############################################################################### # [ WARNING ] # Configuration file maintained by Juju. Local changes may be overwritten. ## Restart trigger {{ restart_trigger }} ############################################################################### [DEFAULT] verbose = {{ verbose }} debug = {{ debug }} use_syslog = {{ use_syslog }} state_path = /var/lib/neutron lock_path = $state_path/lock bind_host = {{ bind_host }} auth_strategy = keystone notification_driver = neutron.openstack.common.notifier.rpc_notifier api_workers = {{ workers }} rpc_workers = {{ workers }} router_distributed = {{ enable_dvr }} l3_ha = {{ l3_ha }} {% if l3_ha -%} max_l3_agents_per_router = {{ max_l3_agents_per_router }} min_l3_agents_per_router = {{ min_l3_agents_per_router }} {% endif -%} {% if neutron_bind_port -%} bind_port = {{ neutron_bind_port }} {% else -%} bind_port = 9696 {% endif -%} {% if core_plugin -%} core_plugin = {{ core_plugin }} {% if neutron_plugin in ['ovs', 'ml2'] -%} service_plugins = neutron.services.l3_router.l3_router_plugin.L3RouterPlugin,neutron.services.firewall.fwaas_plugin.FirewallPlugin,neutron.services.loadbalancer.plugin.LoadBalancerPlugin,neutron.services.vpn.plugin.VPNDriverPlugin,neutron.services.metering.metering_plugin.MeteringPlugin {% endif -%} {% endif -%} {% if neutron_security_groups -%} allow_overlapping_ips = True neutron_firewall_driver = neutron.agent.linux.iptables_firewall.OVSHybridIptablesFirewallDriver {% endif -%} {% include "parts/rabbitmq" %} notify_nova_on_port_status_changes = True notify_nova_on_port_data_changes = True nova_url = {{ nova_url }} nova_region_name = {{ region }} {% if auth_host -%} nova_admin_username = {{ admin_user }} nova_admin_tenant_id = {{ admin_tenant_id }} nova_admin_password = {{ admin_password }} nova_admin_auth_url = {{ auth_protocol }}://{{ auth_host }}:{{ auth_port }}/v2.0 {% endif -%} [quotas] quota_driver = neutron.db.quota_db.DbQuotaDriver {% if neutron_security_groups -%} quota_items = network,subnet,port,security_group,security_group_rule {% endif -%} [agent] root_helper = sudo /usr/bin/neutron-rootwrap /etc/neutron/rootwrap.conf [keystone_authtoken] signing_dir = {{ signing_dir }} {% if service_host -%} service_protocol = {{ service_protocol }} service_host = {{ service_host }} service_port = {{ service_port }} auth_host = {{ auth_host }} auth_port = {{ auth_port }} auth_protocol = {{ auth_protocol }} admin_tenant_name = {{ admin_tenant_name }} admin_user = {{ admin_user }} admin_password = {{ admin_password }} {% endif -%} {% include "parts/section-database" %} [service_providers] service_provider=LOADBALANCER:Haproxy:neutron.services.loadbalancer.drivers.haproxy.plugin_driver.HaproxyOnHostPluginDriver:default service_provider=VPN:openswan:neutron.services.vpn.service_drivers.ipsec.IPsecVPNDriver:default service_provider=FIREWALL:Iptables:neutron.agent.linux.iptables_firewall.OVSHybridIptablesFirewallDriver:default