blob: 16386ea9cb49b49e2a1490bc957d6ce24fe902be [file] [log] [blame]
Jesse Andrewsba23cc72011-09-11 03:22:13 -07001#!/usr/bin/env bash
2
Jesse Andrews0e7e8972011-10-02 16:36:54 -04003# **stack.sh** is an opinionated openstack developer installation.
4
5# This script installs and configures *nova*, *glance*, *dashboard* and *keystone*
Jesse Andrewsba23cc72011-09-11 03:22:13 -07006
Jesse Andrewsc4b3aab2011-09-15 22:54:52 -07007# To keep this script simple we assume you are running on an **Ubuntu 11.04
Jesse Andrews24859062011-09-15 21:28:23 -07008# Natty** machine. It should work in a VM or physical server. Additionally we
9# put the list of *apt* and *pip* dependencies and other configuration files in
10# this repo. So start by grabbing this script and the dependencies.
11
Jesse Andrews0e7e8972011-10-02 16:36:54 -040012# Learn more and get the most recent version at http://devstack.org
Jesse Andrews6edd17f2011-09-15 22:19:42 -070013
14# Sanity Check
15# ============
16
termie523c4052011-09-28 19:49:40 -050017# Start our timer
18START_TIME=`python -c "import time; print time.time()"`
19
Jesse Andrewsc4b3aab2011-09-15 22:54:52 -070020# Warn users who aren't on natty, but allow them to override check and attempt
Jesse Andrews6edd17f2011-09-15 22:19:42 -070021# installation with ``FORCE=yes ./stack``
Jesse Andrews6edd17f2011-09-15 22:19:42 -070022if ! grep -q natty /etc/lsb-release; then
23 echo "WARNING: this script has only been tested on natty"
24 if [[ "$FORCE" != "yes" ]]; then
25 echo "If you wish to run this script anyway run with FORCE=yes"
26 exit 1
27 fi
28fi
29
root40a37002011-09-20 18:06:14 +000030# stack.sh keeps the list of **apt** and **pip** dependencies in external
Jesse Andrews4d282182011-09-16 11:27:43 -070031# files, along with config templates and other useful files. You can find these
root40a37002011-09-20 18:06:14 +000032# in the ``files`` directory (next to this script). We will reference this
Jesse Andrewsbf3868d2011-09-16 11:31:16 -070033# directory using the ``FILES`` variable in this script.
34FILES=`pwd`/files
35if [ ! -d $FILES ]; then
36 echo "ERROR: missing devstack/files - did you grab more than just stack.sh?"
Jesse Andrews6edd17f2011-09-15 22:19:42 -070037 exit 1
38fi
39
Vishvananda Ishayac9e3fff2011-09-29 10:48:49 -070040# If stack.sh is run as root, it automatically creates a stack user with
41# sudo privileges and runs as that user.
Jesse Andrewsd4622952011-09-28 14:08:26 -070042if [[ $EUID -eq 0 ]]; then
Vishvananda Ishayac9e3fff2011-09-29 10:48:49 -070043 echo "You are running this script as root."
44 apt-get update
45 apt-get install -y sudo
46 if ! getent passwd | grep -q stack; then
47 echo "Creating a user called stack"
Vishvananda Ishayacd101642011-10-01 00:37:27 -070048 useradd -U -G sudo -s /bin/bash -m stack
Vishvananda Ishayac9e3fff2011-09-29 10:48:49 -070049 fi
50 echo "Making sure stack has passwordless sudo"
Jesse Andrews6e9fae02011-10-02 08:48:34 -070051 echo "stack ALL=(ALL) NOPASSWD: ALL" >> /etc/sudoers
Vishvananda Ishayac9e3fff2011-09-29 10:48:49 -070052 echo "Copying files to stack user"
53 cp -r -f `pwd` /home/stack/
54 THIS_DIR=$(basename $(dirname $(readlink -f $0)))
55 chown -R stack:sudo /home/stack/$THIS_DIR
56 echo "Running the script as stack in 3 seconds..."
57 sleep 3
58 exec su -c "cd /home/stack/$THIS_DIR/; bash stack.sh; bash" stack
59 exit 0
Jesse Andrewsd4622952011-09-28 14:08:26 -070060fi
61
62
Jesse Andrews6edd17f2011-09-15 22:19:42 -070063# Settings
64# ========
Jesse Andrews30f68e92011-09-13 00:59:54 -070065
Jesse Andrewsd74257d2011-09-13 01:24:50 -070066# This script is customizable through setting environment variables. If you
67# want to override a setting you can either::
68#
69# export MYSQL_PASS=anothersecret
70# ./stack.sh
71#
Jesse Andrews6edd17f2011-09-15 22:19:42 -070072# You can also pass options on a single line ``MYSQL_PASS=simple ./stack.sh``
73#
termie197d53d2011-09-28 17:18:23 -070074# Additionally, you can put any local variables into a ``localrc`` file, like::
75#
76# MYSQL_PASS=anothersecret
77# MYSQL_USER=hellaroot
78#
Jesse Andrews6edd17f2011-09-15 22:19:42 -070079# We try to have sensible defaults, so you should be able to run ``./stack.sh``
80# in most cases.
Jesse Andrewsd74257d2011-09-13 01:24:50 -070081
Jesse Andrews6edd17f2011-09-15 22:19:42 -070082# So that errors don't compound we exit on any errors so you see only the
83# first error that occured.
Jesse Andrewsba23cc72011-09-11 03:22:13 -070084set -o errexit
85
root40a37002011-09-20 18:06:14 +000086# Print the commands being run so that we can see the command that triggers
Jesse Andrewsd74257d2011-09-13 01:24:50 -070087# an error. It is also useful for following allowing as the install occurs.
Jesse Andrewsba23cc72011-09-11 03:22:13 -070088set -o xtrace
89
Anthony Young2f140202011-09-26 13:02:40 -070090# Import variables
91source ./stackrc
92
Jesse Andrews6edd17f2011-09-15 22:19:42 -070093# Destination path for installation ``DEST``
Anthony Younge8fed482011-09-26 19:50:43 -070094DEST=${DEST:-/opt/stack}
95sudo mkdir -p $DEST
96sudo chown `whoami` $DEST
Jesse Andrewsba23cc72011-09-11 03:22:13 -070097
Jesse Andrews6f3baaf2011-09-12 11:59:38 -070098# Set the destination directories for openstack projects
Jesse Andrewsba23cc72011-09-11 03:22:13 -070099NOVA_DIR=$DEST/nova
100DASH_DIR=$DEST/dash
101GLANCE_DIR=$DEST/glance
102KEYSTONE_DIR=$DEST/keystone
103NOVACLIENT_DIR=$DEST/python-novaclient
Anthony Young2f140202011-09-26 13:02:40 -0700104OPENSTACKX_DIR=$DEST/openstackx
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700105NOVNC_DIR=$DEST/noVNC
Anthony Younga8416442011-09-13 20:07:44 -0700106
107# Specify which services to launch. These generally correspond to screen tabs
Jesse Andrews9b6741e2011-10-02 10:01:00 -0700108ENABLED_SERVICES=${ENABLED_SERVICES:-g-api,g-reg,key,n-api,n-cpu,n-net,n-sch,n-vnc,dash,mysql,rabbit}
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700109
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700110# Use the first IP unless an explicit is set by ``HOST_IP`` environment variable
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700111if [ ! -n "$HOST_IP" ]; then
Dean Troyer2a15a7c2011-09-13 13:22:14 -0500112 HOST_IP=`LC_ALL=C /sbin/ifconfig | grep -m 1 'inet addr:'| cut -d: -f2 | awk '{print $1}'`
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700113fi
114
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700115# Nova network configuration
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700116PUBLIC_INTERFACE=${PUBLIC_INTERFACE:-eth0}
Jesse Andrews8ff5dbc2011-09-25 22:28:08 -0700117VLAN_INTERFACE=${VLAN_INTERFACE:-$PUBLIC_INTERFACE}
Jesse Andrewsa72f7ad2011-09-25 13:41:22 -0700118FLOATING_RANGE=${FLOATING_RANGE:-172.24.4.1/28}
Jesse Andrewsb5197e42011-09-26 12:48:31 -0700119FIXED_RANGE=${FIXED_RANGE:-10.0.0.0/24}
120FIXED_NETWORK_SIZE=${FIXED_NETWORK_SIZE:-256}
Jesse Andrewsa72f7ad2011-09-25 13:41:22 -0700121NET_MAN=${NET_MAN:-FlatDHCPManager}
Anthony Younga8416442011-09-13 20:07:44 -0700122EC2_DMZ_HOST=${EC2_DMZ_HOST:-$HOST_IP}
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700123FLAT_NETWORK_BRIDGE=${FLAT_NETWORK_BRIDGE:-br100}
Jesse Andrews8ff5dbc2011-09-25 22:28:08 -0700124SCHEDULER=${SCHEDULER:-nova.scheduler.simple.SimpleScheduler}
Jesse Andrews30f68e92011-09-13 00:59:54 -0700125
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700126# If you are using FlatDHCP on multiple hosts, set the ``FLAT_INTERFACE``
127# variable but make sure that the interface doesn't already have an
128# ip or you risk breaking things.
Jesse Andrews8ff5dbc2011-09-25 22:28:08 -0700129FLAT_INTERFACE=${FLAT_INTERFACE:-eth0}
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700130
root40a37002011-09-20 18:06:14 +0000131# Nova hypervisor configuration. We default to **kvm** but will drop back to
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700132# **qemu** if we are unable to load the kvm module.
133LIBVIRT_TYPE=${LIBVIRT_TYPE:-kvm}
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700134
Anthony Younga8416442011-09-13 20:07:44 -0700135# Mysql connection info
Anthony Young320412b2011-09-14 02:39:10 -0700136MYSQL_USER=${MYSQL_USER:-root}
Jesse Andrewsfa418f62011-10-02 09:30:54 -0700137MYSQL_PASS=${MYSQL_PASS:-`openssl rand -hex 12`}
Anthony Younga8416442011-09-13 20:07:44 -0700138MYSQL_HOST=${MYSQL_HOST:-localhost}
139# don't specify /db in this string, so we can use it for multiple services
Anthony Youngfdaf21a2011-09-13 20:11:42 -0700140BASE_SQL_CONN=${BASE_SQL_CONN:-mysql://$MYSQL_USER:$MYSQL_PASS@$MYSQL_HOST}
Anthony Younga8416442011-09-13 20:07:44 -0700141
142# Rabbit connection info
143RABBIT_HOST=${RABBIT_HOST:-localhost}
Jesse Andrews53ed3872011-10-02 14:28:17 -0400144RABBIT_PASSWORD=${RABBIT_PASSWORD:-`openssl rand -hex 12`}
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700145
Anthony Young377aae62011-09-14 09:55:31 -0700146# Glance connection info. Note the port must be specified.
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700147GLANCE_HOSTPORT=${GLANCE_HOSTPORT:-$HOST_IP:9292}
Anthony Young377aae62011-09-14 09:55:31 -0700148
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700149# Service Token - Openstack components need to have an admin token
150# to validate user tokens.
151SERVICE_TOKEN=${SERVICE_TOKEN:-`uuidgen`}
Jesse Andrews89358af2011-10-02 14:11:17 -0400152ADMIN_PASSWORD=${ADMIN_PASSWORD:-`openssl rand -hex 12`}
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700153
Jesse Andrews53ed3872011-10-02 14:28:17 -0400154
Jesse Andrews30f68e92011-09-13 00:59:54 -0700155# Install Packages
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700156# ================
Jesse Andrews30f68e92011-09-13 00:59:54 -0700157#
158# Openstack uses a fair number of other projects.
159
root40a37002011-09-20 18:06:14 +0000160# Seed configuration with mysql password so that apt-get install doesn't
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700161# prompt us for a password upon install.
Jesse Andrews18d350d2011-09-12 21:46:12 -0700162cat <<MYSQL_PRESEED | sudo debconf-set-selections
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700163mysql-server-5.1 mysql-server/root_password password $MYSQL_PASS
164mysql-server-5.1 mysql-server/root_password_again password $MYSQL_PASS
165mysql-server-5.1 mysql-server/start_on_boot boolean true
166MYSQL_PRESEED
Jesse Andrews2caf8fd2011-09-12 16:15:11 -0700167
Jesse Andrews75a37652011-09-12 17:09:08 -0700168# install apt requirements
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700169sudo apt-get install -y -q `cat $FILES/apts/* | cut -d\# -f1 | grep -Ev "mysql-server|rabbitmq-server"`
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700170
Jesse Andrews75a37652011-09-12 17:09:08 -0700171# install python requirements
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700172sudo PIP_DOWNLOAD_CACHE=/var/cache/pip pip install `cat $FILES/pips/*`
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700173
Jesse Andrewsd61db852011-09-16 14:13:17 -0700174# git clone only if directory doesn't exist already. Since ``DEST`` might not
175# be owned by the installation user, we create the directory and change the
176# ownership to the proper user.
Jesse Andrews61632572011-09-12 17:40:00 -0700177function git_clone {
178 if [ ! -d $2 ]; then
Jesse Andrewsd61db852011-09-16 14:13:17 -0700179 sudo mkdir $2
180 sudo chown `whoami` $2
Jesse Andrews61632572011-09-12 17:40:00 -0700181 git clone $1 $2
Anthony Young2f140202011-09-26 13:02:40 -0700182 cd $2
Anthony Young303233e2011-09-26 13:12:57 -0700183 # This checkout syntax works for both branches and tags
Anthony Young2f140202011-09-26 13:02:40 -0700184 git checkout $3
Jesse Andrews61632572011-09-12 17:40:00 -0700185 fi
186}
187
Jesse Andrews75a37652011-09-12 17:09:08 -0700188# compute service
Anthony Young2f140202011-09-26 13:02:40 -0700189git_clone $NOVA_REPO $NOVA_DIR $NOVA_BRANCH
Jesse Andrews75a37652011-09-12 17:09:08 -0700190# image catalog service
Anthony Young2f140202011-09-26 13:02:40 -0700191git_clone $GLANCE_REPO $GLANCE_DIR $GLANCE_BRANCH
Jesse Andrews75a37652011-09-12 17:09:08 -0700192# unified auth system (manages accounts/tokens)
Anthony Young2f140202011-09-26 13:02:40 -0700193git_clone $KEYSTONE_REPO $KEYSTONE_DIR $KEYSTONE_BRANCH
Jesse Andrews75a37652011-09-12 17:09:08 -0700194# a websockets/html5 or flash powered VNC console for vm instances
Anthony Young2f140202011-09-26 13:02:40 -0700195git_clone $NOVNC_REPO $NOVNC_DIR $NOVNC_BRANCH
Jesse Andrews75a37652011-09-12 17:09:08 -0700196# django powered web control panel for openstack
Anthony Young2f140202011-09-26 13:02:40 -0700197git_clone $DASH_REPO $DASH_DIR $DASH_BRANCH $DASH_TAG
Jesse Andrews75a37652011-09-12 17:09:08 -0700198# python client library to nova that dashboard (and others) use
Anthony Young2f140202011-09-26 13:02:40 -0700199git_clone $NOVACLIENT_REPO $NOVACLIENT_DIR $NOVACLIENT_BRANCH
root40a37002011-09-20 18:06:14 +0000200# openstackx is a collection of extensions to openstack.compute & nova
Jesse Andrews75a37652011-09-12 17:09:08 -0700201# that is *deprecated*. The code is being moved into python-novaclient & nova.
Anthony Young2f140202011-09-26 13:02:40 -0700202git_clone $OPENSTACKX_REPO $OPENSTACKX_DIR $OPENSTACKX_BRANCH
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700203
Jesse Andrews30f68e92011-09-13 00:59:54 -0700204# Initialization
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700205# ==============
Jesse Andrews30f68e92011-09-13 00:59:54 -0700206
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700207
Jesse Andrews75a37652011-09-12 17:09:08 -0700208# setup our checkouts so they are installed into python path
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700209# allowing ``import nova`` or ``import glance.client``
Dean Troyer0017c8f2011-09-13 15:37:50 -0500210cd $NOVA_DIR; sudo python setup.py develop
Jesse Andrews18d350d2011-09-12 21:46:12 -0700211cd $NOVACLIENT_DIR; sudo python setup.py develop
212cd $KEYSTONE_DIR; sudo python setup.py develop
213cd $GLANCE_DIR; sudo python setup.py develop
Anthony Young2f140202011-09-26 13:02:40 -0700214cd $OPENSTACKX_DIR; sudo python setup.py develop
Jesse Andrews18d350d2011-09-12 21:46:12 -0700215cd $DASH_DIR/django-openstack; sudo python setup.py develop
216cd $DASH_DIR/openstack-dashboard; sudo python setup.py develop
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700217
Jesse Andrews6edd17f2011-09-15 22:19:42 -0700218# Add a useful screenrc. This isn't required to run openstack but is we do
root40a37002011-09-20 18:06:14 +0000219# it since we are going to run the services in screen for simple
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700220cp $FILES/screenrc ~/.screenrc
Jesse Andrews6f3baaf2011-09-12 11:59:38 -0700221
Jesse Andrews6edd17f2011-09-15 22:19:42 -0700222## TODO: update current user to allow sudo for all commands in files/sudo/*
Jesse Andrewsdfcd2002011-09-13 13:17:22 -0700223
Anthony Younga09ae2f2011-09-15 23:11:29 -0700224# Rabbit
225# ---------
226#
227if [[ "$ENABLED_SERVICES" =~ "rabbit" ]]; then
228 # Install and start rabbitmq-server
Anthony Young093eeb02011-09-15 23:17:44 -0700229 sudo apt-get install -y -q rabbitmq-server
Jesse Andrews53ed3872011-10-02 14:28:17 -0400230 # change the rabbit password since the default is "guest"
231 sudo rabbitmqctl change_password guest $RABBIT_PASSWORD
Anthony Younga09ae2f2011-09-15 23:11:29 -0700232fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700233
Jesse Andrews24859062011-09-15 21:28:23 -0700234# Mysql
235# ---------
236#
237if [[ "$ENABLED_SERVICES" =~ "mysql" ]]; then
Anthony Younga09ae2f2011-09-15 23:11:29 -0700238 # Install and start mysql-server
Anthony Young093eeb02011-09-15 23:17:44 -0700239 sudo apt-get -y -q install mysql-server
Jesse Andrews24859062011-09-15 21:28:23 -0700240 # Update the DB to give user ‘$MYSQL_USER’@’%’ full control of the all databases:
241 sudo mysql -uroot -p$MYSQL_PASS -e "GRANT ALL PRIVILEGES ON *.* TO '$MYSQL_USER'@'%' identified by '$MYSQL_PASS';"
242
243 # Edit /etc/mysql/my.cnf to change ‘bind-address’ from localhost (127.0.0.1) to any (0.0.0.0) and restart the mysql service:
244 sudo sed -i 's/127.0.0.1/0.0.0.0/g' /etc/mysql/my.cnf
245 sudo service mysql restart
246fi
247
248
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700249# Dashboard
250# ---------
251#
252# Setup the django application to serve via apache/wsgi
Jesse Andrews75a37652011-09-12 17:09:08 -0700253
Anthony Young70dc5e02011-09-15 16:52:43 -0700254if [[ "$ENABLED_SERVICES" =~ "dash" ]]; then
Jesse Andrews24859062011-09-15 21:28:23 -0700255
root40a37002011-09-20 18:06:14 +0000256 # Dash currently imports quantum even if you aren't using it. Instead
257 # of installing quantum we can create a simple module that will pass the
Jesse Andrews24859062011-09-15 21:28:23 -0700258 # initial imports
Anthony Young70dc5e02011-09-15 16:52:43 -0700259 sudo mkdir -p $DASH_DIR/openstack-dashboard/quantum || true
260 sudo touch $DASH_DIR/openstack-dashboard/quantum/__init__.py
261 sudo touch $DASH_DIR/openstack-dashboard/quantum/client.py
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700262
Anthony Young70dc5e02011-09-15 16:52:43 -0700263 cd $DASH_DIR/openstack-dashboard
root40a37002011-09-20 18:06:14 +0000264
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700265 sudo cp $FILES/dash_settings.py local/local_settings.py
Jake Dahn9337b332011-09-15 21:46:20 -0700266
Anthony Young70dc5e02011-09-15 16:52:43 -0700267 dashboard/manage.py syncdb
Jesse Andrews75a37652011-09-12 17:09:08 -0700268
Anthony Young70dc5e02011-09-15 16:52:43 -0700269 # create an empty directory that apache uses as docroot
270 sudo mkdir -p $DASH_DIR/.blackhole
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700271
Anthony Young70dc5e02011-09-15 16:52:43 -0700272 ## Configure apache's 000-default to run dashboard
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700273 sudo cp $FILES/000-default.template /etc/apache2/sites-enabled/000-default
Jesse Andrews8f3e28c2011-09-27 18:26:27 -0700274 sudo sed -e "s,%USER%,$USER,g" -i /etc/apache2/sites-enabled/000-default
Anthony Young70dc5e02011-09-15 16:52:43 -0700275 sudo sed -e "s,%DASH_DIR%,$DASH_DIR,g" -i /etc/apache2/sites-enabled/000-default
Anthony Young70dc5e02011-09-15 16:52:43 -0700276fi
Jesse Andrews75a37652011-09-12 17:09:08 -0700277
Anthony Young3859f732011-09-14 02:33:43 -0700278
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700279# Glance
280# ------
281
Anthony Young70dc5e02011-09-15 16:52:43 -0700282if [[ "$ENABLED_SERVICES" =~ "g-reg" ]]; then
Anthony Youngc8357622011-09-20 10:38:06 -0700283 GLANCE_IMAGE_DIR=$DEST/glance/images
Anthony Younga531b772011-09-20 09:59:54 -0700284 # Delete existing images
285 rm -rf $GLANCE_IMAGE_DIR
Jesse Andrews75a37652011-09-12 17:09:08 -0700286
Anthony Younga531b772011-09-20 09:59:54 -0700287 # Use local glance directories
288 mkdir -p $GLANCE_IMAGE_DIR
289
Anthony Young70dc5e02011-09-15 16:52:43 -0700290 # (re)create glance database
root40a37002011-09-20 18:06:14 +0000291 mysql -u$MYSQL_USER -p$MYSQL_PASS -e 'DROP DATABASE IF EXISTS glance;'
Anthony Young70dc5e02011-09-15 16:52:43 -0700292 mysql -u$MYSQL_USER -p$MYSQL_PASS -e 'CREATE DATABASE glance;'
293 # Copy over our glance-registry.conf
294 GLANCE_CONF=$GLANCE_DIR/etc/glance-registry.conf
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700295 cp $FILES/glance-registry.conf $GLANCE_CONF
Anthony Young70dc5e02011-09-15 16:52:43 -0700296 sudo sed -e "s,%SQL_CONN%,$BASE_SQL_CONN/glance,g" -i $GLANCE_CONF
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700297 sudo sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $GLANCE_CONF
Anthony Younga531b772011-09-20 09:59:54 -0700298 sudo sed -e "s,%DEST%,$DEST,g" -i $GLANCE_CONF
Anthony Youngf12d3ab2011-09-20 00:33:51 -0700299
300 GLANCE_API_CONF=$GLANCE_DIR/etc/glance-api.conf
301 cp $FILES/glance-api.conf $GLANCE_API_CONF
Anthony Younga531b772011-09-20 09:59:54 -0700302 sudo sed -e "s,%DEST%,$DEST,g" -i $GLANCE_API_CONF
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700303 sudo sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $GLANCE_API_CONF
Anthony Young70dc5e02011-09-15 16:52:43 -0700304fi
Jesse Andrews75a37652011-09-12 17:09:08 -0700305
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700306# Nova
307# ----
308
Jesse Andrews9f20f512011-10-02 09:18:03 -0700309sudo sed -e "s,999888777666,$SERVICE_TOKEN,g" -i $KEYSTONE_DIR/examples/paste/nova-api-paste.ini
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700310
Anthony Young70dc5e02011-09-15 16:52:43 -0700311if [[ "$ENABLED_SERVICES" =~ "n-cpu" ]]; then
Jesse Andrewsdfcd2002011-09-13 13:17:22 -0700312
root40a37002011-09-20 18:06:14 +0000313 # attempt to load modules: nbd (network block device - used to manage
314 # qcow images) and kvm (hardware based virtualization). If unable to
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700315 # load kvm, set the libvirt type to qemu.
Anthony Young70dc5e02011-09-15 16:52:43 -0700316 sudo modprobe nbd || true
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400317
318 if [[ "$LIBVIRT_TYPE" -eq "kvm" ]]; then
319 if [ ! -e /dev/kvm ]; then
320 LIBVIRT_TYPE=qemu
321 fi
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700322 fi
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400323
324 if [[ "$LIBVIRT_TYPE" -eq "lxc" ]]; then
Jesse Andrews8cfd8b62011-10-02 13:17:31 -0400325 sudo apt-get install lxc -y
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400326 sudo mkdir -p /cgroup
327 sudo mount none -t cgroup -o cpuacct,memory,devices,cpu,freezer,blkio /cgroup
328 if ! grep -q cgroup /etc/fstab; then
Jesse Andrewsc315ebf2011-10-02 13:25:33 -0400329 echo none /cgroup cgroup cpuacct,memory,devices,cpu,freezer,blkio 0 0 | sudo tee -a /etc/fstab
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400330 fi
331 fi
332
Jesse Andrewse30432f2011-09-16 14:54:48 -0700333 # User needs to be member of libvirtd group for nova-compute to use libvirt.
Anthony Young70dc5e02011-09-15 16:52:43 -0700334 sudo usermod -a -G libvirtd `whoami`
335 # if kvm wasn't running before we need to restart libvirt to enable it
336 sudo /etc/init.d/libvirt-bin restart
337
Anthony Young70dc5e02011-09-15 16:52:43 -0700338 # setup nova instance directory
339 mkdir -p $NOVA_DIR/instances
340
341 # if there is a partition labeled nova-instances use it (ext filesystems
342 # can be labeled via e2label)
343 ## FIXME: if already mounted this blows up...
344 if [ -L /dev/disk/by-label/nova-instances ]; then
345 sudo mount -L nova-instances $NOVA_DIR/instances
346 sudo chown -R `whoami` $NOVA_DIR/instances
347 fi
348
349 # Clean out the instances directory
350 rm -rf $NOVA_DIR/instances/*
Jesse Andrewsdfcd2002011-09-13 13:17:22 -0700351fi
352
Anthony Young70dc5e02011-09-15 16:52:43 -0700353if [[ "$ENABLED_SERVICES" =~ "n-net" ]]; then
354 # delete traces of nova networks from prior runs
Anthony Young09fde812011-09-20 02:23:54 -0700355 sudo killall dnsmasq || true
Anthony Young70dc5e02011-09-15 16:52:43 -0700356 rm -rf $NOVA_DIR/networks
357 mkdir -p $NOVA_DIR/networks
358fi
Jesse Andrews75a37652011-09-12 17:09:08 -0700359
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700360function add_nova_flag {
361 echo "$1" >> $NOVA_DIR/bin/nova.conf
362}
363
364# (re)create nova.conf
365rm -f $NOVA_DIR/bin/nova.conf
366add_nova_flag "--verbose"
367add_nova_flag "--nodaemon"
Jesse Andrews8ff5dbc2011-09-25 22:28:08 -0700368add_nova_flag "--scheduler_driver=$SCHEDULER"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700369add_nova_flag "--dhcpbridge_flagfile=$NOVA_DIR/bin/nova.conf"
370add_nova_flag "--network_manager=nova.network.manager.$NET_MAN"
371add_nova_flag "--my_ip=$HOST_IP"
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700372add_nova_flag "--public_interface=$PUBLIC_INTERFACE"
373add_nova_flag "--vlan_interface=$VLAN_INTERFACE"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700374add_nova_flag "--sql_connection=$BASE_SQL_CONN/nova"
375add_nova_flag "--libvirt_type=$LIBVIRT_TYPE"
Anthony Young2f140202011-09-26 13:02:40 -0700376add_nova_flag "--osapi_extensions_path=$OPENSTACKX_DIR/extensions"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700377add_nova_flag "--vncproxy_url=http://$HOST_IP:6080"
378add_nova_flag "--vncproxy_wwwroot=$NOVNC_DIR/"
379add_nova_flag "--api_paste_config=$KEYSTONE_DIR/examples/paste/nova-api-paste.ini"
380add_nova_flag "--image_service=nova.image.glance.GlanceImageService"
381add_nova_flag "--ec2_dmz_host=$EC2_DMZ_HOST"
382add_nova_flag "--rabbit_host=$RABBIT_HOST"
Jesse Andrews53ed3872011-10-02 14:28:17 -0400383add_nova_flag "--rabbit_password=$RABBIT_PASSWORD"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700384add_nova_flag "--glance_api_servers=$GLANCE_HOSTPORT"
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700385add_nova_flag "--flat_network_bridge=$FLAT_NETWORK_BRIDGE"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700386if [ -n "$FLAT_INTERFACE" ]; then
387 add_nova_flag "--flat_interface=$FLAT_INTERFACE"
388fi
389if [ -n "$MULTI_HOST" ]; then
390 add_nova_flag "--multi_host=$MULTI_HOST"
391fi
392
Anthony Younga0748002011-09-16 21:37:36 -0700393if [[ "$ENABLED_SERVICES" =~ "mysql" ]]; then
394 # (re)create nova database
root40a37002011-09-20 18:06:14 +0000395 mysql -u$MYSQL_USER -p$MYSQL_PASS -e 'DROP DATABASE IF EXISTS nova;'
Anthony Younga0748002011-09-16 21:37:36 -0700396 mysql -u$MYSQL_USER -p$MYSQL_PASS -e 'CREATE DATABASE nova;'
397 $NOVA_DIR/bin/nova-manage db sync
398
399 # create a small network
termie197d53d2011-09-28 17:18:23 -0700400 $NOVA_DIR/bin/nova-manage network create private $FIXED_RANGE 1 $FIXED_NETWORK_SIZE
Anthony Younga0748002011-09-16 21:37:36 -0700401
402 # create some floating ips
403 $NOVA_DIR/bin/nova-manage floating create $FLOATING_RANGE
404fi
405
406
Jesse Andrewse8d9cd82011-09-13 15:16:26 -0700407# Keystone
408# --------
409
Anthony Young70dc5e02011-09-15 16:52:43 -0700410if [[ "$ENABLED_SERVICES" =~ "key" ]]; then
411 # (re)create keystone database
root40a37002011-09-20 18:06:14 +0000412 mysql -u$MYSQL_USER -p$MYSQL_PASS -e 'DROP DATABASE IF EXISTS keystone;'
Anthony Young70dc5e02011-09-15 16:52:43 -0700413 mysql -u$MYSQL_USER -p$MYSQL_PASS -e 'CREATE DATABASE keystone;'
Jesse Andrews75a37652011-09-12 17:09:08 -0700414
Anthony Young70dc5e02011-09-15 16:52:43 -0700415 # FIXME (anthony) keystone should use keystone.conf.example
416 KEYSTONE_CONF=$KEYSTONE_DIR/etc/keystone.conf
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700417 cp $FILES/keystone.conf $KEYSTONE_CONF
Anthony Young70dc5e02011-09-15 16:52:43 -0700418 sudo sed -e "s,%SQL_CONN%,$BASE_SQL_CONN/keystone,g" -i $KEYSTONE_CONF
Anthony Younge8fed482011-09-26 19:50:43 -0700419 sudo sed -e "s,%DEST%,$DEST,g" -i $KEYSTONE_CONF
Anthony Young3a093122011-09-13 19:01:45 +0000420
Anthony Youngec21d932011-09-16 16:05:55 -0700421 KEYSTONE_DATA=$KEYSTONE_DIR/bin/keystone_data.sh
422 cp $FILES/keystone_data.sh $KEYSTONE_DATA
423 sudo sed -e "s,%HOST_IP%,$HOST_IP,g" -i $KEYSTONE_DATA
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700424 sudo sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $KEYSTONE_DATA
Jesse Andrews89358af2011-10-02 14:11:17 -0400425 sudo sed -e "s,%ADMIN_PASSWORD%,$ADMIN_PASSWORD,g" -i $KEYSTONE_DATA
Anthony Young70dc5e02011-09-15 16:52:43 -0700426 # initialize keystone with default users/endpoints
Anthony Youngec21d932011-09-16 16:05:55 -0700427 BIN_DIR=$KEYSTONE_DIR/bin bash $KEYSTONE_DATA
Anthony Young70dc5e02011-09-15 16:52:43 -0700428fi
Jesse Andrews75a37652011-09-12 17:09:08 -0700429
Jesse Andrews75a37652011-09-12 17:09:08 -0700430
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700431# Launch Services
432# ===============
Jesse Andrews30f68e92011-09-13 00:59:54 -0700433
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700434# nova api crashes if we start it with a regular screen command,
435# so send the start command by forcing text into the window.
Jesse Andrewsdfcd2002011-09-13 13:17:22 -0700436# Only run the services specified in ``ENABLED_SERVICES``
437
Jesse Andrews1f717602011-09-16 15:18:53 -0700438# our screen helper to launch a service in a hidden named screen
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700439function screen_it {
Jesse Andrews1f717602011-09-16 15:18:53 -0700440 NL=`echo -ne '\015'`
Anthony Young292e46d2011-09-13 11:28:56 -0700441 if [[ "$ENABLED_SERVICES" =~ "$1" ]]; then
442 screen -S nova -X screen -t $1
443 screen -S nova -p $1 -X stuff "$2$NL"
444 fi
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700445}
446
Jesse Andrewsa16e5e92011-09-16 16:30:55 -0700447# create a new named screen to run processes in
448screen -d -m -S nova -t nova
449sleep 1
450
Anthony Youngd000b222011-09-19 14:46:53 -0700451if [[ "$ENABLED_SERVICES" =~ "g-reg" ]]; then
452 screen_it g-reg "cd $GLANCE_DIR; bin/glance-registry --config-file=etc/glance-registry.conf"
453fi
454
455if [[ "$ENABLED_SERVICES" =~ "g-api" ]]; then
456 screen_it g-api "cd $GLANCE_DIR; bin/glance-api --config-file=etc/glance-api.conf"
457 while ! wget -q -O- http://$GLANCE_HOSTPORT; do
458 echo "Waiting for g-api ($GLANCE_HOSTPORT) to start..."
459 sleep 1
460 done
461fi
462
463if [[ "$ENABLED_SERVICES" =~ "key" ]]; then
Anthony Youngf33796e2011-09-22 00:14:12 -0700464 screen_it key "cd $KEYSTONE_DIR && $KEYSTONE_DIR/bin/keystone --config-file $KEYSTONE_CONF -d"
Anthony Youngd000b222011-09-19 14:46:53 -0700465 while ! wget -q -O- http://127.0.0.1:5000; do
466 echo "Waiting for keystone to start..."
467 sleep 1
468 done
469fi
470
471if [[ "$ENABLED_SERVICES" =~ "n-api" ]]; then
Anthony Young9bf3d762011-09-20 09:51:16 -0700472 screen_it n-api "cd $NOVA_DIR && $NOVA_DIR/bin/nova-api"
Anthony Youngd000b222011-09-19 14:46:53 -0700473 while ! wget -q -O- http://127.0.0.1:8774; do
474 echo "Waiting for nova-api to start..."
475 sleep 1
476 done
477fi
root40a37002011-09-20 18:06:14 +0000478# Launching nova-compute should be as simple as running ``nova-compute`` but
479# have to do a little more than that in our script. Since we add the group
Jesse Andrews1f717602011-09-16 15:18:53 -0700480# ``libvirtd`` to our user in this script, when nova-compute is run it is
root40a37002011-09-20 18:06:14 +0000481# within the context of our original shell (so our groups won't be updated).
Jesse Andrews1f717602011-09-16 15:18:53 -0700482# We can send the command nova-compute to the ``newgrp`` command to execute
483# in a specific context.
Anthony Young9bf3d762011-09-20 09:51:16 -0700484screen_it n-cpu "cd $NOVA_DIR && echo $NOVA_DIR/bin/nova-compute | newgrp libvirtd"
485screen_it n-net "cd $NOVA_DIR && $NOVA_DIR/bin/nova-network"
486screen_it n-sch "cd $NOVA_DIR && $NOVA_DIR/bin/nova-scheduler"
Anthony Young527e3412011-09-27 15:05:37 -0700487screen_it n-vnc "cd $NOVNC_DIR && ./utils/nova-wsproxy.py 6080 --web ."
Anthony Young9bf3d762011-09-20 09:51:16 -0700488screen_it dash "cd $DASH_DIR && sudo /etc/init.d/apache2 restart; sudo tail -f /var/log/apache2/error.log"
Jesse Andrews75a37652011-09-12 17:09:08 -0700489
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700490# Install Images
491# ==============
Jesse Andrewse49b8bd2011-09-12 18:08:04 -0700492
Anthony Young70dc5e02011-09-15 16:52:43 -0700493if [[ "$ENABLED_SERVICES" =~ "g-reg" ]]; then
root40a37002011-09-20 18:06:14 +0000494 # Downloads a tty image (ami/aki/ari style), then extracts it. Upon extraction
Anthony Young70dc5e02011-09-15 16:52:43 -0700495 # we upload to glance with the glance cli tool.
Jesse Andrews543d7d42011-09-16 14:16:36 -0700496 if [ ! -f $FILES/tty.tgz ]; then
497 wget -c http://images.ansolabs.com/tty.tgz -O $FILES/tty.tgz
Anthony Young70dc5e02011-09-15 16:52:43 -0700498 fi
Jesse Andrewse49b8bd2011-09-12 18:08:04 -0700499
Anthony Young70dc5e02011-09-15 16:52:43 -0700500 # extract ami-tty/image, aki-tty/image & ari-tty/image
Jesse Andrews543d7d42011-09-16 14:16:36 -0700501 mkdir -p $FILES/images
Jesse Andrews74e965f2011-09-16 14:19:46 -0700502 tar -zxf $FILES/tty.tgz -C $FILES/images
Anthony Young70dc5e02011-09-15 16:52:43 -0700503
root40a37002011-09-20 18:06:14 +0000504 # add images to glance
Anthony Young70dc5e02011-09-15 16:52:43 -0700505 # FIXME: kernel/ramdisk is hardcoded - use return result from add
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700506 glance add -A $SERVICE_TOKEN name="tty-kernel" is_public=true container_format=aki disk_format=aki < $FILES/images/aki-tty/image
507 glance add -A $SERVICE_TOKEN name="tty-ramdisk" is_public=true container_format=ari disk_format=ari < $FILES/images/ari-tty/image
508 glance add -A $SERVICE_TOKEN name="tty" is_public=true container_format=ami disk_format=ami kernel_id=1 ramdisk_id=2 < $FILES/images/ami-tty/image
Jesse Andrewse49b8bd2011-09-12 18:08:04 -0700509fi
Jesse Andrews24859062011-09-15 21:28:23 -0700510
511# Using the cloud
512# ===============
513
514# If you installed the dashboard on this server, then you should be able
root40a37002011-09-20 18:06:14 +0000515# to access the site using your browser.
Jesse Andrews24859062011-09-15 21:28:23 -0700516if [[ "$ENABLED_SERVICES" =~ "dash" ]]; then
517 echo "dashboard is now available at http://$HOST_IP/"
518fi
519
520# If keystone is present, you can point nova cli to this server
521if [[ "$ENABLED_SERVICES" =~ "key" ]]; then
522 echo "keystone is serving at http://$HOST_IP:5000/v2.0/"
523 echo "examples on using novaclient command line is in exercise.sh"
Jesse Andrews89358af2011-10-02 14:11:17 -0400524 echo "the default users are: admin and demo"
525 echo "the password: $ADMIN_PASSWORD"
Jesse Andrews24859062011-09-15 21:28:23 -0700526fi
termie523c4052011-09-28 19:49:40 -0500527
528# Summary
529# =======
530
531# End our timer and give a timing summary
532END_TIME=`python -c "import time; print time.time()"`
533ELAPSED=`python -c "print $END_TIME - $START_TIME"`
534echo "stack.sh completed in $ELAPSED seconds."