Collection of scripts and manifests for module testing
Go to file
Takashi Kajinami fe9a9105cb Drop usage of 'update-ca-trust force-enable'
... because the subcommand does not exist actually. The command fails
with the following error in recent CentOS Stream 9.

```
Error: Unknown command: force-enable

Usage: /usr/bin/update-ca-trust [extract] [-o DIR|--output=DIR]

Update the system trust store in /etc/pki/ca-trust/extracted.

COMMANDS
(absent/empty command): Same as the extract command described below.

extract: Instruct update-ca-trust to scan the source configuration in
/usr/share/pki/ca-trust-source and /etc/pki/ca-trust/source and produce
updated versions of the consolidated configuration files stored below
the /etc/pki/ca-trust/extracted directory hierarchy.

EXTRACT OPTIONS
-o DIR, --output=DIR: Write the extracted trust store into the given
directory instead of updating /etc/pki/ca-trust/extracted.
```

Change-Id: I38bbfc08a73823d2fd6e00974e277130cbff7e12
2024-08-21 14:03:31 +09:00
contrib Fix ipv6 certificate to make it compliant with IDNA 2018-03-20 22:38:03 +01:00
files Merge "Fix wrong facility for swift logs" 2023-02-10 19:34:08 +00:00
fixtures Enable designate dashboard 2024-08-05 07:43:09 +00:00
hiera Apache: Disable default mods 2023-08-07 16:58:14 +09:00
manifests Drop usage of 'update-ca-trust force-enable' 2024-08-21 14:03:31 +09:00
playbooks Drop rubygem-rexml 2024-04-19 01:40:06 +09:00
templates Debian/Ubuntu: Fix rndc.key file path in rndc.conf 2023-12-10 00:20:02 +09:00
zuul.d Add experimental puppet 8 functional jobs 2024-05-31 08:55:52 +00:00
.gitignore Dissuade .gitignore references to personal tools 2018-10-08 11:47:07 +08:00
.gitreview OpenDev Migration Patch 2019-04-19 19:36:24 +00:00
all-in-one.sh Fix missing qemu-img 2024-06-11 16:19:40 +09:00
bindep.txt Move other-requirements.txt to bindep.txt 2016-08-12 21:10:15 +02:00
configure_facts.sh Restore FACTER_ environments 2023-10-15 01:29:31 +09:00
copy_logs.sh Fix typo in rsyslog config directory path 2024-06-10 16:56:51 +09:00
external_modules.txt Bump puppetlabs-stdlib to 9.0.0 2023-09-21 03:15:02 +09:00
functions CentOS: Remove RPM-GPG-KEY-puppetlabs 2024-06-11 11:40:09 +09:00
Gemfile Use openstack_spec_helper from zuul checkout 2022-07-23 23:29:50 +09:00
install_modules_unit.sh Add puppet core providers for puppet6 2018-11-20 11:37:55 +01:00
install_modules.sh Refactor puppet installation in integration job 2023-11-09 23:37:51 +09:00
LICENSE Add LICENSE file 2015-07-13 14:58:14 -04:00
openstack_modules.txt Remove murano 2024-03-06 01:19:57 +00:00
Puppetfile Updated from Puppet OpenStack modules constraints 2024-07-20 02:38:17 +00:00
Puppetfile_unit Updated from Puppet OpenStack modules constraints 2024-03-07 02:45:44 +00:00
Rakefile Align the stars 2017-02-01 22:36:10 -05:00
README.md Merge "Use redis sentinel for taskflow backend" 2024-07-29 15:42:20 +00:00
run_tests.sh tempest: Avoid unnecessary package installation 2024-04-20 23:27:26 +09:00
unit_modules.txt Prepare list of modules used in unit tests 2023-02-26 01:40:54 +09:00

Team and repository tags

Team and repository tags

puppet-openstack-integration

Table of Contents

  1. Overview - What is Puppet OpenStack Integration?
  2. Description - What does the project do?
  3. Development - Guide for contributing
  4. All-in-one - How to deploy a cloud with Puppet
  5. Contributors - Those with commits

Overview

Puppet OpenStack Integration makes sure we can continuously test and validate OpenStack setups deployed with Puppet modules. The repository itself contains some scripts and Puppet manifests that help to deploy OpenStack in OpenStack Infrastructure environment.

Description

OpenStack Infrastructure is deploying four jobs per supported Operating System (Ubuntu and CentOS): scenario001, scenario002, scenario003, scenario004, and scenario005.

The manifest files under the fixtures directory is used to compose the required services for each senario. The manifest files under the manifests directory is used to set up basic set of a single component (like nova, cinder and so on).

OpenStack services are balanced between four scenarios because OpenStack Infastructure Jenkins slaves can not afford the load of running everything on the same node. One manifest (scenario-aio) is used for people who want to run a simple All-In-One scenario.

- scenario001 scenario002 scenario003 scenario004 scenario005 scenario-aio
ssl yes yes yes yes yes no
ipv6 centos9 centos9 centos9 centos9 centos9 no
keystone X X X X X X
glance rbd swift file rbd cinder file
nova rbd X X rbd X X
placement X X X X X X
neutron ovs ovs ovn ovs ovn ovs
cinder rbd iscsi iscsi iscsi
manila cephfs lvm
ceilometer X X
aodh X X
designate bind
backup ceph swift
gnocchi rbd swift
heat X X
swift X
trove X
horizon X X X X X
ironic X
zaqar X
magnum X
mistral X
barbican X X
ceph X X
ceph mds X
ceph rgw X
vitrage X
watcher X
vpnaas X
taas X
bgpvpn-api X
bgp-dr X
memcached X X X X X X
redis X X X X X
l2gw X
octavia X X
om rpc rabbit rabbit rabbit rabbit rabbit rabbit
om notify rabbit rabbit rabbit rabbit rabbit rabbit
oslo.cache redis sentinel memcache memcache memcache memcache
tooz redis sentinel redis redis redis
jobboard redis sentinel

When the Jenkins slave is created, the run_tests.sh script will be executed. This script will execute install_modules.sh that prepare /etc/puppet/modules with all Puppet modules dependencies.

Then, it will execute Puppet a first time by applying a scenario manifest. If the first run executes without error, a second Puppet run will be executed to verify there is no change in the catalog and make sure the Puppet run is idempotent.

If Puppet runs are successful, the script will run Tempest Smoke tests, that will execute some scenarios & API tests. It covers what we want to validate, and does not take too much time.

Development

Developer documentation for the entire Puppet OpenStack project:

Note: SSL Certificates

puppet-openstack-integration ships it's own SSL keys and certificates in order to be able to test implementations secured over SSL/TLS.

It doesn't re-generate new ones every time for the sake of simplicity: we're not testing that we can generate certificates properly, we're testing services.

The configuration as well as the commands used to generate these keys and certificates are stored in the contrib directory.

All-In-One

If you're new in Puppet OpenStack and you want to deploy an All-In-One setup of an OpenStack Cloud with the Puppet modules, please follow the steps:

git clone https://opendev.org/openstack/puppet-openstack-integration
cd puppet-openstack-integration
./all-in-one.sh

Look at Description to see which services it will install (scenario-aio).

Contributors