blob: 68aab700c9426ad1c0493e076475f34479dba0bb [file] [log] [blame]
Filip Pytlounb4b80592015-10-06 16:28:32 +02001
Filip Pytloune3a26ae2016-08-22 14:44:42 +02002====
Filip Pytlounb4b80592015-10-06 16:28:32 +02003Salt
4====
5
6Salt is a new approach to infrastructure management. Easy enough to get running in minutes, scalable enough to manage tens of thousands of servers, and fast enough to communicate with them in seconds.
7
8Salt delivers a dynamic communication bus for infrastructures that can be used for orchestration, remote execution, configuration management and much more.
9
10Sample pillars
11==============
12
13Salt master
14-----------
15
Ales Komarek8ba9c0b2016-02-21 14:59:59 +010016Salt master with base production environment and pillar tree as metadata backend
Filip Pytlounb4b80592015-10-06 16:28:32 +020017
Ales Komarek8ba9c0b2016-02-21 14:59:59 +010018.. literalinclude:: tests/pillar/master_single_pillar.sls
19 :language: yaml
Filip Pytlounb4b80592015-10-06 16:28:32 +020020
Ales Komarek8ba9c0b2016-02-21 14:59:59 +010021Salt master with reclass ENC as metadata backend
Filip Pytlounb4b80592015-10-06 16:28:32 +020022
Ales Komarek8ba9c0b2016-02-21 14:59:59 +010023.. literalinclude:: tests/pillar/master_single_reclass.sls
24 :language: yaml
Filip Pytlounb4b80592015-10-06 16:28:32 +020025
26Salt master with API
27
Ales Komarekb2c8ff62016-08-22 00:20:01 +020028.. literalinclude:: tests/pillar/master_api.sls
29 :language: yaml
Ales Komarekcdb280f2016-07-27 15:37:51 +020030
31Salt master with defined user ACLs
32
Ales Komarekb2c8ff62016-08-22 00:20:01 +020033.. literalinclude:: tests/pillar/master_acl.sls
34 :language: yaml
Filip Pytlounb4b80592015-10-06 16:28:32 +020035
36Salt master with preset minions
37
38.. code-block:: yaml
39
40 salt:
41 master:
42 enabled: true
Filip Pytlounb4b80592015-10-06 16:28:32 +020043 minions:
44 - name: 'node1.system.location.domain.com'
45
Adam Tenglercaedd972016-05-04 16:44:00 +020046Salt master with alternative installation source and version (optional) - pip
47
48.. code-block:: yaml
49
50 salt:
51 master:
52 enabled: true
53 ...
54 source:
55 engine: pip
56 version: 2016.3.0rc2
57
Adam Tengler3eb85ad2016-05-06 02:52:40 +020058Salt master with specified formula to install through apt-get
59
60.. code-block:: yaml
61
62 salt:
63 master:
64 enabled: true
65 ...
66 environment:
67 prd:
68 keysone:
69 source: pkg
70 name: salt-formula-keystone
71
72Clone master branch of keystone formula as local feature branch
73
74.. code-block:: yaml
75
76 salt:
77 master:
78 enabled: true
79 ...
80 environment:
81 dev:
82 formula:
83 keystone:
84 source: git
85 address: git@github.com:openstack/salt-formula-keystone.git
86 revision: master
87 branch: feature
88
89Salt master with specified formula refs (for example for Gerrit review)
90
91.. code-block:: yaml
92
93 salt:
94 master:
95 enabled: true
96 ...
97 environment:
98 dev:
99 formula:
100 keystone:
101 source: git
102 address: https://git.openstack.org/openstack/salt-formula-keystone
103 revision: refs/changes/56/123456/1
104
Ales Komareka33b9052017-01-16 07:10:27 -0800105Salt syndic: Master of masters
Filip Pytlounb4b80592015-10-06 16:28:32 +0200106
107.. code-block:: yaml
108
109 salt:
110 master:
111 enabled: true
Ales Komareka33b9052017-01-16 07:10:27 -0800112 order_masters: True
Filip Pytlounb4b80592015-10-06 16:28:32 +0200113
Ales Komareka33b9052017-01-16 07:10:27 -0800114Salt syndic: Lower master
Filip Pytlounb4b80592015-10-06 16:28:32 +0200115
116.. code-block:: yaml
117
118 salt:
Ales Komareka33b9052017-01-16 07:10:27 -0800119 syndic:
Filip Pytlounb4b80592015-10-06 16:28:32 +0200120 enabled: true
Ales Komareka33b9052017-01-16 07:10:27 -0800121 master:
122 host: master-of-master-host
123 timeout: 5
Filip Pytlounb4b80592015-10-06 16:28:32 +0200124
Ales Komarek2c5e0802017-01-16 07:47:32 -0800125Salt syndic: Lower master with multi-master of masters
126
127.. code-block:: yaml
128
129 salt:
130 syndic:
131 enabled: true
132 masters:
133 - host: master-of-master-host1
134 - host: master-of-master-host2
135 timeout: 5
136
137
Filip Pytlounb4b80592015-10-06 16:28:32 +0200138Salt master with custom handlers
139
140.. code-block:: yaml
141
142 salt:
143 master:
144 enabled: true
Ales Komarek8ba9c0b2016-02-21 14:59:59 +0100145 handler:
146 handler01:
147 engine: udp
148 bind:
149 host: 127.0.0.1
150 port: 9999
Filip Pytlounb4b80592015-10-06 16:28:32 +0200151 minion:
Ales Komarek8ba9c0b2016-02-21 14:59:59 +0100152 handler:
153 handler01:
154 engine: udp
155 bind:
156 host: 127.0.0.1
157 port: 9999
158 handler02:
159 engine: zmq
160 bind:
161 host: 127.0.0.1
162 port: 9999
163
Jakub Pavlikd4859842016-05-23 10:48:04 +0200164Salt master peer for remote certificate sign.
165
166.. code-block:: yaml
167
168 salt:
169 master:
170 peer:
171 ".*":
172 - x509.sign_remote_certificate
Filip Pytlounb4b80592015-10-06 16:28:32 +0200173
Ales Komarek8fb1da82016-08-21 23:52:03 +0200174
175Salt SSH
176--------
177
178Salt SSH with sudoer using key
179
180.. literalinclude:: tests/pillar/master_ssh_minion_key.sls
181 :language: yaml
182
183Salt SSH with sudoer using password
184
185.. literalinclude:: tests/pillar/master_ssh_minion_password.sls
186 :language: yaml
187
188Salt SSH with root using password
189
190.. literalinclude:: tests/pillar/master_ssh_minion_root.sls
191 :language: yaml
192
193
Filip Pytlounb4b80592015-10-06 16:28:32 +0200194Salt minion
195-----------
196
Ales Komarek8ba9c0b2016-02-21 14:59:59 +0100197Simplest Salt minion setup with central configuration node
Filip Pytlounb4b80592015-10-06 16:28:32 +0200198
199.. code-block:: yaml
200
Ales Komarek8ba9c0b2016-02-21 14:59:59 +0100201.. literalinclude:: tests/pillar/minion_master.sls
202 :language: yaml
Filip Pytlounb4b80592015-10-06 16:28:32 +0200203
Ales Komarek8ba9c0b2016-02-21 14:59:59 +0100204Multi-master Salt minion setup
Filip Pytlounb4b80592015-10-06 16:28:32 +0200205
Ales Komarek8ba9c0b2016-02-21 14:59:59 +0100206.. literalinclude:: tests/pillar/minion_multi_master.sls
207 :language: yaml
Filip Pytlounb4b80592015-10-06 16:28:32 +0200208
209Salt minion with salt mine options
210
Ales Komarek8ba9c0b2016-02-21 14:59:59 +0100211.. literalinclude:: tests/pillar/minion_mine.sls
212 :language: yaml
Filip Pytlounb4b80592015-10-06 16:28:32 +0200213
214Salt minion with graphing dependencies
215
Ales Komarek8ba9c0b2016-02-21 14:59:59 +0100216.. literalinclude:: tests/pillar/minion_graph.sls
217 :language: yaml
Filip Pytlounb4b80592015-10-06 16:28:32 +0200218
Ales Komarekb2c8ff62016-08-22 00:20:01 +0200219PKI CA
220~~~~~~
221
Ales Komarek5d17e4b2016-04-08 11:53:53 +0200222Salt minion with PKI CA
223
224.. literalinclude:: tests/pillar/minion_pki_ca.sls
225 :language: yaml
226
227Salt minion with PKI certificate
228
229.. literalinclude:: tests/pillar/minion_pki_cert.sls
230 :language: yaml
Filip Pytlounb4b80592015-10-06 16:28:32 +0200231
Ales Komarek8fb1da82016-08-21 23:52:03 +0200232
Ales Komarek8ba9c0b2016-02-21 14:59:59 +0100233Salt control (cloud/kvm/docker)
234-------------------------------
Filip Pytlounb4b80592015-10-06 16:28:32 +0200235
Ales Komarek8ba9c0b2016-02-21 14:59:59 +0100236Salt cloud with local OpenStack provider
Filip Pytlounb4b80592015-10-06 16:28:32 +0200237
Ales Komarek8ba9c0b2016-02-21 14:59:59 +0100238.. literalinclude:: tests/pillar/control_cloud_openstack.sls
239 :language: yaml
Filip Pytlounb4b80592015-10-06 16:28:32 +0200240
241Salt cloud with Digital Ocean provider
242
Ales Komarek8ba9c0b2016-02-21 14:59:59 +0100243.. literalinclude:: tests/pillar/control_cloud_digitalocean.sls
244 :language: yaml
Filip Pytlounb4b80592015-10-06 16:28:32 +0200245
Ales Komarek8fb1da82016-08-21 23:52:03 +0200246Salt virt with KVM cluster
Filip Pytlounb4b80592015-10-06 16:28:32 +0200247
Ales Komarek8ba9c0b2016-02-21 14:59:59 +0100248.. literalinclude:: tests/pillar/control_virt.sls
249 :language: yaml
Filip Pytlounb4b80592015-10-06 16:28:32 +0200250
Filip Pytlounb4b80592015-10-06 16:28:32 +0200251
252Usage
253=====
254
255Working with salt-cloud
256
257.. code-block:: bash
258
259 salt-cloud -m /path/to/map --assume-yes
260
261Debug LIBCLOUD for salt-cloud connection
262
263.. code-block:: bash
264
265 export LIBCLOUD_DEBUG=/dev/stderr; salt-cloud --list-sizes provider_name --log-level all
266
Ales Komarek8ba9c0b2016-02-21 14:59:59 +0100267
Filip Pytlounb4b80592015-10-06 16:28:32 +0200268Read more
269=========
270
271* http://salt.readthedocs.org/en/latest/
272* https://github.com/DanielBryan/salt-state-graph
273* http://karlgrz.com/testing-salt-states-rapidly-with-docker/
274* https://mywushublog.com/2013/03/configuration-management-with-salt-stack/
275* http://russell.ballestrini.net/replace-the-nagios-scheduler-and-nrpe-with-salt-stack/
276* https://github.com/saltstack-formulas/salt-formula
277* http://docs.saltstack.com/en/latest/topics/tutorials/multimaster.html
278
Ales Komarek8ba9c0b2016-02-21 14:59:59 +0100279
Filip Pytlounb4b80592015-10-06 16:28:32 +0200280salt-cloud
281----------
282
283* http://www.blog.sandro-mathys.ch/2013/07/setting-user-password-when-launching.html
284* http://cloudinit.readthedocs.org/en/latest/topics/examples.html
285* http://salt-cloud.readthedocs.org/en/latest/topics/install/index.html
286* http://docs.saltstack.com/topics/cloud/digitalocean.html
287* http://salt-cloud.readthedocs.org/en/latest/topics/rackspace.html
288* http://salt-cloud.readthedocs.org/en/latest/topics/map.html
289* http://docs.saltstack.com/en/latest/topics/tutorials/multimaster.html
Ales Komarek8ba9c0b2016-02-21 14:59:59 +0100290