RETIRED, Heat templates for deploying OpenStack
Go to file
Damien Ciabrini 0fbac20fd6 DB connection: prevent src address from binding to a VIP
When a service connects to the database VIP from the node hosting this
VIP, the resulting TCP socket has a src address which is by default
bound to the VIP as well. If the VIP is failed over to another node
while the socket's Send-Q is not empty, TCP keepalive won't engage and
the service will become unavailable for a very long time (by default
more than 10m).

To prevent failover issues, DB connections should have the src address
of their TCP socket bound to the IP of the network interface used for
MySQL traffic. This is achieved by passing a new option to the
database connection URIs. This option is available starting from
PyMySQL 0.7.9-2.

We use a new intermediate variable in hiera to hold the IP to be used
as a source address for all DB connections. All services adapt their
database URI accordingly.

Moreover, a new YAML validation check is added to guarantee that new
services will construct their database URI appropriately.

Change-Id: Ic69de63acbfb992314ea30a3a9b17c0b5341c035
Closes-Bug: #1643487
(cherry picked from commit 56ebc7e58d)
2017-01-09 14:14:15 +00:00
ci scenario001/pingtest: remove gnocchi_res_alarm 2017-01-09 14:13:57 +00:00
deployed-server Make deployed-server OS::Neutron::Port optional 2016-08-07 07:29:06 -04:00
docker Merge "Bind mount files to run DiD in latest atomic host" into stable/newton 2016-11-28 15:39:38 +00:00
environments Merge "Containerized Services for Composable Roles" into stable/newton 2016-11-28 15:38:41 +00:00
extraconfig Use df instead of findmnt in cephstorage upgrade scripts 2016-12-21 21:22:32 +01:00
firstboot No longer hard coding to a specifc network interface name. 2016-12-04 22:07:08 +00:00
network Merge "Select per-network hostnames for service_node_names" into stable/newton 2016-10-07 05:43:20 +00:00
puppet DB connection: prevent src address from binding to a VIP 2017-01-09 14:14:15 +00:00
tools DB connection: prevent src address from binding to a VIP 2017-01-09 14:14:15 +00:00
validation-scripts Change ping wait flag 2016-05-09 20:22:52 -04:00
.gitignore Rename overcloud-without-mergepy to overcloud. 2015-12-03 16:01:33 -05:00
.gitreview Update .gitreview for stable/newton 2016-09-29 13:00:01 -04:00
Gemfile Revert "Pin puppetlabs_spec_helper to 1.1.1" 2016-08-24 00:59:38 +00:00
LICENSE Add license file 2014-01-20 11:58:20 +01:00
MANIFEST.in Add release configuration. 2013-10-22 17:49:35 +01:00
README.rst Drop os-apply-config. No longer maintained. 2015-12-03 16:01:41 -05:00
Rakefile Make puppet manifests compliant with Puppet 4.x 2015-11-05 15:52:28 +01:00
all-nodes-validation.yaml network validation to ping test each interface 2015-07-24 16:36:57 -04:00
babel.cfg Add release configuration. 2013-10-22 17:49:35 +01:00
bootstrap-config.yaml Remove NO_SIGNAL from ControllerBootstrapNodeDeployment 2015-06-03 16:30:53 +02:00
capabilities-map.yaml Merge "Update capabilities-map.yaml" 2016-09-21 21:00:21 +00:00
default_passwords.yaml Move MySQL settings out of puppet/controller.yaml 2016-08-23 21:29:02 -04:00
hosts-config.yaml Split out hosts config deployment 2016-10-18 22:37:58 +00:00
j2_excludes.yaml Add generic template for custom roles. 2016-10-06 06:27:48 +00:00
net-config-bond.yaml Add constraint to prohibit balance-tcp from BondInterfaceOvsOptions 2016-08-25 21:57:28 -02:30
net-config-bridge.yaml Add Management Network For System Administration. 2015-12-18 13:05:54 -06:00
net-config-linux-bridge.yaml Adding ManagementIpSubnet to linux bridge net conf 2016-01-05 10:38:15 +00:00
net-config-noop.yaml Add Management Network For System Administration. 2015-12-18 13:05:54 -06:00
net-config-static-bridge-with-external-dhcp.yaml Use already Deployed/Installed servers 2016-07-11 16:20:07 -04:00
net-config-static-bridge.yaml Add missing ManagementIpSubnet 2016-04-12 11:32:09 +00:00
net-config-static.yaml Add net-config-static.yaml 2016-04-12 11:32:32 +00:00
overcloud-resource-registry-puppet.j2.yaml Containerized Services for Composable Roles 2016-11-25 17:49:05 +00:00
overcloud.j2.yaml Containerized Services for Composable Roles 2016-11-25 17:49:05 +00:00
requirements.txt Add release configuration. 2013-10-22 17:49:35 +01:00
roles_data.yaml Fix inconsistent Manila service naming 2016-11-11 14:59:41 +00:00
setup.cfg Drop deprecated templates/Makefile/merge.py 2015-11-25 15:00:13 -05:00
setup.py Add release configuration. 2013-10-22 17:49:35 +01:00
test-requirements.txt Add release configuration. 2013-10-22 17:49:35 +01:00
tox.ini Rename tox env to pep8 2016-02-11 12:29:36 -06:00

README.rst

tripleo-heat-templates

Heat templates to deploy OpenStack using OpenStack.

Features

The ability to deploy a multi-node, role based OpenStack deployment using OpenStack Heat. Notable features include:

  • Choice of deployment/configuration tooling: puppet, (soon) docker
  • Role based deployment: roles for the controller, compute, ceph, swift, and cinder storage
  • physical network configuration: support for isolated networks, bonding, and standard ctlplane networking

Directories

A description of the directory layout in TripleO Heat Templates.

  • environments: contains heat environment files that can be used with -e

    on the command like to enable features, etc.

  • extraconfig: templates used to enable 'extra' functionality. Includes

    functionality for distro specific registration and upgrades.

  • firstboot: example first_boot scripts that can be used when initially

    creating instances.

  • network: heat templates to help create isolated networks and ports
  • puppet: templates mostly driven by configuration with puppet. To use these

    templates you can use the overcloud-resource-registry-puppet.yaml.

  • validation-scripts: validation scripts useful to all deployment

    configurations