tripleo-heat-templates/puppet/services
Slawek Kaplonski ed657b487a Neutron ML2/OVS: add support to enable of IGMP snooping
Neutron ML2/OVS backend allows now to enable support for IGMP
snooping in the br-int bridge. This can be done through
"igmp_snooping_enable" config option which can be set for
neutron-ovs-agent.
Patch [1] added support for it in puppet-neutron module.
In patch [2] support to enable this option for ML2/OVN backend
was added but we missed same change for ML2/OVS. Now we will
have it too.

[1] https://review.opendev.org/#/c/707367/
[2] https://review.opendev.org/#/c/714462/

Conflicts:
    deployment/neutron/neutron-ovs-agent-container-puppet.yaml

Change-Id: I195410768d2d6a219bdda88a74fed3c29e1113a9
(cherry picked from commit 04c20f118a)
(cherry picked from commit 7f6831ed3c)
2021-02-01 15:57:03 +00:00
..
database Redis metadata using incorrect network/service 2019-08-23 08:58:02 -04:00
disabled Group fast_forward_upgrade_tasks tasks into blocks 2018-08-21 15:51:42 +00:00
logging ansible: replace yum module by package module when possible 2018-07-21 00:17:25 +00:00
messaging TLS everywhere: Set post-save command for RabbitMQ 2019-02-18 08:15:43 +01:00
metrics Run collectd socket cleanup on container start 2019-01-28 09:54:57 +01:00
monitoring ansible: replace yum module by package module when possible 2018-07-21 00:17:25 +00:00
pacemaker Ensure we get dedicated logging file for HAProxy 2019-02-08 14:43:43 +01:00
releasenotes/notes Sets ODL OVSDB inactivity probe timer 2018-11-06 15:25:08 +00:00
time Fix reload notification file 2019-03-26 13:50:44 -06:00
README.rst trivialfix:fix a typo 2018-06-05 17:33:05 +08:00
aide.yaml ansible: replace yum module by package module when possible 2018-07-21 00:17:25 +00:00
aodh-api.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
aodh-base.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
aodh-evaluator.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
aodh-listener.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
aodh-notifier.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
apache.j2.yaml Disable a directory listing of /icons in httpd. 2019-04-03 16:03:33 +09:00
auditd.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
barbican-api.yaml ansible: replace yum module by package module when possible 2018-07-21 00:17:25 +00:00
barbican-backend-dogtag.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
barbican-backend-kmip.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
barbican-backend-pkcs11-crypto.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
barbican-backend-simple-crypto.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
ca-certs.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
ceilometer-agent-central.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
ceilometer-agent-compute.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
ceilometer-agent-ipmi.yaml ansible: replace yum module by package module when possible 2018-07-21 00:17:25 +00:00
ceilometer-agent-notification.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
ceilometer-base.yaml Update to the ceilometer publisher list 2019-06-24 16:40:49 -04:00
certmonger-user.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
cinder-api.yaml Add cinder credentials to nova conf 2019-05-21 19:14:37 +05:30
cinder-backend-dellemc-unity.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
cinder-backend-dellemc-vmax-iscsi.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
cinder-backend-dellemc-vnx.yaml storage_vnx_pool_name is incorrect for VNX cinder driver. 2018-06-26 17:44:28 +08:00
cinder-backend-dellemc-xtremio-iscsi.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
cinder-backend-dellps.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
cinder-backend-dellsc.yaml Added Dell EMC SC multipath support 2018-11-29 11:12:21 -06:00
cinder-backend-netapp.yaml Correct Cinder NetApp backend name parameter mapping 2018-06-30 14:01:10 -06:00
cinder-backend-nvmeof.yaml Remove step_config from NVMEoF cinder backend 2018-07-11 14:38:35 +00:00
cinder-backend-pure.yaml Add missing entries for Pure Storage Cinder Backend and fix typos 2019-03-07 19:18:59 +00:00
cinder-backend-scaleio.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
cinder-backend-veritas-hyperscale.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
cinder-backup.yaml Fluentd: Set cinder-backup log path 2018-07-12 08:45:00 +02:00
cinder-base.yaml Fix incorrect parameter to set max delay in cinder db purge cron 2020-01-22 13:15:38 +09:00
cinder-hpelefthand-iscsi.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
cinder-scheduler.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
cinder-volume.yaml Add support for cinder NFS snapshots 2019-04-04 10:13:36 +09:00
congress.yaml ansible: replace yum module by package module when possible 2018-07-21 00:17:25 +00:00
container-image-prepare.j2.yaml Fix tasks in check mode 2018-11-05 19:20:31 +00:00
designate-api.yaml Set correct project name for designate-neutron integration 2018-11-02 16:19:09 -05:00
designate-base.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
designate-central.yaml Enable configuration of Designate's pools.yaml 2018-11-02 16:10:30 -05:00
designate-mdns.yaml Open designate-mdns ports in firewall 2018-11-02 16:11:12 -05:00
designate-producer.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
designate-sink.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
designate-worker.yaml Don't configure BIND to listen on localhost 2018-11-02 16:17:55 -05:00
docker-registry.yaml Perform docker reconfiguration on upgrade_tasks. 2018-12-18 13:59:21 +01:00
docker.yaml Rocky: enable container auth support 2019-07-11 10:32:19 -06:00
ec2-api.yaml Support TLS deployments with KernelDisableIPv6 enabled 2019-07-10 09:19:07 +02:00
etcd.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
external-swift-proxy.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
glance-api.yaml Merge "Revert "Do not forcibly enable Glance multiple locations for RBD backend"" into stable/rocky 2019-09-06 18:44:22 +00:00
gnocchi-api.yaml Add support to set cors config in gnocchi templates 2018-07-31 17:49:36 +00:00
gnocchi-base.yaml Add GnocchiStorageS3BucketPrefix into deployment 2019-04-05 20:19:44 +02:00
gnocchi-metricd.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
gnocchi-statsd.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
haproxy-internal-tls-certmonger.j2.yaml Request certificate for using host service principals 2019-06-10 12:36:43 -03:00
haproxy-public-tls-certmonger.yaml certmonger: Don't restart haproxy on cert renewal 2019-02-22 09:44:48 +01:00
haproxy-public-tls-inject.yaml [Rocky ONLY] Fix haproxy cert inject for check mode 2018-10-18 11:37:03 -04:00
haproxy.yaml Fix haproxy stats network binding 2019-05-31 17:07:54 +02:00
heat-api-cfn.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
heat-api.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
heat-base.yaml Make heat yaql limits configurable 2019-03-07 11:20:47 -07:00
heat-engine.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
horizon.yaml Add possibility to set logging source for Horizon 2021-01-07 16:57:43 +01:00
ironic-api.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
ironic-base.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
ironic-conductor.yaml Add support for configuring ppc64le in ironic 2018-11-07 22:18:15 +00:00
ironic-inspector.yaml Ironic Inspector - disjoint ip range(s) for HA 2018-12-23 13:42:00 +00:00
ironic-neutron-agent.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
iscsid.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
keepalived.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
kernel.yaml Remove dracut-config-generic package. 2020-02-10 13:37:28 +01:00
keystone.yaml Enable _member_ role for undercloud install. 2018-11-16 15:04:57 +00:00
liquidio-compute-config.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
login-defs.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
manila-api.yaml Switch Manila API to httpd and support TLS 2019-04-15 18:51:57 -07:00
manila-backend-cephfs.yaml Check Ceph*Key value format and halt on error 2020-03-11 11:09:45 +01:00
manila-backend-isilon.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
manila-backend-netapp.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
manila-backend-unity.yaml Fix for the manila backend configuration errors 2018-05-14 13:43:04 -05:00
manila-backend-vmax.yaml Fix for the manila backend configuration errors 2018-05-14 13:43:04 -05:00
manila-backend-vnx.yaml Fix for the manila backend configuration errors 2018-05-14 13:43:04 -05:00
manila-base.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
manila-scheduler.yaml Refactored configuration options for nova/neutron in manila 2019-03-12 13:19:53 -03:00
manila-share.yaml Refactored configuration options for nova/neutron in manila 2019-03-12 13:19:53 -03:00
masquerade-networks.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
memcached.yaml Activate memcached debug only when using MemcachedDebug param. 2018-06-18 12:18:52 +00:00
mistral-api.yaml Set allow_action_execution_deletion to true in mistral api config 2018-08-08 17:03:46 +05:30
mistral-base.yaml Allow a containerized mistral-executor to access docker 2018-06-20 10:17:01 +12:00
mistral-engine.yaml ansible: replace yum module by package module when possible 2018-07-21 00:17:25 +00:00
mistral-event-engine.yaml ansible: replace yum module by package module when possible 2018-07-21 00:17:25 +00:00
mistral-executor.yaml ansible: replace yum module by package module when possible 2018-07-21 00:17:25 +00:00
neutron-api.yaml Support TLS deployments with KernelDisableIPv6 enabled 2019-07-10 09:19:07 +02:00
neutron-base.yaml Only request neutron certificate from neutron dhcp service 2019-06-07 16:03:25 +02:00
neutron-bgpvpn-api.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-bgpvpn-bagpipe.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-bigswitch-agent.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-compute-plugin-midonet.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-compute-plugin-nuage.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-compute-plugin-plumgrid.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-dhcp.yaml Only request neutron certificate from neutron dhcp service 2019-06-07 16:03:25 +02:00
neutron-l2gw-agent.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-l2gw-api.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-l3-compute-dvr.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-l3.yaml Merge "Add compute node L3 agent container for DVR" 2018-05-14 23:37:11 +00:00
neutron-lbaas-agent.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-lbaas-api.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-linuxbridge-agent.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-metadata.yaml Remove deprecated value used to set nova_metadata_ip 2019-04-15 08:51:26 +00:00
neutron-midonet.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-ovs-agent.yaml Neutron ML2/OVS: add support to enable of IGMP snooping 2021-02-01 15:57:03 +00:00
neutron-ovs-dpdk-agent.yaml Incorrect group name issue on non DPDK compute 2019-11-20 02:40:07 +05:30
neutron-plugin-ml2-ansible.yaml Add networking-ansible ML2 plugin support 2018-07-02 13:22:04 +05:30
neutron-plugin-ml2-cisco-vts.yaml Add site id parameter to cisco vts ml2 template 2018-05-30 10:01:48 +00:00
neutron-plugin-ml2-fujitsu-cfab.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-plugin-ml2-fujitsu-fossw.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-plugin-ml2-mlnx-sdn-assist.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-plugin-ml2-nuage.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-plugin-ml2-odl.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-plugin-ml2-ovn.yaml Add posibilities to configure OVNNorthboundServerPort in split stacks 2019-10-15 10:06:35 +02:00
neutron-plugin-ml2.yaml Allow setting physical network MTU via heat template 2018-07-23 15:31:29 +02:00
neutron-plugin-nsx.yaml Add more NSX config parameters 2018-11-19 18:40:14 +00:00
neutron-plugin-nuage.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-plugin-plumgrid.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-sfc-api.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-sriov-agent.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-sriov-host-config.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
neutron-vpp-agent.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
nova-api.yaml Fix TLS when using a containerized undercloud 2018-10-07 05:43:42 +00:00
nova-base.yaml Add parameter to configure maxdelay in db purge/archive job 2019-05-03 00:55:29 +09:00
nova-compute.yaml Check Ceph*Key value format and halt on error 2020-03-11 11:09:45 +01:00
nova-conductor.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
nova-consoleauth.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
nova-ironic.yaml Merge "Remove ironic_host_manager usage" 2018-05-30 09:38:23 +00:00
nova-libvirt-guests.yaml Add NovaResumeGuestsStateOnHostBoot and NovaResumeGuestsShutdownTimeout 2018-07-31 12:24:08 +02:00
nova-libvirt.yaml Check Ceph*Key value format and halt on error 2020-03-11 11:09:45 +01:00
nova-metadata.yaml Fix TLS when using a containerized undercloud 2018-10-07 05:43:42 +00:00
nova-migration-target.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
nova-placement.yaml ansible: replace yum module by package module when possible 2018-07-21 00:17:25 +00:00
nova-scheduler.yaml Add nova-scheduler worker support 2018-10-12 23:06:31 +00:00
nova-vnc-proxy.yaml Revert "Point InternalTLSVncCAFile to /etc/ipa/ca.crt" 2019-08-20 18:56:34 +00:00
octavia-api.yaml Fix typo in setting octavia wsgi server name 2020-07-03 11:27:10 -02:30
octavia-base.yaml Adds constraint: OctaviaServerCertsKeyPassphrase must be 32 chars long 2019-07-28 12:22:16 +03:00
octavia-controller.yaml Fix Octavia to use correct Puppet class 2020-01-02 16:03:42 +00:00
octavia-health-manager.yaml Merge "Fix Octavia hieradata keys" into stable/rocky 2019-01-15 04:06:09 +00:00
octavia-housekeeping.yaml Fix Octavia hieradata keys 2018-12-13 21:39:43 +01:00
octavia-worker.yaml Fix Octavia hieradata keys 2018-12-13 21:39:43 +01:00
opendaylight-api.yaml Sets ODL OVSDB inactivity probe timer 2018-11-06 15:25:08 +00:00
opendaylight-ovs.yaml Handle LP openvswitch meta-package on upgrade 2018-11-12 13:33:17 +00:00
openstack-clients.yaml Include python-panko client. 2019-03-22 16:04:56 -04:00
openvswitch.yaml Change datatype of revalidator,handler threads 2019-08-09 12:03:02 +05:30
ovn-controller.yaml Add posibilities to set ovn_openflow_probe_interval for controller 2019-10-22 14:14:35 +02:00
ovn-dbs.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
ovn-metadata.yaml Configure http/https on OVN Metadata service to talk to Nova 2019-01-16 08:23:32 +00:00
pacemaker.yaml Support TLS priorities for pacemaker 2019-10-08 11:50:41 +02:00
pacemaker_remote.yaml Enable deep_compare by default for stonith resources 2019-09-20 16:23:05 +02:00
panko-api.yaml ansible: replace yum module by package module when possible 2018-07-21 00:17:25 +00:00
panko-base.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
qdr.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
rabbitmq.yaml Increase rabbitmq tcp backlog 2019-12-19 07:13:41 +01:00
sahara-api.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
sahara-base.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
sahara-engine.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
securetty.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
selinux.yaml Add SELinux management to containerized undercloud 2018-06-28 09:12:30 -06:00
snmp.yaml Check if snmpd is enabled for upgrade_tasks 2020-09-23 14:14:58 -06:00
sshd.yaml Allow ssh from all for undercloud 2019-04-29 10:50:37 +02:00
swift-base.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
swift-dispersion.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
swift-proxy.yaml Support TLS deployments with KernelDisableIPv6 enabled 2019-07-10 09:19:07 +02:00
swift-ringbuilder.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
swift-storage.yaml Enable recon middleware for swift account/container server 2019-11-26 10:59:06 +09:00
tacker.yaml ansible: replace yum module by package module when possible 2018-07-21 00:17:25 +00:00
tripleo-firewall.yaml Rocky only - allow SSH from any source 2019-06-25 11:04:31 +02:00
tripleo-packages.yaml [Rocky&QueensOnly] Update ovs to 2.11 without network loss 2021-01-05 11:09:48 +00:00
tripleo-ui.yaml Merge "[tripleo-ui] Explicitly configure Nova CORS" 2018-05-21 17:35:08 +00:00
tripleo-validations.yaml Implement TripleoValidations composable service 2018-06-13 11:35:49 -07:00
tuned.yaml Add TunedCustomProfile parameter and HCI Ceph filestore environment 2019-01-04 13:16:48 +00:00
veritas-hyperscale-controller.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
vpp.yaml Change template names to rocky 2018-05-09 08:28:42 +02:00
zaqar-api.yaml ansible: replace yum module by package module when possible 2018-07-21 00:17:25 +00:00

README.rst

services

A TripleO nested stack Heat template that encapsulates generic configuration data to configure a specific service. This generally includes everything needed to configure the service excluding the local bind ports which are still managed in the per-node role templates directly (controller.yaml, compute.yaml, etc.). All other (global) service settings go into the puppet/service templates.

Input Parameters

Each service may define its own input parameters and defaults. Operators will use the parameter_defaults section of any Heat environment to set per service parameters.

Apart from sevice specific inputs, there are few default parameters for all the services. Following are the list of default parameters:

  • ServiceData: Mapping of service specific data. It is used to encapsulate all the service specific data. As of now, it contains net_cidr_map, which contains the CIDR map for all the networks. Additional data will be added as and when required.

  • ServiceNetMap: Mapping of service_name -> network name. Default mappings for service to network names are defined in ../network/service_net_map.j2.yaml, which may be overridden via ServiceNetMap values added to a user environment file via parameter_defaults.

  • EndpointMap: Mapping of service endpoint -> protocol. Contains a mapping of endpoint data generated for all services, based on the data included in ../network/endpoints/endpoint_data.yaml.

  • DefaultPasswords: Mapping of service -> default password. Used to pass some passwords from the parent templates, this is a legacy interface and should not be used by new services.

  • RoleName: Name of the role on which this service is deployed. A service can be deployed in multiple roles. This is an internal parameter (should not be set via environment file), which is fetched from the name attribute of the roles_data.yaml template.

  • RoleParameters: Parameter specific to a role on which the service is applied. Using the format "<RoleName>Parameters" in the parameter_defaults of user environment file, parameters can be provided for a specific role. For example, in order to provide a parameter specific to "Compute" role, below is the format:

    parameter_defaults:
      ComputeParameters:
        Param1: value

Config Settings

Each service may define three ways in which to output variables to configure Hiera settings on the nodes.

  • config_settings: the hiera keys will be pushed on all roles of which the service is a part of.
  • global_config_settings: the hiera keys will be distributed to all roles
  • service_config_settings: Takes an extra key to wire in values that are defined for a service that need to be consumed by some other service. For example: service_config_settings: haproxy: foo: bar This will set the hiera key 'foo' on all roles where haproxy is included.

Deployment Steps

Each service may define an output variable which returns a puppet manifest snippet that will run at each of the following steps. Earlier manifests are re-asserted when applying latter ones.

  • config_settings: Custom hiera settings for this service.

  • global_config_settings: Additional hiera settings distributed to all roles.

  • step_config: A puppet manifest that is used to step through the deployment sequence. Each sequence is given a "step" (via hiera('step') that provides information for when puppet classes should activate themselves.

    Steps correlate to the following:

    1. Load Balancer configuration
    2. Core Services (Database/Rabbit/NTP/etc.)
    3. Early Openstack Service setup (Ringbuilder, etc.)
    4. General OpenStack Services
    5. Service activation (Pacemaker)

It is also possible to use Mistral actions or workflows together with a deployment step, these are executed before the main configuration run. To describe actions or workflows from within a service use:

  • workflow_tasks: One or more workflow task properties

which expects a map where the key is the step and the value a list of dictionaries descrbing each a workflow task, for example:

workflow_tasks:
  step2:
    - name: echo
      action: std.echo output=Hello
  step3:
    - name: external
      workflow: my-pre-existing-workflow-name
      input:
        workflow_param1: value
        workflow_param2: value

The Heat guide for the OS::Mistral::Workflow task property has more details about the expected dictionary.

  • external_deploy_tasks: Ansible tasks to be run each step on the undercloud where a variable "step" is provided to enable conditionally running tasks at a given step.
  • external_post_deploy_tasks: Ansible tasks to be run on the undercloud after all other deploy steps have completed.

Batch Upgrade Steps (deprecated)

Note: the upgrade_batch_tasks are no longer used and deprecated for Queens. The information below applies to upgrade_batch_tasks as they were used for the Ocata major upgrade. The upgrade_batch_tasks were used exclusively by the ceph services and for Pike ceph is now configured by ceph-ansible.

Each service template may optionally define a upgrade_batch_tasks key, which is a list of ansible tasks to be performed during the upgrade process.

Similar to the step_config, we allow a series of steps for the per-service upgrade sequence, defined as ansible tasks with a tag e.g "step1" for the first step, "step2" for the second, etc (currently only two steps are supported, but more may be added when required as additional services get converted to batched upgrades).

Note that each step is performed in batches, then we move on to the next step which is also performed in batches (we don't perform all steps on one node, then move on to the next one which means you can sequence rolling upgrades of dependent services via the step value).

The tasks performed at each step is service specific, but note that all batch upgrade steps are performed before the upgrade_tasks described below. This means that all services that support rolling upgrades can be upgraded without downtime during upgrade_batch_tasks, then any remaining services are stopped and upgraded during upgrade_tasks

The default batch size is 1, but this can be overridden for each role via the upgrade_batch_size option in roles_data.yaml

Update Steps

Each service template may optionally define a update_tasks key, which is a list of ansible tasks to be performed during the minor update process. These are executed in a rolling manner node-by-node.

We allow a series of steps for the per-service update sequence via conditionals referencing a step variable e.g when: step|int == 2.

Pre-upgrade Rolling Steps

Each service template may optionally define a pre_upgrade_rolling_tasks key, which is a list of ansible tasks to be performed before the main upgrade phase, and these tasks are executed in a node-by-node rolling manner on the overcloud, similarly as update_tasks.

Upgrade Steps

Each service template may optionally define a upgrade_tasks key, which is a list of ansible tasks to be performed during the upgrade process.

Similar to the update_tasks, we allow a series of steps for the per-service upgrade sequence, defined as ansible tasks with a "when: step|int == 1" for the first step, "== 2" for the second, etc.

Steps correlate to the following:

  1. Perform any pre-upgrade validations.
  2. Stop the control-plane services, e.g disable LoadBalancer, stop pacemaker cluster and stop any managed resources. The exact order is controlled by the cluster constraints.
  3. Perform a package update and install new packages: A general upgrade is done, and only new package should go into service ansible tasks.
  4. Start services needed for migration tasks (e.g DB)
  5. Perform any migration tasks, e.g DB sync commands

Note that the services are not started in the upgrade tasks - we instead re-run puppet which does any reconfiguration required for the new version, then starts the services.

Nova Server Metadata Settings

One can use the hook of type OS::TripleO::ServiceServerMetadataHook to pass entries to the nova instances' metadata. It is, however, disabled by default. In order to overwrite it one needs to define it in the resource registry. An implementation of this hook needs to conform to the following:

  • It needs to define an input called RoleData of json type. This gets as input the contents of the role_data for each role's ServiceChain.
  • This needs to define an output called metadata which will be given to the Nova Server resource as the instance's metadata.