1 description: Nova API,Keystone,Heat Engine and API,Glance,Neutron,Dedicated MySQL
2 server,Dedicated RabbitMQ Server,Group of Nova Computes
3 heat_template_version: 2013-05-23
7 description: The password for the keystone admin account, used for monitoring, querying neutron etc.
12 description: The keystone auth secret.
17 description: The password for the cinder service account, used by cinder-api.
22 description: The iSCSI helper to use with cinder.
24 CinderLVMLoopDeviceSize:
26 description: The size of the loopback file used by the cinder LVM driver.
31 Additional configuration to inject into the cluster. The JSON should have
32 the following structure:
35 [{"section": "SECTIONNAME",
37 [{"option": "OPTIONNAME",
48 [{"section": "default",
50 [{"option": "compute_manager",
51 "value": "ironic.nova.compute.manager.ClusterComputeManager"
58 "value": "nova.cells.rpc_driver.CellsRPCDriver"
66 OvercloudControlFlavor:
68 description: Flavor for control nodes to request when deploying.
70 OvercloudComputeFlavor:
72 description: Flavor for compute nodes to request when deploying.
76 description: Glance port.
80 description: Protocol to use when connecting to glance, set to https for SSL.
84 description: The password for the glance service account, used by the glance services.
87 GlanceNotifierStrategy:
88 description: Strategy to use for Glance notification queue
92 description: The filepath of the file to use for logging messages from Glance.
97 description: The password for the Heat service account, used by the Heat services.
101 default: 'REBUILD_PRESERVE_EPHEMERAL'
102 description: What policy to use when reconstructing instances. REBUILD for rebuilds, REBUILD_PRESERVE_EPHEMERAL to preserve /mnt.
106 description: Name of an existing EC2 KeyPair to enable SSH access to the instances
108 NeutronBridgeMappings:
109 description: The OVS logical->physical bridge mappings to use.
114 description: The password for the neutron service account, used by neutron agents.
117 CeilometerComputeAgent:
118 description: Indicates whether the Compute agent is present and expects nova-compute to be configured accordingly
122 - allowed_values: ['', Present]
123 CeilometerMeteringSecret:
125 description: Secret shared by the ceilometer services.
130 description: The password for the ceilometer service account.
133 SnmpdReadonlyUserName:
134 default: ro_snmp_user
135 description: The user name for SNMPd with readonly rights running on all Overcloud nodes
137 SnmpdReadonlyUserPassword:
139 description: The user password for SNMPd with readonly rights running on all Overcloud nodes
144 description: The DNS name of this cloud. E.g. ci-overcloud.tripleo.org
147 default: libvirt.LibvirtDriver
149 NovaComputeLibvirtType:
154 default: overcloud-compute
157 description: The password for the nova service account, used by nova-api.
163 description: If set, flat networks to configure in neutron plugins.
164 HypervisorNeutronPhysicalBridge:
166 description: An OVS bridge to create on each hypervisor.
168 HypervisorNeutronPublicInterface:
170 description: What interface to add to the HypervisorNeutronPhysicalBridge.
172 NeutronPublicInterface:
174 description: What interface to bridge onto br-ex for network nodes.
176 NeutronPublicInterfaceDefaultRoute:
178 description: A custom default route for the NeutronPublicInterface.
180 NeutronPublicInterfaceIP:
182 description: A custom IP address to put onto the NeutronPublicInterface.
184 NeutronPublicInterfaceRawDevice:
186 description: If set, the public interface is a vlan with this device as the raw device.
188 NeutronControlPlaneID:
191 description: Neutron ID for ctlplane network.
192 NeutronDnsmasqOptions:
193 default: 'dhcp-option-force=26,1400'
194 description: Dnsmasq options for neutron-dhcp-agent. The default value here forces MTU to be set to 1400 to account for the gre tunnel overhead.
198 default: overcloud-control
204 description: The username for RabbitMQ
208 description: The password for RabbitMQ
214 description: Salt for the rabbit cookie, change this to force the randomly generated rabbit cookie to change.
215 HeatStackDomainAdminPassword:
216 description: Password for heat_domain_admin user.
222 description: The live-update username for the undercloud Glance API.
224 LiveUpdateTenantName:
226 description: The live-update tenant name for the undercloud Glance API.
230 description: The IP address for the undercloud Glance API.
235 description: The live-update password for the undercloud Glance API.
237 LiveUpdateComputeImage:
239 description: The image ID for live-updates to the overcloud compute nodes.
241 MysqlInnodbBufferPoolSize:
243 Specifies the size of the buffer pool in megabytes. Setting to
244 zero should be interpreted as "no value" and will defer to the
248 ControlVirtualInterface:
250 description: Interface where virtual ip will be assigned.
254 description: Should be used for arbitrary ips.
256 PublicVirtualFixedIPs:
259 Control the IP allocation for the PublicVirtualInterface port. E.g.
260 [{'ip_address':'1.2.3.4'}]
262 PublicVirtualInterface:
265 Specifies the interface where the public-facing virtual ip will be assigned.
266 This should be int_public when a VLAN is being used.
268 PublicVirtualNetwork:
272 Neutron network to allocate public virtual IP port on.
273 KeystoneCACertificate:
275 description: Keystone self-signed certificate authority certificate.
277 KeystoneSigningCertificate:
279 description: Keystone certificate for verifying token validity.
283 description: Keystone key for signing tokens.
288 type: OS::Neutron::Port
290 name: control_virtual_ip
291 network_id: {get_param: NeutronControlPlaneID}
293 get_param: ControlFixedIPs
294 MysqlClusterUniquePart:
295 type: OS::Heat::RandomString
299 type: OS::Neutron::Port
301 name: public_virtual_ip
302 network: {get_param: PublicVirtualNetwork}
304 get_param: PublicVirtualFixedIPs
306 type: OS::Heat::RandomString
310 get_param: RabbitCookieSalt
313 Path: nova-compute-instance.yaml
314 SubKey: resources.NovaCompute0Deploy
316 NovaApiHost: {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
317 KeystoneHost: {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
318 NeutronHost: {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
319 GlanceHost: {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
320 RabbitHost: {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
324 - - mysql://nova:unset@
325 - &compute_database_host {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
330 - - mysql://ceilometer:unset@
331 - *compute_database_host
336 - - mysql://neutron:unset@
337 - *compute_database_host
339 NeutronNetworkType: "gre"
340 NeutronEnableTunnelling: "True"
342 get_param: NeutronFlatNetworks
343 NeutronNetworkVLANRanges: ""
344 NeutronPhysicalBridge:
345 get_param: HypervisorNeutronPhysicalBridge
346 NeutronPublicInterface:
347 get_param: HypervisorNeutronPublicInterface
348 NeutronBridgeMappings:
349 get_param: NeutronBridgeMappings
350 NovaCompute0AllNodes:
352 Path: nova-compute-instance.yaml
353 SubKey: resources.NovaCompute0AllNodesDeploy
355 AllNodesConfig: {get_resource: allNodesConfig}
356 NovaCompute0Passthrough:
358 Path: nova-compute-instance.yaml
359 SubKey: resources.NovaCompute0Passthrough
361 passthrough_config: {get_param: ExtraConfig}
364 Path: nova-compute-instance.yaml
365 SubKey: resources.NovaCompute0
367 type: OS::Heat::StructuredConfig
369 group: os-apply-config
372 get_param: AdminPassword
374 get_param: AdminToken
377 get_param: NeutronPublicInterfaceIP
391 nodeid: {get_input: bootstack_nodeid}
394 {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
399 - - mysql://cinder:unset@
403 get_param: CinderLVMLoopDeviceSize
405 get_param: CinderPassword
407 get_param: CinderISCSIHelper
409 get_input: controller_host
411 bindnetaddr: {get_input: controller_host}
416 ip: {get_attr: [controller0, networks, ctlplane, 0]}
418 stonith_enabled : false
420 quorum_policy : ignore
424 host: {get_input: controller_virtual_ip}
429 - - mysql://glance:unset@
433 get_input: controller_virtual_ip
435 get_param: GlancePort
437 get_param: GlanceProtocol
439 get_param: GlancePassword
440 swift-store-user: service:glance
442 get_param: GlancePassword
444 get_param: GlanceNotifierStrategy
446 get_param: GlanceLogFile
449 get_param: HeatPassword
450 admin_tenant_name: service
452 auth_encryption_key: unset___________
456 - - mysql://heat:unset@
459 stack_domain_admin_password: {get_param: HeatStackDomainAdminPassword}
460 watch_server_url: {get_input: heat.watch_server_url}
461 metadata_server_url: {get_input: heat.metadata_server_url}
462 waitcondition_server_url: {get_input: heat.waitcondition_server_url}
469 {get_attr: [controller0, show, name]}
474 - - mysql://keystone:unset@
478 get_input: controller_virtual_ip
479 ca_certificate: {get_param: KeystoneCACertificate}
480 signing_key: {get_param: KeystoneSigningKey}
481 signing_certificate: {get_param: KeystoneSigningCertificate}
483 innodb_buffer_pool_size: {get_param: MysqlInnodbBufferPoolSize}
488 ip: {get_attr: [controller0, networks, ctlplane, 0]}
493 - {get_resource: MysqlClusterUniquePart}
495 flat-networks: {get_param: NeutronFlatNetworks}
496 host: {get_input: controller_virtual_ip}
497 metadata_proxy_shared_secret: unset
499 enable_tunneling: 'True'
501 get_input: controller_host
502 bridge_mappings: {get_param: NeutronBridgeMappings}
504 get_param: NeutronPublicInterface
505 public_interface_raw_device:
506 get_param: NeutronPublicInterfaceRawDevice
507 public_interface_route:
508 get_param: NeutronPublicInterfaceDefaultRoute
509 physical_bridge: br-ex
510 tenant_network_type: gre
514 - - mysql://neutron:unset@
516 - /ovs_neutron?charset=utf8
518 get_param: NeutronPassword
520 get_param: NeutronDnsmasqOptions
525 - - mysql://ceilometer:unset@
528 metering_secret: {get_param: CeilometerMeteringSecret}
530 get_param: CeilometerPassword
532 export_MIB: UCD-SNMP-MIB
534 get_param: SnmpdReadonlyUserName
535 readonly_user_password:
536 get_param: SnmpdReadonlyUserPassword
538 compute_driver: libvirt.LibvirtDriver
542 - - mysql://nova:unset@
545 default_floating_pool:
547 host: {get_input: controller_virtual_ip}
550 get_param: NovaPassword
552 host: {get_input: controller_virtual_ip}
554 get_param: RabbitUserName
556 get_param: RabbitPassword
563 - {server: {get_param: NtpServer}, fudge: "stratum 0"}
566 - vrrp_instance_name: VI_CONTROL
567 virtual_router_id: 51
569 get_param: ControlVirtualInterface
572 - ip: {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
574 get_param: ControlVirtualInterface
575 - vrrp_instance_name: VI_PUBLIC
576 virtual_router_id: 52
578 get_param: PublicVirtualInterface
581 - ip: {get_attr: [PublicVirtualIP, fixed_ips, 0, ip_address]}
583 get_param: PublicVirtualInterface
591 get_param: PublicVirtualInterface
595 ip: {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
597 get_param: ControlVirtualInterface
599 ip: {get_attr: [PublicVirtualIP, fixed_ips, 0, ip_address]}
601 get_param: PublicVirtualInterface
606 ip: {get_attr: [controller0, networks, ctlplane, 0]}
607 name: {get_attr: [controller0, show, name]}
609 - ip: {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
611 - name: keystone_admin
613 net_binds: &public_binds
614 - ip: {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
615 - ip: {get_attr: [PublicVirtualIP, fixed_ips, 0, ip_address]}
616 - name: keystone_public
618 net_binds: *public_binds
621 net_binds: *public_binds
624 net_binds: *public_binds
627 net_binds: *public_binds
630 net_binds: *public_binds
631 - name: glance_registry
633 net_binds: *public_binds
636 net_binds: *public_binds
637 - name: heat_cloudwatch
639 net_binds: *public_binds
642 net_binds: *public_binds
651 net_binds: *public_binds
652 - name: nova_metadata
654 net_binds: *public_binds
657 net_binds: *public_binds
658 - name: swift_proxy_server
660 net_binds: *public_binds
666 controllerPassthrough:
667 type: OS::Heat::StructuredConfig
669 group: os-apply-config
670 config: {get_input: passthrough_config}
672 type: OS::Nova::Server
675 get_param: controllerImage
677 get_param: ImageUpdatePolicy
679 get_param: OvercloudControlFlavor
684 user_data_format: SOFTWARE_CONFIG
686 depends_on: [controller0Deployment,controller0SSLDeployment,controller0Swift,controller0Passthrough]
687 type: OS::Heat::StructuredDeployment
689 config: {get_resource: allNodesConfig}
690 server: {get_resource: controller0}
691 controller0Deployment:
692 type: OS::Heat::StructuredDeployment
694 signal_transport: NO_SIGNAL
695 config: {get_resource: controllerConfig}
696 server: {get_resource: controller0}
698 bootstack_nodeid: {get_attr: [controller0, show, name]}
699 controller_host: {get_attr: [controller0, networks, ctlplane, 0]}
700 controller_virtual_ip:
701 {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
702 heat.watch_server_url:
706 - {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
708 heat.metadata_server_url:
712 - {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
714 heat.waitcondition_server_url:
718 - {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}
719 - ':8000/v1/waitcondition'
721 type: OS::Heat::StructuredConfig
724 completion-signal: {get_input: deploy_signal_id}
734 - - {get_attr: [NovaCompute0, networks, ctlplane, 0]}
735 - {get_attr: [NovaCompute0, show, name]}
738 - - {get_attr: [NovaCompute0, show, name]}
746 - - {get_attr: [controller0, networks, ctlplane, 0]}
747 - {get_attr: [controller0, show, name]}
750 - - {get_attr: [controller0, show, name]}
752 - {get_param: CloudName}
759 {get_attr: [controller0, show, name]}
760 controller0SSLDeployment:
761 type: OS::Heat::StructuredDeployment
763 config: {get_resource: SSLConfig}
764 server: {get_resource: controller0}
765 signal_transport: NO_SIGNAL
767 controller_host: {get_attr: [controller0, networks, ctlplane, 0]}
768 ssl_certificate: {get_param: SSLCertificate}
769 ssl_key: {get_param: SSLKey}
770 ssl_ca_certificate: {get_param: SSLCACertificate}
771 controller0Passthrough:
772 type: OS::Heat::StructuredDeployment
774 config: {get_resource: controllerPassthrough}
775 server: {get_resource: controller0}
776 signal_transport: NO_SIGNAL
778 passthrough_config: {get_param: ExtraConfig}
781 description: URL for the Overcloud Keystone service
786 - {get_attr: [ControlVirtualIP, fixed_ips, 0, ip_address]}