#!/bin/sh # # # OpenStack Container Orchestration Engine Provisioning Conductor Service (magnum-conductor) # # Description: Manages an OpenStack Container Orchestration Engine Provisioning Conductor Service (magnum-conductor) process as an HA resource # # Authors: Emilien Macchi # Mainly inspired by the Nova Scheduler resource agent written by Sebastien Han # # Support: openstack@lists.launchpad.net # License: Apache Software License (ASL) 2.0 # # Copyright (c) 2017 Wind River Systems, Inc. # # SPDX-License-Identifier: Apache-2.0 # # # See usage() function below for more details ... # # OCF instance parameters: # OCF_RESKEY_binary # OCF_RESKEY_config # OCF_RESKEY_user # OCF_RESKEY_pid # OCF_RESKEY_monitor_binary # OCF_RESKEY_amqp_server_port # OCF_RESKEY_additional_parameters ####################################################################### # Initialization: : ${OCF_FUNCTIONS_DIR=${OCF_ROOT}/lib/heartbeat} . ${OCF_FUNCTIONS_DIR}/ocf-shellfuncs . /usr/bin/tsconfig ####################################################################### # Fill in some defaults if no values are specified OCF_RESKEY_binary_default="magnum-conductor" OCF_RESKEY_config_default="/etc/magnum/magnum.conf" OCF_RESKEY_user_default="magnum" OCF_RESKEY_pid_default="$HA_RSCTMP/$OCF_RESOURCE_INSTANCE.pid" OCF_RESKEY_amqp_server_port_default="5672" : ${OCF_RESKEY_binary=${OCF_RESKEY_binary_default}} : ${OCF_RESKEY_config=${OCF_RESKEY_config_default}} : ${OCF_RESKEY_user=${OCF_RESKEY_user_default}} : ${OCF_RESKEY_pid=${OCF_RESKEY_pid_default}} : ${OCF_RESKEY_amqp_server_port=${OCF_RESKEY_amqp_server_port_default}} ####################################################################### usage() { cat < 1.0 Resource agent for the OpenStack Container Orchestration Engine Provisioning Conductor Service (magnum-conductor) May manage a magnum-conductor instance or a clone set that creates a distributed magnum-conductor cluster. Manages the OpenStack Container Orchestration Engine Provisioning Conductor Service (magnum-conductor) Location of the OpenStack Container Orchestration Engine Provisioning Conductor server binary (magnum-conductor) OpenStack Container Orchestration Engine Provisioning Conductor server binary (magnum-conductor) Location of the OpenStack Container Orchestration Engine Provisioning Conductor Service (magnum-conductor) configuration file OpenStack Container Orchestration Engine Provisioning Conductor (magnum-conductor registry) config file User running OpenStack Container Orchestration Engine Provisioning Conductor Service (magnum-conductor) OpenStack Container Orchestration Engine Provisioning Conductor Service (magnum-conductor) user The pid file to use for this OpenStack Container Orchestration Engine Provisioning Conductor Service (magnum-conductor) instance OpenStack Container Orchestration Engine Provisioning Conductor Service (magnum-conductor) pid file The listening port number of the AMQP server. Use for monitoring purposes AMQP listening port Additional parameters to pass on to the OpenStack Container Orchestration Engine Provisioning Conductor Service (magnum-conductor) Additional parameters for magnum-conductor END } ####################################################################### # Functions invoked by resource manager actions magnum_conductor_check_port() { # This function has been taken from the squid RA and improved a bit # The length of the integer must be 4 # Examples of valid port: "1080", "0080" # Examples of invalid port: "1080bad", "0", "0000", "" local int local cnt int="$1" cnt=${#int} echo $int |egrep -qx '[0-9]+(:[0-9]+)?(,[0-9]+(:[0-9]+)?)*' if [ $? -ne 0 ] || [ $cnt -ne 4 ]; then ocf_log err "Invalid port number: $1" exit $OCF_ERR_CONFIGURED fi } magnum_conductor_validate() { local rc check_binary $OCF_RESKEY_binary check_binary netstat magnum_conductor_check_port $OCF_RESKEY_amqp_server_port # A config file on shared storage that is not available # during probes is OK. if [ ! -f $OCF_RESKEY_config ]; then if ! ocf_is_probe; then ocf_log err "Config $OCF_RESKEY_config doesn't exist" return $OCF_ERR_INSTALLED fi ocf_log_warn "Config $OCF_RESKEY_config not available during a probe" fi getent passwd $OCF_RESKEY_user >/dev/null 2>&1 rc=$? if [ $rc -ne 0 ]; then ocf_log err "User $OCF_RESKEY_user doesn't exist" return $OCF_ERR_INSTALLED fi true } magnum_conductor_status() { local pid local rc if [ ! -f $OCF_RESKEY_pid ]; then ocf_log info "OpenStack Container Orchestration Engine Provisioning Conductor (magnum-conductor) is not running" return $OCF_NOT_RUNNING else pid=`cat $OCF_RESKEY_pid` fi ocf_run -warn kill -s 0 $pid rc=$? if [ $rc -eq 0 ]; then return $OCF_SUCCESS else ocf_log info "Old PID file found, but OpenStack Container Orchestration Engine Provisioning Conductor (magnum-conductor) is not running" rm -f $OCF_RESKEY_pid return $OCF_NOT_RUNNING fi } magnum_conductor_monitor() { local rc local pid local scheduler_amqp_check magnum_conductor_status rc=$? # If status returned anything but success, return that immediately if [ $rc -ne $OCF_SUCCESS ]; then return $rc fi ocf_log debug "OpenStack Container Orchestration Engine Provisioning Conductor (magnum-conductor) monitor succeeded" return $OCF_SUCCESS } magnum_conductor_start() { local rc magnum_conductor_status rc=$? if [ $rc -eq $OCF_SUCCESS ]; then ocf_log info "OpenStack Container Orchestration Engine Provisioning Conductor (magnum-conductor) already running" return $OCF_SUCCESS fi # run the actual magnum-conductor daemon. Don't use ocf_run as we're sending the tool's output # straight to /dev/null anyway and using ocf_run would break stdout-redirection here. su ${OCF_RESKEY_user} -s /bin/sh -c "${OCF_RESKEY_binary} --config-file=$OCF_RESKEY_config \ $OCF_RESKEY_additional_parameters"' >> /dev/null 2>&1 & echo $!' > $OCF_RESKEY_pid # Spin waiting for the server to come up. while true; do magnum_conductor_monitor rc=$? [ $rc -eq $OCF_SUCCESS ] && break if [ $rc -ne $OCF_NOT_RUNNING ]; then ocf_log err "OpenStack Container Orchestration Engine Provisioning Conductor (magnum-conductor) start failed" exit $OCF_ERR_GENERIC fi sleep 1 done ocf_log info "OpenStack Container Orchestration Engine Provisioning Conductor (magnum-conductor) started" return $OCF_SUCCESS } magnum_conductor_confirm_stop() { local my_bin local my_processes my_binary=`which ${OCF_RESKEY_binary}` my_processes=`pgrep -l -f "^(python|/usr/bin/python|/usr/bin/python2) ${my_binary}([^\w-]|$)"` if [ -n "${my_processes}" ] then ocf_log info "About to SIGKILL the following: ${my_processes}" pkill -KILL -f "^(python|/usr/bin/python|/usr/bin/python2) ${my_binary}([^\w-]|$)" fi } magnum_conductor_stop() { local rc local pid magnum_conductor_status rc=$? if [ $rc -eq $OCF_NOT_RUNNING ]; then ocf_log info "OpenStack Container Orchestration Engine Provisioning Conductor (magnum-conductor) already stopped" magnum_conductor_confirm_stop return $OCF_SUCCESS fi # Try SIGTERM pid=`cat $OCF_RESKEY_pid` ocf_run kill -s TERM $pid rc=$? if [ $rc -ne 0 ]; then ocf_log err "OpenStack Container Orchestration Engine Provisioning Conductor (magnum-conductor) couldn't be stopped" magnum_conductor_confirm_stop exit $OCF_ERR_GENERIC fi # stop waiting shutdown_timeout=2 if [ -n "$OCF_RESKEY_CRM_meta_timeout" ]; then shutdown_timeout=$((($OCF_RESKEY_CRM_meta_timeout/1000)-5)) fi count=0 while [ $count -lt $shutdown_timeout ]; do magnum_conductor_status rc=$? if [ $rc -eq $OCF_NOT_RUNNING ]; then break fi count=`expr $count + 1` sleep 1 ocf_log debug "OpenStack Container Orchestration Engine Provisioning Conductor (magnum-conductor) still hasn't stopped yet. Waiting ..." done magnum_conductor_status rc=$? if [ $rc -ne $OCF_NOT_RUNNING ]; then # SIGTERM didn't help either, try SIGKILL ocf_log info "OpenStack Container Orchestration Engine Provisioning Conductor (magnum-conductor) failed to stop after ${shutdown_timeout}s \ using SIGTERM. Trying SIGKILL ..." ocf_run kill -s KILL $pid fi magnum_conductor_confirm_stop ocf_log info "OpenStack Container Orchestration Engine Provisioning Conductor (magnum-conductor) stopped" rm -f $OCF_RESKEY_pid return $OCF_SUCCESS } ####################################################################### case "$1" in meta-data) meta_data exit $OCF_SUCCESS;; usage|help) usage exit $OCF_SUCCESS;; esac # Anything except meta-data and help must pass validation magnum_conductor_validate || exit $? # What kind of method was invoked? case "$1" in start) magnum_conductor_start;; stop) magnum_conductor_stop;; status) magnum_conductor_status;; monitor) magnum_conductor_monitor;; validate-all) ;; *) usage exit $OCF_ERR_UNIMPLEMENTED;; esac