fetch_base_inputs.yml 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454
  1. # Copyright 2021 Dell Inc. or its subsidiaries. All Rights Reserved.
  2. #
  3. # Licensed under the Apache License, Version 2.0 (the "License");
  4. # you may not use this file except in compliance with the License.
  5. # You may obtain a copy of the License at
  6. #
  7. # http://www.apache.org/licenses/LICENSE-2.0
  8. #
  9. # Unless required by applicable law or agreed to in writing, software
  10. # distributed under the License is distributed on an "AS IS" BASIS,
  11. # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  12. # See the License for the specific language governing permissions and
  13. # limitations under the License.
  14. ---
  15. - name: Include base variable file base_vars.yml
  16. include_vars: "{{ base_vars_filename }}"
  17. no_log: true
  18. - name: Validate input parameters of base_vars are not empty
  19. fail:
  20. msg: "{{ input_base_failure_msg }}"
  21. register: input_base_check
  22. when:
  23. - ansible_conf_file_path | length < 1 or
  24. public_nic | length < 1 or
  25. appliance_k8s_pod_net_cidr | length < 1 or
  26. awx_organization | length < 1 or
  27. timezone | length < 1 or
  28. language | length < 1 or
  29. iso_file_path | length < 1 or
  30. mngmnt_network_nic | length < 1 or
  31. mngmnt_network_dhcp_start_range | length < 1 or
  32. mngmnt_network_dhcp_end_range | length < 1 or
  33. host_network_nic | length < 1 or
  34. host_network_dhcp_start_range | length < 1 or
  35. host_network_dhcp_end_range | length < 1
  36. #- name: Validate infiniband base_vars are not empty
  37. # fail:
  38. # msg: "{{ input_base_failure_msg }} for infiniBand as ib_switch_support is true"
  39. # register: ib_check
  40. # when:
  41. # - ib_network_nic | length < 1 or
  42. # ib_network_dhcp_start_range | length < 1 or
  43. # ib_network_dhcp_end_range | length < 1
  44. # when: ib_switch_support
  45. - name: Set facts to validate snmp support
  46. set_fact:
  47. snmp_enabled: false
  48. mngmnt_mapping_file: false
  49. host_mapping_file: false
  50. ib_mapping_file: false
  51. - name: Verify snmp_trap_destination IP address
  52. set_fact:
  53. snmp_enabled: true
  54. when: snmp_trap_destination | length > 1
  55. - name: Assert snmp trap destination address
  56. assert:
  57. that:
  58. - snmp_enabled
  59. - snmp_trap_destination | length > 7
  60. - snmp_trap_destination | ipv4
  61. success_msg: "{{ success_snmp_trap_dest }}"
  62. fail_msg: "{{ fail_snmp_trap_dest }}"
  63. when: snmp_enabled
  64. - name: Assert snmp community string
  65. assert:
  66. that:
  67. - snmp_enabled
  68. - snmp_community_name
  69. success_msg: "{{ success_snmp_comm_msg }}"
  70. fail_msg: "{{ fail_snmp_comm_msg }}"
  71. when: snmp_enabled
  72. - name: Check whether ansible config file exists
  73. stat:
  74. path: "{{ ansible_conf_file_path }}/ansible.cfg"
  75. register: ansible_conf_exists
  76. - name: Create the directory if it does not exist
  77. file:
  78. path: "{{ ansible_conf_file_path }}"
  79. state: directory
  80. mode: "{{ file_perm }}"
  81. when: not ansible_conf_exists.stat.exists
  82. changed_when: false
  83. - name: Create ansible config file if it does not exist
  84. copy:
  85. dest: '{{ ansible_conf_file_path }}/ansible.cfg'
  86. mode: "{{ file_perm }}"
  87. content: |
  88. [defaults]
  89. log_path = /var/log/omnia.log
  90. when: not ansible_conf_exists.stat.exists
  91. - name: Assert ethernet_switch_support
  92. assert:
  93. that:
  94. - ethernet_switch_support == true or ethernet_switch_support == false
  95. success_msg: "{{ ethernet_switch_support_success_msg }}"
  96. fail_msg: "{{ ethernet_switch_support_fail_msg }}"
  97. - name: Assert ib_switch_support
  98. assert:
  99. that:
  100. - ib_switch_support == true or ib_switch_support == false
  101. success_msg: "{{ ib_switch_support_success_msg }}"
  102. fail_msg: "{{ ib_switch_support_fail_msg }}"
  103. - name: Assert powervault_support
  104. assert:
  105. that:
  106. - powervault_support == true or powervault_support == false
  107. success_msg: "{{ powervault_support_success_msg }}"
  108. fail_msg: "{{ powervault_support_fail_msg }}"
  109. - name: Fetch the network interfaces in UP state in the system
  110. shell: set -o pipefail && ip a | awk '/state UP/{print $2}'
  111. register: nic_addr_up
  112. changed_when: false
  113. - name: Assert public nic
  114. assert:
  115. that:
  116. - public_nic in nic_addr_up.stdout
  117. success_msg: "{{ success_msg_public_nic }}"
  118. fail_msg: "{{ fail_msg_public_nic }}"
  119. - name: Fetch the system public IP
  120. set_fact:
  121. public_ip: "{{ lookup('vars','ansible_'+public_nic).ipv4.address }}"
  122. - name: Assert kubernetes pod network CIDR
  123. assert:
  124. that:
  125. - appliance_k8s_pod_net_cidr | ipv4
  126. - appliance_k8s_pod_net_cidr | length > 9
  127. - '"/" in appliance_k8s_pod_net_cidr '
  128. success_msg: "{{ success_msg_k8s_pod_network_cidr }}"
  129. fail_msg: "{{ fail_msg_k8s_pod_network_cidr }}"
  130. - name: Assert Organization in awx
  131. assert:
  132. that:
  133. - awx_organization | length >= min_username_length
  134. - awx_organization | length < max_length
  135. - '"-" not in awx_organization '
  136. - '"\\" not in awx_organization '
  137. - '"\"" not in awx_organization '
  138. - " \"'\" not in awx_organization "
  139. success_msg: "{{ success_awx_organization }}"
  140. fail_msg: "{{ fail_awx_organization }}"
  141. - name: Check timezone file
  142. command: grep -Fx "{{ timezone }}" {{ role_path }}/files/timezone.txt
  143. ignore_errors: yes
  144. register: timezone_out
  145. changed_when: false
  146. - name: Assert timezone
  147. assert:
  148. that: timezone in timezone_out.stdout
  149. success_msg: "{{ success_timezone_msg }}"
  150. fail_msg: "{{ fail_timezone_msg }}"
  151. register: timezone_check
  152. - name: Assert language for provisioning nodes
  153. fail:
  154. msg: "{{ fail_language }}"
  155. when: '"en-US" not in language'
  156. - name: Verify the iso_file_path
  157. stat:
  158. path: "{{ iso_file_path }}"
  159. register: result_path_iso_file
  160. - name : Assert iso_file_path
  161. fail:
  162. msg: "{{ invalid_iso_file_path }}"
  163. when: ( not result_path_iso_file.stat.exists ) and ( ".iso" not in iso_file_path )
  164. - name: Fail when iso path valid but image not right
  165. fail:
  166. msg: "{{ invalid_iso_file_path }}"
  167. when: ( result_path_iso_file.stat.exists ) and ( ".iso" not in iso_file_path )
  168. ####management_net_dhcp_start_end_range
  169. #- name: Assert management network nic
  170. # assert:
  171. # that:
  172. # - mngmnt_network_nic in nic_addr_up.stdout
  173. # success_msg: "{{ success_msg_mngmnt_network_nic }}"
  174. # fail_msg: "{{ fail_msg_mngmnt_network_nic }}"
  175. - name: Fetch the management network ip, netmask and subnet
  176. set_fact:
  177. mngmnt_network_ip: "{{ lookup('vars','ansible_'+mngmnt_network_nic).ipv4.address }}"
  178. mngmnt_network_netmask: "{{ lookup('vars','ansible_'+mngmnt_network_nic).ipv4.netmask }}"
  179. mngmnt_network_subnet: "{{ lookup('vars','ansible_'+mngmnt_network_nic).ipv4.network }}"
  180. - name: Check the subnet of management network dhcp start range
  181. shell: |
  182. IFS=. read -r i1 i2 i3 i4 <<< "{{ mngmnt_network_dhcp_start_range }}"
  183. IFS=. read -r m1 m2 m3 m4 <<< "{{ mngmnt_network_netmask }}"
  184. printf "%d.%d.%d.%d\n" "$((i1 & m1))" "$((i2 & m2))" "$((i3 & m3))" "$((i4 & m4))"
  185. args:
  186. warn: no
  187. register: dhcp_start_mgmnt_result
  188. changed_when: false
  189. - name: Set the start dhcp subnet for management network
  190. set_fact:
  191. dhcp_start_mgmnt: "{{ dhcp_start_mgmnt_result.stdout }}"
  192. - name: Check the subnet of dhcp end range for management network
  193. shell: |
  194. IFS=. read -r i1 i2 i3 i4 <<< "{{ mngmnt_network_dhcp_end_range }}"
  195. IFS=. read -r m1 m2 m3 m4 <<< "{{ mngmnt_network_netmask }}"
  196. printf "%d.%d.%d.%d\n" "$((i1 & m1))" "$((i2 & m2))" "$((i3 & m3))" "$((i4 & m4))"
  197. register: dhcp_end_mgmnt_result
  198. changed_when: false
  199. - name: Set the end dhcp subnet for management network
  200. set_fact:
  201. dhcp_end_mgmnt: "{{ dhcp_end_mgmnt_result.stdout }}"
  202. - name: Assert management_net_dhcp_start_range
  203. assert:
  204. that:
  205. - mngmnt_network_dhcp_start_range
  206. - mngmnt_network_dhcp_start_range | ipv4
  207. - mngmnt_network_dhcp_start_range != mngmnt_network_dhcp_end_range
  208. - dhcp_start_mgmnt == mngmnt_network_subnet
  209. - dhcp_start_mgmnt == dhcp_end_mgmnt
  210. success_msg: "{{ success_dhcp_range }} for management network"
  211. fail_msg: "{{ fail_dhcp_range }} for management network"
  212. - name: Assert management_net_dhcp_end_range
  213. assert:
  214. that:
  215. - mngmnt_network_dhcp_end_range
  216. - mngmnt_network_dhcp_end_range | ipv4
  217. - mngmnt_network_dhcp_start_range != mngmnt_network_dhcp_end_range
  218. - dhcp_end_mgmnt == mngmnt_network_subnet
  219. - dhcp_start_mgmnt == dhcp_end_mgmnt
  220. success_msg: "{{ success_dhcp_range }} for management network"
  221. fail_msg: "{{ fail_dhcp_range }} for management network"
  222. - name: Set the mapping file value for management network
  223. set_fact:
  224. mngmnt_mapping_file: true
  225. when: mngmnt_mapping_file_path | length > 0
  226. - name: Assert valid mngmnt_mapping_file_path
  227. stat:
  228. path: "{{ mngmnt_mapping_file_path }}"
  229. when: mngmnt_mapping_file
  230. register: result_mngmnt_mapping_file
  231. - name : Valid mngmnt_mapping_file_path
  232. fail:
  233. msg: "{{ invalid_mapping_file_path }} for management network"
  234. when: mngmnt_mapping_file and not result_mngmnt_mapping_file.stat.exists
  235. #########
  236. ###Host network####
  237. #- name: Assert host network nic
  238. # assert:
  239. # that:
  240. # - host_network_nic in nic_addr_up.stdout
  241. # success_msg: "{{ success_msg_host_network_nic }}"
  242. # fail_msg: "{{ fail_msg_host_network_nic }}"
  243. - name: Fetch the host network ip, netmask and subnet
  244. set_fact:
  245. hpc_ip: "{{ lookup('vars','ansible_'+host_network_nic).ipv4.address }}"
  246. netmask: "{{ lookup('vars','ansible_'+host_network_nic).ipv4.netmask }}"
  247. subnet: "{{ lookup('vars','ansible_'+host_network_nic).ipv4.network }}"
  248. - name: Check the subnet of host network dhcp start range
  249. shell: |
  250. IFS=. read -r i1 i2 i3 i4 <<< "{{ host_network_dhcp_start_range }}"
  251. IFS=. read -r m1 m2 m3 m4 <<< "{{ netmask }}"
  252. printf "%d.%d.%d.%d\n" "$((i1 & m1))" "$((i2 & m2))" "$((i3 & m3))" "$((i4 & m4))"
  253. args:
  254. warn: no
  255. register: dhcp_start_host_result
  256. changed_when: false
  257. - name: Set the start dhcp subnet for host network
  258. set_fact:
  259. dhcp_start_host: "{{ dhcp_start_host_result.stdout }}"
  260. - name: Check the subnet of dhcp end range for host network
  261. shell: |
  262. IFS=. read -r i1 i2 i3 i4 <<< "{{ host_network_dhcp_end_range }}"
  263. IFS=. read -r m1 m2 m3 m4 <<< "{{ netmask }}"
  264. printf "%d.%d.%d.%d\n" "$((i1 & m1))" "$((i2 & m2))" "$((i3 & m3))" "$((i4 & m4))"
  265. register: dhcp_end_host_result
  266. changed_when: false
  267. - name: Set the end dhcp subnet for host network
  268. set_fact:
  269. dhcp_end_host: "{{ dhcp_end_host_result.stdout }}"
  270. - name: Assert host_network_dhcp_start_range
  271. assert:
  272. that:
  273. - host_network_dhcp_start_range
  274. - host_network_dhcp_start_range | ipv4
  275. - host_network_dhcp_start_range != host_network_dhcp_end_range
  276. - dhcp_start_host == subnet
  277. - dhcp_start_host == dhcp_end_host
  278. success_msg: "{{ success_dhcp_range }} for host network"
  279. fail_msg: "{{ fail_dhcp_range }} for host network"
  280. - name: Assert host_network_dhcp_end_range
  281. assert:
  282. that:
  283. - host_network_dhcp_end_range
  284. - host_network_dhcp_end_range | ipv4
  285. - host_network_dhcp_start_range != host_network_dhcp_end_range
  286. - dhcp_end_host == subnet
  287. - dhcp_start_host == dhcp_end_host
  288. success_msg: "{{ success_dhcp_range }} for host network"
  289. fail_msg: "{{ fail_dhcp_range }} for host network"
  290. - name: Set the mapping file value for host network
  291. set_fact:
  292. host_mapping_file: true
  293. when: host_mapping_file_path | length > 0
  294. - name: Assert valid mapping_file_path
  295. stat:
  296. path: "{{ host_mapping_file_path }}"
  297. when: host_mapping_file
  298. register: result_host_mapping_file
  299. - name: Valid mapping_file_path
  300. fail:
  301. msg: "{{ invalid_mapping_file_path }} for host_network"
  302. when: host_mapping_file and not result_host_mapping_file.stat.exists
  303. - name: Verify different nics
  304. assert:
  305. that:
  306. - public_nic != mngmnt_network_nic
  307. - mngmnt_network_nic != host_network_nic
  308. - public_nic != host_network_nic
  309. success_msg: "{{ success_msg_different_nics }}"
  310. fail_msg: "{{ fail_msg_different_nics }}"
  311. ########
  312. #- name: Assert infiniband network nic
  313. # assert:
  314. # that:
  315. # - ib_network_nic in nic_addr_up.stdout
  316. # success_msg: "{{ success_msg_ib_network_nic }}"
  317. # fail_msg: "{{ fail_msg_ib_network_nic }}"
  318. # when: ib_switch_support
  319. - name: Fetch the infiniband network ip, netmask and subnet
  320. set_fact:
  321. ib_ip: "{{ lookup('vars','ansible_'+ib_network_nic).ipv4.address }}"
  322. ib_netmask: "{{ lookup('vars','ansible_'+ib_network_nic).ipv4.netmask }}"
  323. ib_subnet: "{{ lookup('vars','ansible_'+ib_network_nic).ipv4.network }}"
  324. when: ib_switch_support
  325. - name: Check the subnet of infiniband network dhcp start range
  326. shell: |
  327. IFS=. read -r i1 i2 i3 i4 <<< "{{ ib_network_dhcp_start_range }}"
  328. IFS=. read -r m1 m2 m3 m4 <<< "{{ ib_netmask }}"
  329. printf "%d.%d.%d.%d\n" "$((i1 & m1))" "$((i2 & m2))" "$((i3 & m3))" "$((i4 & m4))"
  330. args:
  331. warn: no
  332. register: dhcp_start_ib_result
  333. when: ib_switch_support
  334. changed_when: false
  335. - name: Set the start dhcp subnet for infiniband network
  336. set_fact:
  337. dhcp_start_ib: "{{ dhcp_start_ib_result.stdout }}"
  338. when: ib_switch_support
  339. - name: Check the subnet of dhcp end range for infiniband network
  340. shell: |
  341. IFS=. read -r i1 i2 i3 i4 <<< "{{ ib_network_dhcp_end_range }}"
  342. IFS=. read -r m1 m2 m3 m4 <<< "{{ ib_netmask }}"
  343. printf "%d.%d.%d.%d\n" "$((i1 & m1))" "$((i2 & m2))" "$((i3 & m3))" "$((i4 & m4))"
  344. register: dhcp_end_ib_result
  345. when: ib_switch_support
  346. changed_when: false
  347. - name: Set the end dhcp subnet for infiniband network
  348. set_fact:
  349. dhcp_end_ib: "{{ dhcp_end_ib_result.stdout }}"
  350. when: ib_switch_support
  351. - name: Assert infiniband_net_dhcp_start_range
  352. assert:
  353. that:
  354. - ib_network_dhcp_start_range
  355. - ib_network_dhcp_start_range | ipv4
  356. - ib_network_dhcp_start_range != ib_network_dhcp_end_range
  357. - dhcp_start_ib == ib_subnet
  358. - dhcp_start_ib == dhcp_end_ib
  359. success_msg: "{{ success_dhcp_range }} for infiniband network"
  360. fail_msg: "{{ fail_dhcp_range }} for infiniband network"
  361. when: ib_switch_support
  362. - name: Assert infiniband_net_dhcp_end_range
  363. assert:
  364. that:
  365. - ib_network_dhcp_end_range
  366. - ib_network_dhcp_end_range | ipv4
  367. - ib_network_dhcp_start_range != ib_network_dhcp_end_range
  368. - dhcp_end_ib == ib_subnet
  369. - dhcp_start_ib == dhcp_end_ib
  370. success_msg: "{{ success_dhcp_range }} for infiniband network"
  371. fail_msg: "{{ fail_dhcp_range }} for infiniband network"
  372. when: ib_switch_support
  373. - name: Set the mapping file value for infiniband
  374. set_fact:
  375. ib_mapping_file: true
  376. when: (ib_switch_support) and (ib_mapping_file_path | length > 0)
  377. - name: Assert valid infiniband_mapping_file_path
  378. stat:
  379. path: "{{ ib_mapping_file_path }}"
  380. when: ib_switch_support and ib_mapping_file
  381. register: result_ib_mapping_file
  382. - name : Valid infiniband_mapping_file_path
  383. fail:
  384. msg: "{{ invalid_mapping_file_path }} for infiniBand network configuration"
  385. when: ib_mapping_file and (not result_ib_mapping_file.stat.exists)
  386. - name: Verify different nics with infiniband nic
  387. assert:
  388. that:
  389. - public_nic != ib_network_nic
  390. - mngmnt_network_nic != ib_network_nic
  391. - ib_network_nic != host_network_nic
  392. success_msg: "{{ success_msg_different_nics_ib }}"
  393. fail_msg: "{{ fail_msg_different_nics_ib }}"
  394. when: ib_switch_support