Statistics
| Branch: | Tag: | Revision:

root / lib / constants.py @ ee2f0ed4

History | View | Annotate | Download (27.2 kB)

1
#
2
#
3

    
4
# Copyright (C) 2006, 2007 Google Inc.
5
#
6
# This program is free software; you can redistribute it and/or modify
7
# it under the terms of the GNU General Public License as published by
8
# the Free Software Foundation; either version 2 of the License, or
9
# (at your option) any later version.
10
#
11
# This program is distributed in the hope that it will be useful, but
12
# WITHOUT ANY WARRANTY; without even the implied warranty of
13
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
14
# General Public License for more details.
15
#
16
# You should have received a copy of the GNU General Public License
17
# along with this program; if not, write to the Free Software
18
# Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA
19
# 02110-1301, USA.
20

    
21

    
22
"""Module holding different constants."""
23

    
24
import re
25

    
26
from ganeti import _autoconf
27

    
28
# various versions
29
PROTOCOL_VERSION = 40
30
RELEASE_VERSION = _autoconf.PACKAGE_VERSION
31
OS_API_V10 = 10
32
OS_API_V15 = 15
33
OS_API_V20 = 20
34
OS_API_VERSIONS = frozenset([OS_API_V10, OS_API_V15, OS_API_V20])
35
EXPORT_VERSION = 0
36
RAPI_VERSION = 2
37

    
38

    
39
# Format for CONFIG_VERSION:
40
#   01 03 0123 = 01030123
41
#   ^^ ^^ ^^^^
42
#   |  |  + Configuration version/revision
43
#   |  + Minor version
44
#   + Major version
45
#
46
# It stored as an integer. Make sure not to write an octal number.
47

    
48
# BuildVersion and SplitVersion must be in here because we can't import other
49
# modules. The cfgupgrade tool must be able to read and write version numbers
50
# and thus requires these functions. To avoid code duplication, they're kept in
51
# here.
52

    
53
def BuildVersion(major, minor, revision):
54
  """Calculates int version number from major, minor and revision numbers.
55

56
  Returns: int representing version number
57

58
  """
59
  assert isinstance(major, int)
60
  assert isinstance(minor, int)
61
  assert isinstance(revision, int)
62
  return (1000000 * major +
63
            10000 * minor +
64
                1 * revision)
65

    
66

    
67
def SplitVersion(version):
68
  """Splits version number stored in an int.
69

70
  Returns: tuple; (major, minor, revision)
71

72
  """
73
  assert isinstance(version, int)
74

    
75
  (major, remainder) = divmod(version, 1000000)
76
  (minor, revision) = divmod(remainder, 10000)
77

    
78
  return (major, minor, revision)
79

    
80

    
81
CONFIG_MAJOR = int(_autoconf.VERSION_MAJOR)
82
CONFIG_MINOR = int(_autoconf.VERSION_MINOR)
83
CONFIG_REVISION = 0
84
CONFIG_VERSION = BuildVersion(CONFIG_MAJOR, CONFIG_MINOR, CONFIG_REVISION)
85

    
86
# user separation
87
DAEMONS_GROUP = _autoconf.DAEMONS_GROUP
88
MASTERD_USER = _autoconf.MASTERD_USER
89
RAPI_USER = _autoconf.RAPI_USER
90

    
91
# file paths
92
DATA_DIR = _autoconf.LOCALSTATEDIR + "/lib/ganeti"
93
RUN_DIR = _autoconf.LOCALSTATEDIR + "/run"
94
RUN_GANETI_DIR = RUN_DIR + "/ganeti"
95
BDEV_CACHE_DIR = RUN_GANETI_DIR + "/bdev-cache"
96
DISK_LINKS_DIR = RUN_GANETI_DIR + "/instance-disks"
97
RUN_DIRS_MODE = 0775
98
SOCKET_DIR = RUN_GANETI_DIR + "/socket"
99
SECURE_DIR_MODE = 0700
100
SOCKET_DIR_MODE = 0750
101
CRYPTO_KEYS_DIR = RUN_GANETI_DIR + "/crypto"
102
CRYPTO_KEYS_DIR_MODE = SECURE_DIR_MODE
103
IMPORT_EXPORT_DIR = RUN_GANETI_DIR + "/import-export"
104
IMPORT_EXPORT_DIR_MODE = 0755
105
# keep RUN_GANETI_DIR first here, to make sure all get created when the node
106
# daemon is started (this takes care of RUN_DIR being tmpfs)
107
SUB_RUN_DIRS = [ RUN_GANETI_DIR, BDEV_CACHE_DIR, DISK_LINKS_DIR ]
108
LOCK_DIR = _autoconf.LOCALSTATEDIR + "/lock"
109
SSCONF_LOCK_FILE = LOCK_DIR + "/ganeti-ssconf.lock"
110
# User-id pool lock directory
111
# The user-ids that are in use have a corresponding lock file in this directory
112
UIDPOOL_LOCKDIR = RUN_GANETI_DIR + "/uid-pool"
113
CLUSTER_CONF_FILE = DATA_DIR + "/config.data"
114
NODED_CERT_FILE = DATA_DIR + "/server.pem"
115
RAPI_CERT_FILE = DATA_DIR + "/rapi.pem"
116
CONFD_HMAC_KEY = DATA_DIR + "/hmac.key"
117
CLUSTER_DOMAIN_SECRET_FILE = DATA_DIR + "/cluster-domain-secret"
118
WATCHER_STATEFILE = DATA_DIR + "/watcher.data"
119
WATCHER_PAUSEFILE = DATA_DIR + "/watcher.pause"
120
INSTANCE_UPFILE = RUN_GANETI_DIR + "/instance-status"
121
SSH_KNOWN_HOSTS_FILE = DATA_DIR + "/known_hosts"
122
RAPI_USERS_FILE = DATA_DIR + "/rapi_users"
123
QUEUE_DIR = DATA_DIR + "/queue"
124
DAEMON_UTIL = _autoconf.PKGLIBDIR + "/daemon-util"
125
ETC_HOSTS = "/etc/hosts"
126
DEFAULT_FILE_STORAGE_DIR = _autoconf.FILE_STORAGE_DIR
127
ENABLE_FILE_STORAGE = _autoconf.ENABLE_FILE_STORAGE
128
SYSCONFDIR = _autoconf.SYSCONFDIR
129
TOOLSDIR = _autoconf.TOOLSDIR
130
CONF_DIR = SYSCONFDIR + "/ganeti"
131

    
132
ALL_CERT_FILES = frozenset([NODED_CERT_FILE, RAPI_CERT_FILE])
133

    
134
MASTER_SOCKET = SOCKET_DIR + "/ganeti-master"
135

    
136
NODED = "ganeti-noded"
137
CONFD = "ganeti-confd"
138
RAPI = "ganeti-rapi"
139
MASTERD = "ganeti-masterd"
140
# used in the ganeti-nbma project
141
NLD = "ganeti-nld"
142

    
143
DAEMONS_PORTS = {
144
  # daemon-name: ("proto", "default-port")
145
  NODED: ("tcp", 1811),
146
  CONFD: ("udp", 1814),
147
  RAPI: ("tcp", 5080),
148
  # used in the ganeti-nbma project
149
  NLD: ("udp", 1816),
150
}
151
DEFAULT_NODED_PORT = DAEMONS_PORTS[NODED][1]
152
DEFAULT_CONFD_PORT = DAEMONS_PORTS[CONFD][1]
153
DEFAULT_RAPI_PORT = DAEMONS_PORTS[RAPI][1]
154
# used in the ganeti-nbma project
155
DEFAULT_NLD_PORT = DAEMONS_PORTS[NLD][1]
156

    
157
FIRST_DRBD_PORT = 11000
158
LAST_DRBD_PORT = 14999
159
MASTER_SCRIPT = "ganeti-master"
160

    
161
LOG_DIR = _autoconf.LOCALSTATEDIR + "/log/ganeti/"
162
DAEMONS_LOGFILES = {
163
  # "daemon-name": "logfile"
164
  NODED: LOG_DIR + "node-daemon.log",
165
  CONFD: LOG_DIR + "conf-daemon.log",
166
  RAPI: LOG_DIR + "rapi-daemon.log",
167
  MASTERD: LOG_DIR + "master-daemon.log",
168
  # used in the ganeti-nbma project
169
  NLD: LOG_DIR + "nl-daemon.log",
170
  }
171

    
172
LOG_OS_DIR = LOG_DIR + "os"
173
LOG_WATCHER = LOG_DIR + "watcher.log"
174
LOG_COMMANDS = LOG_DIR + "commands.log"
175
LOG_BURNIN = LOG_DIR + "burnin.log"
176

    
177
DEV_CONSOLE = "/dev/console"
178

    
179
# luxi related constants
180
LUXI_EOM = "\3"
181

    
182
# one of 'no', 'yes', 'only'
183
SYSLOG_USAGE = _autoconf.SYSLOG_USAGE
184
SYSLOG_NO = "no"
185
SYSLOG_YES = "yes"
186
SYSLOG_ONLY = "only"
187
SYSLOG_SOCKET = "/dev/log"
188

    
189
OS_SEARCH_PATH = _autoconf.OS_SEARCH_PATH
190
EXPORT_DIR = _autoconf.EXPORT_DIR
191

    
192
EXPORT_CONF_FILE = "config.ini"
193

    
194
XEN_BOOTLOADER = _autoconf.XEN_BOOTLOADER
195
XEN_KERNEL = _autoconf.XEN_KERNEL
196
XEN_INITRD = _autoconf.XEN_INITRD
197

    
198
KVM_PATH = _autoconf.KVM_PATH
199
SOCAT_PATH = _autoconf.SOCAT_PATH
200
SOCAT_USE_ESCAPE = _autoconf.SOCAT_USE_ESCAPE
201
SOCAT_ESCAPE_CODE = "0x1d"
202

    
203
# For RSA keys more bits are better, but they also make operations more
204
# expensive. NIST SP 800-131 recommends a minimum of 2048 bits from the year
205
# 2010 on.
206
RSA_KEY_BITS = 2048
207

    
208
# Ciphers allowed for SSL connections. For the format, see ciphers(1). A better
209
# way to disable ciphers would be to use the exclamation mark (!), but socat
210
# versions below 1.5 can't parse exclamation marks in options properly. When
211
# modifying the ciphers, ensure to not accidentially add something after it's
212
# been removed. Use the "openssl" utility to check the allowed ciphers, e.g.
213
# "openssl ciphers -v HIGH:-DES".
214
OPENSSL_CIPHERS = "HIGH:-DES:-3DES:-EXPORT:-ADH"
215

    
216
# Digest used to sign certificates ("openssl x509" uses SHA1 by default)
217
X509_CERT_SIGN_DIGEST = "SHA1"
218

    
219
X509_CERT_SIGNATURE_HEADER = "X-Ganeti-Signature"
220

    
221
IMPORT_EXPORT_DAEMON = _autoconf.PKGLIBDIR + "/import-export"
222

    
223
# Import/export daemon mode
224
IEM_IMPORT = "import"
225
IEM_EXPORT = "export"
226

    
227
# Import/export transport compression
228
IEC_NONE = "none"
229
IEC_GZIP = "gzip"
230
IEC_ALL = frozenset([
231
  IEC_NONE,
232
  IEC_GZIP,
233
  ])
234

    
235
IE_CUSTOM_SIZE = "fd"
236

    
237
IE_MAGIC_RE = re.compile(r"^[-_.a-zA-Z0-9]{5,100}$")
238

    
239
# Import/export I/O
240
# Direct file I/O, equivalent to a shell's I/O redirection using '<' or '>'
241
IEIO_FILE = "file"
242
# Raw block device I/O using "dd"
243
IEIO_RAW_DISK = "raw"
244
# OS definition import/export script
245
IEIO_SCRIPT = "script"
246

    
247
VALUE_DEFAULT = "default"
248
VALUE_AUTO = "auto"
249
VALUE_GENERATE = "generate"
250
VALUE_NONE = "none"
251
VALUE_TRUE = "true"
252
VALUE_FALSE = "false"
253

    
254
# External script validation mask
255
EXT_PLUGIN_MASK = re.compile("^[a-zA-Z0-9_-]+$")
256

    
257
# hooks-related constants
258
HOOKS_BASE_DIR = CONF_DIR + "/hooks"
259
HOOKS_PHASE_PRE = "pre"
260
HOOKS_PHASE_POST = "post"
261
HOOKS_NAME_CFGUPDATE = "config-update"
262
HOOKS_NAME_WATCHER = "watcher"
263
HOOKS_VERSION = 2
264

    
265
# hooks subject type (what object type does the LU deal with)
266
HTYPE_CLUSTER = "CLUSTER"
267
HTYPE_NODE = "NODE"
268
HTYPE_INSTANCE = "INSTANCE"
269

    
270
HKR_SKIP = 0
271
HKR_FAIL = 1
272
HKR_SUCCESS = 2
273

    
274
# Storage types
275
ST_FILE = "file"
276
ST_LVM_PV = "lvm-pv"
277
ST_LVM_VG = "lvm-vg"
278

    
279
# Storage fields
280
# first two are valid in LU context only, not passed to backend
281
SF_NODE = "node"
282
SF_TYPE = "type"
283
# and the rest are valid in backend
284
SF_NAME = "name"
285
SF_SIZE = "size"
286
SF_FREE = "free"
287
SF_USED = "used"
288
SF_ALLOCATABLE = "allocatable"
289

    
290
# Storage operations
291
SO_FIX_CONSISTENCY = "fix-consistency"
292

    
293
# Available fields per storage type
294
VALID_STORAGE_FIELDS = frozenset([SF_NAME, SF_TYPE, SF_SIZE,
295
                                  SF_USED, SF_FREE, SF_ALLOCATABLE])
296

    
297
VALID_STORAGE_TYPES = frozenset([ST_FILE, ST_LVM_PV, ST_LVM_VG])
298

    
299
MODIFIABLE_STORAGE_FIELDS = {
300
  ST_LVM_PV: frozenset([SF_ALLOCATABLE]),
301
  }
302

    
303
VALID_STORAGE_OPERATIONS = {
304
  ST_LVM_VG: frozenset([SO_FIX_CONSISTENCY]),
305
  }
306

    
307
# Local disk status
308
# Note: Code depends on LDS_OKAY < LDS_UNKNOWN < LDS_FAULTY
309
(LDS_OKAY,
310
 LDS_UNKNOWN,
311
 LDS_FAULTY) = range(1, 4)
312

    
313
# disk template types
314
DT_DISKLESS = "diskless"
315
DT_PLAIN = "plain"
316
DT_DRBD8 = "drbd"
317
DT_FILE = "file"
318

    
319
# the set of network-mirrored disk templates
320
DTS_NET_MIRROR = frozenset([DT_DRBD8])
321

    
322
# the set of non-lvm-based disk templates
323
DTS_NOT_LVM = frozenset([DT_DISKLESS, DT_FILE])
324

    
325
# the set of disk templates which can be grown
326
DTS_GROWABLE = frozenset([DT_PLAIN, DT_DRBD8, DT_FILE])
327

    
328
# the set of disk templates that allow adoption
329
DTS_MAY_ADOPT = frozenset([DT_PLAIN])
330

    
331
# logical disk types
332
LD_LV = "lvm"
333
LD_DRBD8 = "drbd8"
334
LD_FILE = "file"
335
LDS_BLOCK = frozenset([LD_LV, LD_DRBD8])
336

    
337
# drbd constants
338
DRBD_HMAC_ALG = "md5"
339
DRBD_NET_PROTOCOL = "C"
340
DRBD_BARRIERS = _autoconf.DRBD_BARRIERS
341

    
342
# file backend driver
343
FD_LOOP = "loop"
344
FD_BLKTAP = "blktap"
345

    
346
# the set of drbd-like disk types
347
LDS_DRBD = frozenset([LD_DRBD8])
348

    
349
# disk access mode
350
DISK_RDONLY = "ro"
351
DISK_RDWR = "rw"
352
DISK_ACCESS_SET = frozenset([DISK_RDONLY, DISK_RDWR])
353

    
354
# disk replacement mode
355
REPLACE_DISK_PRI = "replace_on_primary"    # replace disks on primary
356
REPLACE_DISK_SEC = "replace_on_secondary"  # replace disks on secondary
357
REPLACE_DISK_CHG = "replace_new_secondary" # change secondary node
358
REPLACE_DISK_AUTO = "replace_auto"
359
REPLACE_MODES = frozenset([
360
  REPLACE_DISK_PRI,
361
  REPLACE_DISK_SEC,
362
  REPLACE_DISK_CHG,
363
  REPLACE_DISK_AUTO,
364
  ])
365

    
366
# Instance export mode
367
EXPORT_MODE_LOCAL = "local"
368
EXPORT_MODE_REMOTE = "remote"
369
EXPORT_MODES = frozenset([
370
  EXPORT_MODE_LOCAL,
371
  EXPORT_MODE_REMOTE,
372
  ])
373

    
374
# lock recalculate mode
375
LOCKS_REPLACE = 'replace'
376
LOCKS_APPEND = 'append'
377

    
378
# instance creation modes
379
INSTANCE_CREATE = "create"
380
INSTANCE_IMPORT = "import"
381
INSTANCE_REMOTE_IMPORT = "remote-import"
382
INSTANCE_CREATE_MODES = frozenset([
383
  INSTANCE_CREATE,
384
  INSTANCE_IMPORT,
385
  INSTANCE_REMOTE_IMPORT,
386
  ])
387

    
388
# Remote import/export handshake message and version
389
RIE_VERSION = 0
390
RIE_HANDSHAKE = "Hi, I'm Ganeti"
391

    
392
# Remote import/export certificate validity in seconds
393
RIE_CERT_VALIDITY = 24 * 60 * 60
394

    
395
# Remote import/export connect timeout for socat
396
RIE_CONNECT_TIMEOUT = 60
397

    
398
DISK_TEMPLATES = frozenset([DT_DISKLESS, DT_PLAIN,
399
                            DT_DRBD8, DT_FILE])
400

    
401
FILE_DRIVER = frozenset([FD_LOOP, FD_BLKTAP])
402

    
403
# import/export config options
404
INISECT_EXP = "export"
405
INISECT_INS = "instance"
406
INISECT_HYP = "hypervisor"
407
INISECT_BEP = "backend"
408
INISECT_OSP = "os"
409

    
410
# dynamic device modification
411
DDM_ADD = 'add'
412
DDM_REMOVE = 'remove'
413

    
414
# common exit codes
415
EXIT_SUCCESS = 0
416
EXIT_FAILURE = 1
417
EXIT_NOTCLUSTER = 5
418
EXIT_NOTMASTER = 11
419
EXIT_NODESETUP_ERROR = 12
420
EXIT_CONFIRMATION = 13 # need user confirmation
421

    
422
# tags
423
TAG_CLUSTER = "cluster"
424
TAG_NODE = "node"
425
TAG_INSTANCE = "instance"
426
VALID_TAG_TYPES = frozenset([
427
  TAG_CLUSTER,
428
  TAG_NODE,
429
  TAG_INSTANCE,
430
  ])
431
MAX_TAG_LEN = 128
432
MAX_TAGS_PER_OBJ = 4096
433

    
434
# others
435
DEFAULT_BRIDGE = "xen-br0"
436
SYNC_SPEED = 60 * 1024
437
IP4_ADDRESS_LOCALHOST = "127.0.0.1"
438
IP4_ADDRESS_ANY = "0.0.0.0"
439
IP6_ADDRESS_LOCALHOST = "::1"
440
IP6_ADDRESS_ANY = "::"
441
TCP_PING_TIMEOUT = 10
442
GANETI_RUNAS = "root"
443
DEFAULT_VG = "xenvg"
444
DEFAULT_DRBD_HELPER = "/bin/true"
445
MIN_VG_SIZE = 20480
446
DEFAULT_MAC_PREFIX = "aa:00:00"
447
LVM_STRIPECOUNT = _autoconf.LVM_STRIPECOUNT
448
# default maximum instance wait time, in seconds.
449
DEFAULT_SHUTDOWN_TIMEOUT = 120
450
NODE_MAX_CLOCK_SKEW = 150
451
# Time for an intra-cluster disk transfer to wait for a connection
452
DISK_TRANSFER_CONNECT_TIMEOUT = 30
453

    
454
# runparts results
455
(RUNPARTS_SKIP,
456
 RUNPARTS_RUN,
457
 RUNPARTS_ERR) = range(3)
458

    
459
RUNPARTS_STATUS = frozenset([RUNPARTS_SKIP, RUNPARTS_RUN, RUNPARTS_ERR])
460

    
461
# RPC constants
462
(RPC_ENCODING_NONE,
463
 RPC_ENCODING_ZLIB_BASE64) = range(2)
464

    
465
# os related constants
466
OS_SCRIPT_CREATE = 'create'
467
OS_SCRIPT_IMPORT = 'import'
468
OS_SCRIPT_EXPORT = 'export'
469
OS_SCRIPT_RENAME = 'rename'
470
OS_SCRIPT_VERIFY = 'verify'
471
OS_SCRIPTS = frozenset([OS_SCRIPT_CREATE, OS_SCRIPT_IMPORT,
472
                        OS_SCRIPT_EXPORT, OS_SCRIPT_RENAME,
473
                        OS_SCRIPT_VERIFY])
474

    
475
OS_API_FILE = 'ganeti_api_version'
476
OS_VARIANTS_FILE = 'variants.list'
477
OS_PARAMETERS_FILE = 'parameters.list'
478

    
479
OS_VALIDATE_PARAMETERS = 'parameters'
480
OS_VALIDATE_CALLS = frozenset([OS_VALIDATE_PARAMETERS])
481

    
482
# ssh constants
483
SSH_CONFIG_DIR = _autoconf.SSH_CONFIG_DIR
484
SSH_HOST_DSA_PRIV = SSH_CONFIG_DIR + "/ssh_host_dsa_key"
485
SSH_HOST_DSA_PUB = SSH_HOST_DSA_PRIV + ".pub"
486
SSH_HOST_RSA_PRIV = SSH_CONFIG_DIR + "/ssh_host_rsa_key"
487
SSH_HOST_RSA_PUB = SSH_HOST_RSA_PRIV + ".pub"
488
SSH = "ssh"
489
SCP = "scp"
490

    
491
# reboot types
492
INSTANCE_REBOOT_SOFT = "soft"
493
INSTANCE_REBOOT_HARD = "hard"
494
INSTANCE_REBOOT_FULL = "full"
495

    
496
REBOOT_TYPES = frozenset([INSTANCE_REBOOT_SOFT,
497
                          INSTANCE_REBOOT_HARD,
498
                          INSTANCE_REBOOT_FULL])
499

    
500
VTYPE_STRING = 'string'
501
VTYPE_BOOL = 'bool'
502
VTYPE_SIZE = 'size' # size, in MiBs
503
VTYPE_INT = 'int'
504
ENFORCEABLE_TYPES = frozenset([
505
                      VTYPE_STRING,
506
                      VTYPE_BOOL,
507
                      VTYPE_SIZE,
508
                      VTYPE_INT,
509
                      ])
510

    
511
# HV parameter names (global namespace)
512
HV_BOOT_ORDER = "boot_order"
513
HV_CDROM_IMAGE_PATH = "cdrom_image_path"
514
HV_NIC_TYPE = "nic_type"
515
HV_DISK_TYPE = "disk_type"
516
HV_VNC_BIND_ADDRESS = "vnc_bind_address"
517
HV_VNC_PASSWORD_FILE = "vnc_password_file"
518
HV_VNC_TLS = "vnc_tls"
519
HV_VNC_X509 = "vnc_x509_path"
520
HV_VNC_X509_VERIFY = "vnc_x509_verify"
521
HV_ACPI = "acpi"
522
HV_PAE = "pae"
523
HV_USE_BOOTLOADER = "use_bootloader"
524
HV_BOOTLOADER_ARGS = "bootloader_args"
525
HV_BOOTLOADER_PATH = "bootloader_path"
526
HV_KERNEL_ARGS = "kernel_args"
527
HV_KERNEL_PATH = "kernel_path"
528
HV_INITRD_PATH = "initrd_path"
529
HV_ROOT_PATH = "root_path"
530
HV_SERIAL_CONSOLE = "serial_console"
531
HV_USB_MOUSE = "usb_mouse"
532
HV_DEVICE_MODEL = "device_model"
533
HV_INIT_SCRIPT = "init_script"
534
HV_MIGRATION_PORT = "migration_port"
535
HV_MIGRATION_BANDWIDTH = "migration_bandwidth"
536
HV_MIGRATION_DOWNTIME = "migration_downtime"
537
HV_USE_LOCALTIME = "use_localtime"
538
HV_DISK_CACHE = "disk_cache"
539
HV_SECURITY_MODEL = "security_model"
540
HV_SECURITY_DOMAIN = "security_domain"
541
HV_KVM_FLAG = "kvm_flag"
542
HV_VHOST_NET = "vhost_net"
543
HV_KVM_USE_CHROOT = "use_chroot"
544

    
545
HVS_PARAMETER_TYPES = {
546
  HV_BOOT_ORDER: VTYPE_STRING,
547
  HV_CDROM_IMAGE_PATH: VTYPE_STRING,
548
  HV_NIC_TYPE: VTYPE_STRING,
549
  HV_DISK_TYPE: VTYPE_STRING,
550
  HV_VNC_PASSWORD_FILE: VTYPE_STRING,
551
  HV_VNC_BIND_ADDRESS: VTYPE_STRING,
552
  HV_VNC_TLS: VTYPE_BOOL,
553
  HV_VNC_X509: VTYPE_STRING,
554
  HV_VNC_X509_VERIFY: VTYPE_BOOL,
555
  HV_ACPI: VTYPE_BOOL,
556
  HV_PAE: VTYPE_BOOL,
557
  HV_USE_BOOTLOADER: VTYPE_BOOL,
558
  HV_BOOTLOADER_PATH: VTYPE_STRING,
559
  HV_BOOTLOADER_ARGS: VTYPE_STRING,
560
  HV_KERNEL_PATH: VTYPE_STRING,
561
  HV_KERNEL_ARGS: VTYPE_STRING,
562
  HV_INITRD_PATH: VTYPE_STRING,
563
  HV_ROOT_PATH: VTYPE_STRING,
564
  HV_SERIAL_CONSOLE: VTYPE_BOOL,
565
  HV_USB_MOUSE: VTYPE_STRING,
566
  HV_DEVICE_MODEL: VTYPE_STRING,
567
  HV_INIT_SCRIPT: VTYPE_STRING,
568
  HV_MIGRATION_PORT: VTYPE_INT,
569
  HV_MIGRATION_BANDWIDTH: VTYPE_INT,
570
  HV_MIGRATION_DOWNTIME: VTYPE_INT,
571
  HV_USE_LOCALTIME: VTYPE_BOOL,
572
  HV_DISK_CACHE: VTYPE_STRING,
573
  HV_SECURITY_MODEL: VTYPE_STRING,
574
  HV_SECURITY_DOMAIN: VTYPE_STRING,
575
  HV_KVM_FLAG: VTYPE_STRING,
576
  HV_VHOST_NET: VTYPE_BOOL,
577
  HV_KVM_USE_CHROOT: VTYPE_BOOL,
578
  }
579

    
580
HVS_PARAMETERS = frozenset(HVS_PARAMETER_TYPES.keys())
581

    
582
# BE parameter names
583
BE_MEMORY = "memory"
584
BE_VCPUS = "vcpus"
585
BE_AUTO_BALANCE = "auto_balance"
586

    
587
BES_PARAMETER_TYPES = {
588
    BE_MEMORY: VTYPE_SIZE,
589
    BE_VCPUS: VTYPE_INT,
590
    BE_AUTO_BALANCE: VTYPE_BOOL,
591
    }
592

    
593
BES_PARAMETERS = frozenset(BES_PARAMETER_TYPES.keys())
594

    
595
# Instance Parameters Profile
596
PP_DEFAULT = "default"
597

    
598
NIC_MODE = "mode"
599
NIC_LINK = "link"
600

    
601
NIC_MODE_BRIDGED = "bridged"
602
NIC_MODE_ROUTED = "routed"
603

    
604
NIC_VALID_MODES = frozenset([NIC_MODE_BRIDGED, NIC_MODE_ROUTED])
605

    
606
NICS_PARAMETER_TYPES = {
607
    NIC_MODE: VTYPE_STRING,
608
    NIC_LINK: VTYPE_STRING,
609
    }
610

    
611
NICS_PARAMETERS = frozenset(NICS_PARAMETER_TYPES.keys())
612

    
613
IDISK_SIZE = "size"
614
IDISK_MODE = "mode"
615
IDISK_ADOPT = "adopt"
616
IDISK_PARAMS = frozenset([IDISK_SIZE, IDISK_MODE, IDISK_ADOPT])
617
IDISK_PARAMS_TYPES = {
618
  IDISK_SIZE: VTYPE_SIZE,
619
  IDISK_MODE: VTYPE_STRING,
620
  IDISK_ADOPT: VTYPE_STRING,
621
  }
622
INIC_MAC = "mac"
623
INIC_IP = "ip"
624
INIC_MODE = "mode"
625
INIC_LINK = "link"
626
INIC_BRIDGE = "bridge"
627
INIC_PARAMS = frozenset([INIC_MAC, INIC_IP, INIC_MODE, INIC_LINK, INIC_BRIDGE])
628
INIC_PARAMS_TYPES = dict([(name, VTYPE_STRING) for name in INIC_PARAMS])
629

    
630
# Hypervisor constants
631
HT_XEN_PVM = "xen-pvm"
632
HT_FAKE = "fake"
633
HT_XEN_HVM = "xen-hvm"
634
HT_KVM = "kvm"
635
HT_CHROOT = "chroot"
636
HT_LXC = "lxc"
637
HYPER_TYPES = frozenset([
638
  HT_XEN_PVM,
639
  HT_FAKE,
640
  HT_XEN_HVM,
641
  HT_KVM,
642
  HT_CHROOT,
643
  HT_LXC,
644
  ])
645
HTS_REQ_PORT = frozenset([HT_XEN_HVM, HT_KVM])
646

    
647
VNC_BASE_PORT = 5900
648
VNC_PASSWORD_FILE = CONF_DIR + "/vnc-cluster-password"
649
VNC_DEFAULT_BIND_ADDRESS = IP4_ADDRESS_ANY
650

    
651
# NIC types
652
HT_NIC_RTL8139 = "rtl8139"
653
HT_NIC_NE2K_PCI = "ne2k_pci"
654
HT_NIC_NE2K_ISA = "ne2k_isa"
655
HT_NIC_I82551 = "i82551"
656
HT_NIC_I85557B = "i82557b"
657
HT_NIC_I8259ER = "i82559er"
658
HT_NIC_PCNET = "pcnet"
659
HT_NIC_E1000 = "e1000"
660
HT_NIC_PARAVIRTUAL = HT_DISK_PARAVIRTUAL = "paravirtual"
661

    
662
HT_HVM_VALID_NIC_TYPES = frozenset([HT_NIC_RTL8139, HT_NIC_NE2K_PCI,
663
                                    HT_NIC_NE2K_ISA, HT_NIC_PARAVIRTUAL])
664
HT_KVM_VALID_NIC_TYPES = frozenset([HT_NIC_RTL8139, HT_NIC_NE2K_PCI,
665
                                    HT_NIC_NE2K_ISA, HT_NIC_I82551,
666
                                    HT_NIC_I85557B, HT_NIC_I8259ER,
667
                                    HT_NIC_PCNET, HT_NIC_E1000,
668
                                    HT_NIC_PARAVIRTUAL])
669
# Disk types
670
HT_DISK_IOEMU = "ioemu"
671
HT_DISK_IDE = "ide"
672
HT_DISK_SCSI = "scsi"
673
HT_DISK_SD = "sd"
674
HT_DISK_MTD = "mtd"
675
HT_DISK_PFLASH = "pflash"
676

    
677
HT_CACHE_DEFAULT = "default"
678
HT_CACHE_NONE = "none"
679
HT_CACHE_WTHROUGH = "writethrough"
680
HT_CACHE_WBACK = "writeback"
681
HT_VALID_CACHE_TYPES = frozenset([HT_CACHE_DEFAULT,
682
                                  HT_CACHE_NONE,
683
                                  HT_CACHE_WTHROUGH,
684
                                  HT_CACHE_WBACK])
685

    
686
HT_HVM_VALID_DISK_TYPES = frozenset([HT_DISK_PARAVIRTUAL, HT_DISK_IOEMU])
687
HT_KVM_VALID_DISK_TYPES = frozenset([HT_DISK_PARAVIRTUAL, HT_DISK_IDE,
688
                                     HT_DISK_SCSI, HT_DISK_SD, HT_DISK_MTD,
689
                                     HT_DISK_PFLASH])
690

    
691
# Mouse types:
692
HT_MOUSE_MOUSE = "mouse"
693
HT_MOUSE_TABLET = "tablet"
694

    
695
HT_KVM_VALID_MOUSE_TYPES = frozenset([HT_MOUSE_MOUSE, HT_MOUSE_TABLET])
696

    
697
# Boot order
698
HT_BO_CDROM = "cdrom"
699
HT_BO_DISK = "disk"
700
HT_BO_NETWORK = "network"
701

    
702
HT_KVM_VALID_BO_TYPES = frozenset([HT_BO_CDROM, HT_BO_DISK, HT_BO_NETWORK])
703

    
704
# Security models
705
HT_SM_NONE = "none"
706
HT_SM_USER = "user"
707
HT_SM_POOL = "pool"
708

    
709
HT_KVM_VALID_SM_TYPES = frozenset([HT_SM_NONE, HT_SM_USER, HT_SM_POOL])
710

    
711
# Kvm flag values
712
HT_KVM_ENABLED = "enabled"
713
HT_KVM_DISABLED = "disabled"
714

    
715
HT_KVM_FLAG_VALUES = frozenset([HT_KVM_ENABLED, HT_KVM_DISABLED])
716

    
717
# Cluster Verify steps
718
VERIFY_NPLUSONE_MEM = 'nplusone_mem'
719
VERIFY_OPTIONAL_CHECKS = frozenset([VERIFY_NPLUSONE_MEM])
720

    
721
# Node verify constants
722
NV_DRBDHELPER = "drbd-helper"
723
NV_DRBDLIST = "drbd-list"
724
NV_FILELIST = "filelist"
725
NV_HVINFO = "hvinfo"
726
NV_HYPERVISOR = "hypervisor"
727
NV_INSTANCELIST = "instancelist"
728
NV_LVLIST = "lvlist"
729
NV_MASTERIP = "master-ip"
730
NV_NODELIST = "nodelist"
731
NV_NODENETTEST = "node-net-test"
732
NV_NODESETUP = "nodesetup"
733
NV_OSLIST = "oslist"
734
NV_PVLIST = "pvlist"
735
NV_TIME = "time"
736
NV_VERSION = "version"
737
NV_VGLIST = "vglist"
738

    
739
# SSL certificate check constants (in days)
740
SSL_CERT_EXPIRATION_WARN = 30
741
SSL_CERT_EXPIRATION_ERROR = 7
742

    
743
# Allocator framework constants
744
IALLOCATOR_VERSION = 2
745
IALLOCATOR_DIR_IN = "in"
746
IALLOCATOR_DIR_OUT = "out"
747
VALID_IALLOCATOR_DIRECTIONS = frozenset([
748
  IALLOCATOR_DIR_IN,
749
  IALLOCATOR_DIR_OUT,
750
  ])
751
IALLOCATOR_MODE_ALLOC = "allocate"
752
IALLOCATOR_MODE_RELOC = "relocate"
753
IALLOCATOR_MODE_MEVAC = "multi-evacuate"
754
VALID_IALLOCATOR_MODES = frozenset([
755
  IALLOCATOR_MODE_ALLOC,
756
  IALLOCATOR_MODE_RELOC,
757
  IALLOCATOR_MODE_MEVAC,
758
  ])
759
IALLOCATOR_SEARCH_PATH = _autoconf.IALLOCATOR_SEARCH_PATH
760

    
761
# Job queue
762
JOB_QUEUE_VERSION = 1
763
JOB_QUEUE_LOCK_FILE = QUEUE_DIR + "/lock"
764
JOB_QUEUE_VERSION_FILE = QUEUE_DIR + "/version"
765
JOB_QUEUE_SERIAL_FILE = QUEUE_DIR + "/serial"
766
JOB_QUEUE_ARCHIVE_DIR = QUEUE_DIR + "/archive"
767
JOB_QUEUE_DRAIN_FILE = QUEUE_DIR + "/drain"
768
JOB_QUEUE_SIZE_HARD_LIMIT = 5000
769
JOB_QUEUE_DIRS = [QUEUE_DIR, JOB_QUEUE_ARCHIVE_DIR]
770
JOB_QUEUE_DIRS_MODE = SECURE_DIR_MODE
771

    
772
JOB_ID_TEMPLATE = r"\d+"
773

    
774
# unchanged job return
775
JOB_NOTCHANGED = "nochange"
776

    
777
# Job status
778
JOB_STATUS_QUEUED = "queued"
779
JOB_STATUS_WAITLOCK = "waiting"
780
JOB_STATUS_CANCELING = "canceling"
781
JOB_STATUS_RUNNING = "running"
782
JOB_STATUS_CANCELED = "canceled"
783
JOB_STATUS_SUCCESS = "success"
784
JOB_STATUS_ERROR = "error"
785

    
786
# OpCode status
787
# not yet finalized
788
OP_STATUS_QUEUED = "queued"
789
OP_STATUS_WAITLOCK = "waiting"
790
OP_STATUS_CANCELING = "canceling"
791
OP_STATUS_RUNNING = "running"
792
# finalized
793
OP_STATUS_CANCELED = "canceled"
794
OP_STATUS_SUCCESS = "success"
795
OP_STATUS_ERROR = "error"
796
OPS_FINALIZED = frozenset([OP_STATUS_CANCELED,
797
                           OP_STATUS_SUCCESS,
798
                           OP_STATUS_ERROR])
799

    
800
# Execution log types
801
ELOG_MESSAGE = "message"
802
ELOG_PROGRESS = "progress"
803
ELOG_REMOTE_IMPORT = "remote-import"
804

    
805
# max dynamic devices
806
MAX_NICS = 8
807
MAX_DISKS = 16
808

    
809
# SSCONF keys
810
SS_CLUSTER_NAME = "cluster_name"
811
SS_CLUSTER_TAGS = "cluster_tags"
812
SS_FILE_STORAGE_DIR = "file_storage_dir"
813
SS_MASTER_CANDIDATES = "master_candidates"
814
SS_MASTER_CANDIDATES_IPS = "master_candidates_ips"
815
SS_MASTER_IP = "master_ip"
816
SS_MASTER_NETDEV = "master_netdev"
817
SS_MASTER_NODE = "master_node"
818
SS_NODE_LIST = "node_list"
819
SS_NODE_PRIMARY_IPS = "node_primary_ips"
820
SS_NODE_SECONDARY_IPS = "node_secondary_ips"
821
SS_OFFLINE_NODES = "offline_nodes"
822
SS_ONLINE_NODES = "online_nodes"
823
SS_INSTANCE_LIST = "instance_list"
824
SS_RELEASE_VERSION = "release_version"
825
SS_HYPERVISOR_LIST = "hypervisor_list"
826
SS_MAINTAIN_NODE_HEALTH = "maintain_node_health"
827
SS_UID_POOL = "uid_pool"
828

    
829
# cluster wide default parameters
830
DEFAULT_ENABLED_HYPERVISOR = HT_XEN_PVM
831

    
832
HVC_DEFAULTS = {
833
  HT_XEN_PVM: {
834
    HV_USE_BOOTLOADER: False,
835
    HV_BOOTLOADER_PATH: XEN_BOOTLOADER,
836
    HV_BOOTLOADER_ARGS: '',
837
    HV_KERNEL_PATH: "/boot/vmlinuz-2.6-xenU",
838
    HV_INITRD_PATH: '',
839
    HV_ROOT_PATH: '/dev/sda1',
840
    HV_KERNEL_ARGS: 'ro',
841
    HV_MIGRATION_PORT: 8002,
842
    },
843
  HT_XEN_HVM: {
844
    HV_BOOT_ORDER: "cd",
845
    HV_CDROM_IMAGE_PATH: '',
846
    HV_NIC_TYPE: HT_NIC_RTL8139,
847
    HV_DISK_TYPE: HT_DISK_PARAVIRTUAL,
848
    HV_VNC_BIND_ADDRESS: IP4_ADDRESS_ANY,
849
    HV_VNC_PASSWORD_FILE: VNC_PASSWORD_FILE,
850
    HV_ACPI: True,
851
    HV_PAE: True,
852
    HV_KERNEL_PATH: "/usr/lib/xen/boot/hvmloader",
853
    HV_DEVICE_MODEL: "/usr/lib/xen/bin/qemu-dm",
854
    HV_MIGRATION_PORT: 8002,
855
    HV_USE_LOCALTIME: False,
856
    },
857
  HT_KVM: {
858
    HV_KERNEL_PATH: "/boot/vmlinuz-2.6-kvmU",
859
    HV_INITRD_PATH: '',
860
    HV_KERNEL_ARGS: 'ro',
861
    HV_ROOT_PATH: '/dev/vda1',
862
    HV_ACPI: True,
863
    HV_SERIAL_CONSOLE: True,
864
    HV_VNC_BIND_ADDRESS: '',
865
    HV_VNC_TLS: False,
866
    HV_VNC_X509: '',
867
    HV_VNC_X509_VERIFY: False,
868
    HV_VNC_PASSWORD_FILE: '',
869
    HV_CDROM_IMAGE_PATH: '',
870
    HV_BOOT_ORDER: HT_BO_DISK,
871
    HV_NIC_TYPE: HT_NIC_PARAVIRTUAL,
872
    HV_DISK_TYPE: HT_DISK_PARAVIRTUAL,
873
    HV_USB_MOUSE: '',
874
    HV_MIGRATION_PORT: 8102,
875
    HV_MIGRATION_BANDWIDTH: 32, # MiB/s
876
    HV_MIGRATION_DOWNTIME: 30,  # ms
877
    HV_USE_LOCALTIME: False,
878
    HV_DISK_CACHE: HT_CACHE_DEFAULT,
879
    HV_SECURITY_MODEL: HT_SM_NONE,
880
    HV_SECURITY_DOMAIN: '',
881
    HV_KVM_FLAG: "",
882
    HV_VHOST_NET: False,
883
    HV_KVM_USE_CHROOT: False,
884
    },
885
  HT_FAKE: {
886
    },
887
  HT_CHROOT: {
888
    HV_INIT_SCRIPT: "/ganeti-chroot",
889
    },
890
  HT_LXC: {
891
    },
892
  }
893

    
894
HVC_GLOBALS = frozenset([
895
  HV_MIGRATION_PORT,
896
  HV_MIGRATION_BANDWIDTH,
897
  ])
898

    
899
BEC_DEFAULTS = {
900
  BE_MEMORY: 128,
901
  BE_VCPUS: 1,
902
  BE_AUTO_BALANCE: True,
903
  }
904

    
905
NICC_DEFAULTS = {
906
  NIC_MODE: NIC_MODE_BRIDGED,
907
  NIC_LINK: DEFAULT_BRIDGE,
908
  }
909

    
910
MASTER_POOL_SIZE_DEFAULT = 10
911

    
912
CONFD_PROTOCOL_VERSION = 1
913

    
914
CONFD_REQ_PING = 0
915
CONFD_REQ_NODE_ROLE_BYNAME = 1
916
CONFD_REQ_NODE_PIP_BY_INSTANCE_IP = 2
917
CONFD_REQ_CLUSTER_MASTER = 3
918
CONFD_REQ_NODE_PIP_LIST = 4
919
CONFD_REQ_MC_PIP_LIST = 5
920
CONFD_REQ_INSTANCES_IPS_LIST = 6
921

    
922
# Confd request query fields. These are used to narrow down queries.
923
# These must be strings rather than integers, because json-encoding
924
# converts them to strings anyway, as they're used as dict-keys.
925
CONFD_REQQ_LINK = "0"
926
CONFD_REQQ_IP = "1"
927
CONFD_REQQ_IPLIST = "2"
928
CONFD_REQQ_FIELDS = "3"
929

    
930
CONFD_REQFIELD_NAME = "0"
931
CONFD_REQFIELD_IP = "1"
932
CONFD_REQFIELD_MNODE_PIP = "2"
933

    
934
CONFD_REQS = frozenset([
935
  CONFD_REQ_PING,
936
  CONFD_REQ_NODE_ROLE_BYNAME,
937
  CONFD_REQ_NODE_PIP_BY_INSTANCE_IP,
938
  CONFD_REQ_CLUSTER_MASTER,
939
  CONFD_REQ_NODE_PIP_LIST,
940
  CONFD_REQ_MC_PIP_LIST,
941
  CONFD_REQ_INSTANCES_IPS_LIST,
942
  ])
943

    
944
CONFD_REPL_STATUS_OK = 0
945
CONFD_REPL_STATUS_ERROR = 1
946
CONFD_REPL_STATUS_NOTIMPLEMENTED = 2
947

    
948
CONFD_REPL_STATUSES = frozenset([
949
  CONFD_REPL_STATUS_OK,
950
  CONFD_REPL_STATUS_ERROR,
951
  CONFD_REPL_STATUS_NOTIMPLEMENTED,
952
  ])
953

    
954
(CONFD_NODE_ROLE_MASTER,
955
 CONFD_NODE_ROLE_CANDIDATE,
956
 CONFD_NODE_ROLE_OFFLINE,
957
 CONFD_NODE_ROLE_DRAINED,
958
 CONFD_NODE_ROLE_REGULAR,
959
 ) = range(5)
960

    
961
# A few common errors for confd
962
CONFD_ERROR_UNKNOWN_ENTRY = 1
963
CONFD_ERROR_INTERNAL = 2
964
CONFD_ERROR_ARGUMENT = 3
965

    
966
# Each request is "salted" by the current timestamp.
967
# This constants decides how many seconds of skew to accept.
968
# TODO: make this a default and allow the value to be more configurable
969
CONFD_MAX_CLOCK_SKEW = 2 * NODE_MAX_CLOCK_SKEW
970

    
971
# When we haven't reloaded the config for more than this amount of seconds, we
972
# force a test to see if inotify is betraying us.
973
CONFD_CONFIG_RELOAD_TIMEOUT = 60
974

    
975
# If we receive more than one update in this amount of seconds, we move to
976
# polling every RATELIMIT seconds, rather than relying on inotify, to be able
977
# to serve more requests.
978
CONFD_CONFIG_RELOAD_RATELIMIT = 2
979

    
980
# Magic number prepended to all confd queries.
981
# This allows us to distinguish different types of confd protocols and handle
982
# them. For example by changing this we can move the whole payload to be
983
# compressed, or move away from json.
984
CONFD_MAGIC_FOURCC = 'plj0'
985

    
986
# By default a confd request is sent to the minimum between this number and all
987
# MCs. 6 was chosen because even in the case of a disastrous 50% response rate,
988
# we should have enough answers to be able to compare more than one.
989
CONFD_DEFAULT_REQ_COVERAGE = 6
990

    
991
# Timeout in seconds to expire pending query request in the confd client
992
# library. We don't actually expect any answer more than 10 seconds after we
993
# sent a request.
994
CONFD_CLIENT_EXPIRE_TIMEOUT = 10
995

    
996
# Maximum UDP datagram size.
997
# On IPv4: 64K - 20 (ip header size) - 8 (udp header size) = 65507
998
# On IPv6: 64K - 40 (ip6 header size) - 8 (udp header size) = 65487
999
#   (assuming we can't use jumbo frames)
1000
# We just set this to 60K, which should be enough
1001
MAX_UDP_DATA_SIZE = 61440
1002

    
1003
# User-id pool minimum/maximum acceptable user-ids.
1004
UIDPOOL_UID_MIN = 0
1005
UIDPOOL_UID_MAX = 2**32-1 # Assuming 32 bit user-ids
1006

    
1007
# Name or path of the pgrep command
1008
PGREP = "pgrep"