84bbe9c758
The 'max_environments' setting of [networking] group in murano configuration file defines the maximum number of networks which may be created by murano for any given router, thus eventually limiting the number of environments to simultaneously co-exists within a tenant. The previous default (20) was very low, and it was causing CIDR conflicts even when the actual number of envs was not reaching the limit. This change increases the number of CIDRs allowed for environment networks, thus reducing the probability of CIDR conflict. NOTE: This change just reduces the risk of conflicts but does not eleminate it completely. Change-Id: Id913d17b8f7207afc9b1983287349a6d70a09edf Partial-bug: #1502437
293 lines
11 KiB
Python
293 lines
11 KiB
Python
# Copyright 2011 OpenStack LLC.
|
|
# All Rights Reserved.
|
|
#
|
|
# Licensed under the Apache License, Version 2.0 (the "License"); you may
|
|
# not use this file except in compliance with the License. You may obtain
|
|
# a copy of the License at
|
|
#
|
|
# http://www.apache.org/licenses/LICENSE-2.0
|
|
#
|
|
# Unless required by applicable law or agreed to in writing, software
|
|
# distributed under the License is distributed on an "AS IS" BASIS, WITHOUT
|
|
# WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the
|
|
# License for the specific language governing permissions and limitations
|
|
# under the License.
|
|
|
|
from oslo_config import cfg
|
|
from oslo_config import types
|
|
from oslo_log import log as logging
|
|
|
|
from murano.common.i18n import _
|
|
from murano import version
|
|
|
|
portType = types.Integer(1, 65535)
|
|
|
|
paste_deploy_opts = [
|
|
cfg.StrOpt('flavor', help='Paste flavor'),
|
|
cfg.StrOpt('config_file', help='Path to Paste config file'),
|
|
]
|
|
|
|
bind_opts = [
|
|
cfg.StrOpt('bind-host', default='0.0.0.0',
|
|
help='Address to bind the Murano API server to.'),
|
|
cfg.Opt('bind-port',
|
|
type=portType,
|
|
default=8082,
|
|
help='Port the bind the Murano API server to.'),
|
|
]
|
|
|
|
rabbit_opts = [
|
|
cfg.StrOpt('host', default='localhost',
|
|
help='The RabbitMQ broker address which used for communication '
|
|
'with Murano guest agents.'),
|
|
|
|
cfg.Opt('port',
|
|
type=portType,
|
|
default=5672,
|
|
help='The RabbitMQ broker port.'),
|
|
|
|
cfg.StrOpt('login', default='guest',
|
|
help='The RabbitMQ login.'),
|
|
|
|
cfg.StrOpt('password', default='guest',
|
|
help='The RabbitMQ password.'),
|
|
|
|
cfg.StrOpt('virtual_host', default='/',
|
|
help='The RabbitMQ virtual host.'),
|
|
|
|
cfg.BoolOpt('ssl', default=False,
|
|
help='Boolean flag to enable SSL communication through the '
|
|
'RabbitMQ broker between murano-engine and guest agents.'),
|
|
cfg.StrOpt('ca_certs', default='',
|
|
help='SSL cert file (valid only if SSL enabled).')
|
|
]
|
|
|
|
heat_opts = [
|
|
cfg.BoolOpt('insecure', default=False,
|
|
help='This option explicitly allows Murano to perform '
|
|
'"insecure" SSL connections and transfers with Heat API.'),
|
|
|
|
cfg.StrOpt('ca_file',
|
|
help='(SSL) Tells Murano to use the specified certificate file '
|
|
'to verify the peer running Heat API.'),
|
|
|
|
cfg.StrOpt('cert_file',
|
|
help='(SSL) Tells Murano to use the specified client '
|
|
'certificate file when communicating with Heat.'),
|
|
|
|
cfg.StrOpt('key_file', help='(SSL/SSH) Private key file name to '
|
|
'communicate with Heat API.'),
|
|
|
|
cfg.StrOpt('endpoint_type', default='publicURL',
|
|
help='Heat endpoint type.')
|
|
]
|
|
|
|
mistral_opts = [
|
|
cfg.StrOpt('endpoint_type', default='publicURL',
|
|
help='Mistral endpoint type.'),
|
|
cfg.StrOpt('service_type', default='workflowv2',
|
|
help='Mistral service type.')
|
|
]
|
|
|
|
neutron_opts = [
|
|
cfg.BoolOpt('insecure', default=False,
|
|
help='This option explicitly allows Murano to perform '
|
|
'"insecure" SSL connections and transfers with Neutron API.'),
|
|
|
|
cfg.StrOpt('ca_cert',
|
|
help='(SSL) Tells Murano to use the specified client '
|
|
'certificate file when communicating with Neutron.'),
|
|
|
|
cfg.StrOpt('endpoint_type', default='publicURL',
|
|
help='Neutron endpoint type.')
|
|
]
|
|
|
|
keystone_opts = [
|
|
cfg.BoolOpt('insecure', default=False,
|
|
help='This option explicitly allows Murano to perform '
|
|
'"insecure" SSL connections and transfers with '
|
|
'Keystone API running Kyestone API.'),
|
|
|
|
cfg.StrOpt('ca_file',
|
|
help='(SSL) Tells Murano to use the specified certificate file '
|
|
'to verify the peer when communicating with Keystone.'),
|
|
|
|
cfg.StrOpt('cert_file',
|
|
help='(SSL) Tells Murano to use the specified client '
|
|
'certificate file when communicating with Keystone.'),
|
|
|
|
cfg.StrOpt('key_file', help='(SSL/SSH) Private key file name to '
|
|
'communicate with Keystone API')
|
|
]
|
|
|
|
murano_opts = [
|
|
cfg.StrOpt('url', help='Optional murano url in format '
|
|
'like http://0.0.0.0:8082 used by Murano engine'),
|
|
|
|
cfg.BoolOpt('insecure', default=False,
|
|
help='This option explicitly allows Murano to perform '
|
|
'"insecure" SSL connections and transfers used by '
|
|
'Murano engine.'),
|
|
|
|
cfg.StrOpt('cacert',
|
|
help='(SSL) Tells Murano to use the specified client '
|
|
'certificate file when communicating with Murano API '
|
|
'used by Murano engine.'),
|
|
|
|
cfg.StrOpt('cert_file',
|
|
help='(SSL) Tells Murano to use the specified client '
|
|
'certificate file when communicating with Murano '
|
|
'used by Murano engine.'),
|
|
|
|
cfg.StrOpt('key_file', help='(SSL/SSH) Private key file name '
|
|
'to communicate with Murano API used by '
|
|
'Murano engine.'),
|
|
|
|
cfg.StrOpt('endpoint_type', default='publicURL',
|
|
help='Murano endpoint type used by Murano engine.'),
|
|
|
|
cfg.ListOpt('enabled_plugins', default=None,
|
|
help="List of enabled Extension Plugins. "
|
|
"Remove or leave commented to enable all installed "
|
|
"plugins."),
|
|
|
|
cfg.StrOpt('region_name_for_services',
|
|
help="Default region name used to get services endpoints.")
|
|
]
|
|
|
|
networking_opts = [
|
|
cfg.IntOpt('max_environments', default=250,
|
|
help='Maximum number of environments that use a single router '
|
|
'per tenant'),
|
|
|
|
cfg.IntOpt('max_hosts', default=250,
|
|
help='Maximum number of VMs per environment'),
|
|
|
|
cfg.StrOpt('env_ip_template', default='10.0.0.0',
|
|
help='Template IP address for generating environment '
|
|
'subnet cidrs'),
|
|
|
|
cfg.ListOpt('default_dns', default=[],
|
|
help='List of default DNS nameservers to be assigned to '
|
|
'created Networks'),
|
|
|
|
cfg.StrOpt('external_network', default='ext-net',
|
|
help='ID or name of the external network for routers '
|
|
'to connect to'),
|
|
|
|
cfg.StrOpt('router_name', default='murano-default-router',
|
|
help='Name of the router that going to be used in order to '
|
|
'join all networks created by Murano'),
|
|
|
|
cfg.BoolOpt('create_router', default=True,
|
|
help='This option will create a router when one with '
|
|
'"router_name" does not exist'),
|
|
|
|
cfg.StrOpt('network_config_file', default='netconfig.yaml',
|
|
help='If provided networking configuration will be taken '
|
|
'from this file')
|
|
]
|
|
stats_opts = [
|
|
cfg.IntOpt('period', default=5,
|
|
help=_('Statistics collection interval in minutes.'
|
|
'Default value is 5 minutes.'))
|
|
]
|
|
|
|
engine_opts = [
|
|
cfg.BoolOpt('disable_murano_agent', default=False,
|
|
help=_('Disallow the use of murano-agent')),
|
|
cfg.StrOpt('class_configs', default='/etc/murano/class-configs',
|
|
help=_('Path to class configuration files')),
|
|
cfg.BoolOpt('use_trusts', default=True,
|
|
help=_("Create resources using trust token rather "
|
|
"than user's token")),
|
|
cfg.BoolOpt('enable_model_policy_enforcer', default=False,
|
|
help=_('Enable model policy enforcer using Congress')),
|
|
cfg.IntOpt('agent_timeout', default=3600,
|
|
help=_('Time for waiting for a response from murano agent '
|
|
'during the deployment')),
|
|
cfg.ListOpt('load_packages_from', default=[],
|
|
help=_('List of directories to load local packages from. '
|
|
'If not provided, packages will be loaded by API'))
|
|
]
|
|
|
|
# TODO(sjmc7): move into engine opts?
|
|
metadata_dir = [
|
|
cfg.StrOpt('metadata-dir', default='./meta',
|
|
help='Metadata dir')
|
|
]
|
|
|
|
packages_opts = [
|
|
cfg.StrOpt('packages_cache', default=None,
|
|
help='Location (directory) for Murano package cache.'),
|
|
|
|
cfg.IntOpt('package_size_limit', default=5,
|
|
help='Maximum application package size, Mb'),
|
|
|
|
cfg.IntOpt('limit_param_default', default=20,
|
|
help='Default value for package pagination in API.'),
|
|
|
|
cfg.IntOpt('api_limit_max', default=100,
|
|
help='Maximum number of packages to be returned in a single '
|
|
'pagination request'),
|
|
|
|
cfg.StrOpt('packages_service', default='murano',
|
|
help=_('The service to store murano packages: murano (stands '
|
|
'for legacy behavior using murano-api) or glance '
|
|
'(stands for Glance V3 artifact repository)'))
|
|
]
|
|
|
|
glance_opts = [
|
|
cfg.StrOpt('url', help='Optional murano url in format '
|
|
'like http://0.0.0.0:9292 used by Glance API'),
|
|
|
|
cfg.BoolOpt('insecure', default=False,
|
|
help='This option explicitly allows Murano to perform '
|
|
'"insecure" SSL connections and transfers with Glance API.'),
|
|
|
|
cfg.StrOpt('ca_file',
|
|
help='(SSL) Tells Murano to use the specified certificate file '
|
|
'to verify the peer running Glance API.'),
|
|
|
|
cfg.StrOpt('cert_file',
|
|
help='(SSL) Tells Murano to use the specified client '
|
|
'certificate file when communicating with Glance.'),
|
|
|
|
cfg.StrOpt('key_file', help='(SSL/SSH) Private key file name to '
|
|
'communicate with Glance API.'),
|
|
|
|
cfg.StrOpt('endpoint_type', default='publicURL',
|
|
help='Glance endpoint type.')
|
|
]
|
|
|
|
file_server = [
|
|
cfg.StrOpt('file_server', default='')
|
|
]
|
|
|
|
CONF = cfg.CONF
|
|
CONF.register_opts(paste_deploy_opts, group='paste_deploy')
|
|
CONF.register_cli_opts(bind_opts)
|
|
CONF.register_opts(rabbit_opts, group='rabbitmq')
|
|
CONF.register_opts(heat_opts, group='heat')
|
|
CONF.register_opts(mistral_opts, group='mistral')
|
|
CONF.register_opts(neutron_opts, group='neutron')
|
|
CONF.register_opts(keystone_opts, group='keystone')
|
|
CONF.register_opts(murano_opts, group='murano')
|
|
CONF.register_opts(engine_opts, group='engine')
|
|
CONF.register_opts(file_server)
|
|
CONF.register_cli_opts(metadata_dir)
|
|
CONF.register_opts(packages_opts, group='packages_opts')
|
|
CONF.register_opts(stats_opts, group='stats')
|
|
CONF.register_opts(networking_opts, group='networking')
|
|
CONF.register_opts(glance_opts, group='glance')
|
|
|
|
|
|
def parse_args(args=None, usage=None, default_config_files=None):
|
|
logging.register_options(CONF)
|
|
logging.setup(CONF, 'murano')
|
|
CONF(args=args,
|
|
project='murano',
|
|
version=version.version_string,
|
|
usage=usage,
|
|
default_config_files=default_config_files)
|