Ironic 安装和配置详解
1.Install Openstack With Neutron
2.Create and delete vm to test the setup
3.Configure existing setup for ironic
3.1.Configure ironic user in keystone
# keystone user-create --name=ironic --pass=IRONIC_PASSWORD --email=ironic@example.com
# keystone user-role-add --user=ironic --tenant=service --role=admin
3.2.Register ironic with keystone
# keystone service-create --name=ironic --type=baremetal --description="Ironic bare metal provisioning service"
# keystone endpoint-create --service-id=the_service_id_above --publicurl=http://IRONIC_NODE:6385 --internalurl=http://IRONIC_NODE:6385 -- adminurl=http://IRONIC_NODE:6385
3.3.Setup DataBase
# mysql -u root -p
mysql> CREATE DATABASE ironic CHARACTER SET utf8;
mysql> GRANT ALL PRIVILEGES ON ironic.* TO 'ironic'@'localhost' \
IDENTIFIED BY 'IRONIC_DBPASSWORD';
mysql> GRANT ALL PRIVILEGES ON ironic.* TO 'ironic'@'%' \
IDENTIFIED BY 'IRONIC_DBPASSWORD';
3.4.The Bare Metal Service is configured via its configuration file.
[DEFAULT]
enabled_drivers = pxe_ipmitool
debug=True
auth_strategy=keystone
log_dir=/var/log/ironic/
rabbit_host=<rabbitmq_server>
[api]
port=
[conductor]
[database]
connection = mysql://ironic:ironic@<database_server>/ironic?charset=utf8
[glance]
glance_host=<glance_server>
glance_port=
glance_protocol=http
glance_num_retries=
auth_strategy=keystone
[ipmi]
[keystone_authtoken]
signing_dir = /var/cache/ironic/api
admin_password = ironic
admin_user = ironic
admin_tenant_name = service
auth_uri = http://<keystone_server>:5000/v2.0
identity_uri = http://<keystone_server>:35357
auth_protocol = http
auth_port =
auth_host = <keystone_server>
admin_token = token123
[matchmaker_redis]
[matchmaker_ring]
[neutron]
url=http://<neutron_server>:9696
[pxe]
[rpc_notifier2]
[seamicro]
[ssh]
[ssl]
3.5.Create the Bare Metal Service database tables:
#ironic-dbsync --config-file /etc/ironic/ironic.conf create_schema
3.6.Restart the Bare Metal Service:
#service ironic-api restart
#service ironic-conductor restart
3.7.Configure the compute service
compute_scheduler_driver=nova.scheduler.filter_scheduler.FilterScheduler
compute_driver=ironic.nova.virt.ironic.IronicDriver
scheduler_host_manager=ironic.nova.scheduler.ironic_host_manager.IronicHostManager
ram_allocation_ratio=1.0
reserved_host_memory_mb=
[ironic] # Ironic keystone admin name
admin_username=ironic #Ironic keystone admin password.
admin_password=ironic # keystone API endpoint
admin_url=http://<keystone_server>:35357/v2.0 # Ironic keystone tenant name.
admin_tenant_name=service # URL for Ironic API endpoint.
api_endpoint=http://<ironic_api_server>:6385/v1
3.8.Restart Nova services
#service nova-scheduler restart
#service nova-compute restart
3.9.Configure Neutron
3.9.1.Edit /etc/neutron/plugins/ml2/ml2_conf.ini and modify these:
[ml2]
type_drivers = flat
tenant_network_types = flat
mechanism_drivers = openvswitch [ml2_type_flat]
flat_networks = physnet1 [securitygroup]
firewall_driver = neutron.agent.linux.iptables_firewall.OVSHybridIptablesFirewallDriver
enable_security_group = True [ovs]
network_vlan_ranges = physnet1
bridge_mappings = physnet1:br-em2
# Replace eth2 with the interface on the neutron node which you
# are using to connect to the bare metal server
3.9.2.Add the integration bridge to Open vSwitch:
#ovs-vsctl add-br br-int
3.9.3.Create the br-eth2 network bridge to handle communication between the OpenStack (and Bare Metal services) and the bare metal nodes using eth2. Replace eth2 with the interface on the neutron node which you are using to connect to the Bare Metal Service:
# ovs-vsctl add-br br-em2
# ovs-vsctl add-port br-em2 em2
3.9.4.Restart the Open vSwitch agent:
#service neutron-plugin-openvswitch-agent restart
#ovs-vsctl show
Bridge br-ex
Port "em1"
Interface "em1"
Port br-ex
Interface br-ex
type: internal
Bridge br-int
Port "int-br-em2"
Interface "int-br-em2"
Port br-int
Interface br-int
type: internal
Bridge "br-em2"
Port "br-em2"
Interface "br-em2"
type: internal
Port "phy-br-em2"
Interface "phy-br-em2"
Port "em2"
Interface "em2"
ovs_version: "2.0.1"
3.9.5.Create the flat network on which you are going to launch the instances:
#neutron net-create --tenant-id $TENANT_ID sharednet1 --shared --provider:network_type flat --provider:physical_network physnet1
3.9.6.Create subnet
#neutron subnet-create sharednet1 --gateway <GateWay> <Network_CIDR> --name subnet1
3.10.Bare Metal provisioning requires two sets of images: the deploy images and the user images.
The disk-image-builder can be used to create images required for deployment and the actual OS which the user is going to run.
3.10.1.Clone the project and run the subsequent commands from the project directory:
#git clone https://github.com/openstack/diskimage-builder.git
#cd diskimage-builder
3.10.2.Build the image your users will run (Ubuntu image has been taken as an example):
#bin/disk-image-create -u ubuntu -o my-image
The above command creates my-image.qcow2 file. If you want to use Fedora image, replace ubuntu with fedora in the above command.
3.10.3.Extract the kernel & ramdisk:
#bin/disk-image-get-kernel -d ./ -o my -i $(pwd)/my-image.qcow2
The above command creates my-vmlinuz and my-initrd files. These images are used while deploying the actual OS the users will run, my-image in our case.
3.10.4.Build the deploy image:
#bin/ramdisk-image-create ubuntu deploy-ironic -o my-deploy-ramdisk
The above command creates my-deploy-ramdisk.kernel and my-deploy-ramdisk.initramfs files which are used initially for preparing the server (creating disk partitions) before the actual OS deploy. If you want to use a Fedora image, replace ubuntu with fedora in the above command.
3.10.5.Add the user images to glance
Load all the images created in the below steps into Glance, and note the glance image UUIDs for each one as it is generated.
3.10.6.Add the kernel and ramdisk images to glance:
#glance image-create --name my-kernel --public --disk-format aki < my-vmlinuz
3.10.7.Store the image uuid obtained from the above step as $MY_VMLINUZ_UUID.
#glance image-create --name my-ramdisk --public --disk-format ari < my-initrd
Store the image UUID obtained from the above step as $MY_INITRD_UUID.
3.10.8.Add the my-image to glance which is going to be the OS that the user is going to run. Also associate the above created images with this OS image.
#glance image-create --name my-image --public --disk-format qcow2 --container-format bare --property kernel_id=$MY_VMLINUZ_UUID --property ramdisk_id=$MY_INITRD_UUID < my-image
3.10.9.Add the deploy images to glance
Add the my-deploy-ramdisk.kernel and my-deploy-ramdisk.initramfs images to glance:
# glance image-create --name deploy-vmlinuz --public --disk-format aki < my-deploy-ramdisk.kernel
Store the image UUID obtained from the above step as $DEPLOY_VMLINUZ_UUID.
# glance image-create --name deploy-initrd --public --disk-format ari < my-deploy-ramdisk.initramfs
Store the image UUID obtained from the above step as $DEPLOY_INITRD_UUID.
3.11.You’ll need to create a special Bare Metal flavor in Nova.
The flavor is mapped to the bare metal server through the hardware specifications.
Change these to match your hardware
RAM_MB=
CPU=
DISK_GB=
ARCH={i686|x86_64}
3.11.1.Create the baremetal flavor by executing the following command:
#nova flavor-create my-baremetal-flavor auto $RAM_MB $DISK_GB $CPU
#nova flavor-key my-baremetal-flavor set cpu_arch=$ARCH "baremetal:deploy_kernel_id"=$DEPLOY_VMLINUZ_UUID "baremetal:deploy_ramdisk_id"=$DEPLOY_INITRD_UUID
3.12. Create node in ironic
# ironic node-create -d pxe_ipmitool -i ipmi_address=<ipmi_address> -i ipmi_username=<ipmi_username> -i ipmi_password=<ipmi_password>
# ironic node-update $NODE_UUID add driver_info/pxe_deploy_kernel=$DEPLOY_VMLINUZ_UUID driver_info/pxe_deploy_ramdisk=$DEPLOY_INITRD_UUID
# ironic port-create -n <node_id> -a<mac_id of server>
3.13.If you will be using PXE, it needs to be set up on the Bare Metal Service node(s) where ironic-conductor is running.
Make sure the tftp root directory exist and can be written to by the user the ironic-conductor is running as. For example:
#sudo mkdir -p /tftpboot
#sudo chown -R ironic -p /tftpboot
Install tftp server and the syslinux package with the PXE boot images:
Ubuntu:
#sudo apt-get install tftpd-hpa syslinux syslinux-common
Fedora/RHEL:
#sudo yum install tftp-server syslinux-tftpboot
#Setup tftp server to serve /tftpboot.
Copy the PXE image to /tftpboot. The PXE image might be found at [1]:
Ubuntu:
#sudo cp /usr/lib/syslinux/pxelinux. /tftpboot
#Go to /etc/defaults/tftp-hpa remove everything and paste following
TFTP_USERNAME="tftp"
TFTP_DIRECTORY="/tftpboot"
TFTP_ADDRESS="[::]:69"
#TFTP_OPTIONS="--secure"
TFTP_OPTIONS="--map-file /tftpboot/map-file -v -v -v -v"
To be able to access absolute path on tftp do following steps
Create a map file in /tftpboot/map-file
r ^([^/]) /tftpboot/\
tftp service should be running like below
/usr/sbin/in.tftpd --listen --user tftp --address [::]: --map-file /tftpboot/map-file -v -v -v -v /tftpboot
3.14.IPMI support
Note that certain distros, notably Mac OS X and SLES, install openipmi instead of ipmitool by default. THIS DRIVER IS NOT COMPATIBLE WITH openipmi AS IT RELIES ON ERROR HANDLING OPTIONS NOT PROVIDED BY THIS TOOL.
Check that you can connect to and authenticate with the IPMI controller in your bare metal server by using ipmitool:
ipmitool -I lanplus -H <ip-address> -U <username> -P <password> chassis power status
3.15.Test Setup with nova
nova boot --flavor baremetal --key-name mykey --image my-image --nic net-id=d3b9b3c5-378e-493b--22c17433c23a bm1
3.16. Debug commands
ironic node-update 0d78301c-2d78-42e0-b14d-4a031e5a7cd4 remove instance_uuid
3.16.2.Always Check the node is not in maintenance mode if it is in maintenance mode then remove it
ironic node-update 0d78301c-2d78-42e0-b14d-4a031e5a7cd4 replace maintenance=False
Ironic 安装和配置详解的更多相关文章
- libCURL开源库在VS2010环境下编译安装,配置详解
libCURL开源库在VS2010环境下编译安装,配置详解 转自:http://my.oschina.net/u/1420791/blog/198247 http://blog.csdn.net/su ...
- Nginx安装及配置详解【转】
nginx概述 nginx是一款自由的.开源的.高性能的HTTP服务器和反向代理服务器:同时也是一个IMAP.POP3.SMTP代理服务器:nginx可以作为一个HTTP服务器进行网站的发布处理,另外 ...
- [转帖]Nginx安装及配置详解 From https://www.cnblogs.com/zhouxinfei/p/7862285.html
Nginx安装及配置详解 nginx概述 nginx是一款自由的.开源的.高性能的HTTP服务器和反向代理服务器:同时也是一个IMAP.POP3.SMTP代理服务器:nginx可以作为一个HTTP ...
- nginx在linux上的安装与配置详解(一)
Nginx的安装与配置详解 (1)nginx简介 nginx概念: Nginx是一款轻量级的Web 服务器/反向代理服务器及电子邮件(IMAP/POP3)代理服务器,并在一个BSD-like ...
- Linux中Nginx安装与配置详解
转载自:http://www.linuxidc.com/Linux/2016-08/134110.htm Linux中Nginx安装与配置详解(CentOS-6.5:nginx-1.5.0). 1 N ...
- Tomcat安装及配置详解
Tomcat安装及配置详解 一,Tomcat简介 Tomcat 服务器是一个免费的开放源代码的Web 应用服务器,Tomcat是Apache 软件基金会(Apache Software Found ...
- OpenVPN CentOS7 安装部署配置详解
一 .概念相关 1.vpn 介绍 vpn 虚拟专用网络,是依靠isp和其他的nsp,在公共网络中建立专用的数据通信网络的技术.在vpn中任意两点之间的链接并没有传统的专网所需的端到端的物理链路,而是利 ...
- Linux NFS服务器的安装与配置详解
一.NFS服务简介 NFS是Network File System(网络文件系统).主要功能是通过网络让不同的服务器之间可以共享文件或者目录.NFS客户端一般是应用服务器(比如web,负载均衡等),可 ...
- Hive安装与配置详解
既然是详解,那么我们就不能只知道怎么安装hive了,下面从hive的基本说起,如果你了解了,那么请直接移步安装与配置 hive是什么 hive安装和配置 hive的测试 hive 这里简单说明一下,好 ...
随机推荐
- Python安装pycurl失败,及解决办法
Centos安装pycurl centos 安装pycurl yum install python-devel curl-devel pip3 install pycurl Mac(老版本)安装pyc ...
- idea 实现热部署
Idea实现热部署需要以下几步 1.open module setting,设置path,使output path指向存放实时编译class的文件夹 2.设置Artifacts,选择exploded选 ...
- IE11 不能正常方法网页
由于将IE11升级到了 11 之前的网站无法正常使用, 如果是开发人员碰到之问题,使用了微软的asp.net 控件,那么将服务器的.net framework 升级到 4.5 http://www.m ...
- composer安装与应用
操作环境:centos 6.5+32bit 1. 建立项目目录 mkdir test cd test 2. 在当前目录下安装: $ curl -sS https://getcomposer.org/i ...
- <第一次买基金就赚钱>读书笔记
基金,是指专门用于某种特定目的的并进行独立核算的资金 基金的开放日指基金契约规定的投资者可以在销售网点办理基金申购.赎回交易业务的日期 基金资产总值是指一个基金所拥有的资产(包括现金.股票.债券和其他 ...
- Tomcat性能优化(三) Executor配置
http://hello-nick-xu.iteye.com/blog/2113853 http://blog.chinaunix.net/uid-12115233-id-3358004.html
- NLP-训练个model出来写诗
2018年新年,腾讯整出来个ai春联很吸引眼球,刚好有个需求让我看下能不能训出来个model来写出诗经一样的文风,求助了下小伙伴,直接丢过来2个github,原话是: 查了一下诗经一共38000个字, ...
- Java编程的逻辑 (38) - 剖析ArrayList
本系列文章经补充和完善,已修订整理成书<Java编程的逻辑>,由机械工业出版社华章分社出版,于2018年1月上市热销,读者好评如潮!各大网店和书店有售,欢迎购买,京东自营链接:http:/ ...
- SQLServer2005重建索引前后对比【转】
在做维护项目的时,我们经常会遇到索引维护的问题,通过语句,我们就可以判断某个表的索引是否需要重建. 执行一下语句:先分析表的索引 分析表的索引建立情况:DBCC showcontig('Table') ...
- 【javascript】js 检验密码强度
最近一直在做通行证项目,里面的注册模块中输入密码需要显示密码强度(低中高).今天就把做的效果给大家分享下,代码没有网上搜索的那么复杂,能够满足一般的需求. html 代码如下: <!DOCTYP ...