OSDN Git Service

activates docker new repository by default and updates docker installed default version.
[metasearch/grid-chef-repo.git] / cookbooks / docker-grid / attributes / default.rb
1 #
2 # Cookbook Name:: docker-grid
3 # Attributes:: default
4 #
5 # Copyright 2016-2018, whitestar
6 #
7 # Licensed under the Apache License, Version 2.0 (the "License");
8 # you may not use this file except in compliance with the License.
9 # You may obtain a copy of the License at
10 #
11 #     http://www.apache.org/licenses/LICENSE-2.0
12 #
13 # Unless required by applicable law or agreed to in writing, software
14 # distributed under the License is distributed on an "AS IS" BASIS,
15 # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
16 # See the License for the specific language governing permissions and
17 # limitations under the License.
18 #
19
20 platform = node['platform']
21
22 default['docker-grid']['install_flavor'] = 'dockerproject'  # or 'os-repository'
23 default['docker-grid']['dockerproject']['enable_new_repo'] = true
24 # read only
25 force_override['docker-grid']['dockerproject']['apt_new_repo_url'] = "https://download.docker.com/linux/#{platform}"
26 force_override['docker-grid']['dockerproject']['apt_old_repo_url'] = 'https://apt.dockerproject.org/repo'
27 # e.g. 'stable edge', 'edge test',...
28 default['docker-grid']['dockerproject']['apt_new_repo_sections'] = 'stable'
29 default['docker-grid']['dockerproject']['package_name'] \
30   = node['docker-grid']['dockerproject']['enable_new_repo'] ? 'docker-ce' : 'docker-engine'
31 apt_repo_url = \
32   if node['docker-grid']['dockerproject']['enable_new_repo']
33     node['docker-grid']['dockerproject']['apt_new_repo_url']
34   else
35     node['docker-grid']['dockerproject']['apt_old_repo_url']
36   end
37 default['docker-grid']['apt_repo'] = {
38   'url' => apt_repo_url,
39   'override_apt_line' => '',  # e.g. 'deb https://apt.dockerproject.org/repo ubuntu-xenial main'
40   # for old repository
41   'keyserver' => 'hkp://p80.pool.sks-keyservers.net:80',
42   'recv-keys' => '58118E89F3A912897C070ADBF76221572C52609D',
43 }
44 # e.g. 'docker-ce-edge,docker-ce-test'
45 default['docker-grid']['dockerproject']['yum_new_repo_extra_enablerepo'] = ''
46 # Old yum repository
47 default['docker-grid']['yum_repo'] = {
48   'baseurl' => 'https://yum.dockerproject.org/repo/main/centos/$releasever/',
49   'gpgcheck' => '1',
50   'gpgkey' => 'https://yum.dockerproject.org/gpg',
51 }
52
53 default['docker-grid']['compose']['install_flavor'] = 'dockerproject'  # or 'os-repository'
54 default['docker-grid']['compose']['skip_setup'] = false
55 # dockerproject: direct download.
56 # Note: non-support by this cookbook.
57 #   os-repository (Ubuntu): http://packages.ubuntu.com/search?keywords=docker-compose&searchon=names
58 #   os-repository (CentOS): none.
59 default['docker-grid']['compose']['auto_upgrade'] = false
60 # latest: 'https://github.com/docker/compose/releases/download/1.17.1'
61 default['docker-grid']['compose']['release_base_url'] = 'https://github.com/docker/compose/releases/download/1.9.0'
62 default['docker-grid']['compose']['release_url'] = "#{node['docker-grid']['compose']['release_base_url']}/docker-compose-#{node['kernel']['name']}-#{node['kernel']['machine']}"
63 default['docker-grid']['compose']['home_dir'] = '/opt/docker-compose'
64 default['docker-grid']['compose']['app_dir'] = "#{node['docker-grid']['compose']['home_dir']}/app"
65
66 default['docker-grid']['dind-compose']['app_dir'] = "#{node['docker-grid']['compose']['app_dir']}/docker-in-docker"
67 default['docker-grid']['dind-compose']['data_dir'] = "#{node['docker-grid']['dind-compose']['app_dir']}/data"
68 default['docker-grid']['dind-compose']['config'] = {
69   # Version 2 docker-compose format
70   'version' => '2',
71   'services' => {
72     'dind' => {
73       'image' => 'docker:stable-dind',
74       'privileged' => true,
75       'command' => [
76         #'--storage-driver=overlay2',  # same as host Docker's storage driver
77       ],
78       'volumes' => [
79         # These volumes will be set by the docker-grid::dind-compose recipe automatically.
80         #"#{node['docker-grid']['dind-compose']['data_dir']}:/var/lib/docker",
81       ],
82       'environment' => {
83       },
84     },
85   },
86 }
87
88 default['docker-grid']['engine']['skip_setup'] = false
89 # dockerproject: 18.06.0.ce-3, 18.03.1.ce-1, 17.12.1.ce-1, 1.13.1-1
90 # os-repository: yum list docker
91 #   http://mirror.centos.org/centos/7.3.1611/extras/x86_64/Packages/
92 default['docker-grid']['engine']['version_on_centos'] = '17.12.1.ce-1'
93 # dockerproject: 18.06.0~ce~3-0, 18.03.1~ce-0, 17.12.1~ce-0, 1.13.1-0
94 default['docker-grid']['engine']['version_on_debian'] = '17.12.1~ce-0'
95 # dockerproject: 18.06.0~ce~3-0, 18.03.1~ce-0, 17.12.1~ce-0
96 # os-repository: http://packages.ubuntu.com/search?keywords=docker.io&searchon=names
97 default['docker-grid']['engine']['version_on_ubuntu'] = '17.12.1~ce-0'
98
99 # '' (empty) or 'latest' version -> latest version
100 case platform
101 when 'centos', 'redhat'
102   version_on_centos = node['docker-grid']['engine']['version_on_centos']
103   if !version_on_centos.nil? && !version_on_centos.empty? && version_on_centos != 'latest'
104     version_on_centos = "#{version_on_centos}.el#{node['platform_version'].to_i}.#{node['platform']}"
105   end
106 when 'debian'
107   version_on_debian = node['docker-grid']['engine']['version_on_debian']
108   if !version_on_debian.nil? && !version_on_debian.empty? && version_on_debian != 'latest'
109     version_on_debian = \
110       if node['docker-grid']['install_flavor'] == 'dockerproject'
111         if Gem::Version.create(version_on_debian.tr('~', '-')) >= Gem::Version.create('1.12.4-0')
112           "#{version_on_debian}~debian-#{node['lsb']['codename']}"
113         else
114           "#{version_on_debian}~#{node['lsb']['codename']}"
115         end
116       end
117   end
118 when 'ubuntu'
119   version_on_ubuntu = node['docker-grid']['engine']['version_on_ubuntu']
120   if !version_on_ubuntu.nil? && !version_on_ubuntu.empty? && version_on_ubuntu != 'latest'
121     version_on_ubuntu = \
122       if node['docker-grid']['install_flavor'] == 'dockerproject'
123         if Gem::Version.create(version_on_ubuntu.tr('~', '-')) >= Gem::Version.create('1.12.4-0')
124           "#{version_on_ubuntu}~ubuntu-#{node['lsb']['codename']}"
125         else
126           "#{version_on_ubuntu}~#{node['lsb']['codename']}"
127         end
128         # else
129         # e.g. 1.12.3-0ubuntu4~16.10.2, 1.12.3-0ubuntu4~16.04.2
130         # version_on_ubuntu
131       end
132   end
133 end
134
135 # '' (empty) or 'latest' version -> latest version
136 default['docker-grid']['engine']['version'] = node.value_for_platform(
137   ['centos', 'redhat'] => {
138     'default' => version_on_centos,
139   },
140   'debian' => {
141     'default' => version_on_debian,
142   },
143   'ubuntu' => {
144     'default' => version_on_ubuntu,
145   }
146 )
147 # overlay2: Docker >= 1.12, Kernel >= 4.0
148 default['docker-grid']['engine']['storage-driver_on_centos'] = 'overlay'
149 default['docker-grid']['engine']['storage-driver_on_debian'] = 'overlay2'
150 default['docker-grid']['engine']['storage-driver_on_ubuntu'] = 'aufs'
151 default['docker-grid']['engine']['storage-driver'] = node.value_for_platform(
152   ['centos', 'redhat'] => {
153     'default' => node['docker-grid']['engine']['storage-driver_on_centos'],
154   },
155   'debian' => {
156     'default' => node['docker-grid']['engine']['storage-driver_on_debian'],
157   },
158   'ubuntu' => {
159     'default' => node['docker-grid']['engine']['storage-driver_on_ubuntu'],
160   }
161 )
162 default['docker-grid']['engine']['userns-remap'] = nil  # default: inactive
163 # CentOS default: '--selinux-enabled --log-driver=journald --signature-verification=false'
164 default['docker-grid']['engine']['daemon_extra_options'] = '-H fd://'
165 default['docker-grid']['engine']['users_allow'] = []
166
167 # dockerproject: container image from https://hub.docker.com/
168 # Note: non-support by this cookbook.
169 #   os-repository (Ubuntu): http://packages.ubuntu.com/search?keywords=docker-registry&searchon=names
170 #   os-repository (CentOS): http://mirror.centos.org/centos/7.3.1611/extras/x86_64/Packages/
171 default['docker-grid']['registry']['with_ssl_cert_cookbook'] = false
172 # If node['docker-grid']['registry']['with_ssl_cert_cookbook'] is true,
173 # node['docker-grid']['registry']['docker-compose']['config']
174 # are overridden by the following 'ca_name' and 'common_name' attributes.
175 #default['docker-grid']['registry']['ssl_cert']['ca_name'] = nil
176 default['docker-grid']['registry']['ssl_cert']['common_name'] = node['fqdn']
177 # See https://docs.docker.com/registry/configuration/
178 rootdirectory = node.value_for_platform(
179   ['centos', 'redhat'] => {
180     'default' => '/var/lib/registry',
181   },
182   ['debian', 'ubuntu'] => {
183     'default' => '/var/lib/docker-registry',
184   }
185 )
186 default['docker-grid']['registry']['server']['config'] = {
187   'version' => '0.1',
188   'log' => {
189     'fields' => {
190       'service' => 'registry',
191     },
192   },
193   'storage' => {
194     'cache' => {
195       # NOTE: Formerly, blobdescriptor was known as layerinfo.
196       # While these are equivalent, layerinfo has been deprecated.
197       'blobdescriptor' => 'inmemory',
198     },
199     'filesystem' => {
200       'rootdirectory' => rootdirectory,
201     },
202   },
203   'http' => {
204     'addr' => ':5000',
205     'headers' => {
206       'X-Content-Type-Options' => [
207         'nosniff',
208       ],
209     },
210   },
211   #'proxy' => {
212   #  'remoteurl' => 'https://registry-1.docker.io',
213   #},
214   'health' => {
215     'storagedriver' => {
216       'enabled' => true,
217       'interval' => '10s',
218       'threshold' => 3,
219     },
220   },
221 }
222 default['docker-grid']['registry']['docker-compose']['app_dir'] = "#{node['docker-grid']['compose']['app_dir']}/registry"
223 # ./docker-compose.yml
224 default['docker-grid']['registry']['docker-compose']['config_format_version'] = '1'
225 default['docker-grid']['registry']['docker-compose']['service_name'] = 'registry'
226 default['docker-grid']['registry']['docker-compose']['host_data_volume'] = '/var/lib/docker-registry'
227 service_name = node['docker-grid']['registry']['docker-compose']['service_name']
228 version_1_config = {
229   # Version 1 docker-compose format
230   service_name => {
231     'restart' => 'always',
232     'image' => 'registry:2',
233     #'ports' => [
234     #  '5000:5000',
235     #],
236     #'environment' => {
237     #  'REGISTRY_HTTP_TLS_CERTIFICATE' => '/certs/domain.crt',
238     #  'REGISTRY_HTTP_TLS_KEY' =>         '/certs/domain.key',
239     #  'REGISTRY_AUTH' =>                'htpasswd',
240     #  'REGISTRY_AUTH_HTPASSWD_PATH' =>  '/auth/htpasswd',
241     #  'REGISTRY_AUTH_HTPASSWD_REALM' => 'Registry Realm',
242     #},
243     #'volumes' => [
244     #  #'./etc/config.yml:/etc/docker/registry/config.yml',  # Overriding the entire configuration file
245     #  "#{node['docker-grid']['registry']['docker-compose']['host_data_volume']}:/var/lib/registry",
246     #  '/path/certs:/certs',
247     #  '/path/auth:/auth',
248     #],
249   },
250 }
251 version_2_config = {
252   # Version 2 docker-compose format
253   'version' => '2',
254   'services' => version_1_config,
255 }
256 default['docker-grid']['registry']['docker-compose']['config'] = \
257   node['docker-grid']['registry']['docker-compose']['config_format_version'] == '2' ? version_2_config : version_1_config
258 # ./etc/config.yml
259 # See: https://docs.docker.com/registry/configuration/#/overriding-the-entire-configuration-file
260 default['docker-grid']['registry']['docker-compose']['registry-config'] = nil