blob: 3ec0fd4f09a244c8d2dd02ccb57febe4285d8098 [file] [log] [blame]
Dean Troyer67787e62012-05-02 11:48:15 -05001# lib/cinder
Dean Troyer6d04fd72012-12-21 11:03:37 -06002# Install and start **Cinder** volume service
Dean Troyer67787e62012-05-02 11:48:15 -05003
4# Dependencies:
Adam Spiers6a5aa7c2013-10-24 11:27:02 +01005#
Dean Troyer67787e62012-05-02 11:48:15 -05006# - functions
Attila Fazekas91b8d132013-01-06 22:40:09 +01007# - DEST, DATA_DIR, STACK_USER must be defined
Adam Spiers6a5aa7c2013-10-24 11:27:02 +01008# - SERVICE_{TENANT_NAME|PASSWORD} must be defined
9# - ``KEYSTONE_TOKEN_FORMAT`` must be defined
Dean Troyer67787e62012-05-02 11:48:15 -050010
11# stack.sh
12# ---------
Adam Spiers6a5aa7c2013-10-24 11:27:02 +010013# - install_cinder
14# - configure_cinder
15# - init_cinder
16# - start_cinder
17# - stop_cinder
18# - cleanup_cinder
Dean Troyer67787e62012-05-02 11:48:15 -050019
Dean Troyer7903b792012-09-13 17:16:12 -050020# Save trace setting
21XTRACE=$(set +o | grep xtrace)
22set +o xtrace
Dean Troyer67787e62012-05-02 11:48:15 -050023
24
25# Defaults
26# --------
27
Mate Lakatb2fdafe2012-11-20 15:52:21 +000028# set up default driver
29CINDER_DRIVER=${CINDER_DRIVER:-default}
30
Dean Troyer67787e62012-05-02 11:48:15 -050031# set up default directories
32CINDER_DIR=$DEST/cinder
Dean Troyer50ac7922012-09-13 14:02:01 -050033CINDERCLIENT_DIR=$DEST/python-cinderclient
34CINDER_STATE_PATH=${CINDER_STATE_PATH:=$DATA_DIR/cinder}
Dean Troyer671c16e2012-12-13 16:22:38 -060035CINDER_AUTH_CACHE_DIR=${CINDER_AUTH_CACHE_DIR:-/var/cache/cinder}
36
Dean Troyer50ac7922012-09-13 14:02:01 -050037CINDER_CONF_DIR=/etc/cinder
38CINDER_CONF=$CINDER_CONF_DIR/cinder.conf
Dean Troyer671c16e2012-12-13 16:22:38 -060039CINDER_API_PASTE_INI=$CINDER_CONF_DIR/api-paste.ini
Dean Troyer50ac7922012-09-13 14:02:01 -050040
Dean Troyer560346b2012-12-13 17:05:24 -060041# Public facing bits
42CINDER_SERVICE_HOST=${CINDER_SERVICE_HOST:-$SERVICE_HOST}
43CINDER_SERVICE_PORT=${CINDER_SERVICE_PORT:-8776}
44CINDER_SERVICE_PORT_INT=${CINDER_SERVICE_PORT_INT:-18776}
45CINDER_SERVICE_PROTOCOL=${CINDER_SERVICE_PROTOCOL:-$SERVICE_PROTOCOL}
46
Dean Troyer50ac7922012-09-13 14:02:01 -050047# Support entry points installation of console scripts
48if [[ -d $CINDER_DIR/bin ]]; then
Monty Taylor9fbeedd2012-08-17 12:52:27 -040049 CINDER_BIN_DIR=$CINDER_DIR/bin
50else
Jakub Ruzicka4196d552013-01-30 15:35:54 +010051 CINDER_BIN_DIR=$(get_python_exec_prefix)
Monty Taylor9fbeedd2012-08-17 12:52:27 -040052fi
Dean Troyer67787e62012-05-02 11:48:15 -050053
Jérôme Gallarddda2b7a2013-02-22 17:28:10 +010054# Support for multi lvm backend configuration (default is no support)
55CINDER_MULTI_LVM_BACKEND=$(trueorfalse False $CINDER_MULTI_LVM_BACKEND)
56
Dean Troyerb7490da2013-03-18 16:07:56 -050057# Should cinder perform secure deletion of volumes?
58# Defaults to true, can be set to False to avoid this bug when testing:
59# https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1023755
60CINDER_SECURE_DELETE=`trueorfalse True $CINDER_SECURE_DELETE`
61
Sean Daguef35ff722013-05-16 16:31:12 -040062# Cinder reports allocations back to the scheduler on periodic intervals
63# it turns out we can get an "out of space" issue when we run tests too
64# quickly just because cinder didn't realize we'd freed up resources.
65# Make this configurable so that devstack-gate/tempest can set it to
66# less than the 60 second default
67# https://bugs.launchpad.net/cinder/+bug/1180976
68CINDER_PERIODIC_INTERVAL=${CINDER_PERIODIC_INTERVAL:-60}
69
Jérôme Gallarddda2b7a2013-02-22 17:28:10 +010070# Name of the lvm volume groups to use/create for iscsi volumes
Dean Troyer67787e62012-05-02 11:48:15 -050071VOLUME_GROUP=${VOLUME_GROUP:-stack-volumes}
JordanP51c90b82013-05-23 10:27:51 +020072VOLUME_BACKING_FILE=${VOLUME_BACKING_FILE:-$DATA_DIR/${VOLUME_GROUP}-backing-file}
Mate Lakat68ac03c2013-06-06 16:22:34 +010073VOLUME_BACKING_DEVICE=${VOLUME_BACKING_DEVICE:-}
JordanP51c90b82013-05-23 10:27:51 +020074
75# VOLUME_GROUP2 is used only if CINDER_MULTI_LVM_BACKEND = True
Jérôme Gallarddda2b7a2013-02-22 17:28:10 +010076VOLUME_GROUP2=${VOLUME_GROUP2:-stack-volumes2}
JordanP51c90b82013-05-23 10:27:51 +020077VOLUME_BACKING_FILE2=${VOLUME_BACKING_FILE2:-$DATA_DIR/${VOLUME_GROUP2}-backing-file}
Mate Lakat68ac03c2013-06-06 16:22:34 +010078VOLUME_BACKING_DEVICE2=${VOLUME_BACKING_DEVICE2:-}
JordanP51c90b82013-05-23 10:27:51 +020079
Dean Troyer67787e62012-05-02 11:48:15 -050080VOLUME_NAME_PREFIX=${VOLUME_NAME_PREFIX:-volume-}
81
Dean Troyer4237f592014-01-29 16:22:11 -060082# Tell Tempest this project is present
83TEMPEST_SERVICES+=,cinder
84
Dean Troyercc6b4432013-04-08 15:38:03 -050085
86# Functions
87# ---------
Dean Troyere4fa7212014-01-15 15:04:49 -060088
89# Test if any Cinder services are enabled
90# is_cinder_enabled
91function is_cinder_enabled {
92 [[ ,${ENABLED_SERVICES} =~ ,"c-" ]] && return 0
93 return 1
94}
95
JordanP022e9912013-07-09 14:14:48 +020096# _clean_lvm_lv removes all cinder LVM volumes
Adam Spiers6a5aa7c2013-10-24 11:27:02 +010097#
98# Usage: _clean_lvm_lv $VOLUME_GROUP $VOLUME_NAME_PREFIX
JordanP022e9912013-07-09 14:14:48 +020099function _clean_lvm_lv() {
Dean Troyer22853c12013-01-07 15:18:12 -0600100 local vg=$1
JordanP51c90b82013-05-23 10:27:51 +0200101 local lv_prefix=$2
102
Dean Troyer22853c12013-01-07 15:18:12 -0600103 # Clean out existing volumes
104 for lv in `sudo lvs --noheadings -o lv_name $vg`; do
JordanP51c90b82013-05-23 10:27:51 +0200105 # lv_prefix prefixes the LVs we want
106 if [[ "${lv#$lv_prefix}" != "$lv" ]]; then
Dean Troyer22853c12013-01-07 15:18:12 -0600107 sudo lvremove -f $vg/$lv
108 fi
109 done
JordanP022e9912013-07-09 14:14:48 +0200110}
111
112# _clean_lvm_backing_file() removes the backing file of the
113# volume group used by cinder
Adam Spiers6a5aa7c2013-10-24 11:27:02 +0100114#
115# Usage: _clean_lvm_backing_file() $VOLUME_GROUP
JordanP022e9912013-07-09 14:14:48 +0200116function _clean_lvm_backing_file() {
117 local vg=$1
JordanP51c90b82013-05-23 10:27:51 +0200118
119 # if there is no logical volume left, it's safe to attempt a cleanup
120 # of the backing file
121 if [ -z "`sudo lvs --noheadings -o lv_name $vg`" ]; then
122 # if the backing physical device is a loop device, it was probably setup by devstack
Dean Troyer53ffc712013-12-17 11:13:40 -0600123 if [[ -n "$VG_DEV" ]] && [[ -e "$VG_DEV" ]]; then
124 VG_DEV=$(sudo losetup -j $DATA_DIR/${vg}-backing-file | awk -F':' '/backing-file/ { print $1}')
JordanP51c90b82013-05-23 10:27:51 +0200125 sudo losetup -d $VG_DEV
126 rm -f $DATA_DIR/${vg}-backing-file
127 fi
128 fi
Dean Troyer22853c12013-01-07 15:18:12 -0600129}
130
Dean Troyer67787e62012-05-02 11:48:15 -0500131# cleanup_cinder() - Remove residual data files, anything left over from previous
132# runs that a clean run would need to clean up
133function cleanup_cinder() {
Sean Dague252f2f52012-12-20 16:41:57 -0500134 # ensure the volume group is cleared up because fails might
135 # leave dead volumes in the group
136 TARGETS=$(sudo tgtadm --op show --mode target)
137 if [ $? -ne 0 ]; then
138 # If tgt driver isn't running this won't work obviously
139 # So check the response and restart if need be
140 echo "tgtd seems to be in a bad state, restarting..."
141 if is_ubuntu; then
142 restart_service tgt
143 else
144 restart_service tgtd
145 fi
146 TARGETS=$(sudo tgtadm --op show --mode target)
147 fi
148
149 if [[ -n "$TARGETS" ]]; then
150 iqn_list=( $(grep --no-filename -r iqn $SCSI_PERSIST_DIR | sed 's/<target //' | sed 's/>//') )
151 for i in "${iqn_list[@]}"; do
152 echo removing iSCSI target: $i
153 sudo tgt-admin --delete $i
154 done
155 fi
156
157 if is_service_enabled cinder; then
158 sudo rm -rf $CINDER_STATE_PATH/volumes/*
159 fi
160
161 if is_ubuntu; then
162 stop_service tgt
163 else
164 stop_service tgtd
165 fi
166
Dean Troyer22853c12013-01-07 15:18:12 -0600167 # Campsite rule: leave behind a volume group at least as clean as we found it
JordanP022e9912013-07-09 14:14:48 +0200168 _clean_lvm_lv $VOLUME_GROUP $VOLUME_NAME_PREFIX
169 _clean_lvm_backing_file $VOLUME_GROUP
JordanP51c90b82013-05-23 10:27:51 +0200170
Jérôme Gallarddda2b7a2013-02-22 17:28:10 +0100171 if [ "$CINDER_MULTI_LVM_BACKEND" = "True" ]; then
JordanP022e9912013-07-09 14:14:48 +0200172 _clean_lvm_lv $VOLUME_GROUP2 $VOLUME_NAME_PREFIX
173 _clean_lvm_backing_file $VOLUME_GROUP2
Jérôme Gallarddda2b7a2013-02-22 17:28:10 +0100174 fi
Dean Troyer67787e62012-05-02 11:48:15 -0500175}
176
Thierry Carrez63e17842014-01-10 14:23:03 +0100177# configure_cinder_rootwrap() - configure Cinder's rootwrap
178function configure_cinder_rootwrap() {
John Griffith4e823ff2012-07-20 13:18:17 -0600179 # Set the paths of certain binaries
Vincent Untz856a11e2012-11-21 16:04:12 +0100180 CINDER_ROOTWRAP=$(get_rootwrap_location cinder)
Thierry Carrez07185682013-12-13 15:20:26 +0100181 if [[ ! -x $CINDER_ROOTWRAP ]]; then
182 CINDER_ROOTWRAP=$(get_rootwrap_location oslo)
183 if [[ ! -x $CINDER_ROOTWRAP ]]; then
184 die $LINENO "No suitable rootwrap found."
185 fi
186 fi
John Griffith4e823ff2012-07-20 13:18:17 -0600187
188 # If Cinder ships the new rootwrap filters files, deploy them
189 # (owned by root) and add a parameter to $CINDER_ROOTWRAP
190 ROOTWRAP_CINDER_SUDOER_CMD="$CINDER_ROOTWRAP"
191 if [[ -d $CINDER_DIR/etc/cinder/rootwrap.d ]]; then
192 # Wipe any existing rootwrap.d files first
193 if [[ -d $CINDER_CONF_DIR/rootwrap.d ]]; then
194 sudo rm -rf $CINDER_CONF_DIR/rootwrap.d
195 fi
196 # Deploy filters to /etc/cinder/rootwrap.d
197 sudo mkdir -m 755 $CINDER_CONF_DIR/rootwrap.d
198 sudo cp $CINDER_DIR/etc/cinder/rootwrap.d/*.filters $CINDER_CONF_DIR/rootwrap.d
199 sudo chown -R root:root $CINDER_CONF_DIR/rootwrap.d
200 sudo chmod 644 $CINDER_CONF_DIR/rootwrap.d/*
201 # Set up rootwrap.conf, pointing to /etc/cinder/rootwrap.d
Thierry Carrez07185682013-12-13 15:20:26 +0100202 if [[ -f $CINDER_DIR/etc/cinder/rootwrap.conf ]]; then
203 sudo cp $CINDER_DIR/etc/cinder/rootwrap.conf $CINDER_CONF_DIR/
204 else
205 # rootwrap.conf is no longer shipped in Cinder itself
206 echo "filters_path=" | sudo tee $CINDER_CONF_DIR/rootwrap.conf > /dev/null
207 fi
John Griffith4e823ff2012-07-20 13:18:17 -0600208 sudo sed -e "s:^filters_path=.*$:filters_path=$CINDER_CONF_DIR/rootwrap.d:" -i $CINDER_CONF_DIR/rootwrap.conf
209 sudo chown root:root $CINDER_CONF_DIR/rootwrap.conf
210 sudo chmod 0644 $CINDER_CONF_DIR/rootwrap.conf
Thierry Carrez07185682013-12-13 15:20:26 +0100211 # Specify rootwrap.conf as first parameter to rootwrap
John Griffith4e823ff2012-07-20 13:18:17 -0600212 CINDER_ROOTWRAP="$CINDER_ROOTWRAP $CINDER_CONF_DIR/rootwrap.conf"
213 ROOTWRAP_CINDER_SUDOER_CMD="$CINDER_ROOTWRAP *"
214 fi
215
216 TEMPFILE=`mktemp`
Stephan Renatuse578eff2013-11-19 13:31:04 +0100217 echo "$STACK_USER ALL=(root) NOPASSWD: $ROOTWRAP_CINDER_SUDOER_CMD" >$TEMPFILE
John Griffith4e823ff2012-07-20 13:18:17 -0600218 chmod 0440 $TEMPFILE
219 sudo chown root:root $TEMPFILE
220 sudo mv $TEMPFILE /etc/sudoers.d/cinder-rootwrap
Thierry Carrez63e17842014-01-10 14:23:03 +0100221}
222
223# configure_cinder() - Set config files, create data dirs, etc
224function configure_cinder() {
225 if [[ ! -d $CINDER_CONF_DIR ]]; then
226 sudo mkdir -p $CINDER_CONF_DIR
227 fi
228 sudo chown $STACK_USER $CINDER_CONF_DIR
229
230 cp -p $CINDER_DIR/etc/cinder/policy.json $CINDER_CONF_DIR
231
232 configure_cinder_rootwrap
John Griffith4e823ff2012-07-20 13:18:17 -0600233
Dean Troyer67787e62012-05-02 11:48:15 -0500234 cp $CINDER_DIR/etc/cinder/api-paste.ini $CINDER_API_PASTE_INI
Dan Prince82dea7c2013-10-16 18:57:15 -0400235
236 inicomment $CINDER_API_PASTE_INI filter:authtoken auth_host
237 inicomment $CINDER_API_PASTE_INI filter:authtoken auth_port
238 inicomment $CINDER_API_PASTE_INI filter:authtoken auth_protocol
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +1000239 inicomment $CINDER_API_PASTE_INI filter:authtoken cafile
Dan Prince82dea7c2013-10-16 18:57:15 -0400240 inicomment $CINDER_API_PASTE_INI filter:authtoken admin_tenant_name
241 inicomment $CINDER_API_PASTE_INI filter:authtoken admin_user
242 inicomment $CINDER_API_PASTE_INI filter:authtoken admin_password
243 inicomment $CINDER_API_PASTE_INI filter:authtoken signing_dir
Dean Troyerbc071bc2012-10-01 14:06:44 -0500244
Dean Troyer67787e62012-05-02 11:48:15 -0500245 cp $CINDER_DIR/etc/cinder/cinder.conf.sample $CINDER_CONF
Dan Prince82dea7c2013-10-16 18:57:15 -0400246
247 iniset $CINDER_CONF keystone_authtoken auth_host $KEYSTONE_AUTH_HOST
248 iniset $CINDER_CONF keystone_authtoken auth_port $KEYSTONE_AUTH_PORT
249 iniset $CINDER_CONF keystone_authtoken auth_protocol $KEYSTONE_AUTH_PROTOCOL
Jamie Lennoxbd24a8d2013-09-20 16:26:42 +1000250 iniset $CINDER_CONF keystone_authtoken cafile $KEYSTONE_SSL_CA
Dan Prince82dea7c2013-10-16 18:57:15 -0400251 iniset $CINDER_CONF keystone_authtoken admin_tenant_name $SERVICE_TENANT_NAME
252 iniset $CINDER_CONF keystone_authtoken admin_user cinder
253 iniset $CINDER_CONF keystone_authtoken admin_password $SERVICE_PASSWORD
254 iniset $CINDER_CONF keystone_authtoken signing_dir $CINDER_AUTH_CACHE_DIR
255
Dean Troyer67787e62012-05-02 11:48:15 -0500256 iniset $CINDER_CONF DEFAULT auth_strategy keystone
Ben Nemec03997942013-08-10 09:56:16 -0500257 iniset $CINDER_CONF DEFAULT debug $ENABLE_DEBUG_LOG_LEVEL
Dean Troyer67787e62012-05-02 11:48:15 -0500258 iniset $CINDER_CONF DEFAULT verbose True
Jérôme Gallarddda2b7a2013-02-22 17:28:10 +0100259 if [ "$CINDER_MULTI_LVM_BACKEND" = "True" ]; then
260 iniset $CINDER_CONF DEFAULT enabled_backends lvmdriver-1,lvmdriver-2
261 iniset $CINDER_CONF lvmdriver-1 volume_group $VOLUME_GROUP
262 iniset $CINDER_CONF lvmdriver-1 volume_driver cinder.volume.drivers.lvm.LVMISCSIDriver
263 iniset $CINDER_CONF lvmdriver-1 volume_backend_name LVM_iSCSI
264 iniset $CINDER_CONF lvmdriver-2 volume_group $VOLUME_GROUP2
265 iniset $CINDER_CONF lvmdriver-2 volume_driver cinder.volume.drivers.lvm.LVMISCSIDriver
Giulio Fidente97e1bd02013-06-04 05:33:52 +0200266 iniset $CINDER_CONF lvmdriver-2 volume_backend_name LVM_iSCSI_2
Matt Riedemann7103a842013-12-07 13:53:33 -0800267 # NOTE(mriedem): Work around Cinder "wishlist" bug 1255593
268 if [[ "$CINDER_SECURE_DELETE" == "False" ]]; then
269 iniset $CINDER_CONF lvmdriver-1 volume_clear none
270 iniset $CINDER_CONF lvmdriver-2 volume_clear none
271 fi
Jérôme Gallarddda2b7a2013-02-22 17:28:10 +0100272 else
273 iniset $CINDER_CONF DEFAULT volume_group $VOLUME_GROUP
274 iniset $CINDER_CONF DEFAULT volume_name_template ${VOLUME_NAME_PREFIX}%s
275 fi
Nikolay Sobolevskiy08df29b2013-08-30 21:59:15 +0400276 iniset $CINDER_CONF DEFAULT my_ip "$CINDER_SERVICE_HOST"
Dean Troyer67787e62012-05-02 11:48:15 -0500277 iniset $CINDER_CONF DEFAULT iscsi_helper tgtadm
Attila Fazekas7e79d912013-03-03 12:23:04 +0100278 iniset $CINDER_CONF DEFAULT sql_connection `database_connection_url cinder`
Dean Troyer67787e62012-05-02 11:48:15 -0500279 iniset $CINDER_CONF DEFAULT api_paste_config $CINDER_API_PASTE_INI
Joe Gordona58382a2013-02-20 12:45:02 -0800280 iniset $CINDER_CONF DEFAULT rootwrap_config "$CINDER_CONF_DIR/rootwrap.conf"
Dan Prince9f22f072013-01-28 09:53:38 -0500281 iniset $CINDER_CONF DEFAULT osapi_volume_extension cinder.api.contrib.standard_extensions
Dean Troyer50ac7922012-09-13 14:02:01 -0500282 iniset $CINDER_CONF DEFAULT state_path $CINDER_STATE_PATH
Sergey Kraynev84783c72013-10-10 09:08:48 -0400283 iniset $CINDER_CONF DEFAULT lock_path $CINDER_STATE_PATH
Sean Daguef35ff722013-05-16 16:31:12 -0400284 iniset $CINDER_CONF DEFAULT periodic_interval $CINDER_PERIODIC_INTERVAL
John Griffith4e823ff2012-07-20 13:18:17 -0600285
Gordon Chung2bfbc772013-08-09 10:55:12 -0400286 if is_service_enabled ceilometer; then
287 iniset $CINDER_CONF DEFAULT notification_driver "cinder.openstack.common.notifier.rpc_notifier"
288 fi
289
Dean Troyer560346b2012-12-13 17:05:24 -0600290 if is_service_enabled tls-proxy; then
291 # Set the service port for a proxy to take the original
292 iniset $CINDER_CONF DEFAULT osapi_volume_listen_port $CINDER_SERVICE_PORT_INT
293 fi
294
Dean Troyer4d3049e2012-11-06 20:38:14 -0600295 if [ "$SYSLOG" != "False" ]; then
296 iniset $CINDER_CONF DEFAULT use_syslog True
297 fi
298
Akihiro MOTOKIb0f1c382013-01-13 17:58:12 +0900299 iniset_rpc_backend cinder $CINDER_CONF DEFAULT
Gary Kottonf71bf192012-08-06 11:15:36 -0400300
James E. Blair213c4162012-11-06 09:38:36 +0100301 if [[ "$CINDER_SECURE_DELETE" == "False" ]]; then
302 iniset $CINDER_CONF DEFAULT secure_delete False
Pádraig Bradyeac93702013-01-02 16:02:54 +0000303 iniset $CINDER_CONF DEFAULT volume_clear none
James E. Blair213c4162012-11-06 09:38:36 +0100304 fi
305
Salvatore Orlando05ae8332013-08-20 14:51:08 -0700306 # Format logging
Chmouel Boudjnah1057bff2012-08-03 11:42:51 +0000307 if [ "$LOG_COLOR" == "True" ] && [ "$SYSLOG" == "False" ]; then
Salvatore Orlando05ae8332013-08-20 14:51:08 -0700308 setup_colorized_logging $CINDER_CONF DEFAULT "project_id" "user_id"
Chmouel Boudjnah1057bff2012-08-03 11:42:51 +0000309 fi
Mate Lakatb2fdafe2012-11-20 15:52:21 +0000310
311 if [ "$CINDER_DRIVER" == "XenAPINFS" ]; then
312 (
313 set -u
Mate Lakata0ca45f2012-12-06 17:45:49 +0000314 iniset $CINDER_CONF DEFAULT volume_driver "cinder.volume.drivers.xenapi.sm.XenAPINFSDriver"
Mate Lakatb2fdafe2012-11-20 15:52:21 +0000315 iniset $CINDER_CONF DEFAULT xenapi_connection_url "$CINDER_XENAPI_CONNECTION_URL"
316 iniset $CINDER_CONF DEFAULT xenapi_connection_username "$CINDER_XENAPI_CONNECTION_USERNAME"
317 iniset $CINDER_CONF DEFAULT xenapi_connection_password "$CINDER_XENAPI_CONNECTION_PASSWORD"
318 iniset $CINDER_CONF DEFAULT xenapi_nfs_server "$CINDER_XENAPI_NFS_SERVER"
319 iniset $CINDER_CONF DEFAULT xenapi_nfs_serverpath "$CINDER_XENAPI_NFS_SERVERPATH"
320 )
Mehdi Abaakoukae9c4172013-03-07 15:23:46 +0000321 elif [ "$CINDER_DRIVER" == "nfs" ]; then
322 iniset $CINDER_CONF DEFAULT volume_driver "cinder.volume.drivers.nfs.NfsDriver"
323 iniset $CINDER_CONF DEFAULT nfs_shares_config "$CINDER_CONF_DIR/nfs_shares.conf"
324 echo "$CINDER_NFS_SERVERPATH" | sudo tee "$CINDER_CONF_DIR/nfs_shares.conf"
325 sudo chmod 666 $CINDER_CONF_DIR/nfs_shares.conf
MORITA Kazutakaaf22a472013-01-17 16:16:25 +0900326 elif [ "$CINDER_DRIVER" == "sheepdog" ]; then
327 iniset $CINDER_CONF DEFAULT volume_driver "cinder.volume.drivers.sheepdog.SheepdogDriver"
Eric Harneycd261512013-04-10 12:48:09 -0400328 elif [ "$CINDER_DRIVER" == "glusterfs" ]; then
329 # To use glusterfs, set the following in localrc:
330 # CINDER_DRIVER=glusterfs
331 # CINDER_GLUSTERFS_SHARES="127.0.0.1:/vol1;127.0.0.1:/vol2"
332 # Shares are <host>:<volume> and separated by semicolons.
333
334 iniset $CINDER_CONF DEFAULT volume_driver "cinder.volume.drivers.glusterfs.GlusterfsDriver"
335 iniset $CINDER_CONF DEFAULT glusterfs_shares_config "$CINDER_CONF_DIR/glusterfs_shares"
336 touch $CINDER_CONF_DIR/glusterfs_shares
337 if [ ! -z "$CINDER_GLUSTERFS_SHARES" ]; then
338 CINDER_GLUSTERFS_SHARES=$(echo $CINDER_GLUSTERFS_SHARES | tr ";" "\n")
339 echo "$CINDER_GLUSTERFS_SHARES" > $CINDER_CONF_DIR/glusterfs_shares
340 fi
Gary Kottonc3252272013-08-13 00:32:20 -0700341 elif [ "$CINDER_DRIVER" == "vsphere" ]; then
342 echo_summary "Using VMware vCenter driver"
Gary Kottondc4f2342013-08-19 23:46:17 -0700343 iniset $CINDER_CONF DEFAULT vmware_host_ip "$VMWAREAPI_IP"
344 iniset $CINDER_CONF DEFAULT vmware_host_username "$VMWAREAPI_USER"
345 iniset $CINDER_CONF DEFAULT vmware_host_password "$VMWAREAPI_PASSWORD"
Gary Kottondc4f2342013-08-19 23:46:17 -0700346 iniset $CINDER_CONF DEFAULT volume_driver "cinder.volume.drivers.vmware.vmdk.VMwareVcVmdkDriver"
Mate Lakatb2fdafe2012-11-20 15:52:21 +0000347 fi
Ian Wienand0db17132013-06-26 22:31:48 +1000348
349 if [[ is_fedora && $DISTRO =~ (rhel6) ]]; then
350 # Cinder clones are slightly larger due to some extra
351 # metadata. RHEL6 will not allow auto-extending of LV's
352 # without this, leading to clones giving hard-to-track disk
353 # I/O errors.
354 # see https://bugzilla.redhat.com/show_bug.cgi?id=975052
355 sudo sed -i~ \
356 -e 's/snapshot_autoextend_threshold =.*/snapshot_autoextend_threshold = 80/' \
357 -e 's/snapshot_autoextend_percent =.*/snapshot_autoextend_percent = 20/' \
358 /etc/lvm/lvm.conf
359 fi
Vincent Hou21fe4e72013-11-21 03:10:27 -0500360 configure_API_version $CINDER_CONF $IDENTITY_API_VERSION
stackcf2d0d32013-08-05 04:51:56 -0400361 iniset $CINDER_CONF keystone_authtoken admin_user cinder
362 iniset $CINDER_CONF keystone_authtoken admin_tenant_name $SERVICE_TENANT_NAME
363 iniset $CINDER_CONF keystone_authtoken admin_password $SERVICE_PASSWORD
Ian Wienand0db17132013-06-26 22:31:48 +1000364
Dean Troyer67787e62012-05-02 11:48:15 -0500365}
366
Dean Troyer671c16e2012-12-13 16:22:38 -0600367# create_cinder_accounts() - Set up common required cinder accounts
368
369# Tenant User Roles
370# ------------------------------------------------------------------
371# service cinder admin # if enabled
372
373# Migrated from keystone_data.sh
374create_cinder_accounts() {
375
376 SERVICE_TENANT=$(keystone tenant-list | awk "/ $SERVICE_TENANT_NAME / { print \$2 }")
377 ADMIN_ROLE=$(keystone role-list | awk "/ admin / { print \$2 }")
378
379 # Cinder
380 if [[ "$ENABLED_SERVICES" =~ "c-api" ]]; then
381 CINDER_USER=$(keystone user-create \
382 --name=cinder \
383 --pass="$SERVICE_PASSWORD" \
Dirk Mueller25049cd2014-01-09 13:53:52 +0100384 --tenant-id $SERVICE_TENANT \
Dean Troyer671c16e2012-12-13 16:22:38 -0600385 --email=cinder@example.com \
386 | grep " id " | get_field 2)
387 keystone user-role-add \
Jorge Valderrama Romerof39ee962013-09-02 17:18:40 +0200388 --tenant-id $SERVICE_TENANT \
389 --user-id $CINDER_USER \
390 --role-id $ADMIN_ROLE
Dean Troyer671c16e2012-12-13 16:22:38 -0600391 if [[ "$KEYSTONE_CATALOG_BACKEND" = 'sql' ]]; then
392 CINDER_SERVICE=$(keystone service-create \
393 --name=cinder \
394 --type=volume \
395 --description="Cinder Volume Service" \
396 | grep " id " | get_field 2)
397 keystone endpoint-create \
398 --region RegionOne \
399 --service_id $CINDER_SERVICE \
Dean Troyer560346b2012-12-13 17:05:24 -0600400 --publicurl "$CINDER_SERVICE_PROTOCOL://$CINDER_SERVICE_HOST:$CINDER_SERVICE_PORT/v1/\$(tenant_id)s" \
401 --adminurl "$CINDER_SERVICE_PROTOCOL://$CINDER_SERVICE_HOST:$CINDER_SERVICE_PORT/v1/\$(tenant_id)s" \
402 --internalurl "$CINDER_SERVICE_PROTOCOL://$CINDER_SERVICE_HOST:$CINDER_SERVICE_PORT/v1/\$(tenant_id)s"
Mike Perezb3862f92013-02-12 02:16:41 -0800403 CINDER_V2_SERVICE=$(keystone service-create \
Juan Manuel Olle4ad37632014-01-06 15:07:09 -0300404 --name=cinderv2 \
Mike Perezb3862f92013-02-12 02:16:41 -0800405 --type=volumev2 \
406 --description="Cinder Volume Service V2" \
407 | grep " id " | get_field 2)
408 keystone endpoint-create \
409 --region RegionOne \
410 --service_id $CINDER_V2_SERVICE \
411 --publicurl "$CINDER_SERVICE_PROTOCOL://$CINDER_SERVICE_HOST:$CINDER_SERVICE_PORT/v2/\$(tenant_id)s" \
412 --adminurl "$CINDER_SERVICE_PROTOCOL://$CINDER_SERVICE_HOST:$CINDER_SERVICE_PORT/v2/\$(tenant_id)s" \
413 --internalurl "$CINDER_SERVICE_PROTOCOL://$CINDER_SERVICE_HOST:$CINDER_SERVICE_PORT/v2/\$(tenant_id)s"
414
Dean Troyer671c16e2012-12-13 16:22:38 -0600415 fi
416 fi
417}
418
Dean Troyerf03bafe2013-02-12 10:58:28 -0600419# create_cinder_cache_dir() - Part of the init_cinder() process
420function create_cinder_cache_dir() {
421 # Create cache dir
422 sudo mkdir -p $CINDER_AUTH_CACHE_DIR
423 sudo chown $STACK_USER $CINDER_AUTH_CACHE_DIR
424 rm -f $CINDER_AUTH_CACHE_DIR/*
425}
426
427create_cinder_volume_group() {
Attila Fazekasa6ed3dc2013-07-01 22:49:31 +0200428 # According to the ``CINDER_MULTI_LVM_BACKEND`` value, configure one or two default volumes
Jérôme Gallarddda2b7a2013-02-22 17:28:10 +0100429 # group called ``stack-volumes`` (and ``stack-volumes2``) for the volume
430 # service if it (they) does (do) not yet exist. If you don't wish to use a
431 # file backed volume group, create your own volume group called ``stack-volumes``
432 # and ``stack-volumes2`` before invoking ``stack.sh``.
Dean Troyerf03bafe2013-02-12 10:58:28 -0600433 #
Attila Fazekasa6ed3dc2013-07-01 22:49:31 +0200434 # The two backing files are ``VOLUME_BACKING_FILE_SIZE`` in size, and they are stored in
435 # the ``DATA_DIR``.
Dean Troyerf03bafe2013-02-12 10:58:28 -0600436
437 if ! sudo vgs $VOLUME_GROUP; then
Mate Lakat68ac03c2013-06-06 16:22:34 +0100438 if [ -z "$VOLUME_BACKING_DEVICE" ]; then
439 # Only create if the file doesn't already exists
440 [[ -f $VOLUME_BACKING_FILE ]] || truncate -s $VOLUME_BACKING_FILE_SIZE $VOLUME_BACKING_FILE
441 DEV=`sudo losetup -f --show $VOLUME_BACKING_FILE`
Dean Troyerf03bafe2013-02-12 10:58:28 -0600442
Mate Lakat68ac03c2013-06-06 16:22:34 +0100443 # Only create if the loopback device doesn't contain $VOLUME_GROUP
444 if ! sudo vgs $VOLUME_GROUP; then
445 sudo vgcreate $VOLUME_GROUP $DEV
446 fi
447 else
448 sudo vgcreate $VOLUME_GROUP $VOLUME_BACKING_DEVICE
Dean Troyerf03bafe2013-02-12 10:58:28 -0600449 fi
450 fi
Jérôme Gallarddda2b7a2013-02-22 17:28:10 +0100451 if [ "$CINDER_MULTI_LVM_BACKEND" = "True" ]; then
452 #set up the second volume if CINDER_MULTI_LVM_BACKEND is enabled
453
454 if ! sudo vgs $VOLUME_GROUP2; then
Mate Lakat68ac03c2013-06-06 16:22:34 +0100455 if [ -z "$VOLUME_BACKING_DEVICE2" ]; then
456 # Only create if the file doesn't already exists
457 [[ -f $VOLUME_BACKING_FILE2 ]] || truncate -s $VOLUME_BACKING_FILE_SIZE $VOLUME_BACKING_FILE2
Jérôme Gallarddda2b7a2013-02-22 17:28:10 +0100458
Mate Lakat68ac03c2013-06-06 16:22:34 +0100459 DEV=`sudo losetup -f --show $VOLUME_BACKING_FILE2`
Jérôme Gallarddda2b7a2013-02-22 17:28:10 +0100460
Mate Lakat68ac03c2013-06-06 16:22:34 +0100461 # Only create if the loopback device doesn't contain $VOLUME_GROUP
462 if ! sudo vgs $VOLUME_GROUP2; then
463 sudo vgcreate $VOLUME_GROUP2 $DEV
464 fi
465 else
466 sudo vgcreate $VOLUME_GROUP2 $VOLUME_BACKING_DEVICE2
Jérôme Gallarddda2b7a2013-02-22 17:28:10 +0100467 fi
468 fi
469 fi
Dean Troyerf03bafe2013-02-12 10:58:28 -0600470
471 mkdir -p $CINDER_STATE_PATH/volumes
472}
473
Dean Troyer67787e62012-05-02 11:48:15 -0500474# init_cinder() - Initialize database and volume group
475function init_cinder() {
476 # Force nova volumes off
477 NOVA_ENABLED_APIS=$(echo $NOVA_ENABLED_APIS | sed "s/osapi_volume,//")
478
Terry Wilson428af5a2012-11-01 16:12:39 -0400479 if is_service_enabled $DATABASE_BACKENDS; then
Dean Troyerf03bafe2013-02-12 10:58:28 -0600480 # (Re)create cinder database
Terry Wilson428af5a2012-11-01 16:12:39 -0400481 recreate_database cinder utf8
Dean Troyer67787e62012-05-02 11:48:15 -0500482
Dean Troyerf03bafe2013-02-12 10:58:28 -0600483 # Migrate cinder database
Monty Taylor9fbeedd2012-08-17 12:52:27 -0400484 $CINDER_BIN_DIR/cinder-manage db sync
Dean Troyer67787e62012-05-02 11:48:15 -0500485 fi
486
487 if is_service_enabled c-vol; then
Dean Troyer67787e62012-05-02 11:48:15 -0500488
Dean Troyerf03bafe2013-02-12 10:58:28 -0600489 create_cinder_volume_group
Chuck Short3f603d92012-07-28 13:28:33 -0500490
Dean Troyer67787e62012-05-02 11:48:15 -0500491 if sudo vgs $VOLUME_GROUP; then
Vincent Untz00011c02012-12-06 09:56:32 +0100492 if is_fedora || is_suse; then
493 # service is not started by default
Vincent Untz0230aa82012-06-14 08:51:01 +0200494 start_service tgtd
495 fi
496
Dean Troyer67787e62012-05-02 11:48:15 -0500497 # Remove iscsi targets
498 sudo tgtadm --op show --mode target | grep $VOLUME_NAME_PREFIX | grep Target | cut -f3 -d ' ' | sudo xargs -n1 tgt-admin --delete || true
Dean Troyer22853c12013-01-07 15:18:12 -0600499 # Start with a clean volume group
JordanP022e9912013-07-09 14:14:48 +0200500 _clean_lvm_lv $VOLUME_GROUP $VOLUME_NAME_PREFIX
Jérôme Gallarddda2b7a2013-02-22 17:28:10 +0100501 if [ "$CINDER_MULTI_LVM_BACKEND" = "True" ]; then
JordanP022e9912013-07-09 14:14:48 +0200502 _clean_lvm_lv $VOLUME_GROUP2 $VOLUME_NAME_PREFIX
Jérôme Gallarddda2b7a2013-02-22 17:28:10 +0100503 fi
Dean Troyer67787e62012-05-02 11:48:15 -0500504 fi
505 fi
Dean Troyerbc071bc2012-10-01 14:06:44 -0500506
Dean Troyerf03bafe2013-02-12 10:58:28 -0600507 create_cinder_cache_dir
Dean Troyer67787e62012-05-02 11:48:15 -0500508}
509
510# install_cinder() - Collect source and prepare
511function install_cinder() {
512 git_clone $CINDER_REPO $CINDER_DIR $CINDER_BRANCH
Sean Dague4bf9d7a2013-04-01 16:41:39 -0400513 setup_develop $CINDER_DIR
Dean Troyer253a1a32013-04-01 18:23:22 -0500514}
Sean Dague4bf9d7a2013-04-01 16:41:39 -0400515
Dean Troyer253a1a32013-04-01 18:23:22 -0500516# install_cinderclient() - Collect source and prepare
517function install_cinderclient() {
Dean Troyer67787e62012-05-02 11:48:15 -0500518 git_clone $CINDERCLIENT_REPO $CINDERCLIENT_DIR $CINDERCLIENT_BRANCH
Sean Dague4bf9d7a2013-04-01 16:41:39 -0400519 setup_develop $CINDERCLIENT_DIR
Attila Fazekasfac533e2013-08-14 16:04:01 +0200520 sudo install -D -m 0644 -o $STACK_USER {$CINDERCLIENT_DIR/tools/,/etc/bash_completion.d/}cinder.bash_completion
Dean Troyer67787e62012-05-02 11:48:15 -0500521}
522
Steve Baker18225d92013-04-14 12:48:41 -0700523# apply config.d approach for cinder volumes directory
Mate Lakata39caac2012-09-03 15:45:53 +0100524function _configure_tgt_for_config_d() {
Steve Baker18225d92013-04-14 12:48:41 -0700525 if [[ ! -d /etc/tgt/stack.d/ ]]; then
526 sudo ln -sf $CINDER_STATE_PATH/volumes /etc/tgt/stack.d
527 echo "include /etc/tgt/stack.d/*" | sudo tee -a /etc/tgt/targets.conf
Mate Lakata39caac2012-09-03 15:45:53 +0100528 fi
529}
530
Dean Troyer67787e62012-05-02 11:48:15 -0500531# start_cinder() - Start running processes, including screen
532function start_cinder() {
533 if is_service_enabled c-vol; then
Steve Baker18225d92013-04-14 12:48:41 -0700534 # Delete any old stack.conf
535 sudo rm -f /etc/tgt/conf.d/stack.conf
Attila Fazekasb79574b2012-12-01 10:42:46 +0100536 _configure_tgt_for_config_d
Vincent Untzc18b9652012-12-04 12:36:34 +0100537 if is_ubuntu; then
Dean Troyer67787e62012-05-02 11:48:15 -0500538 # tgt in oneiric doesn't restart properly if tgtd isn't running
539 # do it in two steps
540 sudo stop tgt || true
541 sudo start tgt
Vincent Untz00011c02012-12-06 09:56:32 +0100542 elif is_fedora; then
Dean Troyer67787e62012-05-02 11:48:15 -0500543 # bypass redirection to systemctl during restart
544 sudo /sbin/service --skip-redirect tgtd restart
Vincent Untz00011c02012-12-06 09:56:32 +0100545 elif is_suse; then
546 restart_service tgtd
547 else
548 # note for other distros: unstack.sh also uses the tgt/tgtd service
549 # name, and would need to be adjusted too
550 exit_distro_not_supported "restarting tgt"
Dean Troyer67787e62012-05-02 11:48:15 -0500551 fi
Giulio Fidente384454d2013-09-27 13:17:34 +0200552 # NOTE(gfidente): ensure tgtd is running in debug mode
553 sudo tgtadm --mode system --op update --name debug --value on
Dean Troyer67787e62012-05-02 11:48:15 -0500554 fi
555
Monty Taylor9fbeedd2012-08-17 12:52:27 -0400556 screen_it c-api "cd $CINDER_DIR && $CINDER_BIN_DIR/cinder-api --config-file $CINDER_CONF"
Monty Taylor9fbeedd2012-08-17 12:52:27 -0400557 screen_it c-sch "cd $CINDER_DIR && $CINDER_BIN_DIR/cinder-scheduler --config-file $CINDER_CONF"
Stephen Mulcahy67068ef2013-02-21 11:20:58 +0000558 screen_it c-bak "cd $CINDER_DIR && $CINDER_BIN_DIR/cinder-backup --config-file $CINDER_CONF"
John Griffithe6d4fe52013-07-15 17:35:54 -0600559 screen_it c-vol "cd $CINDER_DIR && $CINDER_BIN_DIR/cinder-volume --config-file $CINDER_CONF"
560
561 # NOTE(jdg): For cinder, startup order matters. To ensure that repor_capabilities is received
562 # by the scheduler start the cinder-volume service last (or restart it) after the scheduler
563 # has started. This is a quick fix for lp bug/1189595
Dean Troyer560346b2012-12-13 17:05:24 -0600564
565 # Start proxies if enabled
566 if is_service_enabled c-api && is_service_enabled tls-proxy; then
567 start_tls_proxy '*' $CINDER_SERVICE_PORT $CINDER_SERVICE_HOST $CINDER_SERVICE_PORT_INT &
568 fi
Dean Troyer67787e62012-05-02 11:48:15 -0500569}
570
Dean Troyer699a29f2012-09-10 14:10:27 -0500571# stop_cinder() - Stop running processes
Dean Troyer67787e62012-05-02 11:48:15 -0500572function stop_cinder() {
Dean Troyer699a29f2012-09-10 14:10:27 -0500573 # Kill the cinder screen windows
Stephen Mulcahy67068ef2013-02-21 11:20:58 +0000574 for serv in c-api c-bak c-sch c-vol; do
Dean Troyer9fc87922013-05-22 17:19:06 -0500575 screen_stop $serv
Dean Troyer699a29f2012-09-10 14:10:27 -0500576 done
Dean Troyer67787e62012-05-02 11:48:15 -0500577
578 if is_service_enabled c-vol; then
Vincent Untz90dd96d2012-12-13 08:59:57 +0100579 if is_ubuntu; then
580 stop_service tgt
581 else
582 stop_service tgtd
583 fi
Dean Troyer67787e62012-05-02 11:48:15 -0500584 fi
585}
Dean Troyer7903b792012-09-13 17:16:12 -0500586
Dean Troyercc6b4432013-04-08 15:38:03 -0500587
Dean Troyer7903b792012-09-13 17:16:12 -0500588# Restore xtrace
589$XTRACE
Sean Dague584d90e2013-03-29 14:34:53 -0400590
Adam Spiers6a5aa7c2013-10-24 11:27:02 +0100591# Tell emacs to use shell-script-mode
592## Local variables:
593## mode: shell-script
594## End: