0fbac20fd6
When a service connects to the database VIP from the node hosting this
VIP, the resulting TCP socket has a src address which is by default
bound to the VIP as well. If the VIP is failed over to another node
while the socket's Send-Q is not empty, TCP keepalive won't engage and
the service will become unavailable for a very long time (by default
more than 10m).
To prevent failover issues, DB connections should have the src address
of their TCP socket bound to the IP of the network interface used for
MySQL traffic. This is achieved by passing a new option to the
database connection URIs. This option is available starting from
PyMySQL 0.7.9-2.
We use a new intermediate variable in hiera to hold the IP to be used
as a source address for all DB connections. All services adapt their
database URI accordingly.
Moreover, a new YAML validation check is added to guarantee that new
services will construct their database URI appropriately.
Change-Id: Ic69de63acbfb992314ea30a3a9b17c0b5341c035
Closes-Bug: #1643487
(cherry picked from commit 56ebc7e58d
)
124 lines
4.6 KiB
YAML
124 lines
4.6 KiB
YAML
heat_template_version: 2016-04-08
|
|
|
|
description: >
|
|
OpenStack Neutron Plumgrid plugin
|
|
|
|
parameters:
|
|
ServiceNetMap:
|
|
default: {}
|
|
description: Mapping of service_name -> network name. Typically set
|
|
via parameter_defaults in the resource registry. This
|
|
mapping overrides those in ServiceNetMapDefaults.
|
|
type: json
|
|
DefaultPasswords:
|
|
default: {}
|
|
type: json
|
|
EndpointMap:
|
|
default: {}
|
|
description: Mapping of service endpoint -> protocol. Typically set
|
|
via parameter_defaults in the resource registry.
|
|
type: json
|
|
NeutronPassword:
|
|
description: The password for the neutron service and db account, used by neutron agents.
|
|
type: string
|
|
hidden: true
|
|
NeutronMetadataProxySharedSecret:
|
|
description: Shared secret to prevent spoofing
|
|
type: string
|
|
hidden: true
|
|
AdminPassword:
|
|
description: The password for the keystone admin account, used for monitoring, querying neutron etc.
|
|
type: string
|
|
hidden: true
|
|
|
|
# PLUMgrid specific settings
|
|
PLUMgridDirectorServer:
|
|
description: IP address of the PLUMgrid Director Server
|
|
type: string
|
|
default: 127.0.0.1
|
|
PLUMgridDirectorServerPort:
|
|
description: Port of the PLUMgrid Director Server
|
|
type: string
|
|
default: 443
|
|
PLUMgridUsername:
|
|
description: Username for PLUMgrid platform
|
|
type: string
|
|
PLUMgridPassword:
|
|
description: Password for PLUMgrid platform
|
|
type: string
|
|
hidden: true
|
|
PLUMgridNovaMetadataIP:
|
|
description: IP address of Nova Metadata
|
|
type: string
|
|
default: 169.254.169.254
|
|
PLUMgridNovaMetadataPort:
|
|
description: Port of Nova Metadata
|
|
type: string
|
|
default: 8775
|
|
PLUMgridL2GatewayVendor:
|
|
description: Vendor for L2 Gateway Switch
|
|
type: string
|
|
default: vendor
|
|
PLUMgridL2GatewayUsername:
|
|
description: Username for L2 Gateway Switch
|
|
type: string
|
|
default: username
|
|
PLUMgridL2GatewayPassword:
|
|
description: Password for L2 Gateway Switch
|
|
type: string
|
|
hidden: true
|
|
PLUMgridIdentityVersion:
|
|
description: Keystone Identity version
|
|
type: string
|
|
default: v2.0
|
|
PLUMgridConnectorType:
|
|
description: Neutron Network Connector Type
|
|
type: string
|
|
default: distributed
|
|
PLUMgridNeutronPluginVersion:
|
|
description: PLUMgrid Neutron Plugin version
|
|
type: string
|
|
default: present
|
|
PLUMgridPlumlibVersion:
|
|
description: PLUMgrid Plumlib version
|
|
type: string
|
|
default: present
|
|
|
|
|
|
outputs:
|
|
role_data:
|
|
description: Role data for the Neutron Plumgrid plugin
|
|
value:
|
|
service_name: neutron_plugin_plumgrid
|
|
config_settings:
|
|
neutron::plugins::plumgrid::connection:
|
|
list_join:
|
|
- ''
|
|
- - {get_param: [EndpointMap, MysqlInternal, protocol]}
|
|
- '://neutron:'
|
|
- {get_param: NeutronPassword}
|
|
- '@'
|
|
- {get_param: [EndpointMap, MysqlInternal, host]}
|
|
- '/ovs_neutron'
|
|
- '?bind_address='
|
|
- "%{hiera('tripleo::profile::base::database::mysql::client_bind_address')}"
|
|
neutron::plugins::plumgrid::controller_priv_host: {get_param: [EndpointMap, KeystoneAdmin, host]}
|
|
neutron::plugins::plumgrid::admin_password: {get_param: AdminPassword}
|
|
neutron::plugins::plumgrid::metadata_proxy_shared_secret: {get_param: NeutronMetadataProxySharedSecret}
|
|
neutron::plugins::plumgrid::director_server: {get_param: PLUMgridDirectorServer}
|
|
neutron::plugins::plumgrid::director_server_port: {get_param: PLUMgridDirectorServerPort}
|
|
neutron::plugins::plumgrid::username: {get_param: PLUMgridUsername}
|
|
neutron::plugins::plumgrid::password: {get_param: PLUMgridPassword}
|
|
neutron::plugins::plumgrid::nova_metadata_ip: {get_param: PLUMgridNovaMetadataIP}
|
|
neutron::plugins::plumgrid::nova_metadata_port: {get_param: PLUMgridNovaMetadataPort}
|
|
neutron::plugins::plumgrid::l2gateway_vendor: {get_param: PLUMgridL2GatewayVendor}
|
|
neutron::plugins::plumgrid::l2gateway_sw_username: {get_param: PLUMgridL2GatewayUsername}
|
|
neutron::plugins::plumgrid::l2gateway_sw_password: {get_param: PLUMgridL2GatewayPassword}
|
|
neutron::plugins::plumgrid::connector_type: {get_param: PLUMgridConnectorType}
|
|
neutron::plugins::plumgrid::identity_version: {get_param: PLUMgridIdentityVersion}
|
|
neutron::plugins::plumgrid::package_ensure: {get_param: PLUMgridNeutronPluginVersion}
|
|
neutron::plugins::plumgrid::plumlib_package_ensure: {get_param: PLUMgridPlumlibVersion}
|
|
|
|
step_config: |
|
|
include tripleo::profile::base::neutron::plugins::plumgrid
|