Installazzjoni ta 'ħażna ta' oġġetti LeoFS mqassma tolleranti għall-ħsarat, kompatibbli mal-klijenti li jużaw S3, NFS

Skond Opennet: LeoFS — ħażna mqassma ta' oġġetti tolleranti għall-ħsarat LeoFS, kompatibbli mal-klijenti li jużaw l-Amazon S3 API u REST-API, u jappoġġja wkoll il-modalità server NFS. Hemm ottimizzazzjonijiet għall-ħażna kemm ta 'oġġetti żgħar kif ukoll kbar ħafna, hemm mekkaniżmu ta' caching inkorporat, u r-replikazzjoni tal-ħażna bejn iċ-ċentri tad-dejta hija possibbli. L-għanijiet tal-proġett jinkludu l-kisba ta 'affidabilità ta' 99.9999999% permezz ta 'replikazzjoni żejda ta' duplikati u l-eliminazzjoni ta 'punt wieħed ta' falliment. Il-kodiċi tal-proġett huwa miktub f'Erlang.

LeoFS jikkonsisti fi tliet komponenti:

  • Ħażna LeoFS — iservi operazzjonijiet ta’ żieda, irkupru u tħassir ta’ oġġetti u metadejta, huwa responsabbli għat-twettiq ta’ replikazzjoni, rkupru u kju tat-talbiet tal-klijenti.
  • LeoFS Gateway — jaqdi talbiet HTTP u jidderieġi mill-ġdid it-tweġibiet lill-klijenti li jużaw REST-API jew S3-API, jiżgura l-caching tad-dejta l-aktar meħtieġa fil-memorja u fuq id-diska.
  • Maniġer LeoFS — jimmonitorja l-operat tan-nodi LeoFS Gateway u LeoFS Ħażna, jimmonitorja l-istatus tan-nodi u jiċċekkja checksums. Tiggarantixxi l-integrità tad-dejta u d-disponibbiltà għolja tal-ħażna.

F'din il-kariga se ninstallaw Leofs billi nużaw ansible-playbook u nittestjaw S3, NFS.

Jekk tipprova tinstalla LeoFS billi tuża l-playbooks uffiċjali, tiltaqa' ma' diversi żbalji: 1,2. F'din il-post se nikteb x'jeħtieġ li jsir biex jiġu evitati dawn l-iżbalji.

Fejn se tmexxi ansible-playbook, trid tinstalla netcat.

Eżempju ta' inventarju

Inventarju ta' eżempju (fir-repożitorju hosts.sample):

# Please check roles/common/vars/leofs_releases for available versions
[all:vars]
leofs_version=1.4.3
build_temp_path="/tmp/leofs_builder"
build_install_path="/tmp/"
build_branch="master"
source="package"

#[builder]
#172.26.9.177

# nodename of leo_manager_0 and leo_manager_1 are set at group_vars/all
[leo_manager_0]
172.26.9.176

# nodename of leo_manager_0 and leo_manager_1 are set at group_vars/all
[leo_manager_1]
172.26.9.178

[leo_storage]
172.26.9.179 [email protected]
172.26.9.181 [email protected]
172.26.9.182 [email protected]
172.26.9.183 [email protected]

[leo_gateway]
172.26.9.180 [email protected]
172.26.9.184 [email protected]

[leofs_nodes:children]
leo_manager_0
leo_manager_1
leo_gateway
leo_storage

Preparazzjoni tas-server

Jiskonnettja Selinux. Nittama li l-komunità toħloq politiki Selinux għal LeoFS.

    - name: Install libselinux as prerequisite for SELinux Ansible module
      yum:
        name: "{{item}}"
        state: latest
      with_items:
        - libselinux-python
        - libsemanage-python

    - name: Disable SELinux at next reboot
      selinux:
        state: disabled

    - name: Set SELinux in permissive mode until the machine is rebooted
      command: setenforce 0
      ignore_errors: true
      changed_when: false

Installazzjoni netcat и redhat-lsb-core. netcat meħtieġa għal leofs-adm, redhat-lsb-core meħtieġa biex tiddetermina l-verżjoni OS hawn.

    - name: Install Packages
      yum: name={{ item }} state=present
      with_items:
        - nmap-ncat
        - redhat-lsb-core

Ħolqien ta 'leofs ta' utent u żżidu mal-grupp tar-roti

    - name: Create user leofs
      group:
        name: leofs
        state: present

    - name: Allow 'wheel' group to have passwordless sudo
      lineinfile:
        dest: /etc/sudoers
        state: present
        regexp: '^%wheel'
        line: '%wheel ALL=(ALL) NOPASSWD: ALL'
        validate: 'visudo -cf %s'

    - name: Add the user 'leofs' to group 'wheel'
      user:
        name: leofs
        groups: wheel
        append: yes

Installazzjoni Erlang

    - name: Remote erlang-20.3.8.23-1.el7.x86_64.rpm install with yum
      yum: name=https://github.com/rabbitmq/erlang-rpm/releases/download/v20.3.8.23/erlang-20.3.8.23-1.el7.x86_64.rpm

Il-verżjoni sħiħa tal-playbook Ansible kkoreġut tista' ssibha hawn: https://github.com/patsevanton/leofs_ansible

Installazzjoni, konfigurazzjoni, tnedija

Sussegwentement nagħmlu kif miktub https://github.com/leo-project/leofs_ansible mingħajr build_leofs.yml

## Install LeoFS
$ ansible-playbook -i hosts install_leofs.yml

## Config LeoFS
$ ansible-playbook -i hosts config_leofs.yml

## Start LeoFS
$ ansible-playbook -i hosts start_leofs.yml

Iċċekkja l-istatus tal-cluster fuq Primary LeoManager

leofs-adm status

Primarja u Sekondarja jistgħu jidhru fil-logs ansible-playbook

Installazzjoni ta 'ħażna ta' oġġetti LeoFS mqassma tolleranti għall-ħsarat, kompatibbli mal-klijenti li jużaw S3, NFS

Installazzjoni ta 'ħażna ta' oġġetti LeoFS mqassma tolleranti għall-ħsarat, kompatibbli mal-klijenti li jużaw S3, NFS

L-output se jkun xi ħaġa bħal din

 [System Confiuration]
-----------------------------------+----------
 Item                              | Value    
-----------------------------------+----------
 Basic/Consistency level
-----------------------------------+----------
                    system version | 1.4.3
                        cluster Id | leofs_1
                             DC Id | dc_1
                    Total replicas | 2
          number of successes of R | 1
          number of successes of W | 1
          number of successes of D | 1
 number of rack-awareness replicas | 0
                         ring size | 2^128
-----------------------------------+----------
 Multi DC replication settings
-----------------------------------+----------
 [mdcr] max number of joinable DCs | 2
 [mdcr] total replicas per a DC    | 1
 [mdcr] number of successes of R   | 1
 [mdcr] number of successes of W   | 1
 [mdcr] number of successes of D   | 1
-----------------------------------+----------
 Manager RING hash
-----------------------------------+----------
                 current ring-hash | a0314afb
                previous ring-hash | a0314afb
-----------------------------------+----------

 [State of Node(s)]
-------+----------------------+--------------+---------+----------------+----------------+----------------------------
 type  |         node         |    state     | rack id |  current ring  |   prev ring    |          updated at         
-------+----------------------+--------------+---------+----------------+----------------+----------------------------
  S    | [email protected]      | running      |         | a0314afb       | a0314afb       | 2019-12-05 10:33:47 +0000
  S    | [email protected]      | running      |         | a0314afb       | a0314afb       | 2019-12-05 10:33:47 +0000
  S    | [email protected]      | running      |         | a0314afb       | a0314afb       | 2019-12-05 10:33:47 +0000
  S    | [email protected]      | attached     |         |                |                | 2019-12-05 10:33:58 +0000
  G    | [email protected]      | running      |         | a0314afb       | a0314afb       | 2019-12-05 10:33:49 +0000
  G    | [email protected]      | running      |         | a0314afb       | a0314afb       | 2019-12-05 10:33:49 +0000
-------+----------------------+--------------+---------+----------------+----------------+----------------------------

Ħolqien ta' utent

Oħloq utent tal-leofs:

leofs-adm create-user leofs leofs

  access-key-id: 9c2615f32e81e6a1caf5
  secret-access-key: 8aaaa35c1ad78a2cbfa1a6cd49ba8aaeb3ba39eb

Lista ta' utenti:

leofs-adm get-users
user_id     | role_id | access_key_id          | created_at                
------------+---------+------------------------+---------------------------
_test_leofs | 9       | 05236                  | 2019-12-02 06:56:49 +0000
leofs       | 1       | 9c2615f32e81e6a1caf5   | 2019-12-02 10:43:29 +0000

Oħloq Barmil

Għamel barmil

leofs-adm add-bucket leofs 9c2615f32e81e6a1caf5
OK

Lista tal-barmil:

 leofs-adm get-buckets
cluster id   | bucket   | owner  | permissions      | created at                
-------------+----------+--------+------------------+---------------------------
leofs_1      | leofs    | leofs  | Me(full_control) | 2019-12-02 10:44:02 +0000

Konfigurazzjoni ta' s3cmd

Fil-qasam HTTP Proxy server name speċifika l-IP tas-server Gateway

s3cmd --configure 

Enter new values or accept defaults in brackets with Enter.
Refer to user manual for detailed description of all options.

Access key and Secret key are your identifiers for Amazon S3. Leave them empty for using the env variables.
Access Key [9c2615f32e81e6a1caf5]: 
Secret Key [8aaaa35c1ad78a2cbfa1a6cd49ba8aaeb3ba39eb]: 
Default Region [US]: 

Use "s3.amazonaws.com" for S3 Endpoint and not modify it to the target Amazon S3.
S3 Endpoint [s3.amazonaws.com]: 

Use "%(bucket)s.s3.amazonaws.com" to the target Amazon S3. "%(bucket)s" and "%(location)s" vars can be used
if the target S3 system supports dns based buckets.
DNS-style bucket+hostname:port template for accessing a bucket [%(bucket)s.s3.amazonaws.com]: leofs

Encryption password is used to protect your files from reading
by unauthorized persons while in transfer to S3
Encryption password: 
Path to GPG program [/usr/bin/gpg]: 

When using secure HTTPS protocol all communication with Amazon S3
servers is protected from 3rd party eavesdropping. This method is
slower than plain HTTP, and can only be proxied with Python 2.7 or newer
Use HTTPS protocol [No]: 

On some networks all internet access must go through a HTTP proxy.
Try setting it here if you can't connect to S3 directly
HTTP Proxy server name [172.26.9.180]: 
HTTP Proxy server port [8080]: 

New settings:
  Access Key: 9c2615f32e81e6a1caf5
  Secret Key: 8aaaa35c1ad78a2cbfa1a6cd49ba8aaeb3ba39eb
  Default Region: US
  S3 Endpoint: s3.amazonaws.com
  DNS-style bucket+hostname:port template for accessing a bucket: leofs
  Encryption password: 
  Path to GPG program: /usr/bin/gpg
  Use HTTPS protocol: False
  HTTP Proxy server name: 172.26.9.180
  HTTP Proxy server port: 8080

Test access with supplied credentials? [Y/n] Y
Please wait, attempting to list all buckets...
Success. Your access key and secret key worked fine :-)

Now verifying that encryption works...
Not configured. Never mind.

Save settings? [y/N] y
Configuration saved to '/home/user/.s3cfg'

Jekk ikollok l-iżball ŻBALL: Żball S3: 403 (Aċċess Miċħud): Aċċess Miċħud:

s3cmd put test.py s3://leofs/
upload: 'test.py' -> 's3://leofs/test.py'  [1 of 1]
 382 of 382   100% in    0s     3.40 kB/s  done
ERROR: S3 error: 403 (AccessDenied): Access Denied

Imbagħad għandek bżonn tibdel signature_v3 għal Veru fil-konfigurazzjoni s2cmd. Dettalji f'dan kwistjoni.

Jekk signature_v2 hija Falza, allura jkun hemm żball bħal dan:

WARNING: Retrying failed request: /?delimiter=%2F (getaddrinfo() argument 2 must be integer or string)
WARNING: Waiting 3 sec...
WARNING: Retrying failed request: /?delimiter=%2F (getaddrinfo() argument 2 must be integer or string)
WARNING: Waiting 6 sec...
ERROR: Test failed: Request failed for: /?delimiter=%2F

Ittestjar tat-tagħbija

Oħloq fajl 1GB

fallocate -l 1GB 1gb

Tellah fuq Leofs

time s3cmd put 1gb s3://leofs/
real    0m19.099s
user    0m7.855s
sys 0m1.620s

Statistika

leofs-adm du għal 1 node:

leofs-adm du [email protected]
 active number of objects: 156
  total number of objects: 156
   active size of objects: 602954495
    total size of objects: 602954495
     ratio of active size: 100.0%
    last compaction start: ____-__-__ __:__:__
      last compaction end: ____-__-__ __:__:__

Naraw li l-konklużjoni mhix informattiva ħafna.

Ejja naraw fejn jinsab dan il-fajl.
leofs-adm fejn huwa leofs/1gb

leofs-adm whereis leofs/1gb
-------+----------------------+--------------------------------------+------------+--------------+----------------+----------------+----------------+----------------------------
 del?  |         node         |             ring address             |    size    |   checksum   |  has children  |  total chunks  |     clock      |             when            
-------+----------------------+--------------------------------------+------------+--------------+----------------+----------------+----------------+----------------------------
       | [email protected]      | 657a9f3a3db822a7f1f5050925b26270     |    976563K |   a4634eea55 | true           |             64 | 598f2aa976a4f  | 2019-12-05 10:48:15 +0000
       | [email protected]      | 657a9f3a3db822a7f1f5050925b26270     |    976563K |   a4634eea55 | true           |             64 | 598f2aa976a4f  | 2019-12-05 10:48:15 +0000

Attiva NFS

Aħna nattivaw NFS fuq is-server Leo Gateway 172.26.9.184.

Installa nfs-utils fuq is-server u l-klijent

sudo yum install nfs-utils

Skont l-istruzzjonijiet, aħna se nikkoreġu l-fajl tal-konfigurazzjoni /usr/local/leofs/current/leo_gateway/etc/leo_gateway.conf

protocol = nfs

Fuq is-server 172.26.9.184 mexxi rpcbind u leofs-gateway

sudo service rpcbind start
sudo service leofs-gateway restart

Fuq is-server fejn qed jaħdem leo_manager, oħloq barmil għal NFS u ġġenera ċavetta għall-konnessjoni ma 'NFS

leofs-adm add-bucket test 05236
leofs-adm gen-nfs-mnt-key test 05236 ip-адрес-nfs-клиента

Konnessjoni ma 'NFS

sudo mkdir /mnt/leofs
## for Linux - "sudo mount -t nfs -o nolock <host>:/<bucket>/<token> <dir>"
sudo mount -t nfs -o nolock ip-адрес-nfs-сервера-там-где-у-вас-установлен-gateway:/bucket/access_key_id/ключ-полученный-от-gen-nfs-mnt-key /mnt/leofs
sudo mount -t nfs -o nolock 172.26.9.184:/test/05236/bb5034f0c740148a346ed663ca0cf5157efb439f /mnt/leofs

Ara l-ispazju tad-diska permezz tal-klijent NFS

Spazju tad-disk, b'kont meħud li kull nodu tal-ħażna għandu disk ta '40GB (3 nodi li jaħdmu, nodu 1 mehmuż):

df -hP
Filesystem                                                         Size  Used Avail Use% Mounted on
172.26.9.184:/test/05236/e7298032e78749149dd83a1e366afb328811c95b   60G  3.6G   57G   6% /mnt/leofs

Installazzjoni ta 'LeoFS b'6 nodi ta' ħażna.

Inventarju (mingħajr bennej):

# Please check roles/common/vars/leofs_releases for available versions
[all:vars]
leofs_version=1.4.3
build_temp_path="/tmp/leofs_builder"
build_install_path="/tmp/"
build_branch="master"
source="package"

# nodename of leo_manager_0 and leo_manager_1 are set at group_vars/all
[leo_manager_0]
172.26.9.177

# nodename of leo_manager_0 and leo_manager_1 are set at group_vars/all
[leo_manager_1]
172.26.9.176

[leo_storage]
172.26.9.178 [email protected]
172.26.9.179 [email protected]
172.26.9.181 [email protected]
172.26.9.182 [email protected]
172.26.9.183 [email protected]
172.26.9.185 [email protected]

[leo_gateway]
172.26.9.180 [email protected]
172.26.9.184 [email protected]

[leofs_nodes:children]
leo_manager_0
leo_manager_1
leo_gateway
leo_storage

Output leofs-adm status

Output leofs-adm status

 [System Confiuration]
-----------------------------------+----------
 Item                              | Value    
-----------------------------------+----------
 Basic/Consistency level
-----------------------------------+----------
                    system version | 1.4.3
                        cluster Id | leofs_1
                             DC Id | dc_1
                    Total replicas | 2
          number of successes of R | 1
          number of successes of W | 1
          number of successes of D | 1
 number of rack-awareness replicas | 0
                         ring size | 2^128
-----------------------------------+----------
 Multi DC replication settings
-----------------------------------+----------
 [mdcr] max number of joinable DCs | 2
 [mdcr] total replicas per a DC    | 1
 [mdcr] number of successes of R   | 1
 [mdcr] number of successes of W   | 1
 [mdcr] number of successes of D   | 1
-----------------------------------+----------
 Manager RING hash
-----------------------------------+----------
                 current ring-hash | d8ff465e
                previous ring-hash | d8ff465e
-----------------------------------+----------

 [State of Node(s)]
-------+----------------------+--------------+---------+----------------+----------------+----------------------------
 type  |         node         |    state     | rack id |  current ring  |   prev ring    |          updated at         
-------+----------------------+--------------+---------+----------------+----------------+----------------------------
  S    | [email protected]      | running      |         | d8ff465e       | d8ff465e       | 2019-12-06 05:18:29 +0000
  S    | [email protected]      | running      |         | d8ff465e       | d8ff465e       | 2019-12-06 05:18:29 +0000
  S    | [email protected]      | running      |         | d8ff465e       | d8ff465e       | 2019-12-06 05:18:30 +0000
  S    | [email protected]      | running      |         | d8ff465e       | d8ff465e       | 2019-12-06 05:18:29 +0000
  S    | [email protected]      | running      |         | d8ff465e       | d8ff465e       | 2019-12-06 05:18:29 +0000
  S    | [email protected]      | running      |         | d8ff465e       | d8ff465e       | 2019-12-06 05:18:29 +0000
  G    | [email protected]      | running      |         | d8ff465e       | d8ff465e       | 2019-12-06 05:18:31 +0000
  G    | [email protected]      | running      |         | d8ff465e       | d8ff465e       | 2019-12-06 05:18:31 +0000
-------+----------------------+--------------+---------+----------------+----------------+----------------------------

Spazju tad-disk, b'kont meħud li kull nodu tal-ħażna għandu disk ta '40GB (6 nodi li jaħdmu):

df -hP
Filesystem                                                         Size  Used Avail Use% Mounted on
172.26.9.184:/test/05236/e7298032e78749149dd83a1e366afb328811c95b  120G  3.6G  117G   3% /mnt/leofs

Jekk jintużaw 5 nodi tal-ħażna

[leo_storage]
172.26.9.178 [email protected]
172.26.9.179 [email protected]
172.26.9.181 [email protected]
172.26.9.182 [email protected]
172.26.9.183 [email protected]

df -hP
172.26.9.184:/test/05236/e7298032e78749149dd83a1e366afb328811c95b  100G  3.0G   97G   3% /mnt/leofs

Zkuk

Zkuk jinsabu fid-direttorji /usr/local/leofs/current/*/log

Kanal tat-Telegram: SDS u Cluster FS

Sors: www.habr.com

Żid kumment