Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 1 | #!/usr/bin/env bash |
| 2 | |
Jesse Andrews | 0e7e897 | 2011-10-02 16:36:54 -0400 | [diff] [blame] | 3 | # **stack.sh** is an opinionated openstack developer installation. |
| 4 | |
| 5 | # This script installs and configures *nova*, *glance*, *dashboard* and *keystone* |
Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 6 | |
Jesse Andrews | 5372f43 | 2011-10-03 01:08:24 -0400 | [diff] [blame] | 7 | # This script allows you to specify configuration options of what git |
| 8 | # repositories to use, enabled services, network configuration and various |
| 9 | # passwords. If you are crafty you can run the script on multiple nodes using |
| 10 | # shared settings for common resources (mysql, rabbitmq) and build a multi-node |
| 11 | # developer install. |
Jesse Andrews | 782b991 | 2011-10-02 16:53:21 -0400 | [diff] [blame] | 12 | |
Jesse Andrews | c4b3aab | 2011-09-15 22:54:52 -0700 | [diff] [blame] | 13 | # To keep this script simple we assume you are running on an **Ubuntu 11.04 |
Jesse Andrews | 2485906 | 2011-09-15 21:28:23 -0700 | [diff] [blame] | 14 | # Natty** machine. It should work in a VM or physical server. Additionally we |
| 15 | # put the list of *apt* and *pip* dependencies and other configuration files in |
| 16 | # this repo. So start by grabbing this script and the dependencies. |
| 17 | |
Jesse Andrews | 0e7e897 | 2011-10-02 16:36:54 -0400 | [diff] [blame] | 18 | # Learn more and get the most recent version at http://devstack.org |
Jesse Andrews | 6edd17f | 2011-09-15 22:19:42 -0700 | [diff] [blame] | 19 | |
| 20 | # Sanity Check |
| 21 | # ============ |
| 22 | |
Jesse Andrews | c4b3aab | 2011-09-15 22:54:52 -0700 | [diff] [blame] | 23 | # Warn users who aren't on natty, but allow them to override check and attempt |
Jesse Andrews | 6edd17f | 2011-09-15 22:19:42 -0700 | [diff] [blame] | 24 | # installation with ``FORCE=yes ./stack`` |
Jesse Andrews | 6edd17f | 2011-09-15 22:19:42 -0700 | [diff] [blame] | 25 | if ! grep -q natty /etc/lsb-release; then |
| 26 | echo "WARNING: this script has only been tested on natty" |
| 27 | if [[ "$FORCE" != "yes" ]]; then |
| 28 | echo "If you wish to run this script anyway run with FORCE=yes" |
| 29 | exit 1 |
| 30 | fi |
| 31 | fi |
| 32 | |
root | 40a3700 | 2011-09-20 18:06:14 +0000 | [diff] [blame] | 33 | # stack.sh keeps the list of **apt** and **pip** dependencies in external |
Jesse Andrews | 4d28218 | 2011-09-16 11:27:43 -0700 | [diff] [blame] | 34 | # files, along with config templates and other useful files. You can find these |
root | 40a3700 | 2011-09-20 18:06:14 +0000 | [diff] [blame] | 35 | # in the ``files`` directory (next to this script). We will reference this |
Jesse Andrews | bf3868d | 2011-09-16 11:31:16 -0700 | [diff] [blame] | 36 | # directory using the ``FILES`` variable in this script. |
| 37 | FILES=`pwd`/files |
| 38 | if [ ! -d $FILES ]; then |
| 39 | echo "ERROR: missing devstack/files - did you grab more than just stack.sh?" |
Jesse Andrews | 6edd17f | 2011-09-15 22:19:42 -0700 | [diff] [blame] | 40 | exit 1 |
| 41 | fi |
| 42 | |
| 43 | # Settings |
| 44 | # ======== |
Jesse Andrews | 30f68e9 | 2011-09-13 00:59:54 -0700 | [diff] [blame] | 45 | |
Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 46 | # This script is customizable through setting environment variables. If you |
| 47 | # want to override a setting you can either:: |
| 48 | # |
| 49 | # export MYSQL_PASS=anothersecret |
| 50 | # ./stack.sh |
| 51 | # |
Jesse Andrews | 6edd17f | 2011-09-15 22:19:42 -0700 | [diff] [blame] | 52 | # You can also pass options on a single line ``MYSQL_PASS=simple ./stack.sh`` |
| 53 | # |
termie | 197d53d | 2011-09-28 17:18:23 -0700 | [diff] [blame] | 54 | # Additionally, you can put any local variables into a ``localrc`` file, like:: |
| 55 | # |
| 56 | # MYSQL_PASS=anothersecret |
| 57 | # MYSQL_USER=hellaroot |
| 58 | # |
Jesse Andrews | 6edd17f | 2011-09-15 22:19:42 -0700 | [diff] [blame] | 59 | # We try to have sensible defaults, so you should be able to run ``./stack.sh`` |
| 60 | # in most cases. |
Jesse Andrews | 5372f43 | 2011-10-03 01:08:24 -0400 | [diff] [blame] | 61 | # |
| 62 | # We our settings from ``stackrc``. This file is distributed with devstack and |
| 63 | # contains locations for what repositories to use. If you want to use other |
| 64 | # repositories and branches, you can add your own settings with another file |
| 65 | # called ``localrc`` |
| 66 | # |
| 67 | # If ``localrc`` exists, then ``stackrc`` will load those settings. This is |
| 68 | # useful for changing a branch or repostiory to test other versions. Also you |
| 69 | # can store your other settings like **MYSQL_PASS** or **ADMIN_PASSWORD** instead |
| 70 | # of letting devstack generate random ones for you. |
Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 71 | source ./stackrc |
| 72 | |
Scott Moser | 7c48118 | 2011-10-07 13:50:21 +0000 | [diff] [blame] | 73 | LOGFILE=${LOGFILE:-"$PWD/stack.sh.$$.log"} |
| 74 | ( |
| 75 | # So that errors don't compound we exit on any errors so you see only the |
| 76 | # first error that occured. |
| 77 | trap failed ERR |
| 78 | failed() { |
| 79 | local r=$? |
| 80 | set +o xtrace |
| 81 | [ -n "$LOGFILE" ] && echo "${0##*/} failed: full log in $LOGFILE" |
| 82 | exit $r |
| 83 | } |
| 84 | |
| 85 | # Print the commands being run so that we can see the command that triggers |
| 86 | # an error. It is also useful for following along as the install occurs. |
| 87 | set -o xtrace |
| 88 | |
| 89 | # OpenStack is designed to be run as a regular user (Dashboard will fail to run |
| 90 | # as root, since apache refused to startup serve content from root user). If |
| 91 | # stack.sh is run as root, it automatically creates a stack user with |
| 92 | # sudo privileges and runs as that user. |
| 93 | |
| 94 | if [[ $EUID -eq 0 ]]; then |
| 95 | echo "You are running this script as root." |
Scott Moser | 0d2145a | 2011-10-07 15:18:10 +0000 | [diff] [blame] | 96 | echo "In 10 seconds, we will create a user 'stack' and run as that user" |
| 97 | sleep 10 |
Scott Moser | 7c48118 | 2011-10-07 13:50:21 +0000 | [diff] [blame] | 98 | |
| 99 | # since this script runs as a normal user, we need to give that user |
| 100 | # ability to run sudo |
| 101 | apt-get update |
| 102 | apt-get install -y sudo |
| 103 | |
Scott Moser | 0d2145a | 2011-10-07 15:18:10 +0000 | [diff] [blame] | 104 | if ! getent passwd stack >/dev/null; then |
Scott Moser | 7c48118 | 2011-10-07 13:50:21 +0000 | [diff] [blame] | 105 | echo "Creating a user called stack" |
| 106 | useradd -U -G sudo -s /bin/bash -m stack |
| 107 | fi |
Scott Moser | 0d2145a | 2011-10-07 15:18:10 +0000 | [diff] [blame] | 108 | |
Scott Moser | 7c48118 | 2011-10-07 13:50:21 +0000 | [diff] [blame] | 109 | echo "Giving stack user passwordless sudo priviledges" |
Scott Moser | 0d2145a | 2011-10-07 15:18:10 +0000 | [diff] [blame] | 110 | ( umask 226 && echo "stack ALL=(ALL) NOPASSWD: ALL" \ |
| 111 | >> /etc/sudoers.d/50_stack_sh ) |
Scott Moser | 7c48118 | 2011-10-07 13:50:21 +0000 | [diff] [blame] | 112 | |
| 113 | echo "Copying files to stack user" |
Scott Moser | 0d2145a | 2011-10-07 15:18:10 +0000 | [diff] [blame] | 114 | STACK_DIR="/home/stack/${PWD%/*}" |
| 115 | cp -r -f "$PWD" "$STACK_DIR" |
| 116 | chown -R stack "$STACK_DIR" |
Scott Moser | 7c48118 | 2011-10-07 13:50:21 +0000 | [diff] [blame] | 117 | if [[ "$SHELL_AFTER_RUN" != "no" ]]; then |
Scott Moser | 0d2145a | 2011-10-07 15:18:10 +0000 | [diff] [blame] | 118 | exec su -ec "cd $STACK_DIR; bash stack.sh; bash" stack |
Scott Moser | 7c48118 | 2011-10-07 13:50:21 +0000 | [diff] [blame] | 119 | else |
Scott Moser | 0d2145a | 2011-10-07 15:18:10 +0000 | [diff] [blame] | 120 | exec su -ec "cd $STACK_DIR; bash stack.sh" stack |
Scott Moser | 7c48118 | 2011-10-07 13:50:21 +0000 | [diff] [blame] | 121 | fi |
| 122 | exit 0 |
| 123 | fi |
| 124 | |
Jesse Andrews | 6edd17f | 2011-09-15 22:19:42 -0700 | [diff] [blame] | 125 | # Destination path for installation ``DEST`` |
Anthony Young | e8fed48 | 2011-09-26 19:50:43 -0700 | [diff] [blame] | 126 | DEST=${DEST:-/opt/stack} |
| 127 | sudo mkdir -p $DEST |
| 128 | sudo chown `whoami` $DEST |
Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 129 | |
Jesse Andrews | 6f3baaf | 2011-09-12 11:59:38 -0700 | [diff] [blame] | 130 | # Set the destination directories for openstack projects |
Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 131 | NOVA_DIR=$DEST/nova |
| 132 | DASH_DIR=$DEST/dash |
| 133 | GLANCE_DIR=$DEST/glance |
| 134 | KEYSTONE_DIR=$DEST/keystone |
| 135 | NOVACLIENT_DIR=$DEST/python-novaclient |
Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 136 | OPENSTACKX_DIR=$DEST/openstackx |
Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 137 | NOVNC_DIR=$DEST/noVNC |
Anthony Young | a841644 | 2011-09-13 20:07:44 -0700 | [diff] [blame] | 138 | |
| 139 | # Specify which services to launch. These generally correspond to screen tabs |
Jesse Andrews | 9b6741e | 2011-10-02 10:01:00 -0700 | [diff] [blame] | 140 | ENABLED_SERVICES=${ENABLED_SERVICES:-g-api,g-reg,key,n-api,n-cpu,n-net,n-sch,n-vnc,dash,mysql,rabbit} |
Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 141 | |
Jesse Andrews | 782b991 | 2011-10-02 16:53:21 -0400 | [diff] [blame] | 142 | # Nova hypervisor configuration. We default to **kvm** but will drop back to |
| 143 | # **qemu** if we are unable to load the kvm module. Stack.sh can also install |
| 144 | # an **LXC** based system. |
| 145 | LIBVIRT_TYPE=${LIBVIRT_TYPE:-kvm} |
| 146 | |
Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 147 | # nova supports pluggable schedulers. ``SimpleScheduler`` should work in most |
| 148 | # cases unless you are working on multi-zone mode. |
Jesse Andrews | 782b991 | 2011-10-02 16:53:21 -0400 | [diff] [blame] | 149 | SCHEDULER=${SCHEDULER:-nova.scheduler.simple.SimpleScheduler} |
| 150 | |
Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 151 | # Use the first IP unless an explicit is set by ``HOST_IP`` environment variable |
Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 152 | if [ ! -n "$HOST_IP" ]; then |
Dean Troyer | 2a15a7c | 2011-09-13 13:22:14 -0500 | [diff] [blame] | 153 | HOST_IP=`LC_ALL=C /sbin/ifconfig | grep -m 1 'inet addr:'| cut -d: -f2 | awk '{print $1}'` |
Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 154 | fi |
| 155 | |
Jesse Andrews | 782b991 | 2011-10-02 16:53:21 -0400 | [diff] [blame] | 156 | # Nova Network Configuration |
| 157 | # -------------------------- |
| 158 | |
Jesse Andrews | 5372f43 | 2011-10-03 01:08:24 -0400 | [diff] [blame] | 159 | # FIXME: more documentation about why these are important flags. Also |
| 160 | # we should make sure we use the same variable names as the flag names. |
| 161 | |
Anthony Young | b1bdd5e | 2011-09-20 09:39:50 -0700 | [diff] [blame] | 162 | PUBLIC_INTERFACE=${PUBLIC_INTERFACE:-eth0} |
Jesse Andrews | b5197e4 | 2011-09-26 12:48:31 -0700 | [diff] [blame] | 163 | FIXED_RANGE=${FIXED_RANGE:-10.0.0.0/24} |
| 164 | FIXED_NETWORK_SIZE=${FIXED_NETWORK_SIZE:-256} |
Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 165 | FLOATING_RANGE=${FLOATING_RANGE:-172.24.4.1/28} |
Jesse Andrews | a72f7ad | 2011-09-25 13:41:22 -0700 | [diff] [blame] | 166 | NET_MAN=${NET_MAN:-FlatDHCPManager} |
Anthony Young | a841644 | 2011-09-13 20:07:44 -0700 | [diff] [blame] | 167 | EC2_DMZ_HOST=${EC2_DMZ_HOST:-$HOST_IP} |
Anthony Young | b1bdd5e | 2011-09-20 09:39:50 -0700 | [diff] [blame] | 168 | FLAT_NETWORK_BRIDGE=${FLAT_NETWORK_BRIDGE:-br100} |
Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 169 | VLAN_INTERFACE=${VLAN_INTERFACE:-$PUBLIC_INTERFACE} |
| 170 | |
| 171 | # Multi-host is a mode where each compute node runs its own network node. This |
| 172 | # allows network operations and routing for a VM to occur on the server that is |
| 173 | # running the VM - removing a SPOF and bandwidth bottleneck. |
| 174 | MULTI_HOST=${MULTI_HOST:-0} |
Jesse Andrews | 30f68e9 | 2011-09-13 00:59:54 -0700 | [diff] [blame] | 175 | |
Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 176 | # If you are using FlatDHCP on multiple hosts, set the ``FLAT_INTERFACE`` |
| 177 | # variable but make sure that the interface doesn't already have an |
| 178 | # ip or you risk breaking things. |
Jesse Andrews | 5372f43 | 2011-10-03 01:08:24 -0400 | [diff] [blame] | 179 | # |
| 180 | # **DHCP Warning**: If your flat interface device uses DHCP, there will be a |
| 181 | # hiccup while the network is moved from the flat interface to the flat network |
| 182 | # bridge. This will happen when you launch your first instance. Upon launch |
| 183 | # you will lose all connectivity to the node, and the vm launch will probably |
| 184 | # fail. |
| 185 | # |
| 186 | # If you are running on a single node and don't need to access the VMs from |
| 187 | # devices other than that node, you can set the flat interface to the same |
| 188 | # value as ``FLAT_NETWORK_BRIDGE``. This will stop the network hiccup from |
| 189 | # occuring. |
Jesse Andrews | 8ff5dbc | 2011-09-25 22:28:08 -0700 | [diff] [blame] | 190 | FLAT_INTERFACE=${FLAT_INTERFACE:-eth0} |
Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 191 | |
Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 192 | ## FIXME(ja): should/can we check that FLAT_INTERFACE is sane? |
| 193 | |
Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 194 | |
Jesse Andrews | 782b991 | 2011-10-02 16:53:21 -0400 | [diff] [blame] | 195 | # MySQL & RabbitMQ |
| 196 | # ---------------- |
| 197 | |
| 198 | # We configure Nova, Dashboard, Glance and Keystone to use MySQL as their |
| 199 | # database server. While they share a single server, each has their own |
| 200 | # database and tables. |
| 201 | |
| 202 | # By default this script will install and configure MySQL. If you want to |
| 203 | # use an existing server, you can pass in the user/password/host parameters. |
| 204 | # You will need to send the same ``MYSQL_PASS`` to every host if you are doing |
| 205 | # a multi-node devstack installation. |
Anthony Young | 320412b | 2011-09-14 02:39:10 -0700 | [diff] [blame] | 206 | MYSQL_USER=${MYSQL_USER:-root} |
Jesse Andrews | fa418f6 | 2011-10-02 09:30:54 -0700 | [diff] [blame] | 207 | MYSQL_PASS=${MYSQL_PASS:-`openssl rand -hex 12`} |
Anthony Young | a841644 | 2011-09-13 20:07:44 -0700 | [diff] [blame] | 208 | MYSQL_HOST=${MYSQL_HOST:-localhost} |
Jesse Andrews | 782b991 | 2011-10-02 16:53:21 -0400 | [diff] [blame] | 209 | |
Anthony Young | a841644 | 2011-09-13 20:07:44 -0700 | [diff] [blame] | 210 | # don't specify /db in this string, so we can use it for multiple services |
Anthony Young | fdaf21a | 2011-09-13 20:11:42 -0700 | [diff] [blame] | 211 | BASE_SQL_CONN=${BASE_SQL_CONN:-mysql://$MYSQL_USER:$MYSQL_PASS@$MYSQL_HOST} |
Anthony Young | a841644 | 2011-09-13 20:07:44 -0700 | [diff] [blame] | 212 | |
| 213 | # Rabbit connection info |
| 214 | RABBIT_HOST=${RABBIT_HOST:-localhost} |
Jesse Andrews | 53ed387 | 2011-10-02 14:28:17 -0400 | [diff] [blame] | 215 | RABBIT_PASSWORD=${RABBIT_PASSWORD:-`openssl rand -hex 12`} |
Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 216 | |
Anthony Young | 377aae6 | 2011-09-14 09:55:31 -0700 | [diff] [blame] | 217 | # Glance connection info. Note the port must be specified. |
Anthony Young | b1bdd5e | 2011-09-20 09:39:50 -0700 | [diff] [blame] | 218 | GLANCE_HOSTPORT=${GLANCE_HOSTPORT:-$HOST_IP:9292} |
Anthony Young | 377aae6 | 2011-09-14 09:55:31 -0700 | [diff] [blame] | 219 | |
Jesse Andrews | 782b991 | 2011-10-02 16:53:21 -0400 | [diff] [blame] | 220 | # Keystone |
| 221 | # -------- |
| 222 | |
Jesse Andrews | b96871e | 2011-10-02 09:02:46 -0700 | [diff] [blame] | 223 | # Service Token - Openstack components need to have an admin token |
| 224 | # to validate user tokens. |
Anthony Young | 06b7ad7 | 2011-10-04 13:30:19 -0700 | [diff] [blame] | 225 | SERVICE_TOKEN=${SERVICE_TOKEN:-`openssl rand -hex 12`} |
Anthony Young | f2aee71 | 2011-10-04 13:32:45 -0700 | [diff] [blame] | 226 | # Dash currently truncates usernames and passwords at 20 characters |
| 227 | # so use 10 bytes |
| 228 | ADMIN_PASSWORD=${ADMIN_PASSWORD:-`openssl rand -hex 10`} |
Jesse Andrews | b96871e | 2011-10-02 09:02:46 -0700 | [diff] [blame] | 229 | |
Jesse Andrews | 53ed387 | 2011-10-02 14:28:17 -0400 | [diff] [blame] | 230 | |
Jesse Andrews | 30f68e9 | 2011-09-13 00:59:54 -0700 | [diff] [blame] | 231 | # Install Packages |
Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 232 | # ================ |
Jesse Andrews | 30f68e9 | 2011-09-13 00:59:54 -0700 | [diff] [blame] | 233 | # |
| 234 | # Openstack uses a fair number of other projects. |
| 235 | |
Jesse Andrews | 2caf8fd | 2011-09-12 16:15:11 -0700 | [diff] [blame] | 236 | |
Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 237 | # install apt requirements |
Scott Moser | d67a18b | 2011-10-07 14:44:38 +0000 | [diff] [blame] | 238 | sudo apt-get update |
Jesse Andrews | 461bfdc | 2011-10-09 17:50:38 -0700 | [diff] [blame] | 239 | sudo apt-get install -qqy `cat $FILES/apts/* | cut -d\# -f1 | grep -Ev "mysql-server|rabbitmq-server"` |
Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 240 | |
Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 241 | # install python requirements |
Jesse Andrews | bf3868d | 2011-09-16 11:31:16 -0700 | [diff] [blame] | 242 | sudo PIP_DOWNLOAD_CACHE=/var/cache/pip pip install `cat $FILES/pips/*` |
Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 243 | |
Jesse Andrews | d61db85 | 2011-09-16 14:13:17 -0700 | [diff] [blame] | 244 | # git clone only if directory doesn't exist already. Since ``DEST`` might not |
| 245 | # be owned by the installation user, we create the directory and change the |
| 246 | # ownership to the proper user. |
Jesse Andrews | 6163257 | 2011-09-12 17:40:00 -0700 | [diff] [blame] | 247 | function git_clone { |
| 248 | if [ ! -d $2 ]; then |
Jesse Andrews | d61db85 | 2011-09-16 14:13:17 -0700 | [diff] [blame] | 249 | sudo mkdir $2 |
| 250 | sudo chown `whoami` $2 |
Jesse Andrews | 6163257 | 2011-09-12 17:40:00 -0700 | [diff] [blame] | 251 | git clone $1 $2 |
Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 252 | cd $2 |
Anthony Young | 303233e | 2011-09-26 13:12:57 -0700 | [diff] [blame] | 253 | # This checkout syntax works for both branches and tags |
Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 254 | git checkout $3 |
Jesse Andrews | 6163257 | 2011-09-12 17:40:00 -0700 | [diff] [blame] | 255 | fi |
| 256 | } |
| 257 | |
Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 258 | # compute service |
Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 259 | git_clone $NOVA_REPO $NOVA_DIR $NOVA_BRANCH |
Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 260 | # image catalog service |
Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 261 | git_clone $GLANCE_REPO $GLANCE_DIR $GLANCE_BRANCH |
Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 262 | # unified auth system (manages accounts/tokens) |
Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 263 | git_clone $KEYSTONE_REPO $KEYSTONE_DIR $KEYSTONE_BRANCH |
Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 264 | # a websockets/html5 or flash powered VNC console for vm instances |
Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 265 | git_clone $NOVNC_REPO $NOVNC_DIR $NOVNC_BRANCH |
Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 266 | # django powered web control panel for openstack |
Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 267 | git_clone $DASH_REPO $DASH_DIR $DASH_BRANCH $DASH_TAG |
Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 268 | # python client library to nova that dashboard (and others) use |
Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 269 | git_clone $NOVACLIENT_REPO $NOVACLIENT_DIR $NOVACLIENT_BRANCH |
root | 40a3700 | 2011-09-20 18:06:14 +0000 | [diff] [blame] | 270 | # openstackx is a collection of extensions to openstack.compute & nova |
Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 271 | # that is *deprecated*. The code is being moved into python-novaclient & nova. |
Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 272 | git_clone $OPENSTACKX_REPO $OPENSTACKX_DIR $OPENSTACKX_BRANCH |
Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 273 | |
Jesse Andrews | 30f68e9 | 2011-09-13 00:59:54 -0700 | [diff] [blame] | 274 | # Initialization |
Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 275 | # ============== |
Jesse Andrews | 30f68e9 | 2011-09-13 00:59:54 -0700 | [diff] [blame] | 276 | |
Jesse Andrews | d1879c5 | 2011-09-16 16:28:13 -0700 | [diff] [blame] | 277 | |
Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 278 | # setup our checkouts so they are installed into python path |
Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 279 | # allowing ``import nova`` or ``import glance.client`` |
Dean Troyer | 0017c8f | 2011-09-13 15:37:50 -0500 | [diff] [blame] | 280 | cd $NOVA_DIR; sudo python setup.py develop |
Jesse Andrews | 18d350d | 2011-09-12 21:46:12 -0700 | [diff] [blame] | 281 | cd $NOVACLIENT_DIR; sudo python setup.py develop |
| 282 | cd $KEYSTONE_DIR; sudo python setup.py develop |
| 283 | cd $GLANCE_DIR; sudo python setup.py develop |
Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 284 | cd $OPENSTACKX_DIR; sudo python setup.py develop |
Jesse Andrews | 18d350d | 2011-09-12 21:46:12 -0700 | [diff] [blame] | 285 | cd $DASH_DIR/django-openstack; sudo python setup.py develop |
| 286 | cd $DASH_DIR/openstack-dashboard; sudo python setup.py develop |
Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 287 | |
Jesse Andrews | 6edd17f | 2011-09-15 22:19:42 -0700 | [diff] [blame] | 288 | # Add a useful screenrc. This isn't required to run openstack but is we do |
root | 40a3700 | 2011-09-20 18:06:14 +0000 | [diff] [blame] | 289 | # it since we are going to run the services in screen for simple |
Jesse Andrews | bf3868d | 2011-09-16 11:31:16 -0700 | [diff] [blame] | 290 | cp $FILES/screenrc ~/.screenrc |
Jesse Andrews | 6f3baaf | 2011-09-12 11:59:38 -0700 | [diff] [blame] | 291 | |
Jesse Andrews | 6edd17f | 2011-09-15 22:19:42 -0700 | [diff] [blame] | 292 | ## TODO: update current user to allow sudo for all commands in files/sudo/* |
Jesse Andrews | dfcd200 | 2011-09-13 13:17:22 -0700 | [diff] [blame] | 293 | |
Anthony Young | a09ae2f | 2011-09-15 23:11:29 -0700 | [diff] [blame] | 294 | # Rabbit |
| 295 | # --------- |
Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 296 | |
Anthony Young | a09ae2f | 2011-09-15 23:11:29 -0700 | [diff] [blame] | 297 | if [[ "$ENABLED_SERVICES" =~ "rabbit" ]]; then |
| 298 | # Install and start rabbitmq-server |
Anthony Young | 093eeb0 | 2011-09-15 23:17:44 -0700 | [diff] [blame] | 299 | sudo apt-get install -y -q rabbitmq-server |
Jesse Andrews | 53ed387 | 2011-10-02 14:28:17 -0400 | [diff] [blame] | 300 | # change the rabbit password since the default is "guest" |
| 301 | sudo rabbitmqctl change_password guest $RABBIT_PASSWORD |
Anthony Young | a09ae2f | 2011-09-15 23:11:29 -0700 | [diff] [blame] | 302 | fi |
Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 303 | |
Jesse Andrews | 2485906 | 2011-09-15 21:28:23 -0700 | [diff] [blame] | 304 | # Mysql |
| 305 | # --------- |
Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 306 | |
Jesse Andrews | 2485906 | 2011-09-15 21:28:23 -0700 | [diff] [blame] | 307 | if [[ "$ENABLED_SERVICES" =~ "mysql" ]]; then |
Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 308 | |
| 309 | # Seed configuration with mysql password so that apt-get install doesn't |
| 310 | # prompt us for a password upon install. |
| 311 | cat <<MYSQL_PRESEED | sudo debconf-set-selections |
| 312 | mysql-server-5.1 mysql-server/root_password password $MYSQL_PASS |
| 313 | mysql-server-5.1 mysql-server/root_password_again password $MYSQL_PASS |
| 314 | mysql-server-5.1 mysql-server/start_on_boot boolean true |
| 315 | MYSQL_PRESEED |
| 316 | |
Anthony Young | a09ae2f | 2011-09-15 23:11:29 -0700 | [diff] [blame] | 317 | # Install and start mysql-server |
Anthony Young | 093eeb0 | 2011-09-15 23:17:44 -0700 | [diff] [blame] | 318 | sudo apt-get -y -q install mysql-server |
Jesse Andrews | 2485906 | 2011-09-15 21:28:23 -0700 | [diff] [blame] | 319 | # Update the DB to give user ‘$MYSQL_USER’@’%’ full control of the all databases: |
| 320 | sudo mysql -uroot -p$MYSQL_PASS -e "GRANT ALL PRIVILEGES ON *.* TO '$MYSQL_USER'@'%' identified by '$MYSQL_PASS';" |
| 321 | |
| 322 | # Edit /etc/mysql/my.cnf to change ‘bind-address’ from localhost (127.0.0.1) to any (0.0.0.0) and restart the mysql service: |
| 323 | sudo sed -i 's/127.0.0.1/0.0.0.0/g' /etc/mysql/my.cnf |
| 324 | sudo service mysql restart |
| 325 | fi |
| 326 | |
| 327 | |
Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 328 | # Dashboard |
| 329 | # --------- |
Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 330 | |
| 331 | # Setup the django dashboard application to serve via apache/wsgi |
Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 332 | |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 333 | if [[ "$ENABLED_SERVICES" =~ "dash" ]]; then |
Jesse Andrews | 2485906 | 2011-09-15 21:28:23 -0700 | [diff] [blame] | 334 | |
root | 40a3700 | 2011-09-20 18:06:14 +0000 | [diff] [blame] | 335 | # Dash currently imports quantum even if you aren't using it. Instead |
| 336 | # of installing quantum we can create a simple module that will pass the |
Jesse Andrews | 2485906 | 2011-09-15 21:28:23 -0700 | [diff] [blame] | 337 | # initial imports |
Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 338 | mkdir -p $DASH_DIR/openstack-dashboard/quantum || true |
| 339 | touch $DASH_DIR/openstack-dashboard/quantum/__init__.py |
| 340 | touch $DASH_DIR/openstack-dashboard/quantum/client.py |
| 341 | |
| 342 | |
| 343 | # ``local_settings.py`` is used to override dashboard default settings. |
| 344 | cp $FILES/dash_settings.py $DASH_DIR/openstack-dashboard/local/local_settings.py |
Jesse Andrews | 1c1d150 | 2011-09-12 19:29:56 -0700 | [diff] [blame] | 345 | |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 346 | cd $DASH_DIR/openstack-dashboard |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 347 | dashboard/manage.py syncdb |
Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 348 | |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 349 | # create an empty directory that apache uses as docroot |
| 350 | sudo mkdir -p $DASH_DIR/.blackhole |
Jesse Andrews | 1c1d150 | 2011-09-12 19:29:56 -0700 | [diff] [blame] | 351 | |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 352 | ## Configure apache's 000-default to run dashboard |
Jesse Andrews | bf3868d | 2011-09-16 11:31:16 -0700 | [diff] [blame] | 353 | sudo cp $FILES/000-default.template /etc/apache2/sites-enabled/000-default |
Jesse Andrews | 8f3e28c | 2011-09-27 18:26:27 -0700 | [diff] [blame] | 354 | sudo sed -e "s,%USER%,$USER,g" -i /etc/apache2/sites-enabled/000-default |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 355 | sudo sed -e "s,%DASH_DIR%,$DASH_DIR,g" -i /etc/apache2/sites-enabled/000-default |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 356 | fi |
Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 357 | |
Anthony Young | 3859f73 | 2011-09-14 02:33:43 -0700 | [diff] [blame] | 358 | |
Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 359 | # Glance |
| 360 | # ------ |
| 361 | |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 362 | if [[ "$ENABLED_SERVICES" =~ "g-reg" ]]; then |
Anthony Young | c835762 | 2011-09-20 10:38:06 -0700 | [diff] [blame] | 363 | GLANCE_IMAGE_DIR=$DEST/glance/images |
Anthony Young | a531b77 | 2011-09-20 09:59:54 -0700 | [diff] [blame] | 364 | # Delete existing images |
| 365 | rm -rf $GLANCE_IMAGE_DIR |
Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 366 | |
Anthony Young | a531b77 | 2011-09-20 09:59:54 -0700 | [diff] [blame] | 367 | # Use local glance directories |
| 368 | mkdir -p $GLANCE_IMAGE_DIR |
| 369 | |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 370 | # (re)create glance database |
root | 40a3700 | 2011-09-20 18:06:14 +0000 | [diff] [blame] | 371 | mysql -u$MYSQL_USER -p$MYSQL_PASS -e 'DROP DATABASE IF EXISTS glance;' |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 372 | mysql -u$MYSQL_USER -p$MYSQL_PASS -e 'CREATE DATABASE glance;' |
| 373 | # Copy over our glance-registry.conf |
| 374 | GLANCE_CONF=$GLANCE_DIR/etc/glance-registry.conf |
Jesse Andrews | bf3868d | 2011-09-16 11:31:16 -0700 | [diff] [blame] | 375 | cp $FILES/glance-registry.conf $GLANCE_CONF |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 376 | sudo sed -e "s,%SQL_CONN%,$BASE_SQL_CONN/glance,g" -i $GLANCE_CONF |
Jesse Andrews | b96871e | 2011-10-02 09:02:46 -0700 | [diff] [blame] | 377 | sudo sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $GLANCE_CONF |
Anthony Young | a531b77 | 2011-09-20 09:59:54 -0700 | [diff] [blame] | 378 | sudo sed -e "s,%DEST%,$DEST,g" -i $GLANCE_CONF |
Anthony Young | f12d3ab | 2011-09-20 00:33:51 -0700 | [diff] [blame] | 379 | |
| 380 | GLANCE_API_CONF=$GLANCE_DIR/etc/glance-api.conf |
| 381 | cp $FILES/glance-api.conf $GLANCE_API_CONF |
Anthony Young | a531b77 | 2011-09-20 09:59:54 -0700 | [diff] [blame] | 382 | sudo sed -e "s,%DEST%,$DEST,g" -i $GLANCE_API_CONF |
Jesse Andrews | b96871e | 2011-10-02 09:02:46 -0700 | [diff] [blame] | 383 | sudo sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $GLANCE_API_CONF |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 384 | fi |
Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 385 | |
Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 386 | # Nova |
| 387 | # ---- |
| 388 | |
Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 389 | # We are going to use the sample http middleware configuration from the keystone |
| 390 | # project to launch nova. This paste config adds the configuration required |
| 391 | # for nova to validate keystone tokens - except we need to switch the config |
| 392 | # to use our admin token instead (instead of the token from their sample data). |
Jesse Andrews | 9f20f51 | 2011-10-02 09:18:03 -0700 | [diff] [blame] | 393 | sudo sed -e "s,999888777666,$SERVICE_TOKEN,g" -i $KEYSTONE_DIR/examples/paste/nova-api-paste.ini |
Jesse Andrews | ba23cc7 | 2011-09-11 03:22:13 -0700 | [diff] [blame] | 394 | |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 395 | if [[ "$ENABLED_SERVICES" =~ "n-cpu" ]]; then |
Jesse Andrews | dfcd200 | 2011-09-13 13:17:22 -0700 | [diff] [blame] | 396 | |
Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 397 | # Virtualization Configuration |
| 398 | # ~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
| 399 | |
| 400 | # attempt to load modules: network block device - used to manage qcow images |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 401 | sudo modprobe nbd || true |
Jesse Andrews | c6d3042 | 2011-10-02 13:11:28 -0400 | [diff] [blame] | 402 | |
Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 403 | # Check for kvm (hardware based virtualization). If unable to load kvm, |
| 404 | # set the libvirt type to qemu. Note: many systems come with hardware |
| 405 | # virtualization disabled in BIOS. |
Jesse Andrews | 2abbdd4 | 2011-10-03 22:48:30 -0400 | [diff] [blame] | 406 | if [[ "$LIBVIRT_TYPE" == "kvm" ]]; then |
Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 407 | sudo modprobe kvm || true |
Jesse Andrews | c6d3042 | 2011-10-02 13:11:28 -0400 | [diff] [blame] | 408 | if [ ! -e /dev/kvm ]; then |
Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 409 | echo "WARNING: Switching to QEMU" |
Jesse Andrews | c6d3042 | 2011-10-02 13:11:28 -0400 | [diff] [blame] | 410 | LIBVIRT_TYPE=qemu |
| 411 | fi |
Jesse Andrews | d1879c5 | 2011-09-16 16:28:13 -0700 | [diff] [blame] | 412 | fi |
Jesse Andrews | c6d3042 | 2011-10-02 13:11:28 -0400 | [diff] [blame] | 413 | |
Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 414 | # Install and configure **LXC** if specified. LXC is another approach to |
| 415 | # splitting a system into many smaller parts. LXC uses cgroups and chroot |
| 416 | # to simulate multiple systems. |
Jesse Andrews | 2abbdd4 | 2011-10-03 22:48:30 -0400 | [diff] [blame] | 417 | if [[ "$LIBVIRT_TYPE" == "lxc" ]]; then |
Jesse Andrews | 8cfd8b6 | 2011-10-02 13:17:31 -0400 | [diff] [blame] | 418 | sudo apt-get install lxc -y |
Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 419 | # lxc requires cgroups to be configured on /cgroup |
Jesse Andrews | c6d3042 | 2011-10-02 13:11:28 -0400 | [diff] [blame] | 420 | sudo mkdir -p /cgroup |
Jesse Andrews | c6d3042 | 2011-10-02 13:11:28 -0400 | [diff] [blame] | 421 | if ! grep -q cgroup /etc/fstab; then |
Jesse Andrews | c315ebf | 2011-10-02 13:25:33 -0400 | [diff] [blame] | 422 | echo none /cgroup cgroup cpuacct,memory,devices,cpu,freezer,blkio 0 0 | sudo tee -a /etc/fstab |
Jesse Andrews | c6d3042 | 2011-10-02 13:11:28 -0400 | [diff] [blame] | 423 | fi |
Jesse Andrews | e430423 | 2011-10-07 10:34:32 -0400 | [diff] [blame] | 424 | if ! mount -n | grep -q cgroup; then |
| 425 | sudo mount /cgroup |
| 426 | fi |
Jesse Andrews | c6d3042 | 2011-10-02 13:11:28 -0400 | [diff] [blame] | 427 | fi |
| 428 | |
Jesse Andrews | e30432f | 2011-09-16 14:54:48 -0700 | [diff] [blame] | 429 | # User needs to be member of libvirtd group for nova-compute to use libvirt. |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 430 | sudo usermod -a -G libvirtd `whoami` |
| 431 | # if kvm wasn't running before we need to restart libvirt to enable it |
| 432 | sudo /etc/init.d/libvirt-bin restart |
| 433 | |
Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 434 | |
| 435 | # Instance Storage |
| 436 | # ~~~~~~~~~~~~~~~~ |
| 437 | |
| 438 | # Nova stores each instance in its own directory. |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 439 | mkdir -p $NOVA_DIR/instances |
| 440 | |
| 441 | # if there is a partition labeled nova-instances use it (ext filesystems |
| 442 | # can be labeled via e2label) |
| 443 | ## FIXME: if already mounted this blows up... |
| 444 | if [ -L /dev/disk/by-label/nova-instances ]; then |
| 445 | sudo mount -L nova-instances $NOVA_DIR/instances |
| 446 | sudo chown -R `whoami` $NOVA_DIR/instances |
| 447 | fi |
| 448 | |
Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 449 | # Clean out the instances directory. |
Jesse Andrews | 461bfdc | 2011-10-09 17:50:38 -0700 | [diff] [blame] | 450 | sudo rm -rf $NOVA_DIR/instances/* |
Jesse Andrews | dfcd200 | 2011-09-13 13:17:22 -0700 | [diff] [blame] | 451 | fi |
| 452 | |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 453 | if [[ "$ENABLED_SERVICES" =~ "n-net" ]]; then |
| 454 | # delete traces of nova networks from prior runs |
Anthony Young | 09fde81 | 2011-09-20 02:23:54 -0700 | [diff] [blame] | 455 | sudo killall dnsmasq || true |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 456 | rm -rf $NOVA_DIR/networks |
| 457 | mkdir -p $NOVA_DIR/networks |
| 458 | fi |
Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 459 | |
Jesse Andrews | d1879c5 | 2011-09-16 16:28:13 -0700 | [diff] [blame] | 460 | function add_nova_flag { |
| 461 | echo "$1" >> $NOVA_DIR/bin/nova.conf |
| 462 | } |
| 463 | |
| 464 | # (re)create nova.conf |
| 465 | rm -f $NOVA_DIR/bin/nova.conf |
| 466 | add_nova_flag "--verbose" |
| 467 | add_nova_flag "--nodaemon" |
Jesse Andrews | 8ff5dbc | 2011-09-25 22:28:08 -0700 | [diff] [blame] | 468 | add_nova_flag "--scheduler_driver=$SCHEDULER" |
Jesse Andrews | d1879c5 | 2011-09-16 16:28:13 -0700 | [diff] [blame] | 469 | add_nova_flag "--dhcpbridge_flagfile=$NOVA_DIR/bin/nova.conf" |
| 470 | add_nova_flag "--network_manager=nova.network.manager.$NET_MAN" |
| 471 | add_nova_flag "--my_ip=$HOST_IP" |
Anthony Young | b1bdd5e | 2011-09-20 09:39:50 -0700 | [diff] [blame] | 472 | add_nova_flag "--public_interface=$PUBLIC_INTERFACE" |
| 473 | add_nova_flag "--vlan_interface=$VLAN_INTERFACE" |
Jesse Andrews | d1879c5 | 2011-09-16 16:28:13 -0700 | [diff] [blame] | 474 | add_nova_flag "--sql_connection=$BASE_SQL_CONN/nova" |
| 475 | add_nova_flag "--libvirt_type=$LIBVIRT_TYPE" |
Anthony Young | 2f14020 | 2011-09-26 13:02:40 -0700 | [diff] [blame] | 476 | add_nova_flag "--osapi_extensions_path=$OPENSTACKX_DIR/extensions" |
Jesse Andrews | d1879c5 | 2011-09-16 16:28:13 -0700 | [diff] [blame] | 477 | add_nova_flag "--vncproxy_url=http://$HOST_IP:6080" |
| 478 | add_nova_flag "--vncproxy_wwwroot=$NOVNC_DIR/" |
| 479 | add_nova_flag "--api_paste_config=$KEYSTONE_DIR/examples/paste/nova-api-paste.ini" |
| 480 | add_nova_flag "--image_service=nova.image.glance.GlanceImageService" |
| 481 | add_nova_flag "--ec2_dmz_host=$EC2_DMZ_HOST" |
| 482 | add_nova_flag "--rabbit_host=$RABBIT_HOST" |
Jesse Andrews | 53ed387 | 2011-10-02 14:28:17 -0400 | [diff] [blame] | 483 | add_nova_flag "--rabbit_password=$RABBIT_PASSWORD" |
Jesse Andrews | d1879c5 | 2011-09-16 16:28:13 -0700 | [diff] [blame] | 484 | add_nova_flag "--glance_api_servers=$GLANCE_HOSTPORT" |
Anthony Young | b1bdd5e | 2011-09-20 09:39:50 -0700 | [diff] [blame] | 485 | add_nova_flag "--flat_network_bridge=$FLAT_NETWORK_BRIDGE" |
Jesse Andrews | d1879c5 | 2011-09-16 16:28:13 -0700 | [diff] [blame] | 486 | if [ -n "$FLAT_INTERFACE" ]; then |
| 487 | add_nova_flag "--flat_interface=$FLAT_INTERFACE" |
| 488 | fi |
| 489 | if [ -n "$MULTI_HOST" ]; then |
| 490 | add_nova_flag "--multi_host=$MULTI_HOST" |
| 491 | fi |
| 492 | |
Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 493 | # Nova Database |
| 494 | # ~~~~~~~~~~~~~ |
| 495 | |
| 496 | # All nova components talk to a central database. We will need to do this step |
| 497 | # only once for an entire cluster. |
| 498 | |
Anthony Young | a074800 | 2011-09-16 21:37:36 -0700 | [diff] [blame] | 499 | if [[ "$ENABLED_SERVICES" =~ "mysql" ]]; then |
| 500 | # (re)create nova database |
root | 40a3700 | 2011-09-20 18:06:14 +0000 | [diff] [blame] | 501 | mysql -u$MYSQL_USER -p$MYSQL_PASS -e 'DROP DATABASE IF EXISTS nova;' |
Anthony Young | a074800 | 2011-09-16 21:37:36 -0700 | [diff] [blame] | 502 | mysql -u$MYSQL_USER -p$MYSQL_PASS -e 'CREATE DATABASE nova;' |
Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 503 | |
| 504 | # (re)create nova database |
Anthony Young | a074800 | 2011-09-16 21:37:36 -0700 | [diff] [blame] | 505 | $NOVA_DIR/bin/nova-manage db sync |
| 506 | |
| 507 | # create a small network |
termie | 197d53d | 2011-09-28 17:18:23 -0700 | [diff] [blame] | 508 | $NOVA_DIR/bin/nova-manage network create private $FIXED_RANGE 1 $FIXED_NETWORK_SIZE |
Anthony Young | a074800 | 2011-09-16 21:37:36 -0700 | [diff] [blame] | 509 | |
| 510 | # create some floating ips |
| 511 | $NOVA_DIR/bin/nova-manage floating create $FLOATING_RANGE |
| 512 | fi |
| 513 | |
| 514 | |
Jesse Andrews | e8d9cd8 | 2011-09-13 15:16:26 -0700 | [diff] [blame] | 515 | # Keystone |
| 516 | # -------- |
| 517 | |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 518 | if [[ "$ENABLED_SERVICES" =~ "key" ]]; then |
| 519 | # (re)create keystone database |
root | 40a3700 | 2011-09-20 18:06:14 +0000 | [diff] [blame] | 520 | mysql -u$MYSQL_USER -p$MYSQL_PASS -e 'DROP DATABASE IF EXISTS keystone;' |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 521 | mysql -u$MYSQL_USER -p$MYSQL_PASS -e 'CREATE DATABASE keystone;' |
Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 522 | |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 523 | # FIXME (anthony) keystone should use keystone.conf.example |
| 524 | KEYSTONE_CONF=$KEYSTONE_DIR/etc/keystone.conf |
Jesse Andrews | bf3868d | 2011-09-16 11:31:16 -0700 | [diff] [blame] | 525 | cp $FILES/keystone.conf $KEYSTONE_CONF |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 526 | sudo sed -e "s,%SQL_CONN%,$BASE_SQL_CONN/keystone,g" -i $KEYSTONE_CONF |
Anthony Young | e8fed48 | 2011-09-26 19:50:43 -0700 | [diff] [blame] | 527 | sudo sed -e "s,%DEST%,$DEST,g" -i $KEYSTONE_CONF |
Anthony Young | 3a09312 | 2011-09-13 19:01:45 +0000 | [diff] [blame] | 528 | |
Jesse Andrews | cbe98d5 | 2011-10-02 17:47:32 -0400 | [diff] [blame] | 529 | # keystone_data.sh creates our admin user and our ``SERVICE_TOKEN``. |
Anthony Young | ec21d93 | 2011-09-16 16:05:55 -0700 | [diff] [blame] | 530 | KEYSTONE_DATA=$KEYSTONE_DIR/bin/keystone_data.sh |
| 531 | cp $FILES/keystone_data.sh $KEYSTONE_DATA |
| 532 | sudo sed -e "s,%HOST_IP%,$HOST_IP,g" -i $KEYSTONE_DATA |
Jesse Andrews | b96871e | 2011-10-02 09:02:46 -0700 | [diff] [blame] | 533 | sudo sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $KEYSTONE_DATA |
Jesse Andrews | 89358af | 2011-10-02 14:11:17 -0400 | [diff] [blame] | 534 | sudo sed -e "s,%ADMIN_PASSWORD%,$ADMIN_PASSWORD,g" -i $KEYSTONE_DATA |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 535 | # initialize keystone with default users/endpoints |
Anthony Young | ec21d93 | 2011-09-16 16:05:55 -0700 | [diff] [blame] | 536 | BIN_DIR=$KEYSTONE_DIR/bin bash $KEYSTONE_DATA |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 537 | fi |
Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 538 | |
Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 539 | |
Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 540 | # Launch Services |
| 541 | # =============== |
Jesse Andrews | 30f68e9 | 2011-09-13 00:59:54 -0700 | [diff] [blame] | 542 | |
Jesse Andrews | 1c1d150 | 2011-09-12 19:29:56 -0700 | [diff] [blame] | 543 | # nova api crashes if we start it with a regular screen command, |
| 544 | # so send the start command by forcing text into the window. |
Jesse Andrews | dfcd200 | 2011-09-13 13:17:22 -0700 | [diff] [blame] | 545 | # Only run the services specified in ``ENABLED_SERVICES`` |
| 546 | |
Jesse Andrews | 1f71760 | 2011-09-16 15:18:53 -0700 | [diff] [blame] | 547 | # our screen helper to launch a service in a hidden named screen |
Jesse Andrews | 1c1d150 | 2011-09-12 19:29:56 -0700 | [diff] [blame] | 548 | function screen_it { |
Jesse Andrews | 1f71760 | 2011-09-16 15:18:53 -0700 | [diff] [blame] | 549 | NL=`echo -ne '\015'` |
Anthony Young | 292e46d | 2011-09-13 11:28:56 -0700 | [diff] [blame] | 550 | if [[ "$ENABLED_SERVICES" =~ "$1" ]]; then |
| 551 | screen -S nova -X screen -t $1 |
| 552 | screen -S nova -p $1 -X stuff "$2$NL" |
| 553 | fi |
Jesse Andrews | 1c1d150 | 2011-09-12 19:29:56 -0700 | [diff] [blame] | 554 | } |
| 555 | |
Jesse Andrews | a16e5e9 | 2011-09-16 16:30:55 -0700 | [diff] [blame] | 556 | # create a new named screen to run processes in |
| 557 | screen -d -m -S nova -t nova |
| 558 | sleep 1 |
| 559 | |
Jesse Andrews | 644b8e8 | 2011-10-02 17:50:41 -0400 | [diff] [blame] | 560 | # launch the glance registery service |
Anthony Young | d000b22 | 2011-09-19 14:46:53 -0700 | [diff] [blame] | 561 | if [[ "$ENABLED_SERVICES" =~ "g-reg" ]]; then |
| 562 | screen_it g-reg "cd $GLANCE_DIR; bin/glance-registry --config-file=etc/glance-registry.conf" |
| 563 | fi |
| 564 | |
Jesse Andrews | 644b8e8 | 2011-10-02 17:50:41 -0400 | [diff] [blame] | 565 | # launch the glance api and wait for it to answer before continuing |
Anthony Young | d000b22 | 2011-09-19 14:46:53 -0700 | [diff] [blame] | 566 | if [[ "$ENABLED_SERVICES" =~ "g-api" ]]; then |
| 567 | screen_it g-api "cd $GLANCE_DIR; bin/glance-api --config-file=etc/glance-api.conf" |
| 568 | while ! wget -q -O- http://$GLANCE_HOSTPORT; do |
| 569 | echo "Waiting for g-api ($GLANCE_HOSTPORT) to start..." |
| 570 | sleep 1 |
| 571 | done |
| 572 | fi |
| 573 | |
Jesse Andrews | 644b8e8 | 2011-10-02 17:50:41 -0400 | [diff] [blame] | 574 | # launch the keystone and wait for it to answer before continuing |
Anthony Young | d000b22 | 2011-09-19 14:46:53 -0700 | [diff] [blame] | 575 | if [[ "$ENABLED_SERVICES" =~ "key" ]]; then |
Anthony Young | f33796e | 2011-09-22 00:14:12 -0700 | [diff] [blame] | 576 | screen_it key "cd $KEYSTONE_DIR && $KEYSTONE_DIR/bin/keystone --config-file $KEYSTONE_CONF -d" |
Anthony Young | d000b22 | 2011-09-19 14:46:53 -0700 | [diff] [blame] | 577 | while ! wget -q -O- http://127.0.0.1:5000; do |
| 578 | echo "Waiting for keystone to start..." |
| 579 | sleep 1 |
| 580 | done |
| 581 | fi |
| 582 | |
Jesse Andrews | 644b8e8 | 2011-10-02 17:50:41 -0400 | [diff] [blame] | 583 | # launch the nova-api and wait for it to answer before continuing |
Anthony Young | d000b22 | 2011-09-19 14:46:53 -0700 | [diff] [blame] | 584 | if [[ "$ENABLED_SERVICES" =~ "n-api" ]]; then |
Anthony Young | 9bf3d76 | 2011-09-20 09:51:16 -0700 | [diff] [blame] | 585 | screen_it n-api "cd $NOVA_DIR && $NOVA_DIR/bin/nova-api" |
Anthony Young | d000b22 | 2011-09-19 14:46:53 -0700 | [diff] [blame] | 586 | while ! wget -q -O- http://127.0.0.1:8774; do |
| 587 | echo "Waiting for nova-api to start..." |
| 588 | sleep 1 |
| 589 | done |
| 590 | fi |
root | 40a3700 | 2011-09-20 18:06:14 +0000 | [diff] [blame] | 591 | # Launching nova-compute should be as simple as running ``nova-compute`` but |
| 592 | # have to do a little more than that in our script. Since we add the group |
Jesse Andrews | 1f71760 | 2011-09-16 15:18:53 -0700 | [diff] [blame] | 593 | # ``libvirtd`` to our user in this script, when nova-compute is run it is |
root | 40a3700 | 2011-09-20 18:06:14 +0000 | [diff] [blame] | 594 | # within the context of our original shell (so our groups won't be updated). |
Jesse Andrews | 1f71760 | 2011-09-16 15:18:53 -0700 | [diff] [blame] | 595 | # We can send the command nova-compute to the ``newgrp`` command to execute |
| 596 | # in a specific context. |
Anthony Young | 9bf3d76 | 2011-09-20 09:51:16 -0700 | [diff] [blame] | 597 | screen_it n-cpu "cd $NOVA_DIR && echo $NOVA_DIR/bin/nova-compute | newgrp libvirtd" |
| 598 | screen_it n-net "cd $NOVA_DIR && $NOVA_DIR/bin/nova-network" |
| 599 | screen_it n-sch "cd $NOVA_DIR && $NOVA_DIR/bin/nova-scheduler" |
Anthony Young | 1c598da | 2011-10-05 08:07:53 -0700 | [diff] [blame] | 600 | screen_it n-vnc "cd $NOVNC_DIR && ./utils/nova-wsproxy.py 6080 --web . --flagfile=../nova/bin/nova.conf" |
Anthony Young | 9bf3d76 | 2011-09-20 09:51:16 -0700 | [diff] [blame] | 601 | screen_it dash "cd $DASH_DIR && sudo /etc/init.d/apache2 restart; sudo tail -f /var/log/apache2/error.log" |
Jesse Andrews | 75a3765 | 2011-09-12 17:09:08 -0700 | [diff] [blame] | 602 | |
Jesse Andrews | d74257d | 2011-09-13 01:24:50 -0700 | [diff] [blame] | 603 | # Install Images |
| 604 | # ============== |
Jesse Andrews | e49b8bd | 2011-09-12 18:08:04 -0700 | [diff] [blame] | 605 | |
Jesse Andrews | 85d9be3 | 2011-10-03 00:01:28 -0400 | [diff] [blame] | 606 | # Upload a couple images to glance. **TTY** is a simple small image that use the |
| 607 | # lets you login to it with username/password of user/password. TTY is useful |
| 608 | # for basic functionality. We all include an Ubuntu cloud build of **Natty**. |
| 609 | # Natty uses cloud-init, supporting login via keypair and sending scripts as |
Jesse Andrews | 5372f43 | 2011-10-03 01:08:24 -0400 | [diff] [blame] | 610 | # userdata. |
| 611 | # |
| 612 | # Read more about cloud-init at https://help.ubuntu.com/community/CloudInit |
Jesse Andrews | 08e8b74 | 2011-10-02 23:42:56 -0400 | [diff] [blame] | 613 | |
Jesse Andrews | 85d9be3 | 2011-10-03 00:01:28 -0400 | [diff] [blame] | 614 | if [[ "$ENABLED_SERVICES" =~ "g-reg" ]]; then |
| 615 | # create a directory for the downloadedthe images tarballs. |
Jesse Andrews | 08e8b74 | 2011-10-02 23:42:56 -0400 | [diff] [blame] | 616 | mkdir -p $FILES/images |
| 617 | |
Jesse Andrews | 5372f43 | 2011-10-03 01:08:24 -0400 | [diff] [blame] | 618 | # Debug Image (TTY) |
| 619 | # ----------------- |
| 620 | |
| 621 | # Downloads the image (ami/aki/ari style), then extracts it. Upon extraction |
| 622 | # we upload to glance with the glance cli tool. TTY is a stripped down |
| 623 | # version of ubuntu. |
Jesse Andrews | 543d7d4 | 2011-09-16 14:16:36 -0700 | [diff] [blame] | 624 | if [ ! -f $FILES/tty.tgz ]; then |
| 625 | wget -c http://images.ansolabs.com/tty.tgz -O $FILES/tty.tgz |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 626 | fi |
Jesse Andrews | e49b8bd | 2011-09-12 18:08:04 -0700 | [diff] [blame] | 627 | |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 628 | # extract ami-tty/image, aki-tty/image & ari-tty/image |
Jesse Andrews | 74e965f | 2011-09-16 14:19:46 -0700 | [diff] [blame] | 629 | tar -zxf $FILES/tty.tgz -C $FILES/images |
Anthony Young | 70dc5e0 | 2011-09-15 16:52:43 -0700 | [diff] [blame] | 630 | |
Jesse Andrews | 5372f43 | 2011-10-03 01:08:24 -0400 | [diff] [blame] | 631 | # Use glance client to add the kernel, ramdisk and finally the root |
| 632 | # filesystem. We parse the results of the uploads to get glance IDs of the |
| 633 | # ramdisk and kernel and use them for the root filesystem. |
Jesse Andrews | a5e5f2a | 2011-10-02 21:07:08 -0400 | [diff] [blame] | 634 | RVAL=`glance add -A $SERVICE_TOKEN name="tty-kernel" is_public=true container_format=aki disk_format=aki < $FILES/images/aki-tty/image` |
| 635 | KERNEL_ID=`echo $RVAL | cut -d":" -f2 | tr -d " "` |
| 636 | RVAL=`glance add -A $SERVICE_TOKEN name="tty-ramdisk" is_public=true container_format=ari disk_format=ari < $FILES/images/ari-tty/image` |
| 637 | RAMDISK_ID=`echo $RVAL | cut -d":" -f2 | tr -d " "` |
Jesse Andrews | 014e913 | 2011-10-02 19:23:22 -0400 | [diff] [blame] | 638 | glance add -A $SERVICE_TOKEN name="tty" is_public=true container_format=ami disk_format=ami kernel_id=$KERNEL_ID ramdisk_id=$RAMDISK_ID < $FILES/images/ami-tty/image |
Jesse Andrews | 08e8b74 | 2011-10-02 23:42:56 -0400 | [diff] [blame] | 639 | |
Jesse Andrews | 5372f43 | 2011-10-03 01:08:24 -0400 | [diff] [blame] | 640 | # Ubuntu 11.04 aka Natty |
| 641 | # ---------------------- |
Jesse Andrews | 08e8b74 | 2011-10-02 23:42:56 -0400 | [diff] [blame] | 642 | |
Jesse Andrews | 5372f43 | 2011-10-03 01:08:24 -0400 | [diff] [blame] | 643 | # Downloaded from ubuntu enterprise cloud images. This |
Jesse Andrews | 08e8b74 | 2011-10-02 23:42:56 -0400 | [diff] [blame] | 644 | # image doesn't use the ramdisk functionality |
Jesse Andrews | 08e8b74 | 2011-10-02 23:42:56 -0400 | [diff] [blame] | 645 | if [ ! -f $FILES/natty.tgz ]; then |
| 646 | wget -c http://uec-images.ubuntu.com/natty/current/natty-server-cloudimg-amd64.tar.gz -O $FILES/natty.tgz |
| 647 | fi |
| 648 | |
| 649 | tar -zxf $FILES/natty.tgz -C $FILES/images |
| 650 | |
| 651 | RVAL=`glance add -A $SERVICE_TOKEN name="uec-natty-kernel" is_public=true container_format=aki disk_format=aki < $FILES/images/natty-server-cloudimg-amd64-vmlinuz-virtual` |
| 652 | KERNEL_ID=`echo $RVAL | cut -d":" -f2 | tr -d " "` |
| 653 | glance add -A $SERVICE_TOKEN name="uec-natty" is_public=true container_format=ami disk_format=ami kernel_id=$KERNEL_ID < $FILES/images/natty-server-cloudimg-amd64.img |
| 654 | |
Jesse Andrews | e49b8bd | 2011-09-12 18:08:04 -0700 | [diff] [blame] | 655 | fi |
Jesse Andrews | 2485906 | 2011-09-15 21:28:23 -0700 | [diff] [blame] | 656 | |
Scott Moser | b94f4bf | 2011-10-07 14:51:07 +0000 | [diff] [blame^] | 657 | # Fin |
| 658 | # === |
| 659 | |
| 660 | |
| 661 | ) 2>&1 | tee "${LOGFILE}" |
| 662 | |
| 663 | # Check that the left side of the above pipe succeeded |
| 664 | for ret in "${PIPESTATUS[@]}"; do [ $ret -eq 0 ] || exit $ret; done |
| 665 | |
| 666 | ( |
Jesse Andrews | 2485906 | 2011-09-15 21:28:23 -0700 | [diff] [blame] | 667 | # Using the cloud |
| 668 | # =============== |
| 669 | |
| 670 | # If you installed the dashboard on this server, then you should be able |
root | 40a3700 | 2011-09-20 18:06:14 +0000 | [diff] [blame] | 671 | # to access the site using your browser. |
Jesse Andrews | 2485906 | 2011-09-15 21:28:23 -0700 | [diff] [blame] | 672 | if [[ "$ENABLED_SERVICES" =~ "dash" ]]; then |
| 673 | echo "dashboard is now available at http://$HOST_IP/" |
| 674 | fi |
| 675 | |
| 676 | # If keystone is present, you can point nova cli to this server |
| 677 | if [[ "$ENABLED_SERVICES" =~ "key" ]]; then |
| 678 | echo "keystone is serving at http://$HOST_IP:5000/v2.0/" |
| 679 | echo "examples on using novaclient command line is in exercise.sh" |
Jesse Andrews | 89358af | 2011-10-02 14:11:17 -0400 | [diff] [blame] | 680 | echo "the default users are: admin and demo" |
| 681 | echo "the password: $ADMIN_PASSWORD" |
Jesse Andrews | 2485906 | 2011-09-15 21:28:23 -0700 | [diff] [blame] | 682 | fi |
termie | 523c405 | 2011-09-28 19:49:40 -0500 | [diff] [blame] | 683 | |
Scott Moser | c4e47ab | 2011-10-07 13:29:29 +0000 | [diff] [blame] | 684 | # indicate how long this took to run (bash maintained variable 'SECONDS') |
Scott Moser | b94f4bf | 2011-10-07 14:51:07 +0000 | [diff] [blame^] | 685 | echo "stack.sh completed in $SECONDS seconds." |
Scott Moser | 7c48118 | 2011-10-07 13:50:21 +0000 | [diff] [blame] | 686 | |
Scott Moser | b94f4bf | 2011-10-07 14:51:07 +0000 | [diff] [blame^] | 687 | ) | tee -a "$LOGFILE" |