1 description: Nova API,Keystone,Heat Engine and API,Glance,Neutron,Dedicated MySQL
2 server,Dedicated RabbitMQ Server,Group of Nova Computes
3 heat_template_version: 2013-05-23
7 description: The password for the keystone admin account, used for monitoring, querying neutron etc.
12 description: The keystone auth secret.
17 description: The password for the cinder service account, used by cinder-api.
22 description: The iSCSI helper to use with cinder.
24 CinderLVMLoopDeviceSize:
26 description: The size of the loopback file used by the cinder LVM driver.
31 Additional configuration to inject into the cluster. The JSON should have
32 the following structure:
35 [{"section": "SECTIONNAME",
37 [{"option": "OPTIONNAME",
48 [{"section": "default",
50 [{"option": "compute_manager",
51 "value": "ironic.nova.compute.manager.ClusterComputeManager"
58 "value": "nova.cells.rpc_driver.CellsRPCDriver"
66 OvercloudControlFlavor:
68 description: Flavor for control nodes to request when deploying.
70 OvercloudComputeFlavor:
72 description: Flavor for compute nodes to request when deploying.
76 description: Glance port.
80 description: Protocol to use when connecting to glance, set to https for SSL.
84 description: The password for the glance service account, used by the glance services.
87 GlanceNotifierStrategy:
88 description: Strategy to use for Glance notification queue
92 description: The filepath of the file to use for logging messages from Glance.
97 description: The password for the Heat service account, used by the Heat services.
101 default: 'REBUILD_PRESERVE_EPHEMERAL'
102 description: What policy to use when reconstructing instances. REBUILD for rebuilds, REBUILD_PRESERVE_EPHEMERAL to preserve /mnt.
106 description: Name of an existing EC2 KeyPair to enable SSH access to the instances
108 NeutronBridgeMappings:
109 description: The OVS logical->physical bridge mappings to use.
114 description: The password for the neutron service account, used by neutron agents.
117 CeilometerComputeAgent:
118 description: Indicates whether the Compute agent is present and expects nova-compute to be configured accordingly
122 - allowed_values: ['', Present]
123 CeilometerMeteringSecret:
125 description: Secret shared by the ceilometer services.
130 description: The password for the ceilometer service account.
133 SnmpdReadonlyUserName:
134 default: ro_snmp_user
135 description: The user name for SNMPd with readonly rights running on all Overcloud nodes
137 SnmpdReadonlyUserPassword:
139 description: The user password for SNMPd with readonly rights running on all Overcloud nodes
144 description: The DNS name of this cloud. E.g. ci-overcloud.tripleo.org
147 default: libvirt.LibvirtDriver
149 NovaComputeLibvirtType:
154 default: overcloud-compute
157 description: The password for the nova service account, used by nova-api.
163 description: If set, flat networks to configure in neutron plugins.
164 HypervisorNeutronPhysicalBridge:
166 description: An OVS bridge to create on each hypervisor.
168 HypervisorNeutronPublicInterface:
170 description: What interface to add to the HypervisorNeutronPhysicalBridge.
172 NeutronPublicInterface:
174 description: What interface to bridge onto br-ex for network nodes.
176 NeutronPublicInterfaceDefaultRoute:
178 description: A custom default route for the NeutronPublicInterface.
180 NeutronPublicInterfaceIP:
182 description: A custom IP address to put onto the NeutronPublicInterface.
184 NeutronPublicInterfaceRawDevice:
186 description: If set, the public interface is a vlan with this device as the raw device.
188 NeutronControlPlaneID:
191 description: Neutron ID for ctlplane network.
192 NeutronDnsmasqOptions:
193 default: 'dhcp-option-force=26,1400'
194 description: Dnsmasq options for neutron-dhcp-agent. The default value here forces MTU to be set to 1400 to account for the gre tunnel overhead.
198 default: overcloud-control
204 description: The username for RabbitMQ
208 description: The password for RabbitMQ
214 description: Salt for the rabbit cookie, change this to force the randomly generated rabbit cookie to change.
215 HeatStackDomainAdminPassword:
216 description: Password for heat_domain_admin user.
222 description: The live-update username for the undercloud Glance API.
224 LiveUpdateTenantName:
226 description: The live-update tenant name for the undercloud Glance API.
230 description: The IP address for the undercloud Glance API.
235 description: The live-update password for the undercloud Glance API.
237 LiveUpdateComputeImage:
239 description: The image ID for live-updates to the overcloud compute nodes.
241 MysqlInnodbBufferPoolSize:
243 Specifies the size of the buffer pool in megabytes. Setting to
244 zero should be interpreted as "no value" and will defer to the
248 ControlVirtualInterface:
250 description: Interface where virtual ip will be assigned.
254 description: Should be used for arbitrary ips.
256 PublicVirtualFixedIPs:
259 Control the IP allocation for the PublicVirtualInterface port. E.g.
260 [{'ip_address':'1.2.3.4'}]
262 PublicVirtualInterface:
265 Specifies the interface where the public-facing virtual ip will be assigned.
266 This should be int_public when a VLAN is being used.
268 PublicVirtualNetwork:
272 Neutron network to allocate public virtual IP port on.
273 KeystoneCACertificate:
275 description: Keystone self-signed certificate authority certificate.
277 KeystoneSigningCertificate:
279 description: Keystone certificate for verifying token validity.
283 description: Keystone key for signing tokens.
288 type: OS::Neutron::Port
290 name: control_virtual_ip
291 network_id: {get_param: NeutronControlPlaneID}
293 get_param: ControlFixedIPs
294 MysqlClusterUniquePart:
295 type: OS::Heat::RandomString
299 type: OS::Heat::RandomString
303 type: OS::Neutron::Port
305 name: public_virtual_ip
306 network: {get_param: PublicVirtualNetwork}
308 get_param: PublicVirtualFixedIPs
310 type: OS::Heat::RandomString
314 get_param: RabbitCookieSalt
315 NovaCompute0Deployment:
317 Path: nova-compute-instance.yaml
318 SubKey: resources.NovaCompute0Deployment
320 NovaApiHost: {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
321 KeystoneHost: {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
322 NeutronHost: {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
323 GlanceHost: {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
324 RabbitHost: {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
328 - - mysql://nova:unset@
329 - &compute_database_host {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
334 - - mysql://ceilometer:unset@
335 - *compute_database_host
340 - - mysql://neutron:unset@
341 - *compute_database_host
343 NeutronNetworkType: "gre"
344 NeutronEnableTunnelling: "True"
346 get_param: NeutronFlatNetworks
347 NeutronNetworkVLANRanges: ""
348 NeutronPhysicalBridge:
349 get_param: HypervisorNeutronPhysicalBridge
350 NeutronPublicInterface:
351 get_param: HypervisorNeutronPublicInterface
352 NeutronBridgeMappings:
353 get_param: NeutronBridgeMappings
354 NovaCompute0AllNodesDeployment:
356 Path: nova-compute-instance.yaml
357 SubKey: resources.NovaCompute0AllNodesDeployment
359 AllNodesConfig: {get_resource: allNodesConfig}
360 NovaCompute0Passthrough:
362 Path: nova-compute-instance.yaml
363 SubKey: resources.NovaCompute0Passthrough
365 passthrough_config: {get_param: ExtraConfig}
368 Path: nova-compute-instance.yaml
369 SubKey: resources.NovaCompute0
371 type: OS::Heat::StructuredConfig
373 group: os-apply-config
376 get_param: AdminPassword
378 get_param: AdminToken
381 get_param: NeutronPublicInterfaceIP
395 nodeid: {get_input: bootstack_nodeid}
398 {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
403 - - mysql://cinder:unset@
407 get_param: CinderLVMLoopDeviceSize
409 get_param: CinderPassword
411 get_param: CinderISCSIHelper
413 get_input: controller_host
415 bindnetaddr: {get_input: controller_host}
420 ip: {get_attr: [controller0, networks, ctlplane, 0]}
422 stonith_enabled : false
424 quorum_policy : ignore
428 host: {get_input: controller_virtual_ip}
433 - - mysql://glance:unset@
437 get_input: controller_virtual_ip
439 get_param: GlancePort
441 get_param: GlanceProtocol
443 get_param: GlancePassword
444 swift-store-user: service:glance
446 get_param: GlancePassword
448 get_param: GlanceNotifierStrategy
450 get_param: GlanceLogFile
453 get_param: HeatPassword
454 admin_tenant_name: service
456 auth_encryption_key: unset___________
460 - - mysql://heat:unset@
463 stack_domain_admin_password: {get_param: HeatStackDomainAdminPassword}
464 watch_server_url: {get_input: heat.watch_server_url}
465 metadata_server_url: {get_input: heat.metadata_server_url}
466 waitcondition_server_url: {get_input: heat.waitcondition_server_url}
473 {get_attr: [controller0, show, name]}
478 - - mysql://keystone:unset@
482 get_input: controller_virtual_ip
483 ca_certificate: {get_param: KeystoneCACertificate}
484 signing_key: {get_param: KeystoneSigningKey}
485 signing_certificate: {get_param: KeystoneSigningCertificate}
487 innodb_buffer_pool_size: {get_param: MysqlInnodbBufferPoolSize}
489 root-password: {get_resource: MysqlRootPassword}
493 ip: {get_attr: [controller0, networks, ctlplane, 0]}
498 - {get_resource: MysqlClusterUniquePart}
500 flat-networks: {get_param: NeutronFlatNetworks}
501 host: {get_input: controller_virtual_ip}
502 metadata_proxy_shared_secret: unset
504 enable_tunneling: 'True'
506 get_input: controller_host
507 bridge_mappings: {get_param: NeutronBridgeMappings}
509 get_param: NeutronPublicInterface
510 public_interface_raw_device:
511 get_param: NeutronPublicInterfaceRawDevice
512 public_interface_route:
513 get_param: NeutronPublicInterfaceDefaultRoute
514 physical_bridge: br-ex
515 tenant_network_type: gre
519 - - mysql://neutron:unset@
521 - /ovs_neutron?charset=utf8
523 get_param: NeutronPassword
525 get_param: NeutronDnsmasqOptions
530 - - mysql://ceilometer:unset@
533 metering_secret: {get_param: CeilometerMeteringSecret}
535 get_param: CeilometerPassword
537 export_MIB: UCD-SNMP-MIB
539 get_param: SnmpdReadonlyUserName
540 readonly_user_password:
541 get_param: SnmpdReadonlyUserPassword
543 compute_driver: libvirt.LibvirtDriver
547 - - mysql://nova:unset@
550 default_floating_pool:
552 host: {get_input: controller_virtual_ip}
555 get_param: NovaPassword
557 host: {get_input: controller_virtual_ip}
559 get_param: RabbitUserName
561 get_param: RabbitPassword
568 - {server: {get_param: NtpServer}, fudge: "stratum 0"}
571 - vrrp_instance_name: VI_CONTROL
572 virtual_router_id: 51
574 get_param: ControlVirtualInterface
577 - ip: {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
579 get_param: ControlVirtualInterface
580 - vrrp_instance_name: VI_PUBLIC
581 virtual_router_id: 52
583 get_param: PublicVirtualInterface
586 - ip: {get_attr: [PublicVirtualIP, fixed_ips, 0, ip_address]}
588 get_param: PublicVirtualInterface
596 get_param: PublicVirtualInterface
600 ip: {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
602 get_param: ControlVirtualInterface
604 ip: {get_attr: [PublicVirtualIP, fixed_ips, 0, ip_address]}
606 get_param: PublicVirtualInterface
611 ip: {get_attr: [controller0, networks, ctlplane, 0]}
612 name: {get_attr: [controller0, show, name]}
614 - ip: {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
616 - name: keystone_admin
618 net_binds: &public_binds
619 - ip: {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
620 - ip: {get_attr: [PublicVirtualIP, fixed_ips, 0, ip_address]}
621 - name: keystone_public
623 net_binds: *public_binds
626 net_binds: *public_binds
629 net_binds: *public_binds
632 net_binds: *public_binds
635 net_binds: *public_binds
636 - name: glance_registry
638 net_binds: *public_binds
641 net_binds: *public_binds
642 - name: heat_cloudwatch
644 net_binds: *public_binds
647 net_binds: *public_binds
656 net_binds: *public_binds
657 - name: nova_metadata
659 net_binds: *public_binds
662 net_binds: *public_binds
663 - name: swift_proxy_server
665 net_binds: *public_binds
671 controllerPassthrough:
672 type: OS::Heat::StructuredConfig
674 group: os-apply-config
675 config: {get_input: passthrough_config}
677 type: OS::Nova::Server
680 get_param: controllerImage
682 get_param: ImageUpdatePolicy
684 get_param: OvercloudControlFlavor
689 user_data_format: SOFTWARE_CONFIG
690 controller0AllNodesDeployment:
691 depends_on: [controller0Deployment,controller0SSLDeployment,controller0Swift,controller0Passthrough]
692 type: OS::Heat::StructuredDeployment
694 config: {get_resource: allNodesConfig}
695 server: {get_resource: controller0}
696 controller0Deployment:
697 type: OS::Heat::StructuredDeployment
699 signal_transport: NO_SIGNAL
700 config: {get_resource: controllerConfig}
701 server: {get_resource: controller0}
703 bootstack_nodeid: {get_attr: [controller0, show, name]}
704 controller_host: {get_attr: [controller0, networks, ctlplane, 0]}
705 controller_virtual_ip:
706 {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
707 heat.watch_server_url:
711 - {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
713 heat.metadata_server_url:
717 - {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
719 heat.waitcondition_server_url:
723 - {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
724 - ':8000/v1/waitcondition'
726 type: OS::Heat::StructuredConfig
729 completion-signal: {get_input: deploy_signal_id}
739 - - {get_attr: [NovaCompute0, networks, ctlplane, 0]}
740 - {get_attr: [NovaCompute0, show, name]}
743 - - {get_attr: [NovaCompute0, show, name]}
751 - - {get_attr: [BlockStorage0, networks, ctlplane, 0]}
752 - {get_attr: [BlockStorage0, show, name]}
755 - - {get_attr: [BlockStorage0, show, name]}
763 - - {get_attr: [SwiftStorage0, networks, ctlplane, 0]}
764 - {get_attr: [SwiftStorage0, show, name]}
767 - - {get_attr: [SwiftStorage0, show, name]}
775 - - {get_attr: [controller0, networks, ctlplane, 0]}
776 - {get_attr: [controller0, show, name]}
779 - - {get_attr: [controller0, show, name]}
781 - {get_param: CloudName}
788 {get_attr: [controller0, show, name]}
789 controller0SSLDeployment:
790 type: OS::Heat::StructuredDeployment
792 config: {get_resource: SSLConfig}
793 server: {get_resource: controller0}
794 signal_transport: NO_SIGNAL
796 controller_host: {get_attr: [controller0, networks, ctlplane, 0]}
797 ssl_certificate: {get_param: SSLCertificate}
798 ssl_key: {get_param: SSLKey}
799 ssl_ca_certificate: {get_param: SSLCACertificate}
800 controller0Passthrough:
801 type: OS::Heat::StructuredDeployment
803 config: {get_resource: controllerPassthrough}
804 server: {get_resource: controller0}
805 signal_transport: NO_SIGNAL
807 passthrough_config: {get_param: ExtraConfig}
810 description: URL for the Overcloud Keystone service
815 - {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}