mirror of
https://github.com/Dannecron/netology-devops-ansible-vector.git
synced 2025-12-25 14:32:34 +03:00
Compare commits
5 Commits
| Author | SHA1 | Date | |
|---|---|---|---|
| a90af00f5a | |||
| abfd096abe | |||
| c8bbbe4a4d | |||
| 066d6daa6a | |||
| ee125e0a85 |
1
.gitignore
vendored
1
.gitignore
vendored
@@ -1 +1,2 @@
|
||||
/.idea
|
||||
/.tox
|
||||
|
||||
33
.yamllint
Normal file
33
.yamllint
Normal file
@@ -0,0 +1,33 @@
|
||||
---
|
||||
# Based on ansible-lint config
|
||||
extends: default
|
||||
|
||||
rules:
|
||||
braces:
|
||||
max-spaces-inside: 1
|
||||
level: error
|
||||
brackets:
|
||||
max-spaces-inside: 1
|
||||
level: error
|
||||
colons:
|
||||
max-spaces-after: -1
|
||||
level: error
|
||||
commas:
|
||||
max-spaces-after: -1
|
||||
level: error
|
||||
comments: disable
|
||||
comments-indentation: disable
|
||||
document-start: disable
|
||||
empty-lines:
|
||||
max: 3
|
||||
level: error
|
||||
hyphens:
|
||||
level: error
|
||||
indentation: disable
|
||||
key-duplicates: enable
|
||||
line-length: disable
|
||||
new-line-at-end-of-file: disable
|
||||
new-lines:
|
||||
type: unix
|
||||
trailing-spaces: disable
|
||||
truthy: disable
|
||||
@@ -1,4 +1,4 @@
|
||||
ansible-vector
|
||||
netology-devops-ansible-vector
|
||||
=========
|
||||
|
||||
Данная роль устанавливает `vector`.
|
||||
|
||||
@@ -3,4 +3,24 @@ vector_version: 0.23.0
|
||||
vector_config_dir: /var/lib/vector
|
||||
vector_config:
|
||||
data_dir: "{{ vector_config_dir }}"
|
||||
# todo добавить конфигурацию https://vector.dev/docs/reference/configuration/
|
||||
sources:
|
||||
file_logs:
|
||||
type: file
|
||||
acknowledgements: null
|
||||
ignore_older_secs: 600
|
||||
include:
|
||||
- /var/log/**/*.log
|
||||
read_from: beginning
|
||||
sinks:
|
||||
clickhouse:
|
||||
type: clickhouse
|
||||
inputs:
|
||||
- file_logs
|
||||
database: mydatabase
|
||||
endpoint: http://localhost:8123
|
||||
table: mytable
|
||||
acknowledgements: null
|
||||
compression: gzip
|
||||
encoding: null
|
||||
healthcheck: null
|
||||
skip_unknown_fields: null
|
||||
|
||||
@@ -1 +1,8 @@
|
||||
---
|
||||
- name: restart vector service
|
||||
become: true
|
||||
ansible.builtin.service:
|
||||
name: vector
|
||||
state: started
|
||||
daemon_reload: true
|
||||
listen: restart-vector
|
||||
|
||||
@@ -1,5 +1,6 @@
|
||||
galaxy_info:
|
||||
author: dannc
|
||||
role_name: netology_devops_vector
|
||||
description: install vector
|
||||
company: ""
|
||||
license: BSD-3-Clause
|
||||
|
||||
38
molecule/default/Dockerfile.j2
Normal file
38
molecule/default/Dockerfile.j2
Normal file
@@ -0,0 +1,38 @@
|
||||
{% if item.registry is defined %}
|
||||
FROM {{ item.registry.url }}/{{ item.image }}
|
||||
{% else %}
|
||||
FROM {{ item.image }}
|
||||
{% endif %}
|
||||
|
||||
{% if item.env is defined %}
|
||||
{% for var, value in item.env.items() %}
|
||||
{% if value %}
|
||||
ENV {{ var }} {{ value }}
|
||||
{% endif %}
|
||||
{% endfor %}
|
||||
{% endif %}
|
||||
|
||||
|
||||
|
||||
RUN if [ $(command -v apt-get) ]; then apt-get update && apt-get upgrade -y && apt-get install -y apt-transport-https gnupg2 python3-minimal python3-apt man systemd systemd-sysv rsyslog sudo bash ca-certificates iproute2 && apt-get clean; \
|
||||
elif [ $(command -v yum) ]; then sed -i 's/^\(tsflags=*\)/# \1/g' /etc/yum.conf && yum makecache fast && yum upgrade -y && yum makecache fast && yum install -y sudo python3 systemd rsyslog man yum-plugin-ovl bash iproute && sed -i 's/plugins=0/plugins=1/g' /etc/yum.conf && yum clean all; fi
|
||||
|
||||
RUN set -xe \
|
||||
&& groupadd -r ${ANSIBLE_USER} \
|
||||
&& groupadd -r ${DEPLOY_GROUP} \
|
||||
&& useradd -m -g ${ANSIBLE_USER} ${ANSIBLE_USER} \
|
||||
&& usermod -aG ${DEPLOY_GROUP} ${ANSIBLE_USER} \
|
||||
&& echo "%${DEPLOY_GROUP} ALL=(ALL) NOPASSWD:ALL" > /etc/sudoers.d/ansible
|
||||
|
||||
RUN (cd /lib/systemd/system/sysinit.target.wants/; for i in *; do [ $i == \
|
||||
systemd-tmpfiles-setup.service ] || rm -f $i; done); \
|
||||
rm -rf /lib/systemd/system/multi-user.target.wants/*;\
|
||||
rm -rf /etc/systemd/system/*.wants/*;\
|
||||
rm -rf /lib/systemd/system/local-fs.target.wants/*; \
|
||||
rm -rf /lib/systemd/system/sockets.target.wants/*udev*; \
|
||||
rm -rf /lib/systemd/system/sockets.target.wants/*initctl*; \
|
||||
rm -rf /lib/systemd/system/basic.target.wants/*;\
|
||||
rm -rf /lib/systemd/system/anaconda.target.wants/*;
|
||||
|
||||
VOLUME [ "/sys/fs/cgroup" ]
|
||||
CMD ["{{ item.command | default('/usr/sbin/init') }}"]
|
||||
7
molecule/default/converge.yml
Normal file
7
molecule/default/converge.yml
Normal file
@@ -0,0 +1,7 @@
|
||||
---
|
||||
- name: Converge
|
||||
hosts: all
|
||||
tasks:
|
||||
- name: "Include netology_devops_vector"
|
||||
ansible.builtin.include_role:
|
||||
name: "dannc.netology_devops_vector"
|
||||
62
molecule/default/molecule.yml
Normal file
62
molecule/default/molecule.yml
Normal file
@@ -0,0 +1,62 @@
|
||||
---
|
||||
dependency:
|
||||
name: galaxy
|
||||
driver:
|
||||
name: docker
|
||||
|
||||
lint: |
|
||||
yamllint .
|
||||
ansible-lint
|
||||
platforms:
|
||||
- name: centos_7
|
||||
image: centos:7
|
||||
privileged: true
|
||||
command: /usr/sbin/init
|
||||
capabilities:
|
||||
- SYS_ADMIN
|
||||
tmpfs:
|
||||
- /run
|
||||
- /tmp
|
||||
volumes:
|
||||
- /sys/fs/cgroup:/sys/fs/cgroup
|
||||
env:
|
||||
ANSIBLE_USER: ansible
|
||||
SUDO_GROUP: wheel
|
||||
DEPLOY_GROUP: deployer
|
||||
container: docker
|
||||
|
||||
- name: debian_bullseye_11
|
||||
image: debian:bullseye
|
||||
privileged: true
|
||||
command: /sbin/init
|
||||
capabilities:
|
||||
- SYS_ADMIN
|
||||
tmpfs:
|
||||
- /run
|
||||
- /tmp
|
||||
volumes:
|
||||
- /sys/fs/cgroup:/sys/fs/cgroup
|
||||
env:
|
||||
ANSIBLE_USER: ansible
|
||||
SUDO_GROUP: sudo
|
||||
DEPLOY_GROUP: deployer
|
||||
container: docker
|
||||
provisioner:
|
||||
name: ansible
|
||||
verifier:
|
||||
name: ansible
|
||||
|
||||
scenario:
|
||||
name: default
|
||||
test_sequence:
|
||||
- lint
|
||||
- destroy
|
||||
# - dependency
|
||||
- syntax
|
||||
- create
|
||||
# - prepare
|
||||
- converge
|
||||
- idempotence
|
||||
# - side_effect
|
||||
- verify
|
||||
- destroy
|
||||
9
molecule/default/verify.yml
Normal file
9
molecule/default/verify.yml
Normal file
@@ -0,0 +1,9 @@
|
||||
---
|
||||
- name: Verify
|
||||
hosts: all
|
||||
gather_facts: false
|
||||
tasks:
|
||||
- name: ensure vector service started
|
||||
ansible.builtin.service:
|
||||
name: vector
|
||||
state: started
|
||||
38
molecule/podman/Dockerfile.j2
Normal file
38
molecule/podman/Dockerfile.j2
Normal file
@@ -0,0 +1,38 @@
|
||||
{% if item.registry is defined %}
|
||||
FROM {{ item.registry.url }}/{{ item.image }}
|
||||
{% else %}
|
||||
FROM {{ item.image }}
|
||||
{% endif %}
|
||||
|
||||
{% if item.env is defined %}
|
||||
{% for var, value in item.env.items() %}
|
||||
{% if value %}
|
||||
ENV {{ var }} {{ value }}
|
||||
{% endif %}
|
||||
{% endfor %}
|
||||
{% endif %}
|
||||
|
||||
|
||||
|
||||
RUN if [ $(command -v apt-get) ]; then apt-get update && apt-get upgrade -y && apt-get install -y apt-transport-https gnupg2 python3-minimal python3-apt man systemd systemd-sysv rsyslog sudo bash ca-certificates iproute2 && apt-get clean; \
|
||||
elif [ $(command -v yum) ]; then sed -i 's/^\(tsflags=*\)/# \1/g' /etc/yum.conf && yum makecache fast && yum upgrade -y && yum makecache fast && yum install -y sudo python3 systemd rsyslog man yum-plugin-ovl bash iproute && sed -i 's/plugins=0/plugins=1/g' /etc/yum.conf && yum clean all; fi
|
||||
|
||||
RUN set -xe \
|
||||
&& groupadd -r ${ANSIBLE_USER} \
|
||||
&& groupadd -r ${DEPLOY_GROUP} \
|
||||
&& useradd -m -g ${ANSIBLE_USER} ${ANSIBLE_USER} \
|
||||
&& usermod -aG ${DEPLOY_GROUP} ${ANSIBLE_USER} \
|
||||
&& echo "%${DEPLOY_GROUP} ALL=(ALL) NOPASSWD:ALL" > /etc/sudoers.d/ansible
|
||||
|
||||
RUN (cd /lib/systemd/system/sysinit.target.wants/; for i in *; do [ $i == \
|
||||
systemd-tmpfiles-setup.service ] || rm -f $i; done); \
|
||||
rm -rf /lib/systemd/system/multi-user.target.wants/*;\
|
||||
rm -rf /etc/systemd/system/*.wants/*;\
|
||||
rm -rf /lib/systemd/system/local-fs.target.wants/*; \
|
||||
rm -rf /lib/systemd/system/sockets.target.wants/*udev*; \
|
||||
rm -rf /lib/systemd/system/sockets.target.wants/*initctl*; \
|
||||
rm -rf /lib/systemd/system/basic.target.wants/*;\
|
||||
rm -rf /lib/systemd/system/anaconda.target.wants/*;
|
||||
|
||||
VOLUME [ "/sys/fs/cgroup" ]
|
||||
CMD ["{{ item.command | default('/usr/sbin/init') }}"]
|
||||
8
molecule/podman/converge.yml
Normal file
8
molecule/podman/converge.yml
Normal file
@@ -0,0 +1,8 @@
|
||||
|
||||
---
|
||||
- name: Converge
|
||||
hosts: all
|
||||
tasks:
|
||||
- name: "Include netology_devops_vector"
|
||||
ansible.builtin.include_role:
|
||||
name: "dannc.netology_devops_vector"
|
||||
35
molecule/podman/molecule.yml
Normal file
35
molecule/podman/molecule.yml
Normal file
@@ -0,0 +1,35 @@
|
||||
---
|
||||
dependency:
|
||||
name: galaxy
|
||||
driver:
|
||||
name: podman
|
||||
platforms:
|
||||
- name: centos_7
|
||||
image: docker.io/library/centos:7
|
||||
privileged: true
|
||||
command: /usr/sbin/init
|
||||
capabilities:
|
||||
- SYS_ADMIN
|
||||
tmpfs:
|
||||
- /run
|
||||
- /tmp
|
||||
volumes:
|
||||
- /sys/fs/cgroup:/sys/fs/cgroup
|
||||
env:
|
||||
ANSIBLE_USER: ansible
|
||||
SUDO_GROUP: wheel
|
||||
DEPLOY_GROUP: deployer
|
||||
container: podman
|
||||
provisioner:
|
||||
name: ansible
|
||||
verifier:
|
||||
name: ansible
|
||||
scenario:
|
||||
name: podman
|
||||
test_sequence:
|
||||
- lint
|
||||
- destroy
|
||||
- create
|
||||
- converge
|
||||
- verify
|
||||
- destroy
|
||||
9
molecule/podman/verify.yml
Normal file
9
molecule/podman/verify.yml
Normal file
@@ -0,0 +1,9 @@
|
||||
---
|
||||
- name: Verify
|
||||
hosts: all
|
||||
gather_facts: false
|
||||
tasks:
|
||||
- name: ensure vector service started
|
||||
ansible.builtin.service:
|
||||
name: vector
|
||||
state: started
|
||||
@@ -1,9 +1,7 @@
|
||||
---
|
||||
- name: vector | install archive manager
|
||||
become: true
|
||||
ansible.builtin.yum:
|
||||
name:
|
||||
- tar
|
||||
ansible.builtin.include_tasks:
|
||||
file: "pre_install/{{ ansible_pkg_mgr }}.yml"
|
||||
- name: vector | get distrib
|
||||
ansible.builtin.get_url:
|
||||
url: "https://packages.timber.io/vector/{{ vector_version }}/vector-{{ vector_version }}-x86_64-unknown-linux-musl.tar.gz"
|
||||
@@ -51,9 +49,5 @@
|
||||
group: "{{ ansible_effective_group_id }}"
|
||||
mode: "0644"
|
||||
backup: true
|
||||
- name: vector | start service
|
||||
become: true
|
||||
ansible.builtin.service:
|
||||
name: vector
|
||||
state: started
|
||||
daemon_reload: true
|
||||
notify:
|
||||
- restart-vector
|
||||
|
||||
6
tasks/pre_install/apt.yml
Normal file
6
tasks/pre_install/apt.yml
Normal file
@@ -0,0 +1,6 @@
|
||||
---
|
||||
- name: vector | install archive manager
|
||||
become: true
|
||||
ansible.builtin.apt:
|
||||
name:
|
||||
- tar
|
||||
6
tasks/pre_install/yum.yml
Normal file
6
tasks/pre_install/yum.yml
Normal file
@@ -0,0 +1,6 @@
|
||||
---
|
||||
- name: vector | install archive manager
|
||||
become: true
|
||||
ansible.builtin.yum:
|
||||
name:
|
||||
- tar
|
||||
@@ -1,2 +0,0 @@
|
||||
localhost
|
||||
|
||||
@@ -1,5 +0,0 @@
|
||||
---
|
||||
- hosts: localhost
|
||||
remote_user: root
|
||||
roles:
|
||||
- vector-role
|
||||
7
tox-requirements.txt
Normal file
7
tox-requirements.txt
Normal file
@@ -0,0 +1,7 @@
|
||||
selinux
|
||||
ansible-lint==5.1.3
|
||||
yamllint==1.26.3
|
||||
lxml
|
||||
molecule==3.4.0
|
||||
molecule_podman
|
||||
jmespath
|
||||
Reference in New Issue
Block a user