blob: 7f44825e9f4eb5d2f0e7e41f54f2e8a2a2501283 [file] [log] [blame]
Jesse Andrewsba23cc72011-09-11 03:22:13 -07001#!/usr/bin/env bash
2
Dean Troyerc6c1d432012-03-27 20:59:22 -05003# ``stack.sh`` is an opinionated OpenStack developer installation. It
Dean Troyer4a43b7b2012-08-28 17:43:40 -05004# installs and configures various combinations of **Ceilometer**, **Cinder**,
Nikhil Manchanda0cccad42012-12-03 18:15:09 -07005# **Glance**, **Heat**, **Horizon**, **Keystone**, **Nova**, **Neutron**,
Dean Troyerfc744f92014-01-27 13:45:21 -06006# and **Swift**
Jesse Andrewsba23cc72011-09-11 03:22:13 -07007
Brett Campbell27f29442014-02-19 18:23:16 -08008# This script's options can be changed by setting appropriate environment
9# variables. You can configure things like which git repositories to use,
10# services to enable, OS images to use, etc. Default values are located in the
11# ``stackrc`` file. If you are crafty you can run the script on multiple nodes
12# using shared settings for common resources (eg., mysql or rabbitmq) and build
13# a multi-node developer install.
Jesse Andrews782b9912011-10-02 16:53:21 -040014
Dean Troyer4a43b7b2012-08-28 17:43:40 -050015# To keep this script simple we assume you are running on a recent **Ubuntu**
Alvaro Lopez Ortegad7f60902013-12-22 17:03:47 +010016# (12.04 Precise or newer) or **Fedora** (F18 or newer) machine. (It may work
Dean Troyer1a6d4492013-06-03 16:47:36 -050017# on other platforms but support for those platforms is left to those who added
18# them to DevStack.) It should work in a VM or physical server. Additionally
19# we maintain a list of ``apt`` and ``rpm`` dependencies and other configuration
20# files in this repo.
Jesse Andrews24859062011-09-15 21:28:23 -070021
Jesse Andrews0e7e8972011-10-02 16:36:54 -040022# Learn more and get the most recent version at http://devstack.org
Jesse Andrews6edd17f2011-09-15 22:19:42 -070023
Jason Dunsmore4e971112013-04-10 10:17:40 -050024# Make sure custom grep options don't get in the way
25unset GREP_OPTIONS
26
YAMAMOTO Takashib4a215c2014-01-10 16:39:32 +090027# Sanitize language settings to avoid commands bailing out
28# with "unsupported locale setting" errors.
29unset LANG
30unset LANGUAGE
31LC_ALL=C
32export LC_ALL
33
Brett Campbell27f29442014-02-19 18:23:16 -080034# Make sure umask is sane
35umask 022
36
Dean Troyerc6c1d432012-03-27 20:59:22 -050037# Keep track of the devstack directory
Jesse Andrews51fb22e2011-10-19 09:24:17 -070038TOP_DIR=$(cd $(dirname "$0") && pwd)
39
Dean Troyer6563a3c2012-01-31 12:11:56 -060040# Import common functions
Dean Troyerc6c1d432012-03-27 20:59:22 -050041source $TOP_DIR/functions
Dean Troyer6563a3c2012-01-31 12:11:56 -060042
Dean Troyer893e6632013-09-13 15:05:51 -050043# Import config functions
44source $TOP_DIR/lib/config
45
Dean Troyerc6c1d432012-03-27 20:59:22 -050046# Determine what system we are running on. This provides ``os_VENDOR``,
47# ``os_RELEASE``, ``os_UPDATE``, ``os_PACKAGE``, ``os_CODENAME``
Dean Troyera9e0a482012-07-09 14:07:23 -050048# and ``DISTRO``
49GetDistro
Jesse Andrews6edd17f2011-09-15 22:19:42 -070050
Maru Newbyeb2da5d2013-05-15 21:28:29 +000051
Dean Troyer48352ee2012-12-12 12:50:38 -060052# Global Settings
53# ===============
Scott Moserf9da5082011-10-07 21:28:00 -040054
Dean Troyer893e6632013-09-13 15:05:51 -050055# Check for a ``localrc`` section embedded in ``local.conf`` and extract if
56# ``localrc`` does not already exist
57
58# Phase: local
59rm -f $TOP_DIR/.localrc.auto
60if [[ -r $TOP_DIR/local.conf ]]; then
61 LRC=$(get_meta_section_files $TOP_DIR/local.conf local)
62 for lfile in $LRC; do
63 if [[ "$lfile" == "localrc" ]]; then
64 if [[ -r $TOP_DIR/localrc ]]; then
65 warn $LINENO "localrc and local.conf:[[local]] both exist, using localrc"
66 else
Dean Troyerb8dd27b2013-10-17 12:03:55 -050067 echo "# Generated file, do not edit" >$TOP_DIR/.localrc.auto
Dean Troyer893e6632013-09-13 15:05:51 -050068 get_meta_section $TOP_DIR/local.conf local $lfile >>$TOP_DIR/.localrc.auto
69 fi
70 fi
71 done
72fi
73
Dean Troyer1a6d4492013-06-03 16:47:36 -050074# ``stack.sh`` is customizable by setting environment variables. Override a
75# default setting via export::
Scott Moserf9da5082011-10-07 21:28:00 -040076#
Terry Wilson428af5a2012-11-01 16:12:39 -040077# export DATABASE_PASSWORD=anothersecret
Scott Moserf9da5082011-10-07 21:28:00 -040078# ./stack.sh
79#
Dean Troyer1a6d4492013-06-03 16:47:36 -050080# or by setting the variable on the command line::
Scott Moserf9da5082011-10-07 21:28:00 -040081#
Dean Troyer1a6d4492013-06-03 16:47:36 -050082# DATABASE_PASSWORD=simple ./stack.sh
83#
84# Persistent variables can be placed in a ``localrc`` file::
Scott Moserf9da5082011-10-07 21:28:00 -040085#
Terry Wilson428af5a2012-11-01 16:12:39 -040086# DATABASE_PASSWORD=anothersecret
87# DATABASE_USER=hellaroot
Scott Moserf9da5082011-10-07 21:28:00 -040088#
89# We try to have sensible defaults, so you should be able to run ``./stack.sh``
Dean Troyer4a43b7b2012-08-28 17:43:40 -050090# in most cases. ``localrc`` is not distributed with DevStack and will never
91# be overwritten by a DevStack update.
Scott Moserf9da5082011-10-07 21:28:00 -040092#
Dean Troyerdf0972c2012-03-07 17:31:03 -060093# DevStack distributes ``stackrc`` which contains locations for the OpenStack
Dean Troyercc6b4432013-04-08 15:38:03 -050094# repositories, branches to configure, and other configuration defaults.
95# ``stackrc`` sources ``localrc`` to allow you to safely override those settings.
Dean Troyer4a43b7b2012-08-28 17:43:40 -050096
Dean Troyerbbafb1b2012-06-11 16:51:39 -050097if [[ ! -r $TOP_DIR/stackrc ]]; then
Dean Troyer14fd9792014-07-25 10:34:11 -050098 die $LINENO "missing $TOP_DIR/stackrc - did you grab more than just stack.sh?"
Dean Troyerbbafb1b2012-06-11 16:51:39 -050099fi
100source $TOP_DIR/stackrc
Dean Troyerdf0972c2012-03-07 17:31:03 -0600101
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500102
Dean Troyer48352ee2012-12-12 12:50:38 -0600103# Local Settings
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500104# --------------
105
Dean Troyer48352ee2012-12-12 12:50:38 -0600106# Make sure the proxy config is visible to sub-processes
107export_proxy_variables
Scott Moserf9da5082011-10-07 21:28:00 -0400108
Jesse Andrews6edd17f2011-09-15 22:19:42 -0700109# Destination path for installation ``DEST``
Anthony Younge8fed482011-09-26 19:50:43 -0700110DEST=${DEST:-/opt/stack}
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700111
Dean Troyerc6c1d432012-03-27 20:59:22 -0500112
113# Sanity Check
Dean Troyer48352ee2012-12-12 12:50:38 -0600114# ------------
Dean Troyerc6c1d432012-03-27 20:59:22 -0500115
Dean Troyer33cb4302012-12-10 16:47:36 -0600116# Clean up last environment var cache
117if [[ -r $TOP_DIR/.stackenv ]]; then
118 rm $TOP_DIR/.stackenv
119fi
120
Dean Troyercc6b4432013-04-08 15:38:03 -0500121# ``stack.sh`` keeps the list of ``apt`` and ``rpm`` dependencies and config
122# templates and other useful files in the ``files`` subdirectory
123FILES=$TOP_DIR/files
124if [ ! -d $FILES ]; then
Dean Troyer14fd9792014-07-25 10:34:11 -0500125 die $LINENO "missing devstack/files"
Dean Troyercc6b4432013-04-08 15:38:03 -0500126fi
127
128# ``stack.sh`` keeps function libraries here
129# Make sure ``$TOP_DIR/lib`` directory is present
130if [ ! -d $TOP_DIR/lib ]; then
Dean Troyer14fd9792014-07-25 10:34:11 -0500131 die $LINENO "missing devstack/lib"
Dean Troyercc6b4432013-04-08 15:38:03 -0500132fi
133
Akihiro MOTOKIb0f1c382013-01-13 17:58:12 +0900134# Import common services (database, message queue) configuration
Dean Troyerc1b486a2012-11-05 14:26:09 -0600135source $TOP_DIR/lib/database
Akihiro MOTOKIb0f1c382013-01-13 17:58:12 +0900136source $TOP_DIR/lib/rpc_backend
Dean Troyerc1b486a2012-11-05 14:26:09 -0600137
Doug Hellmannf04178f2012-07-05 17:10:03 -0400138# Remove services which were negated in ENABLED_SERVICES
Joe Gordon6fd28112012-11-13 16:55:41 -0800139# using the "-" prefix (e.g., "-rabbit") instead of
Doug Hellmannf04178f2012-07-05 17:10:03 -0400140# calling disable_service().
141disable_negated_services
Chmouel Boudjnahc4cd4142012-06-27 11:01:40 +0200142
Dean Troyerc6c1d432012-03-27 20:59:22 -0500143# Warn users who aren't on an explicitly supported distro, but allow them to
144# override check and attempt installation with ``FORCE=yes ./stack``
Sean Dagueab5b5de2014-07-31 11:06:33 -0700145if [[ ! ${DISTRO} =~ (precise|trusty|7.0|wheezy|sid|testing|jessie|f19|f20|rhel6|rhel7) ]]; then
Dean Troyer4a1f5a72012-06-21 09:57:43 -0500146 echo "WARNING: this script has not been tested on $DISTRO"
Dean Troyerc6c1d432012-03-27 20:59:22 -0500147 if [[ "$FORCE" != "yes" ]]; then
Nachi Ueno07115eb2013-02-26 12:38:18 -0800148 die $LINENO "If you wish to run this script anyway run with FORCE=yes"
Dean Troyerc6c1d432012-03-27 20:59:22 -0500149 fi
150fi
151
Dean Troyera79617c2014-04-13 18:16:54 -0500152# Look for obsolete stuff
JordanPea9c24b2014-04-28 08:38:34 +0000153if [[ ,${ENABLED_SERVICES}, =~ ,"swift", ]]; then
Dean Troyera79617c2014-04-13 18:16:54 -0500154 echo "FATAL: 'swift' is not supported as a service name"
Gael Chamoulaudd3121f62014-07-24 23:53:02 +0200155 echo "FATAL: Use the actual swift service names to enable them as required:"
Dean Troyera79617c2014-04-13 18:16:54 -0500156 echo "FATAL: s-proxy s-object s-container s-account"
157 exit 1
158fi
159
Akihiro MOTOKIb0f1c382013-01-13 17:58:12 +0900160# Make sure we only have one rpc backend enabled,
161# and the specified rpc backend is available on your platform.
162check_rpc_backend
Russell Bryant4a221452012-03-13 13:44:12 -0400163
Dean Troyerc6c1d432012-03-27 20:59:22 -0500164# Check to see if we are already running DevStack
Dean Troyercc6b4432013-04-08 15:38:03 -0500165# Note that this may fail if USE_SCREEN=False
Dean Troyer15733352012-09-06 11:51:30 -0500166if type -p screen >/dev/null && screen -ls | egrep -q "[0-9].$SCREEN_NAME"; then
Anthony Young55458452011-12-17 00:21:49 +0000167 echo "You are already running a stack.sh session."
168 echo "To rejoin this session type 'screen -x stack'."
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500169 echo "To destroy this session, type './unstack.sh'."
Anthony Young55458452011-12-17 00:21:49 +0000170 exit 1
171fi
Todd Willey0a161452011-10-28 02:34:19 -0400172
Dean Troyer7903b792012-09-13 17:16:12 -0500173# Set up logging level
174VERBOSE=$(trueorfalse True $VERBOSE)
175
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500176# root Access
177# -----------
178
179# OpenStack is designed to be run as a non-root user; Horizon will fail to run
Dean Troyer23f69d82013-10-04 12:35:24 -0500180# as **root** since Apache will not serve content from **root** user).
181# ``stack.sh`` must not be run as **root**. It aborts and suggests one course of
182# action to create a suitable user account.
Dean Troyer9122e7b2011-10-17 14:07:11 -0500183
184if [[ $EUID -eq 0 ]]; then
185 echo "You are running this script as root."
Dean Troyer23f69d82013-10-04 12:35:24 -0500186 echo "Cut it out."
187 echo "Really."
188 echo "If you need an account to run DevStack, do this (as root, heh) to create $STACK_USER:"
189 echo "$TOP_DIR/tools/create-stack-user.sh"
Dean Troyer9122e7b2011-10-17 14:07:11 -0500190 exit 1
191fi
192
Dean Troyer23f69d82013-10-04 12:35:24 -0500193# We're not **root**, make sure ``sudo`` is available
194is_package_installed sudo || install_package sudo
195
196# UEC images ``/etc/sudoers`` does not have a ``#includedir``, add one
197sudo grep -q "^#includedir.*/etc/sudoers.d" /etc/sudoers ||
198 echo "#includedir /etc/sudoers.d" | sudo tee -a /etc/sudoers
199
200# Set up devstack sudoers
201TEMPFILE=`mktemp`
202echo "$STACK_USER ALL=(root) NOPASSWD:ALL" >$TEMPFILE
203# Some binaries might be under /sbin or /usr/sbin, so make sure sudo will
204# see them by forcing PATH
205echo "Defaults:$STACK_USER secure_path=/sbin:/usr/sbin:/usr/bin:/bin:/usr/local/sbin:/usr/local/bin" >> $TEMPFILE
Adam Gandelmanea2fcb52014-03-17 16:37:56 -0700206echo "Defaults:$STACK_USER !requiretty" >> $TEMPFILE
Dean Troyer23f69d82013-10-04 12:35:24 -0500207chmod 0440 $TEMPFILE
208sudo chown root:root $TEMPFILE
209sudo mv $TEMPFILE /etc/sudoers.d/50_stack_sh
210
Ian Wienand531aeb72014-02-28 11:24:29 +1100211# Additional repos
212# ----------------
213
Sean Daguee83f7782014-06-23 08:11:05 -0400214# For debian/ubuntu make apt attempt to retry network ops on it's own
215if is_ubuntu; then
216 echo 'APT::Acquire::Retries "20";' | sudo tee /etc/apt/apt.conf.d/80retry
217fi
218
Ian Wienand531aeb72014-02-28 11:24:29 +1100219# Some distros need to add repos beyond the defaults provided by the vendor
220# to pick up required packages.
221
Ian Wienanda36167e2014-08-04 14:11:26 +1000222if [[ is_fedora && $DISTRO == "rhel6" ]]; then
Attila Fazekas6d227a42014-04-09 14:42:42 +0200223 # Installing Open vSwitch on RHEL requires enabling the RDO repo.
224 RHEL6_RDO_REPO_RPM=${RHEL6_RDO_REPO_RPM:-"http://rdo.fedorapeople.org/openstack-icehouse/rdo-release-icehouse.rpm"}
225 RHEL6_RDO_REPO_ID=${RHEL6_RDO_REPO_ID:-"openstack-icehouse"}
Ian Wienand531aeb72014-02-28 11:24:29 +1100226 if ! sudo yum repolist enabled $RHEL6_RDO_REPO_ID | grep -q $RHEL6_RDO_REPO_ID; then
227 echo "RDO repo not detected; installing"
228 yum_install $RHEL6_RDO_REPO_RPM || \
229 die $LINENO "Error installing RDO repo, cannot continue"
230 fi
Ian Wienanda36167e2014-08-04 14:11:26 +1000231fi
232
233if [[ is_fedora && ( $DISTRO == "rhel6" || $DISTRO == "rhel7" ) ]]; then
Attila Fazekas6d227a42014-04-09 14:42:42 +0200234 # RHEL requires EPEL for many Open Stack dependencies
Ian Wienanda36167e2014-08-04 14:11:26 +1000235 if [[ $DISTRO == "rhel7" ]]; then
Brad P. Crochete66da492014-06-23 08:16:56 -0400236 EPEL_RPM=${RHEL7_EPEL_RPM:-"http://dl.fedoraproject.org/pub/epel/beta/7/x86_64/epel-release-7-0.2.noarch.rpm"}
Ian Wienanda36167e2014-08-04 14:11:26 +1000237 elif [[ $DISTRO == "rhel6" ]]; then
Attila Fazekas6d227a42014-04-09 14:42:42 +0200238 EPEL_RPM=${RHEL6_EPEL_RPM:-"http://dl.fedoraproject.org/pub/epel/6/x86_64/epel-release-6-8.noarch.rpm"}
239 fi
Ian Wienand531aeb72014-02-28 11:24:29 +1100240 if ! sudo yum repolist enabled epel | grep -q 'epel'; then
241 echo "EPEL not detected; installing"
Attila Fazekas6d227a42014-04-09 14:42:42 +0200242 yum_install ${EPEL_RPM} || \
Ian Wienand531aeb72014-02-28 11:24:29 +1100243 die $LINENO "Error installing EPEL repo, cannot continue"
244 fi
245
246 # ... and also optional to be enabled
247 is_package_installed yum-utils || install_package yum-utils
Ian Wienanda36167e2014-08-04 14:11:26 +1000248 if [[ $DISTRO == "rhel7" ]]; then
Brad P. Crochetc3599212014-06-16 10:27:19 -0400249 OPTIONAL_REPO=rhel-7-server-optional-rpms
Ian Wienanda36167e2014-08-04 14:11:26 +1000250 elif [[ $DISTRO == "rhel6" ]]; then
Brad P. Crochetc3599212014-06-16 10:27:19 -0400251 OPTIONAL_REPO=rhel-6-server-optional-rpms
252 fi
253 sudo yum-config-manager --enable ${OPTIONAL_REPO}
Ian Wienand531aeb72014-02-28 11:24:29 +1100254fi
255
256# Filesystem setup
257# ----------------
Dean Troyer23f69d82013-10-04 12:35:24 -0500258
Dean Troyere26232b2012-06-27 17:55:15 -0500259# Create the destination directory and ensure it is writable by the user
Bob Ball376b6312013-07-29 13:10:25 +0100260# and read/executable by everybody for daemons (e.g. apache run for horizon)
Dean Troyere26232b2012-06-27 17:55:15 -0500261sudo mkdir -p $DEST
Doug Hellmanne7002672013-09-05 08:10:07 -0400262safe_chown -R $STACK_USER $DEST
263safe_chmod 0755 $DEST
Dean Troyere26232b2012-06-27 17:55:15 -0500264
Ian Wienand0488edd2013-04-11 12:04:36 +1000265# a basic test for $DEST path permissions (fatal on error unless skipped)
266check_path_perm_sanity ${DEST}
267
Ben Nemec3ee52c82013-12-12 19:26:12 +0000268# Certain services such as rabbitmq require that the local hostname resolves
269# correctly. Make sure it exists in /etc/hosts so that is always true.
270LOCAL_HOSTNAME=`hostname -s`
271if [ -z "`grep ^127.0.0.1 /etc/hosts | grep $LOCAL_HOSTNAME`" ]; then
272 sudo sed -i "s/\(^127.0.0.1.*\)/\1 $LOCAL_HOSTNAME/" /etc/hosts
273fi
274
Ian Wienand531aeb72014-02-28 11:24:29 +1100275# Destination path for service data
276DATA_DIR=${DATA_DIR:-${DEST}/data}
277sudo mkdir -p $DATA_DIR
278safe_chown -R $STACK_USER $DATA_DIR
279
280
281# Common Configuration
282# --------------------
283
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500284# Set ``OFFLINE`` to ``True`` to configure ``stack.sh`` to run cleanly without
285# Internet access. ``stack.sh`` must have been previously run with Internet
286# access to install prerequisites and fetch repositories.
Dean Troyer25dab662011-12-16 22:40:46 -0600287OFFLINE=`trueorfalse False $OFFLINE`
288
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500289# Set ``ERROR_ON_CLONE`` to ``True`` to configure ``stack.sh`` to exit if
290# the destination git repository does not exist during the ``git_clone``
291# operation.
James E. Blair94cb9602012-06-22 15:28:29 -0700292ERROR_ON_CLONE=`trueorfalse False $ERROR_ON_CLONE`
293
Ben Nemec03997942013-08-10 09:56:16 -0500294# Whether to enable the debug log level in OpenStack services
295ENABLE_DEBUG_LOG_LEVEL=`trueorfalse True $ENABLE_DEBUG_LOG_LEVEL`
296
Vishvananda Ishayac9ad14b2012-07-03 20:29:01 +0000297# Set fixed and floating range here so we can make sure not to use addresses
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500298# from either range when attempting to guess the IP to use for the host.
299# Note that setting FIXED_RANGE may be necessary when running DevStack
Dean Troyerd81a0272012-08-31 18:04:55 -0500300# in an OpenStack cloud that uses either of these address ranges internally.
Salvatore Orlando90234ac2013-11-25 05:44:10 -0800301FLOATING_RANGE=${FLOATING_RANGE:-172.24.4.0/24}
Dean Troyerd81a0272012-08-31 18:04:55 -0500302FIXED_RANGE=${FIXED_RANGE:-10.0.0.0/24}
303FIXED_NETWORK_SIZE=${FIXED_NETWORK_SIZE:-256}
Vishvananda Ishayac9ad14b2012-07-03 20:29:01 +0000304
Dean Troyerc892bde2013-03-13 14:06:13 -0500305HOST_IP=$(get_default_host_ip $FIXED_RANGE $FLOATING_RANGE "$HOST_IP_IFACE" "$HOST_IP")
306if [ "$HOST_IP" == "" ]; then
Newell Jensenccb3d102014-03-10 14:28:52 -0700307 die $LINENO "Could not determine host ip address. See local.conf for suggestions on setting HOST_IP."
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700308fi
309
Anthony Young1097c7c2011-12-27 23:22:14 -0800310# Allow the use of an alternate hostname (such as localhost/127.0.0.1) for service endpoints.
311SERVICE_HOST=${SERVICE_HOST:-$HOST_IP}
Dean Troyercc6b4432013-04-08 15:38:03 -0500312
Dean Troyerdf0972c2012-03-07 17:31:03 -0600313# Configure services to use syslog instead of writing to individual log files
Dean Troyerff603ef2011-11-22 17:48:10 -0600314SYSLOG=`trueorfalse False $SYSLOG`
315SYSLOG_HOST=${SYSLOG_HOST:-$HOST_IP}
316SYSLOG_PORT=${SYSLOG_PORT:-516}
317
Sean Dague78096b52014-02-25 10:23:04 -0500318# for DSTAT logging
Sean Dague062cdaf2014-02-10 22:24:49 -0500319DSTAT_FILE=${DSTAT_FILE:-"dstat.txt"}
320
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500321# Use color for logging output (only available if syslog is not used)
Vishvananda Ishaya6f13ba32012-06-01 23:17:38 +0000322LOG_COLOR=`trueorfalse True $LOG_COLOR`
323
Dean Troyer2bbcd682011-11-05 16:19:03 -0500324# Service startup timeout
325SERVICE_TIMEOUT=${SERVICE_TIMEOUT:-60}
326
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +1000327# Reset the bundle of CA certificates
328SSL_BUNDLE_FILE="$DATA_DIR/ca-bundle.pem"
329rm -f $SSL_BUNDLE_FILE
330
Dean Troyerd81a0272012-08-31 18:04:55 -0500331
332# Configure Projects
333# ==================
334
Brant Knudson0049c0c2014-01-16 18:16:48 -0600335# Import apache functions
zhang-hared98a5d02013-06-21 18:18:02 +0800336source $TOP_DIR/lib/apache
Brant Knudson0049c0c2014-01-16 18:16:48 -0600337
338# Import TLS functions
Dean Troyerc83a7e12012-11-29 11:47:58 -0600339source $TOP_DIR/lib/tls
Brant Knudson0049c0c2014-01-16 18:16:48 -0600340
341# Source project function libraries
Sean Dague0392a102013-07-31 13:07:45 -0400342source $TOP_DIR/lib/infra
Sean Dague1b6b5312013-07-31 06:46:34 -0400343source $TOP_DIR/lib/oslo
Sean Dague68322722013-10-21 18:11:40 -0400344source $TOP_DIR/lib/stackforge
Sean Dagueb562e6a2012-11-19 16:00:01 -0500345source $TOP_DIR/lib/horizon
Dean Troyerd81a0272012-08-31 18:04:55 -0500346source $TOP_DIR/lib/keystone
Dean Troyer73f6f252012-09-17 11:22:21 -0500347source $TOP_DIR/lib/glance
Dean Troyerbf67c192012-09-21 15:09:37 -0500348source $TOP_DIR/lib/nova
Dean Troyerd81a0272012-08-31 18:04:55 -0500349source $TOP_DIR/lib/cinder
Attila Fazekasece6a332012-11-29 14:19:41 +0100350source $TOP_DIR/lib/swift
Dean Troyerd81a0272012-08-31 18:04:55 -0500351source $TOP_DIR/lib/ceilometer
352source $TOP_DIR/lib/heat
Mark McClainb05c8762013-07-06 23:29:39 -0400353source $TOP_DIR/lib/neutron
Devananda van der Veenf35cf912012-11-12 17:58:38 -0800354source $TOP_DIR/lib/baremetal
Brad Topolf127e2f2013-01-22 10:17:50 -0600355source $TOP_DIR/lib/ldap
Dean Troyerd81a0272012-08-31 18:04:55 -0500356
Dean Troyercdf3d762013-10-15 09:42:43 -0500357# Extras Source
358# --------------
359
360# Phase: source
361if [[ -d $TOP_DIR/extras.d ]]; then
362 for i in $TOP_DIR/extras.d/*.sh; do
363 [[ -r $i ]] && source $i source
364 done
365fi
366
Dean Troyer1a6d4492013-06-03 16:47:36 -0500367# Set the destination directories for other OpenStack projects
Dean Troyer9f61d292012-11-26 18:56:20 +0000368OPENSTACKCLIENT_DIR=$DEST/python-openstackclient
Dean Troyerb7490da2013-03-18 16:07:56 -0500369
370# Interactive Configuration
371# -------------------------
372
373# Do all interactive config up front before the logging spew begins
James E. Blair213c4162012-11-06 09:38:36 +0100374
Anthony Young7a549f42011-10-12 07:13:13 +0000375# Generic helper to configure passwords
376function read_password {
Dean Troyer7903b792012-09-13 17:16:12 -0500377 XTRACE=$(set +o | grep xtrace)
Anthony Young7a549f42011-10-12 07:13:13 +0000378 set +o xtrace
379 var=$1; msg=$2
380 pw=${!var}
381
Sahid Orentino Ferdjaoui9e032c22014-02-10 11:36:25 +0100382 if [[ -f $RC_DIR/localrc ]]; then
383 localrc=$TOP_DIR/localrc
384 else
385 localrc=$TOP_DIR/.localrc.auto
386 fi
Anthony Young6015c822011-10-12 07:17:11 +0000387
Anthony Young7a549f42011-10-12 07:13:13 +0000388 # If the password is not defined yet, proceed to prompt user for a password.
389 if [ ! $pw ]; then
390 # If there is no localrc file, create one
Anthony Youngb4db2252011-10-12 14:08:08 -0700391 if [ ! -e $localrc ]; then
392 touch $localrc
Anthony Young7a549f42011-10-12 07:13:13 +0000393 fi
394
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700395 # Presumably if we got this far it can only be that our localrc is missing
Anthony Young7a549f42011-10-12 07:13:13 +0000396 # the required password. Prompt user for a password and write to localrc.
Anthony Youngb4db2252011-10-12 14:08:08 -0700397 echo ''
398 echo '################################################################################'
399 echo $msg
400 echo '################################################################################'
Dean Troyer4e6a2b72011-12-29 17:27:45 -0600401 echo "This value will be written to your localrc file so you don't have to enter it "
402 echo "again. Use only alphanumeric characters."
Anthony Youngb4db2252011-10-12 14:08:08 -0700403 echo "If you leave this blank, a random default value will be used."
Dean Troyer4e6a2b72011-12-29 17:27:45 -0600404 pw=" "
405 while true; do
406 echo "Enter a password now:"
407 read -e $var
408 pw=${!var}
409 [[ "$pw" = "`echo $pw | tr -cd [:alnum:]`" ]] && break
410 echo "Invalid chars in password. Try again:"
411 done
Anthony Youngb4db2252011-10-12 14:08:08 -0700412 if [ ! $pw ]; then
Ian Wienand26a28b42014-05-14 14:10:47 +1000413 pw=$(cat /dev/urandom | tr -cd 'a-f0-9' | head -c 20)
Anthony Young7a549f42011-10-12 07:13:13 +0000414 fi
Anthony Youngb4db2252011-10-12 14:08:08 -0700415 eval "$var=$pw"
416 echo "$var=$pw" >> $localrc
Anthony Young7a549f42011-10-12 07:13:13 +0000417 fi
Dean Troyer7903b792012-09-13 17:16:12 -0500418 $XTRACE
Anthony Young7a549f42011-10-12 07:13:13 +0000419}
420
Dean Troyer13dc5cc2012-03-27 14:50:45 -0500421
Dean Troyerb9182d62012-11-07 12:31:34 -0600422# Database Configuration
Dean Troyerb9182d62012-11-07 12:31:34 -0600423
Dean Troyerafc29fe2013-02-07 15:56:24 -0600424# To select between database backends, add the following to ``localrc``:
Terry Wilson428af5a2012-11-01 16:12:39 -0400425#
Dean Troyerafc29fe2013-02-07 15:56:24 -0600426# disable_service mysql
427# enable_service postgresql
Terry Wilson428af5a2012-11-01 16:12:39 -0400428#
Dean Troyerafc29fe2013-02-07 15:56:24 -0600429# The available database backends are listed in ``DATABASE_BACKENDS`` after
430# ``lib/database`` is sourced. ``mysql`` is the default.
Terry Wilson428af5a2012-11-01 16:12:39 -0400431
432initialize_database_backends && echo "Using $DATABASE_TYPE database backend" || echo "No database enabled"
433
Dean Troyerb9182d62012-11-07 12:31:34 -0600434
Dean Troyerb7490da2013-03-18 16:07:56 -0500435# Queue Configuration
Jesse Andrews782b9912011-10-02 16:53:21 -0400436
Anthony Younga8416442011-09-13 20:07:44 -0700437# Rabbit connection info
Russell Bryant4a221452012-03-13 13:44:12 -0400438if is_service_enabled rabbit; then
Bob Balle309e5a2014-04-01 16:28:36 +0100439 RABBIT_HOST=${RABBIT_HOST:-$SERVICE_HOST}
Russell Bryant4a221452012-03-13 13:44:12 -0400440 read_password RABBIT_PASSWORD "ENTER A PASSWORD TO USE FOR RABBIT."
441fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700442
Dean Troyerb7490da2013-03-18 16:07:56 -0500443
444# Keystone
445
446if is_service_enabled key; then
447 # The ``SERVICE_TOKEN`` is used to bootstrap the Keystone database. It is
448 # just a string and is not a 'real' Keystone token.
449 read_password SERVICE_TOKEN "ENTER A SERVICE_TOKEN TO USE FOR THE SERVICE ADMIN TOKEN."
450 # Services authenticate to Identity with servicename/``SERVICE_PASSWORD``
451 read_password SERVICE_PASSWORD "ENTER A SERVICE_PASSWORD TO USE FOR THE SERVICE AUTHENTICATION."
452 # Horizon currently truncates usernames and passwords at 20 characters
453 read_password ADMIN_PASSWORD "ENTER A PASSWORD TO USE FOR HORIZON AND KEYSTONE (20 CHARS OR LESS)."
454
455 # Keystone can now optionally install OpenLDAP by enabling the ``ldap``
456 # service in ``localrc`` (e.g. ``enable_service ldap``).
457 # To clean out the Keystone contents in OpenLDAP set ``KEYSTONE_CLEAR_LDAP``
458 # to ``yes`` (e.g. ``KEYSTONE_CLEAR_LDAP=yes``) in ``localrc``. To enable the
459 # Keystone Identity Driver (``keystone.identity.backends.ldap.Identity``)
460 # set ``KEYSTONE_IDENTITY_BACKEND`` to ``ldap`` (e.g.
461 # ``KEYSTONE_IDENTITY_BACKEND=ldap``) in ``localrc``.
462
463 # only request ldap password if the service is enabled
464 if is_service_enabled ldap; then
465 read_password LDAP_PASSWORD "ENTER A PASSWORD TO USE FOR LDAP"
Chmouel Boudjnah6ae9ea52012-07-05 06:50:51 +0000466 fi
Dean Troyerb7490da2013-03-18 16:07:56 -0500467fi
468
469
470# Swift
471
472if is_service_enabled s-proxy; then
Chmouel Boudjnah77b0e1d2012-02-29 16:55:43 +0000473 # We only ask for Swift Hash if we have enabled swift service.
Dean Troyerb9182d62012-11-07 12:31:34 -0600474 # ``SWIFT_HASH`` is a random unique string for a swift cluster that
Chmouel Boudjnahb2857e42011-11-03 16:19:14 +0100475 # can never change.
476 read_password SWIFT_HASH "ENTER A RANDOM SWIFT HASH."
477fi
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700478
Dean Troyerdf0972c2012-03-07 17:31:03 -0600479
Dean Troyerb7490da2013-03-18 16:07:56 -0500480# Configure logging
481# -----------------
Dean Troyer471de7a2011-12-27 11:45:55 -0600482
Vishvananda Ishaya7879a3c2012-09-21 15:36:06 -0700483# Draw a spinner so the user knows something is happening
Ian Wienandaee18c72014-02-21 15:35:08 +1100484function spinner {
Vishvananda Ishaya7879a3c2012-09-21 15:36:06 -0700485 local delay=0.75
Dean Troyerb9182d62012-11-07 12:31:34 -0600486 local spinstr='/-\|'
Vishvananda Ishaya7879a3c2012-09-21 15:36:06 -0700487 printf "..." >&3
488 while [ true ]; do
489 local temp=${spinstr#?}
490 printf "[%c]" "$spinstr" >&3
491 local spinstr=$temp${spinstr%"$temp"}
492 sleep $delay
493 printf "\b\b\b" >&3
494 done
495}
496
Roger Luethide56ee12014-04-26 14:21:33 +0200497function kill_spinner {
498 if [ ! -z "$LAST_SPINNER_PID" ]; then
499 kill >/dev/null 2>&1 $LAST_SPINNER_PID
500 printf "\b\b\bdone\n" >&3
501 fi
502}
503
Dean Troyer7903b792012-09-13 17:16:12 -0500504# Echo text to the log file, summary log file and stdout
505# echo_summary "something to say"
Ian Wienandaee18c72014-02-21 15:35:08 +1100506function echo_summary {
Vishvananda Ishaya7879a3c2012-09-21 15:36:06 -0700507 if [[ -t 3 && "$VERBOSE" != "True" ]]; then
Roger Luethide56ee12014-04-26 14:21:33 +0200508 kill_spinner
Dean Troyerafc29fe2013-02-07 15:56:24 -0600509 echo -n -e $@ >&6
Vishvananda Ishaya7879a3c2012-09-21 15:36:06 -0700510 spinner &
511 LAST_SPINNER_PID=$!
512 else
Dean Troyerafc29fe2013-02-07 15:56:24 -0600513 echo -e $@ >&6
Vishvananda Ishaya7879a3c2012-09-21 15:36:06 -0700514 fi
Dean Troyer7903b792012-09-13 17:16:12 -0500515}
516
517# Echo text only to stdout, no log files
518# echo_nolog "something not for the logs"
Ian Wienandaee18c72014-02-21 15:35:08 +1100519function echo_nolog {
Dean Troyer7903b792012-09-13 17:16:12 -0500520 echo $@ >&3
521}
522
Ian Wienanda36167e2014-08-04 14:11:26 +1000523if [[ is_fedora && $DISTRO == "rhel6" ]]; then
Ian Wienandf565bf22014-07-17 14:50:29 +1000524 # poor old python2.6 doesn't have argparse by default, which
525 # outfilter.py uses
526 is_package_installed python-argparse || install_package python-argparse
527fi
528
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500529# Set up logging for ``stack.sh``
530# Set ``LOGFILE`` to turn on logging
531# Append '.xxxxxxxx' to the given name to maintain history
532# where 'xxxxxxxx' is a representation of the date the file was created
Dean Troyer33cb4302012-12-10 16:47:36 -0600533TIMESTAMP_FORMAT=${TIMESTAMP_FORMAT:-"%F-%H%M%S"}
Chmouel Boudjnahd966ed22012-03-05 12:42:48 +0000534if [[ -n "$LOGFILE" || -n "$SCREEN_LOGDIR" ]]; then
535 LOGDAYS=${LOGDAYS:-7}
Chmouel Boudjnahd966ed22012-03-05 12:42:48 +0000536 CURRENT_LOG_TIME=$(date "+$TIMESTAMP_FORMAT")
537fi
538
Dean Troyer471de7a2011-12-27 11:45:55 -0600539if [[ -n "$LOGFILE" ]]; then
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500540 # First clean up old log files. Use the user-specified ``LOGFILE``
Dean Troyer471de7a2011-12-27 11:45:55 -0600541 # as the template to search for, appending '.*' to match the date
542 # we added on earlier runs.
Dean Troyer471de7a2011-12-27 11:45:55 -0600543 LOGDIR=$(dirname "$LOGFILE")
David Ripton406019a2013-03-06 09:58:39 -0500544 LOGFILENAME=$(basename "$LOGFILE")
Chmouel Boudjnahfff6fec2012-03-09 15:37:56 +0000545 mkdir -p $LOGDIR
David Ripton406019a2013-03-06 09:58:39 -0500546 find $LOGDIR -maxdepth 1 -name $LOGFILENAME.\* -mtime +$LOGDAYS -exec rm {} \;
Chmouel Boudjnahd966ed22012-03-05 12:42:48 +0000547 LOGFILE=$LOGFILE.${CURRENT_LOG_TIME}
Dean Troyer7903b792012-09-13 17:16:12 -0500548 SUMFILE=$LOGFILE.${CURRENT_LOG_TIME}.summary
549
550 # Redirect output according to config
Dean Troyerb9182d62012-11-07 12:31:34 -0600551
Jun Wu8710b652014-04-28 20:36:08 +0800552 # Set fd 3 to a copy of stdout. So we can set fd 1 without losing
553 # stdout later.
Dean Troyer7903b792012-09-13 17:16:12 -0500554 exec 3>&1
555 if [[ "$VERBOSE" == "True" ]]; then
Jun Wu8710b652014-04-28 20:36:08 +0800556 # Set fd 1 and 2 to write the log file
Mauro S. M. Rodriguesdae11522014-06-17 01:10:54 +0000557 exec 1> >( $TOP_DIR/tools/outfilter.py -v -o "${LOGFILE}" ) 2>&1
Jun Wu8710b652014-04-28 20:36:08 +0800558 # Set fd 6 to summary log file
Mauro S. M. Rodriguesdae11522014-06-17 01:10:54 +0000559 exec 6> >( $TOP_DIR/tools/outfilter.py -o "${SUMFILE}" )
Dean Troyer7903b792012-09-13 17:16:12 -0500560 else
561 # Set fd 1 and 2 to primary logfile
Mauro S. M. Rodriguesdae11522014-06-17 01:10:54 +0000562 exec 1> >( $TOP_DIR/tools/outfilter.py -o "${LOGFILE}" ) 2>&1
Dean Troyer7903b792012-09-13 17:16:12 -0500563 # Set fd 6 to summary logfile and stdout
Mauro S. M. Rodriguesdae11522014-06-17 01:10:54 +0000564 exec 6> >( $TOP_DIR/tools/outfilter.py -v -o "${SUMFILE}" >&3 )
Dean Troyer7903b792012-09-13 17:16:12 -0500565 fi
566
567 echo_summary "stack.sh log $LOGFILE"
Dean Troyer471de7a2011-12-27 11:45:55 -0600568 # Specified logfile name always links to the most recent log
David Ripton406019a2013-03-06 09:58:39 -0500569 ln -sf $LOGFILE $LOGDIR/$LOGFILENAME
570 ln -sf $SUMFILE $LOGDIR/$LOGFILENAME.summary
Dean Troyer7903b792012-09-13 17:16:12 -0500571else
572 # Set up output redirection without log files
Jun Wu8710b652014-04-28 20:36:08 +0800573 # Set fd 3 to a copy of stdout. So we can set fd 1 without losing
574 # stdout later.
Dean Troyer7903b792012-09-13 17:16:12 -0500575 exec 3>&1
Eric Windischefdf3ff2012-09-24 12:47:44 -0400576 if [[ "$VERBOSE" != "True" ]]; then
Dean Troyer7903b792012-09-13 17:16:12 -0500577 # Throw away stdout and stderr
578 exec 1>/dev/null 2>&1
579 fi
580 # Always send summary fd to original stdout
Mauro S. M. Rodriguesdae11522014-06-17 01:10:54 +0000581 exec 6> >( $TOP_DIR/tools/outfilter.py -v >&3 )
Dean Troyer471de7a2011-12-27 11:45:55 -0600582fi
583
Chmouel Boudjnahd966ed22012-03-05 12:42:48 +0000584# Set up logging of screen windows
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500585# Set ``SCREEN_LOGDIR`` to turn on logging of screen windows to the
586# directory specified in ``SCREEN_LOGDIR``, we will log to the the file
587# ``screen-$SERVICE_NAME-$TIMESTAMP.log`` in that dir and have a link
588# ``screen-$SERVICE_NAME.log`` to the latest log file.
589# Logs are kept for as long specified in ``LOGDAYS``.
Chmouel Boudjnahd966ed22012-03-05 12:42:48 +0000590if [[ -n "$SCREEN_LOGDIR" ]]; then
591
592 # We make sure the directory is created.
593 if [[ -d "$SCREEN_LOGDIR" ]]; then
594 # We cleanup the old logs
595 find $SCREEN_LOGDIR -maxdepth 1 -name screen-\*.log -mtime +$LOGDAYS -exec rm {} \;
596 else
597 mkdir -p $SCREEN_LOGDIR
598 fi
599fi
600
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500601
602# Set Up Script Execution
603# -----------------------
604
Vishvananda Ishaya7879a3c2012-09-21 15:36:06 -0700605# Kill background processes on exit
Dean Troyera25a6f62014-02-24 16:03:41 -0600606trap exit_trap EXIT
607function exit_trap {
Vishvananda Ishaya7879a3c2012-09-21 15:36:06 -0700608 local r=$?
Dean Troyer94b9e822014-02-27 11:13:36 -0600609 jobs=$(jobs -p)
Dean Troyera3935fb2014-03-21 13:00:32 -0500610 # Only do the kill when we're logging through a process substitution,
611 # which currently is only to verbose logfile
612 if [[ -n $jobs && -n "$LOGFILE" && "$VERBOSE" == "True" ]]; then
Dean Troyer94b9e822014-02-27 11:13:36 -0600613 echo "exit_trap: cleaning up child processes"
614 kill 2>&1 $jobs
615 fi
Roger Luethide56ee12014-04-26 14:21:33 +0200616
617 # Kill the last spinner process
618 kill_spinner
619
Sean Dague97fcc7b2014-06-16 17:24:14 -0400620 if [[ $r -ne 0 ]]; then
621 echo "Error on exit"
622 ./tools/worlddump.py -d $LOGDIR
623 fi
624
Vishvananda Ishaya7879a3c2012-09-21 15:36:06 -0700625 exit $r
626}
627
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500628# Exit on any errors so that errors don't compound
Dean Troyera25a6f62014-02-24 16:03:41 -0600629trap err_trap ERR
630function err_trap {
Scott Moserf9da5082011-10-07 21:28:00 -0400631 local r=$?
632 set +o xtrace
Dean Troyera25a6f62014-02-24 16:03:41 -0600633 if [[ -n "$LOGFILE" ]]; then
634 echo "${0##*/} failed: full log in $LOGFILE"
635 else
636 echo "${0##*/} failed"
637 fi
Scott Moserf9da5082011-10-07 21:28:00 -0400638 exit $r
639}
640
Sean Dague09bd7c82014-02-03 08:35:26 +0900641
642set -o errexit
643
Scott Moserf9da5082011-10-07 21:28:00 -0400644# Print the commands being run so that we can see the command that triggers
645# an error. It is also useful for following along as the install occurs.
646set -o xtrace
647
Dean Troyer1a6d4492013-06-03 16:47:36 -0500648
Jesse Andrews30f68e92011-09-13 00:59:54 -0700649# Install Packages
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700650# ================
Dean Troyer7d28a0e2012-06-27 17:55:52 -0500651
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500652# OpenStack uses a fair number of other projects.
Jesse Andrews30f68e92011-09-13 00:59:54 -0700653
Dean Troyer7d28a0e2012-06-27 17:55:52 -0500654# Install package requirements
Dean Troyer48352ee2012-12-12 12:50:38 -0600655# Source it so the entire environment is available
Dean Troyer7903b792012-09-13 17:16:12 -0500656echo_summary "Installing package prerequisites"
Dean Troyer48352ee2012-12-12 12:50:38 -0600657source $TOP_DIR/tools/install_prereqs.sh
Monty Taylor47f02062012-07-26 11:09:24 -0500658
Dean Troyer62d1d692013-08-01 17:40:40 -0500659# Configure an appropriate python environment
Arata Notsu8b5d3cf2013-10-17 21:42:49 +0900660if [[ "$OFFLINE" != "True" ]]; then
Franck Yelles683ff422014-06-19 02:14:42 -0700661 PYPI_ALTERNATIVE_URL=$PYPI_ALTERNATIVE_URL $TOP_DIR/tools/install_pip.sh
Arata Notsu8b5d3cf2013-10-17 21:42:49 +0900662fi
Dean Troyer1a6d4492013-06-03 16:47:36 -0500663
Gael Chamoulaudd3121f62014-07-24 23:53:02 +0200664# Do the ugly hacks for broken packages and distros
Dean Troyer04a35112014-08-15 14:03:52 -0500665source $TOP_DIR/tools/fixup_stuff.sh
Dean Troyer9acc12a2013-08-09 15:09:31 -0500666
Dean Troyer5c3a63e2014-07-09 11:27:42 -0500667
668# Extras Pre-install
669# ------------------
670
671# Phase: pre-install
672if [[ -d $TOP_DIR/extras.d ]]; then
673 for i in $TOP_DIR/extras.d/*.sh; do
674 [[ -r $i ]] && source $i stack pre-install
675 done
676fi
677
678
Dean Troyer62d1d692013-08-01 17:40:40 -0500679install_rpc_backend
680
681if is_service_enabled $DATABASE_BACKENDS; then
682 install_database
683fi
684
685if is_service_enabled neutron; then
686 install_neutron_agent_packages
687fi
688
Monty Taylor47f02062012-07-26 11:09:24 -0500689TRACK_DEPENDS=${TRACK_DEPENDS:-False}
690
691# Install python packages into a virtualenv so that we can track them
Dean Troyercc6b4432013-04-08 15:38:03 -0500692if [[ $TRACK_DEPENDS = True ]]; then
Dean Troyer7903b792012-09-13 17:16:12 -0500693 echo_summary "Installing Python packages into a virtualenv $DEST/.venv"
Sean Dague6c844632013-07-31 06:50:14 -0400694 pip_install -U virtualenv
Monty Taylor47f02062012-07-26 11:09:24 -0500695
696 rm -rf $DEST/.venv
697 virtualenv --system-site-packages $DEST/.venv
698 source $DEST/.venv/bin/activate
699 $DEST/.venv/bin/pip freeze > $DEST/requires-pre-pip
700fi
701
Dean Troyerfe51a902013-04-01 15:48:44 -0500702# Check Out and Install Source
703# ----------------------------
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500704
Dean Troyer7903b792012-09-13 17:16:12 -0500705echo_summary "Installing OpenStack project source"
706
Sean Dague0392a102013-07-31 13:07:45 -0400707# Install required infra support libraries
708install_infra
Monty Taylor5e159492013-05-08 14:29:52 -0400709
Sean Dague1b6b5312013-07-31 06:46:34 -0400710# Install oslo libraries that have graduated
711install_oslo
712
Sean Dague68322722013-10-21 18:11:40 -0400713# Install stackforge libraries for testing
Sean Daguef7cfa0c2013-10-25 13:26:17 -0400714if is_service_enabled stackforge_libs; then
715 install_stackforge
716fi
Sean Dague68322722013-10-21 18:11:40 -0400717
Dean Troyerfe51a902013-04-01 15:48:44 -0500718# Install clients libraries
Dean Troyerd81a0272012-08-31 18:04:55 -0500719install_keystoneclient
Dean Troyer73f6f252012-09-17 11:22:21 -0500720install_glanceclient
Dean Troyer253a1a32013-04-01 18:23:22 -0500721install_cinderclient
Dean Troyerbf67c192012-09-21 15:09:37 -0500722install_novaclient
Sean Dague75195b52013-07-25 15:38:09 -0400723if is_service_enabled swift glance horizon; then
Dean Troyerfe51a902013-04-01 15:48:44 -0500724 install_swiftclient
725fi
Sean Dague75195b52013-07-25 15:38:09 -0400726if is_service_enabled neutron nova horizon; then
Mark McClainb05c8762013-07-06 23:29:39 -0400727 install_neutronclient
Dean Troyerfe51a902013-04-01 15:48:44 -0500728fi
Sean Dague75195b52013-07-25 15:38:09 -0400729if is_service_enabled heat horizon; then
730 install_heatclient
731fi
Dean Troyerfe51a902013-04-01 15:48:44 -0500732
Morgan Fainberg58936fd2014-06-24 12:26:07 -0700733# Install middleware
734install_keystonemiddleware
735
Dean Troyer9f61d292012-11-26 18:56:20 +0000736git_clone $OPENSTACKCLIENT_REPO $OPENSTACKCLIENT_DIR $OPENSTACKCLIENT_BRANCH
Dean Troyer253a1a32013-04-01 18:23:22 -0500737setup_develop $OPENSTACKCLIENT_DIR
Dean Troyer9f61d292012-11-26 18:56:20 +0000738
Dean Troyerfe51a902013-04-01 15:48:44 -0500739if is_service_enabled key; then
Bartosz Górski0abde392014-02-28 14:15:19 +0100740 if [ "$KEYSTONE_AUTH_HOST" == "$SERVICE_HOST" ]; then
741 install_keystone
742 configure_keystone
743 fi
Jesse Andrews38df1222011-11-20 09:55:44 -0800744fi
Attila Fazekasece6a332012-11-29 14:19:41 +0100745
Chmouel Boudjnah0c3a5582013-03-06 10:58:33 +0100746if is_service_enabled s-proxy; then
Attila Fazekasece6a332012-11-29 14:19:41 +0100747 install_swift
Dean Troyerfe51a902013-04-01 15:48:44 -0500748 configure_swift
749
rahmu9d2647a2013-04-24 10:40:07 +0200750 # swift3 middleware to provide S3 emulation to Swift
Chmouel Boudjnah6ae9ea52012-07-05 06:50:51 +0000751 if is_service_enabled swift3; then
rahmu9d2647a2013-04-24 10:40:07 +0200752 # replace the nova-objectstore port by the swift port
753 S3_SERVICE_PORT=8080
Chmouel Boudjnah6ae9ea52012-07-05 06:50:51 +0000754 git_clone $SWIFT3_REPO $SWIFT3_DIR $SWIFT3_BRANCH
Dean Troyerfe51a902013-04-01 15:48:44 -0500755 setup_develop $SWIFT3_DIR
Chmouel Boudjnah6ae9ea52012-07-05 06:50:51 +0000756 fi
James E. Blaire7ce24f2011-11-10 13:05:13 -0800757fi
Attila Fazekasece6a332012-11-29 14:19:41 +0100758
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +0000759if is_service_enabled g-api n-api; then
James E. Blaire7ce24f2011-11-10 13:05:13 -0800760 # image catalog service
Dean Troyer73f6f252012-09-17 11:22:21 -0500761 install_glance
Dean Troyerfe51a902013-04-01 15:48:44 -0500762 configure_glance
James E. Blaire7ce24f2011-11-10 13:05:13 -0800763fi
Dean Troyerfe51a902013-04-01 15:48:44 -0500764
765if is_service_enabled cinder; then
766 install_cinder
767 configure_cinder
768fi
769
Mark McClainb05c8762013-07-06 23:29:39 -0400770if is_service_enabled neutron; then
771 install_neutron
772 install_neutron_third_party
Dean Troyerfe51a902013-04-01 15:48:44 -0500773fi
774
Dean Troyerbf67c192012-09-21 15:09:37 -0500775if is_service_enabled nova; then
776 # compute service
777 install_nova
Dean Troyerfe51a902013-04-01 15:48:44 -0500778 cleanup_nova
779 configure_nova
Dean Troyerbf67c192012-09-21 15:09:37 -0500780fi
Dean Troyerfe51a902013-04-01 15:48:44 -0500781
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +0000782if is_service_enabled horizon; then
Zhenguo Niue385d1e2014-03-12 16:58:12 +0800783 # django openstack_auth
784 install_django_openstack_auth
Sean Dagueb562e6a2012-11-19 16:00:01 -0500785 # dashboard
786 install_horizon
Dean Troyerfe51a902013-04-01 15:48:44 -0500787 configure_horizon
James E. Blaire7ce24f2011-11-10 13:05:13 -0800788fi
Dean Troyerfe51a902013-04-01 15:48:44 -0500789
John H. Tran93361642012-07-26 11:22:05 -0700790if is_service_enabled ceilometer; then
Yunhong, Jiange583d9b2013-01-09 09:33:07 +0800791 install_ceilometerclient
John H. Tran93361642012-07-26 11:22:05 -0700792 install_ceilometer
Attila Fazekas12bb53b2013-07-25 23:02:48 +0200793 echo_summary "Configuring Ceilometer"
794 configure_ceilometer
John H. Tran93361642012-07-26 11:22:05 -0700795fi
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500796
Steve Bakerbfdad752012-08-18 09:00:42 +1200797if is_service_enabled heat; then
Sean Dagued644e232013-07-25 15:34:48 -0400798 install_heat
Steve Bakerc3249082013-04-09 13:41:47 +1200799 cleanup_heat
Steve Bakerbfdad752012-08-18 09:00:42 +1200800 configure_heat
801fi
Dean Troyerb7490da2013-03-18 16:07:56 -0500802
Dean Troyerfe51a902013-04-01 15:48:44 -0500803if is_service_enabled tls-proxy; then
804 configure_CA
805 init_CA
806 init_cert
807 # Add name to /etc/hosts
808 # don't be naive and add to existing line!
Dean Troyer67787e62012-05-02 11:48:15 -0500809fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700810
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300811
Dean Troyercdf3d762013-10-15 09:42:43 -0500812# Extras Install
813# --------------
814
815# Phase: install
816if [[ -d $TOP_DIR/extras.d ]]; then
817 for i in $TOP_DIR/extras.d/*.sh; do
818 [[ -r $i ]] && source $i stack install
819 done
820fi
821
Dean Troyercc6b4432013-04-08 15:38:03 -0500822if [[ $TRACK_DEPENDS = True ]]; then
Monty Taylor47f02062012-07-26 11:09:24 -0500823 $DEST/.venv/bin/pip freeze > $DEST/requires-post-pip
Dean Troyercc6b4432013-04-08 15:38:03 -0500824 if ! diff -Nru $DEST/requires-pre-pip $DEST/requires-post-pip > $DEST/requires.diff; then
DennyZhange8fa8532013-11-03 12:22:04 -0600825 echo "Detect some changes for installed packages of pip, in depend tracking mode"
Monty Taylor47f02062012-07-26 11:09:24 -0500826 cat $DEST/requires.diff
827 fi
828 echo "Ran stack.sh in depend tracking mode, bailing out now"
829 exit 0
830fi
Dean Troyerdf0972c2012-03-07 17:31:03 -0600831
Dean Troyerb7490da2013-03-18 16:07:56 -0500832
Dean Troyerff603ef2011-11-22 17:48:10 -0600833# Syslog
Dean Troyerdf0972c2012-03-07 17:31:03 -0600834# ------
Dean Troyerff603ef2011-11-22 17:48:10 -0600835
836if [[ $SYSLOG != "False" ]]; then
Dean Troyerff603ef2011-11-22 17:48:10 -0600837 if [[ "$SYSLOG_HOST" = "$HOST_IP" ]]; then
838 # Configure the master host to receive
839 cat <<EOF >/tmp/90-stack-m.conf
840\$ModLoad imrelp
841\$InputRELPServerRun $SYSLOG_PORT
842EOF
843 sudo mv /tmp/90-stack-m.conf /etc/rsyslog.d
844 else
845 # Set rsyslog to send to remote host
846 cat <<EOF >/tmp/90-stack-s.conf
847*.* :omrelp:$SYSLOG_HOST:$SYSLOG_PORT
848EOF
849 sudo mv /tmp/90-stack-s.conf /etc/rsyslog.d
850 fi
cloudnulle4859f02013-05-28 14:10:58 -0500851
852 RSYSLOGCONF="/etc/rsyslog.conf"
853 if [ -f $RSYSLOGCONF ]; then
854 sudo cp -b $RSYSLOGCONF $RSYSLOGCONF.bak
855 if [[ $(grep '$SystemLogRateLimitBurst' $RSYSLOGCONF) ]]; then
856 sudo sed -i 's/$SystemLogRateLimitBurst\ .*/$SystemLogRateLimitBurst\ 0/' $RSYSLOGCONF
857 else
858 sudo sed -i '$ i $SystemLogRateLimitBurst\ 0' $RSYSLOGCONF
859 fi
860 if [[ $(grep '$SystemLogRateLimitInterval' $RSYSLOGCONF) ]]; then
861 sudo sed -i 's/$SystemLogRateLimitInterval\ .*/$SystemLogRateLimitInterval\ 0/' $RSYSLOGCONF
862 else
863 sudo sed -i '$ i $SystemLogRateLimitInterval\ 0' $RSYSLOGCONF
864 fi
865 fi
866
Dean Troyer7903b792012-09-13 17:16:12 -0500867 echo_summary "Starting rsyslog"
Dean Troyer13dc5cc2012-03-27 14:50:45 -0500868 restart_service rsyslog
Dean Troyerff603ef2011-11-22 17:48:10 -0600869fi
870
Dean Troyerdf0972c2012-03-07 17:31:03 -0600871
Joe Gordone5d92382012-09-13 17:19:03 -0700872# Finalize queue installation
873# ----------------------------
Akihiro MOTOKIb0f1c382013-01-13 17:58:12 +0900874restart_rpc_backend
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700875
Dean Troyerdf0972c2012-03-07 17:31:03 -0600876
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +1000877# Export Certicate Authority Bundle
878# ---------------------------------
879
880# If certificates were used and written to the SSL bundle file then these
881# should be exported so clients can validate their connections.
882
883if [ -f $SSL_BUNDLE_FILE ]; then
884 export OS_CACERT=$SSL_BUNDLE_FILE
885fi
886
887
Terry Wilson428af5a2012-11-01 16:12:39 -0400888# Configure database
889# ------------------
Dean Troyerb9182d62012-11-07 12:31:34 -0600890
Terry Wilson428af5a2012-11-01 16:12:39 -0400891if is_service_enabled $DATABASE_BACKENDS; then
892 configure_database
Jesse Andrews24859062011-09-15 21:28:23 -0700893fi
894
Dean Troyerb9182d62012-11-07 12:31:34 -0600895
896# Configure screen
897# ----------------
898
Dean Troyer681f3fd2013-02-27 19:00:39 -0600899USE_SCREEN=$(trueorfalse True $USE_SCREEN)
900if [[ "$USE_SCREEN" == "True" ]]; then
901 # Create a new named screen to run processes in
902 screen -d -m -S $SCREEN_NAME -t shell -s /bin/bash
903 sleep 1
904
905 # Set a reasonable status bar
906 if [ -z "$SCREEN_HARDSTATUS" ]; then
907 SCREEN_HARDSTATUS='%{= .} %-Lw%{= .}%> %n%f %t*%{= .}%+Lw%< %-=%{g}(%{d}%H/%l%{g})'
908 fi
909 screen -r $SCREEN_NAME -X hardstatus alwayslastline "$SCREEN_HARDSTATUS"
Steven Dake30396572013-06-30 16:11:54 -0700910 screen -r $SCREEN_NAME -X setenv PROMPT_COMMAND /bin/true
Josh Kearney0a7a41e2012-04-04 17:47:56 -0500911fi
912
Jiajun Liu61bb2c12012-10-19 09:48:30 +0800913# Clear screen rc file
914SCREENRC=$TOP_DIR/$SCREEN_NAME-screenrc
915if [[ -e $SCREENRC ]]; then
Jiajun Liu8e58c072013-07-17 06:41:50 +0000916 rm -f $SCREENRC
Jiajun Liu61bb2c12012-10-19 09:48:30 +0800917fi
Dean Troyerb9182d62012-11-07 12:31:34 -0600918
jiajun xua9414242012-12-06 16:30:57 +0800919# Initialize the directory for service status check
920init_service_check
Dean Troyer7d28a0e2012-06-27 17:55:52 -0500921
Sean Dague78096b52014-02-25 10:23:04 -0500922# Dstat
Dean Troyer1a6d4492013-06-03 16:47:36 -0500923# -------
924
Sean Daguef1eb0472014-02-11 17:28:56 -0500925# A better kind of sysstat, with the top process per time slice
James E. Blaire8d84062014-03-26 08:19:37 -0700926DSTAT_OPTS="-tcmndrylp --top-cpu-adv"
Sean Daguef1eb0472014-02-11 17:28:56 -0500927if [[ -n ${SCREEN_LOGDIR} ]]; then
928 screen_it dstat "cd $TOP_DIR; dstat $DSTAT_OPTS | tee $SCREEN_LOGDIR/$DSTAT_FILE"
929else
930 screen_it dstat "dstat $DSTAT_OPTS"
Sean Dague062cdaf2014-02-10 22:24:49 -0500931fi
932
Dean Troyer893e6632013-09-13 15:05:51 -0500933# Start Services
934# ==============
935
Dean Troyerd81a0272012-08-31 18:04:55 -0500936# Keystone
937# --------
938
939if is_service_enabled key; then
Dean Troyer7903b792012-09-13 17:16:12 -0500940 echo_summary "Starting Keystone"
Bartosz Górski0abde392014-02-28 14:15:19 +0100941
942 if [ "$KEYSTONE_AUTH_HOST" == "$SERVICE_HOST" ]; then
943 init_keystone
944 start_keystone
945 fi
Dean Troyerd81a0272012-08-31 18:04:55 -0500946
Dean Troyerd835de82012-11-29 17:11:35 -0600947 # Set up a temporary admin URI for Keystone
Jamie Lennox3561d7f2014-05-21 17:18:43 +1000948 SERVICE_ENDPOINT=$KEYSTONE_AUTH_URI/v2.0
Dean Troyerc83a7e12012-11-29 11:47:58 -0600949
950 if is_service_enabled tls-proxy; then
951 export OS_CACERT=$INT_CA_DIR/ca-chain.pem
952 # Until the client support is fixed, just use the internal endpoint
953 SERVICE_ENDPOINT=http://$KEYSTONE_AUTH_HOST:$KEYSTONE_AUTH_PORT_INT/v2.0
954 fi
Dean Troyerd81a0272012-08-31 18:04:55 -0500955
Dean Troyer42a59c22014-03-03 14:31:29 -0600956 # Setup OpenStackclient token-flow auth
Steve Martinelli19685422014-01-24 13:02:26 -0600957 export OS_TOKEN=$SERVICE_TOKEN
958 export OS_URL=$SERVICE_ENDPOINT
Dean Troyer42a59c22014-03-03 14:31:29 -0600959
Dean Troyerd835de82012-11-29 17:11:35 -0600960 create_keystone_accounts
Dean Troyera0dce262012-12-11 16:52:37 -0600961 create_nova_accounts
Dean Troyer42a59c22014-03-03 14:31:29 -0600962 create_glance_accounts
Dean Troyer671c16e2012-12-13 16:22:38 -0600963 create_cinder_accounts
Mark McClainb05c8762013-07-06 23:29:39 -0400964 create_neutron_accounts
Dean Troyerd835de82012-11-29 17:11:35 -0600965
Dirk Muellerfa5ccff2014-01-09 13:27:35 +0100966 if is_service_enabled ceilometer; then
967 create_ceilometer_accounts
968 fi
969
Dean Troyer42a59c22014-03-03 14:31:29 -0600970 if is_service_enabled swift; then
Ian Wienand0ff314c2013-07-17 16:30:19 +1000971 create_swift_accounts
972 fi
973
Steven Hardy33d1f862014-02-13 15:00:33 +0000974 if is_service_enabled heat; then
975 create_heat_accounts
976 fi
977
Dean Troyer42a59c22014-03-03 14:31:29 -0600978 # Begone token-flow auth
Steve Martinelli19685422014-01-24 13:02:26 -0600979 unset OS_TOKEN OS_URL
Dean Troyer42a59c22014-03-03 14:31:29 -0600980
981 # Set up password-flow auth creds now that keystone is bootstrapped
Dean Troyerd81a0272012-08-31 18:04:55 -0500982 export OS_AUTH_URL=$SERVICE_ENDPOINT
983 export OS_TENANT_NAME=admin
984 export OS_USERNAME=admin
985 export OS_PASSWORD=$ADMIN_PASSWORD
Bartosz Górski0abde392014-02-28 14:15:19 +0100986 export OS_REGION_NAME=$REGION_NAME
Dean Troyerd81a0272012-08-31 18:04:55 -0500987fi
988
989
Tres Henryca85b792011-10-28 14:00:21 -0700990# Horizon
Dean Troyerdf0972c2012-03-07 17:31:03 -0600991# -------
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400992
Dean Troyer7d28a0e2012-06-27 17:55:52 -0500993# Set up the django horizon application to serve via apache/wsgi
Jesse Andrews75a37652011-09-12 17:09:08 -0700994
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +0000995if is_service_enabled horizon; then
Dean Troyer7903b792012-09-13 17:16:12 -0500996 echo_summary "Configuring and starting Horizon"
Sean Dagueb562e6a2012-11-19 16:00:01 -0500997 init_horizon
998 start_horizon
Anthony Young70dc5e02011-09-15 16:52:43 -0700999fi
Jesse Andrews75a37652011-09-12 17:09:08 -07001000
Anthony Young3859f732011-09-14 02:33:43 -07001001
Jesse Andrewsd74257d2011-09-13 01:24:50 -07001002# Glance
1003# ------
1004
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +00001005if is_service_enabled g-reg; then
Dean Troyer7903b792012-09-13 17:16:12 -05001006 echo_summary "Configuring Glance"
Dean Troyer73f6f252012-09-17 11:22:21 -05001007 init_glance
Anthony Young70dc5e02011-09-15 16:52:43 -07001008fi
Jesse Andrews75a37652011-09-12 17:09:08 -07001009
Dean Troyer8c032d12013-09-23 13:53:13 -05001010
Mark McClainb05c8762013-07-06 23:29:39 -04001011# Neutron
Anthony Young60df29a2012-03-28 09:40:17 -07001012# -------
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001013
Mark McClainb05c8762013-07-06 23:29:39 -04001014if is_service_enabled neutron; then
1015 echo_summary "Configuring Neutron"
Dean Troyerb9182d62012-11-07 12:31:34 -06001016
Mark McClainb05c8762013-07-06 23:29:39 -04001017 configure_neutron
Salvatore Orlandodd649882013-08-05 08:56:17 -07001018 # Run init_neutron only on the node hosting the neutron API server
1019 if is_service_enabled $DATABASE_BACKENDS && is_service_enabled q-svc; then
1020 init_neutron
1021 fi
Dan Wendlandt0007f3a2012-05-18 13:37:47 -07001022fi
1023
Mark McClainb05c8762013-07-06 23:29:39 -04001024# Some Neutron plugins require network controllers which are not
Akihiro MOTOKI66afb472012-12-21 15:34:13 +09001025# a part of the OpenStack project. Configure and start them.
Mark McClainb05c8762013-07-06 23:29:39 -04001026if is_service_enabled neutron; then
1027 configure_neutron_third_party
1028 init_neutron_third_party
1029 start_neutron_third_party
Gary Kotton396a0142012-07-29 04:28:47 -04001030fi
1031
Dean Troyerb9182d62012-11-07 12:31:34 -06001032
Jesse Andrewsd74257d2011-09-13 01:24:50 -07001033# Nova
1034# ----
Dean Troyerbd13b702012-02-13 11:22:36 -06001035
Isaku Yamahata6f85ab32012-08-06 16:56:10 +09001036if is_service_enabled n-net q-dhcp; then
Anthony Young55458452011-12-17 00:21:49 +00001037 # Delete traces of nova networks from prior runs
Davanum Srinivasd71d6e72013-01-28 19:15:57 -05001038 # Do not kill any dnsmasq instance spawned by NetworkManager
1039 netman_pid=$(pidof NetworkManager || true)
1040 if [ -z "$netman_pid" ]; then
1041 sudo killall dnsmasq || true
1042 else
1043 sudo ps h -o pid,ppid -C dnsmasq | grep -v $netman_pid | awk '{print $1}' | sudo xargs kill || true
1044 fi
1045
Anthony Young55458452011-12-17 00:21:49 +00001046 clean_iptables
Christian Berendt7a7fb492014-04-07 13:31:07 +00001047
1048 if is_service_enabled n-net; then
1049 rm -rf ${NOVA_STATE_PATH}/networks
1050 sudo mkdir -p ${NOVA_STATE_PATH}/networks
Chris Denta0ced4d2014-05-27 22:08:46 +01001051 safe_chown -R ${STACK_USER} ${NOVA_STATE_PATH}/networks
Christian Berendt7a7fb492014-04-07 13:31:07 +00001052 fi
1053
Dean Troyer1a6d4492013-06-03 16:47:36 -05001054 # Force IP forwarding on, just in case
Dean Troyer0b31e862012-03-07 16:47:56 -06001055 sudo sysctl -w net.ipv4.ip_forward=1
Anthony Young70dc5e02011-09-15 16:52:43 -07001056fi
Jesse Andrews75a37652011-09-12 17:09:08 -07001057
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001058
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +01001059# Storage Service
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001060# ---------------
1061
Chmouel Boudjnah0c3a5582013-03-06 10:58:33 +01001062if is_service_enabled s-proxy; then
Dean Troyer7903b792012-09-13 17:16:12 -05001063 echo_summary "Configuring Swift"
Attila Fazekasece6a332012-11-29 14:19:41 +01001064 init_swift
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +01001065fi
1066
Dean Troyerdf0972c2012-03-07 17:31:03 -06001067
Anthony Youngacff87a2011-10-20 10:12:58 -07001068# Volume Service
1069# --------------
1070
Dean Troyer67787e62012-05-02 11:48:15 -05001071if is_service_enabled cinder; then
Dean Troyer7903b792012-09-13 17:16:12 -05001072 echo_summary "Configuring Cinder"
Dean Troyer67787e62012-05-02 11:48:15 -05001073 init_cinder
Anthony Youngacff87a2011-10-20 10:12:58 -07001074fi
1075
Dean Troyer2aa2a892013-08-04 19:53:19 -05001076
1077# Compute Service
1078# ---------------
1079
Dean Troyerbf67c192012-09-21 15:09:37 -05001080if is_service_enabled nova; then
1081 echo_summary "Configuring Nova"
1082 init_nova
Jesse Andrewsd1879c52011-09-16 16:28:13 -07001083
Dean Troyer86a79692012-10-22 15:24:46 -05001084 # Additional Nova configuration that is dependent on other services
Mark McClainb05c8762013-07-06 23:29:39 -04001085 if is_service_enabled neutron; then
1086 create_nova_conf_neutron
Dean Troyer86a79692012-10-22 15:24:46 -05001087 elif is_service_enabled n-net; then
Akihiro MOTOKI66afb472012-12-21 15:34:13 +09001088 create_nova_conf_nova_network
Brad Hall1bfa3d52011-10-27 18:18:20 -07001089 fi
Dean Troyerdf0972c2012-03-07 17:31:03 -06001090
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001091 init_nova_cells
Anthony Youngb62b4ca2011-10-26 22:29:08 -07001092fi
1093
Devananda van der Veenf35cf912012-11-12 17:58:38 -08001094# Extra things to prepare nova for baremetal, before nova starts
1095if is_service_enabled nova && is_baremetal; then
1096 echo_summary "Preparing for nova baremetal"
1097 prepare_baremetal_toolchain
1098 configure_baremetal_nova_dirs
1099fi
Dean Troyerdf0972c2012-03-07 17:31:03 -06001100
Dean Troyerb7490da2013-03-18 16:07:56 -05001101
Dean Troyercdf3d762013-10-15 09:42:43 -05001102# Extras Configuration
1103# ====================
1104
1105# Phase: post-config
1106if [[ -d $TOP_DIR/extras.d ]]; then
1107 for i in $TOP_DIR/extras.d/*.sh; do
1108 [[ -r $i ]] && source $i stack post-config
1109 done
1110fi
1111
1112
Dean Troyer893e6632013-09-13 15:05:51 -05001113# Local Configuration
1114# ===================
1115
1116# Apply configuration from local.conf if it exists for layer 2 services
1117# Phase: post-config
1118merge_config_group $TOP_DIR/local.conf post-config
1119
1120
Jesse Andrewsd74257d2011-09-13 01:24:50 -07001121# Launch Services
1122# ===============
Jesse Andrews30f68e92011-09-13 00:59:54 -07001123
Jesse Andrewsdfcd2002011-09-13 13:17:22 -07001124# Only run the services specified in ``ENABLED_SERVICES``
1125
Attila Fazekasece6a332012-11-29 14:19:41 +01001126# Launch Swift Services
Chmouel Boudjnah0c3a5582013-03-06 10:58:33 +01001127if is_service_enabled s-proxy; then
Attila Fazekasece6a332012-11-29 14:19:41 +01001128 echo_summary "Starting Swift"
1129 start_swift
1130fi
1131
Dean Troyer73f6f252012-09-17 11:22:21 -05001132# Launch the Glance services
Dean Troyere4fa7212014-01-15 15:04:49 -06001133if is_service_enabled glance; then
Dean Troyer7903b792012-09-13 17:16:12 -05001134 echo_summary "Starting Glance"
Dean Troyer73f6f252012-09-17 11:22:21 -05001135 start_glance
Anthony Youngd000b222011-09-19 14:46:53 -07001136fi
1137
Eric Windisch0b9776d2014-01-28 11:20:53 -05001138# Install Images
1139# ==============
1140
1141# Upload an image to glance.
1142#
1143# The default image is cirros, a small testing image which lets you login as **root**
1144# cirros has a ``cloud-init`` analog supporting login via keypair and sending
1145# scripts as userdata.
1146# See https://help.ubuntu.com/community/CloudInit for more on cloud-init
1147#
1148# Override ``IMAGE_URLS`` with a comma-separated list of UEC images.
1149# * **precise**: http://uec-images.ubuntu.com/precise/current/precise-server-cloudimg-amd64.tar.gz
1150
1151if is_service_enabled g-reg; then
1152 TOKEN=$(keystone token-get | grep ' id ' | get_field 2)
1153 die_if_not_set $LINENO TOKEN "Keystone fail to get token"
1154
1155 if is_baremetal; then
1156 echo_summary "Creating and uploading baremetal images"
1157
1158 # build and upload separate deploy kernel & ramdisk
1159 upload_baremetal_deploy $TOKEN
1160
1161 # upload images, separating out the kernel & ramdisk for PXE boot
1162 for image_url in ${IMAGE_URLS//,/ }; do
1163 upload_baremetal_image $image_url $TOKEN
1164 done
1165 else
1166 echo_summary "Uploading images"
1167
1168 # Option to upload legacy ami-tty, which works with xenserver
1169 if [[ -n "$UPLOAD_LEGACY_TTY" ]]; then
1170 IMAGE_URLS="${IMAGE_URLS:+${IMAGE_URLS},}https://github.com/downloads/citrix-openstack/warehouse/tty.tgz"
1171 fi
1172
1173 for image_url in ${IMAGE_URLS//,/ }; do
1174 upload_image $image_url $TOKEN
1175 done
1176 fi
1177fi
1178
Dean Troyerd81a0272012-08-31 18:04:55 -05001179# Create an access key and secret key for nova ec2 register image
1180if is_service_enabled key && is_service_enabled swift3 && is_service_enabled nova; then
Steve Martinellidf6793a2014-03-13 23:38:11 -05001181 eval $(openstack ec2 credentials create --user nova --project $SERVICE_TENANT_NAME -f shell -c access -c secret)
1182 iniset $NOVA_CONF DEFAULT s3_access_key "$access"
1183 iniset $NOVA_CONF DEFAULT s3_secret_key "$secret"
Devananda van der Veen9bc47db2012-12-12 16:52:55 -08001184 iniset $NOVA_CONF DEFAULT s3_affix_tenant "True"
Anthony Youngd000b222011-09-19 14:46:53 -07001185fi
1186
Kaitlin Farrdef4c142014-01-06 08:52:49 -05001187# Create a randomized default value for the keymgr's fixed_key
1188if is_service_enabled nova; then
1189 FIXED_KEY=""
Sean Dague16dd8b32014-02-03 09:10:54 +09001190 for i in $(seq 1 64); do
1191 FIXED_KEY+=$(echo "obase=16; $(($RANDOM % 16))" | bc);
Kaitlin Farrdef4c142014-01-06 08:52:49 -05001192 done;
1193 iniset $NOVA_CONF keymgr fixed_key "$FIXED_KEY"
1194fi
1195
Monty Taylore5428832013-03-27 23:40:59 +01001196if is_service_enabled zeromq; then
1197 echo_summary "Starting zermomq receiver"
Elena Ezhova2d451962014-06-19 12:49:32 +04001198 screen_it zeromq "cd $NOVA_DIR && $OSLO_BIN_DIR/oslo-messaging-zmq-receiver"
Monty Taylore5428832013-03-27 23:40:59 +01001199fi
ewindisch3bae7c22012-01-18 11:18:35 -05001200
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001201# Launch the nova-api and wait for it to answer before continuing
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +00001202if is_service_enabled n-api; then
Dean Troyer7903b792012-09-13 17:16:12 -05001203 echo_summary "Starting Nova API"
Dean Troyer3a3a2ba2012-12-11 15:26:24 -06001204 start_nova_api
Anthony Youngd000b222011-09-19 14:46:53 -07001205fi
Brad Hall1bfa3d52011-10-27 18:18:20 -07001206
Gary Kotton37dda8d2012-08-08 03:46:33 -04001207if is_service_enabled q-svc; then
Mark McClainb05c8762013-07-06 23:29:39 -04001208 echo_summary "Starting Neutron"
Mark McClainb05c8762013-07-06 23:29:39 -04001209 start_neutron_service_and_check
armando-migliaccioef1e0802014-01-02 16:33:53 -08001210 check_neutron_third_party_integration
Aaron Rosen8ec719b2012-10-30 12:57:47 -07001211elif is_service_enabled $DATABASE_BACKENDS && is_service_enabled n-net; then
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001212 NM_CONF=${NOVA_CONF}
1213 if is_service_enabled n-cell; then
1214 NM_CONF=${NOVA_CELLS_CONF}
1215 fi
1216
Gary Kotton37dda8d2012-08-08 03:46:33 -04001217 # Create a small network
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001218 $NOVA_BIN_DIR/nova-manage --config-file $NM_CONF network create "$PRIVATE_NETWORK_NAME" $FIXED_RANGE 1 $FIXED_NETWORK_SIZE $NETWORK_CREATE_ARGS
Dean Troyer696ad332012-01-10 15:34:34 -06001219
Gary Kotton37dda8d2012-08-08 03:46:33 -04001220 # Create some floating ips
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001221 $NOVA_BIN_DIR/nova-manage --config-file $NM_CONF floating create $FLOATING_RANGE --pool=$PUBLIC_NETWORK_NAME
Aaron Rosen9313dfa2012-07-06 16:08:49 -04001222
Gary Kotton37dda8d2012-08-08 03:46:33 -04001223 # Create a second pool
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001224 $NOVA_BIN_DIR/nova-manage --config-file $NM_CONF floating create --ip_range=$TEST_FLOATING_RANGE --pool=$TEST_FLOATING_POOL
Brad Hall1bfa3d52011-10-27 18:18:20 -07001225fi
1226
Mark McClainb05c8762013-07-06 23:29:39 -04001227if is_service_enabled neutron; then
1228 start_neutron_agents
Akihiro MOTOKI66afb472012-12-21 15:34:13 +09001229fi
Salvatore Orlando6fbb28d2013-12-22 07:59:37 -08001230# Once neutron agents are started setup initial network elements
1231if is_service_enabled q-svc; then
1232 echo_summary "Creating initial neutron network elements"
1233 create_neutron_initial_network
1234 setup_neutron_debug
1235fi
Dean Troyerbf67c192012-09-21 15:09:37 -05001236if is_service_enabled nova; then
1237 echo_summary "Starting Nova"
1238 start_nova
1239fi
Dean Troyer67787e62012-05-02 11:48:15 -05001240if is_service_enabled cinder; then
Dean Troyer7903b792012-09-13 17:16:12 -05001241 echo_summary "Starting Cinder"
Dean Troyer67787e62012-05-02 11:48:15 -05001242 start_cinder
Dean Troyer09718332014-07-03 10:46:57 -05001243 create_volume_types
Dean Troyer67787e62012-05-02 11:48:15 -05001244fi
John H. Tran93361642012-07-26 11:22:05 -07001245if is_service_enabled ceilometer; then
Doug Hellmannc5259b42012-09-22 10:52:31 -04001246 echo_summary "Starting Ceilometer"
Lianhao Lu8c548492013-01-09 10:41:54 +08001247 init_ceilometer
John H. Tran93361642012-07-26 11:22:05 -07001248 start_ceilometer
1249fi
Sean Dagueb562e6a2012-11-19 16:00:01 -05001250
Steve Bakerbad9d892012-10-25 14:49:47 +13001251# Configure and launch heat engine, api and metadata
Steve Bakerbfdad752012-08-18 09:00:42 +12001252if is_service_enabled heat; then
Steven Hardy1bcd2802014-02-13 15:14:41 +00001253 # Initialize heat
Steve Bakerbad9d892012-10-25 14:49:47 +13001254 echo_summary "Configuring Heat"
1255 init_heat
Dean Troyer7903b792012-09-13 17:16:12 -05001256 echo_summary "Starting Heat"
Steve Bakerbfdad752012-08-18 09:00:42 +12001257 start_heat
1258fi
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001259
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +10001260
Attila Fazekas22ef5732012-12-16 14:03:06 +01001261# Create account rc files
1262# =======================
1263
1264# Creates source able script files for easier user switching.
1265# This step also creates certificates for tenants and users,
1266# which is helpful in image bundle steps.
1267
1268if is_service_enabled nova && is_service_enabled key; then
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +10001269 USERRC_PARAMS="-PA --target-dir $TOP_DIR/accrc"
1270
1271 if [ -f $SSL_BUNDLE_FILE ]; then
1272 USERRC_PARAMS="$USERRC_PARAMS --os-cacert $SSL_BUNDLE_FILE"
1273 fi
1274
1275 $TOP_DIR/tools/create_userrc.sh $USERRC_PARAMS
Attila Fazekas22ef5732012-12-16 14:03:06 +01001276fi
1277
Dean Troyer4a43b7b2012-08-28 17:43:40 -05001278
Devananda van der Veenf35cf912012-11-12 17:58:38 -08001279# If we are running nova with baremetal driver, there are a few
1280# last-mile configuration bits to attend to, which must happen
1281# after n-api and n-sch have started.
1282# Also, creating the baremetal flavor must happen after images
1283# are loaded into glance, though just knowing the IDs is sufficient here
1284if is_service_enabled nova && is_baremetal; then
1285 # create special flavor for baremetal if we know what images to associate
1286 [[ -n "$BM_DEPLOY_KERNEL_ID" ]] && [[ -n "$BM_DEPLOY_RAMDISK_ID" ]] && \
Sean Dagueb83c3652013-10-22 10:08:04 -04001287 create_baremetal_flavor $BM_DEPLOY_KERNEL_ID $BM_DEPLOY_RAMDISK_ID
Devananda van der Veenf35cf912012-11-12 17:58:38 -08001288
1289 # otherwise user can manually add it later by calling nova-baremetal-manage
Devananda van der Veenf35cf912012-11-12 17:58:38 -08001290 [[ -n "$BM_FIRST_MAC" ]] && add_baremetal_node
1291
Arata Notsubbf06452013-07-26 20:26:07 +09001292 if [[ "$BM_DNSMASQ_FROM_NOVA_NETWORK" = "False" ]]; then
1293 # NOTE: we do this here to ensure that our copy of dnsmasq is running
1294 sudo pkill dnsmasq || true
1295 sudo dnsmasq --conf-file= --port=0 --enable-tftp --tftp-root=/tftpboot \
1296 --dhcp-boot=pxelinux.0 --bind-interfaces --pid-file=/var/run/dnsmasq.pid \
1297 --interface=$BM_DNSMASQ_IFACE --dhcp-range=$BM_DNSMASQ_RANGE \
1298 ${BM_DNSMASQ_DNS:+--dhcp-option=option:dns-server,$BM_DNSMASQ_DNS}
1299 fi
Devananda van der Veenf35cf912012-11-12 17:58:38 -08001300 # ensure callback daemon is running
1301 sudo pkill nova-baremetal-deploy-helper || true
Mehdi Abaakoukc01e6a72013-10-14 16:26:02 +02001302 screen_it baremetal "cd ; nova-baremetal-deploy-helper"
Devananda van der Veenf35cf912012-11-12 17:58:38 -08001303fi
Dean Troyerdf0972c2012-03-07 17:31:03 -06001304
Dean Troyer33cb4302012-12-10 16:47:36 -06001305# Save some values we generated for later use
1306CURRENT_RUN_TIME=$(date "+$TIMESTAMP_FORMAT")
1307echo "# $CURRENT_RUN_TIME" >$TOP_DIR/.stackenv
1308for i in BASE_SQL_CONN ENABLED_SERVICES HOST_IP LOGFILE \
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +10001309 SERVICE_HOST SERVICE_PROTOCOL STACK_USER TLS_IP KEYSTONE_AUTH_PROTOCOL OS_CACERT; do
Dean Troyer33cb4302012-12-10 16:47:36 -06001310 echo $i=${!i} >>$TOP_DIR/.stackenv
1311done
1312
Maru Newbyec086512012-11-01 23:44:57 +00001313
Dean Troyer893e6632013-09-13 15:05:51 -05001314# Local Configuration
1315# ===================
1316
1317# Apply configuration from local.conf if it exists for layer 2 services
1318# Phase: extra
1319merge_config_group $TOP_DIR/local.conf extra
1320
1321
Dean Troyer768295e2013-01-09 13:42:03 -06001322# Run extras
1323# ==========
1324
Dean Troyercdf3d762013-10-15 09:42:43 -05001325# Phase: extra
Dean Troyer768295e2013-01-09 13:42:03 -06001326if [[ -d $TOP_DIR/extras.d ]]; then
1327 for i in $TOP_DIR/extras.d/*.sh; do
Dean Troyercdf3d762013-10-15 09:42:43 -05001328 [[ -r $i ]] && source $i stack extra
Dean Troyer768295e2013-01-09 13:42:03 -06001329 done
1330fi
1331
Ryan Hsufeb28832013-11-07 12:12:35 -08001332# Local Configuration
1333# ===================
1334
1335# Apply configuration from local.conf if it exists for layer 2 services
1336# Phase: post-extra
1337merge_config_group $TOP_DIR/local.conf post-extra
1338
Dean Troyer768295e2013-01-09 13:42:03 -06001339
Dean Troyerf5633dd2012-03-28 11:21:40 -05001340# Run local script
1341# ================
1342
1343# Run ``local.sh`` if it exists to perform user-managed tasks
1344if [[ -x $TOP_DIR/local.sh ]]; then
1345 echo "Running user script $TOP_DIR/local.sh"
1346 $TOP_DIR/local.sh
1347fi
1348
jiajun xua9414242012-12-06 16:30:57 +08001349# Check the status of running services
1350service_check
Dean Troyerf5633dd2012-03-28 11:21:40 -05001351
Dean Troyerb7490da2013-03-18 16:07:56 -05001352
Scott Moserb94f4bf2011-10-07 14:51:07 +00001353# Fin
1354# ===
1355
Dean Troyer471de7a2011-12-27 11:45:55 -06001356set +o xtrace
Scott Moserb94f4bf2011-10-07 14:51:07 +00001357
Dean Troyer7903b792012-09-13 17:16:12 -05001358if [[ -n "$LOGFILE" ]]; then
1359 exec 1>&3
1360 # Force all output to stdout and logs now
Dean Troyerbaa8b422012-09-24 15:02:05 -05001361 exec 1> >( tee -a "${LOGFILE}" ) 2>&1
Dean Troyer7903b792012-09-13 17:16:12 -05001362else
1363 # Force all output to stdout now
1364 exec 1>&3
1365fi
1366
Dean Troyerdf0972c2012-03-07 17:31:03 -06001367
Jesse Andrews24859062011-09-15 21:28:23 -07001368# Using the cloud
Dean Troyer4a43b7b2012-08-28 17:43:40 -05001369# ---------------
Jesse Andrews24859062011-09-15 21:28:23 -07001370
Jesse Andrewse19d8842011-11-01 20:06:55 -07001371echo ""
1372echo ""
1373echo ""
1374
Dean Troyerdf0972c2012-03-07 17:31:03 -06001375# If you installed Horizon on this server you should be able
root40a37002011-09-20 18:06:14 +00001376# to access the site using your browser.
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +00001377if is_service_enabled horizon; then
Dean Troyerdf0972c2012-03-07 17:31:03 -06001378 echo "Horizon is now available at http://$SERVICE_HOST/"
Jesse Andrews24859062011-09-15 21:28:23 -07001379fi
1380
Dean Troyerdf0972c2012-03-07 17:31:03 -06001381# If Keystone is present you can point ``nova`` cli to this server
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +00001382if is_service_enabled key; then
Jamie Lennox3561d7f2014-05-21 17:18:43 +10001383 echo "Keystone is serving at $KEYSTONE_SERVICE_URI/v2.0/"
Dean Troyerdf0972c2012-03-07 17:31:03 -06001384 echo "Examples on using novaclient command line is in exercise.sh"
1385 echo "The default users are: admin and demo"
1386 echo "The password: $ADMIN_PASSWORD"
Jesse Andrews24859062011-09-15 21:28:23 -07001387fi
termie523c4052011-09-28 19:49:40 -05001388
Dean Troyer4a43b7b2012-08-28 17:43:40 -05001389# Echo ``HOST_IP`` - useful for ``build_uec.sh``, which uses dhcp to give the instance an address
Anthony Young1097c7c2011-12-27 23:22:14 -08001390echo "This is your host ip: $HOST_IP"
1391
Dean Troyerafc29fe2013-02-07 15:56:24 -06001392# Warn that a deprecated feature was used
1393if [[ -n "$DEPRECATED_TEXT" ]]; then
1394 echo_summary "WARNING: $DEPRECATED_TEXT"
Dean Troyerced65172012-03-02 16:36:16 -06001395fi
1396
Dean Troyer91baef32014-02-28 11:11:45 -06001397# TODO(dtroyer): Remove Q_AGENT_EXTRA_AGENT_OPTS after stable/juno branch is cut
1398if [[ -n "$Q_AGENT_EXTRA_AGENT_OPTS" ]]; then
1399 echo ""
1400 echo_summary "WARNING: Q_AGENT_EXTRA_AGENT_OPTS is used"
1401 echo "You are using Q_AGENT_EXTRA_AGENT_OPTS to pass configuration into $NEUTRON_CONF."
1402 echo "Please convert that configuration in localrc to a $NEUTRON_CONF section in local.conf:"
1403 echo "Q_AGENT_EXTRA_AGENT_OPTS will be removed early in the 'K' development cycle"
1404 echo "
1405[[post-config|/\$Q_PLUGIN_CONF_FILE]]
1406[DEFAULT]
1407"
1408 for I in "${Q_AGENT_EXTRA_AGENT_OPTS[@]}"; do
1409 # Replace the first '=' with ' ' for iniset syntax
1410 echo ${I}
1411 done
1412fi
1413
1414# TODO(dtroyer): Remove Q_AGENT_EXTRA_SRV_OPTS after stable/juno branch is cut
1415if [[ -n "$Q_AGENT_EXTRA_SRV_OPTS" ]]; then
1416 echo ""
1417 echo_summary "WARNING: Q_AGENT_EXTRA_SRV_OPTS is used"
1418 echo "You are using Q_AGENT_EXTRA_SRV_OPTS to pass configuration into $NEUTRON_CONF."
1419 echo "Please convert that configuration in localrc to a $NEUTRON_CONF section in local.conf:"
1420 echo "Q_AGENT_EXTRA_AGENT_OPTS will be removed early in the 'K' development cycle"
1421 echo "
1422[[post-config|/\$Q_PLUGIN_CONF_FILE]]
1423[DEFAULT]
1424"
1425 for I in "${Q_AGENT_EXTRA_SRV_OPTS[@]}"; do
1426 # Replace the first '=' with ' ' for iniset syntax
1427 echo ${I}
1428 done
1429fi
1430
Dean Troyer09718332014-07-03 10:46:57 -05001431# TODO(dtroyer): Remove CINDER_MULTI_LVM_BACKEND after stable/juno branch is cut
1432if [[ "$CINDER_MULTI_LVM_BACKEND" = "True" ]]; then
1433 echo ""
1434 echo_summary "WARNING: CINDER_MULTI_LVM_BACKEND is used"
1435 echo "You are using CINDER_MULTI_LVM_BACKEND to configure Cinder's multiple LVM backends"
1436 echo "Please convert that configuration in local.conf to use CINDER_ENABLED_BACKENDS."
1437 echo "CINDER_ENABLED_BACKENDS will be removed early in the 'K' development cycle"
1438 echo "
1439[[local|localrc]]
1440CINDER_ENABLED_BACKENDS=lvm:lvmdriver-1,lvm:lvmdriver-2
1441"
1442fi
1443
Dean Troyer4a43b7b2012-08-28 17:43:40 -05001444# Indicate how long this took to run (bash maintained variable ``SECONDS``)
Dean Troyer7903b792012-09-13 17:16:12 -05001445echo_summary "stack.sh completed in $SECONDS seconds."
Dean Troyer80684552014-03-05 11:50:23 -06001446
1447# Restore/close logging file descriptors
1448exec 1>&3
1449exec 2>&3
1450exec 3>&-
1451exec 6>&-