constants.py 27 KB
Newer Older
Iustin Pop's avatar
Iustin Pop committed
1
#
Iustin Pop's avatar
Iustin Pop committed
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
#

# Copyright (C) 2006, 2007 Google Inc.
#
# This program is free software; you can redistribute it and/or modify
# it under the terms of the GNU General Public License as published by
# the Free Software Foundation; either version 2 of the License, or
# (at your option) any later version.
#
# This program is distributed in the hope that it will be useful, but
# WITHOUT ANY WARRANTY; without even the implied warranty of
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
# General Public License for more details.
#
# You should have received a copy of the GNU General Public License
# along with this program; if not, write to the Free Software
# Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA
# 02110-1301, USA.


"""Module holding different constants."""

24
25
import re

26
from ganeti import _autoconf
27

Iustin Pop's avatar
Iustin Pop committed
28
# various versions
29
PROTOCOL_VERSION = 40
30
RELEASE_VERSION = _autoconf.PACKAGE_VERSION
Guido Trotter's avatar
Guido Trotter committed
31
32
OS_API_V10 = 10
OS_API_V15 = 15
33
34
OS_API_V20 = 20
OS_API_VERSIONS = frozenset([OS_API_V10, OS_API_V15, OS_API_V20])
Iustin Pop's avatar
Iustin Pop committed
35
EXPORT_VERSION = 0
36
RAPI_VERSION = 2
Iustin Pop's avatar
Iustin Pop committed
37

38

39
40
41
42
43
44
45
46
# Format for CONFIG_VERSION:
#   01 03 0123 = 01030123
#   ^^ ^^ ^^^^
#   |  |  + Configuration version/revision
#   |  + Minor version
#   + Major version
#
# It stored as an integer. Make sure not to write an octal number.
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80

# BuildVersion and SplitVersion must be in here because we can't import other
# modules. The cfgupgrade tool must be able to read and write version numbers
# and thus requires these functions. To avoid code duplication, they're kept in
# here.

def BuildVersion(major, minor, revision):
  """Calculates int version number from major, minor and revision numbers.

  Returns: int representing version number

  """
  assert isinstance(major, int)
  assert isinstance(minor, int)
  assert isinstance(revision, int)
  return (1000000 * major +
            10000 * minor +
                1 * revision)


def SplitVersion(version):
  """Splits version number stored in an int.

  Returns: tuple; (major, minor, revision)

  """
  assert isinstance(version, int)

  (major, remainder) = divmod(version, 1000000)
  (minor, revision) = divmod(remainder, 10000)

  return (major, minor, revision)


81
82
83
CONFIG_MAJOR = int(_autoconf.VERSION_MAJOR)
CONFIG_MINOR = int(_autoconf.VERSION_MINOR)
CONFIG_REVISION = 0
84
CONFIG_VERSION = BuildVersion(CONFIG_MAJOR, CONFIG_MINOR, CONFIG_REVISION)
Iustin Pop's avatar
Iustin Pop committed
85

86
87
88
89
90
# user separation
DAEMONS_GROUP = _autoconf.DAEMONS_GROUP
MASTERD_USER = _autoconf.MASTERD_USER
RAPI_USER = _autoconf.RAPI_USER

Iustin Pop's avatar
Iustin Pop committed
91
# file paths
92
DATA_DIR = _autoconf.LOCALSTATEDIR + "/lib/ganeti"
93
RUN_DIR = _autoconf.LOCALSTATEDIR + "/run"
94
RUN_GANETI_DIR = RUN_DIR + "/ganeti"
95
BDEV_CACHE_DIR = RUN_GANETI_DIR + "/bdev-cache"
96
DISK_LINKS_DIR = RUN_GANETI_DIR + "/instance-disks"
97
RUN_DIRS_MODE = 0775
Guido Trotter's avatar
Guido Trotter committed
98
SOCKET_DIR = RUN_GANETI_DIR + "/socket"
99
SECURE_DIR_MODE = 0700
100
SOCKET_DIR_MODE = 0750
101
CRYPTO_KEYS_DIR = RUN_GANETI_DIR + "/crypto"
Guido Trotter's avatar
Guido Trotter committed
102
CRYPTO_KEYS_DIR_MODE = SECURE_DIR_MODE
103
104
IMPORT_EXPORT_DIR = RUN_GANETI_DIR + "/import-export"
IMPORT_EXPORT_DIR_MODE = 0755
105
106
107
# keep RUN_GANETI_DIR first here, to make sure all get created when the node
# daemon is started (this takes care of RUN_DIR being tmpfs)
SUB_RUN_DIRS = [ RUN_GANETI_DIR, BDEV_CACHE_DIR, DISK_LINKS_DIR ]
Iustin Pop's avatar
Iustin Pop committed
108
LOCK_DIR = _autoconf.LOCALSTATEDIR + "/lock"
109
SSCONF_LOCK_FILE = LOCK_DIR + "/ganeti-ssconf.lock"
110
111
112
# User-id pool lock directory
# The user-ids that are in use have a corresponding lock file in this directory
UIDPOOL_LOCKDIR = RUN_GANETI_DIR + "/uid-pool"
Iustin Pop's avatar
Iustin Pop committed
113
CLUSTER_CONF_FILE = DATA_DIR + "/config.data"
114
NODED_CERT_FILE = DATA_DIR + "/server.pem"
115
RAPI_CERT_FILE = DATA_DIR + "/rapi.pem"
116
CONFD_HMAC_KEY = DATA_DIR + "/hmac.key"
Michael Hanselmann's avatar
Michael Hanselmann committed
117
CLUSTER_DOMAIN_SECRET_FILE = DATA_DIR + "/cluster-domain-secret"
118
WATCHER_STATEFILE = DATA_DIR + "/watcher.data"
119
WATCHER_PAUSEFILE = DATA_DIR + "/watcher.pause"
120
INSTANCE_UPFILE = RUN_GANETI_DIR + "/instance-status"
Iustin Pop's avatar
Iustin Pop committed
121
SSH_KNOWN_HOSTS_FILE = DATA_DIR + "/known_hosts"
122
RAPI_USERS_FILE = DATA_DIR + "/rapi_users"
123
QUEUE_DIR = DATA_DIR + "/queue"
124
DAEMON_UTIL = _autoconf.PKGLIBDIR + "/daemon-util"
125
ETC_HOSTS = "/etc/hosts"
126
DEFAULT_FILE_STORAGE_DIR = _autoconf.FILE_STORAGE_DIR
127
ENABLE_FILE_STORAGE = _autoconf.ENABLE_FILE_STORAGE
128
SYSCONFDIR = _autoconf.SYSCONFDIR
129
TOOLSDIR = _autoconf.TOOLSDIR
130
CONF_DIR = SYSCONFDIR + "/ganeti"
131

132
ALL_CERT_FILES = frozenset([NODED_CERT_FILE, RAPI_CERT_FILE])
133

134
MASTER_SOCKET = SOCKET_DIR + "/ganeti-master"
Iustin Pop's avatar
Iustin Pop committed
135

136
NODED = "ganeti-noded"
Guido Trotter's avatar
Guido Trotter committed
137
CONFD = "ganeti-confd"
Guido Trotter's avatar
Guido Trotter committed
138
RAPI = "ganeti-rapi"
139
MASTERD = "ganeti-masterd"
Guido Trotter's avatar
Guido Trotter committed
140
141
# used in the ganeti-nbma project
NLD = "ganeti-nld"
142
143
144
145

DAEMONS_PORTS = {
  # daemon-name: ("proto", "default-port")
  NODED: ("tcp", 1811),
Guido Trotter's avatar
Guido Trotter committed
146
  CONFD: ("udp", 1814),
Guido Trotter's avatar
Guido Trotter committed
147
  RAPI: ("tcp", 5080),
Guido Trotter's avatar
Guido Trotter committed
148
149
  # used in the ganeti-nbma project
  NLD: ("udp", 1816),
150
151
}
DEFAULT_NODED_PORT = DAEMONS_PORTS[NODED][1]
Guido Trotter's avatar
Guido Trotter committed
152
DEFAULT_CONFD_PORT = DAEMONS_PORTS[CONFD][1]
Guido Trotter's avatar
Guido Trotter committed
153
DEFAULT_RAPI_PORT = DAEMONS_PORTS[RAPI][1]
Guido Trotter's avatar
Guido Trotter committed
154
155
# used in the ganeti-nbma project
DEFAULT_NLD_PORT = DAEMONS_PORTS[NLD][1]
156

Iustin Pop's avatar
Iustin Pop committed
157
158
FIRST_DRBD_PORT = 11000
LAST_DRBD_PORT = 14999
159
MASTER_SCRIPT = "ganeti-master"
Iustin Pop's avatar
Iustin Pop committed
160

161
LOG_DIR = _autoconf.LOCALSTATEDIR + "/log/ganeti/"
162
DAEMONS_LOGFILES = {
Michael Hanselmann's avatar
Michael Hanselmann committed
163
164
165
166
167
  # "daemon-name": "logfile"
  NODED: LOG_DIR + "node-daemon.log",
  CONFD: LOG_DIR + "conf-daemon.log",
  RAPI: LOG_DIR + "rapi-daemon.log",
  MASTERD: LOG_DIR + "master-daemon.log",
Guido Trotter's avatar
Guido Trotter committed
168
169
  # used in the ganeti-nbma project
  NLD: LOG_DIR + "nl-daemon.log",
Michael Hanselmann's avatar
Michael Hanselmann committed
170
  }
Michael Hanselmann's avatar
Michael Hanselmann committed
171

172
173
174
LOG_OS_DIR = LOG_DIR + "os"
LOG_WATCHER = LOG_DIR + "watcher.log"
LOG_COMMANDS = LOG_DIR + "commands.log"
Iustin Pop's avatar
Iustin Pop committed
175
LOG_BURNIN = LOG_DIR + "burnin.log"
Iustin Pop's avatar
Iustin Pop committed
176

Luca Bigliardi's avatar
Luca Bigliardi committed
177
178
DEV_CONSOLE = "/dev/console"

179
180
181
# luxi related constants
LUXI_EOM = "\3"

182
183
184
185
186
187
188
# one of 'no', 'yes', 'only'
SYSLOG_USAGE = _autoconf.SYSLOG_USAGE
SYSLOG_NO = "no"
SYSLOG_YES = "yes"
SYSLOG_ONLY = "only"
SYSLOG_SOCKET = "/dev/log"

189
OS_SEARCH_PATH = _autoconf.OS_SEARCH_PATH
190
EXPORT_DIR = _autoconf.EXPORT_DIR
Iustin Pop's avatar
Iustin Pop committed
191
192
193

EXPORT_CONF_FILE = "config.ini"

194
XEN_BOOTLOADER = _autoconf.XEN_BOOTLOADER
195
196
197
XEN_KERNEL = _autoconf.XEN_KERNEL
XEN_INITRD = _autoconf.XEN_INITRD

198
KVM_PATH = _autoconf.KVM_PATH
Guido Trotter's avatar
Guido Trotter committed
199
SOCAT_PATH = _autoconf.SOCAT_PATH
200
SOCAT_USE_ESCAPE = _autoconf.SOCAT_USE_ESCAPE
201
SOCAT_ESCAPE_CODE = "0x1d"
202

203
204
205
206
207
# For RSA keys more bits are better, but they also make operations more
# expensive. NIST SP 800-131 recommends a minimum of 2048 bits from the year
# 2010 on.
RSA_KEY_BITS = 2048

208
209
210
211
212
213
214
215
# Ciphers allowed for SSL connections. For the format, see ciphers(1). A better
# way to disable ciphers would be to use the exclamation mark (!), but socat
# versions below 1.5 can't parse exclamation marks in options properly. When
# modifying the ciphers, ensure to not accidentially add something after it's
# been removed. Use the "openssl" utility to check the allowed ciphers, e.g.
# "openssl ciphers -v HIGH:-DES".
OPENSSL_CIPHERS = "HIGH:-DES:-3DES:-EXPORT:-ADH"

216
217
218
# Digest used to sign certificates ("openssl x509" uses SHA1 by default)
X509_CERT_SIGN_DIGEST = "SHA1"

219
220
X509_CERT_SIGNATURE_HEADER = "X-Ganeti-Signature"

221
222
223
224
225
226
IMPORT_EXPORT_DAEMON = _autoconf.PKGLIBDIR + "/import-export"

# Import/export daemon mode
IEM_IMPORT = "import"
IEM_EXPORT = "export"

227
228
229
230
231
232
233
234
# Import/export transport compression
IEC_NONE = "none"
IEC_GZIP = "gzip"
IEC_ALL = frozenset([
  IEC_NONE,
  IEC_GZIP,
  ])

235
236
IE_CUSTOM_SIZE = "fd"

237
238
IE_MAGIC_RE = re.compile(r"^[-_.a-zA-Z0-9]{5,100}$")

239
240
241
242
243
244
245
246
# Import/export I/O
# Direct file I/O, equivalent to a shell's I/O redirection using '<' or '>'
IEIO_FILE = "file"
# Raw block device I/O using "dd"
IEIO_RAW_DISK = "raw"
# OS definition import/export script
IEIO_SCRIPT = "script"

247
VALUE_DEFAULT = "default"
248
249
VALUE_AUTO = "auto"
VALUE_GENERATE = "generate"
250
VALUE_NONE = "none"
251
252
VALUE_TRUE = "true"
VALUE_FALSE = "false"
253

254
255
256
# External script validation mask
EXT_PLUGIN_MASK = re.compile("^[a-zA-Z0-9_-]+$")

Iustin Pop's avatar
Iustin Pop committed
257
# hooks-related constants
258
HOOKS_BASE_DIR = CONF_DIR + "/hooks"
Iustin Pop's avatar
Iustin Pop committed
259
260
HOOKS_PHASE_PRE = "pre"
HOOKS_PHASE_POST = "post"
261
HOOKS_NAME_CFGUPDATE = "config-update"
Guido Trotter's avatar
Guido Trotter committed
262
HOOKS_NAME_WATCHER = "watcher"
263
HOOKS_VERSION = 2
Iustin Pop's avatar
Iustin Pop committed
264
265
266
267
268
269
270
271
272
273

# hooks subject type (what object type does the LU deal with)
HTYPE_CLUSTER = "CLUSTER"
HTYPE_NODE = "NODE"
HTYPE_INSTANCE = "INSTANCE"

HKR_SKIP = 0
HKR_FAIL = 1
HKR_SUCCESS = 2

274
275
276
277
# Storage types
ST_FILE = "file"
ST_LVM_PV = "lvm-pv"
ST_LVM_VG = "lvm-vg"
278
279

# Storage fields
280
281
282
283
# first two are valid in LU context only, not passed to backend
SF_NODE = "node"
SF_TYPE = "type"
# and the rest are valid in backend
284
285
286
287
288
289
SF_NAME = "name"
SF_SIZE = "size"
SF_FREE = "free"
SF_USED = "used"
SF_ALLOCATABLE = "allocatable"

290
291
292
# Storage operations
SO_FIX_CONSISTENCY = "fix-consistency"

293
# Available fields per storage type
294
295
296
297
VALID_STORAGE_FIELDS = frozenset([SF_NAME, SF_TYPE, SF_SIZE,
                                  SF_USED, SF_FREE, SF_ALLOCATABLE])

VALID_STORAGE_TYPES = frozenset([ST_FILE, ST_LVM_PV, ST_LVM_VG])
Iustin Pop's avatar
Iustin Pop committed
298

299
300
301
302
MODIFIABLE_STORAGE_FIELDS = {
  ST_LVM_PV: frozenset([SF_ALLOCATABLE]),
  }

303
VALID_STORAGE_OPERATIONS = {
304
  ST_LVM_VG: frozenset([SO_FIX_CONSISTENCY]),
305
306
  }

307
308
309
310
311
312
# Local disk status
# Note: Code depends on LDS_OKAY < LDS_UNKNOWN < LDS_FAULTY
(LDS_OKAY,
 LDS_UNKNOWN,
 LDS_FAULTY) = range(1, 4)

Iustin Pop's avatar
Iustin Pop committed
313
314
315
# disk template types
DT_DISKLESS = "diskless"
DT_PLAIN = "plain"
316
DT_DRBD8 = "drbd"
317
DT_FILE = "file"
318
319

# the set of network-mirrored disk templates
320
DTS_NET_MIRROR = frozenset([DT_DRBD8])
Iustin Pop's avatar
Iustin Pop committed
321

322
323
324
# the set of non-lvm-based disk templates
DTS_NOT_LVM = frozenset([DT_DISKLESS, DT_FILE])

325
# the set of disk templates which can be grown
Guido Trotter's avatar
Guido Trotter committed
326
DTS_GROWABLE = frozenset([DT_PLAIN, DT_DRBD8, DT_FILE])
327

328
329
330
# the set of disk templates that allow adoption
DTS_MAY_ADOPT = frozenset([DT_PLAIN])

331
332
# logical disk types
LD_LV = "lvm"
333
LD_DRBD8 = "drbd8"
334
LD_FILE = "file"
335
LDS_BLOCK = frozenset([LD_LV, LD_DRBD8])
336

Iustin Pop's avatar
Iustin Pop committed
337
338
# drbd constants
DRBD_HMAC_ALG = "md5"
339
DRBD_NET_PROTOCOL = "C"
340
DRBD_BARRIERS = _autoconf.DRBD_BARRIERS
Iustin Pop's avatar
Iustin Pop committed
341

342
343
344
# file backend driver
FD_LOOP = "loop"
FD_BLKTAP = "blktap"
345
346

# the set of drbd-like disk types
347
LDS_DRBD = frozenset([LD_DRBD8])
348

349
# disk access mode
350
351
DISK_RDONLY = "ro"
DISK_RDWR = "rw"
352
353
DISK_ACCESS_SET = frozenset([DISK_RDONLY, DISK_RDWR])

354
# disk replacement mode
355
356
357
REPLACE_DISK_PRI = "replace_on_primary"    # replace disks on primary
REPLACE_DISK_SEC = "replace_on_secondary"  # replace disks on secondary
REPLACE_DISK_CHG = "replace_new_secondary" # change secondary node
358
REPLACE_DISK_AUTO = "replace_auto"
359
360
361
362
363
364
REPLACE_MODES = frozenset([
  REPLACE_DISK_PRI,
  REPLACE_DISK_SEC,
  REPLACE_DISK_CHG,
  REPLACE_DISK_AUTO,
  ])
365

366
367
368
369
370
371
372
373
# Instance export mode
EXPORT_MODE_LOCAL = "local"
EXPORT_MODE_REMOTE = "remote"
EXPORT_MODES = frozenset([
  EXPORT_MODE_LOCAL,
  EXPORT_MODE_REMOTE,
  ])

374
375
# lock recalculate mode
LOCKS_REPLACE = 'replace'
376
LOCKS_APPEND = 'append'
377

378
# instance creation modes
Iustin Pop's avatar
Iustin Pop committed
379
380
INSTANCE_CREATE = "create"
INSTANCE_IMPORT = "import"
381
382
383
384
385
386
INSTANCE_REMOTE_IMPORT = "remote-import"
INSTANCE_CREATE_MODES = frozenset([
  INSTANCE_CREATE,
  INSTANCE_IMPORT,
  INSTANCE_REMOTE_IMPORT,
  ])
Iustin Pop's avatar
Iustin Pop committed
387

388
389
390
391
392
393
394
# Remote import/export handshake message and version
RIE_VERSION = 0
RIE_HANDSHAKE = "Hi, I'm Ganeti"

# Remote import/export certificate validity in seconds
RIE_CERT_VALIDITY = 24 * 60 * 60

395
396
397
# Remote import/export connect timeout for socat
RIE_CONNECT_TIMEOUT = 60

Iustin Pop's avatar
Iustin Pop committed
398
DISK_TEMPLATES = frozenset([DT_DISKLESS, DT_PLAIN,
399
400
401
                            DT_DRBD8, DT_FILE])

FILE_DRIVER = frozenset([FD_LOOP, FD_BLKTAP])
Iustin Pop's avatar
Iustin Pop committed
402
403
404
405

# import/export config options
INISECT_EXP = "export"
INISECT_INS = "instance"
406
407
INISECT_HYP = "hypervisor"
INISECT_BEP = "backend"
408
INISECT_OSP = "os"
409

410
411
412
413
# dynamic device modification
DDM_ADD = 'add'
DDM_REMOVE = 'remove'

414
# common exit codes
Iustin Pop's avatar
Iustin Pop committed
415
EXIT_SUCCESS = 0
416
EXIT_FAILURE = 1
417
EXIT_NOTCLUSTER = 5
418
EXIT_NOTMASTER = 11
419
EXIT_NODESETUP_ERROR = 12
Iustin Pop's avatar
Iustin Pop committed
420
EXIT_CONFIRMATION = 13 # need user confirmation
421

422
423
424
425
# tags
TAG_CLUSTER = "cluster"
TAG_NODE = "node"
TAG_INSTANCE = "instance"
426
427
428
429
430
VALID_TAG_TYPES = frozenset([
  TAG_CLUSTER,
  TAG_NODE,
  TAG_INSTANCE,
  ])
431
432
433
MAX_TAG_LEN = 128
MAX_TAGS_PER_OBJ = 4096

434
435
# others
DEFAULT_BRIDGE = "xen-br0"
Iustin Pop's avatar
Iustin Pop committed
436
SYNC_SPEED = 60 * 1024
Iustin Pop's avatar
Iustin Pop committed
437
LOCALHOST_IP_ADDRESS = "127.0.0.1"
438
TCP_PING_TIMEOUT = 10
439
GANETI_RUNAS = "root"
440
DEFAULT_VG = "xenvg"
441
BIND_ADDRESS_GLOBAL = "0.0.0.0"
442
MIN_VG_SIZE = 20480
443
DEFAULT_MAC_PREFIX = "aa:00:00"
444
LVM_STRIPECOUNT = _autoconf.LVM_STRIPECOUNT
445
446
# default maximum instance wait time, in seconds.
DEFAULT_SHUTDOWN_TIMEOUT = 120
447
NODE_MAX_CLOCK_SKEW = 150
448
449
# Time for an intra-cluster disk transfer to wait for a connection
DISK_TRANSFER_CONNECT_TIMEOUT = 30
450

451
452
453
454
455
456
457
# runparts results
(RUNPARTS_SKIP,
 RUNPARTS_RUN,
 RUNPARTS_ERR) = range(3)

RUNPARTS_STATUS = frozenset([RUNPARTS_SKIP, RUNPARTS_RUN, RUNPARTS_ERR])

458
459
460
461
# RPC constants
(RPC_ENCODING_NONE,
 RPC_ENCODING_ZLIB_BASE64) = range(2)

462
463
464
465
466
# os related constants
OS_SCRIPT_CREATE = 'create'
OS_SCRIPT_IMPORT = 'import'
OS_SCRIPT_EXPORT = 'export'
OS_SCRIPT_RENAME = 'rename'
467
OS_SCRIPT_VERIFY = 'verify'
Iustin Pop's avatar
Iustin Pop committed
468
OS_SCRIPTS = frozenset([OS_SCRIPT_CREATE, OS_SCRIPT_IMPORT,
469
470
                        OS_SCRIPT_EXPORT, OS_SCRIPT_RENAME,
                        OS_SCRIPT_VERIFY])
471

472
OS_API_FILE = 'ganeti_api_version'
473
OS_VARIANTS_FILE = 'variants.list'
474
475
476
OS_PARAMETERS_FILE = 'parameters.list'

OS_VALIDATE_PARAMETERS = 'parameters'
477
OS_VALIDATE_CALLS = frozenset([OS_VALIDATE_PARAMETERS])
478

479
# ssh constants
480
481
SSH_CONFIG_DIR = _autoconf.SSH_CONFIG_DIR
SSH_HOST_DSA_PRIV = SSH_CONFIG_DIR + "/ssh_host_dsa_key"
482
SSH_HOST_DSA_PUB = SSH_HOST_DSA_PRIV + ".pub"
483
SSH_HOST_RSA_PRIV = SSH_CONFIG_DIR + "/ssh_host_rsa_key"
484
SSH_HOST_RSA_PUB = SSH_HOST_RSA_PRIV + ".pub"
485
486
SSH = "ssh"
SCP = "scp"
487
488
489
490
491

# reboot types
INSTANCE_REBOOT_SOFT = "soft"
INSTANCE_REBOOT_HARD = "hard"
INSTANCE_REBOOT_FULL = "full"
492

493
494
495
496
REBOOT_TYPES = frozenset([INSTANCE_REBOOT_SOFT,
                          INSTANCE_REBOOT_HARD,
                          INSTANCE_REBOOT_FULL])

497
498
499
500
501
502
503
504
505
506
507
VTYPE_STRING = 'string'
VTYPE_BOOL = 'bool'
VTYPE_SIZE = 'size' # size, in MiBs
VTYPE_INT = 'int'
ENFORCEABLE_TYPES = frozenset([
                      VTYPE_STRING,
                      VTYPE_BOOL,
                      VTYPE_SIZE,
                      VTYPE_INT,
                      ])

508
509
510
511
512
513
# HV parameter names (global namespace)
HV_BOOT_ORDER = "boot_order"
HV_CDROM_IMAGE_PATH = "cdrom_image_path"
HV_NIC_TYPE = "nic_type"
HV_DISK_TYPE = "disk_type"
HV_VNC_BIND_ADDRESS = "vnc_bind_address"
514
HV_VNC_PASSWORD_FILE = "vnc_password_file"
515
516
517
HV_VNC_TLS = "vnc_tls"
HV_VNC_X509 = "vnc_x509_path"
HV_VNC_X509_VERIFY = "vnc_x509_verify"
518
519
HV_ACPI = "acpi"
HV_PAE = "pae"
520
521
522
HV_USE_BOOTLOADER = "use_bootloader"
HV_BOOTLOADER_ARGS = "bootloader_args"
HV_BOOTLOADER_PATH = "bootloader_path"
523
HV_KERNEL_ARGS = "kernel_args"
524
525
HV_KERNEL_PATH = "kernel_path"
HV_INITRD_PATH = "initrd_path"
526
HV_ROOT_PATH = "root_path"
527
HV_SERIAL_CONSOLE = "serial_console"
528
HV_USB_MOUSE = "usb_mouse"
529
HV_DEVICE_MODEL = "device_model"
530
HV_INIT_SCRIPT = "init_script"
531
HV_MIGRATION_PORT = "migration_port"
532
533
HV_MIGRATION_BANDWIDTH = "migration_bandwidth"
HV_MIGRATION_DOWNTIME = "migration_downtime"
534
HV_USE_LOCALTIME = "use_localtime"
535
HV_DISK_CACHE = "disk_cache"
536
537
HV_SECURITY_MODEL = "security_model"
HV_SECURITY_DOMAIN = "security_domain"
Guido Trotter's avatar
Guido Trotter committed
538
HV_KVM_FLAG = "kvm_flag"
539
HV_VHOST_NET = "vhost_net"
Balazs Lecz's avatar
Balazs Lecz committed
540
HV_KVM_USE_CHROOT = "use_chroot"
541

542
543
544
545
546
HVS_PARAMETER_TYPES = {
  HV_BOOT_ORDER: VTYPE_STRING,
  HV_CDROM_IMAGE_PATH: VTYPE_STRING,
  HV_NIC_TYPE: VTYPE_STRING,
  HV_DISK_TYPE: VTYPE_STRING,
547
  HV_VNC_PASSWORD_FILE: VTYPE_STRING,
548
549
550
551
552
553
  HV_VNC_BIND_ADDRESS: VTYPE_STRING,
  HV_VNC_TLS: VTYPE_BOOL,
  HV_VNC_X509: VTYPE_STRING,
  HV_VNC_X509_VERIFY: VTYPE_BOOL,
  HV_ACPI: VTYPE_BOOL,
  HV_PAE: VTYPE_BOOL,
554
555
556
  HV_USE_BOOTLOADER: VTYPE_BOOL,
  HV_BOOTLOADER_PATH: VTYPE_STRING,
  HV_BOOTLOADER_ARGS: VTYPE_STRING,
557
  HV_KERNEL_PATH: VTYPE_STRING,
558
  HV_KERNEL_ARGS: VTYPE_STRING,
559
560
561
562
  HV_INITRD_PATH: VTYPE_STRING,
  HV_ROOT_PATH: VTYPE_STRING,
  HV_SERIAL_CONSOLE: VTYPE_BOOL,
  HV_USB_MOUSE: VTYPE_STRING,
563
  HV_DEVICE_MODEL: VTYPE_STRING,
564
  HV_INIT_SCRIPT: VTYPE_STRING,
565
  HV_MIGRATION_PORT: VTYPE_INT,
566
567
  HV_MIGRATION_BANDWIDTH: VTYPE_INT,
  HV_MIGRATION_DOWNTIME: VTYPE_INT,
568
  HV_USE_LOCALTIME: VTYPE_BOOL,
569
  HV_DISK_CACHE: VTYPE_STRING,
570
571
  HV_SECURITY_MODEL: VTYPE_STRING,
  HV_SECURITY_DOMAIN: VTYPE_STRING,
Guido Trotter's avatar
Guido Trotter committed
572
  HV_KVM_FLAG: VTYPE_STRING,
573
  HV_VHOST_NET: VTYPE_BOOL,
Balazs Lecz's avatar
Balazs Lecz committed
574
  HV_KVM_USE_CHROOT: VTYPE_BOOL,
575
576
577
  }

HVS_PARAMETERS = frozenset(HVS_PARAMETER_TYPES.keys())
578

579
# BE parameter names
Iustin Pop's avatar
Iustin Pop committed
580
BE_MEMORY = "memory"
581
BE_VCPUS = "vcpus"
582
BE_AUTO_BALANCE = "auto_balance"
583

584
585
586
587
588
589
590
BES_PARAMETER_TYPES = {
    BE_MEMORY: VTYPE_SIZE,
    BE_VCPUS: VTYPE_INT,
    BE_AUTO_BALANCE: VTYPE_BOOL,
    }

BES_PARAMETERS = frozenset(BES_PARAMETER_TYPES.keys())
Iustin Pop's avatar
Iustin Pop committed
591

592
593
# Instance Parameters Profile
PP_DEFAULT = "default"
594

Guido Trotter's avatar
Guido Trotter committed
595
596
597
598
599
600
601
602
603
604
605
606
607
608
NIC_MODE = "mode"
NIC_LINK = "link"

NIC_MODE_BRIDGED = "bridged"
NIC_MODE_ROUTED = "routed"

NIC_VALID_MODES = frozenset([NIC_MODE_BRIDGED, NIC_MODE_ROUTED])

NICS_PARAMETER_TYPES = {
    NIC_MODE: VTYPE_STRING,
    NIC_LINK: VTYPE_STRING,
    }

NICS_PARAMETERS = frozenset(NICS_PARAMETER_TYPES.keys())
609

610
611
IDISK_SIZE = "size"
IDISK_MODE = "mode"
612
613
614
615
616
617
618
IDISK_ADOPT = "adopt"
IDISK_PARAMS = frozenset([IDISK_SIZE, IDISK_MODE, IDISK_ADOPT])
IDISK_PARAMS_TYPES = {
  IDISK_SIZE: VTYPE_SIZE,
  IDISK_MODE: VTYPE_STRING,
  IDISK_ADOPT: VTYPE_STRING,
  }
619
620
621
622
623
624
625
626
INIC_MAC = "mac"
INIC_IP = "ip"
INIC_MODE = "mode"
INIC_LINK = "link"
INIC_BRIDGE = "bridge"
INIC_PARAMS = frozenset([INIC_MAC, INIC_IP, INIC_MODE, INIC_LINK, INIC_BRIDGE])
INIC_PARAMS_TYPES = dict([(name, VTYPE_STRING) for name in INIC_PARAMS])

627
# Hypervisor constants
Iustin Pop's avatar
Iustin Pop committed
628
HT_XEN_PVM = "xen-pvm"
629
HT_FAKE = "fake"
Iustin Pop's avatar
Iustin Pop committed
630
HT_XEN_HVM = "xen-hvm"
Guido Trotter's avatar
Guido Trotter committed
631
HT_KVM = "kvm"
632
633
HT_CHROOT = "chroot"
HYPER_TYPES = frozenset([HT_XEN_PVM, HT_FAKE, HT_XEN_HVM, HT_KVM, HT_CHROOT])
Guido Trotter's avatar
Guido Trotter committed
634
HTS_REQ_PORT = frozenset([HT_XEN_HVM, HT_KVM])
635

636
VNC_BASE_PORT = 5900
637
VNC_PASSWORD_FILE = CONF_DIR + "/vnc-cluster-password"
638
VNC_DEFAULT_BIND_ADDRESS = '0.0.0.0'
639

640
# NIC types
641
642
643
HT_NIC_RTL8139 = "rtl8139"
HT_NIC_NE2K_PCI = "ne2k_pci"
HT_NIC_NE2K_ISA = "ne2k_isa"
644
645
646
647
648
HT_NIC_I82551 = "i82551"
HT_NIC_I85557B = "i82557b"
HT_NIC_I8259ER = "i82559er"
HT_NIC_PCNET = "pcnet"
HT_NIC_E1000 = "e1000"
649
HT_NIC_PARAVIRTUAL = HT_DISK_PARAVIRTUAL = "paravirtual"
650

651
652
HT_HVM_VALID_NIC_TYPES = frozenset([HT_NIC_RTL8139, HT_NIC_NE2K_PCI,
                                    HT_NIC_NE2K_ISA, HT_NIC_PARAVIRTUAL])
653
654
655
656
657
HT_KVM_VALID_NIC_TYPES = frozenset([HT_NIC_RTL8139, HT_NIC_NE2K_PCI,
                                    HT_NIC_NE2K_ISA, HT_NIC_I82551,
                                    HT_NIC_I85557B, HT_NIC_I8259ER,
                                    HT_NIC_PCNET, HT_NIC_E1000,
                                    HT_NIC_PARAVIRTUAL])
658
659
660
661
662
663
664
665
# Disk types
HT_DISK_IOEMU = "ioemu"
HT_DISK_IDE = "ide"
HT_DISK_SCSI = "scsi"
HT_DISK_SD = "sd"
HT_DISK_MTD = "mtd"
HT_DISK_PFLASH = "pflash"

666
667
668
669
670
671
672
673
674
HT_CACHE_DEFAULT = "default"
HT_CACHE_NONE = "none"
HT_CACHE_WTHROUGH = "writethrough"
HT_CACHE_WBACK = "writeback"
HT_VALID_CACHE_TYPES = frozenset([HT_CACHE_DEFAULT,
                                  HT_CACHE_NONE,
                                  HT_CACHE_WTHROUGH,
                                  HT_CACHE_WBACK])

675
HT_HVM_VALID_DISK_TYPES = frozenset([HT_DISK_PARAVIRTUAL, HT_DISK_IOEMU])
676
677
678
HT_KVM_VALID_DISK_TYPES = frozenset([HT_DISK_PARAVIRTUAL, HT_DISK_IDE,
                                     HT_DISK_SCSI, HT_DISK_SD, HT_DISK_MTD,
                                     HT_DISK_PFLASH])
679

680
681
682
683
684
685
686
687
688
689
690
691
692
# Mouse types:
HT_MOUSE_MOUSE = "mouse"
HT_MOUSE_TABLET = "tablet"

HT_KVM_VALID_MOUSE_TYPES = frozenset([HT_MOUSE_MOUSE, HT_MOUSE_TABLET])

# Boot order
HT_BO_CDROM = "cdrom"
HT_BO_DISK = "disk"
HT_BO_NETWORK = "network"

HT_KVM_VALID_BO_TYPES = frozenset([HT_BO_CDROM, HT_BO_DISK, HT_BO_NETWORK])

693
694
695
696
697
698
699
# Security models
HT_SM_NONE = "none"
HT_SM_USER = "user"
HT_SM_POOL = "pool"

HT_KVM_VALID_SM_TYPES = frozenset([HT_SM_NONE, HT_SM_USER, HT_SM_POOL])

Guido Trotter's avatar
Guido Trotter committed
700
701
702
703
704
705
# Kvm flag values
HT_KVM_ENABLED = "enabled"
HT_KVM_DISABLED = "disabled"

HT_KVM_FLAG_VALUES = frozenset([HT_KVM_ENABLED, HT_KVM_DISABLED])

706
707
708
709
# Cluster Verify steps
VERIFY_NPLUSONE_MEM = 'nplusone_mem'
VERIFY_OPTIONAL_CHECKS = frozenset([VERIFY_NPLUSONE_MEM])

710
# Node verify constants
711
NV_DRBDLIST = "drbd-list"
712
713
714
715
NV_FILELIST = "filelist"
NV_HVINFO = "hvinfo"
NV_HYPERVISOR = "hypervisor"
NV_INSTANCELIST = "instancelist"
716
717
NV_LVLIST = "lvlist"
NV_MASTERIP = "master-ip"
718
719
NV_NODELIST = "nodelist"
NV_NODENETTEST = "node-net-test"
720
NV_NODESETUP = "nodesetup"
721
722
NV_OSLIST = "oslist"
NV_PVLIST = "pvlist"
723
NV_TIME = "time"
724
725
NV_VERSION = "version"
NV_VGLIST = "vglist"
726

727
728
729
730
# SSL certificate check constants (in days)
SSL_CERT_EXPIRATION_WARN = 30
SSL_CERT_EXPIRATION_ERROR = 7

731
# Allocator framework constants
732
IALLOCATOR_VERSION = 2
733
734
IALLOCATOR_DIR_IN = "in"
IALLOCATOR_DIR_OUT = "out"
735
736
737
738
VALID_IALLOCATOR_DIRECTIONS = frozenset([
  IALLOCATOR_DIR_IN,
  IALLOCATOR_DIR_OUT,
  ])
739
740
IALLOCATOR_MODE_ALLOC = "allocate"
IALLOCATOR_MODE_RELOC = "relocate"
741
IALLOCATOR_MODE_MEVAC = "multi-evacuate"
742
743
744
745
746
VALID_IALLOCATOR_MODES = frozenset([
  IALLOCATOR_MODE_ALLOC,
  IALLOCATOR_MODE_RELOC,
  IALLOCATOR_MODE_MEVAC,
  ])
747
IALLOCATOR_SEARCH_PATH = _autoconf.IALLOCATOR_SEARCH_PATH
748

749
750
751
752
753
# Job queue
JOB_QUEUE_VERSION = 1
JOB_QUEUE_LOCK_FILE = QUEUE_DIR + "/lock"
JOB_QUEUE_VERSION_FILE = QUEUE_DIR + "/version"
JOB_QUEUE_SERIAL_FILE = QUEUE_DIR + "/serial"
754
JOB_QUEUE_ARCHIVE_DIR = QUEUE_DIR + "/archive"
755
JOB_QUEUE_DRAIN_FILE = QUEUE_DIR + "/drain"
Michael Hanselmann's avatar
Michael Hanselmann committed
756
JOB_QUEUE_SIZE_HARD_LIMIT = 5000
757
JOB_QUEUE_DIRS = [QUEUE_DIR, JOB_QUEUE_ARCHIVE_DIR]
758
JOB_QUEUE_DIRS_MODE = SECURE_DIR_MODE
759

760
761
JOB_ID_TEMPLATE = r"\d+"

762
763
764
# unchanged job return
JOB_NOTCHANGED = "nochange"

765
766
# Job status
JOB_STATUS_QUEUED = "queued"
Iustin Pop's avatar
Iustin Pop committed
767
JOB_STATUS_WAITLOCK = "waiting"
768
JOB_STATUS_CANCELING = "canceling"
769
770
771
772
773
JOB_STATUS_RUNNING = "running"
JOB_STATUS_CANCELED = "canceled"
JOB_STATUS_SUCCESS = "success"
JOB_STATUS_ERROR = "error"

774
775
# OpCode status
# not yet finalized
776
OP_STATUS_QUEUED = "queued"
Iustin Pop's avatar
Iustin Pop committed
777
OP_STATUS_WAITLOCK = "waiting"
778
OP_STATUS_CANCELING = "canceling"
779
OP_STATUS_RUNNING = "running"
780
# finalized
781
OP_STATUS_CANCELED = "canceled"
782
783
OP_STATUS_SUCCESS = "success"
OP_STATUS_ERROR = "error"
784
785
786
OPS_FINALIZED = frozenset([OP_STATUS_CANCELED,
                           OP_STATUS_SUCCESS,
                           OP_STATUS_ERROR])
787
788
789
790

# Execution log types
ELOG_MESSAGE = "message"
ELOG_PROGRESS = "progress"
791
ELOG_REMOTE_IMPORT = "remote-import"
792

793
# max dynamic devices
794
795
796
MAX_NICS = 8
MAX_DISKS = 16

Iustin Pop's avatar
Iustin Pop committed
797
798
# SSCONF keys
SS_CLUSTER_NAME = "cluster_name"
799
SS_CLUSTER_TAGS = "cluster_tags"
Iustin Pop's avatar
Iustin Pop committed
800
SS_FILE_STORAGE_DIR = "file_storage_dir"
801
SS_MASTER_CANDIDATES = "master_candidates"
802
SS_MASTER_CANDIDATES_IPS = "master_candidates_ips"
Iustin Pop's avatar
Iustin Pop committed
803
804
805
806
SS_MASTER_IP = "master_ip"
SS_MASTER_NETDEV = "master_netdev"
SS_MASTER_NODE = "master_node"
SS_NODE_LIST = "node_list"
807
808
SS_NODE_PRIMARY_IPS = "node_primary_ips"
SS_NODE_SECONDARY_IPS = "node_secondary_ips"
809
SS_OFFLINE_NODES = "offline_nodes"
810
811
SS_ONLINE_NODES = "online_nodes"
SS_INSTANCE_LIST = "instance_list"
812
SS_RELEASE_VERSION = "release_version"
813
SS_HYPERVISOR_LIST = "hypervisor_list"
814
SS_MAINTAIN_NODE_HEALTH = "maintain_node_health"
Balazs Lecz's avatar
Balazs Lecz committed
815
SS_UID_POOL = "uid_pool"
Iustin Pop's avatar
Iustin Pop committed
816

817
818
819
820
# cluster wide default parameters
DEFAULT_ENABLED_HYPERVISOR = HT_XEN_PVM

HVC_DEFAULTS = {
821
  HT_XEN_PVM: {
822
823
824
    HV_USE_BOOTLOADER: False,
    HV_BOOTLOADER_PATH: XEN_BOOTLOADER,
    HV_BOOTLOADER_ARGS: '',
825
    HV_KERNEL_PATH: "/boot/vmlinuz-2.6-xenU",
826
    HV_INITRD_PATH: '',
827
    HV_ROOT_PATH: '/dev/sda1',
828
    HV_KERNEL_ARGS: 'ro',
829
    HV_MIGRATION_PORT: 8002,
830
831
832
    },
  HT_XEN_HVM: {
    HV_BOOT_ORDER: "cd",
833
    HV_CDROM_IMAGE_PATH: '',
834
    HV_NIC_TYPE: HT_NIC_RTL8139,
835
    HV_DISK_TYPE: HT_DISK_PARAVIRTUAL,
836
    HV_VNC_BIND_ADDRESS: '0.0.0.0',
837
    HV_VNC_PASSWORD_FILE: VNC_PASSWORD_FILE,
838
839
    HV_ACPI: True,
    HV_PAE: True,
840
    HV_KERNEL_PATH: "/usr/lib/xen/boot/hvmloader",
841
    HV_DEVICE_MODEL: "/usr/lib/xen/bin/qemu-dm",
842
    HV_MIGRATION_PORT: 8002,
843
    HV_USE_LOCALTIME: False,
844
845
846
    },
  HT_KVM: {
    HV_KERNEL_PATH: "/boot/vmlinuz-2.6-kvmU",
847
    HV_INITRD_PATH: '',
848
    HV_KERNEL_ARGS: 'ro',
849
    HV_ROOT_PATH: '/dev/vda1',
850
851
    HV_ACPI: True,
    HV_SERIAL_CONSOLE: True,
852
    HV_VNC_BIND_ADDRESS: '',
853
854
855
    HV_VNC_TLS: False,
    HV_VNC_X509: '',
    HV_VNC_X509_VERIFY: False,
856
    HV_VNC_PASSWORD_FILE: '',
857
    HV_CDROM_IMAGE_PATH: '',
858
    HV_BOOT_ORDER: HT_BO_DISK,
859
860
    HV_NIC_TYPE: HT_NIC_PARAVIRTUAL,
    HV_DISK_TYPE: HT_DISK_PARAVIRTUAL,
861
    HV_USB_MOUSE: '',
862
    HV_MIGRATION_PORT: 8102,
863
864
    HV_MIGRATION_BANDWIDTH: 32, # MiB/s
    HV_MIGRATION_DOWNTIME: 30,  # ms
865
    HV_USE_LOCALTIME: False,
866
    HV_DISK_CACHE: HT_CACHE_DEFAULT,
867
868
    HV_SECURITY_MODEL: HT_SM_NONE,
    HV_SECURITY_DOMAIN: '',
Guido Trotter's avatar
Guido Trotter committed
869
    HV_KVM_FLAG: "",
870
    HV_VHOST_NET: False,
Balazs Lecz's avatar
Balazs Lecz committed
871
    HV_KVM_USE_CHROOT: False,
872
873
874
    },
  HT_FAKE: {
    },
875
876
877
  HT_CHROOT: {
    HV_INIT_SCRIPT: "/ganeti-chroot",
    },
878
  }
879

880
881
HVC_GLOBALS = frozenset([
  HV_MIGRATION_PORT,
882
  HV_MIGRATION_BANDWIDTH,
883
884
  ])

885
BEC_DEFAULTS = {
886
887
888
889
  BE_MEMORY: 128,
  BE_VCPUS: 1,
  BE_AUTO_BALANCE: True,
  }
890

Guido Trotter's avatar
Guido Trotter committed
891
892
893
894
895
NICC_DEFAULTS = {
  NIC_MODE: NIC_MODE_BRIDGED,
  NIC_LINK: DEFAULT_BRIDGE,
  }

896
MASTER_POOL_SIZE_DEFAULT = 10
Guido Trotter's avatar
Guido Trotter committed
897
898
899

CONFD_PROTOCOL_VERSION = 1

900
CONFD_REQ_PING = 0
Guido Trotter's avatar
Guido Trotter committed
901
902
CONFD_REQ_NODE_ROLE_BYNAME = 1
CONFD_REQ_NODE_PIP_BY_INSTANCE_IP = 2
903
CONFD_REQ_CLUSTER_MASTER = 3
904
905
CONFD_REQ_NODE_PIP_LIST = 4
CONFD_REQ_MC_PIP_LIST = 5
906
CONFD_REQ_INSTANCES_IPS_LIST = 6
Guido Trotter's avatar
Guido Trotter committed
907

908
909
910
911
912
913
# Confd request query fields. These are used to narrow down queries.
# These must be strings rather than integers, because json-encoding
# converts them to strings anyway, as they're used as dict-keys.
CONFD_REQQ_LINK = "0"
CONFD_REQQ_IP = "1"
CONFD_REQQ_IPLIST = "2"
914
915
916
917
CONFD_REQQ_FIELDS = "3"

CONFD_REQFIELD_NAME = "0"
CONFD_REQFIELD_IP = "1"
918
CONFD_REQFIELD_MNODE_PIP = "2"
919

Guido Trotter's avatar
Guido Trotter committed
920
CONFD_REQS = frozenset([
921
  CONFD_REQ_PING,
Guido Trotter's avatar
Guido Trotter committed
922
923
  CONFD_REQ_NODE_ROLE_BYNAME,
  CONFD_REQ_NODE_PIP_BY_INSTANCE_IP,
924
  CONFD_REQ_CLUSTER_MASTER,
925
926
  CONFD_REQ_NODE_PIP_LIST,
  CONFD_REQ_MC_PIP_LIST,
927
  CONFD_REQ_INSTANCES_IPS_LIST,
Guido Trotter's avatar
Guido Trotter committed
928
929
  ])

930
931
932
933
934
935
936
937
938
939
CONFD_REPL_STATUS_OK = 0
CONFD_REPL_STATUS_ERROR = 1
CONFD_REPL_STATUS_NOTIMPLEMENTED = 2

CONFD_REPL_STATUSES = frozenset([
  CONFD_REPL_STATUS_OK,
  CONFD_REPL_STATUS_ERROR,
  CONFD_REPL_STATUS_NOTIMPLEMENTED,
  ])

Guido Trotter's avatar
Guido Trotter committed
940
941
942
(CONFD_NODE_ROLE_MASTER,
 CONFD_NODE_ROLE_CANDIDATE,
 CONFD_NODE_ROLE_OFFLINE,
Guido Trotter's avatar
Guido Trotter committed
943
944
945
 CONFD_NODE_ROLE_DRAINED,
 CONFD_NODE_ROLE_REGULAR,
 ) = range(5)
Guido Trotter's avatar
Guido Trotter committed
946

947
948
# A few common errors for confd
CONFD_ERROR_UNKNOWN_ENTRY = 1
949
CONFD_ERROR_INTERNAL = 2
950
CONFD_ERROR_ARGUMENT = 3
951

Guido Trotter's avatar
Guido Trotter committed
952
953
954
# Each request is "salted" by the current timestamp.
# This constants decides how many seconds of skew to accept.
# TODO: make this a default and allow the value to be more configurable
955
CONFD_MAX_CLOCK_SKEW = 2 * NODE_MAX_CLOCK_SKEW
956
957
958
959
960
961
962
963
964

# When we haven't reloaded the config for more than this amount of seconds, we
# force a test to see if inotify is betraying us.
CONFD_CONFIG_RELOAD_TIMEOUT = 60

# If we receive more than one update in this amount of seconds, we move to
# polling every RATELIMIT seconds, rather than relying on inotify, to be able
# to serve more requests.
CONFD_CONFIG_RELOAD_RATELIMIT = 2
965

966
967
968
969
970
971
# Magic number prepended to all confd queries.
# This allows us to distinguish different types of confd protocols and handle
# them. For example by changing this we can move the whole payload to be
# compressed, or move away from json.
CONFD_MAGIC_FOURCC = 'plj0'

Guido Trotter's avatar
Guido Trotter committed
972
973
974
975
976
977
978
979
980
981
# By default a confd request is sent to the minimum between this number and all
# MCs. 6 was chosen because even in the case of a disastrous 50% response rate,
# we should have enough answers to be able to compare more than one.
CONFD_DEFAULT_REQ_COVERAGE = 6

# Timeout in seconds to expire pending query request in the confd client
# library. We don't actually expect any answer more than 10 seconds after we
# sent a request.
CONFD_CLIENT_EXPIRE_TIMEOUT = 10

982
983
984
985
986
987
# Maximum UDP datagram size.
# On IPv4: 64K - 20 (ip header size) - 8 (udp header size) = 65507
# On IPv6: 64K - 40 (ip6 header size) - 8 (udp header size) = 65487
#   (assuming we can't use jumbo frames)
# We just set this to 60K, which should be enough
MAX_UDP_DATA_SIZE = 61440
Balazs Lecz's avatar
Balazs Lecz committed
988
989
990
991

# User-id pool minimum/maximum acceptable user-ids.
UIDPOOL_UID_MIN = 0
UIDPOOL_UID_MAX = 2**32-1 # Assuming 32 bit user-ids
992
9