Merge "Document IPv6 syntax for GlanceFilePcmkDevice"
[apex-tripleo-heat-templates.git] / puppet / hieradata / controller.yaml
1 # Hiera data here applies to all controller nodes
2
3 nova::api::enabled: true
4 nova::conductor::enabled: true
5 nova::consoleauth::enabled: true
6 nova::vncproxy::enabled: true
7 nova::scheduler::enabled: true
8
9 # gnocchi
10 gnocchi::db::sync::extra_opts: '--skip-storage'
11 gnocchi::storage::swift::swift_user: 'service:gnocchi'
12 gnocchi::storage::swift::swift_auth_version: 2
13 gnocchi::statsd::resource_id: '0a8b55df-f90f-491c-8cb9-7cdecec6fc26'
14 gnocchi::statsd::user_id: '27c0d3f8-e7ee-42f0-8317-72237d1c5ae3'
15 gnocchi::statsd::project_id: '6c38cd8d-099a-4cb2-aecf-17be688e8616'
16 gnocchi::statsd::flush_delay: 10
17 gnocchi::statsd::archive_policy_name: 'low'
18
19 # rabbitmq
20 rabbitmq::delete_guest_user: false
21 rabbitmq::wipe_db_on_cookie_change: true
22 rabbitmq::port: '5672'
23 rabbitmq::package_source: undef
24 rabbitmq::repos_ensure: false
25 rabbitmq_environment:
26   RABBITMQ_NODENAME: "rabbit@%{::hostname}"
27   RABBITMQ_SERVER_ERL_ARGS: '"+K true +A30 +P 1048576 -kernel inet_default_connect_options [{nodelay,true},{raw,6,18,<<5000:64/native>>}] -kernel inet_default_listen_options [{raw,6,18,<<5000:64/native>>}]"'
28 rabbitmq_kernel_variables:
29   inet_dist_listen_min: '35672'
30   inet_dist_listen_max: '35672'
31 rabbitmq_config_variables:
32   tcp_listen_options: '[binary, {packet, raw}, {reuseaddr, true}, {backlog, 128}, {nodelay, true}, {exit_on_close, false}, {keepalive, true}]'
33   cluster_partition_handling: 'pause_minority'
34
35 mongodb::server::replset: tripleo
36 mongodb::server::journal: false
37
38 redis::port: 6379
39 redis::sentinel::master_name: "%{hiera('bootstrap_nodeid')}"
40 redis::sentinel::redis_host: "%{hiera('bootstrap_nodeid_ip')}"
41 redis::sentinel::notification_script: '/usr/local/bin/redis-notifications.sh'
42
43 # keystone
44 keystone::roles::admin::email: 'root@localhost'
45
46 # service tenant
47 glance::api::keystone_tenant: 'service'
48 aodh::api::keystone_tenant: 'service'
49 glance::registry::keystone_tenant: 'service'
50 neutron::server::auth_tenant: 'service'
51 neutron::agents::metadata::auth_tenant: 'service'
52 neutron::agents::l3::router_delete_namespaces: True
53 neutron::agents::dhcp::dhcp_delete_namespaces: True
54 cinder::api::keystone_tenant: 'service'
55 swift::proxy::authtoken::admin_tenant_name: 'service'
56 ceilometer::api::keystone_tenant: 'service'
57 gnocchi::api::keystone_tenant: 'service'
58 heat::keystone_tenant: 'service'
59 sahara::admin_tenant_name: 'service'
60
61 # keystone
62 keystone::cron::token_flush::maxdelay: 3600
63 keystone::roles::admin::service_tenant: 'service'
64 keystone::roles::admin::admin_tenant: 'admin'
65 keystone::cron::token_flush::destination: '/dev/null'
66 keystone::config::keystone_config:
67   DEFAULT/secure_proxy_ssl_header:
68     value: 'HTTP_X_FORWARDED_PROTO'
69   ec2/driver:
70     value: 'keystone.contrib.ec2.backends.sql.Ec2'
71 keystone::service_name: 'httpd'
72 keystone::wsgi::apache::ssl: false
73
74 #swift
75 swift::proxy::pipeline:
76   - 'catch_errors'
77   - 'healthcheck'
78   - 'cache'
79   - 'ratelimit'
80   - 'tempurl'
81   - 'formpost'
82   - 'authtoken'
83   - 'keystone'
84   - 'staticweb'
85   - 'proxy-logging'
86   - 'proxy-server'
87
88 swift::proxy::account_autocreate: true
89
90 # glance
91 glance::api::pipeline: 'keystone'
92 glance::api::show_image_direct_url: true
93 glance::registry::pipeline: 'keystone'
94 glance::backend::swift::swift_store_create_container_on_put: true
95 glance_file_pcmk_directory: '/var/lib/glance/images'
96
97 # neutron
98 neutron::server::sync_db: true
99 neutron::agents::dhcp::dnsmasq_config_file: /etc/neutron/dnsmasq-neutron.conf
100
101 # nova
102 nova::notify_on_state_change: 'vm_and_task_state'
103 nova::api::default_floating_pool: 'public'
104 nova::api::sync_db_api: true
105 nova::scheduler::filter::ram_allocation_ratio: '1.0'
106 nova::cron::archive_deleted_rows::hour: '*/12'
107 nova::cron::archive_deleted_rows::destination: '/dev/null'
108 nova::notification_driver: messaging
109
110 # ceilometer
111 ceilometer::agent::auth::auth_endpoint_type: 'internalURL'
112
113 # cinder
114 cinder::scheduler::scheduler_driver: cinder.scheduler.filter_scheduler.FilterScheduler
115 cinder::cron::db_purge::destination: '/dev/null'
116 cinder::host: hostgroup
117 cinder_user_enabled_backends: []
118
119 # heat
120 heat::engine::configure_delegated_roles: false
121 heat::engine::trusts_delegated_roles: []
122 heat::instance_user: ''
123 heat::cron::purge_deleted::age: 30
124 heat::cron::purge_deleted::age_type: 'days'
125 heat::cron::purge_deleted::maxdelay: 3600
126 heat::cron::purge_deleted::destination: '/dev/null'
127 heat::keystone::domain::domain_name: 'heat_stack'
128 heat::keystone::domain::domain_admin: 'heat_stack_domain_admin'
129 heat::keystone::domain::domain_admin_email: 'heat_stack_domain_admin@localhost'
130
131 # pacemaker
132 pacemaker::corosync::cluster_name: 'tripleo_cluster'
133 pacemaker::corosync::manage_fw: false
134 pacemaker::resource_defaults::defaults:
135   resource-stickiness: { value: INFINITY }
136 corosync_token_timeout: 10000
137
138 # horizon
139 horizon::cache_backend: django.core.cache.backends.memcached.MemcachedCache
140 horizon::django_session_engine: 'django.contrib.sessions.backends.cache'
141 horizon::vhost_extra_params:
142   add_listen: false
143   priority: 10
144   access_log_format: '%a %l %u %t \"%r\" %>s %b \"%%{}{Referer}i\" \"%%{}{User-Agent}i\"'
145
146 # mysql
147 mysql::server::manage_config_file: true
148
149
150 tripleo::loadbalancer::keystone_admin: true
151 tripleo::loadbalancer::keystone_public: true
152 tripleo::loadbalancer::neutron: true
153 tripleo::loadbalancer::cinder: true
154 tripleo::loadbalancer::glance_api: true
155 tripleo::loadbalancer::glance_registry: true
156 tripleo::loadbalancer::nova_ec2: true
157 tripleo::loadbalancer::nova_osapi: true
158 tripleo::loadbalancer::nova_metadata: true
159 tripleo::loadbalancer::nova_novncproxy: true
160 tripleo::loadbalancer::mysql: true
161 tripleo::loadbalancer::redis: true
162 tripleo::loadbalancer::sahara: true
163 tripleo::loadbalancer::swift_proxy_server: true
164 tripleo::loadbalancer::ceilometer: true
165 tripleo::loadbalancer::aodh: true
166 tripleo::loadbalancer::gnocchi: true
167 tripleo::loadbalancer::heat_api: true
168 tripleo::loadbalancer::heat_cloudwatch: true
169 tripleo::loadbalancer::heat_cfn: true
170 tripleo::loadbalancer::horizon: true
171
172 controller_classes: []
173 # firewall
174 tripleo::firewall::firewall_rules:
175   '101 mongodb_config':
176     port: 27019
177   '102 mongodb_sharding':
178     port: 27018
179   '103 mongod':
180     port: 27017
181   '104 mysql galera':
182     port:
183       - 873
184       - 3306
185       - 4444
186       - 4567
187       - 4568
188       - 9200
189   '105 ntp':
190     port: 123
191     proto: udp
192   '106 vrrp':
193     proto: vrrp
194   '107 haproxy stats':
195     port: 1993
196   '108 redis':
197     port:
198       - 6379
199       - 26379
200   '109 rabbitmq':
201     port:
202       - 5672
203       - 35672
204   '110 ceph':
205     port:
206       - 6789
207       - '6800-6810'
208   '111 keystone':
209     port:
210       - 5000
211       - 13000
212       - 35357
213       - 13357
214   '112 glance':
215     port:
216       - 9292
217       - 9191
218       - 13292
219   '113 nova':
220     port:
221       - 6080
222       - 13080
223       - 8773
224       - 3773
225       - 8774
226       - 13774
227       - 8775
228   '114 neutron server':
229     port:
230       - 9696
231       - 13696
232   '115 neutron dhcp input':
233     proto: 'udp'
234     port: 67
235   '116 neutron dhcp output':
236     proto: 'udp'
237     chain: 'OUTPUT'
238     port: 68
239   '118 neutron vxlan networks':
240     proto: 'udp'
241     port: 4789
242   '119 cinder':
243     port:
244       - 8776
245       - 13776
246   '120 iscsi initiator':
247     port: 3260
248   '121 memcached':
249     port: 11211
250   '122 swift proxy':
251     port:
252       - 8080
253       - 13808
254   '123 swift storage':
255     port:
256       - 873
257       - 6000
258       - 6001
259       - 6002
260   '124 ceilometer':
261     port:
262       - 8777
263       - 13777
264   '125 heat':
265     port:
266       - 8000
267       - 13800
268       - 8003
269       - 13003
270       - 8004
271       - 13004
272   '126 horizon':
273     port:
274       - 80
275       - 443
276   '127 snmp':
277     port: 161
278     proto: 'udp'
279   '128 aodh':
280     port:
281       - 8042
282       - 13042
283   '129 gnocchi-api':
284     port:
285       - 8041
286       - 13041