2 # Cookbook Name:: docker-grid
5 # Copyright 2016-2017, whitestar
7 # Licensed under the Apache License, Version 2.0 (the "License");
8 # you may not use this file except in compliance with the License.
9 # You may obtain a copy of the License at
11 # http://www.apache.org/licenses/LICENSE-2.0
13 # Unless required by applicable law or agreed to in writing, software
14 # distributed under the License is distributed on an "AS IS" BASIS,
15 # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
16 # See the License for the specific language governing permissions and
17 # limitations under the License.
20 # https://dcos.io/docs/1.8/administration/installing/custom/system-requirements/
22 platform = node['platform']
23 platform_family = node['platform_family']
24 platform_version = node['platform_version']
26 if node['docker-grid']['engine']['skip_setup']
27 log 'Skip the Docker Engine setup.'
31 ::Chef::Recipe.send(:include, PlatformUtils::Helper)
32 ::Chef::Recipe.send(:include, PlatformUtils::VirtUtils)
34 docker_ver = node['docker-grid']['engine']['version']
35 docker_ver = '' if docker_ver.nil?
40 resources(package: pkg) rescue package pkg do
45 bash 'systemctl_daemon-reload' do
47 systemctl daemon-reload
52 # https://docs.docker.com/engine/userguide/storagedriver/selectadriver/
53 if shell_out("cat /etc/mtab | grep -E '\s+/\s+zfs\s+'").exitstatus.zero?
54 if container_guest_node?
55 Chef::Log.warn('This node is running in the Linux container with ZFS, set the storage-driver to vfs as a fallback.')
56 node.override['docker-grid']['engine']['storage-driver'] = 'vfs'
58 Chef::Log.warn('This node is running on ZFS, set the storage-driver to zfs.')
59 node.override['docker-grid']['engine']['storage-driver'] = 'zfs'
63 storage_driver = node['docker-grid']['engine']['storage-driver']
65 if storage_driver == 'overlay2'
66 if !docker_ver.empty? && Gem::Version.create(docker_ver.tr('~', '-')) < Gem::Version.create('1.12')
67 # tr('~', '-') for Ubuntu.
68 Chef::Application.fatal!('Docker version must be 1.12 or later for overlay2 storage driver.') # and exit.
71 load_kernel_module('overlay') if storage_driver =~ /overlay2?/
73 userns_remap = node['docker-grid']['engine']['userns-remap']
74 if !userns_remap.nil? && !userns_remap.empty?
75 if !docker_ver.empty? && Gem::Version.create(docker_ver.tr('~', '-')) < Gem::Version.create('1.10')
76 # tr('~', '-') for Ubuntu.
77 Chef::Application.fatal!('Docker version must be 1.10 or later for userns-remap.') # and exit.
80 include_recipe 'platform_utils::kernel_user_namespace'
82 remap_user = userns_remap == 'default' ? 'dockremap' : userns_remap
85 'resource' => 'service[docker]',
88 ::Chef::Recipe.send(:include, PlatformUtils::Helper)
89 append_subusers([remap_user], notifies_conf)
92 bash 'clean_up_docker0_bridge' do
94 if brctl show | grep docker0; then
95 ip link set docker0 down
98 # https://github.com/docker/docker/issues/23630
99 if [ -d /var/lib/docker/network ]; then
100 rm -rf /var/lib/docker/network
108 if node['docker-grid']['install_flavor'] == 'dockerproject'
109 # https://dcos.io/docs/1.8/administration/installing/custom/system-requirements/install-docker-centos/
110 template '/etc/yum.repos.d/docker.repo' do
111 source 'etc/yum.repos.d/docker.repo'
122 resources(package: pkg) rescue package pkg do
124 notifies :run, 'bash[clean_up_docker0_bridge]', :immediately
129 'docker-engine-selinux',
132 resources(yum_package: pkg) rescue yum_package pkg do
135 version docker_ver unless docker_ver.empty?
136 # dockerrepo is disabled by default to prevent automatic update.
137 options '--enablerepo=dockerrepo'
138 notifies :run, 'bash[clean_up_docker0_bridge]', :before if pkg == 'docker-engine'
144 'docker-engine-selinux',
147 resources(package: pkg) rescue package pkg do
149 notifies :run, 'bash[clean_up_docker0_bridge]', :immediately
153 file '/etc/systemd/system/docker.service.d/override.conf' do
160 resources(yum_package: pkg) rescue yum_package pkg do
163 version docker_ver unless docker_ver.empty?
164 notifies :run, 'bash[clean_up_docker0_bridge]', :before
168 template '/etc/sysconfig/docker' do
169 source 'etc/sysconfig/docker'
173 notifies :restart, 'service[docker]'
177 # https://docs.docker.com/engine/installation/linux/debian/
178 # https://docs.docker.com/engine/installation/linux/ubuntulinux/
180 'apt-transport-https',
184 'software-properties-common',
187 if storage_driver == 'aufs' \
188 && !container_guest_node?
189 if platform == 'debian'
193 elsif platform == 'ubuntu'
195 "linux-image-extra-#{node['os_version']}",
196 'linux-image-extra-virtual',
202 resources(package: pkg) rescue package pkg do
207 apt_get_update = 'apt-get_update'
208 resources(execute: apt_get_update) rescue execute apt_get_update do
209 command 'apt-get update'
213 if node['docker-grid']['install_flavor'] == 'dockerproject'
214 pkg_name_removed = 'docker.io'
215 pkg_name = node['docker-grid']['dockerproject']['package_name']
217 apt_repo_config = node['docker-grid']['apt_repo']
218 bash 'apt-key_adv_docker_tools_key' do
220 apt-key adv --keyserver #{apt_repo_config['keyserver']} --recv-keys #{apt_repo_config['recv-keys']}
224 not_if 'apt-key list | grep -i docker'
227 template '/etc/apt/sources.list.d/docker.list' do
228 source 'etc/apt/sources.list.d/docker.list'
232 notifies :run, 'bash[apt-key_adv_docker_tools_key]', :before
233 notifies :run, "execute[#{apt_get_update}]", :immediately
237 pkg_name_removed = node['docker-grid']['dockerproject']['package_name']
238 pkg_name = 'docker.io'
241 # Pinning Docker version
242 template '/etc/apt/preferences.d/docker.pref' do
243 source 'etc/apt/preferences.d/docker.pref'
247 action :delete if docker_ver.empty?
253 resources(package: pkg_name_removed) rescue package pkg_name_removed do
255 notifies :run, 'bash[clean_up_docker0_bridge]', :immediately
258 resources(package: pkg_name) rescue package pkg_name do
260 options '--allow-downgrades' if platform == 'debian' || platform_version >= '16.04' # LTS (xenial)
261 options '--force-yes' if platform_version == '14.04' # LTS (trusty)
262 version docker_ver unless docker_ver.empty?
263 notifies :run, 'bash[clean_up_docker0_bridge]', :before
269 storage_driver = node['docker-grid']['engine']['storage-driver']
270 docker_opts.push("--storage-driver=#{storage_driver}") if !storage_driver.nil? && !storage_driver.empty?
272 userns_remap = node['docker-grid']['engine']['userns-remap']
273 docker_opts.push("--userns-remap=#{userns_remap}") if !userns_remap.nil? && !userns_remap.empty?
275 extra_options = node['docker-grid']['engine']['daemon_extra_options']
276 # for docker-engine package on RHEL: remove '-H fd://'
277 # https://github.com/docker/docker/issues/22847
278 if platform_family == 'rhel' || platform == 'debian' || (platform == 'ubuntu' && platform_version == '14.04')
279 # Note: docker_ver.empty? -> the latest version
280 if docker_ver.empty? \
281 || Gem::Version.create(docker_ver.tr('~', '-')) >= Gem::Version.create('1.12')
282 extra_options = extra_options.gsub(%r{-H\sfd://}, '') # for frozen string.
286 docker_opts.push(extra_options) if !extra_options.nil? && !extra_options.empty?
288 init_package = node['init_package']
289 if init_package == 'systemd'
290 directory '/etc/systemd/system/docker.service.d' do
297 template '/etc/systemd/system/docker.service.d/override.conf' do
298 source 'etc/systemd/system/docker.service.d/override.conf'
303 docker_opts: docker_opts
305 not_if { node['docker-grid']['install_flavor'] == 'os-repository' && platform_family == 'rhel' }
306 notifies :run, 'bash[systemctl_daemon-reload]', :immediately
307 notifies :restart, 'service[docker]'
309 elsif init_package == 'init' # for Ubuntu 14.04,...
310 template '/etc/default/docker' do
311 source 'etc/default/docker'
316 docker_opts: docker_opts
318 notifies :restart, 'service[docker]'
323 provider Chef::Provider::Service::Upstart if platform == 'ubuntu' && platform_version < '15.04'
324 action [:start, :enable]
325 subscribes :restart, 'execute[update-ca-certificates]', :delayed
328 users = node['docker-grid']['engine']['users_allow']
330 members users unless users.empty?
335 template '/usr/local/bin/docker_images_cleanup' do
336 source 'usr/local/bin/docker_images_cleanup'