RETIRED, Chef Cookbook - OpenStack Identity
Go to file
Lance Albertson 21255e36b4 Upgrade python2-urllib3 on CentOS
I've run into this issue on systems that already have python2-urllib3
installed, but it's older than what gets installed from the RDO
repository and breaks the db sync for keystone. By adding it here, that
will ensure it's always upgraded before we try running db sync.

Change-Id: If876315001c8136fad654d7408ec9f656ef48775
2020-01-22 16:05:30 -08:00
.delivery Add delivery config 2018-04-11 22:24:47 -07:00
attributes Upgrade python2-urllib3 on CentOS 2020-01-22 16:05:30 -08:00
recipes Updates for rocky 2019-12-06 11:19:50 -08:00
spec Use Ubuntu 18.04 for ChefSpec tests 2020-01-06 11:44:50 -08:00
templates/default Improve ChefSpec test speed by enabling caching 2019-12-17 18:59:42 -08:00
.gitignore add a Rakefile to structure test runs 2014-09-30 14:21:29 +02:00
.gitreview OpenDev Migration Patch 2019-04-19 19:36:39 +00:00
.rubocop.yml Initial kilo updates 2015-02-27 13:29:07 -06:00
.rubocop_todo.yml starting rocky development patch 2018-08-03 06:40:56 -07:00
.zuul.yaml Rename openstack-chef-repo references to openstack-chef 2018-08-06 21:49:43 -07:00
Berksfile Use python3 packages on Ubuntu 2019-11-26 10:46:40 +00:00
CONTRIBUTING.md Workflow documentation is now in infra-manual 2014-12-05 03:30:44 +00:00
LICENSE identity refactor for Pike and Chef 13 2017-12-10 20:04:21 -08:00
README.rst Updates for rocky 2019-12-06 11:19:50 -08:00
Rakefile Updates for rocky 2019-12-06 11:19:50 -08:00
TESTING.md Sync stackforge/cookbook* to openstack/cookbook* for keystone cookbook 2015-06-15 13:23:05 +08:00
metadata.rb Updates for rocky 2019-12-06 11:19:50 -08:00

README.rst

OpenStack Chef Cookbook - identity

image

Description

This cookbook installs the OpenStack Identity Service Keystone as part of the OpenStack reference deployment Chef for OpenStack. The OpenStack chef-repo contains documentation for using this cookbook in the context of a full OpenStack deployment. Keystone is installed from packages, creating the default user, tenant, and roles. It also registers the identity service and identity endpoint.

https://docs.openstack.org/keystone/latest/

Requirements

  • Chef 14 or higher
  • ChefDK 3.2.30 for testing (also includes Berkshelf for cookbook dependency resolution)

Platform

  • ubuntu
  • redhat
  • centos

Cookbooks

The following cookbooks are dependencies:

  • 'apache2', '~> 5.0.1'
  • 'openstack-common', '>= 18.0.0'
  • 'openstackclient'

Attributes

Please see the extensive inline documentation in attributes/*.rb for descriptions of all the settable attributes for this cookbook.

Note that all attributes are in the default['openstack'] "namespace"

The usage of attributes to generate the keystone.conf is described in the openstack-common cookbook.

Recipes

openstack-identity::cloud_config

  • Manage the cloud config file located at /root/clouds.yaml

openstack-identity::_credential_tokens

  • Helper recipe to manage credential keys

openstack-identity::_fernet_tokens

  • Helper recipe to manage fernet tokens

openstack-identity::openrc

  • Creates a fully usable openrc file to export the needed environment variables to use the openstack client.

openstack-identity::registration

  • Registers the initial keystone endpoint as well as users, tenants and roles needed for the initial configuration utilizing the custom resource provided in the openstackclient cookbook. The recipe is documented in detail with inline comments inside the recipe.

openstack-identity::server-apache

  • Installs and configures the OpenStack Identity Service running inside of an apache webserver. The recipe is documented in detail with inline comments inside the recipe.

License and Author

Author Justin Shepherd (justin.shepherd@rackspace.com)
Author Jason Cannavale (jason.cannavale@rackspace.com)
Author Ron Pedde (ron.pedde@rackspace.com)
Author Joseph Breu (joseph.breu@rackspace.com)
Author William Kelly (william.kelly@rackspace.com)
Author Darren Birkett (darren.birkett@rackspace.co.uk)
Author Evan Callicoat (evan.callicoat@rackspace.com)
Author Matt Ray (matt@opscode.com)
Author Jay Pipes (jaypipes@att.com)
Author John Dewey (jdewey@att.com)
Author Sean Gallagher (sean.gallagher@att.com)
Author Ionut Artarisi (iartarisi@suse.cz)
Author Chen Zhiwei (zhiwchen@cn.ibm.com)
Author Eric Zhou (zyouzhou@cn.ibm.com)
Author Jan Klare (j.klare@cloudbau.de)
Author Christoph Albers (c.albers@x-ion.de)
Author Lance Albertson (lance@osuosl.org)
Copyright Copyright 2012, Rackspace US, Inc.
Copyright Copyright 2012-2013, Opscode, Inc.
Copyright Copyright 2012-2013, AT&T Services, Inc.
Copyright Copyright 2013-2014, SUSE Linux
Copyright GmbH Copyright 2013-2014, IBM, Corp.
Copyright Copyright 2016-2019, Oregon State University

Licensed under the Apache License, Version 2.0 (the "License"); you may not use this file except in compliance with the License. You may obtain a copy of the License at

http://www.apache.org/licenses/LICENSE-2.0

Unless required by applicable law or agreed to in writing, software distributed under the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the License for the specific language governing permissions and limitations under the License.