blob: d5733b3a8e420c63be749fc77f139d6be3c0d75e [file] [log] [blame]
Salvatore Orlandod6767d02012-08-31 04:55:20 -07001# lib/quantum
2# functions - funstions specific to quantum
3
Dean Troyer60e9c0a2012-12-06 15:52:52 -06004# Dependencies:
5# ``functions`` file
6# ``DEST`` must be defined
7
Akihiro MOTOKI66afb472012-12-21 15:34:13 +09008# ``stack.sh`` calls the entry points in this order:
9#
10# install_quantum
11# install_quantumclient
12# install_quantum_agent_packages
13# install_quantum_third_party
14# setup_quantum
15# setup_quantumclient
16# configure_quantum
17# init_quantum
18# configure_quantum_third_party
19# init_quantum_third_party
20# start_quantum_third_party
21# create_nova_conf_quantum
22# start_quantum_service_and_check
23# create_quantum_initial_network
24# setup_quantum_debug
25# start_quantum_agents
26#
27# ``unstack.sh`` calls the entry points in this order:
28#
29# stop_quantum
30
31# Functions in lib/quantum are classified into the following categories:
32#
33# - entry points (called from stack.sh or unstack.sh)
34# - internal functions
35# - quantum exercises
36# - 3rd party programs
37
Dean Troyer60e9c0a2012-12-06 15:52:52 -060038
39# Quantum Networking
40# ------------------
41
42# Make sure that quantum is enabled in ``ENABLED_SERVICES``. If you want
43# to run Quantum on this host, make sure that q-svc is also in
44# ``ENABLED_SERVICES``.
45#
46# If you're planning to use the Quantum openvswitch plugin, set
47# ``Q_PLUGIN`` to "openvswitch" and make sure the q-agt service is enabled
48# in ``ENABLED_SERVICES``. If you're planning to use the Quantum
49# linuxbridge plugin, set ``Q_PLUGIN`` to "linuxbridge" and make sure the
50# q-agt service is enabled in ``ENABLED_SERVICES``.
51#
52# See "Quantum Network Configuration" below for additional variables
53# that must be set in localrc for connectivity across hosts with
54# Quantum.
55#
56# With Quantum networking the NET_MAN variable is ignored.
57
58
Salvatore Orlandod6767d02012-08-31 04:55:20 -070059# Save trace setting
60XTRACE=$(set +o | grep xtrace)
61set +o xtrace
62
Dean Troyer60e9c0a2012-12-06 15:52:52 -060063
Akihiro MOTOKI66afb472012-12-21 15:34:13 +090064# Quantum Network Configuration
65# -----------------------------
Dean Troyer60e9c0a2012-12-06 15:52:52 -060066
67# Set up default directories
Nachi Ueno8bc21f62012-11-19 22:04:28 -080068QUANTUM_DIR=$DEST/quantum
Dean Troyer60e9c0a2012-12-06 15:52:52 -060069QUANTUMCLIENT_DIR=$DEST/python-quantumclient
Gary Kotton9343df12012-11-28 10:05:53 +000070QUANTUM_AUTH_CACHE_DIR=${QUANTUM_AUTH_CACHE_DIR:-/var/cache/quantum}
Nachi Ueno5db5bfa2012-10-29 11:25:29 -070071
Dean Troyer60e9c0a2012-12-06 15:52:52 -060072QUANTUM_CONF_DIR=/etc/quantum
73QUANTUM_CONF=$QUANTUM_CONF_DIR/quantum.conf
74export QUANTUM_TEST_CONFIG_FILE=${QUANTUM_TEST_CONFIG_FILE:-"$QUANTUM_CONF_DIR/debug.ini"}
75
76# Default Quantum Plugin
77Q_PLUGIN=${Q_PLUGIN:-openvswitch}
78# Default Quantum Port
79Q_PORT=${Q_PORT:-9696}
80# Default Quantum Host
81Q_HOST=${Q_HOST:-$HOST_IP}
Dean Troyer60e9c0a2012-12-06 15:52:52 -060082# Default admin username
83Q_ADMIN_USERNAME=${Q_ADMIN_USERNAME:-quantum}
84# Default auth strategy
85Q_AUTH_STRATEGY=${Q_AUTH_STRATEGY:-keystone}
86# Use namespace or not
87Q_USE_NAMESPACE=${Q_USE_NAMESPACE:-True}
88Q_USE_ROOTWRAP=${Q_USE_ROOTWRAP:-True}
89# Meta data IP
90Q_META_DATA_IP=${Q_META_DATA_IP:-$HOST_IP}
Akihiro MOTOKI66afb472012-12-21 15:34:13 +090091# Allow Overlapping IP among subnets
92Q_ALLOW_OVERLAPPING_IP=${Q_ALLOW_OVERLAPPING_IP:-False}
Dean Troyer60e9c0a2012-12-06 15:52:52 -060093# Use quantum-debug command
94Q_USE_DEBUG_COMMAND=${Q_USE_DEBUG_COMMAND:-False}
Maru Newby31c94ab2012-12-19 03:59:20 +000095# The name of the default q-l3 router
96Q_ROUTER_NAME=${Q_ROUTER_NAME:-router1}
Dean Troyer60e9c0a2012-12-06 15:52:52 -060097
Nachi Ueno8bc21f62012-11-19 22:04:28 -080098if is_service_enabled quantum; then
Dean Troyer60e9c0a2012-12-06 15:52:52 -060099 Q_RR_CONF_FILE=$QUANTUM_CONF_DIR/rootwrap.conf
Nachi Ueno8bc21f62012-11-19 22:04:28 -0800100 if [[ "$Q_USE_ROOTWRAP" == "False" ]]; then
101 Q_RR_COMMAND="sudo"
102 else
Nachi Uenoeb1aa3d2012-12-06 11:55:29 -0800103 QUANTUM_ROOTWRAP=$(get_rootwrap_location quantum)
104 Q_RR_COMMAND="sudo $QUANTUM_ROOTWRAP $Q_RR_CONF_FILE"
Nachi Ueno8bc21f62012-11-19 22:04:28 -0800105 fi
Nachi Ueno8bc21f62012-11-19 22:04:28 -0800106
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900107 # Provider Network Configurations
108 # --------------------------------
109
110 # The following variables control the Quantum openvswitch and
111 # linuxbridge plugins' allocation of tenant networks and
112 # availability of provider networks. If these are not configured
113 # in localrc, tenant networks will be local to the host (with no
114 # remote connectivity), and no physical resources will be
115 # available for the allocation of provider networks.
116
117 # To use GRE tunnels for tenant networks, set to True in
118 # localrc. GRE tunnels are only supported by the openvswitch
119 # plugin, and currently only on Ubuntu.
120 ENABLE_TENANT_TUNNELS=${ENABLE_TENANT_TUNNELS:-False}
121
122 # If using GRE tunnels for tenant networks, specify the range of
123 # tunnel IDs from which tenant networks are allocated. Can be
124 # overriden in localrc in necesssary.
125 TENANT_TUNNEL_RANGES=${TENANT_TUNNEL_RANGE:-1:1000}
126
127 # To use VLANs for tenant networks, set to True in localrc. VLANs
128 # are supported by the openvswitch and linuxbridge plugins, each
129 # requiring additional configuration described below.
130 ENABLE_TENANT_VLANS=${ENABLE_TENANT_VLANS:-False}
131
132 # If using VLANs for tenant networks, set in localrc to specify
133 # the range of VLAN VIDs from which tenant networks are
134 # allocated. An external network switch must be configured to
135 # trunk these VLANs between hosts for multi-host connectivity.
136 #
137 # Example: ``TENANT_VLAN_RANGE=1000:1999``
138 TENANT_VLAN_RANGE=${TENANT_VLAN_RANGE:-}
139
140 # If using VLANs for tenant networks, or if using flat or VLAN
141 # provider networks, set in localrc to the name of the physical
142 # network, and also configure OVS_PHYSICAL_BRIDGE for the
143 # openvswitch agent or LB_PHYSICAL_INTERFACE for the linuxbridge
144 # agent, as described below.
145 #
146 # Example: ``PHYSICAL_NETWORK=default``
147 PHYSICAL_NETWORK=${PHYSICAL_NETWORK:-}
148
149 # With the openvswitch plugin, if using VLANs for tenant networks,
150 # or if using flat or VLAN provider networks, set in localrc to
151 # the name of the OVS bridge to use for the physical network. The
152 # bridge will be created if it does not already exist, but a
153 # physical interface must be manually added to the bridge as a
154 # port for external connectivity.
155 #
156 # Example: ``OVS_PHYSICAL_BRIDGE=br-eth1``
157 OVS_PHYSICAL_BRIDGE=${OVS_PHYSICAL_BRIDGE:-}
158
159 # With the linuxbridge plugin, if using VLANs for tenant networks,
160 # or if using flat or VLAN provider networks, set in localrc to
161 # the name of the network interface to use for the physical
162 # network.
163 #
164 # Example: ``LB_PHYSICAL_INTERFACE=eth1``
165 LB_PHYSICAL_INTERFACE=${LB_PHYSICAL_INTERFACE:-}
166
167 # With the openvswitch plugin, set to True in localrc to enable
168 # provider GRE tunnels when ``ENABLE_TENANT_TUNNELS`` is False.
169 #
170 # Example: ``OVS_ENABLE_TUNNELING=True``
171 OVS_ENABLE_TUNNELING=${OVS_ENABLE_TUNNELING:-$ENABLE_TENANT_TUNNELS}
172fi
Dean Troyer60e9c0a2012-12-06 15:52:52 -0600173
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900174# Quantum plugin specific functions
175# ---------------------------------
176# Please refer to lib/quantum_plugins/README.md for details.
177source $TOP_DIR/lib/quantum_plugins/$Q_PLUGIN
178
Dean Troyer60e9c0a2012-12-06 15:52:52 -0600179# Entry Points
180# ------------
181
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900182# configure_quantum()
183# Set common config for all quantum server and agents.
184function configure_quantum() {
185 _configure_quantum_common
Akihiro MOTOKIb0f1c382013-01-13 17:58:12 +0900186 iniset_rpc_backend quantum $QUANTUM_CONF DEFAULT
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900187
188 if is_service_enabled q-svc; then
189 _configure_quantum_service
190 fi
191 if is_service_enabled q-agt; then
192 _configure_quantum_plugin_agent
193 fi
194 if is_service_enabled q-dhcp; then
195 _configure_quantum_dhcp_agent
196 fi
197 if is_service_enabled q-l3; then
198 _configure_quantum_l3_agent
199 fi
200 if is_service_enabled q-meta; then
201 _configure_quantum_metadata_agent
202 fi
203
204 _configure_quantum_debug_command
205
206 _cleanup_quantum
207}
208
209function create_nova_conf_quantum() {
Devananda van der Veen9bc47db2012-12-12 16:52:55 -0800210 iniset $NOVA_CONF DEFAULT network_api_class "nova.network.quantumv2.api.API"
211 iniset $NOVA_CONF DEFAULT quantum_admin_username "$Q_ADMIN_USERNAME"
212 iniset $NOVA_CONF DEFAULT quantum_admin_password "$SERVICE_PASSWORD"
213 iniset $NOVA_CONF DEFAULT quantum_admin_auth_url "$KEYSTONE_SERVICE_PROTOCOL://$KEYSTONE_SERVICE_HOST:$KEYSTONE_AUTH_PORT/v2.0"
214 iniset $NOVA_CONF DEFAULT quantum_auth_strategy "$Q_AUTH_STRATEGY"
215 iniset $NOVA_CONF DEFAULT quantum_admin_tenant_name "$SERVICE_TENANT_NAME"
216 iniset $NOVA_CONF DEFAULT quantum_url "http://$Q_HOST:$Q_PORT"
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900217
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900218 # set NOVA_VIF_DRIVER and optionally set options in nova_conf
219 quantum_plugin_create_nova_conf
220
Devananda van der Veen9bc47db2012-12-12 16:52:55 -0800221 iniset $NOVA_CONF DEFAULT libvirt_vif_driver "$NOVA_VIF_DRIVER"
222 iniset $NOVA_CONF DEFAULT linuxnet_interface_driver "$LINUXNET_VIF_DRIVER"
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900223 if is_service_enabled q-meta; then
Devananda van der Veen9bc47db2012-12-12 16:52:55 -0800224 iniset $NOVA_CONF DEFAULT service_quantum_metadata_proxy "True"
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900225 fi
226}
227
228# create_quantum_accounts() - Set up common required quantum accounts
229
230# Tenant User Roles
231# ------------------------------------------------------------------
232# service quantum admin # if enabled
233
234# Migrated from keystone_data.sh
235function create_quantum_accounts() {
236
237 SERVICE_TENANT=$(keystone tenant-list | awk "/ $SERVICE_TENANT_NAME / { print \$2 }")
238 ADMIN_ROLE=$(keystone role-list | awk "/ admin / { print \$2 }")
239
240 if [[ "$ENABLED_SERVICES" =~ "q-svc" ]]; then
241 QUANTUM_USER=$(keystone user-create \
242 --name=quantum \
243 --pass="$SERVICE_PASSWORD" \
244 --tenant_id $SERVICE_TENANT \
245 --email=quantum@example.com \
246 | grep " id " | get_field 2)
247 keystone user-role-add \
248 --tenant_id $SERVICE_TENANT \
249 --user_id $QUANTUM_USER \
250 --role_id $ADMIN_ROLE
251 if [[ "$KEYSTONE_CATALOG_BACKEND" = 'sql' ]]; then
252 QUANTUM_SERVICE=$(keystone service-create \
253 --name=quantum \
254 --type=network \
255 --description="Quantum Service" \
256 | grep " id " | get_field 2)
257 keystone endpoint-create \
258 --region RegionOne \
259 --service_id $QUANTUM_SERVICE \
260 --publicurl "http://$SERVICE_HOST:9696/" \
261 --adminurl "http://$SERVICE_HOST:9696/" \
262 --internalurl "http://$SERVICE_HOST:9696/"
263 fi
264 fi
265}
266
267function create_quantum_initial_network() {
268 TENANT_ID=$(keystone tenant-list | grep " demo " | get_field 1)
269
270 # Create a small network
271 # Since quantum command is executed in admin context at this point,
272 # ``--tenant_id`` needs to be specified.
273 NET_ID=$(quantum net-create --tenant_id $TENANT_ID "$PRIVATE_NETWORK_NAME" | grep ' id ' | get_field 2)
274 SUBNET_ID=$(quantum subnet-create --tenant_id $TENANT_ID --ip_version 4 --gateway $NETWORK_GATEWAY $NET_ID $FIXED_RANGE | grep ' id ' | get_field 2)
275
276 if is_service_enabled q-l3; then
277 # Create a router, and add the private subnet as one of its interfaces
Maru Newby31c94ab2012-12-19 03:59:20 +0000278 if [[ "$Q_USE_NAMESPACE" == "True" ]]; then
279 # If namespaces are enabled, create a tenant-owned router.
280 ROUTER_ID=$(quantum router-create --tenant_id $TENANT_ID $Q_ROUTER_NAME | grep ' id ' | get_field 2)
281 else
282 # If namespaces are disabled, the L3 agent can only target
283 # a single router, which should not be tenant-owned.
284 ROUTER_ID=$(quantum router-create $Q_ROUTER_NAME | grep ' id ' | get_field 2)
285 fi
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900286 quantum router-interface-add $ROUTER_ID $SUBNET_ID
287 # Create an external network, and a subnet. Configure the external network as router gw
288 EXT_NET_ID=$(quantum net-create "$PUBLIC_NETWORK_NAME" -- --router:external=True | grep ' id ' | get_field 2)
289 EXT_GW_IP=$(quantum subnet-create --ip_version 4 $EXT_NET_ID $FLOATING_RANGE -- --enable_dhcp=False | grep 'gateway_ip' | get_field 2)
290 quantum router-gateway-set $ROUTER_ID $EXT_NET_ID
291
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900292 if is_quantum_ovs_base_plugin && [[ "$Q_USE_NAMESPACE" = "True" ]]; then
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900293 CIDR_LEN=${FLOATING_RANGE#*/}
294 sudo ip addr add $EXT_GW_IP/$CIDR_LEN dev $PUBLIC_BRIDGE
295 sudo ip link set $PUBLIC_BRIDGE up
296 ROUTER_GW_IP=`quantum port-list -c fixed_ips -c device_owner | grep router_gateway | awk -F '"' '{ print $8; }'`
297 sudo route add -net $FIXED_RANGE gw $ROUTER_GW_IP
298 fi
299 if [[ "$Q_USE_NAMESPACE" == "False" ]]; then
300 # Explicitly set router id in l3 agent configuration
301 iniset $Q_L3_CONF_FILE DEFAULT router_id $ROUTER_ID
302 fi
303 fi
304}
305
306# init_quantum() - Initialize databases, etc.
307function init_quantum() {
308 :
309}
310
311# install_quantum() - Collect source and prepare
312function install_quantum() {
313 git_clone $QUANTUM_REPO $QUANTUM_DIR $QUANTUM_BRANCH
314}
315
316# install_quantumclient() - Collect source and prepare
317function install_quantumclient() {
318 git_clone $QUANTUMCLIENT_REPO $QUANTUMCLIENT_DIR $QUANTUMCLIENT_BRANCH
319}
320
321# install_quantum_agent_packages() - Collect source and prepare
322function install_quantum_agent_packages() {
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900323 # install packages that is specific to plugin agent
324 quantum_plugin_install_agent_packages
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900325}
326
327function setup_quantum() {
328 setup_develop $QUANTUM_DIR
329}
330
331function setup_quantumclient() {
332 setup_develop $QUANTUMCLIENT_DIR
333}
334
335# Start running processes, including screen
336function start_quantum_service_and_check() {
337 # Start the Quantum service
338 screen_it q-svc "cd $QUANTUM_DIR && python $QUANTUM_DIR/bin/quantum-server --config-file $QUANTUM_CONF --config-file /$Q_PLUGIN_CONF_FILE"
339 echo "Waiting for Quantum to start..."
340 if ! timeout $SERVICE_TIMEOUT sh -c "while ! http_proxy= wget -q -O- http://127.0.0.1:9696; do sleep 1; done"; then
341 echo "Quantum did not start"
342 exit 1
343 fi
344}
345
346# Start running processes, including screen
347function start_quantum_agents() {
348 # Start up the quantum agents if enabled
349 screen_it q-agt "python $AGENT_BINARY --config-file $QUANTUM_CONF --config-file /$Q_PLUGIN_CONF_FILE"
350 screen_it q-dhcp "python $AGENT_DHCP_BINARY --config-file $QUANTUM_CONF --config-file=$Q_DHCP_CONF_FILE"
351 screen_it q-meta "python $AGENT_META_BINARY --config-file $QUANTUM_CONF --config-file=$Q_META_CONF_FILE"
352 screen_it q-l3 "python $AGENT_L3_BINARY --config-file $QUANTUM_CONF --config-file=$Q_L3_CONF_FILE"
353}
354
355# stop_quantum() - Stop running processes (non-screen)
356function stop_quantum() {
357 if is_service_enabled q-dhcp; then
358 pid=$(ps aux | awk '/[d]nsmasq.+interface=(tap|ns-)/ { print $2 }')
359 [ ! -z "$pid" ] && sudo kill -9 $pid
360 fi
361}
362
363# _cleanup_quantum() - Remove residual data files, anything left over from previous
364# runs that a clean run would need to clean up
365function _cleanup_quantum() {
366 :
367}
368
369# _configure_quantum_common()
370# Set common config for all quantum server and agents.
371# This MUST be called before other _configure_quantum_* functions.
372function _configure_quantum_common() {
373 # Put config files in ``QUANTUM_CONF_DIR`` for everyone to find
374 if [[ ! -d $QUANTUM_CONF_DIR ]]; then
375 sudo mkdir -p $QUANTUM_CONF_DIR
376 fi
Attila Fazekas91b8d132013-01-06 22:40:09 +0100377 sudo chown $STACK_USER $QUANTUM_CONF_DIR
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900378
379 cp $QUANTUM_DIR/etc/quantum.conf $QUANTUM_CONF
380
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900381 # set plugin-specific variables
382 # Q_PLUGIN_CONF_PATH, Q_PLUGIN_CONF_FILENAME, Q_DB_NAME, Q_PLUGIN_CLASS
383 quantum_plugin_configure_common
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900384
385 if [[ $Q_PLUGIN_CONF_PATH == '' || $Q_PLUGIN_CONF_FILENAME == '' || $Q_PLUGIN_CLASS == '' ]]; then
386 echo "Quantum plugin not set.. exiting"
387 exit 1
388 fi
389
390 # If needed, move config file from ``$QUANTUM_DIR/etc/quantum`` to ``QUANTUM_CONF_DIR``
391 mkdir -p /$Q_PLUGIN_CONF_PATH
392 Q_PLUGIN_CONF_FILE=$Q_PLUGIN_CONF_PATH/$Q_PLUGIN_CONF_FILENAME
393 cp $QUANTUM_DIR/$Q_PLUGIN_CONF_FILE /$Q_PLUGIN_CONF_FILE
394
395 database_connection_url dburl $Q_DB_NAME
396 iniset /$Q_PLUGIN_CONF_FILE DATABASE sql_connection $dburl
397 unset dburl
398
399 _quantum_setup_rootwrap
400}
401
402function _configure_quantum_debug_command() {
403 if [[ "$Q_USE_DEBUG_COMMAND" != "True" ]]; then
404 return
405 fi
406
407 cp $QUANTUM_DIR/etc/l3_agent.ini $QUANTUM_TEST_CONFIG_FILE
408
409 iniset $QUANTUM_TEST_CONFIG_FILE DEFAULT verbose False
410 iniset $QUANTUM_TEST_CONFIG_FILE DEFAULT debug False
411 iniset $QUANTUM_TEST_CONFIG_FILE DEFAULT use_namespaces $Q_USE_NAMESPACE
412 iniset $QUANTUM_TEST_CONFIG_FILE DEFAULT root_helper "$Q_RR_COMMAND"
Gary Kottond9ca2b22013-01-30 13:52:43 +0000413 # Intermediate fix until Quantum patch lands and then line above will
414 # be cleaned.
415 iniset $QUANTUM_TEST_CONFIG_FILE AGENT root_helper "$Q_RR_COMMAND"
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900416
417 _quantum_setup_keystone $QUANTUM_TEST_CONFIG_FILE DEFAULT set_auth_url
418 _quantum_setup_interface_driver $QUANTUM_TEST_CONFIG_FILE
419
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900420 quantum_plugin_configure_debug_command
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900421}
422
423function _configure_quantum_dhcp_agent() {
424 AGENT_DHCP_BINARY="$QUANTUM_DIR/bin/quantum-dhcp-agent"
425 Q_DHCP_CONF_FILE=$QUANTUM_CONF_DIR/dhcp_agent.ini
426
427 cp $QUANTUM_DIR/etc/dhcp_agent.ini $Q_DHCP_CONF_FILE
428
429 iniset $Q_DHCP_CONF_FILE DEFAULT verbose True
430 iniset $Q_DHCP_CONF_FILE DEFAULT debug True
431 iniset $Q_DHCP_CONF_FILE DEFAULT use_namespaces $Q_USE_NAMESPACE
432 iniset $Q_DHCP_CONF_FILE DEFAULT state_path $DATA_DIR/quantum
433 iniset $Q_DHCP_CONF_FILE DEFAULT root_helper "$Q_RR_COMMAND"
434
435 _quantum_setup_keystone $Q_DHCP_CONF_FILE DEFAULT set_auth_url
436 _quantum_setup_interface_driver $Q_DHCP_CONF_FILE
437
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900438 quantum_plugin_configure_dhcp_agent
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900439}
440
441function _configure_quantum_l3_agent() {
442 AGENT_L3_BINARY="$QUANTUM_DIR/bin/quantum-l3-agent"
443 PUBLIC_BRIDGE=${PUBLIC_BRIDGE:-br-ex}
444 Q_L3_CONF_FILE=$QUANTUM_CONF_DIR/l3_agent.ini
445
446 cp $QUANTUM_DIR/etc/l3_agent.ini $Q_L3_CONF_FILE
447
448 iniset $Q_L3_CONF_FILE DEFAULT verbose True
449 iniset $Q_L3_CONF_FILE DEFAULT debug True
450 iniset $Q_L3_CONF_FILE DEFAULT use_namespaces $Q_USE_NAMESPACE
451 iniset $Q_L3_CONF_FILE DEFAULT state_path $DATA_DIR/quantum
452 iniset $Q_L3_CONF_FILE DEFAULT root_helper "$Q_RR_COMMAND"
453
454 _quantum_setup_keystone $Q_L3_CONF_FILE DEFAULT set_auth_url
455 _quantum_setup_interface_driver $Q_L3_CONF_FILE
456
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900457 quantum_plugin_configure_l3_agent
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900458}
459
460function _configure_quantum_metadata_agent() {
461 AGENT_META_BINARY="$QUANTUM_DIR/bin/quantum-metadata-agent"
462 Q_META_CONF_FILE=$QUANTUM_CONF_DIR/metadata_agent.ini
463
464 cp $QUANTUM_DIR/etc/metadata_agent.ini $Q_META_CONF_FILE
465
466 iniset $Q_META_CONF_FILE DEFAULT verbose True
467 iniset $Q_META_CONF_FILE DEFAULT debug True
468 iniset $Q_META_CONF_FILE DEFAULT state_path $DATA_DIR/quantum
469 iniset $Q_META_CONF_FILE DEFAULT nova_metadata_ip $Q_META_DATA_IP
470 iniset $Q_META_CONF_FILE DEFAULT root_helper "$Q_RR_COMMAND"
471
472 _quantum_setup_keystone $Q_META_CONF_FILE DEFAULT set_auth_url
473}
474
475# _configure_quantum_plugin_agent() - Set config files for quantum plugin agent
476# It is called when q-agt is enabled.
477function _configure_quantum_plugin_agent() {
Maru Newby2298ca42012-10-25 23:46:42 +0000478 # Specify the default root helper prior to agent configuration to
Gary Kotton98e18e92013-01-28 14:26:56 +0000479 # ensure that an agent's configuration can override the default
Maru Newby2298ca42012-10-25 23:46:42 +0000480 iniset /$Q_PLUGIN_CONF_FILE AGENT root_helper "$Q_RR_COMMAND"
481
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900482 # Configure agent for plugin
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900483 quantum_plugin_configure_plugin_agent
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900484}
485
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900486# _configure_quantum_service() - Set config files for quantum service
487# It is called when q-svc is enabled.
488function _configure_quantum_service() {
489 Q_API_PASTE_FILE=$QUANTUM_CONF_DIR/api-paste.ini
490 Q_POLICY_FILE=$QUANTUM_CONF_DIR/policy.json
491
492 cp $QUANTUM_DIR/etc/api-paste.ini $Q_API_PASTE_FILE
493 cp $QUANTUM_DIR/etc/policy.json $Q_POLICY_FILE
494
495 if is_service_enabled $DATABASE_BACKENDS; then
496 recreate_database $Q_DB_NAME utf8
497 else
498 echo "A database must be enabled in order to use the $Q_PLUGIN Quantum plugin."
499 exit 1
500 fi
501
502 # Update either configuration file with plugin
503 iniset $QUANTUM_CONF DEFAULT core_plugin $Q_PLUGIN_CLASS
504
505 iniset $QUANTUM_CONF DEFAULT verbose True
506 iniset $QUANTUM_CONF DEFAULT debug True
507 iniset $QUANTUM_CONF DEFAULT allow_overlapping_ips $Q_ALLOW_OVERLAPPING_IP
508
509 iniset $QUANTUM_CONF DEFAULT auth_strategy $Q_AUTH_STRATEGY
510 _quantum_setup_keystone $Q_API_PASTE_FILE filter:authtoken
511
512 # Configure plugin
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900513 quantum_plugin_configure_service
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900514}
515
516# Utility Functions
517#------------------
518
519# _quantum_setup_rootwrap() - configure Quantum's rootwrap
520function _quantum_setup_rootwrap() {
Nachi Uenoeb1aa3d2012-12-06 11:55:29 -0800521 if [[ "$Q_USE_ROOTWRAP" == "False" ]]; then
522 return
523 fi
524 # Deploy new rootwrap filters files (owned by root).
525 # Wipe any existing rootwrap.d files first
Dean Troyer60e9c0a2012-12-06 15:52:52 -0600526 Q_CONF_ROOTWRAP_D=$QUANTUM_CONF_DIR/rootwrap.d
Nachi Uenoeb1aa3d2012-12-06 11:55:29 -0800527 if [[ -d $Q_CONF_ROOTWRAP_D ]]; then
528 sudo rm -rf $Q_CONF_ROOTWRAP_D
529 fi
Dean Troyer60e9c0a2012-12-06 15:52:52 -0600530 # Deploy filters to $QUANTUM_CONF_DIR/rootwrap.d
Nachi Uenoeb1aa3d2012-12-06 11:55:29 -0800531 mkdir -p -m 755 $Q_CONF_ROOTWRAP_D
532 cp -pr $QUANTUM_DIR/etc/quantum/rootwrap.d/* $Q_CONF_ROOTWRAP_D/
533 sudo chown -R root:root $Q_CONF_ROOTWRAP_D
534 sudo chmod 644 $Q_CONF_ROOTWRAP_D/*
Dean Troyer60e9c0a2012-12-06 15:52:52 -0600535 # Set up rootwrap.conf, pointing to $QUANTUM_CONF_DIR/rootwrap.d
Nachi Uenoeb1aa3d2012-12-06 11:55:29 -0800536 sudo cp -p $QUANTUM_DIR/etc/rootwrap.conf $Q_RR_CONF_FILE
537 sudo sed -e "s:^filters_path=.*$:filters_path=$Q_CONF_ROOTWRAP_D:" -i $Q_RR_CONF_FILE
538 sudo chown root:root $Q_RR_CONF_FILE
539 sudo chmod 0644 $Q_RR_CONF_FILE
540 # Specify rootwrap.conf as first parameter to quantum-rootwrap
541 ROOTWRAP_SUDOER_CMD="$QUANTUM_ROOTWRAP $Q_RR_CONF_FILE *"
542
543 # Set up the rootwrap sudoers for quantum
544 TEMPFILE=`mktemp`
545 echo "$USER ALL=(root) NOPASSWD: $ROOTWRAP_SUDOER_CMD" >$TEMPFILE
546 chmod 0440 $TEMPFILE
547 sudo chown root:root $TEMPFILE
548 sudo mv $TEMPFILE /etc/sudoers.d/quantum-rootwrap
Gary Kotton98e18e92013-01-28 14:26:56 +0000549
550 # Update the root_helper
551 iniset $QUANTUM_CONF AGENT root_helper "$Q_RR_COMMAND"
Nachi Uenoeb1aa3d2012-12-06 11:55:29 -0800552}
553
Salvatore Orlandod6767d02012-08-31 04:55:20 -0700554# Configures keystone integration for quantum service and agents
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900555function _quantum_setup_keystone() {
Salvatore Orlandod6767d02012-08-31 04:55:20 -0700556 local conf_file=$1
557 local section=$2
558 local use_auth_url=$3
559 if [[ -n $use_auth_url ]]; then
560 iniset $conf_file $section auth_url "$KEYSTONE_SERVICE_PROTOCOL://$KEYSTONE_AUTH_HOST:$KEYSTONE_AUTH_PORT/v2.0"
561 else
562 iniset $conf_file $section auth_host $KEYSTONE_SERVICE_HOST
563 iniset $conf_file $section auth_port $KEYSTONE_AUTH_PORT
564 iniset $conf_file $section auth_protocol $KEYSTONE_SERVICE_PROTOCOL
565 fi
566 iniset $conf_file $section admin_tenant_name $SERVICE_TENANT_NAME
567 iniset $conf_file $section admin_user $Q_ADMIN_USERNAME
568 iniset $conf_file $section admin_password $SERVICE_PASSWORD
Akihiro MOTOKI5e3deb62012-12-11 17:09:02 +0900569 iniset $conf_file $section signing_dir $QUANTUM_AUTH_CACHE_DIR
570 # Create cache dir
571 sudo mkdir -p $QUANTUM_AUTH_CACHE_DIR
Attila Fazekas91b8d132013-01-06 22:40:09 +0100572 sudo chown $STACK_USER $QUANTUM_AUTH_CACHE_DIR
Vishvananda Ishaya23431f32012-12-12 15:57:33 -0800573 rm -f $QUANTUM_AUTH_CACHE_DIR/*
Salvatore Orlandod6767d02012-08-31 04:55:20 -0700574}
575
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900576function _quantum_setup_interface_driver() {
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900577 quantum_plugin_setup_interface_driver $1
Yoshihiro Kaneko602cf9b2012-07-23 06:27:36 +0000578}
579
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900580# Functions for Quantum Exercises
581#--------------------------------
582
583function delete_probe() {
584 local from_net="$1"
585 net_id=`_get_net_id $from_net`
586 probe_id=`quantum-debug --os-tenant-name admin --os-username admin --os-password $ADMIN_PASSWORD probe-list -c id -c network_id | grep $net_id | awk '{print $2}'`
587 quantum-debug --os-tenant-name admin --os-username admin probe-delete $probe_id
588}
589
590function setup_quantum_debug() {
591 if [[ "$Q_USE_DEBUG_COMMAND" == "True" ]]; then
592 public_net_id=`_get_net_id $PUBLIC_NETWORK_NAME`
593 quantum-debug --os-tenant-name admin --os-username admin --os-password $ADMIN_PASSWORD probe-create $public_net_id
594 private_net_id=`_get_net_id $PRIVATE_NETWORK_NAME`
595 quantum-debug --os-tenant-name admin --os-username admin --os-password $ADMIN_PASSWORD probe-create $private_net_id
Yoshihiro Kaneko602cf9b2012-07-23 06:27:36 +0000596 fi
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900597}
598
599function teardown_quantum_debug() {
600 delete_probe $PUBLIC_NETWORK_NAME
601 delete_probe $PRIVATE_NETWORK_NAME
Yoshihiro Kaneko602cf9b2012-07-23 06:27:36 +0000602}
603
Nachi Ueno5db5bfa2012-10-29 11:25:29 -0700604function _get_net_id() {
605 quantum --os-tenant-name admin --os-username admin --os-password $ADMIN_PASSWORD net-list | grep $1 | awk '{print $2}'
606}
607
608function _get_probe_cmd_prefix() {
609 local from_net="$1"
610 net_id=`_get_net_id $from_net`
611 probe_id=`quantum-debug --os-tenant-name admin --os-username admin --os-password $ADMIN_PASSWORD probe-list -c id -c network_id | grep $net_id | awk '{print $2}' | head -n 1`
Nachi Ueno8bc21f62012-11-19 22:04:28 -0800612 echo "$Q_RR_COMMAND ip netns exec qprobe-$probe_id"
Nachi Ueno5db5bfa2012-10-29 11:25:29 -0700613}
614
Nachi Ueno5db5bfa2012-10-29 11:25:29 -0700615function _ping_check_quantum() {
616 local from_net=$1
617 local ip=$2
618 local timeout_sec=$3
619 local expected=${4:-"True"}
620 local check_command=""
621 probe_cmd=`_get_probe_cmd_prefix $from_net`
622 if [[ "$expected" = "True" ]]; then
Nachi Ueno8bc21f62012-11-19 22:04:28 -0800623 check_command="while ! $probe_cmd ping -w 1 -c 1 $ip; do sleep 1; done"
Nachi Ueno5db5bfa2012-10-29 11:25:29 -0700624 else
Nachi Ueno8bc21f62012-11-19 22:04:28 -0800625 check_command="while $probe_cmd ping -w 1 -c 1 $ip; do sleep 1; done"
Nachi Ueno5db5bfa2012-10-29 11:25:29 -0700626 fi
627 if ! timeout $timeout_sec sh -c "$check_command"; then
628 if [[ "$expected" = "True" ]]; then
629 echo "[Fail] Couldn't ping server"
630 else
631 echo "[Fail] Could ping server"
632 fi
633 exit 1
634 fi
635}
636
637# ssh check
638function _ssh_check_quantum() {
639 local from_net=$1
640 local key_file=$2
641 local ip=$3
642 local user=$4
643 local timeout_sec=$5
644 local probe_cmd = ""
645 probe_cmd=`_get_probe_cmd_prefix $from_net`
646 if ! timeout $timeout_sec sh -c "while ! $probe_cmd ssh -o StrictHostKeyChecking=no -i $key_file ${user}@$ip echo success ; do sleep 1; done"; then
647 echo "server didn't become ssh-able!"
648 exit 1
649 fi
650}
651
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900652# Quantum 3rd party programs
653#---------------------------
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900654# please refer to lib/quantum_thirdparty/README.md for details
655QUANTUM_THIRD_PARTIES=""
656for f in $TOP_DIR/lib/quantum_thirdparty/*; do
657 third_party=$(basename $f)
658 if is_service_enabled $third_party; then
659 source $TOP_DIR/lib/quantum_thirdparty/$third_party
660 QUANTUM_THIRD_PARTIES="$QUANTUM_THIRD_PARTIES,$third_party"
661 fi
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900662done
663
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900664function _quantum_third_party_do() {
665 for third_party in ${QUANTUM_THIRD_PARTIES//,/ }; do
666 ${1}_${third_party}
667 done
668}
669
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900670# configure_quantum_third_party() - Set config files, create data dirs, etc
671function configure_quantum_third_party() {
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900672 _quantum_third_party_do configure
Nachi Ueno5db5bfa2012-10-29 11:25:29 -0700673}
674
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900675# init_quantum_third_party() - Initialize databases, etc.
676function init_quantum_third_party() {
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900677 _quantum_third_party_do init
Nachi Ueno5db5bfa2012-10-29 11:25:29 -0700678}
679
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900680# install_quantum_third_party() - Collect source and prepare
681function install_quantum_third_party() {
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900682 _quantum_third_party_do install
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900683}
684
685# start_quantum_third_party() - Start running processes, including screen
686function start_quantum_third_party() {
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900687 _quantum_third_party_do start
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900688}
689
690# stop_quantum_third_party - Stop running processes (non-screen)
691function stop_quantum_third_party() {
Isaku Yamahata0dd34df2012-12-28 13:15:31 +0900692 _quantum_third_party_do stop
Akihiro MOTOKI66afb472012-12-21 15:34:13 +0900693}
694
695
Salvatore Orlandod6767d02012-08-31 04:55:20 -0700696# Restore xtrace
697$XTRACE