Copy only generated puppet files into the container
[apex-tripleo-heat-templates.git] / docker / services / pacemaker / rabbitmq.yaml
1 heat_template_version: pike
2
3 description: >
4   OpenStack containerized Rabbitmq service
5
6 parameters:
7   DockerNamespace:
8     description: namespace
9     default: 'tripleoupstream'
10     type: string
11   DockerRabbitmqImage:
12     description: image
13     default: 'centos-binary-rabbitmq:latest'
14     type: string
15   DockerRabbitmqConfigImage:
16     description: The container image to use for the rabbitmq config_volume
17     default: 'centos-binary-rabbitmq:latest'
18     type: string
19   EndpointMap:
20     default: {}
21     description: Mapping of service endpoint -> protocol. Typically set
22                  via parameter_defaults in the resource registry.
23     type: json
24   ServiceNetMap:
25     default: {}
26     description: Mapping of service_name -> network name. Typically set
27                  via parameter_defaults in the resource registry.  This
28                  mapping overrides those in ServiceNetMapDefaults.
29     type: json
30   DefaultPasswords:
31     default: {}
32     type: json
33   RabbitCookie:
34     type: string
35     default: ''
36     hidden: true
37   RoleName:
38     default: ''
39     description: Role name on which the service is applied
40     type: string
41   RoleParameters:
42     default: {}
43     description: Parameters specific to the role
44     type: json
45
46 resources:
47
48   RabbitmqBase:
49     type: ../../../puppet/services/rabbitmq.yaml
50     properties:
51       EndpointMap: {get_param: EndpointMap}
52       ServiceNetMap: {get_param: ServiceNetMap}
53       DefaultPasswords: {get_param: DefaultPasswords}
54       RoleName: {get_param: RoleName}
55       RoleParameters: {get_param: RoleParameters}
56
57 outputs:
58   role_data:
59     description: Role data for the Rabbitmq API role.
60     value:
61       service_name: {get_attr: [RabbitmqBase, role_data, service_name]}
62       config_settings:
63         map_merge:
64           - {get_attr: [RabbitmqBase, role_data, config_settings]}
65           - rabbitmq::service_manage: false
66             tripleo::profile::pacemaker::rabbitmq_bundle::rabbitmq_docker_image: &rabbitmq_image
67               list_join:
68                 - '/'
69                 - - {get_param: DockerNamespace}
70                   - {get_param: DockerRabbitmqImage}
71       step_config: &step_config
72         get_attr: [RabbitmqBase, role_data, step_config]
73       service_config_settings: {get_attr: [RabbitmqBase, role_data, service_config_settings]}
74       # BEGIN DOCKER SETTINGS
75       puppet_config:
76         config_volume: rabbitmq
77         puppet_tags: file
78         step_config: *step_config
79         config_image:
80           list_join:
81             - '/'
82             - [ {get_param: DockerNamespace}, {get_param: DockerRabbitmqConfigImage} ]
83       kolla_config:
84         /var/lib/kolla/config_files/rabbitmq.json:
85           command: /usr/sbin/pacemaker_remoted
86           config_files:
87           - dest: /etc/libqb/force-filesystem-sockets
88             source: /dev/null
89             owner: root
90             perm: '0644'
91           - source: "/var/lib/kolla/config_files/src/*"
92             dest: "/"
93             merge: true
94             preserve_properties: true
95           permissions:
96            - path: /var/lib/rabbitmq
97              owner: rabbitmq:rabbitmq
98              recurse: true
99            - path: /var/log/rabbitmq
100              owner: rabbitmq:rabbitmq
101              recurse: true
102       # When using pacemaker we don't launch the container, instead that is done by pacemaker
103       # itself.
104       docker_config:
105         step_1:
106           rabbitmq_bootstrap:
107             start_order: 0
108             image: *rabbitmq_image
109             net: host
110             privileged: false
111             volumes:
112               - /var/lib/kolla/config_files/rabbitmq.json:/var/lib/kolla/config_files/config.json:ro
113               - /var/lib/config-data/puppet-generated/rabbitmq/:/var/lib/kolla/config_files/src:ro
114               - /etc/hosts:/etc/hosts:ro
115               - /etc/localtime:/etc/localtime:ro
116               - /var/lib/rabbitmq:/var/lib/rabbitmq
117             environment:
118               - KOLLA_CONFIG_STRATEGY=COPY_ALWAYS
119               - KOLLA_BOOTSTRAP=True
120               -
121                 list_join:
122                   - '='
123                   - - 'RABBITMQ_CLUSTER_COOKIE'
124                     -
125                       yaql:
126                         expression: $.data.passwords.where($ != '').first()
127                         data:
128                           passwords:
129                             - {get_param: RabbitCookie}
130                             - {get_param: [DefaultPasswords, rabbit_cookie]}
131         step_2:
132           rabbitmq_init_bundle:
133             start_order: 0
134             detach: false
135             net: host
136             user: root
137             command:
138               - '/bin/bash'
139               - '-c'
140               - str_replace:
141                   template:
142                     list_join:
143                       - '; '
144                       - - "cp -a /tmp/puppet-etc/* /etc/puppet; echo '{\"step\": 2}' > /etc/puppet/hieradata/docker.json"
145                         - "FACTER_uuid=docker puppet apply --tags file,file_line,concat,augeas,TAGS -v -e 'CONFIG'"
146                   params:
147                     TAGS: 'pacemaker::resource::bundle,pacemaker::property,pacemaker::resource::ocf,pacemaker::constraint::order,pacemaker::constraint::colocation'
148                     CONFIG: 'include ::tripleo::profile::base::pacemaker;include ::tripleo::profile::pacemaker::rabbitmq_bundle'
149             image: *rabbitmq_image
150             volumes:
151               - /etc/hosts:/etc/hosts:ro
152               - /etc/localtime:/etc/localtime:ro
153               - /etc/puppet:/tmp/puppet-etc:ro
154               - /usr/share/openstack-puppet/modules:/usr/share/openstack-puppet/modules:ro
155               - /etc/corosync/corosync.conf:/etc/corosync/corosync.conf:ro
156               - /dev/shm:/dev/shm:rw
157       host_prep_tasks:
158         - name: create /var/lib/rabbitmq
159           file:
160             path: /var/lib/rabbitmq
161             state: directory
162         - name: stop the Erlang port mapper on the host and make sure it cannot bind to the port used by container
163           shell: |
164             echo 'export ERL_EPMD_ADDRESS=127.0.0.1' > /etc/rabbitmq/rabbitmq-env.conf
165             echo 'export ERL_EPMD_PORT=4370' >> /etc/rabbitmq/rabbitmq-env.conf
166             for pid in $(pgrep epmd); do if [ "$(lsns -o NS -p $pid)" == "$(lsns -o NS -p 1)" ]; then kill $pid; break; fi; done
167       upgrade_tasks:
168         - name: Stop and disable rabbitmq service
169           tags: step2
170           service: name=rabbitmq-server state=stopped enabled=no