Statistics
| Branch: | Tag: | Revision:

root / lib / bootstrap.py @ ec0292f1

History | View | Annotate | Download (16.1 kB)

1 a0c9f010 Michael Hanselmann
#
2 a0c9f010 Michael Hanselmann
#
3 a0c9f010 Michael Hanselmann
4 a0c9f010 Michael Hanselmann
# Copyright (C) 2006, 2007, 2008 Google Inc.
5 a0c9f010 Michael Hanselmann
#
6 a0c9f010 Michael Hanselmann
# This program is free software; you can redistribute it and/or modify
7 a0c9f010 Michael Hanselmann
# it under the terms of the GNU General Public License as published by
8 a0c9f010 Michael Hanselmann
# the Free Software Foundation; either version 2 of the License, or
9 a0c9f010 Michael Hanselmann
# (at your option) any later version.
10 a0c9f010 Michael Hanselmann
#
11 a0c9f010 Michael Hanselmann
# This program is distributed in the hope that it will be useful, but
12 a0c9f010 Michael Hanselmann
# WITHOUT ANY WARRANTY; without even the implied warranty of
13 a0c9f010 Michael Hanselmann
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
14 a0c9f010 Michael Hanselmann
# General Public License for more details.
15 a0c9f010 Michael Hanselmann
#
16 a0c9f010 Michael Hanselmann
# You should have received a copy of the GNU General Public License
17 a0c9f010 Michael Hanselmann
# along with this program; if not, write to the Free Software
18 a0c9f010 Michael Hanselmann
# Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA
19 a0c9f010 Michael Hanselmann
# 02110-1301, USA.
20 a0c9f010 Michael Hanselmann
21 a0c9f010 Michael Hanselmann
22 a0c9f010 Michael Hanselmann
"""Functions to bootstrap a new cluster.
23 a0c9f010 Michael Hanselmann

24 a0c9f010 Michael Hanselmann
"""
25 a0c9f010 Michael Hanselmann
26 a0c9f010 Michael Hanselmann
import os
27 a0c9f010 Michael Hanselmann
import os.path
28 a0c9f010 Michael Hanselmann
import sha
29 a0c9f010 Michael Hanselmann
import re
30 b1b6ea87 Iustin Pop
import logging
31 a0c9f010 Michael Hanselmann
32 a0c9f010 Michael Hanselmann
from ganeti import rpc
33 a0c9f010 Michael Hanselmann
from ganeti import ssh
34 a0c9f010 Michael Hanselmann
from ganeti import utils
35 a0c9f010 Michael Hanselmann
from ganeti import errors
36 a0c9f010 Michael Hanselmann
from ganeti import config
37 a0c9f010 Michael Hanselmann
from ganeti import constants
38 b9eeeb02 Michael Hanselmann
from ganeti import objects
39 a0c9f010 Michael Hanselmann
from ganeti import ssconf
40 a0c9f010 Michael Hanselmann
41 a0c9f010 Michael Hanselmann
def _InitSSHSetup(node):
42 a0c9f010 Michael Hanselmann
  """Setup the SSH configuration for the cluster.
43 a0c9f010 Michael Hanselmann

44 a0c9f010 Michael Hanselmann

45 a0c9f010 Michael Hanselmann
  This generates a dsa keypair for root, adds the pub key to the
46 a0c9f010 Michael Hanselmann
  permitted hosts and adds the hostkey to its own known hosts.
47 a0c9f010 Michael Hanselmann

48 a0c9f010 Michael Hanselmann
  Args:
49 a0c9f010 Michael Hanselmann
    node: the name of this host as a fqdn
50 a0c9f010 Michael Hanselmann

51 a0c9f010 Michael Hanselmann
  """
52 a0c9f010 Michael Hanselmann
  priv_key, pub_key, auth_keys = ssh.GetUserFiles(constants.GANETI_RUNAS)
53 a0c9f010 Michael Hanselmann
54 a0c9f010 Michael Hanselmann
  for name in priv_key, pub_key:
55 a0c9f010 Michael Hanselmann
    if os.path.exists(name):
56 a0c9f010 Michael Hanselmann
      utils.CreateBackup(name)
57 a0c9f010 Michael Hanselmann
    utils.RemoveFile(name)
58 a0c9f010 Michael Hanselmann
59 a0c9f010 Michael Hanselmann
  result = utils.RunCmd(["ssh-keygen", "-t", "dsa",
60 a0c9f010 Michael Hanselmann
                         "-f", priv_key,
61 a0c9f010 Michael Hanselmann
                         "-q", "-N", ""])
62 a0c9f010 Michael Hanselmann
  if result.failed:
63 a0c9f010 Michael Hanselmann
    raise errors.OpExecError("Could not generate ssh keypair, error %s" %
64 a0c9f010 Michael Hanselmann
                             result.output)
65 a0c9f010 Michael Hanselmann
66 a0c9f010 Michael Hanselmann
  f = open(pub_key, 'r')
67 a0c9f010 Michael Hanselmann
  try:
68 a0c9f010 Michael Hanselmann
    utils.AddAuthorizedKey(auth_keys, f.read(8192))
69 a0c9f010 Michael Hanselmann
  finally:
70 a0c9f010 Michael Hanselmann
    f.close()
71 a0c9f010 Michael Hanselmann
72 a0c9f010 Michael Hanselmann
73 d23ef431 Michael Hanselmann
def _InitGanetiServerSetup():
74 a0c9f010 Michael Hanselmann
  """Setup the necessary configuration for the initial node daemon.
75 a0c9f010 Michael Hanselmann

76 a0c9f010 Michael Hanselmann
  This creates the nodepass file containing the shared password for
77 a0c9f010 Michael Hanselmann
  the cluster and also generates the SSL certificate.
78 a0c9f010 Michael Hanselmann

79 a0c9f010 Michael Hanselmann
  """
80 a0c9f010 Michael Hanselmann
  result = utils.RunCmd(["openssl", "req", "-new", "-newkey", "rsa:1024",
81 a0c9f010 Michael Hanselmann
                         "-days", str(365*5), "-nodes", "-x509",
82 a0c9f010 Michael Hanselmann
                         "-keyout", constants.SSL_CERT_FILE,
83 a0c9f010 Michael Hanselmann
                         "-out", constants.SSL_CERT_FILE, "-batch"])
84 a0c9f010 Michael Hanselmann
  if result.failed:
85 a0c9f010 Michael Hanselmann
    raise errors.OpExecError("could not generate server ssl cert, command"
86 a0c9f010 Michael Hanselmann
                             " %s had exitcode %s and error message %s" %
87 a0c9f010 Michael Hanselmann
                             (result.cmd, result.exit_code, result.output))
88 a0c9f010 Michael Hanselmann
89 a0c9f010 Michael Hanselmann
  os.chmod(constants.SSL_CERT_FILE, 0400)
90 a0c9f010 Michael Hanselmann
91 a0c9f010 Michael Hanselmann
  result = utils.RunCmd([constants.NODE_INITD_SCRIPT, "restart"])
92 a0c9f010 Michael Hanselmann
93 a0c9f010 Michael Hanselmann
  if result.failed:
94 a0c9f010 Michael Hanselmann
    raise errors.OpExecError("Could not start the node daemon, command %s"
95 a0c9f010 Michael Hanselmann
                             " had exitcode %s and error %s" %
96 a0c9f010 Michael Hanselmann
                             (result.cmd, result.exit_code, result.output))
97 a0c9f010 Michael Hanselmann
98 a0c9f010 Michael Hanselmann
99 4342e89b Alexander Schreiber
def InitCluster(cluster_name, mac_prefix, def_bridge,
100 ce735215 Guido Trotter
                master_netdev, file_storage_dir, candidate_pool_size,
101 ce735215 Guido Trotter
                secondary_ip=None, vg_name=None, beparams=None, hvparams=None,
102 02691904 Alexander Schreiber
                enabled_hypervisors=None, default_hypervisor=None):
103 a0c9f010 Michael Hanselmann
  """Initialise the cluster.
104 a0c9f010 Michael Hanselmann

105 ce735215 Guido Trotter
  @type candidate_pool_size: int
106 ce735215 Guido Trotter
  @param candidate_pool_size: master candidate pool size
107 ce735215 Guido Trotter

108 a0c9f010 Michael Hanselmann
  """
109 ce735215 Guido Trotter
  # TODO: complete the docstring
110 a0c9f010 Michael Hanselmann
  if config.ConfigWriter.IsCluster():
111 a0c9f010 Michael Hanselmann
    raise errors.OpPrereqError("Cluster is already initialised")
112 a0c9f010 Michael Hanselmann
113 a0c9f010 Michael Hanselmann
  hostname = utils.HostInfo()
114 a0c9f010 Michael Hanselmann
115 a0c9f010 Michael Hanselmann
  if hostname.ip.startswith("127."):
116 a0c9f010 Michael Hanselmann
    raise errors.OpPrereqError("This host's IP resolves to the private"
117 a0c9f010 Michael Hanselmann
                               " range (%s). Please fix DNS or %s." %
118 a0c9f010 Michael Hanselmann
                               (hostname.ip, constants.ETC_HOSTS))
119 a0c9f010 Michael Hanselmann
120 caad16e2 Iustin Pop
  if not utils.OwnIpAddress(hostname.ip):
121 a0c9f010 Michael Hanselmann
    raise errors.OpPrereqError("Inconsistency: this host's name resolves"
122 a0c9f010 Michael Hanselmann
                               " to %s,\nbut this ip address does not"
123 a0c9f010 Michael Hanselmann
                               " belong to this host."
124 a0c9f010 Michael Hanselmann
                               " Aborting." % hostname.ip)
125 a0c9f010 Michael Hanselmann
126 a0c9f010 Michael Hanselmann
  clustername = utils.HostInfo(cluster_name)
127 a0c9f010 Michael Hanselmann
128 a0c9f010 Michael Hanselmann
  if utils.TcpPing(clustername.ip, constants.DEFAULT_NODED_PORT,
129 a0c9f010 Michael Hanselmann
                   timeout=5):
130 a0c9f010 Michael Hanselmann
    raise errors.OpPrereqError("Cluster IP already active. Aborting.")
131 a0c9f010 Michael Hanselmann
132 a0c9f010 Michael Hanselmann
  if secondary_ip:
133 a0c9f010 Michael Hanselmann
    if not utils.IsValidIP(secondary_ip):
134 a0c9f010 Michael Hanselmann
      raise errors.OpPrereqError("Invalid secondary ip given")
135 a0c9f010 Michael Hanselmann
    if (secondary_ip != hostname.ip and
136 caad16e2 Iustin Pop
        not utils.OwnIpAddress(secondary_ip)):
137 a0c9f010 Michael Hanselmann
      raise errors.OpPrereqError("You gave %s as secondary IP,"
138 a0c9f010 Michael Hanselmann
                                 " but it does not belong to this host." %
139 a0c9f010 Michael Hanselmann
                                 secondary_ip)
140 b9eeeb02 Michael Hanselmann
  else:
141 b9eeeb02 Michael Hanselmann
    secondary_ip = hostname.ip
142 a0c9f010 Michael Hanselmann
143 a0c9f010 Michael Hanselmann
  if vg_name is not None:
144 a0c9f010 Michael Hanselmann
    # Check if volume group is valid
145 a0c9f010 Michael Hanselmann
    vgstatus = utils.CheckVolumeGroupSize(utils.ListVolumeGroups(), vg_name,
146 a0c9f010 Michael Hanselmann
                                          constants.MIN_VG_SIZE)
147 a0c9f010 Michael Hanselmann
    if vgstatus:
148 a0c9f010 Michael Hanselmann
      raise errors.OpPrereqError("Error: %s\nspecify --no-lvm-storage if"
149 a0c9f010 Michael Hanselmann
                                 " you are not using lvm" % vgstatus)
150 a0c9f010 Michael Hanselmann
151 a0c9f010 Michael Hanselmann
  file_storage_dir = os.path.normpath(file_storage_dir)
152 a0c9f010 Michael Hanselmann
153 a0c9f010 Michael Hanselmann
  if not os.path.isabs(file_storage_dir):
154 a0c9f010 Michael Hanselmann
    raise errors.OpPrereqError("The file storage directory you passed is"
155 a0c9f010 Michael Hanselmann
                               " not an absolute path.")
156 a0c9f010 Michael Hanselmann
157 a0c9f010 Michael Hanselmann
  if not os.path.exists(file_storage_dir):
158 a0c9f010 Michael Hanselmann
    try:
159 a0c9f010 Michael Hanselmann
      os.makedirs(file_storage_dir, 0750)
160 a0c9f010 Michael Hanselmann
    except OSError, err:
161 a0c9f010 Michael Hanselmann
      raise errors.OpPrereqError("Cannot create file storage directory"
162 a0c9f010 Michael Hanselmann
                                 " '%s': %s" %
163 a0c9f010 Michael Hanselmann
                                 (file_storage_dir, err))
164 a0c9f010 Michael Hanselmann
165 a0c9f010 Michael Hanselmann
  if not os.path.isdir(file_storage_dir):
166 a0c9f010 Michael Hanselmann
    raise errors.OpPrereqError("The file storage directory '%s' is not"
167 a0c9f010 Michael Hanselmann
                               " a directory." % file_storage_dir)
168 a0c9f010 Michael Hanselmann
169 a0c9f010 Michael Hanselmann
  if not re.match("^[0-9a-z]{2}:[0-9a-z]{2}:[0-9a-z]{2}$", mac_prefix):
170 a0c9f010 Michael Hanselmann
    raise errors.OpPrereqError("Invalid mac prefix given '%s'" % mac_prefix)
171 a0c9f010 Michael Hanselmann
172 a0c9f010 Michael Hanselmann
  result = utils.RunCmd(["ip", "link", "show", "dev", master_netdev])
173 a0c9f010 Michael Hanselmann
  if result.failed:
174 a0c9f010 Michael Hanselmann
    raise errors.OpPrereqError("Invalid master netdev given (%s): '%s'" %
175 a0c9f010 Michael Hanselmann
                               (master_netdev,
176 a0c9f010 Michael Hanselmann
                                result.output.strip()))
177 a0c9f010 Michael Hanselmann
178 a0c9f010 Michael Hanselmann
  if not (os.path.isfile(constants.NODE_INITD_SCRIPT) and
179 a0c9f010 Michael Hanselmann
          os.access(constants.NODE_INITD_SCRIPT, os.X_OK)):
180 a0c9f010 Michael Hanselmann
    raise errors.OpPrereqError("Init.d script '%s' missing or not"
181 a0c9f010 Michael Hanselmann
                               " executable." % constants.NODE_INITD_SCRIPT)
182 a0c9f010 Michael Hanselmann
183 d4b72030 Guido Trotter
  utils.CheckBEParams(beparams)
184 d4b72030 Guido Trotter
185 a0c9f010 Michael Hanselmann
  # set up the inter-node password and certificate
186 d23ef431 Michael Hanselmann
  _InitGanetiServerSetup()
187 a0c9f010 Michael Hanselmann
188 a0c9f010 Michael Hanselmann
  # set up ssh config and /etc/hosts
189 a0c9f010 Michael Hanselmann
  f = open(constants.SSH_HOST_RSA_PUB, 'r')
190 a0c9f010 Michael Hanselmann
  try:
191 a0c9f010 Michael Hanselmann
    sshline = f.read()
192 a0c9f010 Michael Hanselmann
  finally:
193 a0c9f010 Michael Hanselmann
    f.close()
194 a0c9f010 Michael Hanselmann
  sshkey = sshline.split(" ")[1]
195 a0c9f010 Michael Hanselmann
196 a0c9f010 Michael Hanselmann
  utils.AddHostToEtcHosts(hostname.name)
197 a0c9f010 Michael Hanselmann
  _InitSSHSetup(hostname.name)
198 a0c9f010 Michael Hanselmann
199 a0c9f010 Michael Hanselmann
  # init of cluster config file
200 b9eeeb02 Michael Hanselmann
  cluster_config = objects.Cluster(
201 b9eeeb02 Michael Hanselmann
    serial_no=1,
202 b9eeeb02 Michael Hanselmann
    rsahostkeypub=sshkey,
203 b9eeeb02 Michael Hanselmann
    highest_used_port=(constants.FIRST_DRBD_PORT - 1),
204 b9eeeb02 Michael Hanselmann
    mac_prefix=mac_prefix,
205 b9eeeb02 Michael Hanselmann
    volume_group_name=vg_name,
206 b9eeeb02 Michael Hanselmann
    default_bridge=def_bridge,
207 b9eeeb02 Michael Hanselmann
    tcpudp_port_pool=set(),
208 f6bd6e98 Michael Hanselmann
    master_node=hostname.name,
209 f6bd6e98 Michael Hanselmann
    master_ip=clustername.ip,
210 f6bd6e98 Michael Hanselmann
    master_netdev=master_netdev,
211 f6bd6e98 Michael Hanselmann
    cluster_name=clustername.name,
212 f6bd6e98 Michael Hanselmann
    file_storage_dir=file_storage_dir,
213 ea3a925f Alexander Schreiber
    enabled_hypervisors=enabled_hypervisors,
214 02691904 Alexander Schreiber
    default_hypervisor=default_hypervisor,
215 ea3a925f Alexander Schreiber
    beparams={constants.BEGR_DEFAULT: beparams},
216 ea3a925f Alexander Schreiber
    hvparams=hvparams,
217 ce735215 Guido Trotter
    candidate_pool_size=candidate_pool_size,
218 b9eeeb02 Michael Hanselmann
    )
219 b9eeeb02 Michael Hanselmann
  master_node_config = objects.Node(name=hostname.name,
220 b9eeeb02 Michael Hanselmann
                                    primary_ip=hostname.ip,
221 b9222f32 Guido Trotter
                                    secondary_ip=secondary_ip,
222 c044f32c Guido Trotter
                                    serial_no=1,
223 c044f32c Guido Trotter
                                    master_candidate=True,
224 fc0fe88c Iustin Pop
                                    offline=False,
225 c044f32c Guido Trotter
                                    )
226 a0c9f010 Michael Hanselmann
227 05cc153f Guido Trotter
  sscfg = InitConfig(constants.CONFIG_VERSION,
228 05cc153f Guido Trotter
                     cluster_config, master_node_config)
229 05cc153f Guido Trotter
  ssh.WriteKnownHostsFile(sscfg, constants.SSH_KNOWN_HOSTS_FILE)
230 05cc153f Guido Trotter
  cfg = config.ConfigWriter()
231 05cc153f Guido Trotter
  cfg.Update(cfg.GetClusterInfo())
232 827f753e Guido Trotter
233 b3f1cf6f Iustin Pop
  # start the master ip
234 b3f1cf6f Iustin Pop
  # TODO: Review rpc call from bootstrap
235 fda5f19f Michael Hanselmann
  rpc.RpcRunner.call_node_start_master(hostname.name, True)
236 b3f1cf6f Iustin Pop
237 b1b6ea87 Iustin Pop
238 02f99608 Oleksiy Mishchenko
def InitConfig(version, cluster_config, master_node_config,
239 02f99608 Oleksiy Mishchenko
               cfg_file=constants.CLUSTER_CONF_FILE):
240 7b3a8fb5 Iustin Pop
  """Create the initial cluster configuration.
241 7b3a8fb5 Iustin Pop

242 7b3a8fb5 Iustin Pop
  It will contain the current node, which will also be the master
243 7b3a8fb5 Iustin Pop
  node, and no instances.
244 7b3a8fb5 Iustin Pop

245 7b3a8fb5 Iustin Pop
  @type version: int
246 7b3a8fb5 Iustin Pop
  @param version: Configuration version
247 7b3a8fb5 Iustin Pop
  @type cluster_config: objects.Cluster
248 7b3a8fb5 Iustin Pop
  @param cluster_config: Cluster configuration
249 7b3a8fb5 Iustin Pop
  @type master_node_config: objects.Node
250 7b3a8fb5 Iustin Pop
  @param master_node_config: Master node configuration
251 7b3a8fb5 Iustin Pop
  @type file_name: string
252 7b3a8fb5 Iustin Pop
  @param file_name: Configuration file path
253 7b3a8fb5 Iustin Pop

254 7b3a8fb5 Iustin Pop
  @rtype: ssconf.SimpleConfigWriter
255 7b3a8fb5 Iustin Pop
  @returns: Initialized config instance
256 7b3a8fb5 Iustin Pop

257 7b3a8fb5 Iustin Pop
  """
258 7b3a8fb5 Iustin Pop
  nodes = {
259 7b3a8fb5 Iustin Pop
    master_node_config.name: master_node_config,
260 7b3a8fb5 Iustin Pop
    }
261 7b3a8fb5 Iustin Pop
262 7b3a8fb5 Iustin Pop
  config_data = objects.ConfigData(version=version,
263 7b3a8fb5 Iustin Pop
                                   cluster=cluster_config,
264 7b3a8fb5 Iustin Pop
                                   nodes=nodes,
265 7b3a8fb5 Iustin Pop
                                   instances={},
266 7b3a8fb5 Iustin Pop
                                   serial_no=1)
267 7b3a8fb5 Iustin Pop
  cfg = ssconf.SimpleConfigWriter.FromDict(config_data.ToDict(), cfg_file)
268 7b3a8fb5 Iustin Pop
  cfg.Save()
269 7b3a8fb5 Iustin Pop
270 7b3a8fb5 Iustin Pop
  return cfg
271 02f99608 Oleksiy Mishchenko
272 02f99608 Oleksiy Mishchenko
273 140aa4a8 Iustin Pop
def FinalizeClusterDestroy(master):
274 140aa4a8 Iustin Pop
  """Execute the last steps of cluster destroy
275 140aa4a8 Iustin Pop

276 140aa4a8 Iustin Pop
  This function shuts down all the daemons, completing the destroy
277 140aa4a8 Iustin Pop
  begun in cmdlib.LUDestroyOpcode.
278 140aa4a8 Iustin Pop

279 140aa4a8 Iustin Pop
  """
280 781de953 Iustin Pop
  result = rpc.RpcRunner.call_node_stop_master(master, True)
281 781de953 Iustin Pop
  if result.failed or not result.data:
282 140aa4a8 Iustin Pop
    logging.warning("Could not disable the master role")
283 781de953 Iustin Pop
  result = rpc.RpcRunner.call_node_leave_cluster(master)
284 781de953 Iustin Pop
  if result.failed or not result.data:
285 140aa4a8 Iustin Pop
    logging.warning("Could not shutdown the node daemon and cleanup the node")
286 140aa4a8 Iustin Pop
287 140aa4a8 Iustin Pop
288 87622829 Iustin Pop
def SetupNodeDaemon(cluster_name, node, ssh_key_check):
289 827f753e Guido Trotter
  """Add a node to the cluster.
290 827f753e Guido Trotter

291 b1b6ea87 Iustin Pop
  This function must be called before the actual opcode, and will ssh
292 b1b6ea87 Iustin Pop
  to the remote node, copy the needed files, and start ganeti-noded,
293 b1b6ea87 Iustin Pop
  allowing the master to do the rest via normal rpc calls.
294 827f753e Guido Trotter

295 87622829 Iustin Pop
  @param cluster_name: the cluster name
296 87622829 Iustin Pop
  @param node: the name of the new node
297 87622829 Iustin Pop
  @param ssh_key_check: whether to do a strict key check
298 827f753e Guido Trotter

299 827f753e Guido Trotter
  """
300 87622829 Iustin Pop
  sshrunner = ssh.SshRunner(cluster_name)
301 8049a1d7 Michael Hanselmann
  gntpem = utils.ReadFile(constants.SSL_CERT_FILE)
302 827f753e Guido Trotter
  # in the base64 pem encoding, neither '!' nor '.' are valid chars,
303 827f753e Guido Trotter
  # so we use this to detect an invalid certificate; as long as the
304 827f753e Guido Trotter
  # cert doesn't contain this, the here-document will be correctly
305 827f753e Guido Trotter
  # parsed by the shell sequence below
306 827f753e Guido Trotter
  if re.search('^!EOF\.', gntpem, re.MULTILINE):
307 827f753e Guido Trotter
    raise errors.OpExecError("invalid PEM encoding in the SSL certificate")
308 827f753e Guido Trotter
  if not gntpem.endswith("\n"):
309 827f753e Guido Trotter
    raise errors.OpExecError("PEM must end with newline")
310 827f753e Guido Trotter
311 827f753e Guido Trotter
  # set up inter-node password and certificate and restarts the node daemon
312 827f753e Guido Trotter
  # and then connect with ssh to set password and start ganeti-noded
313 827f753e Guido Trotter
  # note that all the below variables are sanitized at this point,
314 827f753e Guido Trotter
  # either by being constants or by the checks above
315 827f753e Guido Trotter
  mycommand = ("umask 077 && "
316 827f753e Guido Trotter
               "cat > '%s' << '!EOF.' && \n"
317 827f753e Guido Trotter
               "%s!EOF.\n%s restart" %
318 ec17d09c Michael Hanselmann
               (constants.SSL_CERT_FILE, gntpem,
319 827f753e Guido Trotter
                constants.NODE_INITD_SCRIPT))
320 827f753e Guido Trotter
321 c4b6c29c Michael Hanselmann
  result = sshrunner.Run(node, 'root', mycommand, batch=False,
322 c4b6c29c Michael Hanselmann
                         ask_key=ssh_key_check,
323 c4b6c29c Michael Hanselmann
                         use_cluster_key=False,
324 c4b6c29c Michael Hanselmann
                         strict_host_check=ssh_key_check)
325 827f753e Guido Trotter
  if result.failed:
326 827f753e Guido Trotter
    raise errors.OpExecError("Remote command on node %s, error: %s,"
327 827f753e Guido Trotter
                             " output: %s" %
328 827f753e Guido Trotter
                             (node, result.fail_reason, result.output))
329 827f753e Guido Trotter
330 b1b6ea87 Iustin Pop
331 b1b6ea87 Iustin Pop
def MasterFailover():
332 b1b6ea87 Iustin Pop
  """Failover the master node.
333 b1b6ea87 Iustin Pop

334 b1b6ea87 Iustin Pop
  This checks that we are not already the master, and will cause the
335 b1b6ea87 Iustin Pop
  current master to cease being master, and the non-master to become
336 b1b6ea87 Iustin Pop
  new master.
337 b1b6ea87 Iustin Pop

338 b1b6ea87 Iustin Pop
  """
339 8135a2db Iustin Pop
  sstore = ssconf.SimpleStore()
340 b1b6ea87 Iustin Pop
341 8135a2db Iustin Pop
  old_master, new_master = ssconf.GetMasterAndMyself(sstore)
342 8135a2db Iustin Pop
  node_list = sstore.GetNodeList()
343 8135a2db Iustin Pop
  mc_list = sstore.GetMasterCandidates()
344 b1b6ea87 Iustin Pop
345 b1b6ea87 Iustin Pop
  if old_master == new_master:
346 b1b6ea87 Iustin Pop
    raise errors.OpPrereqError("This commands must be run on the node"
347 b1b6ea87 Iustin Pop
                               " where you want the new master to be."
348 b1b6ea87 Iustin Pop
                               " %s is already the master" %
349 b1b6ea87 Iustin Pop
                               old_master)
350 d5927e48 Iustin Pop
351 8135a2db Iustin Pop
  if new_master not in mc_list:
352 8135a2db Iustin Pop
    mc_no_master = [name for name in mc_list if name != old_master]
353 8135a2db Iustin Pop
    raise errors.OpPrereqError("This node is not among the nodes marked"
354 8135a2db Iustin Pop
                               " as master candidates. Only these nodes"
355 8135a2db Iustin Pop
                               " can become masters. Current list of"
356 8135a2db Iustin Pop
                               " master candidates is:\n"
357 8135a2db Iustin Pop
                               "%s" % ('\n'.join(mc_no_master)))
358 8135a2db Iustin Pop
359 d5927e48 Iustin Pop
  vote_list = GatherMasterVotes(node_list)
360 d5927e48 Iustin Pop
361 d5927e48 Iustin Pop
  if vote_list:
362 d5927e48 Iustin Pop
    voted_master = vote_list[0][0]
363 d5927e48 Iustin Pop
    if voted_master is None:
364 d5927e48 Iustin Pop
      raise errors.OpPrereqError("Cluster is inconsistent, most nodes did not"
365 d5927e48 Iustin Pop
                                 " respond.")
366 d5927e48 Iustin Pop
    elif voted_master != old_master:
367 d5927e48 Iustin Pop
      raise errors.OpPrereqError("I have wrong configuration, I believe the"
368 d5927e48 Iustin Pop
                                 " master is %s but the other nodes voted for"
369 d5927e48 Iustin Pop
                                 " %s. Please resync the configuration of"
370 d5927e48 Iustin Pop
                                 " this node." % (old_master, voted_master))
371 b1b6ea87 Iustin Pop
  # end checks
372 b1b6ea87 Iustin Pop
373 b1b6ea87 Iustin Pop
  rcode = 0
374 b1b6ea87 Iustin Pop
375 d5927e48 Iustin Pop
  logging.info("Setting master to %s, old master: %s", new_master, old_master)
376 b1b6ea87 Iustin Pop
377 781de953 Iustin Pop
  result = rpc.RpcRunner.call_node_stop_master(old_master, True)
378 781de953 Iustin Pop
  if result.failed or not result.data:
379 d5927e48 Iustin Pop
    logging.error("Could not disable the master role on the old master"
380 b1b6ea87 Iustin Pop
                 " %s, please disable manually", old_master)
381 b1b6ea87 Iustin Pop
382 d23ef431 Michael Hanselmann
  # Here we have a phase where no master should be running
383 b1b6ea87 Iustin Pop
384 bbe19c17 Iustin Pop
  # instantiate a real config writer, as we now know we have the
385 bbe19c17 Iustin Pop
  # configuration data
386 bbe19c17 Iustin Pop
  cfg = config.ConfigWriter()
387 b1b6ea87 Iustin Pop
388 bbe19c17 Iustin Pop
  cluster_info = cfg.GetClusterInfo()
389 bbe19c17 Iustin Pop
  cluster_info.master_node = new_master
390 bbe19c17 Iustin Pop
  # this will also regenerate the ssconf files, since we updated the
391 bbe19c17 Iustin Pop
  # cluster info
392 bbe19c17 Iustin Pop
  cfg.Update(cluster_info)
393 d5927e48 Iustin Pop
394 781de953 Iustin Pop
  result = rpc.RpcRunner.call_node_start_master(new_master, True)
395 781de953 Iustin Pop
  if result.failed or not result.data:
396 d5927e48 Iustin Pop
    logging.error("Could not start the master role on the new master"
397 b1b6ea87 Iustin Pop
                  " %s, please check", new_master)
398 b1b6ea87 Iustin Pop
    rcode = 1
399 b1b6ea87 Iustin Pop
400 b1b6ea87 Iustin Pop
  return rcode
401 d7cdb55d Iustin Pop
402 d7cdb55d Iustin Pop
403 d7cdb55d Iustin Pop
def GatherMasterVotes(node_list):
404 d7cdb55d Iustin Pop
  """Check the agreement on who is the master.
405 d7cdb55d Iustin Pop

406 d7cdb55d Iustin Pop
  This function will return a list of (node, number of votes), ordered
407 d7cdb55d Iustin Pop
  by the number of votes. Errors will be denoted by the key 'None'.
408 d7cdb55d Iustin Pop

409 d7cdb55d Iustin Pop
  Note that the sum of votes is the number of nodes this machine
410 d7cdb55d Iustin Pop
  knows, whereas the number of entries in the list could be different
411 d7cdb55d Iustin Pop
  (if some nodes vote for another master).
412 d7cdb55d Iustin Pop

413 d7cdb55d Iustin Pop
  We remove ourselves from the list since we know that (bugs aside)
414 d7cdb55d Iustin Pop
  since we use the same source for configuration information for both
415 d7cdb55d Iustin Pop
  backend and boostrap, we'll always vote for ourselves.
416 d7cdb55d Iustin Pop

417 d7cdb55d Iustin Pop
  @type node_list: list
418 d7cdb55d Iustin Pop
  @param node_list: the list of nodes to query for master info; the current
419 d7cdb55d Iustin Pop
      node wil be removed if it is in the list
420 d7cdb55d Iustin Pop
  @rtype: list
421 d7cdb55d Iustin Pop
  @return: list of (node, votes)
422 d7cdb55d Iustin Pop

423 d7cdb55d Iustin Pop
  """
424 d7cdb55d Iustin Pop
  myself = utils.HostInfo().name
425 d7cdb55d Iustin Pop
  try:
426 d7cdb55d Iustin Pop
    node_list.remove(myself)
427 d7cdb55d Iustin Pop
  except ValueError:
428 d7cdb55d Iustin Pop
    pass
429 d7cdb55d Iustin Pop
  if not node_list:
430 d7cdb55d Iustin Pop
    # no nodes left (eventually after removing myself)
431 d7cdb55d Iustin Pop
    return []
432 d7cdb55d Iustin Pop
  results = rpc.RpcRunner.call_master_info(node_list)
433 d7cdb55d Iustin Pop
  if not isinstance(results, dict):
434 d7cdb55d Iustin Pop
    # this should not happen (unless internal error in rpc)
435 d7cdb55d Iustin Pop
    logging.critical("Can't complete rpc call, aborting master startup")
436 d7cdb55d Iustin Pop
    return [(None, len(node_list))]
437 d7cdb55d Iustin Pop
  positive = negative = 0
438 d7cdb55d Iustin Pop
  other_masters = {}
439 d7cdb55d Iustin Pop
  votes = {}
440 d7cdb55d Iustin Pop
  for node in results:
441 781de953 Iustin Pop
    nres = results[node]
442 781de953 Iustin Pop
    data = nres.data
443 781de953 Iustin Pop
    if nres.failed or not isinstance(data, (tuple, list)) or len(data) < 3:
444 d7cdb55d Iustin Pop
      # here the rpc layer should have already logged errors
445 d7cdb55d Iustin Pop
      if None not in votes:
446 d7cdb55d Iustin Pop
        votes[None] = 0
447 d7cdb55d Iustin Pop
      votes[None] += 1
448 d7cdb55d Iustin Pop
      continue
449 781de953 Iustin Pop
    master_node = data[2]
450 d7cdb55d Iustin Pop
    if master_node not in votes:
451 d7cdb55d Iustin Pop
      votes[master_node] = 0
452 d7cdb55d Iustin Pop
    votes[master_node] += 1
453 d7cdb55d Iustin Pop
454 d7cdb55d Iustin Pop
  vote_list = [v for v in votes.items()]
455 d7cdb55d Iustin Pop
  # sort first on number of votes then on name, since we want None
456 d7cdb55d Iustin Pop
  # sorted later if we have the half of the nodes not responding, and
457 d7cdb55d Iustin Pop
  # half voting all for the same master
458 d7cdb55d Iustin Pop
  vote_list.sort(key=lambda x: (x[1], x[0]), reverse=True)
459 d7cdb55d Iustin Pop
460 d7cdb55d Iustin Pop
  return vote_list