return ctrl.Result{}, nil
+	}
+	// 1. First time we see the ds-master-cluster, initialize it
+	if cluster.Status.Phase == dsv1alpha1.DsPhaseNone {
+		desired.Status.Phase = dsv1alpha1.DsPhaseCreating
+		logger.Info("phase had been changed from  none ---> creating")
+		err := r.Client.Status().Patch(ctx, desired, client.MergeFrom(cluster))
+		return ctrl.Result{RequeueAfter: 100 * time.Millisecond}, err
+	}
+	//2 ensure the headless service
+	logger.Info("Ensuring cluster service")
+	if err := r.ensureMasterService(ctx, cluster); err != nil {
+		return ctrl.Result{}, err
+	}
+	// 3. Ensure bootstrapped, we will block here util cluster is up and healthy
+	logger.Info("Ensuring cluster members")
+	if requeue, err := r.ensureMembers(ctx, cluster); requeue {
+		return ctrl.Result{RequeueAfter: 5 * time.Second}, err
+	}
+	// 4. Ensure cluster scaled
+	logger.Info("Ensuring cluster scaled")
+	if requeue, err := r.ensureScaled(ctx, cluster); requeue {
+		return ctrl.Result{Requeue: true, RequeueAfter: 5 * time.Second}, err
+	}
+	// .5 Ensure cluster upgraded
+	logger.Info("Ensuring cluster upgraded")
+	if requeue, err := r.ensureUpgraded(ctx, cluster); requeue {
+		return ctrl.Result{Requeue: true}, err
+	}
+	desired.Status.Phase = dsv1alpha1.DsPhaseFinished
+	if err := r.Status().Patch(ctx, desired, client.MergeFrom(cluster)); err != nil {
+		return ctrl.Result{}, err
+	}
+	logger.Info("******************************************************")
+	desired.Status.Phase = dsv1alpha1.DsPhaseNone
+	return ctrl.Result{Requeue: false}, nil
+// SetupWithManager sets up the controller with the Manager.
+func (r *DSMasterReconciler) SetupWithManager(mgr ctrl.Manager) error {
+	return ctrl.NewControllerManagedBy(mgr).
+		For(&dsv1alpha1.DSMaster{}).
+		Complete(r)
+func (r *DSMasterReconciler) ensureMembers(ctx context.Context, cluster *dsv1alpha1.DSMaster) (bool, error) {
+	pms, err := r.podMemberSet(ctx, cluster)
+	if err != nil {
+		return true, err
+	}
+	if len(pms) > 0 {
+		return !allMembersHealth(pms), nil
+	} else {
+		return false, nil
+	}
+func (r *DSMasterReconciler) ensureScaled(ctx context.Context, cluster *dsv1alpha1.DSMaster) (bool, error) {
+	// Get current members in this cluster
+	ms, err := r.podMemberSet(ctx, cluster)
+	if err != nil {
+		return true, err
+	}
+	// Scale up
+	if len(ms) < cluster.Spec.Replicas {
+		err = r.createMember(ctx, cluster)
+		if err != nil {
+			r.Recorder.Event(cluster, corev1.EventTypeWarning, "cannot create the new ds-master pod", "the ds-master pod had been created failed")
+			return true, err
+		}
+		// Cluster modified, next reconcile will enter r.ensureMembers()
+		return true, err
+	}
+	// Scale down
+	if len(ms) > cluster.Spec.Replicas {
+		pod := &corev1.Pod{}
+		member := ms.PickOne()
+		pod.SetName(member.Name)
+		pod.SetNamespace(member.Namespace)
+		err = r.deletePod(ctx, pod)
+		if err != nil {
+			return true, err
+		}
+		return true, err
+	}
+	return false, nil
+func (r *DSMasterReconciler) createMember(ctx context.Context, cluster *dsv1alpha1.DSMaster) error {
+	logger.Info("Starting add new member to cluster", "cluster", cluster.Name)
+	defer logger.Info("End add new member to cluster", "cluster", cluster.Name)
+	// New Pod
+	pod, err := r.newDSMasterPod(ctx, cluster)
+	if err != nil {
+		return err
+	}
+	// Create pod
+	if err = r.Client.Create(ctx, pod); err != nil && !apierrors.IsAlreadyExists(err) {
+		return err
+	}
+	return nil
+func (r *DSMasterReconciler) deletePod(ctx context.Context, pod *corev1.Pod) error {
+	logger.Info("begin delete pod", "pod name", pod.Name)
+	if err := r.Client.Delete(ctx, pod); err != nil && !apierrors.IsNotFound(err) {
+		return err
+	}
+	return nil
+func (r *DSMasterReconciler) ensureUpgraded(ctx context.Context, cluster *dsv1alpha1.DSMaster) (bool, error) {
+	ms, err := r.podMemberSet(ctx, cluster)
+	if err != nil {
+		return false, err
+	}
+	logger.Info("cluster.Spec.Version", "cluster.Spec.Version", cluster.Spec.Version)
+	for _, memset := range ms {
+		if memset.Version != cluster.Spec.Version {
+			pod := &corev1.Pod{}
+			pod.SetName(memset.Name)
+			pod.SetNamespace(memset.Namespace)
+			if err := r.deletePod(ctx, pod); err != nil {
+				return false, err
+			}
+			return true, nil
+		}
+	}
+	return false, nil
+func getNeedUpgradePods(ctx context.Context, cli *kubernetes.Clientset, cluster *dsv1alpha1.DSMaster) (*corev1.PodList, error) {
+	podSelector, err := labels.NewRequirement(dsv1alpha1.DsVersionLabel, selection.NotIn, []string{cluster.Spec.Version})
+	if err != nil {
+		return nil, err
+	}
+	podAppSelect, err := labels.NewRequirement(dsv1alpha1.DsAppName, selection.Equals, []string{dsMasterLabel})
+	if err != nil {
+		return nil, err
+	}
+	selector := labels.NewSelector()
+	selector = selector.Add(*podSelector).Add(*podAppSelect)
+	podListOptions := metav1.ListOptions{
+		LabelSelector: selector.String(),
+	}
+	return cli.CoreV1().Pods(cluster.Namespace).List(ctx, podListOptions)
+func (r *DSMasterReconciler) ensureMasterService(ctx context.Context, cluster *dsv1alpha1.DSMaster) error {
+	// 1. Client service
+	service := &corev1.Service{}
+	namespacedName := types.NamespacedName{Namespace: cluster.Namespace, Name: dsv1alpha1.DsServiceLabelValue}
+	if err := r.Client.Get(ctx, namespacedName, service); err != nil {
+		// Local cache not found
+		logger.Info("get service error")
+		if apierrors.IsNotFound(err) {
+			service = createMasterService(cluster)
+			if err := controllerutil.SetControllerReference(cluster, service, r.Scheme); err != nil {
+				logger.Info("create service error")
+				return err
+			}
+			// Remote may already exist, so we will return err, for the next time, this code will not execute
+			if err := r.Client.Create(ctx, service); err != nil {
+				logger.Info("create service error1")
+				return err
+			}
+			logger.Info("the headless service had been created")
+		}
+	}
+	return nil
diff --git a/controllers/dsworker_controller.go b/controllers/dsworker_controller.go
new file mode 100644
index 0000000..00a97af
--- /dev/null
+++ b/controllers/dsworker_controller.go
@@ -0,0 +1,256 @@
+Copyright 2022.
+Licensed under the Apache License, Version 2.0 (the "License");
+you may not use this file except in compliance with the License.
+You may obtain a copy of the License at
+Unless required by applicable law or agreed to in writing, software
+distributed under the License is distributed on an "AS IS" BASIS,
+See the License for the specific language governing permissions and
+limitations under the License.
+package controllers
+import (
+	"context"
+	""
+	corev1 ""
+	""
+	apierrors ""
+	""
+	""
+	ctrl ""
+	""
+	""
+	"time"
+	dsv1alpha1 "dolphinscheduler-operator/api/v1alpha1"
+const (
+	dsWorkerLabel  = "ds-worker"
+	dsWorkerConfig = "ds-worker-config"
+// DSWorkerReconciler reconciles a DSWorker object
+type DSWorkerReconciler struct {
+	client.Client
+	Log      logr.Logger
+	Scheme   *runtime.Scheme
+	Recorder record.EventRecorder
+var (
+	worker_logger = ctrl.Log.WithName("DSWorker-controller")
+// Reconcile is part of the main kubernetes reconciliation loop which aims to
+// move the current state of the cluster closer to the desired state.
+// TODO(user): Modify the Reconcile function to compare the state specified by
+// the DSWorker object against the actual cluster state, and then
+// perform operations to make the cluster state reflect the state specified by
+// the user.
+// For more details, check Reconcile and its Result here:
+// -
+func (r *DSWorkerReconciler) Reconcile(ctx context.Context, req ctrl.Request) (ctrl.Result, error) {
+	worker_logger.Info("dmWorker start reconcile logic")
+	defer worker_logger.Info("dmWorker Reconcile end ---------------------------------------------")
+	cluster := &dsv1alpha1.DSWorker{}
+	if err := r.Client.Get(ctx, req.NamespacedName, cluster); err != nil {
+		if errors.IsNotFound(err) {
+			r.Recorder.Event(cluster, corev1.EventTypeWarning, "dmWorker is not Found", "dmWorker is not Found")
+			return ctrl.Result{}, nil
+		}
+		return ctrl.Result{}, err
+	}
+	desired := cluster.DeepCopy()
+	// Handler finalizer
+	// examine DeletionTimestamp to determine if object is under deletion
+	if cluster.ObjectMeta.DeletionTimestamp.IsZero() {
+		// The object is not being deleted, so if it does not have our finalizer,
+		// then lets add the finalizer and update the object. This is equivalent
+		// registering our finalizer.
+		if !controllerutil.ContainsFinalizer(desired, dsv1alpha1.FinalizerName) {
+			controllerutil.AddFinalizer(desired, dsv1alpha1.FinalizerName)
+			if err := r.Update(ctx, desired); err != nil {
+				return ctrl.Result{}, err
+			}
+		}
+	} else {
+		// The object is being deleted
+		if controllerutil.ContainsFinalizer(desired, dsv1alpha1.FinalizerName) {
+			// our finalizer is present, so lets handle any external dependency
+			if err := r.ensureDSWorkerDeleted(ctx, cluster); err != nil {
+				return ctrl.Result{}, err
+			}
+			// remove our finalizer from the list and update it.
+			controllerutil.RemoveFinalizer(desired, dsv1alpha1.FinalizerName)
+			if err := r.Update(ctx, desired); err != nil {
+				return ctrl.Result{}, err
+			}
+		}
+		return ctrl.Result{}, nil
+	}
+	// If dsworker-cluster is paused, we do nothing on things changed.
+	// Until dsworker-cluster is un-paused, we will reconcile to the dsworker state of that point.
+	if cluster.Spec.Paused {
+		worker_logger.Info("ds-worker control has been paused: ", "ds-worker-name", cluster.Name)
+		desired.Status.ControlPaused = true
+		if err := r.Status().Patch(ctx, desired, client.MergeFrom(cluster)); err != nil {
+			return ctrl.Result{}, err
+		}
+		r.Recorder.Event(cluster, corev1.EventTypeNormal, "the spec status is paused", "do nothing")
+		return ctrl.Result{}, nil
+	}
+	// 1. First time we see the ds-dsworker-cluster, initialize it
+	if cluster.Status.Phase == dsv1alpha1.DsPhaseNone {
+		desired.Status.Phase = dsv1alpha1.DsPhaseCreating
+		worker_logger.Info("phase had been changed from  none ---> creating")
+		err := r.Client.Status().Patch(ctx, desired, client.MergeFrom(cluster))
+		return ctrl.Result{RequeueAfter: 100 * time.Millisecond}, err
+	}
+	// 3. Ensure bootstrapped, we will block here util cluster is up and healthy
+	worker_logger.Info("Ensuring cluster members")
+	if requeue, err := r.ensureMembers(ctx, cluster); requeue {
+		return ctrl.Result{RequeueAfter: 5 * time.Second}, err
+	}
+	// 4. Ensure cluster scaled
+	worker_logger.Info("Ensuring cluster scaled")
+	if requeue, err := r.ensureScaled(ctx, cluster); requeue {
+		return ctrl.Result{Requeue: true, RequeueAfter: 5 * time.Second}, err
+	}
+	// .5 Ensure cluster upgraded
+	worker_logger.Info("Ensuring cluster upgraded")
+	if requeue, err := r.ensureUpgraded(ctx, cluster); requeue {
+		return ctrl.Result{Requeue: true}, err
+	}
+	desired.Status.Phase = dsv1alpha1.DsPhaseFinished
+	if err := r.Status().Patch(ctx, desired, client.MergeFrom(cluster)); err != nil {
+		return ctrl.Result{}, err
+	}
+	worker_logger.Info("******************************************************")
+	desired.Status.Phase = dsv1alpha1.DsPhaseNone
+	return ctrl.Result{Requeue: false}, nil
+// SetupWithManager sets up the controller with the Manager.
+func (r *DSWorkerReconciler) SetupWithManager(mgr ctrl.Manager) error {
+	return ctrl.NewControllerManagedBy(mgr).
+		For(&dsv1alpha1.DSWorker{}).
+		Complete(r)
+func (r *DSWorkerReconciler) ensureMembers(ctx context.Context, cluster *dsv1alpha1.DSWorker) (bool, error) {
+	pms, err := r.podMemberSet(ctx, cluster)
+	if err != nil {
+		return true, err
+	}
+	if len(pms) > 0 {
+		return !allMembersHealth(pms), nil
+	} else {
+		return false, nil
+	}
+func (r *DSWorkerReconciler) ensureScaled(ctx context.Context, cluster *dsv1alpha1.DSWorker) (bool, error) {
+	// Get current members in this cluster
+	ms, err := r.podMemberSet(ctx, cluster)
+	if err != nil {
+		return true, err
+	}
+	// Scale up
+	if len(ms) < cluster.Spec.Replicas {
+		err = r.createMember(ctx, cluster)
+		if err != nil {
+			r.Recorder.Event(cluster, corev1.EventTypeWarning, "cannot create the new ds-dsworker pod", "the ds-dsworker pod had been created failed")
+			return true, err
+		}
+		return true, err
+	}
+	// Scale down
+	if len(ms) > cluster.Spec.Replicas {
+		pod := &corev1.Pod{}
+		member := ms.PickOne()
+		pod.SetName(member.Name)
+		pod.SetNamespace(member.Namespace)
+		err = r.deleteMember(ctx, pod)
+		if err != nil {
+			return true, err
+		}
+		return true, err
+	}
+	return false, nil
+func (r *DSWorkerReconciler) createMember(ctx context.Context, cluster *dsv1alpha1.DSWorker) error {
+	worker_logger.Info("Starting add new member to cluster", "cluster", cluster.Name)
+	defer worker_logger.Info("End add new member to cluster", "cluster", cluster.Name)
+	// New Pod
+	pod, err := r.newDSWorkerPod(ctx, cluster)
+	if err != nil {
+		return err
+	}
+	// Create pod
+	if err = r.Client.Create(ctx, pod); err != nil && !apierrors.IsAlreadyExists(err) {
+		return err
+	}
+	return nil
+func (r *DSWorkerReconciler) deleteMember(ctx context.Context, pod *corev1.Pod) error {
+	worker_logger.Info("begin delete pod", "pod name", pod.Name)
+	if err := r.Client.Delete(ctx, pod); err != nil && !apierrors.IsNotFound(err) {
+		return err
+	}
+	return nil
+func (r *DSWorkerReconciler) ensureUpgraded(ctx context.Context, cluster *dsv1alpha1.DSWorker) (bool, error) {
+	ms, err := r.podMemberSet(ctx, cluster)
+	if err != nil {
+		return false, err
+	}
+	for _, memset := range ms {
+		if memset.Version != cluster.Spec.Version {
+			pod := &corev1.Pod{}
+			pod.SetName(memset.Name)
+			pod.SetNamespace(memset.Namespace)
+			if err := r.deleteMember(ctx, pod); err != nil {
+				return false, err
+			}
+			return true, nil
+		}
+	}
+	return false, nil
diff --git a/controllers/master_reconcile.go b/controllers/master_reconcile.go
new file mode 100644
index 0000000..09dfe38
--- /dev/null
+++ b/controllers/master_reconcile.go
@@ -0,0 +1,181 @@
+Copyright 2022 nobolity.
+Licensed under the Apache License, Version 2.0 (the "License");
+you may not use this file except in compliance with the License.
+You may obtain a copy of the License at
+Unless required by applicable law or agreed to in writing, software
+distributed under the License is distributed on an "AS IS" BASIS,
+See the License for the specific language governing permissions and
+limitations under the License.
+package controllers
+import (
+	"context"
+	dsv1alpha1 "dolphinscheduler-operator/api/v1alpha1"
+	"errors"
+	corev1 ""
+	metav1 ""
+	""
+	""
+	"strings"
+func (r *DSMasterReconciler) podMemberSet(ctx context.Context, cluster *dsv1alpha1.DSMaster) (MemberSet, error) {
+	members := MemberSet{}
+	pods := &corev1.PodList{}
+	if err := r.Client.List(ctx, pods, client.InNamespace(cluster.Namespace),
+		client.MatchingLabels(LabelsForCluster(dsMasterLabel))); err != nil {
+		return members, err
+	}
+	if len(pods.Items) > 0 {
+		for _, pod := range pods.Items {
+			if pod.ObjectMeta.DeletionTimestamp.IsZero() {
+				m := &Member{
+					Name:            pod.Name,
+					Namespace:       pod.Namespace,
+					Created:         true,
+					Version:         pod.Labels[dsv1alpha1.DsVersionLabel],
+					Phase:           string(pod.Status.Phase),
+					RunningAndReady: IsRunningAndReady(&pod),
+				}
+				members.Add(m)
+			}
+		}
+	}
+	return members, nil
+func (r *DSMasterReconciler) currentMemberSet(ctx context.Context, cluster *dsv1alpha1.DSMaster) (MemberSet, error) {
+	members := MemberSet{}
+	// Normally will not happen
+	ms, ok := cluster.Annotations[dsv1alpha1.ClusterMembersAnnotation]
+	if !ok || ms == "" {
+		return members, errors.New("cluster spec has no members annotation")
+	}
+	names := strings.Split(ms, ",")
+	pods := &corev1.PodList{}
+	if err := r.Client.List(ctx, pods, client.InNamespace(cluster.Namespace),
+		client.MatchingLabels(LabelsForCluster(dsMasterLabel))); err != nil {
+		return members, err
+	}
+	podMaps := map[string]corev1.Pod{}
+	for _, pod := range pods.Items {
+		podMaps[pod.Name] = pod
+	}
+	for _, name := range names {
+		m := &Member{
+			Name:            name,
+			Namespace:       cluster.Namespace,
+			Created:         false,
+			RunningAndReady: false,
+		}
+		if pod, ok := podMaps[name]; ok {
+			m.Created = true
+			m.RunningAndReady = IsRunningAndReady(&pod)
+			m.Version = pod.Labels[dsv1alpha1.DsVersionLabel]
+		}
+		members.Add(m)
+	}
+	return members, nil
+func newDSMasterPod(cr *dsv1alpha1.DSMaster) *corev1.Pod {
+	var isSetHostnameAsFQDN bool
+	isSetHostnameAsFQDN = true
+	var podName = cr.Name + "-pod" + dsv1alpha1.RandStr(6)
+	return &corev1.Pod{
+		ObjectMeta: metav1.ObjectMeta{
+			Name:      podName,
+			Namespace: cr.Namespace,
+			Labels: map[string]string{dsv1alpha1.DsAppName: dsMasterLabel,
+				dsv1alpha1.DsVersionLabel: cr.Spec.Version,
+				dsv1alpha1.DsServiceLabel: dsv1alpha1.DsServiceLabelValue},
+		},
+		Spec: corev1.PodSpec{
+			Volumes: []corev1.Volume{
+				{
+					Name: dsMasterConfig,
+					VolumeSource: corev1.VolumeSource{
+						ConfigMap: &corev1.ConfigMapVolumeSource{
+							LocalObjectReference: corev1.LocalObjectReference{Name: dsMasterConfig},
+						},
+					},
+				},
+			},
+			Hostname:          podName,
+			Subdomain:         dsv1alpha1.DsServiceLabelValue,
+			SetHostnameAsFQDN: &isSetHostnameAsFQDN,
+			Containers: []corev1.Container{
+				{
+					Name:            cr.Name,
+					Image:           ImageName(cr.Spec.Repository, cr.Spec.Version),
+					ImagePullPolicy: corev1.PullIfNotPresent,
+					Env: []corev1.EnvVar{{
+						Name:  dsv1alpha1.EnvZookeeper,
+						Value: cr.Spec.ZookeeperConnect,
+					}},
+					VolumeMounts: []corev1.VolumeMount{
+						{
+							Name:      dsMasterConfig,
+							MountPath: "/opt/dolphinscheduler/conf/application.yaml",
+							ReadOnly:  false,
+							SubPath:   "application.yaml",
+						},
+					},
+				},
+			},
+		},
+	}
+func (r *DSMasterReconciler) ensureDSMasterDeleted(ctx context.Context, DSMaster *dsv1alpha1.DSMaster) error {
+	if err := r.Client.Delete(ctx, DSMaster, client.PropagationPolicy(metav1.DeletePropagationOrphan)); err != nil {
+		return err
+	}
+	return nil
+func (r *DSMasterReconciler) newDSMasterPod(ctx context.Context, cluster *dsv1alpha1.DSMaster) (*corev1.Pod, error) {
+	// Create pod
+	pod := newDSMasterPod(cluster)
+	if err := controllerutil.SetControllerReference(cluster, pod, r.Scheme); err != nil {
+		return nil, err
+	}
+	AddLogVolumeToPod(pod, cluster.Spec.LogPvcName)
+	applyPodPolicy(pod, cluster.Spec.Pod)
+	return pod, nil
+func createMasterService(cluster *dsv1alpha1.DSMaster) *corev1.Service {
+	labels_ := LabelsForService()
+	service := corev1.Service{
+		ObjectMeta: metav1.ObjectMeta{
+			Name:         dsv1alpha1.DsServiceLabelValue,
+			GenerateName: dsv1alpha1.DsServiceLabelValue,
+			Namespace:    cluster.Namespace,
+			Labels:       map[string]string{dsv1alpha1.DsAppName: dsServiceLabel},
+		},
+		Spec: corev1.ServiceSpec{
+			Selector:                 labels_,
+			ClusterIP:                corev1.ClusterIPNone,
+			PublishNotReadyAddresses: true,
+		},
+	}
+	return &service
diff --git a/controllers/member.go b/controllers/member.go
new file mode 100644
index 0000000..f36b51c
--- /dev/null
+++ b/controllers/member.go
@@ -0,0 +1,150 @@
+Copyright 2022 Nobolity.
+Licensed under the Apache License, Version 2.0 (the "License");
+you may not use this file except in compliance with the License.
+You may obtain a copy of the License at
+Unless required by applicable law or agreed to in writing, software
+distributed under the License is distributed on an "AS IS" BASIS,
+See the License for the specific language governing permissions and
+limitations under the License.
+package controllers
+import (
+	"fmt"
+	"strconv"
+	"strings"
+type Member struct {
+	Name string
+	// Kubernetes namespace this member runs in.
+	Namespace string
+	// ID field can be 0, which is unknown ID.
+	// We know the ID of a member when we get the member information from dbmaster,
+	// but not from Kubernetes pod list.
+	ID              uint64
+	Phase           string
+	Created         bool
+	RunningAndReady bool
+	Version         string
+func (m Member) Ordinal() int {
+	idx := strings.LastIndex(m.Name, "-")
+	id, _ := strconv.ParseInt(m.Name[idx+1:], 10, 32)
+	return int(id)
+type MemberSet map[string]*Member
+func NewMemberSet(ms ...*Member) MemberSet {
+	res := MemberSet{}
+	for _, m := range ms {
+		res[m.Name] = m
+	}
+	return res
+// the set of all members of s1 that are not members of s2
+func (ms MemberSet) Diff(other MemberSet) MemberSet {
+	diff := MemberSet{}
+	for n, m := range ms {
+		if _, ok := other[n]; !ok {
+			diff[n] = m
+		}
+	}
+	return diff
+func (ms MemberSet) Get(id int) *Member {
+	for _, m := range ms {
+		idx := strings.LastIndex(m.Name, "-")
+		mid, _ := strconv.ParseInt(m.Name[idx+1:], 10, 32)
+		if int(mid) == id {
+			return m
+		}
+	}
+	return nil
+// IsEqual tells whether two member sets are equal by checking
+// - they have the same set of members and member equality are judged by Name only.
+func (ms MemberSet) IsEqual(other MemberSet) bool {
+	if ms.Size() != other.Size() {
+		return false
+	}
+	for n := range ms {
+		if _, ok := other[n]; !ok {
+			return false
+		}
+	}
+	return true
+func (ms MemberSet) Size() int {
+	return len(ms)
+func (ms MemberSet) String() string {
+	var mstring []string
+	for m, v := range ms {
+		mstring = append(mstring, fmt.Sprintf("%s:%s", m, v.Version))
+	}
+	return strings.Join(mstring, ",")
+func (ms MemberSet) PickOne() *Member {
+	for _, m := range ms {
+		return m
+	}
+	panic("empty")
+func (ms MemberSet) Add(m *Member) {
+	ms[m.Name] = m
+func (ms MemberSet) Remove(name string) {
+	delete(ms, name)
+func (ms MemberSet) Ordinals() map[int]bool {
+	ids := map[int]bool{}
+	for _, m := range ms {
+		ids[m.Ordinal()] = true
+	}
+	return ids
+func (ms MemberSet) Names() []string {
+	names := make([]string, 0)
+	for _, m := range ms {
+		names = append(names, m.Name)
+	}
+	return names
+func (ms MemberSet) Duplicate() MemberSet {
+	r := MemberSet{}
+	for k, v := range ms {
+		r[k] = v
+	}
+	return r
+func allMembersHealth(ms MemberSet) bool {
+	for _, m := range ms {
+		if !m.RunningAndReady {
+			return false
+		}
+	}
+	return true
diff --git a/controllers/pod.go b/controllers/pod.go
new file mode 100644
index 0000000..f8c9e45
--- /dev/null
+++ b/controllers/pod.go
@@ -0,0 +1,266 @@
+Copyright 2022 imliuda.
+Licensed under the Apache License, Version 2.0 (the "License");
+you may not use this file except in compliance with the License.
+You may obtain a copy of the License at
+Unless required by applicable law or agreed to in writing, software
+distributed under the License is distributed on an "AS IS" BASIS,
+See the License for the specific language governing permissions and
+limitations under the License.
+package controllers
+import (
+	dsv1alpha1 "dolphinscheduler-operator/api/v1alpha1"
+	"fmt"
+	corev1 ""
+	metav1 ""
+	""
+const (
+	dsLogVolumeName       = "ds-log"
+	dsLogVolumeMountDir   = "/opt/dolphinscheduler/logs"
+	dsLogPVName           = "pv"
+	dsShareVolumeName     = "ds-soft"
+	dsShareVolumeMountDir = "/opt/soft"
+func GetDsVersion(pod *corev1.Pod) string {
+	return pod.Labels[dsv1alpha1.DsVersionLabel]
+func SetDSVersion(pod *corev1.Pod, version string) {
+	pod.Labels[dsv1alpha1.DsVersionLabel] = version
+func GetPodNames(pods []*corev1.Pod) []string {
+	if len(pods) == 0 {
+		return nil
+	}
+	res := make([]string, 0)
+	for _, p := range pods {
+		res = append(res, p.Name)
+	}
+	return res
+func applyPodPolicy(pod *corev1.Pod, policy *dsv1alpha1.PodPolicy) {
+	if policy == nil {
+		return
+	}
+	if policy.Affinity != nil {
+		pod.Spec.Affinity = policy.Affinity
+	}
+	if len(policy.NodeSelector) != 0 {
+		pod = PodWithNodeSelector(pod, policy.NodeSelector)
+	}
+	if len(policy.Tolerations) != 0 {
+		pod.Spec.Tolerations = policy.Tolerations
+	}
+	mergeLabels(pod.Labels, policy.Labels)
+	if &policy.Resources != nil {
+		pod.Spec.Containers[0] = containerWithRequirements(pod.Spec.Containers[0], policy.Resources)
+	}
+	if len(policy.Envs) != 0 {
+		pod.Spec.Containers[0].Env = append(pod.Spec.Containers[0].Env, policy.Envs...)
+	}
+	for key, value := range policy.Annotations {
+		pod.ObjectMeta.Annotations[key] = value
+	}
+func containerWithRequirements(c corev1.Container, r corev1.ResourceRequirements) corev1.Container {
+	c.Resources = r
+	return c
+// PVCNameFromMember the way we get PVC name from the member name
+func PVCNameFromMember(memberName string) string {
+	return memberName
+func ImageName(repo, version string) string {
+	return fmt.Sprintf("%s:%v", repo, version)
+func PodWithNodeSelector(p *corev1.Pod, ns map[string]string) *corev1.Pod {
+	p.Spec.NodeSelector = ns
+	return p
+func LabelsForCluster(lbs string) map[string]string {
+	return labels.Set{dsv1alpha1.DsAppName: lbs}
+func LabelsForPV() map[string]string {
+	return labels.Set{dsv1alpha1.DsAppName: dsLogPVName}
+func LabelsForService() map[string]string {
+	return labels.Set{dsv1alpha1.DsServiceLabel: dsv1alpha1.DsServiceLabelValue}
+// AddDSVolumeToPod abstract the process of appending volume spec to pod spec
+func AddDSVolumeToPod(pod *corev1.Pod, pvc *corev1.PersistentVolumeClaim) {
+	vol := corev1.Volume{Name: dsLogVolumeName}
+	if pvc != nil {
+		vol.VolumeSource = corev1.VolumeSource{
+			PersistentVolumeClaim: &corev1.PersistentVolumeClaimVolumeSource{ClaimName: pvc.Name},
+		}
+	} else {
+		vol.VolumeSource = corev1.VolumeSource{EmptyDir: &corev1.EmptyDirVolumeSource{}}
+	}
+	pod.Spec.Volumes = append(pod.Spec.Volumes, vol)
+// AddLogVolumeToPod abstract the process of appending volume spec to pod spec
+func AddLogVolumeToPod(pod *corev1.Pod, pvcName string) {
+	vol := corev1.Volume{Name: dsLogVolumeName}
+	vom := corev1.VolumeMount{
+		Name:      dsLogVolumeName,
+		MountPath: dsLogVolumeMountDir,
+		SubPath:   pod.Name,
+	}
+	if len(pvcName) != 0 {
+		vol.VolumeSource = corev1.VolumeSource{
+			PersistentVolumeClaim: &corev1.PersistentVolumeClaimVolumeSource{ClaimName: pvcName},
+		}
+	} else {
+		vol.VolumeSource = corev1.VolumeSource{EmptyDir: &corev1.EmptyDirVolumeSource{}}
+	}
+	pod.Spec.Volumes = append(pod.Spec.Volumes, vol)
+	pod.Spec.Containers[0].VolumeMounts = append(pod.Spec.Containers[0].VolumeMounts, vom)
+// AddLibVolumeToPod abstract the process of appending volume /opt/soft spec to pod spec,it is shared by all worker nodes,and it is read only
+// Suggest to mount a share volume in production env directly
+func AddLibVolumeToPod(pod *corev1.Pod, pvcName string) {
+	vol := corev1.Volume{Name: dsShareVolumeName}
+	vom := corev1.VolumeMount{
+		Name:      dsShareVolumeName,
+		MountPath: dsShareVolumeMountDir,
+		ReadOnly:  true,
+	}
+	if len(pvcName) != 0 {
+		vol.VolumeSource = corev1.VolumeSource{
+			PersistentVolumeClaim: &corev1.PersistentVolumeClaimVolumeSource{ClaimName: pvcName},
+		}
+	} else {
+		vol.VolumeSource = corev1.VolumeSource{EmptyDir: &corev1.EmptyDirVolumeSource{}}
+	}
+	pod.Spec.Volumes = append(pod.Spec.Volumes, vol)
+	pod.Spec.Containers[0].VolumeMounts = append(pod.Spec.Containers[0].VolumeMounts, vom)
+// NewLogPVC create PVC  from dsMaster pod's PVC spec
+//func NewLogPVC(cluster *dsv1alpha1.DSMaster, pod *corev1.Pod, storageClassName string) *corev1.PersistentVolumeClaim {
+//    pvc := &corev1.PersistentVolumeClaim{
+//        ObjectMeta: metav1.ObjectMeta{
+//            GenerateName: cluster.Name + "-pvc",
+//            Namespace:    cluster.Namespace,
+//            Labels:       LabelsForCluster(dsLogVolumeName),
+//        },
+//        Spec: corev1.PersistentVolumeClaimSpec{
+//            AccessModes: []corev1.PersistentVolumeAccessMode{corev1.ReadWriteMany},
+//            Resources: corev1.ResourceRequirements{
+//                Requests: corev1.ResourceList{
+//                    corev1.ResourceStorage: resource.MustParse(cluster.Spec.LogCapacity),
+//                },
+//            },
+//            StorageClassName: &storageClassName,
+//            Selector: &metav1.LabelSelector{
+//                MatchLabels: LabelsForPV(),
+//            },
+//        },
+//    }
+//    return pvc
+// NewDSWorkerPodPVC create PVC object from dsMaster pod's PVC spec
+func NewDSWorkerPodPVC(cluster *dsv1alpha1.DSWorker, pod *corev1.Pod, lbs string) *corev1.PersistentVolumeClaim {
+	pvc := &corev1.PersistentVolumeClaim{
+		ObjectMeta: metav1.ObjectMeta{
+			Name:      PVCNameFromMember(pod.Name),
+			Namespace: cluster.Namespace,
+			Labels:    LabelsForCluster(lbs),
+		},
+		Spec: *cluster.Spec.Pod.PersistentVolumeClaimSpec,
+	}
+	return pvc
+// mergeLabels merges l2 into l1. Conflicting label will be skipped.
+func mergeLabels(l1, l2 map[string]string) {
+	for k, v := range l2 {
+		if _, ok := l1[k]; ok {
+			continue
+		}
+		l1[k] = v
+	}
+func IsRunningAndReady(pod *corev1.Pod) bool {
+	return pod.Status.Phase == corev1.PodRunning && IsPodReady(pod)
+// IsPodReady returns true if a pod is ready; false otherwise.
+func IsPodReady(pod *corev1.Pod) bool {
+	return IsPodReadyConditionTrue(pod.Status)
+// IsPodReadyConditionTrue returns true if a pod is ready; false otherwise.
+func IsPodReadyConditionTrue(status corev1.PodStatus) bool {
+	condition := GetPodReadyCondition(status)
+	return condition != nil && condition.Status == corev1.ConditionTrue
+// GetPodReadyCondition extracts the pod ready condition from the given status and returns that.
+// Returns nil if the condition is not present.
+func GetPodReadyCondition(status corev1.PodStatus) *corev1.PodCondition {
+	_, condition := GetPodCondition(&status, corev1.PodReady)
+	return condition
+// GetPodCondition extracts the provided condition from the given status and returns that.
+// Returns nil and -1 if the condition is not present, and the index of the located condition.
+func GetPodCondition(status *corev1.PodStatus, conditionType corev1.PodConditionType) (int, *corev1.PodCondition) {
+	if status == nil {
+		return -1, nil
+	}
+	return GetPodConditionFromList(status.Conditions, conditionType)
+// GetPodConditionFromList extracts the provided condition from the given list of condition and
+// returns the index of the condition and the condition. Returns -1 and nil if the condition is not present.
+func GetPodConditionFromList(conditions []corev1.PodCondition, conditionType corev1.PodConditionType) (int, *corev1.PodCondition) {
+	if conditions == nil {
+		return -1, nil
+	}
+	for i := range conditions {
+		if conditions[i].Type == conditionType {
+			return i, &conditions[i]
+		}
+	}
+	return -1, nil
diff --git a/controllers/suite_test.go b/controllers/suite_test.go
new file mode 100644
index 0000000..4e379b7
--- /dev/null
+++ b/controllers/suite_test.go
@@ -0,0 +1,80 @@
+Copyright 2022.
+Licensed under the Apache License, Version 2.0 (the "License");
+you may not use this file except in compliance with the License.
+You may obtain a copy of the License at
+Unless required by applicable law or agreed to in writing, software
+distributed under the License is distributed on an "AS IS" BASIS,
+See the License for the specific language governing permissions and
+limitations under the License.
+package controllers
+import (
+	"path/filepath"
+	"testing"
+	. ""
+	. ""
+	""
+	""
+	""
+	""
+	""
+	logf ""
+	""
+	dsv1alpha1 "dolphinscheduler-operator/api/v1alpha1"
+	//+kubebuilder:scaffold:imports
+// These tests use Ginkgo (BDD-style Go testing framework). Refer to
+// to learn more about Ginkgo.
+var cfg *rest.Config
+var k8sClient client.Client
+var testEnv *envtest.Environment
+func TestAPIs(t *testing.T) {
+	RegisterFailHandler(Fail)
+	RunSpecsWithDefaultAndCustomReporters(t,
+		"Controller Suite",
+		[]Reporter{printer.NewlineReporter{}})
+var _ = BeforeSuite(func() {
+	logf.SetLogger(zap.New(zap.WriteTo(GinkgoWriter), zap.UseDevMode(true)))
+	By("bootstrapping test environment")
+	testEnv = &envtest.Environment{
+		CRDDirectoryPaths:     []string{filepath.Join("..", "config", "crd", "bases")},
+		ErrorIfCRDPathMissing: true,
+	}
+	cfg, err := testEnv.Start()
+	Expect(err).NotTo(HaveOccurred())
+	Expect(cfg).NotTo(BeNil())
+	err = dsv1alpha1.AddToScheme(scheme.Scheme)
+	Expect(err).NotTo(HaveOccurred())
+	//+kubebuilder:scaffold:scheme
+	k8sClient, err = client.New(cfg, client.Options{Scheme: scheme.Scheme})
+	Expect(err).NotTo(HaveOccurred())
+	Expect(k8sClient).NotTo(BeNil())
+}, 60)
+var _ = AfterSuite(func() {
+	By("tearing down the test environment")
+	err := testEnv.Stop()
+	Expect(err).NotTo(HaveOccurred())
diff --git a/controllers/worker_reconcile.go b/controllers/worker_reconcile.go
new file mode 100644
index 0000000..8a3b2ad
--- /dev/null
+++ b/controllers/worker_reconcile.go
@@ -0,0 +1,162 @@
+Copyright 2022 nobolity.
+Licensed under the Apache License, Version 2.0 (the "License");
+you may not use this file except in compliance with the License.
+You may obtain a copy of the License at
+Unless required by applicable law or agreed to in writing, software
+distributed under the License is distributed on an "AS IS" BASIS,
+See the License for the specific language governing permissions and
+limitations under the License.
+package controllers
+import (
+	"context"
+	dsv1alpha1 "dolphinscheduler-operator/api/v1alpha1"
+	"errors"
+	corev1 ""
+	metav1 ""
+	""
+	""
+	"strings"
+func (r *DSWorkerReconciler) podMemberSet(ctx context.Context, cluster *dsv1alpha1.DSWorker) (MemberSet, error) {
+	members := MemberSet{}
+	pods := &corev1.PodList{}
+	if err := r.Client.List(ctx, pods, client.InNamespace(cluster.Namespace),
+		client.MatchingLabels(LabelsForCluster(dsWorkerLabel))); err != nil {
+		return members, err
+	}
+	if len(pods.Items) > 0 {
+		for _, pod := range pods.Items {
+			if pod.ObjectMeta.DeletionTimestamp.IsZero() {
+				m := &Member{
+					Name:            pod.Name,
+					Namespace:       pod.Namespace,
+					Created:         true,
+					Version:         pod.Labels[dsv1alpha1.DsVersionLabel],
+					Phase:           string(pod.Status.Phase),
+					RunningAndReady: IsRunningAndReady(&pod),
+				}
+				members.Add(m)
+			}
+		}
+	}
+	return members, nil
+func (r *DSWorkerReconciler) currentMemberSet(ctx context.Context, cluster *dsv1alpha1.DSWorker) (MemberSet, error) {
+	members := MemberSet{}
+	// Normally will not happen
+	ms, ok := cluster.Annotations[dsv1alpha1.ClusterMembersAnnotation]
+	if !ok || ms == "" {
+		return members, errors.New("cluster spec has no members annotation")
+	}
+	names := strings.Split(ms, ",")
+	pods := &corev1.PodList{}
+	if err := r.Client.List(ctx, pods, client.InNamespace(cluster.Namespace),
+		client.MatchingLabels(LabelsForCluster(dsWorkerLabel))); err != nil {
+		return members, err
+	}
+	podMaps := map[string]corev1.Pod{}
+	for _, pod := range pods.Items {
+		podMaps[pod.Name] = pod
+	}
+	for _, name := range names {
+		m := &Member{
+			Name:            name,
+			Namespace:       cluster.Namespace,
+			Created:         false,
+			RunningAndReady: false,
+		}
+		if pod, ok := podMaps[name]; ok {
+			m.Created = true
+			m.RunningAndReady = IsRunningAndReady(&pod)
+			m.Version = pod.Labels[dsv1alpha1.DsVersionLabel]
+		}
+		members.Add(m)
+	}
+	return members, nil
+func newDSWorkerPod(cr *dsv1alpha1.DSWorker) *corev1.Pod {
+	var podName = cr.Name + "-pod" + dsv1alpha1.RandStr(6)
+	return &corev1.Pod{
+		ObjectMeta: metav1.ObjectMeta{
+			Name:      podName,
+			Namespace: cr.Namespace,
+			Labels: map[string]string{dsv1alpha1.DsAppName: dsWorkerLabel,
+				dsv1alpha1.DsVersionLabel: cr.Spec.Version,
+				dsv1alpha1.DsServiceLabel: dsv1alpha1.DsServiceLabelValue,
+			},
+		},
+		Spec: corev1.PodSpec{
+			Volumes: []corev1.Volume{
+				{
+					Name: dsWorkerConfig,
+					VolumeSource: corev1.VolumeSource{
+						ConfigMap: &corev1.ConfigMapVolumeSource{
+							LocalObjectReference: corev1.LocalObjectReference{Name: dsWorkerConfig},
+						},
+					},
+				},
+			},
+			Hostname:  podName,
+			Subdomain: dsv1alpha1.DsServiceLabelValue,
+			Containers: []corev1.Container{
+				{
+					Name:            cr.Name,
+					Image:           ImageName(cr.Spec.Repository, cr.Spec.Version),
+					ImagePullPolicy: corev1.PullIfNotPresent,
+					Env: []corev1.EnvVar{{
+						Name:  dsv1alpha1.EnvZookeeper,
+						Value: cr.Spec.ZookeeperConnect,
+					}},
+					VolumeMounts: []corev1.VolumeMount{
+						{
+							Name:      dsWorkerConfig,
+							MountPath: "/opt/dolphinscheduler/conf/application.yaml",
+							ReadOnly:  false,
+							SubPath:   "application.yaml",
+						},
+					},
+				},
+			},
+		},
+	}
+func (r *DSWorkerReconciler) ensureDSWorkerDeleted(ctx context.Context, dsWorker *dsv1alpha1.DSWorker) error {
+	if err := r.Client.Delete(ctx, dsWorker, client.PropagationPolicy(metav1.DeletePropagationOrphan)); err != nil {
+		return err
+	}
+	return nil
+func (r *DSWorkerReconciler) newDSWorkerPod(ctx context.Context, cluster *dsv1alpha1.DSWorker) (*corev1.Pod, error) {
+	// Create pod
+	pod := newDSWorkerPod(cluster)
+	if err := controllerutil.SetControllerReference(cluster, pod, r.Scheme); err != nil {
+		return nil, err
+	}
+	AddLogVolumeToPod(pod, cluster.Spec.LogPvcName)
+	AddLibVolumeToPod(pod, cluster.Spec.LibPvcName)
+	applyPodPolicy(pod, cluster.Spec.Pod)
+	return pod, nil
diff --git a/go.mod b/go.mod
new file mode 100644
index 0000000..9665511
--- /dev/null
+++ b/go.mod
@@ -0,0 +1,74 @@
+module dolphinscheduler-operator
+go 1.17
+require (
+ v1.2.0
+ v1.16.5
+ v1.17.0
+ v0.23.0
+ v0.23.0
+ v0.23.0
+ v0.11.0
+require (
+ v0.81.0 // indirect
+ v14.2.0+incompatible // indirect
+ v0.11.18 // indirect
+ v0.9.13 // indirect
+ v0.3.0 // indirect
+ v0.2.1 // indirect
+ v0.6.0 // indirect
+ v1.0.1 // indirect
+ v2.1.1 // indirect
+ v1.1.1 // indirect
+ v4.12.0+incompatible // indirect
+ v3.2.3+incompatible // indirect
+ v1.5.1 // indirect
+ v1.2.0 // indirect
+ v1.3.2 // indirect
+ v0.0.0-20210331224755-41bb18bfe9da // indirect
+ v1.5.2 // indirect
+ v0.5.5 // indirect
+ v1.1.0 // indirect
+ v1.1.2 // indirect
+ v0.5.5 // indirect
+ v0.3.12 // indirect
+ v1.1.12 // indirect
+ v1.0.2-0.20181231171920-c182affec369 // indirect
+ v0.0.0-20180306012644-bacd9c7ef1dd // indirect
+ v1.0.2 // indirect
+ v1.4.8 // indirect
+ v0.9.1 // indirect
+ v1.11.0 // indirect
+ v0.2.0 // indirect
+ v0.28.0 // indirect
+ v0.6.0 // indirect
+ v1.0.5 // indirect
+ v1.7.0 // indirect
+ v1.6.0 // indirect
+ v1.19.1 // indirect
+ v0.0.0-20210817164053-32db794688a5 // indirect
+ v0.0.0-20210825183410-e898025ed96a // indirect
+ v0.0.0-20210819190943-2bc19b11175f // indirect
+ v0.0.0-20211029165221-6e7872819dc8 // indirect
+ v0.0.0-20210615171337-6886f2dfbf5b // indirect
+ v0.3.7 // indirect
+ v0.0.0-20210723032227-1f47c861a9ac // indirect
+ v2.2.0 // indirect
+ v1.6.7 // indirect
+ v1.27.1 // indirect
+ v0.9.1 // indirect
+ v1.0.0-20141024135613-dd632973f1e7 // indirect
+ v2.4.0 // indirect
+ v3.0.0-20210107192922-496545a6307b // indirect
+ v0.23.0 // indirect
+ v0.23.0 // indirect
+ v2.30.0 // indirect
+ v0.0.0-20211115234752-e816edb12b65 // indirect
+ v0.0.0-20210930125809-cb0fa318a74b // indirect
+ v0.0.0-20211020170558-c049b76a60c6 // indirect
+ v4.2.0 // indirect
+ v1.3.0 // indirect
diff --git a/hack/boilerplate.go.txt b/hack/boilerplate.go.txt
new file mode 100644
index 0000000..29c55ec
--- /dev/null
+++ b/hack/boilerplate.go.txt
@@ -0,0 +1,15 @@
+Copyright 2022.
+Licensed under the Apache License, Version 2.0 (the "License");
+you may not use this file except in compliance with the License.
+You may obtain a copy of the License at
+Unless required by applicable law or agreed to in writing, software
+distributed under the License is distributed on an "AS IS" BASIS,
+See the License for the specific language governing permissions and
+limitations under the License.
\ No newline at end of file
diff --git a/main.go b/main.go
new file mode 100644
index 0000000..832088e
--- /dev/null
+++ b/main.go
@@ -0,0 +1,111 @@
+Copyright 2022.
+Licensed under the Apache License, Version 2.0 (the "License");
+you may not use this file except in compliance with the License.
+You may obtain a copy of the License at
+Unless required by applicable law or agreed to in writing, software
+distributed under the License is distributed on an "AS IS" BASIS,
+See the License for the specific language governing permissions and
+limitations under the License.
+package main
+import (
+	"flag"
+	"os"
+	// Import all Kubernetes client auth plugins (e.g. Azure, GCP, OIDC, etc.)
+	// to ensure that exec-entrypoint and run can make use of them.
+	_ ""
+	""
+	utilruntime ""
+	clientgoscheme ""
+	ctrl ""
+	""
+	""
+	dsv1alpha1 "dolphinscheduler-operator/api/v1alpha1"
+	"dolphinscheduler-operator/controllers"
+	//+kubebuilder:scaffold:imports
+var (
+	scheme   = runtime.NewScheme()
+	setupLog = ctrl.Log.WithName("setup")
+func init() {
+	utilruntime.Must(clientgoscheme.AddToScheme(scheme))
+	utilruntime.Must(dsv1alpha1.AddToScheme(scheme))
+	//+kubebuilder:scaffold:scheme
+func main() {
+	var metricsAddr string
+	var enableLeaderElection bool
+	var probeAddr string
+	flag.StringVar(&metricsAddr, "metrics-bind-address", ":8080", "The address the metric endpoint binds to.")
+	flag.StringVar(&probeAddr, "health-probe-bind-address", ":8081", "The address the probe endpoint binds to.")
+	flag.BoolVar(&enableLeaderElection, "leader-elect", false,
+		"Enable leader election for controller manager. "+
+			"Enabling this will ensure there is only one active controller manager.")
+	opts := zap.Options{
+		Development: true,
+	}
+	opts.BindFlags(flag.CommandLine)
+	flag.Parse()
+	ctrl.SetLogger(zap.New(zap.UseFlagOptions(&opts)))
+	mgr, err := ctrl.NewManager(ctrl.GetConfigOrDie(), ctrl.Options{
+		Scheme:                 scheme,
+		MetricsBindAddress:     metricsAddr,
+		Port:                   9443,
+		HealthProbeBindAddress: probeAddr,
+		LeaderElection:         enableLeaderElection,
+		LeaderElectionID:       "",
+	})
+	if err != nil {
+		setupLog.Error(err, "unable to start manager")
+		os.Exit(1)
+	}
+	if err = (&controllers.DSMasterReconciler{
+		Client: mgr.GetClient(),
+		Scheme: mgr.GetScheme(),
+	}).SetupWithManager(mgr); err != nil {
+		setupLog.Error(err, "unable to create controller", "controller", "DSMaster")
+		os.Exit(1)
+	}
+	if err = (&controllers.DSWorkerReconciler{
+		Client: mgr.GetClient(),
+		Scheme: mgr.GetScheme(),
+	}).SetupWithManager(mgr); err != nil {
+		setupLog.Error(err, "unable to create controller", "controller", "DSWorker")
+		os.Exit(1)
+	}
+	//+kubebuilder:scaffold:builder
+	if err := mgr.AddHealthzCheck("healthz", healthz.Ping); err != nil {
+		setupLog.Error(err, "unable to set up health check")
+		os.Exit(1)
+	}
+	if err := mgr.AddReadyzCheck("readyz", healthz.Ping); err != nil {
+		setupLog.Error(err, "unable to set up ready check")
+		os.Exit(1)
+	}
+	setupLog.Info("starting manager")
+	if err := mgr.Start(ctrl.SetupSignalHandler()); err != nil {
+		setupLog.Error(err, "problem running manager")
+		os.Exit(1)
+	}