summaryrefslogtreecommitdiffstats
path: root/cns-libs/cnslibs/common/cns_libs.py
blob: 5b9a30270a447c9674398e99895b2fbc2700fa3d (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
396
397
398
399
400
401
402
403
404
405
406
407
408
409
410
411
412
413
414
415
416
417
418
419
420
421
422
423
424
425
426
427
428
429
430
431
432
433
434
435
436
437
438
439
440
441
442
443
444
445
446
447
448
449
450
451
452
453
454
455
456
457
458
459
460
461
462
463
464
465
466
467
468
469
470
471
472
473
474
475
476
477
478
479
480
481
482
483
484
485
486
487
488
489
490
491
492
493
494
495
496
497
498
499
500
501
502
503
504
505
506
507
508
509
510
511
512
513
514
515
516
517
518
519
520
521
522
523
524
525
526
527
528
529
530
531
532
533
534
535
536
537
538
539
540
541
from cnslibs.common.exceptions import (
    ExecutionError,
    NotSupportedException)
from cnslibs.common.openshift_ops import (
    get_ocp_gluster_pod_names,
    oc_rsh,
    oc_version)
from cnslibs.common.waiter import Waiter
from glusto.core import Glusto as g
import yaml


MASTER_CONFIG_FILEPATH = "/etc/origin/master/master-config.yaml"


def edit_master_config_file(hostname, routingconfig_subdomain):
    '''
     This function edits the /etc/origin/master/master-config.yaml file
     Args:
         hostname (str): hostname on which want to edit
                         the master-config.yaml file
         routingconfig_subdomain (str): routing config subdomain url
                                        ex: cloudapps.mystorage.com
     Returns:
         bool: True if successful,
               otherwise False
    '''
    try:
        conn = g.rpyc_get_connection(hostname, user="root")
        if conn is None:
            g.log.error("Failed to get rpyc connection of node %s"
                        % hostname)
            return False
        with conn.builtin.open(MASTER_CONFIG_FILEPATH, 'r') as f:
            data = yaml.load(f)
            add_allow = 'AllowAllPasswordIdentityProvider'
            data['oauthConfig']['identityProviders'][0]['provider'][
                'kind'] = add_allow
            data['routingConfig']['subdomain'] = routingconfig_subdomain
        with conn.builtin.open(MASTER_CONFIG_FILEPATH, 'w+') as f:
            yaml.dump(data, f, default_flow_style=False)
    except Exception as err:
        raise ExecutionError("failed to edit master-config.yaml file "
                             "%s on %s" % (err, hostname))
    finally:
        g.rpyc_close_connection(hostname, user="root")

    g.log.info("successfully edited master-config.yaml file %s" % hostname)
    return True


def setup_router(hostname, router_name, timeout=1200, wait_step=60):
    '''
     This function sets up router
     Args:
         hostname (str): hostname on which we need to
                         setup router
         router_name (str): router name
         timeout (int): timeout value,
                        default value is 1200 sec
         wait_step( int): wait step,
                          default value is 60 sec
     Returns:
         bool: True if successful,
               otherwise False
    '''
    cmd = ("oc get pods | grep '%s'| grep -v deploy | "
           "awk '{print $3}'" % router_name)
    ret, out, err = g.run(hostname, cmd, "root")
    if ret != 0:
        g.log.error("failed to execute cmd %s" % cmd)
        return False
    output = out.strip().split("\n")[0]
    if "No resources found" in output or output == "":
        g.log.info("%s not present creating it" % router_name)
        cmd = "oadm policy add-scc-to-user privileged -z router"
        ret, out, err = g.run(hostname, cmd, "root")
        if ret != 0:
            g.log.error("failed to execute cmd %s" % cmd)
            return False
        cmd = "oadm policy add-scc-to-user privileged -z default"
        ret, out, err = g.run(hostname, cmd, "root")
        if ret != 0:
            g.log.error("failed to execute cmd %s" % cmd)
            return False
        cmd = "oadm router %s --replicas=1" % router_name
        ret, out, err = g.run(hostname, cmd, "root")
        if ret != 0:
            g.log.error("failed to execute cmd %s" % cmd)
            return False
        router_flag = False
        for w in Waiter(timeout, wait_step):
            cmd = "oc get pods | grep '%s'|  awk '{print $3}'" % router_name
            ret, out, err = g.run(hostname, cmd, "root")
            if ret != 0:
                g.log.error("failed to execute cmd %s" % cmd)
                break
            status = out.strip().split("\n")[0].strip()
            if status == "ContainerCreating" or status == "Pending":
                g.log.info("container creating for router %s sleeping for"
                           " %s seconds" % (router_name, wait_step))
                continue
            elif status == "Running":
                router_flag = True
                g.log.info("router %s is up and running" % router_name)
                return router_flag
            elif status == "Error":
                g.log.error("error while setting up router %s" % (
                                router_name))
                return router_flag
            else:
                g.log.error("%s router pod has different status - "
                            "%s" % (router_name, status))
                return router_flag
        if w.expired:
            g.log.error("failed to setup '%s' router in "
                        "%s seconds" % (router_name, timeout))
            return False
    else:
        g.log.info("%s already present" % router_name)
    return True


def update_router_ip_dnsmasq_conf(hostname, router_name, router_domain):
    '''
     This function updates the router-ip in /etc/dnsmasq.conf file
     Args:
         hostname (str): hostname on which we need to
                         edit dnsmaq.conf file
         router_name (str): router name to find its ip
     Returns:
         bool: True if successful,
               otherwise False
    '''
    cmd = ("oc get pods -o wide | grep '%s'| grep -v deploy | "
           "awk '{print $6}' | cut -d ':' -f 1") % router_name
    ret, out, err = g.run(hostname, cmd, "root")
    if ret != 0:
        g.log.error("failed to execute cmd %s" % cmd)
        return False
    router_ip = out.strip().split("\n")[0].strip()
    data_to_write = "address=/.%s/%s" % (router_domain, router_ip)
    try:
        conn = g.rpyc_get_connection(hostname, user="root")
        if conn is None:
            g.log.error("Failed to get rpyc connection of node %s"
                        % hostname)
            return False

        update_flag = False
        for line in conn.modules.fileinput.input(
                '/etc/dnsmasq.conf', inplace=True):
            if router_domain in line:
                conn.modules.sys.stdout.write(line.replace(line,
                                              data_to_write))
                update_flag = True
            else:
                conn.modules.sys.stdout.write(line)
        if not update_flag:
            with conn.builtin.open('/etc/dnsmasq.conf', 'a+') as f:
                f.write(data_to_write + '\n')
    except Exception as err:
        g.log.error("failed to update router-ip in dnsmasq.conf %s" % err)
        return False
    finally:
        g.rpyc_close_connection(hostname, user="root")
    g.log.info("sucessfully updated router-ip in dnsmasq.conf")
    return True


def update_nameserver_resolv_conf(hostname, position="first_line"):
    '''
     This function updates namserver 127.0.0.1
     at first line in  /etc/resolv.conf
     Args:
         hostname (str): hostname on which we need to
                         edit resolv.conf
         position (str): where to add nameserver
                         ex: EOF, it defaults to first line
     Returns:
         bool: True if successful,
               otherwise False
    '''
    try:
        conn = g.rpyc_get_connection(hostname, user="root")
        if conn is None:
            g.log.error("Failed to get rpyc connection of node %s"
                        % hostname)
            return False

        if position == "EOF":
            update_flag = False
            with conn.builtin.open("/etc/resolv.conf", "r+") as f:
                for line in f:
                    if "nameserver" in line and "127.0.0.1" in line:
                        update_flag = True
                        break
                if not update_flag:
                    f.write("nameserver 127.0.0.1\n")
        else:
            for linenum, line in enumerate(conn.modules.fileinput.input(
                    '/etc/resolv.conf', inplace=True)):
                if linenum == 0 and "127.0.0.1" not in line:
                    conn.modules.sys.stdout.write("nameserver 127.0.0.1\n")
                conn.modules.sys.stdout.write(line)
    except Exception as err:
        g.log.error("failed to update nameserver in resolv.conf %s" % err)
        return False
    finally:
        g.rpyc_close_connection(hostname, user="root")
    g.log.info("sucessfully updated namserver in resolv.conf")
    return True


def edit_multipath_conf_file(hostname):
    '''
     This function edits the /etc/multipath.conf
     Args:
         hostname (str): hostname on which we want to edit
                         the /etc/multipath.conf file
     Returns:
         bool: True if successful,
               otherwise False
    '''
    try:
        conn = g.rpyc_get_connection(hostname, user="root")
        if conn is None:
            g.log.error("Failed to get rpyc connection of node %s"
                        % hostname)
            return False

        edit_flag = False
        file1 = conn.builtin.open("/etc/multipath.conf", "r+")
        for line1 in file1.readlines():
            if "LIO iSCSI" in line1:
                g.log.info("/etc/multipath.conf file already "
                           "edited on %s" % hostname)
                edit_flag = True
        if not edit_flag:
            file1 = conn.builtin.open("/etc/multipath.conf", "a+")
            with open("cnslibs/common/sample-multipath.txt") as file2:
                for line2 in file2:
                    file1.write(line2)
    except Exception as err:
        g.log.error("failed to edit /etc/multipath.conf file %s on %s" %
                    (err, hostname))
        return False
    finally:
        g.rpyc_close_connection(hostname, user="root")
    g.log.info("successfully edited /etc/multipath.conf file %s" % hostname)
    return True


def edit_iptables_cns(hostname):
    '''
     This function edits the iptables file to open the ports
     Args:
         hostname (str): hostname on which we need to edit
                         the iptables
     Returns:
         bool: True if successful,
               otherwise False
    '''
    try:
        conn = g.rpyc_get_connection(hostname, user="root")
        if conn is None:
            g.log.error("Failed to get rpyc connection of node %s" % hostname)
            return False

        filter_flag = False
        file_data = ""
        data_to_add = "\n".join([
            "-A OS_FIREWALL_ALLOW -p tcp -m state --state NEW -m %s" % line
            for line in ("tcp       --dport 24007        -j ACCEPT",
                         "tcp       --dport 24008        -j ACCEPT",
                         "tcp       --dport 2222         -j ACCEPT",
                         "multiport --dports 49152:49664 -j ACCEPT",
                         "tcp       --dport 24010        -j ACCEPT",
                         "tcp       --dport 3260         -j ACCEPT",
                         "tcp       --dport 111          -j ACCEPT")
        ]) + "\n"
        with conn.builtin.open("/etc/sysconfig/iptables", "r+") as f:
            for line in f.readlines():
                if "--dport 3260" in line:
                    g.log.info("Iptables is already edited on %s" % hostname)
                    return True
                if "*filter" in line:
                    filter_flag = True
                elif "COMMIT" in line and filter_flag is True:
                    file_data += data_to_add
                    filter_flag = False
                file_data += "%s" % line
        with conn.builtin.open("/etc/sysconfig/iptables", "w") as f:
            f.write(file_data)
        g.log.info("successfully edited iptables on %s" % hostname)
        return True
    except Exception as err:
        g.log.error("failed to edit iptables on %s err %s" % (hostname, err))
        return False
    finally:
        g.rpyc_close_connection(hostname, user="root")


def enable_kernel_module(hostname, module_name):
    '''
     This function enables kernel modules required for CNS
     Args:
         hostname (str): hostname on which we want to
                         enable kernel modules
         module_name (str): name of the module
                            ex: dm_thin_pool
     Returns:
         bool: True if successfull or already running,
               False otherwise
    '''
    cmd = "lsmod | grep %s" % module_name
    ret, out, err = g.run(hostname, cmd, "root")
    if ret == 0:
        g.log.info("%s module is already enabled on %s"
                   % (module_name, hostname))
    else:
        cmd = "modprobe %s" % module_name
        ret, out, err = g.run(hostname, cmd, "root")
        if ret == 0:
            g.log.info("%s module enabled on %s"
                       % (module_name, hostname))
        else:
            g.log.error("failed to enable %s  module on %s"
                        % (module_name, hostname))
            return False
        cmd = "echo %s > /etc/modules-load.d/%s.conf" % (
                  module_name, module_name)
        ret, out, err = g.run(hostname, cmd, "root")
        if ret == 0:
            g.log.info("created %s.conf" % module_name)
        else:
            g.log.error("failed to %s.conf" % module_name)

    return True


def start_service(hostname, service):
    '''
     This function starts service by its name
     Args:
         hostname (str): hostname on which we want
                         to start service
     Returns:
         bool: True if successfull or already running,
               False otherwise
    '''
    cmd = "systemctl status %s" % service
    ret, out, err = g.run(hostname, cmd, "root")
    if ret == 0:
        g.log.info("%s service is already running on %s"
                   % (service, hostname))
        return True
    cmd = "systemctl start %s" % service
    ret, out, err = g.run(hostname, cmd, "root")
    if ret == 0:
        g.log.info("successfully started %s service on %s"
                   % (service, hostname))
        return True
    g.log.error("failed to start %s service on %s"
                % (service, hostname))
    return False


def start_rpcbind_service(hostname):
    '''
     This function starts the rpcbind service
     Args:
         hostname (str): hostname on which we want to start
                         rpcbind service
     Returns:
         bool: True if successfull or already running,
               False otherwise
    '''
    return start_service(hostname, 'rpcbind')


def start_gluster_blockd_service(hostname):
    '''
     This function starts the gluster-blockd service
     Args:
         hostname (str): hostname on which we want to start
                         gluster-blocks service
     Returns:
         bool: True if successfull or already running,
               False otherwise
    '''
    return start_service(hostname, 'gluster-blockd')


def validate_multipath_pod(hostname, podname, hacount):
    '''
     This function validates multipath for given app-pod
     Args:
         hostname (str): ocp master node name
         podname (str): app-pod name for which we need to validate
                        multipath. ex : nginx1
         hacount (int): multipath count or HA count. ex: 3
     Returns:
         bool: True if successful,
               otherwise False
    '''
    cmd = "oc get pods -o wide | grep %s | awk '{print $7}'" % podname
    ret, out, err = g.run(hostname, cmd, "root")
    if ret != 0 or out == "":
        g.log.error("failed to exectute cmd %s on %s, err %s"
                    % (cmd, hostname, out))
        return False
    pod_nodename = out.strip()
    active_node_count = 1
    enable_node_count = hacount - 1
    cmd = "multipath -ll | grep 'status=active' | wc -l"
    ret, out, err = g.run(hostname, cmd, "root")
    if ret != 0 or out == "":
        g.log.error("failed to exectute cmd %s on %s, err %s"
                    % (cmd, pod_nodename, out))
        return False
    active_count = int(out.strip())
    if active_node_count != active_count:
        g.log.error("active node count on %s for %s is %s and not 1"
                    % (pod_nodename, podname, active_count))
        return False
    cmd = "multipath -ll | grep 'status=enabled' | wc -l"
    ret, out, err = g.run(hostname, cmd, "root")
    if ret != 0 or out == "":
        g.log.error("failed to exectute cmd %s on %s, err %s"
                    % (cmd, pod_nodename, out))
        return False
    enable_count = int(out.strip())
    if enable_node_count != enable_count:
        g.log.error("passive node count on %s for %s is %s "
                    "and not %s" % (
                        pod_nodename, podname, enable_count,
                        enable_node_count))
        return False

    g.log.info("validation of multipath for %s is successfull"
               % podname)
    return True


def validate_gluster_blockd_service_gluster_pod(hostname):
    '''
     This function validates if gluster-blockd service is
     running on all gluster-pods
     Args:
         hostname (str): OCP master node name
     Returns:
         bool: True if service is running on all gluster-pods,
               otherwise False
    '''
    gluster_pod_list = get_ocp_gluster_pod_names(hostname)
    g.log.info("gluster_pod_list -> %s" % gluster_pod_list)
    for pod in gluster_pod_list:
        cmd = "systemctl status gluster-blockd"
        ret, out, err = oc_rsh(hostname, pod, cmd)
        if ret != 0:
            g.log.error("failed to execute cmd %s on %s out: "
                        "%s err: %s" % (
                            cmd, hostname, out, err))
            return False
    g.log.info("gluster-blockd service is running on all "
               "gluster-pods %s" % gluster_pod_list)
    return True


def enable_pvc_resize(master_node):
    '''
     This function edits the /etc/origin/master/master-config.yaml
     file - to enable pv_resize feature
     and restarts atomic-openshift service on master node
     Args:
         master_node (str): hostname of masternode  on which
                           want to edit the
                           master-config.yaml file
     Returns:
         bool: True if successful,
               otherwise raise Exception
    '''
    version = oc_version(master_node)
    if any(v in version for v in ("3.6", "3.7", "3.8")):
        msg = ("pv resize is not available in openshift "
               "version %s " % version)
        g.log.error(msg)
        raise NotSupportedException(msg)

    try:
        conn = g.rpyc_get_connection(master_node, user="root")
        if conn is None:
            err_msg = ("Failed to get rpyc connection of node %s"
                       % master_node)
            g.log.error(err_msg)
            raise ExecutionError(err_msg)

        with conn.builtin.open(MASTER_CONFIG_FILEPATH, 'r') as f:
            data = yaml.load(f)
            dict_add = data['admissionConfig']['pluginConfig']
            if "PersistentVolumeClaimResize" in dict_add:
                g.log.info("master-config.yaml file is already edited")
                return True
            dict_add['PersistentVolumeClaimResize'] = {
                'configuration': {
                    'apiVersion': 'v1',
                    'disable': 'false',
                    'kind': 'DefaultAdmissionConfig'}}
            data['admissionConfig']['pluginConfig'] = dict_add
            kube_config = data['kubernetesMasterConfig']
            for key in ('apiServerArguments', 'controllerArguments'):
                kube_config[key] = (
                    kube_config.get(key)
                    if isinstance(kube_config.get(key), dict) else {})
                value = ['ExpandPersistentVolumes=true']
                kube_config[key]['feature-gates'] = value
        with conn.builtin.open(MASTER_CONFIG_FILEPATH, 'w+') as f:
            yaml.dump(data, f, default_flow_style=False)
    except Exception as err:
        raise ExecutionError("failed to edit master-config.yaml file "
                             "%s on %s" % (err, master_node))
    finally:
        g.rpyc_close_connection(master_node, user="root")

    g.log.info("successfully edited master-config.yaml file "
               "%s" % master_node)
    if "3.9" in version:
        cmd = ("systemctl restart atomic-openshift-master-api "
               "atomic-openshift-master-controllers")
    else:
        cmd = ("/usr/local/bin/master-restart api && "
               "/usr/local/bin/master-restart controllers")
    ret, out, err = g.run(master_node, cmd, "root")
    if ret != 0 or out == "":
        err_msg = ("failed to execute cmd %s on %s, err %s"
                   % (cmd, master_node, out))
        g.log.error(err_msg)
        raise ExecutionError(err_msg)

    return True