| Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 1 | #!/usr/bin/env bash | 
|  | 2 |  | 
| Jesse Andrews | 0e7e897 | 2011-10-02 16:36:54 -0400 | [diff] [blame] | 3 | # **stack.sh** is an opinionated openstack developer installation. | 
|  | 4 |  | 
|  | 5 | # This script installs and configures *nova*, *glance*, *dashboard* and *keystone* | 
| Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 6 |  | 
| Vishvananda Ishaya | 9b35367 | 2011-10-20 10:07:10 -0700 | [diff] [blame] | 7 | # This script allows you to specify configuration options of what git | 
| Jesse Andrews | 5372f43 | 2011-10-03 01:08:24 -0400 | [diff] [blame] | 8 | # repositories to use, enabled services, network configuration and various | 
|  | 9 | # passwords.  If you are crafty you can run the script on multiple nodes using | 
|  | 10 | # shared settings for common resources (mysql, rabbitmq) and build a multi-node | 
|  | 11 | # developer install. | 
| Jesse Andrews | 782b991 | 2011-10-02 16:53:21 -0400 | [diff] [blame] | 12 |  | 
| Jesse Andrews | c4b3aab | 2011-09-15 22:54:52 -0700 | [diff] [blame] | 13 | # To keep this script simple we assume you are running on an **Ubuntu 11.04 | 
| Jesse Andrews | 2485906 | 2011-09-15 21:28:23 -0700 | [diff] [blame] | 14 | # Natty** machine.  It should work in a VM or physical server.  Additionally we | 
|  | 15 | # put the list of *apt* and *pip* dependencies and other configuration files in | 
|  | 16 | # this repo.  So start by grabbing this script and the dependencies. | 
|  | 17 |  | 
| Jesse Andrews | 0e7e897 | 2011-10-02 16:36:54 -0400 | [diff] [blame] | 18 | # Learn more and get the most recent version at http://devstack.org | 
| Jesse Andrews | 6edd17f | 2011-09-15 22:19:42 -0700 | [diff] [blame] | 19 |  | 
|  | 20 | # Sanity Check | 
|  | 21 | # ============ | 
|  | 22 |  | 
| Jesse Andrews | c4b3aab | 2011-09-15 22:54:52 -0700 | [diff] [blame] | 23 | # Warn users who aren't on natty, but allow them to override check and attempt | 
| Jesse Andrews | 6edd17f | 2011-09-15 22:19:42 -0700 | [diff] [blame] | 24 | # installation with ``FORCE=yes ./stack`` | 
| Jesse Andrews | 6edd17f | 2011-09-15 22:19:42 -0700 | [diff] [blame] | 25 | if ! grep -q natty /etc/lsb-release; then | 
|  | 26 | echo "WARNING: this script has only been tested on natty" | 
|  | 27 | if [[ "$FORCE" != "yes" ]]; then | 
|  | 28 | echo "If you wish to run this script anyway run with FORCE=yes" | 
|  | 29 | exit 1 | 
|  | 30 | fi | 
|  | 31 | fi | 
|  | 32 |  | 
| Jesse Andrews | 51fb22e | 2011-10-19 09:24:17 -0700 | [diff] [blame] | 33 | # Keep track of the current devstack directory. | 
|  | 34 | TOP_DIR=$(cd $(dirname "$0") && pwd) | 
|  | 35 |  | 
| root | 40a3700 | 2011-09-20 18:06:14 +0000 | [diff] [blame] | 36 | # stack.sh keeps the list of **apt** and **pip** dependencies in external | 
| Jesse Andrews | 4d28218 | 2011-09-16 11:27:43 -0700 | [diff] [blame] | 37 | # files, along with config templates and other useful files.  You can find these | 
| root | 40a3700 | 2011-09-20 18:06:14 +0000 | [diff] [blame] | 38 | # in the ``files`` directory (next to this script).  We will reference this | 
| Jesse Andrews | bf3868d | 2011-09-16 11:31:16 -0700 | [diff] [blame] | 39 | # directory using the ``FILES`` variable in this script. | 
| Jesse Andrews | 51fb22e | 2011-10-19 09:24:17 -0700 | [diff] [blame] | 40 | FILES=$TOP_DIR/files | 
| Jesse Andrews | bf3868d | 2011-09-16 11:31:16 -0700 | [diff] [blame] | 41 | if [ ! -d $FILES ]; then | 
|  | 42 | echo "ERROR: missing devstack/files - did you grab more than just stack.sh?" | 
| Jesse Andrews | 6edd17f | 2011-09-15 22:19:42 -0700 | [diff] [blame] | 43 | exit 1 | 
|  | 44 | fi | 
|  | 45 |  | 
| Anthony Young | 6015c82 | 2011-10-12 07:17:11 +0000 | [diff] [blame] | 46 |  | 
| Scott Moser | f9da508 | 2011-10-07 21:28:00 -0400 | [diff] [blame] | 47 |  | 
|  | 48 | # Settings | 
|  | 49 | # ======== | 
|  | 50 |  | 
|  | 51 | # This script is customizable through setting environment variables.  If you | 
|  | 52 | # want to override a setting you can either:: | 
|  | 53 | # | 
| Anthony Young | 7a549f4 | 2011-10-12 07:13:13 +0000 | [diff] [blame] | 54 | #     export MYSQL_PASSWORD=anothersecret | 
| Scott Moser | f9da508 | 2011-10-07 21:28:00 -0400 | [diff] [blame] | 55 | #     ./stack.sh | 
|  | 56 | # | 
| Anthony Young | 7a549f4 | 2011-10-12 07:13:13 +0000 | [diff] [blame] | 57 | # You can also pass options on a single line ``MYSQL_PASSWORD=simple ./stack.sh`` | 
| Scott Moser | f9da508 | 2011-10-07 21:28:00 -0400 | [diff] [blame] | 58 | # | 
|  | 59 | # Additionally, you can put any local variables into a ``localrc`` file, like:: | 
|  | 60 | # | 
| Anthony Young | 7a549f4 | 2011-10-12 07:13:13 +0000 | [diff] [blame] | 61 | #     MYSQL_PASSWORD=anothersecret | 
| Scott Moser | f9da508 | 2011-10-07 21:28:00 -0400 | [diff] [blame] | 62 | #     MYSQL_USER=hellaroot | 
|  | 63 | # | 
|  | 64 | # We try to have sensible defaults, so you should be able to run ``./stack.sh`` | 
|  | 65 | # in most cases. | 
|  | 66 | # | 
|  | 67 | # We our settings from ``stackrc``.  This file is distributed with devstack and | 
| Vishvananda Ishaya | 9b35367 | 2011-10-20 10:07:10 -0700 | [diff] [blame] | 68 | # contains locations for what repositories to use.  If you want to use other | 
|  | 69 | # repositories and branches, you can add your own settings with another file | 
| Scott Moser | f9da508 | 2011-10-07 21:28:00 -0400 | [diff] [blame] | 70 | # called ``localrc`` | 
|  | 71 | # | 
| Vishvananda Ishaya | 9b35367 | 2011-10-20 10:07:10 -0700 | [diff] [blame] | 72 | # If ``localrc`` exists, then ``stackrc`` will load those settings.  This is | 
| Scott Moser | f9da508 | 2011-10-07 21:28:00 -0400 | [diff] [blame] | 73 | # useful for changing a branch or repostiory to test other versions.  Also you | 
| Anthony Young | 7a549f4 | 2011-10-12 07:13:13 +0000 | [diff] [blame] | 74 | # can store your other settings like **MYSQL_PASSWORD** or **ADMIN_PASSWORD** instead | 
| Scott Moser | f9da508 | 2011-10-07 21:28:00 -0400 | [diff] [blame] | 75 | # of letting devstack generate random ones for you. | 
|  | 76 | source ./stackrc | 
|  | 77 |  | 
| Jesse Andrews | 6edd17f | 2011-09-15 22:19:42 -0700 | [diff] [blame] | 78 | # Destination path for installation ``DEST`` | 
| Anthony Young | e8fed48 | 2011-09-26 19:50:43 -0700 | [diff] [blame] | 79 | DEST=${DEST:-/opt/stack} | 
| Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 80 |  | 
| Dean Troyer | 9122e7b | 2011-10-17 14:07:11 -0500 | [diff] [blame] | 81 | # OpenStack is designed to be run as a regular user (Dashboard will fail to run | 
|  | 82 | # as root, since apache refused to startup serve content from root user).  If | 
|  | 83 | # stack.sh is run as root, it automatically creates a stack user with | 
|  | 84 | # sudo privileges and runs as that user. | 
|  | 85 |  | 
|  | 86 | if [[ $EUID -eq 0 ]]; then | 
| James E. Blair | 92e8199 | 2011-10-11 09:26:29 -0500 | [diff] [blame] | 87 | ROOTSLEEP=${ROOTSLEEP:-10} | 
| Dean Troyer | 9122e7b | 2011-10-17 14:07:11 -0500 | [diff] [blame] | 88 | echo "You are running this script as root." | 
| James E. Blair | 92e8199 | 2011-10-11 09:26:29 -0500 | [diff] [blame] | 89 | echo "In $ROOTSLEEP seconds, we will create a user 'stack' and run as that user" | 
|  | 90 | sleep $ROOTSLEEP | 
| Dean Troyer | 9122e7b | 2011-10-17 14:07:11 -0500 | [diff] [blame] | 91 |  | 
|  | 92 | # since this script runs as a normal user, we need to give that user | 
|  | 93 | # ability to run sudo | 
| Scott Moser | ee1b495 | 2011-10-20 13:09:11 -0400 | [diff] [blame] | 94 | apt_get update | 
|  | 95 | apt_get install sudo | 
| Dean Troyer | 9122e7b | 2011-10-17 14:07:11 -0500 | [diff] [blame] | 96 |  | 
|  | 97 | if ! getent passwd stack >/dev/null; then | 
|  | 98 | echo "Creating a user called stack" | 
|  | 99 | useradd -U -G sudo -s /bin/bash -d $DEST -m stack | 
|  | 100 | fi | 
|  | 101 |  | 
|  | 102 | echo "Giving stack user passwordless sudo priviledges" | 
|  | 103 | # natty uec images sudoers does not have a '#includedir'. add one. | 
|  | 104 | grep -q "^#includedir.*/etc/sudoers.d" /etc/sudoers || | 
|  | 105 | echo "#includedir /etc/sudoers.d" >> /etc/sudoers | 
|  | 106 | ( umask 226 && echo "stack ALL=(ALL) NOPASSWD:ALL" \ | 
|  | 107 | > /etc/sudoers.d/50_stack_sh ) | 
|  | 108 |  | 
|  | 109 | echo "Copying files to stack user" | 
|  | 110 | STACK_DIR="$DEST/${PWD##*/}" | 
|  | 111 | cp -r -f "$PWD" "$STACK_DIR" | 
|  | 112 | chown -R stack "$STACK_DIR" | 
|  | 113 | if [[ "$SHELL_AFTER_RUN" != "no" ]]; then | 
|  | 114 | exec su -c "set -e; cd $STACK_DIR; bash stack.sh; bash" stack | 
|  | 115 | else | 
|  | 116 | exec su -c "set -e; cd $STACK_DIR; bash stack.sh" stack | 
|  | 117 | fi | 
|  | 118 | exit 1 | 
|  | 119 | fi | 
|  | 120 |  | 
| Jesse Andrews | 6f3baaf | 2011-09-12 11:59:38 -0700 | [diff] [blame] | 121 | # Set the destination directories for openstack projects | 
| Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 122 | NOVA_DIR=$DEST/nova | 
|  | 123 | DASH_DIR=$DEST/dash | 
|  | 124 | GLANCE_DIR=$DEST/glance | 
|  | 125 | KEYSTONE_DIR=$DEST/keystone | 
|  | 126 | NOVACLIENT_DIR=$DEST/python-novaclient | 
| Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 127 | OPENSTACKX_DIR=$DEST/openstackx | 
| Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 128 | NOVNC_DIR=$DEST/noVNC | 
| Anthony Young | a841644 | 2011-09-13 20:07:44 -0700 | [diff] [blame] | 129 |  | 
|  | 130 | # Specify which services to launch.  These generally correspond to screen tabs | 
| Jesse Andrews | 9b6741e | 2011-10-02 10:01:00 -0700 | [diff] [blame] | 131 | ENABLED_SERVICES=${ENABLED_SERVICES:-g-api,g-reg,key,n-api,n-cpu,n-net,n-sch,n-vnc,dash,mysql,rabbit} | 
| Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 132 |  | 
| Jesse Andrews | 782b991 | 2011-10-02 16:53:21 -0400 | [diff] [blame] | 133 | # Nova hypervisor configuration.  We default to **kvm** but will drop back to | 
|  | 134 | # **qemu** if we are unable to load the kvm module.  Stack.sh can also install | 
|  | 135 | # an **LXC** based system. | 
|  | 136 | LIBVIRT_TYPE=${LIBVIRT_TYPE:-kvm} | 
|  | 137 |  | 
| Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 138 | # nova supports pluggable schedulers.  ``SimpleScheduler`` should work in most | 
|  | 139 | # cases unless you are working on multi-zone mode. | 
| Jesse Andrews | 782b991 | 2011-10-02 16:53:21 -0400 | [diff] [blame] | 140 | SCHEDULER=${SCHEDULER:-nova.scheduler.simple.SimpleScheduler} | 
|  | 141 |  | 
| Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 142 | # Use the first IP unless an explicit is set by ``HOST_IP`` environment variable | 
| Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 143 | if [ ! -n "$HOST_IP" ]; then | 
| Dean Troyer | 2a15a7c | 2011-09-13 13:22:14 -0500 | [diff] [blame] | 144 | HOST_IP=`LC_ALL=C /sbin/ifconfig  | grep -m 1 'inet addr:'| cut -d: -f2 | awk '{print $1}'` | 
| Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 145 | fi | 
|  | 146 |  | 
| Scott Moser | ee1b495 | 2011-10-20 13:09:11 -0400 | [diff] [blame] | 147 | # apt-get wrapper to just get arguments set correctly | 
|  | 148 | function apt_get() { | 
|  | 149 | local sudo="sudo" | 
|  | 150 | [ "$(id -u)" = "0" ] && sudo="" | 
|  | 151 | $sudo DEBIAN_FRONTEND=noninteractive apt-get \ | 
|  | 152 | --option "Dpkg::Options::=--force-confold" --assume-yes "$@" | 
|  | 153 | } | 
|  | 154 |  | 
| Anthony Young | 7a549f4 | 2011-10-12 07:13:13 +0000 | [diff] [blame] | 155 | # Generic helper to configure passwords | 
|  | 156 | function read_password { | 
|  | 157 | set +o xtrace | 
|  | 158 | var=$1; msg=$2 | 
|  | 159 | pw=${!var} | 
|  | 160 |  | 
| Anthony Young | b4db225 | 2011-10-12 14:08:08 -0700 | [diff] [blame] | 161 | localrc=$TOP_DIR/localrc | 
| Anthony Young | 6015c82 | 2011-10-12 07:17:11 +0000 | [diff] [blame] | 162 |  | 
| Anthony Young | 7a549f4 | 2011-10-12 07:13:13 +0000 | [diff] [blame] | 163 | # If the password is not defined yet, proceed to prompt user for a password. | 
|  | 164 | if [ ! $pw ]; then | 
|  | 165 | # If there is no localrc file, create one | 
| Anthony Young | b4db225 | 2011-10-12 14:08:08 -0700 | [diff] [blame] | 166 | if [ ! -e $localrc ]; then | 
|  | 167 | touch $localrc | 
| Anthony Young | 7a549f4 | 2011-10-12 07:13:13 +0000 | [diff] [blame] | 168 | fi | 
|  | 169 |  | 
| Vishvananda Ishaya | 9b35367 | 2011-10-20 10:07:10 -0700 | [diff] [blame] | 170 | # Presumably if we got this far it can only be that our localrc is missing | 
| Anthony Young | 7a549f4 | 2011-10-12 07:13:13 +0000 | [diff] [blame] | 171 | # the required password.  Prompt user for a password and write to localrc. | 
| Anthony Young | b4db225 | 2011-10-12 14:08:08 -0700 | [diff] [blame] | 172 | echo '' | 
|  | 173 | echo '################################################################################' | 
|  | 174 | echo $msg | 
|  | 175 | echo '################################################################################' | 
|  | 176 | echo "This value will be written to your localrc file so you don't have to enter it again." | 
|  | 177 | echo "It is probably best to avoid spaces and weird characters." | 
|  | 178 | echo "If you leave this blank, a random default value will be used." | 
|  | 179 | echo "Enter a password now:" | 
|  | 180 | read $var | 
|  | 181 | pw=${!var} | 
|  | 182 | if [ ! $pw ]; then | 
|  | 183 | pw=`openssl rand -hex 10` | 
| Anthony Young | 7a549f4 | 2011-10-12 07:13:13 +0000 | [diff] [blame] | 184 | fi | 
| Anthony Young | b4db225 | 2011-10-12 14:08:08 -0700 | [diff] [blame] | 185 | eval "$var=$pw" | 
|  | 186 | echo "$var=$pw" >> $localrc | 
| Anthony Young | 7a549f4 | 2011-10-12 07:13:13 +0000 | [diff] [blame] | 187 | fi | 
|  | 188 | set -o xtrace | 
|  | 189 | } | 
|  | 190 |  | 
|  | 191 |  | 
| Jesse Andrews | 782b991 | 2011-10-02 16:53:21 -0400 | [diff] [blame] | 192 | # Nova Network Configuration | 
|  | 193 | # -------------------------- | 
|  | 194 |  | 
| Vishvananda Ishaya | 9b35367 | 2011-10-20 10:07:10 -0700 | [diff] [blame] | 195 | # FIXME: more documentation about why these are important flags.  Also | 
| Jesse Andrews | 5372f43 | 2011-10-03 01:08:24 -0400 | [diff] [blame] | 196 | # we should make sure we use the same variable names as the flag names. | 
|  | 197 |  | 
| Anthony Young | b1bdd5e | 2011-09-20 09:39:50 -0700 | [diff] [blame] | 198 | PUBLIC_INTERFACE=${PUBLIC_INTERFACE:-eth0} | 
| Jesse Andrews | b5197e4 | 2011-09-26 12:48:31 -0700 | [diff] [blame] | 199 | FIXED_RANGE=${FIXED_RANGE:-10.0.0.0/24} | 
|  | 200 | FIXED_NETWORK_SIZE=${FIXED_NETWORK_SIZE:-256} | 
| Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 201 | FLOATING_RANGE=${FLOATING_RANGE:-172.24.4.1/28} | 
| Jesse Andrews | a72f7ad | 2011-09-25 13:41:22 -0700 | [diff] [blame] | 202 | NET_MAN=${NET_MAN:-FlatDHCPManager} | 
| Anthony Young | a841644 | 2011-09-13 20:07:44 -0700 | [diff] [blame] | 203 | EC2_DMZ_HOST=${EC2_DMZ_HOST:-$HOST_IP} | 
| Anthony Young | b1bdd5e | 2011-09-20 09:39:50 -0700 | [diff] [blame] | 204 | FLAT_NETWORK_BRIDGE=${FLAT_NETWORK_BRIDGE:-br100} | 
| Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 205 | VLAN_INTERFACE=${VLAN_INTERFACE:-$PUBLIC_INTERFACE} | 
|  | 206 |  | 
|  | 207 | # Multi-host is a mode where each compute node runs its own network node.  This | 
|  | 208 | # allows network operations and routing for a VM to occur on the server that is | 
|  | 209 | # running the VM - removing a SPOF and bandwidth bottleneck. | 
|  | 210 | MULTI_HOST=${MULTI_HOST:-0} | 
| Jesse Andrews | 30f68e9 | 2011-09-13 00:59:54 -0700 | [diff] [blame] | 211 |  | 
| Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 212 | # If you are using FlatDHCP on multiple hosts, set the ``FLAT_INTERFACE`` | 
|  | 213 | # variable but make sure that the interface doesn't already have an | 
|  | 214 | # ip or you risk breaking things. | 
| Jesse Andrews | 5372f43 | 2011-10-03 01:08:24 -0400 | [diff] [blame] | 215 | # | 
| Vishvananda Ishaya | 9b35367 | 2011-10-20 10:07:10 -0700 | [diff] [blame] | 216 | # **DHCP Warning**:  If your flat interface device uses DHCP, there will be a | 
|  | 217 | # hiccup while the network is moved from the flat interface to the flat network | 
|  | 218 | # bridge.  This will happen when you launch your first instance.  Upon launch | 
|  | 219 | # you will lose all connectivity to the node, and the vm launch will probably | 
| Jesse Andrews | 5372f43 | 2011-10-03 01:08:24 -0400 | [diff] [blame] | 220 | # fail. | 
| Vishvananda Ishaya | 9b35367 | 2011-10-20 10:07:10 -0700 | [diff] [blame] | 221 | # | 
|  | 222 | # If you are running on a single node and don't need to access the VMs from | 
| Jesse Andrews | 5372f43 | 2011-10-03 01:08:24 -0400 | [diff] [blame] | 223 | # devices other than that node, you can set the flat interface to the same | 
| Vishvananda Ishaya | 9b35367 | 2011-10-20 10:07:10 -0700 | [diff] [blame] | 224 | # value as ``FLAT_NETWORK_BRIDGE``.  This will stop the network hiccup from | 
| Jesse Andrews | 5372f43 | 2011-10-03 01:08:24 -0400 | [diff] [blame] | 225 | # occuring. | 
| Jesse Andrews | 8ff5dbc | 2011-09-25 22:28:08 -0700 | [diff] [blame] | 226 | FLAT_INTERFACE=${FLAT_INTERFACE:-eth0} | 
| Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 227 |  | 
| Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 228 | ## FIXME(ja): should/can we check that FLAT_INTERFACE is sane? | 
|  | 229 |  | 
| Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 230 |  | 
| Jesse Andrews | 782b991 | 2011-10-02 16:53:21 -0400 | [diff] [blame] | 231 | # MySQL & RabbitMQ | 
|  | 232 | # ---------------- | 
|  | 233 |  | 
| Vishvananda Ishaya | 9b35367 | 2011-10-20 10:07:10 -0700 | [diff] [blame] | 234 | # We configure Nova, Dashboard, Glance and Keystone to use MySQL as their | 
| Jesse Andrews | 782b991 | 2011-10-02 16:53:21 -0400 | [diff] [blame] | 235 | # database server.  While they share a single server, each has their own | 
|  | 236 | # database and tables. | 
|  | 237 |  | 
| Vishvananda Ishaya | 9b35367 | 2011-10-20 10:07:10 -0700 | [diff] [blame] | 238 | # By default this script will install and configure MySQL.  If you want to | 
| Jesse Andrews | 782b991 | 2011-10-02 16:53:21 -0400 | [diff] [blame] | 239 | # use an existing server, you can pass in the user/password/host parameters. | 
| Anthony Young | 7a549f4 | 2011-10-12 07:13:13 +0000 | [diff] [blame] | 240 | # You will need to send the same ``MYSQL_PASSWORD`` to every host if you are doing | 
| Jesse Andrews | 782b991 | 2011-10-02 16:53:21 -0400 | [diff] [blame] | 241 | # a multi-node devstack installation. | 
| Jesse Andrews | a50a346 | 2011-10-19 15:38:10 -0700 | [diff] [blame] | 242 | MYSQL_HOST=${MYSQL_HOST:-localhost} | 
| Anthony Young | 320412b | 2011-09-14 02:39:10 -0700 | [diff] [blame] | 243 | MYSQL_USER=${MYSQL_USER:-root} | 
| Anthony Young | 7a549f4 | 2011-10-12 07:13:13 +0000 | [diff] [blame] | 244 | read_password MYSQL_PASSWORD "ENTER A PASSWORD TO USE FOR MYSQL." | 
| Jesse Andrews | 782b991 | 2011-10-02 16:53:21 -0400 | [diff] [blame] | 245 |  | 
| Anthony Young | a841644 | 2011-09-13 20:07:44 -0700 | [diff] [blame] | 246 | # don't specify /db in this string, so we can use it for multiple services | 
| Anthony Young | 7a549f4 | 2011-10-12 07:13:13 +0000 | [diff] [blame] | 247 | BASE_SQL_CONN=${BASE_SQL_CONN:-mysql://$MYSQL_USER:$MYSQL_PASSWORD@$MYSQL_HOST} | 
| Anthony Young | a841644 | 2011-09-13 20:07:44 -0700 | [diff] [blame] | 248 |  | 
|  | 249 | # Rabbit connection info | 
|  | 250 | RABBIT_HOST=${RABBIT_HOST:-localhost} | 
| Anthony Young | 7a549f4 | 2011-10-12 07:13:13 +0000 | [diff] [blame] | 251 | read_password RABBIT_PASSWORD "ENTER A PASSWORD TO USE FOR RABBIT." | 
| Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 252 |  | 
| Anthony Young | 377aae6 | 2011-09-14 09:55:31 -0700 | [diff] [blame] | 253 | # Glance connection info.  Note the port must be specified. | 
| Anthony Young | b1bdd5e | 2011-09-20 09:39:50 -0700 | [diff] [blame] | 254 | GLANCE_HOSTPORT=${GLANCE_HOSTPORT:-$HOST_IP:9292} | 
| Anthony Young | 377aae6 | 2011-09-14 09:55:31 -0700 | [diff] [blame] | 255 |  | 
| Anthony Young | 7a549f4 | 2011-10-12 07:13:13 +0000 | [diff] [blame] | 256 |  | 
| Jesse Andrews | 782b991 | 2011-10-02 16:53:21 -0400 | [diff] [blame] | 257 | # Keystone | 
|  | 258 | # -------- | 
|  | 259 |  | 
| Jesse Andrews | b96871e | 2011-10-02 09:02:46 -0700 | [diff] [blame] | 260 | # Service Token - Openstack components need to have an admin token | 
|  | 261 | # to validate user tokens. | 
| Anthony Young | 7a549f4 | 2011-10-12 07:13:13 +0000 | [diff] [blame] | 262 | read_password SERVICE_TOKEN "ENTER A SERVICE_TOKEN TO USE FOR THE SERVICE ADMIN TOKEN." | 
| Anthony Young | f2aee71 | 2011-10-04 13:32:45 -0700 | [diff] [blame] | 263 | # Dash currently truncates usernames and passwords at 20 characters | 
| Anthony Young | 7a549f4 | 2011-10-12 07:13:13 +0000 | [diff] [blame] | 264 | read_password ADMIN_PASSWORD "ENTER A PASSWORD TO USE FOR DASH AND KEYSTONE (20 CHARS OR LESS)." | 
| Jesse Andrews | b96871e | 2011-10-02 09:02:46 -0700 | [diff] [blame] | 265 |  | 
| Scott Moser | f9da508 | 2011-10-07 21:28:00 -0400 | [diff] [blame] | 266 | LOGFILE=${LOGFILE:-"$PWD/stack.sh.$$.log"} | 
|  | 267 | ( | 
|  | 268 | # So that errors don't compound we exit on any errors so you see only the | 
|  | 269 | # first error that occured. | 
|  | 270 | trap failed ERR | 
|  | 271 | failed() { | 
|  | 272 | local r=$? | 
|  | 273 | set +o xtrace | 
|  | 274 | [ -n "$LOGFILE" ] && echo "${0##*/} failed: full log in $LOGFILE" | 
|  | 275 | exit $r | 
|  | 276 | } | 
|  | 277 |  | 
|  | 278 | # Print the commands being run so that we can see the command that triggers | 
|  | 279 | # an error.  It is also useful for following along as the install occurs. | 
|  | 280 | set -o xtrace | 
|  | 281 |  | 
| Jesse Andrews | fe95e0f | 2011-10-19 14:30:37 -0700 | [diff] [blame] | 282 | # create the destination directory and ensure it is writable by the user | 
| Scott Moser | f9da508 | 2011-10-07 21:28:00 -0400 | [diff] [blame] | 283 | sudo mkdir -p $DEST | 
| Jesse Andrews | fe95e0f | 2011-10-19 14:30:37 -0700 | [diff] [blame] | 284 | if [ ! -w $DEST ]; then | 
|  | 285 | sudo chown `whoami` $DEST | 
|  | 286 | fi | 
| Jesse Andrews | 53ed387 | 2011-10-02 14:28:17 -0400 | [diff] [blame] | 287 |  | 
| Jesse Andrews | 30f68e9 | 2011-09-13 00:59:54 -0700 | [diff] [blame] | 288 | # Install Packages | 
| Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 289 | # ================ | 
| Jesse Andrews | 30f68e9 | 2011-09-13 00:59:54 -0700 | [diff] [blame] | 290 | # | 
|  | 291 | # Openstack uses a fair number of other projects. | 
|  | 292 |  | 
| Jesse Andrews | 2caf8fd | 2011-09-12 16:15:11 -0700 | [diff] [blame] | 293 |  | 
| Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 294 | # install apt requirements | 
| Scott Moser | ee1b495 | 2011-10-20 13:09:11 -0400 | [diff] [blame] | 295 | apt_get update | 
|  | 296 | apt_get install `cat $FILES/apts/* | cut -d\# -f1 | grep -Ev "mysql-server|rabbitmq-server"` | 
| Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 297 |  | 
| Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 298 | # install python requirements | 
| Jesse Andrews | bf3868d | 2011-09-16 11:31:16 -0700 | [diff] [blame] | 299 | sudo PIP_DOWNLOAD_CACHE=/var/cache/pip pip install `cat $FILES/pips/*` | 
| Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 300 |  | 
| Jesse Andrews | d61db85 | 2011-09-16 14:13:17 -0700 | [diff] [blame] | 301 | # git clone only if directory doesn't exist already.  Since ``DEST`` might not | 
|  | 302 | # be owned by the installation user, we create the directory and change the | 
|  | 303 | # ownership to the proper user. | 
| Jesse Andrews | 6163257 | 2011-09-12 17:40:00 -0700 | [diff] [blame] | 304 | function git_clone { | 
| Jesse Andrews | 1f27360 | 2011-10-17 13:20:40 -0700 | [diff] [blame] | 305 | # if there is an existing checkout, move it out of the way | 
|  | 306 | if [[ "$RECLONE" == "yes" ]]; then | 
| Jesse Andrews | 51fb22e | 2011-10-19 09:24:17 -0700 | [diff] [blame] | 307 | # FIXME(ja): if we were smarter we could speed up RECLONE by | 
|  | 308 | # using the old git repo as the basis of our new clone... | 
| Jesse Andrews | 1f27360 | 2011-10-17 13:20:40 -0700 | [diff] [blame] | 309 | if [ -d $2 ]; then | 
|  | 310 | mv $2 /tmp/stack.`date +%s` | 
|  | 311 | fi | 
|  | 312 | fi | 
|  | 313 |  | 
| Jesse Andrews | 6163257 | 2011-09-12 17:40:00 -0700 | [diff] [blame] | 314 | if [ ! -d $2 ]; then | 
|  | 315 | git clone $1 $2 | 
| Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 316 | cd $2 | 
| Anthony Young | 303233e | 2011-09-26 13:12:57 -0700 | [diff] [blame] | 317 | # This checkout syntax works for both branches and tags | 
| Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 318 | git checkout $3 | 
| Jesse Andrews | 6163257 | 2011-09-12 17:40:00 -0700 | [diff] [blame] | 319 | fi | 
|  | 320 | } | 
|  | 321 |  | 
| Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 322 | # compute service | 
| Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 323 | git_clone $NOVA_REPO $NOVA_DIR $NOVA_BRANCH | 
| Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 324 | # image catalog service | 
| Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 325 | git_clone $GLANCE_REPO $GLANCE_DIR $GLANCE_BRANCH | 
| Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 326 | # unified auth system (manages accounts/tokens) | 
| Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 327 | git_clone $KEYSTONE_REPO $KEYSTONE_DIR $KEYSTONE_BRANCH | 
| Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 328 | # a websockets/html5 or flash powered VNC console for vm instances | 
| Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 329 | git_clone $NOVNC_REPO $NOVNC_DIR $NOVNC_BRANCH | 
| Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 330 | # django powered web control panel for openstack | 
| Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 331 | git_clone $DASH_REPO $DASH_DIR $DASH_BRANCH $DASH_TAG | 
| Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 332 | # python client library to nova that dashboard (and others) use | 
| Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 333 | git_clone $NOVACLIENT_REPO $NOVACLIENT_DIR $NOVACLIENT_BRANCH | 
| root | 40a3700 | 2011-09-20 18:06:14 +0000 | [diff] [blame] | 334 | # openstackx is a collection of extensions to openstack.compute & nova | 
| Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 335 | # that is *deprecated*.  The code is being moved into python-novaclient & nova. | 
| Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 336 | git_clone $OPENSTACKX_REPO $OPENSTACKX_DIR $OPENSTACKX_BRANCH | 
| Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 337 |  | 
| Jesse Andrews | 30f68e9 | 2011-09-13 00:59:54 -0700 | [diff] [blame] | 338 | # Initialization | 
| Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 339 | # ============== | 
| Jesse Andrews | 30f68e9 | 2011-09-13 00:59:54 -0700 | [diff] [blame] | 340 |  | 
| Jesse Andrews | d1879c5 | 2011-09-16 16:28:13 -0700 | [diff] [blame] | 341 |  | 
| Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 342 | # setup our checkouts so they are installed into python path | 
| Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 343 | # allowing ``import nova`` or ``import glance.client`` | 
| Jesse Andrews | 18d350d | 2011-09-12 21:46:12 -0700 | [diff] [blame] | 344 | cd $KEYSTONE_DIR; sudo python setup.py develop | 
|  | 345 | cd $GLANCE_DIR; sudo python setup.py develop | 
| Jesse Andrews | aa8bb24 | 2011-10-16 12:24:11 -0700 | [diff] [blame] | 346 | cd $NOVACLIENT_DIR; sudo python setup.py develop | 
|  | 347 | cd $NOVA_DIR; sudo python setup.py develop | 
| Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 348 | cd $OPENSTACKX_DIR; sudo python setup.py develop | 
| Jesse Andrews | 18d350d | 2011-09-12 21:46:12 -0700 | [diff] [blame] | 349 | cd $DASH_DIR/django-openstack; sudo python setup.py develop | 
|  | 350 | cd $DASH_DIR/openstack-dashboard; sudo python setup.py develop | 
| Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 351 |  | 
| Jesse Andrews | 6edd17f | 2011-09-15 22:19:42 -0700 | [diff] [blame] | 352 | # Add a useful screenrc.  This isn't required to run openstack but is we do | 
| root | 40a3700 | 2011-09-20 18:06:14 +0000 | [diff] [blame] | 353 | # it since we are going to run the services in screen for simple | 
| Jesse Andrews | bf3868d | 2011-09-16 11:31:16 -0700 | [diff] [blame] | 354 | cp $FILES/screenrc ~/.screenrc | 
| Jesse Andrews | 6f3baaf | 2011-09-12 11:59:38 -0700 | [diff] [blame] | 355 |  | 
| Jesse Andrews | 6edd17f | 2011-09-15 22:19:42 -0700 | [diff] [blame] | 356 | ## TODO: update current user to allow sudo for all commands in files/sudo/* | 
| Jesse Andrews | dfcd200 | 2011-09-13 13:17:22 -0700 | [diff] [blame] | 357 |  | 
| Anthony Young | a09ae2f | 2011-09-15 23:11:29 -0700 | [diff] [blame] | 358 | # Rabbit | 
|  | 359 | # --------- | 
| Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 360 |  | 
| Anthony Young | a09ae2f | 2011-09-15 23:11:29 -0700 | [diff] [blame] | 361 | if [[ "$ENABLED_SERVICES" =~ "rabbit" ]]; then | 
|  | 362 | # Install and start rabbitmq-server | 
| Scott Moser | 199d76e | 2011-10-20 12:41:40 -0400 | [diff] [blame] | 363 | # the temp file is necessary due to LP: #878600 | 
|  | 364 | tfile=$(mktemp) | 
| Scott Moser | ee1b495 | 2011-10-20 13:09:11 -0400 | [diff] [blame] | 365 | apt_get install rabbitmq-server > "$tfile" 2>&1 | 
| Scott Moser | 199d76e | 2011-10-20 12:41:40 -0400 | [diff] [blame] | 366 | cat "$tfile" | 
|  | 367 | rm -f "$tfile" | 
| Jesse Andrews | 53ed387 | 2011-10-02 14:28:17 -0400 | [diff] [blame] | 368 | # change the rabbit password since the default is "guest" | 
|  | 369 | sudo rabbitmqctl change_password guest $RABBIT_PASSWORD | 
| Anthony Young | a09ae2f | 2011-09-15 23:11:29 -0700 | [diff] [blame] | 370 | fi | 
| Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 371 |  | 
| Jesse Andrews | 2485906 | 2011-09-15 21:28:23 -0700 | [diff] [blame] | 372 | # Mysql | 
|  | 373 | # --------- | 
| Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 374 |  | 
| Jesse Andrews | 2485906 | 2011-09-15 21:28:23 -0700 | [diff] [blame] | 375 | if [[ "$ENABLED_SERVICES" =~ "mysql" ]]; then | 
| Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 376 |  | 
|  | 377 | # Seed configuration with mysql password so that apt-get install doesn't | 
|  | 378 | # prompt us for a password upon install. | 
|  | 379 | cat <<MYSQL_PRESEED | sudo debconf-set-selections | 
| Anthony Young | 7a549f4 | 2011-10-12 07:13:13 +0000 | [diff] [blame] | 380 | mysql-server-5.1 mysql-server/root_password password $MYSQL_PASSWORD | 
|  | 381 | mysql-server-5.1 mysql-server/root_password_again password $MYSQL_PASSWORD | 
| Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 382 | mysql-server-5.1 mysql-server/start_on_boot boolean true | 
|  | 383 | MYSQL_PRESEED | 
|  | 384 |  | 
| Jesse Andrews | 2e536a3 | 2011-10-13 11:40:16 -0700 | [diff] [blame] | 385 | # while ``.my.cnf`` is not needed for openstack to function, it is useful | 
|  | 386 | # as it allows you to access the mysql databases via ``mysql nova`` instead | 
|  | 387 | # of having to specify the username/password each time. | 
| Chmouel Boudjnah | d5d5b68 | 2011-10-13 18:45:42 +0100 | [diff] [blame] | 388 | if [[ ! -e $HOME/.my.cnf ]]; then | 
|  | 389 | cat <<EOF >$HOME/.my.cnf | 
|  | 390 | [client] | 
|  | 391 | user=$MYSQL_USER | 
| Anthony Young | cf145b7 | 2011-10-13 15:07:36 -0700 | [diff] [blame] | 392 | password=$MYSQL_PASSWORD | 
| Chmouel Boudjnah | d5d5b68 | 2011-10-13 18:45:42 +0100 | [diff] [blame] | 393 | host=$MYSQL_HOST | 
|  | 394 | EOF | 
|  | 395 | chmod 0600 $HOME/.my.cnf | 
|  | 396 | fi | 
|  | 397 |  | 
| Anthony Young | a09ae2f | 2011-09-15 23:11:29 -0700 | [diff] [blame] | 398 | # Install and start mysql-server | 
| Scott Moser | ee1b495 | 2011-10-20 13:09:11 -0400 | [diff] [blame] | 399 | apt_get install mysql-server | 
| Jesse Andrews | 2485906 | 2011-09-15 21:28:23 -0700 | [diff] [blame] | 400 | # Update the DB to give user ‘$MYSQL_USER’@’%’ full control of the all databases: | 
| James E. Blair | 92e8199 | 2011-10-11 09:26:29 -0500 | [diff] [blame] | 401 | sudo mysql -uroot -p$MYSQL_PASSWORD -h127.0.0.1 -e "GRANT ALL PRIVILEGES ON *.* TO '$MYSQL_USER'@'%' identified by '$MYSQL_PASSWORD';" | 
| Jesse Andrews | 2485906 | 2011-09-15 21:28:23 -0700 | [diff] [blame] | 402 |  | 
|  | 403 | # Edit /etc/mysql/my.cnf to change ‘bind-address’ from localhost (127.0.0.1) to any (0.0.0.0) and restart the mysql service: | 
|  | 404 | sudo sed -i 's/127.0.0.1/0.0.0.0/g' /etc/mysql/my.cnf | 
|  | 405 | sudo service mysql restart | 
|  | 406 | fi | 
|  | 407 |  | 
|  | 408 |  | 
| Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 409 | # Dashboard | 
|  | 410 | # --------- | 
| Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 411 |  | 
|  | 412 | # Setup the django dashboard application to serve via apache/wsgi | 
| Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 413 |  | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 414 | if [[ "$ENABLED_SERVICES" =~ "dash" ]]; then | 
| Jesse Andrews | 2485906 | 2011-09-15 21:28:23 -0700 | [diff] [blame] | 415 |  | 
| root | 40a3700 | 2011-09-20 18:06:14 +0000 | [diff] [blame] | 416 | # Dash currently imports quantum even if you aren't using it.  Instead | 
|  | 417 | # of installing quantum we can create a simple module that will pass the | 
| Jesse Andrews | 2485906 | 2011-09-15 21:28:23 -0700 | [diff] [blame] | 418 | # initial imports | 
| Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 419 | mkdir -p  $DASH_DIR/openstack-dashboard/quantum || true | 
|  | 420 | touch $DASH_DIR/openstack-dashboard/quantum/__init__.py | 
|  | 421 | touch $DASH_DIR/openstack-dashboard/quantum/client.py | 
|  | 422 |  | 
|  | 423 |  | 
|  | 424 | # ``local_settings.py`` is used to override dashboard default settings. | 
|  | 425 | cp $FILES/dash_settings.py $DASH_DIR/openstack-dashboard/local/local_settings.py | 
| Jesse Andrews | 1c1d150 | 2011-09-12 19:29:56 -0700 | [diff] [blame] | 426 |  | 
| Jesse Andrews | 51fb22e | 2011-10-19 09:24:17 -0700 | [diff] [blame] | 427 | # Initialize the dashboard database (it stores sessions and notices shown to | 
|  | 428 | # users).  The user system is external (keystone). | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 429 | cd $DASH_DIR/openstack-dashboard | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 430 | dashboard/manage.py syncdb | 
| Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 431 |  | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 432 | # create an empty directory that apache uses as docroot | 
|  | 433 | sudo mkdir -p $DASH_DIR/.blackhole | 
| Jesse Andrews | 1c1d150 | 2011-09-12 19:29:56 -0700 | [diff] [blame] | 434 |  | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 435 | ## Configure apache's 000-default to run dashboard | 
| Jesse Andrews | bf3868d | 2011-09-16 11:31:16 -0700 | [diff] [blame] | 436 | sudo cp $FILES/000-default.template /etc/apache2/sites-enabled/000-default | 
| Jesse Andrews | 8f3e28c | 2011-09-27 18:26:27 -0700 | [diff] [blame] | 437 | sudo sed -e "s,%USER%,$USER,g" -i /etc/apache2/sites-enabled/000-default | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 438 | sudo sed -e "s,%DASH_DIR%,$DASH_DIR,g" -i /etc/apache2/sites-enabled/000-default | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 439 | fi | 
| Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 440 |  | 
| Anthony Young | 3859f73 | 2011-09-14 02:33:43 -0700 | [diff] [blame] | 441 |  | 
| Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 442 | # Glance | 
|  | 443 | # ------ | 
|  | 444 |  | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 445 | if [[ "$ENABLED_SERVICES" =~ "g-reg" ]]; then | 
| Anthony Young | c835762 | 2011-09-20 10:38:06 -0700 | [diff] [blame] | 446 | GLANCE_IMAGE_DIR=$DEST/glance/images | 
| Anthony Young | a531b77 | 2011-09-20 09:59:54 -0700 | [diff] [blame] | 447 | # Delete existing images | 
|  | 448 | rm -rf $GLANCE_IMAGE_DIR | 
| Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 449 |  | 
| Anthony Young | a531b77 | 2011-09-20 09:59:54 -0700 | [diff] [blame] | 450 | # Use local glance directories | 
|  | 451 | mkdir -p $GLANCE_IMAGE_DIR | 
|  | 452 |  | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 453 | # (re)create glance database | 
| Anthony Young | 7a549f4 | 2011-10-12 07:13:13 +0000 | [diff] [blame] | 454 | mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'DROP DATABASE IF EXISTS glance;' | 
|  | 455 | mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'CREATE DATABASE glance;' | 
| Jesse Andrews | 51fb22e | 2011-10-19 09:24:17 -0700 | [diff] [blame] | 456 |  | 
|  | 457 | # Copy over our glance configurations and update them | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 458 | GLANCE_CONF=$GLANCE_DIR/etc/glance-registry.conf | 
| Jesse Andrews | bf3868d | 2011-09-16 11:31:16 -0700 | [diff] [blame] | 459 | cp $FILES/glance-registry.conf $GLANCE_CONF | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 460 | sudo sed -e "s,%SQL_CONN%,$BASE_SQL_CONN/glance,g" -i $GLANCE_CONF | 
| Jesse Andrews | b96871e | 2011-10-02 09:02:46 -0700 | [diff] [blame] | 461 | sudo sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $GLANCE_CONF | 
| Anthony Young | a531b77 | 2011-09-20 09:59:54 -0700 | [diff] [blame] | 462 | sudo sed -e "s,%DEST%,$DEST,g" -i $GLANCE_CONF | 
| Anthony Young | f12d3ab | 2011-09-20 00:33:51 -0700 | [diff] [blame] | 463 |  | 
|  | 464 | GLANCE_API_CONF=$GLANCE_DIR/etc/glance-api.conf | 
|  | 465 | cp $FILES/glance-api.conf $GLANCE_API_CONF | 
| Anthony Young | a531b77 | 2011-09-20 09:59:54 -0700 | [diff] [blame] | 466 | sudo sed -e "s,%DEST%,$DEST,g" -i $GLANCE_API_CONF | 
| Jesse Andrews | b96871e | 2011-10-02 09:02:46 -0700 | [diff] [blame] | 467 | sudo sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $GLANCE_API_CONF | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 468 | fi | 
| Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 469 |  | 
| Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 470 | # Nova | 
|  | 471 | # ---- | 
|  | 472 |  | 
| Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 473 | # We are going to use the sample http middleware configuration from the keystone | 
|  | 474 | # project to launch nova.  This paste config adds the configuration required | 
|  | 475 | # for nova to validate keystone tokens - except we need to switch the config | 
| Jesse Andrews | 51fb22e | 2011-10-19 09:24:17 -0700 | [diff] [blame] | 476 | # to use our service token instead (instead of the invalid token 999888777666). | 
| Jesse Andrews | 9f20f51 | 2011-10-02 09:18:03 -0700 | [diff] [blame] | 477 | sudo sed -e "s,999888777666,$SERVICE_TOKEN,g" -i $KEYSTONE_DIR/examples/paste/nova-api-paste.ini | 
| Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 478 |  | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 479 | if [[ "$ENABLED_SERVICES" =~ "n-cpu" ]]; then | 
| Jesse Andrews | dfcd200 | 2011-09-13 13:17:22 -0700 | [diff] [blame] | 480 |  | 
| Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 481 | # Virtualization Configuration | 
|  | 482 | # ~~~~~~~~~~~~~~~~~~~~~~~~~~~~ | 
|  | 483 |  | 
|  | 484 | # attempt to load modules: network block device - used to manage qcow images | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 485 | sudo modprobe nbd || true | 
| Jesse Andrews | c6d3042 | 2011-10-02 13:11:28 -0400 | [diff] [blame] | 486 |  | 
| Vishvananda Ishaya | 9b35367 | 2011-10-20 10:07:10 -0700 | [diff] [blame] | 487 | # Check for kvm (hardware based virtualization).  If unable to initialize | 
|  | 488 | # kvm, we drop back to the slower emulation mode (qemu).  Note: many systems | 
| Jesse Andrews | 51fb22e | 2011-10-19 09:24:17 -0700 | [diff] [blame] | 489 | # come with hardware virtualization disabled in BIOS. | 
| Jesse Andrews | 2abbdd4 | 2011-10-03 22:48:30 -0400 | [diff] [blame] | 490 | if [[ "$LIBVIRT_TYPE" == "kvm" ]]; then | 
| Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 491 | sudo modprobe kvm || true | 
| Jesse Andrews | c6d3042 | 2011-10-02 13:11:28 -0400 | [diff] [blame] | 492 | if [ ! -e /dev/kvm ]; then | 
| Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 493 | echo "WARNING: Switching to QEMU" | 
| Jesse Andrews | c6d3042 | 2011-10-02 13:11:28 -0400 | [diff] [blame] | 494 | LIBVIRT_TYPE=qemu | 
|  | 495 | fi | 
| Jesse Andrews | d1879c5 | 2011-09-16 16:28:13 -0700 | [diff] [blame] | 496 | fi | 
| Jesse Andrews | c6d3042 | 2011-10-02 13:11:28 -0400 | [diff] [blame] | 497 |  | 
| Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 498 | # Install and configure **LXC** if specified.  LXC is another approach to | 
|  | 499 | # splitting a system into many smaller parts.  LXC uses cgroups and chroot | 
|  | 500 | # to simulate multiple systems. | 
| Jesse Andrews | 2abbdd4 | 2011-10-03 22:48:30 -0400 | [diff] [blame] | 501 | if [[ "$LIBVIRT_TYPE" == "lxc" ]]; then | 
| Scott Moser | ee1b495 | 2011-10-20 13:09:11 -0400 | [diff] [blame] | 502 | apt_get install lxc | 
| Jesse Andrews | 51fb22e | 2011-10-19 09:24:17 -0700 | [diff] [blame] | 503 | # lxc uses cgroups (a kernel interface via virtual filesystem) configured | 
|  | 504 | # and mounted to ``/cgroup`` | 
| Jesse Andrews | c6d3042 | 2011-10-02 13:11:28 -0400 | [diff] [blame] | 505 | sudo mkdir -p /cgroup | 
| Jesse Andrews | c6d3042 | 2011-10-02 13:11:28 -0400 | [diff] [blame] | 506 | if ! grep -q cgroup /etc/fstab; then | 
| Jesse Andrews | c315ebf | 2011-10-02 13:25:33 -0400 | [diff] [blame] | 507 | echo none /cgroup cgroup cpuacct,memory,devices,cpu,freezer,blkio 0 0 | sudo tee -a /etc/fstab | 
| Jesse Andrews | c6d3042 | 2011-10-02 13:11:28 -0400 | [diff] [blame] | 508 | fi | 
| Jesse Andrews | e430423 | 2011-10-07 10:34:32 -0400 | [diff] [blame] | 509 | if ! mount -n | grep -q cgroup; then | 
|  | 510 | sudo mount /cgroup | 
|  | 511 | fi | 
| Jesse Andrews | c6d3042 | 2011-10-02 13:11:28 -0400 | [diff] [blame] | 512 | fi | 
|  | 513 |  | 
| Jesse Andrews | 51fb22e | 2011-10-19 09:24:17 -0700 | [diff] [blame] | 514 | # The user that nova runs as needs to be member of libvirtd group otherwise | 
|  | 515 | # nova-compute will be unable to use libvirt. | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 516 | sudo usermod -a -G libvirtd `whoami` | 
| Vishvananda Ishaya | 9b35367 | 2011-10-20 10:07:10 -0700 | [diff] [blame] | 517 | # libvirt detects various settings on startup, as we potentially changed | 
| Jesse Andrews | 51fb22e | 2011-10-19 09:24:17 -0700 | [diff] [blame] | 518 | # the system configuration (modules, filesystems), we need to restart | 
|  | 519 | # libvirt to detect those changes. | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 520 | sudo /etc/init.d/libvirt-bin restart | 
|  | 521 |  | 
| Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 522 |  | 
|  | 523 | # Instance Storage | 
|  | 524 | # ~~~~~~~~~~~~~~~~ | 
|  | 525 |  | 
|  | 526 | # Nova stores each instance in its own directory. | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 527 | mkdir -p $NOVA_DIR/instances | 
|  | 528 |  | 
| Jesse Andrews | 51fb22e | 2011-10-19 09:24:17 -0700 | [diff] [blame] | 529 | # You can specify a different disk to be mounted and used for backing the | 
| Vishvananda Ishaya | 9b35367 | 2011-10-20 10:07:10 -0700 | [diff] [blame] | 530 | # virtual machines.  If there is a partition labeled nova-instances we | 
| Jesse Andrews | 51fb22e | 2011-10-19 09:24:17 -0700 | [diff] [blame] | 531 | # mount it (ext filesystems can be labeled via e2label). | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 532 | if [ -L /dev/disk/by-label/nova-instances ]; then | 
| Jesse Andrews | 51fb22e | 2011-10-19 09:24:17 -0700 | [diff] [blame] | 533 | if ! mount -n | grep -q nova-instances; then | 
|  | 534 | sudo mount -L nova-instances $NOVA_DIR/instances | 
|  | 535 | sudo chown -R `whoami` $NOVA_DIR/instances | 
|  | 536 | fi | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 537 | fi | 
|  | 538 |  | 
| Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 539 | # Clean out the instances directory. | 
| Jesse Andrews | 461bfdc | 2011-10-09 17:50:38 -0700 | [diff] [blame] | 540 | sudo rm -rf $NOVA_DIR/instances/* | 
| Jesse Andrews | dfcd200 | 2011-09-13 13:17:22 -0700 | [diff] [blame] | 541 | fi | 
|  | 542 |  | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 543 | if [[ "$ENABLED_SERVICES" =~ "n-net" ]]; then | 
|  | 544 | # delete traces of nova networks from prior runs | 
| Anthony Young | 09fde81 | 2011-09-20 02:23:54 -0700 | [diff] [blame] | 545 | sudo killall dnsmasq || true | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 546 | rm -rf $NOVA_DIR/networks | 
|  | 547 | mkdir -p $NOVA_DIR/networks | 
|  | 548 | fi | 
| Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 549 |  | 
| Anthony Young | acff87a | 2011-10-20 10:12:58 -0700 | [diff] [blame] | 550 | # Volume Service | 
|  | 551 | # -------------- | 
|  | 552 |  | 
|  | 553 | if [[ "$ENABLED_SERVICES" =~ "n-vol" ]]; then | 
|  | 554 | # | 
|  | 555 | # Configure a default volume group called 'nova-volumes' for the nova-volume | 
|  | 556 | # service if it does not yet exist.  If you don't wish to use a file backed | 
|  | 557 | # volume group, create your own volume group called 'nova-volumes' before | 
|  | 558 | # invoking stack.sh. | 
|  | 559 | # | 
|  | 560 | # By default, the backing file is 2G in size, and is stored in /opt/stack. | 
|  | 561 | # | 
| Anthony Young | acff87a | 2011-10-20 10:12:58 -0700 | [diff] [blame] | 562 | if ! sudo vgdisplay | grep -q nova-volumes; then | 
| Anthony Young | b22263a | 2011-10-20 10:26:30 -0700 | [diff] [blame] | 563 | VOLUME_BACKING_FILE=${VOLUME_BACKING_FILE:-/opt/stack/nova-volumes-backing-file} | 
|  | 564 | VOLUME_BACKING_FILE_SIZE=${VOLUME_BACKING_FILE_SIZE:-2052M} | 
| Anthony Young | acff87a | 2011-10-20 10:12:58 -0700 | [diff] [blame] | 565 | truncate -s $VOLUME_BACKING_FILE_SIZE $VOLUME_BACKING_FILE | 
|  | 566 | DEV=`sudo losetup -f --show $VOLUME_BACKING_FILE` | 
|  | 567 | sudo vgcreate nova-volumes $DEV | 
|  | 568 | fi | 
|  | 569 |  | 
|  | 570 | # Configure iscsitarget | 
|  | 571 | sudo sed 's/ISCSITARGET_ENABLE=false/ISCSITARGET_ENABLE=true/' -i /etc/default/iscsitarget | 
|  | 572 | sudo /etc/init.d/iscsitarget restart | 
|  | 573 | fi | 
|  | 574 |  | 
| Jesse Andrews | d1879c5 | 2011-09-16 16:28:13 -0700 | [diff] [blame] | 575 | function add_nova_flag { | 
|  | 576 | echo "$1" >> $NOVA_DIR/bin/nova.conf | 
|  | 577 | } | 
|  | 578 |  | 
|  | 579 | # (re)create nova.conf | 
|  | 580 | rm -f $NOVA_DIR/bin/nova.conf | 
|  | 581 | add_nova_flag "--verbose" | 
|  | 582 | add_nova_flag "--nodaemon" | 
| Jesse Andrews | 8ff5dbc | 2011-09-25 22:28:08 -0700 | [diff] [blame] | 583 | add_nova_flag "--scheduler_driver=$SCHEDULER" | 
| Jesse Andrews | d1879c5 | 2011-09-16 16:28:13 -0700 | [diff] [blame] | 584 | add_nova_flag "--dhcpbridge_flagfile=$NOVA_DIR/bin/nova.conf" | 
|  | 585 | add_nova_flag "--network_manager=nova.network.manager.$NET_MAN" | 
|  | 586 | add_nova_flag "--my_ip=$HOST_IP" | 
| Anthony Young | b1bdd5e | 2011-09-20 09:39:50 -0700 | [diff] [blame] | 587 | add_nova_flag "--public_interface=$PUBLIC_INTERFACE" | 
|  | 588 | add_nova_flag "--vlan_interface=$VLAN_INTERFACE" | 
| Jesse Andrews | d1879c5 | 2011-09-16 16:28:13 -0700 | [diff] [blame] | 589 | add_nova_flag "--sql_connection=$BASE_SQL_CONN/nova" | 
|  | 590 | add_nova_flag "--libvirt_type=$LIBVIRT_TYPE" | 
| Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 591 | add_nova_flag "--osapi_extensions_path=$OPENSTACKX_DIR/extensions" | 
| Jesse Andrews | d1879c5 | 2011-09-16 16:28:13 -0700 | [diff] [blame] | 592 | add_nova_flag "--vncproxy_url=http://$HOST_IP:6080" | 
|  | 593 | add_nova_flag "--vncproxy_wwwroot=$NOVNC_DIR/" | 
|  | 594 | add_nova_flag "--api_paste_config=$KEYSTONE_DIR/examples/paste/nova-api-paste.ini" | 
|  | 595 | add_nova_flag "--image_service=nova.image.glance.GlanceImageService" | 
|  | 596 | add_nova_flag "--ec2_dmz_host=$EC2_DMZ_HOST" | 
|  | 597 | add_nova_flag "--rabbit_host=$RABBIT_HOST" | 
| Jesse Andrews | 53ed387 | 2011-10-02 14:28:17 -0400 | [diff] [blame] | 598 | add_nova_flag "--rabbit_password=$RABBIT_PASSWORD" | 
| Jesse Andrews | d1879c5 | 2011-09-16 16:28:13 -0700 | [diff] [blame] | 599 | add_nova_flag "--glance_api_servers=$GLANCE_HOSTPORT" | 
| Anthony Young | b1bdd5e | 2011-09-20 09:39:50 -0700 | [diff] [blame] | 600 | add_nova_flag "--flat_network_bridge=$FLAT_NETWORK_BRIDGE" | 
| Jesse Andrews | d1879c5 | 2011-09-16 16:28:13 -0700 | [diff] [blame] | 601 | if [ -n "$FLAT_INTERFACE" ]; then | 
|  | 602 | add_nova_flag "--flat_interface=$FLAT_INTERFACE" | 
|  | 603 | fi | 
|  | 604 | if [ -n "$MULTI_HOST" ]; then | 
|  | 605 | add_nova_flag "--multi_host=$MULTI_HOST" | 
|  | 606 | fi | 
|  | 607 |  | 
| Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 608 | # Nova Database | 
|  | 609 | # ~~~~~~~~~~~~~ | 
|  | 610 |  | 
|  | 611 | # All nova components talk to a central database.  We will need to do this step | 
|  | 612 | # only once for an entire cluster. | 
|  | 613 |  | 
| Anthony Young | a074800 | 2011-09-16 21:37:36 -0700 | [diff] [blame] | 614 | if [[ "$ENABLED_SERVICES" =~ "mysql" ]]; then | 
|  | 615 | # (re)create nova database | 
| Anthony Young | 7a549f4 | 2011-10-12 07:13:13 +0000 | [diff] [blame] | 616 | mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'DROP DATABASE IF EXISTS nova;' | 
|  | 617 | mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'CREATE DATABASE nova;' | 
| Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 618 |  | 
|  | 619 | # (re)create nova database | 
| Anthony Young | a074800 | 2011-09-16 21:37:36 -0700 | [diff] [blame] | 620 | $NOVA_DIR/bin/nova-manage db sync | 
|  | 621 |  | 
|  | 622 | # create a small network | 
| termie | 197d53d | 2011-09-28 17:18:23 -0700 | [diff] [blame] | 623 | $NOVA_DIR/bin/nova-manage network create private $FIXED_RANGE 1 $FIXED_NETWORK_SIZE | 
| Anthony Young | a074800 | 2011-09-16 21:37:36 -0700 | [diff] [blame] | 624 |  | 
|  | 625 | # create some floating ips | 
|  | 626 | $NOVA_DIR/bin/nova-manage floating create $FLOATING_RANGE | 
|  | 627 | fi | 
|  | 628 |  | 
|  | 629 |  | 
| Jesse Andrews | e8d9cd8 | 2011-09-13 15:16:26 -0700 | [diff] [blame] | 630 | # Keystone | 
|  | 631 | # -------- | 
|  | 632 |  | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 633 | if [[ "$ENABLED_SERVICES" =~ "key" ]]; then | 
|  | 634 | # (re)create keystone database | 
| Anthony Young | 7a549f4 | 2011-10-12 07:13:13 +0000 | [diff] [blame] | 635 | mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'DROP DATABASE IF EXISTS keystone;' | 
|  | 636 | mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'CREATE DATABASE keystone;' | 
| Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 637 |  | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 638 | # FIXME (anthony) keystone should use keystone.conf.example | 
|  | 639 | KEYSTONE_CONF=$KEYSTONE_DIR/etc/keystone.conf | 
| Jesse Andrews | bf3868d | 2011-09-16 11:31:16 -0700 | [diff] [blame] | 640 | cp $FILES/keystone.conf $KEYSTONE_CONF | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 641 | sudo sed -e "s,%SQL_CONN%,$BASE_SQL_CONN/keystone,g" -i $KEYSTONE_CONF | 
| Anthony Young | e8fed48 | 2011-09-26 19:50:43 -0700 | [diff] [blame] | 642 | sudo sed -e "s,%DEST%,$DEST,g" -i $KEYSTONE_CONF | 
| Anthony Young | 3a09312 | 2011-09-13 19:01:45 +0000 | [diff] [blame] | 643 |  | 
| Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 644 | # keystone_data.sh creates our admin user and our ``SERVICE_TOKEN``. | 
| Anthony Young | ec21d93 | 2011-09-16 16:05:55 -0700 | [diff] [blame] | 645 | KEYSTONE_DATA=$KEYSTONE_DIR/bin/keystone_data.sh | 
|  | 646 | cp $FILES/keystone_data.sh $KEYSTONE_DATA | 
|  | 647 | sudo sed -e "s,%HOST_IP%,$HOST_IP,g" -i $KEYSTONE_DATA | 
| Jesse Andrews | b96871e | 2011-10-02 09:02:46 -0700 | [diff] [blame] | 648 | sudo sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $KEYSTONE_DATA | 
| Jesse Andrews | 89358af | 2011-10-02 14:11:17 -0400 | [diff] [blame] | 649 | sudo sed -e "s,%ADMIN_PASSWORD%,$ADMIN_PASSWORD,g" -i $KEYSTONE_DATA | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 650 | # initialize keystone with default users/endpoints | 
| Anthony Young | ec21d93 | 2011-09-16 16:05:55 -0700 | [diff] [blame] | 651 | BIN_DIR=$KEYSTONE_DIR/bin bash $KEYSTONE_DATA | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 652 | fi | 
| Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 653 |  | 
| Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 654 |  | 
| Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 655 | # Launch Services | 
|  | 656 | # =============== | 
| Jesse Andrews | 30f68e9 | 2011-09-13 00:59:54 -0700 | [diff] [blame] | 657 |  | 
| Jesse Andrews | 1c1d150 | 2011-09-12 19:29:56 -0700 | [diff] [blame] | 658 | # nova api crashes if we start it with a regular screen command, | 
|  | 659 | # so send the start command by forcing text into the window. | 
| Jesse Andrews | dfcd200 | 2011-09-13 13:17:22 -0700 | [diff] [blame] | 660 | # Only run the services specified in ``ENABLED_SERVICES`` | 
|  | 661 |  | 
| Jesse Andrews | 1f71760 | 2011-09-16 15:18:53 -0700 | [diff] [blame] | 662 | # our screen helper to launch a service in a hidden named screen | 
| Jesse Andrews | 1c1d150 | 2011-09-12 19:29:56 -0700 | [diff] [blame] | 663 | function screen_it { | 
| Jesse Andrews | 1f71760 | 2011-09-16 15:18:53 -0700 | [diff] [blame] | 664 | NL=`echo -ne '\015'` | 
| Anthony Young | 292e46d | 2011-09-13 11:28:56 -0700 | [diff] [blame] | 665 | if [[ "$ENABLED_SERVICES" =~ "$1" ]]; then | 
|  | 666 | screen -S nova -X screen -t $1 | 
|  | 667 | screen -S nova -p $1 -X stuff "$2$NL" | 
|  | 668 | fi | 
| Jesse Andrews | 1c1d150 | 2011-09-12 19:29:56 -0700 | [diff] [blame] | 669 | } | 
|  | 670 |  | 
| Jesse Andrews | a16e5e9 | 2011-09-16 16:30:55 -0700 | [diff] [blame] | 671 | # create a new named screen to run processes in | 
|  | 672 | screen -d -m -S nova -t nova | 
|  | 673 | sleep 1 | 
|  | 674 |  | 
| Jesse Andrews | 644b8e8 | 2011-10-02 17:50:41 -0400 | [diff] [blame] | 675 | # launch the glance registery service | 
| Anthony Young | d000b22 | 2011-09-19 14:46:53 -0700 | [diff] [blame] | 676 | if [[ "$ENABLED_SERVICES" =~ "g-reg" ]]; then | 
|  | 677 | screen_it g-reg "cd $GLANCE_DIR; bin/glance-registry --config-file=etc/glance-registry.conf" | 
|  | 678 | fi | 
|  | 679 |  | 
| Jesse Andrews | 644b8e8 | 2011-10-02 17:50:41 -0400 | [diff] [blame] | 680 | # launch the glance api and wait for it to answer before continuing | 
| Anthony Young | d000b22 | 2011-09-19 14:46:53 -0700 | [diff] [blame] | 681 | if [[ "$ENABLED_SERVICES" =~ "g-api" ]]; then | 
|  | 682 | screen_it g-api "cd $GLANCE_DIR; bin/glance-api --config-file=etc/glance-api.conf" | 
| James E. Blair | 92e8199 | 2011-10-11 09:26:29 -0500 | [diff] [blame] | 683 | echo "Waiting for g-api ($GLANCE_HOSTPORT) to start..." | 
| James E. Blair | 7057ae9 | 2011-10-20 12:23:50 -0500 | [diff] [blame] | 684 | if ! timeout 60 sh -c "while ! wget -q -O- http://$GLANCE_HOSTPORT; do sleep 1; done"; then | 
| James E. Blair | 92e8199 | 2011-10-11 09:26:29 -0500 | [diff] [blame] | 685 | echo "g-api did not start" | 
|  | 686 | exit 1 | 
|  | 687 | fi | 
| Anthony Young | d000b22 | 2011-09-19 14:46:53 -0700 | [diff] [blame] | 688 | fi | 
|  | 689 |  | 
| Jesse Andrews | 644b8e8 | 2011-10-02 17:50:41 -0400 | [diff] [blame] | 690 | # launch the keystone and wait for it to answer before continuing | 
| Anthony Young | d000b22 | 2011-09-19 14:46:53 -0700 | [diff] [blame] | 691 | if [[ "$ENABLED_SERVICES" =~ "key" ]]; then | 
| Anthony Young | f33796e | 2011-09-22 00:14:12 -0700 | [diff] [blame] | 692 | screen_it key "cd $KEYSTONE_DIR && $KEYSTONE_DIR/bin/keystone --config-file $KEYSTONE_CONF -d" | 
| James E. Blair | 92e8199 | 2011-10-11 09:26:29 -0500 | [diff] [blame] | 693 | echo "Waiting for keystone to start..." | 
| James E. Blair | 7057ae9 | 2011-10-20 12:23:50 -0500 | [diff] [blame] | 694 | if ! timeout 60 sh -c "while ! wget -q -O- http://127.0.0.1:5000; do sleep 1; done"; then | 
| James E. Blair | 92e8199 | 2011-10-11 09:26:29 -0500 | [diff] [blame] | 695 | echo "keystone did not start" | 
|  | 696 | exit 1 | 
|  | 697 | fi | 
| Anthony Young | d000b22 | 2011-09-19 14:46:53 -0700 | [diff] [blame] | 698 | fi | 
|  | 699 |  | 
| Jesse Andrews | 644b8e8 | 2011-10-02 17:50:41 -0400 | [diff] [blame] | 700 | # launch the nova-api and wait for it to answer before continuing | 
| Anthony Young | d000b22 | 2011-09-19 14:46:53 -0700 | [diff] [blame] | 701 | if [[ "$ENABLED_SERVICES" =~ "n-api" ]]; then | 
| Anthony Young | 9bf3d76 | 2011-09-20 09:51:16 -0700 | [diff] [blame] | 702 | screen_it n-api "cd $NOVA_DIR && $NOVA_DIR/bin/nova-api" | 
| James E. Blair | 92e8199 | 2011-10-11 09:26:29 -0500 | [diff] [blame] | 703 | echo "Waiting for nova-api to start..." | 
| James E. Blair | 7057ae9 | 2011-10-20 12:23:50 -0500 | [diff] [blame] | 704 | if ! timeout 60 sh -c "while ! wget -q -O- http://127.0.0.1:8774; do sleep 1; done"; then | 
| James E. Blair | 92e8199 | 2011-10-11 09:26:29 -0500 | [diff] [blame] | 705 | echo "nova-api did not start" | 
|  | 706 | exit 1 | 
|  | 707 | fi | 
| Anthony Young | d000b22 | 2011-09-19 14:46:53 -0700 | [diff] [blame] | 708 | fi | 
| root | 40a3700 | 2011-09-20 18:06:14 +0000 | [diff] [blame] | 709 | # Launching nova-compute should be as simple as running ``nova-compute`` but | 
|  | 710 | # have to do a little more than that in our script.  Since we add the group | 
| Jesse Andrews | 1f71760 | 2011-09-16 15:18:53 -0700 | [diff] [blame] | 711 | # ``libvirtd`` to our user in this script, when nova-compute is run it is | 
| root | 40a3700 | 2011-09-20 18:06:14 +0000 | [diff] [blame] | 712 | # within the context of our original shell (so our groups won't be updated). | 
| Scott Moser | 8ab1ade | 2011-10-07 21:03:16 -0400 | [diff] [blame] | 713 | # Use 'sg' to execute nova-compute as a member of the libvirtd group. | 
|  | 714 | screen_it n-cpu "cd $NOVA_DIR && sg libvirtd $NOVA_DIR/bin/nova-compute" | 
| Anthony Young | acff87a | 2011-10-20 10:12:58 -0700 | [diff] [blame] | 715 | screen_it n-vol "cd $NOVA_DIR && $NOVA_DIR/bin/nova-volume" | 
| Anthony Young | 9bf3d76 | 2011-09-20 09:51:16 -0700 | [diff] [blame] | 716 | screen_it n-net "cd $NOVA_DIR && $NOVA_DIR/bin/nova-network" | 
|  | 717 | screen_it n-sch "cd $NOVA_DIR && $NOVA_DIR/bin/nova-scheduler" | 
| Anthony Young | 1c598da | 2011-10-05 08:07:53 -0700 | [diff] [blame] | 718 | screen_it n-vnc "cd $NOVNC_DIR && ./utils/nova-wsproxy.py 6080 --web . --flagfile=../nova/bin/nova.conf" | 
| Anthony Young | 9bf3d76 | 2011-09-20 09:51:16 -0700 | [diff] [blame] | 719 | screen_it dash "cd $DASH_DIR && sudo /etc/init.d/apache2 restart; sudo tail -f /var/log/apache2/error.log" | 
| Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 720 |  | 
| Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 721 | # Install Images | 
|  | 722 | # ============== | 
| Jesse Andrews | e49b8bd | 2011-09-12 18:08:04 -0700 | [diff] [blame] | 723 |  | 
| Anthony Young | 0ab1d46 | 2011-10-13 23:03:23 -0700 | [diff] [blame] | 724 | # Upload an image to glance. | 
| Jesse Andrews | 5372f43 | 2011-10-03 01:08:24 -0400 | [diff] [blame] | 725 | # | 
| Anthony Young | 0ab1d46 | 2011-10-13 23:03:23 -0700 | [diff] [blame] | 726 | # The default image is a small ***TTY*** testing image, which lets you login | 
|  | 727 | # the username/password of root/password. | 
|  | 728 | # | 
|  | 729 | # TTY also uses cloud-init, supporting login via keypair and sending scripts as | 
|  | 730 | # userdata.  See https://help.ubuntu.com/community/CloudInit for more on cloud-init | 
|  | 731 | # | 
| Jesse Andrews | aab7eae | 2011-10-19 10:30:19 -0700 | [diff] [blame] | 732 | # Override ``IMAGE_URLS`` with a comma-seperated list of uec images. | 
|  | 733 | # | 
|  | 734 | #  * **natty**: http://uec-images.ubuntu.com/natty/current/natty-server-cloudimg-amd64.tar.gz | 
|  | 735 | #  * **oneiric**: http://uec-images.ubuntu.com/oneiric/current/oneiric-server-cloudimg-amd64.tar.gz | 
| Jesse Andrews | 08e8b74 | 2011-10-02 23:42:56 -0400 | [diff] [blame] | 736 |  | 
| Jesse Andrews | 85d9be3 | 2011-10-03 00:01:28 -0400 | [diff] [blame] | 737 | if [[ "$ENABLED_SERVICES" =~ "g-reg" ]]; then | 
| Anthony Young | 7a8989e | 2011-10-14 10:20:30 -0700 | [diff] [blame] | 738 | # Create a directory for the downloaded image tarballs. | 
| Jesse Andrews | 08e8b74 | 2011-10-02 23:42:56 -0400 | [diff] [blame] | 739 | mkdir -p $FILES/images | 
|  | 740 |  | 
| Anthony Young | 120f486 | 2011-10-14 09:31:09 -0700 | [diff] [blame] | 741 | for image_url in ${IMAGE_URLS//,/ }; do | 
|  | 742 | # Downloads the image (uec ami+aki style), then extracts it. | 
|  | 743 | IMAGE_FNAME=`echo "$image_url" | python -c "import sys; print sys.stdin.read().split('/')[-1]"` | 
|  | 744 | IMAGE_NAME=`echo "$IMAGE_FNAME" | python -c "import sys; print sys.stdin.read().split('.tar.gz')[0].split('.tgz')[0]"` | 
|  | 745 | if [ ! -f $FILES/$IMAGE_FNAME ]; then | 
|  | 746 | wget -c $image_url -O $FILES/$IMAGE_FNAME | 
|  | 747 | fi | 
| Jesse Andrews | e49b8bd | 2011-09-12 18:08:04 -0700 | [diff] [blame] | 748 |  | 
| Anthony Young | 120f486 | 2011-10-14 09:31:09 -0700 | [diff] [blame] | 749 | # Extract ami and aki files | 
|  | 750 | tar -zxf $FILES/$IMAGE_FNAME -C $FILES/images | 
| Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 751 |  | 
| Anthony Young | 120f486 | 2011-10-14 09:31:09 -0700 | [diff] [blame] | 752 | # Use glance client to add the kernel the root filesystem. | 
|  | 753 | # We parse the results of the first upload to get the glance ID of the | 
|  | 754 | # kernel for use when uploading the root filesystem. | 
|  | 755 | RVAL=`glance add -A $SERVICE_TOKEN name="$IMAGE_NAME-kernel" is_public=true container_format=aki disk_format=aki < $FILES/images/$IMAGE_NAME-vmlinuz*` | 
|  | 756 | KERNEL_ID=`echo $RVAL | cut -d":" -f2 | tr -d " "` | 
|  | 757 | glance add -A $SERVICE_TOKEN name="$IMAGE_NAME" is_public=true container_format=ami disk_format=ami kernel_id=$KERNEL_ID < $FILES/images/$IMAGE_NAME.img | 
|  | 758 | done | 
| Jesse Andrews | e49b8bd | 2011-09-12 18:08:04 -0700 | [diff] [blame] | 759 | fi | 
| Jesse Andrews | 2485906 | 2011-09-15 21:28:23 -0700 | [diff] [blame] | 760 |  | 
| Scott Moser | b94f4bf | 2011-10-07 14:51:07 +0000 | [diff] [blame] | 761 | # Fin | 
|  | 762 | # === | 
|  | 763 |  | 
|  | 764 |  | 
|  | 765 | ) 2>&1 | tee "${LOGFILE}" | 
|  | 766 |  | 
|  | 767 | # Check that the left side of the above pipe succeeded | 
|  | 768 | for ret in "${PIPESTATUS[@]}"; do [ $ret -eq 0 ] || exit $ret; done | 
|  | 769 |  | 
|  | 770 | ( | 
| Jesse Andrews | 2485906 | 2011-09-15 21:28:23 -0700 | [diff] [blame] | 771 | # Using the cloud | 
|  | 772 | # =============== | 
|  | 773 |  | 
|  | 774 | # If you installed the dashboard on this server, then you should be able | 
| root | 40a3700 | 2011-09-20 18:06:14 +0000 | [diff] [blame] | 775 | # to access the site using your browser. | 
| Jesse Andrews | 2485906 | 2011-09-15 21:28:23 -0700 | [diff] [blame] | 776 | if [[ "$ENABLED_SERVICES" =~ "dash" ]]; then | 
|  | 777 | echo "dashboard is now available at http://$HOST_IP/" | 
|  | 778 | fi | 
|  | 779 |  | 
|  | 780 | # If keystone is present, you can point nova cli to this server | 
|  | 781 | if [[ "$ENABLED_SERVICES" =~ "key" ]]; then | 
|  | 782 | echo "keystone is serving at http://$HOST_IP:5000/v2.0/" | 
|  | 783 | echo "examples on using novaclient command line is in exercise.sh" | 
| Jesse Andrews | 89358af | 2011-10-02 14:11:17 -0400 | [diff] [blame] | 784 | echo "the default users are: admin and demo" | 
|  | 785 | echo "the password: $ADMIN_PASSWORD" | 
| Jesse Andrews | 2485906 | 2011-09-15 21:28:23 -0700 | [diff] [blame] | 786 | fi | 
| termie | 523c405 | 2011-09-28 19:49:40 -0500 | [diff] [blame] | 787 |  | 
| Scott Moser | c4e47ab | 2011-10-07 13:29:29 +0000 | [diff] [blame] | 788 | # indicate how long this took to run (bash maintained variable 'SECONDS') | 
| Scott Moser | b94f4bf | 2011-10-07 14:51:07 +0000 | [diff] [blame] | 789 | echo "stack.sh completed in $SECONDS seconds." | 
| Scott Moser | 7c48118 | 2011-10-07 13:50:21 +0000 | [diff] [blame] | 790 |  | 
| Scott Moser | b94f4bf | 2011-10-07 14:51:07 +0000 | [diff] [blame] | 791 | ) | tee -a "$LOGFILE" |