blob: 6479d1d91ff467d93700a012b7a27df5b7c5959e [file] [log] [blame]
Jesse Andrewsba23cc72011-09-11 03:22:13 -07001#!/usr/bin/env bash
2
Jesse Andrews0e7e8972011-10-02 16:36:54 -04003# **stack.sh** is an opinionated openstack developer installation.
4
Tres Henryca85b792011-10-28 14:00:21 -07005# This script installs and configures *nova*, *glance*, *horizon* and *keystone*
Jesse Andrewsba23cc72011-09-11 03:22:13 -07006
Vishvananda Ishaya9b353672011-10-20 10:07:10 -07007# This script allows you to specify configuration options of what git
Jesse Andrews5372f432011-10-03 01:08:24 -04008# repositories to use, enabled services, network configuration and various
9# passwords. If you are crafty you can run the script on multiple nodes using
10# shared settings for common resources (mysql, rabbitmq) and build a multi-node
11# developer install.
Jesse Andrews782b9912011-10-02 16:53:21 -040012
Jesse Andrewsc4b3aab2011-09-15 22:54:52 -070013# To keep this script simple we assume you are running on an **Ubuntu 11.04
Jesse Andrews24859062011-09-15 21:28:23 -070014# Natty** machine. It should work in a VM or physical server. Additionally we
15# put the list of *apt* and *pip* dependencies and other configuration files in
16# this repo. So start by grabbing this script and the dependencies.
17
Jesse Andrews0e7e8972011-10-02 16:36:54 -040018# Learn more and get the most recent version at http://devstack.org
Jesse Andrews6edd17f2011-09-15 22:19:42 -070019
20# Sanity Check
21# ============
22
Jesse Andrewsc4b3aab2011-09-15 22:54:52 -070023# Warn users who aren't on natty, but allow them to override check and attempt
Jesse Andrews6edd17f2011-09-15 22:19:42 -070024# installation with ``FORCE=yes ./stack``
Vishvananda Ishayaeec092b2011-10-31 11:15:05 -070025if ! egrep -q 'natty|oneiric' /etc/lsb-release; then
Vishvananda Ishayad80e3802011-10-31 13:31:19 -070026 echo "WARNING: this script has only been tested on natty and oneiric"
Jesse Andrews6edd17f2011-09-15 22:19:42 -070027 if [[ "$FORCE" != "yes" ]]; then
28 echo "If you wish to run this script anyway run with FORCE=yes"
29 exit 1
30 fi
31fi
32
Jesse Andrews51fb22e2011-10-19 09:24:17 -070033# Keep track of the current devstack directory.
34TOP_DIR=$(cd $(dirname "$0") && pwd)
35
root40a37002011-09-20 18:06:14 +000036# stack.sh keeps the list of **apt** and **pip** dependencies in external
Jesse Andrews4d282182011-09-16 11:27:43 -070037# files, along with config templates and other useful files. You can find these
root40a37002011-09-20 18:06:14 +000038# in the ``files`` directory (next to this script). We will reference this
Jesse Andrewsbf3868d2011-09-16 11:31:16 -070039# directory using the ``FILES`` variable in this script.
Jesse Andrews51fb22e2011-10-19 09:24:17 -070040FILES=$TOP_DIR/files
Jesse Andrewsbf3868d2011-09-16 11:31:16 -070041if [ ! -d $FILES ]; then
42 echo "ERROR: missing devstack/files - did you grab more than just stack.sh?"
Jesse Andrews6edd17f2011-09-15 22:19:42 -070043 exit 1
44fi
45
Anthony Young6015c822011-10-12 07:17:11 +000046
Scott Moserf9da5082011-10-07 21:28:00 -040047
48# Settings
49# ========
50
51# This script is customizable through setting environment variables. If you
52# want to override a setting you can either::
53#
Anthony Young7a549f42011-10-12 07:13:13 +000054# export MYSQL_PASSWORD=anothersecret
Scott Moserf9da5082011-10-07 21:28:00 -040055# ./stack.sh
56#
Anthony Young7a549f42011-10-12 07:13:13 +000057# You can also pass options on a single line ``MYSQL_PASSWORD=simple ./stack.sh``
Scott Moserf9da5082011-10-07 21:28:00 -040058#
59# Additionally, you can put any local variables into a ``localrc`` file, like::
60#
Anthony Young7a549f42011-10-12 07:13:13 +000061# MYSQL_PASSWORD=anothersecret
Scott Moserf9da5082011-10-07 21:28:00 -040062# MYSQL_USER=hellaroot
63#
64# We try to have sensible defaults, so you should be able to run ``./stack.sh``
65# in most cases.
66#
67# We our settings from ``stackrc``. This file is distributed with devstack and
Vishvananda Ishaya9b353672011-10-20 10:07:10 -070068# contains locations for what repositories to use. If you want to use other
69# repositories and branches, you can add your own settings with another file
Scott Moserf9da5082011-10-07 21:28:00 -040070# called ``localrc``
71#
Vishvananda Ishaya9b353672011-10-20 10:07:10 -070072# If ``localrc`` exists, then ``stackrc`` will load those settings. This is
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +010073# useful for changing a branch or repository to test other versions. Also you
Anthony Young7a549f42011-10-12 07:13:13 +000074# can store your other settings like **MYSQL_PASSWORD** or **ADMIN_PASSWORD** instead
Scott Moserf9da5082011-10-07 21:28:00 -040075# of letting devstack generate random ones for you.
76source ./stackrc
77
Jesse Andrews6edd17f2011-09-15 22:19:42 -070078# Destination path for installation ``DEST``
Anthony Younge8fed482011-09-26 19:50:43 -070079DEST=${DEST:-/opt/stack}
Jesse Andrewsba23cc72011-09-11 03:22:13 -070080
James E. Blair5855a642011-10-26 15:44:27 -040081# Configure services to syslog instead of writing to individual log files
82SYSLOG=${SYSLOG:-False}
83
Todd Willey0a161452011-10-28 02:34:19 -040084# apt-get wrapper to just get arguments set correctly
85function apt_get() {
86 local sudo="sudo"
87 [ "$(id -u)" = "0" ] && sudo="env"
88 $sudo DEBIAN_FRONTEND=noninteractive apt-get \
89 --option "Dpkg::Options::=--force-confold" --assume-yes "$@"
90}
91
92
Tres Henryca85b792011-10-28 14:00:21 -070093# OpenStack is designed to be run as a regular user (Horizon will fail to run
Dean Troyer9122e7b2011-10-17 14:07:11 -050094# as root, since apache refused to startup serve content from root user). If
95# stack.sh is run as root, it automatically creates a stack user with
96# sudo privileges and runs as that user.
97
98if [[ $EUID -eq 0 ]]; then
James E. Blair92e81992011-10-11 09:26:29 -050099 ROOTSLEEP=${ROOTSLEEP:-10}
Dean Troyer9122e7b2011-10-17 14:07:11 -0500100 echo "You are running this script as root."
James E. Blair92e81992011-10-11 09:26:29 -0500101 echo "In $ROOTSLEEP seconds, we will create a user 'stack' and run as that user"
102 sleep $ROOTSLEEP
Dean Troyer9122e7b2011-10-17 14:07:11 -0500103
104 # since this script runs as a normal user, we need to give that user
105 # ability to run sudo
Jesse Andrewsc7f72ad2011-11-06 08:00:28 -0800106 dpkg -l sudo || apt_get update && apt_get install sudo
Dean Troyer9122e7b2011-10-17 14:07:11 -0500107
108 if ! getent passwd stack >/dev/null; then
109 echo "Creating a user called stack"
110 useradd -U -G sudo -s /bin/bash -d $DEST -m stack
111 fi
112
113 echo "Giving stack user passwordless sudo priviledges"
114 # natty uec images sudoers does not have a '#includedir'. add one.
115 grep -q "^#includedir.*/etc/sudoers.d" /etc/sudoers ||
116 echo "#includedir /etc/sudoers.d" >> /etc/sudoers
117 ( umask 226 && echo "stack ALL=(ALL) NOPASSWD:ALL" \
118 > /etc/sudoers.d/50_stack_sh )
119
120 echo "Copying files to stack user"
121 STACK_DIR="$DEST/${PWD##*/}"
122 cp -r -f "$PWD" "$STACK_DIR"
Jesse Andrews5f4ae102011-11-06 07:47:09 -0800123 chown -R stack "$STACK_DIR"
Dean Troyer9122e7b2011-10-17 14:07:11 -0500124 if [[ "$SHELL_AFTER_RUN" != "no" ]]; then
125 exec su -c "set -e; cd $STACK_DIR; bash stack.sh; bash" stack
126 else
127 exec su -c "set -e; cd $STACK_DIR; bash stack.sh" stack
128 fi
129 exit 1
Jesse Andrews509992f2011-10-27 11:18:09 -0700130else
Vishvananda Ishaya3e2b1742011-10-28 12:20:07 -0700131 # Our user needs passwordless priviledges for certain commands which nova
Jesse Andrews509992f2011-10-27 11:18:09 -0700132 # uses internally.
133 # Natty uec images sudoers does not have a '#includedir'. add one.
Jesse Andrews84a399b2011-10-27 11:20:38 -0700134 sudo grep -q "^#includedir.*/etc/sudoers.d" /etc/sudoers ||
135 echo "#includedir /etc/sudoers.d" | sudo tee -a /etc/sudoers
Todd Willey0a161452011-10-28 02:34:19 -0400136 TEMPFILE=`mktemp`
137 cat $FILES/sudo/nova > $TEMPFILE
138 sed -e "s,%USER%,$USER,g" -i $TEMPFILE
139 chmod 0440 $TEMPFILE
140 sudo chown root:root $TEMPFILE
Todd Willeyf8c46842011-10-28 12:27:20 -0400141 sudo mv $TEMPFILE /etc/sudoers.d/stack_sh_nova
Dean Troyer9122e7b2011-10-17 14:07:11 -0500142fi
143
Jesse Andrews6f3baaf2011-09-12 11:59:38 -0700144# Set the destination directories for openstack projects
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700145NOVA_DIR=$DEST/nova
Tres Henryca85b792011-10-28 14:00:21 -0700146HORIZON_DIR=$DEST/horizon
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700147GLANCE_DIR=$DEST/glance
148KEYSTONE_DIR=$DEST/keystone
149NOVACLIENT_DIR=$DEST/python-novaclient
Anthony Young2f140202011-09-26 13:02:40 -0700150OPENSTACKX_DIR=$DEST/openstackx
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700151NOVNC_DIR=$DEST/noVNC
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100152SWIFT_DIR=$DEST/swift
Chmouel Boudjnah45c51132011-11-01 19:32:23 +0100153SWIFT_KEYSTONE_DIR=$DEST/swift-keystone2
Brad Hall1bfa3d52011-10-27 18:18:20 -0700154QUANTUM_DIR=$DEST/quantum
155
156# Default Quantum Plugin
157Q_PLUGIN=${Q_PLUGIN:-openvswitch}
Anthony Younga8416442011-09-13 20:07:44 -0700158
159# Specify which services to launch. These generally correspond to screen tabs
Chmouel Boudjnah5c50f0d2011-11-02 01:02:30 +0100160ENABLED_SERVICES=${ENABLED_SERVICES:-g-api,g-reg,key,n-api,n-cpu,n-net,n-sch,n-vnc,horizon,mysql,rabbit}
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700161
Jesse Andrewsd02b7b72011-11-14 08:59:05 -0800162# Name of the lvm volume group to use/create for iscsi volumes
163VOLUME_GROUP=${VOLUME_GROUP:-nova-volumes}
164
Anthony Youngb62b4ca2011-10-26 22:29:08 -0700165# Nova hypervisor configuration. We default to libvirt whth **kvm** but will
166# drop back to **qemu** if we are unable to load the kvm module. Stack.sh can
167# also install an **LXC** based system.
168VIRT_DRIVER=${VIRT_DRIVER:-libvirt}
Jesse Andrews782b9912011-10-02 16:53:21 -0400169LIBVIRT_TYPE=${LIBVIRT_TYPE:-kvm}
170
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400171# nova supports pluggable schedulers. ``SimpleScheduler`` should work in most
172# cases unless you are working on multi-zone mode.
Jesse Andrews782b9912011-10-02 16:53:21 -0400173SCHEDULER=${SCHEDULER:-nova.scheduler.simple.SimpleScheduler}
174
Anthony Young7c259ce2011-11-07 13:18:28 -0600175# Use the eth0 IP unless an explicit is set by ``HOST_IP`` environment variable
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700176if [ ! -n "$HOST_IP" ]; then
Anthony Young7c259ce2011-11-07 13:18:28 -0600177 HOST_IP=`LC_ALL=C /sbin/ifconfig eth0 | grep -m 1 'inet addr:'| cut -d: -f2 | awk '{print $1}'`
Anthony Younga3475e52011-11-07 13:24:00 -0600178 if [ "$HOST_IP" = "" ]; then
Anthony Young857035d2011-11-07 14:02:13 -0600179 echo "Could not determine host ip address."
180 echo "If this is not your first run of stack.sh, it is "
181 echo "possible that nova moved your eth0 ip address to the FLAT_NETWORK_BRIDGE."
182 echo "Please specify your HOST_IP in your localrc."
Anthony Young7c259ce2011-11-07 13:18:28 -0600183 exit 1
184 fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700185fi
186
Dean Troyer2bbcd682011-11-05 16:19:03 -0500187# Service startup timeout
188SERVICE_TIMEOUT=${SERVICE_TIMEOUT:-60}
189
Anthony Young7a549f42011-10-12 07:13:13 +0000190# Generic helper to configure passwords
191function read_password {
192 set +o xtrace
193 var=$1; msg=$2
194 pw=${!var}
195
Anthony Youngb4db2252011-10-12 14:08:08 -0700196 localrc=$TOP_DIR/localrc
Anthony Young6015c822011-10-12 07:17:11 +0000197
Anthony Young7a549f42011-10-12 07:13:13 +0000198 # If the password is not defined yet, proceed to prompt user for a password.
199 if [ ! $pw ]; then
200 # If there is no localrc file, create one
Anthony Youngb4db2252011-10-12 14:08:08 -0700201 if [ ! -e $localrc ]; then
202 touch $localrc
Anthony Young7a549f42011-10-12 07:13:13 +0000203 fi
204
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700205 # Presumably if we got this far it can only be that our localrc is missing
Anthony Young7a549f42011-10-12 07:13:13 +0000206 # the required password. Prompt user for a password and write to localrc.
Anthony Youngb4db2252011-10-12 14:08:08 -0700207 echo ''
208 echo '################################################################################'
209 echo $msg
210 echo '################################################################################'
211 echo "This value will be written to your localrc file so you don't have to enter it again."
212 echo "It is probably best to avoid spaces and weird characters."
213 echo "If you leave this blank, a random default value will be used."
214 echo "Enter a password now:"
215 read $var
216 pw=${!var}
217 if [ ! $pw ]; then
218 pw=`openssl rand -hex 10`
Anthony Young7a549f42011-10-12 07:13:13 +0000219 fi
Anthony Youngb4db2252011-10-12 14:08:08 -0700220 eval "$var=$pw"
221 echo "$var=$pw" >> $localrc
Anthony Young7a549f42011-10-12 07:13:13 +0000222 fi
223 set -o xtrace
224}
225
226
Jesse Andrews782b9912011-10-02 16:53:21 -0400227# Nova Network Configuration
228# --------------------------
229
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700230# FIXME: more documentation about why these are important flags. Also
Jesse Andrews5372f432011-10-03 01:08:24 -0400231# we should make sure we use the same variable names as the flag names.
232
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700233PUBLIC_INTERFACE=${PUBLIC_INTERFACE:-eth0}
Jesse Andrewsb5197e42011-09-26 12:48:31 -0700234FIXED_RANGE=${FIXED_RANGE:-10.0.0.0/24}
235FIXED_NETWORK_SIZE=${FIXED_NETWORK_SIZE:-256}
Anthony Young0e74ecb2011-10-27 13:21:52 -0700236FLOATING_RANGE=${FLOATING_RANGE:-172.24.4.224/28}
Jesse Andrewsa72f7ad2011-09-25 13:41:22 -0700237NET_MAN=${NET_MAN:-FlatDHCPManager}
Anthony Younga8416442011-09-13 20:07:44 -0700238EC2_DMZ_HOST=${EC2_DMZ_HOST:-$HOST_IP}
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700239FLAT_NETWORK_BRIDGE=${FLAT_NETWORK_BRIDGE:-br100}
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400240VLAN_INTERFACE=${VLAN_INTERFACE:-$PUBLIC_INTERFACE}
241
242# Multi-host is a mode where each compute node runs its own network node. This
243# allows network operations and routing for a VM to occur on the server that is
244# running the VM - removing a SPOF and bandwidth bottleneck.
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700245MULTI_HOST=${MULTI_HOST:-False}
Jesse Andrews30f68e92011-09-13 00:59:54 -0700246
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700247# If you are using FlatDHCP on multiple hosts, set the ``FLAT_INTERFACE``
248# variable but make sure that the interface doesn't already have an
249# ip or you risk breaking things.
Jesse Andrews5372f432011-10-03 01:08:24 -0400250#
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700251# **DHCP Warning**: If your flat interface device uses DHCP, there will be a
252# hiccup while the network is moved from the flat interface to the flat network
253# bridge. This will happen when you launch your first instance. Upon launch
254# you will lose all connectivity to the node, and the vm launch will probably
Jesse Andrews5372f432011-10-03 01:08:24 -0400255# fail.
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700256#
257# If you are running on a single node and don't need to access the VMs from
Jesse Andrews5372f432011-10-03 01:08:24 -0400258# devices other than that node, you can set the flat interface to the same
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700259# value as ``FLAT_NETWORK_BRIDGE``. This will stop the network hiccup from
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100260# occurring.
Jesse Andrews8ff5dbc2011-09-25 22:28:08 -0700261FLAT_INTERFACE=${FLAT_INTERFACE:-eth0}
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700262
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400263## FIXME(ja): should/can we check that FLAT_INTERFACE is sane?
264
Brad Hall1bfa3d52011-10-27 18:18:20 -0700265# Using Quantum networking:
266#
267# Make sure that q-svc is enabled in ENABLED_SERVICES. If it is the network
268# manager will be set to the QuantumManager.
269#
270# If you're planning to use the Quantum openvswitch plugin, set Q_PLUGIN to
271# "openvswitch" and make sure the q-agt service is enabled in
272# ENABLED_SERVICES.
273#
274# With Quantum networking the NET_MAN variable is ignored.
275
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700276
Jesse Andrews782b9912011-10-02 16:53:21 -0400277# MySQL & RabbitMQ
278# ----------------
279
Tres Henryca85b792011-10-28 14:00:21 -0700280# We configure Nova, Horizon, Glance and Keystone to use MySQL as their
Jesse Andrews782b9912011-10-02 16:53:21 -0400281# database server. While they share a single server, each has their own
282# database and tables.
283
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700284# By default this script will install and configure MySQL. If you want to
Jesse Andrews782b9912011-10-02 16:53:21 -0400285# use an existing server, you can pass in the user/password/host parameters.
Anthony Young7a549f42011-10-12 07:13:13 +0000286# You will need to send the same ``MYSQL_PASSWORD`` to every host if you are doing
Jesse Andrews782b9912011-10-02 16:53:21 -0400287# a multi-node devstack installation.
Jesse Andrewsa50a3462011-10-19 15:38:10 -0700288MYSQL_HOST=${MYSQL_HOST:-localhost}
Anthony Young320412b2011-09-14 02:39:10 -0700289MYSQL_USER=${MYSQL_USER:-root}
Anthony Young7a549f42011-10-12 07:13:13 +0000290read_password MYSQL_PASSWORD "ENTER A PASSWORD TO USE FOR MYSQL."
Jesse Andrews782b9912011-10-02 16:53:21 -0400291
Anthony Younga8416442011-09-13 20:07:44 -0700292# don't specify /db in this string, so we can use it for multiple services
Anthony Young7a549f42011-10-12 07:13:13 +0000293BASE_SQL_CONN=${BASE_SQL_CONN:-mysql://$MYSQL_USER:$MYSQL_PASSWORD@$MYSQL_HOST}
Anthony Younga8416442011-09-13 20:07:44 -0700294
295# Rabbit connection info
296RABBIT_HOST=${RABBIT_HOST:-localhost}
Anthony Young7a549f42011-10-12 07:13:13 +0000297read_password RABBIT_PASSWORD "ENTER A PASSWORD TO USE FOR RABBIT."
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700298
Anthony Young377aae62011-09-14 09:55:31 -0700299# Glance connection info. Note the port must be specified.
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700300GLANCE_HOSTPORT=${GLANCE_HOSTPORT:-$HOST_IP:9292}
Anthony Young377aae62011-09-14 09:55:31 -0700301
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100302# SWIFT
303# -----
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100304# TODO: implement glance support
305# TODO: add logging to different location.
Chmouel Boudjnahb93478f2011-11-02 16:49:56 +0100306
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100307# By default the location of swift drives and objects is located inside
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100308# the swift source directory. SWIFT_DATA_LOCATION variable allow you to redefine
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100309# this.
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100310SWIFT_DATA_LOCATION=${SWIFT_DATA_LOCATION:-${SWIFT_DIR}/data}
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100311
Chmouel Boudjnah3a648262011-11-03 10:43:46 +0100312# We are going to have the configuration files inside the source
313# directory, change SWIFT_CONFIG_LOCATION if you want to adjust that.
314SWIFT_CONFIG_LOCATION=${SWIFT_CONFIG_LOCATION:-${SWIFT_DIR}/config}
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100315
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100316# devstack will create a loop-back disk formatted as XFS to store the
317# swift data. By default the disk size is 1 gigabyte. The variable
318# SWIFT_LOOPBACK_DISK_SIZE specified in bytes allow you to change
319# that.
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100320SWIFT_LOOPBACK_DISK_SIZE=${SWIFT_LOOPBACK_DISK_SIZE:-1000000}
Anthony Young7a549f42011-10-12 07:13:13 +0000321
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100322# The ring uses a configurable number of bits from a path’s MD5 hash as
323# a partition index that designates a device. The number of bits kept
324# from the hash is known as the partition power, and 2 to the partition
325# power indicates the partition count. Partitioning the full MD5 hash
326# ring allows other parts of the cluster to work in batches of items at
327# once which ends up either more efficient or at least less complex than
328# working with each item separately or the entire cluster all at once.
329# By default we define 9 for the partition count (which mean 512).
Chmouel Boudjnaha2118982011-11-01 15:36:00 +0100330SWIFT_PARTITION_POWER_SIZE=${SWIFT_PARTITION_POWER_SIZE:-9}
331
Chmouel Boudjnahb2857e42011-11-03 16:19:14 +0100332# We only ask for Swift Hash if we have enabled swift service.
333if [[ "$ENABLED_SERVICES" =~ "swift" ]]; then
334 # SWIFT_HASH is a random unique string for a swift cluster that
335 # can never change.
336 read_password SWIFT_HASH "ENTER A RANDOM SWIFT HASH."
337fi
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700338
Jesse Andrews782b9912011-10-02 16:53:21 -0400339# Keystone
340# --------
341
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700342# Service Token - Openstack components need to have an admin token
343# to validate user tokens.
Anthony Young7a549f42011-10-12 07:13:13 +0000344read_password SERVICE_TOKEN "ENTER A SERVICE_TOKEN TO USE FOR THE SERVICE ADMIN TOKEN."
Tres Henryca85b792011-10-28 14:00:21 -0700345# Horizon currently truncates usernames and passwords at 20 characters
346read_password ADMIN_PASSWORD "ENTER A PASSWORD TO USE FOR HORIZON AND KEYSTONE (20 CHARS OR LESS)."
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700347
Scott Moserf9da5082011-10-07 21:28:00 -0400348LOGFILE=${LOGFILE:-"$PWD/stack.sh.$$.log"}
349(
350# So that errors don't compound we exit on any errors so you see only the
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100351# first error that occurred.
Scott Moserf9da5082011-10-07 21:28:00 -0400352trap failed ERR
353failed() {
354 local r=$?
355 set +o xtrace
356 [ -n "$LOGFILE" ] && echo "${0##*/} failed: full log in $LOGFILE"
357 exit $r
358}
359
360# Print the commands being run so that we can see the command that triggers
361# an error. It is also useful for following along as the install occurs.
362set -o xtrace
363
Jesse Andrewsfe95e0f2011-10-19 14:30:37 -0700364# create the destination directory and ensure it is writable by the user
Scott Moserf9da5082011-10-07 21:28:00 -0400365sudo mkdir -p $DEST
Jesse Andrewsfe95e0f2011-10-19 14:30:37 -0700366if [ ! -w $DEST ]; then
367 sudo chown `whoami` $DEST
368fi
Jesse Andrews53ed3872011-10-02 14:28:17 -0400369
Jesse Andrews30f68e92011-09-13 00:59:54 -0700370# Install Packages
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700371# ================
Jesse Andrews30f68e92011-09-13 00:59:54 -0700372#
373# Openstack uses a fair number of other projects.
374
Jesse Andrews2caf8fd2011-09-12 16:15:11 -0700375
Jesse Andrews75a37652011-09-12 17:09:08 -0700376# install apt requirements
Scott Moseree1b4952011-10-20 13:09:11 -0400377apt_get update
Jesse Andrewsdf5e9942011-11-03 09:36:13 -0500378apt_get install `cat $FILES/apts/* | cut -d\# -f1 | grep -Ev "mysql-server|rabbitmq-server|memcached"`
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700379
Jesse Andrews75a37652011-09-12 17:09:08 -0700380# install python requirements
Jesse Andrews9bb1a3c2011-11-14 10:05:56 -0800381sudo PIP_DOWNLOAD_CACHE=/var/cache/pip pip install --use-mirrors `cat $FILES/pips/*`
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700382
Jesse Andrewsd61db852011-09-16 14:13:17 -0700383# git clone only if directory doesn't exist already. Since ``DEST`` might not
384# be owned by the installation user, we create the directory and change the
385# ownership to the proper user.
Jesse Andrews61632572011-09-12 17:40:00 -0700386function git_clone {
Jesse Andrews1f273602011-10-17 13:20:40 -0700387
Jesse Andrews917c6652011-10-24 18:47:06 -0700388 GIT_REMOTE=$1
389 GIT_DEST=$2
390 GIT_BRANCH=$3
391
Jesse Andrewseeec0202011-10-24 18:42:11 -0700392 # do a full clone only if the directory doesn't exist
Jesse Andrews917c6652011-10-24 18:47:06 -0700393 if [ ! -d $GIT_DEST ]; then
394 git clone $GIT_REMOTE $GIT_DEST
Anthony Young2f140202011-09-26 13:02:40 -0700395 cd $2
Anthony Young303233e2011-09-26 13:12:57 -0700396 # This checkout syntax works for both branches and tags
Jesse Andrews917c6652011-10-24 18:47:06 -0700397 git checkout $GIT_BRANCH
Jesse Andrewseeec0202011-10-24 18:42:11 -0700398 elif [[ "$RECLONE" == "yes" ]]; then
399 # if it does exist then simulate what clone does if asked to RECLONE
Jesse Andrews480644b2011-10-24 18:52:58 -0700400 cd $GIT_DEST
Jesse Andrewseeec0202011-10-24 18:42:11 -0700401 # set the url to pull from and fetch
Jesse Andrews917c6652011-10-24 18:47:06 -0700402 git remote set-url origin $GIT_REMOTE
Jesse Andrewseeec0202011-10-24 18:42:11 -0700403 git fetch origin
Jesse Andrews9fef8442011-10-24 19:06:46 -0700404 # remove the existing ignored files (like pyc) as they cause breakage
405 # (due to the py files having older timestamps than our pyc, so python
406 # thinks the pyc files are correct using them)
Vishvananda Ishaya6b8855c2011-11-14 10:51:17 -0800407 find $GIT_DEST -name '*.pyc' -delete
Jesse Andrews917c6652011-10-24 18:47:06 -0700408 git checkout -f origin/$GIT_BRANCH
Jesse Andrewse09a6e42011-10-24 19:09:52 -0700409 # a local branch might not exist
Jesse Andrews917c6652011-10-24 18:47:06 -0700410 git branch -D $GIT_BRANCH || true
411 git checkout -b $GIT_BRANCH
Jesse Andrews61632572011-09-12 17:40:00 -0700412 fi
413}
414
Jesse Andrews75a37652011-09-12 17:09:08 -0700415# compute service
Anthony Young2f140202011-09-26 13:02:40 -0700416git_clone $NOVA_REPO $NOVA_DIR $NOVA_BRANCH
Tres Henryca85b792011-10-28 14:00:21 -0700417# python client library to nova that horizon (and others) use
Anthony Young2f140202011-09-26 13:02:40 -0700418git_clone $NOVACLIENT_REPO $NOVACLIENT_DIR $NOVACLIENT_BRANCH
James E. Blaire7ce24f2011-11-10 13:05:13 -0800419if [[ "$ENABLED_SERVICES" =~ "swift" ]]; then
420 # storage service
421 git_clone $SWIFT_REPO $SWIFT_DIR $SWIFT_BRANCH
422 # swift + keystone middleware
423 git_clone $SWIFT_KEYSTONE_REPO $SWIFT_KEYSTONE_DIR $SWIFT_KEYSTONE_BRANCH
424fi
425if [[ "$ENABLED_SERVICES" =~ "g-api" ]]; then
426 # image catalog service
427 git_clone $GLANCE_REPO $GLANCE_DIR $GLANCE_BRANCH
428fi
429if [[ "$ENABLED_SERVICES" =~ "key" ]]; then
430 # unified auth system (manages accounts/tokens)
431 git_clone $KEYSTONE_REPO $KEYSTONE_DIR $KEYSTONE_BRANCH
432fi
433if [[ "$ENABLED_SERVICES" =~ "n-vnc" ]]; then
434 # a websockets/html5 or flash powered VNC console for vm instances
435 git_clone $NOVNC_REPO $NOVNC_DIR $NOVNC_BRANCH
436fi
437if [[ "$ENABLED_SERVICES" =~ "horizon" ]]; then
438 # django powered web control panel for openstack
439 git_clone $HORIZON_REPO $HORIZON_DIR $HORIZON_BRANCH $HORIZON_TAG
440fi
441if [[ "$ENABLED_SERVICES" =~ "openstackx" ]]; then
442 # openstackx is a collection of extensions to openstack.compute & nova
443 # that is *deprecated*. The code is being moved into python-novaclient & nova.
444 git_clone $OPENSTACKX_REPO $OPENSTACKX_DIR $OPENSTACKX_BRANCH
445fi
446if [[ "$ENABLED_SERVICES" =~ "quantum" ]]; then
447 # quantum
448 git_clone $QUANTUM_REPO $QUANTUM_DIR $QUANTUM_BRANCH
449fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700450
Jesse Andrews30f68e92011-09-13 00:59:54 -0700451# Initialization
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700452# ==============
Jesse Andrews30f68e92011-09-13 00:59:54 -0700453
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700454
Jesse Andrews75a37652011-09-12 17:09:08 -0700455# setup our checkouts so they are installed into python path
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700456# allowing ``import nova`` or ``import glance.client``
James E. Blaire7ce24f2011-11-10 13:05:13 -0800457if [[ "$ENABLED_SERVICES" =~ "key" ]]; then
458 cd $KEYSTONE_DIR; sudo python setup.py develop
459fi
460if [[ "$ENABLED_SERVICES" =~ "swift" ]]; then
461 cd $SWIFT_DIR; sudo python setup.py develop
462 cd $SWIFT_KEYSTONE_DIR; sudo python setup.py develop
463fi
464if [[ "$ENABLED_SERVICES" =~ "g-api" ]]; then
465 cd $GLANCE_DIR; sudo python setup.py develop
466fi
Jesse Andrewsaa8bb242011-10-16 12:24:11 -0700467cd $NOVACLIENT_DIR; sudo python setup.py develop
468cd $NOVA_DIR; sudo python setup.py develop
James E. Blaire7ce24f2011-11-10 13:05:13 -0800469if [[ "$ENABLED_SERVICES" =~ "openstackx" ]]; then
470 cd $OPENSTACKX_DIR; sudo python setup.py develop
471fi
472if [[ "$ENABLED_SERVICES" =~ "horizon" ]]; then
473 cd $HORIZON_DIR/django-openstack; sudo python setup.py develop
474 cd $HORIZON_DIR/openstack-dashboard; sudo python setup.py develop
475fi
476if [[ "$ENABLED_SERVICES" =~ "quantum" ]]; then
477 cd $QUANTUM_DIR; sudo python setup.py develop
478fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700479
Jesse Andrews6edd17f2011-09-15 22:19:42 -0700480# Add a useful screenrc. This isn't required to run openstack but is we do
root40a37002011-09-20 18:06:14 +0000481# it since we are going to run the services in screen for simple
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700482cp $FILES/screenrc ~/.screenrc
Jesse Andrews6f3baaf2011-09-12 11:59:38 -0700483
Anthony Younga09ae2f2011-09-15 23:11:29 -0700484# Rabbit
485# ---------
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400486
Anthony Younga09ae2f2011-09-15 23:11:29 -0700487if [[ "$ENABLED_SERVICES" =~ "rabbit" ]]; then
488 # Install and start rabbitmq-server
Scott Moser199d76e2011-10-20 12:41:40 -0400489 # the temp file is necessary due to LP: #878600
490 tfile=$(mktemp)
Scott Moseree1b4952011-10-20 13:09:11 -0400491 apt_get install rabbitmq-server > "$tfile" 2>&1
Scott Moser199d76e2011-10-20 12:41:40 -0400492 cat "$tfile"
493 rm -f "$tfile"
Jesse Andrews53ed3872011-10-02 14:28:17 -0400494 # change the rabbit password since the default is "guest"
495 sudo rabbitmqctl change_password guest $RABBIT_PASSWORD
Anthony Younga09ae2f2011-09-15 23:11:29 -0700496fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700497
Jesse Andrews24859062011-09-15 21:28:23 -0700498# Mysql
499# ---------
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400500
Jesse Andrews24859062011-09-15 21:28:23 -0700501if [[ "$ENABLED_SERVICES" =~ "mysql" ]]; then
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400502
503 # Seed configuration with mysql password so that apt-get install doesn't
504 # prompt us for a password upon install.
505 cat <<MYSQL_PRESEED | sudo debconf-set-selections
Anthony Young7a549f42011-10-12 07:13:13 +0000506mysql-server-5.1 mysql-server/root_password password $MYSQL_PASSWORD
507mysql-server-5.1 mysql-server/root_password_again password $MYSQL_PASSWORD
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400508mysql-server-5.1 mysql-server/start_on_boot boolean true
509MYSQL_PRESEED
510
Jesse Andrews2e536a32011-10-13 11:40:16 -0700511 # while ``.my.cnf`` is not needed for openstack to function, it is useful
512 # as it allows you to access the mysql databases via ``mysql nova`` instead
513 # of having to specify the username/password each time.
Chmouel Boudjnahd5d5b682011-10-13 18:45:42 +0100514 if [[ ! -e $HOME/.my.cnf ]]; then
515 cat <<EOF >$HOME/.my.cnf
516[client]
517user=$MYSQL_USER
Anthony Youngcf145b72011-10-13 15:07:36 -0700518password=$MYSQL_PASSWORD
Chmouel Boudjnahd5d5b682011-10-13 18:45:42 +0100519host=$MYSQL_HOST
520EOF
521 chmod 0600 $HOME/.my.cnf
522 fi
523
Anthony Younga09ae2f2011-09-15 23:11:29 -0700524 # Install and start mysql-server
Scott Moseree1b4952011-10-20 13:09:11 -0400525 apt_get install mysql-server
Jesse Andrews24859062011-09-15 21:28:23 -0700526 # Update the DB to give user ‘$MYSQL_USER’@’%’ full control of the all databases:
James E. Blair92e81992011-10-11 09:26:29 -0500527 sudo mysql -uroot -p$MYSQL_PASSWORD -h127.0.0.1 -e "GRANT ALL PRIVILEGES ON *.* TO '$MYSQL_USER'@'%' identified by '$MYSQL_PASSWORD';"
Jesse Andrews24859062011-09-15 21:28:23 -0700528
529 # Edit /etc/mysql/my.cnf to change ‘bind-address’ from localhost (127.0.0.1) to any (0.0.0.0) and restart the mysql service:
530 sudo sed -i 's/127.0.0.1/0.0.0.0/g' /etc/mysql/my.cnf
531 sudo service mysql restart
532fi
533
534
Tres Henryca85b792011-10-28 14:00:21 -0700535# Horizon
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700536# ---------
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400537
Tres Henryca85b792011-10-28 14:00:21 -0700538# Setup the django horizon application to serve via apache/wsgi
Jesse Andrews75a37652011-09-12 17:09:08 -0700539
Tres Henryca85b792011-10-28 14:00:21 -0700540if [[ "$ENABLED_SERVICES" =~ "horizon" ]]; then
Jesse Andrews24859062011-09-15 21:28:23 -0700541
Tres Henryca85b792011-10-28 14:00:21 -0700542 # Horizon currently imports quantum even if you aren't using it. Instead
root40a37002011-09-20 18:06:14 +0000543 # of installing quantum we can create a simple module that will pass the
Jesse Andrews24859062011-09-15 21:28:23 -0700544 # initial imports
Tres Henryca85b792011-10-28 14:00:21 -0700545 mkdir -p $HORIZON_DIR/openstack-dashboard/quantum || true
546 touch $HORIZON_DIR/openstack-dashboard/quantum/__init__.py
547 touch $HORIZON_DIR/openstack-dashboard/quantum/client.py
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400548
549
Tres Henryca85b792011-10-28 14:00:21 -0700550 # ``local_settings.py`` is used to override horizon default settings.
551 cp $FILES/horizon_settings.py $HORIZON_DIR/openstack-dashboard/local/local_settings.py
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700552
Tres Henryca85b792011-10-28 14:00:21 -0700553 # Initialize the horizon database (it stores sessions and notices shown to
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700554 # users). The user system is external (keystone).
Tres Henryca85b792011-10-28 14:00:21 -0700555 cd $HORIZON_DIR/openstack-dashboard
Anthony Young70dc5e02011-09-15 16:52:43 -0700556 dashboard/manage.py syncdb
Jesse Andrews75a37652011-09-12 17:09:08 -0700557
Anthony Young70dc5e02011-09-15 16:52:43 -0700558 # create an empty directory that apache uses as docroot
Tres Henryca85b792011-10-28 14:00:21 -0700559 sudo mkdir -p $HORIZON_DIR/.blackhole
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700560
Tres Henryca85b792011-10-28 14:00:21 -0700561 ## Configure apache's 000-default to run horizon
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700562 sudo cp $FILES/000-default.template /etc/apache2/sites-enabled/000-default
Jesse Andrews8f3e28c2011-09-27 18:26:27 -0700563 sudo sed -e "s,%USER%,$USER,g" -i /etc/apache2/sites-enabled/000-default
Tres Henryca85b792011-10-28 14:00:21 -0700564 sudo sed -e "s,%HORIZON_DIR%,$HORIZON_DIR,g" -i /etc/apache2/sites-enabled/000-default
Jesse Andrewsc96b0242011-10-28 10:34:26 -0700565 sudo service apache2 restart
Anthony Young70dc5e02011-09-15 16:52:43 -0700566fi
Jesse Andrews75a37652011-09-12 17:09:08 -0700567
Anthony Young3859f732011-09-14 02:33:43 -0700568
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700569# Glance
570# ------
571
Anthony Young70dc5e02011-09-15 16:52:43 -0700572if [[ "$ENABLED_SERVICES" =~ "g-reg" ]]; then
Anthony Youngc8357622011-09-20 10:38:06 -0700573 GLANCE_IMAGE_DIR=$DEST/glance/images
Anthony Younga531b772011-09-20 09:59:54 -0700574 # Delete existing images
575 rm -rf $GLANCE_IMAGE_DIR
Jesse Andrews75a37652011-09-12 17:09:08 -0700576
Anthony Younga531b772011-09-20 09:59:54 -0700577 # Use local glance directories
578 mkdir -p $GLANCE_IMAGE_DIR
579
Anthony Young70dc5e02011-09-15 16:52:43 -0700580 # (re)create glance database
Anthony Young7a549f42011-10-12 07:13:13 +0000581 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'DROP DATABASE IF EXISTS glance;'
582 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'CREATE DATABASE glance;'
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700583
584 # Copy over our glance configurations and update them
Anthony Young70dc5e02011-09-15 16:52:43 -0700585 GLANCE_CONF=$GLANCE_DIR/etc/glance-registry.conf
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700586 cp $FILES/glance-registry.conf $GLANCE_CONF
Anthony Young70dc5e02011-09-15 16:52:43 -0700587 sudo sed -e "s,%SQL_CONN%,$BASE_SQL_CONN/glance,g" -i $GLANCE_CONF
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700588 sudo sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $GLANCE_CONF
Anthony Younga531b772011-09-20 09:59:54 -0700589 sudo sed -e "s,%DEST%,$DEST,g" -i $GLANCE_CONF
James E. Blair5855a642011-10-26 15:44:27 -0400590 sudo sed -e "s,%SYSLOG%,$SYSLOG,g" -i $GLANCE_CONF
Anthony Youngf12d3ab2011-09-20 00:33:51 -0700591
592 GLANCE_API_CONF=$GLANCE_DIR/etc/glance-api.conf
593 cp $FILES/glance-api.conf $GLANCE_API_CONF
Anthony Younga531b772011-09-20 09:59:54 -0700594 sudo sed -e "s,%DEST%,$DEST,g" -i $GLANCE_API_CONF
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700595 sudo sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $GLANCE_API_CONF
James E. Blair5855a642011-10-26 15:44:27 -0400596 sudo sed -e "s,%SYSLOG%,$SYSLOG,g" -i $GLANCE_API_CONF
Anthony Young70dc5e02011-09-15 16:52:43 -0700597fi
Jesse Andrews75a37652011-09-12 17:09:08 -0700598
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700599# Nova
600# ----
601
Jesse Andrewsf70569e2011-10-24 21:56:25 -0700602if [[ "$ENABLED_SERVICES" =~ "n-api" ]]; then
Vishvananda Ishaya9812ffb2011-11-06 11:18:26 -0800603 # We are going to use a sample http middleware configuration based on the
604 # one from the keystone project to launch nova. This paste config adds
605 # the configuration required for nova to validate keystone tokens. We add
606 # our own service token to the configuration.
607 cp $FILES/nova-api-paste.ini $NOVA_DIR/bin
608 sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $NOVA_DIR/bin/nova-api-paste.ini
Jesse Andrewsf70569e2011-10-24 21:56:25 -0700609fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700610
Anthony Young70dc5e02011-09-15 16:52:43 -0700611if [[ "$ENABLED_SERVICES" =~ "n-cpu" ]]; then
Jesse Andrewsdfcd2002011-09-13 13:17:22 -0700612
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400613 # Virtualization Configuration
614 # ~~~~~~~~~~~~~~~~~~~~~~~~~~~~
615
616 # attempt to load modules: network block device - used to manage qcow images
Anthony Young70dc5e02011-09-15 16:52:43 -0700617 sudo modprobe nbd || true
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400618
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700619 # Check for kvm (hardware based virtualization). If unable to initialize
620 # kvm, we drop back to the slower emulation mode (qemu). Note: many systems
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700621 # come with hardware virtualization disabled in BIOS.
Jesse Andrews2abbdd42011-10-03 22:48:30 -0400622 if [[ "$LIBVIRT_TYPE" == "kvm" ]]; then
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400623 sudo modprobe kvm || true
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400624 if [ ! -e /dev/kvm ]; then
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400625 echo "WARNING: Switching to QEMU"
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400626 LIBVIRT_TYPE=qemu
627 fi
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700628 fi
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400629
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400630 # Install and configure **LXC** if specified. LXC is another approach to
631 # splitting a system into many smaller parts. LXC uses cgroups and chroot
632 # to simulate multiple systems.
Jesse Andrews2abbdd42011-10-03 22:48:30 -0400633 if [[ "$LIBVIRT_TYPE" == "lxc" ]]; then
Scott Moseree1b4952011-10-20 13:09:11 -0400634 apt_get install lxc
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700635 # lxc uses cgroups (a kernel interface via virtual filesystem) configured
636 # and mounted to ``/cgroup``
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400637 sudo mkdir -p /cgroup
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400638 if ! grep -q cgroup /etc/fstab; then
Jesse Andrewsc315ebf2011-10-02 13:25:33 -0400639 echo none /cgroup cgroup cpuacct,memory,devices,cpu,freezer,blkio 0 0 | sudo tee -a /etc/fstab
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400640 fi
Jesse Andrewse4304232011-10-07 10:34:32 -0400641 if ! mount -n | grep -q cgroup; then
642 sudo mount /cgroup
643 fi
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400644 fi
645
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700646 # The user that nova runs as needs to be member of libvirtd group otherwise
647 # nova-compute will be unable to use libvirt.
Anthony Young70dc5e02011-09-15 16:52:43 -0700648 sudo usermod -a -G libvirtd `whoami`
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700649 # libvirt detects various settings on startup, as we potentially changed
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700650 # the system configuration (modules, filesystems), we need to restart
651 # libvirt to detect those changes.
Anthony Young70dc5e02011-09-15 16:52:43 -0700652 sudo /etc/init.d/libvirt-bin restart
653
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400654
655 # Instance Storage
656 # ~~~~~~~~~~~~~~~~
657
658 # Nova stores each instance in its own directory.
Anthony Young70dc5e02011-09-15 16:52:43 -0700659 mkdir -p $NOVA_DIR/instances
660
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700661 # You can specify a different disk to be mounted and used for backing the
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700662 # virtual machines. If there is a partition labeled nova-instances we
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700663 # mount it (ext filesystems can be labeled via e2label).
Anthony Young70dc5e02011-09-15 16:52:43 -0700664 if [ -L /dev/disk/by-label/nova-instances ]; then
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700665 if ! mount -n | grep -q nova-instances; then
666 sudo mount -L nova-instances $NOVA_DIR/instances
667 sudo chown -R `whoami` $NOVA_DIR/instances
668 fi
Anthony Young70dc5e02011-09-15 16:52:43 -0700669 fi
670
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400671 # Clean out the instances directory.
Jesse Andrews461bfdc2011-10-09 17:50:38 -0700672 sudo rm -rf $NOVA_DIR/instances/*
Jesse Andrewsdfcd2002011-09-13 13:17:22 -0700673fi
674
Anthony Young70dc5e02011-09-15 16:52:43 -0700675if [[ "$ENABLED_SERVICES" =~ "n-net" ]]; then
676 # delete traces of nova networks from prior runs
Anthony Young09fde812011-09-20 02:23:54 -0700677 sudo killall dnsmasq || true
Anthony Young70dc5e02011-09-15 16:52:43 -0700678 rm -rf $NOVA_DIR/networks
679 mkdir -p $NOVA_DIR/networks
680fi
Jesse Andrews75a37652011-09-12 17:09:08 -0700681
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100682# Storage Service
Chmouel Boudjnah537ddff2011-11-02 19:09:30 +0100683if [[ "$ENABLED_SERVICES" =~ "swift" ]]; then
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100684 # We first do a bit of setup by creating the directories and
685 # changing the permissions so we can run it as our user.
686
Chmouel Boudjnah067163d2011-11-02 14:25:06 +0100687 USER_GROUP=$(id -g)
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100688 sudo mkdir -p ${SWIFT_DATA_LOCATION}/drives
689 sudo chown -R $USER:${USER_GROUP} ${SWIFT_DATA_LOCATION}/drives
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700690
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100691 # We then create a loopback disk and format it to XFS.
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100692 if [[ ! -e ${SWIFT_DATA_LOCATION}/drives/images/swift.img ]];then
693 mkdir -p ${SWIFT_DATA_LOCATION}/drives/images
694 sudo touch ${SWIFT_DATA_LOCATION}/drives/images/swift.img
695 sudo chown $USER: ${SWIFT_DATA_LOCATION}/drives/images/swift.img
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700696
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100697 dd if=/dev/zero of=${SWIFT_DATA_LOCATION}/drives/images/swift.img \
Chmouel Boudjnahb93478f2011-11-02 16:49:56 +0100698 bs=1024 count=0 seek=${SWIFT_LOOPBACK_DISK_SIZE}
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100699 mkfs.xfs -f -i size=1024 ${SWIFT_DATA_LOCATION}/drives/images/swift.img
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100700 fi
701
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100702 # After the drive being created we mount the disk with a few mount
703 # options to make it most efficient as possible for swift.
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100704 mkdir -p ${SWIFT_DATA_LOCATION}/drives/sdb1
705 if ! egrep -q ${SWIFT_DATA_LOCATION}/drives/sdb1 /proc/mounts;then
Chmouel Boudjnahb93478f2011-11-02 16:49:56 +0100706 sudo mount -t xfs -o loop,noatime,nodiratime,nobarrier,logbufs=8 \
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100707 ${SWIFT_DATA_LOCATION}/drives/images/swift.img ${SWIFT_DATA_LOCATION}/drives/sdb1
Chmouel Boudjnaha03f0052011-11-01 13:08:29 +0000708 fi
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100709
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100710 # We then create link to that mounted location so swift would know
711 # where to go.
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100712 for x in {1..4}; do sudo ln -sf ${SWIFT_DATA_LOCATION}/drives/sdb1/$x ${SWIFT_DATA_LOCATION}/$x; done
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700713
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100714 # We now have to emulate a few different servers into one we
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700715 # create all the directories needed for swift
Chmouel Boudjnahe1d2bcb2011-11-01 17:32:11 +0100716 tmpd=""
Chmouel Boudjnah3a648262011-11-03 10:43:46 +0100717 for d in ${SWIFT_DATA_LOCATION}/drives/sdb1/{1..4} \
718 ${SWIFT_CONFIG_LOCATION}/{object,container,account}-server \
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100719 ${SWIFT_DATA_LOCATION}/{1..4}/node/sdb1 /var/run/swift ;do
Chmouel Boudjnahe1d2bcb2011-11-01 17:32:11 +0100720 [[ -d $d ]] && continue
Chmouel Boudjnah067163d2011-11-02 14:25:06 +0100721 sudo install -o ${USER} -g $USER_GROUP -d $d
Chmouel Boudjnahe1d2bcb2011-11-01 17:32:11 +0100722 done
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100723
Chmouel Boudjnah3a648262011-11-03 10:43:46 +0100724 # We do want to make sure this is all owned by our user.
725 sudo chown -R $USER: ${SWIFT_DATA_LOCATION}/{1..4}/node
726 sudo chown -R $USER: ${SWIFT_CONFIG_LOCATION}
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100727
Chmouel Boudjnah3a648262011-11-03 10:43:46 +0100728 # swift-init has a bug using /etc/swift until bug #885595 is fixed
729 # we have to create a link
Chmouel Boudjnah2f2160e2011-11-10 23:46:08 +0100730 sudo ln -sf ${SWIFT_CONFIG_LOCATION} /etc/swift
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700731
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100732 # Swift use rsync to syncronize between all the different
733 # partitions (which make more sense when you have a multi-node
734 # setup) we configure it with our version of rsync.
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100735 sed -e "s/%GROUP%/${USER_GROUP}/;s/%USER%/$USER/;s,%SWIFT_DATA_LOCATION%,$SWIFT_DATA_LOCATION," $FILES/swift/rsyncd.conf | sudo tee /etc/rsyncd.conf
Chmouel Boudjnahe1d2bcb2011-11-01 17:32:11 +0100736 sudo sed -i '/^RSYNC_ENABLE=false/ { s/false/true/ }' /etc/default/rsync
Chmouel Boudjnah45c51132011-11-01 19:32:23 +0100737
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100738 # By default Swift will be installed with the tempauth middleware
739 # which has some default username and password if you have
740 # configured keystone it will checkout the directory.
Chmouel Boudjnah45c51132011-11-01 19:32:23 +0100741 if [[ "$ENABLED_SERVICES" =~ "key" ]]; then
742 swift_auth_server=keystone
Chmouel Boudjnah904b0d72011-11-10 19:44:58 +0100743
744 # We install the memcache server as this is will be used by the
745 # middleware to cache the tokens auths for a long this is needed.
746 apt_get install memcached
747
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100748 # We need a special version of bin/swift which understand the
749 # OpenStack api 2.0, we download it until this is getting
750 # integrated in swift.
Chmouel Boudjnah45c51132011-11-01 19:32:23 +0100751 sudo curl -s -o/usr/local/bin/swift \
752 'https://review.openstack.org/gitweb?p=openstack/swift.git;a=blob_plain;f=bin/swift;hb=48bfda6e2fdf3886c98bd15649887d54b9a2574e'
753 else
754 swift_auth_server=tempauth
755 fi
756
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100757 # We do the install of the proxy-server and swift configuration
758 # replacing a few directives to match our configuration.
Chmouel Boudjnah3a648262011-11-03 10:43:46 +0100759 sed "s,%SWIFT_CONFIG_LOCATION%,${SWIFT_CONFIG_LOCATION},;s/%USER%/$USER/;s/%SERVICE_TOKEN%/${SERVICE_TOKEN}/;s/%AUTH_SERVER%/${swift_auth_server}/" \
760 $FILES/swift/proxy-server.conf|sudo tee ${SWIFT_CONFIG_LOCATION}/proxy-server.conf
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100761
Chmouel Boudjnah3a648262011-11-03 10:43:46 +0100762 sed -e "s/%SWIFT_HASH%/$SWIFT_HASH/" $FILES/swift/swift.conf > ${SWIFT_CONFIG_LOCATION}/swift.conf
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100763
764 # We need to generate a object/account/proxy configuration
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100765 # emulating 4 nodes on different ports we have a little function
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100766 # that help us doing that.
767 function generate_swift_configuration() {
768 local server_type=$1
769 local bind_port=$2
770 local log_facility=$3
Chmouel Boudjnah45c51132011-11-01 19:32:23 +0100771 local node_number
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700772
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100773 for node_number in {1..4};do
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100774 node_path=${SWIFT_DATA_LOCATION}/${node_number}
Chmouel Boudjnah3a648262011-11-03 10:43:46 +0100775 sed -e "s,%SWIFT_CONFIG_LOCATION%,${SWIFT_CONFIG_LOCATION},;s,%USER%,$USER,;s,%NODE_PATH%,${node_path},;s,%BIND_PORT%,${bind_port},;s,%LOG_FACILITY%,${log_facility}," \
776 $FILES/swift/${server_type}-server.conf > ${SWIFT_CONFIG_LOCATION}/${server_type}-server/${node_number}.conf
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100777 bind_port=$(( ${bind_port} + 10 ))
778 log_facility=$(( ${log_facility} + 1 ))
779 done
780 }
781 generate_swift_configuration object 6010 2
782 generate_swift_configuration container 6011 2
783 generate_swift_configuration account 6012 2
Chmouel Boudjnaha03f0052011-11-01 13:08:29 +0000784
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100785 # We create two helper scripts :
786 #
787 # - swift-remakerings
788 # Allow to recreate rings from scratch.
789 # - swift-startmain
790 # Restart your full cluster.
791 #
Chmouel Boudjnah3a648262011-11-03 10:43:46 +0100792 sed -e "s,%SWIFT_CONFIG_LOCATION%,${SWIFT_CONFIG_LOCATION},;s/%SWIFT_PARTITION_POWER_SIZE%/$SWIFT_PARTITION_POWER_SIZE/" $FILES/swift/swift-remakerings | \
Chmouel Boudjnaha2118982011-11-01 15:36:00 +0100793 sudo tee /usr/local/bin/swift-remakerings
Chmouel Boudjnah537ddff2011-11-02 19:09:30 +0100794 sudo install -m755 $FILES/swift/swift-startmain /usr/local/bin/
Chmouel Boudjnaha2118982011-11-01 15:36:00 +0100795 sudo chmod +x /usr/local/bin/swift-*
796
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100797 # We then can start rsync.
Chmouel Boudjnahe1d2bcb2011-11-01 17:32:11 +0100798 sudo /etc/init.d/rsync restart || :
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700799
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100800 # Create our ring for the object/container/account.
Chmouel Boudjnahd5651bb2011-11-01 16:22:08 +0100801 /usr/local/bin/swift-remakerings
802
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100803 # And now we launch swift-startmain to get our cluster running
804 # ready to be tested.
Chmouel Boudjnahd5651bb2011-11-01 16:22:08 +0100805 /usr/local/bin/swift-startmain || :
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700806
Chmouel Boudjnah45c51132011-11-01 19:32:23 +0100807 unset s swift_hash swift_auth_server tmpd
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100808fi
809
Anthony Youngacff87a2011-10-20 10:12:58 -0700810# Volume Service
811# --------------
812
813if [[ "$ENABLED_SERVICES" =~ "n-vol" ]]; then
814 #
815 # Configure a default volume group called 'nova-volumes' for the nova-volume
816 # service if it does not yet exist. If you don't wish to use a file backed
817 # volume group, create your own volume group called 'nova-volumes' before
818 # invoking stack.sh.
819 #
820 # By default, the backing file is 2G in size, and is stored in /opt/stack.
821 #
Jesse Andrewsd02b7b72011-11-14 08:59:05 -0800822 if ! sudo vgdisplay | grep -q $VOLUME_GROUP; then
Todd Willeyb244ef32011-11-03 18:19:21 -0400823 VOLUME_BACKING_FILE=${VOLUME_BACKING_FILE:-$DEST/nova-volumes-backing-file}
Anthony Youngb22263a2011-10-20 10:26:30 -0700824 VOLUME_BACKING_FILE_SIZE=${VOLUME_BACKING_FILE_SIZE:-2052M}
Anthony Youngacff87a2011-10-20 10:12:58 -0700825 truncate -s $VOLUME_BACKING_FILE_SIZE $VOLUME_BACKING_FILE
826 DEV=`sudo losetup -f --show $VOLUME_BACKING_FILE`
Jesse Andrewsd02b7b72011-11-14 08:59:05 -0800827 sudo vgcreate $VOLUME_GROUP $DEV
Anthony Youngacff87a2011-10-20 10:12:58 -0700828 fi
829
830 # Configure iscsitarget
831 sudo sed 's/ISCSITARGET_ENABLE=false/ISCSITARGET_ENABLE=true/' -i /etc/default/iscsitarget
832 sudo /etc/init.d/iscsitarget restart
833fi
834
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700835function add_nova_flag {
836 echo "$1" >> $NOVA_DIR/bin/nova.conf
837}
838
839# (re)create nova.conf
840rm -f $NOVA_DIR/bin/nova.conf
841add_nova_flag "--verbose"
842add_nova_flag "--nodaemon"
Vishvananda Ishaya293c2ef2011-10-27 12:55:29 -0700843add_nova_flag "--allow_admin_api"
Jesse Andrews8ff5dbc2011-09-25 22:28:08 -0700844add_nova_flag "--scheduler_driver=$SCHEDULER"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700845add_nova_flag "--dhcpbridge_flagfile=$NOVA_DIR/bin/nova.conf"
Yun Mao9720eb82011-10-29 23:30:10 -0400846add_nova_flag "--fixed_range=$FIXED_RANGE"
Brad Hall1bfa3d52011-10-27 18:18:20 -0700847if [[ "$ENABLED_SERVICES" =~ "q-svc" ]]; then
848 add_nova_flag "--network_manager=nova.network.quantum.manager.QuantumManager"
849 if [[ "$Q_PLUGIN" = "openvswitch" ]]; then
850 add_nova_flag "--libvirt_vif_type=ethernet"
851 add_nova_flag "--libvirt_vif_driver=nova.virt.libvirt.vif.LibvirtOpenVswitchDriver"
852 fi
853else
854 add_nova_flag "--network_manager=nova.network.manager.$NET_MAN"
855fi
Jesse Andrewsd02b7b72011-11-14 08:59:05 -0800856if [[ "$ENABLED_SERVICES" =~ "n-vol" ]]; then
857 add_nova_flag "--volume_group=$VOLUME_GROUP"
858fi
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700859add_nova_flag "--my_ip=$HOST_IP"
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700860add_nova_flag "--public_interface=$PUBLIC_INTERFACE"
861add_nova_flag "--vlan_interface=$VLAN_INTERFACE"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700862add_nova_flag "--sql_connection=$BASE_SQL_CONN/nova"
863add_nova_flag "--libvirt_type=$LIBVIRT_TYPE"
James E. Blaire7ce24f2011-11-10 13:05:13 -0800864if [[ "$ENABLED_SERVICES" =~ "openstackx" ]]; then
865 add_nova_flag "--osapi_extensions_path=$OPENSTACKX_DIR/extensions"
866fi
867if [[ "$ENABLED_SERVICES" =~ "n-vnc" ]]; then
868 add_nova_flag "--vncproxy_url=http://$HOST_IP:6080"
869 add_nova_flag "--vncproxy_wwwroot=$NOVNC_DIR/"
870fi
Jesse Andrews42dc9a72011-10-24 22:03:11 -0700871add_nova_flag "--api_paste_config=$NOVA_DIR/bin/nova-api-paste.ini"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700872add_nova_flag "--image_service=nova.image.glance.GlanceImageService"
873add_nova_flag "--ec2_dmz_host=$EC2_DMZ_HOST"
874add_nova_flag "--rabbit_host=$RABBIT_HOST"
Jesse Andrews53ed3872011-10-02 14:28:17 -0400875add_nova_flag "--rabbit_password=$RABBIT_PASSWORD"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700876add_nova_flag "--glance_api_servers=$GLANCE_HOSTPORT"
Vishvananda Ishaya7e436c22011-11-09 00:12:00 -0800877add_nova_flag "--force_dhcp_release"
Vishvananda Ishaya3e2b1742011-10-28 12:20:07 -0700878if [ -n "$INSTANCES_PATH" ]; then
879 add_nova_flag "--instances_path=$INSTANCES_PATH"
Vishvananda Ishayae72bdb02011-10-28 13:34:38 -0700880fi
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700881if [ "$MULTI_HOST" != "False" ]; then
882 add_nova_flag "--multi_host"
883 add_nova_flag "--send_arp_for_ha"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700884fi
James E. Blair5855a642011-10-26 15:44:27 -0400885if [ "$SYSLOG" != "False" ]; then
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700886 add_nova_flag "--use_syslog"
James E. Blair5855a642011-10-26 15:44:27 -0400887fi
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700888
Anthony Youngb62b4ca2011-10-26 22:29:08 -0700889# XenServer
890# ---------
891
892if [ "$VIRT_DRIVER" = 'xenserver' ]; then
893 read_password XENAPI_PASSWORD "ENTER A PASSWORD TO USE FOR XEN."
894 add_nova_flag "--connection_type=xenapi"
895 add_nova_flag "--xenapi_connection_url=http://169.254.0.1"
896 add_nova_flag "--xenapi_connection_username=root"
897 add_nova_flag "--xenapi_connection_password=$XENAPI_PASSWORD"
898 add_nova_flag "--flat_injected=False"
899 add_nova_flag "--flat_interface=eth1"
Anthony Youngea1290a2011-10-27 12:53:30 -0700900 add_nova_flag "--flat_network_bridge=xenbr1"
Anthony Youngb62b4ca2011-10-26 22:29:08 -0700901 add_nova_flag "--public_interface=eth3"
902else
903 add_nova_flag "--flat_network_bridge=$FLAT_NETWORK_BRIDGE"
904 if [ -n "$FLAT_INTERFACE" ]; then
905 add_nova_flag "--flat_interface=$FLAT_INTERFACE"
906 fi
907fi
908
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400909# Nova Database
910# ~~~~~~~~~~~~~
911
912# All nova components talk to a central database. We will need to do this step
913# only once for an entire cluster.
914
Anthony Younga0748002011-09-16 21:37:36 -0700915if [[ "$ENABLED_SERVICES" =~ "mysql" ]]; then
916 # (re)create nova database
Anthony Young7a549f42011-10-12 07:13:13 +0000917 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'DROP DATABASE IF EXISTS nova;'
918 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'CREATE DATABASE nova;'
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400919
920 # (re)create nova database
Anthony Younga0748002011-09-16 21:37:36 -0700921 $NOVA_DIR/bin/nova-manage db sync
Anthony Younga0748002011-09-16 21:37:36 -0700922fi
923
924
Jesse Andrewse8d9cd82011-09-13 15:16:26 -0700925# Keystone
926# --------
927
Anthony Young70dc5e02011-09-15 16:52:43 -0700928if [[ "$ENABLED_SERVICES" =~ "key" ]]; then
929 # (re)create keystone database
Anthony Young7a549f42011-10-12 07:13:13 +0000930 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'DROP DATABASE IF EXISTS keystone;'
931 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'CREATE DATABASE keystone;'
Jesse Andrews75a37652011-09-12 17:09:08 -0700932
Anthony Young70dc5e02011-09-15 16:52:43 -0700933 # FIXME (anthony) keystone should use keystone.conf.example
934 KEYSTONE_CONF=$KEYSTONE_DIR/etc/keystone.conf
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700935 cp $FILES/keystone.conf $KEYSTONE_CONF
Anthony Young70dc5e02011-09-15 16:52:43 -0700936 sudo sed -e "s,%SQL_CONN%,$BASE_SQL_CONN/keystone,g" -i $KEYSTONE_CONF
Anthony Younge8fed482011-09-26 19:50:43 -0700937 sudo sed -e "s,%DEST%,$DEST,g" -i $KEYSTONE_CONF
Anthony Young3a093122011-09-13 19:01:45 +0000938
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400939 # keystone_data.sh creates our admin user and our ``SERVICE_TOKEN``.
Anthony Youngec21d932011-09-16 16:05:55 -0700940 KEYSTONE_DATA=$KEYSTONE_DIR/bin/keystone_data.sh
941 cp $FILES/keystone_data.sh $KEYSTONE_DATA
942 sudo sed -e "s,%HOST_IP%,$HOST_IP,g" -i $KEYSTONE_DATA
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700943 sudo sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $KEYSTONE_DATA
Jesse Andrews89358af2011-10-02 14:11:17 -0400944 sudo sed -e "s,%ADMIN_PASSWORD%,$ADMIN_PASSWORD,g" -i $KEYSTONE_DATA
Anthony Young70dc5e02011-09-15 16:52:43 -0700945 # initialize keystone with default users/endpoints
Anthony Youngec21d932011-09-16 16:05:55 -0700946 BIN_DIR=$KEYSTONE_DIR/bin bash $KEYSTONE_DATA
Anthony Young70dc5e02011-09-15 16:52:43 -0700947fi
Jesse Andrews75a37652011-09-12 17:09:08 -0700948
Jesse Andrews75a37652011-09-12 17:09:08 -0700949
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700950# Launch Services
951# ===============
Jesse Andrews30f68e92011-09-13 00:59:54 -0700952
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700953# nova api crashes if we start it with a regular screen command,
954# so send the start command by forcing text into the window.
Jesse Andrewsdfcd2002011-09-13 13:17:22 -0700955# Only run the services specified in ``ENABLED_SERVICES``
956
Jesse Andrews1f717602011-09-16 15:18:53 -0700957# our screen helper to launch a service in a hidden named screen
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700958function screen_it {
Jesse Andrews1f717602011-09-16 15:18:53 -0700959 NL=`echo -ne '\015'`
Anthony Young292e46d2011-09-13 11:28:56 -0700960 if [[ "$ENABLED_SERVICES" =~ "$1" ]]; then
Chmouel Boudjnah3ad59ea2011-11-02 18:27:40 +0100961 if [[ "$USE_TMUX" =~ "yes" ]]; then
962 tmux new-window -t stack -a -n "$1" "bash"
963 tmux send-keys "$2" C-M
964 else
965 screen -S stack -X screen -t $1
966 # sleep to allow bash to be ready to be send the command - we are
967 # creating a new window in screen and then sends characters, so if
968 # bash isn't running by the time we send the command, nothing happens
969 sleep 1
970 screen -S stack -p $1 -X stuff "$2$NL"
971 fi
Anthony Young292e46d2011-09-13 11:28:56 -0700972 fi
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700973}
974
Jesse Andrewsa16e5e92011-09-16 16:30:55 -0700975# create a new named screen to run processes in
Jesse Andrewsde8b9a22011-11-01 17:23:04 -0700976screen -d -m -S stack -t stack
Jesse Andrewsa16e5e92011-09-16 16:30:55 -0700977sleep 1
978
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100979# launch the glance registry service
Anthony Youngd000b222011-09-19 14:46:53 -0700980if [[ "$ENABLED_SERVICES" =~ "g-reg" ]]; then
981 screen_it g-reg "cd $GLANCE_DIR; bin/glance-registry --config-file=etc/glance-registry.conf"
982fi
983
Jesse Andrews644b8e82011-10-02 17:50:41 -0400984# launch the glance api and wait for it to answer before continuing
Anthony Youngd000b222011-09-19 14:46:53 -0700985if [[ "$ENABLED_SERVICES" =~ "g-api" ]]; then
986 screen_it g-api "cd $GLANCE_DIR; bin/glance-api --config-file=etc/glance-api.conf"
James E. Blair92e81992011-10-11 09:26:29 -0500987 echo "Waiting for g-api ($GLANCE_HOSTPORT) to start..."
Dean Troyer2bbcd682011-11-05 16:19:03 -0500988 if ! timeout $SERVICE_TIMEOUT sh -c "while ! wget -q -O- http://$GLANCE_HOSTPORT; do sleep 1; done"; then
James E. Blair92e81992011-10-11 09:26:29 -0500989 echo "g-api did not start"
990 exit 1
991 fi
Anthony Youngd000b222011-09-19 14:46:53 -0700992fi
993
Jesse Andrews644b8e82011-10-02 17:50:41 -0400994# launch the keystone and wait for it to answer before continuing
Anthony Youngd000b222011-09-19 14:46:53 -0700995if [[ "$ENABLED_SERVICES" =~ "key" ]]; then
Anthony Youngf33796e2011-09-22 00:14:12 -0700996 screen_it key "cd $KEYSTONE_DIR && $KEYSTONE_DIR/bin/keystone --config-file $KEYSTONE_CONF -d"
James E. Blair92e81992011-10-11 09:26:29 -0500997 echo "Waiting for keystone to start..."
Dean Troyer2bbcd682011-11-05 16:19:03 -0500998 if ! timeout $SERVICE_TIMEOUT sh -c "while ! wget -q -O- http://127.0.0.1:5000; do sleep 1; done"; then
James E. Blair92e81992011-10-11 09:26:29 -0500999 echo "keystone did not start"
1000 exit 1
1001 fi
Anthony Youngd000b222011-09-19 14:46:53 -07001002fi
1003
Jesse Andrews644b8e82011-10-02 17:50:41 -04001004# launch the nova-api and wait for it to answer before continuing
Anthony Youngd000b222011-09-19 14:46:53 -07001005if [[ "$ENABLED_SERVICES" =~ "n-api" ]]; then
Anthony Young9bf3d762011-09-20 09:51:16 -07001006 screen_it n-api "cd $NOVA_DIR && $NOVA_DIR/bin/nova-api"
James E. Blair92e81992011-10-11 09:26:29 -05001007 echo "Waiting for nova-api to start..."
Dean Troyer2bbcd682011-11-05 16:19:03 -05001008 if ! timeout $SERVICE_TIMEOUT sh -c "while ! wget -q -O- http://127.0.0.1:8774; do sleep 1; done"; then
James E. Blair92e81992011-10-11 09:26:29 -05001009 echo "nova-api did not start"
1010 exit 1
1011 fi
Anthony Youngd000b222011-09-19 14:46:53 -07001012fi
Brad Hall1bfa3d52011-10-27 18:18:20 -07001013
1014# Quantum
1015if [[ "$ENABLED_SERVICES" =~ "q-svc" ]]; then
Anthony Youngbdc254e2011-11-02 23:57:12 -05001016 # Install deps
Anthony Young0c3b60c2011-11-03 00:07:55 -05001017 # FIXME add to files/apts/quantum, but don't install if not needed!
Anthony Youngae7f2642011-11-03 00:03:53 -05001018 apt_get install openvswitch-switch openvswitch-datapath-dkms
Anthony Youngbdc254e2011-11-02 23:57:12 -05001019
Brad Hall1bfa3d52011-10-27 18:18:20 -07001020 # Create database for the plugin/agent
1021 if [[ "$Q_PLUGIN" = "openvswitch" ]]; then
1022 if [[ "$ENABLED_SERVICES" =~ "mysql" ]]; then
1023 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'CREATE DATABASE IF NOT EXISTS ovs_quantum;'
1024 else
Brad Halld9e544e2011-10-28 08:28:26 -07001025 echo "mysql must be enabled in order to use the $Q_PLUGIN Quantum plugin."
1026 exit 1
Brad Hall1bfa3d52011-10-27 18:18:20 -07001027 fi
1028 fi
1029
1030 QUANTUM_PLUGIN_INI_FILE=$QUANTUM_DIR/quantum/plugins.ini
1031 # Make sure we're using the openvswitch plugin
1032 sed -i -e "s/^provider =.*$/provider = quantum.plugins.openvswitch.ovs_quantum_plugin.OVSQuantumPlugin/g" $QUANTUM_PLUGIN_INI_FILE
1033 screen_it q-svc "cd $QUANTUM_DIR && export PYTHONPATH=.:$PYTHONPATH; python $QUANTUM_DIR/bin/quantum $QUANTUM_DIR/etc/quantum.conf"
1034fi
1035
1036# Quantum agent (for compute nodes)
1037if [[ "$ENABLED_SERVICES" =~ "q-agt" ]]; then
1038 if [[ "$Q_PLUGIN" = "openvswitch" ]]; then
1039 # Set up integration bridge
1040 OVS_BRIDGE=${OVS_BRIDGE:-br-int}
1041 sudo ovs-vsctl --no-wait -- --if-exists del-br $OVS_BRIDGE
1042 sudo ovs-vsctl --no-wait add-br $OVS_BRIDGE
1043 sudo ovs-vsctl --no-wait br-set-external-id $OVS_BRIDGE bridge-id br-int
1044 fi
1045
1046 # Start up the quantum <-> openvswitch agent
1047 screen_it q-agt "sleep 4; sudo python $QUANTUM_DIR/quantum/plugins/openvswitch/agent/ovs_quantum_agent.py $QUANTUM_DIR/quantum/plugins/openvswitch/ovs_quantum_plugin.ini -v"
1048fi
1049
Brad Halld9e544e2011-10-28 08:28:26 -07001050# If we're using Quantum (i.e. q-svc is enabled), network creation has to
1051# happen after we've started the Quantum service.
Brad Hall1bfa3d52011-10-27 18:18:20 -07001052if [[ "$ENABLED_SERVICES" =~ "mysql" ]]; then
1053 # create a small network
1054 $NOVA_DIR/bin/nova-manage network create private $FIXED_RANGE 1 $FIXED_NETWORK_SIZE
1055
1056 if [[ "$ENABLED_SERVICES" =~ "q-svc" ]]; then
1057 echo "Not creating floating IPs (not supported by QuantumManager)"
1058 else
1059 # create some floating ips
1060 $NOVA_DIR/bin/nova-manage floating create $FLOATING_RANGE
1061 fi
1062fi
1063
root40a37002011-09-20 18:06:14 +00001064# Launching nova-compute should be as simple as running ``nova-compute`` but
1065# have to do a little more than that in our script. Since we add the group
Jesse Andrews1f717602011-09-16 15:18:53 -07001066# ``libvirtd`` to our user in this script, when nova-compute is run it is
root40a37002011-09-20 18:06:14 +00001067# within the context of our original shell (so our groups won't be updated).
Scott Moser8ab1ade2011-10-07 21:03:16 -04001068# Use 'sg' to execute nova-compute as a member of the libvirtd group.
1069screen_it n-cpu "cd $NOVA_DIR && sg libvirtd $NOVA_DIR/bin/nova-compute"
Anthony Youngacff87a2011-10-20 10:12:58 -07001070screen_it n-vol "cd $NOVA_DIR && $NOVA_DIR/bin/nova-volume"
Anthony Young9bf3d762011-09-20 09:51:16 -07001071screen_it n-net "cd $NOVA_DIR && $NOVA_DIR/bin/nova-network"
1072screen_it n-sch "cd $NOVA_DIR && $NOVA_DIR/bin/nova-scheduler"
James E. Blaire7ce24f2011-11-10 13:05:13 -08001073if [[ "$ENABLED_SERVICES" =~ "n-vnc" ]]; then
1074 screen_it n-vnc "cd $NOVNC_DIR && ./utils/nova-wsproxy.py --flagfile $NOVA_DIR/bin/nova.conf --web . 6080"
1075fi
1076if [[ "$ENABLED_SERVICES" =~ "horizon" ]]; then
1077 screen_it horizon "cd $HORIZON_DIR && sudo tail -f /var/log/apache2/error.log"
1078fi
Jesse Andrews75a37652011-09-12 17:09:08 -07001079
Jesse Andrewsd74257d2011-09-13 01:24:50 -07001080# Install Images
1081# ==============
Jesse Andrewse49b8bd2011-09-12 18:08:04 -07001082
Anthony Young0ab1d462011-10-13 23:03:23 -07001083# Upload an image to glance.
Jesse Andrews5372f432011-10-03 01:08:24 -04001084#
Anthony Young0ab1d462011-10-13 23:03:23 -07001085# The default image is a small ***TTY*** testing image, which lets you login
1086# the username/password of root/password.
1087#
1088# TTY also uses cloud-init, supporting login via keypair and sending scripts as
1089# userdata. See https://help.ubuntu.com/community/CloudInit for more on cloud-init
1090#
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +01001091# Override ``IMAGE_URLS`` with a comma-separated list of uec images.
Jesse Andrewsaab7eae2011-10-19 10:30:19 -07001092#
1093# * **natty**: http://uec-images.ubuntu.com/natty/current/natty-server-cloudimg-amd64.tar.gz
1094# * **oneiric**: http://uec-images.ubuntu.com/oneiric/current/oneiric-server-cloudimg-amd64.tar.gz
Jesse Andrews08e8b742011-10-02 23:42:56 -04001095
Jesse Andrews85d9be32011-10-03 00:01:28 -04001096if [[ "$ENABLED_SERVICES" =~ "g-reg" ]]; then
Anthony Young7a8989e2011-10-14 10:20:30 -07001097 # Create a directory for the downloaded image tarballs.
Jesse Andrews08e8b742011-10-02 23:42:56 -04001098 mkdir -p $FILES/images
1099
Anthony Youngb62b4ca2011-10-26 22:29:08 -07001100 # Option to upload legacy ami-tty, which works with xenserver
1101 if [ $UPLOAD_LEGACY_TTY ]; then
1102 if [ ! -f $FILES/tty.tgz ]; then
1103 wget -c http://images.ansolabs.com/tty.tgz -O $FILES/tty.tgz
1104 fi
1105
1106 tar -zxf $FILES/tty.tgz -C $FILES/images
1107 RVAL=`glance add -A $SERVICE_TOKEN name="tty-kernel" is_public=true container_format=aki disk_format=aki < $FILES/images/aki-tty/image`
1108 KERNEL_ID=`echo $RVAL | cut -d":" -f2 | tr -d " "`
1109 RVAL=`glance add -A $SERVICE_TOKEN name="tty-ramdisk" is_public=true container_format=ari disk_format=ari < $FILES/images/ari-tty/image`
1110 RAMDISK_ID=`echo $RVAL | cut -d":" -f2 | tr -d " "`
1111 glance add -A $SERVICE_TOKEN name="tty" is_public=true container_format=ami disk_format=ami kernel_id=$KERNEL_ID ramdisk_id=$RAMDISK_ID < $FILES/images/ami-tty/image
1112 fi
1113
Anthony Young120f4862011-10-14 09:31:09 -07001114 for image_url in ${IMAGE_URLS//,/ }; do
1115 # Downloads the image (uec ami+aki style), then extracts it.
Jesse Andrewsac1831e2011-10-24 21:37:00 -07001116 IMAGE_FNAME=`basename "$image_url"`
Anthony Young216ad692011-10-25 00:10:21 -07001117 IMAGE_NAME=`basename "$IMAGE_FNAME" .tar.gz`
Anthony Young120f4862011-10-14 09:31:09 -07001118 if [ ! -f $FILES/$IMAGE_FNAME ]; then
1119 wget -c $image_url -O $FILES/$IMAGE_FNAME
1120 fi
Jesse Andrewse49b8bd2011-09-12 18:08:04 -07001121
Anthony Young120f4862011-10-14 09:31:09 -07001122 # Extract ami and aki files
1123 tar -zxf $FILES/$IMAGE_FNAME -C $FILES/images
Anthony Young70dc5e02011-09-15 16:52:43 -07001124
Anthony Young120f4862011-10-14 09:31:09 -07001125 # Use glance client to add the kernel the root filesystem.
1126 # We parse the results of the first upload to get the glance ID of the
1127 # kernel for use when uploading the root filesystem.
1128 RVAL=`glance add -A $SERVICE_TOKEN name="$IMAGE_NAME-kernel" is_public=true container_format=aki disk_format=aki < $FILES/images/$IMAGE_NAME-vmlinuz*`
1129 KERNEL_ID=`echo $RVAL | cut -d":" -f2 | tr -d " "`
1130 glance add -A $SERVICE_TOKEN name="$IMAGE_NAME" is_public=true container_format=ami disk_format=ami kernel_id=$KERNEL_ID < $FILES/images/$IMAGE_NAME.img
1131 done
Jesse Andrewse49b8bd2011-09-12 18:08:04 -07001132fi
Jesse Andrews24859062011-09-15 21:28:23 -07001133
Scott Moserb94f4bf2011-10-07 14:51:07 +00001134# Fin
1135# ===
1136
1137
1138) 2>&1 | tee "${LOGFILE}"
1139
1140# Check that the left side of the above pipe succeeded
1141for ret in "${PIPESTATUS[@]}"; do [ $ret -eq 0 ] || exit $ret; done
1142
1143(
Jesse Andrews24859062011-09-15 21:28:23 -07001144# Using the cloud
1145# ===============
1146
Jesse Andrewse19d8842011-11-01 20:06:55 -07001147echo ""
1148echo ""
1149echo ""
1150
Tres Henryca85b792011-10-28 14:00:21 -07001151# If you installed the horizon on this server, then you should be able
root40a37002011-09-20 18:06:14 +00001152# to access the site using your browser.
Tres Henryca85b792011-10-28 14:00:21 -07001153if [[ "$ENABLED_SERVICES" =~ "horizon" ]]; then
1154 echo "horizon is now available at http://$HOST_IP/"
Jesse Andrews24859062011-09-15 21:28:23 -07001155fi
1156
1157# If keystone is present, you can point nova cli to this server
1158if [[ "$ENABLED_SERVICES" =~ "key" ]]; then
1159 echo "keystone is serving at http://$HOST_IP:5000/v2.0/"
1160 echo "examples on using novaclient command line is in exercise.sh"
Jesse Andrews89358af2011-10-02 14:11:17 -04001161 echo "the default users are: admin and demo"
1162 echo "the password: $ADMIN_PASSWORD"
Jesse Andrews24859062011-09-15 21:28:23 -07001163fi
termie523c4052011-09-28 19:49:40 -05001164
Scott Moserc4e47ab2011-10-07 13:29:29 +00001165# indicate how long this took to run (bash maintained variable 'SECONDS')
Scott Moserb94f4bf2011-10-07 14:51:07 +00001166echo "stack.sh completed in $SECONDS seconds."
Scott Moser7c481182011-10-07 13:50:21 +00001167
Scott Moserb94f4bf2011-10-07 14:51:07 +00001168) | tee -a "$LOGFILE"