fetch_base_inputs.yml 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437
  1. # Copyright 2021 Dell Inc. or its subsidiaries. All Rights Reserved.
  2. #
  3. # Licensed under the Apache License, Version 2.0 (the "License");
  4. # you may not use this file except in compliance with the License.
  5. # You may obtain a copy of the License at
  6. #
  7. # http://www.apache.org/licenses/LICENSE-2.0
  8. #
  9. # Unless required by applicable law or agreed to in writing, software
  10. # distributed under the License is distributed on an "AS IS" BASIS,
  11. # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  12. # See the License for the specific language governing permissions and
  13. # limitations under the License.
  14. ---
  15. - name: Include base variable file base_vars.yml
  16. include_vars: "{{ base_vars_filename }}"
  17. no_log: true
  18. - name: Validate input parameters of base_vars are not empty
  19. fail:
  20. msg: "{{ input_base_failure_msg }}"
  21. register: input_base_check
  22. when:
  23. - ansible_conf_file_path | length < 1 or
  24. public_nic | length < 1 or
  25. appliance_k8s_pod_net_cidr | length < 1 or
  26. awx_organization | length < 1 or
  27. timezone | length < 1 or
  28. language | length < 1 or
  29. iso_file_path | length < 1 or
  30. mngmnt_network_nic | length < 1 or
  31. mngmnt_network_dhcp_start_range | length < 1 or
  32. mngmnt_network_dhcp_end_range | length < 1 or
  33. host_network_nic | length < 1 or
  34. host_network_dhcp_start_range | length < 1 or
  35. host_network_dhcp_end_range | length < 1 or
  36. provision_method | length < 1
  37. - name: Validate infiniband base_vars are not empty
  38. assert:
  39. that:
  40. - ib_network_nic | length > 2
  41. - ib_network_dhcp_start_range | length > 6
  42. - ib_network_dhcp_end_range | length > 6
  43. success_msg: "{{ success_msg_ib }}"
  44. fail_msg: "{{ fail_msg_ib }}"
  45. register: ib_check
  46. when: ib_switch_support
  47. - name: Set facts to validate snmp support
  48. set_fact:
  49. snmp_enabled: false
  50. mngmnt_mapping_file: false
  51. host_mapping_file: false
  52. - name: Verify snmp_trap_destination IP address
  53. set_fact:
  54. snmp_enabled: true
  55. when: snmp_trap_destination | length > 1
  56. - name: Assert snmp trap destination address
  57. assert:
  58. that:
  59. - snmp_enabled
  60. - snmp_trap_destination | length > 7
  61. - snmp_trap_destination | ipv4
  62. success_msg: "{{ success_snmp_trap_dest }}"
  63. fail_msg: "{{ fail_snmp_trap_dest }}"
  64. when: snmp_enabled
  65. - name: Assert snmp community string
  66. assert:
  67. that:
  68. - snmp_enabled
  69. - snmp_community_name
  70. success_msg: "{{ success_snmp_comm_msg }}"
  71. fail_msg: "{{ fail_snmp_comm_msg }}"
  72. when: snmp_enabled
  73. - name: Check whether ansible config file exists
  74. stat:
  75. path: "{{ ansible_conf_file_path }}/ansible.cfg"
  76. register: ansible_conf_exists
  77. - name: Create the directory if it does not exist
  78. file:
  79. path: "{{ ansible_conf_file_path }}"
  80. state: directory
  81. mode: "{{ file_perm }}"
  82. when: not ansible_conf_exists.stat.exists
  83. changed_when: false
  84. - name: Create ansible config file if it does not exist
  85. copy:
  86. dest: '{{ ansible_conf_file_path }}/ansible.cfg'
  87. mode: "{{ file_perm }}"
  88. content: |
  89. [defaults]
  90. log_path = /var/log/omnia.log
  91. when: not ansible_conf_exists.stat.exists
  92. - name: Assert ethernet_switch_support
  93. assert:
  94. that:
  95. - ethernet_switch_support == true or ethernet_switch_support == false
  96. success_msg: "{{ ethernet_switch_support_success_msg }}"
  97. fail_msg: "{{ ethernet_switch_support_fail_msg }}"
  98. - name: Assert ib_switch_support
  99. assert:
  100. that:
  101. - ib_switch_support == true or ib_switch_support == false
  102. success_msg: "{{ ib_switch_support_success_msg }}"
  103. fail_msg: "{{ ib_switch_support_fail_msg }}"
  104. - name: Assert powervault_support
  105. assert:
  106. that:
  107. - powervault_support == true or powervault_support == false
  108. success_msg: "{{ powervault_support_success_msg }}"
  109. fail_msg: "{{ powervault_support_fail_msg }}"
  110. - name: Fetch the network interfaces in UP state in the system
  111. shell: set -o pipefail && ip a | awk '/state UP/{print $2}'
  112. register: nic_addr_up
  113. changed_when: false
  114. - name: Assert public nic
  115. assert:
  116. that:
  117. - public_nic in nic_addr_up.stdout
  118. success_msg: "{{ success_msg_public_nic }}"
  119. fail_msg: "{{ fail_msg_public_nic }}"
  120. - name: Fetch the system public IP
  121. set_fact:
  122. public_ip: "{{ lookup('vars','ansible_'+public_nic).ipv4.address }}"
  123. - name: Assert kubernetes pod network CIDR
  124. assert:
  125. that:
  126. - appliance_k8s_pod_net_cidr | ipv4
  127. - appliance_k8s_pod_net_cidr | length > 9
  128. - '"/" in appliance_k8s_pod_net_cidr '
  129. success_msg: "{{ success_msg_k8s_pod_network_cidr }}"
  130. fail_msg: "{{ fail_msg_k8s_pod_network_cidr }}"
  131. - name: Assert Organization in awx
  132. assert:
  133. that:
  134. - awx_organization | length >= min_username_length
  135. - awx_organization | length < max_length
  136. - '"-" not in awx_organization '
  137. - '"\\" not in awx_organization '
  138. - '"\"" not in awx_organization '
  139. - " \"'\" not in awx_organization "
  140. success_msg: "{{ success_awx_organization }}"
  141. fail_msg: "{{ fail_awx_organization }}"
  142. - name: Assert provisioning method
  143. assert:
  144. that:
  145. - provision_method == "pxe" or provision_method == "idrac"
  146. success_msg: "{{ success_provision_method }}"
  147. fail_msg: "{{ fail_provision_method }}"
  148. - name: Check timezone file
  149. command: grep -Fx "{{ timezone }}" {{ role_path }}/files/timezone.txt
  150. ignore_errors: yes
  151. register: timezone_out
  152. changed_when: false
  153. - name: Assert timezone
  154. assert:
  155. that: timezone in timezone_out.stdout
  156. success_msg: "{{ success_timezone_msg }}"
  157. fail_msg: "{{ fail_timezone_msg }}"
  158. register: timezone_check
  159. - name: Assert language for provisioning nodes
  160. fail:
  161. msg: "{{ fail_language }}"
  162. when: '"en-US" not in language'
  163. - name: Verify the iso_file_path
  164. stat:
  165. path: "{{ iso_file_path }}"
  166. register: result_path_iso_file
  167. - name : Assert iso_file_path
  168. fail:
  169. msg: "{{ invalid_iso_file_path }}"
  170. when: ( not result_path_iso_file.stat.exists ) and ( ".iso" not in iso_file_path )
  171. - name: Fail when iso path valid but image not right
  172. fail:
  173. msg: "{{ invalid_iso_file_path }}"
  174. when: ( result_path_iso_file.stat.exists ) and ( ".iso" not in iso_file_path )
  175. #### management_net_dhcp_start_end_range
  176. - name: Assert management network nic
  177. assert:
  178. that:
  179. - mngmnt_network_nic in nic_addr_up.stdout
  180. success_msg: "{{ success_msg_mngmnt_network_nic }}"
  181. fail_msg: "{{ fail_msg_mngmnt_network_nic }}"
  182. - name: Fetch the management network ip, netmask and subnet
  183. set_fact:
  184. mngmnt_network_ip: "{{ lookup('vars','ansible_'+mngmnt_network_nic).ipv4.address }}"
  185. mngmnt_network_netmask: "{{ lookup('vars','ansible_'+mngmnt_network_nic).ipv4.netmask }}"
  186. mngmnt_network_subnet: "{{ lookup('vars','ansible_'+mngmnt_network_nic).ipv4.network }}"
  187. - name: Check the subnet of management network dhcp start range
  188. shell: |
  189. IFS=. read -r i1 i2 i3 i4 <<< "{{ mngmnt_network_dhcp_start_range }}"
  190. IFS=. read -r m1 m2 m3 m4 <<< "{{ mngmnt_network_netmask }}"
  191. printf "%d.%d.%d.%d\n" "$((i1 & m1))" "$((i2 & m2))" "$((i3 & m3))" "$((i4 & m4))"
  192. args:
  193. warn: no
  194. register: dhcp_start_mgmnt_result
  195. changed_when: false
  196. - name: Set the start dhcp subnet for management network
  197. set_fact:
  198. dhcp_start_mgmnt: "{{ dhcp_start_mgmnt_result.stdout }}"
  199. - name: Check the subnet of dhcp end range for management network
  200. shell: |
  201. IFS=. read -r i1 i2 i3 i4 <<< "{{ mngmnt_network_dhcp_end_range }}"
  202. IFS=. read -r m1 m2 m3 m4 <<< "{{ mngmnt_network_netmask }}"
  203. printf "%d.%d.%d.%d\n" "$((i1 & m1))" "$((i2 & m2))" "$((i3 & m3))" "$((i4 & m4))"
  204. register: dhcp_end_mgmnt_result
  205. changed_when: false
  206. - name: Set the end dhcp subnet for management network
  207. set_fact:
  208. dhcp_end_mgmnt: "{{ dhcp_end_mgmnt_result.stdout }}"
  209. - name: Assert management_net_dhcp_start_range
  210. assert:
  211. that:
  212. - mngmnt_network_dhcp_start_range
  213. - mngmnt_network_dhcp_start_range | ipv4
  214. - mngmnt_network_dhcp_start_range != mngmnt_network_ip
  215. - mngmnt_network_dhcp_start_range != mngmnt_network_dhcp_end_range
  216. - dhcp_start_mgmnt == mngmnt_network_subnet
  217. - dhcp_start_mgmnt == dhcp_end_mgmnt
  218. success_msg: "{{ success_dhcp_range }} for management network"
  219. fail_msg: "{{ fail_dhcp_range }} for management network"
  220. - name: Assert management_net_dhcp_end_range
  221. assert:
  222. that:
  223. - mngmnt_network_dhcp_end_range
  224. - mngmnt_network_dhcp_end_range | ipv4
  225. - mngmnt_network_dhcp_end_range != mngmnt_network_ip
  226. - mngmnt_network_dhcp_start_range != mngmnt_network_dhcp_end_range
  227. - dhcp_end_mgmnt == mngmnt_network_subnet
  228. - dhcp_start_mgmnt == dhcp_end_mgmnt
  229. success_msg: "{{ success_dhcp_range }} for management network"
  230. fail_msg: "{{ fail_dhcp_range }} for management network"
  231. - name: Set the mapping file value for management network
  232. set_fact:
  233. mngmnt_mapping_file: true
  234. when: mngmnt_mapping_file_path | length > 0
  235. - name: Assert valid mngmnt_mapping_file_path
  236. stat:
  237. path: "{{ mngmnt_mapping_file_path }}"
  238. when: mngmnt_mapping_file
  239. register: result_mngmnt_mapping_file
  240. - name : Valid mngmnt_mapping_file_path
  241. fail:
  242. msg: "{{ invalid_mapping_file_path }} for management network"
  243. when: mngmnt_mapping_file and not result_mngmnt_mapping_file.stat.exists
  244. #########
  245. ###Host network####
  246. - name: Fetch the host network ip, netmask and subnet
  247. set_fact:
  248. hpc_ip: "{{ lookup('vars','ansible_'+host_network_nic).ipv4.address }}"
  249. netmask: "{{ lookup('vars','ansible_'+host_network_nic).ipv4.netmask }}"
  250. subnet: "{{ lookup('vars','ansible_'+host_network_nic).ipv4.network }}"
  251. - name: Check the subnet of host network dhcp start range
  252. shell: |
  253. IFS=. read -r i1 i2 i3 i4 <<< "{{ host_network_dhcp_start_range }}"
  254. IFS=. read -r m1 m2 m3 m4 <<< "{{ netmask }}"
  255. printf "%d.%d.%d.%d\n" "$((i1 & m1))" "$((i2 & m2))" "$((i3 & m3))" "$((i4 & m4))"
  256. args:
  257. warn: no
  258. register: dhcp_start_host_result
  259. changed_when: false
  260. - name: Set the start dhcp subnet for host network
  261. set_fact:
  262. dhcp_start_host: "{{ dhcp_start_host_result.stdout }}"
  263. - name: Check the subnet of dhcp end range for host network
  264. shell: |
  265. IFS=. read -r i1 i2 i3 i4 <<< "{{ host_network_dhcp_end_range }}"
  266. IFS=. read -r m1 m2 m3 m4 <<< "{{ netmask }}"
  267. printf "%d.%d.%d.%d\n" "$((i1 & m1))" "$((i2 & m2))" "$((i3 & m3))" "$((i4 & m4))"
  268. register: dhcp_end_host_result
  269. changed_when: false
  270. - name: Set the end dhcp subnet for host network
  271. set_fact:
  272. dhcp_end_host: "{{ dhcp_end_host_result.stdout }}"
  273. - name: Assert host_network_dhcp_start_range
  274. assert:
  275. that:
  276. - host_network_dhcp_start_range
  277. - host_network_dhcp_start_range | ipv4
  278. - host_network_dhcp_start_range != hpc_ip
  279. - host_network_dhcp_start_range != host_network_dhcp_end_range
  280. - dhcp_start_host == subnet
  281. - dhcp_start_host == dhcp_end_host
  282. success_msg: "{{ success_dhcp_range }} for host network"
  283. fail_msg: "{{ fail_dhcp_range }} for host network"
  284. - name: Assert host_network_dhcp_end_range
  285. assert:
  286. that:
  287. - host_network_dhcp_end_range
  288. - host_network_dhcp_end_range | ipv4
  289. - host_network_dhcp_end_range != hpc_ip
  290. - host_network_dhcp_start_range != host_network_dhcp_end_range
  291. - dhcp_end_host == subnet
  292. - dhcp_start_host == dhcp_end_host
  293. success_msg: "{{ success_dhcp_range }} for host network"
  294. fail_msg: "{{ fail_dhcp_range }} for host network"
  295. - name: Set the mapping file value for host network
  296. set_fact:
  297. host_mapping_file: true
  298. when: host_mapping_file_path | length > 0
  299. - name: Assert valid mapping_file_path
  300. stat:
  301. path: "{{ host_mapping_file_path }}"
  302. when: host_mapping_file
  303. register: result_host_mapping_file
  304. - name: Valid mapping_file_path
  305. fail:
  306. msg: "{{ invalid_mapping_file_path }} for host_network"
  307. when: host_mapping_file and not result_host_mapping_file.stat.exists
  308. - name: Verify different nics
  309. assert:
  310. that:
  311. - public_nic != mngmnt_network_nic
  312. - mngmnt_network_nic != host_network_nic
  313. - public_nic != host_network_nic
  314. success_msg: "{{ success_msg_different_nics }}"
  315. fail_msg: "{{ fail_msg_different_nics }}"
  316. ########
  317. - name: Fetch the infiniband network ip, netmask and subnet
  318. set_fact:
  319. ib_ip: "{{ lookup('vars','ansible_'+ib_network_nic).ipv4.address }}"
  320. ib_netmask: "{{ lookup('vars','ansible_'+ib_network_nic).ipv4.netmask }}"
  321. ib_subnet: "{{ lookup('vars','ansible_'+ib_network_nic).ipv4.network }}"
  322. when: ib_switch_support
  323. - name: Check the subnet of infiniband network dhcp start range
  324. shell: |
  325. IFS=. read -r i1 i2 i3 i4 <<< "{{ ib_network_dhcp_start_range }}"
  326. IFS=. read -r m1 m2 m3 m4 <<< "{{ ib_netmask }}"
  327. printf "%d.%d.%d.%d\n" "$((i1 & m1))" "$((i2 & m2))" "$((i3 & m3))" "$((i4 & m4))"
  328. args:
  329. warn: no
  330. register: dhcp_start_ib_result
  331. when: ib_switch_support
  332. changed_when: false
  333. - name: Set the start dhcp subnet for infiniband network
  334. set_fact:
  335. dhcp_start_ib: "{{ dhcp_start_ib_result.stdout }}"
  336. when: ib_switch_support
  337. - name: Check the subnet of dhcp end range for infiniband network
  338. shell: |
  339. IFS=. read -r i1 i2 i3 i4 <<< "{{ ib_network_dhcp_end_range }}"
  340. IFS=. read -r m1 m2 m3 m4 <<< "{{ ib_netmask }}"
  341. printf "%d.%d.%d.%d\n" "$((i1 & m1))" "$((i2 & m2))" "$((i3 & m3))" "$((i4 & m4))"
  342. register: dhcp_end_ib_result
  343. when: ib_switch_support
  344. changed_when: false
  345. - name: Set the end dhcp subnet for infiniband network
  346. set_fact:
  347. dhcp_end_ib: "{{ dhcp_end_ib_result.stdout }}"
  348. when: ib_switch_support
  349. - name: Assert infiniband_net_dhcp_start_range
  350. assert:
  351. that:
  352. - ib_network_dhcp_start_range
  353. - ib_network_dhcp_start_range | ipv4
  354. - ib_network_dhcp_start_range != ib_ip
  355. - ib_network_dhcp_start_range != ib_network_dhcp_end_range
  356. - dhcp_start_ib == ib_subnet
  357. - dhcp_start_ib == dhcp_end_ib
  358. success_msg: "{{ success_dhcp_range }} for infiniband network"
  359. fail_msg: "{{ fail_dhcp_range }} for infiniband network"
  360. when: ib_switch_support
  361. - name: Assert infiniband_net_dhcp_end_range
  362. assert:
  363. that:
  364. - ib_network_dhcp_end_range
  365. - ib_network_dhcp_end_range | ipv4
  366. - ib_network_dhcp_end_range != ib_ip
  367. - ib_network_dhcp_start_range != ib_network_dhcp_end_range
  368. - dhcp_end_ib == ib_subnet
  369. - dhcp_start_ib == dhcp_end_ib
  370. success_msg: "{{ success_dhcp_range }} for infiniband network"
  371. fail_msg: "{{ fail_dhcp_range }} for infiniband network"
  372. when: ib_switch_support
  373. - name: Verify different nics with infiniband nic
  374. assert:
  375. that:
  376. - public_nic != ib_network_nic
  377. - mngmnt_network_nic != ib_network_nic
  378. - ib_network_nic != host_network_nic
  379. success_msg: "{{ success_msg_different_nics_ib }}"
  380. fail_msg: "{{ fail_msg_different_nics_ib }}"
  381. when: ib_switch_support