Kurumidza Deploy vm ESXi ine Terraform

Mhoroi mose, zita rangu ndiIvan uye ini ndiri chidhakwa system administrator (OPS).

Ndinoda kukuudza kuti ndinotumira sei michina chaiyo paESXi pasina vCenter uchishandisa Terraform.

Kazhinji, iwe unofanirwa kuendesa / kugadzirazve mashini chaiwo kuti uedze ichi kana icho chishandiso. Nekuda kwehusimbe, ndakafunga nezve automating maitiro. Kutsvaga kwangu kwakanditungamira kune chigadzirwa chinoshamisa chekambani hashicorp, terraform.

Ini ndinofunga vanhu vazhinji vanoziva kuti Terraform chii, uye ndiani asingazive, ichi chikumbiro chekutonga chero gore, zvivakwa kana sevhisi uchishandisa iyo IasC pfungwa (Infrastructure sekodhi).

Ini ndinoshandisa ESXi seyangu virtualization nharaunda. Yakareruka, yakanakira uye yakavimbika.
Ndinotarisira mubvunzo.

Sei terraform kana unogona kushandisa vCenter Server?

Unogona hongu, asi. Chekutanga, iyi irezinesi rekuwedzera, kechipiri, chigadzirwa ichi chakanyanya-simba-chakanyanya uye chingori hachikwane pane yangu sevha yekumba, uye chechitatu, kugona kukwidziridza hunyanzvi.

Iyo Intel NUC chikuva inoita sevhavha:

CPU: 2 CPUs x Intel(R) Core(TM) i3-4010U CPU @ 1.70GHz
RAM: 8Gb
HDD: 500Gb
ESXi version: ESXi-6.5.0-4564106-standard (VMware, Inc.)

Uye saka, zvinhu zvekutanga kutanga.

Parizvino, ngatimisikidze esxi, kureva, vhura iyo VNC port mune firewall marongero.

Nekusagadzikana, iyo faira inonyorwa-yakachengetedzwa. Isu tinoita zvinotevera manipulations:

chmod 644 /etc/vmware/firewall/service.xml
chmod +t /etc/vmware/firewall/service.xml
vi /etc/vmware/firewall/service.xml

wedzera iyo inotevera block kusvika kumagumo efaira:

<service id="1000">
  <id>packer-vnc</id>
  <rule id="0000">
    <direction>inbound</direction>
    <protocol>tcp</protocol>
    <porttype>dst</porttype>
    <port>
      <begin>5900</begin>
      <end>6000</end>
    </port>
  </rule>
  <enabled>true</enabled>
  <required>true</required>
</service>

Buda, chengetedza. Chinja kodzero kumashure uye wotangazve sevhisi:

chmod 444 /etc/vmware/firewall/service.xml
esxcli network firewall refresh

Chaicho kusvikira muridzi wacho atangazve. Mushure maizvozvi, kunyengedza uku kunofanira kudzokororwa.

Kupfuurirazve, ini ndichaita basa rese mumushini chaiwo pane imwechete server.

Zvichemo zvemiti:

OS: Centos 7 x86_64 minimal
RAM: 1GB
HDD: 20GB
Selinux: disable
firewalld: disable

Zvadaro, tinoda kurongedza, zvakare chigadzirwa cheHashiCorp.

Inodiwa kuti uunganidze otomatiki mufananidzo "wegoridhe". yatichashandisa mune ramangwana.

yum install unzip git -y
curl -O https://releases.hashicorp.com/packer/1.5.5/packer_1.5.5_linux_amd64.zip
unzip packer_1.5.5_linux_amd64.zip -d /usr/bin && rm -rf packer_1.5.5_linux_amd64.zip
packer version
Packer v1.5.5

Pakufamba packer version kukanganisa kunogona kuitika, sezvo RedHat-based inogona kunge iine package ine zita rimwechete.

which -a packer
/usr/sbin/packer

Kuti uwane mhinduro, unogona kugadzira symlink, kana kushandisa nzira yakakwana /usr/bin/packer.

Iye zvino tinoda ovftool download linked. Dhawunirodha, isa pane server uye isa:

chmod +x VMware-ovftool-4.4.0-15722219-lin.x86_64.bundle
./VMware-ovftool-4.4.0-15722219-lin.x86_64.bundle
Extracting VMware Installer...done.
You must accept the VMware OVF Tool component for Linux End User
License Agreement to continue.  Press Enter to proceed.
VMWARE END USER LICENSE AGREEMENT
Do you agree? [yes/no]:yes
The product is ready to be installed.  Press Enter to begin
installation or Ctrl-C to cancel. 
Installing VMware OVF Tool component for Linux 4.4.0
    Configuring...
[######################################################################] 100%
Installation was successful.

Tinoenderera mberi.

Pagith ndakagadzira zvese zvaunoda.

git clone https://github.com/letnab/create-and-deploy-esxi.git && cd create-and-deploy-esxi

To folder iso iwe unofanirwa kuisa iyo yekugovera kit yeiyo inoshanda system. Mune yangu, iyi centos 7.

Iwe zvakare unofanirwa kugadzirisa iyo faira. centos-7-base.json:

variables: ΡƒΠΊΠ°Π·Π°Ρ‚ΡŒ свои Π΄Π°Π½Π½Ρ‹Π΅ для ΠΏΠΎΠ΄ΠΊΠ»ΡŽΡ‡Π΅Π½ΠΈΡ
iso_urls: ΡƒΠΊΠ°Π·Π°Ρ‚ΡŒ Π°ΠΊΡ‚ΡƒΠ°Π»ΡŒΠ½Ρ‹ΠΉ
iso_checksum: чСксумма вашСго ΠΎΠ±Ρ€Π°Π·Π° 

Mushure mekuchinja kwese, mhanyisa musangano:

/usr/bin/packer build centos-7-base.json

Kana zvese zvakagadziriswa uye zvakatsanangurwa nenzira kwayo, ipapo iwe uchaona mufananidzo wekumisikidzwa kweiyo otomatiki system yekushandisa. Iyi nzira inonditorera 7-8 maminetsi.

Mushure mekubudirira kupedzisa mufolda kubuda-packer-centos7-x86_64 ova file ichawanikwa.

Isa Terraform:

curl -O https://releases.hashicorp.com/terraform/0.12.24/terraform_0.12.24_linux_amd64.zip
unzip terraform_0.12.24_linux_amd64.zip -d /usr/bin/ && rm -rf terraform_0.12.24_linux_amd64.zip
terraform version
Terraform v0.12.24

Sezvo Terraform isina mupi weESXi, iwe unofanirwa kuvaka imwe.

Tinoenda:

cd /tmp
curl -O https://dl.google.com/go/go1.14.2.linux-amd64.tar.gz
tar -C /usr/local -xzf go1.14.2.linux-amd64.tar.gz && rm -rf go1.14.2.linux-amd64.tar.gz
export PATH=$PATH:/usr/local/go/bin
go version
go version go1.14.2 linux/amd64

Zvadaro, tinounganidza mupi:

go get -u -v golang.org/x/crypto/ssh
go get -u -v github.com/hashicorp/terraform
go get -u -v github.com/josenk/terraform-provider-esxi
export GOPATH="$HOME/go"
cd $GOPATH/src/github.com/josenk/terraform-provider-esxi
CGO_ENABLED=0 GOOS=linux GOARCH=amd64 go build -a -ldflags '-w -extldflags "-static"' -o terraform-provider-esxi_`cat version`
cp terraform-provider-esxi_`cat version` /usr/bin

Tava patambo. Handei tinoburitsa mufananidzo wedu.

Handei kune folda:

cd /root/create-and-deploy-esxi/centos7

Chokutanga pane zvose, gadzirisa faira variables.tf. Iwe unofanirwa kutsanangura kubatana kune ESXi server.

Mufaira network_config.cfg ine network marongero emangwana chaiwo muchina. Shandura kune zvaunoda uye mhanyisa iyo-liner:

sed -i -e '2d' -e '3i "network": "'$(gzip < network_config.cfg| base64 | tr -d 'n')'",' metadata.json

Zvakanaka, mufaira main.tf shandura nzira kune ova faira kune yako, kana yakasiyana.

Nguva yechokwadi.

terraform init
Initializing the backend...

Initializing provider plugins...

The following providers do not have any version constraints in configuration,
so the latest version was installed.

To prevent automatic upgrades to new major versions that may contain breaking
changes, it is recommended to add version = "..." constraints to the
corresponding provider blocks in configuration, with the constraint strings
suggested below.

* provider.esxi: version = "~> 1.6"
* provider.template: version = "~> 2.1"

Terraform has been successfully initialized!

You may now begin working with Terraform. Try running "terraform plan" to see
any changes that are required for your infrastructure. All Terraform commands
should now work.

If you ever set or change modules or backend configuration for Terraform,
rerun this command to reinitialize your working directory. If you forget, other
commands will detect it and remind you to do so if necessary.

terraform plan
Refreshing Terraform state in-memory prior to plan...
The refreshed state will be used to calculate this plan, but will not be
persisted to local or remote state storage.

data.template_file.Default: Refreshing state...
data.template_file.network_config: Refreshing state...

------------------------------------------------------------------------

An execution plan has been generated and is shown below.
Resource actions are indicated with the following symbols:
  + create

Terraform will perform the following actions:

  # esxi_guest.Default will be created
  + resource "esxi_guest" "Default" {
      + boot_disk_size         = (known after apply)
      + disk_store             = "datastore1"
      + guest_name             = "centos7-test"
      + guest_shutdown_timeout = (known after apply)
      + guest_startup_timeout  = (known after apply)
      + guestinfo              = {
          + "metadata"          = "base64text"
          + "metadata.encoding" = "gzip+base64"
          + "userdata"          = "base64text"
          + "userdata.encoding" = "gzip+base64"
        }
      + guestos                = (known after apply)
      + id                     = (known after apply)
      + ip_address             = (known after apply)
      + memsize                = "1024"
      + notes                  = (known after apply)
      + numvcpus               = (known after apply)
      + ovf_properties_timer   = (known after apply)
      + ovf_source             = "/root/create-and-deploy-esxi/output-packer-centos7-x86_64/packer-centos7-x86_64.ova"
      + power                  = "on"
      + resource_pool_name     = (known after apply)
      + virthwver              = (known after apply)

      + network_interfaces {
          + mac_address     = (known after apply)
          + nic_type        = (known after apply)
          + virtual_network = "VM Network"
        }
    }

Plan: 1 to add, 0 to change, 0 to destroy.

------------------------------------------------------------------------

Note: You didn't specify an "-out" parameter to save this plan, so Terraform
can't guarantee that exactly these actions will be performed if
"terraform apply" is subsequently run.

Pedzisa:

terraform apply

Kana zvese zvikaitwa nemazvo, ipapo mumaminitsi 2-3 mutsva chaiwo muchina uchaiswa kubva pamufananidzo wakagadzirwa kare.

Iko kushandiswa kwezvose izvi kunogumira chete nemafungiro ako.

Ndaingoda kugovera maitiro akanaka uye kuratidza pfungwa huru pakushanda nezvigadzirwa izvi.

Ndinokutendai nekuteerera!

PS: Ndichafara kutsoropodza kunovaka.

Source: www.habr.com

Voeg