# WHAT TO DO (install fresh system rather than upgrade) install # INSTALLATION SOURCE (centos repository) url --url= # ALTERNATIVE REPOSITORIES repo --name=Nailgun --baseurl= # KEYBOARD AND LANGUAGE CUSTOMIZATION lang en_US.UTF-8 keyboard us # WHICH TIMEZONE TO USE ON INSTALLED SYSTEM timezone --utc Etc/UTC # REBOOT AFTER INSTALLATION reboot firewall --disable zerombr # SET ROOT PASSWORD DEFAULT IS r00tme rootpw --iscrypted $6$tCD3X7ji$1urw6qEMDkVxOkD33b4TpQAjRiCeDZx0jmgMhDYhfB9KuGfqO9OcMaKyUxnGGWslEDQ4HxTw7vcAMP85NxQe61 # AUTHENTICATION CUSTOMIZATION authconfig --enableshadow --passalgo=sha512 # DISABLE SELINUX ON INSTALLED SYSTEM selinux --disabled # INSTALL IN TEXT MODE text # SKIP CONFIGURING X skipx # SSH user and some unknown random password, # we're going to use SSH keys anyway sshpw --username root --iscrypted $6$tCD3X7ji$1urw6qEMDkVxOkD33k2jjklHSDG2hg2234kJHESJ3hwhsjHshSJshHSJSh333je34DHJHDr4je4AMP85NxQe61 %include /tmp/partition.ks # COBBLER EMBEDDED SNIPPET: 'network_config' # CONFIGURES NETWORK INTERFACES DEPENDING ON # COBBLER SYSTEM PARAMETERS # Using "new" style networking config, by matching networking information to # the physical interface's # MAC-address %include /tmp/pre_install_network_config # PREINSTALL SECTION # HERE ARE COMMANDS THAT WILL BE LAUNCHED BEFORE # INSTALLATION PROCESS ITSELF %pre # COBBLER EMBEDDED SNIPPET: 'log_ks_pre' # CONFIGURES %pre LOGGING set -x -v exec 1>/tmp/ks-pre.log 2>&1 # Once root's homedir is there, copy over the log. while : ; do sleep 10 if [ -d /mnt/sysimage/root ]; then cp /tmp/ks-pre.log /mnt/sysimage/root/ logger "Copied %pre section log to system" break fi done & # DOWNLOADS send2syslog.py AND LAUNCHES IT # IN ORDER TO MONITOR LOG FILES AND SEND # LINES FROM THOSE FILES TO SYSLOG wget -O /tmp/send2syslog.py "" echo '{"hostname": "node-7.domain.tld", "watchlist": [ {"servers": [ {"host": ""} ], "watchfiles": [ {"tag": "install/anaconda", "log_type": "anaconda", "files": ["/tmp/anaconda.log", "/mnt/sysimage/root/install.log"]}, {"tag": "install/ks-pre", "files": ["/tmp/ks-pre.log"]}, {"tag": "install/ks-post", "files": ["/mnt/sysimage/root/ks-post.log"]}, {"tag": "install/syslog", "log_type": "anaconda", "files": ["/tmp/syslog"]}, {"tag": "install/storage", "log_type": "anaconda", "files": ["/tmp/storage.log"]} ] } ] }' > /tmp/send2syslog.conf python /tmp/send2syslog.py -c /tmp/send2syslog.conf # SNIPPET: 'kickstart_ntp' # SYNC LOCAL TIME VIA NTP ntpdate -t 4 -b hwclock --systohc # COBBLER EMBEDDED SNIPPET: 'kickstart_start' # LAUNCHES %pre TRIGGERS IF THOSE INSTALLED wget "" -O /dev/null # COBBLER EMBEDDED SNIPPET: 'pre_install_network_config' # PRECONFIGURES NETWORK INTERFACES DEPENDING ON # COBBLER SYSTEM PARAMETERS # IN PARTICULAR IT WRITES KICKSTART NETWORK CONFIGURATION # INTO /tmp/pre_install_network_config WHICH IS INCLUDED # INTO KICKSTART BY 'network_config' SNIPPET # Start pre_install_network_config generated code # Start of code to match cobbler system interfaces to physical interfaces by # their mac addresses # Start eth3 # Configuring eth3 (00:1e:0b:f9:71:2d) if ifconfig -a | grep -i 00:1e:0b:f9:71:2d then IFNAME=$(ifconfig -a | grep -i '00:1e:0b:f9:71:2d' | cut -d " " -f 1) echo "network --noipv6 --device=$IFNAME --bootproto=dhcp --hostname=node-7.domain.tld" >> /tmp/pre_install_network_config fi # Start eth2 # Configuring eth2 (00:1e:0b:f9:71:2c) if ifconfig -a | grep -i 00:1e:0b:f9:71:2c then IFNAME=$(ifconfig -a | grep -i '00:1e:0b:f9:71:2c' | cut -d " " -f 1) echo "network --noipv6 --device=$IFNAME --bootproto=dhcp --hostname=node-7.domain.tld" >> /tmp/pre_install_network_config fi # Start eth1 # Configuring eth1 (00:15:17:51:c0:3f) if ifconfig -a | grep -i 00:15:17:51:c0:3f then IFNAME=$(ifconfig -a | grep -i '00:15:17:51:c0:3f' | cut -d " " -f 1) echo "network --noipv6 --device=$IFNAME --bootproto=dhcp --hostname=node-7.domain.tld" >> /tmp/pre_install_network_config fi # Start eth0 # Configuring eth0 (00:15:17:51:c0:3e) if ifconfig -a | grep -i 00:15:17:51:c0:3e then IFNAME=$(ifconfig -a | grep -i '00:15:17:51:c0:3e' | cut -d " " -f 1) echo "network --noipv6 --device=$IFNAME --bootproto=dhcp --hostname=node-7.domain.tld" >> /tmp/pre_install_network_config fi # End pre_install_network_config generated code # CONFIGURES SSH KEY ACCESS FOR SSHD CONSOLE # DURING OPERATING SYSTEM INSTALLATION mkdir -p --mode=700 /root/.ssh cat > /root/.ssh/authorized_keys2 </dev/null) ) test -e $(readlink -f $( (ls /dev/cciss!c0d0) 2>/dev/null) ) && dd if=/dev/zero of=$(readlink -f $( (ls /dev/cciss!c0d0) 2>/dev/null) ) bs=1M count=10 sleep 5 hdparm -z $(readlink -f $( (ls /dev/cciss!c0d0) 2>/dev/null) ) parted -s $(readlink -f $( (ls /dev/cciss!c0d0) 2>/dev/null) ) mklabel gpt parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d0) 2>/dev/null) ) unit MiB mkpart primary 0 24 parted -s $(readlink -f $( (ls /dev/cciss!c0d0) 2>/dev/null) ) set 1 bios_grub on parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d0) 2>/dev/null) ) unit MiB mkpart primary fat32 24 224 parted -s $(readlink -f $( (ls /dev/cciss!c0d0) 2>/dev/null) ) set 2 boot on hdparm -z $(readlink -f $( (ls /dev/cciss!c0d1) 2>/dev/null) ) test -e $(readlink -f $( (ls /dev/cciss!c0d1) 2>/dev/null) ) && dd if=/dev/zero of=$(readlink -f $( (ls /dev/cciss!c0d1) 2>/dev/null) ) bs=1M count=10 sleep 5 hdparm -z $(readlink -f $( (ls /dev/cciss!c0d1) 2>/dev/null) ) parted -s $(readlink -f $( (ls /dev/cciss!c0d1) 2>/dev/null) ) mklabel gpt parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d1) 2>/dev/null) ) unit MiB mkpart primary 0 24 parted -s $(readlink -f $( (ls /dev/cciss!c0d1) 2>/dev/null) ) set 1 bios_grub on parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d1) 2>/dev/null) ) unit MiB mkpart primary fat32 24 224 parted -s $(readlink -f $( (ls /dev/cciss!c0d1) 2>/dev/null) ) set 2 boot on hdparm -z $(readlink -f $( (ls /dev/cciss!c0d2) 2>/dev/null) ) test -e $(readlink -f $( (ls /dev/cciss!c0d2) 2>/dev/null) ) && dd if=/dev/zero of=$(readlink -f $( (ls /dev/cciss!c0d2) 2>/dev/null) ) bs=1M count=10 sleep 5 hdparm -z $(readlink -f $( (ls /dev/cciss!c0d2) 2>/dev/null) ) parted -s $(readlink -f $( (ls /dev/cciss!c0d2) 2>/dev/null) ) mklabel gpt parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d2) 2>/dev/null) ) unit MiB mkpart primary 0 24 parted -s $(readlink -f $( (ls /dev/cciss!c0d2) 2>/dev/null) ) set 1 bios_grub on parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d2) 2>/dev/null) ) unit MiB mkpart primary fat32 24 224 parted -s $(readlink -f $( (ls /dev/cciss!c0d2) 2>/dev/null) ) set 2 boot on hdparm -z $(readlink -f $( (ls /dev/cciss!c0d3) 2>/dev/null) ) test -e $(readlink -f $( (ls /dev/cciss!c0d3) 2>/dev/null) ) && dd if=/dev/zero of=$(readlink -f $( (ls /dev/cciss!c0d3) 2>/dev/null) ) bs=1M count=10 sleep 5 hdparm -z $(readlink -f $( (ls /dev/cciss!c0d3) 2>/dev/null) ) parted -s $(readlink -f $( (ls /dev/cciss!c0d3) 2>/dev/null) ) mklabel gpt parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d3) 2>/dev/null) ) unit MiB mkpart primary 0 24 parted -s $(readlink -f $( (ls /dev/cciss!c0d3) 2>/dev/null) ) set 1 bios_grub on parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d3) 2>/dev/null) ) unit MiB mkpart primary fat32 24 224 parted -s $(readlink -f $( (ls /dev/cciss!c0d3) 2>/dev/null) ) set 2 boot on hdparm -z $(readlink -f $( (ls /dev/cciss!c0d4) 2>/dev/null) ) test -e $(readlink -f $( (ls /dev/cciss!c0d4) 2>/dev/null) ) && dd if=/dev/zero of=$(readlink -f $( (ls /dev/cciss!c0d4) 2>/dev/null) ) bs=1M count=10 sleep 5 hdparm -z $(readlink -f $( (ls /dev/cciss!c0d4) 2>/dev/null) ) parted -s $(readlink -f $( (ls /dev/cciss!c0d4) 2>/dev/null) ) mklabel gpt parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d4) 2>/dev/null) ) unit MiB mkpart primary 0 24 parted -s $(readlink -f $( (ls /dev/cciss!c0d4) 2>/dev/null) ) set 1 bios_grub on parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d4) 2>/dev/null) ) unit MiB mkpart primary fat32 24 224 parted -s $(readlink -f $( (ls /dev/cciss!c0d4) 2>/dev/null) ) set 2 boot on hdparm -z $(readlink -f $( (ls /dev/cciss!c0d5) 2>/dev/null) ) test -e $(readlink -f $( (ls /dev/cciss!c0d5) 2>/dev/null) ) && dd if=/dev/zero of=$(readlink -f $( (ls /dev/cciss!c0d5) 2>/dev/null) ) bs=1M count=10 sleep 5 hdparm -z $(readlink -f $( (ls /dev/cciss!c0d5) 2>/dev/null) ) parted -s $(readlink -f $( (ls /dev/cciss!c0d5) 2>/dev/null) ) mklabel gpt parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d5) 2>/dev/null) ) unit MiB mkpart primary 0 24 parted -s $(readlink -f $( (ls /dev/cciss!c0d5) 2>/dev/null) ) set 1 bios_grub on parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d5) 2>/dev/null) ) unit MiB mkpart primary fat32 24 224 parted -s $(readlink -f $( (ls /dev/cciss!c0d5) 2>/dev/null) ) set 2 boot on parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d0) 2>/dev/null) ) unit MiB mkpart primary 224 424 parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d1) 2>/dev/null) ) unit MiB mkpart primary 224 424 parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d2) 2>/dev/null) ) unit MiB mkpart primary 224 424 parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d3) 2>/dev/null) ) unit MiB mkpart primary 224 424 parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d4) 2>/dev/null) ) unit MiB mkpart primary 224 424 parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d5) 2>/dev/null) ) unit MiB mkpart primary 224 424 parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d0) 2>/dev/null) ) unit MiB mkpart primary 424 55784 parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d0) 2>/dev/null) ) unit MiB mkpart primary 55784 476768 parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d1) 2>/dev/null) ) unit MiB mkpart primary 424 476704 parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d2) 2>/dev/null) ) unit MiB mkpart primary 424 476704 parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d3) 2>/dev/null) ) unit MiB mkpart primary 424 28136 parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d3) 2>/dev/null) ) unit MiB mkpart primary 28136 476768 parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d4) 2>/dev/null) ) unit MiB mkpart primary 424 476704 parted -a none -s $(readlink -f $( (ls /dev/cciss!c0d5) 2>/dev/null) ) unit MiB mkpart primary 424 476704 sleep 10 hdparm -z $(readlink -f $( (ls /dev/cciss!c0d0) 2>/dev/null) ) hdparm -z $(readlink -f $( (ls /dev/cciss!c0d1) 2>/dev/null) ) hdparm -z $(readlink -f $( (ls /dev/cciss!c0d2) 2>/dev/null) ) hdparm -z $(readlink -f $( (ls /dev/cciss!c0d3) 2>/dev/null) ) hdparm -z $(readlink -f $( (ls /dev/cciss!c0d4) 2>/dev/null) ) hdparm -z $(readlink -f $( (ls /dev/cciss!c0d5) 2>/dev/null) ) for v in $(vgs | awk '{print $1}'); do vgreduce -f --removemissing $v; vgremove -f $v; done for p in $(pvs | grep '\/dev' | awk '{print $1}'); do pvremove -ff -y $p ; done mdadm --zero-superblock --force $(readlink -f $( (ls /dev/cciss!c0d0) 2>/dev/null) )* mdadm --zero-superblock --force $(readlink -f $( (ls /dev/cciss!c0d1) 2>/dev/null) )* mdadm --zero-superblock --force $(readlink -f $( (ls /dev/cciss!c0d2) 2>/dev/null) )* mdadm --zero-superblock --force $(readlink -f $( (ls /dev/cciss!c0d3) 2>/dev/null) )* mdadm --zero-superblock --force $(readlink -f $( (ls /dev/cciss!c0d4) 2>/dev/null) )* mdadm --zero-superblock --force $(readlink -f $( (ls /dev/cciss!c0d5) 2>/dev/null) )* echo > /tmp/partition.ks echo "partition raid.001 --onpart=$(readlink -f $( (ls /dev/cciss!c0d0) 2>/dev/null) )3" >> /tmp/partition.ks echo "partition raid.002 --onpart=$(readlink -f $( (ls /dev/cciss!c0d1) 2>/dev/null) )3" >> /tmp/partition.ks echo "partition raid.003 --onpart=$(readlink -f $( (ls /dev/cciss!c0d2) 2>/dev/null) )3" >> /tmp/partition.ks echo "partition raid.004 --onpart=$(readlink -f $( (ls /dev/cciss!c0d3) 2>/dev/null) )3" >> /tmp/partition.ks echo "partition raid.005 --onpart=$(readlink -f $( (ls /dev/cciss!c0d4) 2>/dev/null) )3" >> /tmp/partition.ks echo "partition raid.006 --onpart=$(readlink -f $( (ls /dev/cciss!c0d5) 2>/dev/null) )3" >> /tmp/partition.ks echo "raid /boot --device md0 --fstype ext2 --level=RAID1 raid.001 raid.002 raid.003 raid.004 raid.005 raid.006" >> /tmp/partition.ks echo "partition pv.001 --onpart=$(readlink -f $( (ls /dev/cciss!c0d0) 2>/dev/null) )4" >> /tmp/partition.ks echo "partition pv.002 --onpart=$(readlink -f $( (ls /dev/cciss!c0d0) 2>/dev/null) )5" >> /tmp/partition.ks echo "partition pv.003 --onpart=$(readlink -f $( (ls /dev/cciss!c0d1) 2>/dev/null) )4" >> /tmp/partition.ks echo "partition pv.004 --onpart=$(readlink -f $( (ls /dev/cciss!c0d2) 2>/dev/null) )4" >> /tmp/partition.ks echo "partition pv.005 --onpart=$(readlink -f $( (ls /dev/cciss!c0d3) 2>/dev/null) )4" >> /tmp/partition.ks echo "partition pv.006 --onpart=$(readlink -f $( (ls /dev/cciss!c0d3) 2>/dev/null) )5" >> /tmp/partition.ks echo "partition pv.007 --onpart=$(readlink -f $( (ls /dev/cciss!c0d4) 2>/dev/null) )4" >> /tmp/partition.ks echo "partition pv.008 --onpart=$(readlink -f $( (ls /dev/cciss!c0d5) 2>/dev/null) )4" >> /tmp/partition.ks echo "volgroup cinder pv.002 pv.003 pv.004 pv.005" >> /tmp/partition.ks echo "volgroup image pv.006 pv.007 pv.008" >> /tmp/partition.ks echo "volgroup os pv.001" >> /tmp/partition.ks echo "logvol / --vgname=os --size=51200 --name=root --fstype=ext4" >> /tmp/partition.ks echo "logvol swap --vgname=os --size=4096 --name=swap " >> /tmp/partition.ks echo "logvol /var/lib/glance --vgname=image --size=1401000 --name=glance --fstype=xfs" >> /tmp/partition.ks echo "bootloader --location=mbr --driveorder=$(basename $(readlink -f $( (ls /dev/cciss!c0d0) 2>/dev/null) )),$(basename $(readlink -f $( (ls /dev/cciss!c0d1) 2>/dev/null) )),$(basename $(readlink -f $( (ls /dev/cciss!c0d2) 2>/dev/null) )),$(basename $(readlink -f $( (ls /dev/cciss!c0d3) 2>/dev/null) )),$(basename $(readlink -f $( (ls /dev/cciss!c0d4) 2>/dev/null) )),$(basename $(readlink -f $( (ls /dev/cciss!c0d5) 2>/dev/null) )) --append=' console=ttyS0,9600 console=tty0 biosdevname=0 crashkernel=none'" >> /tmp/partition.ks echo "%post --nochroot" > /tmp/post_partition.ks echo "set -x -v" >> /tmp/post_partition.ks echo "exec 1>/mnt/sysimage/root/post-partition.log 2>&1" >> /tmp/post_partition.ks echo "echo -n > /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"device (hd0) /dev/$(basename $(readlink -f $( (ls /dev/cciss!c0d0) 2>/dev/null) ))\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"geometry (hd0) 130 255 63\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"root (hd0,2)\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"install /grub/stage1 (hd0) /grub/stage2 p /grub/grub.conf\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo quit >> /tmp/grub.script" >> /tmp/post_partition.ks echo "cat /tmp/grub.script | chroot /mnt/sysimage /sbin/grub --no-floppy --batch" >> /tmp/post_partition.ks echo "echo -n > /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"device (hd0) /dev/$(basename $(readlink -f $( (ls /dev/cciss!c0d1) 2>/dev/null) ))\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"geometry (hd0) 130 255 63\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"root (hd0,2)\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"install /grub/stage1 (hd0) /grub/stage2 p /grub/grub.conf\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo quit >> /tmp/grub.script" >> /tmp/post_partition.ks echo "cat /tmp/grub.script | chroot /mnt/sysimage /sbin/grub --no-floppy --batch" >> /tmp/post_partition.ks echo "echo -n > /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"device (hd0) /dev/$(basename $(readlink -f $( (ls /dev/cciss!c0d2) 2>/dev/null) ))\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"geometry (hd0) 130 255 63\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"root (hd0,2)\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"install /grub/stage1 (hd0) /grub/stage2 p /grub/grub.conf\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo quit >> /tmp/grub.script" >> /tmp/post_partition.ks echo "cat /tmp/grub.script | chroot /mnt/sysimage /sbin/grub --no-floppy --batch" >> /tmp/post_partition.ks echo "echo -n > /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"device (hd0) /dev/$(basename $(readlink -f $( (ls /dev/cciss!c0d3) 2>/dev/null) ))\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"geometry (hd0) 130 255 63\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"root (hd0,2)\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"install /grub/stage1 (hd0) /grub/stage2 p /grub/grub.conf\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo quit >> /tmp/grub.script" >> /tmp/post_partition.ks echo "cat /tmp/grub.script | chroot /mnt/sysimage /sbin/grub --no-floppy --batch" >> /tmp/post_partition.ks echo "echo -n > /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"device (hd0) /dev/$(basename $(readlink -f $( (ls /dev/cciss!c0d4) 2>/dev/null) ))\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"geometry (hd0) 130 255 63\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"root (hd0,2)\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"install /grub/stage1 (hd0) /grub/stage2 p /grub/grub.conf\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo quit >> /tmp/grub.script" >> /tmp/post_partition.ks echo "cat /tmp/grub.script | chroot /mnt/sysimage /sbin/grub --no-floppy --batch" >> /tmp/post_partition.ks echo "echo -n > /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"device (hd0) /dev/$(basename $(readlink -f $( (ls /dev/cciss!c0d5) 2>/dev/null) ))\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"geometry (hd0) 130 255 63\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"root (hd0,2)\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo \"install /grub/stage1 (hd0) /grub/stage2 p /grub/grub.conf\" >> /tmp/grub.script" >> /tmp/post_partition.ks echo "echo quit >> /tmp/grub.script" >> /tmp/post_partition.ks echo "cat /tmp/grub.script | chroot /mnt/sysimage /sbin/grub --no-floppy --batch" >> /tmp/post_partition.ks echo "sed -i 's/hiddenmenu/hiddenmenu\nserial\ --unit=1\ --speed=19200\nterminal\ --timeout=8\ console\ serial/g' /etc/grub.cfg" >> /tmp/post_partition.ks echo "%end" >> /tmp/post_partition.ks # PACKAGES SECTION # HERE ARE LIST OF PACKAGES THAT WILL BE INSTALLED # FIXME --ignoremissing %packages --nobase --ignoremissing @Core authconfig bfa-firmware ql2100-firmware ql2200-firmware ql23xx-firmware ql2400-firmware ql2500-firmware bind-utils cronie crontabs curl gcc gdisk make mlocate nailgun-agent nailgun-mcagents nailgun-net-check dhcp_checker ntp openssh openssh-clients openssh-server rhn-setup ruby-augeas ruby-devel rubygem-openstack rubygem-netaddr system-config-firewall-base virt-what wget yum yum-plugin-versionlock yum-utils perl daemonize rsync # COBBLER EMBEDDED SNIPPET: 'puppet_install_if_enabled' # LISTS puppet PACKAGE IF puppet_auto_setup VARIABLE IS SET TO 1 puppet # COBBLER EMBEDDED SNIPPET: 'mcollective_install_if_enabled' # LISTS mcollective PACKAGE IF mco_auto_setup VARIABLE IS SET TO 1 mcollective # POST INSTALLATION PARTITIONING # THERE ARE SOME COMMANDS TO CREATE LARGE (>1TB) VOLUMES # AND INSTALL GRUB BOOTLOADER TO MAKE NODES ABLE TO BOOT FROM ANY HARDDRIVE %include /tmp/post_partition.ks # POSTINSTALL SECTION # HERE ARE COMMANDS THAT WILL BE LAUNCHED JUST AFTER # INSTALLATION ITSELF COMPLETED %post yum versionlock puppet yum versionlock kernel yum versionlock iproute2 yum-config-manager --disableplugin=fastestmirror --save &>/dev/null echo -e "modprobe nf_conntrack_ipv4\nmodprobe nf_conntrack_ipv6" >> /etc/rc.modules chmod +x /etc/rc.modules echo -e "net.nf_conntrack_max=1048576" >> /etc/sysctl.conf mkdir -p /var/log/coredump echo -e "kernel.core_pattern=/var/log/coredump/core.%e.%p.%h.%t" >> /etc/sysctl.conf chmod 777 /var/log/coredump echo -e "* soft core unlimited\n* hard core unlimited" >> /etc/security/limits.conf gem install httpclient --version 2.2.5 --source --no-ri --no-rdoc gem install json --version 1.6.1 --source --no-ri --no-rdoc gem install ohai --version 6.14.0 --source --no-ri --no-rdoc gem install rethtool --version 0.0.3 --source --no-ri --no-rdoc mkdir -p /etc/nailgun-agent/ cat > /etc/nailgun-agent/config.yaml << EOA --- url: ''; EOA # COBBLER EMBEDDED SNIPPET: 'log_ks_post' # CONFIGURES %post LOGGING set -x -v exec 1>/root/ks-post.log 2>&1 # COBBLER EMBEDDED SNIPPET: 'post_install_kernel_options' # CONFIGURES KERNEL PARAMETERS ON INSTALLED SYSTEM # COBBLER EMBEDDED SNIPPET: 'post_install_network_config' # CONFIGURES NETWORK INTERFACES DEPENDING ON # COBBLER SYSTEM PARAMETERS # Start post_install_network_config generated code # create a working directory for interface scripts mkdir /etc/sysconfig/network-scripts/cobbler cp /etc/sysconfig/network-scripts/ifcfg-lo /etc/sysconfig/network-scripts/cobbler/ # set the hostname in the network configuration file grep -v HOSTNAME /etc/sysconfig/network > /etc/sysconfig/network.cobbler echo "HOSTNAME=node-7.domain.tld" >> /etc/sysconfig/network.cobbler rm -f /etc/sysconfig/network mv /etc/sysconfig/network.cobbler /etc/sysconfig/network # Also set the hostname now, some applications require it # (e.g.: if we're connecting to Puppet before a reboot). /bin/hostname node-7.domain.tld # Start configuration for eth3 echo "DEVICE=eth3" > /etc/sysconfig/network-scripts/cobbler/ifcfg-eth3 echo "HWADDR=00:1E:0B:F9:71:2D" >> /etc/sysconfig/network-scripts/cobbler/ifcfg-eth3 IFNAME=$(ifconfig -a | grep -i '00:1E:0B:F9:71:2D' | cut -d ' ' -f 1) if [ -f "/etc/modprobe.conf" ] && [ $IFNAME ]; then grep $IFNAME /etc/modprobe.conf | sed "s/$IFNAME/eth3/" >> /etc/modprobe.conf.cobbler grep -v $IFNAME /etc/modprobe.conf >> /etc/modprobe.conf.new rm -f /etc/modprobe.conf mv /etc/modprobe.conf.new /etc/modprobe.conf fi echo "TYPE=Ethernet" >> /etc/sysconfig/network-scripts/cobbler/ifcfg-eth3 echo "BOOTPROTO=none" >> /etc/sysconfig/network-scripts/cobbler/ifcfg-eth3 echo "DNS1=" >> /etc/sysconfig/network-scripts/cobbler/ifcfg-eth3 # End configuration for eth3 # Start configuration for eth2 echo "DEVICE=eth2" > /etc/sysconfig/network-scripts/cobbler/ifcfg-eth2 echo "HWADDR=00:1E:0B:F9:71:2C" >> /etc/sysconfig/network-scripts/cobbler/ifcfg-eth2 IFNAME=$(ifconfig -a | grep -i '00:1E:0B:F9:71:2C' | cut -d ' ' -f 1) if [ -f "/etc/modprobe.conf" ] && [ $IFNAME ]; then grep $IFNAME /etc/modprobe.conf | sed "s/$IFNAME/eth2/" >> /etc/modprobe.conf.cobbler grep -v $IFNAME /etc/modprobe.conf >> /etc/modprobe.conf.new rm -f /etc/modprobe.conf mv /etc/modprobe.conf.new /etc/modprobe.conf fi echo "TYPE=Ethernet" >> /etc/sysconfig/network-scripts/cobbler/ifcfg-eth2 echo "BOOTPROTO=none" >> /etc/sysconfig/network-scripts/cobbler/ifcfg-eth2 echo "DNS1=" >> /etc/sysconfig/network-scripts/cobbler/ifcfg-eth2 # End configuration for eth2 # Start configuration for eth1 echo "DEVICE=eth1" > /etc/sysconfig/network-scripts/cobbler/ifcfg-eth1 echo "HWADDR=00:15:17:51:C0:3F" >> /etc/sysconfig/network-scripts/cobbler/ifcfg-eth1 IFNAME=$(ifconfig -a | grep -i '00:15:17:51:C0:3F' | cut -d ' ' -f 1) if [ -f "/etc/modprobe.conf" ] && [ $IFNAME ]; then grep $IFNAME /etc/modprobe.conf | sed "s/$IFNAME/eth1/" >> /etc/modprobe.conf.cobbler grep -v $IFNAME /etc/modprobe.conf >> /etc/modprobe.conf.new rm -f /etc/modprobe.conf mv /etc/modprobe.conf.new /etc/modprobe.conf fi echo "TYPE=Ethernet" >> /etc/sysconfig/network-scripts/cobbler/ifcfg-eth1 echo "BOOTPROTO=none" >> /etc/sysconfig/network-scripts/cobbler/ifcfg-eth1 echo "DNS1=" >> /etc/sysconfig/network-scripts/cobbler/ifcfg-eth1 # End configuration for eth1 # Start configuration for eth0 echo "DEVICE=eth0" > /etc/sysconfig/network-scripts/cobbler/ifcfg-eth0 echo "HWADDR=00:15:17:51:C0:3E" >> /etc/sysconfig/network-scripts/cobbler/ifcfg-eth0 IFNAME=$(ifconfig -a | grep -i '00:15:17:51:C0:3E' | cut -d ' ' -f 1) if [ -f "/etc/modprobe.conf" ] && [ $IFNAME ]; then grep $IFNAME /etc/modprobe.conf | sed "s/$IFNAME/eth0/" >> /etc/modprobe.conf.cobbler grep -v $IFNAME /etc/modprobe.conf >> /etc/modprobe.conf.new rm -f /etc/modprobe.conf mv /etc/modprobe.conf.new /etc/modprobe.conf fi echo "TYPE=Ethernet" >> /etc/sysconfig/network-scripts/cobbler/ifcfg-eth0 echo "BOOTPROTO=none" >> /etc/sysconfig/network-scripts/cobbler/ifcfg-eth0 echo "DNS1=" >> /etc/sysconfig/network-scripts/cobbler/ifcfg-eth0 # End configuration for eth0 sed -i -e "/^search /d" /etc/resolv.conf echo -n "search " >>/etc/resolv.conf echo -n "domain.tld " >>/etc/resolv.conf echo "" >>/etc/resolv.conf sed -i -e "/^nameserver /d" /etc/resolv.conf echo "nameserver" >>/etc/resolv.conf sed -i 's/ONBOOT=yes/ONBOOT=no/g' /etc/sysconfig/network-scripts/ifcfg-eth* rm -f /etc/sysconfig/network-scripts/ifcfg-* mv /etc/sysconfig/network-scripts/cobbler/* /etc/sysconfig/network-scripts/ rm -r /etc/sysconfig/network-scripts/cobbler if [ -f "/etc/modprobe.conf" ]; then cat /etc/modprobe.conf.cobbler >> /etc/modprobe.conf rm -f /etc/modprobe.conf.cobbler fi # End post_install_network_config generated code # COBBLER EMBEDDED SNIPPET: 'puppet_conf' # CONFIGURES PUPPET AGENT mkdir -p /etc/puppet cat < /etc/puppet/puppet.conf [main] # The Puppet log directory. # The default value is '\$vardir/log'. logdir = /var/log/puppet # Where Puppet PID files are kept. # The default value is '\$vardir/run'. rundir = /var/run/puppet # Where SSL certificates are kept. # The default value is '\$confdir/ssl'. ssldir = \$vardir/ssl pluginsync = true [agent] # The file in which puppetd stores a list of the classes # associated with the retrieved configuratiion. Can be loaded in # the separate ``puppet`` executable using the ``--loadclasses`` # option. # The default value is '\$confdir/classes.txt'. classfile = \$vardir/classes.txt # Where puppetd caches the local configuration. An # extension indicating the cache format is added automatically. # The default value is '\$confdir/localconfig'. localconfig = \$vardir/localconfig server = fuel.domain.tld # How long the client should wait for the configuration to be retrieved before # considering it a failure. # It may help with 'execution expired' issue we've experienced. configtimeout = 600 # Don't send reports after every run. report = false EOCONF # COBBLER EMBEDDED SNIPPET: 'puppet_register_if_enabled' # CREATES CERTIFICATE REQUEST AND SENDS IT TO PUPPET MASTER # COBBLER EMBEDDED SNIPPET: 'mcollective_conf' # CONFIGURES MCOLLECTIVE AGENT mkdir -p /etc/mcollective cat < /etc/mcollective/server.cfg main_collective = mcollective collectives = mcollective libdir = /usr/libexec/mcollective logfile = /var/log/mcollective.log loglevel = debug daemonize = 1 direct_addressing = 1 # Set huge value of ttl to avoid cases with unsyncronized time between nodes # bash$ date -d '2033-5-18 3:33:20 UTC' +%s # 2000000000 # It means that ttl equals 63 years and a half. ttl = 2000000000 # Plugins securityprovider = psk plugin.psk = unset connector = rabbitmq plugin.rabbitmq.vhost = mcollective plugin.rabbitmq.pool.size = 1 plugin.rabbitmq.pool.1.host = plugin.rabbitmq.pool.1.port = $mco_port plugin.rabbitmq.pool.1.user = mcollective plugin.rabbitmq.pool.1.password = marionette plugin.rabbitmq.heartbeat_interval = 30 # Facts factsource = yaml plugin.yaml = /etc/mcollective/facts.yaml EOCONF # turn on mcollective service after reboot and set priority to 81 sed -i /etc/rc.d/init.d/mcollective -e 's/\(# chkconfig:\s\+[-0-6]\+\) [0-9]\+ \([0-9]\+\)/\1 81 \2/' /sbin/chkconfig mcollective on # SNIPPET: 'kickstart_ntp' # SYNC LOCAL TIME VIA NTP ntpdate -t 4 -b hwclock --systohc # SNIPPET: 'ntp_to_masternode' # CONFIGURES NTPD POOL TO MASTER NODE # Disable panic about huge clock offset sed -i '/^\s*tinker panic/ d' /etc/ntp.conf sed -i '1 i tinker panic 0' /etc/ntp.conf echo 0 > /var/lib/ntp/drift chown ntp: /var/lib/ntp/drift # Point installed ntpd to Master node sed -i '/^\s*server/ d' /etc/ntp.conf echo "server burst iburst" >> /etc/ntp.conf sed -i 's/SYNC_HWCLOCK\s*=\s*no/SYNC_HWCLOCK=yes/' /etc/sysconfig/ntpdate chkconfig ntpd on chkconfig ntpdate on # Let's not to use separate snippet for just one line of code. Complexity eats # my time. echo 'flock -w 0 -o /var/lock/agent.lock -c "/opt/nailgun/bin/agent >> /var/log/nailgun-agent.log 2>&1"' >> /etc/rc.local # It is for the internal nailgun using echo target > /etc/nailgun_systemtype # COBBLER EMBEDDED SNIPPET: 'authorized_keys' # PUTS authorized_keys file into /root/.ssh/authorized_keys mkdir -p /root/.ssh chown root:root /root/.ssh chmod 700 /root/.ssh cat > /root/.ssh/authorized_keys < /etc/yum.repos.d/nailgun.repo << EOF [nailgun] name=Nailgun baseurl= gpgcheck=0 EOF # COBBLER EMBEDDED SNIPPET: 'kernel_lt_if_enabled' # INSTALLS kernel-lt PACKAGE IF kernel_lt VARIABLE IS SET TO 1 # COBBLER EMBEDDED SNIPPET: 'ssh_disable_gssapi' # REMOVES "GSSAPICleanupCredentials yes" AND "GSSAPIAuthentication yes" LINES # FROM /etc/ssh/sshd_config sed -i -e "/^\s*GSSAPICleanupCredentials yes/d" -e "/^\s*GSSAPIAuthentication yes/d" /etc/ssh/sshd_config # COBBLER EMBEDDED SNIPPET: 'redhat_register' # REGISTER AT REDHAT WITH ACTIVATION KEY # begin Red Hat management server registration # not configured to register to any Red Hat management server (ok) # end Red Hat management server registration # REGISTER TO RED HAT SUBSCRIPTION MANAGER WITH LOGIN/PASSWORD # begin Red Hat Network certificate-based server registration # not configured to use Certificate-based RHN (ok) # end Red Hat Network certificate-based server registration # Let's not wait forewer when ssh'ing: sed -i --follow-symlinks -e '/UseDNS/d' /etc/ssh/sshd_config echo 'UseDNS no' >> /etc/ssh/sshd_config # COBBLER EMBEDDED SNIPPET: 'sshd_auth_pubkey_only' # DISABLE PASSWORD AUTH. ALLOW PUBKEY AUTH ONLY IN /etc/ssh/sshd_config # Allow ssh auth PubKey only. sed --follow-symlinks -i 's/^\s*PubkeyAuthentication\s+no/PubkeyAuthentication yes/' /etc/ssh/sshd_config sed --follow-symlinks -i '/^\s*PasswordAuthentication/d' /etc/ssh/sshd_config echo 'PasswordAuthentication no' >> /etc/ssh/sshd_config # Copying default bash settings to the root directory cp -f /etc/skel/.bash* /root/ # Rsyslogd should send all messages to master node cat >/etc/rsyslog.d/10-log2master.conf <1 %\$NOW%T%TIMESTAMP:8:\$%Z %HOSTNAME% %APP-NAME% %PROCID% %MSGID% -%msg%\n" *.* @;LogToMaster EOF # Configure static IP address for admin interface #!/bin/bash DEFAULT_GW= ADMIN_MAC=$(sed 's/\ /\n/g' /proc/cmdline | grep choose_interface | awk -F\= '{print $2}') ADMIN_IF=$(tr ' ' '\n' < /proc/cmdline | grep "udevrules=" | sed 's/[,=]/\n/g' | grep "$ADMIN_MAC" | cut -d_ -f2 | head -1) INSTALL_IF=$(ifconfig | grep "$ADMIN_MAC" | head -1 | cut -d' ' -f1) NETADDR=( $(ifconfig $INSTALL_IF | grep -oP "[0-9]{1,3}\.[0-9]{1,3}\.[0-9]{1,3}\.[0-9]{1,3}") ) echo -e "# FROM COBBLER SNIPPET\nDEVICE=$ADMIN_IF\nIPADDR=${NETADDR[0]}\nNETMASK=${NETADDR[2]}\nBOOTPROTO=none\nONBOOT=yes\nUSERCTL=no\n" > /etc/sysconfig/network-scripts/ifcfg-"$ADMIN_IF" echo GATEWAY="$DEFAULT_GW" >> /etc/sysconfig/network cat /proc/cmdline | tr ' ' '\n' | grep udevrules | tr '[:upper:]' '[:lower:]' | sed -e 's/udevrules=//g' -e 's/,/\n/g' | sed -e "s/^/SUBSYSTEM==\"net\",\ ACTION==\"add\",\ DRIVERS==\"?*\",\ ATTR{address}==\"/g" -e "s/_/\",\ ATTR{type}==\"1\",\ KERNEL==\"eth*\",\ NAME=\"/g" -e "s/$/\"/g" | tee /etc/udev/rules.d/70-persistent-net.rules # Blacklist i2c_piix4 module so it does not create kernel errors [[ $(virt-what) = "virtualbox" ]] && echo "blacklist i2c_piix4" >> /etc/modprobe.d/blacklist-i2c_piix4.conf wget -O /etc/rsyslog.d/20-puppet_stdout.conf "" wget -O /etc/rsyslog.d/20-puppet_error.conf "" # COBBLER EMBEDDED SNIPPET: 'kickstart_done' # DISABLES PXE BOOTING wget "" -O /root/cobbler.ks wget "" -O /dev/null wget "" -O /dev/null %end