murano-deployment/murano-ci/nodepool/scripts/prepare_node.sh

154 lines
5.0 KiB
Bash
Executable File

#!/bin/bash -xe
# Copyright (C) 2011-2013 OpenStack Foundation
#
# Licensed under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License.
# You may obtain a copy of the License at
#
# http://www.apache.org/licenses/LICENSE-2.0
#
# Unless required by applicable law or agreed to in writing, software
# distributed under the License is distributed on an "AS IS" BASIS,
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or
# implied.
#
# See the License for the specific language governing permissions and
# limitations under the License.
HOSTNAME=$1
SUDO=$2
THIN=$3
PYTHON3=${4:-false}
PYPY=${5:-false}
ALL_MYSQL_PRIVS=${6:-false}
# Save the nameservers configured by our provider.
cat >/tmp/forwarding.conf <<EOF
forward-zone:
name: "."
forward-addr: 8.8.8.8
EOF
sudo hostname $HOSTNAME
# Fedora image doesn't come with wget
if [ -f /usr/bin/yum ]; then
sudo yum -y install wget
fi
#wget https://raw.github.com/pypa/pip/master/contrib/get-pip.py
wget https://git.openstack.org/cgit/openstack-infra/system-config/plain/install_puppet.sh
sudo bash -xe install_puppet.sh
sudo git clone --depth=1 git://git.openstack.org/openstack-infra/system-config.git /root/config
sudo /bin/bash /root/config/install_modules.sh
#if [ -z "$NODEPOOL_SSH_KEY" ] ; then
sudo puppet apply \
--debug --verbose \
--color=false \
--modulepath=/root/config/modules:/etc/puppet/modules -e "
class {'openstack_project::single_use_slave':
sudo => $SUDO,
thin => $THIN,
all_mysql_privs => $ALL_MYSQL_PRIVS,
}" | sudo tee /var/log/puppet-apply.log
#else
# sudo puppet apply --modulepath=/root/config/modules:/etc/puppet/modules -e "
# class {'openstack_project::single_use_slave':
# install_users => false,
# sudo => $SUDO,
# bare => $BARE,
# python3 => $PYTHON3,
# all_mysql_privs => $ALL_MYSQL_PRIVS,
# ssh_key => '$NODEPOOL_SSH_KEY',
# }"
#fi
# The puppet modules should install unbound. Take the nameservers
# that we ended up with at boot and configure unbound to forward to
# them.
sudo mv /tmp/forwarding.conf /etc/unbound/
sudo chown root:root /etc/unbound/forwarding.conf
sudo chmod a+r /etc/unbound/forwarding.conf
# HPCloud has selinux enabled by default, Rackspace apparently not.
# Regardless, apply the correct context.
if [ -x /sbin/restorecon ] ; then
sudo chcon system_u:object_r:named_conf_t:s0 /etc/unbound/forwarding.conf
fi
sudo bash -c "echo 'include: /etc/unbound/forwarding.conf' >> /etc/unbound/unbound.conf"
if [ -e /etc/init.d/unbound ] ; then
sudo /etc/init.d/unbound restart
elif [ -e /usr/lib/systemd/system/unbound.service ] ; then
sudo systemctl restart unbound
else
echo "Can't discover a method to restart \"unbound\""
exit 1
fi
# Make sure DNS works.
dig git.openstack.org
# Cache all currently known gerrit repos.
sudo mkdir -p /opt/git
#sudo -i python /opt/nodepool-scripts/cache_git_repos.py
# We don't always get ext4 from our clouds, mount ext3 as ext4 on the next
# boot (eg when this image is used for testing).
sudo sed -i 's/ext3/ext4/g' /etc/fstab
# Remove additional sources used to install puppet or special version of pypi.
# We do this because leaving these sources in place causes every test that
# does an apt-get update to hit those servers which may not have the uptime
# of our local mirrors.
OS_FAMILY=$(facter osfamily)
if [ "$OS_FAMILY" == "Debian" ] ; then
sudo rm -f /etc/apt/sources.list.d/*
sudo apt-get update
elif [ "$OS_FAMILY" == "RedHat" ] ; then
# Can't delete * in yum.repos.d since all of the repos are listed there.
# Be specific instead.
if [ -f /etc/yum.repos.d/puppetlabs.repo ] ; then
sudo rm -f /etc/yum.repos.d/puppetlabs.repo
fi
fi
if [[ "$HOSTNAME" =~ cz5608 ]]; then
OPENSTACK_HOST="172.16.41.132"
APT_PROXY_HOST="172.16.41.132"
else
OPENSTACK_HOST="172.16.41.134"
APT_PROXY_HOST="172.16.41.134"
fi
sudo su - jenkins -c "echo '
OPENSTACK_HOST=$OPENSTACK_HOST
APT_PROXY_HOST=$APT_PROXY_HOST
RABBITMQ_MGMT_PORT=15672
RABBITMQ_URL=$OPENSTACK_HOST
RABBITMQ_HOST=$OPENSTACK_HOST
RABBITMQ_PORT=5672
ADMIN_USERNAME=ci-user
ADMIN_PASSWORD=swordfish
ADMIN_TENANT=ci
KEYSTONE_URL=$OPENSTACK_HOST
LINUX_IMAGE=cloud-fedora-v3
' > /home/jenkins/credentials"
sudo su - jenkins -c "echo '
ssh-rsa AAAAB3NzaC1yc2EAAAADAQABAAABAQC5dNhJBQf1jURAvq8Mf8II3MDPShriQp203JRxSJzS64NzrNGSwXIAd+9lWgj4aPGhGKuHF6A97Jn4O2btBZCmZmzR97BUgFYbk77b+ANfd1C02QT164/oQxRPAoZvKK3btYtZWGiE9Dh6PXAADn3HDl2fVgaP+IcXWnj7/U55h7b2EerWgBsyfZlgDG1y9n9s/V+LmBGTyjgk1kKjqgd/VTaJNzMif1Z/gNB6wmd6oVrQKbIj7nA0oOwgDFdc2lFLB91LwDzrc7+X+ggYu19gIaX1IrJ9KVDOOrnLYpfCbGtWhP5nqiTAfsMmUfUKlsn/L3+0KBENjSHcnYwKxRLp jenkins@murano-ci' >> /home/jenkins/.ssh/authorized_keys"
if [ -n "${NODEPOOL_SSH_KEY}" ]; then
sudo su - jenkins -c "echo '${NODEPOOL_SSH_KEY}' >> /home/jenkins/.ssh/authorized_keys"
fi
if [ -n "${JENKINS_PUBLIC_KEY}" ]; then
sudo su - jenkins -c "echo '${JENKINS_PUBLIC_KEY}' >> /home/jenkins/.ssh/authorized_keys.bak"
fi
sync
sleep 5