Sean Dague | e263c82 | 2014-12-05 14:25:28 -0500 | [diff] [blame] | 1 | #!/bin/bash |
| 2 | # |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 3 | # lib/rpc_backend |
| 4 | # Interface for interactig with different rpc backend |
| 5 | # rpc backend settings |
| 6 | |
| 7 | # Dependencies: |
Adam Spiers | 6a5aa7c | 2013-10-24 11:27:02 +0100 | [diff] [blame] | 8 | # |
| 9 | # - ``functions`` file |
Abhishek Chanda | d5b74c6 | 2014-12-12 02:15:55 +0530 | [diff] [blame] | 10 | # - ``RABBIT_{HOST|PASSWORD|USERID}`` must be defined when RabbitMQ is used |
Kenneth Giusti | 7e58c06 | 2014-07-23 16:44:37 -0400 | [diff] [blame] | 11 | # - ``RPC_MESSAGING_PROTOCOL`` option for configuring the messaging protocol |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 12 | |
| 13 | # ``stack.sh`` calls the entry points in this order: |
| 14 | # |
Adam Spiers | 6a5aa7c | 2013-10-24 11:27:02 +0100 | [diff] [blame] | 15 | # - check_rpc_backend |
| 16 | # - install_rpc_backend |
| 17 | # - restart_rpc_backend |
| 18 | # - iniset_rpc_backend |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 19 | |
| 20 | # Save trace setting |
| 21 | XTRACE=$(set +o | grep xtrace) |
| 22 | set +o xtrace |
| 23 | |
Sean Dague | 5375329 | 2014-12-04 19:38:15 -0500 | [diff] [blame] | 24 | RPC_MESSAGING_PROTOCOL=${RPC_MESSAGING_PROTOCOL:-0.9} |
| 25 | |
| 26 | # TODO(sdague): RPC backend selection is super wonky because we treat |
| 27 | # messaging server as a service, which it really isn't for multi host |
| 28 | QPID_HOST=${QPID_HOST:-} |
Dean Troyer | cc6b443 | 2013-04-08 15:38:03 -0500 | [diff] [blame] | 29 | |
| 30 | # Functions |
| 31 | # --------- |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 32 | |
Matthieu Huin | 7a7a466 | 2013-04-15 17:13:41 +0200 | [diff] [blame] | 33 | |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 34 | # Make sure we only have one rpc backend enabled. |
| 35 | # Also check the specified rpc backend is available on your platform. |
Ian Wienand | aee18c7 | 2014-02-21 15:35:08 +1100 | [diff] [blame] | 36 | function check_rpc_backend { |
Dean Troyer | 3ef23bc | 2014-07-25 14:56:22 -0500 | [diff] [blame] | 37 | local c svc |
| 38 | |
Matthieu Huin | 7a7a466 | 2013-04-15 17:13:41 +0200 | [diff] [blame] | 39 | local rpc_needed=1 |
| 40 | # We rely on the fact that filenames in lib/* match the service names |
| 41 | # that can be passed as arguments to is_service_enabled. |
| 42 | # We check for a call to iniset_rpc_backend in these files, meaning |
| 43 | # the service needs a backend. |
Vishvananda Ishaya | 78a53d9 | 2013-05-09 17:20:31 -0700 | [diff] [blame] | 44 | rpc_candidates=$(grep -rl iniset_rpc_backend $TOP_DIR/lib/ | awk -F/ '{print $NF}') |
Matthieu Huin | 7a7a466 | 2013-04-15 17:13:41 +0200 | [diff] [blame] | 45 | for c in ${rpc_candidates}; do |
| 46 | if is_service_enabled $c; then |
| 47 | rpc_needed=0 |
| 48 | break |
| 49 | fi |
| 50 | done |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 51 | local rpc_backend_cnt=0 |
| 52 | for svc in qpid zeromq rabbit; do |
| 53 | is_service_enabled $svc && |
Dean Troyer | ffd1768 | 2014-08-02 16:07:03 -0500 | [diff] [blame] | 54 | (( rpc_backend_cnt++ )) || true |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 55 | done |
| 56 | if [ "$rpc_backend_cnt" -gt 1 ]; then |
Daniel P. Berrange | c1dbf10 | 2015-01-22 14:09:00 +0000 | [diff] [blame] | 57 | die $LINENO \ |
| 58 | "Only one rpc backend may be enabled, " \ |
| 59 | "set only one of 'rabbit', 'qpid', 'zeromq' " \ |
| 60 | "via ENABLED_SERVICES." |
Matthieu Huin | 7a7a466 | 2013-04-15 17:13:41 +0200 | [diff] [blame] | 61 | elif [ "$rpc_backend_cnt" == 0 ] && [ "$rpc_needed" == 0 ]; then |
Daniel P. Berrange | c1dbf10 | 2015-01-22 14:09:00 +0000 | [diff] [blame] | 62 | die $LINENO \ |
| 63 | "at least one rpc backend must be enabled, " \ |
| 64 | "set one of 'rabbit', 'qpid', 'zeromq'" \ |
| 65 | "via ENABLED_SERVICES." |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 66 | fi |
| 67 | |
| 68 | if is_service_enabled qpid && ! qpid_is_supported; then |
Nachi Ueno | 07115eb | 2013-02-26 12:38:18 -0800 | [diff] [blame] | 69 | die $LINENO "Qpid support is not available for this version of your distribution." |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 70 | fi |
| 71 | } |
| 72 | |
Dean Troyer | 995eb92 | 2013-03-07 16:11:40 -0600 | [diff] [blame] | 73 | # clean up after rpc backend - eradicate all traces so changing backends |
| 74 | # produces a clean switch |
| 75 | function cleanup_rpc_backend { |
| 76 | if is_service_enabled rabbit; then |
| 77 | # Obliterate rabbitmq-server |
| 78 | uninstall_package rabbitmq-server |
DennyZhang | 557744f | 2013-10-14 09:50:13 -0500 | [diff] [blame] | 79 | sudo killall epmd || sudo killall -9 epmd |
Dean Troyer | 995eb92 | 2013-03-07 16:11:40 -0600 | [diff] [blame] | 80 | if is_ubuntu; then |
| 81 | # And the Erlang runtime too |
Sahid Orentino Ferdjaoui | e964827 | 2014-02-23 18:55:51 +0100 | [diff] [blame] | 82 | apt_get purge -y erlang* |
Dean Troyer | 995eb92 | 2013-03-07 16:11:40 -0600 | [diff] [blame] | 83 | fi |
| 84 | elif is_service_enabled qpid; then |
| 85 | if is_fedora; then |
zhhuabj | 5595fdc | 2013-05-08 18:27:20 +0800 | [diff] [blame] | 86 | uninstall_package qpid-cpp-server |
Dean Troyer | 995eb92 | 2013-03-07 16:11:40 -0600 | [diff] [blame] | 87 | elif is_ubuntu; then |
| 88 | uninstall_package qpidd |
| 89 | else |
| 90 | exit_distro_not_supported "qpid installation" |
| 91 | fi |
| 92 | elif is_service_enabled zeromq; then |
| 93 | if is_fedora; then |
Li Ma | d3ca141 | 2014-12-21 23:36:43 -0800 | [diff] [blame] | 94 | uninstall_package zeromq python-zmq |
| 95 | if [ "$ZEROMQ_MATCHMAKER" == "redis" ]; then |
| 96 | uninstall_package redis python-redis |
| 97 | fi |
Dean Troyer | 995eb92 | 2013-03-07 16:11:40 -0600 | [diff] [blame] | 98 | elif is_ubuntu; then |
Li Ma | d3ca141 | 2014-12-21 23:36:43 -0800 | [diff] [blame] | 99 | uninstall_package libzmq1 python-zmq |
| 100 | if [ "$ZEROMQ_MATCHMAKER" == "redis" ]; then |
| 101 | uninstall_package redis-server python-redis |
| 102 | fi |
Dean Troyer | 995eb92 | 2013-03-07 16:11:40 -0600 | [diff] [blame] | 103 | elif is_suse; then |
Li Ma | d3ca141 | 2014-12-21 23:36:43 -0800 | [diff] [blame] | 104 | uninstall_package libzmq1 python-pyzmq |
| 105 | if [ "$ZEROMQ_MATCHMAKER" == "redis" ]; then |
| 106 | uninstall_package redis python-redis |
| 107 | fi |
Dean Troyer | 995eb92 | 2013-03-07 16:11:40 -0600 | [diff] [blame] | 108 | else |
| 109 | exit_distro_not_supported "zeromq installation" |
| 110 | fi |
| 111 | fi |
Kenneth Giusti | 7e58c06 | 2014-07-23 16:44:37 -0400 | [diff] [blame] | 112 | |
| 113 | # Remove the AMQP 1.0 messaging libraries |
| 114 | if [ "$RPC_MESSAGING_PROTOCOL" == "AMQP1" ]; then |
| 115 | if is_fedora; then |
| 116 | uninstall_package qpid-proton-c-devel |
| 117 | uninstall_package python-qpid-proton |
| 118 | fi |
| 119 | # TODO(kgiusti) ubuntu cleanup |
| 120 | fi |
Dean Troyer | 995eb92 | 2013-03-07 16:11:40 -0600 | [diff] [blame] | 121 | } |
| 122 | |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 123 | # install rpc backend |
Ian Wienand | aee18c7 | 2014-02-21 15:35:08 +1100 | [diff] [blame] | 124 | function install_rpc_backend { |
Kenneth Giusti | 7e58c06 | 2014-07-23 16:44:37 -0400 | [diff] [blame] | 125 | # Regardless of the broker used, if AMQP 1.0 is configured load |
| 126 | # the necessary messaging client libraries for oslo.messaging |
| 127 | if [ "$RPC_MESSAGING_PROTOCOL" == "AMQP1" ]; then |
| 128 | if is_fedora; then |
| 129 | install_package qpid-proton-c-devel |
| 130 | install_package python-qpid-proton |
| 131 | elif is_ubuntu; then |
| 132 | # TODO(kgiusti) The QPID AMQP 1.0 protocol libraries |
| 133 | # are not yet in the ubuntu repos. Enable these installs |
| 134 | # once they are present: |
| 135 | #install_package libqpid-proton2-dev |
| 136 | #install_package python-qpid-proton |
| 137 | # Also add 'uninstall' directives in cleanup_rpc_backend()! |
| 138 | exit_distro_not_supported "QPID AMQP 1.0 Proton libraries" |
| 139 | else |
| 140 | exit_distro_not_supported "QPID AMQP 1.0 Proton libraries" |
| 141 | fi |
| 142 | # Install pyngus client API |
| 143 | # TODO(kgiusti) can remove once python qpid bindings are |
| 144 | # available on all supported platforms _and_ pyngus is added |
| 145 | # to the requirements.txt file in oslo.messaging |
| 146 | pip_install pyngus |
| 147 | fi |
| 148 | |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 149 | if is_service_enabled rabbit; then |
| 150 | # Install rabbitmq-server |
Ian Wienand | 7ccf4e0 | 2014-07-23 14:24:11 +1000 | [diff] [blame] | 151 | install_package rabbitmq-server |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 152 | elif is_service_enabled qpid; then |
| 153 | if is_fedora; then |
zhhuabj | 5595fdc | 2013-05-08 18:27:20 +0800 | [diff] [blame] | 154 | install_package qpid-cpp-server |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 155 | elif is_ubuntu; then |
| 156 | install_package qpidd |
| 157 | else |
| 158 | exit_distro_not_supported "qpid installation" |
| 159 | fi |
Kenneth Giusti | 062a3c3 | 2014-09-30 10:14:08 -0400 | [diff] [blame] | 160 | _configure_qpid |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 161 | elif is_service_enabled zeromq; then |
Eric Windisch | 800bf38 | 2013-05-24 11:21:11 -0400 | [diff] [blame] | 162 | # NOTE(ewindisch): Redis is not strictly necessary |
| 163 | # but there is a matchmaker driver that works |
| 164 | # really well & out of the box for multi-node. |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 165 | if is_fedora; then |
Li Ma | d3ca141 | 2014-12-21 23:36:43 -0800 | [diff] [blame] | 166 | install_package zeromq python-zmq |
| 167 | if [ "$ZEROMQ_MATCHMAKER" == "redis" ]; then |
| 168 | install_package redis python-redis |
| 169 | fi |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 170 | elif is_ubuntu; then |
Li Ma | d3ca141 | 2014-12-21 23:36:43 -0800 | [diff] [blame] | 171 | install_package libzmq1 python-zmq |
| 172 | if [ "$ZEROMQ_MATCHMAKER" == "redis" ]; then |
| 173 | install_package redis-server python-redis |
| 174 | fi |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 175 | elif is_suse; then |
Li Ma | d3ca141 | 2014-12-21 23:36:43 -0800 | [diff] [blame] | 176 | install_package libzmq1 python-pyzmq |
| 177 | if [ "$ZEROMQ_MATCHMAKER" == "redis" ]; then |
| 178 | install_package redis python-redis |
| 179 | fi |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 180 | else |
| 181 | exit_distro_not_supported "zeromq installation" |
| 182 | fi |
Vincent Hou | 93a7a50 | 2013-09-27 06:16:54 -0400 | [diff] [blame] | 183 | # Necessary directory for socket location. |
| 184 | sudo mkdir -p /var/run/openstack |
| 185 | sudo chown $STACK_USER /var/run/openstack |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 186 | fi |
Kenneth Giusti | a1875b7 | 2014-09-15 14:21:55 -0400 | [diff] [blame] | 187 | |
| 188 | # If using the QPID broker, install the QPID python client API |
| 189 | if is_service_enabled qpid || [ -n "$QPID_HOST" ]; then |
| 190 | install_package python-qpid |
| 191 | fi |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 192 | } |
| 193 | |
| 194 | # restart the rpc backend |
Ian Wienand | aee18c7 | 2014-02-21 15:35:08 +1100 | [diff] [blame] | 195 | function restart_rpc_backend { |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 196 | if is_service_enabled rabbit; then |
| 197 | # Start rabbitmq-server |
| 198 | echo_summary "Starting RabbitMQ" |
Ben Nemec | ec5918f | 2014-01-30 16:07:23 +0000 | [diff] [blame] | 199 | # NOTE(bnemec): Retry initial rabbitmq configuration to deal with |
| 200 | # the fact that sometimes it fails to start properly. |
Ian Wienand | 64b56a5 | 2014-12-16 09:53:36 +1100 | [diff] [blame] | 201 | # Reference: https://bugzilla.redhat.com/show_bug.cgi?id=1144100 |
Dean Troyer | 3ef23bc | 2014-07-25 14:56:22 -0500 | [diff] [blame] | 202 | local i |
Ben Nemec | ec5918f | 2014-01-30 16:07:23 +0000 | [diff] [blame] | 203 | for i in `seq 10`; do |
Ian Wienand | 64b56a5 | 2014-12-16 09:53:36 +1100 | [diff] [blame] | 204 | local rc=0 |
| 205 | |
| 206 | [[ $i -eq "10" ]] && die $LINENO "Failed to set rabbitmq password" |
| 207 | |
Ben Nemec | ec5918f | 2014-01-30 16:07:23 +0000 | [diff] [blame] | 208 | if is_fedora || is_suse; then |
| 209 | # service is not started by default |
| 210 | restart_service rabbitmq-server |
| 211 | fi |
Ian Wienand | 64b56a5 | 2014-12-16 09:53:36 +1100 | [diff] [blame] | 212 | |
| 213 | rabbit_setuser "$RABBIT_USERID" "$RABBIT_PASSWORD" || rc=$? |
| 214 | if [ $rc -ne 0 ]; then |
| 215 | continue |
| 216 | fi |
| 217 | |
Ben Nemec | ec5918f | 2014-01-30 16:07:23 +0000 | [diff] [blame] | 218 | # change the rabbit password since the default is "guest" |
Ian Wienand | 64b56a5 | 2014-12-16 09:53:36 +1100 | [diff] [blame] | 219 | sudo rabbitmqctl change_password \ |
| 220 | $RABBIT_USERID $RABBIT_PASSWORD || rc=$? |
| 221 | if [ $rc -ne 0 ]; then |
| 222 | continue; |
| 223 | fi |
| 224 | |
| 225 | break |
Ben Nemec | ec5918f | 2014-01-30 16:07:23 +0000 | [diff] [blame] | 226 | done |
Kieran Spear | fb2a3ae | 2013-03-11 23:55:49 +0000 | [diff] [blame] | 227 | if is_service_enabled n-cell; then |
| 228 | # Add partitioned access for the child cell |
| 229 | if [ -z `sudo rabbitmqctl list_vhosts | grep child_cell` ]; then |
| 230 | sudo rabbitmqctl add_vhost child_cell |
Abhishek Chanda | d5b74c6 | 2014-12-12 02:15:55 +0530 | [diff] [blame] | 231 | sudo rabbitmqctl set_permissions -p child_cell $RABBIT_USERID ".*" ".*" ".*" |
Kieran Spear | fb2a3ae | 2013-03-11 23:55:49 +0000 | [diff] [blame] | 232 | fi |
| 233 | fi |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 234 | elif is_service_enabled qpid; then |
| 235 | echo_summary "Starting qpid" |
| 236 | restart_service qpidd |
| 237 | fi |
| 238 | } |
| 239 | |
| 240 | # iniset cofiguration |
Ian Wienand | aee18c7 | 2014-02-21 15:35:08 +1100 | [diff] [blame] | 241 | function iniset_rpc_backend { |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 242 | local package=$1 |
| 243 | local file=$2 |
| 244 | local section=$3 |
| 245 | if is_service_enabled zeromq; then |
Li Ma | ce1524d | 2014-12-21 00:46:34 -0800 | [diff] [blame] | 246 | iniset $file $section rpc_backend "zmq" |
Eric Windisch | 800bf38 | 2013-05-24 11:21:11 -0400 | [diff] [blame] | 247 | iniset $file $section rpc_zmq_matchmaker \ |
Li Ma | ce1524d | 2014-12-21 00:46:34 -0800 | [diff] [blame] | 248 | oslo.messaging._drivers.matchmaker_redis.MatchMakerRedis |
Eric Windisch | 800bf38 | 2013-05-24 11:21:11 -0400 | [diff] [blame] | 249 | # Set MATCHMAKER_REDIS_HOST if running multi-node. |
| 250 | MATCHMAKER_REDIS_HOST=${MATCHMAKER_REDIS_HOST:-127.0.0.1} |
| 251 | iniset $file matchmaker_redis host $MATCHMAKER_REDIS_HOST |
Jason Dillaman | 056df82 | 2013-07-01 08:52:13 -0400 | [diff] [blame] | 252 | elif is_service_enabled qpid || [ -n "$QPID_HOST" ]; then |
Kenneth Giusti | 7e58c06 | 2014-07-23 16:44:37 -0400 | [diff] [blame] | 253 | # For Qpid use the 'amqp' oslo.messaging transport when AMQP 1.0 is used |
| 254 | if [ "$RPC_MESSAGING_PROTOCOL" == "AMQP1" ]; then |
| 255 | iniset $file $section rpc_backend "amqp" |
| 256 | else |
| 257 | iniset $file $section rpc_backend ${package}.openstack.common.rpc.impl_qpid |
| 258 | fi |
Attila Fazekas | a3dc399 | 2013-07-11 11:26:35 +0200 | [diff] [blame] | 259 | iniset $file $section qpid_hostname ${QPID_HOST:-$SERVICE_HOST} |
Kenneth Giusti | 062a3c3 | 2014-09-30 10:14:08 -0400 | [diff] [blame] | 260 | if [ -n "$QPID_USERNAME" ]; then |
| 261 | iniset $file $section qpid_username $QPID_USERNAME |
Eoghan Glynn | 8c11f56 | 2013-03-01 12:09:01 +0000 | [diff] [blame] | 262 | iniset $file $section qpid_password $QPID_PASSWORD |
Eoghan Glynn | 8c11f56 | 2013-03-01 12:09:01 +0000 | [diff] [blame] | 263 | fi |
jiajun xu | 4a30b84 | 2013-01-22 11:49:03 +0800 | [diff] [blame] | 264 | elif is_service_enabled rabbit || { [ -n "$RABBIT_HOST" ] && [ -n "$RABBIT_PASSWORD" ]; }; then |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 265 | iniset $file $section rpc_backend ${package}.openstack.common.rpc.impl_kombu |
Nicolas Simonds | 8f084c6 | 2014-02-28 17:01:41 -0800 | [diff] [blame] | 266 | iniset $file $section rabbit_hosts $RABBIT_HOST |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 267 | iniset $file $section rabbit_password $RABBIT_PASSWORD |
Abhishek Chanda | d5b74c6 | 2014-12-12 02:15:55 +0530 | [diff] [blame] | 268 | iniset $file $section rabbit_userid $RABBIT_USERID |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 269 | fi |
| 270 | } |
| 271 | |
| 272 | # Check if qpid can be used on the current distro. |
| 273 | # qpid_is_supported |
Ian Wienand | aee18c7 | 2014-02-21 15:35:08 +1100 | [diff] [blame] | 274 | function qpid_is_supported { |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 275 | if [[ -z "$DISTRO" ]]; then |
| 276 | GetDistro |
| 277 | fi |
| 278 | |
Sean Dague | 2bb483d | 2014-01-03 09:41:27 -0500 | [diff] [blame] | 279 | # Qpid is not in openSUSE |
| 280 | ( ! is_suse ) |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 281 | } |
| 282 | |
Abhishek Chanda | d5b74c6 | 2014-12-12 02:15:55 +0530 | [diff] [blame] | 283 | function rabbit_setuser { |
| 284 | local user="$1" pass="$2" found="" out="" |
| 285 | out=$(sudo rabbitmqctl list_users) || |
| 286 | { echo "failed to list users" 1>&2; return 1; } |
| 287 | found=$(echo "$out" | awk '$1 == user { print $1 }' "user=$user") |
| 288 | if [ "$found" = "$user" ]; then |
| 289 | sudo rabbitmqctl change_password "$user" "$pass" || |
| 290 | { echo "failed changing pass for '$user'" 1>&2; return 1; } |
| 291 | else |
| 292 | sudo rabbitmqctl add_user "$user" "$pass" || |
| 293 | { echo "failed changing pass for $user"; return 1; } |
| 294 | fi |
| 295 | sudo rabbitmqctl set_permissions "$user" ".*" ".*" ".*" |
| 296 | } |
| 297 | |
Kenneth Giusti | 062a3c3 | 2014-09-30 10:14:08 -0400 | [diff] [blame] | 298 | # Set up the various configuration files used by the qpidd broker |
| 299 | function _configure_qpid { |
| 300 | |
| 301 | # the location of the configuration files have changed since qpidd 0.14 |
| 302 | local qpid_conf_file |
| 303 | if [ -e /etc/qpid/qpidd.conf ]; then |
| 304 | qpid_conf_file=/etc/qpid/qpidd.conf |
| 305 | elif [ -e /etc/qpidd.conf ]; then |
| 306 | qpid_conf_file=/etc/qpidd.conf |
| 307 | else |
| 308 | exit_distro_not_supported "qpidd.conf file not found!" |
| 309 | fi |
| 310 | |
| 311 | # force the ACL file to a known location |
| 312 | local qpid_acl_file=/etc/qpid/qpidd.acl |
| 313 | if [ ! -e $qpid_acl_file ]; then |
| 314 | sudo mkdir -p -m 755 `dirname $qpid_acl_file` |
| 315 | sudo touch $qpid_acl_file |
| 316 | sudo chmod o+r $qpid_acl_file |
| 317 | fi |
| 318 | sudo sed -i.bak '/^acl-file=/d' $qpid_conf_file |
| 319 | echo "acl-file=$qpid_acl_file" | sudo tee --append $qpid_conf_file |
| 320 | |
| 321 | sudo sed -i '/^auth=/d' $qpid_conf_file |
| 322 | if [ -z "$QPID_USERNAME" ]; then |
| 323 | # no QPID user configured, so disable authentication |
| 324 | # and access control |
| 325 | echo "auth=no" | sudo tee --append $qpid_conf_file |
| 326 | cat <<EOF | sudo tee $qpid_acl_file |
| 327 | acl allow all all |
| 328 | EOF |
| 329 | else |
| 330 | # Configure qpidd to use PLAIN authentication, and add |
| 331 | # QPID_USERNAME to the ACL: |
| 332 | echo "auth=yes" | sudo tee --append $qpid_conf_file |
| 333 | if [ -z "$QPID_PASSWORD" ]; then |
| 334 | read_password QPID_PASSWORD "ENTER A PASSWORD FOR QPID USER $QPID_USERNAME" |
| 335 | fi |
| 336 | # Create ACL to allow $QPID_USERNAME full access |
| 337 | cat <<EOF | sudo tee $qpid_acl_file |
| 338 | group admin ${QPID_USERNAME}@QPID |
| 339 | acl allow admin all |
| 340 | acl deny all all |
| 341 | EOF |
| 342 | # Add user to SASL database |
| 343 | if is_ubuntu; then |
| 344 | install_package sasl2-bin |
| 345 | elif is_fedora; then |
| 346 | install_package cyrus-sasl-lib |
| 347 | fi |
| 348 | local sasl_conf_file=/etc/sasl2/qpidd.conf |
| 349 | sudo sed -i.bak '/PLAIN/!s/mech_list: /mech_list: PLAIN /' $sasl_conf_file |
| 350 | local sasl_db=`sudo grep sasldb_path $sasl_conf_file | cut -f 2 -d ":" | tr -d [:blank:]` |
| 351 | if [ ! -e $sasl_db ]; then |
| 352 | sudo mkdir -p -m 755 `dirname $sasl_db` |
| 353 | fi |
| 354 | echo $QPID_PASSWORD | sudo saslpasswd2 -c -p -f $sasl_db -u QPID $QPID_USERNAME |
| 355 | sudo chmod o+r $sasl_db |
| 356 | fi |
| 357 | |
| 358 | # If AMQP 1.0 is specified, ensure that the version of the |
| 359 | # broker can support AMQP 1.0 and configure the queue and |
| 360 | # topic address patterns used by oslo.messaging. |
| 361 | if [ "$RPC_MESSAGING_PROTOCOL" == "AMQP1" ]; then |
| 362 | QPIDD=$(type -p qpidd) |
| 363 | if ! $QPIDD --help | grep -q "queue-patterns"; then |
| 364 | exit_distro_not_supported "qpidd with AMQP 1.0 support" |
| 365 | fi |
| 366 | if ! grep -q "queue-patterns=exclusive" $qpid_conf_file; then |
| 367 | cat <<EOF | sudo tee --append $qpid_conf_file |
| 368 | queue-patterns=exclusive |
| 369 | queue-patterns=unicast |
| 370 | topic-patterns=broadcast |
| 371 | EOF |
| 372 | fi |
| 373 | fi |
| 374 | } |
Dean Troyer | cc6b443 | 2013-04-08 15:38:03 -0500 | [diff] [blame] | 375 | |
Akihiro MOTOKI | b0f1c38 | 2013-01-13 17:58:12 +0900 | [diff] [blame] | 376 | # Restore xtrace |
| 377 | $XTRACE |
Sean Dague | 584d90e | 2013-03-29 14:34:53 -0400 | [diff] [blame] | 378 | |
Adam Spiers | 6a5aa7c | 2013-10-24 11:27:02 +0100 | [diff] [blame] | 379 | # Tell emacs to use shell-script-mode |
| 380 | ## Local variables: |
| 381 | ## mode: shell-script |
| 382 | ## End: |