blob: f76fb4c8a8e60bcd2b33b9725aefb605c4e98828 [file] [log] [blame]
Aleš Komáreka3314b22017-04-11 13:46:06 +02001====================
2OpenContrail Formula
3====================
Filip Pytloun27930402015-10-06 16:28:32 +02004
Jakub Pavlik01fe5372016-05-20 11:23:28 +02005Contrail Controller is an open, standards-based software solution that
6delivers network virtualization and service automation for federated cloud
7networks. It provides self-service provisioning, improves network
8troubleshooting and diagnostics, and enables service chaining for dynamic
9application environments across enterprise virtual private cloud (VPC),
10managed Infrastructure as a Service (IaaS), and Networks Functions
11Virtualization (NFV) use cases.
Filip Pytloun27930402015-10-06 16:28:32 +020012
Jiri Konecny463dee52016-03-03 11:08:46 +010013
Petr Michalec579e64d2017-03-24 12:54:29 +010014Package source
15==============
Aleš Komáreka3314b22017-04-11 13:46:06 +020016
Petr Michalec579e64d2017-03-24 12:54:29 +010017Formula support OpenContrail as well as Juniper Contrail package repository in the backend.
18
19Differences withing the configuration and state run are controlled by
20``opencontrail.common.vendor: [opencontrail|juniper]`` pillar attribute.
21
22Default value is set to ``opencontrail``.
23
24Juniper releases tested with this formula:
25 - 3.0.2.x
26
27To use Juniper Contrail repository as a source of packages override pillar as in this example:
28
29.. code-block:: yaml
30
31 opencontrail:
32 common:
33 vendor: juniper
34
35
Aleš Komáreka3314b22017-04-11 13:46:06 +020036Sample Pillars
Filip Pytloun27930402015-10-06 16:28:32 +020037==============
38
Jiri Konecny463dee52016-03-03 11:08:46 +010039Controller nodes
40----------------
41
42There are several scenarios for OpenContrail control plane.
43
44All-in-one single
45~~~~~~~~~~~~~~~~~
46
47Config, control, analytics, database, web -- altogether on one node.
48
49.. code-block:: yaml
50
51 opencontrail:
52 common:
53 version: 2.2
54 source:
55 engine: pkg
56 address: http://mirror.robotice.cz/contrail-havana/
57 identity:
58 engine: keystone
59 host: 127.0.0.1
60 port: 35357
61 token: token
62 password: password
63 network:
64 engine: neutron
65 host: 127.0.0.1
66 port: 9696
67 config:
68 version: 2.2
69 enabled: true
70 network:
71 engine: neutron
72 host: 127.0.0.1
73 port: 9696
74 discovery:
75 host: 127.0.0.1
76 analytics:
77 host: 127.0.0.1
78 bind:
79 address: 127.0.0.1
80 message_queue:
81 engine: rabbitmq
82 host: 127.0.0.1
83 port: 5672
84 database:
85 members:
86 - host: 127.0.0.1
87 port: 9160
88 cache:
Jakub Pavlikd1a059e2016-07-13 23:08:33 +020089 members:
90 - host: 127.0.0.1
91 port: 11211
Jiri Konecny463dee52016-03-03 11:08:46 +010092 identity:
93 engine: keystone
94 version: '2.0'
95 region: RegionOne
96 host: 127.0.0.1
97 port: 35357
98 user: admin
99 password: password
100 token: token
101 tenant: admin
102 members:
103 - host: 127.0.0.1
104 id: 1
Dmitry Stremkovskiy841fee32017-09-01 18:08:41 +0300105 rootlogger: "INFO, CONSOLE"
Jiri Konecny463dee52016-03-03 11:08:46 +0100106 control:
107 version: 2.2
108 enabled: true
109 bind:
110 address: 127.0.0.1
111 discovery:
112 host: 127.0.0.1
113 master:
114 host: 127.0.0.1
115 members:
116 - host: 127.0.0.1
117 id: 1
118 collector:
119 version: 2.2
120 enabled: true
121 bind:
122 address: 127.0.0.1
123 master:
124 host: 127.0.0.1
125 discovery:
126 host: 127.0.0.1
127 data_ttl: 2
128 database:
129 members:
130 - host: 127.0.0.1
131 port: 9160
132 database:
133 version: 2.2
134 cassandra:
135 version: 2
136 enabled: true
137 minimum_disk: 10
138 name: 'Contrail'
139 original_token: 0
Dmitry Stremkovskiy2a079c72017-07-12 23:11:18 +0300140 compaction_throughput_mb_per_sec: 16
Dmitry Stremkovskiy71b310a2017-08-11 20:39:11 +0300141 concurrent_compactors: 1
Jiri Konecny463dee52016-03-03 11:08:46 +0100142 data_dirs:
143 - /var/lib/cassandra
144 id: 1
145 discovery:
146 host: 127.0.0.1
147 bind:
148 host: 127.0.0.1
149 port: 9042
150 rpc_port: 9160
151 members:
152 - host: 127.0.0.1
153 id: 1
154 web:
155 version: 2.2
156 enabled: True
157 bind:
158 address: 127.0.0.1
159 analytics:
160 host: 127.0.0.1
161 master:
162 host: 127.0.0.1
163 cache:
164 engine: redis
165 host: 127.0.0.1
166 port: 6379
167 members:
168 - host: 127.0.0.1
169 id: 1
170 identity:
171 engine: keystone
172 version: '2.0'
173 host: 127.0.0.1
174 port: 35357
175 user: admin
176 password: password
177 token: token
178 tenant: admin
179
180
181All-in-one cluster
182~~~~~~~~~~~~~~~~~~
183
Jakub Pavlik01fe5372016-05-20 11:23:28 +0200184Config, control, analytics, database, web -- altogether, clustered on multiple
185nodes.
Jiri Konecny463dee52016-03-03 11:08:46 +0100186
187.. code-block:: yaml
188
189 opencontrail:
190 common:
191 version: 2.2
192 source:
193 engine: pkg
194 address: http://mirror.robotice.cz/contrail-havana/
195 identity:
196 engine: keystone
197 host: 127.0.0.1
198 port: 35357
199 token: token
200 password: password
201 network:
202 engine: neutron
203 host: 127.0.0.1
204 port: 9696
205 config:
206 version: 2.2
207 enabled: true
208 network:
209 engine: neutron
210 host: 127.0.0.1
211 port: 9696
212 discovery:
213 host: 127.0.0.1
214 analytics:
215 host: 127.0.0.1
216 bind:
217 address: 127.0.0.1
218 message_queue:
219 engine: rabbitmq
220 host: 127.0.0.1
221 port: 5672
222 database:
223 members:
224 - host: 127.0.0.1
225 port: 9160
226 - host: 127.0.0.1
227 port: 9160
228 - host: 127.0.0.1
229 port: 9160
230 cache:
Jakub Pavlikd1a059e2016-07-13 23:08:33 +0200231 members:
232 - host: 127.0.0.1
233 port: 11211
234 - host: 127.0.0.1
235 port: 11211
236 - host: 127.0.0.1
237 port: 11211
Jiri Konecny463dee52016-03-03 11:08:46 +0100238 identity:
239 engine: keystone
240 version: '2.0'
241 region: RegionOne
242 host: 127.0.0.1
243 port: 35357
244 user: admin
245 password: password
246 token: token
247 tenant: admin
248 members:
249 - host: 127.0.0.1
250 id: 1
251 - host: 127.0.0.1
252 id: 2
253 - host: 127.0.0.1
254 id: 3
255 control:
256 version: 2.2
257 enabled: true
258 bind:
259 address: 127.0.0.1
260 discovery:
261 host: 127.0.0.1
262 master:
263 host: 127.0.0.1
264 members:
265 - host: 127.0.0.1
266 id: 1
267 - host: 127.0.0.1
268 id: 2
269 - host: 127.0.0.1
270 id: 3
271 collector:
272 version: 2.2
273 enabled: true
274 bind:
275 address: 127.0.0.1
276 master:
277 host: 127.0.0.1
278 discovery:
279 host: 127.0.0.1
280 data_ttl: 1
281 database:
282 members:
283 - host: 127.0.0.1
284 port: 9160
285 - host: 127.0.0.1
286 port: 9160
287 - host: 127.0.0.1
288 port: 9160
289 database:
290 version: 2.2
291 cassandra:
292 version: 2
293 enabled: true
294 name: 'Contrail'
295 minimum_disk: 10
296 original_token: 0
297 data_dirs:
298 - /var/lib/cassandra
299 id: 1
300 discovery:
301 host: 127.0.0.1
302 bind:
303 host: 127.0.0.1
304 port: 9042
305 rpc_port: 9160
306 members:
307 - host: 127.0.0.1
308 id: 1
309 - host: 127.0.0.1
310 id: 2
311 - host: 127.0.0.1
312 id: 3
313 web:
314 version: 2.2
315 enabled: True
316 bind:
317 address: 127.0.0.1
318 master:
319 host: 127.0.0.1
320 analytics:
321 host: 127.0.0.1
322 cache:
323 engine: redis
324 host: 127.0.0.1
325 port: 6379
326 members:
327 - host: 127.0.0.1
328 id: 1
329 - host: 127.0.0.1
330 id: 2
331 - host: 127.0.0.1
332 id: 3
333 identity:
334 engine: keystone
335 version: '2.0'
336 host: 127.0.0.1
337 port: 35357
338 user: admin
339 password: password
340 token: token
341 tenant: admin
342
343
344Separated analytics from control and config
345~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
346
347Config, control, database, web.
348
349.. code-block:: yaml
350
351 opencontrail:
352 common:
353 version: 2.2
354 identity:
355 engine: keystone
356 host: 127.0.0.1
357 port: 35357
358 token: token
359 password: password
360 network:
361 engine: neutron
362 host: 127.0.0.1
363 port: 9696
364 config:
365 version: 2.2
366 enabled: true
367 network:
368 engine: neutron
369 host: 127.0.0.1
370 port: 9696
371 discovery:
372 host: 127.0.0.1
373 analytics:
374 host: 127.0.0.1
375 bind:
376 address: 127.0.0.1
377 message_queue:
378 engine: rabbitmq
379 host: 127.0.0.1
380 port: 5672
381 database:
382 members:
383 - host: 127.0.0.1
384 port: 9160
385 - host: 127.0.0.1
386 port: 9160
387 - host: 127.0.0.1
388 port: 9160
389 cache:
Jakub Pavlikd1a059e2016-07-13 23:08:33 +0200390 members:
391 - host: 127.0.0.1
392 port: 11211
393 - host: 127.0.0.1
394 port: 11211
395 - host: 127.0.0.1
396 port: 11211
Jiri Konecny463dee52016-03-03 11:08:46 +0100397 identity:
398 engine: keystone
399 version: '2.0'
400 region: RegionOne
401 host: 127.0.0.1
402 port: 35357
403 user: admin
404 password: password
405 token: token
406 tenant: admin
407 members:
408 - host: 127.0.0.1
409 id: 1
410 - host: 127.0.0.1
411 id: 2
412 - host: 127.0.0.1
413 id: 3
414 control:
415 version: 2.2
416 enabled: true
417 bind:
418 address: 127.0.0.1
419 discovery:
420 host: 127.0.0.1
421 master:
422 host: 127.0.0.1
423 members:
424 - host: 127.0.0.1
425 id: 1
426 - host: 127.0.0.1
427 id: 2
428 - host: 127.0.0.1
429 id: 3
430 database:
431 version: 127.0.0.1
432 cassandra:
433 version: 2
434 enabled: true
435 name: 'Contrail'
436 minimum_disk: 10
437 original_token: 0
438 data_dirs:
439 - /var/lib/cassandra
440 id: 1
441 discovery:
442 host: 127.0.0.1
443 bind:
444 host: 127.0.0.1
445 port: 9042
446 rpc_port: 9160
447 members:
448 - host: 127.0.0.1
449 id: 1
450 - host: 127.0.0.1
451 id: 2
452 - host: 127.0.0.1
453 id: 3
454 web:
455 version: 2.2
456 enabled: True
457 bind:
458 address: 127.0.0.1
459 analytics:
460 host: 127.0.0.1
461 master:
462 host: 127.0.0.1
463 cache:
464 engine: redis
465 host: 127.0.0.1
466 port: 6379
467 members:
468 - host: 127.0.0.1
469 id: 1
470 - host: 127.0.0.1
471 id: 2
472 - host: 127.0.0.1
473 id: 3
474 identity:
475 engine: keystone
476 version: '2.0'
477 host: 127.0.0.1
478 port: 35357
479 user: admin
480 password: password
481 token: token
482 tenant: admin
483
Jiri Konecny463dee52016-03-03 11:08:46 +0100484Analytic nodes
Jiri Konecny463dee52016-03-03 11:08:46 +0100485
486Analytics and database on an analytic node(s)
487
488.. code-block:: yaml
489
490 opencontrail:
491 common:
492 version: 2.2
493 identity:
494 engine: keystone
495 host: 127.0.0.1
496 port: 35357
497 token: token
498 password: password
499 network:
500 engine: neutron
501 host: 127.0.0.1
502 port: 9696
503 collector:
504 version: 2.2
505 enabled: true
506 bind:
507 address: 127.0.0.1
508 master:
509 host: 127.0.0.1
510 discovery:
511 host: 127.0.0.1
512 data_ttl: 1
513 database:
514 members:
515 - host: 127.0.0.1
516 port: 9160
517 - host: 127.0.0.1
518 port: 9160
519 - host: 127.0.0.1
520 port: 9160
521 database:
522 version: 2.2
523 cassandra:
524 version: 2
525 enabled: true
526 name: 'Contrail'
527 minimum_disk: 10
528 original_token: 0
529 data_dirs:
530 - /var/lib/cassandra
531 id: 1
532 discovery:
533 host: 127.0.0.1
534 bind:
535 host: 127.0.0.1
536 port: 9042
537 rpc_port: 9160
538 members:
539 - host: 127.0.0.1
540 id: 1
541 - host: 127.0.0.1
542 id: 2
543 - host: 127.0.0.1
544 id: 3
545
546
547Compute nodes
Aleš Komáreka3314b22017-04-11 13:46:06 +0200548-------------
Jiri Konecny463dee52016-03-03 11:08:46 +0100549
550Vrouter configuration on a compute node(s)
551
552.. code-block:: yaml
553
554 opencontrail:
555 common:
556 version: 2.2
557 identity:
558 engine: keystone
559 host: 127.0.0.1
560 port: 35357
561 token: token
562 password: password
563 network:
564 engine: neutron
565 host: 127.0.0.1
566 port: 9696
567 compute:
568 version: 2.2
569 enabled: True
Dmitry Stremkovskiy0cb5c562017-07-26 00:32:51 +0300570 hostname: node-12.domain.tld
Jiri Konecny463dee52016-03-03 11:08:46 +0100571 discovery:
572 host: 127.0.0.1
573 interface:
574 address: 127.0.0.1
575 dev: eth0
576 gateway: 127.0.0.1
577 mask: /24
578 dns: 127.0.0.1
579 mtu: 9000
580
Petr Jediný5f3008a2017-07-31 15:04:05 +0200581
582Compute nodes with gateway_mode
583-------------------------------
584
585Gateway mode: can be server/ vcpe (default is none)
586
587.. code-block:: yaml
588
589 opencontrail:
590 compute:
591 gateway_mode: server
592
Vasyl Saienkob10b7202017-09-05 14:19:03 +0300593TSN nodes
594---------
595
596Configure TSN nodes
597
598.. code-block:: yaml
599
600 opencontrail:
601 compute:
602 enabled: true
603 tor:
604 enabled: true
605 bind:
606 port: 8086
607 agent:
608 tor01:
609 id: 0
610 port: 6632
611 host: 127.0.0.1
612 address: 127.0.0.1
613
Petr Jediný5f3008a2017-07-31 15:04:05 +0200614
Andreyeff77ac2017-08-25 12:14:06 -0500615Set up metadata secret for the Vrouter
616-------------------------------------
617
Vasyl Saienkob10b7202017-09-05 14:19:03 +0300618In order to get cloud-init within the instance to properly fetch
Andreyeff77ac2017-08-25 12:14:06 -0500619instance metadata, metadata_proxy_secret in the Vrouter agent config
620should match the value in nova.conf. The administrator should define
621it in the pillar:
622
623.. code-block:: yaml
624
625 opencontrail:
626 compute:
627 metadata:
628 secret: opencontrail
629
Jakub Pavlik735005f2016-02-26 15:54:53 +0100630Keystone v3
Aleš Komáreka3314b22017-04-11 13:46:06 +0200631-----------
Jakub Pavlik735005f2016-02-26 15:54:53 +0100632
Jakub Pavlik01fe5372016-05-20 11:23:28 +0200633To enable support for keystone v3 in opencontrail, there must be defined
634version for config and web role.
Jakub Pavlik735005f2016-02-26 15:54:53 +0100635
636.. code-block:: yaml
637
638 opencontrail:
639 config:
640 version: 2.2
641 enabled: true
642 ...
643 identity:
644 engine: keystone
645 version: '3'
646 ...
647
648 opencontrail:
649 web:
650 version: 2.2
651 enabled: true
652 ...
653 identity:
654 engine: keystone
655 version: '3'
656 ...
657
marco10cc2212016-04-03 14:21:54 +0200658Without Keystone
659----------------
660
661.. code-block:: yaml
662
663 opencontrail:
664 ...
665 common:
666 ...
667 identity:
668 engine: none
669 token: none
670 password: none
671 ...
672 config:
673 ...
674 identity:
675 engine: none
676 password: none
677 token: none
678 ...
679 web:
680 ...
681 identity:
682 engine: none
683 password: none
684 token: none
685 ...
marcof5461712016-04-04 20:49:36 +0200686
Aleš Komáreka3314b22017-04-11 13:46:06 +0200687Kubernetes support
688------------------
689
marcof5461712016-04-04 20:49:36 +0200690Kubernetes vrouter nodes
marcof5461712016-04-04 20:49:36 +0200691
692Vrouter configuration on a kubernetes node(s)
693
694.. code-block:: yaml
695
696 opencontrail:
697 ...
698 compute:
699 engine: kubernetes
700 ...
701
Jakub Pavlik0d1f67e2016-11-30 10:04:13 +0100702vRouter with separated control plane
Jakub Pavlik0d1f67e2016-11-30 10:04:13 +0100703
704Separate XMPP traffic from dataplane interface.
705
706.. code-block:: yaml
707
708 opencontrail:
709 compute:
710 bind:
711 address: 172.16.0.50
712 ...
713
Petr Jediný439fab32017-07-10 14:33:09 +0200714Override RPF default in Contrail API
715------------------------------------
716
717From MCP1.1 with OpenContrail >= 3.1.1 you can override RPF default for newly
718created virtual networks. This can be useful for usecases like running
719Calico and K8S in overlay. The `override_rpf_default_by` has valid values
720`disable`, `enable`. If not defined, the configuration fallbacks to Contrail
721default - currently `enable`.
722
723.. code-block:: yaml
724
725 opencontrail:
726 ...
727 config:
728 override_rpf_default_by: 'disable'
729 ...
730
731
Jakub Pavlik6d90f362016-04-19 20:34:37 +0200732Disable Contrail API authentication
733-----------------------------------
734
Petr Jediný78e6f422017-06-01 13:24:49 +0200735Contrail version must >= 3.0. It is useful especially for Keystone v3.
Jakub Pavlik6d90f362016-04-19 20:34:37 +0200736
737.. code-block:: yaml
738
739 opencontrail:
740 ...
741 config:
742 multi_tenancy: false
743 ...
744
Petr Jediný78e6f422017-06-01 13:24:49 +0200745Switch from on demand to periodic keystone sync
746-----------------------------------------------
747
748This can be useful when you want to sync projects from OpenStack to Contrail
749automatically. The period of sync is 60s.
750
751.. code-block:: yaml
752
753 opencontrail:
754 ...
755 config:
756 identity:
757 sync_on_demand: false
758 ...
759
marco2502e052016-05-31 22:53:54 +0200760Cassandra listen interface
Petr Jedinýffbe2082017-03-07 00:56:47 +0100761--------------------------
marco2502e052016-05-31 22:53:54 +0200762
763.. code-block:: yaml
Vasyl Saienkob10b7202017-09-05 14:19:03 +0300764
marco2502e052016-05-31 22:53:54 +0200765 database:
766 ....
767 bind:
768 interface: eth0
769 port: 9042
770 rpc_port: 9160
771 ....
Jakub Pavlik6d90f362016-04-19 20:34:37 +0200772
Petr Jedinýffbe2082017-03-07 00:56:47 +0100773OpenContrail WebUI version >= 3.1.1
774-----------------------------------
Petr Jediný78e6f422017-06-01 13:24:49 +0200775For OpenContrail version >= 3.1.1 and Cassandra >= 2.1 we should override WebUI's cassandra port from 9160 to 9042.
Petr Jedinýffbe2082017-03-07 00:56:47 +0100776
777For appropriate node at class level:
778
779.. code-block:: yaml
Aleš Komáreka3314b22017-04-11 13:46:06 +0200780
Petr Jedinýffbe2082017-03-07 00:56:47 +0100781 opencontrail:
782 ....
783 web:
784 database:
785 port: 9042
786 ....
787
788
Jakub Pavlik9a4de012016-12-14 13:23:55 +0100789RabbitMQ HA hosts
790------------------
791
792.. code-block:: yaml
793
794 opencontrail:
795 config:
796 message_queue:
797 engine: rabbitmq
798 members:
799 - host: 10.0.16.1
800 - host: 10.0.16.2
801 - host: 10.0.16.3
802 port: 5672
803
804.. code-block:: yaml
805
806 database:
807 ....
808 bind:
809 interface: eth0
810 port: 9042
811 rpc_port: 9160
812 ....
813
Jakub Pavlike3590062017-02-20 23:32:57 +0100814DPDK vRouter
815-------------
816
817.. code-block:: yaml
818
819 opencontrail:
820 compute:
821 dpdk:
822 enabled: true
Jakub Pavlik54761d82017-03-08 11:22:37 +0100823 taskset: "0x0000003C00003C"
824 socket_mem: "1024,1024"
Jakub Pavlike3590062017-02-20 23:32:57 +0100825 interface:
826 mac_address: 90:e2:ba:7c:22:e1
827 pci: 0000:81:00.1
828 ...
829
Ales Komarekad46d2e2017-03-09 17:16:38 +0100830Contrail client
831---------------
832
833Basic parameters with identity and host configs
834
Petr Jediný78e6f422017-06-01 13:24:49 +0200835.. code-block:: yaml
Ales Komarekad46d2e2017-03-09 17:16:38 +0100836
837 opencontrail:
838 client:
839 identity:
840 user: admin
841 project: admin
842 password: adminpass
843 host: keystone_host
844 config:
845 host: contrail_api_host
846 port: contrail_api_ort
847
848Enforcing virtual routers
849
Petr Jediný78e6f422017-06-01 13:24:49 +0200850.. code-block:: yaml
Ales Komarekad46d2e2017-03-09 17:16:38 +0100851
852 opencontrail:
853 client:
854 ...
855 virtual_router:
856 cmp01:
857 ip_address: 172.16.0.11
858 dpdk_enabled: True
859 cmp02:
860 ip_address: 172.16.0.12
861 dpdk_enabled: True
862
863Enforcing control nodes
864
Petr Jediný78e6f422017-06-01 13:24:49 +0200865.. code-block:: yaml
Ales Komarekad46d2e2017-03-09 17:16:38 +0100866
867 opencontrail:
868 client:
869 ...
870 bgp_router:
871 ntw01:
872 type: control-node
873 ip_address: 172.16.0.11
874 nwt02:
875 type: control-node
876 ip_address: 172.16.0.12
877 nwt03:
878 type: control-node
879 ip_address: 172.16.0.13
880
881
882Enforcing edge BGP routers
883
Petr Jediný78e6f422017-06-01 13:24:49 +0200884.. code-block:: yaml
Ales Komarekad46d2e2017-03-09 17:16:38 +0100885
886 opencontrail:
887 client:
888 ...
889 bgp_router:
890 mx01:
891 type: router
892 ip_address: 172.16.0.21
893 asn: 64512
894 mx02:
895 type: router
896 ip_address: 172.16.0.22
897 asn: 64512
898
899Enforcing config nodes
900
Petr Jediný78e6f422017-06-01 13:24:49 +0200901.. code-block:: yaml
Ales Komarekad46d2e2017-03-09 17:16:38 +0100902
903 opencontrail:
904 client:
905 ...
906 config_node:
907 ctl01:
908 ip_address: 172.16.0.21
909 ctl02:
910 ip_address: 172.16.0.22
911
912Enforcing database nodes
913
Petr Jediný78e6f422017-06-01 13:24:49 +0200914.. code-block:: yaml
Ales Komarekad46d2e2017-03-09 17:16:38 +0100915
916 opencontrail:
917 client:
918 ...
919 database_node:
920 ntw01:
921 ip_address: 172.16.0.21
922 ntw02:
923 ip_address: 172.16.0.22
924
925Enforcing analytics nodes
926
Petr Jediný78e6f422017-06-01 13:24:49 +0200927.. code-block:: yaml
Ales Komarekad46d2e2017-03-09 17:16:38 +0100928
929 opencontrail:
930 client:
931 ...
932 analytics_node:
933 nal01:
934 ip_address: 172.16.0.31
935 nal02:
936 ip_address: 172.16.0.32
937
Petr Jediný5f3efe32017-05-26 17:55:09 +0200938Enforcing Link Local Services
939
940.. code-block:: yaml
941
942 opencontrail:
943 client:
944 ...
945 linklocal_service:
946 # example with dns name address (only one permited)
947 meta1:
948 lls_ip: 10.0.0.23
949 lls_port: 80
950 ipf_addresses: "meta.example.com"
951 ipf_port: 80
952 # example with multiple ip addresses
953 meta2:
954 lls_ip: 10.0.0.23
955 lls_port: 80
956 ipf_addresses:
957 - 10.10.10.10
958 - 10.20.20.20
959 - 10.30.30.30
960 ipf_port: 80
961 # example with one ip address
962 meta3:
963 lls_ip: 10.0.0.23
964 lls_port: 80
965 ipf_addresses:
966 - 10.10.10.10
967 ipf_port: 80
968 # example with name override
969 lls_meta4:
970 name: meta4
971 lls_ip: 10.0.0.23
972 lls_port: 80
973 ipf_addresses:
974 - 10.10.10.10
975 ipf_port: 80
976
Vasyl Saienkob10b7202017-09-05 14:19:03 +0300977Enforcing physical routers
978
979.. code-block:: yaml
980
981 opencontrail:
982 client:
983 ...
984 physical_router:
985 router1:
986 name: router1
987 dataplane_ip: 1.2.3.4
988 management_ip: 1.2.3.4
989 vendor_name: ovs
990 product_name: ovs
991 agents:
992 - tsn0-0
993 - tsn0
994
995Enforcing physical/logical interfaces for routers
996
997
998.. code-block:: yaml
999
1000 opencontrail
1001 client:
1002 ...
1003 physical_router:
1004 router1:
1005 ...
1006 interface:
1007 port1:
1008 name: port1
1009 logical_interface:
1010 port1_l:
1011 name: 'port1.0'
1012 vlan_tag: 0
1013 interface_type: L2
1014 virtual_machine_interface:
1015 port1_port:
1016 name: port1_port
1017 ip_address: 192.168.90.107
1018 mac_address: '2e:92:a8:af:c2:21'
1019 security_group: 'default'
1020 virtual_network: 'virtual-network'
1021
Ales Komarekad46d2e2017-03-09 17:16:38 +01001022
Filip Pytloun27930402015-10-06 16:28:32 +02001023Usage
1024=====
1025
1026Basic installation
Ales Komarekad46d2e2017-03-09 17:16:38 +01001027------------------
Filip Pytloun27930402015-10-06 16:28:32 +02001028
1029Add control BGP
Ales Komarekad46d2e2017-03-09 17:16:38 +01001030
1031.. code-block:: bash
Filip Pytloun27930402015-10-06 16:28:32 +02001032
1033 python /etc/contrail/provision_control.py --api_server_ip 192.168.1.11 --api_server_port 8082 --host_name network1.contrail.domain.com --host_ip 192.168.1.11 --router_asn 64512
1034
Ales Komarekad46d2e2017-03-09 17:16:38 +01001035Install compute node
Filip Pytloun27930402015-10-06 16:28:32 +02001036
Ales Komarekad46d2e2017-03-09 17:16:38 +01001037.. code-block:: bash
Filip Pytloun27930402015-10-06 16:28:32 +02001038
1039 yum install contrail-vrouter contrail-openstack-vrouter
1040
1041 salt-call state.sls nova,opencontrail
1042
1043Add virtual router
Filip Pytloun27930402015-10-06 16:28:32 +02001044
Ales Komarekad46d2e2017-03-09 17:16:38 +01001045.. code-block:: bash
Filip Pytloun27930402015-10-06 16:28:32 +02001046
1047 python /etc/contrail/provision_vrouter.py --host_name hostnode1.intra.domain.com --host_ip 10.0.100.101 --api_server_ip 10.0.100.30 --oper add --admin_user admin --admin_password cloudlab --admin_tenant_name admin
1048
1049 /etc/sysconfig/network-scripts/ifcfg-bond0 -- comment GATEWAY,NETMASK,IPADDR
1050
1051 reboot
1052
Aleš Komáreka3314b22017-04-11 13:46:06 +02001053Debugging
1054---------
Filip Pytloun27930402015-10-06 16:28:32 +02001055
1056Display vhost XMPP connection status
1057
1058You should see the correct controller_ip and state should be established.
1059
1060 http://<compute-node>:8085/Snh_AgentXmppConnectionStatusReq?
1061
1062Display vrouter interface status
1063
1064When vrf_name = ---ERROR--- then something goes wrong
1065
1066 http://<compute-node>:8085/Snh_ItfReq?name=
1067
1068Display IF MAP table
1069
Vasyl Saienkob10b7202017-09-05 14:19:03 +03001070Look for neighbours, if VM has 2, it's ok
Filip Pytloun27930402015-10-06 16:28:32 +02001071
1072 http://<control-node>:8083/Snh_IFMapTableShowReq?table_name=
1073
1074Trace XMPP requests
1075
1076 http://<compute-node>:8085/Snh_SandeshTraceRequest?x=XmppMessageTrace
1077
Filip Pytlounf6b79d42017-02-02 13:02:03 +01001078
1079Documentation and Bugs
1080======================
1081
1082To learn how to install and update salt-formulas, consult the documentation
1083available online at:
1084
1085 http://salt-formulas.readthedocs.io/
1086
1087In the unfortunate event that bugs are discovered, they should be reported to
1088the appropriate issue tracker. Use Github issue tracker for specific salt
1089formula:
1090
1091 https://github.com/salt-formulas/salt-formula-opencontrail/issues
1092
1093For feature requests, bug reports or blueprints affecting entire ecosystem,
1094use Launchpad salt-formulas project:
1095
1096 https://launchpad.net/salt-formulas
1097
1098You can also join salt-formulas-users team and subscribe to mailing list:
1099
1100 https://launchpad.net/~salt-formulas-users
1101
1102Developers wishing to work on the salt-formulas projects should always base
1103their work on master branch and submit pull request against specific formula.
1104
1105 https://github.com/salt-formulas/salt-formula-opencontrail
1106
1107Any questions or feedback is always welcome so feel free to join our IRC
1108channel:
1109
1110 #salt-formulas @ irc.freenode.net