]> git.proxmox.com Git - qemu-server.git/blame - PVE/QemuServer/Cloudinit.pm
cloud-init: don't use /tmp for config files
[qemu-server.git] / PVE / QemuServer / Cloudinit.pm
CommitLineData
0c9a7596
AD
1package PVE::QemuServer::Cloudinit;
2
3use strict;
4use warnings;
5
6use File::Path;
7use Digest::SHA;
8use URI::Escape;
9
10use PVE::Tools qw(run_command file_set_contents);
11use PVE::Storage;
12use PVE::QemuServer;
13
0c9a7596 14sub commit_cloudinit_disk {
f62c36cf
WB
15 my ($vmid, $conf, $drive, $volname, $storeid, $files, $label) = @_;
16
17 my $path = "/run/pve/cloudinit/$vmid/";
18 mkpath $path;
19 foreach my $filepath (keys %$files) {
20 if ($filepath !~ m@^(.*)\/[^/]+$@) {
21 die "internal error: bad file name in cloud-init image: $filepath\n";
22 }
23 my $dirname = $1;
24 mkpath "$path/$dirname";
25
26 my $contents = $files->{$filepath};
27 file_set_contents("$path/$filepath", $contents);
28 }
41cd94a0
WB
29
30 my $storecfg = PVE::Storage::config();
31 my $iso_path = PVE::Storage::path($storecfg, $drive->{file});
32 my $scfg = PVE::Storage::storage_config($storecfg, $storeid);
33 my $format = PVE::QemuServer::qemu_img_format($scfg, $volname);
0c9a7596 34
3db6e4ab 35 my $size = PVE::Storage::file_size_info($iso_path);
0c9a7596 36
f62c36cf
WB
37 eval {
38 run_command([['genisoimage', '-R', '-V', $label, $path],
39 ['qemu-img', 'dd', '-f', 'raw', '-O', $format,
40 'isize=0', "osize=$size", "of=$iso_path"]]);
41 };
42 my $err = $@;
43 rmtree($path);
44 die $err if $err;
0c9a7596
AD
45}
46
41cd94a0
WB
47sub get_cloudinit_format {
48 my ($conf) = @_;
49 if (defined(my $format = $conf->{citype})) {
50 return $format;
51 }
0c9a7596 52
41cd94a0
WB
53 # No format specified, default based on ostype because windows'
54 # cloudbased-init only supports configdrivev2, whereas on linux we need
55 # to use mac addresses because regular cloudinit doesn't map 'ethX' to
56 # the new predicatble network device naming scheme.
57 if (defined(my $ostype = $conf->{ostype})) {
58 return 'configdrive2'
59 if PVE::QemuServer::windows_version($ostype);
60 }
0c9a7596 61
41cd94a0 62 return 'nocloud';
0c9a7596
AD
63}
64
e8ac2138 65sub get_hostname_fqdn {
41cd94a0 66 my ($conf) = @_;
e8ac2138
WB
67 my $hostname = $conf->{name};
68 my $fqdn;
69 if ($hostname =~ /\./) {
70 $fqdn = $hostname;
71 $hostname =~ s/\..*$//;
72 } elsif (my $search = $conf->{searchdomain}) {
73 $fqdn = "$hostname.$search";
0c9a7596 74 }
e8ac2138 75 return ($hostname, $fqdn);
41cd94a0
WB
76}
77
78sub cloudinit_userdata {
79 my ($conf) = @_;
80
e8ac2138 81 my ($hostname, $fqdn) = get_hostname_fqdn($conf);
41cd94a0 82
7b42f951
WB
83 my $content = "#cloud-config\n";
84 $content .= "manage_resolv_conf: true\n";
41cd94a0 85
e8ac2138
WB
86 $content .= "hostname: $hostname\n";
87 $content .= "fqdn: $fqdn\n" if defined($fqdn);
88
7b42f951
WB
89 my $username = $conf->{ciuser};
90 my $password = $conf->{cipassword};
41cd94a0
WB
91
92 $content .= "user: $username\n" if defined($username);
7b42f951
WB
93 $content .= "disable_root: False\n" if defined($username) && $username eq 'root';
94 $content .= "password: $password\n" if defined($password);
41cd94a0
WB
95
96 if (defined(my $keys = $conf->{sshkeys})) {
0c9a7596
AD
97 $keys = URI::Escape::uri_unescape($keys);
98 $keys = [map { chomp $_; $_ } split(/\n/, $keys)];
99 $keys = [grep { /\S/ } @$keys];
41cd94a0 100 $content .= "ssh_authorized_keys:\n";
0c9a7596 101 foreach my $k (@$keys) {
41cd94a0 102 $content .= " - $k\n";
0c9a7596
AD
103 }
104 }
41cd94a0
WB
105 $content .= "chpasswd:\n";
106 $content .= " expire: False\n";
107
7b42f951
WB
108 if (!defined($username) || $username ne 'root') {
109 $content .= "users:\n";
110 $content .= " - default\n";
111 }
0c9a7596
AD
112
113 $content .= "package_upgrade: true\n";
114
0c9a7596
AD
115 return $content;
116}
117
41cd94a0
WB
118sub configdrive2_network {
119 my ($conf) = @_;
0c9a7596
AD
120
121 my $content = "auto lo\n";
122 $content .="iface lo inet loopback\n\n";
123
124 my @ifaces = grep(/^net(\d+)$/, keys %$conf);
125 foreach my $iface (@ifaces) {
126 (my $id = $iface) =~ s/^net//;
127 next if !$conf->{"ipconfig$id"};
41cd94a0 128 my $net = PVE::QemuServer::parse_ipconfig($conf->{"ipconfig$id"});
0c9a7596
AD
129 $id = "eth$id";
130
131 $content .="auto $id\n";
132 if ($net->{ip}) {
133 if ($net->{ip} eq 'dhcp') {
134 $content .= "iface $id inet dhcp\n";
135 } else {
136 my ($addr, $mask) = split('/', $net->{ip});
137 $content .= "iface $id inet static\n";
138 $content .= " address $addr\n";
139 $content .= " netmask $PVE::Network::ipv4_reverse_mask->[$mask]\n";
140 $content .= " gateway $net->{gw}\n" if $net->{gw};
141 }
142 }
143 if ($net->{ip6}) {
144 if ($net->{ip6} =~ /^(auto|dhcp)$/) {
145 $content .= "iface $id inet6 $1\n";
146 } else {
147 my ($addr, $mask) = split('/', $net->{ip6});
148 $content .= "iface $id inet6 static\n";
149 $content .= " address $addr\n";
150 $content .= " netmask $mask\n";
151 $content .= " gateway $net->{gw6}\n" if $net->{gw6};
152 }
153 }
154 }
155
156 $content .=" dns_nameservers $conf->{nameserver}\n" if $conf->{nameserver};
157 $content .=" dns_search $conf->{searchdomain}\n" if $conf->{searchdomain};
158
0c9a7596
AD
159 return $content;
160}
161
41cd94a0
WB
162sub configdrive2_metadata {
163 my ($uuid) = @_;
164 return <<"EOF";
165{
166 "uuid": "$uuid",
167 "network_config": { "content_path": "/content/0000" }
168}
169EOF
170}
171
172sub generate_configdrive2 {
173 my ($conf, $vmid, $drive, $volname, $storeid) = @_;
174
175 my $user_data = cloudinit_userdata($conf);
176 my $network_data = configdrive2_network($conf);
177
178 my $digest_data = $user_data . $network_data;
179 my $uuid_str = Digest::SHA::sha1_hex($digest_data);
180
181 my $meta_data = configdrive2_metadata($uuid_str);
182
f62c36cf
WB
183 my $files = {
184 '/openstack/latest/user_data' => $user_data,
185 '/openstack/content/0000' => $network_data,
186 '/openstack/latest/meta_data.json' => $meta_data
187 };
188 commit_cloudinit_disk($vmid, $conf, $drive, $volname, $storeid, $files, 'config-2');
41cd94a0
WB
189}
190
191sub nocloud_network_v2 {
192 my ($conf) = @_;
193
194 my $content = '';
195
196 my $head = "version: 2\n"
197 . "ethernets:\n";
198
199 my $nameservers_done;
200
201 my @ifaces = grep(/^net(\d+)$/, keys %$conf);
202 foreach my $iface (@ifaces) {
203 (my $id = $iface) =~ s/^net//;
204 next if !$conf->{"ipconfig$id"};
205
206 # indentation - network interfaces are inside an 'ethernets' hash
207 my $i = ' ';
208
209 my $net = PVE::QemuServer::parse_net($conf->{$iface});
210 my $ipconfig = PVE::QemuServer::parse_ipconfig($conf->{"ipconfig$id"});
211
212 my $mac = $net->{macaddr}
213 or die "network interface '$iface' has no mac address\n";
214
215 my $data = "${i}$iface:\n";
216 $i .= ' ';
217 $data .= "${i}match:\n"
218 . "${i} macaddress: \"$mac\"\n"
219 . "${i}set-name: eth$id\n";
220 my @addresses;
221 if (defined(my $ip = $ipconfig->{ip})) {
222 if ($ip eq 'dhcp') {
223 $data .= "${i}dhcp4: true\n";
224 } else {
225 push @addresses, $ip;
226 }
227 }
228 if (defined(my $ip = $ipconfig->{ip6})) {
229 if ($ip eq 'dhcp') {
230 $data .= "${i}dhcp6: true\n";
231 } else {
232 push @addresses, $ip;
233 }
234 }
235 if (@addresses) {
236 $data .= "${i}addresses:\n";
237 $data .= "${i}- $_\n" foreach @addresses;
238 }
239 if (defined(my $gw = $ipconfig->{gw})) {
240 $data .= "${i}gateway4: $gw\n";
241 }
242 if (defined(my $gw = $ipconfig->{gw6})) {
243 $data .= "${i}gateway6: $gw\n";
244 }
245
246 if (!$nameservers_done) {
247 $nameservers_done = 1;
248
249 my $nameserver = $conf->{nameserver} // '';
250 my $searchdomain = $conf->{searchdomain} // '';
251 my @nameservers = PVE::Tools::split_list($nameserver);
252 my @searchdomains = PVE::Tools::split_list($searchdomain);
253 if (@nameservers || @searchdomains) {
254 $data .= "${i}nameservers:\n";
255 $data .= "${i} addresses: [".join(',', @nameservers)."]\n"
256 if @nameservers;
257 $data .= "${i} search: [".join(',', @searchdomains)."]\n"
258 if @searchdomains;
259 }
260 }
261
262
263 $content .= $data;
264 }
265
266 return $head.$content;
267}
268
269sub nocloud_network {
270 my ($conf) = @_;
271
272 my $content = "version: 1\n"
273 . "config:\n";
274
275 my @ifaces = grep(/^net(\d+)$/, keys %$conf);
276 foreach my $iface (@ifaces) {
277 (my $id = $iface) =~ s/^net//;
278 next if !$conf->{"ipconfig$id"};
279
280 # indentation - network interfaces are inside an 'ethernets' hash
281 my $i = ' ';
282
283 my $net = PVE::QemuServer::parse_net($conf->{$iface});
284 my $ipconfig = PVE::QemuServer::parse_ipconfig($conf->{"ipconfig$id"});
285
286 my $mac = $net->{macaddr}
287 or die "network interface '$iface' has no mac address\n";
288
289 my $data = "${i}- type: physical\n"
290 . "${i} name: eth$id\n"
291 . "${i} mac_address: $mac\n"
292 . "${i} subnets:\n";
293 $i .= ' ';
294 if (defined(my $ip = $ipconfig->{ip})) {
295 if ($ip eq 'dhcp') {
296 $data .= "${i}- type: dhcp4\n";
297 } else {
298 $data .= "${i}- type: static\n"
299 . "${i} address: $ip\n";
300 if (defined(my $gw = $ipconfig->{gw})) {
301 $data .= "${i} gateway: $gw\n";
302 }
303 }
304 }
305 if (defined(my $ip = $ipconfig->{ip6})) {
306 if ($ip eq 'dhcp') {
307 $data .= "${i}- type: dhcp6\n";
308 } else {
309 $data .= "${i}- type: static6\n"
310 . "${i} address: $ip\n";
311 if (defined(my $gw = $ipconfig->{gw6})) {
312 $data .= "${i} gateway: $gw\n";
313 }
314 }
315 }
316
317 $content .= $data;
318 }
319
320 my $nameserver = $conf->{nameserver} // '';
321 my $searchdomain = $conf->{searchdomain} // '';
322 my @nameservers = PVE::Tools::split_list($nameserver);
323 my @searchdomains = PVE::Tools::split_list($searchdomain);
324 if (@nameservers || @searchdomains) {
325 my $i = ' ';
326 $content .= "${i}- type: nameserver\n";
327 if (@nameservers) {
328 $content .= "${i} address:\n";
329 $content .= "${i} - $_\n" foreach @nameservers;
330 }
331 if (@searchdomains) {
332 $content .= "${i} search:\n";
333 $content .= "${i} - $_\n" foreach @searchdomains;
334 }
335 }
336
337 return $content;
338}
339
340sub nocloud_metadata {
e8ac2138
WB
341 my ($uuid) = @_;
342 return "instance-id: $uuid\n";
41cd94a0
WB
343}
344
345sub generate_nocloud {
346 my ($conf, $vmid, $drive, $volname, $storeid) = @_;
347
41cd94a0
WB
348 my $user_data = cloudinit_userdata($conf);
349 my $network_data = nocloud_network($conf);
350
e8ac2138 351 my $digest_data = $user_data . $network_data;
41cd94a0
WB
352 my $uuid_str = Digest::SHA::sha1_hex($digest_data);
353
e8ac2138 354 my $meta_data = nocloud_metadata($uuid_str);
41cd94a0 355
f62c36cf
WB
356 my $files = {
357 '/user-data' => $user_data,
358 '/network-config' => $network_data,
359 '/meta-data' => $meta_data
360 };
361 commit_cloudinit_disk($vmid, $conf, $drive, $volname, $storeid, $files, 'cidata');
41cd94a0
WB
362}
363
364my $cloudinit_methods = {
365 configdrive2 => \&generate_configdrive2,
366 nocloud => \&generate_nocloud,
367};
368
369sub generate_cloudinitconfig {
370 my ($conf, $vmid) = @_;
371
372 my $format = get_cloudinit_format($conf);
373
374 PVE::QemuServer::foreach_drive($conf, sub {
375 my ($ds, $drive) = @_;
376
377 my ($storeid, $volname) = PVE::Storage::parse_volume_id($drive->{file}, 1);
378
379 return if !$volname || $volname !~ m/vm-$vmid-cloudinit/;
380
381 my $generator = $cloudinit_methods->{$format}
382 or die "missing cloudinit methods for format '$format'\n";
383
384 $generator->($conf, $vmid, $drive, $volname, $storeid);
385 });
386}
0c9a7596
AD
387
3881;