blob: 4069509e9622620913d655bd1eaf0d834b94ecc9 [file] [log] [blame]
Jesse Andrewsba23cc72011-09-11 03:22:13 -07001#!/usr/bin/env bash
2
Dean Troyerc6c1d432012-03-27 20:59:22 -05003# ``stack.sh`` is an opinionated OpenStack developer installation. It
Dean Troyer4a43b7b2012-08-28 17:43:40 -05004# installs and configures various combinations of **Ceilometer**, **Cinder**,
Nikhil Manchanda0cccad42012-12-03 18:15:09 -07005# **Glance**, **Heat**, **Horizon**, **Keystone**, **Nova**, **Neutron**,
Dean Troyerfc744f92014-01-27 13:45:21 -06006# and **Swift**
Jesse Andrewsba23cc72011-09-11 03:22:13 -07007
Brett Campbell27f29442014-02-19 18:23:16 -08008# This script's options can be changed by setting appropriate environment
9# variables. You can configure things like which git repositories to use,
10# services to enable, OS images to use, etc. Default values are located in the
11# ``stackrc`` file. If you are crafty you can run the script on multiple nodes
12# using shared settings for common resources (eg., mysql or rabbitmq) and build
13# a multi-node developer install.
Jesse Andrews782b9912011-10-02 16:53:21 -040014
Dean Troyer4a43b7b2012-08-28 17:43:40 -050015# To keep this script simple we assume you are running on a recent **Ubuntu**
Martin Falatic5bee0cd2015-01-23 14:10:33 -080016# (14.04 Trusty or newer), **Fedora** (F20 or newer), or **CentOS/RHEL**
17# (7 or newer) machine. (It may work on other platforms but support for those
18# platforms is left to those who added them to DevStack.) It should work in
Dean Troyerdc97cb72015-03-28 08:20:50 -050019# a VM or physical server. Additionally, we maintain a list of ``deb`` and
Martin Falatic5bee0cd2015-01-23 14:10:33 -080020# ``rpm`` dependencies and other configuration files in this repo.
Jesse Andrews24859062011-09-15 21:28:23 -070021
Jesse Andrews0e7e8972011-10-02 16:36:54 -040022# Learn more and get the most recent version at http://devstack.org
Jesse Andrews6edd17f2011-09-15 22:19:42 -070023
Jason Dunsmore4e971112013-04-10 10:17:40 -050024# Make sure custom grep options don't get in the way
25unset GREP_OPTIONS
26
YAMAMOTO Takashib4a215c2014-01-10 16:39:32 +090027# Sanitize language settings to avoid commands bailing out
28# with "unsupported locale setting" errors.
29unset LANG
30unset LANGUAGE
31LC_ALL=C
32export LC_ALL
33
Brett Campbell27f29442014-02-19 18:23:16 -080034# Make sure umask is sane
35umask 022
36
Angus Lees7df9d1b2014-07-21 15:35:34 +100037# Not all distros have sbin in PATH for regular users.
38PATH=$PATH:/usr/local/sbin:/usr/sbin:/sbin
39
Dean Troyerdc97cb72015-03-28 08:20:50 -050040# Keep track of the DevStack directory
Jesse Andrews51fb22e2011-10-19 09:24:17 -070041TOP_DIR=$(cd $(dirname "$0") && pwd)
42
Sean Dague53753292014-12-04 19:38:15 -050043# Check for uninitialized variables, a big cause of bugs
44NOUNSET=${NOUNSET:-}
45if [[ -n "$NOUNSET" ]]; then
46 set -o nounset
47fi
48
Dean Troyerdc97cb72015-03-28 08:20:50 -050049
50# Configuration
51# =============
52
Dean Troyerd3bf9bd2014-07-25 10:20:19 -050053# Sanity Checks
54# -------------
55
56# Clean up last environment var cache
57if [[ -r $TOP_DIR/.stackenv ]]; then
58 rm $TOP_DIR/.stackenv
59fi
60
Dean Troyerdc97cb72015-03-28 08:20:50 -050061# ``stack.sh`` keeps the list of ``deb`` and ``rpm`` dependencies, config
Dean Troyerd3bf9bd2014-07-25 10:20:19 -050062# templates and other useful files in the ``files`` subdirectory
63FILES=$TOP_DIR/files
64if [ ! -d $FILES ]; then
65 die $LINENO "missing devstack/files"
66fi
67
68# ``stack.sh`` keeps function libraries here
Dean Troyerdc97cb72015-03-28 08:20:50 -050069# Make sure ``$TOP_DIR/inc`` directory is present
70if [ ! -d $TOP_DIR/inc ]; then
71 die $LINENO "missing devstack/inc"
72fi
73
74# ``stack.sh`` keeps project libraries here
Dean Troyerd3bf9bd2014-07-25 10:20:19 -050075# Make sure ``$TOP_DIR/lib`` directory is present
76if [ ! -d $TOP_DIR/lib ]; then
77 die $LINENO "missing devstack/lib"
78fi
79
Dean Troyerdc97cb72015-03-28 08:20:50 -050080# Check if run in POSIX shell
81if [[ "${POSIXLY_CORRECT}" == "y" ]]; then
82 echo "You are running POSIX compatibility mode, DevStack requires bash 4.2 or newer."
83 exit 1
84fi
85
Dean Troyerd3bf9bd2014-07-25 10:20:19 -050086# OpenStack is designed to be run as a non-root user; Horizon will fail to run
87# as **root** since Apache will not serve content from **root** user).
88# ``stack.sh`` must not be run as **root**. It aborts and suggests one course of
89# action to create a suitable user account.
90
91if [[ $EUID -eq 0 ]]; then
92 echo "You are running this script as root."
93 echo "Cut it out."
94 echo "Really."
Shuichiro MAKIGAKI3710eec2014-08-28 19:07:09 +090095 echo "If you need an account to run DevStack, do this (as root, heh) to create a non-root account:"
Dean Troyerd3bf9bd2014-07-25 10:20:19 -050096 echo "$TOP_DIR/tools/create-stack-user.sh"
97 exit 1
98fi
99
Attila Fazekasd9de1192015-03-26 09:25:02 +0100100
Dean Troyerd3bf9bd2014-07-25 10:20:19 -0500101# Prepare the environment
102# -----------------------
103
Sean Dague53753292014-12-04 19:38:15 -0500104# Initialize variables:
105LAST_SPINNER_PID=""
106
Dean Troyer6563a3c2012-01-31 12:11:56 -0600107# Import common functions
Dean Troyerc6c1d432012-03-27 20:59:22 -0500108source $TOP_DIR/functions
Dean Troyer6563a3c2012-01-31 12:11:56 -0600109
Dean Troyer893e6632013-09-13 15:05:51 -0500110# Import config functions
Dean Troyerbf2ad702015-03-09 15:16:10 -0500111source $TOP_DIR/inc/meta-config
Dean Troyer893e6632013-09-13 15:05:51 -0500112
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600113# Import 'public' stack.sh functions
114source $TOP_DIR/lib/stack
115
Dean Troyerc6c1d432012-03-27 20:59:22 -0500116# Determine what system we are running on. This provides ``os_VENDOR``,
117# ``os_RELEASE``, ``os_UPDATE``, ``os_PACKAGE``, ``os_CODENAME``
Dean Troyera9e0a482012-07-09 14:07:23 -0500118# and ``DISTRO``
119GetDistro
Jesse Andrews6edd17f2011-09-15 22:19:42 -0700120
Dean Troyerdc97cb72015-03-28 08:20:50 -0500121
Dean Troyer48352ee2012-12-12 12:50:38 -0600122# Global Settings
Dean Troyer0e8dced2014-07-25 10:33:21 -0500123# ---------------
Scott Moserf9da5082011-10-07 21:28:00 -0400124
Dean Troyer893e6632013-09-13 15:05:51 -0500125# Check for a ``localrc`` section embedded in ``local.conf`` and extract if
126# ``localrc`` does not already exist
127
128# Phase: local
129rm -f $TOP_DIR/.localrc.auto
130if [[ -r $TOP_DIR/local.conf ]]; then
131 LRC=$(get_meta_section_files $TOP_DIR/local.conf local)
132 for lfile in $LRC; do
133 if [[ "$lfile" == "localrc" ]]; then
134 if [[ -r $TOP_DIR/localrc ]]; then
135 warn $LINENO "localrc and local.conf:[[local]] both exist, using localrc"
136 else
Dean Troyerb8dd27b2013-10-17 12:03:55 -0500137 echo "# Generated file, do not edit" >$TOP_DIR/.localrc.auto
Dean Troyer893e6632013-09-13 15:05:51 -0500138 get_meta_section $TOP_DIR/local.conf local $lfile >>$TOP_DIR/.localrc.auto
139 fi
140 fi
141 done
142fi
143
Dean Troyer1a6d4492013-06-03 16:47:36 -0500144# ``stack.sh`` is customizable by setting environment variables. Override a
145# default setting via export::
Scott Moserf9da5082011-10-07 21:28:00 -0400146#
Terry Wilson428af5a2012-11-01 16:12:39 -0400147# export DATABASE_PASSWORD=anothersecret
Scott Moserf9da5082011-10-07 21:28:00 -0400148# ./stack.sh
149#
Dean Troyer1a6d4492013-06-03 16:47:36 -0500150# or by setting the variable on the command line::
Scott Moserf9da5082011-10-07 21:28:00 -0400151#
Dean Troyer1a6d4492013-06-03 16:47:36 -0500152# DATABASE_PASSWORD=simple ./stack.sh
153#
Dean Troyerdc97cb72015-03-28 08:20:50 -0500154# Persistent variables can be placed in a ``local.conf`` file::
Scott Moserf9da5082011-10-07 21:28:00 -0400155#
Dean Troyerdc97cb72015-03-28 08:20:50 -0500156# [[local|localrc]]
Terry Wilson428af5a2012-11-01 16:12:39 -0400157# DATABASE_PASSWORD=anothersecret
158# DATABASE_USER=hellaroot
Scott Moserf9da5082011-10-07 21:28:00 -0400159#
160# We try to have sensible defaults, so you should be able to run ``./stack.sh``
Dean Troyerdc97cb72015-03-28 08:20:50 -0500161# in most cases. ``local.conf`` is not distributed with DevStack and will never
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500162# be overwritten by a DevStack update.
Scott Moserf9da5082011-10-07 21:28:00 -0400163#
Dean Troyerdf0972c2012-03-07 17:31:03 -0600164# DevStack distributes ``stackrc`` which contains locations for the OpenStack
Dean Troyercc6b4432013-04-08 15:38:03 -0500165# repositories, branches to configure, and other configuration defaults.
Dean Troyerdc97cb72015-03-28 08:20:50 -0500166# ``stackrc`` sources the ``localrc`` section of ``local.conf`` to allow you to
167# safely override those settings.
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500168
Dean Troyerbbafb1b2012-06-11 16:51:39 -0500169if [[ ! -r $TOP_DIR/stackrc ]]; then
Dean Troyer14fd9792014-07-25 10:34:11 -0500170 die $LINENO "missing $TOP_DIR/stackrc - did you grab more than just stack.sh?"
Dean Troyerbbafb1b2012-06-11 16:51:39 -0500171fi
172source $TOP_DIR/stackrc
Dean Troyerdf0972c2012-03-07 17:31:03 -0600173
Ian Wienandc973e6c2014-11-05 09:52:27 +1100174# Warn users who aren't on an explicitly supported distro, but allow them to
175# override check and attempt installation with ``FORCE=yes ./stack``
Kashyap Chamarthya53ae682015-05-27 21:59:32 +0200176if [[ ! ${DISTRO} =~ (precise|trusty|utopic|vivid|7.0|wheezy|sid|testing|jessie|f21|f22|rhel7) ]]; then
Ian Wienandc973e6c2014-11-05 09:52:27 +1100177 echo "WARNING: this script has not been tested on $DISTRO"
178 if [[ "$FORCE" != "yes" ]]; then
179 die $LINENO "If you wish to run this script anyway run with FORCE=yes"
180 fi
181fi
182
Shuichiro MAKIGAKI3710eec2014-08-28 19:07:09 +0900183# Check to see if we are already running DevStack
184# Note that this may fail if USE_SCREEN=False
185if type -p screen > /dev/null && screen -ls | egrep -q "[0-9]\.$SCREEN_NAME"; then
186 echo "You are already running a stack.sh session."
187 echo "To rejoin this session type 'screen -x stack'."
188 echo "To destroy this session, type './unstack.sh'."
189 exit 1
190fi
191
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500192
Dean Troyer48352ee2012-12-12 12:50:38 -0600193# Local Settings
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500194# --------------
195
Dean Troyer48352ee2012-12-12 12:50:38 -0600196# Make sure the proxy config is visible to sub-processes
197export_proxy_variables
Scott Moserf9da5082011-10-07 21:28:00 -0400198
Dean Troyerdc97cb72015-03-28 08:20:50 -0500199# Remove services which were negated in ``ENABLED_SERVICES``
Joe Gordon6fd28112012-11-13 16:55:41 -0800200# using the "-" prefix (e.g., "-rabbit") instead of
Doug Hellmannf04178f2012-07-05 17:10:03 -0400201# calling disable_service().
202disable_negated_services
Chmouel Boudjnahc4cd4142012-06-27 11:01:40 +0200203
Dean Troyera79617c2014-04-13 18:16:54 -0500204
Dean Troyerd3bf9bd2014-07-25 10:20:19 -0500205# Configure sudo
206# --------------
Dean Troyer9122e7b2011-10-17 14:07:11 -0500207
Dean Troyerdc97cb72015-03-28 08:20:50 -0500208# We're not as **root** so make sure ``sudo`` is available
Dean Troyer23f69d82013-10-04 12:35:24 -0500209is_package_installed sudo || install_package sudo
210
211# UEC images ``/etc/sudoers`` does not have a ``#includedir``, add one
212sudo grep -q "^#includedir.*/etc/sudoers.d" /etc/sudoers ||
213 echo "#includedir /etc/sudoers.d" | sudo tee -a /etc/sudoers
214
Dean Troyerdc97cb72015-03-28 08:20:50 -0500215# Set up DevStack sudoers
Dean Troyer23f69d82013-10-04 12:35:24 -0500216TEMPFILE=`mktemp`
217echo "$STACK_USER ALL=(root) NOPASSWD:ALL" >$TEMPFILE
Dean Troyerdc97cb72015-03-28 08:20:50 -0500218# Some binaries might be under ``/sbin`` or ``/usr/sbin``, so make sure sudo will
219# see them by forcing ``PATH``
Dean Troyer23f69d82013-10-04 12:35:24 -0500220echo "Defaults:$STACK_USER secure_path=/sbin:/usr/sbin:/usr/bin:/bin:/usr/local/sbin:/usr/local/bin" >> $TEMPFILE
Adam Gandelmanea2fcb52014-03-17 16:37:56 -0700221echo "Defaults:$STACK_USER !requiretty" >> $TEMPFILE
Dean Troyer23f69d82013-10-04 12:35:24 -0500222chmod 0440 $TEMPFILE
223sudo chown root:root $TEMPFILE
224sudo mv $TEMPFILE /etc/sudoers.d/50_stack_sh
225
Dean Troyer0e8dced2014-07-25 10:33:21 -0500226
227# Configure Distro Repositories
228# -----------------------------
Ian Wienand531aeb72014-02-28 11:24:29 +1100229
Dean Troyerdc97cb72015-03-28 08:20:50 -0500230# For Debian/Ubuntu make apt attempt to retry network ops on it's own
Sean Daguee83f7782014-06-23 08:11:05 -0400231if is_ubuntu; then
Chmouel Boudjnah9246d962014-06-30 12:52:51 +0000232 echo 'APT::Acquire::Retries "20";' | sudo tee /etc/apt/apt.conf.d/80retry >/dev/null
Sean Daguee83f7782014-06-23 08:11:05 -0400233fi
234
Ian Wienand531aeb72014-02-28 11:24:29 +1100235# Some distros need to add repos beyond the defaults provided by the vendor
236# to pick up required packages.
237
Attila Fazekas1f316be2015-01-26 16:39:57 +0100238if is_fedora && [[ $DISTRO == "rhel7" ]]; then
Attila Fazekas6d227a42014-04-09 14:42:42 +0200239 # RHEL requires EPEL for many Open Stack dependencies
Ian Wienand3682b6d2014-10-08 15:37:23 +1100240
Dean Troyerdc97cb72015-03-28 08:20:50 -0500241 # NOTE: We always remove and install latest -- some environments
Ian Wienanded077b22014-10-22 11:35:29 +1100242 # use snapshot images, and if EPEL version updates they break
243 # unless we update them to latest version.
244 if sudo yum repolist enabled epel | grep -q 'epel'; then
245 uninstall_package epel-release || true
246 fi
247
248 # This trick installs the latest epel-release from a bootstrap
249 # repo, then removes itself (as epel-release installed the
250 # "real" repo).
251 #
Dean Troyerdc97cb72015-03-28 08:20:50 -0500252 # You would think that rather than this, you could use
Ian Wienanded077b22014-10-22 11:35:29 +1100253 # $releasever directly in .repo file we create below. However
254 # RHEL gives a $releasever of "6Server" which breaks the path;
255 # see https://bugzilla.redhat.com/show_bug.cgi?id=1150759
Ian Wienanded077b22014-10-22 11:35:29 +1100256 cat <<EOF | sudo tee /etc/yum.repos.d/epel-bootstrap.repo
257[epel-bootstrap]
Ian Wienand3682b6d2014-10-08 15:37:23 +1100258name=Bootstrap EPEL
Attila Fazekas1f316be2015-01-26 16:39:57 +0100259mirrorlist=http://mirrors.fedoraproject.org/mirrorlist?repo=epel-7&arch=\$basearch
Ian Wienand3682b6d2014-10-08 15:37:23 +1100260failovermethod=priority
261enabled=0
262gpgcheck=0
263EOF
Noboru Iwamatsua67ef002015-02-27 13:34:12 +0900264 # Enable a bootstrap repo. It is removed after finishing
265 # the epel-release installation.
Matt Riedemann2f63da92015-06-21 09:02:59 -0700266 is_package_installed yum-utils || install_package yum-utils
Noboru Iwamatsua67ef002015-02-27 13:34:12 +0900267 sudo yum-config-manager --enable epel-bootstrap
268 yum_install epel-release || \
Ian Wienanded077b22014-10-22 11:35:29 +1100269 die $LINENO "Error installing EPEL repo, cannot continue"
Dean Troyerdc97cb72015-03-28 08:20:50 -0500270 # EPEL rpm has installed it's version
Ian Wienanded077b22014-10-22 11:35:29 +1100271 sudo rm -f /etc/yum.repos.d/epel-bootstrap.repo
Ian Wienand531aeb72014-02-28 11:24:29 +1100272
273 # ... and also optional to be enabled
Attila Fazekas1f316be2015-01-26 16:39:57 +0100274 sudo yum-config-manager --enable rhel-7-server-optional-rpms
Zhang Jinnanfc994262014-12-14 19:19:53 -0500275
Attila Fazekas1f316be2015-01-26 16:39:57 +0100276 RHEL_RDO_REPO_RPM=${RHEL7_RDO_REPO_RPM:-"https://repos.fedorapeople.org/repos/openstack/openstack-juno/rdo-release-juno-1.noarch.rpm"}
277 RHEL_RDO_REPO_ID=${RHEL7_RDO_REPO_ID:-"openstack-juno"}
Zhang Jinnanfc994262014-12-14 19:19:53 -0500278
279 if ! sudo yum repolist enabled $RHEL_RDO_REPO_ID | grep -q $RHEL_RDO_REPO_ID; then
280 echo "RDO repo not detected; installing"
281 yum_install $RHEL_RDO_REPO_RPM || \
282 die $LINENO "Error installing RDO repo, cannot continue"
283 fi
284
Wiekus Beukesec47bc12015-03-19 08:20:38 -0700285 if is_oraclelinux; then
286 sudo yum-config-manager --enable ol7_optional_latest ol7_addons ol7_MySQL56
287 fi
288
Ian Wienand531aeb72014-02-28 11:24:29 +1100289fi
290
Dean Troyer0e8dced2014-07-25 10:33:21 -0500291
292# Configure Target Directories
293# ----------------------------
294
295# Destination path for installation ``DEST``
296DEST=${DEST:-/opt/stack}
Dean Troyer23f69d82013-10-04 12:35:24 -0500297
Dean Troyere26232b2012-06-27 17:55:15 -0500298# Create the destination directory and ensure it is writable by the user
Bob Ball376b6312013-07-29 13:10:25 +0100299# and read/executable by everybody for daemons (e.g. apache run for horizon)
Dean Troyere26232b2012-06-27 17:55:15 -0500300sudo mkdir -p $DEST
Doug Hellmanne7002672013-09-05 08:10:07 -0400301safe_chown -R $STACK_USER $DEST
302safe_chmod 0755 $DEST
Dean Troyere26232b2012-06-27 17:55:15 -0500303
Dean Troyerdc97cb72015-03-28 08:20:50 -0500304# Basic test for ``$DEST`` path permissions (fatal on error unless skipped)
Ian Wienand0488edd2013-04-11 12:04:36 +1000305check_path_perm_sanity ${DEST}
306
Dean Troyer0e8dced2014-07-25 10:33:21 -0500307# Destination path for service data
308DATA_DIR=${DATA_DIR:-${DEST}/data}
309sudo mkdir -p $DATA_DIR
310safe_chown -R $STACK_USER $DATA_DIR
311
312# Configure proper hostname
Ben Nemec3ee52c82013-12-12 19:26:12 +0000313# Certain services such as rabbitmq require that the local hostname resolves
314# correctly. Make sure it exists in /etc/hosts so that is always true.
315LOCAL_HOSTNAME=`hostname -s`
316if [ -z "`grep ^127.0.0.1 /etc/hosts | grep $LOCAL_HOSTNAME`" ]; then
317 sudo sed -i "s/\(^127.0.0.1.*\)/\1 $LOCAL_HOSTNAME/" /etc/hosts
318fi
319
Ian Wienand531aeb72014-02-28 11:24:29 +1100320
Dean Troyerffd17682014-08-02 16:07:03 -0500321# Configure Logging
322# -----------------
323
324# Set up logging level
Sean Dague53753292014-12-04 19:38:15 -0500325VERBOSE=$(trueorfalse True VERBOSE)
Dean Troyerffd17682014-08-02 16:07:03 -0500326
327# Draw a spinner so the user knows something is happening
328function spinner {
329 local delay=0.75
330 local spinstr='/-\|'
331 printf "..." >&3
332 while [ true ]; do
333 local temp=${spinstr#?}
334 printf "[%c]" "$spinstr" >&3
335 local spinstr=$temp${spinstr%"$temp"}
336 sleep $delay
337 printf "\b\b\b" >&3
338 done
339}
340
341function kill_spinner {
342 if [ ! -z "$LAST_SPINNER_PID" ]; then
343 kill >/dev/null 2>&1 $LAST_SPINNER_PID
344 printf "\b\b\bdone\n" >&3
345 fi
346}
347
348# Echo text to the log file, summary log file and stdout
349# echo_summary "something to say"
350function echo_summary {
351 if [[ -t 3 && "$VERBOSE" != "True" ]]; then
352 kill_spinner
353 echo -n -e $@ >&6
354 spinner &
355 LAST_SPINNER_PID=$!
356 else
357 echo -e $@ >&6
358 fi
359}
360
361# Echo text only to stdout, no log files
362# echo_nolog "something not for the logs"
363function echo_nolog {
364 echo $@ >&3
365}
366
Dean Troyerffd17682014-08-02 16:07:03 -0500367# Set up logging for ``stack.sh``
368# Set ``LOGFILE`` to turn on logging
369# Append '.xxxxxxxx' to the given name to maintain history
370# where 'xxxxxxxx' is a representation of the date the file was created
371TIMESTAMP_FORMAT=${TIMESTAMP_FORMAT:-"%F-%H%M%S"}
Dean Troyerdde41d02014-12-09 17:47:57 -0600372LOGDAYS=${LOGDAYS:-7}
373CURRENT_LOG_TIME=$(date "+$TIMESTAMP_FORMAT")
Dean Troyerffd17682014-08-02 16:07:03 -0500374
Dean Troyerb43b3592015-01-29 12:05:43 -0600375if [[ -n ${LOGDIR:-} ]]; then
376 mkdir -p $LOGDIR
377fi
378
Dean Troyerffd17682014-08-02 16:07:03 -0500379if [[ -n "$LOGFILE" ]]; then
Dean Troyerad5cc982014-12-10 16:35:32 -0600380 # Clean up old log files. Append '.*' to the user-specified
381 # ``LOGFILE`` to match the date in the search template.
Mikhail S Medvedevfc9cc962015-01-20 11:04:48 -0600382 LOGFILE_DIR="${LOGFILE%/*}" # dirname
383 LOGFILE_NAME="${LOGFILE##*/}" # basename
384 mkdir -p $LOGFILE_DIR
385 find $LOGFILE_DIR -maxdepth 1 -name $LOGFILE_NAME.\* -mtime +$LOGDAYS -exec rm {} \;
Dean Troyerffd17682014-08-02 16:07:03 -0500386 LOGFILE=$LOGFILE.${CURRENT_LOG_TIME}
Dean Troyerad5cc982014-12-10 16:35:32 -0600387 SUMFILE=$LOGFILE.summary.${CURRENT_LOG_TIME}
Dean Troyerffd17682014-08-02 16:07:03 -0500388
389 # Redirect output according to config
390
391 # Set fd 3 to a copy of stdout. So we can set fd 1 without losing
392 # stdout later.
393 exec 3>&1
394 if [[ "$VERBOSE" == "True" ]]; then
395 # Set fd 1 and 2 to write the log file
396 exec 1> >( $TOP_DIR/tools/outfilter.py -v -o "${LOGFILE}" ) 2>&1
397 # Set fd 6 to summary log file
398 exec 6> >( $TOP_DIR/tools/outfilter.py -o "${SUMFILE}" )
399 else
400 # Set fd 1 and 2 to primary logfile
401 exec 1> >( $TOP_DIR/tools/outfilter.py -o "${LOGFILE}" ) 2>&1
402 # Set fd 6 to summary logfile and stdout
403 exec 6> >( $TOP_DIR/tools/outfilter.py -v -o "${SUMFILE}" >&3 )
404 fi
405
406 echo_summary "stack.sh log $LOGFILE"
407 # Specified logfile name always links to the most recent log
Mikhail S Medvedevfc9cc962015-01-20 11:04:48 -0600408 ln -sf $LOGFILE $LOGFILE_DIR/$LOGFILE_NAME
409 ln -sf $SUMFILE $LOGFILE_DIR/$LOGFILE_NAME.summary
Dean Troyerffd17682014-08-02 16:07:03 -0500410else
411 # Set up output redirection without log files
412 # Set fd 3 to a copy of stdout. So we can set fd 1 without losing
413 # stdout later.
414 exec 3>&1
415 if [[ "$VERBOSE" != "True" ]]; then
416 # Throw away stdout and stderr
417 exec 1>/dev/null 2>&1
418 fi
419 # Always send summary fd to original stdout
420 exec 6> >( $TOP_DIR/tools/outfilter.py -v >&3 )
421fi
422
423# Set up logging of screen windows
424# Set ``SCREEN_LOGDIR`` to turn on logging of screen windows to the
425# directory specified in ``SCREEN_LOGDIR``, we will log to the the file
426# ``screen-$SERVICE_NAME-$TIMESTAMP.log`` in that dir and have a link
427# ``screen-$SERVICE_NAME.log`` to the latest log file.
428# Logs are kept for as long specified in ``LOGDAYS``.
Dean Troyerdde41d02014-12-09 17:47:57 -0600429# This is deprecated....logs go in ``LOGDIR``, only symlinks will be here now.
Dean Troyerffd17682014-08-02 16:07:03 -0500430if [[ -n "$SCREEN_LOGDIR" ]]; then
431
432 # We make sure the directory is created.
433 if [[ -d "$SCREEN_LOGDIR" ]]; then
434 # We cleanup the old logs
435 find $SCREEN_LOGDIR -maxdepth 1 -name screen-\*.log -mtime +$LOGDAYS -exec rm {} \;
436 else
437 mkdir -p $SCREEN_LOGDIR
438 fi
439fi
440
441
442# Configure Error Traps
443# ---------------------
444
445# Kill background processes on exit
446trap exit_trap EXIT
447function exit_trap {
448 local r=$?
449 jobs=$(jobs -p)
450 # Only do the kill when we're logging through a process substitution,
451 # which currently is only to verbose logfile
452 if [[ -n $jobs && -n "$LOGFILE" && "$VERBOSE" == "True" ]]; then
453 echo "exit_trap: cleaning up child processes"
454 kill 2>&1 $jobs
455 fi
456
457 # Kill the last spinner process
458 kill_spinner
459
460 if [[ $r -ne 0 ]]; then
461 echo "Error on exit"
462 if [[ -z $LOGDIR ]]; then
463 $TOP_DIR/tools/worlddump.py
464 else
465 $TOP_DIR/tools/worlddump.py -d $LOGDIR
466 fi
467 fi
468
469 exit $r
470}
471
472# Exit on any errors so that errors don't compound
473trap err_trap ERR
474function err_trap {
475 local r=$?
476 set +o xtrace
477 if [[ -n "$LOGFILE" ]]; then
478 echo "${0##*/} failed: full log in $LOGFILE"
479 else
480 echo "${0##*/} failed"
481 fi
482 exit $r
483}
484
485# Begin trapping error exit codes
486set -o errexit
487
488# Print the commands being run so that we can see the command that triggers
489# an error. It is also useful for following along as the install occurs.
490set -o xtrace
491
Dean Troyerdc97cb72015-03-28 08:20:50 -0500492# Print the kernel version
493uname -a
494
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +1000495# Reset the bundle of CA certificates
496SSL_BUNDLE_FILE="$DATA_DIR/ca-bundle.pem"
497rm -f $SSL_BUNDLE_FILE
498
Dean Troyer0e8dced2014-07-25 10:33:21 -0500499# Import common services (database, message queue) configuration
500source $TOP_DIR/lib/database
501source $TOP_DIR/lib/rpc_backend
502
503# Make sure we only have one rpc backend enabled,
504# and the specified rpc backend is available on your platform.
505check_rpc_backend
506
Dean Troyerdc97cb72015-03-28 08:20:50 -0500507# Service to enable with SSL if ``USE_SSL`` is True
Andrew Lazarev5ccbd0a2015-02-06 16:22:12 -0800508SSL_ENABLED_SERVICES="key,nova,cinder,glance,s-proxy,neutron,sahara"
Rob Crittenden18d47782014-03-19 17:47:42 -0400509
510if is_service_enabled tls-proxy && [ "$USE_SSL" == "True" ]; then
511 die $LINENO "tls-proxy and SSL are mutually exclusive"
512fi
Dean Troyerd81a0272012-08-31 18:04:55 -0500513
514# Configure Projects
515# ==================
516
Bharat Kumar Kobagana7b9341e2015-03-30 11:58:10 +0530517# Clone all external plugins
518fetch_plugins
519
Sean Dague6e275e12015-03-26 05:54:28 -0400520# Plugin Phase 0: override_defaults - allow pluggins to override
521# defaults before other services are run
522run_phase override_defaults
523
Dean Troyerdc97cb72015-03-28 08:20:50 -0500524# Import Apache functions
zhang-hared98a5d02013-06-21 18:18:02 +0800525source $TOP_DIR/lib/apache
Brant Knudson0049c0c2014-01-16 18:16:48 -0600526
527# Import TLS functions
Dean Troyerc83a7e12012-11-29 11:47:58 -0600528source $TOP_DIR/lib/tls
Brant Knudson0049c0c2014-01-16 18:16:48 -0600529
530# Source project function libraries
Sean Dague0392a102013-07-31 13:07:45 -0400531source $TOP_DIR/lib/infra
Sean Dague1b6b5312013-07-31 06:46:34 -0400532source $TOP_DIR/lib/oslo
Daniel Genind4708672014-10-31 15:01:29 -0400533source $TOP_DIR/lib/lvm
Sean Dagueb562e6a2012-11-19 16:00:01 -0500534source $TOP_DIR/lib/horizon
Dean Troyerd81a0272012-08-31 18:04:55 -0500535source $TOP_DIR/lib/keystone
Dean Troyer73f6f252012-09-17 11:22:21 -0500536source $TOP_DIR/lib/glance
Dean Troyerbf67c192012-09-21 15:09:37 -0500537source $TOP_DIR/lib/nova
Dean Troyerd81a0272012-08-31 18:04:55 -0500538source $TOP_DIR/lib/cinder
Attila Fazekasece6a332012-11-29 14:19:41 +0100539source $TOP_DIR/lib/swift
Dean Troyerd81a0272012-08-31 18:04:55 -0500540source $TOP_DIR/lib/ceilometer
541source $TOP_DIR/lib/heat
Dean Troyer5a9739a2015-03-25 11:33:51 -0500542source $TOP_DIR/lib/neutron-legacy
Brad Topolf127e2f2013-01-22 10:17:50 -0600543source $TOP_DIR/lib/ldap
Joe Gordone0b08d02014-08-20 00:34:55 -0700544source $TOP_DIR/lib/dstat
Dean Troyerd81a0272012-08-31 18:04:55 -0500545
Dean Troyercdf3d762013-10-15 09:42:43 -0500546# Extras Source
547# --------------
548
549# Phase: source
Sean Dague2c65e712014-12-18 09:44:56 -0500550run_phase source
Dean Troyercdf3d762013-10-15 09:42:43 -0500551
Dean Troyerb7490da2013-03-18 16:07:56 -0500552# Interactive Configuration
553# -------------------------
554
555# Do all interactive config up front before the logging spew begins
James E. Blair213c4162012-11-06 09:38:36 +0100556
Anthony Young7a549f42011-10-12 07:13:13 +0000557# Generic helper to configure passwords
558function read_password {
Dean Troyer7903b792012-09-13 17:16:12 -0500559 XTRACE=$(set +o | grep xtrace)
Anthony Young7a549f42011-10-12 07:13:13 +0000560 set +o xtrace
561 var=$1; msg=$2
562 pw=${!var}
563
Sahid Orentino Ferdjaoui9e032c22014-02-10 11:36:25 +0100564 if [[ -f $RC_DIR/localrc ]]; then
565 localrc=$TOP_DIR/localrc
566 else
567 localrc=$TOP_DIR/.localrc.auto
568 fi
Anthony Young6015c822011-10-12 07:17:11 +0000569
Anthony Young7a549f42011-10-12 07:13:13 +0000570 # If the password is not defined yet, proceed to prompt user for a password.
571 if [ ! $pw ]; then
572 # If there is no localrc file, create one
Anthony Youngb4db2252011-10-12 14:08:08 -0700573 if [ ! -e $localrc ]; then
574 touch $localrc
Anthony Young7a549f42011-10-12 07:13:13 +0000575 fi
576
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700577 # Presumably if we got this far it can only be that our localrc is missing
Anthony Young7a549f42011-10-12 07:13:13 +0000578 # the required password. Prompt user for a password and write to localrc.
Anthony Youngb4db2252011-10-12 14:08:08 -0700579 echo ''
580 echo '################################################################################'
581 echo $msg
582 echo '################################################################################'
Dean Troyer4e6a2b72011-12-29 17:27:45 -0600583 echo "This value will be written to your localrc file so you don't have to enter it "
584 echo "again. Use only alphanumeric characters."
Anthony Youngb4db2252011-10-12 14:08:08 -0700585 echo "If you leave this blank, a random default value will be used."
Dean Troyer4e6a2b72011-12-29 17:27:45 -0600586 pw=" "
587 while true; do
588 echo "Enter a password now:"
589 read -e $var
590 pw=${!var}
591 [[ "$pw" = "`echo $pw | tr -cd [:alnum:]`" ]] && break
592 echo "Invalid chars in password. Try again:"
593 done
Anthony Youngb4db2252011-10-12 14:08:08 -0700594 if [ ! $pw ]; then
Attila Fazekasf71b5002014-05-28 09:52:22 +0200595 pw=$(generate_hex_string 10)
Anthony Young7a549f42011-10-12 07:13:13 +0000596 fi
Anthony Youngb4db2252011-10-12 14:08:08 -0700597 eval "$var=$pw"
598 echo "$var=$pw" >> $localrc
Anthony Young7a549f42011-10-12 07:13:13 +0000599 fi
Dean Troyer7903b792012-09-13 17:16:12 -0500600 $XTRACE
Anthony Young7a549f42011-10-12 07:13:13 +0000601}
602
Dean Troyer13dc5cc2012-03-27 14:50:45 -0500603
Dean Troyerb9182d62012-11-07 12:31:34 -0600604# Database Configuration
Dean Troyerdc97cb72015-03-28 08:20:50 -0500605# ----------------------
Dean Troyerb9182d62012-11-07 12:31:34 -0600606
Dean Troyerdc97cb72015-03-28 08:20:50 -0500607# To select between database backends, add the following to ``local.conf``:
Terry Wilson428af5a2012-11-01 16:12:39 -0400608#
Dean Troyerafc29fe2013-02-07 15:56:24 -0600609# disable_service mysql
610# enable_service postgresql
Terry Wilson428af5a2012-11-01 16:12:39 -0400611#
Dean Troyerafc29fe2013-02-07 15:56:24 -0600612# The available database backends are listed in ``DATABASE_BACKENDS`` after
613# ``lib/database`` is sourced. ``mysql`` is the default.
Terry Wilson428af5a2012-11-01 16:12:39 -0400614
Daniel P. Berrangea99e5c92015-02-11 17:25:32 +0000615initialize_database_backends && echo "Using $DATABASE_TYPE database backend" || echo "No database enabled"
Terry Wilson428af5a2012-11-01 16:12:39 -0400616
Dean Troyerb9182d62012-11-07 12:31:34 -0600617
Dean Troyerb7490da2013-03-18 16:07:56 -0500618# Queue Configuration
Dean Troyerdc97cb72015-03-28 08:20:50 -0500619# -------------------
Jesse Andrews782b9912011-10-02 16:53:21 -0400620
Anthony Younga8416442011-09-13 20:07:44 -0700621# Rabbit connection info
Dean Troyerdc97cb72015-03-28 08:20:50 -0500622# In multi node DevStack, second node needs ``RABBIT_USERID``, but rabbit
Joe Gordonf6287c22014-12-16 13:32:41 -0800623# isn't enabled.
624RABBIT_USERID=${RABBIT_USERID:-stackrabbit}
Russell Bryant4a221452012-03-13 13:44:12 -0400625if is_service_enabled rabbit; then
Bob Balle309e5a2014-04-01 16:28:36 +0100626 RABBIT_HOST=${RABBIT_HOST:-$SERVICE_HOST}
Russell Bryant4a221452012-03-13 13:44:12 -0400627 read_password RABBIT_PASSWORD "ENTER A PASSWORD TO USE FOR RABBIT."
628fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700629
Dean Troyerb7490da2013-03-18 16:07:56 -0500630
631# Keystone
Dean Troyerdc97cb72015-03-28 08:20:50 -0500632# --------
Dean Troyerb7490da2013-03-18 16:07:56 -0500633
Dean Troyer5ce44cd2015-02-12 22:18:33 -0600634if is_service_enabled keystone; then
Dean Troyerb7490da2013-03-18 16:07:56 -0500635 # The ``SERVICE_TOKEN`` is used to bootstrap the Keystone database. It is
636 # just a string and is not a 'real' Keystone token.
637 read_password SERVICE_TOKEN "ENTER A SERVICE_TOKEN TO USE FOR THE SERVICE ADMIN TOKEN."
638 # Services authenticate to Identity with servicename/``SERVICE_PASSWORD``
639 read_password SERVICE_PASSWORD "ENTER A SERVICE_PASSWORD TO USE FOR THE SERVICE AUTHENTICATION."
640 # Horizon currently truncates usernames and passwords at 20 characters
641 read_password ADMIN_PASSWORD "ENTER A PASSWORD TO USE FOR HORIZON AND KEYSTONE (20 CHARS OR LESS)."
642
643 # Keystone can now optionally install OpenLDAP by enabling the ``ldap``
Dean Troyerdc97cb72015-03-28 08:20:50 -0500644 # service in ``local.conf`` (e.g. ``enable_service ldap``).
Dean Troyerb7490da2013-03-18 16:07:56 -0500645 # To clean out the Keystone contents in OpenLDAP set ``KEYSTONE_CLEAR_LDAP``
Dean Troyerdc97cb72015-03-28 08:20:50 -0500646 # to ``yes`` (e.g. ``KEYSTONE_CLEAR_LDAP=yes``) in ``local.conf``. To enable the
Dean Troyerb7490da2013-03-18 16:07:56 -0500647 # Keystone Identity Driver (``keystone.identity.backends.ldap.Identity``)
648 # set ``KEYSTONE_IDENTITY_BACKEND`` to ``ldap`` (e.g.
Dean Troyerdc97cb72015-03-28 08:20:50 -0500649 # ``KEYSTONE_IDENTITY_BACKEND=ldap``) in ``local.conf``.
Dean Troyerb7490da2013-03-18 16:07:56 -0500650
Dean Troyerdc97cb72015-03-28 08:20:50 -0500651 # Only request LDAP password if the service is enabled
Dean Troyerb7490da2013-03-18 16:07:56 -0500652 if is_service_enabled ldap; then
653 read_password LDAP_PASSWORD "ENTER A PASSWORD TO USE FOR LDAP"
Chmouel Boudjnah6ae9ea52012-07-05 06:50:51 +0000654 fi
Dean Troyerb7490da2013-03-18 16:07:56 -0500655fi
656
657
658# Swift
Dean Troyerdc97cb72015-03-28 08:20:50 -0500659# -----
Dean Troyerb7490da2013-03-18 16:07:56 -0500660
661if is_service_enabled s-proxy; then
Chmouel Boudjnah77b0e1d2012-02-29 16:55:43 +0000662 # We only ask for Swift Hash if we have enabled swift service.
Dean Troyerb9182d62012-11-07 12:31:34 -0600663 # ``SWIFT_HASH`` is a random unique string for a swift cluster that
Chmouel Boudjnahb2857e42011-11-03 16:19:14 +0100664 # can never change.
665 read_password SWIFT_HASH "ENTER A RANDOM SWIFT HASH."
Jim Rollenhagenabbb0e92014-08-05 18:01:48 +0000666
667 if [[ -z "$SWIFT_TEMPURL_KEY" ]] && [[ "$SWIFT_ENABLE_TEMPURLS" == "True" ]]; then
668 read_password SWIFT_TEMPURL_KEY "ENTER A KEY FOR SWIFT TEMPURLS."
669 fi
Chmouel Boudjnahb2857e42011-11-03 16:19:14 +0100670fi
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700671
Dean Troyer68162342015-05-13 15:41:03 -0500672# Save configuration values
673save_stackenv $LINENO
674
Dean Troyerdf0972c2012-03-07 17:31:03 -0600675
Jesse Andrews30f68e92011-09-13 00:59:54 -0700676# Install Packages
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700677# ================
Dean Troyer7d28a0e2012-06-27 17:55:52 -0500678
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500679# OpenStack uses a fair number of other projects.
Jesse Andrews30f68e92011-09-13 00:59:54 -0700680
Dean Troyer7d28a0e2012-06-27 17:55:52 -0500681# Install package requirements
Dean Troyer48352ee2012-12-12 12:50:38 -0600682# Source it so the entire environment is available
Dean Troyer7903b792012-09-13 17:16:12 -0500683echo_summary "Installing package prerequisites"
Dean Troyer48352ee2012-12-12 12:50:38 -0600684source $TOP_DIR/tools/install_prereqs.sh
Monty Taylor47f02062012-07-26 11:09:24 -0500685
Robert Collins635a5ba2015-06-10 08:48:06 +1200686# Normalise USE_CONSTRAINTS
687USE_CONSTRAINTS=$(trueorfalse False USE_CONSTRAINTS)
688
Dean Troyerdc97cb72015-03-28 08:20:50 -0500689# Configure an appropriate Python environment
Arata Notsu8b5d3cf2013-10-17 21:42:49 +0900690if [[ "$OFFLINE" != "True" ]]; then
Sean Dague53753292014-12-04 19:38:15 -0500691 PYPI_ALTERNATIVE_URL=${PYPI_ALTERNATIVE_URL:-""} $TOP_DIR/tools/install_pip.sh
Arata Notsu8b5d3cf2013-10-17 21:42:49 +0900692fi
Dean Troyer1a6d4492013-06-03 16:47:36 -0500693
Joe Gordon981ed292014-12-15 21:11:20 -0800694TRACK_DEPENDS=${TRACK_DEPENDS:-False}
695
Dean Troyerdc97cb72015-03-28 08:20:50 -0500696# Install Python packages into a virtualenv so that we can track them
Joe Gordon981ed292014-12-15 21:11:20 -0800697if [[ $TRACK_DEPENDS = True ]]; then
698 echo_summary "Installing Python packages into a virtualenv $DEST/.venv"
699 pip_install -U virtualenv
700
701 rm -rf $DEST/.venv
702 virtualenv --system-site-packages $DEST/.venv
703 source $DEST/.venv/bin/activate
704 $DEST/.venv/bin/pip freeze > $DEST/requires-pre-pip
705fi
706
Gael Chamoulaudd3121f62014-07-24 23:53:02 +0200707# Do the ugly hacks for broken packages and distros
Dean Troyer04a35112014-08-15 14:03:52 -0500708source $TOP_DIR/tools/fixup_stuff.sh
Dean Troyer9acc12a2013-08-09 15:09:31 -0500709
Dean Troyer5c3a63e2014-07-09 11:27:42 -0500710
Dean Troyerb1d8e8e2015-02-16 13:58:35 -0600711# Virtual Environment
712# -------------------
713
Yuki Nishiwaki0a9d03d2015-05-08 16:29:55 +0900714# Install required infra support libraries
715install_infra
716
Dean Troyerb1d8e8e2015-02-16 13:58:35 -0600717# Pre-build some problematic wheels
Dean Troyer99c463d2015-02-19 13:05:15 -0600718if [[ -n ${WHEELHOUSE:-} && ! -d ${WHEELHOUSE:-} ]]; then
Sean Dagueaa8d31a2015-02-20 06:10:48 -0500719 source $TOP_DIR/tools/build_wheels.sh
Dean Troyerb1d8e8e2015-02-16 13:58:35 -0600720fi
721
722
Dean Troyer5c3a63e2014-07-09 11:27:42 -0500723# Extras Pre-install
724# ------------------
Dean Troyer5c3a63e2014-07-09 11:27:42 -0500725# Phase: pre-install
Sean Dague2c65e712014-12-18 09:44:56 -0500726run_phase stack pre-install
Dean Troyer5c3a63e2014-07-09 11:27:42 -0500727
Dean Troyer62d1d692013-08-01 17:40:40 -0500728install_rpc_backend
729
730if is_service_enabled $DATABASE_BACKENDS; then
731 install_database
Dean Troyer5686dbc2015-03-09 14:27:51 -0500732 install_database_python
Dean Troyer62d1d692013-08-01 17:40:40 -0500733fi
734
735if is_service_enabled neutron; then
736 install_neutron_agent_packages
737fi
738
Dean Troyerfe51a902013-04-01 15:48:44 -0500739# Check Out and Install Source
740# ----------------------------
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500741
Dean Troyer7903b792012-09-13 17:16:12 -0500742echo_summary "Installing OpenStack project source"
743
Dean Troyerdc97cb72015-03-28 08:20:50 -0500744# Install Oslo libraries
Sean Dague1b6b5312013-07-31 06:46:34 -0400745install_oslo
746
Dean Troyerdc97cb72015-03-28 08:20:50 -0500747# Install client libraries
Dean Troyerd81a0272012-08-31 18:04:55 -0500748install_keystoneclient
Dean Troyer73f6f252012-09-17 11:22:21 -0500749install_glanceclient
Dean Troyer253a1a32013-04-01 18:23:22 -0500750install_cinderclient
Dean Troyerbf67c192012-09-21 15:09:37 -0500751install_novaclient
Sean Dague75195b52013-07-25 15:38:09 -0400752if is_service_enabled swift glance horizon; then
Dean Troyerfe51a902013-04-01 15:48:44 -0500753 install_swiftclient
754fi
Sean Dague75195b52013-07-25 15:38:09 -0400755if is_service_enabled neutron nova horizon; then
Mark McClainb05c8762013-07-06 23:29:39 -0400756 install_neutronclient
Dean Troyerfe51a902013-04-01 15:48:44 -0500757fi
Sean Dague75195b52013-07-25 15:38:09 -0400758if is_service_enabled heat horizon; then
759 install_heatclient
760fi
Dean Troyerfe51a902013-04-01 15:48:44 -0500761
Morgan Fainberg58936fd2014-06-24 12:26:07 -0700762# Install middleware
763install_keystonemiddleware
764
Dean Troyer5ce44cd2015-02-12 22:18:33 -0600765if is_service_enabled keystone; then
Bartosz Górski0abde392014-02-28 14:15:19 +0100766 if [ "$KEYSTONE_AUTH_HOST" == "$SERVICE_HOST" ]; then
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600767 stack_install_service keystone
Bartosz Górski0abde392014-02-28 14:15:19 +0100768 configure_keystone
769 fi
Jesse Andrews38df1222011-11-20 09:55:44 -0800770fi
Attila Fazekasece6a332012-11-29 14:19:41 +0100771
Chmouel Boudjnah0c3a5582013-03-06 10:58:33 +0100772if is_service_enabled s-proxy; then
gordon chungb6197e62015-02-12 15:33:35 -0500773 if is_service_enabled ceilometer; then
774 install_ceilometermiddleware
775 fi
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600776 stack_install_service swift
Dean Troyerfe51a902013-04-01 15:48:44 -0500777 configure_swift
778
rahmu9d2647a2013-04-24 10:40:07 +0200779 # swift3 middleware to provide S3 emulation to Swift
Chmouel Boudjnah6ae9ea52012-07-05 06:50:51 +0000780 if is_service_enabled swift3; then
Dean Troyerdc97cb72015-03-28 08:20:50 -0500781 # Replace the nova-objectstore port by the swift port
rahmu9d2647a2013-04-24 10:40:07 +0200782 S3_SERVICE_PORT=8080
Chmouel Boudjnah6ae9ea52012-07-05 06:50:51 +0000783 git_clone $SWIFT3_REPO $SWIFT3_DIR $SWIFT3_BRANCH
Dean Troyerfe51a902013-04-01 15:48:44 -0500784 setup_develop $SWIFT3_DIR
Chmouel Boudjnah6ae9ea52012-07-05 06:50:51 +0000785 fi
James E. Blaire7ce24f2011-11-10 13:05:13 -0800786fi
Attila Fazekasece6a332012-11-29 14:19:41 +0100787
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +0000788if is_service_enabled g-api n-api; then
Dean Troyerdc97cb72015-03-28 08:20:50 -0500789 # Image catalog service
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600790 stack_install_service glance
Dean Troyerfe51a902013-04-01 15:48:44 -0500791 configure_glance
James E. Blaire7ce24f2011-11-10 13:05:13 -0800792fi
Dean Troyerfe51a902013-04-01 15:48:44 -0500793
794if is_service_enabled cinder; then
Dean Troyerdc97cb72015-03-28 08:20:50 -0500795 # Block volume service
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600796 stack_install_service cinder
Dean Troyerfe51a902013-04-01 15:48:44 -0500797 configure_cinder
798fi
799
Mark McClainb05c8762013-07-06 23:29:39 -0400800if is_service_enabled neutron; then
Dean Troyerdc97cb72015-03-28 08:20:50 -0500801 # Network service
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600802 stack_install_service neutron
Mark McClainb05c8762013-07-06 23:29:39 -0400803 install_neutron_third_party
Dean Troyerfe51a902013-04-01 15:48:44 -0500804fi
805
Dean Troyerbf67c192012-09-21 15:09:37 -0500806if is_service_enabled nova; then
Dean Troyerdc97cb72015-03-28 08:20:50 -0500807 # Compute service
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600808 stack_install_service nova
Dean Troyerfe51a902013-04-01 15:48:44 -0500809 cleanup_nova
810 configure_nova
Dean Troyerbf67c192012-09-21 15:09:37 -0500811fi
Dean Troyerfe51a902013-04-01 15:48:44 -0500812
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +0000813if is_service_enabled horizon; then
Zhenguo Niue385d1e2014-03-12 16:58:12 +0800814 # django openstack_auth
815 install_django_openstack_auth
Sean Dagueb562e6a2012-11-19 16:00:01 -0500816 # dashboard
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600817 stack_install_service horizon
Dean Troyerfe51a902013-04-01 15:48:44 -0500818 configure_horizon
James E. Blaire7ce24f2011-11-10 13:05:13 -0800819fi
Dean Troyerfe51a902013-04-01 15:48:44 -0500820
John H. Tran93361642012-07-26 11:22:05 -0700821if is_service_enabled ceilometer; then
Yunhong, Jiange583d9b2013-01-09 09:33:07 +0800822 install_ceilometerclient
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600823 stack_install_service ceilometer
Attila Fazekas12bb53b2013-07-25 23:02:48 +0200824 echo_summary "Configuring Ceilometer"
825 configure_ceilometer
John H. Tran93361642012-07-26 11:22:05 -0700826fi
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500827
Steve Bakerbfdad752012-08-18 09:00:42 +1200828if is_service_enabled heat; then
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600829 stack_install_service heat
Steve Baker315971d2014-05-27 12:24:18 +1200830 install_heat_other
Steve Bakerc3249082013-04-09 13:41:47 +1200831 cleanup_heat
Steve Bakerbfdad752012-08-18 09:00:42 +1200832 configure_heat
833fi
Dean Troyerb7490da2013-03-18 16:07:56 -0500834
Rob Crittenden18d47782014-03-19 17:47:42 -0400835if is_service_enabled tls-proxy || [ "$USE_SSL" == "True" ]; then
Dean Troyerfe51a902013-04-01 15:48:44 -0500836 configure_CA
837 init_CA
838 init_cert
Dean Troyerdc97cb72015-03-28 08:20:50 -0500839 # Add name to ``/etc/hosts``.
840 # Don't be naive and add to existing line!
Dean Troyer67787e62012-05-02 11:48:15 -0500841fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700842
Dean Troyerdc97cb72015-03-28 08:20:50 -0500843
Dean Troyercdf3d762013-10-15 09:42:43 -0500844# Extras Install
845# --------------
846
847# Phase: install
Sean Dague2c65e712014-12-18 09:44:56 -0500848run_phase stack install
Dean Troyercdf3d762013-10-15 09:42:43 -0500849
Dean Troyerdc97cb72015-03-28 08:20:50 -0500850# Install the OpenStack client, needed for most setup commands
Ihar Hrachyshka1ffa3322015-02-20 16:23:15 +0100851if use_library_from_git "python-openstackclient"; then
852 git_clone_by_name "python-openstackclient"
853 setup_dev_lib "python-openstackclient"
854else
Sean Dague60996b12015-04-08 09:06:49 -0400855 pip_install_gr python-openstackclient
Ihar Hrachyshka1ffa3322015-02-20 16:23:15 +0100856fi
857
Dean Troyercc6b4432013-04-08 15:38:03 -0500858if [[ $TRACK_DEPENDS = True ]]; then
Monty Taylor47f02062012-07-26 11:09:24 -0500859 $DEST/.venv/bin/pip freeze > $DEST/requires-post-pip
Dean Troyercc6b4432013-04-08 15:38:03 -0500860 if ! diff -Nru $DEST/requires-pre-pip $DEST/requires-post-pip > $DEST/requires.diff; then
DennyZhange8fa8532013-11-03 12:22:04 -0600861 echo "Detect some changes for installed packages of pip, in depend tracking mode"
Monty Taylor47f02062012-07-26 11:09:24 -0500862 cat $DEST/requires.diff
863 fi
864 echo "Ran stack.sh in depend tracking mode, bailing out now"
865 exit 0
866fi
Dean Troyerdf0972c2012-03-07 17:31:03 -0600867
Dean Troyerb7490da2013-03-18 16:07:56 -0500868
Dean Troyerff603ef2011-11-22 17:48:10 -0600869# Syslog
Dean Troyerdf0972c2012-03-07 17:31:03 -0600870# ------
Dean Troyerff603ef2011-11-22 17:48:10 -0600871
872if [[ $SYSLOG != "False" ]]; then
Dean Troyerff603ef2011-11-22 17:48:10 -0600873 if [[ "$SYSLOG_HOST" = "$HOST_IP" ]]; then
874 # Configure the master host to receive
875 cat <<EOF >/tmp/90-stack-m.conf
876\$ModLoad imrelp
877\$InputRELPServerRun $SYSLOG_PORT
878EOF
879 sudo mv /tmp/90-stack-m.conf /etc/rsyslog.d
880 else
881 # Set rsyslog to send to remote host
882 cat <<EOF >/tmp/90-stack-s.conf
883*.* :omrelp:$SYSLOG_HOST:$SYSLOG_PORT
884EOF
885 sudo mv /tmp/90-stack-s.conf /etc/rsyslog.d
886 fi
cloudnulle4859f02013-05-28 14:10:58 -0500887
888 RSYSLOGCONF="/etc/rsyslog.conf"
889 if [ -f $RSYSLOGCONF ]; then
890 sudo cp -b $RSYSLOGCONF $RSYSLOGCONF.bak
891 if [[ $(grep '$SystemLogRateLimitBurst' $RSYSLOGCONF) ]]; then
892 sudo sed -i 's/$SystemLogRateLimitBurst\ .*/$SystemLogRateLimitBurst\ 0/' $RSYSLOGCONF
893 else
894 sudo sed -i '$ i $SystemLogRateLimitBurst\ 0' $RSYSLOGCONF
895 fi
896 if [[ $(grep '$SystemLogRateLimitInterval' $RSYSLOGCONF) ]]; then
897 sudo sed -i 's/$SystemLogRateLimitInterval\ .*/$SystemLogRateLimitInterval\ 0/' $RSYSLOGCONF
898 else
899 sudo sed -i '$ i $SystemLogRateLimitInterval\ 0' $RSYSLOGCONF
900 fi
901 fi
902
Dean Troyer7903b792012-09-13 17:16:12 -0500903 echo_summary "Starting rsyslog"
Dean Troyer13dc5cc2012-03-27 14:50:45 -0500904 restart_service rsyslog
Dean Troyerff603ef2011-11-22 17:48:10 -0600905fi
906
Dean Troyerdf0972c2012-03-07 17:31:03 -0600907
Joe Gordone5d92382012-09-13 17:19:03 -0700908# Finalize queue installation
909# ----------------------------
Akihiro MOTOKIb0f1c382013-01-13 17:58:12 +0900910restart_rpc_backend
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700911
Dean Troyerdf0972c2012-03-07 17:31:03 -0600912
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +1000913# Export Certicate Authority Bundle
914# ---------------------------------
915
916# If certificates were used and written to the SSL bundle file then these
917# should be exported so clients can validate their connections.
918
919if [ -f $SSL_BUNDLE_FILE ]; then
920 export OS_CACERT=$SSL_BUNDLE_FILE
921fi
922
923
Terry Wilson428af5a2012-11-01 16:12:39 -0400924# Configure database
925# ------------------
Dean Troyerb9182d62012-11-07 12:31:34 -0600926
Terry Wilson428af5a2012-11-01 16:12:39 -0400927if is_service_enabled $DATABASE_BACKENDS; then
928 configure_database
Jesse Andrews24859062011-09-15 21:28:23 -0700929fi
930
Dean Troyerb9182d62012-11-07 12:31:34 -0600931
932# Configure screen
933# ----------------
934
Sean Dague53753292014-12-04 19:38:15 -0500935USE_SCREEN=$(trueorfalse True USE_SCREEN)
Dean Troyer681f3fd2013-02-27 19:00:39 -0600936if [[ "$USE_SCREEN" == "True" ]]; then
937 # Create a new named screen to run processes in
938 screen -d -m -S $SCREEN_NAME -t shell -s /bin/bash
939 sleep 1
940
941 # Set a reasonable status bar
Ed Cranfordff72c502015-01-21 16:42:42 -0600942 SCREEN_HARDSTATUS=${SCREEN_HARDSTATUS:-}
Dean Troyer681f3fd2013-02-27 19:00:39 -0600943 if [ -z "$SCREEN_HARDSTATUS" ]; then
944 SCREEN_HARDSTATUS='%{= .} %-Lw%{= .}%> %n%f %t*%{= .}%+Lw%< %-=%{g}(%{d}%H/%l%{g})'
945 fi
946 screen -r $SCREEN_NAME -X hardstatus alwayslastline "$SCREEN_HARDSTATUS"
Steven Dake30396572013-06-30 16:11:54 -0700947 screen -r $SCREEN_NAME -X setenv PROMPT_COMMAND /bin/true
Josh Kearney0a7a41e2012-04-04 17:47:56 -0500948fi
949
Dean Troyerdc97cb72015-03-28 08:20:50 -0500950# Clear ``screenrc`` file
Jiajun Liu61bb2c12012-10-19 09:48:30 +0800951SCREENRC=$TOP_DIR/$SCREEN_NAME-screenrc
952if [[ -e $SCREENRC ]]; then
Jiajun Liu8e58c072013-07-17 06:41:50 +0000953 rm -f $SCREENRC
Jiajun Liu61bb2c12012-10-19 09:48:30 +0800954fi
Dean Troyerb9182d62012-11-07 12:31:34 -0600955
jiajun xua9414242012-12-06 16:30:57 +0800956# Initialize the directory for service status check
957init_service_check
Dean Troyer7d28a0e2012-06-27 17:55:52 -0500958
Dean Troyer68162342015-05-13 15:41:03 -0500959# Save configuration values
960save_stackenv $LINENO
961
Dean Troyerdc97cb72015-03-28 08:20:50 -0500962
963# Start Services
964# ==============
965
Sean Dague78096b52014-02-25 10:23:04 -0500966# Dstat
Dean Troyerdc97cb72015-03-28 08:20:50 -0500967# -----
Dean Troyer1a6d4492013-06-03 16:47:36 -0500968
Sean Daguef1eb0472014-02-11 17:28:56 -0500969# A better kind of sysstat, with the top process per time slice
Joe Gordone0b08d02014-08-20 00:34:55 -0700970start_dstat
Sean Dague062cdaf2014-02-10 22:24:49 -0500971
Dean Troyer893e6632013-09-13 15:05:51 -0500972
Dean Troyerd81a0272012-08-31 18:04:55 -0500973# Keystone
974# --------
975
Dean Troyer5ce44cd2015-02-12 22:18:33 -0600976if is_service_enabled keystone; then
Dean Troyer7903b792012-09-13 17:16:12 -0500977 echo_summary "Starting Keystone"
Bartosz Górski0abde392014-02-28 14:15:19 +0100978
979 if [ "$KEYSTONE_AUTH_HOST" == "$SERVICE_HOST" ]; then
980 init_keystone
981 start_keystone
982 fi
Dean Troyerd81a0272012-08-31 18:04:55 -0500983
Dean Troyerd835de82012-11-29 17:11:35 -0600984 # Set up a temporary admin URI for Keystone
Jamie Lennox3561d7f2014-05-21 17:18:43 +1000985 SERVICE_ENDPOINT=$KEYSTONE_AUTH_URI/v2.0
Dean Troyerc83a7e12012-11-29 11:47:58 -0600986
987 if is_service_enabled tls-proxy; then
988 export OS_CACERT=$INT_CA_DIR/ca-chain.pem
989 # Until the client support is fixed, just use the internal endpoint
990 SERVICE_ENDPOINT=http://$KEYSTONE_AUTH_HOST:$KEYSTONE_AUTH_PORT_INT/v2.0
991 fi
Dean Troyerd81a0272012-08-31 18:04:55 -0500992
Dean Troyerdc97cb72015-03-28 08:20:50 -0500993 # Setup OpenStackClient token-endpoint auth
Steve Martinelli19685422014-01-24 13:02:26 -0600994 export OS_TOKEN=$SERVICE_TOKEN
995 export OS_URL=$SERVICE_ENDPOINT
Dean Troyer42a59c22014-03-03 14:31:29 -0600996
Dean Troyerd835de82012-11-29 17:11:35 -0600997 create_keystone_accounts
Dean Troyera0dce262012-12-11 16:52:37 -0600998 create_nova_accounts
Dean Troyer42a59c22014-03-03 14:31:29 -0600999 create_glance_accounts
Dean Troyer671c16e2012-12-13 16:22:38 -06001000 create_cinder_accounts
Mark McClainb05c8762013-07-06 23:29:39 -04001001 create_neutron_accounts
Dean Troyerd835de82012-11-29 17:11:35 -06001002
Dirk Muellerfa5ccff2014-01-09 13:27:35 +01001003 if is_service_enabled ceilometer; then
1004 create_ceilometer_accounts
1005 fi
1006
Dean Troyer42a59c22014-03-03 14:31:29 -06001007 if is_service_enabled swift; then
Ian Wienand0ff314c2013-07-17 16:30:19 +10001008 create_swift_accounts
1009 fi
1010
Steve Baker744c2af2014-12-16 12:00:40 +13001011 if is_service_enabled heat; then
Steven Hardy33d1f862014-02-13 15:00:33 +00001012 create_heat_accounts
1013 fi
1014
Dean Troyerdc97cb72015-03-28 08:20:50 -05001015 # Begone token auth
Steve Martinelli19685422014-01-24 13:02:26 -06001016 unset OS_TOKEN OS_URL
Dean Troyer42a59c22014-03-03 14:31:29 -06001017
Jamie Lennox9d7e7762015-05-29 01:08:53 +00001018 # force set to use v2 identity authentication even with v3 commands
1019 export OS_AUTH_TYPE=v2password
1020
Dean Troyerdc97cb72015-03-28 08:20:50 -05001021 # Set up password auth credentials now that Keystone is bootstrapped
Dean Troyerd81a0272012-08-31 18:04:55 -05001022 export OS_AUTH_URL=$SERVICE_ENDPOINT
1023 export OS_TENANT_NAME=admin
1024 export OS_USERNAME=admin
1025 export OS_PASSWORD=$ADMIN_PASSWORD
Bartosz Górski0abde392014-02-28 14:15:19 +01001026 export OS_REGION_NAME=$REGION_NAME
Dean Troyerd81a0272012-08-31 18:04:55 -05001027fi
1028
1029
Li Ma26ac3d72014-12-21 23:41:07 -08001030# ZeroMQ
1031# ------
1032if is_service_enabled zeromq; then
1033 echo_summary "Starting zeromq receiver"
1034 run_process zeromq "$OSLO_BIN_DIR/oslo-messaging-zmq-receiver"
1035fi
1036
1037
Tres Henryca85b792011-10-28 14:00:21 -07001038# Horizon
Dean Troyerdf0972c2012-03-07 17:31:03 -06001039# -------
Jesse Andrewscbe98d52011-10-02 17:47:32 -04001040
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001041# Set up the django horizon application to serve via apache/wsgi
Jesse Andrews75a37652011-09-12 17:09:08 -07001042
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +00001043if is_service_enabled horizon; then
Dean Troyer7903b792012-09-13 17:16:12 -05001044 echo_summary "Configuring and starting Horizon"
Sean Dagueb562e6a2012-11-19 16:00:01 -05001045 init_horizon
1046 start_horizon
Anthony Young70dc5e02011-09-15 16:52:43 -07001047fi
Jesse Andrews75a37652011-09-12 17:09:08 -07001048
Anthony Young3859f732011-09-14 02:33:43 -07001049
Jesse Andrewsd74257d2011-09-13 01:24:50 -07001050# Glance
1051# ------
1052
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +00001053if is_service_enabled g-reg; then
Dean Troyer7903b792012-09-13 17:16:12 -05001054 echo_summary "Configuring Glance"
Dean Troyer73f6f252012-09-17 11:22:21 -05001055 init_glance
Anthony Young70dc5e02011-09-15 16:52:43 -07001056fi
Jesse Andrews75a37652011-09-12 17:09:08 -07001057
Dean Troyer8c032d12013-09-23 13:53:13 -05001058
Mark McClainb05c8762013-07-06 23:29:39 -04001059# Neutron
Anthony Young60df29a2012-03-28 09:40:17 -07001060# -------
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001061
Mark McClainb05c8762013-07-06 23:29:39 -04001062if is_service_enabled neutron; then
1063 echo_summary "Configuring Neutron"
Dean Troyerb9182d62012-11-07 12:31:34 -06001064
Mark McClainb05c8762013-07-06 23:29:39 -04001065 configure_neutron
Dean Troyerdc97cb72015-03-28 08:20:50 -05001066 # Run init_neutron only on the node hosting the Neutron API server
Salvatore Orlandodd649882013-08-05 08:56:17 -07001067 if is_service_enabled $DATABASE_BACKENDS && is_service_enabled q-svc; then
1068 init_neutron
1069 fi
Dan Wendlandt0007f3a2012-05-18 13:37:47 -07001070fi
1071
Mark McClainb05c8762013-07-06 23:29:39 -04001072# Some Neutron plugins require network controllers which are not
Akihiro MOTOKI66afb472012-12-21 15:34:13 +09001073# a part of the OpenStack project. Configure and start them.
Mark McClainb05c8762013-07-06 23:29:39 -04001074if is_service_enabled neutron; then
1075 configure_neutron_third_party
1076 init_neutron_third_party
1077 start_neutron_third_party
Gary Kotton396a0142012-07-29 04:28:47 -04001078fi
1079
Dean Troyerb9182d62012-11-07 12:31:34 -06001080
Jesse Andrewsd74257d2011-09-13 01:24:50 -07001081# Nova
1082# ----
Dean Troyerbd13b702012-02-13 11:22:36 -06001083
Isaku Yamahata6f85ab32012-08-06 16:56:10 +09001084if is_service_enabled n-net q-dhcp; then
Anthony Young55458452011-12-17 00:21:49 +00001085 # Delete traces of nova networks from prior runs
Davanum Srinivasd71d6e72013-01-28 19:15:57 -05001086 # Do not kill any dnsmasq instance spawned by NetworkManager
1087 netman_pid=$(pidof NetworkManager || true)
1088 if [ -z "$netman_pid" ]; then
1089 sudo killall dnsmasq || true
1090 else
1091 sudo ps h -o pid,ppid -C dnsmasq | grep -v $netman_pid | awk '{print $1}' | sudo xargs kill || true
1092 fi
1093
Anthony Young55458452011-12-17 00:21:49 +00001094 clean_iptables
Christian Berendt7a7fb492014-04-07 13:31:07 +00001095
1096 if is_service_enabled n-net; then
1097 rm -rf ${NOVA_STATE_PATH}/networks
1098 sudo mkdir -p ${NOVA_STATE_PATH}/networks
Chris Denta0ced4d2014-05-27 22:08:46 +01001099 safe_chown -R ${STACK_USER} ${NOVA_STATE_PATH}/networks
Christian Berendt7a7fb492014-04-07 13:31:07 +00001100 fi
1101
Dean Troyer1a6d4492013-06-03 16:47:36 -05001102 # Force IP forwarding on, just in case
Dean Troyer0b31e862012-03-07 16:47:56 -06001103 sudo sysctl -w net.ipv4.ip_forward=1
Anthony Young70dc5e02011-09-15 16:52:43 -07001104fi
Jesse Andrews75a37652011-09-12 17:09:08 -07001105
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001106
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +01001107# Storage Service
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001108# ---------------
1109
Chmouel Boudjnah0c3a5582013-03-06 10:58:33 +01001110if is_service_enabled s-proxy; then
Dean Troyer7903b792012-09-13 17:16:12 -05001111 echo_summary "Configuring Swift"
Attila Fazekasece6a332012-11-29 14:19:41 +01001112 init_swift
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +01001113fi
1114
Dean Troyerdf0972c2012-03-07 17:31:03 -06001115
Anthony Youngacff87a2011-10-20 10:12:58 -07001116# Volume Service
1117# --------------
1118
Dean Troyer67787e62012-05-02 11:48:15 -05001119if is_service_enabled cinder; then
Dean Troyer7903b792012-09-13 17:16:12 -05001120 echo_summary "Configuring Cinder"
Dean Troyer67787e62012-05-02 11:48:15 -05001121 init_cinder
Anthony Youngacff87a2011-10-20 10:12:58 -07001122fi
1123
Dean Troyer2aa2a892013-08-04 19:53:19 -05001124
1125# Compute Service
1126# ---------------
1127
Dean Troyerbf67c192012-09-21 15:09:37 -05001128if is_service_enabled nova; then
1129 echo_summary "Configuring Nova"
1130 init_nova
Jesse Andrewsd1879c52011-09-16 16:28:13 -07001131
Dean Troyer86a79692012-10-22 15:24:46 -05001132 # Additional Nova configuration that is dependent on other services
Mark McClainb05c8762013-07-06 23:29:39 -04001133 if is_service_enabled neutron; then
1134 create_nova_conf_neutron
Dean Troyer86a79692012-10-22 15:24:46 -05001135 elif is_service_enabled n-net; then
Akihiro MOTOKI66afb472012-12-21 15:34:13 +09001136 create_nova_conf_nova_network
Brad Hall1bfa3d52011-10-27 18:18:20 -07001137 fi
Dean Troyerdf0972c2012-03-07 17:31:03 -06001138
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001139 init_nova_cells
Anthony Youngb62b4ca2011-10-26 22:29:08 -07001140fi
1141
Dean Troyerdc97cb72015-03-28 08:20:50 -05001142
Dean Troyercdf3d762013-10-15 09:42:43 -05001143# Extras Configuration
1144# ====================
1145
1146# Phase: post-config
Sean Dague2c65e712014-12-18 09:44:56 -05001147run_phase stack post-config
Dean Troyercdf3d762013-10-15 09:42:43 -05001148
1149
Dean Troyer893e6632013-09-13 15:05:51 -05001150# Local Configuration
1151# ===================
1152
Dean Troyerdc97cb72015-03-28 08:20:50 -05001153# Apply configuration from ``local.conf`` if it exists for layer 2 services
Dean Troyer893e6632013-09-13 15:05:51 -05001154# Phase: post-config
1155merge_config_group $TOP_DIR/local.conf post-config
1156
1157
Jesse Andrewsd74257d2011-09-13 01:24:50 -07001158# Launch Services
1159# ===============
Jesse Andrews30f68e92011-09-13 00:59:54 -07001160
Jesse Andrewsdfcd2002011-09-13 13:17:22 -07001161# Only run the services specified in ``ENABLED_SERVICES``
1162
Attila Fazekasece6a332012-11-29 14:19:41 +01001163# Launch Swift Services
Chmouel Boudjnah0c3a5582013-03-06 10:58:33 +01001164if is_service_enabled s-proxy; then
Attila Fazekasece6a332012-11-29 14:19:41 +01001165 echo_summary "Starting Swift"
1166 start_swift
1167fi
1168
Dean Troyer73f6f252012-09-17 11:22:21 -05001169# Launch the Glance services
Dean Troyere4fa7212014-01-15 15:04:49 -06001170if is_service_enabled glance; then
Dean Troyer7903b792012-09-13 17:16:12 -05001171 echo_summary "Starting Glance"
Dean Troyer73f6f252012-09-17 11:22:21 -05001172 start_glance
Anthony Youngd000b222011-09-19 14:46:53 -07001173fi
1174
Dean Troyerdc97cb72015-03-28 08:20:50 -05001175
Eric Windisch0b9776d2014-01-28 11:20:53 -05001176# Install Images
1177# ==============
1178
Dean Troyerdc97cb72015-03-28 08:20:50 -05001179# Upload an image to Glance.
Eric Windisch0b9776d2014-01-28 11:20:53 -05001180#
Dean Troyerdc97cb72015-03-28 08:20:50 -05001181# The default image is CirrOS, a small testing image which lets you login as **root**
1182# CirrOS has a ``cloud-init`` analog supporting login via keypair and sending
Eric Windisch0b9776d2014-01-28 11:20:53 -05001183# scripts as userdata.
Dean Troyerdc97cb72015-03-28 08:20:50 -05001184# See https://help.ubuntu.com/community/CloudInit for more on ``cloud-init``
Eric Windisch0b9776d2014-01-28 11:20:53 -05001185
1186if is_service_enabled g-reg; then
Peter Stachowski9a808922015-04-08 19:48:09 +00001187 TOKEN=$(openstack token issue -c id -f value)
Eric Windisch0b9776d2014-01-28 11:20:53 -05001188 die_if_not_set $LINENO TOKEN "Keystone fail to get token"
1189
Sean Dague2f8e08b2014-12-05 08:31:16 -05001190 echo_summary "Uploading images"
Eric Windisch0b9776d2014-01-28 11:20:53 -05001191
Sean Dague2f8e08b2014-12-05 08:31:16 -05001192 # Option to upload legacy ami-tty, which works with xenserver
1193 if [[ -n "$UPLOAD_LEGACY_TTY" ]]; then
1194 IMAGE_URLS="${IMAGE_URLS:+${IMAGE_URLS},}https://github.com/downloads/citrix-openstack/warehouse/tty.tgz"
Eric Windisch0b9776d2014-01-28 11:20:53 -05001195 fi
Sean Dague2f8e08b2014-12-05 08:31:16 -05001196
1197 for image_url in ${IMAGE_URLS//,/ }; do
1198 upload_image $image_url $TOKEN
1199 done
Eric Windisch0b9776d2014-01-28 11:20:53 -05001200fi
1201
Dean Troyerdc97cb72015-03-28 08:20:50 -05001202# Create an access key and secret key for Nova EC2 register image
Dean Troyer5ce44cd2015-02-12 22:18:33 -06001203if is_service_enabled keystone && is_service_enabled swift3 && is_service_enabled nova; then
Steve Martinellidf6793a2014-03-13 23:38:11 -05001204 eval $(openstack ec2 credentials create --user nova --project $SERVICE_TENANT_NAME -f shell -c access -c secret)
1205 iniset $NOVA_CONF DEFAULT s3_access_key "$access"
1206 iniset $NOVA_CONF DEFAULT s3_secret_key "$secret"
Devananda van der Veen9bc47db2012-12-12 16:52:55 -08001207 iniset $NOVA_CONF DEFAULT s3_affix_tenant "True"
Anthony Youngd000b222011-09-19 14:46:53 -07001208fi
1209
Kaitlin Farrdef4c142014-01-06 08:52:49 -05001210# Create a randomized default value for the keymgr's fixed_key
1211if is_service_enabled nova; then
Attila Fazekasf71b5002014-05-28 09:52:22 +02001212 iniset $NOVA_CONF keymgr fixed_key $(generate_hex_string 32)
Kaitlin Farrdef4c142014-01-06 08:52:49 -05001213fi
1214
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001215# Launch the nova-api and wait for it to answer before continuing
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +00001216if is_service_enabled n-api; then
Dean Troyer7903b792012-09-13 17:16:12 -05001217 echo_summary "Starting Nova API"
Dean Troyer3a3a2ba2012-12-11 15:26:24 -06001218 start_nova_api
Anthony Youngd000b222011-09-19 14:46:53 -07001219fi
Brad Hall1bfa3d52011-10-27 18:18:20 -07001220
Gary Kotton37dda8d2012-08-08 03:46:33 -04001221if is_service_enabled q-svc; then
Mark McClainb05c8762013-07-06 23:29:39 -04001222 echo_summary "Starting Neutron"
Mark McClainb05c8762013-07-06 23:29:39 -04001223 start_neutron_service_and_check
armando-migliaccioef1e0802014-01-02 16:33:53 -08001224 check_neutron_third_party_integration
Aaron Rosen8ec719b2012-10-30 12:57:47 -07001225elif is_service_enabled $DATABASE_BACKENDS && is_service_enabled n-net; then
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001226 NM_CONF=${NOVA_CONF}
1227 if is_service_enabled n-cell; then
1228 NM_CONF=${NOVA_CELLS_CONF}
1229 fi
1230
Gary Kotton37dda8d2012-08-08 03:46:33 -04001231 # Create a small network
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001232 $NOVA_BIN_DIR/nova-manage --config-file $NM_CONF network create "$PRIVATE_NETWORK_NAME" $FIXED_RANGE 1 $FIXED_NETWORK_SIZE $NETWORK_CREATE_ARGS
Dean Troyer696ad332012-01-10 15:34:34 -06001233
Gary Kotton37dda8d2012-08-08 03:46:33 -04001234 # Create some floating ips
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001235 $NOVA_BIN_DIR/nova-manage --config-file $NM_CONF floating create $FLOATING_RANGE --pool=$PUBLIC_NETWORK_NAME
Aaron Rosen9313dfa2012-07-06 16:08:49 -04001236
Gary Kotton37dda8d2012-08-08 03:46:33 -04001237 # Create a second pool
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001238 $NOVA_BIN_DIR/nova-manage --config-file $NM_CONF floating create --ip_range=$TEST_FLOATING_RANGE --pool=$TEST_FLOATING_POOL
Brad Hall1bfa3d52011-10-27 18:18:20 -07001239fi
1240
Mark McClainb05c8762013-07-06 23:29:39 -04001241if is_service_enabled neutron; then
1242 start_neutron_agents
Akihiro MOTOKI66afb472012-12-21 15:34:13 +09001243fi
Salvatore Orlando6fbb28d2013-12-22 07:59:37 -08001244# Once neutron agents are started setup initial network elements
Edgar Magana7bce8fa2014-11-04 17:32:54 +01001245if is_service_enabled q-svc && [[ "$NEUTRON_CREATE_INITIAL_NETWORKS" == "True" ]]; then
Salvatore Orlando6fbb28d2013-12-22 07:59:37 -08001246 echo_summary "Creating initial neutron network elements"
1247 create_neutron_initial_network
1248 setup_neutron_debug
1249fi
Dean Troyerbf67c192012-09-21 15:09:37 -05001250if is_service_enabled nova; then
1251 echo_summary "Starting Nova"
1252 start_nova
1253fi
Dean Troyer67787e62012-05-02 11:48:15 -05001254if is_service_enabled cinder; then
Dean Troyer7903b792012-09-13 17:16:12 -05001255 echo_summary "Starting Cinder"
Dean Troyer67787e62012-05-02 11:48:15 -05001256 start_cinder
Dean Troyer09718332014-07-03 10:46:57 -05001257 create_volume_types
Dean Troyer67787e62012-05-02 11:48:15 -05001258fi
John H. Tran93361642012-07-26 11:22:05 -07001259if is_service_enabled ceilometer; then
Doug Hellmannc5259b42012-09-22 10:52:31 -04001260 echo_summary "Starting Ceilometer"
Lianhao Lu8c548492013-01-09 10:41:54 +08001261 init_ceilometer
John H. Tran93361642012-07-26 11:22:05 -07001262 start_ceilometer
1263fi
Sean Dagueb562e6a2012-11-19 16:00:01 -05001264
Dean Troyerdc97cb72015-03-28 08:20:50 -05001265# Configure and launch Heat engine, api and metadata
Steve Bakerbfdad752012-08-18 09:00:42 +12001266if is_service_enabled heat; then
Steven Hardy1bcd2802014-02-13 15:14:41 +00001267 # Initialize heat
Steve Bakerbad9d892012-10-25 14:49:47 +13001268 echo_summary "Configuring Heat"
1269 init_heat
Dean Troyer7903b792012-09-13 17:16:12 -05001270 echo_summary "Starting Heat"
Steve Bakerbfdad752012-08-18 09:00:42 +12001271 start_heat
Steve Baker249e36d2015-03-05 14:01:45 +13001272 if [ "$HEAT_BUILD_PIP_MIRROR" = "True" ]; then
1273 echo_summary "Building Heat pip mirror"
1274 build_heat_pip_mirror
Steve Baker2a6009c2014-05-05 16:13:39 +12001275 fi
Steve Bakerbfdad752012-08-18 09:00:42 +12001276fi
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001277
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +10001278
Attila Fazekas22ef5732012-12-16 14:03:06 +01001279# Create account rc files
1280# =======================
1281
1282# Creates source able script files for easier user switching.
1283# This step also creates certificates for tenants and users,
1284# which is helpful in image bundle steps.
1285
Dean Troyer5ce44cd2015-02-12 22:18:33 -06001286if is_service_enabled nova && is_service_enabled keystone; then
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +10001287 USERRC_PARAMS="-PA --target-dir $TOP_DIR/accrc"
1288
1289 if [ -f $SSL_BUNDLE_FILE ]; then
1290 USERRC_PARAMS="$USERRC_PARAMS --os-cacert $SSL_BUNDLE_FILE"
1291 fi
1292
Steve Bakere389aed2014-09-23 17:10:39 +12001293 if [[ "$HEAT_STANDALONE" = "True" ]]; then
1294 USERRC_PARAMS="$USERRC_PARAMS --heat-url http://$HEAT_API_HOST:$HEAT_API_PORT/v1"
1295 fi
1296
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +10001297 $TOP_DIR/tools/create_userrc.sh $USERRC_PARAMS
Attila Fazekas22ef5732012-12-16 14:03:06 +01001298fi
1299
Dean Troyer4a43b7b2012-08-28 17:43:40 -05001300
Dean Troyer33cb4302012-12-10 16:47:36 -06001301# Save some values we generated for later use
Dean Troyer68162342015-05-13 15:41:03 -05001302save_stackenv
Dean Troyer33cb4302012-12-10 16:47:36 -06001303
Brant Knudsone1fa0702015-06-21 08:54:43 -05001304# Update/create user clouds.yaml file.
Brant Knudsone1238302015-06-21 09:16:44 -05001305# clouds.yaml will have
1306# - A `devstack` entry for the `demo` user for the `demo` project.
1307# - A `devstack-admin` entry for the `admin` user for the `admin` project.
Brant Knudsone1fa0702015-06-21 08:54:43 -05001308
1309# The location is a variable to allow for easier refactoring later to make it
1310# overridable. There is currently no usecase where doing so makes sense, so
1311# it's not currently configurable.
Monty Taylor61045ca2015-05-14 11:20:39 -04001312CLOUDS_YAML=~/.config/openstack/clouds.yaml
Brant Knudsone1fa0702015-06-21 08:54:43 -05001313
1314mkdir -p $(dirname $CLOUDS_YAML)
1315
1316CA_CERT_ARG=''
1317if [ -f "$SSL_BUNDLE_FILE" ]; then
1318 CA_CERT_ARG="--os-cacert $SSL_BUNDLE_FILE"
Monty Taylor61045ca2015-05-14 11:20:39 -04001319fi
Brant Knudsone1fa0702015-06-21 08:54:43 -05001320$TOP_DIR/tools/update_clouds_yaml.py \
1321 --file $CLOUDS_YAML \
1322 --os-cloud devstack \
1323 --os-region-name $REGION_NAME \
1324 --os-identity-api-version $IDENTITY_API_VERSION \
1325 $CA_CERT_ARG \
1326 --os-auth-url $KEYSTONE_AUTH_URI/v$IDENTITY_API_VERSION \
1327 --os-username demo \
1328 --os-password $ADMIN_PASSWORD \
1329 --os-project-name demo
Brant Knudsone1238302015-06-21 09:16:44 -05001330$TOP_DIR/tools/update_clouds_yaml.py \
1331 --file $CLOUDS_YAML \
1332 --os-cloud devstack-admin \
1333 --os-region-name $REGION_NAME \
1334 --os-identity-api-version $IDENTITY_API_VERSION \
1335 $CA_CERT_ARG \
1336 --os-auth-url $KEYSTONE_AUTH_URI/v$IDENTITY_API_VERSION \
1337 --os-username admin \
1338 --os-password $ADMIN_PASSWORD \
1339 --os-project-name admin
Monty Taylor61045ca2015-05-14 11:20:39 -04001340
Maru Newbyec086512012-11-01 23:44:57 +00001341
Dean Troyerdc97cb72015-03-28 08:20:50 -05001342# Wrapup configuration
1343# ====================
Dean Troyer893e6632013-09-13 15:05:51 -05001344
Dean Troyerdc97cb72015-03-28 08:20:50 -05001345# local.conf extra
1346# ----------------
1347
1348# Apply configuration from ``local.conf`` if it exists for layer 2 services
Dean Troyer893e6632013-09-13 15:05:51 -05001349# Phase: extra
1350merge_config_group $TOP_DIR/local.conf extra
1351
1352
Dean Troyer768295e2013-01-09 13:42:03 -06001353# Run extras
Dean Troyerdc97cb72015-03-28 08:20:50 -05001354# ----------
Dean Troyer768295e2013-01-09 13:42:03 -06001355
Dean Troyercdf3d762013-10-15 09:42:43 -05001356# Phase: extra
Sean Dague2c65e712014-12-18 09:44:56 -05001357run_phase stack extra
Dean Troyer768295e2013-01-09 13:42:03 -06001358
Ryan Hsufeb28832013-11-07 12:12:35 -08001359
Dean Troyerdc97cb72015-03-28 08:20:50 -05001360# local.conf post-extra
1361# ---------------------
1362
1363# Apply late configuration from ``local.conf`` if it exists for layer 2 services
Ryan Hsufeb28832013-11-07 12:12:35 -08001364# Phase: post-extra
1365merge_config_group $TOP_DIR/local.conf post-extra
1366
Dean Troyer768295e2013-01-09 13:42:03 -06001367
Dean Troyerf5633dd2012-03-28 11:21:40 -05001368# Run local script
Dean Troyerdc97cb72015-03-28 08:20:50 -05001369# ----------------
Dean Troyerf5633dd2012-03-28 11:21:40 -05001370
1371# Run ``local.sh`` if it exists to perform user-managed tasks
1372if [[ -x $TOP_DIR/local.sh ]]; then
1373 echo "Running user script $TOP_DIR/local.sh"
1374 $TOP_DIR/local.sh
1375fi
1376
jiajun xua9414242012-12-06 16:30:57 +08001377# Check the status of running services
1378service_check
Dean Troyerf5633dd2012-03-28 11:21:40 -05001379
Dean Troyerb7490da2013-03-18 16:07:56 -05001380
Steve Martinellibbe771a2015-01-20 13:30:33 -05001381# Bash completion
1382# ===============
1383
1384# Prepare bash completion for OSC
1385openstack complete | sudo tee /etc/bash_completion.d/osc.bash_completion > /dev/null
1386
John Griffith4bf861c2015-03-17 21:07:39 -06001387# If cinder is configured, set global_filter for PV devices
1388if is_service_enabled cinder; then
1389 if is_ubuntu; then
1390 echo_summary "Configuring lvm.conf global device filter"
1391 set_lvm_filter
1392 else
1393 echo_summary "Skip setting lvm filters for non Ubuntu systems"
1394 fi
1395fi
Steve Martinellibbe771a2015-01-20 13:30:33 -05001396
Dean Troyerdc97cb72015-03-28 08:20:50 -05001397
Scott Moserb94f4bf2011-10-07 14:51:07 +00001398# Fin
1399# ===
1400
Dean Troyer471de7a2011-12-27 11:45:55 -06001401set +o xtrace
Scott Moserb94f4bf2011-10-07 14:51:07 +00001402
Dean Troyer7903b792012-09-13 17:16:12 -05001403if [[ -n "$LOGFILE" ]]; then
1404 exec 1>&3
1405 # Force all output to stdout and logs now
Dean Troyerbaa8b422012-09-24 15:02:05 -05001406 exec 1> >( tee -a "${LOGFILE}" ) 2>&1
Dean Troyer7903b792012-09-13 17:16:12 -05001407else
1408 # Force all output to stdout now
1409 exec 1>&3
1410fi
1411
Dean Troyerdf0972c2012-03-07 17:31:03 -06001412
Jesse Andrews24859062011-09-15 21:28:23 -07001413# Using the cloud
Dean Troyerdc97cb72015-03-28 08:20:50 -05001414# ===============
Jesse Andrews24859062011-09-15 21:28:23 -07001415
Jesse Andrewse19d8842011-11-01 20:06:55 -07001416echo ""
1417echo ""
1418echo ""
Dean Troyerdc97cb72015-03-28 08:20:50 -05001419echo "This is your host ip: $HOST_IP"
Jesse Andrewse19d8842011-11-01 20:06:55 -07001420
Dean Troyerdf0972c2012-03-07 17:31:03 -06001421# If you installed Horizon on this server you should be able
root40a37002011-09-20 18:06:14 +00001422# to access the site using your browser.
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +00001423if is_service_enabled horizon; then
Dean Troyerdf0972c2012-03-07 17:31:03 -06001424 echo "Horizon is now available at http://$SERVICE_HOST/"
Jesse Andrews24859062011-09-15 21:28:23 -07001425fi
1426
Dean Troyerdf0972c2012-03-07 17:31:03 -06001427# If Keystone is present you can point ``nova`` cli to this server
Dean Troyer5ce44cd2015-02-12 22:18:33 -06001428if is_service_enabled keystone; then
Dean Troyerdc97cb72015-03-28 08:20:50 -05001429 echo "Keystone is serving at $KEYSTONE_SERVICE_URI/"
Dean Troyerdf0972c2012-03-07 17:31:03 -06001430 echo "The default users are: admin and demo"
1431 echo "The password: $ADMIN_PASSWORD"
Jesse Andrews24859062011-09-15 21:28:23 -07001432fi
termie523c4052011-09-28 19:49:40 -05001433
Dean Troyerafc29fe2013-02-07 15:56:24 -06001434# Warn that a deprecated feature was used
1435if [[ -n "$DEPRECATED_TEXT" ]]; then
1436 echo_summary "WARNING: $DEPRECATED_TEXT"
Dean Troyerced65172012-03-02 16:36:16 -06001437fi
1438
Dean Troyer4a43b7b2012-08-28 17:43:40 -05001439# Indicate how long this took to run (bash maintained variable ``SECONDS``)
Dean Troyer7903b792012-09-13 17:16:12 -05001440echo_summary "stack.sh completed in $SECONDS seconds."
Dean Troyer80684552014-03-05 11:50:23 -06001441
1442# Restore/close logging file descriptors
1443exec 1>&3
1444exec 2>&3
1445exec 3>&-
1446exec 6>&-