blob: 8dbb9e9c384a4d3d23089ce210430b0f6d70315a [file] [log] [blame]
Jesse Andrewsba23cc72011-09-11 03:22:13 -07001#!/usr/bin/env bash
2
Jesse Andrews0e7e8972011-10-02 16:36:54 -04003# **stack.sh** is an opinionated openstack developer installation.
4
5# This script installs and configures *nova*, *glance*, *dashboard* and *keystone*
Jesse Andrewsba23cc72011-09-11 03:22:13 -07006
Vishvananda Ishaya9b353672011-10-20 10:07:10 -07007# This script allows you to specify configuration options of what git
Jesse Andrews5372f432011-10-03 01:08:24 -04008# repositories to use, enabled services, network configuration and various
9# passwords. If you are crafty you can run the script on multiple nodes using
10# shared settings for common resources (mysql, rabbitmq) and build a multi-node
11# developer install.
Jesse Andrews782b9912011-10-02 16:53:21 -040012
Jesse Andrewsc4b3aab2011-09-15 22:54:52 -070013# To keep this script simple we assume you are running on an **Ubuntu 11.04
Jesse Andrews24859062011-09-15 21:28:23 -070014# Natty** machine. It should work in a VM or physical server. Additionally we
15# put the list of *apt* and *pip* dependencies and other configuration files in
16# this repo. So start by grabbing this script and the dependencies.
17
Jesse Andrews0e7e8972011-10-02 16:36:54 -040018# Learn more and get the most recent version at http://devstack.org
Jesse Andrews6edd17f2011-09-15 22:19:42 -070019
20# Sanity Check
21# ============
22
Jesse Andrewsc4b3aab2011-09-15 22:54:52 -070023# Warn users who aren't on natty, but allow them to override check and attempt
Jesse Andrews6edd17f2011-09-15 22:19:42 -070024# installation with ``FORCE=yes ./stack``
Jesse Andrews6edd17f2011-09-15 22:19:42 -070025if ! grep -q natty /etc/lsb-release; then
26 echo "WARNING: this script has only been tested on natty"
27 if [[ "$FORCE" != "yes" ]]; then
28 echo "If you wish to run this script anyway run with FORCE=yes"
29 exit 1
30 fi
31fi
32
Jesse Andrews51fb22e2011-10-19 09:24:17 -070033# Keep track of the current devstack directory.
34TOP_DIR=$(cd $(dirname "$0") && pwd)
35
root40a37002011-09-20 18:06:14 +000036# stack.sh keeps the list of **apt** and **pip** dependencies in external
Jesse Andrews4d282182011-09-16 11:27:43 -070037# files, along with config templates and other useful files. You can find these
root40a37002011-09-20 18:06:14 +000038# in the ``files`` directory (next to this script). We will reference this
Jesse Andrewsbf3868d2011-09-16 11:31:16 -070039# directory using the ``FILES`` variable in this script.
Jesse Andrews51fb22e2011-10-19 09:24:17 -070040FILES=$TOP_DIR/files
Jesse Andrewsbf3868d2011-09-16 11:31:16 -070041if [ ! -d $FILES ]; then
42 echo "ERROR: missing devstack/files - did you grab more than just stack.sh?"
Jesse Andrews6edd17f2011-09-15 22:19:42 -070043 exit 1
44fi
45
Anthony Young6015c822011-10-12 07:17:11 +000046
Scott Moserf9da5082011-10-07 21:28:00 -040047
48# Settings
49# ========
50
51# This script is customizable through setting environment variables. If you
52# want to override a setting you can either::
53#
Anthony Young7a549f42011-10-12 07:13:13 +000054# export MYSQL_PASSWORD=anothersecret
Scott Moserf9da5082011-10-07 21:28:00 -040055# ./stack.sh
56#
Anthony Young7a549f42011-10-12 07:13:13 +000057# You can also pass options on a single line ``MYSQL_PASSWORD=simple ./stack.sh``
Scott Moserf9da5082011-10-07 21:28:00 -040058#
59# Additionally, you can put any local variables into a ``localrc`` file, like::
60#
Anthony Young7a549f42011-10-12 07:13:13 +000061# MYSQL_PASSWORD=anothersecret
Scott Moserf9da5082011-10-07 21:28:00 -040062# MYSQL_USER=hellaroot
63#
64# We try to have sensible defaults, so you should be able to run ``./stack.sh``
65# in most cases.
66#
67# We our settings from ``stackrc``. This file is distributed with devstack and
Vishvananda Ishaya9b353672011-10-20 10:07:10 -070068# contains locations for what repositories to use. If you want to use other
69# repositories and branches, you can add your own settings with another file
Scott Moserf9da5082011-10-07 21:28:00 -040070# called ``localrc``
71#
Vishvananda Ishaya9b353672011-10-20 10:07:10 -070072# If ``localrc`` exists, then ``stackrc`` will load those settings. This is
Scott Moserf9da5082011-10-07 21:28:00 -040073# useful for changing a branch or repostiory to test other versions. Also you
Anthony Young7a549f42011-10-12 07:13:13 +000074# can store your other settings like **MYSQL_PASSWORD** or **ADMIN_PASSWORD** instead
Scott Moserf9da5082011-10-07 21:28:00 -040075# of letting devstack generate random ones for you.
76source ./stackrc
77
Jesse Andrews6edd17f2011-09-15 22:19:42 -070078# Destination path for installation ``DEST``
Anthony Younge8fed482011-09-26 19:50:43 -070079DEST=${DEST:-/opt/stack}
Jesse Andrewsba23cc72011-09-11 03:22:13 -070080
Dean Troyer9122e7b2011-10-17 14:07:11 -050081# OpenStack is designed to be run as a regular user (Dashboard will fail to run
82# as root, since apache refused to startup serve content from root user). If
83# stack.sh is run as root, it automatically creates a stack user with
84# sudo privileges and runs as that user.
85
86if [[ $EUID -eq 0 ]]; then
James E. Blair92e81992011-10-11 09:26:29 -050087 ROOTSLEEP=${ROOTSLEEP:-10}
Dean Troyer9122e7b2011-10-17 14:07:11 -050088 echo "You are running this script as root."
James E. Blair92e81992011-10-11 09:26:29 -050089 echo "In $ROOTSLEEP seconds, we will create a user 'stack' and run as that user"
90 sleep $ROOTSLEEP
Dean Troyer9122e7b2011-10-17 14:07:11 -050091
92 # since this script runs as a normal user, we need to give that user
93 # ability to run sudo
Scott Moseree1b4952011-10-20 13:09:11 -040094 apt_get update
95 apt_get install sudo
Dean Troyer9122e7b2011-10-17 14:07:11 -050096
97 if ! getent passwd stack >/dev/null; then
98 echo "Creating a user called stack"
99 useradd -U -G sudo -s /bin/bash -d $DEST -m stack
100 fi
101
102 echo "Giving stack user passwordless sudo priviledges"
103 # natty uec images sudoers does not have a '#includedir'. add one.
104 grep -q "^#includedir.*/etc/sudoers.d" /etc/sudoers ||
105 echo "#includedir /etc/sudoers.d" >> /etc/sudoers
106 ( umask 226 && echo "stack ALL=(ALL) NOPASSWD:ALL" \
107 > /etc/sudoers.d/50_stack_sh )
108
109 echo "Copying files to stack user"
110 STACK_DIR="$DEST/${PWD##*/}"
111 cp -r -f "$PWD" "$STACK_DIR"
112 chown -R stack "$STACK_DIR"
113 if [[ "$SHELL_AFTER_RUN" != "no" ]]; then
114 exec su -c "set -e; cd $STACK_DIR; bash stack.sh; bash" stack
115 else
116 exec su -c "set -e; cd $STACK_DIR; bash stack.sh" stack
117 fi
118 exit 1
119fi
120
Jesse Andrews6f3baaf2011-09-12 11:59:38 -0700121# Set the destination directories for openstack projects
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700122NOVA_DIR=$DEST/nova
123DASH_DIR=$DEST/dash
124GLANCE_DIR=$DEST/glance
125KEYSTONE_DIR=$DEST/keystone
126NOVACLIENT_DIR=$DEST/python-novaclient
Anthony Young2f140202011-09-26 13:02:40 -0700127OPENSTACKX_DIR=$DEST/openstackx
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700128NOVNC_DIR=$DEST/noVNC
Anthony Younga8416442011-09-13 20:07:44 -0700129
130# Specify which services to launch. These generally correspond to screen tabs
Jesse Andrews9b6741e2011-10-02 10:01:00 -0700131ENABLED_SERVICES=${ENABLED_SERVICES:-g-api,g-reg,key,n-api,n-cpu,n-net,n-sch,n-vnc,dash,mysql,rabbit}
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700132
Jesse Andrews782b9912011-10-02 16:53:21 -0400133# Nova hypervisor configuration. We default to **kvm** but will drop back to
134# **qemu** if we are unable to load the kvm module. Stack.sh can also install
135# an **LXC** based system.
136LIBVIRT_TYPE=${LIBVIRT_TYPE:-kvm}
137
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400138# nova supports pluggable schedulers. ``SimpleScheduler`` should work in most
139# cases unless you are working on multi-zone mode.
Jesse Andrews782b9912011-10-02 16:53:21 -0400140SCHEDULER=${SCHEDULER:-nova.scheduler.simple.SimpleScheduler}
141
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700142# Use the first IP unless an explicit is set by ``HOST_IP`` environment variable
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700143if [ ! -n "$HOST_IP" ]; then
Dean Troyer2a15a7c2011-09-13 13:22:14 -0500144 HOST_IP=`LC_ALL=C /sbin/ifconfig | grep -m 1 'inet addr:'| cut -d: -f2 | awk '{print $1}'`
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700145fi
146
Scott Moseree1b4952011-10-20 13:09:11 -0400147# apt-get wrapper to just get arguments set correctly
148function apt_get() {
149 local sudo="sudo"
150 [ "$(id -u)" = "0" ] && sudo=""
151 $sudo DEBIAN_FRONTEND=noninteractive apt-get \
152 --option "Dpkg::Options::=--force-confold" --assume-yes "$@"
153}
154
Anthony Young7a549f42011-10-12 07:13:13 +0000155# Generic helper to configure passwords
156function read_password {
157 set +o xtrace
158 var=$1; msg=$2
159 pw=${!var}
160
Anthony Youngb4db2252011-10-12 14:08:08 -0700161 localrc=$TOP_DIR/localrc
Anthony Young6015c822011-10-12 07:17:11 +0000162
Anthony Young7a549f42011-10-12 07:13:13 +0000163 # If the password is not defined yet, proceed to prompt user for a password.
164 if [ ! $pw ]; then
165 # If there is no localrc file, create one
Anthony Youngb4db2252011-10-12 14:08:08 -0700166 if [ ! -e $localrc ]; then
167 touch $localrc
Anthony Young7a549f42011-10-12 07:13:13 +0000168 fi
169
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700170 # Presumably if we got this far it can only be that our localrc is missing
Anthony Young7a549f42011-10-12 07:13:13 +0000171 # the required password. Prompt user for a password and write to localrc.
Anthony Youngb4db2252011-10-12 14:08:08 -0700172 echo ''
173 echo '################################################################################'
174 echo $msg
175 echo '################################################################################'
176 echo "This value will be written to your localrc file so you don't have to enter it again."
177 echo "It is probably best to avoid spaces and weird characters."
178 echo "If you leave this blank, a random default value will be used."
179 echo "Enter a password now:"
180 read $var
181 pw=${!var}
182 if [ ! $pw ]; then
183 pw=`openssl rand -hex 10`
Anthony Young7a549f42011-10-12 07:13:13 +0000184 fi
Anthony Youngb4db2252011-10-12 14:08:08 -0700185 eval "$var=$pw"
186 echo "$var=$pw" >> $localrc
Anthony Young7a549f42011-10-12 07:13:13 +0000187 fi
188 set -o xtrace
189}
190
191
Jesse Andrews782b9912011-10-02 16:53:21 -0400192# Nova Network Configuration
193# --------------------------
194
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700195# FIXME: more documentation about why these are important flags. Also
Jesse Andrews5372f432011-10-03 01:08:24 -0400196# we should make sure we use the same variable names as the flag names.
197
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700198PUBLIC_INTERFACE=${PUBLIC_INTERFACE:-eth0}
Jesse Andrewsb5197e42011-09-26 12:48:31 -0700199FIXED_RANGE=${FIXED_RANGE:-10.0.0.0/24}
200FIXED_NETWORK_SIZE=${FIXED_NETWORK_SIZE:-256}
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400201FLOATING_RANGE=${FLOATING_RANGE:-172.24.4.1/28}
Jesse Andrewsa72f7ad2011-09-25 13:41:22 -0700202NET_MAN=${NET_MAN:-FlatDHCPManager}
Anthony Younga8416442011-09-13 20:07:44 -0700203EC2_DMZ_HOST=${EC2_DMZ_HOST:-$HOST_IP}
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700204FLAT_NETWORK_BRIDGE=${FLAT_NETWORK_BRIDGE:-br100}
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400205VLAN_INTERFACE=${VLAN_INTERFACE:-$PUBLIC_INTERFACE}
206
207# Multi-host is a mode where each compute node runs its own network node. This
208# allows network operations and routing for a VM to occur on the server that is
209# running the VM - removing a SPOF and bandwidth bottleneck.
210MULTI_HOST=${MULTI_HOST:-0}
Jesse Andrews30f68e92011-09-13 00:59:54 -0700211
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700212# If you are using FlatDHCP on multiple hosts, set the ``FLAT_INTERFACE``
213# variable but make sure that the interface doesn't already have an
214# ip or you risk breaking things.
Jesse Andrews5372f432011-10-03 01:08:24 -0400215#
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700216# **DHCP Warning**: If your flat interface device uses DHCP, there will be a
217# hiccup while the network is moved from the flat interface to the flat network
218# bridge. This will happen when you launch your first instance. Upon launch
219# you will lose all connectivity to the node, and the vm launch will probably
Jesse Andrews5372f432011-10-03 01:08:24 -0400220# fail.
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700221#
222# If you are running on a single node and don't need to access the VMs from
Jesse Andrews5372f432011-10-03 01:08:24 -0400223# devices other than that node, you can set the flat interface to the same
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700224# value as ``FLAT_NETWORK_BRIDGE``. This will stop the network hiccup from
Jesse Andrews5372f432011-10-03 01:08:24 -0400225# occuring.
Jesse Andrews8ff5dbc2011-09-25 22:28:08 -0700226FLAT_INTERFACE=${FLAT_INTERFACE:-eth0}
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700227
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400228## FIXME(ja): should/can we check that FLAT_INTERFACE is sane?
229
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700230
Jesse Andrews782b9912011-10-02 16:53:21 -0400231# MySQL & RabbitMQ
232# ----------------
233
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700234# We configure Nova, Dashboard, Glance and Keystone to use MySQL as their
Jesse Andrews782b9912011-10-02 16:53:21 -0400235# database server. While they share a single server, each has their own
236# database and tables.
237
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700238# By default this script will install and configure MySQL. If you want to
Jesse Andrews782b9912011-10-02 16:53:21 -0400239# use an existing server, you can pass in the user/password/host parameters.
Anthony Young7a549f42011-10-12 07:13:13 +0000240# You will need to send the same ``MYSQL_PASSWORD`` to every host if you are doing
Jesse Andrews782b9912011-10-02 16:53:21 -0400241# a multi-node devstack installation.
Jesse Andrewsa50a3462011-10-19 15:38:10 -0700242MYSQL_HOST=${MYSQL_HOST:-localhost}
Anthony Young320412b2011-09-14 02:39:10 -0700243MYSQL_USER=${MYSQL_USER:-root}
Anthony Young7a549f42011-10-12 07:13:13 +0000244read_password MYSQL_PASSWORD "ENTER A PASSWORD TO USE FOR MYSQL."
Jesse Andrews782b9912011-10-02 16:53:21 -0400245
Anthony Younga8416442011-09-13 20:07:44 -0700246# don't specify /db in this string, so we can use it for multiple services
Anthony Young7a549f42011-10-12 07:13:13 +0000247BASE_SQL_CONN=${BASE_SQL_CONN:-mysql://$MYSQL_USER:$MYSQL_PASSWORD@$MYSQL_HOST}
Anthony Younga8416442011-09-13 20:07:44 -0700248
249# Rabbit connection info
250RABBIT_HOST=${RABBIT_HOST:-localhost}
Anthony Young7a549f42011-10-12 07:13:13 +0000251read_password RABBIT_PASSWORD "ENTER A PASSWORD TO USE FOR RABBIT."
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700252
Anthony Young377aae62011-09-14 09:55:31 -0700253# Glance connection info. Note the port must be specified.
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700254GLANCE_HOSTPORT=${GLANCE_HOSTPORT:-$HOST_IP:9292}
Anthony Young377aae62011-09-14 09:55:31 -0700255
Anthony Young7a549f42011-10-12 07:13:13 +0000256
Jesse Andrews782b9912011-10-02 16:53:21 -0400257# Keystone
258# --------
259
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700260# Service Token - Openstack components need to have an admin token
261# to validate user tokens.
Anthony Young7a549f42011-10-12 07:13:13 +0000262read_password SERVICE_TOKEN "ENTER A SERVICE_TOKEN TO USE FOR THE SERVICE ADMIN TOKEN."
Anthony Youngf2aee712011-10-04 13:32:45 -0700263# Dash currently truncates usernames and passwords at 20 characters
Anthony Young7a549f42011-10-12 07:13:13 +0000264read_password ADMIN_PASSWORD "ENTER A PASSWORD TO USE FOR DASH AND KEYSTONE (20 CHARS OR LESS)."
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700265
Scott Moserf9da5082011-10-07 21:28:00 -0400266LOGFILE=${LOGFILE:-"$PWD/stack.sh.$$.log"}
267(
268# So that errors don't compound we exit on any errors so you see only the
269# first error that occured.
270trap failed ERR
271failed() {
272 local r=$?
273 set +o xtrace
274 [ -n "$LOGFILE" ] && echo "${0##*/} failed: full log in $LOGFILE"
275 exit $r
276}
277
278# Print the commands being run so that we can see the command that triggers
279# an error. It is also useful for following along as the install occurs.
280set -o xtrace
281
Jesse Andrewsfe95e0f2011-10-19 14:30:37 -0700282# create the destination directory and ensure it is writable by the user
Scott Moserf9da5082011-10-07 21:28:00 -0400283sudo mkdir -p $DEST
Jesse Andrewsfe95e0f2011-10-19 14:30:37 -0700284if [ ! -w $DEST ]; then
285 sudo chown `whoami` $DEST
286fi
Jesse Andrews53ed3872011-10-02 14:28:17 -0400287
Jesse Andrews30f68e92011-09-13 00:59:54 -0700288# Install Packages
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700289# ================
Jesse Andrews30f68e92011-09-13 00:59:54 -0700290#
291# Openstack uses a fair number of other projects.
292
Jesse Andrews2caf8fd2011-09-12 16:15:11 -0700293
Jesse Andrews75a37652011-09-12 17:09:08 -0700294# install apt requirements
Scott Moseree1b4952011-10-20 13:09:11 -0400295apt_get update
296apt_get install `cat $FILES/apts/* | cut -d\# -f1 | grep -Ev "mysql-server|rabbitmq-server"`
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700297
Jesse Andrews75a37652011-09-12 17:09:08 -0700298# install python requirements
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700299sudo PIP_DOWNLOAD_CACHE=/var/cache/pip pip install `cat $FILES/pips/*`
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700300
Jesse Andrewsd61db852011-09-16 14:13:17 -0700301# git clone only if directory doesn't exist already. Since ``DEST`` might not
302# be owned by the installation user, we create the directory and change the
303# ownership to the proper user.
Jesse Andrews61632572011-09-12 17:40:00 -0700304function git_clone {
Jesse Andrews1f273602011-10-17 13:20:40 -0700305
Jesse Andrews917c6652011-10-24 18:47:06 -0700306 GIT_REMOTE=$1
307 GIT_DEST=$2
308 GIT_BRANCH=$3
309
Jesse Andrewseeec0202011-10-24 18:42:11 -0700310 # do a full clone only if the directory doesn't exist
Jesse Andrews917c6652011-10-24 18:47:06 -0700311 if [ ! -d $GIT_DEST ]; then
312 git clone $GIT_REMOTE $GIT_DEST
Anthony Young2f140202011-09-26 13:02:40 -0700313 cd $2
Anthony Young303233e2011-09-26 13:12:57 -0700314 # This checkout syntax works for both branches and tags
Jesse Andrews917c6652011-10-24 18:47:06 -0700315 git checkout $GIT_BRANCH
Jesse Andrewseeec0202011-10-24 18:42:11 -0700316 elif [[ "$RECLONE" == "yes" ]]; then
317 # if it does exist then simulate what clone does if asked to RECLONE
Jesse Andrews917c6652011-10-24 18:47:06 -0700318 cd $GIT_BRANCH
Jesse Andrewseeec0202011-10-24 18:42:11 -0700319 # set the url to pull from and fetch
Jesse Andrews917c6652011-10-24 18:47:06 -0700320 git remote set-url origin $GIT_REMOTE
Jesse Andrewseeec0202011-10-24 18:42:11 -0700321 git fetch origin
322 # if we don't delete the local content, then our system has pyc files
323 # from the previous branch leading to breakage (due to the py files
324 # having older timestamps than our pyc, so python thinks the pyc files
325 # are correct using them)
Jesse Andrewsb9b3ad42011-10-24 18:52:13 -0700326 sudo rm -rf *
Jesse Andrews917c6652011-10-24 18:47:06 -0700327 git checkout -f origin/$GIT_BRANCH
328 # a local branch might not exist for $3
329 git branch -D $GIT_BRANCH || true
330 git checkout -b $GIT_BRANCH
Jesse Andrews61632572011-09-12 17:40:00 -0700331 fi
332}
333
Jesse Andrews75a37652011-09-12 17:09:08 -0700334# compute service
Anthony Young2f140202011-09-26 13:02:40 -0700335git_clone $NOVA_REPO $NOVA_DIR $NOVA_BRANCH
Jesse Andrews75a37652011-09-12 17:09:08 -0700336# image catalog service
Anthony Young2f140202011-09-26 13:02:40 -0700337git_clone $GLANCE_REPO $GLANCE_DIR $GLANCE_BRANCH
Jesse Andrews75a37652011-09-12 17:09:08 -0700338# unified auth system (manages accounts/tokens)
Anthony Young2f140202011-09-26 13:02:40 -0700339git_clone $KEYSTONE_REPO $KEYSTONE_DIR $KEYSTONE_BRANCH
Jesse Andrews75a37652011-09-12 17:09:08 -0700340# a websockets/html5 or flash powered VNC console for vm instances
Anthony Young2f140202011-09-26 13:02:40 -0700341git_clone $NOVNC_REPO $NOVNC_DIR $NOVNC_BRANCH
Jesse Andrews75a37652011-09-12 17:09:08 -0700342# django powered web control panel for openstack
Anthony Young2f140202011-09-26 13:02:40 -0700343git_clone $DASH_REPO $DASH_DIR $DASH_BRANCH $DASH_TAG
Jesse Andrews75a37652011-09-12 17:09:08 -0700344# python client library to nova that dashboard (and others) use
Anthony Young2f140202011-09-26 13:02:40 -0700345git_clone $NOVACLIENT_REPO $NOVACLIENT_DIR $NOVACLIENT_BRANCH
root40a37002011-09-20 18:06:14 +0000346# openstackx is a collection of extensions to openstack.compute & nova
Jesse Andrews75a37652011-09-12 17:09:08 -0700347# that is *deprecated*. The code is being moved into python-novaclient & nova.
Anthony Young2f140202011-09-26 13:02:40 -0700348git_clone $OPENSTACKX_REPO $OPENSTACKX_DIR $OPENSTACKX_BRANCH
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700349
Jesse Andrews30f68e92011-09-13 00:59:54 -0700350# Initialization
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700351# ==============
Jesse Andrews30f68e92011-09-13 00:59:54 -0700352
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700353
Jesse Andrews75a37652011-09-12 17:09:08 -0700354# setup our checkouts so they are installed into python path
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700355# allowing ``import nova`` or ``import glance.client``
Jesse Andrews18d350d2011-09-12 21:46:12 -0700356cd $KEYSTONE_DIR; sudo python setup.py develop
357cd $GLANCE_DIR; sudo python setup.py develop
Jesse Andrewsaa8bb242011-10-16 12:24:11 -0700358cd $NOVACLIENT_DIR; sudo python setup.py develop
359cd $NOVA_DIR; sudo python setup.py develop
Anthony Young2f140202011-09-26 13:02:40 -0700360cd $OPENSTACKX_DIR; sudo python setup.py develop
Jesse Andrews18d350d2011-09-12 21:46:12 -0700361cd $DASH_DIR/django-openstack; sudo python setup.py develop
362cd $DASH_DIR/openstack-dashboard; sudo python setup.py develop
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700363
Jesse Andrews6edd17f2011-09-15 22:19:42 -0700364# Add a useful screenrc. This isn't required to run openstack but is we do
root40a37002011-09-20 18:06:14 +0000365# it since we are going to run the services in screen for simple
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700366cp $FILES/screenrc ~/.screenrc
Jesse Andrews6f3baaf2011-09-12 11:59:38 -0700367
Jesse Andrews6edd17f2011-09-15 22:19:42 -0700368## TODO: update current user to allow sudo for all commands in files/sudo/*
Jesse Andrewsdfcd2002011-09-13 13:17:22 -0700369
Anthony Younga09ae2f2011-09-15 23:11:29 -0700370# Rabbit
371# ---------
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400372
Anthony Younga09ae2f2011-09-15 23:11:29 -0700373if [[ "$ENABLED_SERVICES" =~ "rabbit" ]]; then
374 # Install and start rabbitmq-server
Scott Moser199d76e2011-10-20 12:41:40 -0400375 # the temp file is necessary due to LP: #878600
376 tfile=$(mktemp)
Scott Moseree1b4952011-10-20 13:09:11 -0400377 apt_get install rabbitmq-server > "$tfile" 2>&1
Scott Moser199d76e2011-10-20 12:41:40 -0400378 cat "$tfile"
379 rm -f "$tfile"
Jesse Andrews53ed3872011-10-02 14:28:17 -0400380 # change the rabbit password since the default is "guest"
381 sudo rabbitmqctl change_password guest $RABBIT_PASSWORD
Anthony Younga09ae2f2011-09-15 23:11:29 -0700382fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700383
Jesse Andrews24859062011-09-15 21:28:23 -0700384# Mysql
385# ---------
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400386
Jesse Andrews24859062011-09-15 21:28:23 -0700387if [[ "$ENABLED_SERVICES" =~ "mysql" ]]; then
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400388
389 # Seed configuration with mysql password so that apt-get install doesn't
390 # prompt us for a password upon install.
391 cat <<MYSQL_PRESEED | sudo debconf-set-selections
Anthony Young7a549f42011-10-12 07:13:13 +0000392mysql-server-5.1 mysql-server/root_password password $MYSQL_PASSWORD
393mysql-server-5.1 mysql-server/root_password_again password $MYSQL_PASSWORD
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400394mysql-server-5.1 mysql-server/start_on_boot boolean true
395MYSQL_PRESEED
396
Jesse Andrews2e536a32011-10-13 11:40:16 -0700397 # while ``.my.cnf`` is not needed for openstack to function, it is useful
398 # as it allows you to access the mysql databases via ``mysql nova`` instead
399 # of having to specify the username/password each time.
Chmouel Boudjnahd5d5b682011-10-13 18:45:42 +0100400 if [[ ! -e $HOME/.my.cnf ]]; then
401 cat <<EOF >$HOME/.my.cnf
402[client]
403user=$MYSQL_USER
Anthony Youngcf145b72011-10-13 15:07:36 -0700404password=$MYSQL_PASSWORD
Chmouel Boudjnahd5d5b682011-10-13 18:45:42 +0100405host=$MYSQL_HOST
406EOF
407 chmod 0600 $HOME/.my.cnf
408 fi
409
Anthony Younga09ae2f2011-09-15 23:11:29 -0700410 # Install and start mysql-server
Scott Moseree1b4952011-10-20 13:09:11 -0400411 apt_get install mysql-server
Jesse Andrews24859062011-09-15 21:28:23 -0700412 # Update the DB to give user ‘$MYSQL_USER’@’%’ full control of the all databases:
James E. Blair92e81992011-10-11 09:26:29 -0500413 sudo mysql -uroot -p$MYSQL_PASSWORD -h127.0.0.1 -e "GRANT ALL PRIVILEGES ON *.* TO '$MYSQL_USER'@'%' identified by '$MYSQL_PASSWORD';"
Jesse Andrews24859062011-09-15 21:28:23 -0700414
415 # Edit /etc/mysql/my.cnf to change ‘bind-address’ from localhost (127.0.0.1) to any (0.0.0.0) and restart the mysql service:
416 sudo sed -i 's/127.0.0.1/0.0.0.0/g' /etc/mysql/my.cnf
417 sudo service mysql restart
418fi
419
420
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700421# Dashboard
422# ---------
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400423
424# Setup the django dashboard application to serve via apache/wsgi
Jesse Andrews75a37652011-09-12 17:09:08 -0700425
Anthony Young70dc5e02011-09-15 16:52:43 -0700426if [[ "$ENABLED_SERVICES" =~ "dash" ]]; then
Jesse Andrews24859062011-09-15 21:28:23 -0700427
root40a37002011-09-20 18:06:14 +0000428 # Dash currently imports quantum even if you aren't using it. Instead
429 # of installing quantum we can create a simple module that will pass the
Jesse Andrews24859062011-09-15 21:28:23 -0700430 # initial imports
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400431 mkdir -p $DASH_DIR/openstack-dashboard/quantum || true
432 touch $DASH_DIR/openstack-dashboard/quantum/__init__.py
433 touch $DASH_DIR/openstack-dashboard/quantum/client.py
434
435
436 # ``local_settings.py`` is used to override dashboard default settings.
437 cp $FILES/dash_settings.py $DASH_DIR/openstack-dashboard/local/local_settings.py
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700438
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700439 # Initialize the dashboard database (it stores sessions and notices shown to
440 # users). The user system is external (keystone).
Anthony Young70dc5e02011-09-15 16:52:43 -0700441 cd $DASH_DIR/openstack-dashboard
Anthony Young70dc5e02011-09-15 16:52:43 -0700442 dashboard/manage.py syncdb
Jesse Andrews75a37652011-09-12 17:09:08 -0700443
Anthony Young70dc5e02011-09-15 16:52:43 -0700444 # create an empty directory that apache uses as docroot
445 sudo mkdir -p $DASH_DIR/.blackhole
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700446
Anthony Young70dc5e02011-09-15 16:52:43 -0700447 ## Configure apache's 000-default to run dashboard
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700448 sudo cp $FILES/000-default.template /etc/apache2/sites-enabled/000-default
Jesse Andrews8f3e28c2011-09-27 18:26:27 -0700449 sudo sed -e "s,%USER%,$USER,g" -i /etc/apache2/sites-enabled/000-default
Anthony Young70dc5e02011-09-15 16:52:43 -0700450 sudo sed -e "s,%DASH_DIR%,$DASH_DIR,g" -i /etc/apache2/sites-enabled/000-default
Anthony Young70dc5e02011-09-15 16:52:43 -0700451fi
Jesse Andrews75a37652011-09-12 17:09:08 -0700452
Anthony Young3859f732011-09-14 02:33:43 -0700453
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700454# Glance
455# ------
456
Anthony Young70dc5e02011-09-15 16:52:43 -0700457if [[ "$ENABLED_SERVICES" =~ "g-reg" ]]; then
Anthony Youngc8357622011-09-20 10:38:06 -0700458 GLANCE_IMAGE_DIR=$DEST/glance/images
Anthony Younga531b772011-09-20 09:59:54 -0700459 # Delete existing images
460 rm -rf $GLANCE_IMAGE_DIR
Jesse Andrews75a37652011-09-12 17:09:08 -0700461
Anthony Younga531b772011-09-20 09:59:54 -0700462 # Use local glance directories
463 mkdir -p $GLANCE_IMAGE_DIR
464
Anthony Young70dc5e02011-09-15 16:52:43 -0700465 # (re)create glance database
Anthony Young7a549f42011-10-12 07:13:13 +0000466 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'DROP DATABASE IF EXISTS glance;'
467 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'CREATE DATABASE glance;'
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700468
469 # Copy over our glance configurations and update them
Anthony Young70dc5e02011-09-15 16:52:43 -0700470 GLANCE_CONF=$GLANCE_DIR/etc/glance-registry.conf
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700471 cp $FILES/glance-registry.conf $GLANCE_CONF
Anthony Young70dc5e02011-09-15 16:52:43 -0700472 sudo sed -e "s,%SQL_CONN%,$BASE_SQL_CONN/glance,g" -i $GLANCE_CONF
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700473 sudo sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $GLANCE_CONF
Anthony Younga531b772011-09-20 09:59:54 -0700474 sudo sed -e "s,%DEST%,$DEST,g" -i $GLANCE_CONF
Anthony Youngf12d3ab2011-09-20 00:33:51 -0700475
476 GLANCE_API_CONF=$GLANCE_DIR/etc/glance-api.conf
477 cp $FILES/glance-api.conf $GLANCE_API_CONF
Anthony Younga531b772011-09-20 09:59:54 -0700478 sudo sed -e "s,%DEST%,$DEST,g" -i $GLANCE_API_CONF
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700479 sudo sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $GLANCE_API_CONF
Anthony Young70dc5e02011-09-15 16:52:43 -0700480fi
Jesse Andrews75a37652011-09-12 17:09:08 -0700481
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700482# Nova
483# ----
484
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400485# We are going to use the sample http middleware configuration from the keystone
486# project to launch nova. This paste config adds the configuration required
487# for nova to validate keystone tokens - except we need to switch the config
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700488# to use our service token instead (instead of the invalid token 999888777666).
Jesse Andrews9f20f512011-10-02 09:18:03 -0700489sudo sed -e "s,999888777666,$SERVICE_TOKEN,g" -i $KEYSTONE_DIR/examples/paste/nova-api-paste.ini
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700490
Anthony Young70dc5e02011-09-15 16:52:43 -0700491if [[ "$ENABLED_SERVICES" =~ "n-cpu" ]]; then
Jesse Andrewsdfcd2002011-09-13 13:17:22 -0700492
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400493 # Virtualization Configuration
494 # ~~~~~~~~~~~~~~~~~~~~~~~~~~~~
495
496 # attempt to load modules: network block device - used to manage qcow images
Anthony Young70dc5e02011-09-15 16:52:43 -0700497 sudo modprobe nbd || true
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400498
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700499 # Check for kvm (hardware based virtualization). If unable to initialize
500 # kvm, we drop back to the slower emulation mode (qemu). Note: many systems
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700501 # come with hardware virtualization disabled in BIOS.
Jesse Andrews2abbdd42011-10-03 22:48:30 -0400502 if [[ "$LIBVIRT_TYPE" == "kvm" ]]; then
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400503 sudo modprobe kvm || true
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400504 if [ ! -e /dev/kvm ]; then
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400505 echo "WARNING: Switching to QEMU"
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400506 LIBVIRT_TYPE=qemu
507 fi
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700508 fi
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400509
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400510 # Install and configure **LXC** if specified. LXC is another approach to
511 # splitting a system into many smaller parts. LXC uses cgroups and chroot
512 # to simulate multiple systems.
Jesse Andrews2abbdd42011-10-03 22:48:30 -0400513 if [[ "$LIBVIRT_TYPE" == "lxc" ]]; then
Scott Moseree1b4952011-10-20 13:09:11 -0400514 apt_get install lxc
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700515 # lxc uses cgroups (a kernel interface via virtual filesystem) configured
516 # and mounted to ``/cgroup``
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400517 sudo mkdir -p /cgroup
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400518 if ! grep -q cgroup /etc/fstab; then
Jesse Andrewsc315ebf2011-10-02 13:25:33 -0400519 echo none /cgroup cgroup cpuacct,memory,devices,cpu,freezer,blkio 0 0 | sudo tee -a /etc/fstab
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400520 fi
Jesse Andrewse4304232011-10-07 10:34:32 -0400521 if ! mount -n | grep -q cgroup; then
522 sudo mount /cgroup
523 fi
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400524 fi
525
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700526 # The user that nova runs as needs to be member of libvirtd group otherwise
527 # nova-compute will be unable to use libvirt.
Anthony Young70dc5e02011-09-15 16:52:43 -0700528 sudo usermod -a -G libvirtd `whoami`
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700529 # libvirt detects various settings on startup, as we potentially changed
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700530 # the system configuration (modules, filesystems), we need to restart
531 # libvirt to detect those changes.
Anthony Young70dc5e02011-09-15 16:52:43 -0700532 sudo /etc/init.d/libvirt-bin restart
533
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400534
535 # Instance Storage
536 # ~~~~~~~~~~~~~~~~
537
538 # Nova stores each instance in its own directory.
Anthony Young70dc5e02011-09-15 16:52:43 -0700539 mkdir -p $NOVA_DIR/instances
540
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700541 # You can specify a different disk to be mounted and used for backing the
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700542 # virtual machines. If there is a partition labeled nova-instances we
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700543 # mount it (ext filesystems can be labeled via e2label).
Anthony Young70dc5e02011-09-15 16:52:43 -0700544 if [ -L /dev/disk/by-label/nova-instances ]; then
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700545 if ! mount -n | grep -q nova-instances; then
546 sudo mount -L nova-instances $NOVA_DIR/instances
547 sudo chown -R `whoami` $NOVA_DIR/instances
548 fi
Anthony Young70dc5e02011-09-15 16:52:43 -0700549 fi
550
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400551 # Clean out the instances directory.
Jesse Andrews461bfdc2011-10-09 17:50:38 -0700552 sudo rm -rf $NOVA_DIR/instances/*
Jesse Andrewsdfcd2002011-09-13 13:17:22 -0700553fi
554
Anthony Young70dc5e02011-09-15 16:52:43 -0700555if [[ "$ENABLED_SERVICES" =~ "n-net" ]]; then
556 # delete traces of nova networks from prior runs
Anthony Young09fde812011-09-20 02:23:54 -0700557 sudo killall dnsmasq || true
Anthony Young70dc5e02011-09-15 16:52:43 -0700558 rm -rf $NOVA_DIR/networks
559 mkdir -p $NOVA_DIR/networks
560fi
Jesse Andrews75a37652011-09-12 17:09:08 -0700561
Anthony Youngacff87a2011-10-20 10:12:58 -0700562# Volume Service
563# --------------
564
565if [[ "$ENABLED_SERVICES" =~ "n-vol" ]]; then
566 #
567 # Configure a default volume group called 'nova-volumes' for the nova-volume
568 # service if it does not yet exist. If you don't wish to use a file backed
569 # volume group, create your own volume group called 'nova-volumes' before
570 # invoking stack.sh.
571 #
572 # By default, the backing file is 2G in size, and is stored in /opt/stack.
573 #
Anthony Youngacff87a2011-10-20 10:12:58 -0700574 if ! sudo vgdisplay | grep -q nova-volumes; then
Anthony Youngb22263a2011-10-20 10:26:30 -0700575 VOLUME_BACKING_FILE=${VOLUME_BACKING_FILE:-/opt/stack/nova-volumes-backing-file}
576 VOLUME_BACKING_FILE_SIZE=${VOLUME_BACKING_FILE_SIZE:-2052M}
Anthony Youngacff87a2011-10-20 10:12:58 -0700577 truncate -s $VOLUME_BACKING_FILE_SIZE $VOLUME_BACKING_FILE
578 DEV=`sudo losetup -f --show $VOLUME_BACKING_FILE`
579 sudo vgcreate nova-volumes $DEV
580 fi
581
582 # Configure iscsitarget
583 sudo sed 's/ISCSITARGET_ENABLE=false/ISCSITARGET_ENABLE=true/' -i /etc/default/iscsitarget
584 sudo /etc/init.d/iscsitarget restart
585fi
586
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700587function add_nova_flag {
588 echo "$1" >> $NOVA_DIR/bin/nova.conf
589}
590
591# (re)create nova.conf
592rm -f $NOVA_DIR/bin/nova.conf
593add_nova_flag "--verbose"
594add_nova_flag "--nodaemon"
Jesse Andrews8ff5dbc2011-09-25 22:28:08 -0700595add_nova_flag "--scheduler_driver=$SCHEDULER"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700596add_nova_flag "--dhcpbridge_flagfile=$NOVA_DIR/bin/nova.conf"
597add_nova_flag "--network_manager=nova.network.manager.$NET_MAN"
598add_nova_flag "--my_ip=$HOST_IP"
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700599add_nova_flag "--public_interface=$PUBLIC_INTERFACE"
600add_nova_flag "--vlan_interface=$VLAN_INTERFACE"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700601add_nova_flag "--sql_connection=$BASE_SQL_CONN/nova"
602add_nova_flag "--libvirt_type=$LIBVIRT_TYPE"
Anthony Young2f140202011-09-26 13:02:40 -0700603add_nova_flag "--osapi_extensions_path=$OPENSTACKX_DIR/extensions"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700604add_nova_flag "--vncproxy_url=http://$HOST_IP:6080"
605add_nova_flag "--vncproxy_wwwroot=$NOVNC_DIR/"
606add_nova_flag "--api_paste_config=$KEYSTONE_DIR/examples/paste/nova-api-paste.ini"
607add_nova_flag "--image_service=nova.image.glance.GlanceImageService"
608add_nova_flag "--ec2_dmz_host=$EC2_DMZ_HOST"
609add_nova_flag "--rabbit_host=$RABBIT_HOST"
Jesse Andrews53ed3872011-10-02 14:28:17 -0400610add_nova_flag "--rabbit_password=$RABBIT_PASSWORD"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700611add_nova_flag "--glance_api_servers=$GLANCE_HOSTPORT"
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700612add_nova_flag "--flat_network_bridge=$FLAT_NETWORK_BRIDGE"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700613if [ -n "$FLAT_INTERFACE" ]; then
614 add_nova_flag "--flat_interface=$FLAT_INTERFACE"
615fi
616if [ -n "$MULTI_HOST" ]; then
617 add_nova_flag "--multi_host=$MULTI_HOST"
618fi
619
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400620# Nova Database
621# ~~~~~~~~~~~~~
622
623# All nova components talk to a central database. We will need to do this step
624# only once for an entire cluster.
625
Anthony Younga0748002011-09-16 21:37:36 -0700626if [[ "$ENABLED_SERVICES" =~ "mysql" ]]; then
627 # (re)create nova database
Anthony Young7a549f42011-10-12 07:13:13 +0000628 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'DROP DATABASE IF EXISTS nova;'
629 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'CREATE DATABASE nova;'
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400630
631 # (re)create nova database
Anthony Younga0748002011-09-16 21:37:36 -0700632 $NOVA_DIR/bin/nova-manage db sync
633
634 # create a small network
termie197d53d2011-09-28 17:18:23 -0700635 $NOVA_DIR/bin/nova-manage network create private $FIXED_RANGE 1 $FIXED_NETWORK_SIZE
Anthony Younga0748002011-09-16 21:37:36 -0700636
637 # create some floating ips
638 $NOVA_DIR/bin/nova-manage floating create $FLOATING_RANGE
639fi
640
641
Jesse Andrewse8d9cd82011-09-13 15:16:26 -0700642# Keystone
643# --------
644
Anthony Young70dc5e02011-09-15 16:52:43 -0700645if [[ "$ENABLED_SERVICES" =~ "key" ]]; then
646 # (re)create keystone database
Anthony Young7a549f42011-10-12 07:13:13 +0000647 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'DROP DATABASE IF EXISTS keystone;'
648 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'CREATE DATABASE keystone;'
Jesse Andrews75a37652011-09-12 17:09:08 -0700649
Anthony Young70dc5e02011-09-15 16:52:43 -0700650 # FIXME (anthony) keystone should use keystone.conf.example
651 KEYSTONE_CONF=$KEYSTONE_DIR/etc/keystone.conf
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700652 cp $FILES/keystone.conf $KEYSTONE_CONF
Anthony Young70dc5e02011-09-15 16:52:43 -0700653 sudo sed -e "s,%SQL_CONN%,$BASE_SQL_CONN/keystone,g" -i $KEYSTONE_CONF
Anthony Younge8fed482011-09-26 19:50:43 -0700654 sudo sed -e "s,%DEST%,$DEST,g" -i $KEYSTONE_CONF
Anthony Young3a093122011-09-13 19:01:45 +0000655
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400656 # keystone_data.sh creates our admin user and our ``SERVICE_TOKEN``.
Anthony Youngec21d932011-09-16 16:05:55 -0700657 KEYSTONE_DATA=$KEYSTONE_DIR/bin/keystone_data.sh
658 cp $FILES/keystone_data.sh $KEYSTONE_DATA
659 sudo sed -e "s,%HOST_IP%,$HOST_IP,g" -i $KEYSTONE_DATA
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700660 sudo sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $KEYSTONE_DATA
Jesse Andrews89358af2011-10-02 14:11:17 -0400661 sudo sed -e "s,%ADMIN_PASSWORD%,$ADMIN_PASSWORD,g" -i $KEYSTONE_DATA
Anthony Young70dc5e02011-09-15 16:52:43 -0700662 # initialize keystone with default users/endpoints
Anthony Youngec21d932011-09-16 16:05:55 -0700663 BIN_DIR=$KEYSTONE_DIR/bin bash $KEYSTONE_DATA
Anthony Young70dc5e02011-09-15 16:52:43 -0700664fi
Jesse Andrews75a37652011-09-12 17:09:08 -0700665
Jesse Andrews75a37652011-09-12 17:09:08 -0700666
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700667# Launch Services
668# ===============
Jesse Andrews30f68e92011-09-13 00:59:54 -0700669
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700670# nova api crashes if we start it with a regular screen command,
671# so send the start command by forcing text into the window.
Jesse Andrewsdfcd2002011-09-13 13:17:22 -0700672# Only run the services specified in ``ENABLED_SERVICES``
673
Jesse Andrews1f717602011-09-16 15:18:53 -0700674# our screen helper to launch a service in a hidden named screen
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700675function screen_it {
Jesse Andrews1f717602011-09-16 15:18:53 -0700676 NL=`echo -ne '\015'`
Anthony Young292e46d2011-09-13 11:28:56 -0700677 if [[ "$ENABLED_SERVICES" =~ "$1" ]]; then
678 screen -S nova -X screen -t $1
679 screen -S nova -p $1 -X stuff "$2$NL"
680 fi
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700681}
682
Jesse Andrewsa16e5e92011-09-16 16:30:55 -0700683# create a new named screen to run processes in
684screen -d -m -S nova -t nova
685sleep 1
686
Jesse Andrews644b8e82011-10-02 17:50:41 -0400687# launch the glance registery service
Anthony Youngd000b222011-09-19 14:46:53 -0700688if [[ "$ENABLED_SERVICES" =~ "g-reg" ]]; then
689 screen_it g-reg "cd $GLANCE_DIR; bin/glance-registry --config-file=etc/glance-registry.conf"
690fi
691
Jesse Andrews644b8e82011-10-02 17:50:41 -0400692# launch the glance api and wait for it to answer before continuing
Anthony Youngd000b222011-09-19 14:46:53 -0700693if [[ "$ENABLED_SERVICES" =~ "g-api" ]]; then
694 screen_it g-api "cd $GLANCE_DIR; bin/glance-api --config-file=etc/glance-api.conf"
James E. Blair92e81992011-10-11 09:26:29 -0500695 echo "Waiting for g-api ($GLANCE_HOSTPORT) to start..."
James E. Blair7057ae92011-10-20 12:23:50 -0500696 if ! timeout 60 sh -c "while ! wget -q -O- http://$GLANCE_HOSTPORT; do sleep 1; done"; then
James E. Blair92e81992011-10-11 09:26:29 -0500697 echo "g-api did not start"
698 exit 1
699 fi
Anthony Youngd000b222011-09-19 14:46:53 -0700700fi
701
Jesse Andrews644b8e82011-10-02 17:50:41 -0400702# launch the keystone and wait for it to answer before continuing
Anthony Youngd000b222011-09-19 14:46:53 -0700703if [[ "$ENABLED_SERVICES" =~ "key" ]]; then
Anthony Youngf33796e2011-09-22 00:14:12 -0700704 screen_it key "cd $KEYSTONE_DIR && $KEYSTONE_DIR/bin/keystone --config-file $KEYSTONE_CONF -d"
James E. Blair92e81992011-10-11 09:26:29 -0500705 echo "Waiting for keystone to start..."
James E. Blair7057ae92011-10-20 12:23:50 -0500706 if ! timeout 60 sh -c "while ! wget -q -O- http://127.0.0.1:5000; do sleep 1; done"; then
James E. Blair92e81992011-10-11 09:26:29 -0500707 echo "keystone did not start"
708 exit 1
709 fi
Anthony Youngd000b222011-09-19 14:46:53 -0700710fi
711
Jesse Andrews644b8e82011-10-02 17:50:41 -0400712# launch the nova-api and wait for it to answer before continuing
Anthony Youngd000b222011-09-19 14:46:53 -0700713if [[ "$ENABLED_SERVICES" =~ "n-api" ]]; then
Anthony Young9bf3d762011-09-20 09:51:16 -0700714 screen_it n-api "cd $NOVA_DIR && $NOVA_DIR/bin/nova-api"
James E. Blair92e81992011-10-11 09:26:29 -0500715 echo "Waiting for nova-api to start..."
James E. Blair7057ae92011-10-20 12:23:50 -0500716 if ! timeout 60 sh -c "while ! wget -q -O- http://127.0.0.1:8774; do sleep 1; done"; then
James E. Blair92e81992011-10-11 09:26:29 -0500717 echo "nova-api did not start"
718 exit 1
719 fi
Anthony Youngd000b222011-09-19 14:46:53 -0700720fi
root40a37002011-09-20 18:06:14 +0000721# Launching nova-compute should be as simple as running ``nova-compute`` but
722# have to do a little more than that in our script. Since we add the group
Jesse Andrews1f717602011-09-16 15:18:53 -0700723# ``libvirtd`` to our user in this script, when nova-compute is run it is
root40a37002011-09-20 18:06:14 +0000724# within the context of our original shell (so our groups won't be updated).
Scott Moser8ab1ade2011-10-07 21:03:16 -0400725# Use 'sg' to execute nova-compute as a member of the libvirtd group.
726screen_it n-cpu "cd $NOVA_DIR && sg libvirtd $NOVA_DIR/bin/nova-compute"
Anthony Youngacff87a2011-10-20 10:12:58 -0700727screen_it n-vol "cd $NOVA_DIR && $NOVA_DIR/bin/nova-volume"
Anthony Young9bf3d762011-09-20 09:51:16 -0700728screen_it n-net "cd $NOVA_DIR && $NOVA_DIR/bin/nova-network"
729screen_it n-sch "cd $NOVA_DIR && $NOVA_DIR/bin/nova-scheduler"
Anthony Young1c598da2011-10-05 08:07:53 -0700730screen_it n-vnc "cd $NOVNC_DIR && ./utils/nova-wsproxy.py 6080 --web . --flagfile=../nova/bin/nova.conf"
Anthony Young9bf3d762011-09-20 09:51:16 -0700731screen_it dash "cd $DASH_DIR && sudo /etc/init.d/apache2 restart; sudo tail -f /var/log/apache2/error.log"
Jesse Andrews75a37652011-09-12 17:09:08 -0700732
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700733# Install Images
734# ==============
Jesse Andrewse49b8bd2011-09-12 18:08:04 -0700735
Anthony Young0ab1d462011-10-13 23:03:23 -0700736# Upload an image to glance.
Jesse Andrews5372f432011-10-03 01:08:24 -0400737#
Anthony Young0ab1d462011-10-13 23:03:23 -0700738# The default image is a small ***TTY*** testing image, which lets you login
739# the username/password of root/password.
740#
741# TTY also uses cloud-init, supporting login via keypair and sending scripts as
742# userdata. See https://help.ubuntu.com/community/CloudInit for more on cloud-init
743#
Jesse Andrewsaab7eae2011-10-19 10:30:19 -0700744# Override ``IMAGE_URLS`` with a comma-seperated list of uec images.
745#
746# * **natty**: http://uec-images.ubuntu.com/natty/current/natty-server-cloudimg-amd64.tar.gz
747# * **oneiric**: http://uec-images.ubuntu.com/oneiric/current/oneiric-server-cloudimg-amd64.tar.gz
Jesse Andrews08e8b742011-10-02 23:42:56 -0400748
Jesse Andrews85d9be32011-10-03 00:01:28 -0400749if [[ "$ENABLED_SERVICES" =~ "g-reg" ]]; then
Anthony Young7a8989e2011-10-14 10:20:30 -0700750 # Create a directory for the downloaded image tarballs.
Jesse Andrews08e8b742011-10-02 23:42:56 -0400751 mkdir -p $FILES/images
752
Anthony Young120f4862011-10-14 09:31:09 -0700753 for image_url in ${IMAGE_URLS//,/ }; do
754 # Downloads the image (uec ami+aki style), then extracts it.
755 IMAGE_FNAME=`echo "$image_url" | python -c "import sys; print sys.stdin.read().split('/')[-1]"`
756 IMAGE_NAME=`echo "$IMAGE_FNAME" | python -c "import sys; print sys.stdin.read().split('.tar.gz')[0].split('.tgz')[0]"`
757 if [ ! -f $FILES/$IMAGE_FNAME ]; then
758 wget -c $image_url -O $FILES/$IMAGE_FNAME
759 fi
Jesse Andrewse49b8bd2011-09-12 18:08:04 -0700760
Anthony Young120f4862011-10-14 09:31:09 -0700761 # Extract ami and aki files
762 tar -zxf $FILES/$IMAGE_FNAME -C $FILES/images
Anthony Young70dc5e02011-09-15 16:52:43 -0700763
Anthony Young120f4862011-10-14 09:31:09 -0700764 # Use glance client to add the kernel the root filesystem.
765 # We parse the results of the first upload to get the glance ID of the
766 # kernel for use when uploading the root filesystem.
767 RVAL=`glance add -A $SERVICE_TOKEN name="$IMAGE_NAME-kernel" is_public=true container_format=aki disk_format=aki < $FILES/images/$IMAGE_NAME-vmlinuz*`
768 KERNEL_ID=`echo $RVAL | cut -d":" -f2 | tr -d " "`
769 glance add -A $SERVICE_TOKEN name="$IMAGE_NAME" is_public=true container_format=ami disk_format=ami kernel_id=$KERNEL_ID < $FILES/images/$IMAGE_NAME.img
770 done
Jesse Andrewse49b8bd2011-09-12 18:08:04 -0700771fi
Jesse Andrews24859062011-09-15 21:28:23 -0700772
Scott Moserb94f4bf2011-10-07 14:51:07 +0000773# Fin
774# ===
775
776
777) 2>&1 | tee "${LOGFILE}"
778
779# Check that the left side of the above pipe succeeded
780for ret in "${PIPESTATUS[@]}"; do [ $ret -eq 0 ] || exit $ret; done
781
782(
Jesse Andrews24859062011-09-15 21:28:23 -0700783# Using the cloud
784# ===============
785
786# If you installed the dashboard on this server, then you should be able
root40a37002011-09-20 18:06:14 +0000787# to access the site using your browser.
Jesse Andrews24859062011-09-15 21:28:23 -0700788if [[ "$ENABLED_SERVICES" =~ "dash" ]]; then
789 echo "dashboard is now available at http://$HOST_IP/"
790fi
791
792# If keystone is present, you can point nova cli to this server
793if [[ "$ENABLED_SERVICES" =~ "key" ]]; then
794 echo "keystone is serving at http://$HOST_IP:5000/v2.0/"
795 echo "examples on using novaclient command line is in exercise.sh"
Jesse Andrews89358af2011-10-02 14:11:17 -0400796 echo "the default users are: admin and demo"
797 echo "the password: $ADMIN_PASSWORD"
Jesse Andrews24859062011-09-15 21:28:23 -0700798fi
termie523c4052011-09-28 19:49:40 -0500799
Scott Moserc4e47ab2011-10-07 13:29:29 +0000800# indicate how long this took to run (bash maintained variable 'SECONDS')
Scott Moserb94f4bf2011-10-07 14:51:07 +0000801echo "stack.sh completed in $SECONDS seconds."
Scott Moser7c481182011-10-07 13:50:21 +0000802
Scott Moserb94f4bf2011-10-07 14:51:07 +0000803) | tee -a "$LOGFILE"