]> git.proxmox.com Git - qemu-server.git/blame - PVE/QemuServer/Cloudinit.pm
cloud-init: add ciuser and cipassword config options
[qemu-server.git] / PVE / QemuServer / Cloudinit.pm
CommitLineData
0c9a7596
AD
1package PVE::QemuServer::Cloudinit;
2
3use strict;
4use warnings;
5
6use File::Path;
7use Digest::SHA;
8use URI::Escape;
9
10use PVE::Tools qw(run_command file_set_contents);
11use PVE::Storage;
12use PVE::QemuServer;
13
0c9a7596 14sub commit_cloudinit_disk {
41cd94a0
WB
15 my ($conf, $drive, $volname, $storeid, $file_path, $label) = @_;
16
17 my $storecfg = PVE::Storage::config();
18 my $iso_path = PVE::Storage::path($storecfg, $drive->{file});
19 my $scfg = PVE::Storage::storage_config($storecfg, $storeid);
20 my $format = PVE::QemuServer::qemu_img_format($scfg, $volname);
0c9a7596 21
3db6e4ab 22 my $size = PVE::Storage::file_size_info($iso_path);
0c9a7596 23
41cd94a0 24 run_command([['genisoimage', '-R', '-V', $label, $file_path],
3db6e4ab
WB
25 ['qemu-img', 'dd', '-f', 'raw', '-O', $format,
26 'isize=0', "osize=$size", "of=$iso_path"]]);
0c9a7596
AD
27}
28
41cd94a0
WB
29sub get_cloudinit_format {
30 my ($conf) = @_;
31 if (defined(my $format = $conf->{citype})) {
32 return $format;
33 }
0c9a7596 34
41cd94a0
WB
35 # No format specified, default based on ostype because windows'
36 # cloudbased-init only supports configdrivev2, whereas on linux we need
37 # to use mac addresses because regular cloudinit doesn't map 'ethX' to
38 # the new predicatble network device naming scheme.
39 if (defined(my $ostype = $conf->{ostype})) {
40 return 'configdrive2'
41 if PVE::QemuServer::windows_version($ostype);
42 }
0c9a7596 43
41cd94a0 44 return 'nocloud';
0c9a7596
AD
45}
46
41cd94a0
WB
47sub get_fqdn {
48 my ($conf) = @_;
49 my $fqdn = $conf->{hostname};
50 if (!defined($fqdn)) {
51 $fqdn = $conf->{name};
0c9a7596 52 if (my $search = $conf->{searchdomain}) {
41cd94a0 53 $fqdn .= ".$search";
0c9a7596
AD
54 }
55 }
41cd94a0
WB
56 return $fqdn;
57}
58
59sub cloudinit_userdata {
60 my ($conf) = @_;
61
62 my $fqdn = get_fqdn($conf);
63
7b42f951
WB
64 my $content = "#cloud-config\n";
65 $content .= "manage_resolv_conf: true\n";
41cd94a0 66
7b42f951
WB
67 my $username = $conf->{ciuser};
68 my $password = $conf->{cipassword};
41cd94a0
WB
69
70 $content .= "user: $username\n" if defined($username);
7b42f951
WB
71 $content .= "disable_root: False\n" if defined($username) && $username eq 'root';
72 $content .= "password: $password\n" if defined($password);
41cd94a0
WB
73
74 if (defined(my $keys = $conf->{sshkeys})) {
0c9a7596
AD
75 $keys = URI::Escape::uri_unescape($keys);
76 $keys = [map { chomp $_; $_ } split(/\n/, $keys)];
77 $keys = [grep { /\S/ } @$keys];
41cd94a0 78 $content .= "ssh_authorized_keys:\n";
0c9a7596 79 foreach my $k (@$keys) {
41cd94a0 80 $content .= " - $k\n";
0c9a7596
AD
81 }
82 }
41cd94a0
WB
83 $content .= "chpasswd:\n";
84 $content .= " expire: False\n";
85
7b42f951
WB
86 if (!defined($username) || $username ne 'root') {
87 $content .= "users:\n";
88 $content .= " - default\n";
89 }
0c9a7596
AD
90
91 $content .= "package_upgrade: true\n";
92
0c9a7596
AD
93 return $content;
94}
95
41cd94a0
WB
96sub configdrive2_network {
97 my ($conf) = @_;
0c9a7596
AD
98
99 my $content = "auto lo\n";
100 $content .="iface lo inet loopback\n\n";
101
102 my @ifaces = grep(/^net(\d+)$/, keys %$conf);
103 foreach my $iface (@ifaces) {
104 (my $id = $iface) =~ s/^net//;
105 next if !$conf->{"ipconfig$id"};
41cd94a0 106 my $net = PVE::QemuServer::parse_ipconfig($conf->{"ipconfig$id"});
0c9a7596
AD
107 $id = "eth$id";
108
109 $content .="auto $id\n";
110 if ($net->{ip}) {
111 if ($net->{ip} eq 'dhcp') {
112 $content .= "iface $id inet dhcp\n";
113 } else {
114 my ($addr, $mask) = split('/', $net->{ip});
115 $content .= "iface $id inet static\n";
116 $content .= " address $addr\n";
117 $content .= " netmask $PVE::Network::ipv4_reverse_mask->[$mask]\n";
118 $content .= " gateway $net->{gw}\n" if $net->{gw};
119 }
120 }
121 if ($net->{ip6}) {
122 if ($net->{ip6} =~ /^(auto|dhcp)$/) {
123 $content .= "iface $id inet6 $1\n";
124 } else {
125 my ($addr, $mask) = split('/', $net->{ip6});
126 $content .= "iface $id inet6 static\n";
127 $content .= " address $addr\n";
128 $content .= " netmask $mask\n";
129 $content .= " gateway $net->{gw6}\n" if $net->{gw6};
130 }
131 }
132 }
133
134 $content .=" dns_nameservers $conf->{nameserver}\n" if $conf->{nameserver};
135 $content .=" dns_search $conf->{searchdomain}\n" if $conf->{searchdomain};
136
0c9a7596
AD
137 return $content;
138}
139
41cd94a0
WB
140sub configdrive2_metadata {
141 my ($uuid) = @_;
142 return <<"EOF";
143{
144 "uuid": "$uuid",
145 "network_config": { "content_path": "/content/0000" }
146}
147EOF
148}
149
150sub generate_configdrive2 {
151 my ($conf, $vmid, $drive, $volname, $storeid) = @_;
152
153 my $user_data = cloudinit_userdata($conf);
154 my $network_data = configdrive2_network($conf);
155
156 my $digest_data = $user_data . $network_data;
157 my $uuid_str = Digest::SHA::sha1_hex($digest_data);
158
159 my $meta_data = configdrive2_metadata($uuid_str);
160
161 mkdir "/tmp/cloudinit";
162 my $path = "/tmp/cloudinit/$vmid";
163 mkdir $path;
164 mkdir "$path/drive";
165 mkdir "$path/drive/openstack";
166 mkdir "$path/drive/openstack/latest";
167 mkdir "$path/drive/openstack/content";
168 file_set_contents("$path/drive/openstack/latest/user_data", $user_data);
169 file_set_contents("$path/drive/openstack/content/0000", $network_data);
170 file_set_contents("$path/drive/openstack/latest/meta_data.json", $meta_data);
171
172 commit_cloudinit_disk($conf, $drive, $volname, $storeid, "$path/drive", 'config-2');
173
174 rmtree("$path/drive");
175}
176
177sub nocloud_network_v2 {
178 my ($conf) = @_;
179
180 my $content = '';
181
182 my $head = "version: 2\n"
183 . "ethernets:\n";
184
185 my $nameservers_done;
186
187 my @ifaces = grep(/^net(\d+)$/, keys %$conf);
188 foreach my $iface (@ifaces) {
189 (my $id = $iface) =~ s/^net//;
190 next if !$conf->{"ipconfig$id"};
191
192 # indentation - network interfaces are inside an 'ethernets' hash
193 my $i = ' ';
194
195 my $net = PVE::QemuServer::parse_net($conf->{$iface});
196 my $ipconfig = PVE::QemuServer::parse_ipconfig($conf->{"ipconfig$id"});
197
198 my $mac = $net->{macaddr}
199 or die "network interface '$iface' has no mac address\n";
200
201 my $data = "${i}$iface:\n";
202 $i .= ' ';
203 $data .= "${i}match:\n"
204 . "${i} macaddress: \"$mac\"\n"
205 . "${i}set-name: eth$id\n";
206 my @addresses;
207 if (defined(my $ip = $ipconfig->{ip})) {
208 if ($ip eq 'dhcp') {
209 $data .= "${i}dhcp4: true\n";
210 } else {
211 push @addresses, $ip;
212 }
213 }
214 if (defined(my $ip = $ipconfig->{ip6})) {
215 if ($ip eq 'dhcp') {
216 $data .= "${i}dhcp6: true\n";
217 } else {
218 push @addresses, $ip;
219 }
220 }
221 if (@addresses) {
222 $data .= "${i}addresses:\n";
223 $data .= "${i}- $_\n" foreach @addresses;
224 }
225 if (defined(my $gw = $ipconfig->{gw})) {
226 $data .= "${i}gateway4: $gw\n";
227 }
228 if (defined(my $gw = $ipconfig->{gw6})) {
229 $data .= "${i}gateway6: $gw\n";
230 }
231
232 if (!$nameservers_done) {
233 $nameservers_done = 1;
234
235 my $nameserver = $conf->{nameserver} // '';
236 my $searchdomain = $conf->{searchdomain} // '';
237 my @nameservers = PVE::Tools::split_list($nameserver);
238 my @searchdomains = PVE::Tools::split_list($searchdomain);
239 if (@nameservers || @searchdomains) {
240 $data .= "${i}nameservers:\n";
241 $data .= "${i} addresses: [".join(',', @nameservers)."]\n"
242 if @nameservers;
243 $data .= "${i} search: [".join(',', @searchdomains)."]\n"
244 if @searchdomains;
245 }
246 }
247
248
249 $content .= $data;
250 }
251
252 return $head.$content;
253}
254
255sub nocloud_network {
256 my ($conf) = @_;
257
258 my $content = "version: 1\n"
259 . "config:\n";
260
261 my @ifaces = grep(/^net(\d+)$/, keys %$conf);
262 foreach my $iface (@ifaces) {
263 (my $id = $iface) =~ s/^net//;
264 next if !$conf->{"ipconfig$id"};
265
266 # indentation - network interfaces are inside an 'ethernets' hash
267 my $i = ' ';
268
269 my $net = PVE::QemuServer::parse_net($conf->{$iface});
270 my $ipconfig = PVE::QemuServer::parse_ipconfig($conf->{"ipconfig$id"});
271
272 my $mac = $net->{macaddr}
273 or die "network interface '$iface' has no mac address\n";
274
275 my $data = "${i}- type: physical\n"
276 . "${i} name: eth$id\n"
277 . "${i} mac_address: $mac\n"
278 . "${i} subnets:\n";
279 $i .= ' ';
280 if (defined(my $ip = $ipconfig->{ip})) {
281 if ($ip eq 'dhcp') {
282 $data .= "${i}- type: dhcp4\n";
283 } else {
284 $data .= "${i}- type: static\n"
285 . "${i} address: $ip\n";
286 if (defined(my $gw = $ipconfig->{gw})) {
287 $data .= "${i} gateway: $gw\n";
288 }
289 }
290 }
291 if (defined(my $ip = $ipconfig->{ip6})) {
292 if ($ip eq 'dhcp') {
293 $data .= "${i}- type: dhcp6\n";
294 } else {
295 $data .= "${i}- type: static6\n"
296 . "${i} address: $ip\n";
297 if (defined(my $gw = $ipconfig->{gw6})) {
298 $data .= "${i} gateway: $gw\n";
299 }
300 }
301 }
302
303 $content .= $data;
304 }
305
306 my $nameserver = $conf->{nameserver} // '';
307 my $searchdomain = $conf->{searchdomain} // '';
308 my @nameservers = PVE::Tools::split_list($nameserver);
309 my @searchdomains = PVE::Tools::split_list($searchdomain);
310 if (@nameservers || @searchdomains) {
311 my $i = ' ';
312 $content .= "${i}- type: nameserver\n";
313 if (@nameservers) {
314 $content .= "${i} address:\n";
315 $content .= "${i} - $_\n" foreach @nameservers;
316 }
317 if (@searchdomains) {
318 $content .= "${i} search:\n";
319 $content .= "${i} - $_\n" foreach @searchdomains;
320 }
321 }
322
323 return $content;
324}
325
326sub nocloud_metadata {
327 my ($uuid, $hostname) = @_;
328 return <<"EOF";
329instance-id: $uuid
330local-hostname: $hostname
331EOF
332}
333
334sub generate_nocloud {
335 my ($conf, $vmid, $drive, $volname, $storeid) = @_;
336
337 my $hostname = $conf->{hostname} // '';
338 my $user_data = cloudinit_userdata($conf);
339 my $network_data = nocloud_network($conf);
340
341 my $digest_data = $user_data . $network_data . "local-hostname: $hostname\n";
342 my $uuid_str = Digest::SHA::sha1_hex($digest_data);
343
344 my $meta_data = nocloud_metadata($uuid_str, $hostname);
345
346 mkdir "/tmp/cloudinit";
347 my $path = "/tmp/cloudinit/$vmid";
348 mkdir $path;
349 rmtree("$path/drive");
350 mkdir "$path/drive";
351 file_set_contents("$path/drive/user-data", $user_data);
352 file_set_contents("$path/drive/network-config", $network_data);
353 file_set_contents("$path/drive/meta-data", $meta_data);
354
355 commit_cloudinit_disk($conf, $drive, $volname, $storeid, "$path/drive", 'cidata');
356
357}
358
359my $cloudinit_methods = {
360 configdrive2 => \&generate_configdrive2,
361 nocloud => \&generate_nocloud,
362};
363
364sub generate_cloudinitconfig {
365 my ($conf, $vmid) = @_;
366
367 my $format = get_cloudinit_format($conf);
368
369 PVE::QemuServer::foreach_drive($conf, sub {
370 my ($ds, $drive) = @_;
371
372 my ($storeid, $volname) = PVE::Storage::parse_volume_id($drive->{file}, 1);
373
374 return if !$volname || $volname !~ m/vm-$vmid-cloudinit/;
375
376 my $generator = $cloudinit_methods->{$format}
377 or die "missing cloudinit methods for format '$format'\n";
378
379 $generator->($conf, $vmid, $drive, $volname, $storeid);
380 });
381}
0c9a7596
AD
382
3831;