blob: 94665121d91c8cccff6e182bd36b97e6f3918095 [file] [log] [blame]
Jesse Andrewsba23cc72011-09-11 03:22:13 -07001#!/usr/bin/env bash
2
Jesse Andrews0e7e8972011-10-02 16:36:54 -04003# **stack.sh** is an opinionated openstack developer installation.
4
Tres Henryca85b792011-10-28 14:00:21 -07005# This script installs and configures *nova*, *glance*, *horizon* and *keystone*
Jesse Andrewsba23cc72011-09-11 03:22:13 -07006
Vishvananda Ishaya9b353672011-10-20 10:07:10 -07007# This script allows you to specify configuration options of what git
Jesse Andrews5372f432011-10-03 01:08:24 -04008# repositories to use, enabled services, network configuration and various
9# passwords. If you are crafty you can run the script on multiple nodes using
10# shared settings for common resources (mysql, rabbitmq) and build a multi-node
11# developer install.
Jesse Andrews782b9912011-10-02 16:53:21 -040012
Jesse Andrewsc4b3aab2011-09-15 22:54:52 -070013# To keep this script simple we assume you are running on an **Ubuntu 11.04
Jesse Andrews24859062011-09-15 21:28:23 -070014# Natty** machine. It should work in a VM or physical server. Additionally we
15# put the list of *apt* and *pip* dependencies and other configuration files in
16# this repo. So start by grabbing this script and the dependencies.
17
Jesse Andrews0e7e8972011-10-02 16:36:54 -040018# Learn more and get the most recent version at http://devstack.org
Jesse Andrews6edd17f2011-09-15 22:19:42 -070019
20# Sanity Check
21# ============
22
Jesse Andrewsc4b3aab2011-09-15 22:54:52 -070023# Warn users who aren't on natty, but allow them to override check and attempt
Jesse Andrews6edd17f2011-09-15 22:19:42 -070024# installation with ``FORCE=yes ./stack``
Vishvananda Ishayaeec092b2011-10-31 11:15:05 -070025if ! egrep -q 'natty|oneiric' /etc/lsb-release; then
Vishvananda Ishayad80e3802011-10-31 13:31:19 -070026 echo "WARNING: this script has only been tested on natty and oneiric"
Jesse Andrews6edd17f2011-09-15 22:19:42 -070027 if [[ "$FORCE" != "yes" ]]; then
28 echo "If you wish to run this script anyway run with FORCE=yes"
29 exit 1
30 fi
31fi
32
Jesse Andrews51fb22e2011-10-19 09:24:17 -070033# Keep track of the current devstack directory.
34TOP_DIR=$(cd $(dirname "$0") && pwd)
35
root40a37002011-09-20 18:06:14 +000036# stack.sh keeps the list of **apt** and **pip** dependencies in external
Jesse Andrews4d282182011-09-16 11:27:43 -070037# files, along with config templates and other useful files. You can find these
root40a37002011-09-20 18:06:14 +000038# in the ``files`` directory (next to this script). We will reference this
Jesse Andrewsbf3868d2011-09-16 11:31:16 -070039# directory using the ``FILES`` variable in this script.
Jesse Andrews51fb22e2011-10-19 09:24:17 -070040FILES=$TOP_DIR/files
Jesse Andrewsbf3868d2011-09-16 11:31:16 -070041if [ ! -d $FILES ]; then
42 echo "ERROR: missing devstack/files - did you grab more than just stack.sh?"
Jesse Andrews6edd17f2011-09-15 22:19:42 -070043 exit 1
44fi
45
Anthony Young6015c822011-10-12 07:17:11 +000046
Scott Moserf9da5082011-10-07 21:28:00 -040047
48# Settings
49# ========
50
51# This script is customizable through setting environment variables. If you
52# want to override a setting you can either::
53#
Anthony Young7a549f42011-10-12 07:13:13 +000054# export MYSQL_PASSWORD=anothersecret
Scott Moserf9da5082011-10-07 21:28:00 -040055# ./stack.sh
56#
Anthony Young7a549f42011-10-12 07:13:13 +000057# You can also pass options on a single line ``MYSQL_PASSWORD=simple ./stack.sh``
Scott Moserf9da5082011-10-07 21:28:00 -040058#
59# Additionally, you can put any local variables into a ``localrc`` file, like::
60#
Anthony Young7a549f42011-10-12 07:13:13 +000061# MYSQL_PASSWORD=anothersecret
Scott Moserf9da5082011-10-07 21:28:00 -040062# MYSQL_USER=hellaroot
63#
64# We try to have sensible defaults, so you should be able to run ``./stack.sh``
65# in most cases.
66#
67# We our settings from ``stackrc``. This file is distributed with devstack and
Vishvananda Ishaya9b353672011-10-20 10:07:10 -070068# contains locations for what repositories to use. If you want to use other
69# repositories and branches, you can add your own settings with another file
Scott Moserf9da5082011-10-07 21:28:00 -040070# called ``localrc``
71#
Vishvananda Ishaya9b353672011-10-20 10:07:10 -070072# If ``localrc`` exists, then ``stackrc`` will load those settings. This is
Scott Moserf9da5082011-10-07 21:28:00 -040073# useful for changing a branch or repostiory to test other versions. Also you
Anthony Young7a549f42011-10-12 07:13:13 +000074# can store your other settings like **MYSQL_PASSWORD** or **ADMIN_PASSWORD** instead
Scott Moserf9da5082011-10-07 21:28:00 -040075# of letting devstack generate random ones for you.
76source ./stackrc
77
Jesse Andrews6edd17f2011-09-15 22:19:42 -070078# Destination path for installation ``DEST``
Anthony Younge8fed482011-09-26 19:50:43 -070079DEST=${DEST:-/opt/stack}
Jesse Andrewsba23cc72011-09-11 03:22:13 -070080
James E. Blair5855a642011-10-26 15:44:27 -040081# Configure services to syslog instead of writing to individual log files
82SYSLOG=${SYSLOG:-False}
83
Todd Willey0a161452011-10-28 02:34:19 -040084# apt-get wrapper to just get arguments set correctly
85function apt_get() {
86 local sudo="sudo"
87 [ "$(id -u)" = "0" ] && sudo="env"
88 $sudo DEBIAN_FRONTEND=noninteractive apt-get \
89 --option "Dpkg::Options::=--force-confold" --assume-yes "$@"
90}
91
92
Tres Henryca85b792011-10-28 14:00:21 -070093# OpenStack is designed to be run as a regular user (Horizon will fail to run
Dean Troyer9122e7b2011-10-17 14:07:11 -050094# as root, since apache refused to startup serve content from root user). If
95# stack.sh is run as root, it automatically creates a stack user with
96# sudo privileges and runs as that user.
97
98if [[ $EUID -eq 0 ]]; then
James E. Blair92e81992011-10-11 09:26:29 -050099 ROOTSLEEP=${ROOTSLEEP:-10}
Dean Troyer9122e7b2011-10-17 14:07:11 -0500100 echo "You are running this script as root."
James E. Blair92e81992011-10-11 09:26:29 -0500101 echo "In $ROOTSLEEP seconds, we will create a user 'stack' and run as that user"
102 sleep $ROOTSLEEP
Dean Troyer9122e7b2011-10-17 14:07:11 -0500103
104 # since this script runs as a normal user, we need to give that user
105 # ability to run sudo
Scott Moseree1b4952011-10-20 13:09:11 -0400106 apt_get update
107 apt_get install sudo
Dean Troyer9122e7b2011-10-17 14:07:11 -0500108
109 if ! getent passwd stack >/dev/null; then
110 echo "Creating a user called stack"
111 useradd -U -G sudo -s /bin/bash -d $DEST -m stack
112 fi
113
114 echo "Giving stack user passwordless sudo priviledges"
115 # natty uec images sudoers does not have a '#includedir'. add one.
116 grep -q "^#includedir.*/etc/sudoers.d" /etc/sudoers ||
117 echo "#includedir /etc/sudoers.d" >> /etc/sudoers
118 ( umask 226 && echo "stack ALL=(ALL) NOPASSWD:ALL" \
119 > /etc/sudoers.d/50_stack_sh )
120
121 echo "Copying files to stack user"
122 STACK_DIR="$DEST/${PWD##*/}"
123 cp -r -f "$PWD" "$STACK_DIR"
124 chown -R stack "$STACK_DIR"
125 if [[ "$SHELL_AFTER_RUN" != "no" ]]; then
126 exec su -c "set -e; cd $STACK_DIR; bash stack.sh; bash" stack
127 else
128 exec su -c "set -e; cd $STACK_DIR; bash stack.sh" stack
129 fi
130 exit 1
Jesse Andrews509992f2011-10-27 11:18:09 -0700131else
Vishvananda Ishaya3e2b1742011-10-28 12:20:07 -0700132 # Our user needs passwordless priviledges for certain commands which nova
Jesse Andrews509992f2011-10-27 11:18:09 -0700133 # uses internally.
134 # Natty uec images sudoers does not have a '#includedir'. add one.
Jesse Andrews84a399b2011-10-27 11:20:38 -0700135 sudo grep -q "^#includedir.*/etc/sudoers.d" /etc/sudoers ||
136 echo "#includedir /etc/sudoers.d" | sudo tee -a /etc/sudoers
Todd Willey0a161452011-10-28 02:34:19 -0400137 TEMPFILE=`mktemp`
138 cat $FILES/sudo/nova > $TEMPFILE
139 sed -e "s,%USER%,$USER,g" -i $TEMPFILE
140 chmod 0440 $TEMPFILE
141 sudo chown root:root $TEMPFILE
Todd Willeyf8c46842011-10-28 12:27:20 -0400142 sudo mv $TEMPFILE /etc/sudoers.d/stack_sh_nova
Dean Troyer9122e7b2011-10-17 14:07:11 -0500143fi
144
Jesse Andrews6f3baaf2011-09-12 11:59:38 -0700145# Set the destination directories for openstack projects
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700146NOVA_DIR=$DEST/nova
Tres Henryca85b792011-10-28 14:00:21 -0700147HORIZON_DIR=$DEST/horizon
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700148GLANCE_DIR=$DEST/glance
149KEYSTONE_DIR=$DEST/keystone
150NOVACLIENT_DIR=$DEST/python-novaclient
Anthony Young2f140202011-09-26 13:02:40 -0700151OPENSTACKX_DIR=$DEST/openstackx
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700152NOVNC_DIR=$DEST/noVNC
Anthony Younga8416442011-09-13 20:07:44 -0700153
154# Specify which services to launch. These generally correspond to screen tabs
Tres Henryca85b792011-10-28 14:00:21 -0700155ENABLED_SERVICES=${ENABLED_SERVICES:-g-api,g-reg,key,n-api,n-cpu,n-net,n-sch,n-vnc,horizon,mysql,rabbit}
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700156
Anthony Youngb62b4ca2011-10-26 22:29:08 -0700157# Nova hypervisor configuration. We default to libvirt whth **kvm** but will
158# drop back to **qemu** if we are unable to load the kvm module. Stack.sh can
159# also install an **LXC** based system.
160VIRT_DRIVER=${VIRT_DRIVER:-libvirt}
Jesse Andrews782b9912011-10-02 16:53:21 -0400161LIBVIRT_TYPE=${LIBVIRT_TYPE:-kvm}
162
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400163# nova supports pluggable schedulers. ``SimpleScheduler`` should work in most
164# cases unless you are working on multi-zone mode.
Jesse Andrews782b9912011-10-02 16:53:21 -0400165SCHEDULER=${SCHEDULER:-nova.scheduler.simple.SimpleScheduler}
166
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700167# Use the first IP unless an explicit is set by ``HOST_IP`` environment variable
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700168if [ ! -n "$HOST_IP" ]; then
Dean Troyer2a15a7c2011-09-13 13:22:14 -0500169 HOST_IP=`LC_ALL=C /sbin/ifconfig | grep -m 1 'inet addr:'| cut -d: -f2 | awk '{print $1}'`
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700170fi
171
Anthony Young7a549f42011-10-12 07:13:13 +0000172# Generic helper to configure passwords
173function read_password {
174 set +o xtrace
175 var=$1; msg=$2
176 pw=${!var}
177
Anthony Youngb4db2252011-10-12 14:08:08 -0700178 localrc=$TOP_DIR/localrc
Anthony Young6015c822011-10-12 07:17:11 +0000179
Anthony Young7a549f42011-10-12 07:13:13 +0000180 # If the password is not defined yet, proceed to prompt user for a password.
181 if [ ! $pw ]; then
182 # If there is no localrc file, create one
Anthony Youngb4db2252011-10-12 14:08:08 -0700183 if [ ! -e $localrc ]; then
184 touch $localrc
Anthony Young7a549f42011-10-12 07:13:13 +0000185 fi
186
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700187 # Presumably if we got this far it can only be that our localrc is missing
Anthony Young7a549f42011-10-12 07:13:13 +0000188 # the required password. Prompt user for a password and write to localrc.
Anthony Youngb4db2252011-10-12 14:08:08 -0700189 echo ''
190 echo '################################################################################'
191 echo $msg
192 echo '################################################################################'
193 echo "This value will be written to your localrc file so you don't have to enter it again."
194 echo "It is probably best to avoid spaces and weird characters."
195 echo "If you leave this blank, a random default value will be used."
196 echo "Enter a password now:"
197 read $var
198 pw=${!var}
199 if [ ! $pw ]; then
200 pw=`openssl rand -hex 10`
Anthony Young7a549f42011-10-12 07:13:13 +0000201 fi
Anthony Youngb4db2252011-10-12 14:08:08 -0700202 eval "$var=$pw"
203 echo "$var=$pw" >> $localrc
Anthony Young7a549f42011-10-12 07:13:13 +0000204 fi
205 set -o xtrace
206}
207
208
Jesse Andrews782b9912011-10-02 16:53:21 -0400209# Nova Network Configuration
210# --------------------------
211
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700212# FIXME: more documentation about why these are important flags. Also
Jesse Andrews5372f432011-10-03 01:08:24 -0400213# we should make sure we use the same variable names as the flag names.
214
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700215PUBLIC_INTERFACE=${PUBLIC_INTERFACE:-eth0}
Jesse Andrewsb5197e42011-09-26 12:48:31 -0700216FIXED_RANGE=${FIXED_RANGE:-10.0.0.0/24}
217FIXED_NETWORK_SIZE=${FIXED_NETWORK_SIZE:-256}
Anthony Young0e74ecb2011-10-27 13:21:52 -0700218FLOATING_RANGE=${FLOATING_RANGE:-172.24.4.224/28}
Jesse Andrewsa72f7ad2011-09-25 13:41:22 -0700219NET_MAN=${NET_MAN:-FlatDHCPManager}
Anthony Younga8416442011-09-13 20:07:44 -0700220EC2_DMZ_HOST=${EC2_DMZ_HOST:-$HOST_IP}
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700221FLAT_NETWORK_BRIDGE=${FLAT_NETWORK_BRIDGE:-br100}
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400222VLAN_INTERFACE=${VLAN_INTERFACE:-$PUBLIC_INTERFACE}
223
224# Multi-host is a mode where each compute node runs its own network node. This
225# allows network operations and routing for a VM to occur on the server that is
226# running the VM - removing a SPOF and bandwidth bottleneck.
227MULTI_HOST=${MULTI_HOST:-0}
Jesse Andrews30f68e92011-09-13 00:59:54 -0700228
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700229# If you are using FlatDHCP on multiple hosts, set the ``FLAT_INTERFACE``
230# variable but make sure that the interface doesn't already have an
231# ip or you risk breaking things.
Jesse Andrews5372f432011-10-03 01:08:24 -0400232#
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700233# **DHCP Warning**: If your flat interface device uses DHCP, there will be a
234# hiccup while the network is moved from the flat interface to the flat network
235# bridge. This will happen when you launch your first instance. Upon launch
236# you will lose all connectivity to the node, and the vm launch will probably
Jesse Andrews5372f432011-10-03 01:08:24 -0400237# fail.
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700238#
239# If you are running on a single node and don't need to access the VMs from
Jesse Andrews5372f432011-10-03 01:08:24 -0400240# devices other than that node, you can set the flat interface to the same
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700241# value as ``FLAT_NETWORK_BRIDGE``. This will stop the network hiccup from
Jesse Andrews5372f432011-10-03 01:08:24 -0400242# occuring.
Jesse Andrews8ff5dbc2011-09-25 22:28:08 -0700243FLAT_INTERFACE=${FLAT_INTERFACE:-eth0}
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700244
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400245## FIXME(ja): should/can we check that FLAT_INTERFACE is sane?
246
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700247
Jesse Andrews782b9912011-10-02 16:53:21 -0400248# MySQL & RabbitMQ
249# ----------------
250
Tres Henryca85b792011-10-28 14:00:21 -0700251# We configure Nova, Horizon, Glance and Keystone to use MySQL as their
Jesse Andrews782b9912011-10-02 16:53:21 -0400252# database server. While they share a single server, each has their own
253# database and tables.
254
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700255# By default this script will install and configure MySQL. If you want to
Jesse Andrews782b9912011-10-02 16:53:21 -0400256# use an existing server, you can pass in the user/password/host parameters.
Anthony Young7a549f42011-10-12 07:13:13 +0000257# You will need to send the same ``MYSQL_PASSWORD`` to every host if you are doing
Jesse Andrews782b9912011-10-02 16:53:21 -0400258# a multi-node devstack installation.
Jesse Andrewsa50a3462011-10-19 15:38:10 -0700259MYSQL_HOST=${MYSQL_HOST:-localhost}
Anthony Young320412b2011-09-14 02:39:10 -0700260MYSQL_USER=${MYSQL_USER:-root}
Anthony Young7a549f42011-10-12 07:13:13 +0000261read_password MYSQL_PASSWORD "ENTER A PASSWORD TO USE FOR MYSQL."
Jesse Andrews782b9912011-10-02 16:53:21 -0400262
Anthony Younga8416442011-09-13 20:07:44 -0700263# don't specify /db in this string, so we can use it for multiple services
Anthony Young7a549f42011-10-12 07:13:13 +0000264BASE_SQL_CONN=${BASE_SQL_CONN:-mysql://$MYSQL_USER:$MYSQL_PASSWORD@$MYSQL_HOST}
Anthony Younga8416442011-09-13 20:07:44 -0700265
266# Rabbit connection info
267RABBIT_HOST=${RABBIT_HOST:-localhost}
Anthony Young7a549f42011-10-12 07:13:13 +0000268read_password RABBIT_PASSWORD "ENTER A PASSWORD TO USE FOR RABBIT."
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700269
Anthony Young377aae62011-09-14 09:55:31 -0700270# Glance connection info. Note the port must be specified.
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700271GLANCE_HOSTPORT=${GLANCE_HOSTPORT:-$HOST_IP:9292}
Anthony Young377aae62011-09-14 09:55:31 -0700272
Anthony Young7a549f42011-10-12 07:13:13 +0000273
Jesse Andrews782b9912011-10-02 16:53:21 -0400274# Keystone
275# --------
276
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700277# Service Token - Openstack components need to have an admin token
278# to validate user tokens.
Anthony Young7a549f42011-10-12 07:13:13 +0000279read_password SERVICE_TOKEN "ENTER A SERVICE_TOKEN TO USE FOR THE SERVICE ADMIN TOKEN."
Tres Henryca85b792011-10-28 14:00:21 -0700280# Horizon currently truncates usernames and passwords at 20 characters
281read_password ADMIN_PASSWORD "ENTER A PASSWORD TO USE FOR HORIZON AND KEYSTONE (20 CHARS OR LESS)."
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700282
Scott Moserf9da5082011-10-07 21:28:00 -0400283LOGFILE=${LOGFILE:-"$PWD/stack.sh.$$.log"}
284(
285# So that errors don't compound we exit on any errors so you see only the
286# first error that occured.
287trap failed ERR
288failed() {
289 local r=$?
290 set +o xtrace
291 [ -n "$LOGFILE" ] && echo "${0##*/} failed: full log in $LOGFILE"
292 exit $r
293}
294
295# Print the commands being run so that we can see the command that triggers
296# an error. It is also useful for following along as the install occurs.
297set -o xtrace
298
Jesse Andrewsfe95e0f2011-10-19 14:30:37 -0700299# create the destination directory and ensure it is writable by the user
Scott Moserf9da5082011-10-07 21:28:00 -0400300sudo mkdir -p $DEST
Jesse Andrewsfe95e0f2011-10-19 14:30:37 -0700301if [ ! -w $DEST ]; then
302 sudo chown `whoami` $DEST
303fi
Jesse Andrews53ed3872011-10-02 14:28:17 -0400304
Jesse Andrews30f68e92011-09-13 00:59:54 -0700305# Install Packages
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700306# ================
Jesse Andrews30f68e92011-09-13 00:59:54 -0700307#
308# Openstack uses a fair number of other projects.
309
Jesse Andrews2caf8fd2011-09-12 16:15:11 -0700310
Jesse Andrews75a37652011-09-12 17:09:08 -0700311# install apt requirements
Scott Moseree1b4952011-10-20 13:09:11 -0400312apt_get update
313apt_get install `cat $FILES/apts/* | cut -d\# -f1 | grep -Ev "mysql-server|rabbitmq-server"`
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700314
Jesse Andrews75a37652011-09-12 17:09:08 -0700315# install python requirements
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700316sudo PIP_DOWNLOAD_CACHE=/var/cache/pip pip install `cat $FILES/pips/*`
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700317
Jesse Andrewsd61db852011-09-16 14:13:17 -0700318# git clone only if directory doesn't exist already. Since ``DEST`` might not
319# be owned by the installation user, we create the directory and change the
320# ownership to the proper user.
Jesse Andrews61632572011-09-12 17:40:00 -0700321function git_clone {
Jesse Andrews1f273602011-10-17 13:20:40 -0700322
Jesse Andrews917c6652011-10-24 18:47:06 -0700323 GIT_REMOTE=$1
324 GIT_DEST=$2
325 GIT_BRANCH=$3
326
Jesse Andrewseeec0202011-10-24 18:42:11 -0700327 # do a full clone only if the directory doesn't exist
Jesse Andrews917c6652011-10-24 18:47:06 -0700328 if [ ! -d $GIT_DEST ]; then
329 git clone $GIT_REMOTE $GIT_DEST
Anthony Young2f140202011-09-26 13:02:40 -0700330 cd $2
Anthony Young303233e2011-09-26 13:12:57 -0700331 # This checkout syntax works for both branches and tags
Jesse Andrews917c6652011-10-24 18:47:06 -0700332 git checkout $GIT_BRANCH
Jesse Andrewseeec0202011-10-24 18:42:11 -0700333 elif [[ "$RECLONE" == "yes" ]]; then
334 # if it does exist then simulate what clone does if asked to RECLONE
Jesse Andrews480644b2011-10-24 18:52:58 -0700335 cd $GIT_DEST
Jesse Andrewseeec0202011-10-24 18:42:11 -0700336 # set the url to pull from and fetch
Jesse Andrews917c6652011-10-24 18:47:06 -0700337 git remote set-url origin $GIT_REMOTE
Jesse Andrewseeec0202011-10-24 18:42:11 -0700338 git fetch origin
Jesse Andrews9fef8442011-10-24 19:06:46 -0700339 # remove the existing ignored files (like pyc) as they cause breakage
340 # (due to the py files having older timestamps than our pyc, so python
341 # thinks the pyc files are correct using them)
342 sudo git clean -f -d
Jesse Andrews917c6652011-10-24 18:47:06 -0700343 git checkout -f origin/$GIT_BRANCH
Jesse Andrewse09a6e42011-10-24 19:09:52 -0700344 # a local branch might not exist
Jesse Andrews917c6652011-10-24 18:47:06 -0700345 git branch -D $GIT_BRANCH || true
346 git checkout -b $GIT_BRANCH
Jesse Andrews61632572011-09-12 17:40:00 -0700347 fi
348}
349
Jesse Andrews75a37652011-09-12 17:09:08 -0700350# compute service
Anthony Young2f140202011-09-26 13:02:40 -0700351git_clone $NOVA_REPO $NOVA_DIR $NOVA_BRANCH
Jesse Andrews75a37652011-09-12 17:09:08 -0700352# image catalog service
Anthony Young2f140202011-09-26 13:02:40 -0700353git_clone $GLANCE_REPO $GLANCE_DIR $GLANCE_BRANCH
Jesse Andrews75a37652011-09-12 17:09:08 -0700354# unified auth system (manages accounts/tokens)
Anthony Young2f140202011-09-26 13:02:40 -0700355git_clone $KEYSTONE_REPO $KEYSTONE_DIR $KEYSTONE_BRANCH
Jesse Andrews75a37652011-09-12 17:09:08 -0700356# a websockets/html5 or flash powered VNC console for vm instances
Anthony Young2f140202011-09-26 13:02:40 -0700357git_clone $NOVNC_REPO $NOVNC_DIR $NOVNC_BRANCH
Jesse Andrews75a37652011-09-12 17:09:08 -0700358# django powered web control panel for openstack
Tres Henryca85b792011-10-28 14:00:21 -0700359git_clone $HORIZON_REPO $HORIZON_DIR $HORIZON_BRANCH $HORIZON_TAG
360# python client library to nova that horizon (and others) use
Anthony Young2f140202011-09-26 13:02:40 -0700361git_clone $NOVACLIENT_REPO $NOVACLIENT_DIR $NOVACLIENT_BRANCH
root40a37002011-09-20 18:06:14 +0000362# openstackx is a collection of extensions to openstack.compute & nova
Jesse Andrews75a37652011-09-12 17:09:08 -0700363# that is *deprecated*. The code is being moved into python-novaclient & nova.
Anthony Young2f140202011-09-26 13:02:40 -0700364git_clone $OPENSTACKX_REPO $OPENSTACKX_DIR $OPENSTACKX_BRANCH
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700365
Jesse Andrews30f68e92011-09-13 00:59:54 -0700366# Initialization
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700367# ==============
Jesse Andrews30f68e92011-09-13 00:59:54 -0700368
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700369
Jesse Andrews75a37652011-09-12 17:09:08 -0700370# setup our checkouts so they are installed into python path
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700371# allowing ``import nova`` or ``import glance.client``
Jesse Andrews18d350d2011-09-12 21:46:12 -0700372cd $KEYSTONE_DIR; sudo python setup.py develop
373cd $GLANCE_DIR; sudo python setup.py develop
Jesse Andrewsaa8bb242011-10-16 12:24:11 -0700374cd $NOVACLIENT_DIR; sudo python setup.py develop
375cd $NOVA_DIR; sudo python setup.py develop
Anthony Young2f140202011-09-26 13:02:40 -0700376cd $OPENSTACKX_DIR; sudo python setup.py develop
Tres Henryca85b792011-10-28 14:00:21 -0700377cd $HORIZON_DIR/django-openstack; sudo python setup.py develop
378cd $HORIZON_DIR/openstack-dashboard; sudo python setup.py develop
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700379
Jesse Andrews6edd17f2011-09-15 22:19:42 -0700380# Add a useful screenrc. This isn't required to run openstack but is we do
root40a37002011-09-20 18:06:14 +0000381# it since we are going to run the services in screen for simple
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700382cp $FILES/screenrc ~/.screenrc
Jesse Andrews6f3baaf2011-09-12 11:59:38 -0700383
Anthony Younga09ae2f2011-09-15 23:11:29 -0700384# Rabbit
385# ---------
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400386
Anthony Younga09ae2f2011-09-15 23:11:29 -0700387if [[ "$ENABLED_SERVICES" =~ "rabbit" ]]; then
388 # Install and start rabbitmq-server
Scott Moser199d76e2011-10-20 12:41:40 -0400389 # the temp file is necessary due to LP: #878600
390 tfile=$(mktemp)
Scott Moseree1b4952011-10-20 13:09:11 -0400391 apt_get install rabbitmq-server > "$tfile" 2>&1
Scott Moser199d76e2011-10-20 12:41:40 -0400392 cat "$tfile"
393 rm -f "$tfile"
Jesse Andrews53ed3872011-10-02 14:28:17 -0400394 # change the rabbit password since the default is "guest"
395 sudo rabbitmqctl change_password guest $RABBIT_PASSWORD
Anthony Younga09ae2f2011-09-15 23:11:29 -0700396fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700397
Jesse Andrews24859062011-09-15 21:28:23 -0700398# Mysql
399# ---------
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400400
Jesse Andrews24859062011-09-15 21:28:23 -0700401if [[ "$ENABLED_SERVICES" =~ "mysql" ]]; then
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400402
403 # Seed configuration with mysql password so that apt-get install doesn't
404 # prompt us for a password upon install.
405 cat <<MYSQL_PRESEED | sudo debconf-set-selections
Anthony Young7a549f42011-10-12 07:13:13 +0000406mysql-server-5.1 mysql-server/root_password password $MYSQL_PASSWORD
407mysql-server-5.1 mysql-server/root_password_again password $MYSQL_PASSWORD
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400408mysql-server-5.1 mysql-server/start_on_boot boolean true
409MYSQL_PRESEED
410
Jesse Andrews2e536a32011-10-13 11:40:16 -0700411 # while ``.my.cnf`` is not needed for openstack to function, it is useful
412 # as it allows you to access the mysql databases via ``mysql nova`` instead
413 # of having to specify the username/password each time.
Chmouel Boudjnahd5d5b682011-10-13 18:45:42 +0100414 if [[ ! -e $HOME/.my.cnf ]]; then
415 cat <<EOF >$HOME/.my.cnf
416[client]
417user=$MYSQL_USER
Anthony Youngcf145b72011-10-13 15:07:36 -0700418password=$MYSQL_PASSWORD
Chmouel Boudjnahd5d5b682011-10-13 18:45:42 +0100419host=$MYSQL_HOST
420EOF
421 chmod 0600 $HOME/.my.cnf
422 fi
423
Anthony Younga09ae2f2011-09-15 23:11:29 -0700424 # Install and start mysql-server
Scott Moseree1b4952011-10-20 13:09:11 -0400425 apt_get install mysql-server
Jesse Andrews24859062011-09-15 21:28:23 -0700426 # Update the DB to give user ‘$MYSQL_USER’@’%’ full control of the all databases:
James E. Blair92e81992011-10-11 09:26:29 -0500427 sudo mysql -uroot -p$MYSQL_PASSWORD -h127.0.0.1 -e "GRANT ALL PRIVILEGES ON *.* TO '$MYSQL_USER'@'%' identified by '$MYSQL_PASSWORD';"
Jesse Andrews24859062011-09-15 21:28:23 -0700428
429 # Edit /etc/mysql/my.cnf to change ‘bind-address’ from localhost (127.0.0.1) to any (0.0.0.0) and restart the mysql service:
430 sudo sed -i 's/127.0.0.1/0.0.0.0/g' /etc/mysql/my.cnf
431 sudo service mysql restart
432fi
433
434
Tres Henryca85b792011-10-28 14:00:21 -0700435# Horizon
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700436# ---------
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400437
Tres Henryca85b792011-10-28 14:00:21 -0700438# Setup the django horizon application to serve via apache/wsgi
Jesse Andrews75a37652011-09-12 17:09:08 -0700439
Tres Henryca85b792011-10-28 14:00:21 -0700440if [[ "$ENABLED_SERVICES" =~ "horizon" ]]; then
Jesse Andrews24859062011-09-15 21:28:23 -0700441
Tres Henryca85b792011-10-28 14:00:21 -0700442 # Horizon currently imports quantum even if you aren't using it. Instead
root40a37002011-09-20 18:06:14 +0000443 # of installing quantum we can create a simple module that will pass the
Jesse Andrews24859062011-09-15 21:28:23 -0700444 # initial imports
Tres Henryca85b792011-10-28 14:00:21 -0700445 mkdir -p $HORIZON_DIR/openstack-dashboard/quantum || true
446 touch $HORIZON_DIR/openstack-dashboard/quantum/__init__.py
447 touch $HORIZON_DIR/openstack-dashboard/quantum/client.py
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400448
449
Tres Henryca85b792011-10-28 14:00:21 -0700450 # ``local_settings.py`` is used to override horizon default settings.
451 cp $FILES/horizon_settings.py $HORIZON_DIR/openstack-dashboard/local/local_settings.py
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700452
Tres Henryca85b792011-10-28 14:00:21 -0700453 # Initialize the horizon database (it stores sessions and notices shown to
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700454 # users). The user system is external (keystone).
Tres Henryca85b792011-10-28 14:00:21 -0700455 cd $HORIZON_DIR/openstack-dashboard
Anthony Young70dc5e02011-09-15 16:52:43 -0700456 dashboard/manage.py syncdb
Jesse Andrews75a37652011-09-12 17:09:08 -0700457
Anthony Young70dc5e02011-09-15 16:52:43 -0700458 # create an empty directory that apache uses as docroot
Tres Henryca85b792011-10-28 14:00:21 -0700459 sudo mkdir -p $HORIZON_DIR/.blackhole
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700460
Tres Henryca85b792011-10-28 14:00:21 -0700461 ## Configure apache's 000-default to run horizon
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700462 sudo cp $FILES/000-default.template /etc/apache2/sites-enabled/000-default
Jesse Andrews8f3e28c2011-09-27 18:26:27 -0700463 sudo sed -e "s,%USER%,$USER,g" -i /etc/apache2/sites-enabled/000-default
Tres Henryca85b792011-10-28 14:00:21 -0700464 sudo sed -e "s,%HORIZON_DIR%,$HORIZON_DIR,g" -i /etc/apache2/sites-enabled/000-default
Jesse Andrewsc96b0242011-10-28 10:34:26 -0700465 sudo service apache2 restart
Anthony Young70dc5e02011-09-15 16:52:43 -0700466fi
Jesse Andrews75a37652011-09-12 17:09:08 -0700467
Anthony Young3859f732011-09-14 02:33:43 -0700468
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700469# Glance
470# ------
471
Anthony Young70dc5e02011-09-15 16:52:43 -0700472if [[ "$ENABLED_SERVICES" =~ "g-reg" ]]; then
Anthony Youngc8357622011-09-20 10:38:06 -0700473 GLANCE_IMAGE_DIR=$DEST/glance/images
Anthony Younga531b772011-09-20 09:59:54 -0700474 # Delete existing images
475 rm -rf $GLANCE_IMAGE_DIR
Jesse Andrews75a37652011-09-12 17:09:08 -0700476
Anthony Younga531b772011-09-20 09:59:54 -0700477 # Use local glance directories
478 mkdir -p $GLANCE_IMAGE_DIR
479
Anthony Young70dc5e02011-09-15 16:52:43 -0700480 # (re)create glance database
Anthony Young7a549f42011-10-12 07:13:13 +0000481 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'DROP DATABASE IF EXISTS glance;'
482 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'CREATE DATABASE glance;'
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700483
484 # Copy over our glance configurations and update them
Anthony Young70dc5e02011-09-15 16:52:43 -0700485 GLANCE_CONF=$GLANCE_DIR/etc/glance-registry.conf
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700486 cp $FILES/glance-registry.conf $GLANCE_CONF
Anthony Young70dc5e02011-09-15 16:52:43 -0700487 sudo sed -e "s,%SQL_CONN%,$BASE_SQL_CONN/glance,g" -i $GLANCE_CONF
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700488 sudo sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $GLANCE_CONF
Anthony Younga531b772011-09-20 09:59:54 -0700489 sudo sed -e "s,%DEST%,$DEST,g" -i $GLANCE_CONF
James E. Blair5855a642011-10-26 15:44:27 -0400490 sudo sed -e "s,%SYSLOG%,$SYSLOG,g" -i $GLANCE_CONF
Anthony Youngf12d3ab2011-09-20 00:33:51 -0700491
492 GLANCE_API_CONF=$GLANCE_DIR/etc/glance-api.conf
493 cp $FILES/glance-api.conf $GLANCE_API_CONF
Anthony Younga531b772011-09-20 09:59:54 -0700494 sudo sed -e "s,%DEST%,$DEST,g" -i $GLANCE_API_CONF
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700495 sudo sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $GLANCE_API_CONF
James E. Blair5855a642011-10-26 15:44:27 -0400496 sudo sed -e "s,%SYSLOG%,$SYSLOG,g" -i $GLANCE_API_CONF
Anthony Young70dc5e02011-09-15 16:52:43 -0700497fi
Jesse Andrews75a37652011-09-12 17:09:08 -0700498
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700499# Nova
500# ----
501
Jesse Andrewsf70569e2011-10-24 21:56:25 -0700502if [[ "$ENABLED_SERVICES" =~ "n-api" ]]; then
503 # We are going to use the sample http middleware configuration from the
504 # keystone project to launch nova. This paste config adds the configuration
505 # required for nova to validate keystone tokens - except we need to switch
506 # the config to use our service token instead (instead of the invalid token
507 # 999888777666).
508 cp $KEYSTONE_DIR/examples/paste/nova-api-paste.ini $NOVA_DIR/bin
509 sed -e "s,999888777666,$SERVICE_TOKEN,g" -i $NOVA_DIR/bin/nova-api-paste.ini
510fi
Jesse Andrewsba23cc72011-09-11 03:22:13 -0700511
Anthony Young70dc5e02011-09-15 16:52:43 -0700512if [[ "$ENABLED_SERVICES" =~ "n-cpu" ]]; then
Jesse Andrewsdfcd2002011-09-13 13:17:22 -0700513
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400514 # Virtualization Configuration
515 # ~~~~~~~~~~~~~~~~~~~~~~~~~~~~
516
517 # attempt to load modules: network block device - used to manage qcow images
Anthony Young70dc5e02011-09-15 16:52:43 -0700518 sudo modprobe nbd || true
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400519
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700520 # Check for kvm (hardware based virtualization). If unable to initialize
521 # kvm, we drop back to the slower emulation mode (qemu). Note: many systems
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700522 # come with hardware virtualization disabled in BIOS.
Jesse Andrews2abbdd42011-10-03 22:48:30 -0400523 if [[ "$LIBVIRT_TYPE" == "kvm" ]]; then
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400524 sudo modprobe kvm || true
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400525 if [ ! -e /dev/kvm ]; then
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400526 echo "WARNING: Switching to QEMU"
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400527 LIBVIRT_TYPE=qemu
528 fi
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700529 fi
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400530
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400531 # Install and configure **LXC** if specified. LXC is another approach to
532 # splitting a system into many smaller parts. LXC uses cgroups and chroot
533 # to simulate multiple systems.
Jesse Andrews2abbdd42011-10-03 22:48:30 -0400534 if [[ "$LIBVIRT_TYPE" == "lxc" ]]; then
Scott Moseree1b4952011-10-20 13:09:11 -0400535 apt_get install lxc
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700536 # lxc uses cgroups (a kernel interface via virtual filesystem) configured
537 # and mounted to ``/cgroup``
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400538 sudo mkdir -p /cgroup
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400539 if ! grep -q cgroup /etc/fstab; then
Jesse Andrewsc315ebf2011-10-02 13:25:33 -0400540 echo none /cgroup cgroup cpuacct,memory,devices,cpu,freezer,blkio 0 0 | sudo tee -a /etc/fstab
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400541 fi
Jesse Andrewse4304232011-10-07 10:34:32 -0400542 if ! mount -n | grep -q cgroup; then
543 sudo mount /cgroup
544 fi
Jesse Andrewsc6d30422011-10-02 13:11:28 -0400545 fi
546
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700547 # The user that nova runs as needs to be member of libvirtd group otherwise
548 # nova-compute will be unable to use libvirt.
Anthony Young70dc5e02011-09-15 16:52:43 -0700549 sudo usermod -a -G libvirtd `whoami`
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700550 # libvirt detects various settings on startup, as we potentially changed
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700551 # the system configuration (modules, filesystems), we need to restart
552 # libvirt to detect those changes.
Anthony Young70dc5e02011-09-15 16:52:43 -0700553 sudo /etc/init.d/libvirt-bin restart
554
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400555
556 # Instance Storage
557 # ~~~~~~~~~~~~~~~~
558
559 # Nova stores each instance in its own directory.
Anthony Young70dc5e02011-09-15 16:52:43 -0700560 mkdir -p $NOVA_DIR/instances
561
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700562 # You can specify a different disk to be mounted and used for backing the
Vishvananda Ishaya9b353672011-10-20 10:07:10 -0700563 # virtual machines. If there is a partition labeled nova-instances we
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700564 # mount it (ext filesystems can be labeled via e2label).
Anthony Young70dc5e02011-09-15 16:52:43 -0700565 if [ -L /dev/disk/by-label/nova-instances ]; then
Jesse Andrews51fb22e2011-10-19 09:24:17 -0700566 if ! mount -n | grep -q nova-instances; then
567 sudo mount -L nova-instances $NOVA_DIR/instances
568 sudo chown -R `whoami` $NOVA_DIR/instances
569 fi
Anthony Young70dc5e02011-09-15 16:52:43 -0700570 fi
571
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400572 # Clean out the instances directory.
Jesse Andrews461bfdc2011-10-09 17:50:38 -0700573 sudo rm -rf $NOVA_DIR/instances/*
Jesse Andrewsdfcd2002011-09-13 13:17:22 -0700574fi
575
Anthony Young70dc5e02011-09-15 16:52:43 -0700576if [[ "$ENABLED_SERVICES" =~ "n-net" ]]; then
577 # delete traces of nova networks from prior runs
Anthony Young09fde812011-09-20 02:23:54 -0700578 sudo killall dnsmasq || true
Anthony Young70dc5e02011-09-15 16:52:43 -0700579 rm -rf $NOVA_DIR/networks
580 mkdir -p $NOVA_DIR/networks
581fi
Jesse Andrews75a37652011-09-12 17:09:08 -0700582
Anthony Youngacff87a2011-10-20 10:12:58 -0700583# Volume Service
584# --------------
585
586if [[ "$ENABLED_SERVICES" =~ "n-vol" ]]; then
587 #
588 # Configure a default volume group called 'nova-volumes' for the nova-volume
589 # service if it does not yet exist. If you don't wish to use a file backed
590 # volume group, create your own volume group called 'nova-volumes' before
591 # invoking stack.sh.
592 #
593 # By default, the backing file is 2G in size, and is stored in /opt/stack.
594 #
Anthony Youngacff87a2011-10-20 10:12:58 -0700595 if ! sudo vgdisplay | grep -q nova-volumes; then
Anthony Youngb22263a2011-10-20 10:26:30 -0700596 VOLUME_BACKING_FILE=${VOLUME_BACKING_FILE:-/opt/stack/nova-volumes-backing-file}
597 VOLUME_BACKING_FILE_SIZE=${VOLUME_BACKING_FILE_SIZE:-2052M}
Anthony Youngacff87a2011-10-20 10:12:58 -0700598 truncate -s $VOLUME_BACKING_FILE_SIZE $VOLUME_BACKING_FILE
599 DEV=`sudo losetup -f --show $VOLUME_BACKING_FILE`
600 sudo vgcreate nova-volumes $DEV
601 fi
602
603 # Configure iscsitarget
604 sudo sed 's/ISCSITARGET_ENABLE=false/ISCSITARGET_ENABLE=true/' -i /etc/default/iscsitarget
605 sudo /etc/init.d/iscsitarget restart
606fi
607
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700608function add_nova_flag {
609 echo "$1" >> $NOVA_DIR/bin/nova.conf
610}
611
612# (re)create nova.conf
613rm -f $NOVA_DIR/bin/nova.conf
614add_nova_flag "--verbose"
615add_nova_flag "--nodaemon"
Vishvananda Ishaya293c2ef2011-10-27 12:55:29 -0700616add_nova_flag "--allow_admin_api"
Jesse Andrews8ff5dbc2011-09-25 22:28:08 -0700617add_nova_flag "--scheduler_driver=$SCHEDULER"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700618add_nova_flag "--dhcpbridge_flagfile=$NOVA_DIR/bin/nova.conf"
619add_nova_flag "--network_manager=nova.network.manager.$NET_MAN"
Yun Mao9720eb82011-10-29 23:30:10 -0400620add_nova_flag "--fixed_range=$FIXED_RANGE"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700621add_nova_flag "--my_ip=$HOST_IP"
Anthony Youngb1bdd5e2011-09-20 09:39:50 -0700622add_nova_flag "--public_interface=$PUBLIC_INTERFACE"
623add_nova_flag "--vlan_interface=$VLAN_INTERFACE"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700624add_nova_flag "--sql_connection=$BASE_SQL_CONN/nova"
625add_nova_flag "--libvirt_type=$LIBVIRT_TYPE"
Anthony Young2f140202011-09-26 13:02:40 -0700626add_nova_flag "--osapi_extensions_path=$OPENSTACKX_DIR/extensions"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700627add_nova_flag "--vncproxy_url=http://$HOST_IP:6080"
628add_nova_flag "--vncproxy_wwwroot=$NOVNC_DIR/"
Jesse Andrews42dc9a72011-10-24 22:03:11 -0700629add_nova_flag "--api_paste_config=$NOVA_DIR/bin/nova-api-paste.ini"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700630add_nova_flag "--image_service=nova.image.glance.GlanceImageService"
631add_nova_flag "--ec2_dmz_host=$EC2_DMZ_HOST"
632add_nova_flag "--rabbit_host=$RABBIT_HOST"
Jesse Andrews53ed3872011-10-02 14:28:17 -0400633add_nova_flag "--rabbit_password=$RABBIT_PASSWORD"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700634add_nova_flag "--glance_api_servers=$GLANCE_HOSTPORT"
Vishvananda Ishaya3e2b1742011-10-28 12:20:07 -0700635if [ -n "$INSTANCES_PATH" ]; then
636 add_nova_flag "--instances_path=$INSTANCES_PATH"
Vishvananda Ishayae72bdb02011-10-28 13:34:38 -0700637fi
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700638if [ -n "$MULTI_HOST" ]; then
639 add_nova_flag "--multi_host=$MULTI_HOST"
Anthony Young70506b12011-10-25 00:20:44 -0700640 add_nova_flag "--send_arp_for_ha=1"
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700641fi
James E. Blair5855a642011-10-26 15:44:27 -0400642if [ "$SYSLOG" != "False" ]; then
643 add_nova_flag "--use_syslog=1"
644fi
Jesse Andrewsd1879c52011-09-16 16:28:13 -0700645
Anthony Youngb62b4ca2011-10-26 22:29:08 -0700646# XenServer
647# ---------
648
649if [ "$VIRT_DRIVER" = 'xenserver' ]; then
650 read_password XENAPI_PASSWORD "ENTER A PASSWORD TO USE FOR XEN."
651 add_nova_flag "--connection_type=xenapi"
652 add_nova_flag "--xenapi_connection_url=http://169.254.0.1"
653 add_nova_flag "--xenapi_connection_username=root"
654 add_nova_flag "--xenapi_connection_password=$XENAPI_PASSWORD"
655 add_nova_flag "--flat_injected=False"
656 add_nova_flag "--flat_interface=eth1"
Anthony Youngea1290a2011-10-27 12:53:30 -0700657 add_nova_flag "--flat_network_bridge=xenbr1"
Anthony Youngb62b4ca2011-10-26 22:29:08 -0700658 add_nova_flag "--public_interface=eth3"
659else
660 add_nova_flag "--flat_network_bridge=$FLAT_NETWORK_BRIDGE"
661 if [ -n "$FLAT_INTERFACE" ]; then
662 add_nova_flag "--flat_interface=$FLAT_INTERFACE"
663 fi
664fi
665
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400666# Nova Database
667# ~~~~~~~~~~~~~
668
669# All nova components talk to a central database. We will need to do this step
670# only once for an entire cluster.
671
Anthony Younga0748002011-09-16 21:37:36 -0700672if [[ "$ENABLED_SERVICES" =~ "mysql" ]]; then
673 # (re)create nova database
Anthony Young7a549f42011-10-12 07:13:13 +0000674 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'DROP DATABASE IF EXISTS nova;'
675 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'CREATE DATABASE nova;'
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400676
677 # (re)create nova database
Anthony Younga0748002011-09-16 21:37:36 -0700678 $NOVA_DIR/bin/nova-manage db sync
679
680 # create a small network
termie197d53d2011-09-28 17:18:23 -0700681 $NOVA_DIR/bin/nova-manage network create private $FIXED_RANGE 1 $FIXED_NETWORK_SIZE
Anthony Younga0748002011-09-16 21:37:36 -0700682
683 # create some floating ips
684 $NOVA_DIR/bin/nova-manage floating create $FLOATING_RANGE
685fi
686
687
Jesse Andrewse8d9cd82011-09-13 15:16:26 -0700688# Keystone
689# --------
690
Anthony Young70dc5e02011-09-15 16:52:43 -0700691if [[ "$ENABLED_SERVICES" =~ "key" ]]; then
692 # (re)create keystone database
Anthony Young7a549f42011-10-12 07:13:13 +0000693 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'DROP DATABASE IF EXISTS keystone;'
694 mysql -u$MYSQL_USER -p$MYSQL_PASSWORD -e 'CREATE DATABASE keystone;'
Jesse Andrews75a37652011-09-12 17:09:08 -0700695
Anthony Young70dc5e02011-09-15 16:52:43 -0700696 # FIXME (anthony) keystone should use keystone.conf.example
697 KEYSTONE_CONF=$KEYSTONE_DIR/etc/keystone.conf
Jesse Andrewsbf3868d2011-09-16 11:31:16 -0700698 cp $FILES/keystone.conf $KEYSTONE_CONF
Anthony Young70dc5e02011-09-15 16:52:43 -0700699 sudo sed -e "s,%SQL_CONN%,$BASE_SQL_CONN/keystone,g" -i $KEYSTONE_CONF
Anthony Younge8fed482011-09-26 19:50:43 -0700700 sudo sed -e "s,%DEST%,$DEST,g" -i $KEYSTONE_CONF
Anthony Young3a093122011-09-13 19:01:45 +0000701
Jesse Andrewscbe98d52011-10-02 17:47:32 -0400702 # keystone_data.sh creates our admin user and our ``SERVICE_TOKEN``.
Anthony Youngec21d932011-09-16 16:05:55 -0700703 KEYSTONE_DATA=$KEYSTONE_DIR/bin/keystone_data.sh
704 cp $FILES/keystone_data.sh $KEYSTONE_DATA
705 sudo sed -e "s,%HOST_IP%,$HOST_IP,g" -i $KEYSTONE_DATA
Jesse Andrewsb96871e2011-10-02 09:02:46 -0700706 sudo sed -e "s,%SERVICE_TOKEN%,$SERVICE_TOKEN,g" -i $KEYSTONE_DATA
Jesse Andrews89358af2011-10-02 14:11:17 -0400707 sudo sed -e "s,%ADMIN_PASSWORD%,$ADMIN_PASSWORD,g" -i $KEYSTONE_DATA
Anthony Young70dc5e02011-09-15 16:52:43 -0700708 # initialize keystone with default users/endpoints
Anthony Youngec21d932011-09-16 16:05:55 -0700709 BIN_DIR=$KEYSTONE_DIR/bin bash $KEYSTONE_DATA
Anthony Young70dc5e02011-09-15 16:52:43 -0700710fi
Jesse Andrews75a37652011-09-12 17:09:08 -0700711
Jesse Andrews75a37652011-09-12 17:09:08 -0700712
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700713# Launch Services
714# ===============
Jesse Andrews30f68e92011-09-13 00:59:54 -0700715
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700716# nova api crashes if we start it with a regular screen command,
717# so send the start command by forcing text into the window.
Jesse Andrewsdfcd2002011-09-13 13:17:22 -0700718# Only run the services specified in ``ENABLED_SERVICES``
719
Jesse Andrews1f717602011-09-16 15:18:53 -0700720# our screen helper to launch a service in a hidden named screen
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700721function screen_it {
Jesse Andrews1f717602011-09-16 15:18:53 -0700722 NL=`echo -ne '\015'`
Anthony Young292e46d2011-09-13 11:28:56 -0700723 if [[ "$ENABLED_SERVICES" =~ "$1" ]]; then
724 screen -S nova -X screen -t $1
725 screen -S nova -p $1 -X stuff "$2$NL"
726 fi
Jesse Andrews1c1d1502011-09-12 19:29:56 -0700727}
728
Jesse Andrewsa16e5e92011-09-16 16:30:55 -0700729# create a new named screen to run processes in
730screen -d -m -S nova -t nova
731sleep 1
732
Jesse Andrews644b8e82011-10-02 17:50:41 -0400733# launch the glance registery service
Anthony Youngd000b222011-09-19 14:46:53 -0700734if [[ "$ENABLED_SERVICES" =~ "g-reg" ]]; then
735 screen_it g-reg "cd $GLANCE_DIR; bin/glance-registry --config-file=etc/glance-registry.conf"
736fi
737
Jesse Andrews644b8e82011-10-02 17:50:41 -0400738# launch the glance api and wait for it to answer before continuing
Anthony Youngd000b222011-09-19 14:46:53 -0700739if [[ "$ENABLED_SERVICES" =~ "g-api" ]]; then
740 screen_it g-api "cd $GLANCE_DIR; bin/glance-api --config-file=etc/glance-api.conf"
James E. Blair92e81992011-10-11 09:26:29 -0500741 echo "Waiting for g-api ($GLANCE_HOSTPORT) to start..."
James E. Blair7057ae92011-10-20 12:23:50 -0500742 if ! timeout 60 sh -c "while ! wget -q -O- http://$GLANCE_HOSTPORT; do sleep 1; done"; then
James E. Blair92e81992011-10-11 09:26:29 -0500743 echo "g-api did not start"
744 exit 1
745 fi
Anthony Youngd000b222011-09-19 14:46:53 -0700746fi
747
Jesse Andrews644b8e82011-10-02 17:50:41 -0400748# launch the keystone and wait for it to answer before continuing
Anthony Youngd000b222011-09-19 14:46:53 -0700749if [[ "$ENABLED_SERVICES" =~ "key" ]]; then
Anthony Youngf33796e2011-09-22 00:14:12 -0700750 screen_it key "cd $KEYSTONE_DIR && $KEYSTONE_DIR/bin/keystone --config-file $KEYSTONE_CONF -d"
James E. Blair92e81992011-10-11 09:26:29 -0500751 echo "Waiting for keystone to start..."
James E. Blair7057ae92011-10-20 12:23:50 -0500752 if ! timeout 60 sh -c "while ! wget -q -O- http://127.0.0.1:5000; do sleep 1; done"; then
James E. Blair92e81992011-10-11 09:26:29 -0500753 echo "keystone did not start"
754 exit 1
755 fi
Anthony Youngd000b222011-09-19 14:46:53 -0700756fi
757
Jesse Andrews644b8e82011-10-02 17:50:41 -0400758# launch the nova-api and wait for it to answer before continuing
Anthony Youngd000b222011-09-19 14:46:53 -0700759if [[ "$ENABLED_SERVICES" =~ "n-api" ]]; then
Anthony Young9bf3d762011-09-20 09:51:16 -0700760 screen_it n-api "cd $NOVA_DIR && $NOVA_DIR/bin/nova-api"
James E. Blair92e81992011-10-11 09:26:29 -0500761 echo "Waiting for nova-api to start..."
James E. Blair7057ae92011-10-20 12:23:50 -0500762 if ! timeout 60 sh -c "while ! wget -q -O- http://127.0.0.1:8774; do sleep 1; done"; then
James E. Blair92e81992011-10-11 09:26:29 -0500763 echo "nova-api did not start"
764 exit 1
765 fi
Anthony Youngd000b222011-09-19 14:46:53 -0700766fi
root40a37002011-09-20 18:06:14 +0000767# Launching nova-compute should be as simple as running ``nova-compute`` but
768# have to do a little more than that in our script. Since we add the group
Jesse Andrews1f717602011-09-16 15:18:53 -0700769# ``libvirtd`` to our user in this script, when nova-compute is run it is
root40a37002011-09-20 18:06:14 +0000770# within the context of our original shell (so our groups won't be updated).
Scott Moser8ab1ade2011-10-07 21:03:16 -0400771# Use 'sg' to execute nova-compute as a member of the libvirtd group.
772screen_it n-cpu "cd $NOVA_DIR && sg libvirtd $NOVA_DIR/bin/nova-compute"
Anthony Youngacff87a2011-10-20 10:12:58 -0700773screen_it n-vol "cd $NOVA_DIR && $NOVA_DIR/bin/nova-volume"
Anthony Young9bf3d762011-09-20 09:51:16 -0700774screen_it n-net "cd $NOVA_DIR && $NOVA_DIR/bin/nova-network"
775screen_it n-sch "cd $NOVA_DIR && $NOVA_DIR/bin/nova-scheduler"
Vishvananda Ishaya6abc5cd2011-10-31 10:15:33 -0700776screen_it n-vnc "cd $NOVNC_DIR && ./utils/nova-wsproxy.py --flagfile $NOVA_DIR/bin/nova.conf --web . 6080"
Tres Henryca85b792011-10-28 14:00:21 -0700777screen_it horizon "cd $HORIZON_DIR && sudo tail -f /var/log/apache2/error.log"
Jesse Andrews75a37652011-09-12 17:09:08 -0700778
Jesse Andrewsd74257d2011-09-13 01:24:50 -0700779# Install Images
780# ==============
Jesse Andrewse49b8bd2011-09-12 18:08:04 -0700781
Anthony Young0ab1d462011-10-13 23:03:23 -0700782# Upload an image to glance.
Jesse Andrews5372f432011-10-03 01:08:24 -0400783#
Anthony Young0ab1d462011-10-13 23:03:23 -0700784# The default image is a small ***TTY*** testing image, which lets you login
785# the username/password of root/password.
786#
787# TTY also uses cloud-init, supporting login via keypair and sending scripts as
788# userdata. See https://help.ubuntu.com/community/CloudInit for more on cloud-init
789#
Jesse Andrewsaab7eae2011-10-19 10:30:19 -0700790# Override ``IMAGE_URLS`` with a comma-seperated list of uec images.
791#
792# * **natty**: http://uec-images.ubuntu.com/natty/current/natty-server-cloudimg-amd64.tar.gz
793# * **oneiric**: http://uec-images.ubuntu.com/oneiric/current/oneiric-server-cloudimg-amd64.tar.gz
Jesse Andrews08e8b742011-10-02 23:42:56 -0400794
Jesse Andrews85d9be32011-10-03 00:01:28 -0400795if [[ "$ENABLED_SERVICES" =~ "g-reg" ]]; then
Anthony Young7a8989e2011-10-14 10:20:30 -0700796 # Create a directory for the downloaded image tarballs.
Jesse Andrews08e8b742011-10-02 23:42:56 -0400797 mkdir -p $FILES/images
798
Anthony Youngb62b4ca2011-10-26 22:29:08 -0700799 # Option to upload legacy ami-tty, which works with xenserver
800 if [ $UPLOAD_LEGACY_TTY ]; then
801 if [ ! -f $FILES/tty.tgz ]; then
802 wget -c http://images.ansolabs.com/tty.tgz -O $FILES/tty.tgz
803 fi
804
805 tar -zxf $FILES/tty.tgz -C $FILES/images
806 RVAL=`glance add -A $SERVICE_TOKEN name="tty-kernel" is_public=true container_format=aki disk_format=aki < $FILES/images/aki-tty/image`
807 KERNEL_ID=`echo $RVAL | cut -d":" -f2 | tr -d " "`
808 RVAL=`glance add -A $SERVICE_TOKEN name="tty-ramdisk" is_public=true container_format=ari disk_format=ari < $FILES/images/ari-tty/image`
809 RAMDISK_ID=`echo $RVAL | cut -d":" -f2 | tr -d " "`
810 glance add -A $SERVICE_TOKEN name="tty" is_public=true container_format=ami disk_format=ami kernel_id=$KERNEL_ID ramdisk_id=$RAMDISK_ID < $FILES/images/ami-tty/image
811 fi
812
Anthony Young120f4862011-10-14 09:31:09 -0700813 for image_url in ${IMAGE_URLS//,/ }; do
814 # Downloads the image (uec ami+aki style), then extracts it.
Jesse Andrewsac1831e2011-10-24 21:37:00 -0700815 IMAGE_FNAME=`basename "$image_url"`
Anthony Young216ad692011-10-25 00:10:21 -0700816 IMAGE_NAME=`basename "$IMAGE_FNAME" .tar.gz`
Anthony Young120f4862011-10-14 09:31:09 -0700817 if [ ! -f $FILES/$IMAGE_FNAME ]; then
818 wget -c $image_url -O $FILES/$IMAGE_FNAME
819 fi
Jesse Andrewse49b8bd2011-09-12 18:08:04 -0700820
Anthony Young120f4862011-10-14 09:31:09 -0700821 # Extract ami and aki files
822 tar -zxf $FILES/$IMAGE_FNAME -C $FILES/images
Anthony Young70dc5e02011-09-15 16:52:43 -0700823
Anthony Young120f4862011-10-14 09:31:09 -0700824 # Use glance client to add the kernel the root filesystem.
825 # We parse the results of the first upload to get the glance ID of the
826 # kernel for use when uploading the root filesystem.
827 RVAL=`glance add -A $SERVICE_TOKEN name="$IMAGE_NAME-kernel" is_public=true container_format=aki disk_format=aki < $FILES/images/$IMAGE_NAME-vmlinuz*`
828 KERNEL_ID=`echo $RVAL | cut -d":" -f2 | tr -d " "`
829 glance add -A $SERVICE_TOKEN name="$IMAGE_NAME" is_public=true container_format=ami disk_format=ami kernel_id=$KERNEL_ID < $FILES/images/$IMAGE_NAME.img
830 done
Jesse Andrewse49b8bd2011-09-12 18:08:04 -0700831fi
Jesse Andrews24859062011-09-15 21:28:23 -0700832
Scott Moserb94f4bf2011-10-07 14:51:07 +0000833# Fin
834# ===
835
836
837) 2>&1 | tee "${LOGFILE}"
838
839# Check that the left side of the above pipe succeeded
840for ret in "${PIPESTATUS[@]}"; do [ $ret -eq 0 ] || exit $ret; done
841
842(
Jesse Andrews24859062011-09-15 21:28:23 -0700843# Using the cloud
844# ===============
845
Tres Henryca85b792011-10-28 14:00:21 -0700846# If you installed the horizon on this server, then you should be able
root40a37002011-09-20 18:06:14 +0000847# to access the site using your browser.
Tres Henryca85b792011-10-28 14:00:21 -0700848if [[ "$ENABLED_SERVICES" =~ "horizon" ]]; then
849 echo "horizon is now available at http://$HOST_IP/"
Jesse Andrews24859062011-09-15 21:28:23 -0700850fi
851
852# If keystone is present, you can point nova cli to this server
853if [[ "$ENABLED_SERVICES" =~ "key" ]]; then
854 echo "keystone is serving at http://$HOST_IP:5000/v2.0/"
855 echo "examples on using novaclient command line is in exercise.sh"
Jesse Andrews89358af2011-10-02 14:11:17 -0400856 echo "the default users are: admin and demo"
857 echo "the password: $ADMIN_PASSWORD"
Jesse Andrews24859062011-09-15 21:28:23 -0700858fi
termie523c4052011-09-28 19:49:40 -0500859
Scott Moserc4e47ab2011-10-07 13:29:29 +0000860# indicate how long this took to run (bash maintained variable 'SECONDS')
Scott Moserb94f4bf2011-10-07 14:51:07 +0000861echo "stack.sh completed in $SECONDS seconds."
Scott Moser7c481182011-10-07 13:50:21 +0000862
Scott Moserb94f4bf2011-10-07 14:51:07 +0000863) | tee -a "$LOGFILE"