Statistics
| Branch: | Tag: | Revision:

root / lib / bootstrap.py @ 3b6b6129

History | View | Annotate | Download (27.9 kB)

1 a0c9f010 Michael Hanselmann
#
2 a0c9f010 Michael Hanselmann
#
3 a0c9f010 Michael Hanselmann
4 600535f0 Manuel Franceschini
# Copyright (C) 2006, 2007, 2008, 2010 Google Inc.
5 a0c9f010 Michael Hanselmann
#
6 a0c9f010 Michael Hanselmann
# This program is free software; you can redistribute it and/or modify
7 a0c9f010 Michael Hanselmann
# it under the terms of the GNU General Public License as published by
8 a0c9f010 Michael Hanselmann
# the Free Software Foundation; either version 2 of the License, or
9 a0c9f010 Michael Hanselmann
# (at your option) any later version.
10 a0c9f010 Michael Hanselmann
#
11 a0c9f010 Michael Hanselmann
# This program is distributed in the hope that it will be useful, but
12 a0c9f010 Michael Hanselmann
# WITHOUT ANY WARRANTY; without even the implied warranty of
13 a0c9f010 Michael Hanselmann
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
14 a0c9f010 Michael Hanselmann
# General Public License for more details.
15 a0c9f010 Michael Hanselmann
#
16 a0c9f010 Michael Hanselmann
# You should have received a copy of the GNU General Public License
17 a0c9f010 Michael Hanselmann
# along with this program; if not, write to the Free Software
18 a0c9f010 Michael Hanselmann
# Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA
19 a0c9f010 Michael Hanselmann
# 02110-1301, USA.
20 a0c9f010 Michael Hanselmann
21 a0c9f010 Michael Hanselmann
22 a0c9f010 Michael Hanselmann
"""Functions to bootstrap a new cluster.
23 a0c9f010 Michael Hanselmann

24 a0c9f010 Michael Hanselmann
"""
25 a0c9f010 Michael Hanselmann
26 a0c9f010 Michael Hanselmann
import os
27 a0c9f010 Michael Hanselmann
import os.path
28 a0c9f010 Michael Hanselmann
import re
29 b1b6ea87 Iustin Pop
import logging
30 d693c864 Iustin Pop
import time
31 a0c9f010 Michael Hanselmann
32 a0c9f010 Michael Hanselmann
from ganeti import rpc
33 a0c9f010 Michael Hanselmann
from ganeti import ssh
34 a0c9f010 Michael Hanselmann
from ganeti import utils
35 a0c9f010 Michael Hanselmann
from ganeti import errors
36 a0c9f010 Michael Hanselmann
from ganeti import config
37 a0c9f010 Michael Hanselmann
from ganeti import constants
38 b9eeeb02 Michael Hanselmann
from ganeti import objects
39 a0c9f010 Michael Hanselmann
from ganeti import ssconf
40 a33848a5 Guido Trotter
from ganeti import serializer
41 a5728081 Guido Trotter
from ganeti import hypervisor
42 a721e23a Luca Bigliardi
from ganeti import bdev
43 a744b676 Manuel Franceschini
from ganeti import netutils
44 d367b66c Manuel Franceschini
from ganeti import backend
45 3b6b6129 Michael Hanselmann
from ganeti import luxi
46 3b6b6129 Michael Hanselmann
47 a0c9f010 Michael Hanselmann
48 88b92fe3 Guido Trotter
# ec_id for InitConfig's temporary reservation manager
49 88b92fe3 Guido Trotter
_INITCONF_ECID = "initconfig-ecid"
50 88b92fe3 Guido Trotter
51 3b6b6129 Michael Hanselmann
#: After how many seconds daemon must be responsive
52 3b6b6129 Michael Hanselmann
_DAEMON_READY_TIMEOUT = 10.0
53 3b6b6129 Michael Hanselmann
54 e38220e4 Michael Hanselmann
55 531baf8e Iustin Pop
def _InitSSHSetup():
56 a0c9f010 Michael Hanselmann
  """Setup the SSH configuration for the cluster.
57 a0c9f010 Michael Hanselmann

58 a0c9f010 Michael Hanselmann
  This generates a dsa keypair for root, adds the pub key to the
59 a0c9f010 Michael Hanselmann
  permitted hosts and adds the hostkey to its own known hosts.
60 a0c9f010 Michael Hanselmann

61 a0c9f010 Michael Hanselmann
  """
62 a0c9f010 Michael Hanselmann
  priv_key, pub_key, auth_keys = ssh.GetUserFiles(constants.GANETI_RUNAS)
63 a0c9f010 Michael Hanselmann
64 a0c9f010 Michael Hanselmann
  for name in priv_key, pub_key:
65 a0c9f010 Michael Hanselmann
    if os.path.exists(name):
66 a0c9f010 Michael Hanselmann
      utils.CreateBackup(name)
67 a0c9f010 Michael Hanselmann
    utils.RemoveFile(name)
68 a0c9f010 Michael Hanselmann
69 a0c9f010 Michael Hanselmann
  result = utils.RunCmd(["ssh-keygen", "-t", "dsa",
70 a0c9f010 Michael Hanselmann
                         "-f", priv_key,
71 a0c9f010 Michael Hanselmann
                         "-q", "-N", ""])
72 a0c9f010 Michael Hanselmann
  if result.failed:
73 a0c9f010 Michael Hanselmann
    raise errors.OpExecError("Could not generate ssh keypair, error %s" %
74 a0c9f010 Michael Hanselmann
                             result.output)
75 a0c9f010 Michael Hanselmann
76 7a0156dc Luca Bigliardi
  utils.AddAuthorizedKey(auth_keys, utils.ReadFile(pub_key))
77 a0c9f010 Michael Hanselmann
78 a0c9f010 Michael Hanselmann
79 c008906b Michael Hanselmann
def GenerateHmacKey(file_name):
80 c008906b Michael Hanselmann
  """Writes a new HMAC key.
81 c008906b Michael Hanselmann

82 c008906b Michael Hanselmann
  @type file_name: str
83 c008906b Michael Hanselmann
  @param file_name: Path to output file
84 c008906b Michael Hanselmann

85 c008906b Michael Hanselmann
  """
86 43575108 Michael Hanselmann
  utils.WriteFile(file_name, data="%s\n" % utils.GenerateSecret(), mode=0400,
87 43575108 Michael Hanselmann
                  backup=True)
88 43575108 Michael Hanselmann
89 43575108 Michael Hanselmann
90 6b7d5878 Michael Hanselmann
def GenerateClusterCrypto(new_cluster_cert, new_rapi_cert, new_confd_hmac_key,
91 af2ae1c0 Iustin Pop
                          new_cds, rapi_cert_pem=None, cds=None,
92 aeefe835 Iustin Pop
                          nodecert_file=constants.NODED_CERT_FILE,
93 aeefe835 Iustin Pop
                          rapicert_file=constants.RAPI_CERT_FILE,
94 fc0726b9 Michael Hanselmann
                          hmackey_file=constants.CONFD_HMAC_KEY,
95 fc0726b9 Michael Hanselmann
                          cds_file=constants.CLUSTER_DOMAIN_SECRET_FILE):
96 43575108 Michael Hanselmann
  """Updates the cluster certificates, keys and secrets.
97 43575108 Michael Hanselmann

98 43575108 Michael Hanselmann
  @type new_cluster_cert: bool
99 43575108 Michael Hanselmann
  @param new_cluster_cert: Whether to generate a new cluster certificate
100 43575108 Michael Hanselmann
  @type new_rapi_cert: bool
101 43575108 Michael Hanselmann
  @param new_rapi_cert: Whether to generate a new RAPI certificate
102 6b7d5878 Michael Hanselmann
  @type new_confd_hmac_key: bool
103 6b7d5878 Michael Hanselmann
  @param new_confd_hmac_key: Whether to generate a new HMAC key
104 3db3eb2a Michael Hanselmann
  @type new_cds: bool
105 3db3eb2a Michael Hanselmann
  @param new_cds: Whether to generate a new cluster domain secret
106 43575108 Michael Hanselmann
  @type rapi_cert_pem: string
107 43575108 Michael Hanselmann
  @param rapi_cert_pem: New RAPI certificate in PEM format
108 3db3eb2a Michael Hanselmann
  @type cds: string
109 3db3eb2a Michael Hanselmann
  @param cds: New cluster domain secret
110 aeefe835 Iustin Pop
  @type nodecert_file: string
111 aeefe835 Iustin Pop
  @param nodecert_file: optional override of the node cert file path
112 aeefe835 Iustin Pop
  @type rapicert_file: string
113 aeefe835 Iustin Pop
  @param rapicert_file: optional override of the rapi cert file path
114 aeefe835 Iustin Pop
  @type hmackey_file: string
115 aeefe835 Iustin Pop
  @param hmackey_file: optional override of the hmac key file path
116 43575108 Michael Hanselmann

117 43575108 Michael Hanselmann
  """
118 168c1de2 Michael Hanselmann
  # noded SSL certificate
119 aeefe835 Iustin Pop
  cluster_cert_exists = os.path.exists(nodecert_file)
120 43575108 Michael Hanselmann
  if new_cluster_cert or not cluster_cert_exists:
121 43575108 Michael Hanselmann
    if cluster_cert_exists:
122 aeefe835 Iustin Pop
      utils.CreateBackup(nodecert_file)
123 43575108 Michael Hanselmann
124 aeefe835 Iustin Pop
    logging.debug("Generating new cluster certificate at %s", nodecert_file)
125 af2ae1c0 Iustin Pop
    utils.GenerateSelfSignedSslCert(nodecert_file)
126 43575108 Michael Hanselmann
127 6b7d5878 Michael Hanselmann
  # confd HMAC key
128 aeefe835 Iustin Pop
  if new_confd_hmac_key or not os.path.exists(hmackey_file):
129 aeefe835 Iustin Pop
    logging.debug("Writing new confd HMAC key to %s", hmackey_file)
130 aeefe835 Iustin Pop
    GenerateHmacKey(hmackey_file)
131 43575108 Michael Hanselmann
132 43575108 Michael Hanselmann
  # RAPI
133 aeefe835 Iustin Pop
  rapi_cert_exists = os.path.exists(rapicert_file)
134 43575108 Michael Hanselmann
135 43575108 Michael Hanselmann
  if rapi_cert_pem:
136 43575108 Michael Hanselmann
    # Assume rapi_pem contains a valid PEM-formatted certificate and key
137 aeefe835 Iustin Pop
    logging.debug("Writing RAPI certificate at %s", rapicert_file)
138 aeefe835 Iustin Pop
    utils.WriteFile(rapicert_file, data=rapi_cert_pem, backup=True)
139 43575108 Michael Hanselmann
140 43575108 Michael Hanselmann
  elif new_rapi_cert or not rapi_cert_exists:
141 43575108 Michael Hanselmann
    if rapi_cert_exists:
142 aeefe835 Iustin Pop
      utils.CreateBackup(rapicert_file)
143 43575108 Michael Hanselmann
144 aeefe835 Iustin Pop
    logging.debug("Generating new RAPI certificate at %s", rapicert_file)
145 af2ae1c0 Iustin Pop
    utils.GenerateSelfSignedSslCert(rapicert_file)
146 c008906b Michael Hanselmann
147 3db3eb2a Michael Hanselmann
  # Cluster domain secret
148 3db3eb2a Michael Hanselmann
  if cds:
149 fc0726b9 Michael Hanselmann
    logging.debug("Writing cluster domain secret to %s", cds_file)
150 fc0726b9 Michael Hanselmann
    utils.WriteFile(cds_file, data=cds, backup=True)
151 fc0726b9 Michael Hanselmann
152 fc0726b9 Michael Hanselmann
  elif new_cds or not os.path.exists(cds_file):
153 fc0726b9 Michael Hanselmann
    logging.debug("Generating new cluster domain secret at %s", cds_file)
154 fc0726b9 Michael Hanselmann
    GenerateHmacKey(cds_file)
155 3db3eb2a Michael Hanselmann
156 c008906b Michael Hanselmann
157 8f215968 Michael Hanselmann
def _InitGanetiServerSetup(master_name):
158 40a97d80 Michael Hanselmann
  """Setup the necessary configuration for the initial node daemon.
159 40a97d80 Michael Hanselmann

160 40a97d80 Michael Hanselmann
  This creates the nodepass file containing the shared password for
161 600535f0 Manuel Franceschini
  the cluster, generates the SSL certificate and starts the node daemon.
162 600535f0 Manuel Franceschini

163 600535f0 Manuel Franceschini
  @type master_name: str
164 600535f0 Manuel Franceschini
  @param master_name: Name of the master node
165 40a97d80 Michael Hanselmann

166 40a97d80 Michael Hanselmann
  """
167 43575108 Michael Hanselmann
  # Generate cluster secrets
168 3db3eb2a Michael Hanselmann
  GenerateClusterCrypto(True, False, False, False)
169 4a34c5cf Guido Trotter
170 f154a7a3 Michael Hanselmann
  result = utils.RunCmd([constants.DAEMON_UTIL, "start", constants.NODED])
171 a0c9f010 Michael Hanselmann
  if result.failed:
172 a0c9f010 Michael Hanselmann
    raise errors.OpExecError("Could not start the node daemon, command %s"
173 a0c9f010 Michael Hanselmann
                             " had exitcode %s and error %s" %
174 a0c9f010 Michael Hanselmann
                             (result.cmd, result.exit_code, result.output))
175 a0c9f010 Michael Hanselmann
176 5627f375 Michael Hanselmann
  _WaitForNodeDaemon(master_name)
177 5627f375 Michael Hanselmann
178 5627f375 Michael Hanselmann
179 5627f375 Michael Hanselmann
def _WaitForNodeDaemon(node_name):
180 5627f375 Michael Hanselmann
  """Wait for node daemon to become responsive.
181 5627f375 Michael Hanselmann

182 5627f375 Michael Hanselmann
  """
183 d3833ebd Michael Hanselmann
  def _CheckNodeDaemon():
184 5627f375 Michael Hanselmann
    result = rpc.RpcRunner.call_version([node_name])[node_name]
185 d3833ebd Michael Hanselmann
    if result.fail_msg:
186 d3833ebd Michael Hanselmann
      raise utils.RetryAgain()
187 8f215968 Michael Hanselmann
188 d3833ebd Michael Hanselmann
  try:
189 3b6b6129 Michael Hanselmann
    utils.Retry(_CheckNodeDaemon, 1.0, _DAEMON_READY_TIMEOUT)
190 d3833ebd Michael Hanselmann
  except utils.RetryTimeout:
191 5627f375 Michael Hanselmann
    raise errors.OpExecError("Node daemon on %s didn't answer queries within"
192 3b6b6129 Michael Hanselmann
                             " %s seconds" % (node_name, _DAEMON_READY_TIMEOUT))
193 3b6b6129 Michael Hanselmann
194 3b6b6129 Michael Hanselmann
195 3b6b6129 Michael Hanselmann
def _WaitForMasterDaemon():
196 3b6b6129 Michael Hanselmann
  """Wait for master daemon to become responsive.
197 3b6b6129 Michael Hanselmann

198 3b6b6129 Michael Hanselmann
  """
199 3b6b6129 Michael Hanselmann
  def _CheckMasterDaemon():
200 3b6b6129 Michael Hanselmann
    try:
201 3b6b6129 Michael Hanselmann
      cl = luxi.Client()
202 3b6b6129 Michael Hanselmann
      (cluster_name, ) = cl.QueryConfigValues(["cluster_name"])
203 3b6b6129 Michael Hanselmann
    except Exception:
204 3b6b6129 Michael Hanselmann
      raise utils.RetryAgain()
205 3b6b6129 Michael Hanselmann
206 3b6b6129 Michael Hanselmann
    logging.debug("Received cluster name %s from master", cluster_name)
207 3b6b6129 Michael Hanselmann
208 3b6b6129 Michael Hanselmann
  try:
209 3b6b6129 Michael Hanselmann
    utils.Retry(_CheckMasterDaemon, 1.0, _DAEMON_READY_TIMEOUT)
210 3b6b6129 Michael Hanselmann
  except utils.RetryTimeout:
211 3b6b6129 Michael Hanselmann
    raise errors.OpExecError("Master daemon didn't answer queries within"
212 3b6b6129 Michael Hanselmann
                             " %s seconds" % _DAEMON_READY_TIMEOUT)
213 5627f375 Michael Hanselmann
214 a0c9f010 Michael Hanselmann
215 0e3baaf3 Iustin Pop
def _InitFileStorage(file_storage_dir):
216 0e3baaf3 Iustin Pop
  """Initialize if needed the file storage.
217 0e3baaf3 Iustin Pop

218 0e3baaf3 Iustin Pop
  @param file_storage_dir: the user-supplied value
219 0e3baaf3 Iustin Pop
  @return: either empty string (if file storage was disabled at build
220 0e3baaf3 Iustin Pop
      time) or the normalized path to the storage directory
221 0e3baaf3 Iustin Pop

222 0e3baaf3 Iustin Pop
  """
223 0e3baaf3 Iustin Pop
  if not constants.ENABLE_FILE_STORAGE:
224 0e3baaf3 Iustin Pop
    return ""
225 0e3baaf3 Iustin Pop
226 0e3baaf3 Iustin Pop
  file_storage_dir = os.path.normpath(file_storage_dir)
227 0e3baaf3 Iustin Pop
228 0e3baaf3 Iustin Pop
  if not os.path.isabs(file_storage_dir):
229 0e3baaf3 Iustin Pop
    raise errors.OpPrereqError("The file storage directory you passed is"
230 0e3baaf3 Iustin Pop
                               " not an absolute path.", errors.ECODE_INVAL)
231 0e3baaf3 Iustin Pop
232 0e3baaf3 Iustin Pop
  if not os.path.exists(file_storage_dir):
233 0e3baaf3 Iustin Pop
    try:
234 0e3baaf3 Iustin Pop
      os.makedirs(file_storage_dir, 0750)
235 0e3baaf3 Iustin Pop
    except OSError, err:
236 0e3baaf3 Iustin Pop
      raise errors.OpPrereqError("Cannot create file storage directory"
237 0e3baaf3 Iustin Pop
                                 " '%s': %s" % (file_storage_dir, err),
238 0e3baaf3 Iustin Pop
                                 errors.ECODE_ENVIRON)
239 0e3baaf3 Iustin Pop
240 0e3baaf3 Iustin Pop
  if not os.path.isdir(file_storage_dir):
241 0e3baaf3 Iustin Pop
    raise errors.OpPrereqError("The file storage directory '%s' is not"
242 0e3baaf3 Iustin Pop
                               " a directory." % file_storage_dir,
243 0e3baaf3 Iustin Pop
                               errors.ECODE_ENVIRON)
244 0e3baaf3 Iustin Pop
  return file_storage_dir
245 0e3baaf3 Iustin Pop
246 0e3baaf3 Iustin Pop
247 952d7515 Michael Hanselmann
def InitCluster(cluster_name, mac_prefix, # pylint: disable-msg=R0913
248 ce735215 Guido Trotter
                master_netdev, file_storage_dir, candidate_pool_size,
249 b6a30b0d Guido Trotter
                secondary_ip=None, vg_name=None, beparams=None,
250 b6a30b0d Guido Trotter
                nicparams=None, hvparams=None, enabled_hypervisors=None,
251 3953242f Iustin Pop
                modify_etc_hosts=True, modify_ssh_setup=True,
252 a721e23a Luca Bigliardi
                maintain_node_health=False, drbd_helper=None,
253 2f20d07b Manuel Franceschini
                uid_pool=None, default_iallocator=None,
254 3d914585 Renรฉ Nussbaumer
                primary_ip_version=None, prealloc_wipe_disks=False):
255 a0c9f010 Michael Hanselmann
  """Initialise the cluster.
256 a0c9f010 Michael Hanselmann

257 ce735215 Guido Trotter
  @type candidate_pool_size: int
258 ce735215 Guido Trotter
  @param candidate_pool_size: master candidate pool size
259 ce735215 Guido Trotter

260 a0c9f010 Michael Hanselmann
  """
261 ce735215 Guido Trotter
  # TODO: complete the docstring
262 a0c9f010 Michael Hanselmann
  if config.ConfigWriter.IsCluster():
263 debac808 Iustin Pop
    raise errors.OpPrereqError("Cluster is already initialised",
264 debac808 Iustin Pop
                               errors.ECODE_STATE)
265 a0c9f010 Michael Hanselmann
266 b119bccb Guido Trotter
  if not enabled_hypervisors:
267 b119bccb Guido Trotter
    raise errors.OpPrereqError("Enabled hypervisors list must contain at"
268 debac808 Iustin Pop
                               " least one member", errors.ECODE_INVAL)
269 b119bccb Guido Trotter
  invalid_hvs = set(enabled_hypervisors) - constants.HYPER_TYPES
270 b119bccb Guido Trotter
  if invalid_hvs:
271 b119bccb Guido Trotter
    raise errors.OpPrereqError("Enabled hypervisors contains invalid"
272 debac808 Iustin Pop
                               " entries: %s" % invalid_hvs,
273 debac808 Iustin Pop
                               errors.ECODE_INVAL)
274 b119bccb Guido Trotter
275 a0c9f010 Michael Hanselmann
276 2f20d07b Manuel Franceschini
  ipcls = None
277 2f20d07b Manuel Franceschini
  if primary_ip_version == constants.IP4_VERSION:
278 2f20d07b Manuel Franceschini
    ipcls = netutils.IP4Address
279 2f20d07b Manuel Franceschini
  elif primary_ip_version == constants.IP6_VERSION:
280 2f20d07b Manuel Franceschini
    ipcls = netutils.IP6Address
281 2f20d07b Manuel Franceschini
  else:
282 2f20d07b Manuel Franceschini
    raise errors.OpPrereqError("Invalid primary ip version: %d." %
283 2f20d07b Manuel Franceschini
                               primary_ip_version)
284 2f20d07b Manuel Franceschini
285 2f20d07b Manuel Franceschini
  hostname = netutils.GetHostname(family=ipcls.family)
286 2f20d07b Manuel Franceschini
  if not ipcls.IsValid(hostname.ip):
287 2f20d07b Manuel Franceschini
    raise errors.OpPrereqError("This host's IP (%s) is not a valid IPv%d"
288 2f20d07b Manuel Franceschini
                               " address." % (hostname.ip, primary_ip_version))
289 2f20d07b Manuel Franceschini
290 2f20d07b Manuel Franceschini
  if ipcls.IsLoopback(hostname.ip):
291 8b312c1d Manuel Franceschini
    raise errors.OpPrereqError("This host's IP (%s) resolves to a loopback"
292 8b312c1d Manuel Franceschini
                               " address. Please fix DNS or %s." %
293 debac808 Iustin Pop
                               (hostname.ip, constants.ETC_HOSTS),
294 debac808 Iustin Pop
                               errors.ECODE_ENVIRON)
295 a0c9f010 Michael Hanselmann
296 2f20d07b Manuel Franceschini
  if not ipcls.Own(hostname.ip):
297 a0c9f010 Michael Hanselmann
    raise errors.OpPrereqError("Inconsistency: this host's name resolves"
298 a0c9f010 Michael Hanselmann
                               " to %s,\nbut this ip address does not"
299 7c4c22f5 Manuel Franceschini
                               " belong to this host" %
300 debac808 Iustin Pop
                               hostname.ip, errors.ECODE_ENVIRON)
301 a0c9f010 Michael Hanselmann
302 2f20d07b Manuel Franceschini
  clustername = netutils.GetHostname(name=cluster_name, family=ipcls.family)
303 a0c9f010 Michael Hanselmann
304 2f20d07b Manuel Franceschini
  if netutils.TcpPing(clustername.ip, constants.DEFAULT_NODED_PORT, timeout=5):
305 7c4c22f5 Manuel Franceschini
    raise errors.OpPrereqError("Cluster IP already active",
306 debac808 Iustin Pop
                               errors.ECODE_NOTUNIQUE)
307 a0c9f010 Michael Hanselmann
308 2f20d07b Manuel Franceschini
  if not secondary_ip:
309 2f20d07b Manuel Franceschini
    if primary_ip_version == constants.IP6_VERSION:
310 2f20d07b Manuel Franceschini
      raise errors.OpPrereqError("When using a IPv6 primary address, a valid"
311 7c4c22f5 Manuel Franceschini
                                 " IPv4 address must be given as secondary",
312 7c4c22f5 Manuel Franceschini
                                 errors.ECODE_INVAL)
313 b9eeeb02 Michael Hanselmann
    secondary_ip = hostname.ip
314 a0c9f010 Michael Hanselmann
315 2f20d07b Manuel Franceschini
  if not netutils.IP4Address.IsValid(secondary_ip):
316 2f20d07b Manuel Franceschini
    raise errors.OpPrereqError("Secondary IP address (%s) has to be a valid"
317 2f20d07b Manuel Franceschini
                               " IPv4 address." % secondary_ip,
318 2f20d07b Manuel Franceschini
                               errors.ECODE_INVAL)
319 2f20d07b Manuel Franceschini
320 2f20d07b Manuel Franceschini
  if not netutils.IP4Address.Own(secondary_ip):
321 2f20d07b Manuel Franceschini
    raise errors.OpPrereqError("You gave %s as secondary IP,"
322 2f20d07b Manuel Franceschini
                               " but it does not belong to this host." %
323 2f20d07b Manuel Franceschini
                               secondary_ip, errors.ECODE_ENVIRON)
324 2f20d07b Manuel Franceschini
325 a0c9f010 Michael Hanselmann
  if vg_name is not None:
326 a0c9f010 Michael Hanselmann
    # Check if volume group is valid
327 a0c9f010 Michael Hanselmann
    vgstatus = utils.CheckVolumeGroupSize(utils.ListVolumeGroups(), vg_name,
328 a0c9f010 Michael Hanselmann
                                          constants.MIN_VG_SIZE)
329 a0c9f010 Michael Hanselmann
    if vgstatus:
330 a0c9f010 Michael Hanselmann
      raise errors.OpPrereqError("Error: %s\nspecify --no-lvm-storage if"
331 debac808 Iustin Pop
                                 " you are not using lvm" % vgstatus,
332 debac808 Iustin Pop
                                 errors.ECODE_INVAL)
333 a0c9f010 Michael Hanselmann
334 a721e23a Luca Bigliardi
  if drbd_helper is not None:
335 a721e23a Luca Bigliardi
    try:
336 a721e23a Luca Bigliardi
      curr_helper = bdev.BaseDRBD.GetUsermodeHelper()
337 a721e23a Luca Bigliardi
    except errors.BlockDeviceError, err:
338 a721e23a Luca Bigliardi
      raise errors.OpPrereqError("Error while checking drbd helper"
339 a721e23a Luca Bigliardi
                                 " (specify --no-drbd-storage if you are not"
340 a721e23a Luca Bigliardi
                                 " using drbd): %s" % str(err),
341 a721e23a Luca Bigliardi
                                 errors.ECODE_ENVIRON)
342 a721e23a Luca Bigliardi
    if drbd_helper != curr_helper:
343 a721e23a Luca Bigliardi
      raise errors.OpPrereqError("Error: requiring %s as drbd helper but %s"
344 a721e23a Luca Bigliardi
                                 " is the current helper" % (drbd_helper,
345 a721e23a Luca Bigliardi
                                                             curr_helper),
346 a721e23a Luca Bigliardi
                                 errors.ECODE_INVAL)
347 a721e23a Luca Bigliardi
348 0e3baaf3 Iustin Pop
  file_storage_dir = _InitFileStorage(file_storage_dir)
349 a0c9f010 Michael Hanselmann
350 a0c9f010 Michael Hanselmann
  if not re.match("^[0-9a-z]{2}:[0-9a-z]{2}:[0-9a-z]{2}$", mac_prefix):
351 debac808 Iustin Pop
    raise errors.OpPrereqError("Invalid mac prefix given '%s'" % mac_prefix,
352 debac808 Iustin Pop
                               errors.ECODE_INVAL)
353 a0c9f010 Michael Hanselmann
354 a0c9f010 Michael Hanselmann
  result = utils.RunCmd(["ip", "link", "show", "dev", master_netdev])
355 a0c9f010 Michael Hanselmann
  if result.failed:
356 a0c9f010 Michael Hanselmann
    raise errors.OpPrereqError("Invalid master netdev given (%s): '%s'" %
357 a0c9f010 Michael Hanselmann
                               (master_netdev,
358 debac808 Iustin Pop
                                result.output.strip()), errors.ECODE_INVAL)
359 a0c9f010 Michael Hanselmann
360 9dae41ad Guido Trotter
  dirs = [(constants.RUN_GANETI_DIR, constants.RUN_DIRS_MODE)]
361 9dae41ad Guido Trotter
  utils.EnsureDirs(dirs)
362 9dae41ad Guido Trotter
363 a5728081 Guido Trotter
  utils.ForceDictType(beparams, constants.BES_PARAMETER_TYPES)
364 b6a30b0d Guido Trotter
  utils.ForceDictType(nicparams, constants.NICS_PARAMETER_TYPES)
365 b6a30b0d Guido Trotter
  objects.NIC.CheckParameterSyntax(nicparams)
366 b6a30b0d Guido Trotter
367 a5728081 Guido Trotter
  # hvparams is a mapping of hypervisor->hvparams dict
368 a5728081 Guido Trotter
  for hv_name, hv_params in hvparams.iteritems():
369 a5728081 Guido Trotter
    utils.ForceDictType(hv_params, constants.HVS_PARAMETER_TYPES)
370 a5728081 Guido Trotter
    hv_class = hypervisor.GetHypervisor(hv_name)
371 a5728081 Guido Trotter
    hv_class.CheckParameterSyntax(hv_params)
372 d4b72030 Guido Trotter
373 a0c9f010 Michael Hanselmann
  # set up ssh config and /etc/hosts
374 13998ef2 Michael Hanselmann
  sshline = utils.ReadFile(constants.SSH_HOST_RSA_PUB)
375 a0c9f010 Michael Hanselmann
  sshkey = sshline.split(" ")[1]
376 a0c9f010 Michael Hanselmann
377 b86a6bcd Guido Trotter
  if modify_etc_hosts:
378 ea8ac9c9 Renรฉ Nussbaumer
    utils.AddHostToEtcHosts(hostname.name, hostname.ip)
379 b86a6bcd Guido Trotter
380 b989b9d9 Ken Wehr
  if modify_ssh_setup:
381 b989b9d9 Ken Wehr
    _InitSSHSetup()
382 a0c9f010 Michael Hanselmann
383 bf4af505 Apollon Oikonomopoulos
  if default_iallocator is not None:
384 bf4af505 Apollon Oikonomopoulos
    alloc_script = utils.FindFile(default_iallocator,
385 bf4af505 Apollon Oikonomopoulos
                                  constants.IALLOCATOR_SEARCH_PATH,
386 bf4af505 Apollon Oikonomopoulos
                                  os.path.isfile)
387 bf4af505 Apollon Oikonomopoulos
    if alloc_script is None:
388 bf4af505 Apollon Oikonomopoulos
      raise errors.OpPrereqError("Invalid default iallocator script '%s'"
389 bf4af505 Apollon Oikonomopoulos
                                 " specified" % default_iallocator,
390 bf4af505 Apollon Oikonomopoulos
                                 errors.ECODE_INVAL)
391 bf4af505 Apollon Oikonomopoulos
392 430b923c Iustin Pop
  now = time.time()
393 430b923c Iustin Pop
394 a0c9f010 Michael Hanselmann
  # init of cluster config file
395 b9eeeb02 Michael Hanselmann
  cluster_config = objects.Cluster(
396 b9eeeb02 Michael Hanselmann
    serial_no=1,
397 b9eeeb02 Michael Hanselmann
    rsahostkeypub=sshkey,
398 b9eeeb02 Michael Hanselmann
    highest_used_port=(constants.FIRST_DRBD_PORT - 1),
399 b9eeeb02 Michael Hanselmann
    mac_prefix=mac_prefix,
400 b9eeeb02 Michael Hanselmann
    volume_group_name=vg_name,
401 b9eeeb02 Michael Hanselmann
    tcpudp_port_pool=set(),
402 f6bd6e98 Michael Hanselmann
    master_node=hostname.name,
403 f6bd6e98 Michael Hanselmann
    master_ip=clustername.ip,
404 f6bd6e98 Michael Hanselmann
    master_netdev=master_netdev,
405 f6bd6e98 Michael Hanselmann
    cluster_name=clustername.name,
406 f6bd6e98 Michael Hanselmann
    file_storage_dir=file_storage_dir,
407 ea3a925f Alexander Schreiber
    enabled_hypervisors=enabled_hypervisors,
408 4ef7f423 Guido Trotter
    beparams={constants.PP_DEFAULT: beparams},
409 b6a30b0d Guido Trotter
    nicparams={constants.PP_DEFAULT: nicparams},
410 ea3a925f Alexander Schreiber
    hvparams=hvparams,
411 ce735215 Guido Trotter
    candidate_pool_size=candidate_pool_size,
412 022c3a0b Guido Trotter
    modify_etc_hosts=modify_etc_hosts,
413 b989b9d9 Ken Wehr
    modify_ssh_setup=modify_ssh_setup,
414 39b0f0c2 Balazs Lecz
    uid_pool=uid_pool,
415 430b923c Iustin Pop
    ctime=now,
416 430b923c Iustin Pop
    mtime=now,
417 3953242f Iustin Pop
    maintain_node_health=maintain_node_health,
418 a721e23a Luca Bigliardi
    drbd_usermode_helper=drbd_helper,
419 bf4af505 Apollon Oikonomopoulos
    default_iallocator=default_iallocator,
420 2f20d07b Manuel Franceschini
    primary_ip_family=ipcls.family,
421 3d914585 Renรฉ Nussbaumer
    prealloc_wipe_disks=prealloc_wipe_disks,
422 b9eeeb02 Michael Hanselmann
    )
423 b9eeeb02 Michael Hanselmann
  master_node_config = objects.Node(name=hostname.name,
424 b9eeeb02 Michael Hanselmann
                                    primary_ip=hostname.ip,
425 b9222f32 Guido Trotter
                                    secondary_ip=secondary_ip,
426 c044f32c Guido Trotter
                                    serial_no=1,
427 c044f32c Guido Trotter
                                    master_candidate=True,
428 af64c0ea Iustin Pop
                                    offline=False, drained=False,
429 c044f32c Guido Trotter
                                    )
430 9e1333b9 Guido Trotter
  InitConfig(constants.CONFIG_VERSION, cluster_config, master_node_config)
431 d367b66c Manuel Franceschini
  cfg = config.ConfigWriter(offline=True)
432 9e1333b9 Guido Trotter
  ssh.WriteKnownHostsFile(cfg, constants.SSH_KNOWN_HOSTS_FILE)
433 a4eae71f Michael Hanselmann
  cfg.Update(cfg.GetClusterInfo(), logging.error)
434 d367b66c Manuel Franceschini
  backend.WriteSsconfFiles(cfg.GetSsconfValues())
435 d367b66c Manuel Franceschini
436 d367b66c Manuel Franceschini
  # set up the inter-node password and certificate
437 d367b66c Manuel Franceschini
  _InitGanetiServerSetup(hostname.name)
438 827f753e Guido Trotter
439 952d7515 Michael Hanselmann
  logging.debug("Starting daemons")
440 952d7515 Michael Hanselmann
  result = utils.RunCmd([constants.DAEMON_UTIL, "start-all"])
441 952d7515 Michael Hanselmann
  if result.failed:
442 952d7515 Michael Hanselmann
    raise errors.OpExecError("Could not start daemons, command %s"
443 952d7515 Michael Hanselmann
                             " had exitcode %s and error %s" %
444 952d7515 Michael Hanselmann
                             (result.cmd, result.exit_code, result.output))
445 b3f1cf6f Iustin Pop
446 3b6b6129 Michael Hanselmann
  _WaitForMasterDaemon()
447 3b6b6129 Michael Hanselmann
448 b1b6ea87 Iustin Pop
449 02f99608 Oleksiy Mishchenko
def InitConfig(version, cluster_config, master_node_config,
450 02f99608 Oleksiy Mishchenko
               cfg_file=constants.CLUSTER_CONF_FILE):
451 7b3a8fb5 Iustin Pop
  """Create the initial cluster configuration.
452 7b3a8fb5 Iustin Pop

453 7b3a8fb5 Iustin Pop
  It will contain the current node, which will also be the master
454 7b3a8fb5 Iustin Pop
  node, and no instances.
455 7b3a8fb5 Iustin Pop

456 7b3a8fb5 Iustin Pop
  @type version: int
457 c41eea6e Iustin Pop
  @param version: configuration version
458 c41eea6e Iustin Pop
  @type cluster_config: L{objects.Cluster}
459 c41eea6e Iustin Pop
  @param cluster_config: cluster configuration
460 c41eea6e Iustin Pop
  @type master_node_config: L{objects.Node}
461 c41eea6e Iustin Pop
  @param master_node_config: master node configuration
462 c41eea6e Iustin Pop
  @type cfg_file: string
463 c41eea6e Iustin Pop
  @param cfg_file: configuration file path
464 c41eea6e Iustin Pop

465 7b3a8fb5 Iustin Pop
  """
466 88b92fe3 Guido Trotter
  uuid_generator = config.TemporaryReservationManager()
467 88b92fe3 Guido Trotter
  cluster_config.uuid = uuid_generator.Generate([], utils.NewUUID,
468 88b92fe3 Guido Trotter
                                                _INITCONF_ECID)
469 88b92fe3 Guido Trotter
  master_node_config.uuid = uuid_generator.Generate([], utils.NewUUID,
470 88b92fe3 Guido Trotter
                                                    _INITCONF_ECID)
471 7b3a8fb5 Iustin Pop
  nodes = {
472 7b3a8fb5 Iustin Pop
    master_node_config.name: master_node_config,
473 7b3a8fb5 Iustin Pop
    }
474 88b92fe3 Guido Trotter
  default_nodegroup = objects.NodeGroup(
475 88b92fe3 Guido Trotter
    uuid=uuid_generator.Generate([], utils.NewUUID, _INITCONF_ECID),
476 88b92fe3 Guido Trotter
    name="default",
477 88b92fe3 Guido Trotter
    members=[master_node_config.name],
478 88b92fe3 Guido Trotter
    )
479 88b92fe3 Guido Trotter
  nodegroups = {
480 88b92fe3 Guido Trotter
    default_nodegroup.uuid: default_nodegroup,
481 88b92fe3 Guido Trotter
    }
482 d693c864 Iustin Pop
  now = time.time()
483 7b3a8fb5 Iustin Pop
  config_data = objects.ConfigData(version=version,
484 7b3a8fb5 Iustin Pop
                                   cluster=cluster_config,
485 88b92fe3 Guido Trotter
                                   nodegroups=nodegroups,
486 7b3a8fb5 Iustin Pop
                                   nodes=nodes,
487 7b3a8fb5 Iustin Pop
                                   instances={},
488 d693c864 Iustin Pop
                                   serial_no=1,
489 d693c864 Iustin Pop
                                   ctime=now, mtime=now)
490 a33848a5 Guido Trotter
  utils.WriteFile(cfg_file,
491 a33848a5 Guido Trotter
                  data=serializer.Dump(config_data.ToDict()),
492 a33848a5 Guido Trotter
                  mode=0600)
493 02f99608 Oleksiy Mishchenko
494 02f99608 Oleksiy Mishchenko
495 140aa4a8 Iustin Pop
def FinalizeClusterDestroy(master):
496 140aa4a8 Iustin Pop
  """Execute the last steps of cluster destroy
497 140aa4a8 Iustin Pop

498 140aa4a8 Iustin Pop
  This function shuts down all the daemons, completing the destroy
499 140aa4a8 Iustin Pop
  begun in cmdlib.LUDestroyOpcode.
500 140aa4a8 Iustin Pop

501 140aa4a8 Iustin Pop
  """
502 b989b9d9 Ken Wehr
  cfg = config.ConfigWriter()
503 b989b9d9 Ken Wehr
  modify_ssh_setup = cfg.GetClusterInfo().modify_ssh_setup
504 781de953 Iustin Pop
  result = rpc.RpcRunner.call_node_stop_master(master, True)
505 3cebe102 Michael Hanselmann
  msg = result.fail_msg
506 6c00d19a Iustin Pop
  if msg:
507 099c52ad Iustin Pop
    logging.warning("Could not disable the master role: %s", msg)
508 b989b9d9 Ken Wehr
  result = rpc.RpcRunner.call_node_leave_cluster(master, modify_ssh_setup)
509 3cebe102 Michael Hanselmann
  msg = result.fail_msg
510 0623d351 Iustin Pop
  if msg:
511 0623d351 Iustin Pop
    logging.warning("Could not shutdown the node daemon and cleanup"
512 0623d351 Iustin Pop
                    " the node: %s", msg)
513 140aa4a8 Iustin Pop
514 140aa4a8 Iustin Pop
515 87622829 Iustin Pop
def SetupNodeDaemon(cluster_name, node, ssh_key_check):
516 827f753e Guido Trotter
  """Add a node to the cluster.
517 827f753e Guido Trotter

518 b1b6ea87 Iustin Pop
  This function must be called before the actual opcode, and will ssh
519 b1b6ea87 Iustin Pop
  to the remote node, copy the needed files, and start ganeti-noded,
520 b1b6ea87 Iustin Pop
  allowing the master to do the rest via normal rpc calls.
521 827f753e Guido Trotter

522 87622829 Iustin Pop
  @param cluster_name: the cluster name
523 87622829 Iustin Pop
  @param node: the name of the new node
524 87622829 Iustin Pop
  @param ssh_key_check: whether to do a strict key check
525 827f753e Guido Trotter

526 827f753e Guido Trotter
  """
527 b43dcc5a Manuel Franceschini
  family = ssconf.SimpleStore().GetPrimaryIPFamily()
528 b43dcc5a Manuel Franceschini
  sshrunner = ssh.SshRunner(cluster_name,
529 b43dcc5a Manuel Franceschini
                            ipv6=family==netutils.IP6Address.family)
530 5557b04c Michael Hanselmann
531 168c1de2 Michael Hanselmann
  noded_cert = utils.ReadFile(constants.NODED_CERT_FILE)
532 2438c157 Michael Hanselmann
  rapi_cert = utils.ReadFile(constants.RAPI_CERT_FILE)
533 6b7d5878 Michael Hanselmann
  confd_hmac_key = utils.ReadFile(constants.CONFD_HMAC_KEY)
534 5557b04c Michael Hanselmann
535 827f753e Guido Trotter
  # in the base64 pem encoding, neither '!' nor '.' are valid chars,
536 827f753e Guido Trotter
  # so we use this to detect an invalid certificate; as long as the
537 827f753e Guido Trotter
  # cert doesn't contain this, the here-document will be correctly
538 77b076ca Guido Trotter
  # parsed by the shell sequence below. HMAC keys are hexadecimal strings,
539 77b076ca Guido Trotter
  # so the same restrictions apply.
540 6b7d5878 Michael Hanselmann
  for content in (noded_cert, rapi_cert, confd_hmac_key):
541 77b076ca Guido Trotter
    if re.search('^!EOF\.', content, re.MULTILINE):
542 77b076ca Guido Trotter
      raise errors.OpExecError("invalid SSL certificate or HMAC key")
543 5557b04c Michael Hanselmann
544 5557b04c Michael Hanselmann
  if not noded_cert.endswith("\n"):
545 5557b04c Michael Hanselmann
    noded_cert += "\n"
546 2438c157 Michael Hanselmann
  if not rapi_cert.endswith("\n"):
547 2438c157 Michael Hanselmann
    rapi_cert += "\n"
548 6b7d5878 Michael Hanselmann
  if not confd_hmac_key.endswith("\n"):
549 6b7d5878 Michael Hanselmann
    confd_hmac_key += "\n"
550 827f753e Guido Trotter
551 b43dcc5a Manuel Franceschini
  bind_address = constants.IP4_ADDRESS_ANY
552 b43dcc5a Manuel Franceschini
  if family == netutils.IP6Address.family:
553 b43dcc5a Manuel Franceschini
    bind_address = constants.IP6_ADDRESS_ANY
554 b43dcc5a Manuel Franceschini
555 827f753e Guido Trotter
  # set up inter-node password and certificate and restarts the node daemon
556 827f753e Guido Trotter
  # and then connect with ssh to set password and start ganeti-noded
557 827f753e Guido Trotter
  # note that all the below variables are sanitized at this point,
558 827f753e Guido Trotter
  # either by being constants or by the checks above
559 9294514d Renรฉ Nussbaumer
  sshrunner.CopyFileToNode(node, constants.NODED_CERT_FILE)
560 9294514d Renรฉ Nussbaumer
  sshrunner.CopyFileToNode(node, constants.RAPI_CERT_FILE)
561 9294514d Renรฉ Nussbaumer
  sshrunner.CopyFileToNode(node, constants.CONFD_HMAC_KEY)
562 31684f84 Renรฉ Nussbaumer
  mycommand = ("%s stop-all; %s start %s -b '%s'" % (constants.DAEMON_UTIL,
563 31684f84 Renรฉ Nussbaumer
                                                     constants.DAEMON_UTIL,
564 31684f84 Renรฉ Nussbaumer
                                                     constants.NODED,
565 31684f84 Renรฉ Nussbaumer
                                                     bind_address))
566 827f753e Guido Trotter
567 c4b6c29c Michael Hanselmann
  result = sshrunner.Run(node, 'root', mycommand, batch=False,
568 c4b6c29c Michael Hanselmann
                         ask_key=ssh_key_check,
569 9294514d Renรฉ Nussbaumer
                         use_cluster_key=True,
570 c4b6c29c Michael Hanselmann
                         strict_host_check=ssh_key_check)
571 827f753e Guido Trotter
  if result.failed:
572 827f753e Guido Trotter
    raise errors.OpExecError("Remote command on node %s, error: %s,"
573 827f753e Guido Trotter
                             " output: %s" %
574 827f753e Guido Trotter
                             (node, result.fail_reason, result.output))
575 827f753e Guido Trotter
576 5627f375 Michael Hanselmann
  _WaitForNodeDaemon(node)
577 5627f375 Michael Hanselmann
578 b1b6ea87 Iustin Pop
579 8e2524c3 Guido Trotter
def MasterFailover(no_voting=False):
580 b1b6ea87 Iustin Pop
  """Failover the master node.
581 b1b6ea87 Iustin Pop

582 b1b6ea87 Iustin Pop
  This checks that we are not already the master, and will cause the
583 b1b6ea87 Iustin Pop
  current master to cease being master, and the non-master to become
584 b1b6ea87 Iustin Pop
  new master.
585 b1b6ea87 Iustin Pop

586 8e2524c3 Guido Trotter
  @type no_voting: boolean
587 8e2524c3 Guido Trotter
  @param no_voting: force the operation without remote nodes agreement
588 8e2524c3 Guido Trotter
                      (dangerous)
589 8e2524c3 Guido Trotter

590 b1b6ea87 Iustin Pop
  """
591 8135a2db Iustin Pop
  sstore = ssconf.SimpleStore()
592 b1b6ea87 Iustin Pop
593 8135a2db Iustin Pop
  old_master, new_master = ssconf.GetMasterAndMyself(sstore)
594 8135a2db Iustin Pop
  node_list = sstore.GetNodeList()
595 8135a2db Iustin Pop
  mc_list = sstore.GetMasterCandidates()
596 b1b6ea87 Iustin Pop
597 b1b6ea87 Iustin Pop
  if old_master == new_master:
598 b1b6ea87 Iustin Pop
    raise errors.OpPrereqError("This commands must be run on the node"
599 b1b6ea87 Iustin Pop
                               " where you want the new master to be."
600 b1b6ea87 Iustin Pop
                               " %s is already the master" %
601 debac808 Iustin Pop
                               old_master, errors.ECODE_INVAL)
602 d5927e48 Iustin Pop
603 8135a2db Iustin Pop
  if new_master not in mc_list:
604 8135a2db Iustin Pop
    mc_no_master = [name for name in mc_list if name != old_master]
605 8135a2db Iustin Pop
    raise errors.OpPrereqError("This node is not among the nodes marked"
606 8135a2db Iustin Pop
                               " as master candidates. Only these nodes"
607 8135a2db Iustin Pop
                               " can become masters. Current list of"
608 8135a2db Iustin Pop
                               " master candidates is:\n"
609 debac808 Iustin Pop
                               "%s" % ('\n'.join(mc_no_master)),
610 debac808 Iustin Pop
                               errors.ECODE_STATE)
611 8135a2db Iustin Pop
612 8e2524c3 Guido Trotter
  if not no_voting:
613 8e2524c3 Guido Trotter
    vote_list = GatherMasterVotes(node_list)
614 8e2524c3 Guido Trotter
615 8e2524c3 Guido Trotter
    if vote_list:
616 8e2524c3 Guido Trotter
      voted_master = vote_list[0][0]
617 8e2524c3 Guido Trotter
      if voted_master is None:
618 8e2524c3 Guido Trotter
        raise errors.OpPrereqError("Cluster is inconsistent, most nodes did"
619 debac808 Iustin Pop
                                   " not respond.", errors.ECODE_ENVIRON)
620 8e2524c3 Guido Trotter
      elif voted_master != old_master:
621 8e2524c3 Guido Trotter
        raise errors.OpPrereqError("I have a wrong configuration, I believe"
622 8e2524c3 Guido Trotter
                                   " the master is %s but the other nodes"
623 8e2524c3 Guido Trotter
                                   " voted %s. Please resync the configuration"
624 8e2524c3 Guido Trotter
                                   " of this node." %
625 debac808 Iustin Pop
                                   (old_master, voted_master),
626 debac808 Iustin Pop
                                   errors.ECODE_STATE)
627 b1b6ea87 Iustin Pop
  # end checks
628 b1b6ea87 Iustin Pop
629 b1b6ea87 Iustin Pop
  rcode = 0
630 b1b6ea87 Iustin Pop
631 d5927e48 Iustin Pop
  logging.info("Setting master to %s, old master: %s", new_master, old_master)
632 b1b6ea87 Iustin Pop
633 21004460 Iustin Pop
  try:
634 21004460 Iustin Pop
    # instantiate a real config writer, as we now know we have the
635 21004460 Iustin Pop
    # configuration data
636 eb180fe2 Iustin Pop
    cfg = config.ConfigWriter(accept_foreign=True)
637 21004460 Iustin Pop
638 21004460 Iustin Pop
    cluster_info = cfg.GetClusterInfo()
639 21004460 Iustin Pop
    cluster_info.master_node = new_master
640 21004460 Iustin Pop
    # this will also regenerate the ssconf files, since we updated the
641 21004460 Iustin Pop
    # cluster info
642 21004460 Iustin Pop
    cfg.Update(cluster_info, logging.error)
643 21004460 Iustin Pop
  except errors.ConfigurationError, err:
644 21004460 Iustin Pop
    logging.error("Error while trying to set the new master: %s",
645 21004460 Iustin Pop
                  str(err))
646 21004460 Iustin Pop
    return 1
647 21004460 Iustin Pop
648 21004460 Iustin Pop
  # if cfg.Update worked, then it means the old master daemon won't be
649 21004460 Iustin Pop
  # able now to write its own config file (we rely on locking in both
650 21004460 Iustin Pop
  # backend.UploadFile() and ConfigWriter._Write(); hence the next
651 21004460 Iustin Pop
  # step is to kill the old master
652 21004460 Iustin Pop
653 21004460 Iustin Pop
  logging.info("Stopping the master daemon on node %s", old_master)
654 21004460 Iustin Pop
655 781de953 Iustin Pop
  result = rpc.RpcRunner.call_node_stop_master(old_master, True)
656 3cebe102 Michael Hanselmann
  msg = result.fail_msg
657 6c00d19a Iustin Pop
  if msg:
658 d5927e48 Iustin Pop
    logging.error("Could not disable the master role on the old master"
659 6c00d19a Iustin Pop
                 " %s, please disable manually: %s", old_master, msg)
660 b1b6ea87 Iustin Pop
661 21004460 Iustin Pop
  logging.info("Checking master IP non-reachability...")
662 21004460 Iustin Pop
663 425f0f54 Iustin Pop
  master_ip = sstore.GetMasterIP()
664 425f0f54 Iustin Pop
  total_timeout = 30
665 d23ef431 Michael Hanselmann
  # Here we have a phase where no master should be running
666 425f0f54 Iustin Pop
  def _check_ip():
667 a744b676 Manuel Franceschini
    if netutils.TcpPing(master_ip, constants.DEFAULT_NODED_PORT):
668 425f0f54 Iustin Pop
      raise utils.RetryAgain()
669 425f0f54 Iustin Pop
670 425f0f54 Iustin Pop
  try:
671 425f0f54 Iustin Pop
    utils.Retry(_check_ip, (1, 1.5, 5), total_timeout)
672 425f0f54 Iustin Pop
  except utils.RetryTimeout:
673 425f0f54 Iustin Pop
    logging.warning("The master IP is still reachable after %s seconds,"
674 425f0f54 Iustin Pop
                    " continuing but activating the master on the current"
675 425f0f54 Iustin Pop
                    " node will probably fail", total_timeout)
676 b1b6ea87 Iustin Pop
677 21004460 Iustin Pop
  logging.info("Starting the master daemons on the new master")
678 d5927e48 Iustin Pop
679 3583908a Guido Trotter
  result = rpc.RpcRunner.call_node_start_master(new_master, True, no_voting)
680 3cebe102 Michael Hanselmann
  msg = result.fail_msg
681 b726aff0 Iustin Pop
  if msg:
682 d5927e48 Iustin Pop
    logging.error("Could not start the master role on the new master"
683 b726aff0 Iustin Pop
                  " %s, please check: %s", new_master, msg)
684 b1b6ea87 Iustin Pop
    rcode = 1
685 b1b6ea87 Iustin Pop
686 21004460 Iustin Pop
  logging.info("Master failed over from %s to %s", old_master, new_master)
687 b1b6ea87 Iustin Pop
  return rcode
688 d7cdb55d Iustin Pop
689 d7cdb55d Iustin Pop
690 8eb148ae Iustin Pop
def GetMaster():
691 8eb148ae Iustin Pop
  """Returns the current master node.
692 8eb148ae Iustin Pop

693 8eb148ae Iustin Pop
  This is a separate function in bootstrap since it's needed by
694 8eb148ae Iustin Pop
  gnt-cluster, and instead of importing directly ssconf, it's better
695 8eb148ae Iustin Pop
  to abstract it in bootstrap, where we do use ssconf in other
696 8eb148ae Iustin Pop
  functions too.
697 8eb148ae Iustin Pop

698 8eb148ae Iustin Pop
  """
699 8eb148ae Iustin Pop
  sstore = ssconf.SimpleStore()
700 8eb148ae Iustin Pop
701 8eb148ae Iustin Pop
  old_master, _ = ssconf.GetMasterAndMyself(sstore)
702 8eb148ae Iustin Pop
703 8eb148ae Iustin Pop
  return old_master
704 8eb148ae Iustin Pop
705 8eb148ae Iustin Pop
706 d7cdb55d Iustin Pop
def GatherMasterVotes(node_list):
707 d7cdb55d Iustin Pop
  """Check the agreement on who is the master.
708 d7cdb55d Iustin Pop

709 d7cdb55d Iustin Pop
  This function will return a list of (node, number of votes), ordered
710 d7cdb55d Iustin Pop
  by the number of votes. Errors will be denoted by the key 'None'.
711 d7cdb55d Iustin Pop

712 d7cdb55d Iustin Pop
  Note that the sum of votes is the number of nodes this machine
713 d7cdb55d Iustin Pop
  knows, whereas the number of entries in the list could be different
714 d7cdb55d Iustin Pop
  (if some nodes vote for another master).
715 d7cdb55d Iustin Pop

716 d7cdb55d Iustin Pop
  We remove ourselves from the list since we know that (bugs aside)
717 d7cdb55d Iustin Pop
  since we use the same source for configuration information for both
718 d7cdb55d Iustin Pop
  backend and boostrap, we'll always vote for ourselves.
719 d7cdb55d Iustin Pop

720 d7cdb55d Iustin Pop
  @type node_list: list
721 d7cdb55d Iustin Pop
  @param node_list: the list of nodes to query for master info; the current
722 5bbd3f7f Michael Hanselmann
      node will be removed if it is in the list
723 d7cdb55d Iustin Pop
  @rtype: list
724 d7cdb55d Iustin Pop
  @return: list of (node, votes)
725 d7cdb55d Iustin Pop

726 d7cdb55d Iustin Pop
  """
727 b705c7a6 Manuel Franceschini
  myself = netutils.Hostname.GetSysName()
728 d7cdb55d Iustin Pop
  try:
729 d7cdb55d Iustin Pop
    node_list.remove(myself)
730 d7cdb55d Iustin Pop
  except ValueError:
731 d7cdb55d Iustin Pop
    pass
732 d7cdb55d Iustin Pop
  if not node_list:
733 d7cdb55d Iustin Pop
    # no nodes left (eventually after removing myself)
734 d7cdb55d Iustin Pop
    return []
735 d7cdb55d Iustin Pop
  results = rpc.RpcRunner.call_master_info(node_list)
736 d7cdb55d Iustin Pop
  if not isinstance(results, dict):
737 d7cdb55d Iustin Pop
    # this should not happen (unless internal error in rpc)
738 d7cdb55d Iustin Pop
    logging.critical("Can't complete rpc call, aborting master startup")
739 d7cdb55d Iustin Pop
    return [(None, len(node_list))]
740 d7cdb55d Iustin Pop
  votes = {}
741 d7cdb55d Iustin Pop
  for node in results:
742 781de953 Iustin Pop
    nres = results[node]
743 2a52a064 Iustin Pop
    data = nres.payload
744 3cebe102 Michael Hanselmann
    msg = nres.fail_msg
745 2a52a064 Iustin Pop
    fail = False
746 2a52a064 Iustin Pop
    if msg:
747 2a52a064 Iustin Pop
      logging.warning("Error contacting node %s: %s", node, msg)
748 2a52a064 Iustin Pop
      fail = True
749 d8e0caa6 Manuel Franceschini
    # for now we accept both length 3 and 4 (data[3] is primary ip version)
750 2a52a064 Iustin Pop
    elif not isinstance(data, (tuple, list)) or len(data) < 3:
751 2a52a064 Iustin Pop
      logging.warning("Invalid data received from node %s: %s", node, data)
752 2a52a064 Iustin Pop
      fail = True
753 2a52a064 Iustin Pop
    if fail:
754 d7cdb55d Iustin Pop
      if None not in votes:
755 d7cdb55d Iustin Pop
        votes[None] = 0
756 d7cdb55d Iustin Pop
      votes[None] += 1
757 d7cdb55d Iustin Pop
      continue
758 781de953 Iustin Pop
    master_node = data[2]
759 d7cdb55d Iustin Pop
    if master_node not in votes:
760 d7cdb55d Iustin Pop
      votes[master_node] = 0
761 d7cdb55d Iustin Pop
    votes[master_node] += 1
762 d7cdb55d Iustin Pop
763 d7cdb55d Iustin Pop
  vote_list = [v for v in votes.items()]
764 d7cdb55d Iustin Pop
  # sort first on number of votes then on name, since we want None
765 d7cdb55d Iustin Pop
  # sorted later if we have the half of the nodes not responding, and
766 d7cdb55d Iustin Pop
  # half voting all for the same master
767 d7cdb55d Iustin Pop
  vote_list.sort(key=lambda x: (x[1], x[0]), reverse=True)
768 d7cdb55d Iustin Pop
769 d7cdb55d Iustin Pop
  return vote_list