blob: 4e8b92db23a9b07746864583844d89b0eed1af33 [file] [log] [blame]
Jesse Andrewsba23cc72011-09-11 03:22:13 -07001#!/usr/bin/env bash
2
Jesse Andrews0e7e8972011-10-02 16:36:54 -04003# **stack.sh** is an opinionated openstack developer installation.
4
Tres Henryca85b792011-10-28 14:00:21 -07005# This script installs and configures *nova*, *glance*, *horizon* and *keystone*
Jesse Andrewsba23cc72011-09-11 03:22:13 -07006
Vishvananda Ishaya9b353672011-10-20 10:07:10 -07007# This script allows you to specify configuration options of what git
Jesse Andrews5372f432011-10-03 01:08:24 -04008# repositories to use, enabled services, network configuration and various
9# passwords. If you are crafty you can run the script on multiple nodes using
10# shared settings for common resources (mysql, rabbitmq) and build a multi-node
11# developer install.
Jesse Andrews782b9912011-10-02 16:53:21 -040012
Jesse Andrewsc4b3aab2011-09-15 22:54:52 -070013# To keep this script simple we assume you are running on an **Ubuntu 11.04
Jesse Andrews24859062011-09-15 21:28:23 -070014# Natty** machine. It should work in a VM or physical server. Additionally we
15# put the list of *apt* and *pip* dependencies and other configuration files in
16# this repo. So start by grabbing this script and the dependencies.
17
Jesse Andrews0e7e8972011-10-02 16:36:54 -040018# Learn more and get the most recent version at http://devstack.org
Jesse Andrews6edd17f2011-09-15 22:19:42 -070019
20# Sanity Check
21# ============
22
Jesse Andrewsc4b3aab2011-09-15 22:54:52 -070023# Warn users who aren't on natty, but allow them to override check and attempt
Jesse Andrews6edd17f2011-09-15 22:19:42 -070024# installation with ``FORCE=yes ./stack``
Vishvananda Ishayaeec092b2011-10-31 11:15:05 -070025if ! egrep -q 'natty|oneiric' /etc/lsb-release; then
Vishvananda Ishayad80e3802011-10-31 13:31:19 -070026 echo "WARNING: this script has only been tested on natty and oneiric"
Jesse Andrews6edd17f2011-09-15 22:19:42 -070027 if [[ "$FORCE" != "yes" ]]; then
28 echo "If you wish to run this script anyway run with FORCE=yes"
29 exit 1
30 fi
31fi
32
Jesse Andrews51fb22e2011-10-19 09:24:17 -070033# Keep track of the current devstack directory.
34TOP_DIR=$(cd $(dirname "$0") && pwd)
35
root40a37002011-09-20 18:06:14 +000036# stack.sh keeps the list of **apt** and **pip** dependencies in external
Jesse Andrews4d282182011-09-16 11:27:43 -070037# files, along with config templates and other useful files. You can find these
root40a37002011-09-20 18:06:14 +000038# in the ``files`` directory (next to this script). We will reference this
Jesse Andrewsbf3868d2011-09-16 11:31:16 -070039# directory using the ``FILES`` variable in this script.
Jesse Andrews51fb22e2011-10-19 09:24:17 -070040FILES=$TOP_DIR/files
Jesse Andrewsbf3868d2011-09-16 11:31:16 -070041if [ ! -d $FILES ]; then
42 echo "ERROR: missing devstack/files - did you grab more than just stack.sh?"
Jesse Andrews6edd17f2011-09-15 22:19:42 -070043 exit 1
44fi
45
Anthony Young6015c822011-10-12 07:17:11 +000046
Scott Moserf9da5082011-10-07 21:28:00 -040047
48# Settings
49# ========
50
51# This script is customizable through setting environment variables. If you
52# want to override a setting you can either::
53#
Anthony Young7a549f42011-10-12 07:13:13 +000054# export MYSQL_PASSWORD=anothersecret
Scott Moserf9da5082011-10-07 21:28:00 -040055# ./stack.sh
56#
Anthony Young7a549f42011-10-12 07:13:13 +000057# You can also pass options on a single line ``MYSQL_PASSWORD=simple ./stack.sh``
Scott Moserf9da5082011-10-07 21:28:00 -040058#
59# Additionally, you can put any local variables into a ``localrc`` file, like::
60#
Anthony Young7a549f42011-10-12 07:13:13 +000061# MYSQL_PASSWORD=anothersecret
Scott Moserf9da5082011-10-07 21:28:00 -040062# MYSQL_USER=hellaroot
63#
64# We try to have sensible defaults, so you should be able to run ``./stack.sh``
65# in most cases.
66#
67# We our settings from ``stackrc``. This file is distributed with devstack and
Vishvananda Ishaya9b353672011-10-20 10:07:10 -070068# contains locations for what repositories to use. If you want to use other
69# repositories and branches, you can add your own settings with another file
Scott Moserf9da5082011-10-07 21:28:00 -040070# called ``localrc``
71#
Vishvananda Ishaya9b353672011-10-20 10:07:10 -070072# If ``localrc`` exists, then ``stackrc`` will load those settings. This is
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +010073# useful for changing a branch or repository to test other versions. Also you
Anthony Young7a549f42011-10-12 07:13:13 +000074# can store your other settings like **MYSQL_PASSWORD** or **ADMIN_PASSWORD** instead
Scott Moserf9da5082011-10-07 21:28:00 -040075# of letting devstack generate random ones for you.
76source ./stackrc
77
Jesse Andrews6edd17f2011-09-15 22:19:42 -070078# Destination path for installation ``DEST``
Anthony Younge8fed482011-09-26 19:50:43 -070079DEST=${DEST:-/opt/stack}
Jesse Andrewsba23cc72011-09-11 03:22:13 -070080
James E. Blair5855a642011-10-26 15:44:27 -040081# Configure services to syslog instead of writing to individual log files
82SYSLOG=${SYSLOG:-False}
83
Todd Willey0a161452011-10-28 02:34:19 -040084# apt-get wrapper to just get arguments set correctly
85function apt_get() {
86 local sudo="sudo"
87 [ "$(id -u)" = "0" ] && sudo="env"
88 $sudo DEBIAN_FRONTEND=noninteractive apt-get \
89 --option "Dpkg::Options::=--force-confold" --assume-yes "$@"
90}
91
92
Tres Henryca85b792011-10-28 14:00:21 -070093# OpenStack is designed to be run as a regular user (Horizon will fail to run
Dean Troyer9122e7b2011-10-17 14:07:11 -050094# as root, since apache refused to startup serve content from root user). If
95# stack.sh is run as root, it automatically creates a stack user with
96# sudo privileges and runs as that user.
97
98if [[ $EUID -eq 0 ]]; then
James E. Blair92e81992011-10-11 09:26:29 -050099 ROOTSLEEP=${ROOTSLEEP:-10}
Dean Troyer9122e7b2011-10-17 14:07:11 -0500100 echo "You are running this script as root."
James E. Blair92e81992011-10-11 09:26:29 -0500101 echo "In $ROOTSLEEP seconds, we will create a user 'stack' and run as that user"
102 sleep $ROOTSLEEP
Dean Troyer9122e7b2011-10-17 14:07:11 -0500103
104 # since this script runs as a normal user, we need to give that user
105 # ability to run sudo
Jesse Andrewsc7f72ad2011-11-06 08:00:28 -0800106 dpkg -l sudo || apt_get update && apt_get install sudo
Dean Troyer9122e7b2011-10-17 14:07:11 -0500107
108 if ! getent passwd stack >/dev/null; then
109 echo "Creating a user called stack"
110 useradd -U -G sudo -s /bin/bash -d $DEST -m stack
111 fi
112
113 echo "Giving stack user passwordless sudo priviledges"
114 # natty uec images sudoers does not have a '#includedir'. add one.
115 grep -q "^#includedir.*/etc/sudoers.d" /etc/sudoers ||
116 echo "#includedir /etc/sudoers.d" >> /etc/sudoers
117 ( umask 226 && echo "stack ALL=(ALL) NOPASSWD:ALL" \
118 > /etc/sudoers.d/50_stack_sh )
119
120 echo "Copying files to stack user"
121 STACK_DIR="$DEST/${PWD##*/}"
122 cp -r -f "$PWD" "$STACK_DIR"
Jesse Andrews5f4ae102011-11-06 07:47:09 -0800123 chown -R stack "$STACK_DIR"
Dean Troyer9122e7b2011-10-17 14:07:11 -0500124 if [[ "$SHELL_AFTER_RUN" != "no" ]]; then
125 exec su -c "set -e; cd $STACK_DIR; bash stack.sh; bash" stack
126 else
127 exec su -c "set -e; cd $STACK_DIR; bash stack.sh" stack
128 fi
129 exit 1
Jesse Andrews509992f2011-10-27 11:18:09 -0700130else
Vishvananda Ishaya3e2b1742011-10-28 12:20:07 -0700131 # Our user needs passwordless priviledges for certain commands which nova
Jesse Andrews509992f2011-10-27 11:18:09 -0700132 # uses internally.
133 # Natty uec images sudoers does not have a '#includedir'. add one.
Jesse Andrews84a399b2011-10-27 11:20:38 -0700134 sudo grep -q "^#includedir.*/etc/sudoers.d" /etc/sudoers ||
135 echo "#includedir /etc/sudoers.d" | sudo tee -a /etc/sudoers
Todd Willey0a161452011-10-28 02:34:19 -0400136 TEMPFILE=`mktemp`
137 cat $FILES/sudo/nova > $TEMPFILE
138 sed -e "s,%USER%,$USER,g" -i $TEMPFILE
139 chmod 0440 $TEMPFILE
140 sudo chown root:root $TEMPFILE
Todd Willeyf8c46842011-10-28 12:27:20 -0400141 sudo mv $TEMPFILE /etc/sudoers.d/stack_sh_nova
Dean Troyer9122e7b2011-10-17 14:07:11 -0500142fi
143
Jesse Andrews6f3baaf2011-09-12 11:59:38 -0700144# Set the destination directories for openstack projects
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700145NOVA_DIR=$DEST/nova
Tres Henryca85b792011-10-28 14:00:21 -0700146HORIZON_DIR=$DEST/horizon
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700147GLANCE_DIR=$DEST/glance
148KEYSTONE_DIR=$DEST/keystone
149NOVACLIENT_DIR=$DEST/python-novaclient
Anthony Young2f140202011-09-26 13:02:40 -0700150OPENSTACKX_DIR=$DEST/openstackx
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700151NOVNC_DIR=$DEST/noVNC
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100152SWIFT_DIR=$DEST/swift
Chmouel Boudjnah45c51132011-11-01 19:32:23 +0100153SWIFT_KEYSTONE_DIR=$DEST/swift-keystone2
Brad Hall1bfa3d52011-10-27 18:18:20 -0700154QUANTUM_DIR=$DEST/quantum
155
156# Default Quantum Plugin
157Q_PLUGIN=${Q_PLUGIN:-openvswitch}
Anthony Younga8416442011-09-13 20:07:44 -0700158
159# Specify which services to launch. These generally correspond to screen tabs
Chmouel Boudjnah5c50f0d2011-11-02 01:02:30 +0100160ENABLED_SERVICES=${ENABLED_SERVICES:-g-api,g-reg,key,n-api,n-cpu,n-net,n-sch,n-vnc,horizon,mysql,rabbit}
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700161
Jesse Andrewsd02b7b72011-11-14 08:59:05 -0800162# Name of the lvm volume group to use/create for iscsi volumes
163VOLUME_GROUP=${VOLUME_GROUP:-nova-volumes}
164
Anthony Youngb62b4ca2011-10-26 22:29:08 -0700165# Nova hypervisor configuration. We default to libvirt whth **kvm** but will
166# drop back to **qemu** if we are unable to load the kvm module. Stack.sh can
167# also install an **LXC** based system.
168VIRT_DRIVER=${VIRT_DRIVER:-libvirt}
Jesse Andrews782b9912011-10-02 16:53:21 -0400169LIBVIRT_TYPE=${LIBVIRT_TYPE:-kvm}
170
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400171# nova supports pluggable schedulers. ``SimpleScheduler`` should work in most
172# cases unless you are working on multi-zone mode.
Jesse Andrews782b9912011-10-02 16:53:21 -0400173SCHEDULER=${SCHEDULER:-nova.scheduler.simple.SimpleScheduler}
174
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700175# Use the first IP unless an explicit is set by ``HOST_IP`` environment variable
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700176if [ ! -n "$HOST_IP" ]; then
Dean Troyer2a15a7c2011-09-13 13:22:14 -0500177 HOST_IP=`LC_ALL=C /sbin/ifconfig | grep -m 1 'inet addr:'| cut -d: -f2 | awk '{print $1}'`
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700178fi
179
Dean Troyer2bbcd682011-11-05 16:19:03 -0500180# Service startup timeout
181SERVICE_TIMEOUT=${SERVICE_TIMEOUT:-60}
182
Anthony Young7a549f42011-10-12 07:13:13 +0000183# Generic helper to configure passwords
184function read_password {
185 set +o xtrace
186 var=$1; msg=$2
187 pw=${!var}
188
Anthony Youngb4db2252011-10-12 14:08:08 -0700189 localrc=$TOP_DIR/localrc
Anthony Young6015c822011-10-12 07:17:11 +0000190
Anthony Young7a549f42011-10-12 07:13:13 +0000191 # If the password is not defined yet, proceed to prompt user for a password.
192 if [ ! $pw ]; then
193 # If there is no localrc file, create one
Anthony Youngb4db2252011-10-12 14:08:08 -0700194 if [ ! -e $localrc ]; then
195 touch $localrc
Anthony Young7a549f42011-10-12 07:13:13 +0000196 fi
197
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700198 # Presumably if we got this far it can only be that our localrc is missing
Anthony Young7a549f42011-10-12 07:13:13 +0000199 # the required password. Prompt user for a password and write to localrc.
Anthony Youngb4db2252011-10-12 14:08:08 -0700200 echo ''
201 echo '################################################################################'
202 echo $msg
203 echo '################################################################################'
204 echo "This value will be written to your localrc file so you don't have to enter it again."
205 echo "It is probably best to avoid spaces and weird characters."
206 echo "If you leave this blank, a random default value will be used."
207 echo "Enter a password now:"
208 read $var
209 pw=${!var}
210 if [ ! $pw ]; then
211 pw=`openssl rand -hex 10`
Anthony Young7a549f42011-10-12 07:13:13 +0000212 fi
Anthony Youngb4db2252011-10-12 14:08:08 -0700213 eval "$var=$pw"
214 echo "$var=$pw" >> $localrc
Anthony Young7a549f42011-10-12 07:13:13 +0000215 fi
216 set -o xtrace
217}
218
219
Jesse Andrews782b9912011-10-02 16:53:21 -0400220# Nova Network Configuration
221# --------------------------
222
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700223# FIXME: more documentation about why these are important flags. Also
Jesse Andrews5372f432011-10-03 01:08:24 -0400224# we should make sure we use the same variable names as the flag names.
225
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700226PUBLIC_INTERFACE=${PUBLIC_INTERFACE:-eth0}
Jesse Andrewsb5197e42011-09-26 12:48:31 -0700227FIXED_RANGE=${FIXED_RANGE:-10.0.0.0/24}
228FIXED_NETWORK_SIZE=${FIXED_NETWORK_SIZE:-256}
Anthony Young0e74ecb2011-10-27 13:21:52 -0700229FLOATING_RANGE=${FLOATING_RANGE:-172.24.4.224/28}
Jesse Andrewsa72f7ad2011-09-25 13:41:22 -0700230NET_MAN=${NET_MAN:-FlatDHCPManager}
Anthony Younga8416442011-09-13 20:07:44 -0700231EC2_DMZ_HOST=${EC2_DMZ_HOST:-$HOST_IP}
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700232FLAT_NETWORK_BRIDGE=${FLAT_NETWORK_BRIDGE:-br100}
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400233VLAN_INTERFACE=${VLAN_INTERFACE:-$PUBLIC_INTERFACE}
234
235# Multi-host is a mode where each compute node runs its own network node. This
236# allows network operations and routing for a VM to occur on the server that is
237# running the VM - removing a SPOF and bandwidth bottleneck.
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700238MULTI_HOST=${MULTI_HOST:-False}
Jesse Andrews30f68e92011-09-13 00:59:54 -0700239
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700240# If you are using FlatDHCP on multiple hosts, set the ``FLAT_INTERFACE``
241# variable but make sure that the interface doesn't already have an
242# ip or you risk breaking things.
Jesse Andrews5372f432011-10-03 01:08:24 -0400243#
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700244# **DHCP Warning**: If your flat interface device uses DHCP, there will be a
245# hiccup while the network is moved from the flat interface to the flat network
246# bridge. This will happen when you launch your first instance. Upon launch
247# you will lose all connectivity to the node, and the vm launch will probably
Jesse Andrews5372f432011-10-03 01:08:24 -0400248# fail.
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700249#
250# If you are running on a single node and don't need to access the VMs from
Jesse Andrews5372f432011-10-03 01:08:24 -0400251# devices other than that node, you can set the flat interface to the same
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700252# value as ``FLAT_NETWORK_BRIDGE``. This will stop the network hiccup from
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100253# occurring.
Jesse Andrews8ff5dbc2011-09-25 22:28:08 -0700254FLAT_INTERFACE=${FLAT_INTERFACE:-eth0}
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700255
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400256## FIXME(ja): should/can we check that FLAT_INTERFACE is sane?
257
Brad Hall1bfa3d52011-10-27 18:18:20 -0700258# Using Quantum networking:
259#
260# Make sure that q-svc is enabled in ENABLED_SERVICES. If it is the network
261# manager will be set to the QuantumManager.
262#
263# If you're planning to use the Quantum openvswitch plugin, set Q_PLUGIN to
264# "openvswitch" and make sure the q-agt service is enabled in
265# ENABLED_SERVICES.
266#
267# With Quantum networking the NET_MAN variable is ignored.
268
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700269
Jesse Andrews782b9912011-10-02 16:53:21 -0400270# MySQL & RabbitMQ
271# ----------------
272
Tres Henryca85b792011-10-28 14:00:21 -0700273# We configure Nova, Horizon, Glance and Keystone to use MySQL as their
Jesse Andrews782b9912011-10-02 16:53:21 -0400274# database server. While they share a single server, each has their own
275# database and tables.
276
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700277# By default this script will install and configure MySQL. If you want to
Jesse Andrews782b9912011-10-02 16:53:21 -0400278# use an existing server, you can pass in the user/password/host parameters.
Anthony Young7a549f42011-10-12 07:13:13 +0000279# You will need to send the same ``MYSQL_PASSWORD`` to every host if you are doing
Jesse Andrews782b9912011-10-02 16:53:21 -0400280# a multi-node devstack installation.
Jesse Andrewsa50a3462011-10-19 15:38:10 -0700281MYSQL_HOST=${MYSQL_HOST:-localhost}
Anthony Young320412b2011-09-14 02:39:10 -0700282MYSQL_USER=${MYSQL_USER:-root}
Anthony Young7a549f42011-10-12 07:13:13 +0000283read_password MYSQL_PASSWORD "ENTER A PASSWORD TO USE FOR MYSQL."
Jesse Andrews782b9912011-10-02 16:53:21 -0400284
Anthony Younga8416442011-09-13 20:07:44 -0700285# don't specify /db in this string, so we can use it for multiple services
Anthony Young7a549f42011-10-12 07:13:13 +0000286BASE_SQL_CONN=${BASE_SQL_CONN:-mysql://$MYSQL_USER:$MYSQL_PASSWORD@$MYSQL_HOST}
Anthony Younga8416442011-09-13 20:07:44 -0700287
288# Rabbit connection info
289RABBIT_HOST=${RABBIT_HOST:-localhost}
Anthony Young7a549f42011-10-12 07:13:13 +0000290read_password RABBIT_PASSWORD "ENTER A PASSWORD TO USE FOR RABBIT."
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700291
Anthony Young377aae62011-09-14 09:55:31 -0700292# Glance connection info. Note the port must be specified.
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700293GLANCE_HOSTPORT=${GLANCE_HOSTPORT:-$HOST_IP:9292}
Anthony Young377aae62011-09-14 09:55:31 -0700294
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100295# SWIFT
296# -----
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100297# TODO: implement glance support
298# TODO: add logging to different location.
Chmouel Boudjnahb93478f2011-11-02 16:49:56 +0100299
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100300# By default the location of swift drives and objects is located inside
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100301# the swift source directory. SWIFT_DATA_LOCATION variable allow you to redefine
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100302# this.
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100303SWIFT_DATA_LOCATION=${SWIFT_DATA_LOCATION:-${SWIFT_DIR}/data}
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100304
Chmouel Boudjnah3a648262011-11-03 10:43:46 +0100305# We are going to have the configuration files inside the source
306# directory, change SWIFT_CONFIG_LOCATION if you want to adjust that.
307SWIFT_CONFIG_LOCATION=${SWIFT_CONFIG_LOCATION:-${SWIFT_DIR}/config}
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100308
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100309# devstack will create a loop-back disk formatted as XFS to store the
310# swift data. By default the disk size is 1 gigabyte. The variable
311# SWIFT_LOOPBACK_DISK_SIZE specified in bytes allow you to change
312# that.
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100313SWIFT_LOOPBACK_DISK_SIZE=${SWIFT_LOOPBACK_DISK_SIZE:-1000000}
Anthony Young7a549f42011-10-12 07:13:13 +0000314
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100315# The ring uses a configurable number of bits from a path’s MD5 hash as
316# a partition index that designates a device. The number of bits kept
317# from the hash is known as the partition power, and 2 to the partition
318# power indicates the partition count. Partitioning the full MD5 hash
319# ring allows other parts of the cluster to work in batches of items at
320# once which ends up either more efficient or at least less complex than
321# working with each item separately or the entire cluster all at once.
322# By default we define 9 for the partition count (which mean 512).
Chmouel Boudjnaha2118982011-11-01 15:36:00 +0100323SWIFT_PARTITION_POWER_SIZE=${SWIFT_PARTITION_POWER_SIZE:-9}
324
Chmouel Boudjnahb2857e42011-11-03 16:19:14 +0100325# We only ask for Swift Hash if we have enabled swift service.
326if [[ "$ENABLED_SERVICES" =~ "swift" ]]; then
327 # SWIFT_HASH is a random unique string for a swift cluster that
328 # can never change.
329 read_password SWIFT_HASH "ENTER A RANDOM SWIFT HASH."
330fi
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700331
Jesse Andrews782b9912011-10-02 16:53:21 -0400332# Keystone
333# --------
334
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700335# Service Token - Openstack components need to have an admin token
336# to validate user tokens.
Anthony Young7a549f42011-10-12 07:13:13 +0000337read_password SERVICE_TOKEN "ENTER A SERVICE_TOKEN TO USE FOR THE SERVICE ADMIN TOKEN."
Tres Henryca85b792011-10-28 14:00:21 -0700338# Horizon currently truncates usernames and passwords at 20 characters
339read_password ADMIN_PASSWORD "ENTER A PASSWORD TO USE FOR HORIZON AND KEYSTONE (20 CHARS OR LESS)."
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700340
Scott Moserf9da5082011-10-07 21:28:00 -0400341LOGFILE=${LOGFILE:-"$PWD/stack.sh.$$.log"}
342(
343# So that errors don't compound we exit on any errors so you see only the
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100344# first error that occurred.
Scott Moserf9da5082011-10-07 21:28:00 -0400345trap failed ERR
346failed() {
347 local r=$?
348 set +o xtrace
349 [ -n "$LOGFILE" ] && echo "${0##*/} failed: full log in $LOGFILE"
350 exit $r
351}
352
353# Print the commands being run so that we can see the command that triggers
354# an error. It is also useful for following along as the install occurs.
355set -o xtrace
356
Jesse Andrewsfe95e0f2011-10-19 14:30:37 -0700357# create the destination directory and ensure it is writable by the user
Scott Moserf9da5082011-10-07 21:28:00 -0400358sudo mkdir -p $DEST
Jesse Andrewsfe95e0f2011-10-19 14:30:37 -0700359if [ ! -w $DEST ]; then
360 sudo chown `whoami` $DEST
361fi
Jesse Andrews53ed3872011-10-02 14:28:17 -0400362
Jesse Andrews30f68e92011-09-13 00:59:54 -0700363# Install Packages
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700364# ================
Jesse Andrews30f68e92011-09-13 00:59:54 -0700365#
366# Openstack uses a fair number of other projects.
367
Jesse Andrews2caf8fd2011-09-12 16:15:11 -0700368
Jesse Andrews75a37652011-09-12 17:09:08 -0700369# install apt requirements
Scott Moseree1b4952011-10-20 13:09:11 -0400370apt_get update
Jesse Andrewsdf5e9942011-11-03 09:36:13 -0500371apt_get install `cat $FILES/apts/* | cut -d\# -f1 | grep -Ev "mysql-server|rabbitmq-server|memcached"`
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700372
Jesse Andrews75a37652011-09-12 17:09:08 -0700373# install python requirements
Jesse Andrews9bb1a3c2011-11-14 10:05:56 -0800374sudo PIP_DOWNLOAD_CACHE=/var/cache/pip pip install --use-mirrors `cat $FILES/pips/*`
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700375
Jesse Andrewsd61db852011-09-16 14:13:17 -0700376# git clone only if directory doesn't exist already. Since ``DEST`` might not
377# be owned by the installation user, we create the directory and change the
378# ownership to the proper user.
Jesse Andrews61632572011-09-12 17:40:00 -0700379function git_clone {
Jesse Andrews1f273602011-10-17 13:20:40 -0700380
Jesse Andrews917c6652011-10-24 18:47:06 -0700381 GIT_REMOTE=$1
382 GIT_DEST=$2
383 GIT_BRANCH=$3
384
Jesse Andrewseeec0202011-10-24 18:42:11 -0700385 # do a full clone only if the directory doesn't exist
Jesse Andrews917c6652011-10-24 18:47:06 -0700386 if [ ! -d $GIT_DEST ]; then
387 git clone $GIT_REMOTE $GIT_DEST
Anthony Young2f140202011-09-26 13:02:40 -0700388 cd $2
Anthony Young303233e2011-09-26 13:12:57 -0700389 # This checkout syntax works for both branches and tags
Jesse Andrews917c6652011-10-24 18:47:06 -0700390 git checkout $GIT_BRANCH
Jesse Andrewseeec0202011-10-24 18:42:11 -0700391 elif [[ "$RECLONE" == "yes" ]]; then
392 # if it does exist then simulate what clone does if asked to RECLONE
Jesse Andrews480644b2011-10-24 18:52:58 -0700393 cd $GIT_DEST
Jesse Andrewseeec0202011-10-24 18:42:11 -0700394 # set the url to pull from and fetch
Jesse Andrews917c6652011-10-24 18:47:06 -0700395 git remote set-url origin $GIT_REMOTE
Jesse Andrewseeec0202011-10-24 18:42:11 -0700396 git fetch origin
Jesse Andrews9fef8442011-10-24 19:06:46 -0700397 # remove the existing ignored files (like pyc) as they cause breakage
398 # (due to the py files having older timestamps than our pyc, so python
399 # thinks the pyc files are correct using them)
Vishvananda Ishaya6b8855c2011-11-14 10:51:17 -0800400 find $GIT_DEST -name '*.pyc' -delete
Jesse Andrews917c6652011-10-24 18:47:06 -0700401 git checkout -f origin/$GIT_BRANCH
Jesse Andrewse09a6e42011-10-24 19:09:52 -0700402 # a local branch might not exist
Jesse Andrews917c6652011-10-24 18:47:06 -0700403 git branch -D $GIT_BRANCH || true
404 git checkout -b $GIT_BRANCH
Jesse Andrews61632572011-09-12 17:40:00 -0700405 fi
406}
407
Jesse Andrews75a37652011-09-12 17:09:08 -0700408# compute service
Anthony Young2f140202011-09-26 13:02:40 -0700409git_clone $NOVA_REPO $NOVA_DIR $NOVA_BRANCH
Tres Henryca85b792011-10-28 14:00:21 -0700410# python client library to nova that horizon (and others) use
Anthony Young2f140202011-09-26 13:02:40 -0700411git_clone $NOVACLIENT_REPO $NOVACLIENT_DIR $NOVACLIENT_BRANCH
James E. Blaire7ce24f2011-11-10 13:05:13 -0800412if [[ "$ENABLED_SERVICES" =~ "swift" ]]; then
413 # storage service
414 git_clone $SWIFT_REPO $SWIFT_DIR $SWIFT_BRANCH
415 # swift + keystone middleware
416 git_clone $SWIFT_KEYSTONE_REPO $SWIFT_KEYSTONE_DIR $SWIFT_KEYSTONE_BRANCH
417fi
418if [[ "$ENABLED_SERVICES" =~ "g-api" ]]; then
419 # image catalog service
420 git_clone $GLANCE_REPO $GLANCE_DIR $GLANCE_BRANCH
421fi
422if [[ "$ENABLED_SERVICES" =~ "key" ]]; then
423 # unified auth system (manages accounts/tokens)
424 git_clone $KEYSTONE_REPO $KEYSTONE_DIR $KEYSTONE_BRANCH
425fi
426if [[ "$ENABLED_SERVICES" =~ "n-vnc" ]]; then
427 # a websockets/html5 or flash powered VNC console for vm instances
428 git_clone $NOVNC_REPO $NOVNC_DIR $NOVNC_BRANCH
429fi
430if [[ "$ENABLED_SERVICES" =~ "horizon" ]]; then
431 # django powered web control panel for openstack
432 git_clone $HORIZON_REPO $HORIZON_DIR $HORIZON_BRANCH $HORIZON_TAG
433fi
434if [[ "$ENABLED_SERVICES" =~ "openstackx" ]]; then
435 # openstackx is a collection of extensions to openstack.compute & nova
436 # that is *deprecated*. The code is being moved into python-novaclient & nova.
437 git_clone $OPENSTACKX_REPO $OPENSTACKX_DIR $OPENSTACKX_BRANCH
438fi
439if [[ "$ENABLED_SERVICES" =~ "quantum" ]]; then
440 # quantum
441 git_clone $QUANTUM_REPO $QUANTUM_DIR $QUANTUM_BRANCH
442fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700443
Jesse Andrews30f68e92011-09-13 00:59:54 -0700444# Initialization
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700445# ==============
Jesse Andrews30f68e92011-09-13 00:59:54 -0700446
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700447
Jesse Andrews75a37652011-09-12 17:09:08 -0700448# setup our checkouts so they are installed into python path
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700449# allowing ``import nova`` or ``import glance.client``
James E. Blaire7ce24f2011-11-10 13:05:13 -0800450if [[ "$ENABLED_SERVICES" =~ "key" ]]; then
451 cd $KEYSTONE_DIR; sudo python setup.py develop
452fi
453if [[ "$ENABLED_SERVICES" =~ "swift" ]]; then
454 cd $SWIFT_DIR; sudo python setup.py develop
455 cd $SWIFT_KEYSTONE_DIR; sudo python setup.py develop
456fi
457if [[ "$ENABLED_SERVICES" =~ "g-api" ]]; then
458 cd $GLANCE_DIR; sudo python setup.py develop
459fi
Jesse Andrewsaa8bb242011-10-16 12:24:11 -0700460cd $NOVACLIENT_DIR; sudo python setup.py develop
461cd $NOVA_DIR; sudo python setup.py develop
James E. Blaire7ce24f2011-11-10 13:05:13 -0800462if [[ "$ENABLED_SERVICES" =~ "openstackx" ]]; then
463 cd $OPENSTACKX_DIR; sudo python setup.py develop
464fi
465if [[ "$ENABLED_SERVICES" =~ "horizon" ]]; then
466 cd $HORIZON_DIR/django-openstack; sudo python setup.py develop
467 cd $HORIZON_DIR/openstack-dashboard; sudo python setup.py develop
468fi
469if [[ "$ENABLED_SERVICES" =~ "quantum" ]]; then
470 cd $QUANTUM_DIR; sudo python setup.py develop
471fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700472
Jesse Andrews6edd17f2011-09-15 22:19:42 -0700473# Add a useful screenrc. This isn't required to run openstack but is we do
root40a37002011-09-20 18:06:14 +0000474# it since we are going to run the services in screen for simple
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700475cp $FILES/screenrc ~/.screenrc
Jesse Andrews6f3baaf2011-09-12 11:59:38 -0700476
Anthony Younga09ae2f2011-09-15 23:11:29 -0700477# Rabbit
478# ---------
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400479
Anthony Younga09ae2f2011-09-15 23:11:29 -0700480if [[ "$ENABLED_SERVICES" =~ "rabbit" ]]; then
481 # Install and start rabbitmq-server
Scott Moser199d76e2011-10-20 12:41:40 -0400482 # the temp file is necessary due to LP: #878600
483 tfile=$(mktemp)
Scott Moseree1b4952011-10-20 13:09:11 -0400484 apt_get install rabbitmq-server > "$tfile" 2>&1
Scott Moser199d76e2011-10-20 12:41:40 -0400485 cat "$tfile"
486 rm -f "$tfile"
Jesse Andrews53ed3872011-10-02 14:28:17 -0400487 # change the rabbit password since the default is "guest"
488 sudo rabbitmqctl change_password guest $RABBIT_PASSWORD
Anthony Younga09ae2f2011-09-15 23:11:29 -0700489fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700490
Jesse Andrews24859062011-09-15 21:28:23 -0700491# Mysql
492# ---------
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400493
Jesse Andrews24859062011-09-15 21:28:23 -0700494if [[ "$ENABLED_SERVICES" =~ "mysql" ]]; then
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400495
496 # Seed configuration with mysql password so that apt-get install doesn't
497 # prompt us for a password upon install.
498 cat <<MYSQL_PRESEED | sudo debconf-set-selections
Anthony Young7a549f42011-10-12 07:13:13 +0000499mysql-server-5.1 mysql-server/root_password password $MYSQL_PASSWORD
500mysql-server-5.1 mysql-server/root_password_again password $MYSQL_PASSWORD
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400501mysql-server-5.1 mysql-server/start_on_boot boolean true
502MYSQL_PRESEED
503
Jesse Andrews2e536a32011-10-13 11:40:16 -0700504 # while ``.my.cnf`` is not needed for openstack to function, it is useful
505 # as it allows you to access the mysql databases via ``mysql nova`` instead
506 # of having to specify the username/password each time.
Chmouel Boudjnahd5d5b682011-10-13 18:45:42 +0100507 if [[ ! -e $HOME/.my.cnf ]]; then
508 cat <<EOF >$HOME/.my.cnf
509[client]
510user=$MYSQL_USER
Anthony Youngcf145b72011-10-13 15:07:36 -0700511password=$MYSQL_PASSWORD
Chmouel Boudjnahd5d5b682011-10-13 18:45:42 +0100512host=$MYSQL_HOST
513EOF
514 chmod 0600 $HOME/.my.cnf
515 fi
516
Anthony Younga09ae2f2011-09-15 23:11:29 -0700517 # Install and start mysql-server
Scott Moseree1b4952011-10-20 13:09:11 -0400518 apt_get install mysql-server
Jesse Andrews24859062011-09-15 21:28:23 -0700519 # Update the DB to give user ‘$MYSQL_USER’@’%’ full control of the all databases:
James E. Blair92e81992011-10-11 09:26:29 -0500520 sudo mysql -uroot -p$MYSQL_PASSWORD -h127.0.0.1 -e "GRANT ALL PRIVILEGES ON *.* TO '$MYSQL_USER'@'%' identified by '$MYSQL_PASSWORD';"
Jesse Andrews24859062011-09-15 21:28:23 -0700521
522 # Edit /etc/mysql/my.cnf to change ‘bind-address’ from localhost (127.0.0.1) to any (0.0.0.0) and restart the mysql service:
523 sudo sed -i 's/127.0.0.1/0.0.0.0/g' /etc/mysql/my.cnf
524 sudo service mysql restart
525fi
526
527
Tres Henryca85b792011-10-28 14:00:21 -0700528# Horizon
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700529# ---------
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400530
Tres Henryca85b792011-10-28 14:00:21 -0700531# Setup the django horizon application to serve via apache/wsgi
Jesse Andrews75a37652011-09-12 17:09:08 -0700532
Tres Henryca85b792011-10-28 14:00:21 -0700533if [[ "$ENABLED_SERVICES" =~ "horizon" ]]; then
Jesse Andrews24859062011-09-15 21:28:23 -0700534
Tres Henryca85b792011-10-28 14:00:21 -0700535 # Horizon currently imports quantum even if you aren't using it. Instead
root40a37002011-09-20 18:06:14 +0000536 # of installing quantum we can create a simple module that will pass the
Jesse Andrews24859062011-09-15 21:28:23 -0700537 # initial imports
Tres Henryca85b792011-10-28 14:00:21 -0700538 mkdir -p $HORIZON_DIR/openstack-dashboard/quantum || true
539 touch $HORIZON_DIR/openstack-dashboard/quantum/__init__.py
540 touch $HORIZON_DIR/openstack-dashboard/quantum/client.py
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400541
542
Tres Henryca85b792011-10-28 14:00:21 -0700543 # ``local_settings.py`` is used to override horizon default settings.
544 cp $FILES/horizon_settings.py $HORIZON_DIR/openstack-dashboard/local/local_settings.py
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700545
Tres Henryca85b792011-10-28 14:00:21 -0700546 # Initialize the horizon database (it stores sessions and notices shown to
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700547 # users). The user system is external (keystone).
Tres Henryca85b792011-10-28 14:00:21 -0700548 cd $HORIZON_DIR/openstack-dashboard
Anthony Young70dc5e02011-09-15 16:52:43 -0700549 dashboard/manage.py syncdb
Jesse Andrews75a37652011-09-12 17:09:08 -0700550
Anthony Young70dc5e02011-09-15 16:52:43 -0700551 # create an empty directory that apache uses as docroot
Tres Henryca85b792011-10-28 14:00:21 -0700552 sudo mkdir -p $HORIZON_DIR/.blackhole
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700553
Tres Henryca85b792011-10-28 14:00:21 -0700554 ## Configure apache's 000-default to run horizon
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700555 sudo cp $FILES/000-default.template /etc/apache2/sites-enabled/000-default
Jesse Andrews8f3e28c2011-09-27 18:26:27 -0700556 sudo sed -e "s,%USER%,$USER,g" -i /etc/apache2/sites-enabled/000-default
Tres Henryca85b792011-10-28 14:00:21 -0700557 sudo sed -e "s,%HORIZON_DIR%,$HORIZON_DIR,g" -i /etc/apache2/sites-enabled/000-default
Jesse Andrewsc96b0242011-10-28 10:34:26 -0700558 sudo service apache2 restart
Anthony Young70dc5e02011-09-15 16:52:43 -0700559fi
Jesse Andrews75a37652011-09-12 17:09:08 -0700560
Anthony Young3859f732011-09-14 02:33:43 -0700561
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700562# Glance
563# ------
564
Anthony Young70dc5e02011-09-15 16:52:43 -0700565if [[ "$ENABLED_SERVICES" =~ "g-reg" ]]; then
Anthony Youngc8357622011-09-20 10:38:06 -0700566 GLANCE_IMAGE_DIR=$DEST/glance/images
Anthony Younga531b772011-09-20 09:59:54 -0700567 # Delete existing images
568 rm -rf $GLANCE_IMAGE_DIR
Jesse Andrews75a37652011-09-12 17:09:08 -0700569
Anthony Younga531b772011-09-20 09:59:54 -0700570 # Use local glance directories
571 mkdir -p $GLANCE_IMAGE_DIR
572
Anthony Young70dc5e02011-09-15 16:52:43 -0700573 # (re)create glance database
Anthony Young7a549f42011-10-12 07:13:13 +0000574 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'DROP DATABASE IF EXISTS glance;'
575 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'CREATE DATABASE glance;'
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700576
577 # Copy over our glance configurations and update them
Anthony Young70dc5e02011-09-15 16:52:43 -0700578 GLANCE_CONF=$GLANCE_DIR/etc/glance-registry.conf
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700579 cp $FILES/glance-registry.conf $GLANCE_CONF
Anthony Young70dc5e02011-09-15 16:52:43 -0700580 sudo sed -e "s,%SQL_CONN%,$BASE_SQL_CONN/glance,g" -i $GLANCE_CONF
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700581 sudo sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $GLANCE_CONF
Anthony Younga531b772011-09-20 09:59:54 -0700582 sudo sed -e "s,%DEST%,$DEST,g" -i $GLANCE_CONF
James E. Blair5855a642011-10-26 15:44:27 -0400583 sudo sed -e "s,%SYSLOG%,$SYSLOG,g" -i $GLANCE_CONF
Anthony Youngf12d3ab2011-09-20 00:33:51 -0700584
585 GLANCE_API_CONF=$GLANCE_DIR/etc/glance-api.conf
586 cp $FILES/glance-api.conf $GLANCE_API_CONF
Anthony Younga531b772011-09-20 09:59:54 -0700587 sudo sed -e "s,%DEST%,$DEST,g" -i $GLANCE_API_CONF
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700588 sudo sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $GLANCE_API_CONF
James E. Blair5855a642011-10-26 15:44:27 -0400589 sudo sed -e "s,%SYSLOG%,$SYSLOG,g" -i $GLANCE_API_CONF
Anthony Young70dc5e02011-09-15 16:52:43 -0700590fi
Jesse Andrews75a37652011-09-12 17:09:08 -0700591
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700592# Nova
593# ----
594
Jesse Andrewsf70569e2011-10-24 21:56:25 -0700595if [[ "$ENABLED_SERVICES" =~ "n-api" ]]; then
Vishvananda Ishaya9812ffb2011-11-06 11:18:26 -0800596 # We are going to use a sample http middleware configuration based on the
597 # one from the keystone project to launch nova. This paste config adds
598 # the configuration required for nova to validate keystone tokens. We add
599 # our own service token to the configuration.
600 cp $FILES/nova-api-paste.ini $NOVA_DIR/bin
601 sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $NOVA_DIR/bin/nova-api-paste.ini
Jesse Andrewsf70569e2011-10-24 21:56:25 -0700602fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700603
Anthony Young70dc5e02011-09-15 16:52:43 -0700604if [[ "$ENABLED_SERVICES" =~ "n-cpu" ]]; then
Jesse Andrewsdfcd2002011-09-13 13:17:22 -0700605
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400606 # Virtualization Configuration
607 # ~~~~~~~~~~~~~~~~~~~~~~~~~~~~
608
609 # attempt to load modules: network block device - used to manage qcow images
Anthony Young70dc5e02011-09-15 16:52:43 -0700610 sudo modprobe nbd || true
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400611
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700612 # Check for kvm (hardware based virtualization). If unable to initialize
613 # kvm, we drop back to the slower emulation mode (qemu). Note: many systems
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700614 # come with hardware virtualization disabled in BIOS.
Jesse Andrews2abbdd42011-10-03 22:48:30 -0400615 if [[ "$LIBVIRT_TYPE" == "kvm" ]]; then
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400616 sudo modprobe kvm || true
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400617 if [ ! -e /dev/kvm ]; then
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400618 echo "WARNING: Switching to QEMU"
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400619 LIBVIRT_TYPE=qemu
620 fi
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700621 fi
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400622
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400623 # Install and configure **LXC** if specified. LXC is another approach to
624 # splitting a system into many smaller parts. LXC uses cgroups and chroot
625 # to simulate multiple systems.
Jesse Andrews2abbdd42011-10-03 22:48:30 -0400626 if [[ "$LIBVIRT_TYPE" == "lxc" ]]; then
Scott Moseree1b4952011-10-20 13:09:11 -0400627 apt_get install lxc
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700628 # lxc uses cgroups (a kernel interface via virtual filesystem) configured
629 # and mounted to ``/cgroup``
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400630 sudo mkdir -p /cgroup
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400631 if ! grep -q cgroup /etc/fstab; then
Jesse Andrewsc315ebf2011-10-02 13:25:33 -0400632 echo none /cgroup cgroup cpuacct,memory,devices,cpu,freezer,blkio 0 0 | sudo tee -a /etc/fstab
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400633 fi
Jesse Andrewse4304232011-10-07 10:34:32 -0400634 if ! mount -n | grep -q cgroup; then
635 sudo mount /cgroup
636 fi
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400637 fi
638
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700639 # The user that nova runs as needs to be member of libvirtd group otherwise
640 # nova-compute will be unable to use libvirt.
Anthony Young70dc5e02011-09-15 16:52:43 -0700641 sudo usermod -a -G libvirtd `whoami`
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700642 # libvirt detects various settings on startup, as we potentially changed
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700643 # the system configuration (modules, filesystems), we need to restart
644 # libvirt to detect those changes.
Anthony Young70dc5e02011-09-15 16:52:43 -0700645 sudo /etc/init.d/libvirt-bin restart
646
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400647
648 # Instance Storage
649 # ~~~~~~~~~~~~~~~~
650
651 # Nova stores each instance in its own directory.
Anthony Young70dc5e02011-09-15 16:52:43 -0700652 mkdir -p $NOVA_DIR/instances
653
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700654 # You can specify a different disk to be mounted and used for backing the
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700655 # virtual machines. If there is a partition labeled nova-instances we
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700656 # mount it (ext filesystems can be labeled via e2label).
Anthony Young70dc5e02011-09-15 16:52:43 -0700657 if [ -L /dev/disk/by-label/nova-instances ]; then
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700658 if ! mount -n | grep -q nova-instances; then
659 sudo mount -L nova-instances $NOVA_DIR/instances
660 sudo chown -R `whoami` $NOVA_DIR/instances
661 fi
Anthony Young70dc5e02011-09-15 16:52:43 -0700662 fi
663
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400664 # Clean out the instances directory.
Jesse Andrews461bfdc2011-10-09 17:50:38 -0700665 sudo rm -rf $NOVA_DIR/instances/*
Jesse Andrewsdfcd2002011-09-13 13:17:22 -0700666fi
667
Anthony Young70dc5e02011-09-15 16:52:43 -0700668if [[ "$ENABLED_SERVICES" =~ "n-net" ]]; then
669 # delete traces of nova networks from prior runs
Anthony Young09fde812011-09-20 02:23:54 -0700670 sudo killall dnsmasq || true
Anthony Young70dc5e02011-09-15 16:52:43 -0700671 rm -rf $NOVA_DIR/networks
672 mkdir -p $NOVA_DIR/networks
673fi
Jesse Andrews75a37652011-09-12 17:09:08 -0700674
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100675# Storage Service
Chmouel Boudjnah537ddff2011-11-02 19:09:30 +0100676if [[ "$ENABLED_SERVICES" =~ "swift" ]]; then
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100677 # We first do a bit of setup by creating the directories and
678 # changing the permissions so we can run it as our user.
679
Chmouel Boudjnah067163d2011-11-02 14:25:06 +0100680 USER_GROUP=$(id -g)
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100681 sudo mkdir -p ${SWIFT_DATA_LOCATION}/drives
682 sudo chown -R $USER:${USER_GROUP} ${SWIFT_DATA_LOCATION}/drives
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700683
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100684 # We then create a loopback disk and format it to XFS.
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100685 if [[ ! -e ${SWIFT_DATA_LOCATION}/drives/images/swift.img ]];then
686 mkdir -p ${SWIFT_DATA_LOCATION}/drives/images
687 sudo touch ${SWIFT_DATA_LOCATION}/drives/images/swift.img
688 sudo chown $USER: ${SWIFT_DATA_LOCATION}/drives/images/swift.img
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700689
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100690 dd if=/dev/zero of=${SWIFT_DATA_LOCATION}/drives/images/swift.img \
Chmouel Boudjnahb93478f2011-11-02 16:49:56 +0100691 bs=1024 count=0 seek=${SWIFT_LOOPBACK_DISK_SIZE}
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100692 mkfs.xfs -f -i size=1024 ${SWIFT_DATA_LOCATION}/drives/images/swift.img
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100693 fi
694
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100695 # After the drive being created we mount the disk with a few mount
696 # options to make it most efficient as possible for swift.
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100697 mkdir -p ${SWIFT_DATA_LOCATION}/drives/sdb1
698 if ! egrep -q ${SWIFT_DATA_LOCATION}/drives/sdb1 /proc/mounts;then
Chmouel Boudjnahb93478f2011-11-02 16:49:56 +0100699 sudo mount -t xfs -o loop,noatime,nodiratime,nobarrier,logbufs=8 \
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100700 ${SWIFT_DATA_LOCATION}/drives/images/swift.img ${SWIFT_DATA_LOCATION}/drives/sdb1
Chmouel Boudjnaha03f0052011-11-01 13:08:29 +0000701 fi
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100702
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100703 # We then create link to that mounted location so swift would know
704 # where to go.
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100705 for x in {1..4}; do sudo ln -sf ${SWIFT_DATA_LOCATION}/drives/sdb1/$x ${SWIFT_DATA_LOCATION}/$x; done
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700706
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100707 # We now have to emulate a few different servers into one we
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700708 # create all the directories needed for swift
Chmouel Boudjnahe1d2bcb2011-11-01 17:32:11 +0100709 tmpd=""
Chmouel Boudjnah3a648262011-11-03 10:43:46 +0100710 for d in ${SWIFT_DATA_LOCATION}/drives/sdb1/{1..4} \
711 ${SWIFT_CONFIG_LOCATION}/{object,container,account}-server \
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100712 ${SWIFT_DATA_LOCATION}/{1..4}/node/sdb1 /var/run/swift ;do
Chmouel Boudjnahe1d2bcb2011-11-01 17:32:11 +0100713 [[ -d $d ]] && continue
Chmouel Boudjnah067163d2011-11-02 14:25:06 +0100714 sudo install -o ${USER} -g $USER_GROUP -d $d
Chmouel Boudjnahe1d2bcb2011-11-01 17:32:11 +0100715 done
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100716
Chmouel Boudjnah3a648262011-11-03 10:43:46 +0100717 # We do want to make sure this is all owned by our user.
718 sudo chown -R $USER: ${SWIFT_DATA_LOCATION}/{1..4}/node
719 sudo chown -R $USER: ${SWIFT_CONFIG_LOCATION}
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100720
Chmouel Boudjnah3a648262011-11-03 10:43:46 +0100721 # swift-init has a bug using /etc/swift until bug #885595 is fixed
722 # we have to create a link
Chmouel Boudjnah2f2160e2011-11-10 23:46:08 +0100723 sudo ln -sf ${SWIFT_CONFIG_LOCATION} /etc/swift
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700724
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100725 # Swift use rsync to syncronize between all the different
726 # partitions (which make more sense when you have a multi-node
727 # setup) we configure it with our version of rsync.
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100728 sed -e "s/%GROUP%/${USER_GROUP}/;s/%USER%/$USER/;s,%SWIFT_DATA_LOCATION%,$SWIFT_DATA_LOCATION," $FILES/swift/rsyncd.conf | sudo tee /etc/rsyncd.conf
Chmouel Boudjnahe1d2bcb2011-11-01 17:32:11 +0100729 sudo sed -i '/^RSYNC_ENABLE=false/ { s/false/true/ }' /etc/default/rsync
Chmouel Boudjnah45c51132011-11-01 19:32:23 +0100730
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100731 # By default Swift will be installed with the tempauth middleware
732 # which has some default username and password if you have
733 # configured keystone it will checkout the directory.
Chmouel Boudjnah45c51132011-11-01 19:32:23 +0100734 if [[ "$ENABLED_SERVICES" =~ "key" ]]; then
735 swift_auth_server=keystone
Chmouel Boudjnah904b0d72011-11-10 19:44:58 +0100736
737 # We install the memcache server as this is will be used by the
738 # middleware to cache the tokens auths for a long this is needed.
739 apt_get install memcached
740
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100741 # We need a special version of bin/swift which understand the
742 # OpenStack api 2.0, we download it until this is getting
743 # integrated in swift.
Chmouel Boudjnah45c51132011-11-01 19:32:23 +0100744 sudo curl -s -o/usr/local/bin/swift \
745 'https://review.openstack.org/gitweb?p=openstack/swift.git;a=blob_plain;f=bin/swift;hb=48bfda6e2fdf3886c98bd15649887d54b9a2574e'
746 else
747 swift_auth_server=tempauth
748 fi
749
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100750 # We do the install of the proxy-server and swift configuration
751 # replacing a few directives to match our configuration.
Chmouel Boudjnah3a648262011-11-03 10:43:46 +0100752 sed "s,%SWIFT_CONFIG_LOCATION%,${SWIFT_CONFIG_LOCATION},;s/%USER%/$USER/;s/%SERVICE_TOKEN%/${SERVICE_TOKEN}/;s/%AUTH_SERVER%/${swift_auth_server}/" \
753 $FILES/swift/proxy-server.conf|sudo tee ${SWIFT_CONFIG_LOCATION}/proxy-server.conf
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100754
Chmouel Boudjnah3a648262011-11-03 10:43:46 +0100755 sed -e "s/%SWIFT_HASH%/$SWIFT_HASH/" $FILES/swift/swift.conf > ${SWIFT_CONFIG_LOCATION}/swift.conf
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100756
757 # We need to generate a object/account/proxy configuration
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100758 # emulating 4 nodes on different ports we have a little function
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100759 # that help us doing that.
760 function generate_swift_configuration() {
761 local server_type=$1
762 local bind_port=$2
763 local log_facility=$3
Chmouel Boudjnah45c51132011-11-01 19:32:23 +0100764 local node_number
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700765
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100766 for node_number in {1..4};do
Chmouel Boudjnah38750152011-11-03 09:17:06 +0100767 node_path=${SWIFT_DATA_LOCATION}/${node_number}
Chmouel Boudjnah3a648262011-11-03 10:43:46 +0100768 sed -e "s,%SWIFT_CONFIG_LOCATION%,${SWIFT_CONFIG_LOCATION},;s,%USER%,$USER,;s,%NODE_PATH%,${node_path},;s,%BIND_PORT%,${bind_port},;s,%LOG_FACILITY%,${log_facility}," \
769 $FILES/swift/${server_type}-server.conf > ${SWIFT_CONFIG_LOCATION}/${server_type}-server/${node_number}.conf
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100770 bind_port=$(( ${bind_port} + 10 ))
771 log_facility=$(( ${log_facility} + 1 ))
772 done
773 }
774 generate_swift_configuration object 6010 2
775 generate_swift_configuration container 6011 2
776 generate_swift_configuration account 6012 2
Chmouel Boudjnaha03f0052011-11-01 13:08:29 +0000777
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100778 # We create two helper scripts :
779 #
780 # - swift-remakerings
781 # Allow to recreate rings from scratch.
782 # - swift-startmain
783 # Restart your full cluster.
784 #
Chmouel Boudjnah3a648262011-11-03 10:43:46 +0100785 sed -e "s,%SWIFT_CONFIG_LOCATION%,${SWIFT_CONFIG_LOCATION},;s/%SWIFT_PARTITION_POWER_SIZE%/$SWIFT_PARTITION_POWER_SIZE/" $FILES/swift/swift-remakerings | \
Chmouel Boudjnaha2118982011-11-01 15:36:00 +0100786 sudo tee /usr/local/bin/swift-remakerings
Chmouel Boudjnah537ddff2011-11-02 19:09:30 +0100787 sudo install -m755 $FILES/swift/swift-startmain /usr/local/bin/
Chmouel Boudjnaha2118982011-11-01 15:36:00 +0100788 sudo chmod +x /usr/local/bin/swift-*
789
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100790 # We then can start rsync.
Chmouel Boudjnahe1d2bcb2011-11-01 17:32:11 +0100791 sudo /etc/init.d/rsync restart || :
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700792
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100793 # Create our ring for the object/container/account.
Chmouel Boudjnahd5651bb2011-11-01 16:22:08 +0100794 /usr/local/bin/swift-remakerings
795
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100796 # And now we launch swift-startmain to get our cluster running
797 # ready to be tested.
Chmouel Boudjnahd5651bb2011-11-01 16:22:08 +0100798 /usr/local/bin/swift-startmain || :
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700799
Chmouel Boudjnah45c51132011-11-01 19:32:23 +0100800 unset s swift_hash swift_auth_server tmpd
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +0100801fi
802
Anthony Youngacff87a2011-10-20 10:12:58 -0700803# Volume Service
804# --------------
805
806if [[ "$ENABLED_SERVICES" =~ "n-vol" ]]; then
807 #
808 # Configure a default volume group called 'nova-volumes' for the nova-volume
809 # service if it does not yet exist. If you don't wish to use a file backed
810 # volume group, create your own volume group called 'nova-volumes' before
811 # invoking stack.sh.
812 #
813 # By default, the backing file is 2G in size, and is stored in /opt/stack.
814 #
Jesse Andrewsd02b7b72011-11-14 08:59:05 -0800815 if ! sudo vgdisplay | grep -q $VOLUME_GROUP; then
Todd Willeyb244ef32011-11-03 18:19:21 -0400816 VOLUME_BACKING_FILE=${VOLUME_BACKING_FILE:-$DEST/nova-volumes-backing-file}
Anthony Youngb22263a2011-10-20 10:26:30 -0700817 VOLUME_BACKING_FILE_SIZE=${VOLUME_BACKING_FILE_SIZE:-2052M}
Anthony Youngacff87a2011-10-20 10:12:58 -0700818 truncate -s $VOLUME_BACKING_FILE_SIZE $VOLUME_BACKING_FILE
819 DEV=`sudo losetup -f --show $VOLUME_BACKING_FILE`
Jesse Andrewsd02b7b72011-11-14 08:59:05 -0800820 sudo vgcreate $VOLUME_GROUP $DEV
Anthony Youngacff87a2011-10-20 10:12:58 -0700821 fi
822
823 # Configure iscsitarget
824 sudo sed 's/ISCSITARGET_ENABLE=false/ISCSITARGET_ENABLE=true/' -i /etc/default/iscsitarget
825 sudo /etc/init.d/iscsitarget restart
826fi
827
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700828function add_nova_flag {
829 echo "$1" >> $NOVA_DIR/bin/nova.conf
830}
831
832# (re)create nova.conf
833rm -f $NOVA_DIR/bin/nova.conf
834add_nova_flag "--verbose"
835add_nova_flag "--nodaemon"
Vishvananda Ishaya293c2ef2011-10-27 12:55:29 -0700836add_nova_flag "--allow_admin_api"
Jesse Andrews8ff5dbc2011-09-25 22:28:08 -0700837add_nova_flag "--scheduler_driver=$SCHEDULER"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700838add_nova_flag "--dhcpbridge_flagfile=$NOVA_DIR/bin/nova.conf"
Yun Mao9720eb82011-10-29 23:30:10 -0400839add_nova_flag "--fixed_range=$FIXED_RANGE"
Brad Hall1bfa3d52011-10-27 18:18:20 -0700840if [[ "$ENABLED_SERVICES" =~ "q-svc" ]]; then
841 add_nova_flag "--network_manager=nova.network.quantum.manager.QuantumManager"
842 if [[ "$Q_PLUGIN" = "openvswitch" ]]; then
843 add_nova_flag "--libvirt_vif_type=ethernet"
844 add_nova_flag "--libvirt_vif_driver=nova.virt.libvirt.vif.LibvirtOpenVswitchDriver"
845 fi
846else
847 add_nova_flag "--network_manager=nova.network.manager.$NET_MAN"
848fi
Jesse Andrewsd02b7b72011-11-14 08:59:05 -0800849if [[ "$ENABLED_SERVICES" =~ "n-vol" ]]; then
850 add_nova_flag "--volume_group=$VOLUME_GROUP"
851fi
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700852add_nova_flag "--my_ip=$HOST_IP"
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700853add_nova_flag "--public_interface=$PUBLIC_INTERFACE"
854add_nova_flag "--vlan_interface=$VLAN_INTERFACE"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700855add_nova_flag "--sql_connection=$BASE_SQL_CONN/nova"
856add_nova_flag "--libvirt_type=$LIBVIRT_TYPE"
James E. Blaire7ce24f2011-11-10 13:05:13 -0800857if [[ "$ENABLED_SERVICES" =~ "openstackx" ]]; then
858 add_nova_flag "--osapi_extensions_path=$OPENSTACKX_DIR/extensions"
859fi
860if [[ "$ENABLED_SERVICES" =~ "n-vnc" ]]; then
861 add_nova_flag "--vncproxy_url=http://$HOST_IP:6080"
862 add_nova_flag "--vncproxy_wwwroot=$NOVNC_DIR/"
863fi
Jesse Andrews42dc9a72011-10-24 22:03:11 -0700864add_nova_flag "--api_paste_config=$NOVA_DIR/bin/nova-api-paste.ini"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700865add_nova_flag "--image_service=nova.image.glance.GlanceImageService"
866add_nova_flag "--ec2_dmz_host=$EC2_DMZ_HOST"
867add_nova_flag "--rabbit_host=$RABBIT_HOST"
Jesse Andrews53ed3872011-10-02 14:28:17 -0400868add_nova_flag "--rabbit_password=$RABBIT_PASSWORD"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700869add_nova_flag "--glance_api_servers=$GLANCE_HOSTPORT"
Vishvananda Ishaya7e436c22011-11-09 00:12:00 -0800870add_nova_flag "--force_dhcp_release"
Vishvananda Ishaya3e2b1742011-10-28 12:20:07 -0700871if [ -n "$INSTANCES_PATH" ]; then
872 add_nova_flag "--instances_path=$INSTANCES_PATH"
Vishvananda Ishayae72bdb02011-10-28 13:34:38 -0700873fi
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700874if [ "$MULTI_HOST" != "False" ]; then
875 add_nova_flag "--multi_host"
876 add_nova_flag "--send_arp_for_ha"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700877fi
James E. Blair5855a642011-10-26 15:44:27 -0400878if [ "$SYSLOG" != "False" ]; then
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700879 add_nova_flag "--use_syslog"
James E. Blair5855a642011-10-26 15:44:27 -0400880fi
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700881
Anthony Youngb62b4ca2011-10-26 22:29:08 -0700882# XenServer
883# ---------
884
885if [ "$VIRT_DRIVER" = 'xenserver' ]; then
886 read_password XENAPI_PASSWORD "ENTER A PASSWORD TO USE FOR XEN."
887 add_nova_flag "--connection_type=xenapi"
888 add_nova_flag "--xenapi_connection_url=http://169.254.0.1"
889 add_nova_flag "--xenapi_connection_username=root"
890 add_nova_flag "--xenapi_connection_password=$XENAPI_PASSWORD"
891 add_nova_flag "--flat_injected=False"
892 add_nova_flag "--flat_interface=eth1"
Anthony Youngea1290a2011-10-27 12:53:30 -0700893 add_nova_flag "--flat_network_bridge=xenbr1"
Anthony Youngb62b4ca2011-10-26 22:29:08 -0700894 add_nova_flag "--public_interface=eth3"
895else
896 add_nova_flag "--flat_network_bridge=$FLAT_NETWORK_BRIDGE"
897 if [ -n "$FLAT_INTERFACE" ]; then
898 add_nova_flag "--flat_interface=$FLAT_INTERFACE"
899 fi
900fi
901
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400902# Nova Database
903# ~~~~~~~~~~~~~
904
905# All nova components talk to a central database. We will need to do this step
906# only once for an entire cluster.
907
Anthony Younga0748002011-09-16 21:37:36 -0700908if [[ "$ENABLED_SERVICES" =~ "mysql" ]]; then
909 # (re)create nova database
Anthony Young7a549f42011-10-12 07:13:13 +0000910 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'DROP DATABASE IF EXISTS nova;'
911 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'CREATE DATABASE nova;'
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400912
913 # (re)create nova database
Anthony Younga0748002011-09-16 21:37:36 -0700914 $NOVA_DIR/bin/nova-manage db sync
Anthony Younga0748002011-09-16 21:37:36 -0700915fi
916
917
Jesse Andrewse8d9cd82011-09-13 15:16:26 -0700918# Keystone
919# --------
920
Anthony Young70dc5e02011-09-15 16:52:43 -0700921if [[ "$ENABLED_SERVICES" =~ "key" ]]; then
922 # (re)create keystone database
Anthony Young7a549f42011-10-12 07:13:13 +0000923 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'DROP DATABASE IF EXISTS keystone;'
924 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'CREATE DATABASE keystone;'
Jesse Andrews75a37652011-09-12 17:09:08 -0700925
Anthony Young70dc5e02011-09-15 16:52:43 -0700926 # FIXME (anthony) keystone should use keystone.conf.example
927 KEYSTONE_CONF=$KEYSTONE_DIR/etc/keystone.conf
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700928 cp $FILES/keystone.conf $KEYSTONE_CONF
Anthony Young70dc5e02011-09-15 16:52:43 -0700929 sudo sed -e "s,%SQL_CONN%,$BASE_SQL_CONN/keystone,g" -i $KEYSTONE_CONF
Anthony Younge8fed482011-09-26 19:50:43 -0700930 sudo sed -e "s,%DEST%,$DEST,g" -i $KEYSTONE_CONF
Anthony Young3a093122011-09-13 19:01:45 +0000931
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400932 # keystone_data.sh creates our admin user and our ``SERVICE_TOKEN``.
Anthony Youngec21d932011-09-16 16:05:55 -0700933 KEYSTONE_DATA=$KEYSTONE_DIR/bin/keystone_data.sh
934 cp $FILES/keystone_data.sh $KEYSTONE_DATA
935 sudo sed -e "s,%HOST_IP%,$HOST_IP,g" -i $KEYSTONE_DATA
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700936 sudo sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $KEYSTONE_DATA
Jesse Andrews89358af2011-10-02 14:11:17 -0400937 sudo sed -e "s,%ADMIN_PASSWORD%,$ADMIN_PASSWORD,g" -i $KEYSTONE_DATA
Anthony Young70dc5e02011-09-15 16:52:43 -0700938 # initialize keystone with default users/endpoints
Anthony Youngec21d932011-09-16 16:05:55 -0700939 BIN_DIR=$KEYSTONE_DIR/bin bash $KEYSTONE_DATA
Anthony Young70dc5e02011-09-15 16:52:43 -0700940fi
Jesse Andrews75a37652011-09-12 17:09:08 -0700941
Jesse Andrews75a37652011-09-12 17:09:08 -0700942
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700943# Launch Services
944# ===============
Jesse Andrews30f68e92011-09-13 00:59:54 -0700945
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700946# nova api crashes if we start it with a regular screen command,
947# so send the start command by forcing text into the window.
Jesse Andrewsdfcd2002011-09-13 13:17:22 -0700948# Only run the services specified in ``ENABLED_SERVICES``
949
Jesse Andrews1f717602011-09-16 15:18:53 -0700950# our screen helper to launch a service in a hidden named screen
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700951function screen_it {
Jesse Andrews1f717602011-09-16 15:18:53 -0700952 NL=`echo -ne '\015'`
Anthony Young292e46d2011-09-13 11:28:56 -0700953 if [[ "$ENABLED_SERVICES" =~ "$1" ]]; then
Jesse Andrewsde8b9a22011-11-01 17:23:04 -0700954 screen -S stack -X screen -t $1
Jesse Andrewsf0b41f32011-11-07 09:51:15 -0800955 # sleep to allow bash to be ready to be send the command - we are
956 # creating a new window in screen and then sends characters, so if
957 # bash isn't running by the time we send the command, nothing happens
958 sleep 1
Jesse Andrewsde8b9a22011-11-01 17:23:04 -0700959 screen -S stack -p $1 -X stuff "$2$NL"
Anthony Young292e46d2011-09-13 11:28:56 -0700960 fi
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700961}
962
Jesse Andrewsa16e5e92011-09-16 16:30:55 -0700963# create a new named screen to run processes in
Jesse Andrewsde8b9a22011-11-01 17:23:04 -0700964screen -d -m -S stack -t stack
Jesse Andrewsa16e5e92011-09-16 16:30:55 -0700965sleep 1
966
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +0100967# launch the glance registry service
Anthony Youngd000b222011-09-19 14:46:53 -0700968if [[ "$ENABLED_SERVICES" =~ "g-reg" ]]; then
969 screen_it g-reg "cd $GLANCE_DIR; bin/glance-registry --config-file=etc/glance-registry.conf"
970fi
971
Jesse Andrews644b8e82011-10-02 17:50:41 -0400972# launch the glance api and wait for it to answer before continuing
Anthony Youngd000b222011-09-19 14:46:53 -0700973if [[ "$ENABLED_SERVICES" =~ "g-api" ]]; then
974 screen_it g-api "cd $GLANCE_DIR; bin/glance-api --config-file=etc/glance-api.conf"
James E. Blair92e81992011-10-11 09:26:29 -0500975 echo "Waiting for g-api ($GLANCE_HOSTPORT) to start..."
Dean Troyer2bbcd682011-11-05 16:19:03 -0500976 if ! timeout $SERVICE_TIMEOUT sh -c "while ! wget -q -O- http://$GLANCE_HOSTPORT; do sleep 1; done"; then
James E. Blair92e81992011-10-11 09:26:29 -0500977 echo "g-api did not start"
978 exit 1
979 fi
Anthony Youngd000b222011-09-19 14:46:53 -0700980fi
981
Jesse Andrews644b8e82011-10-02 17:50:41 -0400982# launch the keystone and wait for it to answer before continuing
Anthony Youngd000b222011-09-19 14:46:53 -0700983if [[ "$ENABLED_SERVICES" =~ "key" ]]; then
Anthony Youngf33796e2011-09-22 00:14:12 -0700984 screen_it key "cd $KEYSTONE_DIR && $KEYSTONE_DIR/bin/keystone --config-file $KEYSTONE_CONF -d"
James E. Blair92e81992011-10-11 09:26:29 -0500985 echo "Waiting for keystone to start..."
Dean Troyer2bbcd682011-11-05 16:19:03 -0500986 if ! timeout $SERVICE_TIMEOUT sh -c "while ! wget -q -O- http://127.0.0.1:5000; do sleep 1; done"; then
James E. Blair92e81992011-10-11 09:26:29 -0500987 echo "keystone did not start"
988 exit 1
989 fi
Anthony Youngd000b222011-09-19 14:46:53 -0700990fi
991
Jesse Andrews644b8e82011-10-02 17:50:41 -0400992# launch the nova-api and wait for it to answer before continuing
Anthony Youngd000b222011-09-19 14:46:53 -0700993if [[ "$ENABLED_SERVICES" =~ "n-api" ]]; then
Anthony Young9bf3d762011-09-20 09:51:16 -0700994 screen_it n-api "cd $NOVA_DIR && $NOVA_DIR/bin/nova-api"
James E. Blair92e81992011-10-11 09:26:29 -0500995 echo "Waiting for nova-api to start..."
Dean Troyer2bbcd682011-11-05 16:19:03 -0500996 if ! timeout $SERVICE_TIMEOUT sh -c "while ! wget -q -O- http://127.0.0.1:8774; do sleep 1; done"; then
James E. Blair92e81992011-10-11 09:26:29 -0500997 echo "nova-api did not start"
998 exit 1
999 fi
Anthony Youngd000b222011-09-19 14:46:53 -07001000fi
Brad Hall1bfa3d52011-10-27 18:18:20 -07001001
1002# Quantum
1003if [[ "$ENABLED_SERVICES" =~ "q-svc" ]]; then
Anthony Youngbdc254e2011-11-02 23:57:12 -05001004 # Install deps
Anthony Young0c3b60c2011-11-03 00:07:55 -05001005 # FIXME add to files/apts/quantum, but don't install if not needed!
Anthony Youngae7f2642011-11-03 00:03:53 -05001006 apt_get install openvswitch-switch openvswitch-datapath-dkms
Anthony Youngbdc254e2011-11-02 23:57:12 -05001007
Brad Hall1bfa3d52011-10-27 18:18:20 -07001008 # Create database for the plugin/agent
1009 if [[ "$Q_PLUGIN" = "openvswitch" ]]; then
1010 if [[ "$ENABLED_SERVICES" =~ "mysql" ]]; then
1011 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'CREATE DATABASE IF NOT EXISTS ovs_quantum;'
1012 else
Brad Halld9e544e2011-10-28 08:28:26 -07001013 echo "mysql must be enabled in order to use the $Q_PLUGIN Quantum plugin."
1014 exit 1
Brad Hall1bfa3d52011-10-27 18:18:20 -07001015 fi
1016 fi
1017
1018 QUANTUM_PLUGIN_INI_FILE=$QUANTUM_DIR/quantum/plugins.ini
1019 # Make sure we're using the openvswitch plugin
1020 sed -i -e "s/^provider =.*$/provider = quantum.plugins.openvswitch.ovs_quantum_plugin.OVSQuantumPlugin/g" $QUANTUM_PLUGIN_INI_FILE
1021 screen_it q-svc "cd $QUANTUM_DIR && export PYTHONPATH=.:$PYTHONPATH; python $QUANTUM_DIR/bin/quantum $QUANTUM_DIR/etc/quantum.conf"
1022fi
1023
1024# Quantum agent (for compute nodes)
1025if [[ "$ENABLED_SERVICES" =~ "q-agt" ]]; then
1026 if [[ "$Q_PLUGIN" = "openvswitch" ]]; then
1027 # Set up integration bridge
1028 OVS_BRIDGE=${OVS_BRIDGE:-br-int}
1029 sudo ovs-vsctl --no-wait -- --if-exists del-br $OVS_BRIDGE
1030 sudo ovs-vsctl --no-wait add-br $OVS_BRIDGE
1031 sudo ovs-vsctl --no-wait br-set-external-id $OVS_BRIDGE bridge-id br-int
1032 fi
1033
1034 # Start up the quantum <-> openvswitch agent
1035 screen_it q-agt "sleep 4; sudo python $QUANTUM_DIR/quantum/plugins/openvswitch/agent/ovs_quantum_agent.py $QUANTUM_DIR/quantum/plugins/openvswitch/ovs_quantum_plugin.ini -v"
1036fi
1037
Brad Halld9e544e2011-10-28 08:28:26 -07001038# If we're using Quantum (i.e. q-svc is enabled), network creation has to
1039# happen after we've started the Quantum service.
Brad Hall1bfa3d52011-10-27 18:18:20 -07001040if [[ "$ENABLED_SERVICES" =~ "mysql" ]]; then
1041 # create a small network
1042 $NOVA_DIR/bin/nova-manage network create private $FIXED_RANGE 1 $FIXED_NETWORK_SIZE
1043
1044 if [[ "$ENABLED_SERVICES" =~ "q-svc" ]]; then
1045 echo "Not creating floating IPs (not supported by QuantumManager)"
1046 else
1047 # create some floating ips
1048 $NOVA_DIR/bin/nova-manage floating create $FLOATING_RANGE
1049 fi
1050fi
1051
root40a37002011-09-20 18:06:14 +00001052# Launching nova-compute should be as simple as running ``nova-compute`` but
1053# have to do a little more than that in our script. Since we add the group
Jesse Andrews1f717602011-09-16 15:18:53 -07001054# ``libvirtd`` to our user in this script, when nova-compute is run it is
root40a37002011-09-20 18:06:14 +00001055# within the context of our original shell (so our groups won't be updated).
Scott Moser8ab1ade2011-10-07 21:03:16 -04001056# Use 'sg' to execute nova-compute as a member of the libvirtd group.
1057screen_it n-cpu "cd $NOVA_DIR && sg libvirtd $NOVA_DIR/bin/nova-compute"
Anthony Youngacff87a2011-10-20 10:12:58 -07001058screen_it n-vol "cd $NOVA_DIR && $NOVA_DIR/bin/nova-volume"
Anthony Young9bf3d762011-09-20 09:51:16 -07001059screen_it n-net "cd $NOVA_DIR && $NOVA_DIR/bin/nova-network"
1060screen_it n-sch "cd $NOVA_DIR && $NOVA_DIR/bin/nova-scheduler"
James E. Blaire7ce24f2011-11-10 13:05:13 -08001061if [[ "$ENABLED_SERVICES" =~ "n-vnc" ]]; then
1062 screen_it n-vnc "cd $NOVNC_DIR && ./utils/nova-wsproxy.py --flagfile $NOVA_DIR/bin/nova.conf --web . 6080"
1063fi
1064if [[ "$ENABLED_SERVICES" =~ "horizon" ]]; then
1065 screen_it horizon "cd $HORIZON_DIR && sudo tail -f /var/log/apache2/error.log"
1066fi
Jesse Andrews75a37652011-09-12 17:09:08 -07001067
Jesse Andrewsd74257d2011-09-13 01:24:50 -07001068# Install Images
1069# ==============
Jesse Andrewse49b8bd2011-09-12 18:08:04 -07001070
Anthony Young0ab1d462011-10-13 23:03:23 -07001071# Upload an image to glance.
Jesse Andrews5372f432011-10-03 01:08:24 -04001072#
Anthony Young0ab1d462011-10-13 23:03:23 -07001073# The default image is a small ***TTY*** testing image, which lets you login
1074# the username/password of root/password.
1075#
1076# TTY also uses cloud-init, supporting login via keypair and sending scripts as
1077# userdata. See https://help.ubuntu.com/community/CloudInit for more on cloud-init
1078#
Chmouel Boudjnah3d9c5d52011-11-02 17:57:11 +01001079# Override ``IMAGE_URLS`` with a comma-separated list of uec images.
Jesse Andrewsaab7eae2011-10-19 10:30:19 -07001080#
1081# * **natty**: http://uec-images.ubuntu.com/natty/current/natty-server-cloudimg-amd64.tar.gz
1082# * **oneiric**: http://uec-images.ubuntu.com/oneiric/current/oneiric-server-cloudimg-amd64.tar.gz
Jesse Andrews08e8b742011-10-02 23:42:56 -04001083
Jesse Andrews85d9be32011-10-03 00:01:28 -04001084if [[ "$ENABLED_SERVICES" =~ "g-reg" ]]; then
Anthony Young7a8989e2011-10-14 10:20:30 -07001085 # Create a directory for the downloaded image tarballs.
Jesse Andrews08e8b742011-10-02 23:42:56 -04001086 mkdir -p $FILES/images
1087
Anthony Youngb62b4ca2011-10-26 22:29:08 -07001088 # Option to upload legacy ami-tty, which works with xenserver
1089 if [ $UPLOAD_LEGACY_TTY ]; then
1090 if [ ! -f $FILES/tty.tgz ]; then
1091 wget -c http://images.ansolabs.com/tty.tgz -O $FILES/tty.tgz
1092 fi
1093
1094 tar -zxf $FILES/tty.tgz -C $FILES/images
1095 RVAL=`glance add -A $SERVICE_TOKEN name="tty-kernel" is_public=true container_format=aki disk_format=aki < $FILES/images/aki-tty/image`
1096 KERNEL_ID=`echo $RVAL | cut -d":" -f2 | tr -d " "`
1097 RVAL=`glance add -A $SERVICE_TOKEN name="tty-ramdisk" is_public=true container_format=ari disk_format=ari < $FILES/images/ari-tty/image`
1098 RAMDISK_ID=`echo $RVAL | cut -d":" -f2 | tr -d " "`
1099 glance add -A $SERVICE_TOKEN name="tty" is_public=true container_format=ami disk_format=ami kernel_id=$KERNEL_ID ramdisk_id=$RAMDISK_ID < $FILES/images/ami-tty/image
1100 fi
1101
Anthony Young120f4862011-10-14 09:31:09 -07001102 for image_url in ${IMAGE_URLS//,/ }; do
1103 # Downloads the image (uec ami+aki style), then extracts it.
Jesse Andrewsac1831e2011-10-24 21:37:00 -07001104 IMAGE_FNAME=`basename "$image_url"`
Anthony Young216ad692011-10-25 00:10:21 -07001105 IMAGE_NAME=`basename "$IMAGE_FNAME" .tar.gz`
Anthony Young120f4862011-10-14 09:31:09 -07001106 if [ ! -f $FILES/$IMAGE_FNAME ]; then
1107 wget -c $image_url -O $FILES/$IMAGE_FNAME
1108 fi
Jesse Andrewse49b8bd2011-09-12 18:08:04 -07001109
Anthony Young120f4862011-10-14 09:31:09 -07001110 # Extract ami and aki files
1111 tar -zxf $FILES/$IMAGE_FNAME -C $FILES/images
Anthony Young70dc5e02011-09-15 16:52:43 -07001112
Anthony Young120f4862011-10-14 09:31:09 -07001113 # Use glance client to add the kernel the root filesystem.
1114 # We parse the results of the first upload to get the glance ID of the
1115 # kernel for use when uploading the root filesystem.
1116 RVAL=`glance add -A $SERVICE_TOKEN name="$IMAGE_NAME-kernel" is_public=true container_format=aki disk_format=aki < $FILES/images/$IMAGE_NAME-vmlinuz*`
1117 KERNEL_ID=`echo $RVAL | cut -d":" -f2 | tr -d " "`
1118 glance add -A $SERVICE_TOKEN name="$IMAGE_NAME" is_public=true container_format=ami disk_format=ami kernel_id=$KERNEL_ID < $FILES/images/$IMAGE_NAME.img
1119 done
Jesse Andrewse49b8bd2011-09-12 18:08:04 -07001120fi
Jesse Andrews24859062011-09-15 21:28:23 -07001121
Scott Moserb94f4bf2011-10-07 14:51:07 +00001122# Fin
1123# ===
1124
1125
1126) 2>&1 | tee "${LOGFILE}"
1127
1128# Check that the left side of the above pipe succeeded
1129for ret in "${PIPESTATUS[@]}"; do [ $ret -eq 0 ] || exit $ret; done
1130
1131(
Jesse Andrews24859062011-09-15 21:28:23 -07001132# Using the cloud
1133# ===============
1134
Jesse Andrewse19d8842011-11-01 20:06:55 -07001135echo ""
1136echo ""
1137echo ""
1138
Tres Henryca85b792011-10-28 14:00:21 -07001139# If you installed the horizon on this server, then you should be able
root40a37002011-09-20 18:06:14 +00001140# to access the site using your browser.
Tres Henryca85b792011-10-28 14:00:21 -07001141if [[ "$ENABLED_SERVICES" =~ "horizon" ]]; then
1142 echo "horizon is now available at http://$HOST_IP/"
Jesse Andrews24859062011-09-15 21:28:23 -07001143fi
1144
1145# If keystone is present, you can point nova cli to this server
1146if [[ "$ENABLED_SERVICES" =~ "key" ]]; then
1147 echo "keystone is serving at http://$HOST_IP:5000/v2.0/"
1148 echo "examples on using novaclient command line is in exercise.sh"
Jesse Andrews89358af2011-10-02 14:11:17 -04001149 echo "the default users are: admin and demo"
1150 echo "the password: $ADMIN_PASSWORD"
Jesse Andrews24859062011-09-15 21:28:23 -07001151fi
termie523c4052011-09-28 19:49:40 -05001152
Scott Moserc4e47ab2011-10-07 13:29:29 +00001153# indicate how long this took to run (bash maintained variable 'SECONDS')
Scott Moserb94f4bf2011-10-07 14:51:07 +00001154echo "stack.sh completed in $SECONDS seconds."
Scott Moser7c481182011-10-07 13:50:21 +00001155
Scott Moserb94f4bf2011-10-07 14:51:07 +00001156) | tee -a "$LOGFILE"