blob: aced5dfc6f78e21389b81f5ac286039a659bfaaa [file] [log] [blame]
Gary Wu1ff56672018-01-17 20:51:45 -08001#!/bin/bash -x
Gary Wua3fb86f2018-06-04 16:23:54 -07002#
3# Copyright 2018 Huawei Technologies Co., Ltd.
4#
5# Licensed under the Apache License, Version 2.0 (the "License");
6# you may not use this file except in compliance with the License.
7# You may obtain a copy of the License at
8#
9# http://www.apache.org/licenses/LICENSE-2.0
10#
11
Gary Wu3fd6c2a2018-10-28 21:44:00 -070012export DEBIAN_FRONTEND=noninteractive
Gary Wu895a4ac2018-10-31 12:30:54 -070013HOST_IP=$(hostname -I)
14echo $HOST_IP `hostname` >> /etc/hosts
Gary Wu1ff56672018-01-17 20:51:45 -080015printenv
16
Gary Wu14a6b302018-05-01 15:59:28 -070017mkdir -p /opt/config
18echo "__rancher_ip_addr__" > /opt/config/rancher_ip_addr.txt
19echo "__k8s_vm_ips__" > /opt/config/k8s_vm_ips.txt
Gary Wuad513722018-07-26 13:08:47 -070020echo "__k8s_private_ips__" > /opt/config/k8s_private_ips.txt
Gary Wu978171e2018-07-24 11:56:01 -070021echo "__public_net_id__" > /opt/config/public_net_id.txt
22echo "__oam_network_cidr__" > /opt/config/oam_network_cidr.txt
Gary Wu11c98742018-05-02 16:19:04 -070023echo "__oam_network_id__" > /opt/config/oam_network_id.txt
24echo "__oam_subnet_id__" > /opt/config/oam_subnet_id.txt
Gary Wu17440fe2018-10-22 15:12:07 -070025echo "__sec_group__" > /opt/config/sec_group.txt
Gary Wu87aa8b52018-08-09 08:10:24 -070026echo "__integration_gerrit_branch__" > /opt/config/integration_gerrit_branch.txt
27echo "__integration_gerrit_refspec__" > /opt/config/integration_gerrit_refspec.txt
28echo "__oom_gerrit_branch__" > /opt/config/oom_gerrit_branch.txt
29echo "__oom_gerrit_refspec__" > /opt/config/oom_gerrit_refspec.txt
Gary Wu81836d22018-06-22 13:48:50 -070030echo "__docker_manifest__" > /opt/config/docker_manifest.txt
Gary Wu978171e2018-07-24 11:56:01 -070031echo "__docker_proxy__" > /opt/config/docker_proxy.txt
Gary Wu7a04b3d2018-08-15 12:31:46 -070032echo "__docker_version__" > /opt/config/docker_version.txt
33echo "__rancher_version__" > /opt/config/rancher_version.txt
34echo "__rancher_agent_version__" > /opt/config/rancher_agent_version.txt
35echo "__kubectl_version__" > /opt/config/kubectl_version.txt
36echo "__helm_version__" > /opt/config/helm_version.txt
Gary Wu48a32942018-11-08 07:34:49 -080037echo "__helm_deploy_delay__" > /opt/config/helm_deploy_delay.txt
Gary Wu11c98742018-05-02 16:19:04 -070038
39cat <<EOF > /opt/config/integration-override.yaml
40__integration_override_yaml__
41EOF
Gary Wu978171e2018-07-24 11:56:01 -070042sed -i 's/\_\_public_net_id__/__public_net_id__/g' /opt/config/integration-override.yaml
43sed -i 's|\_\_oam_network_cidr__|__oam_network_cidr__|g' /opt/config/integration-override.yaml
Gary Wu11c98742018-05-02 16:19:04 -070044sed -i 's/\_\_oam_network_id__/__oam_network_id__/g' /opt/config/integration-override.yaml
45sed -i 's/\_\_oam_subnet_id__/__oam_subnet_id__/g' /opt/config/integration-override.yaml
Gary Wu17440fe2018-10-22 15:12:07 -070046sed -i 's/\_\_sec_group__/__sec_group__/g' /opt/config/integration-override.yaml
Gary Wued95ca72018-07-26 10:24:51 -070047sed -i 's/\_\_rancher_ip_addr__/__rancher_ip_addr__/g' /opt/config/integration-override.yaml
Gary Wu48a32942018-11-08 07:34:49 -080048sed -i 's/\_\_k8s_01_vm_ip__/__k8s_01_vm_ip__/g' /opt/config/integration-override.yaml
Gary Wu978171e2018-07-24 11:56:01 -070049sed -i 's/\_\_docker_proxy__/__docker_proxy__/g' /opt/config/integration-override.yaml
Gary Wu11c98742018-05-02 16:19:04 -070050cp /opt/config/integration-override.yaml /root
Gary Wu978171e2018-07-24 11:56:01 -070051cat /root/integration-override.yaml
Gary Wu14a6b302018-05-01 15:59:28 -070052
Gary Wu1ff56672018-01-17 20:51:45 -080053echo `hostname -I` `hostname` >> /etc/hosts
54mkdir -p /etc/docker
Gary Wu3ad596f2018-02-08 07:16:37 -080055if [ ! -z "__docker_proxy__" ]; then
56 cat > /etc/docker/daemon.json <<EOF
Gary Wu1ff56672018-01-17 20:51:45 -080057{
58 "insecure-registries" : ["__docker_proxy__"]
59}
60EOF
Gary Wu3ad596f2018-02-08 07:16:37 -080061fi
62if [ ! -z "__apt_proxy__" ]; then
63 cat > /etc/apt/apt.conf.d/30proxy<<EOF
Gary Wu1ff56672018-01-17 20:51:45 -080064Acquire::http { Proxy "http://__apt_proxy__"; };
65Acquire::https::Proxy "DIRECT";
66EOF
Gary Wu3ad596f2018-02-08 07:16:37 -080067fi
Gary Wu14a6b302018-05-01 15:59:28 -070068
Gary Wu675eb152018-10-26 10:50:27 -070069# workaround for OpenStack intermittent failure to change default apt mirrors
70sed -i 's|http://archive.ubuntu.com|http://nova.clouds.archive.ubuntu.com|g' /etc/apt/sources.list
71
Gary Wub0e36502018-10-16 11:01:07 -070072while ! hash jq &> /dev/null; do
73 apt-get -y update
Gary Wu675eb152018-10-26 10:50:27 -070074 apt-get -y install linux-image-extra-$(uname -r) apt-transport-https ca-certificates curl software-properties-common jq make nfs-kernel-server moreutils
Gary Wub0e36502018-10-16 11:01:07 -070075 sleep 10
76done
Gary Wu14a6b302018-05-01 15:59:28 -070077
Gary Wu48a32942018-11-08 07:34:49 -080078mkdir -p /dockerdata-nfs
Gary Wuc4749702018-06-26 14:27:41 -070079
Gary Wu48a32942018-11-08 07:34:49 -080080# use RAM disk for /dockerdata-nfs for testing
81if [ "__use_ramdisk__" = "true" ]; then
82 echo "tmpfs /dockerdata-nfs tmpfs noatime,size=75% 1 2" >> /etc/fstab
83 mount /dockerdata-nfs
84fi
Gary Wu14a6b302018-05-01 15:59:28 -070085# version control the persistence volume to see what's happening
Gary Wu14a6b302018-05-01 15:59:28 -070086chmod 777 /dockerdata-nfs/
87chown nobody:nogroup /dockerdata-nfs/
88cd /dockerdata-nfs/
89git init
Gary Wu11c98742018-05-02 16:19:04 -070090git config user.email "root@onap"
Gary Wu14a6b302018-05-01 15:59:28 -070091git config user.name "root"
92git add -A
93git commit -m "initial commit"
94
95# export NFS mount
Gary Wu3fd6c2a2018-10-28 21:44:00 -070096echo "/dockerdata-nfs *(rw,fsid=1,async,no_root_squash,no_subtree_check)" | tee /etc/exports
Gary Wu14a6b302018-05-01 15:59:28 -070097
98
99exportfs -a
100systemctl restart nfs-kernel-server
101
102cd ~
103
Gary Wu7a04b3d2018-08-15 12:31:46 -0700104# install docker __docker_version__
Gary Wub0e36502018-10-16 11:01:07 -0700105while ! hash docker &> /dev/null; do
106 curl -s https://releases.rancher.com/install-docker/__docker_version__.sh | sh
107 usermod -aG docker ubuntu
108 sleep 10
109done
Gary Wu3fd6c2a2018-10-28 21:44:00 -0700110apt-mark hold docker-ce
Gary Wu14a6b302018-05-01 15:59:28 -0700111
Gary Wu7a04b3d2018-08-15 12:31:46 -0700112# install rancher __rancher_version__
Gary Wu3fd6c2a2018-10-28 21:44:00 -0700113docker run --name rancher-server --restart unless-stopped -d -p 8080:8080 -e CATTLE_BOOTSTRAP_REQUIRED_IMAGE=__docker_proxy__/rancher/agent:v__rancher_agent_version__ __docker_proxy__/rancher/server:v__rancher_version__
Gary Wu14a6b302018-05-01 15:59:28 -0700114
Gary Wu7a04b3d2018-08-15 12:31:46 -0700115# install kubectl __kubectl_version__
116curl -s -LO https://storage.googleapis.com/kubernetes-release/release/v__kubectl_version__/bin/linux/amd64/kubectl
Gary Wu14a6b302018-05-01 15:59:28 -0700117chmod +x ./kubectl
118sudo mv ./kubectl /usr/local/bin/kubectl
119mkdir ~/.kube
120
Gary Wu7a04b3d2018-08-15 12:31:46 -0700121# install helm __helm_version__
Gary Wu895a4ac2018-10-31 12:30:54 -0700122mkdir -p helm
123pushd helm
Gary Wu7a04b3d2018-08-15 12:31:46 -0700124wget -q http://storage.googleapis.com/kubernetes-helm/helm-v__helm_version__-linux-amd64.tar.gz
125tar -zxvf helm-v__helm_version__-linux-amd64.tar.gz
Gary Wu895a4ac2018-10-31 12:30:54 -0700126sudo cp linux-amd64/helm /usr/local/bin/helm
127popd
Gary Wu14a6b302018-05-01 15:59:28 -0700128
Gary Wu895a4ac2018-10-31 12:30:54 -0700129mkdir -p rancher
130pushd rancher
Gary Wuad513722018-07-26 13:08:47 -0700131echo export RANCHER_IP=__rancher_private_ip_addr__ > api-keys-rc
Gary Wu14a6b302018-05-01 15:59:28 -0700132source api-keys-rc
133
Gary Wu14a6b302018-05-01 15:59:28 -0700134until curl -s -o projects.json -H "Accept: application/json" http://$RANCHER_IP:8080/v2-beta/projects; do
Gary Wub0e36502018-10-16 11:01:07 -0700135 sleep 30
Gary Wu14a6b302018-05-01 15:59:28 -0700136done
137OLD_PID=$(jq -r '.data[0].id' projects.json)
138
139curl -s -H "Accept: application/json" -H "Content-Type: application/json" -d '{"accountId":"1a1"}' http://$RANCHER_IP:8080/v2-beta/apikeys > apikeys.json
Gary Wu3fd6c2a2018-10-28 21:44:00 -0700140echo export CATTLE_ACCESS_KEY=`jq -r '.publicValue' apikeys.json` >> api-keys-rc
141echo export CATTLE_SECRET_KEY=`jq -r '.secretValue' apikeys.json` >> api-keys-rc
Gary Wu14a6b302018-05-01 15:59:28 -0700142source api-keys-rc
143
144
Gary Wu3fd6c2a2018-10-28 21:44:00 -0700145curl -u "${CATTLE_ACCESS_KEY}:${CATTLE_SECRET_KEY}" -X PUT -H 'Accept: application/json' -H 'Content-Type: application/json' -d '{"id":"registry.default","type":"activeSetting","baseType":"setting","name":"registry.default","activeValue":"__docker_proxy__","inDb":true,"source":"Database","value":"__docker_proxy__"}' http://$RANCHER_IP:8080/v2-beta/settings/registry.default
Gary Wu14a6b302018-05-01 15:59:28 -0700146
Gary Wu3fd6c2a2018-10-28 21:44:00 -0700147curl -s -u "${CATTLE_ACCESS_KEY}:${CATTLE_SECRET_KEY}" -X DELETE -H 'Content-Type: application/json' "http://$RANCHER_IP:8080/v2-beta/projects/$OLD_PID"
Gary Wu14a6b302018-05-01 15:59:28 -0700148
149until [ ! -z "$TEMPLATE_ID" ] && [ "$TEMPLATE_ID" != "null" ]; do
150 sleep 5
151 curl -s -H "Accept: application/json" http://$RANCHER_IP:8080/v2-beta/projectTemplates?name=Kubernetes > projectTemplatesKubernetes.json
152 TEMPLATE_ID=$(jq -r '.data[0].id' projectTemplatesKubernetes.json)
153done
154
Gary Wu3fd6c2a2018-10-28 21:44:00 -0700155
156curl -s -u "${CATTLE_ACCESS_KEY}:${CATTLE_SECRET_KEY}" \
157-X PUT \
158-H 'Accept: application/json' \
159-H 'Content-Type: application/json' \
160-d '{"stacks":[{"type":"catalogTemplate", "answers":{"CONSTRAINT_TYPE":"required"}, "name":"kubernetes", "templateVersionId":"library:infra*k8s:52"}, {"type":"catalogTemplate", "name":"network-services", "templateId":"library:infra*network-services"}, {"type":"catalogTemplate", "name":"ipsec", "templateId":"library:infra*ipsec"}, {"type":"catalogTemplate", "name":"healthcheck", "templateId":"library:infra*healthcheck"}]}' \
161"http://$RANCHER_IP:8080/v2-beta/projecttemplates/$TEMPLATE_ID"
162
163curl -s -u "${CATTLE_ACCESS_KEY}:${CATTLE_SECRET_KEY}" -X POST -H 'Content-Type: application/json' -d '{ "name":"oom", "projectTemplateId":"'$TEMPLATE_ID'" }' "http://$RANCHER_IP:8080/v2-beta/projects" > project.json
Gary Wu14a6b302018-05-01 15:59:28 -0700164PID=`jq -r '.id' project.json`
165echo export RANCHER_URL=http://$RANCHER_IP:8080/v1/projects/$PID >> api-keys-rc
166source api-keys-rc
167
168until [ $(jq -r '.state' project.json) == "active" ]; do
169 sleep 5
170 curl -s -H "Accept: application/json" http://$RANCHER_IP:8080/v1/projects/$PID > project.json
171done
172
173
Gary Wu3fd6c2a2018-10-28 21:44:00 -0700174curl -s -u $CATTLE_ACCESS_KEY:$CATTLE_SECRET_KEY -X POST -H 'Accept: application/json' -H 'Content-Type: application/json' -d '{"name":"docker-proxy", "serverAddress":"__docker_proxy__"}' $RANCHER_URL/registries > registry.json
Gary Wu14a6b302018-05-01 15:59:28 -0700175RID=$(jq -r '.id' registry.json)
176
177
Gary Wu3fd6c2a2018-10-28 21:44:00 -0700178curl -u "${CATTLE_ACCESS_KEY}:${CATTLE_SECRET_KEY}" -X POST -H 'Accept: application/json' -H 'Content-Type: application/json' -d '{"publicValue":"docker", "registryId":"'$RID'", "secretValue":"docker", "type":"registryCredential"}' "http://$RANCHER_IP:8080/v2-beta/projects/$PID/registrycredential"
Gary Wu14a6b302018-05-01 15:59:28 -0700179
180
181
182TID=$(curl -s -X POST -H "Accept: application/json" -H "Content-Type: application/json" http://$RANCHER_IP:8080/v1/projects/$PID/registrationTokens | jq -r '.id')
183touch token.json
184while [ $(jq -r .command token.json | wc -c) -lt 10 ]; do
185 sleep 5
186 curl -s -X GET -H "Accept: application/json" http://$RANCHER_IP:8080/v1/projects/$PID/registrationToken/$TID > token.json
187done
188jq -r .command token.json > rancher_agent_cmd.sh
189chmod +x rancher_agent_cmd.sh
190cp rancher_agent_cmd.sh /dockerdata-nfs
Gary Wu895a4ac2018-10-31 12:30:54 -0700191popd
192
Gary Wu11c98742018-05-02 16:19:04 -0700193cd /dockerdata-nfs
194git add -A
195git commit -a -m "Add rancher agent command file"
196cd ~
Gary Wu14a6b302018-05-01 15:59:28 -0700197
Gary Wu89f67232018-11-01 13:45:31 -0700198
199# Uncomment this section to run orchestration plane on the Rancher VM
200#
201# cp /dockerdata-nfs/rancher_agent_cmd.sh .
202# sed -i "s/docker run/docker run -e CATTLE_HOST_LABELS='orchestration=true' -e CATTLE_AGENT_IP=${HOST_IP}/g" rancher_agent_cmd.sh
203# source rancher_agent_cmd.sh
Gary Wu895a4ac2018-10-31 12:30:54 -0700204
205
Gary Wu14a6b302018-05-01 15:59:28 -0700206
Gary Wu3fd6c2a2018-10-28 21:44:00 -0700207KUBETOKEN=$(echo -n 'Basic '$(echo -n "$CATTLE_ACCESS_KEY:$CATTLE_SECRET_KEY" | base64 -w 0) | base64 -w 0)
Gary Wu14a6b302018-05-01 15:59:28 -0700208
Gary Wue7f33612018-11-02 13:10:06 -0700209NAMESPACE=onap
210
Gary Wu14a6b302018-05-01 15:59:28 -0700211# create .kube/config
212cat > ~/.kube/config <<EOF
213apiVersion: v1
214kind: Config
215clusters:
216- cluster:
217 api-version: v1
218 insecure-skip-tls-verify: true
Gary Wuad513722018-07-26 13:08:47 -0700219 server: "https://__rancher_ip_addr__:8080/r/projects/$PID/kubernetes:6443"
Gary Wu14a6b302018-05-01 15:59:28 -0700220 name: "oom"
221contexts:
222- context:
223 cluster: "oom"
Gary Wue7f33612018-11-02 13:10:06 -0700224 namespace: "$NAMESPACE"
Gary Wu14a6b302018-05-01 15:59:28 -0700225 user: "oom"
226 name: "oom"
227current-context: "oom"
228users:
229- name: "oom"
230 user:
231 token: "$KUBETOKEN"
232EOF
233
234export KUBECONFIG=/root/.kube/config
235kubectl config view
236
Gary Wu895a4ac2018-10-31 12:30:54 -0700237
238
Gary Wub0e36502018-10-16 11:01:07 -0700239# Enable auto-completion for kubectl
240echo "source <(kubectl completion bash)" >> ~/.bashrc
241
242
Gary Wu14a6b302018-05-01 15:59:28 -0700243# wait for kubernetes to initialze
Gary Wub0e36502018-10-16 11:01:07 -0700244sleep 3m
Gary Wu14a6b302018-05-01 15:59:28 -0700245until [ $(kubectl get pods --namespace kube-system | tail -n +2 | grep -c Running) -ge 6 ]; do
Gary Wub0e36502018-10-16 11:01:07 -0700246 sleep 1m
Gary Wu14a6b302018-05-01 15:59:28 -0700247done
248
249
250# Install using OOM
251export HOME=/root
Gary Wu978171e2018-07-24 11:56:01 -0700252mkdir -p ~/.ssh
253cp ~ubuntu/.ssh/authorized_keys ~/.ssh
254
Gary Wu14a6b302018-05-01 15:59:28 -0700255
Gary Wu0dfbea32018-05-12 09:27:44 -0700256# update and initialize git
257apt-get -y install git
258git config --global user.email root@rancher
259git config --global user.name root@rancher
260git config --global log.decorate auto
261
Gary Wu14a6b302018-05-01 15:59:28 -0700262# Clone OOM:
263cd ~
Gary Wu87aa8b52018-08-09 08:10:24 -0700264git clone -b __oom_gerrit_branch__ https://gerrit.onap.org/r/oom
Gary Wu14a6b302018-05-01 15:59:28 -0700265cd oom
Gary Wu87aa8b52018-08-09 08:10:24 -0700266git fetch https://gerrit.onap.org/r/oom __oom_gerrit_refspec__
267git checkout FETCH_HEAD
Gary Wu0dfbea32018-05-12 09:27:44 -0700268git checkout -b workarounds
Gary Wu87aa8b52018-08-09 08:10:24 -0700269git log -1
Gary Wu14a6b302018-05-01 15:59:28 -0700270
Gary Wu81836d22018-06-22 13:48:50 -0700271# Clone integration
272cd ~
Gary Wu87aa8b52018-08-09 08:10:24 -0700273git clone -b __integration_gerrit_branch__ https://gerrit.onap.org/r/integration
Gary Wu81836d22018-06-22 13:48:50 -0700274cd integration
Gary Wu87aa8b52018-08-09 08:10:24 -0700275git fetch https://gerrit.onap.org/r/integration __integration_gerrit_refspec__
Gary Wu81836d22018-06-22 13:48:50 -0700276git checkout FETCH_HEAD
277
Gary Wu48a32942018-11-08 07:34:49 -0800278
Gary Wu87aa8b52018-08-09 08:10:24 -0700279if [ ! -z "__docker_manifest__" ]; then
280 cd version-manifest/src/main/scripts
281 ./update-oom-image-versions.sh ../resources/__docker_manifest__ ~/oom/
282fi
Gary Wu81836d22018-06-22 13:48:50 -0700283
284cd ~/oom
285git diff
Gary Wu87aa8b52018-08-09 08:10:24 -0700286git commit -a -m "apply manifest versions"
287git tag -a "deploy0" -m "initial deployment"
Gary Wu81836d22018-06-22 13:48:50 -0700288
289
Gary Wu14a6b302018-05-01 15:59:28 -0700290# Run ONAP:
291cd ~/oom/kubernetes/
Gary Wu14a6b302018-05-01 15:59:28 -0700292helm init --client-only
293helm init --upgrade
294helm serve &
Gary Wub0e36502018-10-16 11:01:07 -0700295sleep 10
Gary Wu14a6b302018-05-01 15:59:28 -0700296helm repo add local http://127.0.0.1:8879
297helm repo list
298make all
299helm search -l | grep local
Gary Wu48a32942018-11-08 07:34:49 -0800300
301# install helm deploy plugin
302rsync -avt ~/oom/kubernetes/helm/plugins ~/.helm/
303# temporary workaround to throttle the helm deploy to alleviate startup disk contention issues
304if [ ! -z "__helm_deploy_delay__" ]; then
305 sed -i "/\^enabled:/a\ echo sleep __helm_deploy_delay__\n sleep __helm_deploy_delay__" ~/.helm/plugins/deploy/deploy.sh
306fi
307
308helm deploy dev local/onap -f ~/oom/kubernetes/onap/resources/environments/public-cloud.yaml -f ~/integration-override.yaml --namespace $NAMESPACE --verbose
309
310# re-install original helm deploy plugin
311rsync -avt ~/oom/kubernetes/helm/plugins ~/.helm/
312
Gary Wu389aa902018-09-17 13:53:54 -0700313helm list
Gary Wu14a6b302018-05-01 15:59:28 -0700314
315
Gary Wu48a32942018-11-08 07:34:49 -0800316
Gary Wu14a6b302018-05-01 15:59:28 -0700317# Check ONAP status:
Gary Wub0e36502018-10-16 11:01:07 -0700318sleep 10
Gary Wu14a6b302018-05-01 15:59:28 -0700319kubectl get pods --all-namespaces
Gary Wub0e36502018-10-16 11:01:07 -0700320kubectl get nodes
321kubectl top nodes