cmdlib.py 115 KB
Newer Older
Iustin Pop's avatar
Iustin Pop committed
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
#!/usr/bin/python
#

# Copyright (C) 2006, 2007 Google Inc.
#
# This program is free software; you can redistribute it and/or modify
# it under the terms of the GNU General Public License as published by
# the Free Software Foundation; either version 2 of the License, or
# (at your option) any later version.
#
# This program is distributed in the hope that it will be useful, but
# WITHOUT ANY WARRANTY; without even the implied warranty of
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
# General Public License for more details.
#
# You should have received a copy of the GNU General Public License
# along with this program; if not, write to the Free Software
# Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA
# 02110-1301, USA.


22
"""Module implementing the master-side code."""
Iustin Pop's avatar
Iustin Pop committed
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47

# pylint: disable-msg=W0613,W0201

import os
import os.path
import sha
import socket
import time
import tempfile
import re
import platform

from ganeti import rpc
from ganeti import ssh
from ganeti import logger
from ganeti import utils
from ganeti import errors
from ganeti import hypervisor
from ganeti import config
from ganeti import constants
from ganeti import objects
from ganeti import opcodes
from ganeti import ssconf

class LogicalUnit(object):
48
  """Logical Unit base class.
Iustin Pop's avatar
Iustin Pop committed
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79

  Subclasses must follow these rules:
    - implement CheckPrereq which also fills in the opcode instance
      with all the fields (even if as None)
    - implement Exec
    - implement BuildHooksEnv
    - redefine HPATH and HTYPE
    - optionally redefine their run requirements (REQ_CLUSTER,
      REQ_MASTER); note that all commands require root permissions

  """
  HPATH = None
  HTYPE = None
  _OP_REQP = []
  REQ_CLUSTER = True
  REQ_MASTER = True

  def __init__(self, processor, op, cfg, sstore):
    """Constructor for LogicalUnit.

    This needs to be overriden in derived classes in order to check op
    validity.

    """
    self.processor = processor
    self.op = op
    self.cfg = cfg
    self.sstore = sstore
    for attr_name in self._OP_REQP:
      attr_val = getattr(op, attr_name, None)
      if attr_val is None:
80
81
        raise errors.OpPrereqError("Required parameter '%s' missing" %
                                   attr_name)
Iustin Pop's avatar
Iustin Pop committed
82
83
    if self.REQ_CLUSTER:
      if not cfg.IsCluster():
84
85
        raise errors.OpPrereqError("Cluster not initialized yet,"
                                   " use 'gnt-cluster init' first.")
Iustin Pop's avatar
Iustin Pop committed
86
      if self.REQ_MASTER:
87
        master = sstore.GetMasterNode()
Iustin Pop's avatar
Iustin Pop committed
88
        if master != socket.gethostname():
89
90
          raise errors.OpPrereqError("Commands must be run on the master"
                                     " node %s" % master)
Iustin Pop's avatar
Iustin Pop committed
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166

  def CheckPrereq(self):
    """Check prerequisites for this LU.

    This method should check that the prerequisites for the execution
    of this LU are fulfilled. It can do internode communication, but
    it should be idempotent - no cluster or system changes are
    allowed.

    The method should raise errors.OpPrereqError in case something is
    not fulfilled. Its return value is ignored.

    This method should also update all the parameters of the opcode to
    their canonical form; e.g. a short node name must be fully
    expanded after this method has successfully completed (so that
    hooks, logging, etc. work correctly).

    """
    raise NotImplementedError

  def Exec(self, feedback_fn):
    """Execute the LU.

    This method should implement the actual work. It should raise
    errors.OpExecError for failures that are somewhat dealt with in
    code, or expected.

    """
    raise NotImplementedError

  def BuildHooksEnv(self):
    """Build hooks environment for this LU.

    This method should return a three-node tuple consisting of: a dict
    containing the environment that will be used for running the
    specific hook for this LU, a list of node names on which the hook
    should run before the execution, and a list of node names on which
    the hook should run after the execution.

    The keys of the dict must not have 'GANETI_' prefixed as this will
    be handled in the hooks runner. Also note additional keys will be
    added by the hooks runner. If the LU doesn't define any
    environment, an empty dict (and not None) should be returned.

    As for the node lists, the master should not be included in the
    them, as it will be added by the hooks runner in case this LU
    requires a cluster to run on (otherwise we don't have a node
    list). No nodes should be returned as an empty list (and not
    None).

    Note that if the HPATH for a LU class is None, this function will
    not be called.

    """
    raise NotImplementedError


class NoHooksLU(LogicalUnit):
  """Simple LU which runs no hooks.

  This LU is intended as a parent for other LogicalUnits which will
  run no hooks, in order to reduce duplicate code.

  """
  HPATH = None
  HTYPE = None

  def BuildHooksEnv(self):
    """Build hooks env.

    This is a no-op, since we don't run hooks.

    """
    return


167
def _GetWantedNodes(lu, nodes):
168
169
170
171
172
173
  """Returns list of checked and expanded nodes.

  Args:
    nodes: List of nodes (strings) or None for all

  """
174
  if nodes is not None and not isinstance(nodes, list):
175
    raise errors.OpPrereqError("Invalid argument type 'nodes'")
176
177
178
179
180
181
182

  if nodes:
    wanted_nodes = []

    for name in nodes:
      node = lu.cfg.GetNodeInfo(lu.cfg.ExpandNodeName(name))
      if node is None:
183
        raise errors.OpPrereqError("No such node name '%s'" % name)
184
185
186
187
188
189
190
191
    wanted_nodes.append(node)

    return wanted_nodes
  else:
    return [lu.cfg.GetNodeInfo(name) for name in lu.cfg.GetNodeList()]


def _CheckOutputFields(static, dynamic, selected):
192
193
194
195
196
197
198
199
200
  """Checks whether all selected fields are valid.

  Args:
    static: Static fields
    dynamic: Dynamic fields

  """
  static_fields = frozenset(static)
  dynamic_fields = frozenset(dynamic)
201

202
  all_fields = static_fields | dynamic_fields
203

204
  if not all_fields.issuperset(selected):
205
206
207
    raise errors.OpPrereqError("Unknown output fields selected: %s"
                               % ",".join(frozenset(selected).
                                          difference(all_fields)))
208
209


210
def _BuildInstanceHookEnv(name, primary_node, secondary_nodes, os_type, status,
211
                          memory, vcpus, nics):
212
213
214
215
  """Builds instance related env variables for hooks from single variables.

  Args:
    secondary_nodes: List of secondary nodes as strings
216
217
218
219
220
  """
  env = {
    "INSTANCE_NAME": name,
    "INSTANCE_PRIMARY": primary_node,
    "INSTANCE_SECONDARIES": " ".join(secondary_nodes),
221
    "INSTANCE_OS_TYPE": os_type,
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
    "INSTANCE_STATUS": status,
    "INSTANCE_MEMORY": memory,
    "INSTANCE_VCPUS": vcpus,
  }

  if nics:
    nic_count = len(nics)
    for idx, (ip, bridge) in enumerate(nics):
      if ip is None:
        ip = ""
      env["INSTANCE_NIC%d_IP" % idx] = ip
      env["INSTANCE_NIC%d_BRIDGE" % idx] = bridge
  else:
    nic_count = 0

  env["INSTANCE_NIC_COUNT"] = nic_count

  return env


def _BuildInstanceHookEnvByObject(instance, override=None):
243
244
245
246
247
248
  """Builds instance related env variables for hooks from an object.

  Args:
    instance: objects.Instance object of instance
    override: dict of values to override
  """
249
250
251
252
  args = {
    'name': instance.name,
    'primary_node': instance.primary_node,
    'secondary_nodes': instance.secondary_nodes,
253
    'os_type': instance.os,
254
255
256
257
258
259
260
261
262
263
    'status': instance.os,
    'memory': instance.memory,
    'vcpus': instance.vcpus,
    'nics': [(nic.ip, nic.bridge) for nic in instance.nics],
  }
  if override:
    args.update(override)
  return _BuildInstanceHookEnv(**args)


Iustin Pop's avatar
Iustin Pop committed
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
396
397
398
399
400
401
402
403
404
405
406
407
408
409
410
411
412
413
414
415
416
417
418
419
420
421
422
423
424
425
426
427
428
429
430
431
432
433
434
def _UpdateEtcHosts(fullnode, ip):
  """Ensure a node has a correct entry in /etc/hosts.

  Args:
    fullnode - Fully qualified domain name of host. (str)
    ip       - IPv4 address of host (str)

  """
  node = fullnode.split(".", 1)[0]

  f = open('/etc/hosts', 'r+')

  inthere = False

  save_lines = []
  add_lines = []
  removed = False

  while True:
    rawline = f.readline()

    if not rawline:
      # End of file
      break

    line = rawline.split('\n')[0]

    # Strip off comments
    line = line.split('#')[0]

    if not line:
      # Entire line was comment, skip
      save_lines.append(rawline)
      continue

    fields = line.split()

    haveall = True
    havesome = False
    for spec in [ ip, fullnode, node ]:
      if spec not in fields:
        haveall = False
      if spec in fields:
        havesome = True

    if haveall:
      inthere = True
      save_lines.append(rawline)
      continue

    if havesome and not haveall:
      # Line (old, or manual?) which is missing some.  Remove.
      removed = True
      continue

    save_lines.append(rawline)

  if not inthere:
    add_lines.append('%s\t%s %s\n' % (ip, fullnode, node))

  if removed:
    if add_lines:
      save_lines = save_lines + add_lines

    # We removed a line, write a new file and replace old.
    fd, tmpname = tempfile.mkstemp('tmp', 'hosts_', '/etc')
    newfile = os.fdopen(fd, 'w')
    newfile.write(''.join(save_lines))
    newfile.close()
    os.rename(tmpname, '/etc/hosts')

  elif add_lines:
    # Simply appending a new line will do the trick.
    f.seek(0, 2)
    for add in add_lines:
      f.write(add)

  f.close()


def _UpdateKnownHosts(fullnode, ip, pubkey):
  """Ensure a node has a correct known_hosts entry.

  Args:
    fullnode - Fully qualified domain name of host. (str)
    ip       - IPv4 address of host (str)
    pubkey   - the public key of the cluster

  """
  if os.path.exists('/etc/ssh/ssh_known_hosts'):
    f = open('/etc/ssh/ssh_known_hosts', 'r+')
  else:
    f = open('/etc/ssh/ssh_known_hosts', 'w+')

  inthere = False

  save_lines = []
  add_lines = []
  removed = False

  while True:
    rawline = f.readline()
    logger.Debug('read %s' % (repr(rawline),))

    if not rawline:
      # End of file
      break

    line = rawline.split('\n')[0]

    parts = line.split(' ')
    fields = parts[0].split(',')
    key = parts[2]

    haveall = True
    havesome = False
    for spec in [ ip, fullnode ]:
      if spec not in fields:
        haveall = False
      if spec in fields:
        havesome = True

    logger.Debug("key, pubkey = %s." % (repr((key, pubkey)),))
    if haveall and key == pubkey:
      inthere = True
      save_lines.append(rawline)
      logger.Debug("Keeping known_hosts '%s'." % (repr(rawline),))
      continue

    if havesome and (not haveall or key != pubkey):
      removed = True
      logger.Debug("Discarding known_hosts '%s'." % (repr(rawline),))
      continue

    save_lines.append(rawline)

  if not inthere:
    add_lines.append('%s,%s ssh-rsa %s\n' % (fullnode, ip, pubkey))
    logger.Debug("Adding known_hosts '%s'." % (repr(add_lines[-1]),))

  if removed:
    save_lines = save_lines + add_lines

    # Write a new file and replace old.
    fd, tmpname = tempfile.mkstemp('tmp', 'ssh_known_hosts_', '/etc/ssh')
    newfile = os.fdopen(fd, 'w')
    newfile.write(''.join(save_lines))
    newfile.close()
    logger.Debug("Wrote new known_hosts.")
    os.rename(tmpname, '/etc/ssh/ssh_known_hosts')

  elif add_lines:
    # Simply appending a new line will do the trick.
    f.seek(0, 2)
    for add in add_lines:
      f.write(add)

  f.close()


def _HasValidVG(vglist, vgname):
  """Checks if the volume group list is valid.

  A non-None return value means there's an error, and the return value
  is the error message.

  """
  vgsize = vglist.get(vgname, None)
  if vgsize is None:
    return "volume group '%s' missing" % vgname
  elif vgsize < 20480:
435
436
    return ("volume group '%s' too small (20480MiB required, %dMib found)" %
            (vgname, vgsize))
Iustin Pop's avatar
Iustin Pop committed
437
438
439
440
441
442
443
444
445
446
447
448
449
450
451
452
453
454
455
456
457
458
459
460
461
462
463
464
  return None


def _InitSSHSetup(node):
  """Setup the SSH configuration for the cluster.


  This generates a dsa keypair for root, adds the pub key to the
  permitted hosts and adds the hostkey to its own known hosts.

  Args:
    node: the name of this host as a fqdn

  """
  utils.RemoveFile('/root/.ssh/known_hosts')

  if os.path.exists('/root/.ssh/id_dsa'):
    utils.CreateBackup('/root/.ssh/id_dsa')
  if os.path.exists('/root/.ssh/id_dsa.pub'):
    utils.CreateBackup('/root/.ssh/id_dsa.pub')

  utils.RemoveFile('/root/.ssh/id_dsa')
  utils.RemoveFile('/root/.ssh/id_dsa.pub')

  result = utils.RunCmd(["ssh-keygen", "-t", "dsa",
                         "-f", "/root/.ssh/id_dsa",
                         "-q", "-N", ""])
  if result.failed:
465
466
    raise errors.OpExecError("Could not generate ssh keypair, error %s" %
                             result.output)
Iustin Pop's avatar
Iustin Pop committed
467
468
469
470
471
472
473
474
475
476
477
478
479
480
481
482
483
484
485
486
487
488
489
490
491

  f = open('/root/.ssh/id_dsa.pub', 'r')
  try:
    utils.AddAuthorizedKey('/root/.ssh/authorized_keys', f.read(8192))
  finally:
    f.close()


def _InitGanetiServerSetup(ss):
  """Setup the necessary configuration for the initial node daemon.

  This creates the nodepass file containing the shared password for
  the cluster and also generates the SSL certificate.

  """
  # Create pseudo random password
  randpass = sha.new(os.urandom(64)).hexdigest()
  # and write it into sstore
  ss.SetKey(ss.SS_NODED_PASS, randpass)

  result = utils.RunCmd(["openssl", "req", "-new", "-newkey", "rsa:1024",
                         "-days", str(365*5), "-nodes", "-x509",
                         "-keyout", constants.SSL_CERT_FILE,
                         "-out", constants.SSL_CERT_FILE, "-batch"])
  if result.failed:
492
493
494
    raise errors.OpExecError("could not generate server ssl cert, command"
                             " %s had exitcode %s and error message %s" %
                             (result.cmd, result.exit_code, result.output))
Iustin Pop's avatar
Iustin Pop committed
495
496
497
498
499
500

  os.chmod(constants.SSL_CERT_FILE, 0400)

  result = utils.RunCmd([constants.NODE_INITD_SCRIPT, "restart"])

  if result.failed:
501
502
503
    raise errors.OpExecError("Could not start the node daemon, command %s"
                             " had exitcode %s and error %s" %
                             (result.cmd, result.exit_code, result.output))
Iustin Pop's avatar
Iustin Pop committed
504
505
506
507
508
509
510
511
512


class LUInitCluster(LogicalUnit):
  """Initialise the cluster.

  """
  HPATH = "cluster-init"
  HTYPE = constants.HTYPE_CLUSTER
  _OP_REQP = ["cluster_name", "hypervisor_type", "vg_name", "mac_prefix",
513
              "def_bridge", "master_netdev"]
Iustin Pop's avatar
Iustin Pop committed
514
515
516
517
518
519
520
521
522
  REQ_CLUSTER = False

  def BuildHooksEnv(self):
    """Build hooks env.

    Notes: Since we don't require a cluster, we must manually add
    ourselves in the post-run node list.

    """
523
524
525
526
    env = {
      "CLUSTER": self.op.cluster_name,
      "MASTER": self.hostname['hostname_full'],
      }
Iustin Pop's avatar
Iustin Pop committed
527
528
529
530
531
532
533
    return env, [], [self.hostname['hostname_full']]

  def CheckPrereq(self):
    """Verify that the passed name is a valid one.

    """
    if config.ConfigWriter.IsCluster():
534
      raise errors.OpPrereqError("Cluster is already initialised")
Iustin Pop's avatar
Iustin Pop committed
535
536
537
538

    hostname_local = socket.gethostname()
    self.hostname = hostname = utils.LookupHostname(hostname_local)
    if not hostname:
539
540
      raise errors.OpPrereqError("Cannot resolve my own hostname ('%s')" %
                                 hostname_local)
Iustin Pop's avatar
Iustin Pop committed
541
542
543

    self.clustername = clustername = utils.LookupHostname(self.op.cluster_name)
    if not clustername:
544
545
      raise errors.OpPrereqError("Cannot resolve given cluster name ('%s')"
                                 % self.op.cluster_name)
Iustin Pop's avatar
Iustin Pop committed
546
547
548

    result = utils.RunCmd(["fping", "-S127.0.0.1", "-q", hostname['ip']])
    if result.failed:
549
550
551
552
      raise errors.OpPrereqError("Inconsistency: this host's name resolves"
                                 " to %s,\nbut this ip address does not"
                                 " belong to this host."
                                 " Aborting." % hostname['ip'])
Iustin Pop's avatar
Iustin Pop committed
553
554
555

    secondary_ip = getattr(self.op, "secondary_ip", None)
    if secondary_ip and not utils.IsValidIP(secondary_ip):
556
      raise errors.OpPrereqError("Invalid secondary ip given")
Iustin Pop's avatar
Iustin Pop committed
557
558
559
    if secondary_ip and secondary_ip != hostname['ip']:
      result = utils.RunCmd(["fping", "-S127.0.0.1", "-q", secondary_ip])
      if result.failed:
560
561
562
        raise errors.OpPrereqError("You gave %s as secondary IP,\n"
                                   "but it does not belong to this host." %
                                   secondary_ip)
Iustin Pop's avatar
Iustin Pop committed
563
564
565
566
567
568
    self.secondary_ip = secondary_ip

    # checks presence of the volume group given
    vgstatus = _HasValidVG(utils.ListVolumeGroups(), self.op.vg_name)

    if vgstatus:
569
      raise errors.OpPrereqError("Error: %s" % vgstatus)
Iustin Pop's avatar
Iustin Pop committed
570
571
572

    if not re.match("^[0-9a-z]{2}:[0-9a-z]{2}:[0-9a-z]{2}$",
                    self.op.mac_prefix):
573
574
      raise errors.OpPrereqError("Invalid mac prefix given '%s'" %
                                 self.op.mac_prefix)
Iustin Pop's avatar
Iustin Pop committed
575
576

    if self.op.hypervisor_type not in hypervisor.VALID_HTYPES:
577
578
      raise errors.OpPrereqError("Invalid hypervisor type given '%s'" %
                                 self.op.hypervisor_type)
Iustin Pop's avatar
Iustin Pop committed
579

580
581
    result = utils.RunCmd(["ip", "link", "show", "dev", self.op.master_netdev])
    if result.failed:
582
      raise errors.OpPrereqError("Invalid master netdev given (%s): '%s'" %
Iustin Pop's avatar
Iustin Pop committed
583
584
                                 (self.op.master_netdev,
                                  result.output.strip()))
585

Iustin Pop's avatar
Iustin Pop committed
586
587
588
589
590
591
592
593
594
595
  def Exec(self, feedback_fn):
    """Initialize the cluster.

    """
    clustername = self.clustername
    hostname = self.hostname

    # set up the simple store
    ss = ssconf.SimpleStore()
    ss.SetKey(ss.SS_HYPERVISOR, self.op.hypervisor_type)
596
597
598
    ss.SetKey(ss.SS_MASTER_NODE, hostname['hostname_full'])
    ss.SetKey(ss.SS_MASTER_IP, clustername['ip'])
    ss.SetKey(ss.SS_MASTER_NETDEV, self.op.master_netdev)
599
    ss.SetKey(ss.SS_CLUSTER_NAME, clustername['hostname'])
Iustin Pop's avatar
Iustin Pop committed
600
601
602
603
604
605
606
607
608
609
610
611
612
613
614
615
616
617
618
619
620
621
622
623
624
625
626
627
628

    # set up the inter-node password and certificate
    _InitGanetiServerSetup(ss)

    # start the master ip
    rpc.call_node_start_master(hostname['hostname_full'])

    # set up ssh config and /etc/hosts
    f = open('/etc/ssh/ssh_host_rsa_key.pub', 'r')
    try:
      sshline = f.read()
    finally:
      f.close()
    sshkey = sshline.split(" ")[1]

    _UpdateEtcHosts(hostname['hostname_full'],
                    hostname['ip'],
                    )

    _UpdateKnownHosts(hostname['hostname_full'],
                      hostname['ip'],
                      sshkey,
                      )

    _InitSSHSetup(hostname['hostname'])

    # init of cluster config file
    cfgw = config.ConfigWriter()
    cfgw.InitConfig(hostname['hostname'], hostname['ip'], self.secondary_ip,
629
                    sshkey, self.op.mac_prefix,
Iustin Pop's avatar
Iustin Pop committed
630
631
632
633
634
635
636
637
638
639
640
641
642
643
644
645
646
                    self.op.vg_name, self.op.def_bridge)


class LUDestroyCluster(NoHooksLU):
  """Logical unit for destroying the cluster.

  """
  _OP_REQP = []

  def CheckPrereq(self):
    """Check prerequisites.

    This checks whether the cluster is empty.

    Any errors are signalled by raising errors.OpPrereqError.

    """
647
    master = self.sstore.GetMasterNode()
Iustin Pop's avatar
Iustin Pop committed
648
649

    nodelist = self.cfg.GetNodeList()
650
    if len(nodelist) != 1 or nodelist[0] != master:
651
652
      raise errors.OpPrereqError("There are still %d node(s) in"
                                 " this cluster." % (len(nodelist) - 1))
653
654
    instancelist = self.cfg.GetInstanceList()
    if instancelist:
655
656
      raise errors.OpPrereqError("There are still %d instance(s) in"
                                 " this cluster." % len(instancelist))
Iustin Pop's avatar
Iustin Pop committed
657
658
659
660
661
662
663

  def Exec(self, feedback_fn):
    """Destroys the cluster.

    """
    utils.CreateBackup('/root/.ssh/id_dsa')
    utils.CreateBackup('/root/.ssh/id_dsa.pub')
664
    rpc.call_node_leave_cluster(self.sstore.GetMasterNode())
Iustin Pop's avatar
Iustin Pop committed
665
666
667
668
669
670
671
672
673
674
675
676
677
678
679
680
681
682
683
684
685
686


class LUVerifyCluster(NoHooksLU):
  """Verifies the cluster status.

  """
  _OP_REQP = []

  def _VerifyNode(self, node, file_list, local_cksum, vglist, node_result,
                  remote_version, feedback_fn):
    """Run multiple tests against a node.

    Test list:
      - compares ganeti version
      - checks vg existance and size > 20G
      - checks config file checksum
      - checks ssh to other nodes

    Args:
      node: name of the node to check
      file_list: required list of files
      local_cksum: dictionary of local files and their checksums
687

Iustin Pop's avatar
Iustin Pop committed
688
689
690
691
692
693
694
695
696
697
698
699
700
701
702
703
704
705
706
707
708
709
710
711
712
713
714
715
716
717
718
719
720
721
722
723
724
725
726
727
728
729
730
731
732
733
734
735
736
737
738
739
740
741
742
743
744
745
746
747
748
749
750
751
752
753
754
755
756
757
758
759
760
761
762
763
764
765
766
767
768
769
770
771
772
773
774
775
776
777
778
779
780
781
782
783
784
785
786
787
788
789
790
791
792
793
794
795
796
797
798
799
800
801
802
803
804
805
806
807
808
809
810
811
812
813
814
815
816
817
818
819
820
821
822
823
824
825
826
827
828
829
830
831
832
833
    """
    # compares ganeti version
    local_version = constants.PROTOCOL_VERSION
    if not remote_version:
      feedback_fn(" - ERROR: connection to %s failed" % (node))
      return True

    if local_version != remote_version:
      feedback_fn("  - ERROR: sw version mismatch: master %s, node(%s) %s" %
                      (local_version, node, remote_version))
      return True

    # checks vg existance and size > 20G

    bad = False
    if not vglist:
      feedback_fn("  - ERROR: unable to check volume groups on node %s." %
                      (node,))
      bad = True
    else:
      vgstatus = _HasValidVG(vglist, self.cfg.GetVGName())
      if vgstatus:
        feedback_fn("  - ERROR: %s on node %s" % (vgstatus, node))
        bad = True

    # checks config file checksum
    # checks ssh to any

    if 'filelist' not in node_result:
      bad = True
      feedback_fn("  - ERROR: node hasn't returned file checksum data")
    else:
      remote_cksum = node_result['filelist']
      for file_name in file_list:
        if file_name not in remote_cksum:
          bad = True
          feedback_fn("  - ERROR: file '%s' missing" % file_name)
        elif remote_cksum[file_name] != local_cksum[file_name]:
          bad = True
          feedback_fn("  - ERROR: file '%s' has wrong checksum" % file_name)

    if 'nodelist' not in node_result:
      bad = True
      feedback_fn("  - ERROR: node hasn't returned node connectivity data")
    else:
      if node_result['nodelist']:
        bad = True
        for node in node_result['nodelist']:
          feedback_fn("  - ERROR: communication with node '%s': %s" %
                          (node, node_result['nodelist'][node]))
    hyp_result = node_result.get('hypervisor', None)
    if hyp_result is not None:
      feedback_fn("  - ERROR: hypervisor verify failure: '%s'" % hyp_result)
    return bad

  def _VerifyInstance(self, instance, node_vol_is, node_instance, feedback_fn):
    """Verify an instance.

    This function checks to see if the required block devices are
    available on the instance's node.

    """
    bad = False

    instancelist = self.cfg.GetInstanceList()
    if not instance in instancelist:
      feedback_fn("  - ERROR: instance %s not in instance list %s" %
                      (instance, instancelist))
      bad = True

    instanceconfig = self.cfg.GetInstanceInfo(instance)
    node_current = instanceconfig.primary_node

    node_vol_should = {}
    instanceconfig.MapLVsByNode(node_vol_should)

    for node in node_vol_should:
      for volume in node_vol_should[node]:
        if node not in node_vol_is or volume not in node_vol_is[node]:
          feedback_fn("  - ERROR: volume %s missing on node %s" %
                          (volume, node))
          bad = True

    if not instanceconfig.status == 'down':
      if not instance in node_instance[node_current]:
        feedback_fn("  - ERROR: instance %s not running on node %s" %
                        (instance, node_current))
        bad = True

    for node in node_instance:
      if (not node == node_current):
        if instance in node_instance[node]:
          feedback_fn("  - ERROR: instance %s should not run on node %s" %
                          (instance, node))
          bad = True

    return not bad

  def _VerifyOrphanVolumes(self, node_vol_should, node_vol_is, feedback_fn):
    """Verify if there are any unknown volumes in the cluster.

    The .os, .swap and backup volumes are ignored. All other volumes are
    reported as unknown.

    """
    bad = False

    for node in node_vol_is:
      for volume in node_vol_is[node]:
        if node not in node_vol_should or volume not in node_vol_should[node]:
          feedback_fn("  - ERROR: volume %s on node %s should not exist" %
                      (volume, node))
          bad = True
    return bad

  def _VerifyOrphanInstances(self, instancelist, node_instance, feedback_fn):
    """Verify the list of running instances.

    This checks what instances are running but unknown to the cluster.

    """
    bad = False
    for node in node_instance:
      for runninginstance in node_instance[node]:
        if runninginstance not in instancelist:
          feedback_fn("  - ERROR: instance %s on node %s should not exist" %
                          (runninginstance, node))
          bad = True
    return bad

  def CheckPrereq(self):
    """Check prerequisites.

    This has no prerequisites.

    """
    pass

  def Exec(self, feedback_fn):
    """Verify integrity of cluster, performing various test on nodes.

    """
    bad = False
    feedback_fn("* Verifying global settings")
    self.cfg.VerifyConfig()

834
    master = self.sstore.GetMasterNode()
Iustin Pop's avatar
Iustin Pop committed
835
836
837
838
839
840
841
842
    vg_name = self.cfg.GetVGName()
    nodelist = utils.NiceSort(self.cfg.GetNodeList())
    instancelist = utils.NiceSort(self.cfg.GetInstanceList())
    node_volume = {}
    node_instance = {}

    # FIXME: verify OS list
    # do local checksums
843
844
845
    file_names = list(self.sstore.GetFileList())
    file_names.append(constants.SSL_CERT_FILE)
    file_names.append(constants.CLUSTER_CONF_FILE)
Iustin Pop's avatar
Iustin Pop committed
846
847
848
849
850
851
852
853
854
855
856
857
858
859
860
861
862
863
864
865
866
867
868
869
870
871
872
873
874
875
876
877
878
879
880
881
882
883
884
885
886
887
888
889
890
891
892
893
894
895
896
897
898
899
900
901
902
903
904
905
906
907
908
909
910
911
912
913
914
915
916
917
918
919
920
921
922
923
924
925
926
927
928
929
930
931
932
933
934
935
    local_checksums = utils.FingerprintFiles(file_names)

    feedback_fn("* Gathering data (%d nodes)" % len(nodelist))
    all_volumeinfo = rpc.call_volume_list(nodelist, vg_name)
    all_instanceinfo = rpc.call_instance_list(nodelist)
    all_vglist = rpc.call_vg_list(nodelist)
    node_verify_param = {
      'filelist': file_names,
      'nodelist': nodelist,
      'hypervisor': None,
      }
    all_nvinfo = rpc.call_node_verify(nodelist, node_verify_param)
    all_rversion = rpc.call_version(nodelist)

    for node in nodelist:
      feedback_fn("* Verifying node %s" % node)
      result = self._VerifyNode(node, file_names, local_checksums,
                                all_vglist[node], all_nvinfo[node],
                                all_rversion[node], feedback_fn)
      bad = bad or result

      # node_volume
      volumeinfo = all_volumeinfo[node]

      if type(volumeinfo) != dict:
        feedback_fn("  - ERROR: connection to %s failed" % (node,))
        bad = True
        continue

      node_volume[node] = volumeinfo

      # node_instance
      nodeinstance = all_instanceinfo[node]
      if type(nodeinstance) != list:
        feedback_fn("  - ERROR: connection to %s failed" % (node,))
        bad = True
        continue

      node_instance[node] = nodeinstance

    node_vol_should = {}

    for instance in instancelist:
      feedback_fn("* Verifying instance %s" % instance)
      result =  self._VerifyInstance(instance, node_volume, node_instance,
                                     feedback_fn)
      bad = bad or result

      inst_config = self.cfg.GetInstanceInfo(instance)

      inst_config.MapLVsByNode(node_vol_should)

    feedback_fn("* Verifying orphan volumes")
    result = self._VerifyOrphanVolumes(node_vol_should, node_volume,
                                       feedback_fn)
    bad = bad or result

    feedback_fn("* Verifying remaining instances")
    result = self._VerifyOrphanInstances(instancelist, node_instance,
                                         feedback_fn)
    bad = bad or result

    return int(bad)


def _WaitForSync(cfgw, instance, oneshot=False, unlock=False):
  """Sleep and poll for an instance's disk to sync.

  """
  if not instance.disks:
    return True

  if not oneshot:
    logger.ToStdout("Waiting for instance %s to sync disks." % instance.name)

  node = instance.primary_node

  for dev in instance.disks:
    cfgw.SetDiskID(dev, node)

  retries = 0
  while True:
    max_time = 0
    done = True
    cumul_degraded = False
    rstats = rpc.call_blockdev_getmirrorstatus(node, instance.disks)
    if not rstats:
      logger.ToStderr("Can't get any data from node %s" % node)
      retries += 1
      if retries >= 10:
936
937
        raise errors.RemoteError("Can't contact node %s for mirror data,"
                                 " aborting." % node)
Iustin Pop's avatar
Iustin Pop committed
938
939
940
941
942
943
944
945
946
947
948
949
950
951
952
953
954
955
956
957
958
959
960
961
962
963
964
965
966
967
968
969
970
971
972
973
974
975
976
977
978
979
980
981
982
983
984
985
986
987
988
989
990
991
992
993
994
995
996
997
998
999
1000
1001
1002
1003
1004
1005
1006
1007
1008
1009
1010
1011
1012
1013
1014
1015
      time.sleep(6)
      continue
    retries = 0
    for i in range(len(rstats)):
      mstat = rstats[i]
      if mstat is None:
        logger.ToStderr("Can't compute data for node %s/%s" %
                        (node, instance.disks[i].iv_name))
        continue
      perc_done, est_time, is_degraded = mstat
      cumul_degraded = cumul_degraded or (is_degraded and perc_done is None)
      if perc_done is not None:
        done = False
        if est_time is not None:
          rem_time = "%d estimated seconds remaining" % est_time
          max_time = est_time
        else:
          rem_time = "no time estimate"
        logger.ToStdout("- device %s: %5.2f%% done, %s" %
                        (instance.disks[i].iv_name, perc_done, rem_time))
    if done or oneshot:
      break

    if unlock:
      utils.Unlock('cmd')
    try:
      time.sleep(min(60, max_time))
    finally:
      if unlock:
        utils.Lock('cmd')

  if done:
    logger.ToStdout("Instance %s's disks are in sync." % instance.name)
  return not cumul_degraded


def _CheckDiskConsistency(cfgw, dev, node, on_primary):
  """Check that mirrors are not degraded.

  """
  cfgw.SetDiskID(dev, node)

  result = True
  if on_primary or dev.AssembleOnSecondary():
    rstats = rpc.call_blockdev_find(node, dev)
    if not rstats:
      logger.ToStderr("Can't get any data from node %s" % node)
      result = False
    else:
      result = result and (not rstats[5])
  if dev.children:
    for child in dev.children:
      result = result and _CheckDiskConsistency(cfgw, child, node, on_primary)

  return result


class LUDiagnoseOS(NoHooksLU):
  """Logical unit for OS diagnose/query.

  """
  _OP_REQP = []

  def CheckPrereq(self):
    """Check prerequisites.

    This always succeeds, since this is a pure query LU.

    """
    return

  def Exec(self, feedback_fn):
    """Compute the list of OSes.

    """
    node_list = self.cfg.GetNodeList()
    node_data = rpc.call_os_diagnose(node_list)
    if node_data == False:
1016
      raise errors.OpExecError("Can't gather the list of OSes")
Iustin Pop's avatar
Iustin Pop committed
1017
1018
1019
1020
1021
1022
1023
1024
1025
1026
1027
1028
1029
1030
1031
1032
1033
1034
    return node_data


class LURemoveNode(LogicalUnit):
  """Logical unit for removing a node.

  """
  HPATH = "node-remove"
  HTYPE = constants.HTYPE_NODE
  _OP_REQP = ["node_name"]

  def BuildHooksEnv(self):
    """Build hooks env.

    This doesn't run on the target node in the pre phase as a failed
    node would not allows itself to run.

    """
1035
1036
1037
    env = {
      "NODE_NAME": self.op.node_name,
      }
Iustin Pop's avatar
Iustin Pop committed
1038
1039
    all_nodes = self.cfg.GetNodeList()
    all_nodes.remove(self.op.node_name)
1040
    return env, all_nodes, all_nodes
Iustin Pop's avatar
Iustin Pop committed
1041
1042
1043
1044
1045
1046
1047
1048
1049
1050
1051
1052
1053
1054

  def CheckPrereq(self):
    """Check prerequisites.

    This checks:
     - the node exists in the configuration
     - it does not have primary or secondary instances
     - it's not the master

    Any errors are signalled by raising errors.OpPrereqError.

    """
    node = self.cfg.GetNodeInfo(self.cfg.ExpandNodeName(self.op.node_name))
    if node is None:
1055
      raise errors.OpPrereqError, ("Node '%s' is unknown." % self.op.node_name)
Iustin Pop's avatar
Iustin Pop committed
1056
1057
1058

    instance_list = self.cfg.GetInstanceList()

1059
    masternode = self.sstore.GetMasterNode()
Iustin Pop's avatar
Iustin Pop committed
1060
    if node.name == masternode:
1061
1062
      raise errors.OpPrereqError("Node is the master node,"
                                 " you need to failover first.")
Iustin Pop's avatar
Iustin Pop committed
1063
1064
1065
1066

    for instance_name in instance_list:
      instance = self.cfg.GetInstanceInfo(instance_name)
      if node.name == instance.primary_node:
1067
1068
        raise errors.OpPrereqError("Instance %s still running on the node,"
                                   " please remove first." % instance_name)
Iustin Pop's avatar
Iustin Pop committed
1069
      if node.name in instance.secondary_nodes:
1070
1071
        raise errors.OpPrereqError("Instance %s has node as a secondary,"
                                   " please remove first." % instance_name)
Iustin Pop's avatar
Iustin Pop committed
1072
1073
1074
1075
1076
1077
1078
1079
1080
1081
1082
1083
1084
1085
1086
1087
1088
1089
1090
1091
1092
1093
1094
1095
1096
1097
1098
1099
1100
1101
1102
1103
1104
1105
1106
    self.op.node_name = node.name
    self.node = node

  def Exec(self, feedback_fn):
    """Removes the node from the cluster.

    """
    node = self.node
    logger.Info("stopping the node daemon and removing configs from node %s" %
                node.name)

    rpc.call_node_leave_cluster(node.name)

    ssh.SSHCall(node.name, 'root', "%s stop" % constants.NODE_INITD_SCRIPT)

    logger.Info("Removing node %s from config" % node.name)

    self.cfg.RemoveNode(node.name)


class LUQueryNodes(NoHooksLU):
  """Logical unit for querying nodes.

  """
  _OP_REQP = ["output_fields"]

  def CheckPrereq(self):
    """Check prerequisites.

    This checks that the fields required are valid output fields.

    """
    self.dynamic_fields = frozenset(["dtotal", "dfree",
                                     "mtotal", "mnode", "mfree"])

1107
1108
1109
    _CheckOutputFields(static=["name", "pinst", "sinst", "pip", "sip"],
                       dynamic=self.dynamic_fields,
                       selected=self.op.output_fields)
Iustin Pop's avatar
Iustin Pop committed
1110
1111
1112
1113
1114
1115
1116
1117
1118
1119
1120
1121
1122
1123
1124
1125
1126
1127
1128
1129
1130
1131
1132
1133
1134
1135
1136
1137
1138
1139
1140
1141
1142
1143
1144
1145
1146
1147
1148
1149
1150
1151
1152
1153
1154
1155
1156
1157
1158
1159
1160
1161
1162
1163
1164
1165
1166
1167
1168
1169
1170


  def Exec(self, feedback_fn):
    """Computes the list of nodes and their attributes.

    """
    nodenames = utils.NiceSort(self.cfg.GetNodeList())
    nodelist = [self.cfg.GetNodeInfo(name) for name in nodenames]


    # begin data gathering

    if self.dynamic_fields.intersection(self.op.output_fields):
      live_data = {}
      node_data = rpc.call_node_info(nodenames, self.cfg.GetVGName())
      for name in nodenames:
        nodeinfo = node_data.get(name, None)
        if nodeinfo:
          live_data[name] = {
            "mtotal": utils.TryConvert(int, nodeinfo['memory_total']),
            "mnode": utils.TryConvert(int, nodeinfo['memory_dom0']),
            "mfree": utils.TryConvert(int, nodeinfo['memory_free']),
            "dtotal": utils.TryConvert(int, nodeinfo['vg_size']),
            "dfree": utils.TryConvert(int, nodeinfo['vg_free']),
            }
        else:
          live_data[name] = {}
    else:
      live_data = dict.fromkeys(nodenames, {})

    node_to_primary = dict.fromkeys(nodenames, 0)
    node_to_secondary = dict.fromkeys(nodenames, 0)

    if "pinst" in self.op.output_fields or "sinst" in self.op.output_fields:
      instancelist = self.cfg.GetInstanceList()

      for instance in instancelist:
        instanceinfo = self.cfg.GetInstanceInfo(instance)
        node_to_primary[instanceinfo.primary_node] += 1
        for secnode in instanceinfo.secondary_nodes:
          node_to_secondary[secnode] += 1

    # end data gathering

    output = []
    for node in nodelist:
      node_output = []
      for field in self.op.output_fields:
        if field == "name":
          val = node.name
        elif field == "pinst":
          val = node_to_primary[node.name]
        elif field == "sinst":
          val = node_to_secondary[node.name]
        elif field == "pip":
          val = node.primary_ip
        elif field == "sip":
          val = node.secondary_ip
        elif field in self.dynamic_fields:
          val = live_data[node.name].get(field, "?")
        else:
1171
          raise errors.ParameterError(field)
Iustin Pop's avatar
Iustin Pop committed
1172
1173
1174
1175
1176
1177
1178
        val = str(val)
        node_output.append(val)
      output.append(node_output)

    return output


1179
1180
1181
1182
1183
1184
1185
1186
1187
1188
1189
1190
1191
1192
1193
1194
1195
1196
1197
1198
1199
1200
1201
1202
1203
1204
1205
1206
1207
1208
1209
1210
1211
class LUQueryNodeVolumes(NoHooksLU):
  """Logical unit for getting volumes on node(s).

  """
  _OP_REQP = ["nodes", "output_fields"]

  def CheckPrereq(self):
    """Check prerequisites.

    This checks that the fields required are valid output fields.

    """
    self.nodes = _GetWantedNodes(self, self.op.nodes)

    _CheckOutputFields(static=["node"],
                       dynamic=["phys", "vg", "name", "size", "instance"],
                       selected=self.op.output_fields)


  def Exec(self, feedback_fn):
    """Computes the list of nodes and their attributes.

    """
    nodenames = utils.NiceSort([node.name for node in self.nodes])
    volumes = rpc.call_node_volumes(nodenames)

    ilist = [self.cfg.GetInstanceInfo(iname) for iname
             in self.cfg.GetInstanceList()]

    lv_by_node = dict([(inst, inst.MapLVsByNode()) for inst in ilist])

    output = []
    for node in nodenames:
1212
1213
1214
      if node not in volumes or not volumes[node]:
        continue

1215
1216
1217
1218
1219
1220
1221
1222
1223
1224
1225
1226
1227
1228
1229
1230
1231
1232
1233
1234
1235
1236
1237
1238
1239
1240
      node_vols = volumes[node][:]
      node_vols.sort(key=lambda vol: vol['dev'])

      for vol in node_vols:
        node_output = []
        for field in self.op.output_fields:
          if field == "node":
            val = node
          elif field == "phys":
            val = vol['dev']
          elif field == "vg":
            val = vol['vg']
          elif field == "name":
            val = vol['name']
          elif field == "size":
            val = int(float(vol['size']))
          elif field == "instance":
            for inst in ilist:
              if node not in lv_by_node[inst]:
                continue
              if vol['name'] in lv_by_node[inst][node]:
                val = inst.name
                break
            else:
              val = '-'
          else:
1241
            raise errors.ParameterError(field)
1242
1243
1244
1245
1246
1247
1248
          node_output.append(str(val))

        output.append(node_output)

    return output


Iustin Pop's avatar
Iustin Pop committed
1249
1250
1251
1252
1253
1254
1255
1256
1257
1258
1259
1260
1261
1262
1263
1264
1265
1266
1267
1268
1269
1270
1271
1272
1273
1274
1275
1276
1277
1278
1279
1280
1281
1282
1283
1284
1285
1286
1287
class LUAddNode(LogicalUnit):
  """Logical unit for adding node to the cluster.

  """
  HPATH = "node-add"
  HTYPE = constants.HTYPE_NODE
  _OP_REQP = ["node_name"]

  def BuildHooksEnv(self):
    """Build hooks env.

    This will run on all nodes before, and on all nodes + the new node after.

    """
    env = {
      "NODE_NAME": self.op.node_name,
      "NODE_PIP": self.op.primary_ip,
      "NODE_SIP": self.op.secondary_ip,
      }
    nodes_0 = self.cfg.GetNodeList()
    nodes_1 = nodes_0 + [self.op.node_name, ]
    return env, nodes_0, nodes_1

  def CheckPrereq(self):
    """Check prerequisites.

    This checks:
     - the new node is not already in the config
     - it is resolvable
     - its parameters (single/dual homed) matches the cluster

    Any errors are signalled by raising errors.OpPrereqError.

    """
    node_name = self.op.node_name
    cfg = self.cfg

    dns_data = utils.LookupHostname(node_name)
    if not dns_data:
1288
      raise errors.OpPrereqError("Node %s is not resolvable" % node_name)
Iustin Pop's avatar
Iustin Pop committed
1289
1290
1291
1292
1293
1294
1295

    node = dns_data['hostname']
    primary_ip = self.op.primary_ip = dns_data['ip']
    secondary_ip = getattr(self.op, "secondary_ip", None)
    if secondary_ip is None:
      secondary_ip = primary_ip
    if not utils.IsValidIP(secondary_ip):
1296
      raise errors.OpPrereqError("Invalid secondary IP given")
Iustin Pop's avatar
Iustin Pop committed
1297
1298
1299
    self.op.secondary_ip = secondary_ip
    node_list = cfg.GetNodeList()
    if node in node_list:
1300
1301
      raise errors.OpPrereqError("Node %s is already in the configuration"
                                 % node)
Iustin Pop's avatar
Iustin Pop committed
1302
1303
1304
1305
1306
1307
1308

    for existing_node_name in node_list:
      existing_node = cfg.GetNodeInfo(existing_node_name)
      if (existing_node.primary_ip == primary_ip or
          existing_node.secondary_ip == primary_ip or
          existing_node.primary_ip == secondary_ip or
          existing_node.secondary_ip == secondary_ip):
1309
1310
        raise errors.OpPrereqError("New node ip address(es) conflict with"
                                   " existing node %s" % existing_node.name)
Iustin Pop's avatar
Iustin Pop committed
1311
1312
1313

    # check that the type of the node (single versus dual homed) is the
    # same as for the master
1314
    myself = cfg.GetNodeInfo(self.sstore.GetMasterNode())
Iustin Pop's avatar
Iustin Pop committed
1315
1316
1317
1318
    master_singlehomed = myself.secondary_ip == myself.primary_ip
    newbie_singlehomed = secondary_ip == primary_ip
    if master_singlehomed != newbie_singlehomed:
      if master_singlehomed:
1319
1320
        raise errors.OpPrereqError("The master has no private ip but the"
                                   " new node has one")
Iustin Pop's avatar
Iustin Pop committed
1321
      else:
1322
1323
        raise errors.OpPrereqError("The master has a private ip but the"
                                   " new node doesn't have one")
Iustin Pop's avatar
Iustin Pop committed
1324
1325
1326
1327
1328

    # checks reachablity
    command = ["fping", "-q", primary_ip]
    result = utils.RunCmd(command)
    if result.failed:
1329
      raise errors.OpPrereqError("Node not reachable by ping")
Iustin Pop's avatar
Iustin Pop committed
1330
1331
1332
1333
1334
1335

    if not newbie_singlehomed:
      # check reachability from my secondary ip to newbie's secondary ip
      command = ["fping", "-S%s" % myself.secondary_ip, "-q", secondary_ip]
      result = utils.RunCmd(command)
      if result.failed:
1336
        raise errors.OpPrereqError("Node secondary ip not reachable by ping")
Iustin Pop's avatar
Iustin Pop committed
1337
1338
1339
1340
1341
1342
1343
1344
1345
1346
1347
1348
1349
1350
1351

    self.new_node = objects.Node(name=node,
                                 primary_ip=primary_ip,
                                 secondary_ip=secondary_ip)

  def Exec(self, feedback_fn):
    """Adds the new node to the cluster.

    """
    new_node = self.new_node
    node = new_node.name

    # set up inter-node password and certificate and restarts the node daemon
    gntpass = self.sstore.GetNodeDaemonPassword()
    if not re.match('^[a-zA-Z0-9.]{1,64}$', gntpass):
1352
      raise errors.OpExecError("ganeti password corruption detected")
Iustin Pop's avatar
Iustin Pop committed
1353
1354
1355
1356
1357
1358
1359
1360
1361
1362
    f = open(constants.SSL_CERT_FILE)
    try:
      gntpem = f.read(8192)
    finally:
      f.close()
    # in the base64 pem encoding, neither '!' nor '.' are valid chars,
    # so we use this to detect an invalid certificate; as long as the
    # cert doesn't contain this, the here-document will be correctly
    # parsed by the shell sequence below
    if re.search('^!EOF\.', gntpem, re.MULTILINE):
1363
      raise errors.OpExecError("invalid PEM encoding in the SSL certificate")
Iustin Pop's avatar
Iustin Pop committed
1364
    if not gntpem.endswith("\n"):
1365
      raise errors.OpExecError("PEM must end with newline")
Iustin Pop's avatar
Iustin Pop committed
1366
1367
1368
1369
1370
1371
1372
1373
1374
1375
1376
1377
1378
1379
1380
1381
1382
1383
    logger.Info("copy cluster pass to %s and starting the node daemon" % node)

    # remove first the root's known_hosts file
    utils.RemoveFile("/root/.ssh/known_hosts")
    # and then connect with ssh to set password and start ganeti-noded
    # note that all the below variables are sanitized at this point,
    # either by being constants or by the checks above
    ss = self.sstore
    mycommand = ("umask 077 && "
                 "echo '%s' > '%s' && "
                 "cat > '%s' << '!EOF.' && \n"
                 "%s!EOF.\n%s restart" %
                 (gntpass, ss.KeyToFilename(ss.SS_NODED_PASS),
                  constants.SSL_CERT_FILE, gntpem,
                  constants.NODE_INITD_SCRIPT))

    result = ssh.SSHCall(node, 'root', mycommand, batch=False, ask_key=True)
    if result.failed:
1384
1385
1386
      raise errors.OpExecError("Remote command on node %s, error: %s,"
                               " output: %s" %
                               (node, result.fail_reason, result.output))
Iustin Pop's avatar
Iustin Pop committed
1387
1388
1389
1390
1391
1392
1393
1394
1395
1396

    # check connectivity
    time.sleep(4)

    result = rpc.call_version([node])[node]
    if result:
      if constants.PROTOCOL_VERSION == result:
        logger.Info("communication to node %s fine, sw version %s match" %
                    (node, result))
      else:
1397
1398
1399
        raise errors.OpExecError("Version mismatch master version %s,"
                                 " node version %s" %
                                 (constants.PROTOCOL_VERSION, result))
Iustin Pop's avatar
Iustin Pop committed
1400
    else:
1401
      raise errors.OpExecError("Cannot get version from the new node")
Iustin Pop's avatar
Iustin Pop committed
1402
1403
1404
1405
1406
1407
1408
1409
1410
1411
1412
1413
1414
1415
1416
1417
1418
1419
1420

    # setup ssh on node
    logger.Info("copy ssh key to node %s" % node)
    keyarray = []
    keyfiles = ["/etc/ssh/ssh_host_dsa_key", "/etc/ssh/ssh_host_dsa_key.pub",
                "/etc/ssh/ssh_host_rsa_key", "/etc/ssh/ssh_host_rsa_key.pub",
                "/root/.ssh/id_dsa", "/root/.ssh/id_dsa.pub"]

    for i in keyfiles:
      f = open(i, 'r')
      try:
        keyarray.append(f.read())
      finally:
        f.close()

    result = rpc.call_node_add(node, keyarray[0], keyarray[1], keyarray[2],
                               keyarray[3], keyarray[4], keyarray[5])

    if not result:
1421
      raise errors.OpExecError("Cannot transfer ssh keys to the new node")
Iustin Pop's avatar
Iustin Pop committed
1422
1423
1424
1425
1426
1427
1428
1429
1430
1431

    # Add node to our /etc/hosts, and add key to known_hosts
    _UpdateEtcHosts(new_node.name, new_node.primary_ip)
    _UpdateKnownHosts(new_node.name, new_node.primary_ip,
                      self.cfg.GetHostKey())

    if new_node.secondary_ip != new_node.primary_ip:
      result = ssh.SSHCall(node, "root",
                           "fping -S 127.0.0.1 -q %s" % new_node.secondary_ip)
      if result.failed:
1432
1433
1434
1435
        raise errors.OpExecError("Node claims it doesn't have the"
                                 " secondary ip you gave (%s).\n"
                                 "Please fix and re-run this command." %
                                 new_node.secondary_ip)
Iustin Pop's avatar
Iustin Pop committed
1436
1437
1438

    # Distribute updated /etc/hosts and known_hosts to all nodes,
    # including the node just added
1439
    myself = self.cfg.GetNodeInfo(self.sstore.GetMasterNode())
Iustin Pop's avatar
Iustin Pop committed
1440
1441
1442
1443
1444
1445
1446
1447
1448
1449
1450
1451
    dist_nodes = self.cfg.GetNodeList() + [node]
    if myself.name in dist_nodes:
      dist_nodes.remove(myself.name)

    logger.Debug("Copying hosts and known_hosts to all nodes")
    for fname in ("/etc/hosts", "/etc/ssh/ssh_known_hosts"):
      result = rpc.call_upload_file(dist_nodes, fname)
      for to_node in dist_nodes:
        if not result[to_node]:
          logger.Error("copy of file %s to node %s failed" %
                       (fname, to_node))

1452
    to_copy = ss.GetFileList()
Iustin Pop's avatar
Iustin Pop committed
1453
1454
1455
1456
1457
1458
1459
1460
1461
1462
1463
1464
1465
1466
1467
1468
1469
1470
1471
1472
1473
1474
1475
1476
1477
1478
1479
1480
1481
1482
1483
1484
1485
1486
1487
1488
1489
1490
1491
1492
    for fname in to_copy:
      if not ssh.CopyFileToNode(node, fname):
        logger.Error("could not copy file %s to node %s" % (fname, node))

    logger.Info("adding node %s to cluster.conf" % node)
    self.cfg.AddNode(new_node)


class LUMasterFailover(LogicalUnit):
  """Failover the master node to the current node.

  This is a special LU in that it must run on a non-master node.

  """
  HPATH = "master-failover"
  HTYPE = constants.HTYPE_CLUSTER
  REQ_MASTER = False
  _OP_REQP = []

  def BuildHooksEnv(self):
    """Build hooks env.

    This will run on the new master only in the pre phase, and on all
    the nodes in the post phase.

    """
    env = {
      "NEW_MASTER": self.new_master,
      "OLD_MASTER": self.old_master,
      }
    return env, [self.new_master], self.cfg.GetNodeList()

  def CheckPrereq(self):
    """Check prerequisites.

    This checks that we are not already the master.

    """
    self.new_master = socket.gethostname()

1493
    self.old_master = self.sstore.GetMasterNode()
Iustin Pop's avatar
Iustin Pop committed
1494
1495

    if self.old_master == self.new_master:
1496
1497
1498
1499
      raise errors.OpPrereqError("This commands must be run on the node"
                                 " where you want the new master to be.\n"
                                 "%s is already the master" %
                                 self.old_master)
Iustin Pop's avatar
Iustin Pop committed
1500
1501
1502
1503
1504
1505
1506
1507
1508
1509
1510
1511
1512
1513
1514
1515
1516

  def Exec(self, feedback_fn):
    """Failover the master node.

    This command, when run on a non-master node, will cause the current
    master to cease being master, and the non-master to become new
    master.

    """
    #TODO: do not rely on gethostname returning the FQDN
    logger.Info("setting master to %s, old master: %s" %
                (self.new_master, self.old_master))

    if not rpc.call_node_stop_master(self.old_master):
      logger.Error("could disable the master role on the old master"
                   " %s, please disable manually" % self.old_master)

1517
1518
1519
1520
1521
1522
1523
    ss = self.sstore
    ss.SetKey(ss.SS_MASTER_NODE, self.new_master)
    if not rpc.call_upload_file(self.cfg.GetNodeList(),
                                ss.KeyToFilename(ss.SS_MASTER_NODE)):
      logger.Error("could not distribute the new simple store master file"
                   " to the other nodes, please check.")

Iustin Pop's avatar
Iustin Pop committed
1524
1525
1526
    if not rpc.call_node_start_master(self.new_master):
      logger.Error("could not start the master role on the new master"
                   " %s, please check" % self.new_master)
1527
1528
      feedback_fn("Error in activating the master IP on the new master,\n"
                  "please fix manually.")
Iustin Pop's avatar
Iustin Pop committed
1529
1530
1531
1532
1533
1534
1535
1536



class LUQueryClusterInfo(NoHooksLU):
  """Query cluster configuration.

  """
  _OP_REQP = []
1537
  REQ_MASTER = False
Iustin Pop's avatar
Iustin Pop committed
1538
1539
1540
1541
1542
1543
1544
1545
1546
1547
1548
1549

  def CheckPrereq(self):
    """No prerequsites needed for this LU.

    """
    pass

  def Exec(self, feedback_fn):
    """Return cluster config.

    """
    result = {
1550
      "name": self.sstore.GetClusterName(),
Iustin Pop's avatar
Iustin Pop committed
1551
1552
1553
1554
1555
      "software_version": constants.RELEASE_VERSION,
      "protocol_version": constants.PROTOCOL_VERSION,
      "config_version": constants.CONFIG_VERSION,
      "os_api_version": constants.OS_API_VERSION,
      "export_version": constants.EXPORT_VERSION,
1556
      "master": self.sstore.GetMasterNode(),
Iustin Pop's avatar
Iustin Pop committed
1557
1558
1559
1560
1561
1562
1563
1564
1565
1566
1567
1568
1569
1570
1571
1572
1573
1574
1575
1576
1577
      "architecture": (platform.architecture()[0], platform.machine()),
      }

    return result


class LUClusterCopyFile(NoHooksLU):
  """Copy file to cluster.

  """
  _OP_REQP = ["nodes", "filename"]

  def CheckPrereq(self):
    """Check prerequisites.

    It should check that the named file exists and that the given list
    of nodes is valid.

    """
    if not os.path.exists(self.op.filename):
      raise errors.OpPrereqError("No such filename '%s'" % self.op.filename)
1578
1579

    self.nodes = _GetWantedNodes(self, self.op.nodes)
Iustin Pop's avatar
Iustin Pop committed
1580
1581
1582
1583
1584
1585
1586
1587
1588
1589
1590
1591
1592
1593
1594
1595
1596
1597
1598
1599
1600
1601
1602
1603
1604
1605
1606
1607
1608
1609
1610
1611
1612
1613
1614
1615
1616
1617
1618
1619
1620
1621
1622
1623
1624
1625
1626
1627
1628
1629
1630
1631
1632

  def Exec(self, feedback_fn):
    """Copy a file from master to some nodes.

    Args:
      opts - class with options as members
      args - list containing a single element, the file name
    Opts used:
      nodes - list containing the name of target nodes; if empty, all nodes

    """
    filename = self.op.filename

    myname = socket.gethostname()

    for node in self.nodes:
      if node == myname:
        continue
      if not ssh.CopyFileToNode(node, filename):
        logger.Error("Copy of file %s to node %s failed" % (filename, node))


class LUDumpClusterConfig(NoHooksLU):
  """Return a text-representation of the cluster-config.

  """
  _OP_REQP = []

  def CheckPrereq(self):
    """No prerequisites.

    """
    pass

  def Exec(self, feedback_fn):
    """Dump a representation of the cluster config to the standard output.

    """
    return self.cfg.DumpConfig()


class LURunClusterCommand(NoHooksLU):
  """Run a command on some nodes.

  """
  _OP_REQP = ["command", "nodes"]

  def CheckPrereq(self):
    """Check prerequisites.

    It checks that the given list of nodes is valid.

    """
1633
    self.nodes = _GetWantedNodes(self, self.op.nodes)
Iustin Pop's avatar
Iustin Pop committed
1634
1635
1636
1637
1638
1639
1640

  def Exec(self, feedback_fn):
    """Run a command on some nodes.

    """
    data = []
    for node in self.nodes:
1641
1642
      result = utils.RunCmd(["ssh", node.name, self.op.command])
      data.append((node.name, result.cmd, result.output, result.exit_code))
Iustin Pop's avatar
Iustin Pop committed
1643
1644
1645
1646
1647
1648
1649
1650
1651
1652
1653
1654
1655
1656
1657
1658
1659
1660
1661

    return data


class LUActivateInstanceDisks(NoHooksLU):
  """Bring up an instance's disks.

  """
  _OP_REQP = ["instance_name"]

  def CheckPrereq(self):
    """Check prerequisites.

    This checks that the instance is in the cluster.

    """
    instance = self.cfg.GetInstanceInfo(
      self.cfg.ExpandInstanceName(self.op.instance_name))
    if instance is None:
1662
1663
      raise errors.OpPrereqError("Instance '%s' not known" %
                                 self.op.instance_name)
Iustin Pop's avatar
Iustin Pop committed
1664
1665
1666
1667
1668
1669
1670
1671
1672
    self.instance = instance


  def Exec(self, feedback_fn):
    """Activate the disks.

    """
    disks_ok, disks_info = _AssembleInstanceDisks(self.instance, self.cfg)
    if not disks_ok:
1673
      raise errors.OpExecError("Cannot activate block devices")
Iustin Pop's avatar
Iustin Pop committed
1674
1675
1676
1677
1678
1679
1680
1681
1682
1683
1684
1685
1686
1687
1688
1689
1690
1691
1692
1693
1694
1695
1696
1697
1698
1699
1700
1701
1702
1703
1704
1705
1706
1707
1708
1709
1710
1711
1712
1713

    return disks_info


def _AssembleInstanceDisks(instance, cfg, ignore_secondaries=False):
  """Prepare the block devices for an instance.

  This sets up the block devices on all nodes.

  Args:
    instance: a ganeti.objects.Instance object
    ignore_secondaries: if true, errors on secondary nodes won't result
                        in an error return from the function

  Returns:
    false if the operation failed
    list of (host, instance_visible_name, node_visible_name) if the operation
         suceeded with the mapping from node devices to instance devices
  """
  device_info = []
  disks_ok = True
  for inst_disk in instance.disks:
    master_result = None
    for node, node_disk in inst_disk.ComputeNodeTree(instance.primary_node):
      cfg.SetDiskID(node_disk, node)
      is_primary = node == instance.primary_node
      result = rpc.call_blockdev_assemble(node, node_disk, is_primary)
      if not result:
        logger.Error("could not prepare block device %s on node %s (is_pri"
                     "mary=%s)" % (inst_disk.iv_name, node, is_primary))
        if is_primary or not ignore_secondaries:
          disks_ok = False
      if is_primary:
        master_result = result
    device_info.append((instance.primary_node, inst_disk.iv_name,
                        master_result))

  return disks_ok, device_info


1714
def _StartInstanceDisks(cfg, instance, force):
1715
1716
1717
  """Start the disks of an instance.

  """
1718
1719
1720
1721
1722
1723
1724
  disks_ok, dummy = _AssembleInstanceDisks(instance, cfg,
                                           ignore_secondaries=force)
  if not disks_ok:
    _ShutdownInstanceDisks(instance, cfg)
    if force is not None and not force:
      logger.Error("If the message above refers to a secondary node,"
                   " you can retry the operation using '--force'.")
1725
    raise errors.OpExecError("Disk consistency error")
1726
1727


Iustin Pop's avatar
Iustin Pop committed
1728
1729
1730
1731
1732
1733
1734
1735
1736
1737
1738
1739
1740
1741
1742
class LUDeactivateInstanceDisks(NoHooksLU):
  """Shutdown an instance's disks.

  """
  _OP_REQP = ["instance_name"]

  def CheckPrereq(self):
    """Check prerequisites.

    This checks that the instance is in the cluster.

    """
    instance = self.cfg.GetInstanceInfo(
      self.cfg.ExpandInstanceName(self.op.instance_name))
    if instance is None:
1743
1744
      raise errors.OpPrereqError("Instance '%s' not known" %
                                 self.op.instance_name)
Iustin Pop's avatar
Iustin Pop committed
1745
1746
1747
1748
1749
1750
1751
1752
1753
1754
    self.instance = instance

  def Exec(self, feedback_fn):
    """Deactivate the disks

    """
    instance = self.instance
    ins_l = rpc.call_instance_list([instance.primary_node])
    ins_l = ins_l[instance.primary_node]
    if not type(ins_l) is list:
1755
1756
      raise errors.OpExecError("Can't contact node '%s'" %
                               instance.primary_node)
Iustin Pop's avatar
Iustin Pop committed
1757
1758

    if self.instance.name in ins_l:
1759
1760
      raise errors.OpExecError("Instance is running, can't shutdown"
                               " block devices.")
Iustin Pop's avatar
Iustin Pop committed
1761
1762
1763
1764
1765
1766
1767
1768
1769
1770
1771
1772
1773
1774
1775
1776
1777
1778
1779
1780
1781
1782
1783
1784
1785
1786
1787
1788
1789
1790
1791
1792
1793
1794
1795
1796
1797
1798
1799
1800
1801
1802

    _ShutdownInstanceDisks(instance, self.cfg)


def _ShutdownInstanceDisks(instance, cfg, ignore_primary=False):
  """Shutdown block devices of an instance.

  This does the shutdown on all nodes of the instance.

  If the ignore_primary is false, errors on the primary node are
  ignored.

  """
  result = True
  for disk in instance.disks:
    for node, top_disk in disk.ComputeNodeTree(instance.primary_node):
      cfg.SetDiskID(top_disk, node)
      if not rpc.call_blockdev_shutdown(node, top_disk):
        logger.Error("could not shutdown block device %s on node %s" %
                     (disk.iv_name, node))
        if not ignore_primary or node != instance.primary_node:
          result = False
  return result


class LUStartupInstance(LogicalUnit):
  """Starts an instance.

  """
  HPATH = "instance-start"
  HTYPE = constants.HTYPE_INSTANCE
  _OP_REQP = ["instance_name", "force"]

  def BuildHooksEnv(self):
    """Build hooks env.

    This runs on master, primary and secondary nodes of the instance.

    """
    env = {
      "FORCE": self.op.force,
      }
1803
    env.update(_BuildInstanceHookEnvByObject(self.instance))
1804
    nl = ([self.sstore.GetMasterNode(), self.instance.primary_node] +
Iustin Pop's avatar
Iustin Pop committed
1805
1806
1807
1808
1809
1810
1811
1812
1813
1814
1815
1816
          list(self.instance.secondary_nodes))
    return env, nl, nl

  def CheckPrereq(self):
    """Check prerequisites.

    This checks that the instance is in the cluster.

    """
    instance = self.cfg.GetInstanceInfo(
      self.cfg.ExpandInstanceName(self.op.instance_name))
    if instance is None:
1817
1818
      raise errors.OpPrereqError("Instance '%s' not known" %
                                 self.op.instance_name)
Iustin Pop's avatar
Iustin Pop committed
1819
1820
1821
1822

    # check bridges existance
    brlist = [nic.bridge for nic in instance.nics]
    if not rpc.call_bridges_exist(instance.primary_node, brlist):
1823
1824
1825
      raise errors.OpPrereqError("one or more target bridges %s does not"
                                 " exist on destination node '%s'" %
                                 (brlist, instance.primary_node))
Iustin Pop's avatar
Iustin Pop committed
1826
1827
1828
1829
1830
1831
1832
1833
1834
1835
1836
1837
1838
1839
1840
1841

    self.instance = instance
    self.op.instance_name = instance.name

  def Exec(self, feedback_fn):
    """Start the instance.

    """
    instance = self.instance
    force = self.op.force
    extra_args = getattr(self.op, "extra_args", "")

    node_current = instance.primary_node

    nodeinfo = rpc.call_node_info([node_current], self.cfg.GetVGName())
    if not nodeinfo:
1842
1843
      raise errors.OpExecError("Could not contact node %s for infos" %
                               (node_current))
Iustin Pop's avatar
Iustin Pop committed
1844
1845
1846
1847

    freememory = nodeinfo[node_current]['memory_free']
    memory = instance.memory
    if memory > freememory:
1848
1849
1850
1851
1852
      raise errors.OpExecError("Not enough memory to start instance"
                               " %s on node %s"
                               " needed %s MiB, available %s MiB" %
                               (instance.name, node_current, memory,
                                freememory))
Iustin Pop's avatar
Iustin Pop committed
1853

1854
    _StartInstanceDisks(self.cfg, instance, force)
Iustin Pop's avatar
Iustin Pop committed
1855
1856
1857

    if not rpc.call_instance_start(node_current, instance, extra_args):
      _ShutdownInstanceDisks(instance, self.cfg)
1858
      raise errors.OpExecError("Could not start instance")
Iustin Pop's avatar
Iustin Pop committed
1859
1860
1861
1862
1863
1864
1865
1866
1867
1868
1869
1870
1871
1872
1873
1874
1875
1876

    self.cfg.MarkInstanceUp(instance.name)


class LUShutdownInstance(LogicalUnit):
  """Shutdown an instance.

  """
  HPATH = "instance-stop"
  HTYPE = constants.HTYPE_INSTANCE
  _OP_REQP = ["instance_name"]

  def BuildHooksEnv(self):
    """Build hooks env.

    This runs on master, primary and secondary nodes of the instance.

    """
1877
    env = _BuildInstanceHookEnvByObject(self.instance)
1878
    nl = ([self.sstore.GetMasterNode(), self.instance.primary_node] +
Iustin Pop's avatar
Iustin Pop committed
1879
1880
1881
1882
1883
1884
1885
1886
1887
1888
1889
1890
          list(self.instance.secondary_nodes))
    return env, nl, nl

  def CheckPrereq(self):
    """Check prerequisites.

    This checks that the instance is in the cluster.

    """
    instance = self.cfg.GetInstanceInfo(
      self.cfg.ExpandInstanceName(self.op.instance_name))
    if instance is None:
1891
1892
      raise errors.OpPrereqError("Instance '%s' not known" %
                                 self.op.instance_name)
Iustin Pop's avatar
Iustin Pop committed
1893
1894
1895
1896
1897
1898
1899
1900
1901
1902
1903
1904
1905
1906
1907
    self.instance = instance

  def Exec(self, feedback_fn):
    """Shutdown the instance.

    """
    instance = self.instance
    node_current = instance.primary_node
    if not rpc.call_instance_shutdown(node_current, instance):
      logger.Error("could not shutdown instance")

    self.cfg.MarkInstanceDown(instance.name)
    _ShutdownInstanceDisks(instance, self.cfg)


1908
1909
1910
1911
1912
1913
1914
1915
1916
1917
1918
1919
1920
1921
class LUReinstallInstance(LogicalUnit):
  """Reinstall an instance.

  """
  HPATH = "instance-reinstall"
  HTYPE = constants.HTYPE_INSTANCE
  _OP_REQP = ["instance_name"]

  def BuildHooksEnv(self):
    """Build hooks env.

    This runs on master, primary and secondary nodes of the instance.

    """
1922
    env = _BuildInstanceHookEnvByObject(self.instance)
1923
1924
1925
1926
1927
1928
1929
1930
1931
1932
1933
1934
1935
    nl = ([self.sstore.GetMasterNode(), self.instance.primary_node] +
          list(self.instance.secondary_nodes))
    return env, nl, nl

  def CheckPrereq(self):
    """Check prerequisites.

    This checks that the instance is in the cluster and is not running.

    """
    instance = self.cfg.GetInstanceInfo(
      self.cfg.ExpandInstanceName(self.op.instance_name))
    if instance is None:
1936
1937
      raise errors.OpPrereqError("Instance '%s' not known" %
                                 self.op.instance_name)
1938
    if instance.disk_template == constants.DT_DISKLESS:
1939
1940
      raise errors.OpPrereqError("Instance '%s' has no disks" %
                                 self.op.instance_name)
1941
    if instance.status != "down":
1942
1943
      raise errors.OpPrereqError("Instance '%s' is marked to be up" %
                                 self.op.instance_name)
1944
1945
    remote_info = rpc.call_instance_info(instance.primary_node, instance.name)
    if remote_info:
1946
1947
1948
      raise errors.OpPrereqError("Instance '%s' is running on the node %s" %
                                 (self.op.instance_name,
                                  instance.primary_node))
1949
1950
1951
1952
1953
1954
1955

    self.op.os_type = getattr(self.op