blob: 2a6a0c427435f2415e4a2a5f30f28bd632c7ad4e [file] [log] [blame]
Jesse Andrewsba23cc72011-09-11 03:22:13 -07001#!/usr/bin/env bash
2
Dean Troyerc6c1d432012-03-27 20:59:22 -05003# ``stack.sh`` is an opinionated OpenStack developer installation. It
Dean Troyer4a43b7b2012-08-28 17:43:40 -05004# installs and configures various combinations of **Ceilometer**, **Cinder**,
Nikhil Manchanda0cccad42012-12-03 18:15:09 -07005# **Glance**, **Heat**, **Horizon**, **Keystone**, **Nova**, **Neutron**,
Dean Troyerfc744f92014-01-27 13:45:21 -06006# and **Swift**
Jesse Andrewsba23cc72011-09-11 03:22:13 -07007
Brett Campbell27f29442014-02-19 18:23:16 -08008# This script's options can be changed by setting appropriate environment
9# variables. You can configure things like which git repositories to use,
10# services to enable, OS images to use, etc. Default values are located in the
11# ``stackrc`` file. If you are crafty you can run the script on multiple nodes
12# using shared settings for common resources (eg., mysql or rabbitmq) and build
13# a multi-node developer install.
Jesse Andrews782b9912011-10-02 16:53:21 -040014
Dean Troyer4a43b7b2012-08-28 17:43:40 -050015# To keep this script simple we assume you are running on a recent **Ubuntu**
Alvaro Lopez Ortegad7f60902013-12-22 17:03:47 +010016# (12.04 Precise or newer) or **Fedora** (F18 or newer) machine. (It may work
Dean Troyer1a6d4492013-06-03 16:47:36 -050017# on other platforms but support for those platforms is left to those who added
18# them to DevStack.) It should work in a VM or physical server. Additionally
19# we maintain a list of ``apt`` and ``rpm`` dependencies and other configuration
20# files in this repo.
Jesse Andrews24859062011-09-15 21:28:23 -070021
Jesse Andrews0e7e8972011-10-02 16:36:54 -040022# Learn more and get the most recent version at http://devstack.org
Jesse Andrews6edd17f2011-09-15 22:19:42 -070023
Jason Dunsmore4e971112013-04-10 10:17:40 -050024# Make sure custom grep options don't get in the way
25unset GREP_OPTIONS
26
YAMAMOTO Takashib4a215c2014-01-10 16:39:32 +090027# Sanitize language settings to avoid commands bailing out
28# with "unsupported locale setting" errors.
29unset LANG
30unset LANGUAGE
31LC_ALL=C
32export LC_ALL
33
Brett Campbell27f29442014-02-19 18:23:16 -080034# Make sure umask is sane
35umask 022
36
Angus Lees7df9d1b2014-07-21 15:35:34 +100037# Not all distros have sbin in PATH for regular users.
38PATH=$PATH:/usr/local/sbin:/usr/sbin:/sbin
39
Dean Troyerc6c1d432012-03-27 20:59:22 -050040# Keep track of the devstack directory
Jesse Andrews51fb22e2011-10-19 09:24:17 -070041TOP_DIR=$(cd $(dirname "$0") && pwd)
42
Dean Troyerd3bf9bd2014-07-25 10:20:19 -050043# Sanity Checks
44# -------------
45
46# Clean up last environment var cache
47if [[ -r $TOP_DIR/.stackenv ]]; then
48 rm $TOP_DIR/.stackenv
49fi
50
51# ``stack.sh`` keeps the list of ``apt`` and ``rpm`` dependencies and config
52# templates and other useful files in the ``files`` subdirectory
53FILES=$TOP_DIR/files
54if [ ! -d $FILES ]; then
55 die $LINENO "missing devstack/files"
56fi
57
58# ``stack.sh`` keeps function libraries here
59# Make sure ``$TOP_DIR/lib`` directory is present
60if [ ! -d $TOP_DIR/lib ]; then
61 die $LINENO "missing devstack/lib"
62fi
63
64# Check if run as root
65# OpenStack is designed to be run as a non-root user; Horizon will fail to run
66# as **root** since Apache will not serve content from **root** user).
67# ``stack.sh`` must not be run as **root**. It aborts and suggests one course of
68# action to create a suitable user account.
69
70if [[ $EUID -eq 0 ]]; then
71 echo "You are running this script as root."
72 echo "Cut it out."
73 echo "Really."
Shuichiro MAKIGAKI3710eec2014-08-28 19:07:09 +090074 echo "If you need an account to run DevStack, do this (as root, heh) to create a non-root account:"
Dean Troyerd3bf9bd2014-07-25 10:20:19 -050075 echo "$TOP_DIR/tools/create-stack-user.sh"
76 exit 1
77fi
78
Dean Troyerd3bf9bd2014-07-25 10:20:19 -050079# Prepare the environment
80# -----------------------
81
Dean Troyer6563a3c2012-01-31 12:11:56 -060082# Import common functions
Dean Troyerc6c1d432012-03-27 20:59:22 -050083source $TOP_DIR/functions
Dean Troyer6563a3c2012-01-31 12:11:56 -060084
Dean Troyer893e6632013-09-13 15:05:51 -050085# Import config functions
86source $TOP_DIR/lib/config
87
Dean Troyerc6c1d432012-03-27 20:59:22 -050088# Determine what system we are running on. This provides ``os_VENDOR``,
89# ``os_RELEASE``, ``os_UPDATE``, ``os_PACKAGE``, ``os_CODENAME``
Dean Troyera9e0a482012-07-09 14:07:23 -050090# and ``DISTRO``
91GetDistro
Jesse Andrews6edd17f2011-09-15 22:19:42 -070092
Dean Troyerd3bf9bd2014-07-25 10:20:19 -050093# Warn users who aren't on an explicitly supported distro, but allow them to
94# override check and attempt installation with ``FORCE=yes ./stack``
95if [[ ! ${DISTRO} =~ (precise|trusty|7.0|wheezy|sid|testing|jessie|f19|f20|rhel6|rhel7) ]]; then
96 echo "WARNING: this script has not been tested on $DISTRO"
97 if [[ "$FORCE" != "yes" ]]; then
98 die $LINENO "If you wish to run this script anyway run with FORCE=yes"
99 fi
100fi
101
Maru Newbyeb2da5d2013-05-15 21:28:29 +0000102
Dean Troyer48352ee2012-12-12 12:50:38 -0600103# Global Settings
Dean Troyer0e8dced2014-07-25 10:33:21 -0500104# ---------------
Scott Moserf9da5082011-10-07 21:28:00 -0400105
Dean Troyer893e6632013-09-13 15:05:51 -0500106# Check for a ``localrc`` section embedded in ``local.conf`` and extract if
107# ``localrc`` does not already exist
108
109# Phase: local
110rm -f $TOP_DIR/.localrc.auto
111if [[ -r $TOP_DIR/local.conf ]]; then
112 LRC=$(get_meta_section_files $TOP_DIR/local.conf local)
113 for lfile in $LRC; do
114 if [[ "$lfile" == "localrc" ]]; then
115 if [[ -r $TOP_DIR/localrc ]]; then
116 warn $LINENO "localrc and local.conf:[[local]] both exist, using localrc"
117 else
Dean Troyerb8dd27b2013-10-17 12:03:55 -0500118 echo "# Generated file, do not edit" >$TOP_DIR/.localrc.auto
Dean Troyer893e6632013-09-13 15:05:51 -0500119 get_meta_section $TOP_DIR/local.conf local $lfile >>$TOP_DIR/.localrc.auto
120 fi
121 fi
122 done
123fi
124
Shuichiro MAKIGAKI3710eec2014-08-28 19:07:09 +0900125
Dean Troyer1a6d4492013-06-03 16:47:36 -0500126# ``stack.sh`` is customizable by setting environment variables. Override a
127# default setting via export::
Scott Moserf9da5082011-10-07 21:28:00 -0400128#
Terry Wilson428af5a2012-11-01 16:12:39 -0400129# export DATABASE_PASSWORD=anothersecret
Scott Moserf9da5082011-10-07 21:28:00 -0400130# ./stack.sh
131#
Dean Troyer1a6d4492013-06-03 16:47:36 -0500132# or by setting the variable on the command line::
Scott Moserf9da5082011-10-07 21:28:00 -0400133#
Dean Troyer1a6d4492013-06-03 16:47:36 -0500134# DATABASE_PASSWORD=simple ./stack.sh
135#
136# Persistent variables can be placed in a ``localrc`` file::
Scott Moserf9da5082011-10-07 21:28:00 -0400137#
Terry Wilson428af5a2012-11-01 16:12:39 -0400138# DATABASE_PASSWORD=anothersecret
139# DATABASE_USER=hellaroot
Scott Moserf9da5082011-10-07 21:28:00 -0400140#
141# We try to have sensible defaults, so you should be able to run ``./stack.sh``
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500142# in most cases. ``localrc`` is not distributed with DevStack and will never
143# be overwritten by a DevStack update.
Scott Moserf9da5082011-10-07 21:28:00 -0400144#
Dean Troyerdf0972c2012-03-07 17:31:03 -0600145# DevStack distributes ``stackrc`` which contains locations for the OpenStack
Dean Troyercc6b4432013-04-08 15:38:03 -0500146# repositories, branches to configure, and other configuration defaults.
147# ``stackrc`` sources ``localrc`` to allow you to safely override those settings.
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500148
Dean Troyerbbafb1b2012-06-11 16:51:39 -0500149if [[ ! -r $TOP_DIR/stackrc ]]; then
Dean Troyer14fd9792014-07-25 10:34:11 -0500150 die $LINENO "missing $TOP_DIR/stackrc - did you grab more than just stack.sh?"
Dean Troyerbbafb1b2012-06-11 16:51:39 -0500151fi
152source $TOP_DIR/stackrc
Dean Troyerdf0972c2012-03-07 17:31:03 -0600153
Shuichiro MAKIGAKI3710eec2014-08-28 19:07:09 +0900154# Check to see if we are already running DevStack
155# Note that this may fail if USE_SCREEN=False
156if type -p screen > /dev/null && screen -ls | egrep -q "[0-9]\.$SCREEN_NAME"; then
157 echo "You are already running a stack.sh session."
158 echo "To rejoin this session type 'screen -x stack'."
159 echo "To destroy this session, type './unstack.sh'."
160 exit 1
161fi
162
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500163
Dean Troyer48352ee2012-12-12 12:50:38 -0600164# Local Settings
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500165# --------------
166
Dean Troyer48352ee2012-12-12 12:50:38 -0600167# Make sure the proxy config is visible to sub-processes
168export_proxy_variables
Scott Moserf9da5082011-10-07 21:28:00 -0400169
Doug Hellmannf04178f2012-07-05 17:10:03 -0400170# Remove services which were negated in ENABLED_SERVICES
Joe Gordon6fd28112012-11-13 16:55:41 -0800171# using the "-" prefix (e.g., "-rabbit") instead of
Doug Hellmannf04178f2012-07-05 17:10:03 -0400172# calling disable_service().
173disable_negated_services
Chmouel Boudjnahc4cd4142012-06-27 11:01:40 +0200174
Dean Troyera79617c2014-04-13 18:16:54 -0500175# Look for obsolete stuff
JordanPea9c24b2014-04-28 08:38:34 +0000176if [[ ,${ENABLED_SERVICES}, =~ ,"swift", ]]; then
Dean Troyera79617c2014-04-13 18:16:54 -0500177 echo "FATAL: 'swift' is not supported as a service name"
Gael Chamoulaudd3121f62014-07-24 23:53:02 +0200178 echo "FATAL: Use the actual swift service names to enable them as required:"
Dean Troyera79617c2014-04-13 18:16:54 -0500179 echo "FATAL: s-proxy s-object s-container s-account"
180 exit 1
181fi
182
Dean Troyerd3bf9bd2014-07-25 10:20:19 -0500183# Configure sudo
184# --------------
Dean Troyer9122e7b2011-10-17 14:07:11 -0500185
Dean Troyer23f69d82013-10-04 12:35:24 -0500186# We're not **root**, make sure ``sudo`` is available
187is_package_installed sudo || install_package sudo
188
189# UEC images ``/etc/sudoers`` does not have a ``#includedir``, add one
190sudo grep -q "^#includedir.*/etc/sudoers.d" /etc/sudoers ||
191 echo "#includedir /etc/sudoers.d" | sudo tee -a /etc/sudoers
192
193# Set up devstack sudoers
194TEMPFILE=`mktemp`
195echo "$STACK_USER ALL=(root) NOPASSWD:ALL" >$TEMPFILE
196# Some binaries might be under /sbin or /usr/sbin, so make sure sudo will
197# see them by forcing PATH
198echo "Defaults:$STACK_USER secure_path=/sbin:/usr/sbin:/usr/bin:/bin:/usr/local/sbin:/usr/local/bin" >> $TEMPFILE
Adam Gandelmanea2fcb52014-03-17 16:37:56 -0700199echo "Defaults:$STACK_USER !requiretty" >> $TEMPFILE
Dean Troyer23f69d82013-10-04 12:35:24 -0500200chmod 0440 $TEMPFILE
201sudo chown root:root $TEMPFILE
202sudo mv $TEMPFILE /etc/sudoers.d/50_stack_sh
203
Dean Troyer0e8dced2014-07-25 10:33:21 -0500204
205# Configure Distro Repositories
206# -----------------------------
Ian Wienand531aeb72014-02-28 11:24:29 +1100207
Sean Daguee83f7782014-06-23 08:11:05 -0400208# For debian/ubuntu make apt attempt to retry network ops on it's own
209if is_ubuntu; then
Chmouel Boudjnah9246d962014-06-30 12:52:51 +0000210 echo 'APT::Acquire::Retries "20";' | sudo tee /etc/apt/apt.conf.d/80retry >/dev/null
Sean Daguee83f7782014-06-23 08:11:05 -0400211fi
212
Ian Wienandbdc90c52014-08-04 15:44:58 +1000213# upstream Rackspace centos7 images have an issue where cloud-init is
214# installed via pip because there were not official packages when the
215# image was created (fix in the works). Remove all pip packages
216# before we do anything else
217if [[ $DISTRO = "rhel7" && is_rackspace ]]; then
218 (sudo pip freeze | xargs sudo pip uninstall -y) || true
219fi
220
Ian Wienand531aeb72014-02-28 11:24:29 +1100221# Some distros need to add repos beyond the defaults provided by the vendor
222# to pick up required packages.
223
Ian Wienanda36167e2014-08-04 14:11:26 +1000224if [[ is_fedora && $DISTRO == "rhel6" ]]; then
Attila Fazekas6d227a42014-04-09 14:42:42 +0200225 # Installing Open vSwitch on RHEL requires enabling the RDO repo.
226 RHEL6_RDO_REPO_RPM=${RHEL6_RDO_REPO_RPM:-"http://rdo.fedorapeople.org/openstack-icehouse/rdo-release-icehouse.rpm"}
227 RHEL6_RDO_REPO_ID=${RHEL6_RDO_REPO_ID:-"openstack-icehouse"}
Ian Wienand531aeb72014-02-28 11:24:29 +1100228 if ! sudo yum repolist enabled $RHEL6_RDO_REPO_ID | grep -q $RHEL6_RDO_REPO_ID; then
229 echo "RDO repo not detected; installing"
230 yum_install $RHEL6_RDO_REPO_RPM || \
231 die $LINENO "Error installing RDO repo, cannot continue"
232 fi
Ian Wienanda36167e2014-08-04 14:11:26 +1000233fi
234
235if [[ is_fedora && ( $DISTRO == "rhel6" || $DISTRO == "rhel7" ) ]]; then
Attila Fazekas6d227a42014-04-09 14:42:42 +0200236 # RHEL requires EPEL for many Open Stack dependencies
Ian Wienanda36167e2014-08-04 14:11:26 +1000237 if [[ $DISTRO == "rhel7" ]]; then
Ian Wienandbdab7c72014-09-02 09:09:43 +1000238 EPEL_RPM=${RHEL7_EPEL_RPM:-"http://dl.fedoraproject.org/pub/epel/beta/7/x86_64/epel-release-7-1.noarch.rpm"}
Ian Wienanda36167e2014-08-04 14:11:26 +1000239 elif [[ $DISTRO == "rhel6" ]]; then
Attila Fazekas6d227a42014-04-09 14:42:42 +0200240 EPEL_RPM=${RHEL6_EPEL_RPM:-"http://dl.fedoraproject.org/pub/epel/6/x86_64/epel-release-6-8.noarch.rpm"}
241 fi
Ian Wienand531aeb72014-02-28 11:24:29 +1100242 if ! sudo yum repolist enabled epel | grep -q 'epel'; then
243 echo "EPEL not detected; installing"
Attila Fazekas6d227a42014-04-09 14:42:42 +0200244 yum_install ${EPEL_RPM} || \
Ian Wienand531aeb72014-02-28 11:24:29 +1100245 die $LINENO "Error installing EPEL repo, cannot continue"
246 fi
247
248 # ... and also optional to be enabled
249 is_package_installed yum-utils || install_package yum-utils
Ian Wienanda36167e2014-08-04 14:11:26 +1000250 if [[ $DISTRO == "rhel7" ]]; then
Brad P. Crochetc3599212014-06-16 10:27:19 -0400251 OPTIONAL_REPO=rhel-7-server-optional-rpms
Ian Wienanda36167e2014-08-04 14:11:26 +1000252 elif [[ $DISTRO == "rhel6" ]]; then
Brad P. Crochetc3599212014-06-16 10:27:19 -0400253 OPTIONAL_REPO=rhel-6-server-optional-rpms
254 fi
255 sudo yum-config-manager --enable ${OPTIONAL_REPO}
Ian Wienand531aeb72014-02-28 11:24:29 +1100256fi
257
Dean Troyer0e8dced2014-07-25 10:33:21 -0500258
259# Configure Target Directories
260# ----------------------------
261
262# Destination path for installation ``DEST``
263DEST=${DEST:-/opt/stack}
Dean Troyer23f69d82013-10-04 12:35:24 -0500264
Dean Troyere26232b2012-06-27 17:55:15 -0500265# Create the destination directory and ensure it is writable by the user
Bob Ball376b6312013-07-29 13:10:25 +0100266# and read/executable by everybody for daemons (e.g. apache run for horizon)
Dean Troyere26232b2012-06-27 17:55:15 -0500267sudo mkdir -p $DEST
Doug Hellmanne7002672013-09-05 08:10:07 -0400268safe_chown -R $STACK_USER $DEST
269safe_chmod 0755 $DEST
Dean Troyere26232b2012-06-27 17:55:15 -0500270
Ian Wienand0488edd2013-04-11 12:04:36 +1000271# a basic test for $DEST path permissions (fatal on error unless skipped)
272check_path_perm_sanity ${DEST}
273
Dean Troyer0e8dced2014-07-25 10:33:21 -0500274# Destination path for service data
275DATA_DIR=${DATA_DIR:-${DEST}/data}
276sudo mkdir -p $DATA_DIR
277safe_chown -R $STACK_USER $DATA_DIR
278
279# Configure proper hostname
Ben Nemec3ee52c82013-12-12 19:26:12 +0000280# Certain services such as rabbitmq require that the local hostname resolves
281# correctly. Make sure it exists in /etc/hosts so that is always true.
282LOCAL_HOSTNAME=`hostname -s`
283if [ -z "`grep ^127.0.0.1 /etc/hosts | grep $LOCAL_HOSTNAME`" ]; then
284 sudo sed -i "s/\(^127.0.0.1.*\)/\1 $LOCAL_HOSTNAME/" /etc/hosts
285fi
286
Ian Wienand531aeb72014-02-28 11:24:29 +1100287
Dean Troyerffd17682014-08-02 16:07:03 -0500288# Configure Logging
289# -----------------
290
291# Set up logging level
292VERBOSE=$(trueorfalse True $VERBOSE)
293
294# Draw a spinner so the user knows something is happening
295function spinner {
296 local delay=0.75
297 local spinstr='/-\|'
298 printf "..." >&3
299 while [ true ]; do
300 local temp=${spinstr#?}
301 printf "[%c]" "$spinstr" >&3
302 local spinstr=$temp${spinstr%"$temp"}
303 sleep $delay
304 printf "\b\b\b" >&3
305 done
306}
307
308function kill_spinner {
309 if [ ! -z "$LAST_SPINNER_PID" ]; then
310 kill >/dev/null 2>&1 $LAST_SPINNER_PID
311 printf "\b\b\bdone\n" >&3
312 fi
313}
314
315# Echo text to the log file, summary log file and stdout
316# echo_summary "something to say"
317function echo_summary {
318 if [[ -t 3 && "$VERBOSE" != "True" ]]; then
319 kill_spinner
320 echo -n -e $@ >&6
321 spinner &
322 LAST_SPINNER_PID=$!
323 else
324 echo -e $@ >&6
325 fi
326}
327
328# Echo text only to stdout, no log files
329# echo_nolog "something not for the logs"
330function echo_nolog {
331 echo $@ >&3
332}
333
334if [[ is_fedora && $DISTRO == "rhel6" ]]; then
335 # poor old python2.6 doesn't have argparse by default, which
336 # outfilter.py uses
337 is_package_installed python-argparse || install_package python-argparse
338fi
339
340# Set up logging for ``stack.sh``
341# Set ``LOGFILE`` to turn on logging
342# Append '.xxxxxxxx' to the given name to maintain history
343# where 'xxxxxxxx' is a representation of the date the file was created
344TIMESTAMP_FORMAT=${TIMESTAMP_FORMAT:-"%F-%H%M%S"}
345if [[ -n "$LOGFILE" || -n "$SCREEN_LOGDIR" ]]; then
346 LOGDAYS=${LOGDAYS:-7}
347 CURRENT_LOG_TIME=$(date "+$TIMESTAMP_FORMAT")
348fi
349
350if [[ -n "$LOGFILE" ]]; then
351 # First clean up old log files. Use the user-specified ``LOGFILE``
352 # as the template to search for, appending '.*' to match the date
353 # we added on earlier runs.
354 LOGDIR=$(dirname "$LOGFILE")
355 LOGFILENAME=$(basename "$LOGFILE")
356 mkdir -p $LOGDIR
357 find $LOGDIR -maxdepth 1 -name $LOGFILENAME.\* -mtime +$LOGDAYS -exec rm {} \;
358 LOGFILE=$LOGFILE.${CURRENT_LOG_TIME}
359 SUMFILE=$LOGFILE.${CURRENT_LOG_TIME}.summary
360
361 # Redirect output according to config
362
363 # Set fd 3 to a copy of stdout. So we can set fd 1 without losing
364 # stdout later.
365 exec 3>&1
366 if [[ "$VERBOSE" == "True" ]]; then
367 # Set fd 1 and 2 to write the log file
368 exec 1> >( $TOP_DIR/tools/outfilter.py -v -o "${LOGFILE}" ) 2>&1
369 # Set fd 6 to summary log file
370 exec 6> >( $TOP_DIR/tools/outfilter.py -o "${SUMFILE}" )
371 else
372 # Set fd 1 and 2 to primary logfile
373 exec 1> >( $TOP_DIR/tools/outfilter.py -o "${LOGFILE}" ) 2>&1
374 # Set fd 6 to summary logfile and stdout
375 exec 6> >( $TOP_DIR/tools/outfilter.py -v -o "${SUMFILE}" >&3 )
376 fi
377
378 echo_summary "stack.sh log $LOGFILE"
379 # Specified logfile name always links to the most recent log
380 ln -sf $LOGFILE $LOGDIR/$LOGFILENAME
381 ln -sf $SUMFILE $LOGDIR/$LOGFILENAME.summary
382else
383 # Set up output redirection without log files
384 # Set fd 3 to a copy of stdout. So we can set fd 1 without losing
385 # stdout later.
386 exec 3>&1
387 if [[ "$VERBOSE" != "True" ]]; then
388 # Throw away stdout and stderr
389 exec 1>/dev/null 2>&1
390 fi
391 # Always send summary fd to original stdout
392 exec 6> >( $TOP_DIR/tools/outfilter.py -v >&3 )
393fi
394
395# Set up logging of screen windows
396# Set ``SCREEN_LOGDIR`` to turn on logging of screen windows to the
397# directory specified in ``SCREEN_LOGDIR``, we will log to the the file
398# ``screen-$SERVICE_NAME-$TIMESTAMP.log`` in that dir and have a link
399# ``screen-$SERVICE_NAME.log`` to the latest log file.
400# Logs are kept for as long specified in ``LOGDAYS``.
401if [[ -n "$SCREEN_LOGDIR" ]]; then
402
403 # We make sure the directory is created.
404 if [[ -d "$SCREEN_LOGDIR" ]]; then
405 # We cleanup the old logs
406 find $SCREEN_LOGDIR -maxdepth 1 -name screen-\*.log -mtime +$LOGDAYS -exec rm {} \;
407 else
408 mkdir -p $SCREEN_LOGDIR
409 fi
410fi
411
412
413# Configure Error Traps
414# ---------------------
415
416# Kill background processes on exit
417trap exit_trap EXIT
418function exit_trap {
419 local r=$?
420 jobs=$(jobs -p)
421 # Only do the kill when we're logging through a process substitution,
422 # which currently is only to verbose logfile
423 if [[ -n $jobs && -n "$LOGFILE" && "$VERBOSE" == "True" ]]; then
424 echo "exit_trap: cleaning up child processes"
425 kill 2>&1 $jobs
426 fi
427
428 # Kill the last spinner process
429 kill_spinner
430
431 if [[ $r -ne 0 ]]; then
432 echo "Error on exit"
433 if [[ -z $LOGDIR ]]; then
434 $TOP_DIR/tools/worlddump.py
435 else
436 $TOP_DIR/tools/worlddump.py -d $LOGDIR
437 fi
438 fi
439
440 exit $r
441}
442
443# Exit on any errors so that errors don't compound
444trap err_trap ERR
445function err_trap {
446 local r=$?
447 set +o xtrace
448 if [[ -n "$LOGFILE" ]]; then
449 echo "${0##*/} failed: full log in $LOGFILE"
450 else
451 echo "${0##*/} failed"
452 fi
453 exit $r
454}
455
456# Begin trapping error exit codes
457set -o errexit
458
459# Print the commands being run so that we can see the command that triggers
460# an error. It is also useful for following along as the install occurs.
461set -o xtrace
462
463
Ian Wienand531aeb72014-02-28 11:24:29 +1100464# Common Configuration
465# --------------------
466
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500467# Set ``OFFLINE`` to ``True`` to configure ``stack.sh`` to run cleanly without
468# Internet access. ``stack.sh`` must have been previously run with Internet
469# access to install prerequisites and fetch repositories.
Dean Troyer25dab662011-12-16 22:40:46 -0600470OFFLINE=`trueorfalse False $OFFLINE`
471
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500472# Set ``ERROR_ON_CLONE`` to ``True`` to configure ``stack.sh`` to exit if
473# the destination git repository does not exist during the ``git_clone``
474# operation.
James E. Blair94cb9602012-06-22 15:28:29 -0700475ERROR_ON_CLONE=`trueorfalse False $ERROR_ON_CLONE`
476
Ben Nemec03997942013-08-10 09:56:16 -0500477# Whether to enable the debug log level in OpenStack services
478ENABLE_DEBUG_LOG_LEVEL=`trueorfalse True $ENABLE_DEBUG_LOG_LEVEL`
479
Vishvananda Ishayac9ad14b2012-07-03 20:29:01 +0000480# Set fixed and floating range here so we can make sure not to use addresses
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500481# from either range when attempting to guess the IP to use for the host.
482# Note that setting FIXED_RANGE may be necessary when running DevStack
Dean Troyerd81a0272012-08-31 18:04:55 -0500483# in an OpenStack cloud that uses either of these address ranges internally.
Salvatore Orlando90234ac2013-11-25 05:44:10 -0800484FLOATING_RANGE=${FLOATING_RANGE:-172.24.4.0/24}
Dean Troyerd81a0272012-08-31 18:04:55 -0500485FIXED_RANGE=${FIXED_RANGE:-10.0.0.0/24}
486FIXED_NETWORK_SIZE=${FIXED_NETWORK_SIZE:-256}
Vishvananda Ishayac9ad14b2012-07-03 20:29:01 +0000487
Dean Troyerc892bde2013-03-13 14:06:13 -0500488HOST_IP=$(get_default_host_ip $FIXED_RANGE $FLOATING_RANGE "$HOST_IP_IFACE" "$HOST_IP")
489if [ "$HOST_IP" == "" ]; then
Newell Jensenccb3d102014-03-10 14:28:52 -0700490 die $LINENO "Could not determine host ip address. See local.conf for suggestions on setting HOST_IP."
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700491fi
492
Anthony Young1097c7c2011-12-27 23:22:14 -0800493# Allow the use of an alternate hostname (such as localhost/127.0.0.1) for service endpoints.
494SERVICE_HOST=${SERVICE_HOST:-$HOST_IP}
Dean Troyercc6b4432013-04-08 15:38:03 -0500495
Dean Troyerdf0972c2012-03-07 17:31:03 -0600496# Configure services to use syslog instead of writing to individual log files
Dean Troyerff603ef2011-11-22 17:48:10 -0600497SYSLOG=`trueorfalse False $SYSLOG`
498SYSLOG_HOST=${SYSLOG_HOST:-$HOST_IP}
499SYSLOG_PORT=${SYSLOG_PORT:-516}
500
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500501# Use color for logging output (only available if syslog is not used)
Vishvananda Ishaya6f13ba32012-06-01 23:17:38 +0000502LOG_COLOR=`trueorfalse True $LOG_COLOR`
503
Dean Troyer2bbcd682011-11-05 16:19:03 -0500504# Service startup timeout
505SERVICE_TIMEOUT=${SERVICE_TIMEOUT:-60}
506
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +1000507# Reset the bundle of CA certificates
508SSL_BUNDLE_FILE="$DATA_DIR/ca-bundle.pem"
509rm -f $SSL_BUNDLE_FILE
510
Dean Troyer0e8dced2014-07-25 10:33:21 -0500511# Import common services (database, message queue) configuration
512source $TOP_DIR/lib/database
513source $TOP_DIR/lib/rpc_backend
514
515# Make sure we only have one rpc backend enabled,
516# and the specified rpc backend is available on your platform.
517check_rpc_backend
518
Rob Crittenden18d47782014-03-19 17:47:42 -0400519# Use native SSL for servers in SSL_ENABLED_SERVICES
520USE_SSL=$(trueorfalse False $USE_SSL)
521
522# Service to enable with SSL if USE_SSL is True
523SSL_ENABLED_SERVICES="key,nova,cinder,glance,s-proxy,neutron"
524
525if is_service_enabled tls-proxy && [ "$USE_SSL" == "True" ]; then
526 die $LINENO "tls-proxy and SSL are mutually exclusive"
527fi
Dean Troyerd81a0272012-08-31 18:04:55 -0500528
529# Configure Projects
530# ==================
531
Brant Knudson0049c0c2014-01-16 18:16:48 -0600532# Import apache functions
zhang-hared98a5d02013-06-21 18:18:02 +0800533source $TOP_DIR/lib/apache
Brant Knudson0049c0c2014-01-16 18:16:48 -0600534
535# Import TLS functions
Dean Troyerc83a7e12012-11-29 11:47:58 -0600536source $TOP_DIR/lib/tls
Brant Knudson0049c0c2014-01-16 18:16:48 -0600537
538# Source project function libraries
Sean Dague0392a102013-07-31 13:07:45 -0400539source $TOP_DIR/lib/infra
Sean Dague1b6b5312013-07-31 06:46:34 -0400540source $TOP_DIR/lib/oslo
Sean Dague68322722013-10-21 18:11:40 -0400541source $TOP_DIR/lib/stackforge
Sean Dagueb562e6a2012-11-19 16:00:01 -0500542source $TOP_DIR/lib/horizon
Dean Troyerd81a0272012-08-31 18:04:55 -0500543source $TOP_DIR/lib/keystone
Dean Troyer73f6f252012-09-17 11:22:21 -0500544source $TOP_DIR/lib/glance
Dean Troyerbf67c192012-09-21 15:09:37 -0500545source $TOP_DIR/lib/nova
Dean Troyerd81a0272012-08-31 18:04:55 -0500546source $TOP_DIR/lib/cinder
Attila Fazekasece6a332012-11-29 14:19:41 +0100547source $TOP_DIR/lib/swift
Dean Troyerd81a0272012-08-31 18:04:55 -0500548source $TOP_DIR/lib/ceilometer
549source $TOP_DIR/lib/heat
Mark McClainb05c8762013-07-06 23:29:39 -0400550source $TOP_DIR/lib/neutron
Devananda van der Veenf35cf912012-11-12 17:58:38 -0800551source $TOP_DIR/lib/baremetal
Brad Topolf127e2f2013-01-22 10:17:50 -0600552source $TOP_DIR/lib/ldap
Joe Gordone0b08d02014-08-20 00:34:55 -0700553source $TOP_DIR/lib/dstat
Dean Troyerd81a0272012-08-31 18:04:55 -0500554
Dean Troyercdf3d762013-10-15 09:42:43 -0500555# Extras Source
556# --------------
557
558# Phase: source
559if [[ -d $TOP_DIR/extras.d ]]; then
560 for i in $TOP_DIR/extras.d/*.sh; do
561 [[ -r $i ]] && source $i source
562 done
563fi
564
Dean Troyer1a6d4492013-06-03 16:47:36 -0500565# Set the destination directories for other OpenStack projects
Dean Troyer9f61d292012-11-26 18:56:20 +0000566OPENSTACKCLIENT_DIR=$DEST/python-openstackclient
Dean Troyerb7490da2013-03-18 16:07:56 -0500567
568# Interactive Configuration
569# -------------------------
570
571# Do all interactive config up front before the logging spew begins
James E. Blair213c4162012-11-06 09:38:36 +0100572
Anthony Young7a549f42011-10-12 07:13:13 +0000573# Generic helper to configure passwords
574function read_password {
Dean Troyer7903b792012-09-13 17:16:12 -0500575 XTRACE=$(set +o | grep xtrace)
Anthony Young7a549f42011-10-12 07:13:13 +0000576 set +o xtrace
577 var=$1; msg=$2
578 pw=${!var}
579
Sahid Orentino Ferdjaoui9e032c22014-02-10 11:36:25 +0100580 if [[ -f $RC_DIR/localrc ]]; then
581 localrc=$TOP_DIR/localrc
582 else
583 localrc=$TOP_DIR/.localrc.auto
584 fi
Anthony Young6015c822011-10-12 07:17:11 +0000585
Anthony Young7a549f42011-10-12 07:13:13 +0000586 # If the password is not defined yet, proceed to prompt user for a password.
587 if [ ! $pw ]; then
588 # If there is no localrc file, create one
Anthony Youngb4db2252011-10-12 14:08:08 -0700589 if [ ! -e $localrc ]; then
590 touch $localrc
Anthony Young7a549f42011-10-12 07:13:13 +0000591 fi
592
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700593 # Presumably if we got this far it can only be that our localrc is missing
Anthony Young7a549f42011-10-12 07:13:13 +0000594 # the required password. Prompt user for a password and write to localrc.
Anthony Youngb4db2252011-10-12 14:08:08 -0700595 echo ''
596 echo '################################################################################'
597 echo $msg
598 echo '################################################################################'
Dean Troyer4e6a2b72011-12-29 17:27:45 -0600599 echo "This value will be written to your localrc file so you don't have to enter it "
600 echo "again. Use only alphanumeric characters."
Anthony Youngb4db2252011-10-12 14:08:08 -0700601 echo "If you leave this blank, a random default value will be used."
Dean Troyer4e6a2b72011-12-29 17:27:45 -0600602 pw=" "
603 while true; do
604 echo "Enter a password now:"
605 read -e $var
606 pw=${!var}
607 [[ "$pw" = "`echo $pw | tr -cd [:alnum:]`" ]] && break
608 echo "Invalid chars in password. Try again:"
609 done
Anthony Youngb4db2252011-10-12 14:08:08 -0700610 if [ ! $pw ]; then
Attila Fazekasf71b5002014-05-28 09:52:22 +0200611 pw=$(generate_hex_string 10)
Anthony Young7a549f42011-10-12 07:13:13 +0000612 fi
Anthony Youngb4db2252011-10-12 14:08:08 -0700613 eval "$var=$pw"
614 echo "$var=$pw" >> $localrc
Anthony Young7a549f42011-10-12 07:13:13 +0000615 fi
Dean Troyer7903b792012-09-13 17:16:12 -0500616 $XTRACE
Anthony Young7a549f42011-10-12 07:13:13 +0000617}
618
Dean Troyer13dc5cc2012-03-27 14:50:45 -0500619
Dean Troyerb9182d62012-11-07 12:31:34 -0600620# Database Configuration
Dean Troyerb9182d62012-11-07 12:31:34 -0600621
Dean Troyerafc29fe2013-02-07 15:56:24 -0600622# To select between database backends, add the following to ``localrc``:
Terry Wilson428af5a2012-11-01 16:12:39 -0400623#
Dean Troyerafc29fe2013-02-07 15:56:24 -0600624# disable_service mysql
625# enable_service postgresql
Terry Wilson428af5a2012-11-01 16:12:39 -0400626#
Dean Troyerafc29fe2013-02-07 15:56:24 -0600627# The available database backends are listed in ``DATABASE_BACKENDS`` after
628# ``lib/database`` is sourced. ``mysql`` is the default.
Terry Wilson428af5a2012-11-01 16:12:39 -0400629
630initialize_database_backends && echo "Using $DATABASE_TYPE database backend" || echo "No database enabled"
631
Dean Troyerb9182d62012-11-07 12:31:34 -0600632
Dean Troyerb7490da2013-03-18 16:07:56 -0500633# Queue Configuration
Jesse Andrews782b9912011-10-02 16:53:21 -0400634
Anthony Younga8416442011-09-13 20:07:44 -0700635# Rabbit connection info
Russell Bryant4a221452012-03-13 13:44:12 -0400636if is_service_enabled rabbit; then
Bob Balle309e5a2014-04-01 16:28:36 +0100637 RABBIT_HOST=${RABBIT_HOST:-$SERVICE_HOST}
Russell Bryant4a221452012-03-13 13:44:12 -0400638 read_password RABBIT_PASSWORD "ENTER A PASSWORD TO USE FOR RABBIT."
639fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700640
Dean Troyerb7490da2013-03-18 16:07:56 -0500641
642# Keystone
643
644if is_service_enabled key; then
645 # The ``SERVICE_TOKEN`` is used to bootstrap the Keystone database. It is
646 # just a string and is not a 'real' Keystone token.
647 read_password SERVICE_TOKEN "ENTER A SERVICE_TOKEN TO USE FOR THE SERVICE ADMIN TOKEN."
648 # Services authenticate to Identity with servicename/``SERVICE_PASSWORD``
649 read_password SERVICE_PASSWORD "ENTER A SERVICE_PASSWORD TO USE FOR THE SERVICE AUTHENTICATION."
650 # Horizon currently truncates usernames and passwords at 20 characters
651 read_password ADMIN_PASSWORD "ENTER A PASSWORD TO USE FOR HORIZON AND KEYSTONE (20 CHARS OR LESS)."
652
653 # Keystone can now optionally install OpenLDAP by enabling the ``ldap``
654 # service in ``localrc`` (e.g. ``enable_service ldap``).
655 # To clean out the Keystone contents in OpenLDAP set ``KEYSTONE_CLEAR_LDAP``
656 # to ``yes`` (e.g. ``KEYSTONE_CLEAR_LDAP=yes``) in ``localrc``. To enable the
657 # Keystone Identity Driver (``keystone.identity.backends.ldap.Identity``)
658 # set ``KEYSTONE_IDENTITY_BACKEND`` to ``ldap`` (e.g.
659 # ``KEYSTONE_IDENTITY_BACKEND=ldap``) in ``localrc``.
660
661 # only request ldap password if the service is enabled
662 if is_service_enabled ldap; then
663 read_password LDAP_PASSWORD "ENTER A PASSWORD TO USE FOR LDAP"
Chmouel Boudjnah6ae9ea52012-07-05 06:50:51 +0000664 fi
Dean Troyerb7490da2013-03-18 16:07:56 -0500665fi
666
667
668# Swift
669
670if is_service_enabled s-proxy; then
Chmouel Boudjnah77b0e1d2012-02-29 16:55:43 +0000671 # We only ask for Swift Hash if we have enabled swift service.
Dean Troyerb9182d62012-11-07 12:31:34 -0600672 # ``SWIFT_HASH`` is a random unique string for a swift cluster that
Chmouel Boudjnahb2857e42011-11-03 16:19:14 +0100673 # can never change.
674 read_password SWIFT_HASH "ENTER A RANDOM SWIFT HASH."
Jim Rollenhagenabbb0e92014-08-05 18:01:48 +0000675
676 if [[ -z "$SWIFT_TEMPURL_KEY" ]] && [[ "$SWIFT_ENABLE_TEMPURLS" == "True" ]]; then
677 read_password SWIFT_TEMPURL_KEY "ENTER A KEY FOR SWIFT TEMPURLS."
678 fi
Chmouel Boudjnahb2857e42011-11-03 16:19:14 +0100679fi
Vishvananda Ishaya5f039322011-11-05 16:12:20 -0700680
Dean Troyerdf0972c2012-03-07 17:31:03 -0600681
Jesse Andrews30f68e92011-09-13 00:59:54 -0700682# Install Packages
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700683# ================
Dean Troyer7d28a0e2012-06-27 17:55:52 -0500684
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500685# OpenStack uses a fair number of other projects.
Jesse Andrews30f68e92011-09-13 00:59:54 -0700686
Dean Troyer7d28a0e2012-06-27 17:55:52 -0500687# Install package requirements
Dean Troyer48352ee2012-12-12 12:50:38 -0600688# Source it so the entire environment is available
Dean Troyer7903b792012-09-13 17:16:12 -0500689echo_summary "Installing package prerequisites"
Dean Troyer48352ee2012-12-12 12:50:38 -0600690source $TOP_DIR/tools/install_prereqs.sh
Monty Taylor47f02062012-07-26 11:09:24 -0500691
Dean Troyer62d1d692013-08-01 17:40:40 -0500692# Configure an appropriate python environment
Arata Notsu8b5d3cf2013-10-17 21:42:49 +0900693if [[ "$OFFLINE" != "True" ]]; then
Franck Yelles683ff422014-06-19 02:14:42 -0700694 PYPI_ALTERNATIVE_URL=$PYPI_ALTERNATIVE_URL $TOP_DIR/tools/install_pip.sh
Arata Notsu8b5d3cf2013-10-17 21:42:49 +0900695fi
Dean Troyer1a6d4492013-06-03 16:47:36 -0500696
Gael Chamoulaudd3121f62014-07-24 23:53:02 +0200697# Do the ugly hacks for broken packages and distros
Dean Troyer04a35112014-08-15 14:03:52 -0500698source $TOP_DIR/tools/fixup_stuff.sh
Dean Troyer9acc12a2013-08-09 15:09:31 -0500699
Dean Troyer5c3a63e2014-07-09 11:27:42 -0500700
701# Extras Pre-install
702# ------------------
703
704# Phase: pre-install
705if [[ -d $TOP_DIR/extras.d ]]; then
706 for i in $TOP_DIR/extras.d/*.sh; do
707 [[ -r $i ]] && source $i stack pre-install
708 done
709fi
710
711
Dean Troyer62d1d692013-08-01 17:40:40 -0500712install_rpc_backend
713
714if is_service_enabled $DATABASE_BACKENDS; then
715 install_database
716fi
717
718if is_service_enabled neutron; then
719 install_neutron_agent_packages
720fi
721
Monty Taylor47f02062012-07-26 11:09:24 -0500722TRACK_DEPENDS=${TRACK_DEPENDS:-False}
723
724# Install python packages into a virtualenv so that we can track them
Dean Troyercc6b4432013-04-08 15:38:03 -0500725if [[ $TRACK_DEPENDS = True ]]; then
Dean Troyer7903b792012-09-13 17:16:12 -0500726 echo_summary "Installing Python packages into a virtualenv $DEST/.venv"
Sean Dague6c844632013-07-31 06:50:14 -0400727 pip_install -U virtualenv
Monty Taylor47f02062012-07-26 11:09:24 -0500728
729 rm -rf $DEST/.venv
730 virtualenv --system-site-packages $DEST/.venv
731 source $DEST/.venv/bin/activate
732 $DEST/.venv/bin/pip freeze > $DEST/requires-pre-pip
733fi
734
Dean Troyerfe51a902013-04-01 15:48:44 -0500735# Check Out and Install Source
736# ----------------------------
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500737
Dean Troyer7903b792012-09-13 17:16:12 -0500738echo_summary "Installing OpenStack project source"
739
Sean Dague0392a102013-07-31 13:07:45 -0400740# Install required infra support libraries
741install_infra
Monty Taylor5e159492013-05-08 14:29:52 -0400742
Sean Dague1b6b5312013-07-31 06:46:34 -0400743# Install oslo libraries that have graduated
744install_oslo
745
Sean Dague68322722013-10-21 18:11:40 -0400746# Install stackforge libraries for testing
Sean Daguef7cfa0c2013-10-25 13:26:17 -0400747if is_service_enabled stackforge_libs; then
748 install_stackforge
749fi
Sean Dague68322722013-10-21 18:11:40 -0400750
Dean Troyerfe51a902013-04-01 15:48:44 -0500751# Install clients libraries
Dean Troyerd81a0272012-08-31 18:04:55 -0500752install_keystoneclient
Dean Troyer73f6f252012-09-17 11:22:21 -0500753install_glanceclient
Dean Troyer253a1a32013-04-01 18:23:22 -0500754install_cinderclient
Dean Troyerbf67c192012-09-21 15:09:37 -0500755install_novaclient
Sean Dague75195b52013-07-25 15:38:09 -0400756if is_service_enabled swift glance horizon; then
Dean Troyerfe51a902013-04-01 15:48:44 -0500757 install_swiftclient
758fi
Sean Dague75195b52013-07-25 15:38:09 -0400759if is_service_enabled neutron nova horizon; then
Mark McClainb05c8762013-07-06 23:29:39 -0400760 install_neutronclient
Dean Troyerfe51a902013-04-01 15:48:44 -0500761fi
Sean Dague75195b52013-07-25 15:38:09 -0400762if is_service_enabled heat horizon; then
763 install_heatclient
764fi
Dean Troyerfe51a902013-04-01 15:48:44 -0500765
Morgan Fainberg58936fd2014-06-24 12:26:07 -0700766# Install middleware
767install_keystonemiddleware
768
Dean Troyer9f61d292012-11-26 18:56:20 +0000769git_clone $OPENSTACKCLIENT_REPO $OPENSTACKCLIENT_DIR $OPENSTACKCLIENT_BRANCH
Dean Troyer253a1a32013-04-01 18:23:22 -0500770setup_develop $OPENSTACKCLIENT_DIR
Dean Troyer9f61d292012-11-26 18:56:20 +0000771
Dean Troyerfe51a902013-04-01 15:48:44 -0500772if is_service_enabled key; then
Bartosz Górski0abde392014-02-28 14:15:19 +0100773 if [ "$KEYSTONE_AUTH_HOST" == "$SERVICE_HOST" ]; then
774 install_keystone
775 configure_keystone
776 fi
Jesse Andrews38df1222011-11-20 09:55:44 -0800777fi
Attila Fazekasece6a332012-11-29 14:19:41 +0100778
Chmouel Boudjnah0c3a5582013-03-06 10:58:33 +0100779if is_service_enabled s-proxy; then
Attila Fazekasece6a332012-11-29 14:19:41 +0100780 install_swift
Dean Troyerfe51a902013-04-01 15:48:44 -0500781 configure_swift
782
rahmu9d2647a2013-04-24 10:40:07 +0200783 # swift3 middleware to provide S3 emulation to Swift
Chmouel Boudjnah6ae9ea52012-07-05 06:50:51 +0000784 if is_service_enabled swift3; then
rahmu9d2647a2013-04-24 10:40:07 +0200785 # replace the nova-objectstore port by the swift port
786 S3_SERVICE_PORT=8080
Chmouel Boudjnah6ae9ea52012-07-05 06:50:51 +0000787 git_clone $SWIFT3_REPO $SWIFT3_DIR $SWIFT3_BRANCH
Dean Troyerfe51a902013-04-01 15:48:44 -0500788 setup_develop $SWIFT3_DIR
Chmouel Boudjnah6ae9ea52012-07-05 06:50:51 +0000789 fi
James E. Blaire7ce24f2011-11-10 13:05:13 -0800790fi
Attila Fazekasece6a332012-11-29 14:19:41 +0100791
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +0000792if is_service_enabled g-api n-api; then
James E. Blaire7ce24f2011-11-10 13:05:13 -0800793 # image catalog service
Dean Troyer73f6f252012-09-17 11:22:21 -0500794 install_glance
Dean Troyerfe51a902013-04-01 15:48:44 -0500795 configure_glance
James E. Blaire7ce24f2011-11-10 13:05:13 -0800796fi
Dean Troyerfe51a902013-04-01 15:48:44 -0500797
798if is_service_enabled cinder; then
799 install_cinder
800 configure_cinder
801fi
802
Mark McClainb05c8762013-07-06 23:29:39 -0400803if is_service_enabled neutron; then
804 install_neutron
805 install_neutron_third_party
Dean Troyerfe51a902013-04-01 15:48:44 -0500806fi
807
Dean Troyerbf67c192012-09-21 15:09:37 -0500808if is_service_enabled nova; then
809 # compute service
810 install_nova
Dean Troyerfe51a902013-04-01 15:48:44 -0500811 cleanup_nova
812 configure_nova
Dean Troyerbf67c192012-09-21 15:09:37 -0500813fi
Dean Troyerfe51a902013-04-01 15:48:44 -0500814
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +0000815if is_service_enabled horizon; then
Zhenguo Niue385d1e2014-03-12 16:58:12 +0800816 # django openstack_auth
817 install_django_openstack_auth
Sean Dagueb562e6a2012-11-19 16:00:01 -0500818 # dashboard
819 install_horizon
Dean Troyerfe51a902013-04-01 15:48:44 -0500820 configure_horizon
James E. Blaire7ce24f2011-11-10 13:05:13 -0800821fi
Dean Troyerfe51a902013-04-01 15:48:44 -0500822
John H. Tran93361642012-07-26 11:22:05 -0700823if is_service_enabled ceilometer; then
Yunhong, Jiange583d9b2013-01-09 09:33:07 +0800824 install_ceilometerclient
John H. Tran93361642012-07-26 11:22:05 -0700825 install_ceilometer
Attila Fazekas12bb53b2013-07-25 23:02:48 +0200826 echo_summary "Configuring Ceilometer"
827 configure_ceilometer
John H. Tran93361642012-07-26 11:22:05 -0700828fi
Dean Troyer4a43b7b2012-08-28 17:43:40 -0500829
Steve Bakerbfdad752012-08-18 09:00:42 +1200830if is_service_enabled heat; then
Sean Dagued644e232013-07-25 15:34:48 -0400831 install_heat
Steve Baker315971d2014-05-27 12:24:18 +1200832 install_heat_other
Steve Bakerc3249082013-04-09 13:41:47 +1200833 cleanup_heat
Steve Bakerbfdad752012-08-18 09:00:42 +1200834 configure_heat
835fi
Dean Troyerb7490da2013-03-18 16:07:56 -0500836
Rob Crittenden18d47782014-03-19 17:47:42 -0400837if is_service_enabled tls-proxy || [ "$USE_SSL" == "True" ]; then
Dean Troyerfe51a902013-04-01 15:48:44 -0500838 configure_CA
839 init_CA
840 init_cert
841 # Add name to /etc/hosts
842 # don't be naive and add to existing line!
Dean Troyer67787e62012-05-02 11:48:15 -0500843fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700844
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300845
Dean Troyercdf3d762013-10-15 09:42:43 -0500846# Extras Install
847# --------------
848
849# Phase: install
850if [[ -d $TOP_DIR/extras.d ]]; then
851 for i in $TOP_DIR/extras.d/*.sh; do
852 [[ -r $i ]] && source $i stack install
853 done
854fi
855
Dean Troyercc6b4432013-04-08 15:38:03 -0500856if [[ $TRACK_DEPENDS = True ]]; then
Monty Taylor47f02062012-07-26 11:09:24 -0500857 $DEST/.venv/bin/pip freeze > $DEST/requires-post-pip
Dean Troyercc6b4432013-04-08 15:38:03 -0500858 if ! diff -Nru $DEST/requires-pre-pip $DEST/requires-post-pip > $DEST/requires.diff; then
DennyZhange8fa8532013-11-03 12:22:04 -0600859 echo "Detect some changes for installed packages of pip, in depend tracking mode"
Monty Taylor47f02062012-07-26 11:09:24 -0500860 cat $DEST/requires.diff
861 fi
862 echo "Ran stack.sh in depend tracking mode, bailing out now"
863 exit 0
864fi
Dean Troyerdf0972c2012-03-07 17:31:03 -0600865
Dean Troyerb7490da2013-03-18 16:07:56 -0500866
Dean Troyerff603ef2011-11-22 17:48:10 -0600867# Syslog
Dean Troyerdf0972c2012-03-07 17:31:03 -0600868# ------
Dean Troyerff603ef2011-11-22 17:48:10 -0600869
870if [[ $SYSLOG != "False" ]]; then
Dean Troyerff603ef2011-11-22 17:48:10 -0600871 if [[ "$SYSLOG_HOST" = "$HOST_IP" ]]; then
872 # Configure the master host to receive
873 cat <<EOF >/tmp/90-stack-m.conf
874\$ModLoad imrelp
875\$InputRELPServerRun $SYSLOG_PORT
876EOF
877 sudo mv /tmp/90-stack-m.conf /etc/rsyslog.d
878 else
879 # Set rsyslog to send to remote host
880 cat <<EOF >/tmp/90-stack-s.conf
881*.* :omrelp:$SYSLOG_HOST:$SYSLOG_PORT
882EOF
883 sudo mv /tmp/90-stack-s.conf /etc/rsyslog.d
884 fi
cloudnulle4859f02013-05-28 14:10:58 -0500885
886 RSYSLOGCONF="/etc/rsyslog.conf"
887 if [ -f $RSYSLOGCONF ]; then
888 sudo cp -b $RSYSLOGCONF $RSYSLOGCONF.bak
889 if [[ $(grep '$SystemLogRateLimitBurst' $RSYSLOGCONF) ]]; then
890 sudo sed -i 's/$SystemLogRateLimitBurst\ .*/$SystemLogRateLimitBurst\ 0/' $RSYSLOGCONF
891 else
892 sudo sed -i '$ i $SystemLogRateLimitBurst\ 0' $RSYSLOGCONF
893 fi
894 if [[ $(grep '$SystemLogRateLimitInterval' $RSYSLOGCONF) ]]; then
895 sudo sed -i 's/$SystemLogRateLimitInterval\ .*/$SystemLogRateLimitInterval\ 0/' $RSYSLOGCONF
896 else
897 sudo sed -i '$ i $SystemLogRateLimitInterval\ 0' $RSYSLOGCONF
898 fi
899 fi
900
Dean Troyer7903b792012-09-13 17:16:12 -0500901 echo_summary "Starting rsyslog"
Dean Troyer13dc5cc2012-03-27 14:50:45 -0500902 restart_service rsyslog
Dean Troyerff603ef2011-11-22 17:48:10 -0600903fi
904
Dean Troyerdf0972c2012-03-07 17:31:03 -0600905
Joe Gordone5d92382012-09-13 17:19:03 -0700906# Finalize queue installation
907# ----------------------------
Akihiro MOTOKIb0f1c382013-01-13 17:58:12 +0900908restart_rpc_backend
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700909
Dean Troyerdf0972c2012-03-07 17:31:03 -0600910
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +1000911# Export Certicate Authority Bundle
912# ---------------------------------
913
914# If certificates were used and written to the SSL bundle file then these
915# should be exported so clients can validate their connections.
916
917if [ -f $SSL_BUNDLE_FILE ]; then
918 export OS_CACERT=$SSL_BUNDLE_FILE
919fi
920
921
Terry Wilson428af5a2012-11-01 16:12:39 -0400922# Configure database
923# ------------------
Dean Troyerb9182d62012-11-07 12:31:34 -0600924
Terry Wilson428af5a2012-11-01 16:12:39 -0400925if is_service_enabled $DATABASE_BACKENDS; then
926 configure_database
Jesse Andrews24859062011-09-15 21:28:23 -0700927fi
928
Dean Troyerb9182d62012-11-07 12:31:34 -0600929
930# Configure screen
931# ----------------
932
Dean Troyer681f3fd2013-02-27 19:00:39 -0600933USE_SCREEN=$(trueorfalse True $USE_SCREEN)
934if [[ "$USE_SCREEN" == "True" ]]; then
935 # Create a new named screen to run processes in
936 screen -d -m -S $SCREEN_NAME -t shell -s /bin/bash
937 sleep 1
938
939 # Set a reasonable status bar
940 if [ -z "$SCREEN_HARDSTATUS" ]; then
941 SCREEN_HARDSTATUS='%{= .} %-Lw%{= .}%> %n%f %t*%{= .}%+Lw%< %-=%{g}(%{d}%H/%l%{g})'
942 fi
943 screen -r $SCREEN_NAME -X hardstatus alwayslastline "$SCREEN_HARDSTATUS"
Steven Dake30396572013-06-30 16:11:54 -0700944 screen -r $SCREEN_NAME -X setenv PROMPT_COMMAND /bin/true
Josh Kearney0a7a41e2012-04-04 17:47:56 -0500945fi
946
Jiajun Liu61bb2c12012-10-19 09:48:30 +0800947# Clear screen rc file
948SCREENRC=$TOP_DIR/$SCREEN_NAME-screenrc
949if [[ -e $SCREENRC ]]; then
Jiajun Liu8e58c072013-07-17 06:41:50 +0000950 rm -f $SCREENRC
Jiajun Liu61bb2c12012-10-19 09:48:30 +0800951fi
Dean Troyerb9182d62012-11-07 12:31:34 -0600952
jiajun xua9414242012-12-06 16:30:57 +0800953# Initialize the directory for service status check
954init_service_check
Dean Troyer7d28a0e2012-06-27 17:55:52 -0500955
Sean Dague78096b52014-02-25 10:23:04 -0500956# Dstat
Dean Troyer1a6d4492013-06-03 16:47:36 -0500957# -------
958
Sean Daguef1eb0472014-02-11 17:28:56 -0500959# A better kind of sysstat, with the top process per time slice
Joe Gordone0b08d02014-08-20 00:34:55 -0700960start_dstat
Sean Dague062cdaf2014-02-10 22:24:49 -0500961
Dean Troyer893e6632013-09-13 15:05:51 -0500962# Start Services
963# ==============
964
Dean Troyerd81a0272012-08-31 18:04:55 -0500965# Keystone
966# --------
967
968if is_service_enabled key; then
Dean Troyer7903b792012-09-13 17:16:12 -0500969 echo_summary "Starting Keystone"
Bartosz Górski0abde392014-02-28 14:15:19 +0100970
971 if [ "$KEYSTONE_AUTH_HOST" == "$SERVICE_HOST" ]; then
972 init_keystone
973 start_keystone
974 fi
Dean Troyerd81a0272012-08-31 18:04:55 -0500975
Dean Troyerd835de82012-11-29 17:11:35 -0600976 # Set up a temporary admin URI for Keystone
Jamie Lennox3561d7f2014-05-21 17:18:43 +1000977 SERVICE_ENDPOINT=$KEYSTONE_AUTH_URI/v2.0
Dean Troyerc83a7e12012-11-29 11:47:58 -0600978
979 if is_service_enabled tls-proxy; then
980 export OS_CACERT=$INT_CA_DIR/ca-chain.pem
981 # Until the client support is fixed, just use the internal endpoint
982 SERVICE_ENDPOINT=http://$KEYSTONE_AUTH_HOST:$KEYSTONE_AUTH_PORT_INT/v2.0
983 fi
Dean Troyerd81a0272012-08-31 18:04:55 -0500984
Dean Troyer42a59c22014-03-03 14:31:29 -0600985 # Setup OpenStackclient token-flow auth
Steve Martinelli19685422014-01-24 13:02:26 -0600986 export OS_TOKEN=$SERVICE_TOKEN
987 export OS_URL=$SERVICE_ENDPOINT
Dean Troyer42a59c22014-03-03 14:31:29 -0600988
Dean Troyerd835de82012-11-29 17:11:35 -0600989 create_keystone_accounts
Dean Troyera0dce262012-12-11 16:52:37 -0600990 create_nova_accounts
Dean Troyer42a59c22014-03-03 14:31:29 -0600991 create_glance_accounts
Dean Troyer671c16e2012-12-13 16:22:38 -0600992 create_cinder_accounts
Mark McClainb05c8762013-07-06 23:29:39 -0400993 create_neutron_accounts
Dean Troyerd835de82012-11-29 17:11:35 -0600994
Dirk Muellerfa5ccff2014-01-09 13:27:35 +0100995 if is_service_enabled ceilometer; then
996 create_ceilometer_accounts
997 fi
998
Dean Troyer42a59c22014-03-03 14:31:29 -0600999 if is_service_enabled swift; then
Ian Wienand0ff314c2013-07-17 16:30:19 +10001000 create_swift_accounts
1001 fi
1002
Steve Bakere389aed2014-09-23 17:10:39 +12001003 if is_service_enabled heat && [[ "$HEAT_STANDALONE" != "True" ]]; then
Steven Hardy33d1f862014-02-13 15:00:33 +00001004 create_heat_accounts
1005 fi
1006
Dean Troyer42a59c22014-03-03 14:31:29 -06001007 # Begone token-flow auth
Steve Martinelli19685422014-01-24 13:02:26 -06001008 unset OS_TOKEN OS_URL
Dean Troyer42a59c22014-03-03 14:31:29 -06001009
1010 # Set up password-flow auth creds now that keystone is bootstrapped
Dean Troyerd81a0272012-08-31 18:04:55 -05001011 export OS_AUTH_URL=$SERVICE_ENDPOINT
1012 export OS_TENANT_NAME=admin
1013 export OS_USERNAME=admin
1014 export OS_PASSWORD=$ADMIN_PASSWORD
Bartosz Górski0abde392014-02-28 14:15:19 +01001015 export OS_REGION_NAME=$REGION_NAME
Dean Troyerd81a0272012-08-31 18:04:55 -05001016fi
1017
1018
Tres Henryca85b792011-10-28 14:00:21 -07001019# Horizon
Dean Troyerdf0972c2012-03-07 17:31:03 -06001020# -------
Jesse Andrewscbe98d52011-10-02 17:47:32 -04001021
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001022# Set up the django horizon application to serve via apache/wsgi
Jesse Andrews75a37652011-09-12 17:09:08 -07001023
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +00001024if is_service_enabled horizon; then
Dean Troyer7903b792012-09-13 17:16:12 -05001025 echo_summary "Configuring and starting Horizon"
Sean Dagueb562e6a2012-11-19 16:00:01 -05001026 init_horizon
1027 start_horizon
Anthony Young70dc5e02011-09-15 16:52:43 -07001028fi
Jesse Andrews75a37652011-09-12 17:09:08 -07001029
Anthony Young3859f732011-09-14 02:33:43 -07001030
Jesse Andrewsd74257d2011-09-13 01:24:50 -07001031# Glance
1032# ------
1033
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +00001034if is_service_enabled g-reg; then
Dean Troyer7903b792012-09-13 17:16:12 -05001035 echo_summary "Configuring Glance"
Dean Troyer73f6f252012-09-17 11:22:21 -05001036 init_glance
Anthony Young70dc5e02011-09-15 16:52:43 -07001037fi
Jesse Andrews75a37652011-09-12 17:09:08 -07001038
Dean Troyer8c032d12013-09-23 13:53:13 -05001039
Mark McClainb05c8762013-07-06 23:29:39 -04001040# Neutron
Anthony Young60df29a2012-03-28 09:40:17 -07001041# -------
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001042
Mark McClainb05c8762013-07-06 23:29:39 -04001043if is_service_enabled neutron; then
1044 echo_summary "Configuring Neutron"
Dean Troyerb9182d62012-11-07 12:31:34 -06001045
Mark McClainb05c8762013-07-06 23:29:39 -04001046 configure_neutron
Salvatore Orlandodd649882013-08-05 08:56:17 -07001047 # Run init_neutron only on the node hosting the neutron API server
1048 if is_service_enabled $DATABASE_BACKENDS && is_service_enabled q-svc; then
1049 init_neutron
1050 fi
Dan Wendlandt0007f3a2012-05-18 13:37:47 -07001051fi
1052
Mark McClainb05c8762013-07-06 23:29:39 -04001053# Some Neutron plugins require network controllers which are not
Akihiro MOTOKI66afb472012-12-21 15:34:13 +09001054# a part of the OpenStack project. Configure and start them.
Mark McClainb05c8762013-07-06 23:29:39 -04001055if is_service_enabled neutron; then
1056 configure_neutron_third_party
1057 init_neutron_third_party
1058 start_neutron_third_party
Gary Kotton396a0142012-07-29 04:28:47 -04001059fi
1060
Dean Troyerb9182d62012-11-07 12:31:34 -06001061
Jesse Andrewsd74257d2011-09-13 01:24:50 -07001062# Nova
1063# ----
Dean Troyerbd13b702012-02-13 11:22:36 -06001064
Isaku Yamahata6f85ab32012-08-06 16:56:10 +09001065if is_service_enabled n-net q-dhcp; then
Anthony Young55458452011-12-17 00:21:49 +00001066 # Delete traces of nova networks from prior runs
Davanum Srinivasd71d6e72013-01-28 19:15:57 -05001067 # Do not kill any dnsmasq instance spawned by NetworkManager
1068 netman_pid=$(pidof NetworkManager || true)
1069 if [ -z "$netman_pid" ]; then
1070 sudo killall dnsmasq || true
1071 else
1072 sudo ps h -o pid,ppid -C dnsmasq | grep -v $netman_pid | awk '{print $1}' | sudo xargs kill || true
1073 fi
1074
Anthony Young55458452011-12-17 00:21:49 +00001075 clean_iptables
Christian Berendt7a7fb492014-04-07 13:31:07 +00001076
1077 if is_service_enabled n-net; then
1078 rm -rf ${NOVA_STATE_PATH}/networks
1079 sudo mkdir -p ${NOVA_STATE_PATH}/networks
Chris Denta0ced4d2014-05-27 22:08:46 +01001080 safe_chown -R ${STACK_USER} ${NOVA_STATE_PATH}/networks
Christian Berendt7a7fb492014-04-07 13:31:07 +00001081 fi
1082
Dean Troyer1a6d4492013-06-03 16:47:36 -05001083 # Force IP forwarding on, just in case
Dean Troyer0b31e862012-03-07 16:47:56 -06001084 sudo sysctl -w net.ipv4.ip_forward=1
Anthony Young70dc5e02011-09-15 16:52:43 -07001085fi
Jesse Andrews75a37652011-09-12 17:09:08 -07001086
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001087
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +01001088# Storage Service
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001089# ---------------
1090
Chmouel Boudjnah0c3a5582013-03-06 10:58:33 +01001091if is_service_enabled s-proxy; then
Dean Troyer7903b792012-09-13 17:16:12 -05001092 echo_summary "Configuring Swift"
Attila Fazekasece6a332012-11-29 14:19:41 +01001093 init_swift
Chmouel Boudjnah28fa4e82011-11-01 12:30:55 +01001094fi
1095
Dean Troyerdf0972c2012-03-07 17:31:03 -06001096
Anthony Youngacff87a2011-10-20 10:12:58 -07001097# Volume Service
1098# --------------
1099
Dean Troyer67787e62012-05-02 11:48:15 -05001100if is_service_enabled cinder; then
Dean Troyer7903b792012-09-13 17:16:12 -05001101 echo_summary "Configuring Cinder"
Dean Troyer67787e62012-05-02 11:48:15 -05001102 init_cinder
Anthony Youngacff87a2011-10-20 10:12:58 -07001103fi
1104
Dean Troyer2aa2a892013-08-04 19:53:19 -05001105
1106# Compute Service
1107# ---------------
1108
Dean Troyerbf67c192012-09-21 15:09:37 -05001109if is_service_enabled nova; then
1110 echo_summary "Configuring Nova"
1111 init_nova
Jesse Andrewsd1879c52011-09-16 16:28:13 -07001112
Dean Troyer86a79692012-10-22 15:24:46 -05001113 # Additional Nova configuration that is dependent on other services
Mark McClainb05c8762013-07-06 23:29:39 -04001114 if is_service_enabled neutron; then
1115 create_nova_conf_neutron
Dean Troyer86a79692012-10-22 15:24:46 -05001116 elif is_service_enabled n-net; then
Akihiro MOTOKI66afb472012-12-21 15:34:13 +09001117 create_nova_conf_nova_network
Brad Hall1bfa3d52011-10-27 18:18:20 -07001118 fi
Dean Troyerdf0972c2012-03-07 17:31:03 -06001119
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001120 init_nova_cells
Anthony Youngb62b4ca2011-10-26 22:29:08 -07001121fi
1122
Devananda van der Veenf35cf912012-11-12 17:58:38 -08001123# Extra things to prepare nova for baremetal, before nova starts
1124if is_service_enabled nova && is_baremetal; then
1125 echo_summary "Preparing for nova baremetal"
1126 prepare_baremetal_toolchain
1127 configure_baremetal_nova_dirs
1128fi
Dean Troyerdf0972c2012-03-07 17:31:03 -06001129
Dean Troyerb7490da2013-03-18 16:07:56 -05001130
Dean Troyercdf3d762013-10-15 09:42:43 -05001131# Extras Configuration
1132# ====================
1133
1134# Phase: post-config
1135if [[ -d $TOP_DIR/extras.d ]]; then
1136 for i in $TOP_DIR/extras.d/*.sh; do
1137 [[ -r $i ]] && source $i stack post-config
1138 done
1139fi
1140
1141
Dean Troyer893e6632013-09-13 15:05:51 -05001142# Local Configuration
1143# ===================
1144
1145# Apply configuration from local.conf if it exists for layer 2 services
1146# Phase: post-config
1147merge_config_group $TOP_DIR/local.conf post-config
1148
1149
Jesse Andrewsd74257d2011-09-13 01:24:50 -07001150# Launch Services
1151# ===============
Jesse Andrews30f68e92011-09-13 00:59:54 -07001152
Jesse Andrewsdfcd2002011-09-13 13:17:22 -07001153# Only run the services specified in ``ENABLED_SERVICES``
1154
Attila Fazekasece6a332012-11-29 14:19:41 +01001155# Launch Swift Services
Chmouel Boudjnah0c3a5582013-03-06 10:58:33 +01001156if is_service_enabled s-proxy; then
Attila Fazekasece6a332012-11-29 14:19:41 +01001157 echo_summary "Starting Swift"
1158 start_swift
1159fi
1160
Dean Troyer73f6f252012-09-17 11:22:21 -05001161# Launch the Glance services
Dean Troyere4fa7212014-01-15 15:04:49 -06001162if is_service_enabled glance; then
Dean Troyer7903b792012-09-13 17:16:12 -05001163 echo_summary "Starting Glance"
Dean Troyer73f6f252012-09-17 11:22:21 -05001164 start_glance
Anthony Youngd000b222011-09-19 14:46:53 -07001165fi
1166
Eric Windisch0b9776d2014-01-28 11:20:53 -05001167# Install Images
1168# ==============
1169
1170# Upload an image to glance.
1171#
1172# The default image is cirros, a small testing image which lets you login as **root**
1173# cirros has a ``cloud-init`` analog supporting login via keypair and sending
1174# scripts as userdata.
1175# See https://help.ubuntu.com/community/CloudInit for more on cloud-init
1176#
1177# Override ``IMAGE_URLS`` with a comma-separated list of UEC images.
1178# * **precise**: http://uec-images.ubuntu.com/precise/current/precise-server-cloudimg-amd64.tar.gz
1179
1180if is_service_enabled g-reg; then
1181 TOKEN=$(keystone token-get | grep ' id ' | get_field 2)
1182 die_if_not_set $LINENO TOKEN "Keystone fail to get token"
1183
1184 if is_baremetal; then
1185 echo_summary "Creating and uploading baremetal images"
1186
1187 # build and upload separate deploy kernel & ramdisk
1188 upload_baremetal_deploy $TOKEN
1189
1190 # upload images, separating out the kernel & ramdisk for PXE boot
1191 for image_url in ${IMAGE_URLS//,/ }; do
1192 upload_baremetal_image $image_url $TOKEN
1193 done
1194 else
1195 echo_summary "Uploading images"
1196
1197 # Option to upload legacy ami-tty, which works with xenserver
1198 if [[ -n "$UPLOAD_LEGACY_TTY" ]]; then
1199 IMAGE_URLS="${IMAGE_URLS:+${IMAGE_URLS},}https://github.com/downloads/citrix-openstack/warehouse/tty.tgz"
1200 fi
1201
1202 for image_url in ${IMAGE_URLS//,/ }; do
1203 upload_image $image_url $TOKEN
1204 done
1205 fi
1206fi
1207
Dean Troyerd81a0272012-08-31 18:04:55 -05001208# Create an access key and secret key for nova ec2 register image
1209if is_service_enabled key && is_service_enabled swift3 && is_service_enabled nova; then
Steve Martinellidf6793a2014-03-13 23:38:11 -05001210 eval $(openstack ec2 credentials create --user nova --project $SERVICE_TENANT_NAME -f shell -c access -c secret)
1211 iniset $NOVA_CONF DEFAULT s3_access_key "$access"
1212 iniset $NOVA_CONF DEFAULT s3_secret_key "$secret"
Devananda van der Veen9bc47db2012-12-12 16:52:55 -08001213 iniset $NOVA_CONF DEFAULT s3_affix_tenant "True"
Anthony Youngd000b222011-09-19 14:46:53 -07001214fi
1215
Kaitlin Farrdef4c142014-01-06 08:52:49 -05001216# Create a randomized default value for the keymgr's fixed_key
1217if is_service_enabled nova; then
Attila Fazekasf71b5002014-05-28 09:52:22 +02001218 iniset $NOVA_CONF keymgr fixed_key $(generate_hex_string 32)
Kaitlin Farrdef4c142014-01-06 08:52:49 -05001219fi
1220
Monty Taylore5428832013-03-27 23:40:59 +01001221if is_service_enabled zeromq; then
1222 echo_summary "Starting zermomq receiver"
Chris Dent2f27a0e2014-09-09 13:46:02 +01001223 run_process zeromq "$OSLO_BIN_DIR/oslo-messaging-zmq-receiver"
Monty Taylore5428832013-03-27 23:40:59 +01001224fi
ewindisch3bae7c22012-01-18 11:18:35 -05001225
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001226# Launch the nova-api and wait for it to answer before continuing
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +00001227if is_service_enabled n-api; then
Dean Troyer7903b792012-09-13 17:16:12 -05001228 echo_summary "Starting Nova API"
Dean Troyer3a3a2ba2012-12-11 15:26:24 -06001229 start_nova_api
Anthony Youngd000b222011-09-19 14:46:53 -07001230fi
Brad Hall1bfa3d52011-10-27 18:18:20 -07001231
Gary Kotton37dda8d2012-08-08 03:46:33 -04001232if is_service_enabled q-svc; then
Mark McClainb05c8762013-07-06 23:29:39 -04001233 echo_summary "Starting Neutron"
Mark McClainb05c8762013-07-06 23:29:39 -04001234 start_neutron_service_and_check
armando-migliaccioef1e0802014-01-02 16:33:53 -08001235 check_neutron_third_party_integration
Aaron Rosen8ec719b2012-10-30 12:57:47 -07001236elif is_service_enabled $DATABASE_BACKENDS && is_service_enabled n-net; then
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001237 NM_CONF=${NOVA_CONF}
1238 if is_service_enabled n-cell; then
1239 NM_CONF=${NOVA_CELLS_CONF}
1240 fi
1241
Gary Kotton37dda8d2012-08-08 03:46:33 -04001242 # Create a small network
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001243 $NOVA_BIN_DIR/nova-manage --config-file $NM_CONF network create "$PRIVATE_NETWORK_NAME" $FIXED_RANGE 1 $FIXED_NETWORK_SIZE $NETWORK_CREATE_ARGS
Dean Troyer696ad332012-01-10 15:34:34 -06001244
Gary Kotton37dda8d2012-08-08 03:46:33 -04001245 # Create some floating ips
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001246 $NOVA_BIN_DIR/nova-manage --config-file $NM_CONF floating create $FLOATING_RANGE --pool=$PUBLIC_NETWORK_NAME
Aaron Rosen9313dfa2012-07-06 16:08:49 -04001247
Gary Kotton37dda8d2012-08-08 03:46:33 -04001248 # Create a second pool
Kieran Spearfb2a3ae2013-03-11 23:55:49 +00001249 $NOVA_BIN_DIR/nova-manage --config-file $NM_CONF floating create --ip_range=$TEST_FLOATING_RANGE --pool=$TEST_FLOATING_POOL
Brad Hall1bfa3d52011-10-27 18:18:20 -07001250fi
1251
Mark McClainb05c8762013-07-06 23:29:39 -04001252if is_service_enabled neutron; then
1253 start_neutron_agents
Akihiro MOTOKI66afb472012-12-21 15:34:13 +09001254fi
Salvatore Orlando6fbb28d2013-12-22 07:59:37 -08001255# Once neutron agents are started setup initial network elements
1256if is_service_enabled q-svc; then
1257 echo_summary "Creating initial neutron network elements"
1258 create_neutron_initial_network
1259 setup_neutron_debug
1260fi
Dean Troyerbf67c192012-09-21 15:09:37 -05001261if is_service_enabled nova; then
1262 echo_summary "Starting Nova"
1263 start_nova
1264fi
Dean Troyer67787e62012-05-02 11:48:15 -05001265if is_service_enabled cinder; then
Dean Troyer7903b792012-09-13 17:16:12 -05001266 echo_summary "Starting Cinder"
Dean Troyer67787e62012-05-02 11:48:15 -05001267 start_cinder
Dean Troyer09718332014-07-03 10:46:57 -05001268 create_volume_types
Dean Troyer67787e62012-05-02 11:48:15 -05001269fi
John H. Tran93361642012-07-26 11:22:05 -07001270if is_service_enabled ceilometer; then
Doug Hellmannc5259b42012-09-22 10:52:31 -04001271 echo_summary "Starting Ceilometer"
Lianhao Lu8c548492013-01-09 10:41:54 +08001272 init_ceilometer
John H. Tran93361642012-07-26 11:22:05 -07001273 start_ceilometer
1274fi
Sean Dagueb562e6a2012-11-19 16:00:01 -05001275
Steve Bakerbad9d892012-10-25 14:49:47 +13001276# Configure and launch heat engine, api and metadata
Steve Bakerbfdad752012-08-18 09:00:42 +12001277if is_service_enabled heat; then
Steven Hardy1bcd2802014-02-13 15:14:41 +00001278 # Initialize heat
Steve Bakerbad9d892012-10-25 14:49:47 +13001279 echo_summary "Configuring Heat"
1280 init_heat
Dean Troyer7903b792012-09-13 17:16:12 -05001281 echo_summary "Starting Heat"
Steve Bakerbfdad752012-08-18 09:00:42 +12001282 start_heat
Steve Baker2a6009c2014-05-05 16:13:39 +12001283 if [ "$HEAT_CREATE_TEST_IMAGE" = "True" ]; then
1284 echo_summary "Building Heat functional test image"
1285 build_heat_functional_test_image
1286 fi
Steve Bakerbfdad752012-08-18 09:00:42 +12001287fi
Dean Troyer7d28a0e2012-06-27 17:55:52 -05001288
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +10001289
Attila Fazekas22ef5732012-12-16 14:03:06 +01001290# Create account rc files
1291# =======================
1292
1293# Creates source able script files for easier user switching.
1294# This step also creates certificates for tenants and users,
1295# which is helpful in image bundle steps.
1296
1297if is_service_enabled nova && is_service_enabled key; then
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +10001298 USERRC_PARAMS="-PA --target-dir $TOP_DIR/accrc"
1299
1300 if [ -f $SSL_BUNDLE_FILE ]; then
1301 USERRC_PARAMS="$USERRC_PARAMS --os-cacert $SSL_BUNDLE_FILE"
1302 fi
1303
Steve Bakere389aed2014-09-23 17:10:39 +12001304 if [[ "$HEAT_STANDALONE" = "True" ]]; then
1305 USERRC_PARAMS="$USERRC_PARAMS --heat-url http://$HEAT_API_HOST:$HEAT_API_PORT/v1"
1306 fi
1307
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +10001308 $TOP_DIR/tools/create_userrc.sh $USERRC_PARAMS
Attila Fazekas22ef5732012-12-16 14:03:06 +01001309fi
1310
Dean Troyer4a43b7b2012-08-28 17:43:40 -05001311
Devananda van der Veenf35cf912012-11-12 17:58:38 -08001312# If we are running nova with baremetal driver, there are a few
1313# last-mile configuration bits to attend to, which must happen
1314# after n-api and n-sch have started.
1315# Also, creating the baremetal flavor must happen after images
1316# are loaded into glance, though just knowing the IDs is sufficient here
1317if is_service_enabled nova && is_baremetal; then
1318 # create special flavor for baremetal if we know what images to associate
1319 [[ -n "$BM_DEPLOY_KERNEL_ID" ]] && [[ -n "$BM_DEPLOY_RAMDISK_ID" ]] && \
Sean Dagueb83c3652013-10-22 10:08:04 -04001320 create_baremetal_flavor $BM_DEPLOY_KERNEL_ID $BM_DEPLOY_RAMDISK_ID
Devananda van der Veenf35cf912012-11-12 17:58:38 -08001321
1322 # otherwise user can manually add it later by calling nova-baremetal-manage
Devananda van der Veenf35cf912012-11-12 17:58:38 -08001323 [[ -n "$BM_FIRST_MAC" ]] && add_baremetal_node
1324
Arata Notsubbf06452013-07-26 20:26:07 +09001325 if [[ "$BM_DNSMASQ_FROM_NOVA_NETWORK" = "False" ]]; then
1326 # NOTE: we do this here to ensure that our copy of dnsmasq is running
1327 sudo pkill dnsmasq || true
1328 sudo dnsmasq --conf-file= --port=0 --enable-tftp --tftp-root=/tftpboot \
1329 --dhcp-boot=pxelinux.0 --bind-interfaces --pid-file=/var/run/dnsmasq.pid \
1330 --interface=$BM_DNSMASQ_IFACE --dhcp-range=$BM_DNSMASQ_RANGE \
1331 ${BM_DNSMASQ_DNS:+--dhcp-option=option:dns-server,$BM_DNSMASQ_DNS}
1332 fi
Devananda van der Veenf35cf912012-11-12 17:58:38 -08001333 # ensure callback daemon is running
1334 sudo pkill nova-baremetal-deploy-helper || true
Chris Dent2f27a0e2014-09-09 13:46:02 +01001335 run_process baremetal "nova-baremetal-deploy-helper"
Devananda van der Veenf35cf912012-11-12 17:58:38 -08001336fi
Dean Troyerdf0972c2012-03-07 17:31:03 -06001337
Dean Troyer33cb4302012-12-10 16:47:36 -06001338# Save some values we generated for later use
1339CURRENT_RUN_TIME=$(date "+$TIMESTAMP_FORMAT")
1340echo "# $CURRENT_RUN_TIME" >$TOP_DIR/.stackenv
1341for i in BASE_SQL_CONN ENABLED_SERVICES HOST_IP LOGFILE \
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +10001342 SERVICE_HOST SERVICE_PROTOCOL STACK_USER TLS_IP KEYSTONE_AUTH_PROTOCOL OS_CACERT; do
Dean Troyer33cb4302012-12-10 16:47:36 -06001343 echo $i=${!i} >>$TOP_DIR/.stackenv
1344done
1345
Maru Newbyec086512012-11-01 23:44:57 +00001346
Dean Troyer893e6632013-09-13 15:05:51 -05001347# Local Configuration
1348# ===================
1349
1350# Apply configuration from local.conf if it exists for layer 2 services
1351# Phase: extra
1352merge_config_group $TOP_DIR/local.conf extra
1353
1354
Dean Troyer768295e2013-01-09 13:42:03 -06001355# Run extras
1356# ==========
1357
Dean Troyercdf3d762013-10-15 09:42:43 -05001358# Phase: extra
Dean Troyer768295e2013-01-09 13:42:03 -06001359if [[ -d $TOP_DIR/extras.d ]]; then
1360 for i in $TOP_DIR/extras.d/*.sh; do
Dean Troyercdf3d762013-10-15 09:42:43 -05001361 [[ -r $i ]] && source $i stack extra
Dean Troyer768295e2013-01-09 13:42:03 -06001362 done
1363fi
1364
Ryan Hsufeb28832013-11-07 12:12:35 -08001365# Local Configuration
1366# ===================
1367
1368# Apply configuration from local.conf if it exists for layer 2 services
1369# Phase: post-extra
1370merge_config_group $TOP_DIR/local.conf post-extra
1371
Dean Troyer768295e2013-01-09 13:42:03 -06001372
Dean Troyerf5633dd2012-03-28 11:21:40 -05001373# Run local script
1374# ================
1375
1376# Run ``local.sh`` if it exists to perform user-managed tasks
1377if [[ -x $TOP_DIR/local.sh ]]; then
1378 echo "Running user script $TOP_DIR/local.sh"
1379 $TOP_DIR/local.sh
1380fi
1381
jiajun xua9414242012-12-06 16:30:57 +08001382# Check the status of running services
1383service_check
Dean Troyerf5633dd2012-03-28 11:21:40 -05001384
Dean Troyerb7490da2013-03-18 16:07:56 -05001385
Scott Moserb94f4bf2011-10-07 14:51:07 +00001386# Fin
1387# ===
1388
Dean Troyer471de7a2011-12-27 11:45:55 -06001389set +o xtrace
Scott Moserb94f4bf2011-10-07 14:51:07 +00001390
Dean Troyer7903b792012-09-13 17:16:12 -05001391if [[ -n "$LOGFILE" ]]; then
1392 exec 1>&3
1393 # Force all output to stdout and logs now
Dean Troyerbaa8b422012-09-24 15:02:05 -05001394 exec 1> >( tee -a "${LOGFILE}" ) 2>&1
Dean Troyer7903b792012-09-13 17:16:12 -05001395else
1396 # Force all output to stdout now
1397 exec 1>&3
1398fi
1399
Dean Troyerdf0972c2012-03-07 17:31:03 -06001400
Jesse Andrews24859062011-09-15 21:28:23 -07001401# Using the cloud
Dean Troyer4a43b7b2012-08-28 17:43:40 -05001402# ---------------
Jesse Andrews24859062011-09-15 21:28:23 -07001403
Jesse Andrewse19d8842011-11-01 20:06:55 -07001404echo ""
1405echo ""
1406echo ""
1407
Dean Troyerdf0972c2012-03-07 17:31:03 -06001408# If you installed Horizon on this server you should be able
root40a37002011-09-20 18:06:14 +00001409# to access the site using your browser.
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +00001410if is_service_enabled horizon; then
Dean Troyerdf0972c2012-03-07 17:31:03 -06001411 echo "Horizon is now available at http://$SERVICE_HOST/"
Jesse Andrews24859062011-09-15 21:28:23 -07001412fi
1413
Dean Troyerdf0972c2012-03-07 17:31:03 -06001414# If Keystone is present you can point ``nova`` cli to this server
Chmouel Boudjnaha6651e92012-02-16 10:16:52 +00001415if is_service_enabled key; then
Jamie Lennox3561d7f2014-05-21 17:18:43 +10001416 echo "Keystone is serving at $KEYSTONE_SERVICE_URI/v2.0/"
Dean Troyerdf0972c2012-03-07 17:31:03 -06001417 echo "Examples on using novaclient command line is in exercise.sh"
1418 echo "The default users are: admin and demo"
1419 echo "The password: $ADMIN_PASSWORD"
Jesse Andrews24859062011-09-15 21:28:23 -07001420fi
termie523c4052011-09-28 19:49:40 -05001421
Dean Troyer4a43b7b2012-08-28 17:43:40 -05001422# Echo ``HOST_IP`` - useful for ``build_uec.sh``, which uses dhcp to give the instance an address
Anthony Young1097c7c2011-12-27 23:22:14 -08001423echo "This is your host ip: $HOST_IP"
1424
Dean Troyerafc29fe2013-02-07 15:56:24 -06001425# Warn that a deprecated feature was used
1426if [[ -n "$DEPRECATED_TEXT" ]]; then
1427 echo_summary "WARNING: $DEPRECATED_TEXT"
Dean Troyerced65172012-03-02 16:36:16 -06001428fi
1429
Sean Dague5bae6ca2014-08-07 19:28:41 -04001430if is_service_enabled neutron; then
1431 # TODO(dtroyer): Remove Q_AGENT_EXTRA_AGENT_OPTS after stable/juno branch is cut
1432 if [[ -n "$Q_AGENT_EXTRA_AGENT_OPTS" ]]; then
1433 echo ""
1434 echo_summary "WARNING: Q_AGENT_EXTRA_AGENT_OPTS is used"
1435 echo "You are using Q_AGENT_EXTRA_AGENT_OPTS to pass configuration into $NEUTRON_CONF."
1436 echo "Please convert that configuration in localrc to a $NEUTRON_CONF section in local.conf:"
1437 echo "Q_AGENT_EXTRA_AGENT_OPTS will be removed early in the 'K' development cycle"
1438 echo "
Dean Troyer91baef32014-02-28 11:11:45 -06001439[[post-config|/\$Q_PLUGIN_CONF_FILE]]
1440[DEFAULT]
1441"
Sean Dague5bae6ca2014-08-07 19:28:41 -04001442 for I in "${Q_AGENT_EXTRA_AGENT_OPTS[@]}"; do
1443 # Replace the first '=' with ' ' for iniset syntax
1444 echo ${I}
1445 done
1446 fi
Dean Troyer91baef32014-02-28 11:11:45 -06001447
Sean Dague5bae6ca2014-08-07 19:28:41 -04001448 # TODO(dtroyer): Remove Q_AGENT_EXTRA_SRV_OPTS after stable/juno branch is cut
1449 if [[ -n "$Q_AGENT_EXTRA_SRV_OPTS" ]]; then
1450 echo ""
1451 echo_summary "WARNING: Q_AGENT_EXTRA_SRV_OPTS is used"
1452 echo "You are using Q_AGENT_EXTRA_SRV_OPTS to pass configuration into $NEUTRON_CONF."
1453 echo "Please convert that configuration in localrc to a $NEUTRON_CONF section in local.conf:"
1454 echo "Q_AGENT_EXTRA_AGENT_OPTS will be removed early in the 'K' development cycle"
1455 echo "
Dean Troyer91baef32014-02-28 11:11:45 -06001456[[post-config|/\$Q_PLUGIN_CONF_FILE]]
1457[DEFAULT]
1458"
Sean Dague5bae6ca2014-08-07 19:28:41 -04001459 for I in "${Q_AGENT_EXTRA_SRV_OPTS[@]}"; do
1460 # Replace the first '=' with ' ' for iniset syntax
1461 echo ${I}
1462 done
1463 fi
Dean Troyer91baef32014-02-28 11:11:45 -06001464fi
1465
Sean Dague5bae6ca2014-08-07 19:28:41 -04001466if is_service_enabled cinder; then
1467 # TODO(dtroyer): Remove CINDER_MULTI_LVM_BACKEND after stable/juno branch is cut
1468 if [[ "$CINDER_MULTI_LVM_BACKEND" = "True" ]]; then
1469 echo ""
1470 echo_summary "WARNING: CINDER_MULTI_LVM_BACKEND is used"
1471 echo "You are using CINDER_MULTI_LVM_BACKEND to configure Cinder's multiple LVM backends"
1472 echo "Please convert that configuration in local.conf to use CINDER_ENABLED_BACKENDS."
Ken'ichi Ohmichif7879192014-09-10 11:47:22 +00001473 echo "CINDER_MULTI_LVM_BACKEND will be removed early in the 'K' development cycle"
Sean Dague5bae6ca2014-08-07 19:28:41 -04001474 echo "
Dean Troyer09718332014-07-03 10:46:57 -05001475[[local|localrc]]
1476CINDER_ENABLED_BACKENDS=lvm:lvmdriver-1,lvm:lvmdriver-2
1477"
Sean Dague5bae6ca2014-08-07 19:28:41 -04001478 fi
Dean Troyer09718332014-07-03 10:46:57 -05001479fi
1480
Dean Troyer4a43b7b2012-08-28 17:43:40 -05001481# Indicate how long this took to run (bash maintained variable ``SECONDS``)
Dean Troyer7903b792012-09-13 17:16:12 -05001482echo_summary "stack.sh completed in $SECONDS seconds."
Dean Troyer80684552014-03-05 11:50:23 -06001483
1484# Restore/close logging file descriptors
1485exec 1>&3
1486exec 2>&3
1487exec 3>&-
1488exec 6>&-