blob: 1d1f12e11610ec785ff3edc05d75e98ea0de25a6 [file] [log] [blame]
Jesse Andrewsba23cc72011-09-11 03:22:13 -07001#!/usr/bin/env bash
2
Dean Troyerc6c1d432012-03-27 20:59:22 -05003# ``stack.sh`` is an opinionated OpenStack developer installation. It
Chris Dente9a47502015-06-27 11:29:09 +00004# installs and configures various combinations of **Cinder**, **Glance**,
Sean Dague3336b4b2017-05-02 08:45:34 -04005# **Horizon**, **Keystone**, **Nova**, **Neutron**, and **Swift**
Jesse Andrewsba23cc72011-09-11 03:22:13 -07006
Brett Campbell27f29442014-02-19 18:23:16 -08007# This script's options can be changed by setting appropriate environment
8# variables. You can configure things like which git repositories to use,
9# services to enable, OS images to use, etc. Default values are located in the
10# ``stackrc`` file. If you are crafty you can run the script on multiple nodes
11# using shared settings for common resources (eg., mysql or rabbitmq) and build
12# a multi-node developer install.
Jesse Andrews782b9912011-10-02 16:53:21 -040013
Dean Troyer4a43b7b2012-08-28 17:43:40 -050014# To keep this script simple we assume you are running on a recent **Ubuntu**
Matt Riedemannff10ac32017-02-13 12:44:24 -050015# (16.04 Xenial or newer), **Fedora** (F24 or newer), or **CentOS/RHEL**
Martin Falatic5bee0cd2015-01-23 14:10:33 -080016# (7 or newer) machine. (It may work on other platforms but support for those
17# platforms is left to those who added them to DevStack.) It should work in
Dean Troyerdc97cb72015-03-28 08:20:50 -050018# a VM or physical server. Additionally, we maintain a list of ``deb`` and
Martin Falatic5bee0cd2015-01-23 14:10:33 -080019# ``rpm`` dependencies and other configuration files in this repo.
Jesse Andrews24859062011-09-15 21:28:23 -070020
Jesse Andrews0e7e8972011-10-02 16:36:54 -040021# Learn more and get the most recent version at http://devstack.org
Jesse Andrews6edd17f2011-09-15 22:19:42 -070022
Ian Wienandf0247ed2015-07-09 15:49:16 +100023# Print the commands being run so that we can see the command that triggers
24# an error. It is also useful for following along as the install occurs.
25set -o xtrace
26
Jason Dunsmore4e971112013-04-10 10:17:40 -050027# Make sure custom grep options don't get in the way
28unset GREP_OPTIONS
29
Clark Boyland095e972017-06-13 10:18:36 -070030# NOTE(sdague): why do we explicitly set locale when running stack.sh?
31#
32# Devstack is written in bash, and many functions used throughout
zhangbailin32608da2017-08-09 01:43:00 -070033# devstack process text coming off a command (like the ip command)
Clark Boyland095e972017-06-13 10:18:36 -070034# and do transforms using grep, sed, cut, awk on the strings that are
35# returned. Many of these programs are interationalized, which is
36# great for end users, but means that the strings that devstack
37# functions depend upon might not be there in other locales. We thus
38# need to pin the world to an english basis during the runs.
39#
40# Previously we used the C locale for this, every system has it, and
41# it gives us a stable sort order. It does however mean that we
42# effectively drop unicode support.... boo! :(
43#
44# With python3 being more unicode aware by default, that's not the
45# right option. While there is a C.utf8 locale, some distros are
46# shipping it as C.UTF8 for extra confusingness. And it's support
47# isn't super clear across distros. This is made more challenging when
48# trying to support both out of the box distros, and the gate which
49# uses diskimage builder to build disk images in a different way than
50# the distros do.
51#
52# So... en_US.utf8 it is. That's existed for a very long time. It is a
53# compromise position, but it is the least worse idea at the time of
54# this comment.
55#
56# We also have to unset other variables that might impact LC_ALL
57# taking effect.
Ian Wienand91626082016-08-04 15:17:38 +100058unset LANG
59unset LANGUAGE
Clark Boyland095e972017-06-13 10:18:36 -070060LC_ALL=en_US.utf8
Ian Wienand91626082016-08-04 15:17:38 +100061export LC_ALL
62
Brett Campbell27f29442014-02-19 18:23:16 -080063# Make sure umask is sane
64umask 022
65
Angus Lees7df9d1b2014-07-21 15:35:34 +100066# Not all distros have sbin in PATH for regular users.
67PATH=$PATH:/usr/local/sbin:/usr/sbin:/sbin
68
Dean Troyerdc97cb72015-03-28 08:20:50 -050069# Keep track of the DevStack directory
Jesse Andrews51fb22e2011-10-19 09:24:17 -070070TOP_DIR=$(cd $(dirname "$0") && pwd)
71
Sean Dague53753292014-12-04 19:38:15 -050072# Check for uninitialized variables, a big cause of bugs
73NOUNSET=${NOUNSET:-}
74if [[ -n "$NOUNSET" ]]; then
75 set -o nounset
76fi
77
Matthew Treinish4af2afc2015-10-13 09:51:17 -040078# Set start of devstack timestamp
79DEVSTACK_START_TIME=$(date +%s)
Dean Troyerdc97cb72015-03-28 08:20:50 -050080
81# Configuration
82# =============
83
Dean Troyerd3bf9bd2014-07-25 10:20:19 -050084# Sanity Checks
85# -------------
86
87# Clean up last environment var cache
88if [[ -r $TOP_DIR/.stackenv ]]; then
89 rm $TOP_DIR/.stackenv
90fi
91
Dean Troyerdc97cb72015-03-28 08:20:50 -050092# ``stack.sh`` keeps the list of ``deb`` and ``rpm`` dependencies, config
Dean Troyerd3bf9bd2014-07-25 10:20:19 -050093# templates and other useful files in the ``files`` subdirectory
94FILES=$TOP_DIR/files
95if [ ! -d $FILES ]; then
96 die $LINENO "missing devstack/files"
97fi
98
99# ``stack.sh`` keeps function libraries here
Dean Troyerdc97cb72015-03-28 08:20:50 -0500100# Make sure ``$TOP_DIR/inc`` directory is present
101if [ ! -d $TOP_DIR/inc ]; then
102 die $LINENO "missing devstack/inc"
103fi
104
105# ``stack.sh`` keeps project libraries here
Dean Troyerd3bf9bd2014-07-25 10:20:19 -0500106# Make sure ``$TOP_DIR/lib`` directory is present
107if [ ! -d $TOP_DIR/lib ]; then
108 die $LINENO "missing devstack/lib"
109fi
110
Dean Troyerdc97cb72015-03-28 08:20:50 -0500111# Check if run in POSIX shell
112if [[ "${POSIXLY_CORRECT}" == "y" ]]; then
Ian Wienand1afc28b2015-11-27 14:15:56 +1100113 set +o xtrace
Dean Troyerdc97cb72015-03-28 08:20:50 -0500114 echo "You are running POSIX compatibility mode, DevStack requires bash 4.2 or newer."
115 exit 1
116fi
117
Dean Troyerd3bf9bd2014-07-25 10:20:19 -0500118# OpenStack is designed to be run as a non-root user; Horizon will fail to run
119# as **root** since Apache will not serve content from **root** user).
120# ``stack.sh`` must not be run as **root**. It aborts and suggests one course of
121# action to create a suitable user account.
122
123if [[ $EUID -eq 0 ]]; then
Ian Wienand1afc28b2015-11-27 14:15:56 +1100124 set +o xtrace
125 echo "DevStack should be run as a user with sudo permissions, "
126 echo "not root."
127 echo "A \"stack\" user configured correctly can be created with:"
128 echo " $TOP_DIR/tools/create-stack-user.sh"
Dean Troyerd3bf9bd2014-07-25 10:20:19 -0500129 exit 1
130fi
131
Sean Dague90dd2622015-11-10 12:22:03 -0500132# OpenStack is designed to run at a system level, with system level
133# installation of python packages. It does not support running under a
134# virtual env, and will fail in really odd ways if you do this. Make
135# this explicit as it has come up on the mailing list.
136if [[ -n "$VIRTUAL_ENV" ]]; then
Ian Wienand1afc28b2015-11-27 14:15:56 +1100137 set +o xtrace
Sean Dague90dd2622015-11-10 12:22:03 -0500138 echo "You appear to be running under a python virtualenv."
Jordan Pittierc1750402015-11-12 11:03:20 +0100139 echo "DevStack does not support this, as we may break the"
Sean Dague90dd2622015-11-10 12:22:03 -0500140 echo "virtualenv you are currently in by modifying "
141 echo "external system-level components the virtualenv relies on."
Jordan Pittierc1750402015-11-12 11:03:20 +0100142 echo "We recommend you use a separate virtual-machine if "
Sean Dague90dd2622015-11-10 12:22:03 -0500143 echo "you are worried about DevStack taking over your system."
144 exit 1
145fi
146
Sean Dague56037e92015-10-08 12:27:07 -0400147# Provide a safety switch for devstack. If you do a lot of devstack,
148# on a lot of different environments, you sometimes run it on the
149# wrong box. This makes there be a way to prevent that.
150if [[ -e $HOME/.no-devstack ]]; then
Ian Wienand1afc28b2015-11-27 14:15:56 +1100151 set +o xtrace
Sean Dague56037e92015-10-08 12:27:07 -0400152 echo "You've marked this host as a no-devstack host, to save yourself from"
153 echo "running devstack accidentally. If this is in error, please remove the"
154 echo "~/.no-devstack file"
155 exit 1
156fi
Attila Fazekasd9de1192015-03-26 09:25:02 +0100157
Dean Troyerd3bf9bd2014-07-25 10:20:19 -0500158# Prepare the environment
159# -----------------------
160
Sean Dague53753292014-12-04 19:38:15 -0500161# Initialize variables:
162LAST_SPINNER_PID=""
163
Dean Troyer6563a3c2012-01-31 12:11:56 -0600164# Import common functions
Dean Troyerc6c1d432012-03-27 20:59:22 -0500165source $TOP_DIR/functions
Dean Troyer6563a3c2012-01-31 12:11:56 -0600166
Dean Troyer893e6632013-09-13 15:05:51 -0500167# Import config functions
Dean Troyerbf2ad702015-03-09 15:16:10 -0500168source $TOP_DIR/inc/meta-config
Dean Troyer893e6632013-09-13 15:05:51 -0500169
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600170# Import 'public' stack.sh functions
171source $TOP_DIR/lib/stack
172
Dean Troyerc6c1d432012-03-27 20:59:22 -0500173# Determine what system we are running on. This provides ``os_VENDOR``,
Ian Wienand7710e7f2014-08-27 16:15:32 +1000174# ``os_RELEASE``, ``os_PACKAGE``, ``os_CODENAME``
Dean Troyera9e0a482012-07-09 14:07:23 -0500175# and ``DISTRO``
176GetDistro
Jesse Andrews6edd17f2011-09-15 22:19:42 -0700177
Dean Troyerdc97cb72015-03-28 08:20:50 -0500178
Dean Troyer48352ee2012-12-12 12:50:38 -0600179# Global Settings
Dean Troyer0e8dced2014-07-25 10:33:21 -0500180# ---------------
Scott Moserf9da5082011-10-07 21:28:00 -0400181
Dean Troyer893e6632013-09-13 15:05:51 -0500182# Check for a ``localrc`` section embedded in ``local.conf`` and extract if
183# ``localrc`` does not already exist
184
185# Phase: local
186rm -f $TOP_DIR/.localrc.auto
Huan Xiecc6af3f2015-12-23 02:17:01 +0000187extract_localrc_section $TOP_DIR/local.conf $TOP_DIR/localrc $TOP_DIR/.localrc.auto
Dean Troyer893e6632013-09-13 15:05:51 -0500188
Dean Troyer1a6d4492013-06-03 16:47:36 -0500189# ``stack.sh`` is customizable by setting environment variables. Override a
Leticia Wanderley7f806492017-04-06 20:40:19 -0300190# default setting via export:
Scott Moserf9da5082011-10-07 21:28:00 -0400191#
Terry Wilson428af5a2012-11-01 16:12:39 -0400192# export DATABASE_PASSWORD=anothersecret
Scott Moserf9da5082011-10-07 21:28:00 -0400193# ./stack.sh
194#
Leticia Wanderley7f806492017-04-06 20:40:19 -0300195# or by setting the variable on the command line:
Scott Moserf9da5082011-10-07 21:28:00 -0400196#
Dean Troyer1a6d4492013-06-03 16:47:36 -0500197# DATABASE_PASSWORD=simple ./stack.sh
198#
Leticia Wanderley7f806492017-04-06 20:40:19 -0300199# Persistent variables can be placed in a ``local.conf`` file:
Scott Moserf9da5082011-10-07 21:28:00 -0400200#
Dean Troyerdc97cb72015-03-28 08:20:50 -0500201# [[local|localrc]]
Terry Wilson428af5a2012-11-01 16:12:39 -0400202# DATABASE_PASSWORD=anothersecret
203# DATABASE_USER=hellaroot
Scott Moserf9da5082011-10-07 21:28:00 -0400204#
205# We try to have sensible defaults, so you should be able to run ``./stack.sh``
Dean Troyerdc97cb72015-03-28 08:20:50 -0500206# in most cases. ``local.conf`` is not distributed with DevStack and will never
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500207# be overwritten by a DevStack update.
Scott Moserf9da5082011-10-07 21:28:00 -0400208#
Dean Troyerdf0972c2012-03-07 17:31:03 -0600209# DevStack distributes ``stackrc`` which contains locations for the OpenStack
Dean Troyercc6b4432013-04-08 15:38:03 -0500210# repositories, branches to configure, and other configuration defaults.
Dean Troyerdc97cb72015-03-28 08:20:50 -0500211# ``stackrc`` sources the ``localrc`` section of ``local.conf`` to allow you to
212# safely override those settings.
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500213
Dean Troyerbbafb1b2012-06-11 16:51:39 -0500214if [[ ! -r $TOP_DIR/stackrc ]]; then
Dean Troyer14fd9792014-07-25 10:34:11 -0500215 die $LINENO "missing $TOP_DIR/stackrc - did you grab more than just stack.sh?"
Dean Troyerbbafb1b2012-06-11 16:51:39 -0500216fi
217source $TOP_DIR/stackrc
Dean Troyerdf0972c2012-03-07 17:31:03 -0600218
Ian Wienand07cbc442017-06-30 12:29:19 +1000219# write /etc/devstack-version
Sean Dague2c0faca2017-06-28 09:13:04 -0400220write_devstack_version
221
Ian Wienandc973e6c2014-11-05 09:52:27 +1100222# Warn users who aren't on an explicitly supported distro, but allow them to
223# override check and attempt installation with ``FORCE=yes ./stack``
Attila Fazekas9fd38e72017-12-11 12:20:25 +0100224if [[ ! ${DISTRO} =~ (xenial|zesty|artful|stretch|jessie|f25|f26|f27|opensuse-42.2|opensuse-42.3|rhel7) ]]; then
Ian Wienandc973e6c2014-11-05 09:52:27 +1100225 echo "WARNING: this script has not been tested on $DISTRO"
226 if [[ "$FORCE" != "yes" ]]; then
227 die $LINENO "If you wish to run this script anyway run with FORCE=yes"
228 fi
229fi
230
Dean Troyer48352ee2012-12-12 12:50:38 -0600231# Local Settings
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500232# --------------
233
Dean Troyer48352ee2012-12-12 12:50:38 -0600234# Make sure the proxy config is visible to sub-processes
235export_proxy_variables
Scott Moserf9da5082011-10-07 21:28:00 -0400236
Dean Troyerdc97cb72015-03-28 08:20:50 -0500237# Remove services which were negated in ``ENABLED_SERVICES``
Joe Gordon6fd28112012-11-13 16:55:41 -0800238# using the "-" prefix (e.g., "-rabbit") instead of
Doug Hellmannf04178f2012-07-05 17:10:03 -0400239# calling disable_service().
240disable_negated_services
Chmouel Boudjnahc4cd4142012-06-27 11:01:40 +0200241
Dean Troyera79617c2014-04-13 18:16:54 -0500242
Dean Troyerd3bf9bd2014-07-25 10:20:19 -0500243# Configure sudo
244# --------------
Dean Troyer9122e7b2011-10-17 14:07:11 -0500245
Dean Troyerdc97cb72015-03-28 08:20:50 -0500246# We're not as **root** so make sure ``sudo`` is available
Dean Troyer23f69d82013-10-04 12:35:24 -0500247is_package_installed sudo || install_package sudo
248
249# UEC images ``/etc/sudoers`` does not have a ``#includedir``, add one
250sudo grep -q "^#includedir.*/etc/sudoers.d" /etc/sudoers ||
251 echo "#includedir /etc/sudoers.d" | sudo tee -a /etc/sudoers
252
Sean Dagueb0160d02015-06-23 12:53:51 -0400253# Conditionally setup detailed logging for sudo
254if [[ -n "$LOG_SUDO" ]]; then
255 TEMPFILE=`mktemp`
256 echo "Defaults log_output" > $TEMPFILE
257 chmod 0440 $TEMPFILE
258 sudo chown root:root $TEMPFILE
259 sudo mv $TEMPFILE /etc/sudoers.d/00_logging
260fi
261
Dean Troyerdc97cb72015-03-28 08:20:50 -0500262# Set up DevStack sudoers
Dean Troyer23f69d82013-10-04 12:35:24 -0500263TEMPFILE=`mktemp`
264echo "$STACK_USER ALL=(root) NOPASSWD:ALL" >$TEMPFILE
Dean Troyerdc97cb72015-03-28 08:20:50 -0500265# Some binaries might be under ``/sbin`` or ``/usr/sbin``, so make sure sudo will
266# see them by forcing ``PATH``
Dean Troyer23f69d82013-10-04 12:35:24 -0500267echo "Defaults:$STACK_USER secure_path=/sbin:/usr/sbin:/usr/bin:/bin:/usr/local/sbin:/usr/local/bin" >> $TEMPFILE
Adam Gandelmanea2fcb52014-03-17 16:37:56 -0700268echo "Defaults:$STACK_USER !requiretty" >> $TEMPFILE
Dean Troyer23f69d82013-10-04 12:35:24 -0500269chmod 0440 $TEMPFILE
270sudo chown root:root $TEMPFILE
271sudo mv $TEMPFILE /etc/sudoers.d/50_stack_sh
272
Dean Troyer0e8dced2014-07-25 10:33:21 -0500273
274# Configure Distro Repositories
275# -----------------------------
Ian Wienand531aeb72014-02-28 11:24:29 +1100276
Dean Troyerdc97cb72015-03-28 08:20:50 -0500277# For Debian/Ubuntu make apt attempt to retry network ops on it's own
Sean Daguee83f7782014-06-23 08:11:05 -0400278if is_ubuntu; then
Chmouel Boudjnah9246d962014-06-30 12:52:51 +0000279 echo 'APT::Acquire::Retries "20";' | sudo tee /etc/apt/apt.conf.d/80retry >/dev/null
Sean Daguee83f7782014-06-23 08:11:05 -0400280fi
281
Ian Wienand531aeb72014-02-28 11:24:29 +1100282# Some distros need to add repos beyond the defaults provided by the vendor
283# to pick up required packages.
284
Ian Wienanddc04b5a2017-12-04 11:32:36 +1100285function _install_epel {
Dean Troyerdc97cb72015-03-28 08:20:50 -0500286 # NOTE: We always remove and install latest -- some environments
Ian Wienanded077b22014-10-22 11:35:29 +1100287 # use snapshot images, and if EPEL version updates they break
288 # unless we update them to latest version.
289 if sudo yum repolist enabled epel | grep -q 'epel'; then
290 uninstall_package epel-release || true
291 fi
292
293 # This trick installs the latest epel-release from a bootstrap
294 # repo, then removes itself (as epel-release installed the
295 # "real" repo).
296 #
Dean Troyerdc97cb72015-03-28 08:20:50 -0500297 # You would think that rather than this, you could use
Ian Wienanded077b22014-10-22 11:35:29 +1100298 # $releasever directly in .repo file we create below. However
299 # RHEL gives a $releasever of "6Server" which breaks the path;
300 # see https://bugzilla.redhat.com/show_bug.cgi?id=1150759
Ian Wienanded077b22014-10-22 11:35:29 +1100301 cat <<EOF | sudo tee /etc/yum.repos.d/epel-bootstrap.repo
302[epel-bootstrap]
Ian Wienand3682b6d2014-10-08 15:37:23 +1100303name=Bootstrap EPEL
Attila Fazekas1f316be2015-01-26 16:39:57 +0100304mirrorlist=http://mirrors.fedoraproject.org/mirrorlist?repo=epel-7&arch=\$basearch
Ian Wienand3682b6d2014-10-08 15:37:23 +1100305failovermethod=priority
306enabled=0
307gpgcheck=0
308EOF
Noboru Iwamatsua67ef002015-02-27 13:34:12 +0900309 # Enable a bootstrap repo. It is removed after finishing
310 # the epel-release installation.
Matt Riedemann2f63da92015-06-21 09:02:59 -0700311 is_package_installed yum-utils || install_package yum-utils
Noboru Iwamatsua67ef002015-02-27 13:34:12 +0900312 sudo yum-config-manager --enable epel-bootstrap
313 yum_install epel-release || \
Ian Wienanded077b22014-10-22 11:35:29 +1100314 die $LINENO "Error installing EPEL repo, cannot continue"
Ian Wienanded077b22014-10-22 11:35:29 +1100315 sudo rm -f /etc/yum.repos.d/epel-bootstrap.repo
Ian Wienanddc04b5a2017-12-04 11:32:36 +1100316}
Ian Wienand531aeb72014-02-28 11:24:29 +1100317
Ian Wienanddc04b5a2017-12-04 11:32:36 +1100318function _install_rdo {
319 # There are multiple options for this, including using CloudSIG
320 # repositories (centos-release-*), trunk versions, etc. Since
321 # we're not interested in the actual openstack distributions
322 # (since we're using git to run!) but only peripherial packages
323 # like kvm or ovs, this has been reliable.
324
325 # TODO(ianw): figure out how to best mirror -- probably use infra
326 # mirror RDO reverse proxy. We could either have test
327 # infrastructure set it up disabled like EPEL, or fiddle it here.
328 # Per the point above, it's a bunch of repos so starts getting a
329 # little messy...
330 if ! is_package_installed rdo-release ; then
331 yum_install https://rdoproject.org/repos/rdo-release.rpm
332 fi
333
334 # Also enable optional for RHEL7 proper. Note this is a silent
335 # no-op on other platforms.
Attila Fazekas1f316be2015-01-26 16:39:57 +0100336 sudo yum-config-manager --enable rhel-7-server-optional-rpms
Zhang Jinnanfc994262014-12-14 19:19:53 -0500337
Wiekus Beukesec47bc12015-03-19 08:20:38 -0700338 if is_oraclelinux; then
339 sudo yum-config-manager --enable ol7_optional_latest ol7_addons ol7_MySQL56
340 fi
Ian Wienand95a9ff02015-11-12 14:49:20 +1100341}
Wiekus Beukesec47bc12015-03-19 08:20:38 -0700342
Dean Troyer0e8dced2014-07-25 10:33:21 -0500343
344# Configure Target Directories
345# ----------------------------
346
347# Destination path for installation ``DEST``
348DEST=${DEST:-/opt/stack}
Dean Troyer23f69d82013-10-04 12:35:24 -0500349
Dean Troyere26232b2012-06-27 17:55:15 -0500350# Create the destination directory and ensure it is writable by the user
Bob Ball376b6312013-07-29 13:10:25 +0100351# and read/executable by everybody for daemons (e.g. apache run for horizon)
Dean Troyere26232b2012-06-27 17:55:15 -0500352sudo mkdir -p $DEST
Doug Hellmanne7002672013-09-05 08:10:07 -0400353safe_chown -R $STACK_USER $DEST
354safe_chmod 0755 $DEST
Dean Troyere26232b2012-06-27 17:55:15 -0500355
Ihar Hrachyshka09a3e712016-01-13 11:35:12 +0100356# Destination path for devstack logs
357if [[ -n ${LOGDIR:-} ]]; then
358 mkdir -p $LOGDIR
359fi
360
Dean Troyer0e8dced2014-07-25 10:33:21 -0500361# Destination path for service data
362DATA_DIR=${DATA_DIR:-${DEST}/data}
363sudo mkdir -p $DATA_DIR
364safe_chown -R $STACK_USER $DATA_DIR
Hongbin Lu571ba8b2017-03-29 22:06:54 -0400365safe_chmod 0755 $DATA_DIR
Dean Troyer0e8dced2014-07-25 10:33:21 -0500366
367# Configure proper hostname
Ben Nemec3ee52c82013-12-12 19:26:12 +0000368# Certain services such as rabbitmq require that the local hostname resolves
369# correctly. Make sure it exists in /etc/hosts so that is always true.
370LOCAL_HOSTNAME=`hostname -s`
371if [ -z "`grep ^127.0.0.1 /etc/hosts | grep $LOCAL_HOSTNAME`" ]; then
372 sudo sed -i "s/\(^127.0.0.1.*\)/\1 $LOCAL_HOSTNAME/" /etc/hosts
373fi
374
Ihar Hrachyshka09a3e712016-01-13 11:35:12 +0100375# If you have all the repos installed above already setup (e.g. a CI
376# situation where they are on your image) you may choose to skip this
377# to speed things up
378SKIP_EPEL_INSTALL=$(trueorfalse False SKIP_EPEL_INSTALL)
379
Ian Wienanddc04b5a2017-12-04 11:32:36 +1100380if [[ $DISTRO == "rhel7" ]]; then
381 # If we have /etc/ci/mirror_info.sh assume we're on a OpenStack CI
382 # node, where EPEL is installed (but disabled) and already
383 # pointing at our internal mirror
384 if [[ -f /etc/ci/mirror_info.sh ]]; then
385 SKIP_EPEL_INSTALL=True
Paul Belangerbc4b8eb2017-04-13 15:06:36 -0400386 sudo yum-config-manager --enable epel
387 fi
Ian Wienandbda194a2016-05-18 10:42:56 +1000388
Ian Wienanddc04b5a2017-12-04 11:32:36 +1100389 if [[ ${SKIP_EPEL_INSTALL} != True ]]; then
390 _install_epel
391 fi
392 # Along with EPEL, CentOS (and a-likes) require some packages only
393 # available in RDO repositories (e.g. OVS, or later versions of
394 # kvm) to run.
395 _install_rdo
Ihar Hrachyshka09a3e712016-01-13 11:35:12 +0100396fi
397
Attila Fazekasadcf40d2015-11-05 09:47:38 +0100398# Ensure python is installed
399# --------------------------
400is_package_installed python || install_package python
401
Ian Wienand531aeb72014-02-28 11:24:29 +1100402
Dean Troyerffd17682014-08-02 16:07:03 -0500403# Configure Logging
404# -----------------
405
406# Set up logging level
Sean Dague53753292014-12-04 19:38:15 -0500407VERBOSE=$(trueorfalse True VERBOSE)
Ian Wienand83ecb972018-02-06 10:03:34 +1100408VERBOSE_NO_TIMESTAMP=$(trueorfalse False VERBOSE)
Dean Troyerffd17682014-08-02 16:07:03 -0500409
410# Draw a spinner so the user knows something is happening
411function spinner {
412 local delay=0.75
413 local spinstr='/-\|'
414 printf "..." >&3
415 while [ true ]; do
416 local temp=${spinstr#?}
417 printf "[%c]" "$spinstr" >&3
418 local spinstr=$temp${spinstr%"$temp"}
419 sleep $delay
420 printf "\b\b\b" >&3
421 done
422}
423
424function kill_spinner {
425 if [ ! -z "$LAST_SPINNER_PID" ]; then
426 kill >/dev/null 2>&1 $LAST_SPINNER_PID
427 printf "\b\b\bdone\n" >&3
428 fi
429}
430
431# Echo text to the log file, summary log file and stdout
432# echo_summary "something to say"
433function echo_summary {
434 if [[ -t 3 && "$VERBOSE" != "True" ]]; then
435 kill_spinner
436 echo -n -e $@ >&6
437 spinner &
438 LAST_SPINNER_PID=$!
439 else
440 echo -e $@ >&6
441 fi
442}
443
444# Echo text only to stdout, no log files
445# echo_nolog "something not for the logs"
446function echo_nolog {
447 echo $@ >&3
448}
449
Dean Troyerffd17682014-08-02 16:07:03 -0500450# Set up logging for ``stack.sh``
451# Set ``LOGFILE`` to turn on logging
452# Append '.xxxxxxxx' to the given name to maintain history
453# where 'xxxxxxxx' is a representation of the date the file was created
454TIMESTAMP_FORMAT=${TIMESTAMP_FORMAT:-"%F-%H%M%S"}
Dean Troyerdde41d02014-12-09 17:47:57 -0600455LOGDAYS=${LOGDAYS:-7}
456CURRENT_LOG_TIME=$(date "+$TIMESTAMP_FORMAT")
Dean Troyerffd17682014-08-02 16:07:03 -0500457
458if [[ -n "$LOGFILE" ]]; then
Dean Troyerad5cc982014-12-10 16:35:32 -0600459 # Clean up old log files. Append '.*' to the user-specified
460 # ``LOGFILE`` to match the date in the search template.
Mikhail S Medvedevfc9cc962015-01-20 11:04:48 -0600461 LOGFILE_DIR="${LOGFILE%/*}" # dirname
462 LOGFILE_NAME="${LOGFILE##*/}" # basename
463 mkdir -p $LOGFILE_DIR
464 find $LOGFILE_DIR -maxdepth 1 -name $LOGFILE_NAME.\* -mtime +$LOGDAYS -exec rm {} \;
Dean Troyerffd17682014-08-02 16:07:03 -0500465 LOGFILE=$LOGFILE.${CURRENT_LOG_TIME}
Dean Troyerad5cc982014-12-10 16:35:32 -0600466 SUMFILE=$LOGFILE.summary.${CURRENT_LOG_TIME}
Dean Troyerffd17682014-08-02 16:07:03 -0500467
468 # Redirect output according to config
469
470 # Set fd 3 to a copy of stdout. So we can set fd 1 without losing
471 # stdout later.
472 exec 3>&1
473 if [[ "$VERBOSE" == "True" ]]; then
Ian Wienand83ecb972018-02-06 10:03:34 +1100474 _of_args="-v"
475 if [[ "$VERBOSE_NO_TIMESTAMP" == "True" ]]; then
476 _of_args="$_of_args --no-timestamp"
477 fi
Dean Troyerffd17682014-08-02 16:07:03 -0500478 # Set fd 1 and 2 to write the log file
Ian Wienand83ecb972018-02-06 10:03:34 +1100479 exec 1> >( $TOP_DIR/tools/outfilter.py $_of_args -o "${LOGFILE}" ) 2>&1
Dean Troyerffd17682014-08-02 16:07:03 -0500480 # Set fd 6 to summary log file
481 exec 6> >( $TOP_DIR/tools/outfilter.py -o "${SUMFILE}" )
482 else
483 # Set fd 1 and 2 to primary logfile
484 exec 1> >( $TOP_DIR/tools/outfilter.py -o "${LOGFILE}" ) 2>&1
485 # Set fd 6 to summary logfile and stdout
486 exec 6> >( $TOP_DIR/tools/outfilter.py -v -o "${SUMFILE}" >&3 )
487 fi
488
489 echo_summary "stack.sh log $LOGFILE"
490 # Specified logfile name always links to the most recent log
Mikhail S Medvedevfc9cc962015-01-20 11:04:48 -0600491 ln -sf $LOGFILE $LOGFILE_DIR/$LOGFILE_NAME
492 ln -sf $SUMFILE $LOGFILE_DIR/$LOGFILE_NAME.summary
Dean Troyerffd17682014-08-02 16:07:03 -0500493else
494 # Set up output redirection without log files
495 # Set fd 3 to a copy of stdout. So we can set fd 1 without losing
496 # stdout later.
497 exec 3>&1
498 if [[ "$VERBOSE" != "True" ]]; then
499 # Throw away stdout and stderr
500 exec 1>/dev/null 2>&1
501 fi
502 # Always send summary fd to original stdout
503 exec 6> >( $TOP_DIR/tools/outfilter.py -v >&3 )
504fi
505
Einst Crazy9e11e092015-09-29 20:01:44 +0800506# Basic test for ``$DEST`` path permissions (fatal on error unless skipped)
507check_path_perm_sanity ${DEST}
Dean Troyerffd17682014-08-02 16:07:03 -0500508
509# Configure Error Traps
510# ---------------------
511
512# Kill background processes on exit
513trap exit_trap EXIT
514function exit_trap {
515 local r=$?
516 jobs=$(jobs -p)
517 # Only do the kill when we're logging through a process substitution,
518 # which currently is only to verbose logfile
519 if [[ -n $jobs && -n "$LOGFILE" && "$VERBOSE" == "True" ]]; then
520 echo "exit_trap: cleaning up child processes"
521 kill 2>&1 $jobs
522 fi
523
Sean Dague85cf2932017-03-27 15:35:13 -0400524 #Remove timing data file
525 if [ -f "$OSCWRAP_TIMER_FILE" ] ; then
526 rm "$OSCWRAP_TIMER_FILE"
527 fi
528
Dean Troyerffd17682014-08-02 16:07:03 -0500529 # Kill the last spinner process
530 kill_spinner
531
532 if [[ $r -ne 0 ]]; then
533 echo "Error on exit"
Monty Taylor03ae3c42017-09-19 14:22:19 -0500534 # If we error before we've installed os-testr, this will fail.
Monty Taylorcbd5f4e2017-09-10 15:00:29 -0600535 if type -p generate-subunit > /dev/null; then
536 generate-subunit $DEVSTACK_START_TIME $SECONDS 'fail' >> ${SUBUNIT_OUTPUT}
537 fi
Dean Troyerffd17682014-08-02 16:07:03 -0500538 if [[ -z $LOGDIR ]]; then
539 $TOP_DIR/tools/worlddump.py
540 else
541 $TOP_DIR/tools/worlddump.py -d $LOGDIR
542 fi
Matthew Treinish4af2afc2015-10-13 09:51:17 -0400543 else
Monty Taylor03ae3c42017-09-19 14:22:19 -0500544 # If we error before we've installed os-testr, this will fail.
Monty Taylorcbd5f4e2017-09-10 15:00:29 -0600545 if type -p generate-subunit > /dev/null; then
546 generate-subunit $DEVSTACK_START_TIME $SECONDS >> ${SUBUNIT_OUTPUT}
547 fi
Dean Troyerffd17682014-08-02 16:07:03 -0500548 fi
549
550 exit $r
551}
552
553# Exit on any errors so that errors don't compound
554trap err_trap ERR
555function err_trap {
556 local r=$?
557 set +o xtrace
558 if [[ -n "$LOGFILE" ]]; then
559 echo "${0##*/} failed: full log in $LOGFILE"
560 else
561 echo "${0##*/} failed"
562 fi
563 exit $r
564}
565
566# Begin trapping error exit codes
567set -o errexit
568
Dean Troyerdc97cb72015-03-28 08:20:50 -0500569# Print the kernel version
570uname -a
571
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +1000572# Reset the bundle of CA certificates
573SSL_BUNDLE_FILE="$DATA_DIR/ca-bundle.pem"
574rm -f $SSL_BUNDLE_FILE
575
Dean Troyer0e8dced2014-07-25 10:33:21 -0500576# Import common services (database, message queue) configuration
577source $TOP_DIR/lib/database
578source $TOP_DIR/lib/rpc_backend
579
Dean Troyerd81a0272012-08-31 18:04:55 -0500580# Configure Projects
581# ==================
582
Bharat Kumar Kobagana7b9341e2015-03-30 11:58:10 +0530583# Clone all external plugins
584fetch_plugins
585
Wei Jiangang2af69152015-09-08 18:03:22 +0800586# Plugin Phase 0: override_defaults - allow plugins to override
Sean Dague6e275e12015-03-26 05:54:28 -0400587# defaults before other services are run
588run_phase override_defaults
589
Dean Troyerdc97cb72015-03-28 08:20:50 -0500590# Import Apache functions
zhang-hared98a5d02013-06-21 18:18:02 +0800591source $TOP_DIR/lib/apache
Brant Knudson0049c0c2014-01-16 18:16:48 -0600592
593# Import TLS functions
Dean Troyerc83a7e12012-11-29 11:47:58 -0600594source $TOP_DIR/lib/tls
Brant Knudson0049c0c2014-01-16 18:16:48 -0600595
596# Source project function libraries
Sean Dague0392a102013-07-31 13:07:45 -0400597source $TOP_DIR/lib/infra
Sean Dague3ed99c02017-06-20 14:09:30 -0400598source $TOP_DIR/lib/libraries
Daniel Genind4708672014-10-31 15:01:29 -0400599source $TOP_DIR/lib/lvm
Sean Dagueb562e6a2012-11-19 16:00:01 -0500600source $TOP_DIR/lib/horizon
Dean Troyerd81a0272012-08-31 18:04:55 -0500601source $TOP_DIR/lib/keystone
Dean Troyer73f6f252012-09-17 11:22:21 -0500602source $TOP_DIR/lib/glance
Dean Troyerbf67c192012-09-21 15:09:37 -0500603source $TOP_DIR/lib/nova
Chris Dent4d601752016-07-12 19:34:09 +0000604source $TOP_DIR/lib/placement
Dean Troyerd81a0272012-08-31 18:04:55 -0500605source $TOP_DIR/lib/cinder
Attila Fazekasece6a332012-11-29 14:19:41 +0100606source $TOP_DIR/lib/swift
Sean M. Collins2a242512016-05-03 09:03:09 -0400607source $TOP_DIR/lib/neutron
Brad Topolf127e2f2013-01-22 10:17:50 -0600608source $TOP_DIR/lib/ldap
Joe Gordone0b08d02014-08-20 00:34:55 -0700609source $TOP_DIR/lib/dstat
Davanum Srinivas546656f2017-03-14 07:05:19 -0400610source $TOP_DIR/lib/etcd3
Dean Troyerd81a0272012-08-31 18:04:55 -0500611
Dean Troyercdf3d762013-10-15 09:42:43 -0500612# Extras Source
613# --------------
614
615# Phase: source
Sean Dague2c65e712014-12-18 09:44:56 -0500616run_phase source
Dean Troyercdf3d762013-10-15 09:42:43 -0500617
Chris Dentc6d47012015-10-09 14:57:05 +0000618
Dean Troyerb7490da2013-03-18 16:07:56 -0500619# Interactive Configuration
620# -------------------------
621
622# Do all interactive config up front before the logging spew begins
James E. Blair213c4162012-11-06 09:38:36 +0100623
Anthony Young7a549f42011-10-12 07:13:13 +0000624# Generic helper to configure passwords
625function read_password {
Ian Wienand523f4882015-10-13 11:03:03 +1100626 local xtrace
627 xtrace=$(set +o | grep xtrace)
Anthony Young7a549f42011-10-12 07:13:13 +0000628 set +o xtrace
629 var=$1; msg=$2
630 pw=${!var}
631
Sahid Orentino Ferdjaoui9e032c22014-02-10 11:36:25 +0100632 if [[ -f $RC_DIR/localrc ]]; then
633 localrc=$TOP_DIR/localrc
634 else
Ian Wienand975f4202015-10-14 15:12:32 +1100635 localrc=$TOP_DIR/.localrc.password
Sahid Orentino Ferdjaoui9e032c22014-02-10 11:36:25 +0100636 fi
Anthony Young6015c822011-10-12 07:17:11 +0000637
Anthony Young7a549f42011-10-12 07:13:13 +0000638 # If the password is not defined yet, proceed to prompt user for a password.
639 if [ ! $pw ]; then
640 # If there is no localrc file, create one
Anthony Youngb4db2252011-10-12 14:08:08 -0700641 if [ ! -e $localrc ]; then
642 touch $localrc
Anthony Young7a549f42011-10-12 07:13:13 +0000643 fi
644
Ian Wienand975f4202015-10-14 15:12:32 +1100645 # Presumably if we got this far it can only be that our
646 # localrc is missing the required password. Prompt user for a
647 # password and write to localrc.
648
Anthony Youngb4db2252011-10-12 14:08:08 -0700649 echo ''
650 echo '################################################################################'
651 echo $msg
652 echo '################################################################################'
Ian Wienand975f4202015-10-14 15:12:32 +1100653 echo "This value will be written to ${localrc} file so you don't have to enter it "
Dean Troyer4e6a2b72011-12-29 17:27:45 -0600654 echo "again. Use only alphanumeric characters."
Anthony Youngb4db2252011-10-12 14:08:08 -0700655 echo "If you leave this blank, a random default value will be used."
Dean Troyer4e6a2b72011-12-29 17:27:45 -0600656 pw=" "
657 while true; do
658 echo "Enter a password now:"
659 read -e $var
660 pw=${!var}
661 [[ "$pw" = "`echo $pw | tr -cd [:alnum:]`" ]] && break
662 echo "Invalid chars in password. Try again:"
663 done
Anthony Youngb4db2252011-10-12 14:08:08 -0700664 if [ ! $pw ]; then
Attila Fazekasf71b5002014-05-28 09:52:22 +0200665 pw=$(generate_hex_string 10)
Anthony Young7a549f42011-10-12 07:13:13 +0000666 fi
Anthony Youngb4db2252011-10-12 14:08:08 -0700667 eval "$var=$pw"
668 echo "$var=$pw" >> $localrc
Anthony Young7a549f42011-10-12 07:13:13 +0000669 fi
Ian Wienand523f4882015-10-13 11:03:03 +1100670
671 # restore previous xtrace value
672 $xtrace
Anthony Young7a549f42011-10-12 07:13:13 +0000673}
674
Dean Troyer13dc5cc2012-03-27 14:50:45 -0500675
Dean Troyerb9182d62012-11-07 12:31:34 -0600676# Database Configuration
Dean Troyerdc97cb72015-03-28 08:20:50 -0500677# ----------------------
Dean Troyerb9182d62012-11-07 12:31:34 -0600678
Dean Troyerdc97cb72015-03-28 08:20:50 -0500679# To select between database backends, add the following to ``local.conf``:
Terry Wilson428af5a2012-11-01 16:12:39 -0400680#
Dean Troyerafc29fe2013-02-07 15:56:24 -0600681# disable_service mysql
682# enable_service postgresql
Terry Wilson428af5a2012-11-01 16:12:39 -0400683#
Dean Troyerafc29fe2013-02-07 15:56:24 -0600684# The available database backends are listed in ``DATABASE_BACKENDS`` after
685# ``lib/database`` is sourced. ``mysql`` is the default.
Terry Wilson428af5a2012-11-01 16:12:39 -0400686
Daniel P. Berrangea99e5c92015-02-11 17:25:32 +0000687initialize_database_backends && echo "Using $DATABASE_TYPE database backend" || echo "No database enabled"
Terry Wilson428af5a2012-11-01 16:12:39 -0400688
Dean Troyerb9182d62012-11-07 12:31:34 -0600689
Dean Troyerb7490da2013-03-18 16:07:56 -0500690# Queue Configuration
Dean Troyerdc97cb72015-03-28 08:20:50 -0500691# -------------------
Jesse Andrews782b9912011-10-02 16:53:21 -0400692
Anthony Younga8416442011-09-13 20:07:44 -0700693# Rabbit connection info
Dean Troyerdc97cb72015-03-28 08:20:50 -0500694# In multi node DevStack, second node needs ``RABBIT_USERID``, but rabbit
Joe Gordonf6287c22014-12-16 13:32:41 -0800695# isn't enabled.
Russell Bryant4a221452012-03-13 13:44:12 -0400696if is_service_enabled rabbit; then
Russell Bryant4a221452012-03-13 13:44:12 -0400697 read_password RABBIT_PASSWORD "ENTER A PASSWORD TO USE FOR RABBIT."
698fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700699
Dean Troyerb7490da2013-03-18 16:07:56 -0500700
701# Keystone
Dean Troyerdc97cb72015-03-28 08:20:50 -0500702# --------
Dean Troyerb7490da2013-03-18 16:07:56 -0500703
Dean Troyer5ce44cd2015-02-12 22:18:33 -0600704if is_service_enabled keystone; then
Dean Troyerb7490da2013-03-18 16:07:56 -0500705 # Services authenticate to Identity with servicename/``SERVICE_PASSWORD``
706 read_password SERVICE_PASSWORD "ENTER A SERVICE_PASSWORD TO USE FOR THE SERVICE AUTHENTICATION."
707 # Horizon currently truncates usernames and passwords at 20 characters
708 read_password ADMIN_PASSWORD "ENTER A PASSWORD TO USE FOR HORIZON AND KEYSTONE (20 CHARS OR LESS)."
709
710 # Keystone can now optionally install OpenLDAP by enabling the ``ldap``
Dean Troyerdc97cb72015-03-28 08:20:50 -0500711 # service in ``local.conf`` (e.g. ``enable_service ldap``).
Dean Troyerb7490da2013-03-18 16:07:56 -0500712 # To clean out the Keystone contents in OpenLDAP set ``KEYSTONE_CLEAR_LDAP``
Dean Troyerdc97cb72015-03-28 08:20:50 -0500713 # to ``yes`` (e.g. ``KEYSTONE_CLEAR_LDAP=yes``) in ``local.conf``. To enable the
Dean Troyerb7490da2013-03-18 16:07:56 -0500714 # Keystone Identity Driver (``keystone.identity.backends.ldap.Identity``)
715 # set ``KEYSTONE_IDENTITY_BACKEND`` to ``ldap`` (e.g.
Dean Troyerdc97cb72015-03-28 08:20:50 -0500716 # ``KEYSTONE_IDENTITY_BACKEND=ldap``) in ``local.conf``.
Dean Troyerb7490da2013-03-18 16:07:56 -0500717
Dean Troyerdc97cb72015-03-28 08:20:50 -0500718 # Only request LDAP password if the service is enabled
Dean Troyerb7490da2013-03-18 16:07:56 -0500719 if is_service_enabled ldap; then
720 read_password LDAP_PASSWORD "ENTER A PASSWORD TO USE FOR LDAP"
Chmouel Boudjnah6ae9ea52012-07-05 06:50:51 +0000721 fi
Dean Troyerb7490da2013-03-18 16:07:56 -0500722fi
723
724
725# Swift
Dean Troyerdc97cb72015-03-28 08:20:50 -0500726# -----
Dean Troyerb7490da2013-03-18 16:07:56 -0500727
728if is_service_enabled s-proxy; then
Chmouel Boudjnah77b0e1d2012-02-29 16:55:43 +0000729 # We only ask for Swift Hash if we have enabled swift service.
Dean Troyerb9182d62012-11-07 12:31:34 -0600730 # ``SWIFT_HASH`` is a random unique string for a swift cluster that
Chmouel Boudjnahb2857e42011-11-03 16:19:14 +0100731 # can never change.
732 read_password SWIFT_HASH "ENTER A RANDOM SWIFT HASH."
Jim Rollenhagenabbb0e92014-08-05 18:01:48 +0000733
734 if [[ -z "$SWIFT_TEMPURL_KEY" ]] && [[ "$SWIFT_ENABLE_TEMPURLS" == "True" ]]; then
735 read_password SWIFT_TEMPURL_KEY "ENTER A KEY FOR SWIFT TEMPURLS."
736 fi
Chmouel Boudjnahb2857e42011-11-03 16:19:14 +0100737fi
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700738
Dean Troyer68162342015-05-13 15:41:03 -0500739# Save configuration values
740save_stackenv $LINENO
741
Dean Troyerdf0972c2012-03-07 17:31:03 -0600742
Jesse Andrews30f68e92011-09-13 00:59:54 -0700743# Install Packages
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700744# ================
Dean Troyer7d28a0e2012-06-27 17:55:52 -0500745
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500746# OpenStack uses a fair number of other projects.
Jesse Andrews30f68e92011-09-13 00:59:54 -0700747
Shashank Hegde2d91fe82015-08-18 18:33:55 -0700748# Bring down global requirements before any use of pip_install. This is
749# necessary to ensure that the constraints file is in place before we
750# attempt to apply any constraints to pip installs.
751git_clone $REQUIREMENTS_REPO $REQUIREMENTS_DIR $REQUIREMENTS_BRANCH
752
Dean Troyer7d28a0e2012-06-27 17:55:52 -0500753# Install package requirements
Dean Troyer48352ee2012-12-12 12:50:38 -0600754# Source it so the entire environment is available
Dean Troyer7903b792012-09-13 17:16:12 -0500755echo_summary "Installing package prerequisites"
Dean Troyer48352ee2012-12-12 12:50:38 -0600756source $TOP_DIR/tools/install_prereqs.sh
Monty Taylor47f02062012-07-26 11:09:24 -0500757
Dean Troyerdc97cb72015-03-28 08:20:50 -0500758# Configure an appropriate Python environment
Arata Notsu8b5d3cf2013-10-17 21:42:49 +0900759if [[ "$OFFLINE" != "True" ]]; then
Sean Dague53753292014-12-04 19:38:15 -0500760 PYPI_ALTERNATIVE_URL=${PYPI_ALTERNATIVE_URL:-""} $TOP_DIR/tools/install_pip.sh
Arata Notsu8b5d3cf2013-10-17 21:42:49 +0900761fi
Dean Troyer1a6d4492013-06-03 16:47:36 -0500762
Matthew Treinish4af2afc2015-10-13 09:51:17 -0400763# Install subunit for the subunit output stream
764pip_install -U os-testr
765
Joe Gordon981ed292014-12-15 21:11:20 -0800766TRACK_DEPENDS=${TRACK_DEPENDS:-False}
767
Dean Troyerdc97cb72015-03-28 08:20:50 -0500768# Install Python packages into a virtualenv so that we can track them
Joe Gordon981ed292014-12-15 21:11:20 -0800769if [[ $TRACK_DEPENDS = True ]]; then
770 echo_summary "Installing Python packages into a virtualenv $DEST/.venv"
771 pip_install -U virtualenv
772
773 rm -rf $DEST/.venv
774 virtualenv --system-site-packages $DEST/.venv
775 source $DEST/.venv/bin/activate
776 $DEST/.venv/bin/pip freeze > $DEST/requires-pre-pip
777fi
778
Gael Chamoulaudd3121f62014-07-24 23:53:02 +0200779# Do the ugly hacks for broken packages and distros
Dean Troyer04a35112014-08-15 14:03:52 -0500780source $TOP_DIR/tools/fixup_stuff.sh
Dean Troyer9acc12a2013-08-09 15:09:31 -0500781
Sean Daguec006bbd2017-04-26 06:57:58 -0400782if [[ "$USE_SYSTEMD" == "True" ]]; then
783 pip_install_gr systemd-python
Sean Daguee264b4a2017-05-04 15:56:37 -0400784 # the default rate limit of 1000 messages / 30 seconds is not
785 # sufficient given how verbose our logging is.
786 iniset -sudo /etc/systemd/journald.conf "Journal" "RateLimitBurst" "0"
787 sudo systemctl restart systemd-journald
Sean Daguec006bbd2017-04-26 06:57:58 -0400788fi
Dean Troyer5c3a63e2014-07-09 11:27:42 -0500789
Dean Troyerb1d8e8e2015-02-16 13:58:35 -0600790# Virtual Environment
791# -------------------
792
Yuki Nishiwaki0a9d03d2015-05-08 16:29:55 +0900793# Install required infra support libraries
794install_infra
795
Dean Troyer5c3a63e2014-07-09 11:27:42 -0500796# Extras Pre-install
797# ------------------
Dean Troyer5c3a63e2014-07-09 11:27:42 -0500798# Phase: pre-install
Sean Dague2c65e712014-12-18 09:44:56 -0500799run_phase stack pre-install
Dean Troyer5c3a63e2014-07-09 11:27:42 -0500800
Dan Smith1f55d382017-05-16 08:50:53 -0700801# NOTE(danms): Set global limits before installing anything
802set_systemd_override DefaultLimitNOFILE ${ULIMIT_NOFILE}
803
Dean Troyer62d1d692013-08-01 17:40:40 -0500804install_rpc_backend
Dan Smithb1d85192017-02-23 08:01:32 -0800805restart_rpc_backend
Dean Troyer62d1d692013-08-01 17:40:40 -0500806
807if is_service_enabled $DATABASE_BACKENDS; then
808 install_database
Olivier Lemasle7dd890d2015-09-14 14:21:12 +0200809fi
810if [ -n "$DATABASE_TYPE" ]; then
Dean Troyer5686dbc2015-03-09 14:27:51 -0500811 install_database_python
Dean Troyer62d1d692013-08-01 17:40:40 -0500812fi
813
814if is_service_enabled neutron; then
815 install_neutron_agent_packages
816fi
817
Sean Dague62b56602017-06-19 08:27:16 -0400818if is_service_enabled etcd3; then
819 install_etcd3
820fi
821
Dean Troyerfe51a902013-04-01 15:48:44 -0500822# Check Out and Install Source
823# ----------------------------
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500824
Dean Troyer7903b792012-09-13 17:16:12 -0500825echo_summary "Installing OpenStack project source"
826
Sean Dague3ed99c02017-06-20 14:09:30 -0400827# Install additional libraries
828install_libs
Sean Dague1b6b5312013-07-31 06:46:34 -0400829
Sean Dague604e5982017-04-13 13:28:12 -0400830# Install uwsgi
831install_apache_uwsgi
832
Dean Troyerdc97cb72015-03-28 08:20:50 -0500833# Install client libraries
Jamie Lennox21a90772015-07-03 11:54:38 +1000834install_keystoneauth
Dean Troyerd81a0272012-08-31 18:04:55 -0500835install_keystoneclient
Dean Troyer73f6f252012-09-17 11:22:21 -0500836install_glanceclient
Dean Troyer253a1a32013-04-01 18:23:22 -0500837install_cinderclient
Dean Troyerbf67c192012-09-21 15:09:37 -0500838install_novaclient
Sean Dague75195b52013-07-25 15:38:09 -0400839if is_service_enabled swift glance horizon; then
Dean Troyerfe51a902013-04-01 15:48:44 -0500840 install_swiftclient
841fi
Sean Dague75195b52013-07-25 15:38:09 -0400842if is_service_enabled neutron nova horizon; then
Mark McClainb05c8762013-07-06 23:29:39 -0400843 install_neutronclient
Dean Troyerfe51a902013-04-01 15:48:44 -0500844fi
845
Daniel P. Berrangec30b8de2016-11-14 13:23:14 +0000846# Setup TLS certs
Sean Daguef3b2f4c2017-04-13 10:11:48 -0400847if is_service_enabled tls-proxy; then
Daniel P. Berrangec30b8de2016-11-14 13:23:14 +0000848 configure_CA
849 init_CA
850 init_cert
851fi
852
Morgan Fainberg58936fd2014-06-24 12:26:07 -0700853# Install middleware
854install_keystonemiddleware
855
Dean Troyer5ce44cd2015-02-12 22:18:33 -0600856if is_service_enabled keystone; then
Bartosz Górski0abde392014-02-28 14:15:19 +0100857 if [ "$KEYSTONE_AUTH_HOST" == "$SERVICE_HOST" ]; then
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600858 stack_install_service keystone
Bartosz Górski0abde392014-02-28 14:15:19 +0100859 configure_keystone
860 fi
Jesse Andrews38df1222011-11-20 09:55:44 -0800861fi
Attila Fazekasece6a332012-11-29 14:19:41 +0100862
Sean Dague8b416ae2016-03-25 08:58:54 -0400863if is_service_enabled swift; then
gordon chungb6197e62015-02-12 15:33:35 -0500864 if is_service_enabled ceilometer; then
865 install_ceilometermiddleware
866 fi
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600867 stack_install_service swift
Dean Troyerfe51a902013-04-01 15:48:44 -0500868 configure_swift
869
rahmu9d2647a2013-04-24 10:40:07 +0200870 # swift3 middleware to provide S3 emulation to Swift
Chmouel Boudjnah6ae9ea52012-07-05 06:50:51 +0000871 if is_service_enabled swift3; then
Dean Troyerdc97cb72015-03-28 08:20:50 -0500872 # Replace the nova-objectstore port by the swift port
rahmu9d2647a2013-04-24 10:40:07 +0200873 S3_SERVICE_PORT=8080
Chmouel Boudjnah6ae9ea52012-07-05 06:50:51 +0000874 git_clone $SWIFT3_REPO $SWIFT3_DIR $SWIFT3_BRANCH
Dean Troyerfe51a902013-04-01 15:48:44 -0500875 setup_develop $SWIFT3_DIR
Chmouel Boudjnah6ae9ea52012-07-05 06:50:51 +0000876 fi
James E. Blaire7ce24f2011-11-10 13:05:13 -0800877fi
Attila Fazekasece6a332012-11-29 14:19:41 +0100878
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +0000879if is_service_enabled g-api n-api; then
Dean Troyerdc97cb72015-03-28 08:20:50 -0500880 # Image catalog service
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600881 stack_install_service glance
Dean Troyerfe51a902013-04-01 15:48:44 -0500882 configure_glance
James E. Blaire7ce24f2011-11-10 13:05:13 -0800883fi
Dean Troyerfe51a902013-04-01 15:48:44 -0500884
885if is_service_enabled cinder; then
Dean Troyerdc97cb72015-03-28 08:20:50 -0500886 # Block volume service
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600887 stack_install_service cinder
Dean Troyerfe51a902013-04-01 15:48:44 -0500888 configure_cinder
889fi
890
Mark McClainb05c8762013-07-06 23:29:39 -0400891if is_service_enabled neutron; then
Dean Troyerdc97cb72015-03-28 08:20:50 -0500892 # Network service
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600893 stack_install_service neutron
Dean Troyerfe51a902013-04-01 15:48:44 -0500894fi
895
Dean Troyerbf67c192012-09-21 15:09:37 -0500896if is_service_enabled nova; then
Dean Troyerdc97cb72015-03-28 08:20:50 -0500897 # Compute service
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600898 stack_install_service nova
Dean Troyerfe51a902013-04-01 15:48:44 -0500899 configure_nova
Dean Troyerbf67c192012-09-21 15:09:37 -0500900fi
Dean Troyerfe51a902013-04-01 15:48:44 -0500901
Chris Dent4d601752016-07-12 19:34:09 +0000902if is_service_enabled placement; then
903 # placement api
904 stack_install_service placement
Chris Dent4d601752016-07-12 19:34:09 +0000905 configure_placement
906fi
907
Sean Dague51a225c2016-12-15 16:32:08 -0500908# create a placement-client fake service to know we need to configure
909# placement connectivity. We configure the placement service for nova
910# if placement-api or placement-client is active, and n-cpu on the
911# same box.
912if is_service_enabled placement placement-client; then
Prashant Shettyf58b3732017-02-23 13:48:12 +0000913 if is_service_enabled n-cpu || is_service_enabled n-sch; then
Sean Dague51a225c2016-12-15 16:32:08 -0500914 configure_placement_nova_compute
915 fi
916fi
917
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +0000918if is_service_enabled horizon; then
Sean Dagueb562e6a2012-11-19 16:00:01 -0500919 # dashboard
Dean Troyer8c2ce6e2015-02-18 14:47:54 -0600920 stack_install_service horizon
James E. Blaire7ce24f2011-11-10 13:05:13 -0800921fi
Dean Troyerfe51a902013-04-01 15:48:44 -0500922
Sean Daguef3b2f4c2017-04-13 10:11:48 -0400923if is_service_enabled tls-proxy; then
Daniel P. Berrangec30b8de2016-11-14 13:23:14 +0000924 fix_system_ca_bundle_path
Clark Boylan4baac652017-05-27 20:53:20 -0700925 if python3_enabled ; then
926 fix_system_ca_bundle_path python3
927 fi
Dean Troyer67787e62012-05-02 11:48:15 -0500928fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700929
Dean Troyercdf3d762013-10-15 09:42:43 -0500930# Extras Install
931# --------------
932
933# Phase: install
Sean Dague2c65e712014-12-18 09:44:56 -0500934run_phase stack install
Dean Troyercdf3d762013-10-15 09:42:43 -0500935
Dean Troyerdc97cb72015-03-28 08:20:50 -0500936# Install the OpenStack client, needed for most setup commands
Ihar Hrachyshka1ffa3322015-02-20 16:23:15 +0100937if use_library_from_git "python-openstackclient"; then
938 git_clone_by_name "python-openstackclient"
939 setup_dev_lib "python-openstackclient"
940else
Sean Dague60996b12015-04-08 09:06:49 -0400941 pip_install_gr python-openstackclient
Ihar Hrachyshka1ffa3322015-02-20 16:23:15 +0100942fi
943
Sean Dague85cf2932017-03-27 15:35:13 -0400944# Installs alias for osc so that we can collect timing for all
945# osc commands. Alias dies with stack.sh.
946install_oscwrap
947
Dean Troyercc6b4432013-04-08 15:38:03 -0500948if [[ $TRACK_DEPENDS = True ]]; then
Monty Taylor47f02062012-07-26 11:09:24 -0500949 $DEST/.venv/bin/pip freeze > $DEST/requires-post-pip
Dean Troyercc6b4432013-04-08 15:38:03 -0500950 if ! diff -Nru $DEST/requires-pre-pip $DEST/requires-post-pip > $DEST/requires.diff; then
DennyZhange8fa8532013-11-03 12:22:04 -0600951 echo "Detect some changes for installed packages of pip, in depend tracking mode"
Monty Taylor47f02062012-07-26 11:09:24 -0500952 cat $DEST/requires.diff
953 fi
954 echo "Ran stack.sh in depend tracking mode, bailing out now"
955 exit 0
956fi
Dean Troyerdf0972c2012-03-07 17:31:03 -0600957
Dean Troyerb7490da2013-03-18 16:07:56 -0500958
Dean Troyerff603ef2011-11-22 17:48:10 -0600959# Syslog
Dean Troyerdf0972c2012-03-07 17:31:03 -0600960# ------
Dean Troyerff603ef2011-11-22 17:48:10 -0600961
962if [[ $SYSLOG != "False" ]]; then
Dean Troyerff603ef2011-11-22 17:48:10 -0600963 if [[ "$SYSLOG_HOST" = "$HOST_IP" ]]; then
964 # Configure the master host to receive
965 cat <<EOF >/tmp/90-stack-m.conf
966\$ModLoad imrelp
967\$InputRELPServerRun $SYSLOG_PORT
968EOF
969 sudo mv /tmp/90-stack-m.conf /etc/rsyslog.d
970 else
971 # Set rsyslog to send to remote host
972 cat <<EOF >/tmp/90-stack-s.conf
973*.* :omrelp:$SYSLOG_HOST:$SYSLOG_PORT
974EOF
975 sudo mv /tmp/90-stack-s.conf /etc/rsyslog.d
976 fi
cloudnulle4859f02013-05-28 14:10:58 -0500977
978 RSYSLOGCONF="/etc/rsyslog.conf"
979 if [ -f $RSYSLOGCONF ]; then
980 sudo cp -b $RSYSLOGCONF $RSYSLOGCONF.bak
981 if [[ $(grep '$SystemLogRateLimitBurst' $RSYSLOGCONF) ]]; then
982 sudo sed -i 's/$SystemLogRateLimitBurst\ .*/$SystemLogRateLimitBurst\ 0/' $RSYSLOGCONF
983 else
984 sudo sed -i '$ i $SystemLogRateLimitBurst\ 0' $RSYSLOGCONF
985 fi
986 if [[ $(grep '$SystemLogRateLimitInterval' $RSYSLOGCONF) ]]; then
987 sudo sed -i 's/$SystemLogRateLimitInterval\ .*/$SystemLogRateLimitInterval\ 0/' $RSYSLOGCONF
988 else
989 sudo sed -i '$ i $SystemLogRateLimitInterval\ 0' $RSYSLOGCONF
990 fi
991 fi
992
Dean Troyer7903b792012-09-13 17:16:12 -0500993 echo_summary "Starting rsyslog"
Dean Troyer13dc5cc2012-03-27 14:50:45 -0500994 restart_service rsyslog
Dean Troyerff603ef2011-11-22 17:48:10 -0600995fi
996
Dean Troyerdf0972c2012-03-07 17:31:03 -0600997
Atsushi SAKAIfe7b56c2015-11-13 17:06:16 +0900998# Export Certificate Authority Bundle
999# -----------------------------------
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +10001000
1001# If certificates were used and written to the SSL bundle file then these
1002# should be exported so clients can validate their connections.
1003
1004if [ -f $SSL_BUNDLE_FILE ]; then
1005 export OS_CACERT=$SSL_BUNDLE_FILE
1006fi
1007
1008
Terry Wilson428af5a2012-11-01 16:12:39 -04001009# Configure database
1010# ------------------
Dean Troyerb9182d62012-11-07 12:31:34 -06001011
Terry Wilson428af5a2012-11-01 16:12:39 -04001012if is_service_enabled $DATABASE_BACKENDS; then
1013 configure_database
Jesse Andrews24859062011-09-15 21:28:23 -07001014fi
1015
Dean Troyer68162342015-05-13 15:41:03 -05001016# Save configuration values
1017save_stackenv $LINENO
1018
Clark Boylanf85e0ba2017-03-17 12:54:30 -07001019# Kernel Samepage Merging (KSM)
1020# -----------------------------
1021
1022# Processes that mark their memory as mergeable can share identical memory
1023# pages if KSM is enabled. This is particularly useful for nova + libvirt
1024# backends but any other setup that marks its memory as mergeable can take
1025# advantage. The drawback is there is higher cpu load; however, we tend to
1026# be memory bound not cpu bound so enable KSM by default but allow people
1027# to opt out if the CPU time is more important to them.
1028
Chandan Kumare8db8672017-10-26 15:34:05 +05301029if [[ $ENABLE_KSM == "True" ]] ; then
Clark Boylanf85e0ba2017-03-17 12:54:30 -07001030 if [[ -f /sys/kernel/mm/ksm/run ]] ; then
1031 sudo sh -c "echo 1 > /sys/kernel/mm/ksm/run"
1032 fi
1033fi
1034
Dean Troyerdc97cb72015-03-28 08:20:50 -05001035
1036# Start Services
1037# ==============
1038
Sean Dague78096b52014-02-25 10:23:04 -05001039# Dstat
Dean Troyerdc97cb72015-03-28 08:20:50 -05001040# -----
Dean Troyer1a6d4492013-06-03 16:47:36 -05001041
Sean Daguef1eb0472014-02-11 17:28:56 -05001042# A better kind of sysstat, with the top process per time slice
Joe Gordone0b08d02014-08-20 00:34:55 -07001043start_dstat
Sean Dague062cdaf2014-02-10 22:24:49 -05001044
Davanum Srinivas546656f2017-03-14 07:05:19 -04001045# Etcd
1046# -----
1047
1048# etcd is a distributed key value store that provides a reliable way to store data across a cluster of machines
Andreas Scheuring94b9fae2017-05-24 13:31:13 +02001049if is_service_enabled etcd3; then
1050 start_etcd3
1051fi
Dean Troyer893e6632013-09-13 15:05:51 -05001052
Dean Troyerd81a0272012-08-31 18:04:55 -05001053# Keystone
1054# --------
1055
Patrick Easta5d965a2016-08-03 14:44:53 -07001056# Rather than just export these, we write them out to a
1057# intermediate userrc file that can also be used to debug if
1058# something goes wrong between here and running
1059# tools/create_userrc.sh (this script relies on services other
1060# than keystone being available, so we can't call it right now)
1061cat > $TOP_DIR/userrc_early <<EOF
Steve Martinelli923be5f2015-12-20 00:24:19 -05001062# Use this for debugging issues before files in accrc are created
1063
1064# Set up password auth credentials now that Keystone is bootstrapped
1065export OS_IDENTITY_API_VERSION=3
1066export OS_AUTH_URL=$KEYSTONE_AUTH_URI
1067export OS_USERNAME=admin
1068export OS_USER_DOMAIN_ID=default
1069export OS_PASSWORD=$ADMIN_PASSWORD
1070export OS_PROJECT_NAME=admin
1071export OS_PROJECT_DOMAIN_ID=default
zhiyuan_cai6f1781f2016-04-07 18:36:46 +08001072export OS_REGION_NAME=$KEYSTONE_REGION_NAME
Steve Martinelli923be5f2015-12-20 00:24:19 -05001073
1074EOF
1075
Patrick Easta5d965a2016-08-03 14:44:53 -07001076if is_service_enabled tls-proxy; then
1077 echo "export OS_CACERT=$INT_CA_DIR/ca-chain.pem" >> $TOP_DIR/userrc_early
1078 start_tls_proxy http-services '*' 443 $SERVICE_HOST 80
1079fi
Rob Crittendenbe00e952016-03-24 18:09:22 -04001080
Patrick Easta5d965a2016-08-03 14:44:53 -07001081source $TOP_DIR/userrc_early
1082
1083if is_service_enabled keystone; then
1084 echo_summary "Starting Keystone"
1085
1086 if [ "$KEYSTONE_AUTH_HOST" == "$SERVICE_HOST" ]; then
1087 init_keystone
1088 start_keystone
1089 bootstrap_keystone
1090 fi
Dean Troyer42a59c22014-03-03 14:31:29 -06001091
Dean Troyerd835de82012-11-29 17:11:35 -06001092 create_keystone_accounts
Édouard Thuleau93a41562017-03-09 18:53:18 +01001093 if is_service_enabled nova; then
1094 create_nova_accounts
1095 fi
1096 if is_service_enabled glance; then
1097 create_glance_accounts
1098 fi
1099 if is_service_enabled cinder; then
1100 create_cinder_accounts
1101 fi
1102 if is_service_enabled neutron; then
1103 create_neutron_accounts
1104 fi
Dean Troyer42a59c22014-03-03 14:31:29 -06001105 if is_service_enabled swift; then
Ian Wienand0ff314c2013-07-17 16:30:19 +10001106 create_swift_accounts
1107 fi
1108
Dean Troyerd81a0272012-08-31 18:04:55 -05001109fi
1110
Monty Taylor7224eec2015-09-19 11:26:18 -04001111# Write a clouds.yaml file
1112write_clouds_yaml
Monty Taylor16a2d642015-09-19 11:19:31 -04001113
Tres Henryca85b792011-10-28 14:00:21 -07001114# Horizon
Dean Troyerdf0972c2012-03-07 17:31:03 -06001115# -------
Jesse Andrewscbe98d52011-10-02 17:47:32 -04001116
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +00001117if is_service_enabled horizon; then
Akihiro Motoki43f62c02015-12-15 16:44:41 +09001118 echo_summary "Configuring Horizon"
1119 configure_horizon
Anthony Young70dc5e02011-09-15 16:52:43 -07001120fi
Jesse Andrews75a37652011-09-12 17:09:08 -07001121
Anthony Young3859f732011-09-14 02:33:43 -07001122
Jesse Andrewsd74257d2011-09-13 01:24:50 -07001123# Glance
1124# ------
1125
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +00001126if is_service_enabled g-reg; then
Dean Troyer7903b792012-09-13 17:16:12 -05001127 echo_summary "Configuring Glance"
Dean Troyer73f6f252012-09-17 11:22:21 -05001128 init_glance
Anthony Young70dc5e02011-09-15 16:52:43 -07001129fi
Jesse Andrews75a37652011-09-12 17:09:08 -07001130
Dean Troyer8c032d12013-09-23 13:53:13 -05001131
Mark McClainb05c8762013-07-06 23:29:39 -04001132# Neutron
Anthony Young60df29a2012-03-28 09:40:17 -07001133# -------
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001134
Mark McClainb05c8762013-07-06 23:29:39 -04001135if is_service_enabled neutron; then
1136 echo_summary "Configuring Neutron"
Dean Troyerb9182d62012-11-07 12:31:34 -06001137
Mark McClainb05c8762013-07-06 23:29:39 -04001138 configure_neutron
Dean Troyerdc97cb72015-03-28 08:20:50 -05001139 # Run init_neutron only on the node hosting the Neutron API server
Sean M. Collins2a242512016-05-03 09:03:09 -04001140 if is_service_enabled $DATABASE_BACKENDS && is_service_enabled neutron; then
Salvatore Orlandodd649882013-08-05 08:56:17 -07001141 init_neutron
1142 fi
Dan Wendlandt0007f3a2012-05-18 13:37:47 -07001143fi
1144
Jesse Andrewsd74257d2011-09-13 01:24:50 -07001145# Nova
1146# ----
Dean Troyerbd13b702012-02-13 11:22:36 -06001147
Isaku Yamahata6f85ab32012-08-06 16:56:10 +09001148if is_service_enabled n-net q-dhcp; then
Anthony Young55458452011-12-17 00:21:49 +00001149 # Delete traces of nova networks from prior runs
Davanum Srinivasd71d6e72013-01-28 19:15:57 -05001150 # Do not kill any dnsmasq instance spawned by NetworkManager
1151 netman_pid=$(pidof NetworkManager || true)
1152 if [ -z "$netman_pid" ]; then
1153 sudo killall dnsmasq || true
1154 else
1155 sudo ps h -o pid,ppid -C dnsmasq | grep -v $netman_pid | awk '{print $1}' | sudo xargs kill || true
1156 fi
1157
Anthony Young55458452011-12-17 00:21:49 +00001158 clean_iptables
Christian Berendt7a7fb492014-04-07 13:31:07 +00001159
1160 if is_service_enabled n-net; then
1161 rm -rf ${NOVA_STATE_PATH}/networks
1162 sudo mkdir -p ${NOVA_STATE_PATH}/networks
Chris Denta0ced4d2014-05-27 22:08:46 +01001163 safe_chown -R ${STACK_USER} ${NOVA_STATE_PATH}/networks
Christian Berendt7a7fb492014-04-07 13:31:07 +00001164 fi
1165
Dean Troyer1a6d4492013-06-03 16:47:36 -05001166 # Force IP forwarding on, just in case
Dean Troyer0b31e862012-03-07 16:47:56 -06001167 sudo sysctl -w net.ipv4.ip_forward=1
Anthony Young70dc5e02011-09-15 16:52:43 -07001168fi
Jesse Andrews75a37652011-09-12 17:09:08 -07001169
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001170
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +01001171# Storage Service
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001172# ---------------
1173
Sean Dague8b416ae2016-03-25 08:58:54 -04001174if is_service_enabled swift; then
Dean Troyer7903b792012-09-13 17:16:12 -05001175 echo_summary "Configuring Swift"
Attila Fazekasece6a332012-11-29 14:19:41 +01001176 init_swift
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +01001177fi
1178
Dean Troyerdf0972c2012-03-07 17:31:03 -06001179
Anthony Youngacff87a2011-10-20 10:12:58 -07001180# Volume Service
1181# --------------
1182
Dean Troyer67787e62012-05-02 11:48:15 -05001183if is_service_enabled cinder; then
Dean Troyer7903b792012-09-13 17:16:12 -05001184 echo_summary "Configuring Cinder"
Dean Troyer67787e62012-05-02 11:48:15 -05001185 init_cinder
Anthony Youngacff87a2011-10-20 10:12:58 -07001186fi
1187
Dean Troyer2aa2a892013-08-04 19:53:19 -05001188
1189# Compute Service
1190# ---------------
1191
Dean Troyerbf67c192012-09-21 15:09:37 -05001192if is_service_enabled nova; then
1193 echo_summary "Configuring Nova"
1194 init_nova
Jesse Andrewsd1879c52011-09-16 16:28:13 -07001195
Dean Troyer86a79692012-10-22 15:24:46 -05001196 # Additional Nova configuration that is dependent on other services
Mark McClainb05c8762013-07-06 23:29:39 -04001197 if is_service_enabled neutron; then
Sean M. Collins2a242512016-05-03 09:03:09 -04001198 configure_neutron_nova
Dean Troyer86a79692012-10-22 15:24:46 -05001199 elif is_service_enabled n-net; then
Akihiro MOTOKI66afb472012-12-21 15:34:13 +09001200 create_nova_conf_nova_network
Brad Hall1bfa3d52011-10-27 18:18:20 -07001201 fi
Dean Troyerdf0972c2012-03-07 17:31:03 -06001202
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001203 init_nova_cells
Anthony Youngb62b4ca2011-10-26 22:29:08 -07001204fi
1205
Chris Dent4d601752016-07-12 19:34:09 +00001206if is_service_enabled placement; then
1207 echo_summary "Configuring placement"
1208 init_placement
1209fi
1210
Dean Troyerdc97cb72015-03-28 08:20:50 -05001211
Dean Troyercdf3d762013-10-15 09:42:43 -05001212# Extras Configuration
1213# ====================
1214
1215# Phase: post-config
Sean Dague2c65e712014-12-18 09:44:56 -05001216run_phase stack post-config
Dean Troyercdf3d762013-10-15 09:42:43 -05001217
1218
Dean Troyer893e6632013-09-13 15:05:51 -05001219# Local Configuration
1220# ===================
1221
Dean Troyerdc97cb72015-03-28 08:20:50 -05001222# Apply configuration from ``local.conf`` if it exists for layer 2 services
Dean Troyer893e6632013-09-13 15:05:51 -05001223# Phase: post-config
1224merge_config_group $TOP_DIR/local.conf post-config
1225
1226
Jesse Andrewsd74257d2011-09-13 01:24:50 -07001227# Launch Services
1228# ===============
Jesse Andrews30f68e92011-09-13 00:59:54 -07001229
Jesse Andrewsdfcd2002011-09-13 13:17:22 -07001230# Only run the services specified in ``ENABLED_SERVICES``
1231
Attila Fazekasece6a332012-11-29 14:19:41 +01001232# Launch Swift Services
Sean Dague8b416ae2016-03-25 08:58:54 -04001233if is_service_enabled swift; then
Attila Fazekasece6a332012-11-29 14:19:41 +01001234 echo_summary "Starting Swift"
1235 start_swift
1236fi
1237
Dean Troyer73f6f252012-09-17 11:22:21 -05001238# Launch the Glance services
Dean Troyere4fa7212014-01-15 15:04:49 -06001239if is_service_enabled glance; then
Dean Troyer7903b792012-09-13 17:16:12 -05001240 echo_summary "Starting Glance"
Dean Troyer73f6f252012-09-17 11:22:21 -05001241 start_glance
Anthony Youngd000b222011-09-19 14:46:53 -07001242fi
1243
Dean Troyerdc97cb72015-03-28 08:20:50 -05001244
Eric Windisch0b9776d2014-01-28 11:20:53 -05001245# Install Images
1246# ==============
1247
Dean Troyerdc97cb72015-03-28 08:20:50 -05001248# Upload an image to Glance.
Eric Windisch0b9776d2014-01-28 11:20:53 -05001249#
Dean Troyerdc97cb72015-03-28 08:20:50 -05001250# The default image is CirrOS, a small testing image which lets you login as **root**
1251# CirrOS has a ``cloud-init`` analog supporting login via keypair and sending
Eric Windisch0b9776d2014-01-28 11:20:53 -05001252# scripts as userdata.
Dean Troyerdc97cb72015-03-28 08:20:50 -05001253# See https://help.ubuntu.com/community/CloudInit for more on ``cloud-init``
Eric Windisch0b9776d2014-01-28 11:20:53 -05001254
1255if is_service_enabled g-reg; then
Eric Windisch0b9776d2014-01-28 11:20:53 -05001256
Sean Dague2f8e08b2014-12-05 08:31:16 -05001257 echo_summary "Uploading images"
Eric Windisch0b9776d2014-01-28 11:20:53 -05001258
Sean Dague2f8e08b2014-12-05 08:31:16 -05001259 for image_url in ${IMAGE_URLS//,/ }; do
Peter Stachowski5aeea6a2015-09-22 19:38:02 +00001260 upload_image $image_url
Sean Dague2f8e08b2014-12-05 08:31:16 -05001261 done
Eric Windisch0b9776d2014-01-28 11:20:53 -05001262fi
1263
Jordan Pittier50f22da2016-05-10 15:04:44 +02001264# Create a randomized default value for the key manager's fixed_key
Lee Yarwood00ff9042017-05-19 13:40:56 +01001265# NOTE(lyarwood): This is currently set to 36 as a workaround to the following
1266# libvirt bug that incorrectly pads passphrases that are a multiple of 16 bytes
1267# in length.
1268# Unable to use LUKS passphrase that is exactly 16 bytes long
1269# https://bugzilla.redhat.com/show_bug.cgi?id=1447297
Kaitlin Farrdef4c142014-01-06 08:52:49 -05001270if is_service_enabled nova; then
Dan Smithf3d53312017-06-08 08:22:38 -04001271 key=$(generate_hex_string 36)
1272 iniset $NOVA_CONF key_manager fixed_key "$key"
1273 iniset $NOVA_CPU_CONF key_manager fixed_key "$key"
Kaitlin Farrdef4c142014-01-06 08:52:49 -05001274fi
1275
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001276# Launch the nova-api and wait for it to answer before continuing
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +00001277if is_service_enabled n-api; then
Dean Troyer7903b792012-09-13 17:16:12 -05001278 echo_summary "Starting Nova API"
Dean Troyer3a3a2ba2012-12-11 15:26:24 -06001279 start_nova_api
Anthony Youngd000b222011-09-19 14:46:53 -07001280fi
Brad Hall1bfa3d52011-10-27 18:18:20 -07001281
Sean M. Collins2a242512016-05-03 09:03:09 -04001282if is_service_enabled neutron-api; then
1283 echo_summary "Starting Neutron"
1284 start_neutron_api
Sean M. Collins2a242512016-05-03 09:03:09 -04001285elif is_service_enabled q-svc; then
Mark McClainb05c8762013-07-06 23:29:39 -04001286 echo_summary "Starting Neutron"
YAMAMOTO Takashia1875b12017-02-23 05:44:22 +09001287 configure_neutron_after_post_config
Mark McClainb05c8762013-07-06 23:29:39 -04001288 start_neutron_service_and_check
Aaron Rosen8ec719b2012-10-30 12:57:47 -07001289elif is_service_enabled $DATABASE_BACKENDS && is_service_enabled n-net; then
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001290 NM_CONF=${NOVA_CONF}
1291 if is_service_enabled n-cell; then
1292 NM_CONF=${NOVA_CELLS_CONF}
1293 fi
1294
Gary Kotton37dda8d2012-08-08 03:46:33 -04001295 # Create a small network
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001296 $NOVA_BIN_DIR/nova-manage --config-file $NM_CONF network create "$PRIVATE_NETWORK_NAME" $FIXED_RANGE 1 $FIXED_NETWORK_SIZE $NETWORK_CREATE_ARGS
Dean Troyer696ad332012-01-10 15:34:34 -06001297
Gary Kotton37dda8d2012-08-08 03:46:33 -04001298 # Create some floating ips
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001299 $NOVA_BIN_DIR/nova-manage --config-file $NM_CONF floating create $FLOATING_RANGE --pool=$PUBLIC_NETWORK_NAME
Aaron Rosen9313dfa2012-07-06 16:08:49 -04001300
Gary Kotton37dda8d2012-08-08 03:46:33 -04001301 # Create a second pool
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001302 $NOVA_BIN_DIR/nova-manage --config-file $NM_CONF floating create --ip_range=$TEST_FLOATING_RANGE --pool=$TEST_FLOATING_POOL
Brad Hall1bfa3d52011-10-27 18:18:20 -07001303fi
1304
Chris Dent7a74c2a2017-06-05 16:06:06 +00001305# Start placement before any of the service that are likely to want
1306# to use it to manage resource providers.
1307if is_service_enabled placement; then
1308 echo_summary "Starting Placement"
1309 start_placement
1310fi
1311
Mark McClainb05c8762013-07-06 23:29:39 -04001312if is_service_enabled neutron; then
Sean M. Collins2a242512016-05-03 09:03:09 -04001313 start_neutron
Akihiro MOTOKI66afb472012-12-21 15:34:13 +09001314fi
Salvatore Orlando6fbb28d2013-12-22 07:59:37 -08001315# Once neutron agents are started setup initial network elements
YAMAMOTO Takashi07edde12016-10-19 19:21:00 +00001316if is_service_enabled q-svc && [[ "$NEUTRON_CREATE_INITIAL_NETWORKS" == "True" ]]; then
1317 echo_summary "Creating initial neutron network elements"
1318 create_neutron_initial_network
1319fi
Sean M. Collins2a242512016-05-03 09:03:09 -04001320
Dean Troyerbf67c192012-09-21 15:09:37 -05001321if is_service_enabled nova; then
1322 echo_summary "Starting Nova"
1323 start_nova
Dan Smith4b205db2016-04-04 10:37:11 -07001324 create_flavors
Dean Troyerbf67c192012-09-21 15:09:37 -05001325fi
Dean Troyer67787e62012-05-02 11:48:15 -05001326if is_service_enabled cinder; then
Dean Troyer7903b792012-09-13 17:16:12 -05001327 echo_summary "Starting Cinder"
Dean Troyer67787e62012-05-02 11:48:15 -05001328 start_cinder
Dean Troyer09718332014-07-03 10:46:57 -05001329 create_volume_types
Dean Troyer67787e62012-05-02 11:48:15 -05001330fi
Sean Dagueb562e6a2012-11-19 16:00:01 -05001331
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001332
Akihiro Motoki43f62c02015-12-15 16:44:41 +09001333if is_service_enabled horizon; then
1334 echo_summary "Starting Horizon"
1335 init_horizon
1336 start_horizon
1337fi
1338
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +10001339
Andrey Pavlov50901422015-09-22 21:20:36 +03001340# Create account rc files
1341# =======================
1342
1343# Creates source able script files for easier user switching.
1344# This step also creates certificates for tenants and users,
1345# which is helpful in image bundle steps.
1346
1347if is_service_enabled nova && is_service_enabled keystone; then
1348 USERRC_PARAMS="-PA --target-dir $TOP_DIR/accrc"
1349
1350 if [ -f $SSL_BUNDLE_FILE ]; then
1351 USERRC_PARAMS="$USERRC_PARAMS --os-cacert $SSL_BUNDLE_FILE"
1352 fi
1353
Andrey Pavlov50901422015-09-22 21:20:36 +03001354 $TOP_DIR/tools/create_userrc.sh $USERRC_PARAMS
1355fi
1356
1357
1358# Save some values we generated for later use
1359save_stackenv
1360
1361
Dean Troyerdc97cb72015-03-28 08:20:50 -05001362# Wrapup configuration
1363# ====================
Dean Troyer893e6632013-09-13 15:05:51 -05001364
Dean Troyerdc97cb72015-03-28 08:20:50 -05001365# local.conf extra
1366# ----------------
1367
1368# Apply configuration from ``local.conf`` if it exists for layer 2 services
Dean Troyer893e6632013-09-13 15:05:51 -05001369# Phase: extra
1370merge_config_group $TOP_DIR/local.conf extra
1371
1372
Dean Troyer768295e2013-01-09 13:42:03 -06001373# Run extras
Dean Troyerdc97cb72015-03-28 08:20:50 -05001374# ----------
Dean Troyer768295e2013-01-09 13:42:03 -06001375
Dean Troyercdf3d762013-10-15 09:42:43 -05001376# Phase: extra
Sean Dague2c65e712014-12-18 09:44:56 -05001377run_phase stack extra
Dean Troyer768295e2013-01-09 13:42:03 -06001378
Ryan Hsufeb28832013-11-07 12:12:35 -08001379
Dean Troyerdc97cb72015-03-28 08:20:50 -05001380# local.conf post-extra
1381# ---------------------
1382
1383# Apply late configuration from ``local.conf`` if it exists for layer 2 services
Ryan Hsufeb28832013-11-07 12:12:35 -08001384# Phase: post-extra
1385merge_config_group $TOP_DIR/local.conf post-extra
1386
Dean Troyer768295e2013-01-09 13:42:03 -06001387
Dean Troyerf5633dd2012-03-28 11:21:40 -05001388# Run local script
Dean Troyerdc97cb72015-03-28 08:20:50 -05001389# ----------------
Dean Troyerf5633dd2012-03-28 11:21:40 -05001390
1391# Run ``local.sh`` if it exists to perform user-managed tasks
1392if [[ -x $TOP_DIR/local.sh ]]; then
1393 echo "Running user script $TOP_DIR/local.sh"
1394 $TOP_DIR/local.sh
1395fi
1396
Sean Daguec71973e2015-09-08 07:12:48 -04001397# Sanity checks
1398# =============
1399
Sean Daguec2fe9162017-07-28 11:29:18 +00001400# Check that computes are all ready
1401#
1402# TODO(sdague): there should be some generic phase here.
1403if is_service_enabled n-cpu; then
1404 is_nova_ready
1405fi
1406
jiajun xua9414242012-12-06 16:30:57 +08001407# Check the status of running services
1408service_check
Dean Troyerf5633dd2012-03-28 11:21:40 -05001409
Sean Daguec71973e2015-09-08 07:12:48 -04001410# ensure that all the libraries we think we installed from git,
1411# actually were.
Ian Wienandae9c6ab2017-09-29 10:16:47 +10001412check_libs_from_git
Sean Daguec71973e2015-09-08 07:12:48 -04001413
Dean Troyerb7490da2013-03-18 16:07:56 -05001414
Dan Smith71119b42016-08-15 12:06:55 -07001415# Configure nova cellsv2
1416# ----------------------
1417
1418# Do this late because it requires compute hosts to have started
Matt Riedemannf1660812016-11-01 15:44:06 -04001419if is_service_enabled n-api; then
Sean Dague6d66e642016-12-05 06:28:26 -05001420 if is_service_enabled n-cpu; then
Matt Riedemannf15224c2017-03-02 12:45:47 -05001421 $TOP_DIR/tools/discover_hosts.sh
Sean Dague6d66e642016-12-05 06:28:26 -05001422 else
1423 # Some CI systems like Hyper-V build the control plane on
1424 # Linux, and join in non Linux Computes after setup. This
1425 # allows them to delay the processing until after their whole
1426 # environment is up.
1427 echo_summary "SKIPPING Cell setup because n-cpu is not enabled. You will have to do this manually before you have a working environment."
1428 fi
Dan Smith71119b42016-08-15 12:06:55 -07001429fi
1430
Steve Martinellibbe771a2015-01-20 13:30:33 -05001431# Bash completion
1432# ===============
1433
1434# Prepare bash completion for OSC
Steve Martinelli5ff77d62016-09-06 19:10:22 +00001435openstack complete | sudo tee /etc/bash_completion.d/osc.bash_completion > /dev/null
Steve Martinellibbe771a2015-01-20 13:30:33 -05001436
John Griffith4bf861c2015-03-17 21:07:39 -06001437# If cinder is configured, set global_filter for PV devices
1438if is_service_enabled cinder; then
1439 if is_ubuntu; then
1440 echo_summary "Configuring lvm.conf global device filter"
1441 set_lvm_filter
1442 else
1443 echo_summary "Skip setting lvm filters for non Ubuntu systems"
1444 fi
1445fi
Steve Martinellibbe771a2015-01-20 13:30:33 -05001446
Matthew Treinish655c22c2016-05-02 13:29:10 -04001447# Run test-config
1448# ---------------
1449
1450# Phase: test-config
1451run_phase stack test-config
1452
Sean Dague8bf8c8f2016-12-01 10:24:06 -05001453# Apply late configuration from ``local.conf`` if it exists for layer 2 services
1454# Phase: test-config
1455merge_config_group $TOP_DIR/local.conf test-config
Dean Troyerdc97cb72015-03-28 08:20:50 -05001456
Scott Moserb94f4bf2011-10-07 14:51:07 +00001457# Fin
1458# ===
1459
Dean Troyer471de7a2011-12-27 11:45:55 -06001460set +o xtrace
Scott Moserb94f4bf2011-10-07 14:51:07 +00001461
Dean Troyer7903b792012-09-13 17:16:12 -05001462if [[ -n "$LOGFILE" ]]; then
1463 exec 1>&3
1464 # Force all output to stdout and logs now
Dean Troyerbaa8b422012-09-24 15:02:05 -05001465 exec 1> >( tee -a "${LOGFILE}" ) 2>&1
Dean Troyer7903b792012-09-13 17:16:12 -05001466else
1467 # Force all output to stdout now
1468 exec 1>&3
1469fi
1470
Sean Dague95c33d52015-10-07 11:05:59 -04001471# Dump out the time totals
1472time_totals
Dean Troyerdf0972c2012-03-07 17:31:03 -06001473
Jesse Andrews24859062011-09-15 21:28:23 -07001474# Using the cloud
Dean Troyerdc97cb72015-03-28 08:20:50 -05001475# ===============
Jesse Andrews24859062011-09-15 21:28:23 -07001476
Jesse Andrewse19d8842011-11-01 20:06:55 -07001477echo ""
1478echo ""
1479echo ""
Brian Haley180f5eb2015-06-16 13:14:31 -04001480echo "This is your host IP address: $HOST_IP"
1481if [ "$HOST_IPV6" != "" ]; then
1482 echo "This is your host IPv6 address: $HOST_IPV6"
1483fi
Jesse Andrewse19d8842011-11-01 20:06:55 -07001484
Dean Troyerdf0972c2012-03-07 17:31:03 -06001485# If you installed Horizon on this server you should be able
root40a37002011-09-20 18:06:14 +00001486# to access the site using your browser.
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +00001487if is_service_enabled horizon; then
David Lyle7b105c52015-07-27 17:14:32 -06001488 echo "Horizon is now available at http://$SERVICE_HOST$HORIZON_APACHE_ROOT"
Jesse Andrews24859062011-09-15 21:28:23 -07001489fi
1490
Dean Troyerdf0972c2012-03-07 17:31:03 -06001491# If Keystone is present you can point ``nova`` cli to this server
Dean Troyer5ce44cd2015-02-12 22:18:33 -06001492if is_service_enabled keystone; then
Dean Troyerdc97cb72015-03-28 08:20:50 -05001493 echo "Keystone is serving at $KEYSTONE_SERVICE_URI/"
Dean Troyerdf0972c2012-03-07 17:31:03 -06001494 echo "The default users are: admin and demo"
1495 echo "The password: $ADMIN_PASSWORD"
Jesse Andrews24859062011-09-15 21:28:23 -07001496fi
termie523c4052011-09-28 19:49:40 -05001497
Dean Troyerafc29fe2013-02-07 15:56:24 -06001498# Warn that a deprecated feature was used
1499if [[ -n "$DEPRECATED_TEXT" ]]; then
Sean Dague2c0faca2017-06-28 09:13:04 -04001500 echo
1501 echo -e "WARNING: $DEPRECATED_TEXT"
1502 echo
Dean Troyerced65172012-03-02 16:36:16 -06001503fi
1504
Sean Dague8b8441f2017-05-02 06:14:11 -04001505# If USE_SYSTEMD is enabled, tell the user about using it.
1506if [[ "$USE_SYSTEMD" == "True" ]]; then
Sean Dague2c0faca2017-06-28 09:13:04 -04001507 echo
Sean Dague8b8441f2017-05-02 06:14:11 -04001508 echo "Services are running under systemd unit files."
1509 echo "For more information see: "
Takashi NATSUMEfa007772017-07-22 08:59:43 +09001510 echo "https://docs.openstack.org/devstack/latest/systemd.html"
Sean Dague2c0faca2017-06-28 09:13:04 -04001511 echo
Sean Dague8b8441f2017-05-02 06:14:11 -04001512fi
1513
Ian Wienand07cbc442017-06-30 12:29:19 +10001514# Useful info on current state
1515cat /etc/devstack-version
Sean Dague2c0faca2017-06-28 09:13:04 -04001516echo
1517
Dean Troyer4a43b7b2012-08-28 17:43:40 -05001518# Indicate how long this took to run (bash maintained variable ``SECONDS``)
Dean Troyer7903b792012-09-13 17:16:12 -05001519echo_summary "stack.sh completed in $SECONDS seconds."
Dean Troyer80684552014-03-05 11:50:23 -06001520
Sean Dague2c0faca2017-06-28 09:13:04 -04001521
Dean Troyer80684552014-03-05 11:50:23 -06001522# Restore/close logging file descriptors
1523exec 1>&3
1524exec 2>&3
1525exec 3>&-
1526exec 6>&-