blob: 083c488fc1cacd75dfa7dccaf2f35e1a85aaacad [file] [log] [blame]
Jesse Andrewsba23cc72011-09-11 03:22:13 -07001#!/usr/bin/env bash
2
Dean Troyerc6c1d432012-03-27 20:59:22 -05003# ``stack.sh`` is an opinionated OpenStack developer installation. It
Chris Dente9a47502015-06-27 11:29:09 +00004# installs and configures various combinations of **Cinder**, **Glance**,
5# **Heat**, **Horizon**, **Keystone**, **Nova**, **Neutron**, and **Swift**
Jesse Andrewsba23cc72011-09-11 03:22:13 -07006
Brett Campbell27f29442014-02-19 18:23:16 -08007# This script's options can be changed by setting appropriate environment
8# variables. You can configure things like which git repositories to use,
9# services to enable, OS images to use, etc. Default values are located in the
10# ``stackrc`` file. If you are crafty you can run the script on multiple nodes
11# using shared settings for common resources (eg., mysql or rabbitmq) and build
12# a multi-node developer install.
Jesse Andrews782b9912011-10-02 16:53:21 -040013
Dean Troyer4a43b7b2012-08-28 17:43:40 -050014# To keep this script simple we assume you are running on a recent **Ubuntu**
Martin Falatic5bee0cd2015-01-23 14:10:33 -080015# (14.04 Trusty or newer), **Fedora** (F20 or newer), or **CentOS/RHEL**
16# (7 or newer) machine. (It may work on other platforms but support for those
17# platforms is left to those who added them to DevStack.) It should work in
Dean Troyerdc97cb72015-03-28 08:20:50 -050018# a VM or physical server. Additionally, we maintain a list of ``deb`` and
Martin Falatic5bee0cd2015-01-23 14:10:33 -080019# ``rpm`` dependencies and other configuration files in this repo.
Jesse Andrews24859062011-09-15 21:28:23 -070020
Jesse Andrews0e7e8972011-10-02 16:36:54 -040021# Learn more and get the most recent version at http://devstack.org
Jesse Andrews6edd17f2011-09-15 22:19:42 -070022
Ian Wienandf0247ed2015-07-09 15:49:16 +100023# Print the commands being run so that we can see the command that triggers
24# an error. It is also useful for following along as the install occurs.
25set -o xtrace
26
Jason Dunsmore4e971112013-04-10 10:17:40 -050027# Make sure custom grep options don't get in the way
28unset GREP_OPTIONS
29
Brett Campbell27f29442014-02-19 18:23:16 -080030# Make sure umask is sane
31umask 022
32
Angus Lees7df9d1b2014-07-21 15:35:34 +100033# Not all distros have sbin in PATH for regular users.
34PATH=$PATH:/usr/local/sbin:/usr/sbin:/sbin
35
Dean Troyerdc97cb72015-03-28 08:20:50 -050036# Keep track of the DevStack directory
Jesse Andrews51fb22e2011-10-19 09:24:17 -070037TOP_DIR=$(cd $(dirname "$0") && pwd)
38
Sean Dague53753292014-12-04 19:38:15 -050039# Check for uninitialized variables, a big cause of bugs
40NOUNSET=${NOUNSET:-}
41if [[ -n "$NOUNSET" ]]; then
42 set -o nounset
43fi
44
Dean Troyerdc97cb72015-03-28 08:20:50 -050045
46# Configuration
47# =============
48
Dean Troyerd3bf9bd2014-07-25 10:20:19 -050049# Sanity Checks
50# -------------
51
52# Clean up last environment var cache
53if [[ -r $TOP_DIR/.stackenv ]]; then
54 rm $TOP_DIR/.stackenv
55fi
56
Dean Troyerdc97cb72015-03-28 08:20:50 -050057# ``stack.sh`` keeps the list of ``deb`` and ``rpm`` dependencies, config
Dean Troyerd3bf9bd2014-07-25 10:20:19 -050058# templates and other useful files in the ``files`` subdirectory
59FILES=$TOP_DIR/files
60if [ ! -d $FILES ]; then
61 die $LINENO "missing devstack/files"
62fi
63
64# ``stack.sh`` keeps function libraries here
Dean Troyerdc97cb72015-03-28 08:20:50 -050065# Make sure ``$TOP_DIR/inc`` directory is present
66if [ ! -d $TOP_DIR/inc ]; then
67 die $LINENO "missing devstack/inc"
68fi
69
70# ``stack.sh`` keeps project libraries here
Dean Troyerd3bf9bd2014-07-25 10:20:19 -050071# Make sure ``$TOP_DIR/lib`` directory is present
72if [ ! -d $TOP_DIR/lib ]; then
73 die $LINENO "missing devstack/lib"
74fi
75
Dean Troyerdc97cb72015-03-28 08:20:50 -050076# Check if run in POSIX shell
77if [[ "${POSIXLY_CORRECT}" == "y" ]]; then
Ian Wienand1afc28b2015-11-27 14:15:56 +110078 set +o xtrace
Dean Troyerdc97cb72015-03-28 08:20:50 -050079 echo "You are running POSIX compatibility mode, DevStack requires bash 4.2 or newer."
80 exit 1
81fi
82
Dean Troyerd3bf9bd2014-07-25 10:20:19 -050083# OpenStack is designed to be run as a non-root user; Horizon will fail to run
84# as **root** since Apache will not serve content from **root** user).
85# ``stack.sh`` must not be run as **root**. It aborts and suggests one course of
86# action to create a suitable user account.
87
88if [[ $EUID -eq 0 ]]; then
Ian Wienand1afc28b2015-11-27 14:15:56 +110089 set +o xtrace
90 echo "DevStack should be run as a user with sudo permissions, "
91 echo "not root."
92 echo "A \"stack\" user configured correctly can be created with:"
93 echo " $TOP_DIR/tools/create-stack-user.sh"
Dean Troyerd3bf9bd2014-07-25 10:20:19 -050094 exit 1
95fi
96
Sean Dague90dd2622015-11-10 12:22:03 -050097# OpenStack is designed to run at a system level, with system level
98# installation of python packages. It does not support running under a
99# virtual env, and will fail in really odd ways if you do this. Make
100# this explicit as it has come up on the mailing list.
101if [[ -n "$VIRTUAL_ENV" ]]; then
Ian Wienand1afc28b2015-11-27 14:15:56 +1100102 set +o xtrace
Sean Dague90dd2622015-11-10 12:22:03 -0500103 echo "You appear to be running under a python virtualenv."
Jordan Pittierc1750402015-11-12 11:03:20 +0100104 echo "DevStack does not support this, as we may break the"
Sean Dague90dd2622015-11-10 12:22:03 -0500105 echo "virtualenv you are currently in by modifying "
106 echo "external system-level components the virtualenv relies on."
Jordan Pittierc1750402015-11-12 11:03:20 +0100107 echo "We recommend you use a separate virtual-machine if "
Sean Dague90dd2622015-11-10 12:22:03 -0500108 echo "you are worried about DevStack taking over your system."
109 exit 1
110fi
111
Sean Dague56037e92015-10-08 12:27:07 -0400112# Provide a safety switch for devstack. If you do a lot of devstack,
113# on a lot of different environments, you sometimes run it on the
114# wrong box. This makes there be a way to prevent that.
115if [[ -e $HOME/.no-devstack ]]; then
Ian Wienand1afc28b2015-11-27 14:15:56 +1100116 set +o xtrace
Sean Dague56037e92015-10-08 12:27:07 -0400117 echo "You've marked this host as a no-devstack host, to save yourself from"
118 echo "running devstack accidentally. If this is in error, please remove the"
119 echo "~/.no-devstack file"
120 exit 1
121fi
Attila Fazekasd9de1192015-03-26 09:25:02 +0100122
Dean Troyerd3bf9bd2014-07-25 10:20:19 -0500123# Prepare the environment
124# -----------------------
125
Sean Dague53753292014-12-04 19:38:15 -0500126# Initialize variables:
127LAST_SPINNER_PID=""
128
Dean Troyer6563a3c2012-01-31 12:11:56 -0600129# Import common functions
Dean Troyerc6c1d432012-03-27 20:59:22 -0500130source $TOP_DIR/functions
Dean Troyer6563a3c2012-01-31 12:11:56 -0600131
Dean Troyer893e6632013-09-13 15:05:51 -0500132# Import config functions
Dean Troyerbf2ad702015-03-09 15:16:10 -0500133source $TOP_DIR/inc/meta-config
Dean Troyer893e6632013-09-13 15:05:51 -0500134
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600135# Import 'public' stack.sh functions
136source $TOP_DIR/lib/stack
137
Dean Troyerc6c1d432012-03-27 20:59:22 -0500138# Determine what system we are running on. This provides ``os_VENDOR``,
139# ``os_RELEASE``, ``os_UPDATE``, ``os_PACKAGE``, ``os_CODENAME``
Dean Troyera9e0a482012-07-09 14:07:23 -0500140# and ``DISTRO``
141GetDistro
Jesse Andrews6edd17f2011-09-15 22:19:42 -0700142
Dean Troyerdc97cb72015-03-28 08:20:50 -0500143
Dean Troyer48352ee2012-12-12 12:50:38 -0600144# Global Settings
Dean Troyer0e8dced2014-07-25 10:33:21 -0500145# ---------------
Scott Moserf9da5082011-10-07 21:28:00 -0400146
Dean Troyer893e6632013-09-13 15:05:51 -0500147# Check for a ``localrc`` section embedded in ``local.conf`` and extract if
148# ``localrc`` does not already exist
149
150# Phase: local
151rm -f $TOP_DIR/.localrc.auto
152if [[ -r $TOP_DIR/local.conf ]]; then
153 LRC=$(get_meta_section_files $TOP_DIR/local.conf local)
154 for lfile in $LRC; do
155 if [[ "$lfile" == "localrc" ]]; then
156 if [[ -r $TOP_DIR/localrc ]]; then
157 warn $LINENO "localrc and local.conf:[[local]] both exist, using localrc"
158 else
Dean Troyerb8dd27b2013-10-17 12:03:55 -0500159 echo "# Generated file, do not edit" >$TOP_DIR/.localrc.auto
Dean Troyer893e6632013-09-13 15:05:51 -0500160 get_meta_section $TOP_DIR/local.conf local $lfile >>$TOP_DIR/.localrc.auto
161 fi
162 fi
163 done
164fi
165
Dean Troyer1a6d4492013-06-03 16:47:36 -0500166# ``stack.sh`` is customizable by setting environment variables. Override a
167# default setting via export::
Scott Moserf9da5082011-10-07 21:28:00 -0400168#
Terry Wilson428af5a2012-11-01 16:12:39 -0400169# export DATABASE_PASSWORD=anothersecret
Scott Moserf9da5082011-10-07 21:28:00 -0400170# ./stack.sh
171#
Dean Troyer1a6d4492013-06-03 16:47:36 -0500172# or by setting the variable on the command line::
Scott Moserf9da5082011-10-07 21:28:00 -0400173#
Dean Troyer1a6d4492013-06-03 16:47:36 -0500174# DATABASE_PASSWORD=simple ./stack.sh
175#
Dean Troyerdc97cb72015-03-28 08:20:50 -0500176# Persistent variables can be placed in a ``local.conf`` file::
Scott Moserf9da5082011-10-07 21:28:00 -0400177#
Dean Troyerdc97cb72015-03-28 08:20:50 -0500178# [[local|localrc]]
Terry Wilson428af5a2012-11-01 16:12:39 -0400179# DATABASE_PASSWORD=anothersecret
180# DATABASE_USER=hellaroot
Scott Moserf9da5082011-10-07 21:28:00 -0400181#
182# We try to have sensible defaults, so you should be able to run ``./stack.sh``
Dean Troyerdc97cb72015-03-28 08:20:50 -0500183# in most cases. ``local.conf`` is not distributed with DevStack and will never
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500184# be overwritten by a DevStack update.
Scott Moserf9da5082011-10-07 21:28:00 -0400185#
Dean Troyerdf0972c2012-03-07 17:31:03 -0600186# DevStack distributes ``stackrc`` which contains locations for the OpenStack
Dean Troyercc6b4432013-04-08 15:38:03 -0500187# repositories, branches to configure, and other configuration defaults.
Dean Troyerdc97cb72015-03-28 08:20:50 -0500188# ``stackrc`` sources the ``localrc`` section of ``local.conf`` to allow you to
189# safely override those settings.
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500190
Dean Troyerbbafb1b2012-06-11 16:51:39 -0500191if [[ ! -r $TOP_DIR/stackrc ]]; then
Dean Troyer14fd9792014-07-25 10:34:11 -0500192 die $LINENO "missing $TOP_DIR/stackrc - did you grab more than just stack.sh?"
Dean Troyerbbafb1b2012-06-11 16:51:39 -0500193fi
194source $TOP_DIR/stackrc
Dean Troyerdf0972c2012-03-07 17:31:03 -0600195
Ian Wienandc973e6c2014-11-05 09:52:27 +1100196# Warn users who aren't on an explicitly supported distro, but allow them to
197# override check and attempt installation with ``FORCE=yes ./stack``
Sean Daguec18b4a42015-11-18 10:02:31 -0500198if [[ ! ${DISTRO} =~ (trusty|vivid|wily|7.0|wheezy|sid|testing|jessie|f21|f22|f23|rhel7) ]]; then
Ian Wienandc973e6c2014-11-05 09:52:27 +1100199 echo "WARNING: this script has not been tested on $DISTRO"
200 if [[ "$FORCE" != "yes" ]]; then
201 die $LINENO "If you wish to run this script anyway run with FORCE=yes"
202 fi
203fi
204
Shuichiro MAKIGAKI3710eec2014-08-28 19:07:09 +0900205# Check to see if we are already running DevStack
206# Note that this may fail if USE_SCREEN=False
207if type -p screen > /dev/null && screen -ls | egrep -q "[0-9]\.$SCREEN_NAME"; then
208 echo "You are already running a stack.sh session."
209 echo "To rejoin this session type 'screen -x stack'."
210 echo "To destroy this session, type './unstack.sh'."
211 exit 1
212fi
213
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500214
Dean Troyer48352ee2012-12-12 12:50:38 -0600215# Local Settings
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500216# --------------
217
Dean Troyer48352ee2012-12-12 12:50:38 -0600218# Make sure the proxy config is visible to sub-processes
219export_proxy_variables
Scott Moserf9da5082011-10-07 21:28:00 -0400220
Dean Troyerdc97cb72015-03-28 08:20:50 -0500221# Remove services which were negated in ``ENABLED_SERVICES``
Joe Gordon6fd28112012-11-13 16:55:41 -0800222# using the "-" prefix (e.g., "-rabbit") instead of
Doug Hellmannf04178f2012-07-05 17:10:03 -0400223# calling disable_service().
224disable_negated_services
Chmouel Boudjnahc4cd4142012-06-27 11:01:40 +0200225
Dean Troyera79617c2014-04-13 18:16:54 -0500226
Dean Troyerd3bf9bd2014-07-25 10:20:19 -0500227# Configure sudo
228# --------------
Dean Troyer9122e7b2011-10-17 14:07:11 -0500229
Dean Troyerdc97cb72015-03-28 08:20:50 -0500230# We're not as **root** so make sure ``sudo`` is available
Dean Troyer23f69d82013-10-04 12:35:24 -0500231is_package_installed sudo || install_package sudo
232
233# UEC images ``/etc/sudoers`` does not have a ``#includedir``, add one
234sudo grep -q "^#includedir.*/etc/sudoers.d" /etc/sudoers ||
235 echo "#includedir /etc/sudoers.d" | sudo tee -a /etc/sudoers
236
Sean Dagueb0160d02015-06-23 12:53:51 -0400237# Conditionally setup detailed logging for sudo
238if [[ -n "$LOG_SUDO" ]]; then
239 TEMPFILE=`mktemp`
240 echo "Defaults log_output" > $TEMPFILE
241 chmod 0440 $TEMPFILE
242 sudo chown root:root $TEMPFILE
243 sudo mv $TEMPFILE /etc/sudoers.d/00_logging
244fi
245
Dean Troyerdc97cb72015-03-28 08:20:50 -0500246# Set up DevStack sudoers
Dean Troyer23f69d82013-10-04 12:35:24 -0500247TEMPFILE=`mktemp`
248echo "$STACK_USER ALL=(root) NOPASSWD:ALL" >$TEMPFILE
Dean Troyerdc97cb72015-03-28 08:20:50 -0500249# Some binaries might be under ``/sbin`` or ``/usr/sbin``, so make sure sudo will
250# see them by forcing ``PATH``
Dean Troyer23f69d82013-10-04 12:35:24 -0500251echo "Defaults:$STACK_USER secure_path=/sbin:/usr/sbin:/usr/bin:/bin:/usr/local/sbin:/usr/local/bin" >> $TEMPFILE
Adam Gandelmanea2fcb52014-03-17 16:37:56 -0700252echo "Defaults:$STACK_USER !requiretty" >> $TEMPFILE
Dean Troyer23f69d82013-10-04 12:35:24 -0500253chmod 0440 $TEMPFILE
254sudo chown root:root $TEMPFILE
255sudo mv $TEMPFILE /etc/sudoers.d/50_stack_sh
256
Dean Troyer0e8dced2014-07-25 10:33:21 -0500257
258# Configure Distro Repositories
259# -----------------------------
Ian Wienand531aeb72014-02-28 11:24:29 +1100260
Dean Troyerdc97cb72015-03-28 08:20:50 -0500261# For Debian/Ubuntu make apt attempt to retry network ops on it's own
Sean Daguee83f7782014-06-23 08:11:05 -0400262if is_ubuntu; then
Chmouel Boudjnah9246d962014-06-30 12:52:51 +0000263 echo 'APT::Acquire::Retries "20";' | sudo tee /etc/apt/apt.conf.d/80retry >/dev/null
Sean Daguee83f7782014-06-23 08:11:05 -0400264fi
265
Ian Wienand531aeb72014-02-28 11:24:29 +1100266# Some distros need to add repos beyond the defaults provided by the vendor
267# to pick up required packages.
268
Attila Fazekas1f316be2015-01-26 16:39:57 +0100269if is_fedora && [[ $DISTRO == "rhel7" ]]; then
Attila Fazekas6d227a42014-04-09 14:42:42 +0200270 # RHEL requires EPEL for many Open Stack dependencies
Ian Wienand3682b6d2014-10-08 15:37:23 +1100271
Dean Troyerdc97cb72015-03-28 08:20:50 -0500272 # NOTE: We always remove and install latest -- some environments
Ian Wienanded077b22014-10-22 11:35:29 +1100273 # use snapshot images, and if EPEL version updates they break
274 # unless we update them to latest version.
275 if sudo yum repolist enabled epel | grep -q 'epel'; then
276 uninstall_package epel-release || true
277 fi
278
279 # This trick installs the latest epel-release from a bootstrap
280 # repo, then removes itself (as epel-release installed the
281 # "real" repo).
282 #
Dean Troyerdc97cb72015-03-28 08:20:50 -0500283 # You would think that rather than this, you could use
Ian Wienanded077b22014-10-22 11:35:29 +1100284 # $releasever directly in .repo file we create below. However
285 # RHEL gives a $releasever of "6Server" which breaks the path;
286 # see https://bugzilla.redhat.com/show_bug.cgi?id=1150759
Ian Wienanded077b22014-10-22 11:35:29 +1100287 cat <<EOF | sudo tee /etc/yum.repos.d/epel-bootstrap.repo
288[epel-bootstrap]
Ian Wienand3682b6d2014-10-08 15:37:23 +1100289name=Bootstrap EPEL
Attila Fazekas1f316be2015-01-26 16:39:57 +0100290mirrorlist=http://mirrors.fedoraproject.org/mirrorlist?repo=epel-7&arch=\$basearch
Ian Wienand3682b6d2014-10-08 15:37:23 +1100291failovermethod=priority
292enabled=0
293gpgcheck=0
294EOF
Noboru Iwamatsua67ef002015-02-27 13:34:12 +0900295 # Enable a bootstrap repo. It is removed after finishing
296 # the epel-release installation.
Matt Riedemann2f63da92015-06-21 09:02:59 -0700297 is_package_installed yum-utils || install_package yum-utils
Noboru Iwamatsua67ef002015-02-27 13:34:12 +0900298 sudo yum-config-manager --enable epel-bootstrap
299 yum_install epel-release || \
Ian Wienanded077b22014-10-22 11:35:29 +1100300 die $LINENO "Error installing EPEL repo, cannot continue"
Dean Troyerdc97cb72015-03-28 08:20:50 -0500301 # EPEL rpm has installed it's version
Ian Wienanded077b22014-10-22 11:35:29 +1100302 sudo rm -f /etc/yum.repos.d/epel-bootstrap.repo
Ian Wienand531aeb72014-02-28 11:24:29 +1100303
304 # ... and also optional to be enabled
Attila Fazekas1f316be2015-01-26 16:39:57 +0100305 sudo yum-config-manager --enable rhel-7-server-optional-rpms
Zhang Jinnanfc994262014-12-14 19:19:53 -0500306
Ian Wienand1eca5082015-09-25 13:28:58 +1000307 sudo yum install -y https://rdoproject.org/repos/rdo-release.rpm
Zhang Jinnanfc994262014-12-14 19:19:53 -0500308
Wiekus Beukesec47bc12015-03-19 08:20:38 -0700309 if is_oraclelinux; then
310 sudo yum-config-manager --enable ol7_optional_latest ol7_addons ol7_MySQL56
311 fi
312
Ian Wienand531aeb72014-02-28 11:24:29 +1100313fi
314
Dean Troyer0e8dced2014-07-25 10:33:21 -0500315
316# Configure Target Directories
317# ----------------------------
318
319# Destination path for installation ``DEST``
320DEST=${DEST:-/opt/stack}
Dean Troyer23f69d82013-10-04 12:35:24 -0500321
Dean Troyere26232b2012-06-27 17:55:15 -0500322# Create the destination directory and ensure it is writable by the user
Bob Ball376b6312013-07-29 13:10:25 +0100323# and read/executable by everybody for daemons (e.g. apache run for horizon)
Dean Troyere26232b2012-06-27 17:55:15 -0500324sudo mkdir -p $DEST
Doug Hellmanne7002672013-09-05 08:10:07 -0400325safe_chown -R $STACK_USER $DEST
326safe_chmod 0755 $DEST
Dean Troyere26232b2012-06-27 17:55:15 -0500327
Dean Troyer0e8dced2014-07-25 10:33:21 -0500328# Destination path for service data
329DATA_DIR=${DATA_DIR:-${DEST}/data}
330sudo mkdir -p $DATA_DIR
331safe_chown -R $STACK_USER $DATA_DIR
332
333# Configure proper hostname
Ben Nemec3ee52c82013-12-12 19:26:12 +0000334# Certain services such as rabbitmq require that the local hostname resolves
335# correctly. Make sure it exists in /etc/hosts so that is always true.
336LOCAL_HOSTNAME=`hostname -s`
337if [ -z "`grep ^127.0.0.1 /etc/hosts | grep $LOCAL_HOSTNAME`" ]; then
338 sudo sed -i "s/\(^127.0.0.1.*\)/\1 $LOCAL_HOSTNAME/" /etc/hosts
339fi
340
Attila Fazekasadcf40d2015-11-05 09:47:38 +0100341# Ensure python is installed
342# --------------------------
343is_package_installed python || install_package python
344
Ian Wienand531aeb72014-02-28 11:24:29 +1100345
Dean Troyerffd17682014-08-02 16:07:03 -0500346# Configure Logging
347# -----------------
348
349# Set up logging level
Sean Dague53753292014-12-04 19:38:15 -0500350VERBOSE=$(trueorfalse True VERBOSE)
Dean Troyerffd17682014-08-02 16:07:03 -0500351
352# Draw a spinner so the user knows something is happening
353function spinner {
354 local delay=0.75
355 local spinstr='/-\|'
356 printf "..." >&3
357 while [ true ]; do
358 local temp=${spinstr#?}
359 printf "[%c]" "$spinstr" >&3
360 local spinstr=$temp${spinstr%"$temp"}
361 sleep $delay
362 printf "\b\b\b" >&3
363 done
364}
365
366function kill_spinner {
367 if [ ! -z "$LAST_SPINNER_PID" ]; then
368 kill >/dev/null 2>&1 $LAST_SPINNER_PID
369 printf "\b\b\bdone\n" >&3
370 fi
371}
372
373# Echo text to the log file, summary log file and stdout
374# echo_summary "something to say"
375function echo_summary {
376 if [[ -t 3 && "$VERBOSE" != "True" ]]; then
377 kill_spinner
378 echo -n -e $@ >&6
379 spinner &
380 LAST_SPINNER_PID=$!
381 else
382 echo -e $@ >&6
383 fi
384}
385
386# Echo text only to stdout, no log files
387# echo_nolog "something not for the logs"
388function echo_nolog {
389 echo $@ >&3
390}
391
Dean Troyerffd17682014-08-02 16:07:03 -0500392# Set up logging for ``stack.sh``
393# Set ``LOGFILE`` to turn on logging
394# Append '.xxxxxxxx' to the given name to maintain history
395# where 'xxxxxxxx' is a representation of the date the file was created
396TIMESTAMP_FORMAT=${TIMESTAMP_FORMAT:-"%F-%H%M%S"}
Dean Troyerdde41d02014-12-09 17:47:57 -0600397LOGDAYS=${LOGDAYS:-7}
398CURRENT_LOG_TIME=$(date "+$TIMESTAMP_FORMAT")
Dean Troyerffd17682014-08-02 16:07:03 -0500399
Dean Troyerb43b3592015-01-29 12:05:43 -0600400if [[ -n ${LOGDIR:-} ]]; then
401 mkdir -p $LOGDIR
402fi
403
Dean Troyerffd17682014-08-02 16:07:03 -0500404if [[ -n "$LOGFILE" ]]; then
Dean Troyerad5cc982014-12-10 16:35:32 -0600405 # Clean up old log files. Append '.*' to the user-specified
406 # ``LOGFILE`` to match the date in the search template.
Mikhail S Medvedevfc9cc962015-01-20 11:04:48 -0600407 LOGFILE_DIR="${LOGFILE%/*}" # dirname
408 LOGFILE_NAME="${LOGFILE##*/}" # basename
409 mkdir -p $LOGFILE_DIR
410 find $LOGFILE_DIR -maxdepth 1 -name $LOGFILE_NAME.\* -mtime +$LOGDAYS -exec rm {} \;
Dean Troyerffd17682014-08-02 16:07:03 -0500411 LOGFILE=$LOGFILE.${CURRENT_LOG_TIME}
Dean Troyerad5cc982014-12-10 16:35:32 -0600412 SUMFILE=$LOGFILE.summary.${CURRENT_LOG_TIME}
Dean Troyerffd17682014-08-02 16:07:03 -0500413
414 # Redirect output according to config
415
416 # Set fd 3 to a copy of stdout. So we can set fd 1 without losing
417 # stdout later.
418 exec 3>&1
419 if [[ "$VERBOSE" == "True" ]]; then
420 # Set fd 1 and 2 to write the log file
421 exec 1> >( $TOP_DIR/tools/outfilter.py -v -o "${LOGFILE}" ) 2>&1
422 # Set fd 6 to summary log file
423 exec 6> >( $TOP_DIR/tools/outfilter.py -o "${SUMFILE}" )
424 else
425 # Set fd 1 and 2 to primary logfile
426 exec 1> >( $TOP_DIR/tools/outfilter.py -o "${LOGFILE}" ) 2>&1
427 # Set fd 6 to summary logfile and stdout
428 exec 6> >( $TOP_DIR/tools/outfilter.py -v -o "${SUMFILE}" >&3 )
429 fi
430
431 echo_summary "stack.sh log $LOGFILE"
432 # Specified logfile name always links to the most recent log
Mikhail S Medvedevfc9cc962015-01-20 11:04:48 -0600433 ln -sf $LOGFILE $LOGFILE_DIR/$LOGFILE_NAME
434 ln -sf $SUMFILE $LOGFILE_DIR/$LOGFILE_NAME.summary
Dean Troyerffd17682014-08-02 16:07:03 -0500435else
436 # Set up output redirection without log files
437 # Set fd 3 to a copy of stdout. So we can set fd 1 without losing
438 # stdout later.
439 exec 3>&1
440 if [[ "$VERBOSE" != "True" ]]; then
441 # Throw away stdout and stderr
442 exec 1>/dev/null 2>&1
443 fi
444 # Always send summary fd to original stdout
445 exec 6> >( $TOP_DIR/tools/outfilter.py -v >&3 )
446fi
447
448# Set up logging of screen windows
449# Set ``SCREEN_LOGDIR`` to turn on logging of screen windows to the
Wei Jiangang2af69152015-09-08 18:03:22 +0800450# directory specified in ``SCREEN_LOGDIR``, we will log to the file
Dean Troyerffd17682014-08-02 16:07:03 -0500451# ``screen-$SERVICE_NAME-$TIMESTAMP.log`` in that dir and have a link
452# ``screen-$SERVICE_NAME.log`` to the latest log file.
453# Logs are kept for as long specified in ``LOGDAYS``.
Dean Troyerdde41d02014-12-09 17:47:57 -0600454# This is deprecated....logs go in ``LOGDIR``, only symlinks will be here now.
Dean Troyerffd17682014-08-02 16:07:03 -0500455if [[ -n "$SCREEN_LOGDIR" ]]; then
456
457 # We make sure the directory is created.
458 if [[ -d "$SCREEN_LOGDIR" ]]; then
459 # We cleanup the old logs
460 find $SCREEN_LOGDIR -maxdepth 1 -name screen-\*.log -mtime +$LOGDAYS -exec rm {} \;
461 else
462 mkdir -p $SCREEN_LOGDIR
463 fi
464fi
465
Einst Crazy9e11e092015-09-29 20:01:44 +0800466# Basic test for ``$DEST`` path permissions (fatal on error unless skipped)
467check_path_perm_sanity ${DEST}
Dean Troyerffd17682014-08-02 16:07:03 -0500468
469# Configure Error Traps
470# ---------------------
471
472# Kill background processes on exit
473trap exit_trap EXIT
474function exit_trap {
475 local r=$?
476 jobs=$(jobs -p)
477 # Only do the kill when we're logging through a process substitution,
478 # which currently is only to verbose logfile
479 if [[ -n $jobs && -n "$LOGFILE" && "$VERBOSE" == "True" ]]; then
480 echo "exit_trap: cleaning up child processes"
481 kill 2>&1 $jobs
482 fi
483
484 # Kill the last spinner process
485 kill_spinner
486
487 if [[ $r -ne 0 ]]; then
488 echo "Error on exit"
489 if [[ -z $LOGDIR ]]; then
490 $TOP_DIR/tools/worlddump.py
491 else
492 $TOP_DIR/tools/worlddump.py -d $LOGDIR
493 fi
494 fi
495
496 exit $r
497}
498
499# Exit on any errors so that errors don't compound
500trap err_trap ERR
501function err_trap {
502 local r=$?
503 set +o xtrace
504 if [[ -n "$LOGFILE" ]]; then
505 echo "${0##*/} failed: full log in $LOGFILE"
506 else
507 echo "${0##*/} failed"
508 fi
509 exit $r
510}
511
512# Begin trapping error exit codes
513set -o errexit
514
Dean Troyerdc97cb72015-03-28 08:20:50 -0500515# Print the kernel version
516uname -a
517
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +1000518# Reset the bundle of CA certificates
519SSL_BUNDLE_FILE="$DATA_DIR/ca-bundle.pem"
520rm -f $SSL_BUNDLE_FILE
521
Dean Troyer0e8dced2014-07-25 10:33:21 -0500522# Import common services (database, message queue) configuration
523source $TOP_DIR/lib/database
524source $TOP_DIR/lib/rpc_backend
525
Dean Troyerdc97cb72015-03-28 08:20:50 -0500526# Service to enable with SSL if ``USE_SSL`` is True
Sergey Lukjanov3381e092015-07-01 14:20:23 +0300527SSL_ENABLED_SERVICES="key,nova,cinder,glance,s-proxy,neutron"
Rob Crittenden18d47782014-03-19 17:47:42 -0400528
529if is_service_enabled tls-proxy && [ "$USE_SSL" == "True" ]; then
530 die $LINENO "tls-proxy and SSL are mutually exclusive"
531fi
Dean Troyerd81a0272012-08-31 18:04:55 -0500532
533# Configure Projects
534# ==================
535
Bharat Kumar Kobagana7b9341e2015-03-30 11:58:10 +0530536# Clone all external plugins
537fetch_plugins
538
Wei Jiangang2af69152015-09-08 18:03:22 +0800539# Plugin Phase 0: override_defaults - allow plugins to override
Sean Dague6e275e12015-03-26 05:54:28 -0400540# defaults before other services are run
541run_phase override_defaults
542
Dean Troyerdc97cb72015-03-28 08:20:50 -0500543# Import Apache functions
zhang-hared98a5d02013-06-21 18:18:02 +0800544source $TOP_DIR/lib/apache
Brant Knudson0049c0c2014-01-16 18:16:48 -0600545
546# Import TLS functions
Dean Troyerc83a7e12012-11-29 11:47:58 -0600547source $TOP_DIR/lib/tls
Brant Knudson0049c0c2014-01-16 18:16:48 -0600548
549# Source project function libraries
Sean Dague0392a102013-07-31 13:07:45 -0400550source $TOP_DIR/lib/infra
Sean Dague1b6b5312013-07-31 06:46:34 -0400551source $TOP_DIR/lib/oslo
Daniel Genind4708672014-10-31 15:01:29 -0400552source $TOP_DIR/lib/lvm
Sean Dagueb562e6a2012-11-19 16:00:01 -0500553source $TOP_DIR/lib/horizon
Dean Troyerd81a0272012-08-31 18:04:55 -0500554source $TOP_DIR/lib/keystone
Dean Troyer73f6f252012-09-17 11:22:21 -0500555source $TOP_DIR/lib/glance
Dean Troyerbf67c192012-09-21 15:09:37 -0500556source $TOP_DIR/lib/nova
Dean Troyerd81a0272012-08-31 18:04:55 -0500557source $TOP_DIR/lib/cinder
Attila Fazekasece6a332012-11-29 14:19:41 +0100558source $TOP_DIR/lib/swift
Dean Troyerd81a0272012-08-31 18:04:55 -0500559source $TOP_DIR/lib/heat
Dean Troyer5a9739a2015-03-25 11:33:51 -0500560source $TOP_DIR/lib/neutron-legacy
Brad Topolf127e2f2013-01-22 10:17:50 -0600561source $TOP_DIR/lib/ldap
Joe Gordone0b08d02014-08-20 00:34:55 -0700562source $TOP_DIR/lib/dstat
Sean Dague5cad4d32015-11-10 14:39:07 -0500563source $TOP_DIR/lib/dlm
Dean Troyerd81a0272012-08-31 18:04:55 -0500564
Dean Troyercdf3d762013-10-15 09:42:43 -0500565# Extras Source
566# --------------
567
568# Phase: source
Sean Dague2c65e712014-12-18 09:44:56 -0500569run_phase source
Dean Troyercdf3d762013-10-15 09:42:43 -0500570
Chris Dentc6d47012015-10-09 14:57:05 +0000571
Dean Troyerb7490da2013-03-18 16:07:56 -0500572# Interactive Configuration
573# -------------------------
574
575# Do all interactive config up front before the logging spew begins
James E. Blair213c4162012-11-06 09:38:36 +0100576
Anthony Young7a549f42011-10-12 07:13:13 +0000577# Generic helper to configure passwords
578function read_password {
Dean Troyer7903b792012-09-13 17:16:12 -0500579 XTRACE=$(set +o | grep xtrace)
Anthony Young7a549f42011-10-12 07:13:13 +0000580 set +o xtrace
581 var=$1; msg=$2
582 pw=${!var}
583
Sahid Orentino Ferdjaoui9e032c22014-02-10 11:36:25 +0100584 if [[ -f $RC_DIR/localrc ]]; then
585 localrc=$TOP_DIR/localrc
586 else
Ian Wienand975f4202015-10-14 15:12:32 +1100587 localrc=$TOP_DIR/.localrc.password
Sahid Orentino Ferdjaoui9e032c22014-02-10 11:36:25 +0100588 fi
Anthony Young6015c822011-10-12 07:17:11 +0000589
Anthony Young7a549f42011-10-12 07:13:13 +0000590 # If the password is not defined yet, proceed to prompt user for a password.
591 if [ ! $pw ]; then
592 # If there is no localrc file, create one
Anthony Youngb4db2252011-10-12 14:08:08 -0700593 if [ ! -e $localrc ]; then
594 touch $localrc
Anthony Young7a549f42011-10-12 07:13:13 +0000595 fi
596
Ian Wienand975f4202015-10-14 15:12:32 +1100597 # Presumably if we got this far it can only be that our
598 # localrc is missing the required password. Prompt user for a
599 # password and write to localrc.
600
Anthony Youngb4db2252011-10-12 14:08:08 -0700601 echo ''
602 echo '################################################################################'
603 echo $msg
604 echo '################################################################################'
Ian Wienand975f4202015-10-14 15:12:32 +1100605 echo "This value will be written to ${localrc} file so you don't have to enter it "
Dean Troyer4e6a2b72011-12-29 17:27:45 -0600606 echo "again. Use only alphanumeric characters."
Anthony Youngb4db2252011-10-12 14:08:08 -0700607 echo "If you leave this blank, a random default value will be used."
Dean Troyer4e6a2b72011-12-29 17:27:45 -0600608 pw=" "
609 while true; do
610 echo "Enter a password now:"
611 read -e $var
612 pw=${!var}
613 [[ "$pw" = "`echo $pw | tr -cd [:alnum:]`" ]] && break
614 echo "Invalid chars in password. Try again:"
615 done
Anthony Youngb4db2252011-10-12 14:08:08 -0700616 if [ ! $pw ]; then
Attila Fazekasf71b5002014-05-28 09:52:22 +0200617 pw=$(generate_hex_string 10)
Anthony Young7a549f42011-10-12 07:13:13 +0000618 fi
Anthony Youngb4db2252011-10-12 14:08:08 -0700619 eval "$var=$pw"
620 echo "$var=$pw" >> $localrc
Anthony Young7a549f42011-10-12 07:13:13 +0000621 fi
Dean Troyer7903b792012-09-13 17:16:12 -0500622 $XTRACE
Anthony Young7a549f42011-10-12 07:13:13 +0000623}
624
Dean Troyer13dc5cc2012-03-27 14:50:45 -0500625
Dean Troyerb9182d62012-11-07 12:31:34 -0600626# Database Configuration
Dean Troyerdc97cb72015-03-28 08:20:50 -0500627# ----------------------
Dean Troyerb9182d62012-11-07 12:31:34 -0600628
Dean Troyerdc97cb72015-03-28 08:20:50 -0500629# To select between database backends, add the following to ``local.conf``:
Terry Wilson428af5a2012-11-01 16:12:39 -0400630#
Dean Troyerafc29fe2013-02-07 15:56:24 -0600631# disable_service mysql
632# enable_service postgresql
Terry Wilson428af5a2012-11-01 16:12:39 -0400633#
Dean Troyerafc29fe2013-02-07 15:56:24 -0600634# The available database backends are listed in ``DATABASE_BACKENDS`` after
635# ``lib/database`` is sourced. ``mysql`` is the default.
Terry Wilson428af5a2012-11-01 16:12:39 -0400636
Daniel P. Berrangea99e5c92015-02-11 17:25:32 +0000637initialize_database_backends && echo "Using $DATABASE_TYPE database backend" || echo "No database enabled"
Terry Wilson428af5a2012-11-01 16:12:39 -0400638
Dean Troyerb9182d62012-11-07 12:31:34 -0600639
Dean Troyerb7490da2013-03-18 16:07:56 -0500640# Queue Configuration
Dean Troyerdc97cb72015-03-28 08:20:50 -0500641# -------------------
Jesse Andrews782b9912011-10-02 16:53:21 -0400642
Anthony Younga8416442011-09-13 20:07:44 -0700643# Rabbit connection info
Dean Troyerdc97cb72015-03-28 08:20:50 -0500644# In multi node DevStack, second node needs ``RABBIT_USERID``, but rabbit
Joe Gordonf6287c22014-12-16 13:32:41 -0800645# isn't enabled.
646RABBIT_USERID=${RABBIT_USERID:-stackrabbit}
Russell Bryant4a221452012-03-13 13:44:12 -0400647if is_service_enabled rabbit; then
Bob Balle309e5a2014-04-01 16:28:36 +0100648 RABBIT_HOST=${RABBIT_HOST:-$SERVICE_HOST}
Russell Bryant4a221452012-03-13 13:44:12 -0400649 read_password RABBIT_PASSWORD "ENTER A PASSWORD TO USE FOR RABBIT."
650fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700651
Dean Troyerb7490da2013-03-18 16:07:56 -0500652
653# Keystone
Dean Troyerdc97cb72015-03-28 08:20:50 -0500654# --------
Dean Troyerb7490da2013-03-18 16:07:56 -0500655
Dean Troyer5ce44cd2015-02-12 22:18:33 -0600656if is_service_enabled keystone; then
Dean Troyerb7490da2013-03-18 16:07:56 -0500657 # The ``SERVICE_TOKEN`` is used to bootstrap the Keystone database. It is
658 # just a string and is not a 'real' Keystone token.
659 read_password SERVICE_TOKEN "ENTER A SERVICE_TOKEN TO USE FOR THE SERVICE ADMIN TOKEN."
660 # Services authenticate to Identity with servicename/``SERVICE_PASSWORD``
661 read_password SERVICE_PASSWORD "ENTER A SERVICE_PASSWORD TO USE FOR THE SERVICE AUTHENTICATION."
662 # Horizon currently truncates usernames and passwords at 20 characters
663 read_password ADMIN_PASSWORD "ENTER A PASSWORD TO USE FOR HORIZON AND KEYSTONE (20 CHARS OR LESS)."
664
665 # Keystone can now optionally install OpenLDAP by enabling the ``ldap``
Dean Troyerdc97cb72015-03-28 08:20:50 -0500666 # service in ``local.conf`` (e.g. ``enable_service ldap``).
Dean Troyerb7490da2013-03-18 16:07:56 -0500667 # To clean out the Keystone contents in OpenLDAP set ``KEYSTONE_CLEAR_LDAP``
Dean Troyerdc97cb72015-03-28 08:20:50 -0500668 # to ``yes`` (e.g. ``KEYSTONE_CLEAR_LDAP=yes``) in ``local.conf``. To enable the
Dean Troyerb7490da2013-03-18 16:07:56 -0500669 # Keystone Identity Driver (``keystone.identity.backends.ldap.Identity``)
670 # set ``KEYSTONE_IDENTITY_BACKEND`` to ``ldap`` (e.g.
Dean Troyerdc97cb72015-03-28 08:20:50 -0500671 # ``KEYSTONE_IDENTITY_BACKEND=ldap``) in ``local.conf``.
Dean Troyerb7490da2013-03-18 16:07:56 -0500672
Dean Troyerdc97cb72015-03-28 08:20:50 -0500673 # Only request LDAP password if the service is enabled
Dean Troyerb7490da2013-03-18 16:07:56 -0500674 if is_service_enabled ldap; then
675 read_password LDAP_PASSWORD "ENTER A PASSWORD TO USE FOR LDAP"
Chmouel Boudjnah6ae9ea52012-07-05 06:50:51 +0000676 fi
Dean Troyerb7490da2013-03-18 16:07:56 -0500677fi
678
679
680# Swift
Dean Troyerdc97cb72015-03-28 08:20:50 -0500681# -----
Dean Troyerb7490da2013-03-18 16:07:56 -0500682
683if is_service_enabled s-proxy; then
Chmouel Boudjnah77b0e1d2012-02-29 16:55:43 +0000684 # We only ask for Swift Hash if we have enabled swift service.
Dean Troyerb9182d62012-11-07 12:31:34 -0600685 # ``SWIFT_HASH`` is a random unique string for a swift cluster that
Chmouel Boudjnahb2857e42011-11-03 16:19:14 +0100686 # can never change.
687 read_password SWIFT_HASH "ENTER A RANDOM SWIFT HASH."
Jim Rollenhagenabbb0e92014-08-05 18:01:48 +0000688
689 if [[ -z "$SWIFT_TEMPURL_KEY" ]] && [[ "$SWIFT_ENABLE_TEMPURLS" == "True" ]]; then
690 read_password SWIFT_TEMPURL_KEY "ENTER A KEY FOR SWIFT TEMPURLS."
691 fi
Chmouel Boudjnahb2857e42011-11-03 16:19:14 +0100692fi
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700693
Dean Troyer68162342015-05-13 15:41:03 -0500694# Save configuration values
695save_stackenv $LINENO
696
Dean Troyerdf0972c2012-03-07 17:31:03 -0600697
Jesse Andrews30f68e92011-09-13 00:59:54 -0700698# Install Packages
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700699# ================
Dean Troyer7d28a0e2012-06-27 17:55:52 -0500700
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500701# OpenStack uses a fair number of other projects.
Jesse Andrews30f68e92011-09-13 00:59:54 -0700702
Shashank Hegde2d91fe82015-08-18 18:33:55 -0700703# Bring down global requirements before any use of pip_install. This is
704# necessary to ensure that the constraints file is in place before we
705# attempt to apply any constraints to pip installs.
706git_clone $REQUIREMENTS_REPO $REQUIREMENTS_DIR $REQUIREMENTS_BRANCH
707
Dean Troyer7d28a0e2012-06-27 17:55:52 -0500708# Install package requirements
Dean Troyer48352ee2012-12-12 12:50:38 -0600709# Source it so the entire environment is available
Dean Troyer7903b792012-09-13 17:16:12 -0500710echo_summary "Installing package prerequisites"
Dean Troyer48352ee2012-12-12 12:50:38 -0600711source $TOP_DIR/tools/install_prereqs.sh
Monty Taylor47f02062012-07-26 11:09:24 -0500712
Dean Troyerdc97cb72015-03-28 08:20:50 -0500713# Configure an appropriate Python environment
Arata Notsu8b5d3cf2013-10-17 21:42:49 +0900714if [[ "$OFFLINE" != "True" ]]; then
Sean Dague53753292014-12-04 19:38:15 -0500715 PYPI_ALTERNATIVE_URL=${PYPI_ALTERNATIVE_URL:-""} $TOP_DIR/tools/install_pip.sh
Arata Notsu8b5d3cf2013-10-17 21:42:49 +0900716fi
Dean Troyer1a6d4492013-06-03 16:47:36 -0500717
Joe Gordon981ed292014-12-15 21:11:20 -0800718TRACK_DEPENDS=${TRACK_DEPENDS:-False}
719
Dean Troyerdc97cb72015-03-28 08:20:50 -0500720# Install Python packages into a virtualenv so that we can track them
Joe Gordon981ed292014-12-15 21:11:20 -0800721if [[ $TRACK_DEPENDS = True ]]; then
722 echo_summary "Installing Python packages into a virtualenv $DEST/.venv"
723 pip_install -U virtualenv
724
725 rm -rf $DEST/.venv
726 virtualenv --system-site-packages $DEST/.venv
727 source $DEST/.venv/bin/activate
728 $DEST/.venv/bin/pip freeze > $DEST/requires-pre-pip
729fi
730
Gael Chamoulaudd3121f62014-07-24 23:53:02 +0200731# Do the ugly hacks for broken packages and distros
Dean Troyer04a35112014-08-15 14:03:52 -0500732source $TOP_DIR/tools/fixup_stuff.sh
Dean Troyer9acc12a2013-08-09 15:09:31 -0500733
Dean Troyer5c3a63e2014-07-09 11:27:42 -0500734
Dean Troyerb1d8e8e2015-02-16 13:58:35 -0600735# Virtual Environment
736# -------------------
737
Yuki Nishiwaki0a9d03d2015-05-08 16:29:55 +0900738# Install required infra support libraries
739install_infra
740
Dean Troyer5c3a63e2014-07-09 11:27:42 -0500741# Extras Pre-install
742# ------------------
Dean Troyer5c3a63e2014-07-09 11:27:42 -0500743# Phase: pre-install
Sean Dague2c65e712014-12-18 09:44:56 -0500744run_phase stack pre-install
Dean Troyer5c3a63e2014-07-09 11:27:42 -0500745
Dean Troyer62d1d692013-08-01 17:40:40 -0500746install_rpc_backend
747
Sean Dague5cad4d32015-11-10 14:39:07 -0500748# NOTE(sdague): dlm install is conditional on one being enabled by configuration
749install_dlm
750configure_dlm
751
Dean Troyer62d1d692013-08-01 17:40:40 -0500752if is_service_enabled $DATABASE_BACKENDS; then
753 install_database
Olivier Lemasle7dd890d2015-09-14 14:21:12 +0200754fi
755if [ -n "$DATABASE_TYPE" ]; then
Dean Troyer5686dbc2015-03-09 14:27:51 -0500756 install_database_python
Dean Troyer62d1d692013-08-01 17:40:40 -0500757fi
758
759if is_service_enabled neutron; then
760 install_neutron_agent_packages
761fi
762
Dean Troyerfe51a902013-04-01 15:48:44 -0500763# Check Out and Install Source
764# ----------------------------
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500765
Dean Troyer7903b792012-09-13 17:16:12 -0500766echo_summary "Installing OpenStack project source"
767
Dean Troyerdc97cb72015-03-28 08:20:50 -0500768# Install Oslo libraries
Sean Dague1b6b5312013-07-31 06:46:34 -0400769install_oslo
770
Dean Troyerdc97cb72015-03-28 08:20:50 -0500771# Install client libraries
Jamie Lennox21a90772015-07-03 11:54:38 +1000772install_keystoneauth
Dean Troyerd81a0272012-08-31 18:04:55 -0500773install_keystoneclient
Dean Troyer73f6f252012-09-17 11:22:21 -0500774install_glanceclient
Dean Troyer253a1a32013-04-01 18:23:22 -0500775install_cinderclient
Dean Troyerbf67c192012-09-21 15:09:37 -0500776install_novaclient
Sean Dague75195b52013-07-25 15:38:09 -0400777if is_service_enabled swift glance horizon; then
Dean Troyerfe51a902013-04-01 15:48:44 -0500778 install_swiftclient
779fi
Sean Dague75195b52013-07-25 15:38:09 -0400780if is_service_enabled neutron nova horizon; then
Mark McClainb05c8762013-07-06 23:29:39 -0400781 install_neutronclient
Dean Troyerfe51a902013-04-01 15:48:44 -0500782fi
Sean Dague75195b52013-07-25 15:38:09 -0400783if is_service_enabled heat horizon; then
784 install_heatclient
785fi
Dean Troyerfe51a902013-04-01 15:48:44 -0500786
Morgan Fainberg58936fd2014-06-24 12:26:07 -0700787# Install middleware
788install_keystonemiddleware
789
Dean Troyer5ce44cd2015-02-12 22:18:33 -0600790if is_service_enabled keystone; then
Bartosz Górski0abde392014-02-28 14:15:19 +0100791 if [ "$KEYSTONE_AUTH_HOST" == "$SERVICE_HOST" ]; then
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600792 stack_install_service keystone
Bartosz Górski0abde392014-02-28 14:15:19 +0100793 configure_keystone
794 fi
Jesse Andrews38df1222011-11-20 09:55:44 -0800795fi
Attila Fazekasece6a332012-11-29 14:19:41 +0100796
Chmouel Boudjnah0c3a5582013-03-06 10:58:33 +0100797if is_service_enabled s-proxy; then
gordon chungb6197e62015-02-12 15:33:35 -0500798 if is_service_enabled ceilometer; then
799 install_ceilometermiddleware
800 fi
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600801 stack_install_service swift
Dean Troyerfe51a902013-04-01 15:48:44 -0500802 configure_swift
803
rahmu9d2647a2013-04-24 10:40:07 +0200804 # swift3 middleware to provide S3 emulation to Swift
Chmouel Boudjnah6ae9ea52012-07-05 06:50:51 +0000805 if is_service_enabled swift3; then
Dean Troyerdc97cb72015-03-28 08:20:50 -0500806 # Replace the nova-objectstore port by the swift port
rahmu9d2647a2013-04-24 10:40:07 +0200807 S3_SERVICE_PORT=8080
Chmouel Boudjnah6ae9ea52012-07-05 06:50:51 +0000808 git_clone $SWIFT3_REPO $SWIFT3_DIR $SWIFT3_BRANCH
Dean Troyerfe51a902013-04-01 15:48:44 -0500809 setup_develop $SWIFT3_DIR
Chmouel Boudjnah6ae9ea52012-07-05 06:50:51 +0000810 fi
James E. Blaire7ce24f2011-11-10 13:05:13 -0800811fi
Attila Fazekasece6a332012-11-29 14:19:41 +0100812
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +0000813if is_service_enabled g-api n-api; then
Dean Troyerdc97cb72015-03-28 08:20:50 -0500814 # Image catalog service
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600815 stack_install_service glance
Dean Troyerfe51a902013-04-01 15:48:44 -0500816 configure_glance
James E. Blaire7ce24f2011-11-10 13:05:13 -0800817fi
Dean Troyerfe51a902013-04-01 15:48:44 -0500818
819if is_service_enabled cinder; then
Dean Troyerdc97cb72015-03-28 08:20:50 -0500820 # Block volume service
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600821 stack_install_service cinder
Dean Troyerfe51a902013-04-01 15:48:44 -0500822 configure_cinder
823fi
824
Mark McClainb05c8762013-07-06 23:29:39 -0400825if is_service_enabled neutron; then
Dean Troyerdc97cb72015-03-28 08:20:50 -0500826 # Network service
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600827 stack_install_service neutron
Mark McClainb05c8762013-07-06 23:29:39 -0400828 install_neutron_third_party
Dean Troyerfe51a902013-04-01 15:48:44 -0500829fi
830
Dean Troyerbf67c192012-09-21 15:09:37 -0500831if is_service_enabled nova; then
Dean Troyerdc97cb72015-03-28 08:20:50 -0500832 # Compute service
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600833 stack_install_service nova
Dean Troyerfe51a902013-04-01 15:48:44 -0500834 cleanup_nova
835 configure_nova
Dean Troyerbf67c192012-09-21 15:09:37 -0500836fi
Dean Troyerfe51a902013-04-01 15:48:44 -0500837
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +0000838if is_service_enabled horizon; then
Zhenguo Niue385d1e2014-03-12 16:58:12 +0800839 # django openstack_auth
840 install_django_openstack_auth
Sean Dagueb562e6a2012-11-19 16:00:01 -0500841 # dashboard
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600842 stack_install_service horizon
Dean Troyerfe51a902013-04-01 15:48:44 -0500843 configure_horizon
James E. Blaire7ce24f2011-11-10 13:05:13 -0800844fi
Dean Troyerfe51a902013-04-01 15:48:44 -0500845
Steve Bakerbfdad752012-08-18 09:00:42 +1200846if is_service_enabled heat; then
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600847 stack_install_service heat
Steve Baker315971d2014-05-27 12:24:18 +1200848 install_heat_other
Steve Bakerc3249082013-04-09 13:41:47 +1200849 cleanup_heat
Steve Bakerbfdad752012-08-18 09:00:42 +1200850 configure_heat
851fi
Dean Troyerb7490da2013-03-18 16:07:56 -0500852
Rob Crittenden18d47782014-03-19 17:47:42 -0400853if is_service_enabled tls-proxy || [ "$USE_SSL" == "True" ]; then
Dean Troyerfe51a902013-04-01 15:48:44 -0500854 configure_CA
855 init_CA
856 init_cert
Dean Troyerdc97cb72015-03-28 08:20:50 -0500857 # Add name to ``/etc/hosts``.
858 # Don't be naive and add to existing line!
Dean Troyer67787e62012-05-02 11:48:15 -0500859fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700860
Dean Troyerdc97cb72015-03-28 08:20:50 -0500861
Dean Troyercdf3d762013-10-15 09:42:43 -0500862# Extras Install
863# --------------
864
865# Phase: install
Sean Dague2c65e712014-12-18 09:44:56 -0500866run_phase stack install
Dean Troyercdf3d762013-10-15 09:42:43 -0500867
Dean Troyerdc97cb72015-03-28 08:20:50 -0500868# Install the OpenStack client, needed for most setup commands
Ihar Hrachyshka1ffa3322015-02-20 16:23:15 +0100869if use_library_from_git "python-openstackclient"; then
870 git_clone_by_name "python-openstackclient"
871 setup_dev_lib "python-openstackclient"
872else
Sean Dague60996b12015-04-08 09:06:49 -0400873 pip_install_gr python-openstackclient
Ihar Hrachyshka1ffa3322015-02-20 16:23:15 +0100874fi
875
Dean Troyercc6b4432013-04-08 15:38:03 -0500876if [[ $TRACK_DEPENDS = True ]]; then
Monty Taylor47f02062012-07-26 11:09:24 -0500877 $DEST/.venv/bin/pip freeze > $DEST/requires-post-pip
Dean Troyercc6b4432013-04-08 15:38:03 -0500878 if ! diff -Nru $DEST/requires-pre-pip $DEST/requires-post-pip > $DEST/requires.diff; then
DennyZhange8fa8532013-11-03 12:22:04 -0600879 echo "Detect some changes for installed packages of pip, in depend tracking mode"
Monty Taylor47f02062012-07-26 11:09:24 -0500880 cat $DEST/requires.diff
881 fi
882 echo "Ran stack.sh in depend tracking mode, bailing out now"
883 exit 0
884fi
Dean Troyerdf0972c2012-03-07 17:31:03 -0600885
Dean Troyerb7490da2013-03-18 16:07:56 -0500886
Dean Troyerff603ef2011-11-22 17:48:10 -0600887# Syslog
Dean Troyerdf0972c2012-03-07 17:31:03 -0600888# ------
Dean Troyerff603ef2011-11-22 17:48:10 -0600889
890if [[ $SYSLOG != "False" ]]; then
Dean Troyerff603ef2011-11-22 17:48:10 -0600891 if [[ "$SYSLOG_HOST" = "$HOST_IP" ]]; then
892 # Configure the master host to receive
893 cat <<EOF >/tmp/90-stack-m.conf
894\$ModLoad imrelp
895\$InputRELPServerRun $SYSLOG_PORT
896EOF
897 sudo mv /tmp/90-stack-m.conf /etc/rsyslog.d
898 else
899 # Set rsyslog to send to remote host
900 cat <<EOF >/tmp/90-stack-s.conf
901*.* :omrelp:$SYSLOG_HOST:$SYSLOG_PORT
902EOF
903 sudo mv /tmp/90-stack-s.conf /etc/rsyslog.d
904 fi
cloudnulle4859f02013-05-28 14:10:58 -0500905
906 RSYSLOGCONF="/etc/rsyslog.conf"
907 if [ -f $RSYSLOGCONF ]; then
908 sudo cp -b $RSYSLOGCONF $RSYSLOGCONF.bak
909 if [[ $(grep '$SystemLogRateLimitBurst' $RSYSLOGCONF) ]]; then
910 sudo sed -i 's/$SystemLogRateLimitBurst\ .*/$SystemLogRateLimitBurst\ 0/' $RSYSLOGCONF
911 else
912 sudo sed -i '$ i $SystemLogRateLimitBurst\ 0' $RSYSLOGCONF
913 fi
914 if [[ $(grep '$SystemLogRateLimitInterval' $RSYSLOGCONF) ]]; then
915 sudo sed -i 's/$SystemLogRateLimitInterval\ .*/$SystemLogRateLimitInterval\ 0/' $RSYSLOGCONF
916 else
917 sudo sed -i '$ i $SystemLogRateLimitInterval\ 0' $RSYSLOGCONF
918 fi
919 fi
920
Dean Troyer7903b792012-09-13 17:16:12 -0500921 echo_summary "Starting rsyslog"
Dean Troyer13dc5cc2012-03-27 14:50:45 -0500922 restart_service rsyslog
Dean Troyerff603ef2011-11-22 17:48:10 -0600923fi
924
Dean Troyerdf0972c2012-03-07 17:31:03 -0600925
Joe Gordone5d92382012-09-13 17:19:03 -0700926# Finalize queue installation
927# ----------------------------
Akihiro MOTOKIb0f1c382013-01-13 17:58:12 +0900928restart_rpc_backend
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700929
Dean Troyerdf0972c2012-03-07 17:31:03 -0600930
Atsushi SAKAIfe7b56c2015-11-13 17:06:16 +0900931# Export Certificate Authority Bundle
932# -----------------------------------
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +1000933
934# If certificates were used and written to the SSL bundle file then these
935# should be exported so clients can validate their connections.
936
937if [ -f $SSL_BUNDLE_FILE ]; then
938 export OS_CACERT=$SSL_BUNDLE_FILE
939fi
940
941
Terry Wilson428af5a2012-11-01 16:12:39 -0400942# Configure database
943# ------------------
Dean Troyerb9182d62012-11-07 12:31:34 -0600944
Terry Wilson428af5a2012-11-01 16:12:39 -0400945if is_service_enabled $DATABASE_BACKENDS; then
946 configure_database
Jesse Andrews24859062011-09-15 21:28:23 -0700947fi
948
Dean Troyerb9182d62012-11-07 12:31:34 -0600949
950# Configure screen
951# ----------------
952
Sean Dague53753292014-12-04 19:38:15 -0500953USE_SCREEN=$(trueorfalse True USE_SCREEN)
Dean Troyer681f3fd2013-02-27 19:00:39 -0600954if [[ "$USE_SCREEN" == "True" ]]; then
955 # Create a new named screen to run processes in
956 screen -d -m -S $SCREEN_NAME -t shell -s /bin/bash
957 sleep 1
958
959 # Set a reasonable status bar
Ed Cranfordff72c502015-01-21 16:42:42 -0600960 SCREEN_HARDSTATUS=${SCREEN_HARDSTATUS:-}
Dean Troyer681f3fd2013-02-27 19:00:39 -0600961 if [ -z "$SCREEN_HARDSTATUS" ]; then
962 SCREEN_HARDSTATUS='%{= .} %-Lw%{= .}%> %n%f %t*%{= .}%+Lw%< %-=%{g}(%{d}%H/%l%{g})'
963 fi
964 screen -r $SCREEN_NAME -X hardstatus alwayslastline "$SCREEN_HARDSTATUS"
Steven Dake30396572013-06-30 16:11:54 -0700965 screen -r $SCREEN_NAME -X setenv PROMPT_COMMAND /bin/true
Josh Kearney0a7a41e2012-04-04 17:47:56 -0500966fi
967
Dean Troyerdc97cb72015-03-28 08:20:50 -0500968# Clear ``screenrc`` file
Jiajun Liu61bb2c12012-10-19 09:48:30 +0800969SCREENRC=$TOP_DIR/$SCREEN_NAME-screenrc
970if [[ -e $SCREENRC ]]; then
Jiajun Liu8e58c072013-07-17 06:41:50 +0000971 rm -f $SCREENRC
Jiajun Liu61bb2c12012-10-19 09:48:30 +0800972fi
Dean Troyerb9182d62012-11-07 12:31:34 -0600973
jiajun xua9414242012-12-06 16:30:57 +0800974# Initialize the directory for service status check
975init_service_check
Dean Troyer7d28a0e2012-06-27 17:55:52 -0500976
Dean Troyer68162342015-05-13 15:41:03 -0500977# Save configuration values
978save_stackenv $LINENO
979
Dean Troyerdc97cb72015-03-28 08:20:50 -0500980
981# Start Services
982# ==============
983
Sean Dague78096b52014-02-25 10:23:04 -0500984# Dstat
Dean Troyerdc97cb72015-03-28 08:20:50 -0500985# -----
Dean Troyer1a6d4492013-06-03 16:47:36 -0500986
Sean Daguef1eb0472014-02-11 17:28:56 -0500987# A better kind of sysstat, with the top process per time slice
Joe Gordone0b08d02014-08-20 00:34:55 -0700988start_dstat
Sean Dague062cdaf2014-02-10 22:24:49 -0500989
Dean Troyer893e6632013-09-13 15:05:51 -0500990
Dean Troyerd81a0272012-08-31 18:04:55 -0500991# Keystone
992# --------
993
Dean Troyer5ce44cd2015-02-12 22:18:33 -0600994if is_service_enabled keystone; then
Dean Troyer7903b792012-09-13 17:16:12 -0500995 echo_summary "Starting Keystone"
Bartosz Górski0abde392014-02-28 14:15:19 +0100996
997 if [ "$KEYSTONE_AUTH_HOST" == "$SERVICE_HOST" ]; then
998 init_keystone
999 start_keystone
1000 fi
Dean Troyerd81a0272012-08-31 18:04:55 -05001001
Steve Martinelli050a0d52015-09-06 22:03:54 +00001002 export OS_IDENTITY_API_VERSION=3
1003
Dean Troyerd835de82012-11-29 17:11:35 -06001004 # Set up a temporary admin URI for Keystone
Steve Martinelli050a0d52015-09-06 22:03:54 +00001005 SERVICE_ENDPOINT=$KEYSTONE_AUTH_URI/v3
Dean Troyerc83a7e12012-11-29 11:47:58 -06001006
1007 if is_service_enabled tls-proxy; then
1008 export OS_CACERT=$INT_CA_DIR/ca-chain.pem
1009 # Until the client support is fixed, just use the internal endpoint
Steve Martinelli050a0d52015-09-06 22:03:54 +00001010 SERVICE_ENDPOINT=http://$KEYSTONE_AUTH_HOST:$KEYSTONE_AUTH_PORT_INT/v3
Dean Troyerc83a7e12012-11-29 11:47:58 -06001011 fi
Dean Troyerd81a0272012-08-31 18:04:55 -05001012
Dean Troyerdc97cb72015-03-28 08:20:50 -05001013 # Setup OpenStackClient token-endpoint auth
Steve Martinelli19685422014-01-24 13:02:26 -06001014 export OS_TOKEN=$SERVICE_TOKEN
1015 export OS_URL=$SERVICE_ENDPOINT
Dean Troyer42a59c22014-03-03 14:31:29 -06001016
Dean Troyerd835de82012-11-29 17:11:35 -06001017 create_keystone_accounts
Dean Troyera0dce262012-12-11 16:52:37 -06001018 create_nova_accounts
Dean Troyer42a59c22014-03-03 14:31:29 -06001019 create_glance_accounts
Dean Troyer671c16e2012-12-13 16:22:38 -06001020 create_cinder_accounts
Mark McClainb05c8762013-07-06 23:29:39 -04001021 create_neutron_accounts
Dean Troyerd835de82012-11-29 17:11:35 -06001022
Dean Troyer42a59c22014-03-03 14:31:29 -06001023 if is_service_enabled swift; then
Ian Wienand0ff314c2013-07-17 16:30:19 +10001024 create_swift_accounts
1025 fi
1026
Steve Baker744c2af2014-12-16 12:00:40 +13001027 if is_service_enabled heat; then
Steven Hardy33d1f862014-02-13 15:00:33 +00001028 create_heat_accounts
1029 fi
1030
Dean Troyerdc97cb72015-03-28 08:20:50 -05001031 # Begone token auth
Steve Martinelli19685422014-01-24 13:02:26 -06001032 unset OS_TOKEN OS_URL
Dean Troyer42a59c22014-03-03 14:31:29 -06001033
Ian Wienand7adf15d2015-09-23 11:56:02 +10001034 # Rather than just export these, we write them out to a
1035 # intermediate userrc file that can also be used to debug if
1036 # something goes wrong between here and running
1037 # tools/create_userrc.sh (this script relies on services other
1038 # than keystone being available, so we can't call it right now)
1039 cat > $TOP_DIR/userrc_early <<EOF
1040# Use this for debugging issues before files in accrc are created
1041
1042# Set up password auth credentials now that Keystone is bootstrapped
1043export OS_AUTH_URL=$KEYSTONE_AUTH_URI
1044export OS_USERNAME=admin
1045export OS_USER_DOMAIN_ID=default
1046export OS_PASSWORD=$ADMIN_PASSWORD
1047export OS_PROJECT_NAME=admin
1048export OS_PROJECT_DOMAIN_ID=default
1049export OS_REGION_NAME=$REGION_NAME
1050
1051EOF
1052
1053 source $TOP_DIR/userrc_early
1054
Dean Troyerd81a0272012-08-31 18:04:55 -05001055fi
1056
Monty Taylor7224eec2015-09-19 11:26:18 -04001057# Write a clouds.yaml file
1058write_clouds_yaml
Monty Taylor16a2d642015-09-19 11:19:31 -04001059
Tres Henryca85b792011-10-28 14:00:21 -07001060# Horizon
Dean Troyerdf0972c2012-03-07 17:31:03 -06001061# -------
Jesse Andrewscbe98d52011-10-02 17:47:32 -04001062
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001063# Set up the django horizon application to serve via apache/wsgi
Jesse Andrews75a37652011-09-12 17:09:08 -07001064
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +00001065if is_service_enabled horizon; then
Dean Troyer7903b792012-09-13 17:16:12 -05001066 echo_summary "Configuring and starting Horizon"
Sean Dagueb562e6a2012-11-19 16:00:01 -05001067 init_horizon
1068 start_horizon
Anthony Young70dc5e02011-09-15 16:52:43 -07001069fi
Jesse Andrews75a37652011-09-12 17:09:08 -07001070
Anthony Young3859f732011-09-14 02:33:43 -07001071
Jesse Andrewsd74257d2011-09-13 01:24:50 -07001072# Glance
1073# ------
1074
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +00001075if is_service_enabled g-reg; then
Dean Troyer7903b792012-09-13 17:16:12 -05001076 echo_summary "Configuring Glance"
Dean Troyer73f6f252012-09-17 11:22:21 -05001077 init_glance
Anthony Young70dc5e02011-09-15 16:52:43 -07001078fi
Jesse Andrews75a37652011-09-12 17:09:08 -07001079
Dean Troyer8c032d12013-09-23 13:53:13 -05001080
Mark McClainb05c8762013-07-06 23:29:39 -04001081# Neutron
Anthony Young60df29a2012-03-28 09:40:17 -07001082# -------
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001083
Mark McClainb05c8762013-07-06 23:29:39 -04001084if is_service_enabled neutron; then
1085 echo_summary "Configuring Neutron"
Dean Troyerb9182d62012-11-07 12:31:34 -06001086
Mark McClainb05c8762013-07-06 23:29:39 -04001087 configure_neutron
Dean Troyerdc97cb72015-03-28 08:20:50 -05001088 # Run init_neutron only on the node hosting the Neutron API server
Salvatore Orlandodd649882013-08-05 08:56:17 -07001089 if is_service_enabled $DATABASE_BACKENDS && is_service_enabled q-svc; then
1090 init_neutron
1091 fi
Dan Wendlandt0007f3a2012-05-18 13:37:47 -07001092fi
1093
Mark McClainb05c8762013-07-06 23:29:39 -04001094# Some Neutron plugins require network controllers which are not
Akihiro MOTOKI66afb472012-12-21 15:34:13 +09001095# a part of the OpenStack project. Configure and start them.
Mark McClainb05c8762013-07-06 23:29:39 -04001096if is_service_enabled neutron; then
1097 configure_neutron_third_party
1098 init_neutron_third_party
1099 start_neutron_third_party
Gary Kotton396a0142012-07-29 04:28:47 -04001100fi
1101
Dean Troyerb9182d62012-11-07 12:31:34 -06001102
Jesse Andrewsd74257d2011-09-13 01:24:50 -07001103# Nova
1104# ----
Dean Troyerbd13b702012-02-13 11:22:36 -06001105
Isaku Yamahata6f85ab32012-08-06 16:56:10 +09001106if is_service_enabled n-net q-dhcp; then
Anthony Young55458452011-12-17 00:21:49 +00001107 # Delete traces of nova networks from prior runs
Davanum Srinivasd71d6e72013-01-28 19:15:57 -05001108 # Do not kill any dnsmasq instance spawned by NetworkManager
1109 netman_pid=$(pidof NetworkManager || true)
1110 if [ -z "$netman_pid" ]; then
1111 sudo killall dnsmasq || true
1112 else
1113 sudo ps h -o pid,ppid -C dnsmasq | grep -v $netman_pid | awk '{print $1}' | sudo xargs kill || true
1114 fi
1115
Anthony Young55458452011-12-17 00:21:49 +00001116 clean_iptables
Christian Berendt7a7fb492014-04-07 13:31:07 +00001117
1118 if is_service_enabled n-net; then
1119 rm -rf ${NOVA_STATE_PATH}/networks
1120 sudo mkdir -p ${NOVA_STATE_PATH}/networks
Chris Denta0ced4d2014-05-27 22:08:46 +01001121 safe_chown -R ${STACK_USER} ${NOVA_STATE_PATH}/networks
Christian Berendt7a7fb492014-04-07 13:31:07 +00001122 fi
1123
Dean Troyer1a6d4492013-06-03 16:47:36 -05001124 # Force IP forwarding on, just in case
Dean Troyer0b31e862012-03-07 16:47:56 -06001125 sudo sysctl -w net.ipv4.ip_forward=1
Anthony Young70dc5e02011-09-15 16:52:43 -07001126fi
Jesse Andrews75a37652011-09-12 17:09:08 -07001127
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001128
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +01001129# Storage Service
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001130# ---------------
1131
Chmouel Boudjnah0c3a5582013-03-06 10:58:33 +01001132if is_service_enabled s-proxy; then
Dean Troyer7903b792012-09-13 17:16:12 -05001133 echo_summary "Configuring Swift"
Attila Fazekasece6a332012-11-29 14:19:41 +01001134 init_swift
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +01001135fi
1136
Dean Troyerdf0972c2012-03-07 17:31:03 -06001137
Anthony Youngacff87a2011-10-20 10:12:58 -07001138# Volume Service
1139# --------------
1140
Dean Troyer67787e62012-05-02 11:48:15 -05001141if is_service_enabled cinder; then
Dean Troyer7903b792012-09-13 17:16:12 -05001142 echo_summary "Configuring Cinder"
Dean Troyer67787e62012-05-02 11:48:15 -05001143 init_cinder
Anthony Youngacff87a2011-10-20 10:12:58 -07001144fi
1145
Dean Troyer2aa2a892013-08-04 19:53:19 -05001146
1147# Compute Service
1148# ---------------
1149
Dean Troyerbf67c192012-09-21 15:09:37 -05001150if is_service_enabled nova; then
1151 echo_summary "Configuring Nova"
1152 init_nova
Jesse Andrewsd1879c52011-09-16 16:28:13 -07001153
Dean Troyer86a79692012-10-22 15:24:46 -05001154 # Additional Nova configuration that is dependent on other services
Mark McClainb05c8762013-07-06 23:29:39 -04001155 if is_service_enabled neutron; then
1156 create_nova_conf_neutron
Dean Troyer86a79692012-10-22 15:24:46 -05001157 elif is_service_enabled n-net; then
Akihiro MOTOKI66afb472012-12-21 15:34:13 +09001158 create_nova_conf_nova_network
Brad Hall1bfa3d52011-10-27 18:18:20 -07001159 fi
Dean Troyerdf0972c2012-03-07 17:31:03 -06001160
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001161 init_nova_cells
Anthony Youngb62b4ca2011-10-26 22:29:08 -07001162fi
1163
Dean Troyerdc97cb72015-03-28 08:20:50 -05001164
Dean Troyercdf3d762013-10-15 09:42:43 -05001165# Extras Configuration
1166# ====================
1167
1168# Phase: post-config
Sean Dague2c65e712014-12-18 09:44:56 -05001169run_phase stack post-config
Dean Troyercdf3d762013-10-15 09:42:43 -05001170
1171
Dean Troyer893e6632013-09-13 15:05:51 -05001172# Local Configuration
1173# ===================
1174
Dean Troyerdc97cb72015-03-28 08:20:50 -05001175# Apply configuration from ``local.conf`` if it exists for layer 2 services
Dean Troyer893e6632013-09-13 15:05:51 -05001176# Phase: post-config
1177merge_config_group $TOP_DIR/local.conf post-config
1178
1179
Jesse Andrewsd74257d2011-09-13 01:24:50 -07001180# Launch Services
1181# ===============
Jesse Andrews30f68e92011-09-13 00:59:54 -07001182
Jesse Andrewsdfcd2002011-09-13 13:17:22 -07001183# Only run the services specified in ``ENABLED_SERVICES``
1184
Attila Fazekasece6a332012-11-29 14:19:41 +01001185# Launch Swift Services
Chmouel Boudjnah0c3a5582013-03-06 10:58:33 +01001186if is_service_enabled s-proxy; then
Attila Fazekasece6a332012-11-29 14:19:41 +01001187 echo_summary "Starting Swift"
1188 start_swift
1189fi
1190
Dean Troyer73f6f252012-09-17 11:22:21 -05001191# Launch the Glance services
Dean Troyere4fa7212014-01-15 15:04:49 -06001192if is_service_enabled glance; then
Dean Troyer7903b792012-09-13 17:16:12 -05001193 echo_summary "Starting Glance"
Dean Troyer73f6f252012-09-17 11:22:21 -05001194 start_glance
Anthony Youngd000b222011-09-19 14:46:53 -07001195fi
1196
Dean Troyerdc97cb72015-03-28 08:20:50 -05001197
Eric Windisch0b9776d2014-01-28 11:20:53 -05001198# Install Images
1199# ==============
1200
Dean Troyerdc97cb72015-03-28 08:20:50 -05001201# Upload an image to Glance.
Eric Windisch0b9776d2014-01-28 11:20:53 -05001202#
Dean Troyerdc97cb72015-03-28 08:20:50 -05001203# The default image is CirrOS, a small testing image which lets you login as **root**
1204# CirrOS has a ``cloud-init`` analog supporting login via keypair and sending
Eric Windisch0b9776d2014-01-28 11:20:53 -05001205# scripts as userdata.
Dean Troyerdc97cb72015-03-28 08:20:50 -05001206# See https://help.ubuntu.com/community/CloudInit for more on ``cloud-init``
Eric Windisch0b9776d2014-01-28 11:20:53 -05001207
1208if is_service_enabled g-reg; then
Eric Windisch0b9776d2014-01-28 11:20:53 -05001209
Sean Dague2f8e08b2014-12-05 08:31:16 -05001210 echo_summary "Uploading images"
Eric Windisch0b9776d2014-01-28 11:20:53 -05001211
Sean Dague2f8e08b2014-12-05 08:31:16 -05001212 # Option to upload legacy ami-tty, which works with xenserver
1213 if [[ -n "$UPLOAD_LEGACY_TTY" ]]; then
1214 IMAGE_URLS="${IMAGE_URLS:+${IMAGE_URLS},}https://github.com/downloads/citrix-openstack/warehouse/tty.tgz"
Eric Windisch0b9776d2014-01-28 11:20:53 -05001215 fi
Sean Dague2f8e08b2014-12-05 08:31:16 -05001216
1217 for image_url in ${IMAGE_URLS//,/ }; do
Peter Stachowski5aeea6a2015-09-22 19:38:02 +00001218 upload_image $image_url
Sean Dague2f8e08b2014-12-05 08:31:16 -05001219 done
Eric Windisch0b9776d2014-01-28 11:20:53 -05001220fi
1221
Dean Troyerdc97cb72015-03-28 08:20:50 -05001222# Create an access key and secret key for Nova EC2 register image
Dean Troyer5ce44cd2015-02-12 22:18:33 -06001223if is_service_enabled keystone && is_service_enabled swift3 && is_service_enabled nova; then
Steve Martinellidf6793a2014-03-13 23:38:11 -05001224 eval $(openstack ec2 credentials create --user nova --project $SERVICE_TENANT_NAME -f shell -c access -c secret)
1225 iniset $NOVA_CONF DEFAULT s3_access_key "$access"
1226 iniset $NOVA_CONF DEFAULT s3_secret_key "$secret"
Devananda van der Veen9bc47db2012-12-12 16:52:55 -08001227 iniset $NOVA_CONF DEFAULT s3_affix_tenant "True"
Anthony Youngd000b222011-09-19 14:46:53 -07001228fi
1229
Kaitlin Farrdef4c142014-01-06 08:52:49 -05001230# Create a randomized default value for the keymgr's fixed_key
1231if is_service_enabled nova; then
Attila Fazekasf71b5002014-05-28 09:52:22 +02001232 iniset $NOVA_CONF keymgr fixed_key $(generate_hex_string 32)
Kaitlin Farrdef4c142014-01-06 08:52:49 -05001233fi
1234
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001235# Launch the nova-api and wait for it to answer before continuing
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +00001236if is_service_enabled n-api; then
Dean Troyer7903b792012-09-13 17:16:12 -05001237 echo_summary "Starting Nova API"
Dean Troyer3a3a2ba2012-12-11 15:26:24 -06001238 start_nova_api
Anthony Youngd000b222011-09-19 14:46:53 -07001239fi
Brad Hall1bfa3d52011-10-27 18:18:20 -07001240
Gary Kotton37dda8d2012-08-08 03:46:33 -04001241if is_service_enabled q-svc; then
Mark McClainb05c8762013-07-06 23:29:39 -04001242 echo_summary "Starting Neutron"
Mark McClainb05c8762013-07-06 23:29:39 -04001243 start_neutron_service_and_check
armando-migliaccioef1e0802014-01-02 16:33:53 -08001244 check_neutron_third_party_integration
Aaron Rosen8ec719b2012-10-30 12:57:47 -07001245elif is_service_enabled $DATABASE_BACKENDS && is_service_enabled n-net; then
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001246 NM_CONF=${NOVA_CONF}
1247 if is_service_enabled n-cell; then
1248 NM_CONF=${NOVA_CELLS_CONF}
1249 fi
1250
Gary Kotton37dda8d2012-08-08 03:46:33 -04001251 # Create a small network
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001252 $NOVA_BIN_DIR/nova-manage --config-file $NM_CONF network create "$PRIVATE_NETWORK_NAME" $FIXED_RANGE 1 $FIXED_NETWORK_SIZE $NETWORK_CREATE_ARGS
Dean Troyer696ad332012-01-10 15:34:34 -06001253
Gary Kotton37dda8d2012-08-08 03:46:33 -04001254 # Create some floating ips
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001255 $NOVA_BIN_DIR/nova-manage --config-file $NM_CONF floating create $FLOATING_RANGE --pool=$PUBLIC_NETWORK_NAME
Aaron Rosen9313dfa2012-07-06 16:08:49 -04001256
Gary Kotton37dda8d2012-08-08 03:46:33 -04001257 # Create a second pool
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001258 $NOVA_BIN_DIR/nova-manage --config-file $NM_CONF floating create --ip_range=$TEST_FLOATING_RANGE --pool=$TEST_FLOATING_POOL
Brad Hall1bfa3d52011-10-27 18:18:20 -07001259fi
1260
Mark McClainb05c8762013-07-06 23:29:39 -04001261if is_service_enabled neutron; then
1262 start_neutron_agents
Akihiro MOTOKI66afb472012-12-21 15:34:13 +09001263fi
Salvatore Orlando6fbb28d2013-12-22 07:59:37 -08001264# Once neutron agents are started setup initial network elements
Edgar Magana7bce8fa2014-11-04 17:32:54 +01001265if is_service_enabled q-svc && [[ "$NEUTRON_CREATE_INITIAL_NETWORKS" == "True" ]]; then
Salvatore Orlando6fbb28d2013-12-22 07:59:37 -08001266 echo_summary "Creating initial neutron network elements"
1267 create_neutron_initial_network
1268 setup_neutron_debug
1269fi
Dean Troyerbf67c192012-09-21 15:09:37 -05001270if is_service_enabled nova; then
1271 echo_summary "Starting Nova"
1272 start_nova
1273fi
Dean Troyer67787e62012-05-02 11:48:15 -05001274if is_service_enabled cinder; then
Dean Troyer7903b792012-09-13 17:16:12 -05001275 echo_summary "Starting Cinder"
Dean Troyer67787e62012-05-02 11:48:15 -05001276 start_cinder
Dean Troyer09718332014-07-03 10:46:57 -05001277 create_volume_types
Dean Troyer67787e62012-05-02 11:48:15 -05001278fi
Sean Dagueb562e6a2012-11-19 16:00:01 -05001279
Dean Troyerdc97cb72015-03-28 08:20:50 -05001280# Configure and launch Heat engine, api and metadata
Steve Bakerbfdad752012-08-18 09:00:42 +12001281if is_service_enabled heat; then
Steven Hardy1bcd2802014-02-13 15:14:41 +00001282 # Initialize heat
Steve Bakerbad9d892012-10-25 14:49:47 +13001283 echo_summary "Configuring Heat"
1284 init_heat
Dean Troyer7903b792012-09-13 17:16:12 -05001285 echo_summary "Starting Heat"
Steve Bakerbfdad752012-08-18 09:00:42 +12001286 start_heat
Steve Baker249e36d2015-03-05 14:01:45 +13001287 if [ "$HEAT_BUILD_PIP_MIRROR" = "True" ]; then
1288 echo_summary "Building Heat pip mirror"
1289 build_heat_pip_mirror
Steve Baker2a6009c2014-05-05 16:13:39 +12001290 fi
Steve Bakerbfdad752012-08-18 09:00:42 +12001291fi
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001292
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +10001293
Andrey Pavlov50901422015-09-22 21:20:36 +03001294# Create account rc files
1295# =======================
1296
1297# Creates source able script files for easier user switching.
1298# This step also creates certificates for tenants and users,
1299# which is helpful in image bundle steps.
1300
1301if is_service_enabled nova && is_service_enabled keystone; then
1302 USERRC_PARAMS="-PA --target-dir $TOP_DIR/accrc"
1303
1304 if [ -f $SSL_BUNDLE_FILE ]; then
1305 USERRC_PARAMS="$USERRC_PARAMS --os-cacert $SSL_BUNDLE_FILE"
1306 fi
1307
1308 if [[ "$HEAT_STANDALONE" = "True" ]]; then
1309 USERRC_PARAMS="$USERRC_PARAMS --heat-url http://$HEAT_API_HOST:$HEAT_API_PORT/v1"
1310 fi
1311
1312 $TOP_DIR/tools/create_userrc.sh $USERRC_PARAMS
1313fi
1314
1315
1316# Save some values we generated for later use
1317save_stackenv
1318
1319
Dean Troyerdc97cb72015-03-28 08:20:50 -05001320# Wrapup configuration
1321# ====================
Dean Troyer893e6632013-09-13 15:05:51 -05001322
Dean Troyerdc97cb72015-03-28 08:20:50 -05001323# local.conf extra
1324# ----------------
1325
1326# Apply configuration from ``local.conf`` if it exists for layer 2 services
Dean Troyer893e6632013-09-13 15:05:51 -05001327# Phase: extra
1328merge_config_group $TOP_DIR/local.conf extra
1329
1330
Dean Troyer768295e2013-01-09 13:42:03 -06001331# Run extras
Dean Troyerdc97cb72015-03-28 08:20:50 -05001332# ----------
Dean Troyer768295e2013-01-09 13:42:03 -06001333
Dean Troyercdf3d762013-10-15 09:42:43 -05001334# Phase: extra
Sean Dague2c65e712014-12-18 09:44:56 -05001335run_phase stack extra
Dean Troyer768295e2013-01-09 13:42:03 -06001336
Ryan Hsufeb28832013-11-07 12:12:35 -08001337
Dean Troyerdc97cb72015-03-28 08:20:50 -05001338# local.conf post-extra
1339# ---------------------
1340
1341# Apply late configuration from ``local.conf`` if it exists for layer 2 services
Ryan Hsufeb28832013-11-07 12:12:35 -08001342# Phase: post-extra
1343merge_config_group $TOP_DIR/local.conf post-extra
1344
Dean Troyer768295e2013-01-09 13:42:03 -06001345
Dean Troyerf5633dd2012-03-28 11:21:40 -05001346# Run local script
Dean Troyerdc97cb72015-03-28 08:20:50 -05001347# ----------------
Dean Troyerf5633dd2012-03-28 11:21:40 -05001348
1349# Run ``local.sh`` if it exists to perform user-managed tasks
1350if [[ -x $TOP_DIR/local.sh ]]; then
1351 echo "Running user script $TOP_DIR/local.sh"
1352 $TOP_DIR/local.sh
1353fi
1354
Sean Daguec71973e2015-09-08 07:12:48 -04001355# Sanity checks
1356# =============
1357
jiajun xua9414242012-12-06 16:30:57 +08001358# Check the status of running services
1359service_check
Dean Troyerf5633dd2012-03-28 11:21:40 -05001360
Sean Daguec71973e2015-09-08 07:12:48 -04001361# ensure that all the libraries we think we installed from git,
1362# actually were.
1363check_libs_from_git
1364
Dean Troyerb7490da2013-03-18 16:07:56 -05001365
Steve Martinellibbe771a2015-01-20 13:30:33 -05001366# Bash completion
1367# ===============
1368
1369# Prepare bash completion for OSC
1370openstack complete | sudo tee /etc/bash_completion.d/osc.bash_completion > /dev/null
1371
John Griffith4bf861c2015-03-17 21:07:39 -06001372# If cinder is configured, set global_filter for PV devices
1373if is_service_enabled cinder; then
1374 if is_ubuntu; then
1375 echo_summary "Configuring lvm.conf global device filter"
1376 set_lvm_filter
1377 else
1378 echo_summary "Skip setting lvm filters for non Ubuntu systems"
1379 fi
1380fi
Steve Martinellibbe771a2015-01-20 13:30:33 -05001381
Dean Troyerdc97cb72015-03-28 08:20:50 -05001382
Scott Moserb94f4bf2011-10-07 14:51:07 +00001383# Fin
1384# ===
1385
Dean Troyer471de7a2011-12-27 11:45:55 -06001386set +o xtrace
Scott Moserb94f4bf2011-10-07 14:51:07 +00001387
Dean Troyer7903b792012-09-13 17:16:12 -05001388if [[ -n "$LOGFILE" ]]; then
1389 exec 1>&3
1390 # Force all output to stdout and logs now
Dean Troyerbaa8b422012-09-24 15:02:05 -05001391 exec 1> >( tee -a "${LOGFILE}" ) 2>&1
Dean Troyer7903b792012-09-13 17:16:12 -05001392else
1393 # Force all output to stdout now
1394 exec 1>&3
1395fi
1396
Sean Dague95c33d52015-10-07 11:05:59 -04001397# Dump out the time totals
1398time_totals
Dean Troyerdf0972c2012-03-07 17:31:03 -06001399
Jesse Andrews24859062011-09-15 21:28:23 -07001400# Using the cloud
Dean Troyerdc97cb72015-03-28 08:20:50 -05001401# ===============
Jesse Andrews24859062011-09-15 21:28:23 -07001402
Jesse Andrewse19d8842011-11-01 20:06:55 -07001403echo ""
1404echo ""
1405echo ""
Brian Haley180f5eb2015-06-16 13:14:31 -04001406echo "This is your host IP address: $HOST_IP"
1407if [ "$HOST_IPV6" != "" ]; then
1408 echo "This is your host IPv6 address: $HOST_IPV6"
1409fi
Jesse Andrewse19d8842011-11-01 20:06:55 -07001410
Dean Troyerdf0972c2012-03-07 17:31:03 -06001411# If you installed Horizon on this server you should be able
root40a37002011-09-20 18:06:14 +00001412# to access the site using your browser.
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +00001413if is_service_enabled horizon; then
David Lyle7b105c52015-07-27 17:14:32 -06001414 echo "Horizon is now available at http://$SERVICE_HOST$HORIZON_APACHE_ROOT"
Jesse Andrews24859062011-09-15 21:28:23 -07001415fi
1416
Dean Troyerdf0972c2012-03-07 17:31:03 -06001417# If Keystone is present you can point ``nova`` cli to this server
Dean Troyer5ce44cd2015-02-12 22:18:33 -06001418if is_service_enabled keystone; then
Dean Troyerdc97cb72015-03-28 08:20:50 -05001419 echo "Keystone is serving at $KEYSTONE_SERVICE_URI/"
Dean Troyerdf0972c2012-03-07 17:31:03 -06001420 echo "The default users are: admin and demo"
1421 echo "The password: $ADMIN_PASSWORD"
Jesse Andrews24859062011-09-15 21:28:23 -07001422fi
termie523c4052011-09-28 19:49:40 -05001423
Dean Troyerafc29fe2013-02-07 15:56:24 -06001424# Warn that a deprecated feature was used
1425if [[ -n "$DEPRECATED_TEXT" ]]; then
1426 echo_summary "WARNING: $DEPRECATED_TEXT"
Dean Troyerced65172012-03-02 16:36:16 -06001427fi
1428
Dean Troyer4a43b7b2012-08-28 17:43:40 -05001429# Indicate how long this took to run (bash maintained variable ``SECONDS``)
Dean Troyer7903b792012-09-13 17:16:12 -05001430echo_summary "stack.sh completed in $SECONDS seconds."
Dean Troyer80684552014-03-05 11:50:23 -06001431
1432# Restore/close logging file descriptors
1433exec 1>&3
1434exec 2>&3
1435exec 3>&-
1436exec 6>&-