blob: 862ba8486d39751c208fb27a928e7c7e7c436c56 [file] [log] [blame]
Salvatore Orlandod6767d02012-08-31 04:55:20 -07001# lib/quantum
2# functions - funstions specific to quantum
3
Dean Troyer60e9c0a2012-12-06 15:52:52 -06004# Dependencies:
5# ``functions`` file
6# ``DEST`` must be defined
7
Akihiro MOTOKI66afb472012-12-21 15:34:13 +09008# ``stack.sh`` calls the entry points in this order:
9#
10# install_quantum
11# install_quantumclient
12# install_quantum_agent_packages
13# install_quantum_third_party
14# setup_quantum
15# setup_quantumclient
16# configure_quantum
17# init_quantum
18# configure_quantum_third_party
19# init_quantum_third_party
20# start_quantum_third_party
21# create_nova_conf_quantum
22# start_quantum_service_and_check
23# create_quantum_initial_network
24# setup_quantum_debug
25# start_quantum_agents
26#
27# ``unstack.sh`` calls the entry points in this order:
28#
29# stop_quantum
30
31# Functions in lib/quantum are classified into the following categories:
32#
33# - entry points (called from stack.sh or unstack.sh)
34# - internal functions
35# - quantum exercises
36# - 3rd party programs
37
Dean Troyer60e9c0a2012-12-06 15:52:52 -060038
39# Quantum Networking
40# ------------------
41
42# Make sure that quantum is enabled in ``ENABLED_SERVICES``. If you want
43# to run Quantum on this host, make sure that q-svc is also in
44# ``ENABLED_SERVICES``.
45#
46# If you're planning to use the Quantum openvswitch plugin, set
47# ``Q_PLUGIN`` to "openvswitch" and make sure the q-agt service is enabled
48# in ``ENABLED_SERVICES``. If you're planning to use the Quantum
49# linuxbridge plugin, set ``Q_PLUGIN`` to "linuxbridge" and make sure the
50# q-agt service is enabled in ``ENABLED_SERVICES``.
51#
52# See "Quantum Network Configuration" below for additional variables
53# that must be set in localrc for connectivity across hosts with
54# Quantum.
55#
56# With Quantum networking the NET_MAN variable is ignored.
57
58
Salvatore Orlandod6767d02012-08-31 04:55:20 -070059# Save trace setting
60XTRACE=$(set +o | grep xtrace)
61set +o xtrace
62
Dean Troyer60e9c0a2012-12-06 15:52:52 -060063
Akihiro MOTOKI66afb472012-12-21 15:34:13 +090064# Quantum Network Configuration
65# -----------------------------
Dean Troyer60e9c0a2012-12-06 15:52:52 -060066
67# Set up default directories
Nachi Ueno8bc21f62012-11-19 22:04:28 -080068QUANTUM_DIR=$DEST/quantum
Dean Troyer60e9c0a2012-12-06 15:52:52 -060069QUANTUMCLIENT_DIR=$DEST/python-quantumclient
Gary Kotton9343df12012-11-28 10:05:53 +000070QUANTUM_AUTH_CACHE_DIR=${QUANTUM_AUTH_CACHE_DIR:-/var/cache/quantum}
Nachi Ueno5db5bfa2012-10-29 11:25:29 -070071
Dean Troyer60e9c0a2012-12-06 15:52:52 -060072QUANTUM_CONF_DIR=/etc/quantum
73QUANTUM_CONF=$QUANTUM_CONF_DIR/quantum.conf
74export QUANTUM_TEST_CONFIG_FILE=${QUANTUM_TEST_CONFIG_FILE:-"$QUANTUM_CONF_DIR/debug.ini"}
75
76# Default Quantum Plugin
77Q_PLUGIN=${Q_PLUGIN:-openvswitch}
78# Default Quantum Port
79Q_PORT=${Q_PORT:-9696}
80# Default Quantum Host
81Q_HOST=${Q_HOST:-$HOST_IP}
Dean Troyer60e9c0a2012-12-06 15:52:52 -060082# Default admin username
83Q_ADMIN_USERNAME=${Q_ADMIN_USERNAME:-quantum}
84# Default auth strategy
85Q_AUTH_STRATEGY=${Q_AUTH_STRATEGY:-keystone}
86# Use namespace or not
87Q_USE_NAMESPACE=${Q_USE_NAMESPACE:-True}
88Q_USE_ROOTWRAP=${Q_USE_ROOTWRAP:-True}
89# Meta data IP
90Q_META_DATA_IP=${Q_META_DATA_IP:-$HOST_IP}
Akihiro MOTOKI66afb472012-12-21 15:34:13 +090091# Allow Overlapping IP among subnets
Salvatore Orlandod1742fe2013-03-07 13:34:57 +010092Q_ALLOW_OVERLAPPING_IP=${Q_ALLOW_OVERLAPPING_IP:-True}
Dean Troyer60e9c0a2012-12-06 15:52:52 -060093# Use quantum-debug command
94Q_USE_DEBUG_COMMAND=${Q_USE_DEBUG_COMMAND:-False}
Maru Newby31c94ab2012-12-19 03:59:20 +000095# The name of the default q-l3 router
96Q_ROUTER_NAME=${Q_ROUTER_NAME:-router1}
Dean Troyer60e9c0a2012-12-06 15:52:52 -060097
Nachi Ueno8bc21f62012-11-19 22:04:28 -080098if is_service_enabled quantum; then
Dean Troyer60e9c0a2012-12-06 15:52:52 -060099 Q_RR_CONF_FILE=$QUANTUM_CONF_DIR/rootwrap.conf
Nachi Ueno8bc21f62012-11-19 22:04:28 -0800100 if [[ "$Q_USE_ROOTWRAP" == "False" ]]; then
101 Q_RR_COMMAND="sudo"
102 else
Nachi Uenoeb1aa3d2012-12-06 11:55:29 -0800103 QUANTUM_ROOTWRAP=$(get_rootwrap_location quantum)
104 Q_RR_COMMAND="sudo $QUANTUM_ROOTWRAP $Q_RR_CONF_FILE"
Nachi Ueno8bc21f62012-11-19 22:04:28 -0800105 fi
Nachi Ueno8bc21f62012-11-19 22:04:28 -0800106
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900107 # Provider Network Configurations
108 # --------------------------------
109
110 # The following variables control the Quantum openvswitch and
111 # linuxbridge plugins' allocation of tenant networks and
112 # availability of provider networks. If these are not configured
113 # in localrc, tenant networks will be local to the host (with no
114 # remote connectivity), and no physical resources will be
115 # available for the allocation of provider networks.
116
117 # To use GRE tunnels for tenant networks, set to True in
118 # localrc. GRE tunnels are only supported by the openvswitch
119 # plugin, and currently only on Ubuntu.
120 ENABLE_TENANT_TUNNELS=${ENABLE_TENANT_TUNNELS:-False}
121
122 # If using GRE tunnels for tenant networks, specify the range of
123 # tunnel IDs from which tenant networks are allocated. Can be
124 # overriden in localrc in necesssary.
125 TENANT_TUNNEL_RANGES=${TENANT_TUNNEL_RANGE:-1:1000}
126
127 # To use VLANs for tenant networks, set to True in localrc. VLANs
128 # are supported by the openvswitch and linuxbridge plugins, each
129 # requiring additional configuration described below.
130 ENABLE_TENANT_VLANS=${ENABLE_TENANT_VLANS:-False}
131
132 # If using VLANs for tenant networks, set in localrc to specify
133 # the range of VLAN VIDs from which tenant networks are
134 # allocated. An external network switch must be configured to
135 # trunk these VLANs between hosts for multi-host connectivity.
136 #
137 # Example: ``TENANT_VLAN_RANGE=1000:1999``
138 TENANT_VLAN_RANGE=${TENANT_VLAN_RANGE:-}
139
140 # If using VLANs for tenant networks, or if using flat or VLAN
141 # provider networks, set in localrc to the name of the physical
142 # network, and also configure OVS_PHYSICAL_BRIDGE for the
143 # openvswitch agent or LB_PHYSICAL_INTERFACE for the linuxbridge
144 # agent, as described below.
145 #
146 # Example: ``PHYSICAL_NETWORK=default``
147 PHYSICAL_NETWORK=${PHYSICAL_NETWORK:-}
148
149 # With the openvswitch plugin, if using VLANs for tenant networks,
150 # or if using flat or VLAN provider networks, set in localrc to
151 # the name of the OVS bridge to use for the physical network. The
152 # bridge will be created if it does not already exist, but a
153 # physical interface must be manually added to the bridge as a
154 # port for external connectivity.
155 #
156 # Example: ``OVS_PHYSICAL_BRIDGE=br-eth1``
157 OVS_PHYSICAL_BRIDGE=${OVS_PHYSICAL_BRIDGE:-}
158
159 # With the linuxbridge plugin, if using VLANs for tenant networks,
160 # or if using flat or VLAN provider networks, set in localrc to
161 # the name of the network interface to use for the physical
162 # network.
163 #
164 # Example: ``LB_PHYSICAL_INTERFACE=eth1``
165 LB_PHYSICAL_INTERFACE=${LB_PHYSICAL_INTERFACE:-}
166
167 # With the openvswitch plugin, set to True in localrc to enable
168 # provider GRE tunnels when ``ENABLE_TENANT_TUNNELS`` is False.
169 #
170 # Example: ``OVS_ENABLE_TUNNELING=True``
171 OVS_ENABLE_TUNNELING=${OVS_ENABLE_TUNNELING:-$ENABLE_TENANT_TUNNELS}
172fi
Dean Troyer60e9c0a2012-12-06 15:52:52 -0600173
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900174# Quantum plugin specific functions
175# ---------------------------------
176# Please refer to lib/quantum_plugins/README.md for details.
177source $TOP_DIR/lib/quantum_plugins/$Q_PLUGIN
178
Eugene Nikanorovb7d82842013-03-06 16:28:33 +0400179# Agent loadbalancer service plugin functions
180# -------------------------------------------
181# Hardcoding for 1 service plugin for now
182source $TOP_DIR/lib/quantum_plugins/agent_loadbalancer
183
Dean Troyer60e9c0a2012-12-06 15:52:52 -0600184# Entry Points
185# ------------
186
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900187# configure_quantum()
188# Set common config for all quantum server and agents.
189function configure_quantum() {
190 _configure_quantum_common
Akihiro MOTOKIb0f1c382013-01-13 17:58:12 +0900191 iniset_rpc_backend quantum $QUANTUM_CONF DEFAULT
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900192
Eugene Nikanorovb7d82842013-03-06 16:28:33 +0400193 # goes before q-svc to init Q_SERVICE_PLUGIN_CLASSES
194 if is_service_enabled q-lbaas; then
195 _configure_quantum_lbaas
196 fi
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900197 if is_service_enabled q-svc; then
198 _configure_quantum_service
199 fi
200 if is_service_enabled q-agt; then
201 _configure_quantum_plugin_agent
202 fi
203 if is_service_enabled q-dhcp; then
204 _configure_quantum_dhcp_agent
205 fi
206 if is_service_enabled q-l3; then
207 _configure_quantum_l3_agent
208 fi
209 if is_service_enabled q-meta; then
210 _configure_quantum_metadata_agent
211 fi
212
213 _configure_quantum_debug_command
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900214}
215
216function create_nova_conf_quantum() {
Devananda van der Veen9bc47db2012-12-12 16:52:55 -0800217 iniset $NOVA_CONF DEFAULT network_api_class "nova.network.quantumv2.api.API"
218 iniset $NOVA_CONF DEFAULT quantum_admin_username "$Q_ADMIN_USERNAME"
219 iniset $NOVA_CONF DEFAULT quantum_admin_password "$SERVICE_PASSWORD"
220 iniset $NOVA_CONF DEFAULT quantum_admin_auth_url "$KEYSTONE_SERVICE_PROTOCOL://$KEYSTONE_SERVICE_HOST:$KEYSTONE_AUTH_PORT/v2.0"
221 iniset $NOVA_CONF DEFAULT quantum_auth_strategy "$Q_AUTH_STRATEGY"
222 iniset $NOVA_CONF DEFAULT quantum_admin_tenant_name "$SERVICE_TENANT_NAME"
223 iniset $NOVA_CONF DEFAULT quantum_url "http://$Q_HOST:$Q_PORT"
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900224
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900225 # set NOVA_VIF_DRIVER and optionally set options in nova_conf
226 quantum_plugin_create_nova_conf
227
Devananda van der Veen9bc47db2012-12-12 16:52:55 -0800228 iniset $NOVA_CONF DEFAULT libvirt_vif_driver "$NOVA_VIF_DRIVER"
229 iniset $NOVA_CONF DEFAULT linuxnet_interface_driver "$LINUXNET_VIF_DRIVER"
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900230 if is_service_enabled q-meta; then
Devananda van der Veen9bc47db2012-12-12 16:52:55 -0800231 iniset $NOVA_CONF DEFAULT service_quantum_metadata_proxy "True"
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900232 fi
233}
234
235# create_quantum_accounts() - Set up common required quantum accounts
236
237# Tenant User Roles
238# ------------------------------------------------------------------
239# service quantum admin # if enabled
240
241# Migrated from keystone_data.sh
242function create_quantum_accounts() {
243
244 SERVICE_TENANT=$(keystone tenant-list | awk "/ $SERVICE_TENANT_NAME / { print \$2 }")
245 ADMIN_ROLE=$(keystone role-list | awk "/ admin / { print \$2 }")
246
247 if [[ "$ENABLED_SERVICES" =~ "q-svc" ]]; then
248 QUANTUM_USER=$(keystone user-create \
249 --name=quantum \
250 --pass="$SERVICE_PASSWORD" \
251 --tenant_id $SERVICE_TENANT \
252 --email=quantum@example.com \
253 | grep " id " | get_field 2)
254 keystone user-role-add \
255 --tenant_id $SERVICE_TENANT \
256 --user_id $QUANTUM_USER \
257 --role_id $ADMIN_ROLE
258 if [[ "$KEYSTONE_CATALOG_BACKEND" = 'sql' ]]; then
259 QUANTUM_SERVICE=$(keystone service-create \
260 --name=quantum \
261 --type=network \
262 --description="Quantum Service" \
263 | grep " id " | get_field 2)
264 keystone endpoint-create \
265 --region RegionOne \
266 --service_id $QUANTUM_SERVICE \
267 --publicurl "http://$SERVICE_HOST:9696/" \
268 --adminurl "http://$SERVICE_HOST:9696/" \
269 --internalurl "http://$SERVICE_HOST:9696/"
270 fi
271 fi
272}
273
274function create_quantum_initial_network() {
275 TENANT_ID=$(keystone tenant-list | grep " demo " | get_field 1)
276
277 # Create a small network
278 # Since quantum command is executed in admin context at this point,
279 # ``--tenant_id`` needs to be specified.
Devananda van der Veen37a8d152013-01-15 17:27:34 -0800280 if is_baremetal; then
281 sudo ovs-vsctl add-port $OVS_PHYSICAL_BRIDGE $PUBLIC_INTERFACE
282 for IP in $(ip addr show dev $PUBLIC_INTERFACE | grep ' inet ' | awk '{print $2}'); do
283 sudo ip addr del $IP dev $PUBLIC_INTERFACE
284 sudo ip addr add $IP dev $OVS_PHYSICAL_BRIDGE
285 done
286 NET_ID=$(quantum net-create $PHYSICAL_NETWORK --tenant_id $TENANT_ID --provider:network_type flat --provider:physical_network "$PHYSICAL_NETWORK" | grep ' id ' | get_field 2)
287 SUBNET_ID=$(quantum subnet-create --tenant_id $TENANT_ID --ip_version 4 ${ALLOCATION_POOL:+--allocation-pool $ALLOCATION_POOL} --gateway $NETWORK_GATEWAY $NET_ID $FIXED_RANGE | grep ' id ' | get_field 2)
288 sudo ifconfig $OVS_PHYSICAL_BRIDGE up
289 else
290 NET_ID=$(quantum net-create --tenant_id $TENANT_ID "$PRIVATE_NETWORK_NAME" | grep ' id ' | get_field 2)
291 SUBNET_ID=$(quantum subnet-create --tenant_id $TENANT_ID --ip_version 4 --gateway $NETWORK_GATEWAY $NET_ID $FIXED_RANGE | grep ' id ' | get_field 2)
292 fi
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900293
Dan Wendlandt555ecd02013-02-23 23:07:07 -0800294 if [[ "$Q_L3_ENABLED" == "True" ]]; then
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900295 # Create a router, and add the private subnet as one of its interfaces
Dan Wendlandt555ecd02013-02-23 23:07:07 -0800296 if [[ "$Q_L3_ROUTER_PER_TENANT" == "True" ]]; then
297 # create a tenant-owned router.
Maru Newby31c94ab2012-12-19 03:59:20 +0000298 ROUTER_ID=$(quantum router-create --tenant_id $TENANT_ID $Q_ROUTER_NAME | grep ' id ' | get_field 2)
299 else
Dan Wendlandt555ecd02013-02-23 23:07:07 -0800300 # Plugin only supports creating a single router, which should be admin owned.
Maru Newby31c94ab2012-12-19 03:59:20 +0000301 ROUTER_ID=$(quantum router-create $Q_ROUTER_NAME | grep ' id ' | get_field 2)
302 fi
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900303 quantum router-interface-add $ROUTER_ID $SUBNET_ID
304 # Create an external network, and a subnet. Configure the external network as router gw
305 EXT_NET_ID=$(quantum net-create "$PUBLIC_NETWORK_NAME" -- --router:external=True | grep ' id ' | get_field 2)
Stephen Ma8396d4f2013-02-18 05:32:59 -0800306 EXT_GW_IP=$(quantum subnet-create --ip_version 4 ${Q_FLOATING_ALLOCATION_POOL:+--allocation-pool $Q_FLOATING_ALLOCATION_POOL} $EXT_NET_ID $FLOATING_RANGE -- --enable_dhcp=False | grep 'gateway_ip' | get_field 2)
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900307 quantum router-gateway-set $ROUTER_ID $EXT_NET_ID
308
Dan Wendlandt555ecd02013-02-23 23:07:07 -0800309 if is_service_enabled q-l3; then
310 # logic is specific to using the l3-agent for l3
311 if is_quantum_ovs_base_plugin && [[ "$Q_USE_NAMESPACE" = "True" ]]; then
312 CIDR_LEN=${FLOATING_RANGE#*/}
313 sudo ip addr add $EXT_GW_IP/$CIDR_LEN dev $PUBLIC_BRIDGE
314 sudo ip link set $PUBLIC_BRIDGE up
315 ROUTER_GW_IP=`quantum port-list -c fixed_ips -c device_owner | grep router_gateway | awk -F '"' '{ print $8; }'`
316 sudo route add -net $FIXED_RANGE gw $ROUTER_GW_IP
317 fi
318 if [[ "$Q_USE_NAMESPACE" == "False" ]]; then
319 # Explicitly set router id in l3 agent configuration
320 iniset $Q_L3_CONF_FILE DEFAULT router_id $ROUTER_ID
321 fi
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900322 fi
323 fi
324}
325
326# init_quantum() - Initialize databases, etc.
327function init_quantum() {
328 :
329}
330
331# install_quantum() - Collect source and prepare
332function install_quantum() {
333 git_clone $QUANTUM_REPO $QUANTUM_DIR $QUANTUM_BRANCH
334}
335
336# install_quantumclient() - Collect source and prepare
337function install_quantumclient() {
338 git_clone $QUANTUMCLIENT_REPO $QUANTUMCLIENT_DIR $QUANTUMCLIENT_BRANCH
339}
340
341# install_quantum_agent_packages() - Collect source and prepare
342function install_quantum_agent_packages() {
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900343 # install packages that is specific to plugin agent
344 quantum_plugin_install_agent_packages
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900345}
346
347function setup_quantum() {
348 setup_develop $QUANTUM_DIR
349}
350
351function setup_quantumclient() {
352 setup_develop $QUANTUMCLIENT_DIR
353}
354
355# Start running processes, including screen
356function start_quantum_service_and_check() {
357 # Start the Quantum service
358 screen_it q-svc "cd $QUANTUM_DIR && python $QUANTUM_DIR/bin/quantum-server --config-file $QUANTUM_CONF --config-file /$Q_PLUGIN_CONF_FILE"
359 echo "Waiting for Quantum to start..."
Aaron Rosen0ae742c2013-02-21 12:10:30 -0800360 if ! timeout $SERVICE_TIMEOUT sh -c "while ! http_proxy= wget -q -O- http://$Q_HOST:$Q_PORT; do sleep 1; done"; then
Nachi Ueno07115eb2013-02-26 12:38:18 -0800361 die $LINENO "Quantum did not start"
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900362 fi
363}
364
365# Start running processes, including screen
366function start_quantum_agents() {
367 # Start up the quantum agents if enabled
368 screen_it q-agt "python $AGENT_BINARY --config-file $QUANTUM_CONF --config-file /$Q_PLUGIN_CONF_FILE"
369 screen_it q-dhcp "python $AGENT_DHCP_BINARY --config-file $QUANTUM_CONF --config-file=$Q_DHCP_CONF_FILE"
370 screen_it q-meta "python $AGENT_META_BINARY --config-file $QUANTUM_CONF --config-file=$Q_META_CONF_FILE"
371 screen_it q-l3 "python $AGENT_L3_BINARY --config-file $QUANTUM_CONF --config-file=$Q_L3_CONF_FILE"
Eugene Nikanorovb7d82842013-03-06 16:28:33 +0400372
373 if is_service_enabled q-lbaas; then
374 screen_it q-lbaas "python $AGENT_LBAAS_BINARY --config-file $QUANTUM_CONF --config-file=$LBAAS_AGENT_CONF_FILENAME"
375 fi
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900376}
377
378# stop_quantum() - Stop running processes (non-screen)
379function stop_quantum() {
380 if is_service_enabled q-dhcp; then
381 pid=$(ps aux | awk '/[d]nsmasq.+interface=(tap|ns-)/ { print $2 }')
382 [ ! -z "$pid" ] && sudo kill -9 $pid
383 fi
384}
385
Dean Troyer995eb922013-03-07 16:11:40 -0600386# cleanup_quantum() - Remove residual data files, anything left over from previous
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900387# runs that a clean run would need to clean up
Dean Troyer995eb922013-03-07 16:11:40 -0600388function cleanup_quantum() {
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900389 :
390}
391
392# _configure_quantum_common()
393# Set common config for all quantum server and agents.
394# This MUST be called before other _configure_quantum_* functions.
395function _configure_quantum_common() {
396 # Put config files in ``QUANTUM_CONF_DIR`` for everyone to find
397 if [[ ! -d $QUANTUM_CONF_DIR ]]; then
398 sudo mkdir -p $QUANTUM_CONF_DIR
399 fi
Attila Fazekas91b8d132013-01-06 22:40:09 +0100400 sudo chown $STACK_USER $QUANTUM_CONF_DIR
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900401
402 cp $QUANTUM_DIR/etc/quantum.conf $QUANTUM_CONF
403
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900404 # set plugin-specific variables
405 # Q_PLUGIN_CONF_PATH, Q_PLUGIN_CONF_FILENAME, Q_DB_NAME, Q_PLUGIN_CLASS
406 quantum_plugin_configure_common
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900407
408 if [[ $Q_PLUGIN_CONF_PATH == '' || $Q_PLUGIN_CONF_FILENAME == '' || $Q_PLUGIN_CLASS == '' ]]; then
Nachi Ueno07115eb2013-02-26 12:38:18 -0800409 die $LINENO "Quantum plugin not set.. exiting"
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900410 fi
411
412 # If needed, move config file from ``$QUANTUM_DIR/etc/quantum`` to ``QUANTUM_CONF_DIR``
413 mkdir -p /$Q_PLUGIN_CONF_PATH
414 Q_PLUGIN_CONF_FILE=$Q_PLUGIN_CONF_PATH/$Q_PLUGIN_CONF_FILENAME
415 cp $QUANTUM_DIR/$Q_PLUGIN_CONF_FILE /$Q_PLUGIN_CONF_FILE
416
Attila Fazekas7e79d912013-03-03 12:23:04 +0100417 iniset /$Q_PLUGIN_CONF_FILE DATABASE sql_connection `database_connection_url $Q_DB_NAME`
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900418
419 _quantum_setup_rootwrap
420}
421
422function _configure_quantum_debug_command() {
423 if [[ "$Q_USE_DEBUG_COMMAND" != "True" ]]; then
424 return
425 fi
426
427 cp $QUANTUM_DIR/etc/l3_agent.ini $QUANTUM_TEST_CONFIG_FILE
428
429 iniset $QUANTUM_TEST_CONFIG_FILE DEFAULT verbose False
430 iniset $QUANTUM_TEST_CONFIG_FILE DEFAULT debug False
431 iniset $QUANTUM_TEST_CONFIG_FILE DEFAULT use_namespaces $Q_USE_NAMESPACE
432 iniset $QUANTUM_TEST_CONFIG_FILE DEFAULT root_helper "$Q_RR_COMMAND"
Gary Kottond9ca2b22013-01-30 13:52:43 +0000433 # Intermediate fix until Quantum patch lands and then line above will
434 # be cleaned.
435 iniset $QUANTUM_TEST_CONFIG_FILE AGENT root_helper "$Q_RR_COMMAND"
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900436
437 _quantum_setup_keystone $QUANTUM_TEST_CONFIG_FILE DEFAULT set_auth_url
438 _quantum_setup_interface_driver $QUANTUM_TEST_CONFIG_FILE
439
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900440 quantum_plugin_configure_debug_command
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900441}
442
443function _configure_quantum_dhcp_agent() {
444 AGENT_DHCP_BINARY="$QUANTUM_DIR/bin/quantum-dhcp-agent"
445 Q_DHCP_CONF_FILE=$QUANTUM_CONF_DIR/dhcp_agent.ini
446
447 cp $QUANTUM_DIR/etc/dhcp_agent.ini $Q_DHCP_CONF_FILE
448
449 iniset $Q_DHCP_CONF_FILE DEFAULT verbose True
450 iniset $Q_DHCP_CONF_FILE DEFAULT debug True
451 iniset $Q_DHCP_CONF_FILE DEFAULT use_namespaces $Q_USE_NAMESPACE
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900452 iniset $Q_DHCP_CONF_FILE DEFAULT root_helper "$Q_RR_COMMAND"
453
454 _quantum_setup_keystone $Q_DHCP_CONF_FILE DEFAULT set_auth_url
455 _quantum_setup_interface_driver $Q_DHCP_CONF_FILE
456
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900457 quantum_plugin_configure_dhcp_agent
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900458}
459
460function _configure_quantum_l3_agent() {
Dan Wendlandt555ecd02013-02-23 23:07:07 -0800461 Q_L3_ENABLED=True
462 # for l3-agent, only use per tenant router if we have namespaces
463 Q_L3_ROUTER_PER_TENANT=$Q_USE_NAMESPACE
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900464 AGENT_L3_BINARY="$QUANTUM_DIR/bin/quantum-l3-agent"
465 PUBLIC_BRIDGE=${PUBLIC_BRIDGE:-br-ex}
466 Q_L3_CONF_FILE=$QUANTUM_CONF_DIR/l3_agent.ini
467
468 cp $QUANTUM_DIR/etc/l3_agent.ini $Q_L3_CONF_FILE
469
470 iniset $Q_L3_CONF_FILE DEFAULT verbose True
471 iniset $Q_L3_CONF_FILE DEFAULT debug True
472 iniset $Q_L3_CONF_FILE DEFAULT use_namespaces $Q_USE_NAMESPACE
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900473 iniset $Q_L3_CONF_FILE DEFAULT root_helper "$Q_RR_COMMAND"
474
475 _quantum_setup_keystone $Q_L3_CONF_FILE DEFAULT set_auth_url
476 _quantum_setup_interface_driver $Q_L3_CONF_FILE
477
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900478 quantum_plugin_configure_l3_agent
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900479}
480
481function _configure_quantum_metadata_agent() {
482 AGENT_META_BINARY="$QUANTUM_DIR/bin/quantum-metadata-agent"
483 Q_META_CONF_FILE=$QUANTUM_CONF_DIR/metadata_agent.ini
484
485 cp $QUANTUM_DIR/etc/metadata_agent.ini $Q_META_CONF_FILE
486
487 iniset $Q_META_CONF_FILE DEFAULT verbose True
488 iniset $Q_META_CONF_FILE DEFAULT debug True
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900489 iniset $Q_META_CONF_FILE DEFAULT nova_metadata_ip $Q_META_DATA_IP
490 iniset $Q_META_CONF_FILE DEFAULT root_helper "$Q_RR_COMMAND"
491
492 _quantum_setup_keystone $Q_META_CONF_FILE DEFAULT set_auth_url
493}
494
Eugene Nikanorovb7d82842013-03-06 16:28:33 +0400495function _configure_quantum_lbaas()
496{
497 quantum_agent_lbaas_install_agent_packages
498 quantum_agent_lbaas_configure_common
499 quantum_agent_lbaas_configure_agent
500}
501
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900502# _configure_quantum_plugin_agent() - Set config files for quantum plugin agent
503# It is called when q-agt is enabled.
504function _configure_quantum_plugin_agent() {
Maru Newby2298ca42012-10-25 23:46:42 +0000505 # Specify the default root helper prior to agent configuration to
Gary Kotton98e18e92013-01-28 14:26:56 +0000506 # ensure that an agent's configuration can override the default
Maru Newby2298ca42012-10-25 23:46:42 +0000507 iniset /$Q_PLUGIN_CONF_FILE AGENT root_helper "$Q_RR_COMMAND"
508
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900509 # Configure agent for plugin
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900510 quantum_plugin_configure_plugin_agent
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900511}
512
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900513# _configure_quantum_service() - Set config files for quantum service
514# It is called when q-svc is enabled.
515function _configure_quantum_service() {
516 Q_API_PASTE_FILE=$QUANTUM_CONF_DIR/api-paste.ini
517 Q_POLICY_FILE=$QUANTUM_CONF_DIR/policy.json
518
519 cp $QUANTUM_DIR/etc/api-paste.ini $Q_API_PASTE_FILE
520 cp $QUANTUM_DIR/etc/policy.json $Q_POLICY_FILE
521
522 if is_service_enabled $DATABASE_BACKENDS; then
523 recreate_database $Q_DB_NAME utf8
524 else
Nachi Ueno07115eb2013-02-26 12:38:18 -0800525 die $LINENO "A database must be enabled in order to use the $Q_PLUGIN Quantum plugin."
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900526 fi
527
528 # Update either configuration file with plugin
529 iniset $QUANTUM_CONF DEFAULT core_plugin $Q_PLUGIN_CLASS
530
Eugene Nikanorovb7d82842013-03-06 16:28:33 +0400531 if [[ $Q_SERVICE_PLUGIN_CLASSES != '' ]]; then
532 iniset $QUANTUM_CONF DEFAULT service_plugins $Q_SERVICE_PLUGIN_CLASSES
533 fi
534
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900535 iniset $QUANTUM_CONF DEFAULT verbose True
536 iniset $QUANTUM_CONF DEFAULT debug True
Akihiro MOTOKI3c6e9a52013-02-26 14:50:56 +0900537 iniset $QUANTUM_CONF DEFAULT state_path $DATA_DIR/quantum
Salvatore Orlando3de02e82013-03-12 15:12:12 +0100538 iniset $QUANTUM_CONF DEFAULT policy_file $Q_POLICY_FILE
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900539 iniset $QUANTUM_CONF DEFAULT allow_overlapping_ips $Q_ALLOW_OVERLAPPING_IP
540
541 iniset $QUANTUM_CONF DEFAULT auth_strategy $Q_AUTH_STRATEGY
Akihiro MOTOKI712feb62013-02-11 23:45:19 +0900542 _quantum_setup_keystone $QUANTUM_CONF keystone_authtoken
543 # Comment out keystone authtoken configuration in api-paste.ini
544 # It is required to avoid any breakage in Quantum where the sample
545 # api-paste.ini has authtoken configurations.
546 _quantum_commentout_keystone_authtoken $Q_API_PASTE_FILE filter:authtoken
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900547
548 # Configure plugin
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900549 quantum_plugin_configure_service
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900550}
551
552# Utility Functions
553#------------------
554
555# _quantum_setup_rootwrap() - configure Quantum's rootwrap
556function _quantum_setup_rootwrap() {
Nachi Uenoeb1aa3d2012-12-06 11:55:29 -0800557 if [[ "$Q_USE_ROOTWRAP" == "False" ]]; then
558 return
559 fi
560 # Deploy new rootwrap filters files (owned by root).
561 # Wipe any existing rootwrap.d files first
Dean Troyer60e9c0a2012-12-06 15:52:52 -0600562 Q_CONF_ROOTWRAP_D=$QUANTUM_CONF_DIR/rootwrap.d
Nachi Uenoeb1aa3d2012-12-06 11:55:29 -0800563 if [[ -d $Q_CONF_ROOTWRAP_D ]]; then
564 sudo rm -rf $Q_CONF_ROOTWRAP_D
565 fi
Dean Troyer60e9c0a2012-12-06 15:52:52 -0600566 # Deploy filters to $QUANTUM_CONF_DIR/rootwrap.d
Nachi Uenoeb1aa3d2012-12-06 11:55:29 -0800567 mkdir -p -m 755 $Q_CONF_ROOTWRAP_D
568 cp -pr $QUANTUM_DIR/etc/quantum/rootwrap.d/* $Q_CONF_ROOTWRAP_D/
569 sudo chown -R root:root $Q_CONF_ROOTWRAP_D
570 sudo chmod 644 $Q_CONF_ROOTWRAP_D/*
Dean Troyer60e9c0a2012-12-06 15:52:52 -0600571 # Set up rootwrap.conf, pointing to $QUANTUM_CONF_DIR/rootwrap.d
Nachi Uenoeb1aa3d2012-12-06 11:55:29 -0800572 sudo cp -p $QUANTUM_DIR/etc/rootwrap.conf $Q_RR_CONF_FILE
573 sudo sed -e "s:^filters_path=.*$:filters_path=$Q_CONF_ROOTWRAP_D:" -i $Q_RR_CONF_FILE
574 sudo chown root:root $Q_RR_CONF_FILE
575 sudo chmod 0644 $Q_RR_CONF_FILE
576 # Specify rootwrap.conf as first parameter to quantum-rootwrap
577 ROOTWRAP_SUDOER_CMD="$QUANTUM_ROOTWRAP $Q_RR_CONF_FILE *"
578
579 # Set up the rootwrap sudoers for quantum
580 TEMPFILE=`mktemp`
581 echo "$USER ALL=(root) NOPASSWD: $ROOTWRAP_SUDOER_CMD" >$TEMPFILE
582 chmod 0440 $TEMPFILE
583 sudo chown root:root $TEMPFILE
584 sudo mv $TEMPFILE /etc/sudoers.d/quantum-rootwrap
Gary Kotton98e18e92013-01-28 14:26:56 +0000585
586 # Update the root_helper
587 iniset $QUANTUM_CONF AGENT root_helper "$Q_RR_COMMAND"
Nachi Uenoeb1aa3d2012-12-06 11:55:29 -0800588}
589
Salvatore Orlandod6767d02012-08-31 04:55:20 -0700590# Configures keystone integration for quantum service and agents
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900591function _quantum_setup_keystone() {
Salvatore Orlandod6767d02012-08-31 04:55:20 -0700592 local conf_file=$1
593 local section=$2
594 local use_auth_url=$3
595 if [[ -n $use_auth_url ]]; then
596 iniset $conf_file $section auth_url "$KEYSTONE_SERVICE_PROTOCOL://$KEYSTONE_AUTH_HOST:$KEYSTONE_AUTH_PORT/v2.0"
597 else
598 iniset $conf_file $section auth_host $KEYSTONE_SERVICE_HOST
599 iniset $conf_file $section auth_port $KEYSTONE_AUTH_PORT
600 iniset $conf_file $section auth_protocol $KEYSTONE_SERVICE_PROTOCOL
601 fi
602 iniset $conf_file $section admin_tenant_name $SERVICE_TENANT_NAME
603 iniset $conf_file $section admin_user $Q_ADMIN_USERNAME
604 iniset $conf_file $section admin_password $SERVICE_PASSWORD
Akihiro MOTOKI5e3deb62012-12-11 17:09:02 +0900605 iniset $conf_file $section signing_dir $QUANTUM_AUTH_CACHE_DIR
606 # Create cache dir
607 sudo mkdir -p $QUANTUM_AUTH_CACHE_DIR
Attila Fazekas91b8d132013-01-06 22:40:09 +0100608 sudo chown $STACK_USER $QUANTUM_AUTH_CACHE_DIR
Vishvananda Ishaya23431f32012-12-12 15:57:33 -0800609 rm -f $QUANTUM_AUTH_CACHE_DIR/*
Salvatore Orlandod6767d02012-08-31 04:55:20 -0700610}
611
Akihiro MOTOKI712feb62013-02-11 23:45:19 +0900612function _quantum_commentout_keystone_authtoken() {
613 local conf_file=$1
614 local section=$2
615
616 inicomment $conf_file $section auth_host
617 inicomment $conf_file $section auth_port
618 inicomment $conf_file $section auth_protocol
619 inicomment $conf_file $section auth_url
620
621 inicomment $conf_file $section admin_tenant_name
622 inicomment $conf_file $section admin_user
623 inicomment $conf_file $section admin_password
624 inicomment $conf_file $section signing_dir
625}
626
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900627function _quantum_setup_interface_driver() {
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900628 quantum_plugin_setup_interface_driver $1
Yoshihiro Kaneko602cf9b2012-07-23 06:27:36 +0000629}
630
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900631# Functions for Quantum Exercises
632#--------------------------------
633
634function delete_probe() {
635 local from_net="$1"
636 net_id=`_get_net_id $from_net`
637 probe_id=`quantum-debug --os-tenant-name admin --os-username admin --os-password $ADMIN_PASSWORD probe-list -c id -c network_id | grep $net_id | awk '{print $2}'`
638 quantum-debug --os-tenant-name admin --os-username admin probe-delete $probe_id
639}
640
641function setup_quantum_debug() {
642 if [[ "$Q_USE_DEBUG_COMMAND" == "True" ]]; then
643 public_net_id=`_get_net_id $PUBLIC_NETWORK_NAME`
644 quantum-debug --os-tenant-name admin --os-username admin --os-password $ADMIN_PASSWORD probe-create $public_net_id
645 private_net_id=`_get_net_id $PRIVATE_NETWORK_NAME`
646 quantum-debug --os-tenant-name admin --os-username admin --os-password $ADMIN_PASSWORD probe-create $private_net_id
Yoshihiro Kaneko602cf9b2012-07-23 06:27:36 +0000647 fi
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900648}
649
650function teardown_quantum_debug() {
651 delete_probe $PUBLIC_NETWORK_NAME
652 delete_probe $PRIVATE_NETWORK_NAME
Yoshihiro Kaneko602cf9b2012-07-23 06:27:36 +0000653}
654
Nachi Ueno5db5bfa2012-10-29 11:25:29 -0700655function _get_net_id() {
656 quantum --os-tenant-name admin --os-username admin --os-password $ADMIN_PASSWORD net-list | grep $1 | awk '{print $2}'
657}
658
659function _get_probe_cmd_prefix() {
660 local from_net="$1"
661 net_id=`_get_net_id $from_net`
662 probe_id=`quantum-debug --os-tenant-name admin --os-username admin --os-password $ADMIN_PASSWORD probe-list -c id -c network_id | grep $net_id | awk '{print $2}' | head -n 1`
Nachi Ueno8bc21f62012-11-19 22:04:28 -0800663 echo "$Q_RR_COMMAND ip netns exec qprobe-$probe_id"
Nachi Ueno5db5bfa2012-10-29 11:25:29 -0700664}
665
Nachi Ueno5db5bfa2012-10-29 11:25:29 -0700666function _ping_check_quantum() {
667 local from_net=$1
668 local ip=$2
669 local timeout_sec=$3
670 local expected=${4:-"True"}
671 local check_command=""
672 probe_cmd=`_get_probe_cmd_prefix $from_net`
673 if [[ "$expected" = "True" ]]; then
Nachi Ueno8bc21f62012-11-19 22:04:28 -0800674 check_command="while ! $probe_cmd ping -w 1 -c 1 $ip; do sleep 1; done"
Nachi Ueno5db5bfa2012-10-29 11:25:29 -0700675 else
Nachi Ueno8bc21f62012-11-19 22:04:28 -0800676 check_command="while $probe_cmd ping -w 1 -c 1 $ip; do sleep 1; done"
Nachi Ueno5db5bfa2012-10-29 11:25:29 -0700677 fi
678 if ! timeout $timeout_sec sh -c "$check_command"; then
679 if [[ "$expected" = "True" ]]; then
Nachi Ueno07115eb2013-02-26 12:38:18 -0800680 die $LINENO "[Fail] Couldn't ping server"
Nachi Ueno5db5bfa2012-10-29 11:25:29 -0700681 else
Nachi Ueno07115eb2013-02-26 12:38:18 -0800682 die $LINENO "[Fail] Could ping server"
Nachi Ueno5db5bfa2012-10-29 11:25:29 -0700683 fi
Nachi Ueno5db5bfa2012-10-29 11:25:29 -0700684 fi
685}
686
687# ssh check
688function _ssh_check_quantum() {
689 local from_net=$1
690 local key_file=$2
691 local ip=$3
692 local user=$4
693 local timeout_sec=$5
694 local probe_cmd = ""
695 probe_cmd=`_get_probe_cmd_prefix $from_net`
696 if ! timeout $timeout_sec sh -c "while ! $probe_cmd ssh -o StrictHostKeyChecking=no -i $key_file ${user}@$ip echo success ; do sleep 1; done"; then
Nachi Ueno07115eb2013-02-26 12:38:18 -0800697 die $LINENO "server didn't become ssh-able!"
Nachi Ueno5db5bfa2012-10-29 11:25:29 -0700698 fi
699}
700
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900701# Quantum 3rd party programs
702#---------------------------
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900703# please refer to lib/quantum_thirdparty/README.md for details
704QUANTUM_THIRD_PARTIES=""
705for f in $TOP_DIR/lib/quantum_thirdparty/*; do
706 third_party=$(basename $f)
707 if is_service_enabled $third_party; then
708 source $TOP_DIR/lib/quantum_thirdparty/$third_party
709 QUANTUM_THIRD_PARTIES="$QUANTUM_THIRD_PARTIES,$third_party"
710 fi
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900711done
712
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900713function _quantum_third_party_do() {
714 for third_party in ${QUANTUM_THIRD_PARTIES//,/ }; do
715 ${1}_${third_party}
716 done
717}
718
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900719# configure_quantum_third_party() - Set config files, create data dirs, etc
720function configure_quantum_third_party() {
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900721 _quantum_third_party_do configure
Nachi Ueno5db5bfa2012-10-29 11:25:29 -0700722}
723
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900724# init_quantum_third_party() - Initialize databases, etc.
725function init_quantum_third_party() {
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900726 _quantum_third_party_do init
Nachi Ueno5db5bfa2012-10-29 11:25:29 -0700727}
728
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900729# install_quantum_third_party() - Collect source and prepare
730function install_quantum_third_party() {
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900731 _quantum_third_party_do install
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900732}
733
734# start_quantum_third_party() - Start running processes, including screen
735function start_quantum_third_party() {
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900736 _quantum_third_party_do start
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900737}
738
739# stop_quantum_third_party - Stop running processes (non-screen)
740function stop_quantum_third_party() {
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900741 _quantum_third_party_do stop
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900742}
743
744
Salvatore Orlandod6767d02012-08-31 04:55:20 -0700745# Restore xtrace
746$XTRACE