blob: d07073eae082ee7726f5b7e6faba2b7de0a97847 [file] [log] [blame]
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +03001# lib/ironic
2# Functions to control the configuration and operation of the **Ironic** service
3
4# Dependencies:
Adam Spiers6a5aa7c2013-10-24 11:27:02 +01005#
6# - ``functions`` file
7# - ``DEST``, ``DATA_DIR``, ``STACK_USER`` must be defined
8# - ``SERVICE_{TENANT_NAME|PASSWORD}`` must be defined
9# - ``SERVICE_HOST``
10# - ``KEYSTONE_TOKEN_FORMAT`` must be defined
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +030011
12# ``stack.sh`` calls the entry points in this order:
13#
Adam Spiers6a5aa7c2013-10-24 11:27:02 +010014# - install_ironic
15# - install_ironicclient
16# - init_ironic
17# - start_ironic
18# - stop_ironic
19# - cleanup_ironic
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +030020
Alexander Gordeev06fb29c2014-01-31 18:02:07 +040021# Save trace and pipefail settings
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +030022XTRACE=$(set +o | grep xtrace)
Alexander Gordeev06fb29c2014-01-31 18:02:07 +040023PIPEFAIL=$(set +o | grep pipefail)
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +030024set +o xtrace
Alexander Gordeev06fb29c2014-01-31 18:02:07 +040025set +o pipefail
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +030026
27# Defaults
28# --------
29
30# Set up default directories
31IRONIC_DIR=$DEST/ironic
Alexander Gordeev06fb29c2014-01-31 18:02:07 +040032IRONIC_DATA_DIR=$DATA_DIR/ironic
33IRONIC_STATE_PATH=/var/lib/ironic
Roman Prykhodchenko43e00662013-10-15 17:03:15 +030034IRONICCLIENT_DIR=$DEST/python-ironicclient
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +030035IRONIC_AUTH_CACHE_DIR=${IRONIC_AUTH_CACHE_DIR:-/var/cache/ironic}
36IRONIC_CONF_DIR=${IRONIC_CONF_DIR:-/etc/ironic}
37IRONIC_CONF_FILE=$IRONIC_CONF_DIR/ironic.conf
38IRONIC_ROOTWRAP_CONF=$IRONIC_CONF_DIR/rootwrap.conf
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +030039IRONIC_POLICY_JSON=$IRONIC_CONF_DIR/policy.json
40
Alexander Gordeev06fb29c2014-01-31 18:02:07 +040041# Set up defaults for functional / integration testing
42IRONIC_SCRIPTS_DIR=${IRONIC_SCRIPTS_DIR:-$TOP_DIR/tools/ironic/scripts}
43IRONIC_TEMPLATES_DIR=${IRONIC_TEMPLATES_DIR:-$TOP_DIR/tools/ironic/templates}
44IRONIC_BAREMETAL_BASIC_OPS=$(trueorfalse False $IRONIC_BAREMETAL_BASIC_OPS)
Devananda van der Veen83eeed02014-04-11 10:08:41 -070045IRONIC_ENABLED_DRIVERS=${IRONIC_ENABLED_DRIVERS:-fake,pxe_ssh,pxe_ipmitool}
Alexander Gordeev06fb29c2014-01-31 18:02:07 +040046IRONIC_SSH_USERNAME=${IRONIC_SSH_USERNAME:-`whoami`}
47IRONIC_SSH_KEY_DIR=${IRONIC_SSH_KEY_DIR:-$IRONIC_DATA_DIR/ssh_keys}
48IRONIC_SSH_KEY_FILENAME=${IRONIC_SSH_KEY_FILENAME:-ironic_key}
49IRONIC_KEY_FILE=$IRONIC_SSH_KEY_DIR/$IRONIC_SSH_KEY_FILENAME
50IRONIC_SSH_VIRT_TYPE=${IRONIC_SSH_VIRT_TYPE:-virsh}
51IRONIC_TFTPBOOT_DIR=${IRONIC_TFTPBOOT_DIR:-$IRONIC_DATA_DIR/tftpboot}
Adam Gandelman86765102014-04-14 11:57:13 -070052IRONIC_VM_SSH_PORT=${IRONIC_VM_SSH_PORT:-22}
Alexander Gordeev06fb29c2014-01-31 18:02:07 +040053IRONIC_VM_SSH_ADDRESS=${IRONIC_VM_SSH_ADDRESS:-$HOST_IP}
54IRONIC_VM_COUNT=${IRONIC_VM_COUNT:-1}
55IRONIC_VM_SPECS_CPU=${IRONIC_VM_SPECS_CPU:-1}
Adam Gandelmanea335f42014-07-03 17:57:49 -070056IRONIC_VM_SPECS_RAM=${IRONIC_VM_SPECS_RAM:-512}
Alexander Gordeev06fb29c2014-01-31 18:02:07 +040057IRONIC_VM_SPECS_DISK=${IRONIC_VM_SPECS_DISK:-10}
David Shrewsbury3e4612b2014-05-01 11:38:21 -040058IRONIC_VM_EPHEMERAL_DISK=${IRONIC_VM_EPHEMERAL_DISK:-0}
Alexander Gordeev06fb29c2014-01-31 18:02:07 +040059IRONIC_VM_EMULATOR=${IRONIC_VM_EMULATOR:-/usr/bin/qemu-system-x86_64}
60IRONIC_VM_NETWORK_BRIDGE=${IRONIC_VM_NETWORK_BRIDGE:-brbm}
61IRONIC_VM_NETWORK_RANGE=${IRONIC_VM_NETWORK_RANGE:-192.0.2.0/24}
62IRONIC_VM_MACS_CSV_FILE=${IRONIC_VM_MACS_CSV_FILE:-$IRONIC_DATA_DIR/ironic_macs.csv}
63IRONIC_AUTHORIZED_KEYS_FILE=${IRONIC_AUTHORIZED_KEYS_FILE:-$HOME/.ssh/authorized_keys}
64
Adam Gandelman8af6fae2014-04-11 17:06:14 -070065# By default, baremetal VMs will console output to file.
66IRONIC_VM_LOG_CONSOLE=${IRONIC_VM_LOG_CONSOLE:-True}
67IRONIC_VM_LOG_DIR=${IRONIC_VM_LOG_DIR:-$IRONIC_DATA_DIR/logs/}
68
Alexander Gordeevf177f722014-03-14 18:44:48 +040069# Use DIB to create deploy ramdisk and kernel.
70IRONIC_BUILD_DEPLOY_RAMDISK=`trueorfalse True $IRONIC_BUILD_DEPLOY_RAMDISK`
71# If not use DIB, these files are used as deploy ramdisk/kernel.
72# (The value must be a absolute path)
73IRONIC_DEPLOY_RAMDISK=${IRONIC_DEPLOY_RAMDISK:-}
74IRONIC_DEPLOY_KERNEL=${IRONIC_DEPLOY_KERNEL:-}
75IRONIC_DEPLOY_ELEMENT=${IRONIC_DEPLOY_ELEMENT:-deploy-ironic}
76
Jim Rollenhagena6a45462014-08-05 18:08:29 +000077IRONIC_AGENT_TARBALL=${IRONIC_AGENT_TARBALL:-http://tarballs.openstack.org/ironic-python-agent/coreos/ipa-coreos.tar.gz}
78
79# Which deploy driver to use - valid choices right now
80# are 'pxe_ssh' and 'agent_ssh'.
81IRONIC_DEPLOY_DRIVER=${IRONIC_DEPLOY_DRIVER:-pxe_ssh}
82
Alexander Gordeevf177f722014-03-14 18:44:48 +040083#TODO(agordeev): replace 'ubuntu' with host distro name getting
84IRONIC_DEPLOY_FLAVOR=${IRONIC_DEPLOY_FLAVOR:-ubuntu $IRONIC_DEPLOY_ELEMENT}
85
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +030086# Support entry points installation of console scripts
87IRONIC_BIN_DIR=$(get_python_exec_prefix)
88
89# Ironic connection info. Note the port must be specified.
90IRONIC_SERVICE_PROTOCOL=http
91IRONIC_HOSTPORT=${IRONIC_HOSTPORT:-$SERVICE_HOST:6385}
92
Dean Troyer4237f592014-01-29 16:22:11 -060093# Tell Tempest this project is present
94TEMPEST_SERVICES+=,ironic
95
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +030096
97# Functions
98# ---------
99
Dean Troyer1023ff72014-01-27 14:56:44 -0600100# Test if any Ironic services are enabled
101# is_ironic_enabled
102function is_ironic_enabled {
103 [[ ,${ENABLED_SERVICES} =~ ,"ir-" ]] && return 0
104 return 1
105}
106
Roman Prykhodchenko43e00662013-10-15 17:03:15 +0300107# install_ironic() - Collect source and prepare
Ian Wienandaee18c72014-02-21 15:35:08 +1100108function install_ironic {
Adam Gandelman6d271482014-08-05 18:12:29 -0700109 # make sure all needed service were enabled
110 for srv in nova glance key; do
111 if ! is_service_enabled "$srv"; then
112 die $LINENO "$srv should be enabled for Ironic."
113 fi
114 done
Roman Prykhodchenko43e00662013-10-15 17:03:15 +0300115 git_clone $IRONIC_REPO $IRONIC_DIR $IRONIC_BRANCH
116 setup_develop $IRONIC_DIR
117}
118
119# install_ironicclient() - Collect sources and prepare
Ian Wienandaee18c72014-02-21 15:35:08 +1100120function install_ironicclient {
Roman Prykhodchenko43e00662013-10-15 17:03:15 +0300121 git_clone $IRONICCLIENT_REPO $IRONICCLIENT_DIR $IRONICCLIENT_BRANCH
122 setup_develop $IRONICCLIENT_DIR
Ramakrishnan Gc294c502014-07-24 16:00:47 +0530123 sudo install -D -m 0644 -o $STACK_USER {$IRONICCLIENT_DIR/tools/,/etc/bash_completion.d/}ironic.bash_completion
Roman Prykhodchenko43e00662013-10-15 17:03:15 +0300124}
125
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300126# cleanup_ironic() - Remove residual data files, anything left over from previous
127# runs that would need to clean up.
Ian Wienandaee18c72014-02-21 15:35:08 +1100128function cleanup_ironic {
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300129 sudo rm -rf $IRONIC_AUTH_CACHE_DIR
130}
131
Adam Gandelman6d271482014-08-05 18:12:29 -0700132# configure_ironic_dirs() - Create all directories required by Ironic and
133# associated services.
134function configure_ironic_dirs {
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300135 if [[ ! -d $IRONIC_CONF_DIR ]]; then
136 sudo mkdir -p $IRONIC_CONF_DIR
137 fi
Adam Gandelman6d271482014-08-05 18:12:29 -0700138 sudo mkdir -p $IRONIC_DATA_DIR
139 sudo mkdir -p $IRONIC_STATE_PATH
140 sudo mkdir -p $IRONIC_TFTPBOOT_DIR
141 sudo chown -R $STACK_USER $IRONIC_DATA_DIR $IRONIC_STATE_PATH
142 sudo chown -R $STACK_USER:$LIBVIRT_GROUP $IRONIC_TFTPBOOT_DIR
143 if is_ubuntu; then
144 local pxebin=/usr/lib/syslinux/pxelinux.0
145 elif is_fedora; then
146 local pxebin=/usr/share/syslinux/pxelinux.0
147 fi
148 if [ ! -f $pxebin ]; then
149 die $LINENO "pxelinux.0 (from SYSLINUX) not found."
150 fi
151
152 cp $pxebin $IRONIC_TFTPBOOT_DIR
153 mkdir -p $IRONIC_TFTPBOOT_DIR/pxelinux.cfg
154}
155
156# configure_ironic() - Set config files, create data dirs, etc
157function configure_ironic {
158 configure_ironic_dirs
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300159 sudo chown $STACK_USER $IRONIC_CONF_DIR
160
161 # Copy over ironic configuration file and configure common parameters.
162 cp $IRONIC_DIR/etc/ironic/ironic.conf.sample $IRONIC_CONF_FILE
163 iniset $IRONIC_CONF_FILE DEFAULT debug True
164 inicomment $IRONIC_CONF_FILE DEFAULT log_file
165 iniset $IRONIC_CONF_FILE DEFAULT sql_connection `database_connection_url ironic`
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400166 iniset $IRONIC_CONF_FILE DEFAULT state_path $IRONIC_STATE_PATH
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300167 iniset $IRONIC_CONF_FILE DEFAULT use_syslog $SYSLOG
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300168 # Configure Ironic conductor, if it was enabled.
169 if is_service_enabled ir-cond; then
170 configure_ironic_conductor
171 fi
172
173 # Configure Ironic API, if it was enabled.
174 if is_service_enabled ir-api; then
175 configure_ironic_api
176 fi
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400177
Adam Gandelmanab592932014-06-06 15:12:32 -0700178 # Format logging
179 if [ "$LOG_COLOR" == "True" ] && [ "$SYSLOG" == "False" ]; then
180 setup_colorized_logging $IRONIC_CONF_FILE DEFAULT
181 fi
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300182}
183
184# configure_ironic_api() - Is used by configure_ironic(). Performs
185# API specific configuration.
Ian Wienandaee18c72014-02-21 15:35:08 +1100186function configure_ironic_api {
Roman Prykhodchenkoc48c3122013-10-01 17:19:05 +0300187 iniset $IRONIC_CONF_FILE DEFAULT auth_strategy keystone
188 iniset $IRONIC_CONF_FILE DEFAULT policy_file $IRONIC_POLICY_JSON
Jamie Lennox3561d7f2014-05-21 17:18:43 +1000189 iniset $IRONIC_CONF_FILE keystone_authtoken identity_uri $KEYSTONE_AUTH_URI
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +1000190 iniset $IRONIC_CONF_FILE keystone_authtoken cafile $KEYSTONE_SSL_CA
Jamie Lennox3561d7f2014-05-21 17:18:43 +1000191 iniset $IRONIC_CONF_FILE keystone_authtoken auth_uri $KEYSTONE_SERVICE_URI
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300192 iniset $IRONIC_CONF_FILE keystone_authtoken admin_tenant_name $SERVICE_TENANT_NAME
193 iniset $IRONIC_CONF_FILE keystone_authtoken admin_user ironic
194 iniset $IRONIC_CONF_FILE keystone_authtoken admin_password $SERVICE_PASSWORD
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300195 iniset_rpc_backend ironic $IRONIC_CONF_FILE DEFAULT
196 iniset $IRONIC_CONF_FILE keystone_authtoken signing_dir $IRONIC_AUTH_CACHE_DIR/api
197
198 cp -p $IRONIC_DIR/etc/ironic/policy.json $IRONIC_POLICY_JSON
199}
200
201# configure_ironic_conductor() - Is used by configure_ironic().
202# Sets conductor specific settings.
Ian Wienandaee18c72014-02-21 15:35:08 +1100203function configure_ironic_conductor {
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300204 cp $IRONIC_DIR/etc/ironic/rootwrap.conf $IRONIC_ROOTWRAP_CONF
Lucas Alvares Gomes279295c2014-01-14 11:37:51 +0000205 cp -r $IRONIC_DIR/etc/ironic/rootwrap.d $IRONIC_CONF_DIR
Dean Troyerb52caa32014-07-25 13:04:13 -0500206 local ironic_rootwrap=$(get_rootwrap_location ironic)
207 local rootwrap_isudoer_cmd="$ironic_rootwrap $IRONIC_CONF_DIR/rootwrap.conf *"
Adam Gandelman3f2a7b72014-04-14 16:14:33 -0700208
209 # Set up the rootwrap sudoers for ironic
Dean Troyerb52caa32014-07-25 13:04:13 -0500210 local tempfile=`mktemp`
211 echo "$STACK_USER ALL=(root) NOPASSWD: $rootwrap_isudoer_cmd" >$tempfile
212 chmod 0440 $tempfile
213 sudo chown root:root $tempfile
214 sudo mv $tempfile /etc/sudoers.d/ironic-rootwrap
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300215
Alexander Gordeeva67cb1a2014-03-04 18:38:33 +0400216 iniset $IRONIC_CONF_FILE DEFAULT rootwrap_config $IRONIC_ROOTWRAP_CONF
Devananda van der Veen83eeed02014-04-11 10:08:41 -0700217 iniset $IRONIC_CONF_FILE DEFAULT enabled_drivers $IRONIC_ENABLED_DRIVERS
Adam Gandelmand3011982014-03-24 13:55:34 -0700218 iniset $IRONIC_CONF_FILE conductor api_url http://$HOST_IP:6385
219 iniset $IRONIC_CONF_FILE pxe tftp_server $HOST_IP
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400220 iniset $IRONIC_CONF_FILE pxe tftp_root $IRONIC_TFTPBOOT_DIR
221 iniset $IRONIC_CONF_FILE pxe tftp_master_path $IRONIC_TFTPBOOT_DIR/master_images
Adam Gandelman8af6fae2014-04-11 17:06:14 -0700222 if [[ "$IRONIC_VM_LOG_CONSOLE" == "True" ]] ; then
223 iniset $IRONIC_CONF_FILE pxe pxe_append_params "nofb nomodeset vga=normal console=ttyS0"
224 fi
Jim Rollenhagena6a45462014-08-05 18:08:29 +0000225 if [[ "$IRONIC_DEPLOY_DRIVER" == "agent_ssh" ]] ; then
226 if [[ "$SWIFT_ENABLE_TEMPURLS" == "True" ]] ; then
227 iniset $IRONIC_CONF_FILE glance swift_temp_url_key $SWIFT_TEMPURL_KEY
228 else
229 die $LINENO "SWIFT_ENABLE_TEMPURLS must be True to use agent_ssh driver in Ironic."
230 fi
231 iniset $IRONIC_CONF_FILE glance swift_endpoint_url http://${HOST_IP}:8080
232 iniset $IRONIC_CONF_FILE glance swift_api_version v1
233 iniset $IRONIC_CONF_FILE glance swift_account AUTH_${SERVICE_TENANT}
234 iniset $IRONIC_CONF_FILE glance swift_container glance
235 iniset $IRONIC_CONF_FILE glance swift_temp_url_duration 3600
236 iniset $IRONIC_CONF_FILE agent heartbeat_timeout 30
237 if [[ "$IRONIC_VM_LOG_CONSOLE" == "True" ]] ; then
238 iniset $IRONIC_CONF_FILE agent agent_pxe_append_params "nofb nomodeset vga=normal console=ttyS0"
239 fi
240 fi
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300241}
242
243# create_ironic_cache_dir() - Part of the init_ironic() process
Ian Wienandaee18c72014-02-21 15:35:08 +1100244function create_ironic_cache_dir {
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300245 # Create cache dir
246 sudo mkdir -p $IRONIC_AUTH_CACHE_DIR/api
247 sudo chown $STACK_USER $IRONIC_AUTH_CACHE_DIR/api
248 rm -f $IRONIC_AUTH_CACHE_DIR/api/*
249 sudo mkdir -p $IRONIC_AUTH_CACHE_DIR/registry
250 sudo chown $STACK_USER $IRONIC_AUTH_CACHE_DIR/registry
251 rm -f $IRONIC_AUTH_CACHE_DIR/registry/*
252}
253
254# create_ironic_accounts() - Set up common required ironic accounts
255
256# Tenant User Roles
257# ------------------------------------------------------------------
258# service ironic admin # if enabled
Ian Wienandaee18c72014-02-21 15:35:08 +1100259function create_ironic_accounts {
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300260
Dean Troyerb52caa32014-07-25 13:04:13 -0500261 local service_tenant=$(openstack project list | awk "/ $SERVICE_TENANT_NAME / { print \$2 }")
262 local admin_role=$(openstack role list | awk "/ admin / { print \$2 }")
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300263
264 # Ironic
265 if [[ "$ENABLED_SERVICES" =~ "ir-api" ]]; then
Bartosz Górski0abde392014-02-28 14:15:19 +0100266 # Get ironic user if exists
267
Dean Troyerb52caa32014-07-25 13:04:13 -0500268 local ironic_user=$(get_or_create_user "ironic" \
269 "$SERVICE_PASSWORD" $service_tenant)
270 get_or_add_user_role $admin_role $ironic_user $service_tenant
Bartosz Górski0abde392014-02-28 14:15:19 +0100271
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300272 if [[ "$KEYSTONE_CATALOG_BACKEND" = 'sql' ]]; then
Bartosz Górski0abde392014-02-28 14:15:19 +0100273
Dean Troyerb52caa32014-07-25 13:04:13 -0500274 local ironic_service=$(get_or_create_service "ironic" \
Bartosz Górski0abde392014-02-28 14:15:19 +0100275 "baremetal" "Ironic baremetal provisioning service")
Dean Troyerb52caa32014-07-25 13:04:13 -0500276 get_or_create_endpoint $ironic_service \
Bartosz Górski0abde392014-02-28 14:15:19 +0100277 "$REGION_NAME" \
278 "$IRONIC_SERVICE_PROTOCOL://$IRONIC_HOSTPORT" \
279 "$IRONIC_SERVICE_PROTOCOL://$IRONIC_HOSTPORT" \
280 "$IRONIC_SERVICE_PROTOCOL://$IRONIC_HOSTPORT"
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300281 fi
282 fi
283}
284
285
286# init_ironic() - Initialize databases, etc.
Ian Wienandaee18c72014-02-21 15:35:08 +1100287function init_ironic {
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300288 # (Re)create ironic database
289 recreate_database ironic utf8
290
291 # Migrate ironic database
Dmitry Tantsur0c6a6542014-06-02 20:19:33 +0200292 $IRONIC_BIN_DIR/ironic-dbsync --config-file=$IRONIC_CONF_FILE
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300293
294 create_ironic_cache_dir
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300295}
296
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300297# start_ironic() - Start running processes, including screen
Ian Wienandaee18c72014-02-21 15:35:08 +1100298function start_ironic {
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300299 # Start Ironic API server, if enabled.
300 if is_service_enabled ir-api; then
301 start_ironic_api
302 fi
303
304 # Start Ironic conductor, if enabled.
305 if is_service_enabled ir-cond; then
306 start_ironic_conductor
307 fi
308}
309
310# start_ironic_api() - Used by start_ironic().
311# Starts Ironic API server.
Ian Wienandaee18c72014-02-21 15:35:08 +1100312function start_ironic_api {
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300313 screen_it ir-api "cd $IRONIC_DIR; $IRONIC_BIN_DIR/ironic-api --config-file=$IRONIC_CONF_FILE"
314 echo "Waiting for ir-api ($IRONIC_HOSTPORT) to start..."
JUN JIE NAN0aa85342013-09-13 15:47:09 +0800315 if ! timeout $SERVICE_TIMEOUT sh -c "while ! wget --no-proxy -q -O- http://$IRONIC_HOSTPORT; do sleep 1; done"; then
Sean Dague101b4242013-10-22 08:47:11 -0400316 die $LINENO "ir-api did not start"
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300317 fi
318}
319
320# start_ironic_conductor() - Used by start_ironic().
321# Starts Ironic conductor.
Ian Wienandaee18c72014-02-21 15:35:08 +1100322function start_ironic_conductor {
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300323 screen_it ir-cond "cd $IRONIC_DIR; $IRONIC_BIN_DIR/ironic-conductor --config-file=$IRONIC_CONF_FILE"
324 # TODO(romcheg): Find a way to check whether the conductor has started.
325}
326
327# stop_ironic() - Stop running processes
Ian Wienandaee18c72014-02-21 15:35:08 +1100328function stop_ironic {
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300329 # Kill the Ironic screen windows
330 screen -S $SCREEN_NAME -p ir-api -X kill
331 screen -S $SCREEN_NAME -p ir-cond -X kill
332}
333
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400334function is_ironic {
335 if ( is_service_enabled ir-cond && is_service_enabled ir-api ); then
336 return 0
337 fi
338 return 1
339}
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300340
Adam Gandelman6d271482014-08-05 18:12:29 -0700341function create_ovs_taps {
342 local ironic_net_id=$(neutron net-list | grep private | get_field 1)
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400343
Adam Gandelman6d271482014-08-05 18:12:29 -0700344 # Work around: No netns exists on host until a Neutron port is created. We
345 # need to create one in Neutron to know what netns to tap into prior to the
346 # first node booting.
347 local port_id=$(neutron port-create private | grep " id " | get_field 2)
348
349 # intentional sleep to make sure the tag has been set to port
350 sleep 10
351
352 local tapdev=$(sudo ip netns exec qdhcp-${ironic_net_id} ip link list | grep tap | cut -d':' -f2 | cut -b2-)
353 local tag_id=$(sudo ovs-vsctl show |grep ${tapdev} -A1 -m1 | grep tag | cut -d':' -f2 | cut -b2-)
354
355 # make sure veth pair is not existing, otherwise delete its links
356 sudo ip link show ovs-tap1 && sudo ip link delete ovs-tap1
357 sudo ip link show brbm-tap1 && sudo ip link delete brbm-tap1
358 # create veth pair for future interconnection between br-int and brbm
359 sudo ip link add brbm-tap1 type veth peer name ovs-tap1
360 sudo ip link set dev brbm-tap1 up
361 sudo ip link set dev ovs-tap1 up
362
363 sudo ovs-vsctl -- --if-exists del-port ovs-tap1 -- add-port br-int ovs-tap1 tag=$tag_id
364 sudo ovs-vsctl -- --if-exists del-port brbm-tap1 -- add-port $IRONIC_VM_NETWORK_BRIDGE brbm-tap1
365
366 # Remove the port needed only for workaround.
367 neutron port-delete $port_id
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400368}
369
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400370function create_bridge_and_vms {
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400371 # Call libvirt setup scripts in a new shell to ensure any new group membership
372 sudo su $STACK_USER -c "$IRONIC_SCRIPTS_DIR/setup-network"
Adam Gandelman8af6fae2014-04-11 17:06:14 -0700373 if [[ "$IRONIC_VM_LOG_CONSOLE" == "True" ]] ; then
Dean Troyerb52caa32014-07-25 13:04:13 -0500374 local log_arg="$IRONIC_VM_LOG_DIR"
Adam Gandelman8af6fae2014-04-11 17:06:14 -0700375 else
Dean Troyerb52caa32014-07-25 13:04:13 -0500376 local log_arg=""
Adam Gandelman8af6fae2014-04-11 17:06:14 -0700377 fi
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400378 sudo su $STACK_USER -c "$IRONIC_SCRIPTS_DIR/create-nodes \
379 $IRONIC_VM_SPECS_CPU $IRONIC_VM_SPECS_RAM $IRONIC_VM_SPECS_DISK \
Adam Gandelman8af6fae2014-04-11 17:06:14 -0700380 amd64 $IRONIC_VM_COUNT $IRONIC_VM_NETWORK_BRIDGE $IRONIC_VM_EMULATOR \
Dean Troyerb52caa32014-07-25 13:04:13 -0500381 $log_arg" >> $IRONIC_VM_MACS_CSV_FILE
Adam Gandelman6d271482014-08-05 18:12:29 -0700382 create_ovs_taps
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400383}
384
385function enroll_vms {
Dean Troyerb52caa32014-07-25 13:04:13 -0500386 local chassis_id=$(ironic chassis-create -d "ironic test chassis" | grep " uuid " | get_field 2)
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400387 local idx=0
Jim Rollenhagena6a45462014-08-05 18:08:29 +0000388
389 if [[ "$IRONIC_DEPLOY_DRIVER" == "pxe_ssh" ]] ; then
390 local _IRONIC_DEPLOY_KERNEL_KEY=pxe_deploy_kernel
391 local _IRONIC_DEPLOY_RAMDISK_KEY=pxe_deploy_ramdisk
392 elif [[ "$IRONIC_DEPLOY_DRIVER" == "agent_ssh" ]] ; then
393 local _IRONIC_DEPLOY_KERNEL_KEY=deploy_kernel
394 local _IRONIC_DEPLOY_RAMDISK_KEY=deploy_ramdisk
395 fi
396
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400397 while read MAC; do
Jim Rollenhagena6a45462014-08-05 18:08:29 +0000398
399 local node_id=$(ironic node-create --chassis_uuid $chassis_id \
400 --driver $IRONIC_DEPLOY_DRIVER \
401 -i $_IRONIC_DEPLOY_KERNEL_KEY=$IRONIC_DEPLOY_KERNEL_ID \
402 -i $_IRONIC_DEPLOY_RAMDISK_KEY=$IRONIC_DEPLOY_RAMDISK_ID \
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400403 -i ssh_virt_type=$IRONIC_SSH_VIRT_TYPE \
404 -i ssh_address=$IRONIC_VM_SSH_ADDRESS \
405 -i ssh_port=$IRONIC_VM_SSH_PORT \
406 -i ssh_username=$IRONIC_SSH_USERNAME \
407 -i ssh_key_filename=$IRONIC_SSH_KEY_DIR/$IRONIC_SSH_KEY_FILENAME \
408 -p cpus=$IRONIC_VM_SPECS_CPU \
409 -p memory_mb=$IRONIC_VM_SPECS_RAM \
410 -p local_gb=$IRONIC_VM_SPECS_DISK \
411 -p cpu_arch=x86_64 \
412 | grep " uuid " | get_field 2)
413
Dean Troyerb52caa32014-07-25 13:04:13 -0500414 ironic port-create --address $MAC --node_uuid $node_id
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400415
416 idx=$((idx+1))
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400417 done < $IRONIC_VM_MACS_CSV_FILE
418
419 # create the nova flavor
Dean Troyerb52caa32014-07-25 13:04:13 -0500420 local adjusted_disk=$(($IRONIC_VM_SPECS_DISK - $IRONIC_VM_EPHEMERAL_DISK))
David Shrewsbury3e4612b2014-05-01 11:38:21 -0400421 nova flavor-create --ephemeral $IRONIC_VM_EPHEMERAL_DISK baremetal auto $IRONIC_VM_SPECS_RAM $adjusted_disk $IRONIC_VM_SPECS_CPU
Lucas Alvares Gomescd7cfef2014-05-26 14:58:37 +0100422 # TODO(lucasagomes): Remove the 'baremetal:deploy_kernel_id'
423 # and 'baremetal:deploy_ramdisk_id' parameters
424 # from the flavor after the completion of
425 # https://blueprints.launchpad.net/ironic/+spec/add-node-instance-info
Alexander Gordeevf177f722014-03-14 18:44:48 +0400426 nova flavor-key baremetal set "cpu_arch"="x86_64" "baremetal:deploy_kernel_id"="$IRONIC_DEPLOY_KERNEL_ID" "baremetal:deploy_ramdisk_id"="$IRONIC_DEPLOY_RAMDISK_ID"
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400427}
428
Adam Gandelmanc1f0db22014-04-14 13:21:22 -0700429function configure_iptables {
430 # enable tftp natting for allowing connections to HOST_IP's tftp server
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400431 sudo modprobe nf_conntrack_tftp
432 sudo modprobe nf_nat_tftp
Adam Gandelmanc1f0db22014-04-14 13:21:22 -0700433 # nodes boot from TFTP and callback to the API server listening on $HOST_IP
434 sudo iptables -I INPUT -d $HOST_IP -p udp --dport 69 -j ACCEPT || true
435 sudo iptables -I INPUT -d $HOST_IP -p tcp --dport 6385 -j ACCEPT || true
436}
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400437
Adam Gandelmanc1f0db22014-04-14 13:21:22 -0700438function configure_tftpd {
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400439 if is_ubuntu; then
Dean Troyerb52caa32014-07-25 13:04:13 -0500440 local pxebin=/usr/lib/syslinux/pxelinux.0
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400441 elif is_fedora; then
Dean Troyerb52caa32014-07-25 13:04:13 -0500442 local pxebin=/usr/share/syslinux/pxelinux.0
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400443 fi
Dean Troyerb52caa32014-07-25 13:04:13 -0500444 if [ ! -f $pxebin ]; then
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400445 die $LINENO "pxelinux.0 (from SYSLINUX) not found."
446 fi
447
448 # stop tftpd and setup serving via xinetd
449 stop_service tftpd-hpa || true
450 [ -f /etc/init/tftpd-hpa.conf ] && echo "manual" | sudo tee /etc/init/tftpd-hpa.override
451 sudo cp $IRONIC_TEMPLATES_DIR/tftpd-xinetd.template /etc/xinetd.d/tftp
452 sudo sed -e "s|%TFTPBOOT_DIR%|$IRONIC_TFTPBOOT_DIR|g" -i /etc/xinetd.d/tftp
453
454 # setup tftp file mapping to satisfy requests at the root (booting) and
455 # /tftpboot/ sub-dir (as per deploy-ironic elements)
456 echo "r ^([^/]) $IRONIC_TFTPBOOT_DIR/\1" >$IRONIC_TFTPBOOT_DIR/map-file
457 echo "r ^(/tftpboot/) $IRONIC_TFTPBOOT_DIR/\2" >>$IRONIC_TFTPBOOT_DIR/map-file
458
459 chmod -R 0755 $IRONIC_TFTPBOOT_DIR
460 restart_service xinetd
461}
462
463function configure_ironic_ssh_keypair {
464 # Generating ssh key pair for stack user
465 if [[ ! -d $IRONIC_SSH_KEY_DIR ]]; then
466 mkdir -p $IRONIC_SSH_KEY_DIR
467 fi
468 if [[ ! -d $HOME/.ssh ]]; then
469 mkdir -p $HOME/.ssh
470 chmod 700 $HOME/.ssh
471 fi
472 echo -e 'n\n' | ssh-keygen -q -t rsa -P '' -f $IRONIC_KEY_FILE
473 cat $IRONIC_KEY_FILE.pub | tee -a $IRONIC_AUTHORIZED_KEYS_FILE
474}
475
476function ironic_ssh_check {
Dean Troyerb52caa32014-07-25 13:04:13 -0500477 local key_file=$1
478 local floating_ip=$2
479 local port=$3
480 local default_instance_user=$4
481 local active_timeout=$5
482 if ! timeout $active_timeout sh -c "while ! ssh -p $port -o StrictHostKeyChecking=no -i $key_file ${default_instance_user}@$floating_ip echo success; do sleep 1; done"; then
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400483 die $LINENO "server didn't become ssh-able!"
484 fi
485}
486
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400487function configure_ironic_auxiliary {
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400488 configure_ironic_ssh_keypair
Adam Gandelman86765102014-04-14 11:57:13 -0700489 ironic_ssh_check $IRONIC_SSH_KEY_DIR/$IRONIC_SSH_KEY_FILENAME $IRONIC_VM_SSH_ADDRESS $IRONIC_VM_SSH_PORT $IRONIC_SSH_USERNAME 10
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400490}
491
Alexander Gordeevf177f722014-03-14 18:44:48 +0400492# build deploy kernel+ramdisk, then upload them to glance
Dean Troyerb52caa32014-07-25 13:04:13 -0500493# this function sets ``IRONIC_DEPLOY_KERNEL_ID``, ``IRONIC_DEPLOY_RAMDISK_ID``
Alexander Gordeevf177f722014-03-14 18:44:48 +0400494function upload_baremetal_ironic_deploy {
Dean Troyerb52caa32014-07-25 13:04:13 -0500495 declare -g IRONIC_DEPLOY_KERNEL_ID IRONIC_DEPLOY_RAMDISK_ID
Adam Gandelman6d271482014-08-05 18:12:29 -0700496 echo_summary "Creating and uploading baremetal images for ironic"
497
498 # install diskimage-builder
Steve Bakercbfb3ae2014-05-05 16:06:47 +1200499 if [[ $(type -P ramdisk-image-create) == "" ]]; then
500 pip_install diskimage_builder
501 fi
Alexander Gordeevf177f722014-03-14 18:44:48 +0400502
503 if [ -z "$IRONIC_DEPLOY_KERNEL" -o -z "$IRONIC_DEPLOY_RAMDISK" ]; then
Dean Troyerb52caa32014-07-25 13:04:13 -0500504 local IRONIC_DEPLOY_KERNEL_PATH=$TOP_DIR/files/ir-deploy.kernel
505 local IRONIC_DEPLOY_RAMDISK_PATH=$TOP_DIR/files/ir-deploy.initramfs
Alexander Gordeevf177f722014-03-14 18:44:48 +0400506 else
Dean Troyerb52caa32014-07-25 13:04:13 -0500507 local IRONIC_DEPLOY_KERNEL_PATH=$IRONIC_DEPLOY_KERNEL
508 local IRONIC_DEPLOY_RAMDISK_PATH=$IRONIC_DEPLOY_RAMDISK
Alexander Gordeevf177f722014-03-14 18:44:48 +0400509 fi
510
511 if [ ! -e "$IRONIC_DEPLOY_RAMDISK_PATH" -o ! -e "$IRONIC_DEPLOY_KERNEL_PATH" ]; then
512 # files don't exist, need to build them
513 if [ "$IRONIC_BUILD_DEPLOY_RAMDISK" = "True" ]; then
514 # we can build them only if we're not offline
515 if [ "$OFFLINE" != "True" ]; then
Jim Rollenhagena6a45462014-08-05 18:08:29 +0000516 if [ "$IRONIC_DEPLOY_RAMDISK" == "agent_ssh" ]; then
517 die $LINENO "Ironic-python-agent build is not yet supported"
518 else
Steve Bakercbfb3ae2014-05-05 16:06:47 +1200519 ramdisk-image-create $IRONIC_DEPLOY_FLAVOR \
Jim Rollenhagena6a45462014-08-05 18:08:29 +0000520 -o $TOP_DIR/files/ir-deploy
521 fi
Alexander Gordeevf177f722014-03-14 18:44:48 +0400522 else
523 die $LINENO "Deploy kernel+ramdisk files don't exist and cannot be build in OFFLINE mode"
524 fi
525 else
Jim Rollenhagena6a45462014-08-05 18:08:29 +0000526 if [ "$IRONIC_DEPLOY_DRIVER" == "agent_ssh" ]; then
527 # download the agent image tarball
528 wget "$IRONIC_AGENT_TARBALL" -O ironic_agent_tarball.tar.gz
529 tar zxfv ironic_agent_tarball.tar.gz
530 mv UPLOAD/coreos_production_pxe.vmlinuz $IRONIC_DEPLOY_KERNEL_PATH
531 mv UPLOAD/coreos_production_pxe_image-oem.cpio.gz $IRONIC_DEPLOY_RAMDISK_PATH
532 rm -rf UPLOAD
533 rm ironic_agent_tarball.tar.gz
534 else
535 die $LINENO "Deploy kernel+ramdisk files don't exist and their building was disabled explicitly by IRONIC_BUILD_DEPLOY_RAMDISK"
536 fi
Alexander Gordeevf177f722014-03-14 18:44:48 +0400537 fi
538 fi
539
Adam Gandelman6d271482014-08-05 18:12:29 -0700540 local token=$(keystone token-get | grep ' id ' | get_field 2)
541 die_if_not_set $LINENO token "Keystone fail to get token"
542
Alexander Gordeevf177f722014-03-14 18:44:48 +0400543 # load them into glance
Steve Martinelli8d3ac2d2014-08-02 23:47:15 -0400544 IRONIC_DEPLOY_KERNEL_ID=$(openstack \
545 --os-token $token \
546 --os-url http://$GLANCE_HOSTPORT \
547 image create \
548 $(basename $IRONIC_DEPLOY_KERNEL_PATH) \
549 --public --disk-format=aki \
Jim Rollenhagen722284f2014-08-15 18:04:02 +0000550 --container-format=aki \
Alexander Gordeevf177f722014-03-14 18:44:48 +0400551 < $IRONIC_DEPLOY_KERNEL_PATH | grep ' id ' | get_field 2)
Steve Martinelli8d3ac2d2014-08-02 23:47:15 -0400552 IRONIC_DEPLOY_RAMDISK_ID=$(openstack \
553 --os-token $token \
554 --os-url http://$GLANCE_HOSTPORT \
555 image create \
556 $(basename $IRONIC_DEPLOY_RAMDISK_PATH) \
557 --public --disk-format=ari \
Jim Rollenhagen722284f2014-08-15 18:04:02 +0000558 --container-format=ari \
Alexander Gordeevf177f722014-03-14 18:44:48 +0400559 < $IRONIC_DEPLOY_RAMDISK_PATH | grep ' id ' | get_field 2)
560}
561
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400562function prepare_baremetal_basic_ops {
Adam Gandelman6d271482014-08-05 18:12:29 -0700563 upload_baremetal_ironic_deploy
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400564 create_bridge_and_vms
565 enroll_vms
566 configure_tftpd
Adam Gandelmanc1f0db22014-04-14 13:21:22 -0700567 configure_iptables
Adam Gandelman6d271482014-08-05 18:12:29 -0700568 configure_ironic_auxiliary
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400569}
570
571function cleanup_baremetal_basic_ops {
572 rm -f $IRONIC_VM_MACS_CSV_FILE
573 if [ -f $IRONIC_KEY_FILE ]; then
Dean Troyerb52caa32014-07-25 13:04:13 -0500574 local key=$(cat $IRONIC_KEY_FILE.pub)
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400575 # remove public key from authorized_keys
Dean Troyerb52caa32014-07-25 13:04:13 -0500576 grep -v "$key" $IRONIC_AUTHORIZED_KEYS_FILE > temp && mv temp $IRONIC_AUTHORIZED_KEYS_FILE
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400577 chmod 0600 $IRONIC_AUTHORIZED_KEYS_FILE
578 fi
579 sudo rm -rf $IRONIC_DATA_DIR $IRONIC_STATE_PATH
580 sudo su $STACK_USER -c "$IRONIC_SCRIPTS_DIR/cleanup-nodes $IRONIC_VM_COUNT $IRONIC_VM_NETWORK_BRIDGE"
581 sudo rm -rf /etc/xinetd.d/tftp /etc/init/tftpd-hpa.override
582 restart_service xinetd
Adam Gandelmanc1f0db22014-04-14 13:21:22 -0700583 sudo iptables -D INPUT -d $HOST_IP -p udp --dport 69 -j ACCEPT || true
584 sudo iptables -D INPUT -d $HOST_IP -p tcp --dport 6385 -j ACCEPT || true
585 sudo rmmod nf_conntrack_tftp || true
586 sudo rmmod nf_nat_tftp || true
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400587}
588
589# Restore xtrace + pipefail
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300590$XTRACE
Alexander Gordeev06fb29c2014-01-31 18:02:07 +0400591$PIPEFAIL
Roman Prykhodchenkoce696b62013-08-09 10:40:45 +0300592
Adam Spiers6a5aa7c2013-10-24 11:27:02 +0100593# Tell emacs to use shell-script-mode
594## Local variables:
595## mode: shell-script
596## End: