OpenStack Swift Puppet Module
Go to file
David Moreau Simard f87e43e8a8 Introduce public_url(_s3), internal_url(_s3) and admin_url(_s3)
This change deprecates the following parameters:
- endpoint_prefix: replaced by public/internal/admin_url
- port: replaced by public/internal/admin_url(_s3)
- public_port: replaced by public_url(_s3)
- public_protocol:  replaced by public_url(_s3)
- public_address: replaced by public_url(_s3)
- public_port: replaced by public_url
- internal_protocol: replaced by internal_url
- internal_address: replaced by internal_url
- admin_protocol: replaced by admin_url
- admin_address: replaced by admin_url

Add deprecation warnings if any of those values are provided
while maintaining full backward compatibility.

Co-Authored-By: David Moreau Simard <dmsimard@iweb.com>
Co-Authored-By: Richard Raseley <richard@raseley.com>
Closes-bug: #1274979
Change-Id: Ie4afc21ac6e9539edd70635de7f3db957a22467e
2015-06-11 18:17:28 -04:00
ext Add test for keystone auth 2012-06-04 22:48:21 -07:00
files Drop ringbuilder.sh from swift module. 2013-04-10 10:08:54 -04:00
lib/puppet Fix ipv6 support 2015-04-07 12:54:14 +02:00
manifests Introduce public_url(_s3), internal_url(_s3) and admin_url(_s3) 2015-06-11 18:17:28 -04:00
spec Introduce public_url(_s3), internal_url(_s3) and admin_url(_s3) 2015-06-11 18:17:28 -04:00
templates Added rsyslog logging support to object-server 2015-05-03 21:22:12 -06:00
tests Add Puppet 4.x lint checks 2015-03-25 13:46:00 +01:00
.fixtures.yml Removal of SSH Components 2015-04-24 17:23:53 +02:00
.gemfile Update module to use puppetlabs_spec_helper gem 2012-05-31 17:11:07 -07:00
.gitignore Update gitignore file 2013-12-23 19:13:55 +01:00
.gitreview Add gitreview 2013-04-10 13:36:32 -07:00
Gemfile Unpin beaker-rspec 2015-06-08 13:47:32 -07:00
LICENSE Synchronize LICENSE file with OpenStack projects 2015-04-20 09:30:24 -04:00
metadata.json Removal of SSH Components 2015-04-24 17:23:53 +02:00
Rakefile Disable 80chars/class_parameter_defaults checks 2013-08-12 17:50:21 -04:00
README.md Beaker tests 2015-05-04 14:22:38 -04:00

swift

5.0.0 - 2014.2.0 - Juno

Table of Contents

  1. Overview - What is the swift module?
  2. Module Description - What does the module do?
  3. Setup - The basics of getting started with swift
  4. Reference - The classes, defines,functions and facts available in this module
  5. Implementation - An under-the-hood peek at what the module is doing
  6. Limitations - OS compatibility, etc.
  7. Development - Guide for contributing to the module
  8. Contributors - Those with commits
  9. Release Notes - Notes on the most recent updates to the module

Overview

The swift module is a part of Stackforge, an effort by the Openstack infrastructure team to provide continuous integration testing and code review for Openstack and Openstack community projects not part of the core software. The module itself is used to flexibly configure and manage the object storage service for Openstack.

Module Description

The swift module is a thorough attempt to make Puppet capable of managing the entirety of swift. This includes manifests to provision such things as keystone, storage backends, proxies, and the ring. Types are shipped as part of the swift module to assist in manipulation of configuration files. The classes in this module will deploy Swift using best practices for a typical deployment.

This module is tested in combination with other modules needed to build and leverage an entire Openstack software stack. These modules can be found, all pulled together in the openstack module. In addition, this module requires Puppet's exported resources.

Setup

What the swift module affects

  • swift, the object storage service for Openstack.

Installing swift

example% puppet module install puppetlabs/swift

Beginning with swift

You much first setup exported resources.

To utilize the swift module's functionality you will need to declare multiple resources. The following is a modified excerpt from the openstack module. This is not an exhaustive list of all the components needed, we recommend you consult and understand the openstack module and the core openstack documentation.

Defining a swift storage node

class { 'swift':
  swift_hash_suffix => 'swift_secret',
}

swift::storage::loopback { ['1', '2']:
 require => Class['swift'],
}

class { 'swift::storage::all':
  storage_local_net_ip => $ipaddress_eth0
}

@@ring_object_device { "${ipaddress_eth0}:6000/1":
  region => 1, # optional, defaults to 1
  zone   => 1,
  weight => 1,
}
@@ring_container_device { "${ipaddress_eth0}:6001/1":
  zone   => 1,
  weight => 1,
}
@@ring_account_device { "${ipaddress_eth0}:6002/1":
  zone   => 1,
  weight => 1,
}

@@ring_object_device { "${ipaddress_eth0}:6000/2":
  region => 2,
  zone   => 1,
  weight => 1,
}
@@ring_container_device { "${ipaddress_eth0}:6001/2":
  region => 2,
  zone   => 1,
  weight => 1,
}
@@ring_account_device { "${ipaddress_eth0}:6002/2":
  region => 2,
  zone   => 1,
  weight => 1,
}

Swift::Ringsync<<||>>

Usage

Class: swift

Class that will set up the base packages and the base /etc/swift/swift.conf

class { 'swift': swift_hash_suffix => 'shared_secret', }

####swift_hash_suffix The shared salt used when hashing ring mappings.

Class swift::proxy

Class that installs and configures the swift proxy server.

class { 'swift::proxy':
  account_autocreate => true,
  proxy_local_net_ip => $ipaddress_eth1,
  port               => '11211',
}

####account_autocreate Specifies if the module should manage the automatic creation of the accounts needed for swift. This should be set to true if tempauth is also being used.

####proxy_local_net_ip This is the ip that the proxy service will bind to when it starts.

####port The port for which the proxy service will bind to when it starts.

Class: swift::storage

Class that sets up all of the configuration and dependencies for swift storage server instances.

class { 'swift::storage': storage_local_net_ip => $ipaddress_eth1, }

####storage_local_net_ip This is the ip that the storage service will bind to when it starts.

Class: swift::ringbuilder

A class that knows how to build swift rings. Creates the initial ring via exported resources and rebalances the ring if it is updated.

class { 'swift::ringbuilder':
  part_power     => '18',
  replicas       => '3',
  min_part_hours => '1',
}

####part_power The number of partitions in the swift ring. (specified as the power of 2)

####replicas The number of replicas to store.

####min_part_hours Time before a partition can be moved.

Define: swift::storage::server

Defined resource type that can be used to create a swift storage server instance. If you keep the sever names unique it is possibly to create multiple swift servers on a single physical node.

This will configure an rsync server instance and swift storage instance to manage the all devices in the devices directory.

swift::storage::server { '6010':
  type                 => 'object',
  devices              => '/srv/node',
  storage_local_net_ip => '127.0.0.1'
}

####namevar The namevar/title for this type will map to the port where the server is hosted.

####type The type of device, e.g. account, object, or container.

####device The directory where the physical storage device will be mounted.

####storage_local_net_ip This is the ip that the storage service will bind to when it starts.

Define: swift::storage::loopback

This defined resource type was created to test swift by creating a loopback device that can be used a storage device in the absent of a dedicated block device.

It creates a partition of size [$seek] at basedir/[$name] using dd with [$byte_size], formats is to be a xfs filesystem which is then mounted at [$mnt_base_dir]/[$name].

Then, it creates an instance of defined class for the xfs file system that will eventually lead the mounting of the device using the swift::storage::mount define.

swift::storage::loopback { '1':
  base_dir  => '/srv/loopback-device',
  mnt_base_dir => '/srv/node',
  byte_size => '1024',
  seek      => '25000',
}

####base_dir The directory where the flat files will be stored that house the file system to be loop back mounted.

####mnt_base_dir The directory where the flat files that store the file system to be loop back mounted are actually mounted at.

####byte_size The byte size that dd uses when it creates the file system.

####seek The size of the file system that will be created. Defaults to 25000.

Verifying installation

This modules ships with a simple Ruby script that validates whether or not your swift cluster is functional.

The script can be run as:

ruby $modulepath/swift/files/swift_tester.rb

Implementation

swift

swift is a combination of Puppet manifest and ruby code to delivery configuration and extra functionality through types and providers.

Limitations

  • No explicit support external NAS devices (i.e. Nexenta and LFS) to offload the ring replication requirements.

Beaker-Rspec

This module has beaker-rspec tests

To run:

shell bundle install bundle exec rspec spec/acceptance

Development

Developer documentation for the entire puppet-openstack project.

Contributors

Release Notes

5.0.0

  • Stable Juno release
  • Updated s3token.conf template for Juno
  • Added parameter log_name to swift::proxy and swift::storage::server
  • Bumped stdlib dependency to >=4.0.0

4.1.0

  • Added swift-ring-builder multi-region support.
  • Added swift::proxy::crossdomain class.
  • Added support for RHEL 7.
  • Fixed Swift quota filter names.
  • Fixed config dependency bugs.
  • Fixed resource conflict when ringserver and storage are on same node.
  • Fixed selinux bugs.
  • Pinned major gems.

4.0.0

  • Stable Icehouse release.
  • Added support for parameterizing endpoint prefix.
  • Added read_affinity, write_affinity support to proxy.
  • Added proxyserver gatekeeper middleware.
  • Added swift::proxy::slo class.
  • Added support for allow_versions in Swift containers.
  • Add support for middlewares with hyphens in name.
  • Fixed spurious warning in pipeline check.
  • Fixed test files.
  • Fixed deprecation warnings in inline templates.
  • Updated swift::keystone::auth spec tests.

3.0.0

  • Major release for OpenStack Havana.
  • Fixed Puppet 3.x template variable deprecation warning.
  • Added swift operator roles to Keystone.
  • Defaults include_service_catalog to false for improved performance.
  • Fixed auth_token configuration.
  • Fixed filter name for puppetdb.
  • Added bulk middleware support.
  • Added quota middleware support.
  • Allow configuration of admin and internal protocols for keystone endpoint.

2.2.0

  • Improved proxy directory signing support.
  • Various lint, and deprecation fixes.

2.1.0

  • Management of swift-bench
  • allow_versions flag for object versioning
  • ini_setting based custom types for configs
  • Configurable log for proxy-server
  • Adds signing directory
  • Puppet lint and warning fixes

2.0.0

  • Upstream is now part of stackforge.
  • swift_ring_builder supports replicator.
  • Supports swift 1.8
  • Further Red Hat support.
  • Various cleanups and bug fixes.