Statistics
| Branch: | Tag: | Revision:

root / README.deploy @ 204fd8aa

History | View | Annotate | Download (17.6 kB)

1 1c382247 Vangelis Koukis
README.deploy -- Instructions for a basic Synnefo deployment
2 bbd4f788 Georgios Gousios
3 03353341 Vangelis Koukis
This document describes the basic steps to obtain a basic, working Synnefo
4 03353341 Vangelis Koukis
deployment. It begins by examining the different node roles, then moves to the
5 03353341 Vangelis Koukis
installation and setup of distinct software components.
6 c807557e Vangelis Koukis
7 5949b704 Vangelis Koukis
It is current as of Synnefo v0.7.
8 03353341 Vangelis Koukis
9 03353341 Vangelis Koukis
10 03353341 Vangelis Koukis
Node types
11 03353341 Vangelis Koukis
===========
12 03353341 Vangelis Koukis
13 03353341 Vangelis Koukis
Nodes in a Synnefo deployment belong in one of the following types:
14 03353341 Vangelis Koukis
15 03353341 Vangelis Koukis
 * DB:
16 271baf11 Nikos Skalkotos
   A node [or more than one nodes, if using an HA configuration], running a DB
17 271baf11 Nikos Skalkotos
   engine supported by the Django ORM layer. The DB is the single source of
18 271baf11 Nikos Skalkotos
   truth for the servicing of API requests by Synnefo.
19 03353341 Vangelis Koukis
   Services: PostgreSQL / MySQL
20 03353341 Vangelis Koukis
21 03353341 Vangelis Koukis
 * APISERVER:
22 271baf11 Nikos Skalkotos
   A node running the implementation of the OpenStack API, in Django. Any number
23 271baf11 Nikos Skalkotos
   of APISERVERs can be used, in a load-balancing configuration, without any
24 271baf11 Nikos Skalkotos
   special consideration. Access to a common DB ensures consistency.
25 03353341 Vangelis Koukis
   Services: Web server, vncauthproxy
26 03353341 Vangelis Koukis
27 03353341 Vangelis Koukis
 * QUEUE:
28 271baf11 Nikos Skalkotos
   A node running the RabbitMQ software, which provides AMQP functionality. More
29 271baf11 Nikos Skalkotos
   than one QUEUE nodes may be deployed, in an HA configuration. Such
30 03353341 Vangelis Koukis
   deployments require shared storage, provided e.g., by DRBD.
31 03353341 Vangelis Koukis
   Services: RabbitMQ [rabbitmq-server]
32 03353341 Vangelis Koukis
33 03353341 Vangelis Koukis
 * LOGIC:
34 03353341 Vangelis Koukis
   A node running the business logic of Synnefo, in Django. It dequeues
35 271baf11 Nikos Skalkotos
   messages from QUEUE nodes, and provides the context in which business logic
36 271baf11 Nikos Skalkotos
   functions run. It uses Django ORM to connect to the common DB and update the
37 271baf11 Nikos Skalkotos
   state of the system, based on notifications received from the rest of the
38 271baf11 Nikos Skalkotos
   infrastructure, over AMQP.
39 03353341 Vangelis Koukis
   Services: the Synnefo logic dispatcher [/logic/dispatcher.py]
40 03353341 Vangelis Koukis
41 03353341 Vangelis Koukis
 * GANETI-MASTER and GANETI-NODE:
42 03353341 Vangelis Koukis
   A single GANETI-MASTER and a large number of GANETI-NODEs constitute the
43 03353341 Vangelis Koukis
   Ganeti backend for Synnefo, which undertakes all VM management functions.
44 03353341 Vangelis Koukis
   Any APISERVER can issue commands to the GANETI-MASTER, over RAPI, to effect
45 03353341 Vangelis Koukis
   changes in the state of the VMs. The GANETI-MASTER runs the Ganeti request
46 03353341 Vangelis Koukis
   queue.
47 03353341 Vangelis Koukis
   Services:
48 271baf11 Nikos Skalkotos
     only on GANETI-MASTER:
49 3d9ae008 Vangelis Koukis
       the Synnefo Ganeti monitoring daemon [/ganeti/snf-ganeti-eventd]
50 271baf11 Nikos Skalkotos
       the Synnefo Ganeti hook [/ganeti/snf-ganeti-hook.py].
51 271baf11 Nikos Skalkotos
     on each GANETI_NODE:
52 271baf11 Nikos Skalkotos
       a deployment-specific KVM ifup script
53 271baf11 Nikos Skalkotos
       properly configured NFDHCPD
54 03353341 Vangelis Koukis
55 03353341 Vangelis Koukis
56 03353341 Vangelis Koukis
Installation Process
57 03353341 Vangelis Koukis
=====================
58 03353341 Vangelis Koukis
59 271baf11 Nikos Skalkotos
This section describes the installation process of the various node roles in a
60 271baf11 Nikos Skalkotos
Synnefo deployment.
61 03353341 Vangelis Koukis
62 03353341 Vangelis Koukis
63 03353341 Vangelis Koukis
0. Allocation of physical nodes:
64 03353341 Vangelis Koukis
   Determine the role of every physical node in your deployment.
65 03353341 Vangelis Koukis
66 03353341 Vangelis Koukis
67 03353341 Vangelis Koukis
1. Ganeti installation:
68 03353341 Vangelis Koukis
   Synnefo requires a working Ganeti installation at the backend. Installation
69 03353341 Vangelis Koukis
   of Ganeti is not covered by this document, please refer to
70 03353341 Vangelis Koukis
   http://docs.ganeti.org/ganeti/current/html for all the gory details. A
71 03353341 Vangelis Koukis
   successful Ganeti installation concludes with a working GANETI-MASTER and a
72 03353341 Vangelis Koukis
   number of GANETI-NODEs.
73 03353341 Vangelis Koukis
74 03353341 Vangelis Koukis
75 03353341 Vangelis Koukis
2. RabbitMQ installation:
76 271baf11 Nikos Skalkotos
   RabbitMQ is used as a generic message broker for the system. It should be
77 271baf11 Nikos Skalkotos
   installed on two seperate QUEUE nodes (VMs should be enough for the moment)
78 271baf11 Nikos Skalkotos
   in a high availability configuration as described here:
79 03353341 Vangelis Koukis
80 03353341 Vangelis Koukis
     http://www.rabbitmq.com/pacemaker.html
81 03353341 Vangelis Koukis
82 03353341 Vangelis Koukis
   After installation, create a user and set its permissions
83 03353341 Vangelis Koukis
     rabbitmqctl add_user okeanos 0k3@n0s
84 03353341 Vangelis Koukis
     rabbitmqctl set_permissions -p / okeanos  "^.*" ".*" ".*"
85 03353341 Vangelis Koukis
86 03353341 Vangelis Koukis
   The values set for the user and password must be mirrored in the
87 03353341 Vangelis Koukis
   RABBIT_* variables in settings.py (see step 6)
88 03353341 Vangelis Koukis
89 03353341 Vangelis Koukis
90 03353341 Vangelis Koukis
3. Web server installation:
91 03353341 Vangelis Koukis
   A Web Server (e.g., Apache) needs to be installed on the APISERVERs,
92 271baf11 Nikos Skalkotos
   and be configured to run the Synnefo Django project appropriately. Selection
93 271baf11 Nikos Skalkotos
   and configuration of a Web server is outside the scope of this document.
94 03353341 Vangelis Koukis
95 03353341 Vangelis Koukis
   For testing or development purposes, Django's own development server,
96 271baf11 Nikos Skalkotos
   `./manage.py runserver' can be used.
97 03353341 Vangelis Koukis
98 03353341 Vangelis Koukis
99 03353341 Vangelis Koukis
4. Installation of the Synnefo Django project:
100 3d9ae008 Vangelis Koukis
   As of v0.5 the Synnefo Django project needs to be installed on nodes
101 02728a9a Vangelis Koukis
   of type APISERVER, and LOGIC, with a properly configured settings.py. In
102 02728a9a Vangelis Koukis
   later revisions, the specific parts of the Django project which need to run
103 02728a9a Vangelis Koukis
   on each node type will be identified.
104 03353341 Vangelis Koukis
105 271baf11 Nikos Skalkotos
   Synnefo is written in Python 2.6 and depends on the following Python modules:
106 271baf11 Nikos Skalkotos
   [package versions confirmed to be compatible are in braces]
107 c807557e Vangelis Koukis
108 c807557e Vangelis Koukis
    * django 1.2 [Django==1.2.4]
109 c807557e Vangelis Koukis
    * simplejson [simplejson==2.1.3]
110 c807557e Vangelis Koukis
    * pycurl [pycurl==7.19.0]
111 c807557e Vangelis Koukis
    * python-dateutil  [python-dateutil==1.4.1]
112 36cf1973 Vangelis Koukis
      WARNING: version python-dateutil==2.0 downloaded by pip known *not* to
113 36cf1973 Vangelis Koukis
               work with Python 2.6
114 92ab6b1c Vangelis Koukis
    * python-ipy [IPy==0.75]
115 92ab6b1c Vangelis Koukis
        also verified to work with python-ipy 0.70-1 as shipped with Squeeze
116 c807557e Vangelis Koukis
    * south [south==0.7.1]
117 b8498a99 Vangelis Koukis
      WARNING: might not work with Debian Squeeze's default south-0.7-1 package.
118 c807557e Vangelis Koukis
    * amqplib [amqplib==0.6.1]
119 4ed2e471 Georgios Gousios
    * lockfile [lockfile==0.8]
120 4ed2e471 Georgios Gousios
    * python-daemon [python-daemon==1.5.5]
121 b8498a99 Vangelis Koukis
    * python-prctl [python-prctl==1.3.0]
122 03353341 Vangelis Koukis
123 03353341 Vangelis Koukis
   also, depending on the database engine of choice, on one of the following:
124 c807557e Vangelis Koukis
    * MySQL-python [MySQL-python==1.2.3]
125 c807557e Vangelis Koukis
    * psycopg2 [psycopg2==2.4]
126 03353341 Vangelis Koukis
127 271baf11 Nikos Skalkotos
   if the invitations application is deployed, the following dependencies should
128 271baf11 Nikos Skalkotos
   be installed:
129 c807557e Vangelis Koukis
    * pycrypto==2.1.0
130 03353341 Vangelis Koukis
131 480051fe Vangelis Koukis
   The integration test suite snf-tools/snf-test depends on:
132 480051fe Vangelis Koukis
    * python-unittest2 [unittest2==0.5.1]
133 480051fe Vangelis Koukis
    * python-paramiko  [paramiko==1.7.6], version included in Debian Squeeze
134 480051fe Vangelis Koukis
      is broken wrt to use of RandomPool, see Debian bug #576697
135 480051fe Vangelis Koukis
    * python-ipy [IPy==0.75]
136 480051fe Vangelis Koukis
    * python-prctl [python-prctl==1.3.0]
137 480051fe Vangelis Koukis
    * the client component of vncauthproxy, see Step 12
138 480051fe Vangelis Koukis
    * the kamaki client library, please see
139 480051fe Vangelis Koukis
      https://code.grnet.gr/projects/kamaki for installation instructions.
140 480051fe Vangelis Koukis
      [FIXME: Update instructions on kamaki installation]
141 480051fe Vangelis Koukis
142 45e3d1ac Vangelis Koukis
   To run the user interface tests, selenium must be installed
143 c807557e Vangelis Koukis
    * selenium [?]
144 c807557e Vangelis Koukis
145 03353341 Vangelis Koukis
   The easiest method for installation of the Django project is to setup a
146 03353341 Vangelis Koukis
   working environment through virtualenv. Alternatively, you can use your
147 03353341 Vangelis Koukis
   system's package manager to install the dependencies (e.g. Macports has them
148 03353341 Vangelis Koukis
   all).
149 a06deab3 Vangelis Koukis
150 36cf1973 Vangelis Koukis
   * On Snow Leopard and linux (64-bit), you have to set the following
151 36cf1973 Vangelis Koukis
     environment variable for pip to compile the dependencies correctly.
152 a06deab3 Vangelis Koukis
153 03353341 Vangelis Koukis
  	   $ export ARCHFLAGS="-arch x86_64"
154 a06deab3 Vangelis Koukis
155 03353341 Vangelis Koukis
   * On Ubuntu, a few more packages must be installed before installing the
156 03353341 Vangelis Koukis
     prerequisite Python libraries
157 a06deab3 Vangelis Koukis
158 03353341 Vangelis Koukis
	   $ sudo aptitude install libcurl3-gnutls libcurl3-gnutls-dev uuid-dev
159 a06deab3 Vangelis Koukis
160 271baf11 Nikos Skalkotos
   Checkout the code and install the Python prerequisites. This assumes that
161 271baf11 Nikos Skalkotos
   python is already installed on the host.
162 a06deab3 Vangelis Koukis
163 03353341 Vangelis Koukis
    $ sudo easy_install virtualenv
164 03353341 Vangelis Koukis
    $ git clone https://user@code.grnet.gr/git/synnefo synnefo
165 03353341 Vangelis Koukis
    $ virtualenv --python=python2.6 synnefo --no-site-packages
166 03353341 Vangelis Koukis
    ...
167 03353341 Vangelis Koukis
    $ cd synnefo
168 03353341 Vangelis Koukis
    $ ./bin/pip install <list_of_dependencies>
169 fc2afa67 Vangelis Koukis
170 33f3103d Georgios Gousios
    [WARNING]: The software must be checked out in a directory named synnefo,
171 33f3103d Georgios Gousios
    otherwise python imports will not work. Therefore, do not change the
172 33f3103d Georgios Gousios
    or rename the checkout path.
173 a06deab3 Vangelis Koukis
174 937ac8bf Vangelis Koukis
175 03353341 Vangelis Koukis
5. Database installation:
176 03353341 Vangelis Koukis
   A database supported by the Django ORM layer must be installed on nodes
177 03353341 Vangelis Koukis
   of type DB. The choices are: SQLIte, MySQL, PostgreSQL.
178 a06deab3 Vangelis Koukis
179 03353341 Vangelis Koukis
   * SQLite:
180 36cf1973 Vangelis Koukis
     The python sqlite driver is available by default with Python so no
181 36cf1973 Vangelis Koukis
     additional configuration is required. Also, most self-respecting systems
182 36cf1973 Vangelis Koukis
     have the sqlite library installed by default.
183 03353341 Vangelis Koukis
184 271baf11 Nikos Skalkotos
   * MySQL:
185 03353341 Vangelis Koukis
      MySQL must be installed first:
186 03353341 Vangelis Koukis
187 03353341 Vangelis Koukis
      * Ubuntu - Debian
188 03353341 Vangelis Koukis
	      $ sudo apt-get install libmysqlclient-dev
189 03353341 Vangelis Koukis
190 03353341 Vangelis Koukis
      * MacPorts
191 03353341 Vangelis Koukis
	      $ sudo port install mysql5
192 03353341 Vangelis Koukis
193 03353341 Vangelis Koukis
      Install the MySQL python library on servers running the Django project:
194 a06deab3 Vangelis Koukis
195 03353341 Vangelis Koukis
	    $ bin/pip install MySQL-python
196 a06deab3 Vangelis Koukis
197 36cf1973 Vangelis Koukis
      Note: On MacOSX with Mysql install from MacPorts the above command will
198 271baf11 Nikos Skalkotos
            fail complaining that it cannot find the mysql_config command. Do
199 271baf11 Nikos Skalkotos
            the following and restart the installation
200 271baf11 Nikos Skalkotos
	        $ echo "mysql_config = /opt/local/bin/mysql_config5" >> \
201 271baf11 Nikos Skalkotos
                                         ./build/MySQL-python/site.cfg
202 7e8b41e7 Vangelis Koukis
203 03353341 Vangelis Koukis
      Configure a MySQL db/account for synnefo
204 03353341 Vangelis Koukis
	    $ mysql -u root -p
205 a06deab3 Vangelis Koukis
206 03353341 Vangelis Koukis
    	mysql> create database synnefo;
207 03353341 Vangelis Koukis
	    mysql> show databases;
208 03353341 Vangelis Koukis
	    mysql> GRANT ALL on synnefo.* TO username IDENTIFIED BY 'password';
209 fc2afa67 Vangelis Koukis
210 e71be688 Vangelis Koukis
     IMPORTANT:
211 e71be688 Vangelis Koukis
        MySQL *must* be set in READ-COMMITED mode, e.g. by setting
212 e71be688 Vangelis Koukis
213 e71be688 Vangelis Koukis
        transaction-isolation = READ-COMMITTED
214 e71be688 Vangelis Koukis
215 96b635d9 Vangelis Koukis
        in the [mysqld] section of /etc/mysql/my.cnf.
216 e71be688 Vangelis Koukis
217 96b635d9 Vangelis Koukis
        Alternatively, make sure the following code fragment stays enabled
218 96b635d9 Vangelis Koukis
        in settings.d/10-database.conf:
219 96b635d9 Vangelis Koukis
220 96b635d9 Vangelis Koukis
            if DATABASES['default']['ENGINE'].endswith('mysql'):
221 96b635d9 Vangelis Koukis
                DATABASES['default']['OPTIONS'] = {
222 96b635d9 Vangelis Koukis
                        'init_command': 'SET storage_engine=INNODB; ' +
223 96b635d9 Vangelis Koukis
                            'SET SESSION TRANSACTION ISOLATION LEVEL READ COMMITTED',
224 96b635d9 Vangelis Koukis
                }
225 96b635d9 Vangelis Koukis
          
226 03353341 Vangelis Koukis
   * PostgreSQL
227 03353341 Vangelis Koukis
     You need to install the PostgreSQL binaries:
228 03353341 Vangelis Koukis
     * Ubuntu - Debian
229 03353341 Vangelis Koukis
	     $ sudo apt-get install postgresql-8.4 libpq-dev
230 fc2afa67 Vangelis Koukis
231 03353341 Vangelis Koukis
     * MacPorts
232 03353341 Vangelis Koukis
	     $ sudo port install postgresql84
233 6ec8927b Vangelis Koukis
234 03353341 Vangelis Koukis
     Install the postgres Python library
235 03353341 Vangelis Koukis
	    $ bin/pip install psycopg2
236 6f339260 Georgios Gousios
237 03353341 Vangelis Koukis
     Configure a postgres db/account for synnefo:
238 6f339260 Georgios Gousios
239 03353341 Vangelis Koukis
     Become the postgres user, connect to PostgreSQL:
240 03353341 Vangelis Koukis
       $ sudo su - postgres
241 03353341 Vangelis Koukis
       $ psql
242 03353341 Vangelis Koukis
	
243 03353341 Vangelis Koukis
	 Run the following commands:
244 03353341 Vangelis Koukis
	   DROP DATABASE synnefo;
245 03353341 Vangelis Koukis
	   DROP USER username;
246 03353341 Vangelis Koukis
	   CREATE USER username WITH PASSWORD 'password';
247 03353341 Vangelis Koukis
	   CREATE DATABASE synnefo;
248 03353341 Vangelis Koukis
	   GRANT ALL PRIVILEGES ON DATABASE synnefo TO username;
249 03353341 Vangelis Koukis
	   ALTER DATABASE synnefo OWNER TO username;
250 03353341 Vangelis Koukis
	   ALTER USER username CREATEDB;
251 6f339260 Georgios Gousios
252 36cf1973 Vangelis Koukis
     The last line enables the newly created user to create own databases. This
253 36cf1973 Vangelis Koukis
     is needed for Django to create and drop the test_synnefo database for unit
254 03353341 Vangelis Koukis
     testing.
255 6f339260 Georgios Gousios
256 6f339260 Georgios Gousios
257 03353341 Vangelis Koukis
6. Setting up the Django project:
258 03353341 Vangelis Koukis
   The settings.py file for Django may be derived by concatenating the
259 03353341 Vangelis Koukis
   settings.py.dist file contained in the Synnefo distribution with a file
260 03353341 Vangelis Koukis
   containing custom modifications, which shall override all settings deviating
261 03353341 Vangelis Koukis
   from the supplied settings.py.dist. This is recommended to minimize the load
262 03353341 Vangelis Koukis
   of reconstructing settings.py from scratch, since each release currently
263 03353341 Vangelis Koukis
   brings heavy changes to settings.py.dist.
264 7e8b41e7 Vangelis Koukis
265 36cf1973 Vangelis Koukis
   Add the following to your custom settings.py, depending on your choice
266 36cf1973 Vangelis Koukis
   of DB:
267 03353341 Vangelis Koukis
   * SQLite
268 7e8b41e7 Vangelis Koukis
269 03353341 Vangelis Koukis
	 PROJECT_PATH = os.path.dirname(os.path.abspath(__file__)) + '/'
270 7e8b41e7 Vangelis Koukis
271 03353341 Vangelis Koukis
	 DATABASES = {
272 03353341 Vangelis Koukis
	     'default': {
273 03353341 Vangelis Koukis
		     'ENGINE': 'django.db.backends.sqlite3',
274 36cf1973 Vangelis Koukis
		     'NAME': PROJECT_PATH + 'synnefo.db' # WARN: This must be an absolute path
275 03353341 Vangelis Koukis
	     }
276 03353341 Vangelis Koukis
	 }
277 7e8b41e7 Vangelis Koukis
278 03353341 Vangelis Koukis
   * MySQL
279 7e8b41e7 Vangelis Koukis
280 03353341 Vangelis Koukis
 	 DATABASES = {
281 03353341 Vangelis Koukis
	     'default': {
282 03353341 Vangelis Koukis
             'ENGINE': 'django.db.backends.mysql',
283 03353341 Vangelis Koukis
             'NAME': 'synnefo',
284 03353341 Vangelis Koukis
             'USER': 'USERNAME',
285 03353341 Vangelis Koukis
             'PASSWORD': 'PASSWORD',
286 03353341 Vangelis Koukis
             'HOST': 'HOST',
287 03353341 Vangelis Koukis
             'PORT': 'PORT',
288 03353341 Vangelis Koukis
             'OPTIONS': {
289 03353341 Vangelis Koukis
                 'init_command': 'SET storage_engine=INNODB',
290 03353341 Vangelis Koukis
             }
291 03353341 Vangelis Koukis
	    }
292 03353341 Vangelis Koukis
	}
293 7e8b41e7 Vangelis Koukis
294 03353341 Vangelis Koukis
   * PostgreSQL
295 6f339260 Georgios Gousios
296 03353341 Vangelis Koukis
     DATABASES = {
297 03353341 Vangelis Koukis
	     'default': {
298 03353341 Vangelis Koukis
             'ENGINE': 'django.db.backends.postgresql_psycopg2',
299 03353341 Vangelis Koukis
             'NAME': 'DATABASE',
300 03353341 Vangelis Koukis
             'USER': 'USERNAME',
301 03353341 Vangelis Koukis
             'PASSWORD': 'PASSWORD',
302 03353341 Vangelis Koukis
             'HOST': 'HOST',
303 03353341 Vangelis Koukis
             'PORT': 'PORT',
304 03353341 Vangelis Koukis
	     }
305 03353341 Vangelis Koukis
     }
306 7e8b41e7 Vangelis Koukis
307 03353341 Vangelis Koukis
    Try it out. The following command will attempt to connect to the DB and
308 03353341 Vangelis Koukis
    print out DDL statements. It should not fail.
309 7e8b41e7 Vangelis Koukis
310 03353341 Vangelis Koukis
	$ ./bin/python manage.py sql db
311 6ec8927b Vangelis Koukis
312 6ec8927b Vangelis Koukis
313 03353341 Vangelis Koukis
7. Initialization of Synnefo DB:
314 03353341 Vangelis Koukis
   You need to initialize the Synnefo DB and load fixtures
315 3d9f561d Vangelis Koukis
   db/fixtures/{users,flavors,images}.json, which make the API usable by end
316 3d9f561d Vangelis Koukis
   users by defining a sample set of users, hardware configurations (flavors)
317 3d9f561d Vangelis Koukis
   and OS images.
318 03353341 Vangelis Koukis
319 3d9f561d Vangelis Koukis
   IMPORTANT: Be sure to modify db/fixtures/users.json and select
320 a6ff022a Vangelis Koukis
   a unique token for each of the initial and any other users defined in this
321 a6ff022a Vangelis Koukis
   file. DO NOT LEAVE THE SAMPLE AUTHENTICATION TOKENS enabled in deployed
322 a6ff022a Vangelis Koukis
   configurations.
323 a6ff022a Vangelis Koukis
324 03353341 Vangelis Koukis
     $ ./bin/python manage.py syncdb
325 03353341 Vangelis Koukis
     $ ./bin/python manage.py migrate db
326 3d9f561d Vangelis Koukis
     $ ./bin/python manage.py loaddata db/fixtures/users.json
327 03353341 Vangelis Koukis
     $ ./bin/python manage.py loaddata db/fixtures/flavors.json
328 03353341 Vangelis Koukis
     $ ./bin/python manage.py loaddata db/fixtures/images.json
329 03353341 Vangelis Koukis
330 03353341 Vangelis Koukis
331 03353341 Vangelis Koukis
8. Finalization of settings.py:
332 03353341 Vangelis Koukis
   Set the BACKEND_PREFIX_ID variable to some unique prefix, e.g. your commit
333 03353341 Vangelis Koukis
   username in settings.py. Several functional conventions within the system
334 03353341 Vangelis Koukis
   require this variable to include a dash at its end (e.g. snf-)
335 03353341 Vangelis Koukis
336 03353341 Vangelis Koukis
337 36cf1973 Vangelis Koukis
9. Installation of the Ganeti monitoring daemon, /ganeti/snf-ganeti-eventd:
338 36cf1973 Vangelis Koukis
   The Ganeti monitoring daemon must run on GANETI-MASTER.
339 937ac8bf Vangelis Koukis
340 02728a9a Vangelis Koukis
   The monitoring daemon is configured through /etc/synnefo/settings.conf.
341 02728a9a Vangelis Koukis
   An example is provided under snf-ganeti-tools/.
342 03353341 Vangelis Koukis
343 02728a9a Vangelis Koukis
   If run from the repository directory, make sure to have snf-ganeti-tools/
344 02728a9a Vangelis Koukis
   in the PYTHONPATH.
345 02728a9a Vangelis Koukis
346 02728a9a Vangelis Koukis
   You may also build Debian packages directly from the repository:
347 02728a9a Vangelis Koukis
   $ cd snf-ganeti-tools
348 02728a9a Vangelis Koukis
   $ dpkg-buildpackage -b -uc -us
349 02728a9a Vangelis Koukis
   # dpkg -i ../snf-ganeti-tools-*deb
350 03353341 Vangelis Koukis
351 03353341 Vangelis Koukis
   TBD: how to handle master migration.
352 03353341 Vangelis Koukis
353 6ec8927b Vangelis Koukis
354 03353341 Vangelis Koukis
10. Installation of the Synnefo dispatcher, /logic/dispatcher.py:
355 03353341 Vangelis Koukis
    The logic dispatcher is part of the Synnefo Django project and must run
356 03353341 Vangelis Koukis
    on LOGIC nodes.
357 ff55193e Vangelis Koukis
358 271baf11 Nikos Skalkotos
    The dispatcher retrieves messages from the queue and calls the appropriate
359 271baf11 Nikos Skalkotos
    handler function as defined in the queue configuration in `setttings.py'.
360 271baf11 Nikos Skalkotos
    The default configuration should work directly without any modifications.
361 6ec8927b Vangelis Koukis
362 03353341 Vangelis Koukis
    For the time being The dispatcher must be run by hand:
363 03353341 Vangelis Koukis
      $ ./bin/python ./logic/dispatcher.py
364 6ec8927b Vangelis Koukis
365 03353341 Vangelis Koukis
    The dispatcher should run in at least 2 instances to ensure high
366 03353341 Vangelis Koukis
    (actually, increased) availability.
367 6ec8927b Vangelis Koukis
368 7e8b41e7 Vangelis Koukis
369 03353341 Vangelis Koukis
11. Installation of the Synnefo Ganeti hook:
370 02728a9a Vangelis Koukis
    The generic Synnefo Ganeti hook wrapper resides in the snf-ganeti-tools/
371 02728a9a Vangelis Koukis
    directory of the Synnefo repository.
372 7e8b41e7 Vangelis Koukis
373 271baf11 Nikos Skalkotos
    The hook needs to be enabled for phases post-{add,modify,reboot,start,stop}
374 271baf11 Nikos Skalkotos
    by *symlinking* in
375 271baf11 Nikos Skalkotos
    /etc/ganeti/hooks/instance-{add,modify,reboot,start,stop}-post.d on
376 271baf11 Nikos Skalkotos
    GANETI-MASTER, e.g.:
377 7e8b41e7 Vangelis Koukis
378 03353341 Vangelis Koukis
    root@ganeti-master:/etc/ganeti/hooks/instance-start-post.d# ls -l
379 02728a9a Vangelis Koukis
    lrwxrwxrwx 1 root root 45 May   3 13:45 00-snf-ganeti-hook -> /home/devel/synnefo/snf-ganeti-hook/snf-ganeti-hook.py
380 b6382dc5 Vangelis Koukis
381 03353341 Vangelis Koukis
    IMPORTANT: The link name may only contain "upper and lower case, digits,
382 03353341 Vangelis Koukis
    underscores and hyphens. In other words, the regexp ^[a-zA-Z0-9_-]+$."
383 271baf11 Nikos Skalkotos
    See:
384 02728a9a Vangelis Koukis
    http://docs.ganeti.org/ganeti/master/html/hooks.html?highlight=hooks#naming
385 02728a9a Vangelis Koukis
386 02728a9a Vangelis Koukis
    If run from the repository directory, make sure to have snf-ganeti-tools/
387 02728a9a Vangelis Koukis
    in the PYTHONPATH.
388 7e8b41e7 Vangelis Koukis
389 02728a9a Vangelis Koukis
    Alternative, build Debian packages which take care of building, installing
390 02728a9a Vangelis Koukis
    and activating the Ganeti hook automatically, see step. 9.
391 81d1a961 Constantinos Venetsanopoulos
392 81d1a961 Constantinos Venetsanopoulos
393 03353341 Vangelis Koukis
12. Installation of the VNC authentication proxy, vncauthproxy:
394 03353341 Vangelis Koukis
    To support OOB console access to the VMs over VNC, the vncauthproxy
395 03353341 Vangelis Koukis
    daemon must be running on every node of type APISERVER.
396 81d1a961 Constantinos Venetsanopoulos
397 03353341 Vangelis Koukis
    Download and install vncauthproxy from its own repository,
398 50a48b39 Vangelis Koukis
    at https://code.grnet.gr/git/vncauthproxy (known good commit: tag v1.0).
399 a06deab3 Vangelis Koukis
400 937ac8bf Vangelis Koukis
    Download and install a specific repository commit:
401 937ac8bf Vangelis Koukis
402 937ac8bf Vangelis Koukis
    $ bin/pip install -e git+https://code.grnet.gr/git/vncauthproxy@INSERT_COMMIT_HERE#egg=vncauthproxy
403 937ac8bf Vangelis Koukis
404 03353341 Vangelis Koukis
    Create /var/log/vncauthproxy and set its permissions appropriately.
405 fc2afa67 Vangelis Koukis
406 937ac8bf Vangelis Koukis
    Alternatively, you can build Debian packages. To do so,
407 937ac8bf Vangelis Koukis
    checkout the "debian" branch of the vncauthproxy repository
408 50a48b39 Vangelis Koukis
    (known good commit: tag debian/v1.0):
409 937ac8bf Vangelis Koukis
410 937ac8bf Vangelis Koukis
    $ git checkout debian
411 937ac8bf Vangelis Koukis
412 937ac8bf Vangelis Koukis
    Then build debian package, and install as root:
413 937ac8bf Vangelis Koukis
414 937ac8bf Vangelis Koukis
    $ dpkg-buildpackage -b -uc -us
415 937ac8bf Vangelis Koukis
    # dpkg -i ../vncauthproxy_1.0-1_all.deb
416 937ac8bf Vangelis Koukis
417 141f3009 Georgios Gousios
    --Failure to build the package on the Mac.
418 141f3009 Georgios Gousios
419 141f3009 Georgios Gousios
    libevent, a requirement for gevent which in turn is a requirement for
420 141f3009 Georgios Gousios
    vncauthproxy is not included in MacOSX by default and installing it with
421 141f3009 Georgios Gousios
    MacPorts does not lead to a version that can be found by the gevent
422 141f3009 Georgios Gousios
    build process. A quick workaround is to execute the following commands:
423 141f3009 Georgios Gousios
424 141f3009 Georgios Gousios
    cd $SYNNEFO
425 141f3009 Georgios Gousios
    sudo pip install -e git+https://code.grnet.gr/git/vncauthproxy@5a196d8481e171a#egg=vncauthproxy
426 141f3009 Georgios Gousios
    <the above fails>
427 141f3009 Georgios Gousios
    cd build/gevent
428 141f3009 Georgios Gousios
    sudo python setup.py -I/opt/local/include -L/opt/local/lib build
429 141f3009 Georgios Gousios
    cd $SYNNEFO
430 141f3009 Georgios Gousios
    sudo pip install -e git+https://code.grnet.gr/git/vncauthproxy@5a196d8481e171a#egg=vncauthproxy
431 fc2afa67 Vangelis Koukis
432 02728a9a Vangelis Koukis
433 5949b704 Vangelis Koukis
13. Installation of the snf-image Ganeti OS provider for image deployment:
434 03353341 Vangelis Koukis
    For Synnefo to be able to launch VMs from specified Images, you need
435 5949b704 Vangelis Koukis
    the snf-image OS Provider installed on *all* Ganeti nodes.
436 5949b704 Vangelis Koukis
437 5949b704 Vangelis Koukis
    Please see https://code.grnet.gr/projects/snf-image/wiki
438 5949b704 Vangelis Koukis
    for installation instructions and documentation on the design
439 5949b704 Vangelis Koukis
    and implementation of snf-image.
440 5949b704 Vangelis Koukis
441 5949b704 Vangelis Koukis
    Please see https://code.grnet.gr/projects/snf-image/files
442 5949b704 Vangelis Koukis
    for the latest packages.
443 5949b704 Vangelis Koukis
444 5949b704 Vangelis Koukis
    Images should be stored under extdump format in a directory
445 5949b704 Vangelis Koukis
    of your choice, configurable as IMAGE_DIR in /etc/default/snf-image.
446 76a429fb Georgios Gousios
447 02728a9a Vangelis Koukis
448 03353341 Vangelis Koukis
14. Setup Synnefo-specific networking on the Ganeti backend:
449 03353341 Vangelis Koukis
    This part is deployment-specific and must be customized based on the
450 03353341 Vangelis Koukis
    specific needs of the system administrators.
451 76a429fb Georgios Gousios
452 03353341 Vangelis Koukis
    A reference installation will use a Synnefo-specific KVM ifup script,
453 03353341 Vangelis Koukis
    NFDHCPD and pre-provisioned Linux bridges to support public and private
454 03353341 Vangelis Koukis
    network functionality. For this:
455 76a429fb Georgios Gousios
456 03353341 Vangelis Koukis
    Grab NFDHCPD from its own repository (https://code.grnet.gr/git/nfdhcpd),
457 03353341 Vangelis Koukis
    install it, modify /etc/nfdhcpd/nfdhcpd.conf to reflect your network
458 03353341 Vangelis Koukis
    configuration.
459 76a429fb Georgios Gousios
460 03353341 Vangelis Koukis
    Install a custom KVM ifup script for use by Ganeti, as
461 03353341 Vangelis Koukis
    /etc/ganeti/kvm-vif-bridge, on GANETI-NODEs. A sample implementation is
462 03353341 Vangelis Koukis
    provided under /contrib/ganeti-hooks. Set NFDHCPD_STATE_DIR to point
463 03353341 Vangelis Koukis
    to NFDHCPD's state directory, usually /var/lib/nfdhcpd.
464 76a429fb Georgios Gousios
465 76a429fb Georgios Gousios
466 9e98ba3c Giorgos Verigakis
15. See section "Logging" in README.admin, and edit settings.d/00-logging.conf
467 10b3cf02 Vangelis Koukis
    according to your OS and individual deployment characteristics.
468 76a429fb Georgios Gousios
469 7e8b41e7 Vangelis Koukis
470 8b5381f3 Kostas Papadimitriou
16. Optionally, read the okeanos_site/README file to setup ~okeanos introductory 
471 3c27c268 Vangelis Koukis
    site (intro, video/info pages). Please see okeanos_site/90-okeanos.sample
472 3c27c268 Vangelis Koukis
    for a sample configuration file which overrides site-specific variables,
473 3c27c268 Vangelis Koukis
    to be placed under settings.d/, after customization.
474 3c27c268 Vangelis Koukis
475 3c27c268 Vangelis Koukis
476 8b5381f3 Kostas Papadimitriou
17. (Hopefully) Done
477 8b5381f3 Kostas Papadimitriou