fetch_base_inputs.yml 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455
  1. # Copyright 2021 Dell Inc. or its subsidiaries. All Rights Reserved.
  2. #
  3. # Licensed under the Apache License, Version 2.0 (the "License");
  4. # you may not use this file except in compliance with the License.
  5. # You may obtain a copy of the License at
  6. #
  7. # http://www.apache.org/licenses/LICENSE-2.0
  8. #
  9. # Unless required by applicable law or agreed to in writing, software
  10. # distributed under the License is distributed on an "AS IS" BASIS,
  11. # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  12. # See the License for the specific language governing permissions and
  13. # limitations under the License.
  14. ---
  15. - name: Include base variable file base_vars.yml
  16. include_vars: "{{ base_vars_filename }}"
  17. no_log: true
  18. - name: Validate input parameters of base_vars are not empty
  19. fail:
  20. msg: "{{ input_base_failure_msg }}"
  21. register: input_base_check
  22. when:
  23. - ansible_conf_file_path | length < 1 or
  24. public_nic | length < 1 or
  25. appliance_k8s_pod_net_cidr | length < 1 or
  26. awx_organization | length < 1 or
  27. timezone | length < 1 or
  28. language | length < 1 or
  29. iso_file_path | length < 1 or
  30. mngmnt_network_nic | length < 1 or
  31. mngmnt_network_dhcp_start_range | length < 1 or
  32. mngmnt_network_dhcp_end_range | length < 1 or
  33. host_network_nic | length < 1 or
  34. host_network_dhcp_start_range | length < 1 or
  35. host_network_dhcp_end_range | length < 1 or
  36. dhcp_gateway | length < 1 or
  37. dhcp_dns1 | length < 1 or
  38. dhcp_dns2 | length < 1
  39. - name: Validate infiniband base_vars are not empty
  40. fail:
  41. msg: "{{ input_base_failure_msg }} for infiniBand as ib_switch_support is true"
  42. register: ib_check
  43. when:
  44. - ib_network_nic | length < 1 or
  45. ib_network_dhcp_start_range | length < 1 or
  46. ib_network_dhcp_end_range | length < 1 and ib_switch_support
  47. - name: Set facts to validate snmp support
  48. set_fact:
  49. snmp_enabled: false
  50. mngmnt_mapping_file: false
  51. host_mapping_file: false
  52. ib_mapping_file: false
  53. - name: Verify snmp_trap_destination IP address
  54. set_fact:
  55. snmp_enabled: true
  56. when: snmp_trap_destination | length > 1
  57. - name: Assert snmp trap destination address
  58. assert:
  59. that:
  60. - snmp_enabled
  61. - snmp_trap_destination | length > 7
  62. - snmp_trap_destination | ipv4
  63. success_msg: "{{ success_snmp_trap_dest }}"
  64. fail_msg: "{{ fail_snmp_trap_dest }}"
  65. when: snmp_enabled
  66. - name: Assert snmp community string
  67. assert:
  68. that:
  69. - snmp_enabled
  70. - snmp_community_name
  71. success_msg: "{{ success_snmp_comm_msg }}"
  72. fail_msg: "{{ fail_snmp_comm_msg }}"
  73. when: snmp_enabled
  74. - name: Check whether ansible config file exists
  75. stat:
  76. path: "{{ ansible_conf_file_path }}/ansible.cfg"
  77. register: ansible_conf_exists
  78. - name: Create the directory if it does not exist
  79. file:
  80. path: "{{ ansible_conf_file_path }}"
  81. state: directory
  82. mode: "{{ file_perm }}"
  83. when: not ansible_conf_exists.stat.exists
  84. changed_when: false
  85. - name: Create ansible config file if it does not exist
  86. copy:
  87. dest: '{{ ansible_conf_file_path }}/ansible.cfg'
  88. mode: "{{ file_perm }}"
  89. content: |
  90. [defaults]
  91. log_path = /var/log/omnia.log
  92. when: not ansible_conf_exists.stat.exists
  93. - name: Assert ethernet_switch_support
  94. assert:
  95. that:
  96. - ethernet_switch_support == true or ethernet_switch_support == false
  97. success_msg: "{{ ethernet_switch_support_success_msg }}"
  98. fail_msg: "{{ ethernet_switch_support_fail_msg }}"
  99. - name: Assert ib_switch_support
  100. assert:
  101. that:
  102. - ib_switch_support == true or ib_switch_support == false
  103. success_msg: "{{ ib_switch_support_success_msg }}"
  104. fail_msg: "{{ ib_switch_support_fail_msg }}"
  105. - name: Assert powervault_support
  106. assert:
  107. that:
  108. - powervault_support == true or powervault_support == false
  109. success_msg: "{{ powervault_support_success_msg }}"
  110. fail_msg: "{{ powervault_support_fail_msg }}"
  111. - name: Fetch the network interfaces in UP state in the system
  112. shell: set -o pipefail && ip a | awk '/state UP/{print $2}'
  113. register: nic_addr_up
  114. changed_when: false
  115. - name: Assert public nic
  116. assert:
  117. that:
  118. - public_nic in nic_addr_up.stdout
  119. success_msg: "{{ success_msg_public_nic }}"
  120. fail_msg: "{{ fail_msg_public_nic }}"
  121. - name: Fetch the system public IP
  122. set_fact:
  123. public_ip: "{{ lookup('vars','ansible_'+public_nic).ipv4.address }}"
  124. - name: Assert kubernetes pod network CIDR
  125. assert:
  126. that:
  127. - appliance_k8s_pod_net_cidr | ipv4
  128. - appliance_k8s_pod_net_cidr | length > 9
  129. - '"/" in appliance_k8s_pod_net_cidr '
  130. success_msg: "{{ success_msg_k8s_pod_network_cidr }}"
  131. fail_msg: "{{ fail_msg_k8s_pod_network_cidr }}"
  132. - name: Assert Organization in awx
  133. assert:
  134. that:
  135. - awx_organization | length >= min_username_length
  136. - awx_organization | length < max_length
  137. - '"-" not in awx_organization '
  138. - '"\\" not in awx_organization '
  139. - '"\"" not in awx_organization '
  140. - " \"'\" not in awx_organization "
  141. success_msg: "{{ success_awx_organization }}"
  142. fail_msg: "{{ fail_awx_organization }}"
  143. - name: Check timezone file
  144. command: grep -Fx "{{ timezone }}" {{ role_path }}/files/timezone.txt
  145. ignore_errors: yes
  146. register: timezone_out
  147. changed_when: false
  148. - name: Assert timezone
  149. assert:
  150. that: timezone in timezone_out.stdout
  151. success_msg: "{{ success_timezone_msg }}"
  152. fail_msg: "{{ fail_timezone_msg }}"
  153. register: timezone_check
  154. - name: Assert language for provisioning nodes
  155. fail:
  156. msg: "{{ fail_language }}"
  157. when: '"en-US" not in language'
  158. - name: Verify the iso_file_path
  159. stat:
  160. path: "{{ iso_file_path }}"
  161. register: result_path_iso_file
  162. - name : Assert iso_file_path
  163. fail:
  164. msg: "{{ invalid_iso_file_path }}"
  165. when: ( not result_path_iso_file.stat.exists ) and ( ".iso" not in iso_file_path )
  166. - name: Fail when iso path valid but image not right
  167. fail:
  168. msg: "{{ invalid_iso_file_path }}"
  169. when: ( result_path_iso_file.stat.exists ) and ( ".iso" not in iso_file_path )
  170. ####management_net_dhcp_start_end_range
  171. - name: Assert management network nic
  172. assert:
  173. that:
  174. - mngmnt_network_nic in nic_addr_up.stdout
  175. success_msg: "{{ success_msg_mngmnt_network_nic }}"
  176. fail_msg: "{{ fail_msg_mngmnt_network_nic }}"
  177. - name: Fetch the management network ip, netmask and subnet
  178. set_fact:
  179. mngmnt_network_ip: "{{ lookup('vars','ansible_'+mngmnt_network_nic).ipv4.address }}"
  180. mngmnt_network_netmask: "{{ lookup('vars','ansible_'+mngmnt_network_nic).ipv4.netmask }}"
  181. mngmnt_network_subnet: "{{ lookup('vars','ansible_'+mngmnt_network_nic).ipv4.network }}"
  182. - name: Check the subnet of management network dhcp start range
  183. shell: |
  184. IFS=. read -r i1 i2 i3 i4 <<< "{{ mngmnt_network_dhcp_start_range }}"
  185. IFS=. read -r m1 m2 m3 m4 <<< "{{ mngmnt_network_netmask }}"
  186. printf "%d.%d.%d.%d\n" "$((i1 & m1))" "$((i2 & m2))" "$((i3 & m3))" "$((i4 & m4))"
  187. args:
  188. warn: no
  189. register: dhcp_start_mgmnt_result
  190. changed_when: false
  191. - name: Set the start dhcp subnet for management network
  192. set_fact:
  193. dhcp_start_mgmnt: "{{ dhcp_start_mgmnt_result.stdout }}"
  194. - name: Check the subnet of dhcp end range for management network
  195. shell: |
  196. IFS=. read -r i1 i2 i3 i4 <<< "{{ mngmnt_network_dhcp_end_range }}"
  197. IFS=. read -r m1 m2 m3 m4 <<< "{{ mngmnt_network_netmask }}"
  198. printf "%d.%d.%d.%d\n" "$((i1 & m1))" "$((i2 & m2))" "$((i3 & m3))" "$((i4 & m4))"
  199. register: dhcp_end_mgmnt_result
  200. changed_when: false
  201. - name: Set the end dhcp subnet for management network
  202. set_fact:
  203. dhcp_end_mgmnt: "{{ dhcp_end_mgmnt_result.stdout }}"
  204. - name: Assert management_net_dhcp_start_range
  205. assert:
  206. that:
  207. - mngmnt_network_dhcp_start_range
  208. - mngmnt_network_dhcp_start_range | ipv4
  209. - mngmnt_network_dhcp_start_range != mngmnt_network_dhcp_end_range
  210. - dhcp_start_mgmnt == mngmnt_network_subnet
  211. - dhcp_start_mgmnt == dhcp_end_mgmnt
  212. success_msg: "{{ success_dhcp_range }} for management network"
  213. fail_msg: "{{ fail_dhcp_range }} for management network"
  214. - name: Assert management_net_dhcp_end_range
  215. assert:
  216. that:
  217. - mngmnt_network_dhcp_end_range
  218. - mngmnt_network_dhcp_end_range | ipv4
  219. - mngmnt_network_dhcp_start_range != mngmnt_network_dhcp_end_range
  220. - dhcp_end_mgmnt == mngmnt_network_subnet
  221. - dhcp_start_mgmnt == dhcp_end_mgmnt
  222. success_msg: "{{ success_dhcp_range }} for management network"
  223. fail_msg: "{{ fail_dhcp_range }} for management network"
  224. - name: Set the mapping file value for management network
  225. set_fact:
  226. mngmnt_mapping_file: true
  227. when: mngmnt_mapping_file_path | length > 0
  228. - name: Assert valid mngmnt_mapping_file_path
  229. stat:
  230. path: "{{ mngmnt_mapping_file_path }}"
  231. when: mngmnt_mapping_file
  232. register: result_mngmnt_mapping_file
  233. - name : Valid mngmnt_mapping_file_path
  234. fail:
  235. msg: "{{ invalid_mapping_file_path }} for management network"
  236. when: mngmnt_mapping_file and not result_mngmnt_mapping_file.stat.exists
  237. #########
  238. ###Host network####
  239. - name: Assert host network nic
  240. assert:
  241. that:
  242. - host_network_nic in nic_addr_up.stdout
  243. success_msg: "{{ success_msg_host_network_nic }}"
  244. fail_msg: "{{ fail_msg_host_network_nic }}"
  245. - name: Fetch the host network ip, netmask and subnet
  246. set_fact:
  247. hpc_ip: "{{ lookup('vars','ansible_'+host_network_nic).ipv4.address }}"
  248. netmask: "{{ lookup('vars','ansible_'+host_network_nic).ipv4.netmask }}"
  249. subnet: "{{ lookup('vars','ansible_'+host_network_nic).ipv4.network }}"
  250. - name: Check the subnet of host network dhcp start range
  251. shell: |
  252. IFS=. read -r i1 i2 i3 i4 <<< "{{ host_network_dhcp_start_range }}"
  253. IFS=. read -r m1 m2 m3 m4 <<< "{{ netmask }}"
  254. printf "%d.%d.%d.%d\n" "$((i1 & m1))" "$((i2 & m2))" "$((i3 & m3))" "$((i4 & m4))"
  255. args:
  256. warn: no
  257. register: dhcp_start_host_result
  258. changed_when: false
  259. - name: Set the start dhcp subnet for host network
  260. set_fact:
  261. dhcp_start_host: "{{ dhcp_start_host_result.stdout }}"
  262. - name: Check the subnet of dhcp end range for host network
  263. shell: |
  264. IFS=. read -r i1 i2 i3 i4 <<< "{{ host_network_dhcp_end_range }}"
  265. IFS=. read -r m1 m2 m3 m4 <<< "{{ netmask }}"
  266. printf "%d.%d.%d.%d\n" "$((i1 & m1))" "$((i2 & m2))" "$((i3 & m3))" "$((i4 & m4))"
  267. register: dhcp_end_host_result
  268. changed_when: false
  269. - name: Set the end dhcp subnet for host network
  270. set_fact:
  271. dhcp_end_host: "{{ dhcp_end_host_result.stdout }}"
  272. - name: Assert host_network_dhcp_start_range
  273. assert:
  274. that:
  275. - host_network_dhcp_start_range
  276. - host_network_dhcp_start_range | ipv4
  277. - host_network_dhcp_start_range != host_network_dhcp_end_range
  278. - dhcp_start_host == subnet
  279. - dhcp_start_host == dhcp_end_host
  280. success_msg: "{{ success_dhcp_range }} for host network"
  281. fail_msg: "{{ fail_dhcp_range }} for host network"
  282. - name: Assert host_network_dhcp_end_range
  283. assert:
  284. that:
  285. - host_network_dhcp_end_range
  286. - host_network_dhcp_end_range | ipv4
  287. - host_network_dhcp_start_range != host_network_dhcp_end_range
  288. - dhcp_end_host == subnet
  289. - dhcp_start_host == dhcp_end_host
  290. success_msg: "{{ success_dhcp_range }} for host network"
  291. fail_msg: "{{ fail_dhcp_range }} for host network"
  292. - name: Set the mapping file value for host network
  293. set_fact:
  294. host_mapping_file: true
  295. when: host_mapping_file_path | length > 0
  296. - name: Assert valid mapping_file_path
  297. stat:
  298. path: "{{ host_mapping_file_path }}"
  299. when: host_mapping_file
  300. register: result_host_mapping_file
  301. - name: Valid mapping_file_path
  302. fail:
  303. msg: "{{ invalid_mapping_file_path }} for host_network"
  304. when: host_mapping_file and not result_host_mapping_file.stat.exists
  305. - name: Verify different nics
  306. assert:
  307. that:
  308. - public_nic != mngmnt_network_nic
  309. - mngmnt_network_nic != host_network_nic
  310. - public_nic != host_network_nic
  311. success_msg: "{{ success_msg_different_nics }}"
  312. fail_msg: "{{ fail_msg_different_nics }}"
  313. ########
  314. - name: Assert infiniband network nic
  315. assert:
  316. that:
  317. - ib_network_nic in nic_addr_up.stdout
  318. success_msg: "{{ success_msg_ib_network_nic }}"
  319. fail_msg: "{{ fail_msg_ib_network_nic }}"
  320. when: ib_switch_support
  321. - name: Fetch the infiniband network ip, netmask and subnet
  322. set_fact:
  323. ib_ip: "{{ lookup('vars','ansible_'+ib_network_nic).ipv4.address }}"
  324. ib_netmask: "{{ lookup('vars','ansible_'+ib_network_nic).ipv4.netmask }}"
  325. ib_subnet: "{{ lookup('vars','ansible_'+ib_network_nic).ipv4.network }}"
  326. when: ib_switch_support
  327. - name: Check the subnet of infiniband network dhcp start range
  328. shell: |
  329. IFS=. read -r i1 i2 i3 i4 <<< "{{ ib_network_dhcp_start_range }}"
  330. IFS=. read -r m1 m2 m3 m4 <<< "{{ ib_netmask }}"
  331. printf "%d.%d.%d.%d\n" "$((i1 & m1))" "$((i2 & m2))" "$((i3 & m3))" "$((i4 & m4))"
  332. args:
  333. warn: no
  334. register: dhcp_start_ib_result
  335. when: ib_switch_support
  336. changed_when: false
  337. - name: Set the start dhcp subnet for infiniband network
  338. set_fact:
  339. dhcp_start_ib: "{{ dhcp_start_ib_result.stdout }}"
  340. when: ib_switch_support
  341. - name: Check the subnet of dhcp end range for infiniband network
  342. shell: |
  343. IFS=. read -r i1 i2 i3 i4 <<< "{{ ib_network_dhcp_end_range }}"
  344. IFS=. read -r m1 m2 m3 m4 <<< "{{ ib_netmask }}"
  345. printf "%d.%d.%d.%d\n" "$((i1 & m1))" "$((i2 & m2))" "$((i3 & m3))" "$((i4 & m4))"
  346. register: dhcp_end_ib_result
  347. when: ib_switch_support
  348. changed_when: false
  349. - name: Set the end dhcp subnet for infiniband network
  350. set_fact:
  351. dhcp_end_ib: "{{ dhcp_end_ib_result.stdout }}"
  352. when: ib_switch_support
  353. - name: Assert infiniband_net_dhcp_start_range
  354. assert:
  355. that:
  356. - ib_network_dhcp_start_range
  357. - ib_network_dhcp_start_range | ipv4
  358. - ib_network_dhcp_start_range != ib_network_dhcp_end_range
  359. - dhcp_start_ib == ib_subnet
  360. - dhcp_start_ib == dhcp_end_ib
  361. success_msg: "{{ success_dhcp_range }} for infiniband network"
  362. fail_msg: "{{ fail_dhcp_range }} for infiniband network"
  363. when: ib_switch_support
  364. - name: Assert infiniband_net_dhcp_end_range
  365. assert:
  366. that:
  367. - ib_network_dhcp_end_range
  368. - ib_network_dhcp_end_range | ipv4
  369. - ib_network_dhcp_start_range != ib_network_dhcp_end_range
  370. - dhcp_end_ib == ib_subnet
  371. - dhcp_start_ib == dhcp_end_ib
  372. success_msg: "{{ success_dhcp_range }} for infiniband network"
  373. fail_msg: "{{ fail_dhcp_range }} for infiniband network"
  374. when: ib_switch_support
  375. - name: Set the mapping file value for infiniband
  376. set_fact:
  377. ib_mapping_file: true
  378. when: (ib_switch_support) and (ib_mapping_file_path | length > 0)
  379. - name: Assert valid infiniband_mapping_file_path
  380. stat:
  381. path: "{{ ib_mapping_file_path }}"
  382. when: ib_switch_support and ib_mapping_file
  383. register: result_ib_mapping_file
  384. - name : Valid infiniband_mapping_file_path
  385. fail:
  386. msg: "{{ invalid_mapping_file_path }} for infiniBand network configuration"
  387. when: ib_mapping_file and (not result_ib_mapping_file.stat.exists)
  388. - name: Verify different nics with infiniband nic
  389. assert:
  390. that:
  391. - public_nic != ib_network_nic
  392. - mngmnt_network_nic != ib_network_nic
  393. - ib_network_nic != host_network_nic
  394. success_msg: "{{ success_msg_different_nics_ib }}"
  395. fail_msg: "{{ fail_msg_different_nics_ib }}"
  396. when: ib_switch_support