blob: 813955226efac9ac5838ec3fdd4231aa0229cfcf [file] [log] [blame]
Attila Fazekasece6a332012-11-29 14:19:41 +01001# lib/swift
Dean Troyer6d04fd72012-12-21 11:03:37 -06002# Functions to control the configuration and operation of the **Swift** service
Attila Fazekasece6a332012-11-29 14:19:41 +01003
4# Dependencies:
Adam Spiers6a5aa7c2013-10-24 11:27:02 +01005#
6# - ``functions`` file
7# - ``apache`` file
8# - ``DEST``, ``SCREEN_NAME``, `SWIFT_HASH` must be defined
9# - ``STACK_USER`` must be defined
10# - ``SWIFT_DATA_DIR`` or ``DATA_DIR`` must be defined
11# - ``lib/keystone`` file
12#
Attila Fazekasece6a332012-11-29 14:19:41 +010013# ``stack.sh`` calls the entry points in this order:
14#
Adam Spiers6a5aa7c2013-10-24 11:27:02 +010015# - install_swift
16# - _config_swift_apache_wsgi
17# - configure_swift
18# - init_swift
19# - start_swift
20# - stop_swift
21# - cleanup_swift
22# - _cleanup_swift_apache_wsgi
Attila Fazekasece6a332012-11-29 14:19:41 +010023
24# Save trace setting
25XTRACE=$(set +o | grep xtrace)
26set +o xtrace
27
28
29# Defaults
30# --------
31
Rob Crittenden18d47782014-03-19 17:47:42 -040032if is_ssl_enabled_service "s-proxy" || is_service_enabled tls-proxy; then
33 SWIFT_SERVICE_PROTOCOL="https"
34fi
35
Attila Fazekasece6a332012-11-29 14:19:41 +010036# Set up default directories
Attila Fazekasece6a332012-11-29 14:19:41 +010037SWIFT_DIR=$DEST/swift
38SWIFTCLIENT_DIR=$DEST/python-swiftclient
Dean Troyer64ab7742012-12-28 15:38:28 -060039SWIFT_AUTH_CACHE_DIR=${SWIFT_AUTH_CACHE_DIR:-/var/cache/swift}
zhang-hared98a5d02013-06-21 18:18:02 +080040SWIFT_APACHE_WSGI_DIR=${SWIFT_APACHE_WSGI_DIR:-/var/www/swift}
Dean Troyerb7490da2013-03-18 16:07:56 -050041SWIFT3_DIR=$DEST/swift3
Attila Fazekasece6a332012-11-29 14:19:41 +010042
Rob Crittenden18d47782014-03-19 17:47:42 -040043SWIFT_SERVICE_PROTOCOL=${SWIFT_SERVICE_PROTOCOL:-$SERVICE_PROTOCOL}
44SWIFT_DEFAULT_BIND_PORT_INT=${SWIFT_DEFAULT_BIND_PORT_INT:-8081}
45
Attila Fazekasece6a332012-11-29 14:19:41 +010046# TODO: add logging to different location.
47
48# Set ``SWIFT_DATA_DIR`` to the location of swift drives and objects.
49# Default is the common DevStack data directory.
50SWIFT_DATA_DIR=${SWIFT_DATA_DIR:-${DATA_DIR}/swift}
Attila Fazekase6024412013-09-15 18:38:48 +020051SWIFT_DISK_IMAGE=${SWIFT_DATA_DIR}/drives/images/swift.img
Attila Fazekasece6a332012-11-29 14:19:41 +010052
Dean Troyer6ec72fa2013-03-13 11:44:53 -050053# Set ``SWIFT_CONF_DIR`` to the location of the configuration files.
Attila Fazekasece6a332012-11-29 14:19:41 +010054# Default is ``/etc/swift``.
Dean Troyer6ec72fa2013-03-13 11:44:53 -050055# TODO(dtroyer): remove SWIFT_CONFIG_DIR after cutting stable/grizzly
56SWIFT_CONF_DIR=${SWIFT_CONF_DIR:-${SWIFT_CONFIG_DIR:-/etc/swift}}
Attila Fazekasece6a332012-11-29 14:19:41 +010057
Dean Troyerb7490da2013-03-18 16:07:56 -050058if is_service_enabled s-proxy && is_service_enabled swift3; then
59 # If we are using swift3, we can default the s3 port to swift instead
60 # of nova-objectstore
61 S3_SERVICE_PORT=${S3_SERVICE_PORT:-8080}
62fi
63
Attila Fazekasece6a332012-11-29 14:19:41 +010064# DevStack will create a loop-back disk formatted as XFS to store the
Kevin Lydad66c9652013-01-09 13:39:57 +000065# swift data. Set ``SWIFT_LOOPBACK_DISK_SIZE`` to the disk size in
66# kilobytes.
Attila Fazekasece6a332012-11-29 14:19:41 +010067# Default is 1 gigabyte.
Attila Fazekase6024412013-09-15 18:38:48 +020068SWIFT_LOOPBACK_DISK_SIZE_DEFAULT=1G
Joe Gordon66c54242013-11-12 16:24:14 -080069# if tempest enabled the default size is 6 Gigabyte.
Attila Fazekas3418c1c2013-09-16 18:35:49 +020070if is_service_enabled tempest; then
Joe Gordon66c54242013-11-12 16:24:14 -080071 SWIFT_LOOPBACK_DISK_SIZE_DEFAULT=${SWIFT_LOOPBACK_DISK_SIZE:-6G}
Attila Fazekas3418c1c2013-09-16 18:35:49 +020072fi
73
74SWIFT_LOOPBACK_DISK_SIZE=${SWIFT_LOOPBACK_DISK_SIZE:-$SWIFT_LOOPBACK_DISK_SIZE_DEFAULT}
Attila Fazekasece6a332012-11-29 14:19:41 +010075
Chmouel Boudjnahbc3a3392013-02-23 04:00:51 +010076# Set ``SWIFT_EXTRAS_MIDDLEWARE`` to extras middlewares.
Samuel Merrittf19ccb62014-03-08 07:54:05 -080077# Default is ``staticweb, formpost``
78SWIFT_EXTRAS_MIDDLEWARE=${SWIFT_EXTRAS_MIDDLEWARE:-formpost staticweb}
Chmouel Boudjnahbc3a3392013-02-23 04:00:51 +010079
Cyril Roelandtd9883402013-09-27 15:16:51 +000080# Set ``SWIFT_EXTRAS_MIDDLEWARE_LAST`` to extras middlewares that need to be at
81# the end of the pipeline.
82SWIFT_EXTRAS_MIDDLEWARE_LAST=${SWIFT_EXTRAS_MIDDLEWARE_LAST}
83
Joe H. Rahme1ce2ffd2013-10-22 15:19:09 +020084# Set ``SWIFT_EXTRAS_MIDDLEWARE_NO_AUTH`` to extras middlewares that need to be at
85# the beginning of the pipeline, before authentication middlewares.
86SWIFT_EXTRAS_MIDDLEWARE_NO_AUTH=${SWIFT_EXTRAS_MIDDLEWARE_NO_AUTH:-crossdomain}
87
Attila Fazekasece6a332012-11-29 14:19:41 +010088# The ring uses a configurable number of bits from a path’s MD5 hash as
89# a partition index that designates a device. The number of bits kept
90# from the hash is known as the partition power, and 2 to the partition
91# power indicates the partition count. Partitioning the full MD5 hash
92# ring allows other parts of the cluster to work in batches of items at
93# once which ends up either more efficient or at least less complex than
94# working with each item separately or the entire cluster all at once.
95# By default we define 9 for the partition count (which mean 512).
96SWIFT_PARTITION_POWER_SIZE=${SWIFT_PARTITION_POWER_SIZE:-9}
97
98# Set ``SWIFT_REPLICAS`` to configure how many replicas are to be
Chmouel Boudjnah0c3a5582013-03-06 10:58:33 +010099# configured for your Swift cluster. By default we are configuring
100# only one replica since this is way less CPU and memory intensive. If
101# you are planning to test swift replication you may want to set this
102# up to 3.
103SWIFT_REPLICAS=${SWIFT_REPLICAS:-1}
Attila Fazekasece6a332012-11-29 14:19:41 +0100104SWIFT_REPLICAS_SEQ=$(seq ${SWIFT_REPLICAS})
105
Peter Portantecee4b3b2013-11-20 14:33:16 -0500106# Set ``SWIFT_LOG_TOKEN_LENGTH`` to configure how many characters of an auth
107# token should be placed in the logs. When keystone is used with PKI tokens,
108# the token values can be huge, seemingly larger the 2K, at the least. We
109# restrict it here to a default of 12 characters, which should be enough to
110# trace through the logs when looking for its use.
111SWIFT_LOG_TOKEN_LENGTH=${SWIFT_LOG_TOKEN_LENGTH:-12}
112
Julien Vey63024d92014-05-06 15:10:07 +0200113# Set ``SWIFT_MAX_HEADER_SIZE`` to configure the maximun length of headers in
114# Swift API
115SWIFT_MAX_HEADER_SIZE=${SWIFT_MAX_HEADER_SIZE:-16384}
116
Attila Fazekasece6a332012-11-29 14:19:41 +0100117# Set ``OBJECT_PORT_BASE``, ``CONTAINER_PORT_BASE``, ``ACCOUNT_PORT_BASE``
118# Port bases used in port number calclution for the service "nodes"
119# The specified port number will be used, the additinal ports calculated by
120# base_port + node_num * 10
Dean Troyer1151d6f2013-03-29 14:06:52 -0500121OBJECT_PORT_BASE=${OBJECT_PORT_BASE:-6013}
122CONTAINER_PORT_BASE=${CONTAINER_PORT_BASE:-6011}
123ACCOUNT_PORT_BASE=${ACCOUNT_PORT_BASE:-6012}
Attila Fazekasece6a332012-11-29 14:19:41 +0100124
Jim Rollenhagenabbb0e92014-08-05 18:01:48 +0000125# Enable tempurl feature
126SWIFT_ENABLE_TEMPURLS=${SWIFT_ENABLE_TEMPURLS:-False}
127SWIFT_TEMPURL_KEY=${SWIFT_TEMPURL_KEY}
128
Dean Troyer4237f592014-01-29 16:22:11 -0600129# Tell Tempest this project is present
130TEMPEST_SERVICES+=,swift
131
Morgan Fainberg46455a32014-06-20 10:37:18 -0700132# Toggle for deploying Keystone under HTTPD + mod_wsgi
133SWIFT_USE_MOD_WSGI=${SWIFT_USE_MOD_WSGI:-False}
Dean Troyer6d04fd72012-12-21 11:03:37 -0600134
Dean Troyercc6b4432013-04-08 15:38:03 -0500135# Functions
136# ---------
Attila Fazekasece6a332012-11-29 14:19:41 +0100137
Dean Troyere4fa7212014-01-15 15:04:49 -0600138# Test if any Swift services are enabled
139# is_swift_enabled
140function is_swift_enabled {
141 [[ ,${ENABLED_SERVICES} =~ ,"s-" ]] && return 0
142 return 1
143}
144
Attila Fazekasece6a332012-11-29 14:19:41 +0100145# cleanup_swift() - Remove residual data files
Ian Wienandaee18c72014-02-21 15:35:08 +1100146function cleanup_swift {
Sean Dague101b4242013-10-22 08:47:11 -0400147 rm -f ${SWIFT_CONF_DIR}{*.builder,*.ring.gz,backups/*.builder,backups/*.ring.gz}
148 if egrep -q ${SWIFT_DATA_DIR}/drives/sdb1 /proc/mounts; then
149 sudo umount ${SWIFT_DATA_DIR}/drives/sdb1
150 fi
151 if [[ -e ${SWIFT_DISK_IMAGE} ]]; then
152 rm ${SWIFT_DISK_IMAGE}
153 fi
154 rm -rf ${SWIFT_DATA_DIR}/run/
Morgan Fainberg46455a32014-06-20 10:37:18 -0700155 if [ "$SWIFT_USE_MOD_WSGI" == "True" ]; then
Sean Dague101b4242013-10-22 08:47:11 -0400156 _cleanup_swift_apache_wsgi
157 fi
zhang-hared98a5d02013-06-21 18:18:02 +0800158}
159
160# _cleanup_swift_apache_wsgi() - Remove wsgi files, disable and remove apache vhost file
Ian Wienandaee18c72014-02-21 15:35:08 +1100161function _cleanup_swift_apache_wsgi {
zhang-hared98a5d02013-06-21 18:18:02 +0800162 sudo rm -f $SWIFT_APACHE_WSGI_DIR/*.wsgi
Jamie Lennox54707012013-09-17 12:07:48 +1000163 disable_apache_site proxy-server
Dean Troyer084f51f2014-07-25 15:08:52 -0500164 local node_number type
zhang-hared98a5d02013-06-21 18:18:02 +0800165 for node_number in ${SWIFT_REPLICAS_SEQ}; do
166 for type in object container account; do
Dean Troyer084f51f2014-07-25 15:08:52 -0500167 local site_name=${type}-server-${node_number}
Jamie Lennox54707012013-09-17 12:07:48 +1000168 disable_apache_site ${site_name}
Gabriel Assis Bezerraa688bc62014-05-27 20:58:22 +0000169 sudo rm -f $(apache_site_config_for ${site_name})
zhang-hared98a5d02013-06-21 18:18:02 +0800170 done
171 done
172}
173
174# _config_swift_apache_wsgi() - Set WSGI config files of Swift
Ian Wienandaee18c72014-02-21 15:35:08 +1100175function _config_swift_apache_wsgi {
zhang-hared98a5d02013-06-21 18:18:02 +0800176 sudo mkdir -p ${SWIFT_APACHE_WSGI_DIR}
zhang-hared98a5d02013-06-21 18:18:02 +0800177 local proxy_port=${SWIFT_DEFAULT_BIND_PORT:-8080}
178
179 # copy proxy vhost and wsgi file
Gabriel Assis Bezerraa688bc62014-05-27 20:58:22 +0000180 sudo cp ${SWIFT_DIR}/examples/apache2/proxy-server.template $(apache_site_config_for proxy-server)
zhang-hared98a5d02013-06-21 18:18:02 +0800181 sudo sed -e "
182 /^#/d;/^$/d;
183 s/%PORT%/$proxy_port/g;
184 s/%SERVICENAME%/proxy-server/g;
185 s/%APACHE_NAME%/${APACHE_NAME}/g;
Jamie Lennoxd5824602013-09-17 11:44:37 +1000186 s/%USER%/${STACK_USER}/g;
Gabriel Assis Bezerraa688bc62014-05-27 20:58:22 +0000187 " -i $(apache_site_config_for proxy-server)
Jamie Lennox54707012013-09-17 12:07:48 +1000188 enable_apache_site proxy-server
zhang-hared98a5d02013-06-21 18:18:02 +0800189
190 sudo cp ${SWIFT_DIR}/examples/wsgi/proxy-server.wsgi.template ${SWIFT_APACHE_WSGI_DIR}/proxy-server.wsgi
191 sudo sed -e "
192 /^#/d;/^$/d;
193 s/%SERVICECONF%/proxy-server.conf/g;
194 " -i ${SWIFT_APACHE_WSGI_DIR}/proxy-server.wsgi
zhang-hared98a5d02013-06-21 18:18:02 +0800195
196 # copy apache vhost file and set name and port
Dean Troyer084f51f2014-07-25 15:08:52 -0500197 local node_number
zhang-hared98a5d02013-06-21 18:18:02 +0800198 for node_number in ${SWIFT_REPLICAS_SEQ}; do
Dean Troyer084f51f2014-07-25 15:08:52 -0500199 local object_port=$[OBJECT_PORT_BASE + 10 * ($node_number - 1)]
200 local container_port=$[CONTAINER_PORT_BASE + 10 * ($node_number - 1)]
201 local account_port=$[ACCOUNT_PORT_BASE + 10 * ($node_number - 1)]
zhang-hared98a5d02013-06-21 18:18:02 +0800202
Gabriel Assis Bezerraa688bc62014-05-27 20:58:22 +0000203 sudo cp ${SWIFT_DIR}/examples/apache2/object-server.template $(apache_site_config_for object-server-${node_number})
zhang-hared98a5d02013-06-21 18:18:02 +0800204 sudo sed -e "
205 s/%PORT%/$object_port/g;
206 s/%SERVICENAME%/object-server-${node_number}/g;
207 s/%APACHE_NAME%/${APACHE_NAME}/g;
Jamie Lennoxd5824602013-09-17 11:44:37 +1000208 s/%USER%/${STACK_USER}/g;
Gabriel Assis Bezerraa688bc62014-05-27 20:58:22 +0000209 " -i $(apache_site_config_for object-server-${node_number})
Jamie Lennox54707012013-09-17 12:07:48 +1000210 enable_apache_site object-server-${node_number}
zhang-hared98a5d02013-06-21 18:18:02 +0800211
212 sudo cp ${SWIFT_DIR}/examples/wsgi/object-server.wsgi.template ${SWIFT_APACHE_WSGI_DIR}/object-server-${node_number}.wsgi
213 sudo sed -e "
214 /^#/d;/^$/d;
215 s/%SERVICECONF%/object-server\/${node_number}.conf/g;
216 " -i ${SWIFT_APACHE_WSGI_DIR}/object-server-${node_number}.wsgi
217
Gabriel Assis Bezerraa688bc62014-05-27 20:58:22 +0000218 sudo cp ${SWIFT_DIR}/examples/apache2/container-server.template $(apache_site_config_for container-server-${node_number})
zhang-hared98a5d02013-06-21 18:18:02 +0800219 sudo sed -e "
220 /^#/d;/^$/d;
221 s/%PORT%/$container_port/g;
222 s/%SERVICENAME%/container-server-${node_number}/g;
223 s/%APACHE_NAME%/${APACHE_NAME}/g;
Jamie Lennoxd5824602013-09-17 11:44:37 +1000224 s/%USER%/${STACK_USER}/g;
Gabriel Assis Bezerraa688bc62014-05-27 20:58:22 +0000225 " -i $(apache_site_config_for container-server-${node_number})
Jamie Lennox54707012013-09-17 12:07:48 +1000226 enable_apache_site container-server-${node_number}
zhang-hared98a5d02013-06-21 18:18:02 +0800227
228 sudo cp ${SWIFT_DIR}/examples/wsgi/container-server.wsgi.template ${SWIFT_APACHE_WSGI_DIR}/container-server-${node_number}.wsgi
229 sudo sed -e "
230 /^#/d;/^$/d;
231 s/%SERVICECONF%/container-server\/${node_number}.conf/g;
232 " -i ${SWIFT_APACHE_WSGI_DIR}/container-server-${node_number}.wsgi
233
Gabriel Assis Bezerraa688bc62014-05-27 20:58:22 +0000234 sudo cp ${SWIFT_DIR}/examples/apache2/account-server.template $(apache_site_config_for account-server-${node_number})
zhang-hared98a5d02013-06-21 18:18:02 +0800235 sudo sed -e "
Sean Dague101b4242013-10-22 08:47:11 -0400236 /^#/d;/^$/d;
zhang-hared98a5d02013-06-21 18:18:02 +0800237 s/%PORT%/$account_port/g;
238 s/%SERVICENAME%/account-server-${node_number}/g;
239 s/%APACHE_NAME%/${APACHE_NAME}/g;
Jamie Lennoxd5824602013-09-17 11:44:37 +1000240 s/%USER%/${STACK_USER}/g;
Gabriel Assis Bezerraa688bc62014-05-27 20:58:22 +0000241 " -i $(apache_site_config_for account-server-${node_number})
Jamie Lennox54707012013-09-17 12:07:48 +1000242 enable_apache_site account-server-${node_number}
zhang-hared98a5d02013-06-21 18:18:02 +0800243
244 sudo cp ${SWIFT_DIR}/examples/wsgi/account-server.wsgi.template ${SWIFT_APACHE_WSGI_DIR}/account-server-${node_number}.wsgi
245 sudo sed -e "
Sean Dague101b4242013-10-22 08:47:11 -0400246 /^#/d;/^$/d;
zhang-hared98a5d02013-06-21 18:18:02 +0800247 s/%SERVICECONF%/account-server\/${node_number}.conf/g;
248 " -i ${SWIFT_APACHE_WSGI_DIR}/account-server-${node_number}.wsgi
zhang-hared98a5d02013-06-21 18:18:02 +0800249 done
Attila Fazekasece6a332012-11-29 14:19:41 +0100250}
251
Ian Wienandf8e86bb2014-02-21 15:16:31 +1100252# This function generates an object/container/account configuration
253# emulating 4 nodes on different ports
Ian Wienandaee18c72014-02-21 15:35:08 +1100254function generate_swift_config {
Ian Wienandf8e86bb2014-02-21 15:16:31 +1100255 local swift_node_config=$1
256 local node_id=$2
257 local bind_port=$3
258 local server_type=$4
259
260 log_facility=$[ node_id - 1 ]
Dean Troyer084f51f2014-07-25 15:08:52 -0500261 local node_path=${SWIFT_DATA_DIR}/${node_number}
Ian Wienandf8e86bb2014-02-21 15:16:31 +1100262
263 iniuncomment ${swift_node_config} DEFAULT user
264 iniset ${swift_node_config} DEFAULT user ${STACK_USER}
265
266 iniuncomment ${swift_node_config} DEFAULT bind_port
267 iniset ${swift_node_config} DEFAULT bind_port ${bind_port}
268
269 iniuncomment ${swift_node_config} DEFAULT swift_dir
270 iniset ${swift_node_config} DEFAULT swift_dir ${SWIFT_CONF_DIR}
271
272 iniuncomment ${swift_node_config} DEFAULT devices
273 iniset ${swift_node_config} DEFAULT devices ${node_path}
274
275 iniuncomment ${swift_node_config} DEFAULT log_facility
276 iniset ${swift_node_config} DEFAULT log_facility LOG_LOCAL${log_facility}
277
278 iniuncomment ${swift_node_config} DEFAULT workers
Chmouel Boudjnah55dc2c22014-09-12 09:34:20 +0200279 iniset ${swift_node_config} DEFAULT workers ${API_WORKERS:-1}
Ian Wienandf8e86bb2014-02-21 15:16:31 +1100280
281 iniuncomment ${swift_node_config} DEFAULT disable_fallocate
282 iniset ${swift_node_config} DEFAULT disable_fallocate true
283
284 iniuncomment ${swift_node_config} DEFAULT mount_check
285 iniset ${swift_node_config} DEFAULT mount_check false
286
287 iniuncomment ${swift_node_config} ${server_type}-replicator vm_test_mode
288 iniset ${swift_node_config} ${server_type}-replicator vm_test_mode yes
289}
290
291
Attila Fazekasece6a332012-11-29 14:19:41 +0100292# configure_swift() - Set config files, create data dirs and loop image
Ian Wienandaee18c72014-02-21 15:35:08 +1100293function configure_swift {
Joe H. Rahme1ce2ffd2013-10-22 15:19:09 +0200294 local swift_pipeline="${SWIFT_EXTRAS_MIDDLEWARE_NO_AUTH}"
Attila Fazekasece6a332012-11-29 14:19:41 +0100295 local node_number
296 local swift_node_config
297 local swift_log_dir
298
Attila Fazekasece6a332012-11-29 14:19:41 +0100299 # Make sure to kill all swift processes first
Chmouel Boudjnahad8b2762013-01-10 15:40:01 +0100300 swift-init --run-dir=${SWIFT_DATA_DIR}/run all stop || true
Attila Fazekasece6a332012-11-29 14:19:41 +0100301
Dean Troyer1c6c1122013-03-27 17:40:53 -0500302 sudo mkdir -p ${SWIFT_CONF_DIR}/{object,container,account}-server
Stephan Renatuse578eff2013-11-19 13:31:04 +0100303 sudo chown -R ${STACK_USER}: ${SWIFT_CONF_DIR}
Attila Fazekasece6a332012-11-29 14:19:41 +0100304
Dean Troyer6ec72fa2013-03-13 11:44:53 -0500305 if [[ "$SWIFT_CONF_DIR" != "/etc/swift" ]]; then
Attila Fazekasece6a332012-11-29 14:19:41 +0100306 # Some swift tools are hard-coded to use ``/etc/swift`` and are apparently not going to be fixed.
307 # Create a symlink if the config dir is moved
Dean Troyer6ec72fa2013-03-13 11:44:53 -0500308 sudo ln -sf ${SWIFT_CONF_DIR} /etc/swift
Attila Fazekasece6a332012-11-29 14:19:41 +0100309 fi
310
311 # Swift use rsync to synchronize between all the different
312 # partitions (which make more sense when you have a multi-node
313 # setup) we configure it with our version of rsync.
314 sed -e "
315 s/%GROUP%/${USER_GROUP}/;
Stephan Renatuse578eff2013-11-19 13:31:04 +0100316 s/%USER%/${STACK_USER}/;
Attila Fazekasece6a332012-11-29 14:19:41 +0100317 s,%SWIFT_DATA_DIR%,$SWIFT_DATA_DIR,;
318 " $FILES/swift/rsyncd.conf | sudo tee /etc/rsyncd.conf
319 # rsyncd.conf just prepared for 4 nodes
Vincent Untzc18b9652012-12-04 12:36:34 +0100320 if is_ubuntu; then
Attila Fazekasece6a332012-11-29 14:19:41 +0100321 sudo sed -i '/^RSYNC_ENABLE=false/ { s/false/true/ }' /etc/default/rsync
Attila Fazekas0e57b962014-02-28 09:09:52 +0100322 elif [ -e /etc/xinetd.d/rsync ]; then
Attila Fazekasece6a332012-11-29 14:19:41 +0100323 sudo sed -i '/disable *= *yes/ { s/yes/no/ }' /etc/xinetd.d/rsync
324 fi
325
Dean Troyer6ec72fa2013-03-13 11:44:53 -0500326 SWIFT_CONFIG_PROXY_SERVER=${SWIFT_CONF_DIR}/proxy-server.conf
Attila Fazekasece6a332012-11-29 14:19:41 +0100327 cp ${SWIFT_DIR}/etc/proxy-server.conf-sample ${SWIFT_CONFIG_PROXY_SERVER}
328
Chmouel Boudjnahf2c1a712014-01-29 21:38:14 +0000329 cp ${SWIFT_DIR}/etc/container-sync-realms.conf-sample ${SWIFT_CONF_DIR}/container-sync-realms.conf
330
Attila Fazekasece6a332012-11-29 14:19:41 +0100331 iniuncomment ${SWIFT_CONFIG_PROXY_SERVER} DEFAULT user
Stephan Renatuse578eff2013-11-19 13:31:04 +0100332 iniset ${SWIFT_CONFIG_PROXY_SERVER} DEFAULT user ${STACK_USER}
Attila Fazekasece6a332012-11-29 14:19:41 +0100333
334 iniuncomment ${SWIFT_CONFIG_PROXY_SERVER} DEFAULT swift_dir
Dean Troyer6ec72fa2013-03-13 11:44:53 -0500335 iniset ${SWIFT_CONFIG_PROXY_SERVER} DEFAULT swift_dir ${SWIFT_CONF_DIR}
Attila Fazekasece6a332012-11-29 14:19:41 +0100336
337 iniuncomment ${SWIFT_CONFIG_PROXY_SERVER} DEFAULT workers
338 iniset ${SWIFT_CONFIG_PROXY_SERVER} DEFAULT workers 1
339
340 iniuncomment ${SWIFT_CONFIG_PROXY_SERVER} DEFAULT log_level
341 iniset ${SWIFT_CONFIG_PROXY_SERVER} DEFAULT log_level DEBUG
342
343 iniuncomment ${SWIFT_CONFIG_PROXY_SERVER} DEFAULT bind_port
Rob Crittenden18d47782014-03-19 17:47:42 -0400344 if is_service_enabled tls-proxy; then
345 iniset ${SWIFT_CONFIG_PROXY_SERVER} DEFAULT bind_port ${SWIFT_DEFAULT_BIND_PORT_INT}
346 else
347 iniset ${SWIFT_CONFIG_PROXY_SERVER} DEFAULT bind_port ${SWIFT_DEFAULT_BIND_PORT:-8080}
348 fi
349
350 if is_ssl_enabled_service s-proxy; then
351 ensure_certificates SWIFT
352
353 iniset ${SWIFT_CONFIG_PROXY_SERVER} DEFAULT cert_file "$SWIFT_SSL_CERT"
354 iniset ${SWIFT_CONFIG_PROXY_SERVER} DEFAULT key_file "$SWIFT_SSL_KEY"
355 fi
Attila Fazekasece6a332012-11-29 14:19:41 +0100356
Joe Gordond254da52013-11-19 21:06:29 -0800357 # Devstack is commonly run in a small slow environment, so bump the
358 # timeouts up.
359 # node_timeout is how long between read operations a node takes to
360 # respond to the proxy server
361 # conn_timeout is all about how long it takes a connect() system call to
362 # return
363 iniset ${SWIFT_CONFIG_PROXY_SERVER} app:proxy-server node_timeout 120
364 iniset ${SWIFT_CONFIG_PROXY_SERVER} app:proxy-server conn_timeout 20
365
Dina Belovaeedfdee2014-06-24 16:52:46 +0400366 # Configure Ceilometer
367 if is_service_enabled ceilometer; then
368 iniset ${SWIFT_CONFIG_PROXY_SERVER} filter:ceilometer "set log_level" "WARN"
369 iniset ${SWIFT_CONFIG_PROXY_SERVER} filter:ceilometer use "egg:ceilometer#swift"
370 SWIFT_EXTRAS_MIDDLEWARE_LAST="${SWIFT_EXTRAS_MIDDLEWARE_LAST} ceilometer"
371 fi
Cyril Roelandtd9883402013-09-27 15:16:51 +0000372
Peter Portantecee4b3b2013-11-20 14:33:16 -0500373 # Restrict the length of auth tokens in the swift proxy-server logs.
374 iniset ${SWIFT_CONFIG_PROXY_SERVER} filter:proxy-logging reveal_sensitive_prefix ${SWIFT_LOG_TOKEN_LENGTH}
375
Chmouel Boudjnah5cac3782013-07-17 15:13:44 +0000376 # By default Swift will be installed with keystone and tempauth middleware
377 # and add the swift3 middleware if its configured for it. The token for
Adam Spierscb961592013-10-05 12:11:07 +0100378 # tempauth would be prefixed with the reseller_prefix setting `TEMPAUTH_` the
379 # token for keystoneauth would have the standard reseller_prefix `AUTH_`
Chmouel Boudjnah5cac3782013-07-17 15:13:44 +0000380 if is_service_enabled swift3;then
Joe H. Rahme1ce2ffd2013-10-22 15:19:09 +0200381 swift_pipeline+=" swift3 s3token "
Chmouel Boudjnahbc3a3392013-02-23 04:00:51 +0100382 fi
Chmouel Boudjnah254fd552014-06-30 12:22:59 +0000383
384 if is_service_enabled key;then
385 swift_pipeline+=" authtoken keystoneauth"
386 fi
387 swift_pipeline+=" tempauth "
388
Chmouel Boudjnahbc3a3392013-02-23 04:00:51 +0100389 sed -i "/^pipeline/ { s/tempauth/${swift_pipeline} ${SWIFT_EXTRAS_MIDDLEWARE}/ ;}" ${SWIFT_CONFIG_PROXY_SERVER}
Cyril Roelandtd9883402013-09-27 15:16:51 +0000390 sed -i "/^pipeline/ { s/proxy-server/${SWIFT_EXTRAS_MIDDLEWARE_LAST} proxy-server/ ; }" ${SWIFT_CONFIG_PROXY_SERVER}
Attila Fazekasece6a332012-11-29 14:19:41 +0100391
Chmouel Boudjnah5cac3782013-07-17 15:13:44 +0000392 iniuncomment ${SWIFT_CONFIG_PROXY_SERVER} filter:tempauth account_autocreate
Attila Fazekasece6a332012-11-29 14:19:41 +0100393 iniset ${SWIFT_CONFIG_PROXY_SERVER} app:proxy-server account_autocreate true
394
Chmouel Boudjnah5cac3782013-07-17 15:13:44 +0000395 iniuncomment ${SWIFT_CONFIG_PROXY_SERVER} filter:tempauth reseller_prefix
396 iniset ${SWIFT_CONFIG_PROXY_SERVER} filter:tempauth reseller_prefix "TEMPAUTH"
397
Joe H. Rahme1ce2ffd2013-10-22 15:19:09 +0200398 # Configure Crossdomain
399 iniset ${SWIFT_CONFIG_PROXY_SERVER} filter:crossdomain use "egg:swift#crossdomain"
400
Attila Fazekasece6a332012-11-29 14:19:41 +0100401 # Configure Keystone
402 sed -i '/^# \[filter:authtoken\]/,/^# \[filter:keystoneauth\]$/ s/^#[ \t]*//' ${SWIFT_CONFIG_PROXY_SERVER}
Brant Knudson05952372014-09-19 17:22:22 -0500403 configure_auth_token_middleware ${SWIFT_CONFIG_PROXY_SERVER} swift $SWIFT_AUTH_CACHE_DIR filter:authtoken
Peter Portante8afc8932013-11-20 17:34:39 -0500404 # This causes the authtoken middleware to use the same python logging
405 # adapter provided by the swift proxy-server, so that request transaction
406 # IDs will included in all of its log messages.
407 iniset ${SWIFT_CONFIG_PROXY_SERVER} filter:authtoken log_name swift
Attila Fazekasece6a332012-11-29 14:19:41 +0100408
409 iniuncomment ${SWIFT_CONFIG_PROXY_SERVER} filter:keystoneauth use
410 iniuncomment ${SWIFT_CONFIG_PROXY_SERVER} filter:keystoneauth operator_roles
411 iniset ${SWIFT_CONFIG_PROXY_SERVER} filter:keystoneauth operator_roles "Member, admin"
412
413 if is_service_enabled swift3; then
414 cat <<EOF >>${SWIFT_CONFIG_PROXY_SERVER}
415# NOTE(chmou): s3token middleware is not updated yet to use only
416# username and password.
417[filter:s3token]
Chmouel Boudjnah891277f2014-02-03 21:07:03 +0000418paste.filter_factory = keystoneclient.middleware.s3_token:filter_factory
Attila Fazekasece6a332012-11-29 14:19:41 +0100419auth_port = ${KEYSTONE_AUTH_PORT}
420auth_host = ${KEYSTONE_AUTH_HOST}
421auth_protocol = ${KEYSTONE_AUTH_PROTOCOL}
Rob Crittenden18d47782014-03-19 17:47:42 -0400422cafile = ${SSL_BUNDLE_FILE}
Attila Fazekasece6a332012-11-29 14:19:41 +0100423auth_token = ${SERVICE_TOKEN}
424admin_token = ${SERVICE_TOKEN}
425
426[filter:swift3]
427use = egg:swift3#swift3
428EOF
429 fi
430
Dean Troyer6ec72fa2013-03-13 11:44:53 -0500431 cp ${SWIFT_DIR}/etc/swift.conf-sample ${SWIFT_CONF_DIR}/swift.conf
432 iniset ${SWIFT_CONF_DIR}/swift.conf swift-hash swift_hash_path_suffix ${SWIFT_HASH}
Julien Vey63024d92014-05-06 15:10:07 +0200433 iniset ${SWIFT_CONF_DIR}/swift.conf swift-constraints max_header_size ${SWIFT_MAX_HEADER_SIZE}
Attila Fazekasece6a332012-11-29 14:19:41 +0100434
Dean Troyer084f51f2014-07-25 15:08:52 -0500435 local node_number
Attila Fazekasece6a332012-11-29 14:19:41 +0100436 for node_number in ${SWIFT_REPLICAS_SEQ}; do
Dean Troyer084f51f2014-07-25 15:08:52 -0500437 local swift_node_config=${SWIFT_CONF_DIR}/object-server/${node_number}.conf
Attila Fazekasece6a332012-11-29 14:19:41 +0100438 cp ${SWIFT_DIR}/etc/object-server.conf-sample ${swift_node_config}
Ian Wienandd968f2b2014-08-14 11:43:54 +1000439 generate_swift_config ${swift_node_config} ${node_number} $(( OBJECT_PORT_BASE + 10 * (node_number - 1) )) object
Chmouel Boudjnah8e5d2f02012-12-20 13:11:43 +0000440 iniset ${swift_node_config} filter:recon recon_cache_path ${SWIFT_DATA_DIR}/cache
441 # Using a sed and not iniset/iniuncomment because we want to a global
442 # modification and make sure it works for new sections.
443 sed -i -e "s,#[ ]*recon_cache_path .*,recon_cache_path = ${SWIFT_DATA_DIR}/cache," ${swift_node_config}
Attila Fazekasece6a332012-11-29 14:19:41 +0100444
Dean Troyer6ec72fa2013-03-13 11:44:53 -0500445 swift_node_config=${SWIFT_CONF_DIR}/container-server/${node_number}.conf
Attila Fazekasece6a332012-11-29 14:19:41 +0100446 cp ${SWIFT_DIR}/etc/container-server.conf-sample ${swift_node_config}
Ian Wienandd968f2b2014-08-14 11:43:54 +1000447 generate_swift_config ${swift_node_config} ${node_number} $(( CONTAINER_PORT_BASE + 10 * (node_number - 1) )) container
Attila Fazekas83e10952012-11-30 23:28:07 +0100448 iniuncomment ${swift_node_config} app:container-server allow_versions
449 iniset ${swift_node_config} app:container-server allow_versions "true"
Chmouel Boudjnah8e5d2f02012-12-20 13:11:43 +0000450 sed -i -e "s,#[ ]*recon_cache_path .*,recon_cache_path = ${SWIFT_DATA_DIR}/cache," ${swift_node_config}
Attila Fazekasece6a332012-11-29 14:19:41 +0100451
Dean Troyer6ec72fa2013-03-13 11:44:53 -0500452 swift_node_config=${SWIFT_CONF_DIR}/account-server/${node_number}.conf
Attila Fazekasece6a332012-11-29 14:19:41 +0100453 cp ${SWIFT_DIR}/etc/account-server.conf-sample ${swift_node_config}
Ian Wienandd968f2b2014-08-14 11:43:54 +1000454 generate_swift_config ${swift_node_config} ${node_number} $(( ACCOUNT_PORT_BASE + 10 * (node_number - 1) )) account
Chmouel Boudjnah8e5d2f02012-12-20 13:11:43 +0000455 sed -i -e "s,#[ ]*recon_cache_path .*,recon_cache_path = ${SWIFT_DATA_DIR}/cache," ${swift_node_config}
Attila Fazekasece6a332012-11-29 14:19:41 +0100456 done
457
Chmouel Boudjnah0ce91a52013-07-05 11:59:24 +0000458 # Set new accounts in tempauth to match keystone tenant/user (to make testing easier)
459 iniset ${SWIFT_CONFIG_PROXY_SERVER} filter:tempauth user_swifttenanttest1_swiftusertest1 "testing .admin"
460 iniset ${SWIFT_CONFIG_PROXY_SERVER} filter:tempauth user_swifttenanttest2_swiftusertest2 "testing2 .admin"
461 iniset ${SWIFT_CONFIG_PROXY_SERVER} filter:tempauth user_swifttenanttest1_swiftusertest3 "testing3 .admin"
462
463 testfile=${SWIFT_CONF_DIR}/test.conf
464 cp ${SWIFT_DIR}/test/sample.conf ${testfile}
465
466 # Set accounts for functional tests
467 iniset ${testfile} func_test account swifttenanttest1
468 iniset ${testfile} func_test username swiftusertest1
469 iniset ${testfile} func_test username3 swiftusertest3
470 iniset ${testfile} func_test account2 swifttenanttest2
471 iniset ${testfile} func_test username2 swiftusertest2
472
Chmouel Boudjnah0ce91a52013-07-05 11:59:24 +0000473 if is_service_enabled key;then
474 iniuncomment ${testfile} func_test auth_version
475 iniset ${testfile} func_test auth_host ${KEYSTONE_SERVICE_HOST}
476 iniset ${testfile} func_test auth_port ${KEYSTONE_AUTH_PORT}
477 iniset ${testfile} func_test auth_prefix /v2.0/
478 fi
479
Dean Troyer084f51f2014-07-25 15:08:52 -0500480 local swift_log_dir=${SWIFT_DATA_DIR}/logs
Attila Fazekasece6a332012-11-29 14:19:41 +0100481 rm -rf ${swift_log_dir}
482 mkdir -p ${swift_log_dir}/hourly
Stephan Renatuse578eff2013-11-19 13:31:04 +0100483 sudo chown -R ${STACK_USER}:adm ${swift_log_dir}
Yves-Gwenael Bourhisf894c2a2014-04-16 13:37:46 +0200484
485 if [[ $SYSLOG != "False" ]]; then
486 sed "s,%SWIFT_LOGDIR%,${swift_log_dir}," $FILES/swift/rsyslog.conf | sudo \
487 tee /etc/rsyslog.d/10-swift.conf
488 # restart syslog to take the changes
489 sudo killall -HUP rsyslogd
490 fi
Sean Daguead7e8c62014-03-19 19:13:20 -0400491
Morgan Fainberg46455a32014-06-20 10:37:18 -0700492 if [ "$SWIFT_USE_MOD_WSGI" == "True" ]; then
zhang-hared98a5d02013-06-21 18:18:02 +0800493 _config_swift_apache_wsgi
494 fi
Attila Fazekasece6a332012-11-29 14:19:41 +0100495}
496
Dean Troyer1c6c1122013-03-27 17:40:53 -0500497# create_swift_disk - Create Swift backing disk
Ian Wienandaee18c72014-02-21 15:35:08 +1100498function create_swift_disk {
Dean Troyer1c6c1122013-03-27 17:40:53 -0500499 local node_number
500
501 # First do a bit of setup by creating the directories and
502 # changing the permissions so we can run it as our user.
503
Dean Troyer084f51f2014-07-25 15:08:52 -0500504 local user_group=$(id -g ${STACK_USER})
Dean Troyer1c6c1122013-03-27 17:40:53 -0500505 sudo mkdir -p ${SWIFT_DATA_DIR}/{drives,cache,run,logs}
Dean Troyer084f51f2014-07-25 15:08:52 -0500506 sudo chown -R ${STACK_USER}:${user_group} ${SWIFT_DATA_DIR}
Dean Troyer1c6c1122013-03-27 17:40:53 -0500507
508 # Create a loopback disk and format it to XFS.
Attila Fazekase6024412013-09-15 18:38:48 +0200509 if [[ -e ${SWIFT_DISK_IMAGE} ]]; then
Dean Troyer1c6c1122013-03-27 17:40:53 -0500510 if egrep -q ${SWIFT_DATA_DIR}/drives/sdb1 /proc/mounts; then
511 sudo umount ${SWIFT_DATA_DIR}/drives/sdb1
Attila Fazekase6024412013-09-15 18:38:48 +0200512 sudo rm -f ${SWIFT_DISK_IMAGE}
Dean Troyer1c6c1122013-03-27 17:40:53 -0500513 fi
514 fi
515
516 mkdir -p ${SWIFT_DATA_DIR}/drives/images
Attila Fazekase6024412013-09-15 18:38:48 +0200517 sudo touch ${SWIFT_DISK_IMAGE}
Stephan Renatuse578eff2013-11-19 13:31:04 +0100518 sudo chown ${STACK_USER}: ${SWIFT_DISK_IMAGE}
Dean Troyer1c6c1122013-03-27 17:40:53 -0500519
Attila Fazekase6024412013-09-15 18:38:48 +0200520 truncate -s ${SWIFT_LOOPBACK_DISK_SIZE} ${SWIFT_DISK_IMAGE}
Dean Troyer1c6c1122013-03-27 17:40:53 -0500521
522 # Make a fresh XFS filesystem
Longgeekfd034f02014-03-24 17:32:02 +0800523 /sbin/mkfs.xfs -f -i size=1024 ${SWIFT_DISK_IMAGE}
Dean Troyer1c6c1122013-03-27 17:40:53 -0500524
525 # Mount the disk with mount options to make it as efficient as possible
526 mkdir -p ${SWIFT_DATA_DIR}/drives/sdb1
527 if ! egrep -q ${SWIFT_DATA_DIR}/drives/sdb1 /proc/mounts; then
528 sudo mount -t xfs -o loop,noatime,nodiratime,nobarrier,logbufs=8 \
Attila Fazekase6024412013-09-15 18:38:48 +0200529 ${SWIFT_DISK_IMAGE} ${SWIFT_DATA_DIR}/drives/sdb1
Dean Troyer1c6c1122013-03-27 17:40:53 -0500530 fi
531
532 # Create a link to the above mount and
533 # create all of the directories needed to emulate a few different servers
Dean Troyer084f51f2014-07-25 15:08:52 -0500534 local node_number
Dean Troyer1c6c1122013-03-27 17:40:53 -0500535 for node_number in ${SWIFT_REPLICAS_SEQ}; do
536 sudo ln -sf ${SWIFT_DATA_DIR}/drives/sdb1/$node_number ${SWIFT_DATA_DIR}/$node_number;
Dean Troyer084f51f2014-07-25 15:08:52 -0500537 local drive=${SWIFT_DATA_DIR}/drives/sdb1/${node_number}
538 local node=${SWIFT_DATA_DIR}/${node_number}/node
539 local node_device=${node}/sdb1
Dean Troyer1c6c1122013-03-27 17:40:53 -0500540 [[ -d $node ]] && continue
541 [[ -d $drive ]] && continue
Dean Troyer084f51f2014-07-25 15:08:52 -0500542 sudo install -o ${STACK_USER} -g $user_group -d $drive
543 sudo install -o ${STACK_USER} -g $user_group -d $node_device
Stephan Renatuse578eff2013-11-19 13:31:04 +0100544 sudo chown -R ${STACK_USER}: ${node}
Dean Troyer1c6c1122013-03-27 17:40:53 -0500545 done
546}
Chmouel Boudjnahba313052013-07-10 21:03:43 +0200547# create_swift_accounts() - Set up standard swift accounts and extra
548# one for tests we do this by attaching all words in the account name
549# since we want to make it compatible with tempauth which use
550# underscores for separators.
Chmouel Boudjnah0ce91a52013-07-05 11:59:24 +0000551
552# Tenant User Roles
553# ------------------------------------------------------------------
Chmouel Boudjnahba313052013-07-10 21:03:43 +0200554# service swift service
Chmouel Boudjnah0ce91a52013-07-05 11:59:24 +0000555# swifttenanttest1 swiftusertest1 admin
556# swifttenanttest1 swiftusertest3 anotherrole
557# swifttenanttest2 swiftusertest2 admin
558
Ian Wienandaee18c72014-02-21 15:35:08 +1100559function create_swift_accounts {
Sahid Orentino Ferdjaoui1814e672014-02-11 17:56:07 +0100560 # Defines specific passwords used by tools/create_userrc.sh
Dean Troyer084f51f2014-07-25 15:08:52 -0500561 local swiftusertest1_password=testing
562 local swiftusertest2_password=testing2
563 local swiftusertest3_password=testing3
Sahid Orentino Ferdjaoui1814e672014-02-11 17:56:07 +0100564
Chmouel Boudjnahba313052013-07-10 21:03:43 +0200565 KEYSTONE_CATALOG_BACKEND=${KEYSTONE_CATALOG_BACKEND:-sql}
566
Dean Troyer084f51f2014-07-25 15:08:52 -0500567 local service_tenant=$(openstack project list | awk "/ $SERVICE_TENANT_NAME / { print \$2 }")
568 local admin_role=$(openstack role list | awk "/ admin / { print \$2 }")
Masayuki Igawad3654052014-09-01 17:30:05 +0900569 local another_role=$(openstack role list | awk "/ anotherrole / { print \$2 }")
Chmouel Boudjnahba313052013-07-10 21:03:43 +0200570
Dean Troyer084f51f2014-07-25 15:08:52 -0500571 local swift_user=$(get_or_create_user "swift" \
572 "$SERVICE_PASSWORD" $service_tenant)
573 get_or_add_user_role $admin_role $swift_user $service_tenant
Chmouel Boudjnahba313052013-07-10 21:03:43 +0200574
575 if [[ "$KEYSTONE_CATALOG_BACKEND" = 'sql' ]]; then
Bartosz GĂ³rski0abde392014-02-28 14:15:19 +0100576
Dean Troyer084f51f2014-07-25 15:08:52 -0500577 local swift_service=$(get_or_create_service "swift" \
Bartosz GĂ³rski0abde392014-02-28 14:15:19 +0100578 "object-store" "Swift Service")
Dean Troyer084f51f2014-07-25 15:08:52 -0500579 get_or_create_endpoint $swift_service \
Bartosz GĂ³rski0abde392014-02-28 14:15:19 +0100580 "$REGION_NAME" \
Rob Crittenden18d47782014-03-19 17:47:42 -0400581 "$SWIFT_SERVICE_PROTOCOL://$SERVICE_HOST:8080/v1/AUTH_\$(tenant_id)s" \
582 "$SWIFT_SERVICE_PROTOCOL://$SERVICE_HOST:8080" \
583 "$SWIFT_SERVICE_PROTOCOL://$SERVICE_HOST:8080/v1/AUTH_\$(tenant_id)s"
Chmouel Boudjnahba313052013-07-10 21:03:43 +0200584 fi
585
Dean Troyer084f51f2014-07-25 15:08:52 -0500586 local swift_tenant_test1=$(get_or_create_project swifttenanttest1)
587 die_if_not_set $LINENO swift_tenant_test1 "Failure creating swift_tenant_test1"
588 SWIFT_USER_TEST1=$(get_or_create_user swiftusertest1 $swiftusertest1_password \
589 "$swift_tenant_test1" "test@example.com")
DennyZhang23178a92013-10-22 17:07:32 -0500590 die_if_not_set $LINENO SWIFT_USER_TEST1 "Failure creating SWIFT_USER_TEST1"
Dean Troyer084f51f2014-07-25 15:08:52 -0500591 get_or_add_user_role $admin_role $SWIFT_USER_TEST1 $swift_tenant_test1
Chmouel Boudjnah0ce91a52013-07-05 11:59:24 +0000592
Dean Troyer084f51f2014-07-25 15:08:52 -0500593 local swift_user_test3=$(get_or_create_user swiftusertest3 $swiftusertest3_password \
594 "$swift_tenant_test1" "test3@example.com")
595 die_if_not_set $LINENO swift_user_test3 "Failure creating swift_user_test3"
Masayuki Igawad3654052014-09-01 17:30:05 +0900596 get_or_add_user_role $another_role $swift_user_test3 $swift_tenant_test1
Chmouel Boudjnah0ce91a52013-07-05 11:59:24 +0000597
Dean Troyer084f51f2014-07-25 15:08:52 -0500598 local swift_tenant_test2=$(get_or_create_project swifttenanttest2)
599 die_if_not_set $LINENO swift_tenant_test2 "Failure creating swift_tenant_test2"
Steve Martinelli19685422014-01-24 13:02:26 -0600600
Dean Troyer084f51f2014-07-25 15:08:52 -0500601 local swift_user_test2=$(get_or_create_user swiftusertest2 $swiftusertest2_password \
602 "$swift_tenant_test2" "test2@example.com")
603 die_if_not_set $LINENO swift_user_test2 "Failure creating swift_user_test2"
604 get_or_add_user_role $admin_role $swift_user_test2 $swift_tenant_test2
Chmouel Boudjnah0ce91a52013-07-05 11:59:24 +0000605}
Dean Troyer1c6c1122013-03-27 17:40:53 -0500606
Attila Fazekasece6a332012-11-29 14:19:41 +0100607# init_swift() - Initialize rings
Ian Wienandaee18c72014-02-21 15:35:08 +1100608function init_swift {
Attila Fazekasece6a332012-11-29 14:19:41 +0100609 local node_number
610 # Make sure to kill all swift processes first
Chmouel Boudjnahad8b2762013-01-10 15:40:01 +0100611 swift-init --run-dir=${SWIFT_DATA_DIR}/run all stop || true
Attila Fazekasece6a332012-11-29 14:19:41 +0100612
Dean Troyer1c6c1122013-03-27 17:40:53 -0500613 # Forcibly re-create the backing filesystem
614 create_swift_disk
615
Attila Fazekasece6a332012-11-29 14:19:41 +0100616 # This is where we create three different rings for swift with
617 # different object servers binding on different ports.
Dean Troyer6ec72fa2013-03-13 11:44:53 -0500618 pushd ${SWIFT_CONF_DIR} >/dev/null && {
Attila Fazekasece6a332012-11-29 14:19:41 +0100619
620 rm -f *.builder *.ring.gz backups/*.builder backups/*.ring.gz
621
622 swift-ring-builder object.builder create ${SWIFT_PARTITION_POWER_SIZE} ${SWIFT_REPLICAS} 1
623 swift-ring-builder container.builder create ${SWIFT_PARTITION_POWER_SIZE} ${SWIFT_REPLICAS} 1
624 swift-ring-builder account.builder create ${SWIFT_PARTITION_POWER_SIZE} ${SWIFT_REPLICAS} 1
625
626 for node_number in ${SWIFT_REPLICAS_SEQ}; do
Ian Wienandd968f2b2014-08-14 11:43:54 +1000627 swift-ring-builder object.builder add z${node_number}-127.0.0.1:$(( OBJECT_PORT_BASE + 10 * (node_number - 1) ))/sdb1 1
628 swift-ring-builder container.builder add z${node_number}-127.0.0.1:$(( CONTAINER_PORT_BASE + 10 * (node_number - 1) ))/sdb1 1
629 swift-ring-builder account.builder add z${node_number}-127.0.0.1:$(( ACCOUNT_PORT_BASE + 10 * (node_number - 1) ))/sdb1 1
Attila Fazekasece6a332012-11-29 14:19:41 +0100630 done
631 swift-ring-builder object.builder rebalance
632 swift-ring-builder container.builder rebalance
633 swift-ring-builder account.builder rebalance
634 } && popd >/dev/null
635
Dean Troyer64ab7742012-12-28 15:38:28 -0600636 # Create cache dir
637 sudo mkdir -p $SWIFT_AUTH_CACHE_DIR
Attila Fazekas91b8d132013-01-06 22:40:09 +0100638 sudo chown $STACK_USER $SWIFT_AUTH_CACHE_DIR
Dean Troyer64ab7742012-12-28 15:38:28 -0600639 rm -f $SWIFT_AUTH_CACHE_DIR/*
Attila Fazekasece6a332012-11-29 14:19:41 +0100640}
641
Ian Wienandaee18c72014-02-21 15:35:08 +1100642function install_swift {
Attila Fazekasece6a332012-11-29 14:19:41 +0100643 git_clone $SWIFT_REPO $SWIFT_DIR $SWIFT_BRANCH
Dean Troyer253a1a32013-04-01 18:23:22 -0500644 setup_develop $SWIFT_DIR
Morgan Fainberg46455a32014-06-20 10:37:18 -0700645 if [ "$SWIFT_USE_MOD_WSGI" == "True" ]; then
zhang-hared98a5d02013-06-21 18:18:02 +0800646 install_apache_wsgi
647 fi
Attila Fazekasece6a332012-11-29 14:19:41 +0100648}
649
Ian Wienandaee18c72014-02-21 15:35:08 +1100650function install_swiftclient {
Attila Fazekasece6a332012-11-29 14:19:41 +0100651 git_clone $SWIFTCLIENT_REPO $SWIFTCLIENT_DIR $SWIFTCLIENT_BRANCH
Dean Troyer253a1a32013-04-01 18:23:22 -0500652 setup_develop $SWIFTCLIENT_DIR
Attila Fazekasece6a332012-11-29 14:19:41 +0100653}
654
Attila Fazekasece6a332012-11-29 14:19:41 +0100655# start_swift() - Start running processes, including screen
Ian Wienandaee18c72014-02-21 15:35:08 +1100656function start_swift {
Chmouel Boudjnah8ecbb382013-03-12 12:15:17 +0100657 # (re)start memcached to make sure we have a clean memcache.
658 restart_service memcached
659
Attila Fazekasece6a332012-11-29 14:19:41 +0100660 # Start rsync
Vincent Untzc18b9652012-12-04 12:36:34 +0100661 if is_ubuntu; then
Attila Fazekasece6a332012-11-29 14:19:41 +0100662 sudo /etc/init.d/rsync restart || :
Attila Fazekas0e57b962014-02-28 09:09:52 +0100663 elif [ -e /etc/xinetd.d/rsync ]; then
664 start_service xinetd
Attila Fazekasece6a332012-11-29 14:19:41 +0100665 else
Attila Fazekas0e57b962014-02-28 09:09:52 +0100666 start_service rsyncd
Attila Fazekasece6a332012-11-29 14:19:41 +0100667 fi
668
Morgan Fainberg46455a32014-06-20 10:37:18 -0700669 if [ "$SWIFT_USE_MOD_WSGI" == "True" ]; then
zhang-hared98a5d02013-06-21 18:18:02 +0800670 restart_apache_server
671 swift-init --run-dir=${SWIFT_DATA_DIR}/run rest start
Chris Dent2f27a0e2014-09-09 13:46:02 +0100672 tail_log s-proxy /var/log/$APACHE_NAME/proxy-server
zhang-hared98a5d02013-06-21 18:18:02 +0800673 if [[ ${SWIFT_REPLICAS} == 1 ]]; then
674 for type in object container account; do
Chris Dent2f27a0e2014-09-09 13:46:02 +0100675 tail_log s-${type} /var/log/$APACHE_NAME/${type}-server-1
zhang-hared98a5d02013-06-21 18:18:02 +0800676 done
677 fi
678 return 0
679 fi
680
Sean Dague101b4242013-10-22 08:47:11 -0400681 # By default with only one replica we are launching the proxy,
682 # container, account and object server in screen in foreground and
683 # other services in background. If we have SWIFT_REPLICAS set to something
684 # greater than one we first spawn all the swift services then kill the proxy
685 # service so we can run it in foreground in screen. ``swift-init ...
686 # {stop|restart}`` exits with '1' if no servers are running, ignore it just
687 # in case
Dean Troyer084f51f2014-07-25 15:08:52 -0500688 local todo type
Sean Dague101b4242013-10-22 08:47:11 -0400689 swift-init --run-dir=${SWIFT_DATA_DIR}/run all restart || true
690 if [[ ${SWIFT_REPLICAS} == 1 ]]; then
Chmouel Boudjnah0c3a5582013-03-06 10:58:33 +0100691 todo="object container account"
Sean Dague101b4242013-10-22 08:47:11 -0400692 fi
693 for type in proxy ${todo}; do
694 swift-init --run-dir=${SWIFT_DATA_DIR}/run ${type} stop || true
695 done
Rob Crittenden18d47782014-03-19 17:47:42 -0400696 if is_service_enabled tls-proxy; then
697 local proxy_port=${SWIFT_DEFAULT_BIND_PORT:-8080}
698 start_tls_proxy '*' $proxy_port $SERVICE_HOST $SWIFT_DEFAULT_BIND_PORT_INT &
699 fi
Chris Dent2f27a0e2014-09-09 13:46:02 +0100700 run_process s-proxy "$SWIFT_DIR/bin/swift-proxy-server ${SWIFT_CONF_DIR}/proxy-server.conf -v"
Sean Dague101b4242013-10-22 08:47:11 -0400701 if [[ ${SWIFT_REPLICAS} == 1 ]]; then
702 for type in object container account; do
Chris Dent2f27a0e2014-09-09 13:46:02 +0100703 run_process s-${type} "$SWIFT_DIR/bin/swift-${type}-server ${SWIFT_CONF_DIR}/${type}-server/1.conf -v"
Sean Dague101b4242013-10-22 08:47:11 -0400704 done
705 fi
Jim Rollenhagenabbb0e92014-08-05 18:01:48 +0000706
707 if [[ "$SWIFT_ENABLE_TEMPURLS" == "True" ]]; then
708 swift_configure_tempurls
709 fi
Attila Fazekasece6a332012-11-29 14:19:41 +0100710}
711
712# stop_swift() - Stop running processes (non-screen)
Ian Wienandaee18c72014-02-21 15:35:08 +1100713function stop_swift {
Dean Troyer084f51f2014-07-25 15:08:52 -0500714 local type
zhang-hared98a5d02013-06-21 18:18:02 +0800715
Morgan Fainberg46455a32014-06-20 10:37:18 -0700716 if [ "$SWIFT_USE_MOD_WSGI" == "True" ]; then
zhang-hared98a5d02013-06-21 18:18:02 +0800717 swift-init --run-dir=${SWIFT_DATA_DIR}/run rest stop && return 0
718 fi
719
Attila Fazekasece6a332012-11-29 14:19:41 +0100720 # screen normally killed by unstack.sh
Dean Troyer995eb922013-03-07 16:11:40 -0600721 if type -p swift-init >/dev/null; then
Chmouel Boudjnah0c3a5582013-03-06 10:58:33 +0100722 swift-init --run-dir=${SWIFT_DATA_DIR}/run all stop || true
723 fi
Chmouel Boudjnahf36a9b22014-02-03 23:44:47 +0100724 # Dump all of the servers
Chris Dent2f27a0e2014-09-09 13:46:02 +0100725 # Maintain the iteration as stop_process() has some desirable side-effects
Dean Troyer1eae3e12014-03-06 11:49:22 -0600726 for type in proxy object container account; do
Chris Dent2f27a0e2014-09-09 13:46:02 +0100727 stop_process s-${type}
Dean Troyer1eae3e12014-03-06 11:49:22 -0600728 done
729 # Blast out any stragglers
Chmouel Boudjnahf36a9b22014-02-03 23:44:47 +0100730 pkill -f swift-
Attila Fazekasece6a332012-11-29 14:19:41 +0100731}
732
Jim Rollenhagenabbb0e92014-08-05 18:01:48 +0000733function swift_configure_tempurls {
734 OS_USERNAME=swift \
735 OS_TENANT_NAME=$SERVICE_TENANT_NAME \
736 OS_PASSWORD=$SERVICE_PASSWORD \
737 swift post -m "Temp-URL-Key: $SWIFT_TEMPURL_KEY"
738}
739
Attila Fazekasece6a332012-11-29 14:19:41 +0100740# Restore xtrace
741$XTRACE
Sean Dague584d90e2013-03-29 14:34:53 -0400742
Adam Spiers6a5aa7c2013-10-24 11:27:02 +0100743# Tell emacs to use shell-script-mode
744## Local variables:
745## mode: shell-script
746## End: