1 heat_template_version: pike
4 OpenStack containerized Rabbitmq service
10 DockerRabbitmqConfigImage:
11 description: The container image to use for the rabbitmq config_volume
15 description: Mapping of service endpoint -> protocol. Typically set
16 via parameter_defaults in the resource registry.
20 description: Dictionary packing service data
24 description: Mapping of service_name -> network name. Typically set
25 via parameter_defaults in the resource registry. This
26 mapping overrides those in ServiceNetMapDefaults.
37 description: Role name on which the service is applied
41 description: Parameters specific to the role
47 type: ../../../puppet/services/rabbitmq.yaml
49 EndpointMap: {get_param: EndpointMap}
50 ServiceData: {get_param: ServiceData}
51 ServiceNetMap: {get_param: ServiceNetMap}
52 DefaultPasswords: {get_param: DefaultPasswords}
53 RoleName: {get_param: RoleName}
54 RoleParameters: {get_param: RoleParameters}
58 description: Role data for the Rabbitmq API role.
60 service_name: {get_attr: [RabbitmqBase, role_data, service_name]}
63 - {get_attr: [RabbitmqBase, role_data, config_settings]}
64 - rabbitmq::service_manage: false
65 tripleo::profile::pacemaker::rabbitmq_bundle::rabbitmq_docker_image: &rabbitmq_image {get_param: DockerRabbitmqImage}
66 tripleo::profile::pacemaker::rabbitmq_bundle::control_port: 3122
67 tripleo.rabbitmq.firewall_rules:
68 '109 rabbitmq-bundle':
74 step_config: &step_config
75 get_attr: [RabbitmqBase, role_data, step_config]
76 service_config_settings: {get_attr: [RabbitmqBase, role_data, service_config_settings]}
77 # BEGIN DOCKER SETTINGS
79 config_volume: rabbitmq
81 step_config: *step_config
82 config_image: {get_param: DockerRabbitmqConfigImage}
84 /var/lib/kolla/config_files/rabbitmq.json:
85 command: /usr/sbin/pacemaker_remoted
87 - dest: /etc/libqb/force-filesystem-sockets
91 - source: "/var/lib/kolla/config_files/src/*"
94 preserve_properties: true
95 - source: "/var/lib/kolla/config_files/src-tls/*"
99 preserve_properties: true
101 - path: /var/lib/rabbitmq
102 owner: rabbitmq:rabbitmq
104 - path: /var/log/rabbitmq
105 owner: rabbitmq:rabbitmq
107 - path: /etc/pki/tls/certs/rabbitmq.crt
108 owner: rabbitmq:rabbitmq
111 - path: /etc/pki/tls/private/rabbitmq.key
112 owner: rabbitmq:rabbitmq
115 # When using pacemaker we don't launch the container, instead that is done by pacemaker
121 image: *rabbitmq_image
125 - /var/lib/kolla/config_files/rabbitmq.json:/var/lib/kolla/config_files/config.json:ro
126 - /var/lib/config-data/puppet-generated/rabbitmq/:/var/lib/kolla/config_files/src:ro
127 - /etc/hosts:/etc/hosts:ro
128 - /etc/localtime:/etc/localtime:ro
129 - /var/lib/rabbitmq:/var/lib/rabbitmq
131 - KOLLA_CONFIG_STRATEGY=COPY_ALWAYS
132 - KOLLA_BOOTSTRAP=True
136 - - 'RABBITMQ_CLUSTER_COOKIE'
139 expression: $.data.passwords.where($ != '').first()
142 - {get_param: RabbitCookie}
143 - {get_param: [DefaultPasswords, rabbit_cookie]}
145 rabbitmq_init_bundle:
157 - - "cp -a /tmp/puppet-etc/* /etc/puppet; echo '{\"step\": 2}' > /etc/puppet/hieradata/docker.json"
158 - "FACTER_uuid=docker puppet apply --tags file,file_line,concat,augeas,TAGS -v -e 'CONFIG'"
160 TAGS: 'pacemaker::resource::bundle,pacemaker::property,pacemaker::resource::ocf,pacemaker::constraint::order,pacemaker::constraint::colocation'
161 CONFIG: 'include ::tripleo::profile::base::pacemaker;include ::tripleo::profile::pacemaker::rabbitmq_bundle'
162 image: *rabbitmq_image
164 - /etc/hosts:/etc/hosts:ro
165 - /etc/localtime:/etc/localtime:ro
166 - /etc/puppet:/tmp/puppet-etc:ro
167 - /usr/share/openstack-puppet/modules:/usr/share/openstack-puppet/modules:ro
168 - /etc/corosync/corosync.conf:/etc/corosync/corosync.conf:ro
169 - /dev/shm:/dev/shm:rw
171 - name: create /var/lib/rabbitmq
173 path: /var/lib/rabbitmq
175 - name: stop the Erlang port mapper on the host and make sure it cannot bind to the port used by container
177 echo 'export ERL_EPMD_ADDRESS=127.0.0.1' > /etc/rabbitmq/rabbitmq-env.conf
178 echo 'export ERL_EPMD_PORT=4370' >> /etc/rabbitmq/rabbitmq-env.conf
179 for pid in $(pgrep epmd); do if [ "$(lsns -o NS -p $pid)" == "$(lsns -o NS -p 1)" ]; then kill $pid; break; fi; done
181 get_attr: [RabbitmqBase, role_data, metadata_settings]
183 - name: get bootstrap nodeid
185 command: hiera -c /etc/puppet/hiera.yaml bootstrap_nodeid
186 register: bootstrap_node
187 - name: set is_bootstrap_node fact
189 set_fact: is_bootstrap_node={{bootstrap_node.stdout|lower == ansible_hostname|lower}}
190 - name: Disable the rabbitmq cluster resource.
193 resource: {get_attr: [RabbitmqBase, role_data, service_name]}
195 wait_for_resource: true
196 when: is_bootstrap_node
197 - name: Delete the stopped rabbitmq cluster resource.
200 resource: {get_attr: [RabbitmqBase, role_data, service_name]}
202 wait_for_resource: true
203 when: is_bootstrap_node
204 - name: Disable rabbitmq service
206 service: name=rabbitmq-server enabled=no