c4science/8eede36c5215master
c4science/
8eede36c5215master
/
/
README.md
README.md
c4science.ch
- Ansible playbook for git infrastructure on openstack
INSTALL
- Dependencies. You need ansible >= 2.0
cd ~ git clone https://github.com/ansible/ansible.git cd ansible git submodule update --init --recursive sudo python setup.py install sudo pip install shade python-novaclient
- Repo
git clone repourl c4science.ch cd c4science.ch git submodule update --init --recursive
USAGE
- How to use,
make status #list instances make up #create instances make clean #destroy instances
- You must configure SSH so the connections go trough the jump server
~/.ssh/config
Host 86.119.28.215 HostName c4science.ch-jump01 User centos StrictHostKeyChecking no UserKnownHostsFile=/dev/null Host 10.0.* User centos ProxyCommand ssh c4science.ch-jump01 nc %h %p StrictHostKeyChecking no UserKnownHostsFile=/dev/null
echo '86.119.28.215 c4science.ch-jump01' >> /etc/hosts
- You must create floating IPs
- One on region_main and put it in external_ip in vars/main.yml
- One on region_back and put it in backup_ip in vars/main.yml
- You must create a Switch Engines bucket
./s3cmd mb s3://phabricator
- You have to copy ssh hostkeys for app servers, so they are all the same
rsync -av c4science.ch-app01:/etc/ssh/ssh_host_*_key /tmp/ rsync -av /tmp/ssh_host_*_key c4science.ch-app0X:/etc/ssh/ ssh c4science.ch-app0X 'service sshd_phabricator restart'
- Create a ssh-key without password in app00 and copy the public key to the backup server (root user)
Build the Jenkins slave docker image
- On a slave
docker pull evarga/jenkins-slave docker run -i -t evarga/jenkins-slave /bin/bash
- On the docker image
apt-get update apt-get install bash-completion build-essential cmake git subversion mercurial apt-get clean mkdir /home/jenkins/workspace chown jenkins.jenkins /home/jenkins/workspace exit
- On a slave
docker images docker commit IMAGEID jenkins-1 docker rm $(docker ps -a -q)
SCALING UP
Database
- Add a database node in tasks/create-instances.yml by an numbered item both in the os_server and add_host actions
- Patch example
diff --git a/tasks/create-instances.yml b/tasks/create-instances.yml index 3037cc0..a6ac097 100644 --- a/tasks/create-instances.yml +++ b/tasks/create-instances.yml @@ -79,6 +79,7 @@ - 0 - 1 - 2 + - 3 - add_host: name: "{{ openstackdb.results[item].openstack.private_v4 }}" @@ -89,6 +90,7 @@ - 0 - 1 - 2 + - 3 - name: Create Monitoring instance os_server:
- Run init playbook: make init
- Check that the node joined galera replication: mysql -e "SHOW STATUS LIKE 'wsrep_cluster_size';"
- Even number of dbs instances is not recommended, you can use the arbitrator to have one more node using make arbitratoron the monit node
Web/storage
- Add an app node in tasks/create-instances.yml by an numbered item both in the os_server and add_host actions
- Run init playbook: make init
- Check that gluster is working: gluster volume info
Scaling down
- Stop the instance with: nova stop <instanceid>
- Remove the instance from the configuration file tasks/create-instance.yml
- Run init playbook: make init
- Eventually delete the instance: nova delete <instanceid>
- The volume is still available, and can be reused
TODO
- Shibboleth auth
- Haproxy redundancy using keepalived https://raymii.org/s/articles/Building_HA_Clusters_With_Ansible_and_Openstack.html
TEST
- Replication information
mysql -e "SHOW STATUS LIKE 'wsrep_cluster%';"
- Some benchmarking examples,
## GIT Read cd /tmp parallel -j 10 git clone ssh://git@c4science.ch:2222/diffusion/TEST/test.git \ -- $(for i in $(seq 20); do echo test$i; done) 1> /dev/null
GIT Write sequential
cd /tmp git clone ssh://git@c4science.ch:2222/diffusion/TEST/test.git for i in {1..10}; do time sh -c "echo 'test' >> README.md; git commit -am 'test'; git push" &>/dev/null done
## Conduit API (create repo from remote) REPO=$(echo {A..Z}) # Create some repositories for i in $REPO; do echo "{\"name\":\"test\", \"callsign\": \"TEST$i\", \"vcs\": \"git\", \"uri\": \"https://git.epfl.ch/repo/repo-test.git\"}" \ | arc call-conduit repository.create done # Clone them (doesnt work) #cd /tmp #for i in $REPO; do # git clone ssh://git@c4science.ch:2222/diffusion/TEST$i/test.git test$i #done # Test commit and push #parallel -i -j 10 sh -c 'cd test{}; # echo "TEST" > README.md; # git commit -am "test"; # git push' -- $(echo $REPO)
## GIT test lock parallel -i -j 5 sh -c 'cd test{}; git pull --no-edit; git commit -am "merge conflicts"; echo "* TEST" >> README.md; git commit -am "test"; git push || git pull --no-edit; git push' -- $(seq 50)
## HTTP ab -C phsid:cz27psxxn2zjxtkw4v2tokhbjy4ix2lrifj6exm3 -C phusr:admin -n 1000 \ -c 10 http://86.119.28.215/diffusion/TEST/repository/master/
c4science · Help