3 # Licensed under the Apache License, Version 2.0 (the "License");
4 # you may not use this file except in compliance with the License.
5 # You may obtain a copy of the License at
7 # http://www.apache.org/licenses/LICENSE-2.0
9 # Unless required by applicable law or agreed to in writing, software
10 # distributed under the License is distributed on an "AS IS" BASIS,
11 # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
12 # See the License for the specific language governing permissions and
13 # limitations under the License.
18 K8S_CLOUD_NAME
="k8s-cloud"
19 IMAGES_OVERLAY_FILE
=~
/.osm
/images-overlay.yaml
20 function check_arguments
(){
21 while [ $# -gt 0 ] ; do
23 --bundle) BUNDLE
="$2" ;;
24 --k8s) KUBECFG
="$2" ;;
25 --vca) CONTROLLER
="$2" ;;
26 --lxd) LXD_CLOUD
="$2" ;;
27 --lxd-cred) LXD_CREDENTIALS
="$2" ;;
28 --microstack) MICROSTACK
=y
;;
29 --ha) BUNDLE
="osm-ha" ;;
35 # echo $BUNDLE $KUBECONFIG $LXDENDPOINT
37 function install_snaps
(){
38 [ ! -v KUBECFG
] && sudo snap
install microk8s
--classic && sudo usermod
-a -G microk8s
`whoami` && mkdir
-p ~
/.kube
&& sudo chown
-f -R `whoami` ~
/.kube
39 sudo snap
install juju
--classic --channel=2.8/stable
42 function bootstrap_k8s_lxd
(){
43 [ -v CONTROLLER
] && ADD_K8S_OPTS
="--controller ${CONTROLLER}" && CONTROLLER_NAME
=$CONTROLLER
44 [ ! -v CONTROLLER
] && ADD_K8S_OPTS
="--client" && BOOTSTRAP_NEEDED
="yes" && CONTROLLER_NAME
="controller"
46 if [ -v KUBECFG
]; then
47 cat $KUBECFG | juju add-k8s
$K8S_CLOUD_NAME $ADD_K8S_OPTS
48 [ -v BOOTSTRAP_NEEDED
] && juju bootstrap
$K8S_CLOUD_NAME $CONTROLLER_NAME
50 sg microk8s
-c "microk8s.enable storage dns"
53 sg microk8s
-c "microk8s.status" |
grep 'storage: enabled'
60 [ ! -v BOOTSTRAP_NEEDED
] && sg microk8s
-c "microk8s.config" | juju add-k8s
$K8S_CLOUD_NAME $ADD_K8S_OPTS
61 [ -v BOOTSTRAP_NEEDED
] && sg microk8s
-c "juju bootstrap microk8s $CONTROLLER_NAME" && K8S_CLOUD_NAME
=microk8s
64 if [ -v LXD_CLOUD
]; then
65 if [ ! -v LXD_CREDENTIALS
]; then
66 echo "The installer needs the LXD server certificate if the LXD is external"
70 LXDENDPOINT
=$DEFAULT_IP
71 LXD_CLOUD
=~
/.osm
/lxd-cloud.yaml
72 LXD_CREDENTIALS
=~
/.osm
/lxd-credentials.yaml
73 # Apply sysctl production values for optimal performance
74 sudo
cp /usr
/share
/osm-devops
/installers
/60-lxd-production.conf
/etc
/sysctl.d
/60-lxd-production.conf
77 sudo apt-get remove
--purge -y liblxc1 lxc-common lxcfs lxd lxd-client
79 sudo apt-get
install zfsutils-linux
-y
81 sudo usermod
-a -G lxd
`whoami`
82 cat /usr
/share
/osm-devops
/installers
/lxd-preseed.conf |
sed 's/^config: {}/config:\n core.https_address: '$LXDENDPOINT':8443/' | sg lxd
-c "lxd init --preseed"
83 sg lxd
-c "lxd waitready"
84 DEFAULT_MTU
=$
(ip addr show
$DEFAULT_IF | perl
-ne 'if (/mtu\s(\d+)/) {print $1;}')
85 sg lxd
-c "lxc profile device set default eth0 mtu $DEFAULT_MTU"
86 sg lxd
-c "lxc network set lxdbr0 bridge.mtu $DEFAULT_MTU"
88 cat << EOF > $LXD_CLOUD
92 auth-types: [certificate]
93 endpoint: "https://$LXDENDPOINT:8443"
95 ssl-hostname-verification: false
97 openssl req
-nodes -new -x509 -keyout ~
/.osm
/client.key
-out ~
/.osm
/client.crt
-days 365 -subj "/C=FR/ST=Nice/L=Nice/O=ETSI/OU=OSM/CN=osm.etsi.org"
98 local server_cert
=`cat /var/snap/lxd/common/lxd/server.crt | sed 's/^/ /'`
99 local client_cert
=`cat ~/.osm/client.crt | sed 's/^/ /'`
100 local client_key
=`cat ~/.osm/client.key | sed 's/^/ /'`
102 cat << EOF > $LXD_CREDENTIALS
106 auth-type: certificate
114 lxc config trust add
local: ~
/.osm
/client.crt
117 juju add-cloud
-c $CONTROLLER_NAME lxd-cloud
$LXD_CLOUD --force
118 juju add-credential
-c $CONTROLLER_NAME lxd-cloud
-f $LXD_CREDENTIALS
119 sg lxd
-c "lxd waitready"
120 juju add-model
test lxd-cloud || true
121 juju controller-config features
=[k8s-operators
]
124 function deploy_charmed_osm
(){
126 echo "Creating OSM model"
127 if [ -v KUBECFG
]; then
128 juju add-model osm
$K8S_CLOUD_NAME
130 sg microk8s
-c "juju add-model osm $K8S_CLOUD_NAME"
132 echo "Deploying OSM with charms"
134 if [ -v BUNDLE
]; then
135 juju deploy
$BUNDLE --overlay ~
/.osm
/vca-overlay.yaml
138 [ -v TAG
] && generate_images_overlay
&& images_overlay
="--overlay $IMAGES_OVERLAY_FILE"
139 juju deploy osm
--overlay ~
/.osm
/vca-overlay.yaml
$images_overlay
141 echo "Waiting for deployment to finish..."
142 check_osm_deployed
&> /dev
/null
143 echo "OSM with charms deployed"
144 sg microk8s
-c "microk8s.enable ingress"
145 juju config ui-k8s juju-external-hostname
=osm.
$DEFAULT_IP.xip.io
149 function check_osm_deployed
() {
152 pod_name
=`sg microk8s -c "microk8s.kubectl -n osm get pods | grep ui-k8s | grep -v operator" | awk '{print $1; exit}'`
154 if [[ `sg microk8s -c "microk8s.kubectl -n osm wait pod $pod_name --for condition=Ready"` ]]; then
155 if [[ `sg microk8s -c "microk8s.kubectl -n osm wait pod lcm-k8s-0 --for condition=Ready"` ]]; then
163 function create_overlay
() {
165 sudo apt
install python3-pip
-y
166 python3
-m pip
install yq
167 PATH
=$PATH:$HOME/.local
/bin
# make yq command available
168 local HOME
=/home
/$USER
169 local vca_user
=$
(cat $HOME/.local
/share
/juju
/accounts.yaml | yq
--arg CONTROLLER_NAME
$CONTROLLER_NAME '.controllers[$CONTROLLER_NAME].user')
170 local vca_password
=$
(cat $HOME/.local
/share
/juju
/accounts.yaml | yq
--arg CONTROLLER_NAME
$CONTROLLER_NAME '.controllers[$CONTROLLER_NAME].password')
171 local vca_host
=$
(cat $HOME/.local
/share
/juju
/controllers.yaml | yq
--arg CONTROLLER_NAME
$CONTROLLER_NAME '.controllers[$CONTROLLER_NAME]["api-endpoints"][0]' | cut
-d ":" -f 1 | cut
-d "\"" -f 2)
172 local vca_port
=$
(cat $HOME/.local
/share
/juju
/controllers.yaml | yq
--arg CONTROLLER_NAME
$CONTROLLER_NAME '.controllers[$CONTROLLER_NAME]["api-endpoints"][0]' | cut
-d ":" -f 2 | cut
-d "\"" -f 1)
173 local vca_pubkey
=\"$
(cat $HOME/.local
/share
/juju
/ssh
/juju_id_rsa.pub
)\"
174 local vca_cloud
="lxd-cloud"
175 # Get the VCA Certificate
176 local vca_cacert
=$
(cat $HOME/.local
/share
/juju
/controllers.yaml | yq
--arg CONTROLLER_NAME
$CONTROLLER_NAME '.controllers[$CONTROLLER_NAME]["ca-cert"]' | base64 |
tr -d \\n
)
178 # Calculate the default route of this machine
179 local DEFAULT_IF
=`ip route list match 0.0.0.0 | awk '{print $5}'`
180 local vca_apiproxy
=`ip -o -4 a |grep ${DEFAULT_IF}|awk '{split($4,a,"/"); print a[1]}'`
182 # Generate a new overlay.yaml, overriding any existing one
183 cat << EOF > /tmp/vca-overlay.yaml
188 vca_password: $vca_password
191 vca_pubkey: $vca_pubkey
192 vca_cacert: $vca_cacert
193 vca_apiproxy: $vca_apiproxy
194 vca_cloud: $vca_cloud
195 vca_k8s_cloud: $K8S_CLOUD_NAME
199 vca_password: $vca_password
201 vca_cacert: $vca_cacert
203 mv /tmp
/vca-overlay.yaml ~
/.osm
/
204 OSM_VCA_HOST
=$vca_host
207 function generate_images_overlay
(){
208 cat << EOF > /tmp/images-overlay.yaml
212 image: opensourcemano/lcm:$TAG
215 image: opensourcemano/mon:$TAG
218 image: opensourcemano/ro:$TAG
221 image: opensourcemano/nbi:$TAG
224 image: opensourcemano/pol:$TAG
227 image: opensourcemano/light-ui:$TAG
230 mv /tmp
/images-overlay.yaml
$IMAGES_OVERLAY_FILE
233 function install_osmclient
() {
234 sudo snap
install osmclient
235 sudo snap
alias osmclient.osm osm
238 function create_iptables
() {
239 check_install_iptables_persistent
241 if ! sudo iptables
-t nat
-C PREROUTING
-p tcp
-m tcp
-d $DEFAULT_IP --dport 17070 -j DNAT
--to-destination $OSM_VCA_HOST; then
242 sudo iptables
-t nat
-A PREROUTING
-p tcp
-m tcp
-d $DEFAULT_IP --dport 17070 -j DNAT
--to-destination $OSM_VCA_HOST
243 sudo netfilter-persistent save
247 function check_install_iptables_persistent
(){
248 echo -e "\nChecking required packages: iptables-persistent"
249 if ! dpkg
-l iptables-persistent
&>/dev
/null
; then
250 echo -e " Not installed.\nInstalling iptables-persistent requires root privileges"
251 echo iptables-persistent iptables-persistent
/autosave_v4 boolean true | sudo debconf-set-selections
252 echo iptables-persistent iptables-persistent
/autosave_v6 boolean true | sudo debconf-set-selections
253 sudo apt-get
-yq install iptables-persistent
257 function install_microstack
() {
258 sudo snap
install microstack
--classic --beta
259 sudo microstack.init
--auto
260 wget https
://cloud-images.ubuntu.com
/releases
/16.04/release
/ubuntu-16.04
-server-cloudimg-amd64-disk1.img
-P ~
/.osm
/
261 microstack.openstack image create \
263 --disk-format qcow2 \
264 --container-format bare \
265 --file ~
/.osm
/ubuntu-16.04
-server-cloudimg-amd64-disk1.img \
267 ssh-keygen
-t rsa
-N "" -f ~
/.ssh
/microstack
268 microstack.openstack keypair create
--public-key ~
/.ssh
/microstack.pub microstack
269 export OSM_HOSTNAME
=`juju status --format json | jq -rc '.applications."nbi-k8s".address'`
270 osm vim-create
--name microstack-site \
272 --password keystone \
273 --auth_url http
://10.20.20.1:5000/v3 \
275 --account_type openstack \
276 --config='{security_groups: default,
279 user_domain_name: default,
280 region_name: microstack,
282 availability_zone: nova,
286 DEFAULT_IF
=`ip route list match 0.0.0.0 | awk '{print $5}'`
287 DEFAULT_IP
=`ip -o -4 a |grep ${DEFAULT_IF}|awk '{split($4,a,"/"); print a[1]}'`
294 [ ! -v CONTROLLER
] && create_iptables
296 if [ -v MICROSTACK
]; then