Use list_concat in place of yaql
[apex-tripleo-heat-templates.git] / common / deploy-steps.j2
1 # certain initialization steps (run in a container) will occur
2 # on the role marked as primary controller or the first role listed
3 {%- set primary_role = [roles[0]] -%}
4 {%- for role in roles -%}
5   {%- if 'primary' in role.tags and 'controller' in role.tags -%}
6     {%- set _ = primary_role.pop() -%}
7     {%- set _ = primary_role.append(role) -%}
8   {%- endif -%}
9 {%- endfor -%}
10 {%- set primary_role_name = primary_role[0].name -%}
11 # primary role is: {{primary_role_name}}
12 {% set deploy_steps_max = 6 -%}
13 {% set update_steps_max = 6 -%}
14 {% set upgrade_steps_max = 6 -%}
15
16 heat_template_version: pike
17
18 description: >
19   Post-deploy configuration steps via puppet for all roles,
20   as defined in ../roles_data.yaml
21
22 parameters:
23   servers:
24     type: json
25     description: Mapping of Role name e.g Controller to a list of servers
26   stack_name:
27     type: string
28     description: Name of the topmost stack
29   role_data:
30     type: json
31     description: Mapping of Role name e.g Controller to the per-role data
32   DeployIdentifier:
33     default: ''
34     type: string
35     description: >
36       Setting this to a unique value will re-run any deployment tasks which
37       perform configuration on a Heat stack-update.
38   EndpointMap:
39     default: {}
40     description: Mapping of service endpoint -> protocol. Typically set
41                  via parameter_defaults in the resource registry.
42     type: json
43   DockerPuppetDebug:
44     type: string
45     default: ''
46     description: Set to True to enable debug logging with docker-puppet.py
47   DockerPuppetProcessCount:
48     type: number
49     default: 3
50     description: Number of concurrent processes to use when running docker-puppet to generate config files.
51   ctlplane_service_ips:
52     type: json
53
54 conditions:
55 {% for step in range(1, deploy_steps_max) %}
56   WorkflowTasks_Step{{step}}_Enabled:
57     or:
58     {%- for role in roles %}
59       - not:
60           equals:
61             - get_param: [role_data, {{role.name}}, service_workflow_tasks, step{{step}}]
62             - ''
63       - False
64     {%- endfor %}
65 {% endfor %}
66
67 resources:
68
69   RoleConfig:
70     type: OS::Heat::SoftwareConfig
71     properties:
72       group: ansible
73       options:
74         modulepath: /usr/share/ansible-modules
75       inputs:
76         - name: step
77         - name: role_name
78         - name: update_identifier
79         - name: bootstrap_server_id
80         - name: docker_puppet_debug
81         - name: docker_puppet_process_count
82       config:
83         str_replace:
84           template: |
85             - hosts: localhost
86               connection: local
87               tasks:
88               _TASKS
89           params:
90             _TASKS: {get_file: deploy-steps-tasks.yaml}
91
92 {%- for step in range(1, deploy_steps_max) %}
93 # BEGIN service_workflow_tasks handling
94   WorkflowTasks_Step{{step}}:
95     type: OS::Mistral::Workflow
96     condition: WorkflowTasks_Step{{step}}_Enabled
97     depends_on:
98     {%- if step == 1 %}
99     {%- for dep in roles %}
100       - {{dep.name}}PreConfig
101       - {{dep.name}}ArtifactsDeploy
102     {%- endfor %}
103     {%- else %}
104     {%- for dep in roles %}
105       - {{dep.name}}Deployment_Step{{step -1}}
106     {%- endfor %}
107     {%- endif %}
108     properties:
109       name: {list_join: [".", ["tripleo", {get_param: stack_name}, "workflowtasks", "step{{step}}"]]}
110       type: direct
111       tasks:
112         yaql:
113           expression: $.data.where($ != '').select($.get('step{{step}}')).where($ != null).flatten()
114           data:
115           {%- for role in roles %}
116             - get_param: [role_data, {{role.name}}, service_workflow_tasks]
117           {%- endfor %}
118
119   WorkflowTasks_Step{{step}}_Execution:
120     type: OS::Mistral::ExternalResource
121     condition: WorkflowTasks_Step{{step}}_Enabled
122     depends_on: WorkflowTasks_Step{{step}}
123     properties:
124       actions:
125         CREATE:
126           workflow: { get_resource: WorkflowTasks_Step{{step}} }
127           params:
128             env:
129               service_ips: { get_param: ctlplane_service_ips }
130               role_merged_configs:
131                 {%- for r in roles %}
132                 {{r.name}}: {get_param: [role_data, {{r.name}}, merged_config_settings]}
133                 {%- endfor %}
134             evaluate_env: false
135         UPDATE:
136           workflow: { get_resource: WorkflowTasks_Step{{step}} }
137           params:
138             env:
139               service_ips: { get_param: ctlplane_service_ips }
140               role_merged_configs:
141                 {%- for r in roles %}
142                 {{r.name}}: {get_param: [role_data, {{r.name}}, merged_config_settings]}
143                 {%- endfor %}
144             evaluate_env: false
145       always_update: true
146 # END service_workflow_tasks handling
147 {% endfor %}
148
149 {% for role in roles %}
150   # Post deployment steps for all roles
151   # A single config is re-applied with an incrementing step number
152   # {{role.name}} Role steps
153   {{role.name}}ArtifactsConfig:
154     type: ../puppet/deploy-artifacts.yaml
155
156   {{role.name}}ArtifactsDeploy:
157     type: OS::Heat::StructuredDeploymentGroup
158     properties:
159       servers:  {get_param: [servers, {{role.name}}]}
160       config: {get_resource: {{role.name}}ArtifactsConfig}
161
162   {{role.name}}HostPrepConfig:
163     type: OS::Heat::SoftwareConfig
164     properties:
165       group: ansible
166       options:
167         modulepath: /usr/share/ansible-modules
168       config:
169         str_replace:
170           template: _PLAYBOOK
171           params:
172             _PLAYBOOK:
173               - hosts: localhost
174                 connection: local
175                 vars:
176                   puppet_config: {get_param: [role_data, {{role.name}}, puppet_config]}
177                   docker_puppet_script: {get_file: ../docker/docker-puppet.py}
178                   docker_puppet_tasks: {get_param: [role_data, {{role.name}}, docker_puppet_tasks]}
179                   docker_startup_configs: {get_param: [role_data, {{role.name}}, docker_config]}
180                   kolla_config: {get_param: [role_data, {{role.name}}, kolla_config]}
181                   bootstrap_server_id: {get_param: [servers, {{primary_role_name}}, '0']}
182                   puppet_step_config: {get_param: [role_data, {{role.name}}, step_config]}
183                 tasks:
184                   # Join host_prep_tasks with the other per-host configuration
185                   list_concat:
186                     - {get_param: [role_data, {{role.name}}, host_prep_tasks]}
187                     -
188 {%- raw %}
189                       # Write the manifest for baremetal puppet configuration
190                       - name: Create /var/lib/tripleo-config directory
191                         file: path=/var/lib/tripleo-config state=directory
192                       - name: Write the puppet step_config manifest
193                         copy: content="{{puppet_step_config}}" dest=/var/lib/tripleo-config/puppet_step_config.pp force=yes
194                       # this creates a JSON config file for our docker-puppet.py script
195                       - name: Create /var/lib/docker-puppet
196                         file: path=/var/lib/docker-puppet state=directory
197                       - name: Write docker-puppet-tasks json files
198                         copy: content="{{puppet_config | to_json}}" dest=/var/lib/docker-puppet/docker-puppet.json force=yes
199                       # FIXME: can we move docker-puppet somewhere so it's installed via a package?
200                       - name: Write docker-puppet.py
201                         copy: content="{{docker_puppet_script}}" dest=/var/lib/docker-puppet/docker-puppet.py force=yes
202                       # Here we are dumping all the docker container startup configuration data
203                       # so that we can have access to how they are started outside of heat
204                       # and docker-cmd.  This lets us create command line tools to test containers.
205                       # FIXME do we need the docker-container-startup-configs.json or is the new per-step
206                       # data consumed by paunch enough?
207                       - name: Write docker-container-startup-configs
208                         copy: content="{{docker_startup_configs | to_json}}" dest=/var/lib/docker-container-startup-configs.json force=yes
209                       - name: Write per-step docker-container-startup-configs
210                         copy: content="{{item.value|to_json}}" dest="/var/lib/tripleo-config/docker-container-startup-config-{{item.key}}.json" force=yes
211                         with_dict: "{{docker_startup_configs}}"
212                       - name: Create /var/lib/kolla/config_files directory
213                         file: path=/var/lib/kolla/config_files state=directory
214                       - name: Write kolla config json files
215                         copy: content="{{item.value|to_json}}" dest="{{item.key}}" force=yes
216                         with_dict: "{{kolla_config}}"
217                       ########################################################
218                       # Bootstrap tasks, only performed on bootstrap_server_id
219                       ########################################################
220                       - name: Clean /var/lib/docker-puppet/docker-puppet-tasks*.json files
221                         file:
222                           path: "{{item}}"
223                           state: absent
224                         with_fileglob:
225                           - /var/lib/docker-puppet/docker-puppet-tasks*.json
226                         when: deploy_server_id == bootstrap_server_id
227                       - name: Write docker-puppet-tasks json files
228                         copy: content="{{item.value|to_json}}" dest=/var/lib/docker-puppet/docker-puppet-tasks{{item.key.replace("step_", "")}}.json force=yes
229                         with_dict: "{{docker_puppet_tasks}}"
230                         when: deploy_server_id == bootstrap_server_id
231 {%- endraw %}
232
233   {{role.name}}HostPrepDeployment:
234     type: OS::Heat::SoftwareDeploymentGroup
235     properties:
236       servers: {get_param: [servers, {{role.name}}]}
237       config: {get_resource: {{role.name}}HostPrepConfig}
238
239   # BEGIN CONFIG STEPS
240
241   {{role.name}}PreConfig:
242     type: OS::TripleO::Tasks::{{role.name}}PreConfig
243     depends_on: {{role.name}}HostPrepDeployment
244     properties:
245       servers: {get_param: [servers, {{role.name}}]}
246       input_values:
247         update_identifier: {get_param: DeployIdentifier}
248
249   {% for step in range(1, deploy_steps_max) %}
250   {{role.name}}Deployment_Step{{step}}:
251     type: OS::TripleO::DeploymentSteps
252     depends_on:
253       - WorkflowTasks_Step{{step}}_Execution
254     # TODO(gfidente): the following if/else condition
255     # replicates what is already defined for the
256     # WorkflowTasks_StepX resource and can be remove
257     # if https://bugs.launchpad.net/heat/+bug/1700569
258     # is fixed.
259     {%- if step == 1 %}
260     {%- for dep in roles %}
261       - {{dep.name}}PreConfig
262       - {{dep.name}}ArtifactsDeploy
263     {%- endfor %}
264     {%- else %}
265     {%- for dep in roles %}
266       - {{dep.name}}Deployment_Step{{step -1}}
267     {%- endfor %}
268     {%- endif %}
269     properties:
270       name: {{role.name}}Deployment_Step{{step}}
271       servers: {get_param: [servers, {{role.name}}]}
272       config: {get_resource: RoleConfig}
273       input_values:
274         step: {{step}}
275         role_name: {{role.name}}
276         update_identifier: {get_param: DeployIdentifier}
277         bootstrap_server_id: {get_param: [servers, {{primary_role_name}}, '0']}
278         docker_puppet_debug: {get_param: DockerPuppetDebug}
279         docker_puppet_process_count: {get_param: DockerPuppetProcessCount}
280   {% endfor %}
281   # END CONFIG STEPS
282
283   # Note, this should be the last step to execute configuration changes.
284   # Ensure that all {{role.name}}ExtraConfigPost steps are executed
285   # after all the previous deployment steps.
286   {{role.name}}ExtraConfigPost:
287     depends_on:
288   {%- for dep in roles %}
289       - {{dep.name}}Deployment_Step5
290   {%- endfor %}
291     type: OS::TripleO::NodeExtraConfigPost
292     properties:
293         servers: {get_param: [servers, {{role.name}}]}
294
295   # The {{role.name}}PostConfig steps are in charge of
296   # quiescing all services, i.e. in the Controller case,
297   # we should run a full service reload.
298   {{role.name}}PostConfig:
299     type: OS::TripleO::Tasks::{{role.name}}PostConfig
300     depends_on:
301   {%- for dep in roles %}
302       - {{dep.name}}ExtraConfigPost
303   {%- endfor %}
304     properties:
305       servers:  {get_param: servers}
306       input_values:
307         update_identifier: {get_param: DeployIdentifier}
308
309
310 {% endfor %}
311
312 outputs:
313   RoleConfig:
314     description: Mapping of config data for all roles
315     value:
316       deploy_steps_tasks: {get_file: deploy-steps-tasks.yaml}
317       deploy_steps_playbook: |
318         - hosts: overcloud
319           tasks:
320 {%- for role in roles %}
321             - include: {{role.name}}/host_prep_tasks.yaml
322               when: role_name == '{{role.name}}'
323 {%- endfor %}
324             - include: deploy_steps_tasks.yaml
325               with_sequence: start=0 end={{deploy_steps_max-1}}
326               loop_control:
327                 loop_var: step
328       update_steps_tasks: |
329 {%- for role in roles %}
330             - include: {{role.name}}/update_tasks.yaml
331               when: role_name == '{{role.name}}'
332 {%- endfor %}
333       update_steps_playbook: |
334         - hosts: overcloud
335           serial: 1
336           tasks:
337             - include: update_steps_tasks.yaml
338               with_sequence: start=0 end={{update_steps_max-1}}
339               loop_control:
340                 loop_var: step
341             - include: deploy_steps_tasks.yaml
342               with_sequence: start=0 end={{deploy_steps_max-1}}
343               loop_control:
344                 loop_var: step
345       upgrade_steps_tasks: |
346 {%- for role in roles %}
347             - include: {{role.name}}/upgrade_tasks.yaml
348               when: role_name == '{{role.name}}'
349 {%- endfor %}
350       upgrade_steps_playbook: |
351         - hosts: overcloud
352           tasks:
353             - include: upgrade_steps_tasks.yaml
354               with_sequence: start=0 end={{upgrade_steps_max-1}}
355               loop_control:
356                 loop_var: step
357             - include: deploy_steps_tasks.yaml
358               with_sequence: start=0 end={{deploy_steps_max-1}}
359               loop_control:
360                 loop_var: step
361