Pag-install ng distributed fault-tolerant LeoFS object storage, tugma sa mga kliyente gamit ang S3, NFS

Ayon sa Opennet: LeoFS β€” ibinahagi ang fault-tolerant na imbakan ng bagay LeoFS, tugma sa mga kliyente na gumagamit ng Amazon S3 API at REST-API, at sinusuportahan din ang NFS server mode. Mayroong mga pag-optimize para sa pag-iimbak ng parehong maliliit at napakalaking bagay, mayroong built-in na mekanismo ng pag-cache, at posible ang pagtitiklop ng imbakan sa pagitan ng mga sentro ng data. Kasama sa mga layunin ng proyekto ang pagkamit ng 99.9999999% na pagiging maaasahan sa pamamagitan ng paulit-ulit na pagtitiklop ng mga duplicate at pag-aalis ng isang punto ng pagkabigo. Ang code ng proyekto ay nakasulat sa Erlang.

Ang LeoFS ay binubuo ng tatlong bahagi:

  • Imbakan ng LeoFS β€” nagsisilbi ng mga operasyon ng pagdaragdag, pagbawi at pagtanggal ng mga bagay at metadata, ay responsable para sa pagsasagawa ng pagtitiklop, pagbawi at pagpila ng mga kahilingan ng kliyente.
  • Gateway ng LeoFS β€” naghahatid ng mga kahilingan sa HTTP at nagre-redirect ng mga tugon sa mga kliyente gamit ang REST-API o S3-API, tinitiyak ang pag-cache ng pinakakailangan na data sa memorya at sa disk.
  • Tagapamahala ng LeoFS β€” sinusubaybayan ang pagpapatakbo ng LeoFS Gateway at LeoFS Storage node, sinusubaybayan ang status ng mga node at sinusuri ang mga checksum. Ginagarantiya ang integridad ng data at mataas na availability ng storage.

Sa post na ito i-install namin ang Leofs gamit ang ansible-playbook at pagsubok sa S3, NFS.

Kung susubukan mong i-install ang LeoFS gamit ang mga opisyal na playbook, makakatagpo ka ng iba't ibang mga error: 1,2. Sa post na ito ay isusulat ko kung ano ang kailangang gawin upang maiwasan ang mga pagkakamaling ito.

Kung saan ka tatakbo ng ansible-playbook, kailangan mong i-install ang netcat.

Halimbawa ng imbentaryo

Halimbawang imbentaryo (sa hosts.sample repository):

# Please check roles/common/vars/leofs_releases for available versions
[all:vars]
leofs_version=1.4.3
build_temp_path="/tmp/leofs_builder"
build_install_path="/tmp/"
build_branch="master"
source="package"

#[builder]
#172.26.9.177

# nodename of leo_manager_0 and leo_manager_1 are set at group_vars/all
[leo_manager_0]
172.26.9.176

# nodename of leo_manager_0 and leo_manager_1 are set at group_vars/all
[leo_manager_1]
172.26.9.178

[leo_storage]
172.26.9.179 [email protected]
172.26.9.181 [email protected]
172.26.9.182 [email protected]
172.26.9.183 [email protected]

[leo_gateway]
172.26.9.180 [email protected]
172.26.9.184 [email protected]

[leofs_nodes:children]
leo_manager_0
leo_manager_1
leo_gateway
leo_storage

Paghahanda ng server

Hindi pagpapagana ng Selinux. Umaasa akong gagawa ang komunidad ng mga patakaran ng Selinux para sa LeoFS.

    - name: Install libselinux as prerequisite for SELinux Ansible module
      yum:
        name: "{{item}}"
        state: latest
      with_items:
        - libselinux-python
        - libsemanage-python

    - name: Disable SELinux at next reboot
      selinux:
        state: disabled

    - name: Set SELinux in permissive mode until the machine is rebooted
      command: setenforce 0
      ignore_errors: true
      changed_when: false

Instalasyon netcat ΠΈ redhat-lsb-core. netcat kailangan para sa leofs-adm, redhat-lsb-core kinakailangan upang matukoy ang bersyon ng OS dito.

    - name: Install Packages
      yum: name={{ item }} state=present
      with_items:
        - nmap-ncat
        - redhat-lsb-core

Paglikha ng user leofs at pagdaragdag nito sa wheel group

    - name: Create user leofs
      group:
        name: leofs
        state: present

    - name: Allow 'wheel' group to have passwordless sudo
      lineinfile:
        dest: /etc/sudoers
        state: present
        regexp: '^%wheel'
        line: '%wheel ALL=(ALL) NOPASSWD: ALL'
        validate: 'visudo -cf %s'

    - name: Add the user 'leofs' to group 'wheel'
      user:
        name: leofs
        groups: wheel
        append: yes

Pag-install ng Erlang

    - name: Remote erlang-20.3.8.23-1.el7.x86_64.rpm install with yum
      yum: name=https://github.com/rabbitmq/erlang-rpm/releases/download/v20.3.8.23/erlang-20.3.8.23-1.el7.x86_64.rpm

Ang buong bersyon ng naitama na playbook ng Ansible ay matatagpuan dito: https://github.com/patsevanton/leofs_ansible

Pag-install, pagsasaayos, paglunsad

Susunod na gumanap kami tulad ng nakasulat sa https://github.com/leo-project/leofs_ansible walang build_leofs.yml

## Install LeoFS
$ ansible-playbook -i hosts install_leofs.yml

## Config LeoFS
$ ansible-playbook -i hosts config_leofs.yml

## Start LeoFS
$ ansible-playbook -i hosts start_leofs.yml

Sinusuri ang status ng cluster sa Primary LeoManager

leofs-adm status

Ang Primary at Secondary ay makikita sa ansible-playbook logs

Pag-install ng distributed fault-tolerant LeoFS object storage, tugma sa mga kliyente gamit ang S3, NFS

Pag-install ng distributed fault-tolerant LeoFS object storage, tugma sa mga kliyente gamit ang S3, NFS

Ang output ay magiging ganito

 [System Confiuration]
-----------------------------------+----------
 Item                              | Value    
-----------------------------------+----------
 Basic/Consistency level
-----------------------------------+----------
                    system version | 1.4.3
                        cluster Id | leofs_1
                             DC Id | dc_1
                    Total replicas | 2
          number of successes of R | 1
          number of successes of W | 1
          number of successes of D | 1
 number of rack-awareness replicas | 0
                         ring size | 2^128
-----------------------------------+----------
 Multi DC replication settings
-----------------------------------+----------
 [mdcr] max number of joinable DCs | 2
 [mdcr] total replicas per a DC    | 1
 [mdcr] number of successes of R   | 1
 [mdcr] number of successes of W   | 1
 [mdcr] number of successes of D   | 1
-----------------------------------+----------
 Manager RING hash
-----------------------------------+----------
                 current ring-hash | a0314afb
                previous ring-hash | a0314afb
-----------------------------------+----------

 [State of Node(s)]
-------+----------------------+--------------+---------+----------------+----------------+----------------------------
 type  |         node         |    state     | rack id |  current ring  |   prev ring    |          updated at         
-------+----------------------+--------------+---------+----------------+----------------+----------------------------
  S    | [email protected]      | running      |         | a0314afb       | a0314afb       | 2019-12-05 10:33:47 +0000
  S    | [email protected]      | running      |         | a0314afb       | a0314afb       | 2019-12-05 10:33:47 +0000
  S    | [email protected]      | running      |         | a0314afb       | a0314afb       | 2019-12-05 10:33:47 +0000
  S    | [email protected]      | attached     |         |                |                | 2019-12-05 10:33:58 +0000
  G    | [email protected]      | running      |         | a0314afb       | a0314afb       | 2019-12-05 10:33:49 +0000
  G    | [email protected]      | running      |         | a0314afb       | a0314afb       | 2019-12-05 10:33:49 +0000
-------+----------------------+--------------+---------+----------------+----------------+----------------------------

Paglikha ng isang gumagamit

Lumikha ng user ng leofs:

leofs-adm create-user leofs leofs

  access-key-id: 9c2615f32e81e6a1caf5
  secret-access-key: 8aaaa35c1ad78a2cbfa1a6cd49ba8aaeb3ba39eb

Listahan ng mga gumagamit:

leofs-adm get-users
user_id     | role_id | access_key_id          | created_at                
------------+---------+------------------------+---------------------------
_test_leofs | 9       | 05236                  | 2019-12-02 06:56:49 +0000
leofs       | 1       | 9c2615f32e81e6a1caf5   | 2019-12-02 10:43:29 +0000

Gumawa ng Bucket

Gumawa ng balde

leofs-adm add-bucket leofs 9c2615f32e81e6a1caf5
OK

Listahan ng bucket:

 leofs-adm get-buckets
cluster id   | bucket   | owner  | permissions      | created at                
-------------+----------+--------+------------------+---------------------------
leofs_1      | leofs    | leofs  | Me(full_control) | 2019-12-02 10:44:02 +0000

Pag-configure ng s3cmd

Sa larangan HTTP Proxy server name tukuyin ang Gateway server IP

s3cmd --configure 

Enter new values or accept defaults in brackets with Enter.
Refer to user manual for detailed description of all options.

Access key and Secret key are your identifiers for Amazon S3. Leave them empty for using the env variables.
Access Key [9c2615f32e81e6a1caf5]: 
Secret Key [8aaaa35c1ad78a2cbfa1a6cd49ba8aaeb3ba39eb]: 
Default Region [US]: 

Use "s3.amazonaws.com" for S3 Endpoint and not modify it to the target Amazon S3.
S3 Endpoint [s3.amazonaws.com]: 

Use "%(bucket)s.s3.amazonaws.com" to the target Amazon S3. "%(bucket)s" and "%(location)s" vars can be used
if the target S3 system supports dns based buckets.
DNS-style bucket+hostname:port template for accessing a bucket [%(bucket)s.s3.amazonaws.com]: leofs

Encryption password is used to protect your files from reading
by unauthorized persons while in transfer to S3
Encryption password: 
Path to GPG program [/usr/bin/gpg]: 

When using secure HTTPS protocol all communication with Amazon S3
servers is protected from 3rd party eavesdropping. This method is
slower than plain HTTP, and can only be proxied with Python 2.7 or newer
Use HTTPS protocol [No]: 

On some networks all internet access must go through a HTTP proxy.
Try setting it here if you can't connect to S3 directly
HTTP Proxy server name [172.26.9.180]: 
HTTP Proxy server port [8080]: 

New settings:
  Access Key: 9c2615f32e81e6a1caf5
  Secret Key: 8aaaa35c1ad78a2cbfa1a6cd49ba8aaeb3ba39eb
  Default Region: US
  S3 Endpoint: s3.amazonaws.com
  DNS-style bucket+hostname:port template for accessing a bucket: leofs
  Encryption password: 
  Path to GPG program: /usr/bin/gpg
  Use HTTPS protocol: False
  HTTP Proxy server name: 172.26.9.180
  HTTP Proxy server port: 8080

Test access with supplied credentials? [Y/n] Y
Please wait, attempting to list all buckets...
Success. Your access key and secret key worked fine :-)

Now verifying that encryption works...
Not configured. Never mind.

Save settings? [y/N] y
Configuration saved to '/home/user/.s3cfg'

Kung nakuha mo ang error ERROR: S3 error: 403 (AccessDenied): Access Denied:

s3cmd put test.py s3://leofs/
upload: 'test.py' -> 's3://leofs/test.py'  [1 of 1]
 382 of 382   100% in    0s     3.40 kB/s  done
ERROR: S3 error: 403 (AccessDenied): Access Denied

Pagkatapos ay kailangan mong baguhin ang signature_v3 sa True sa s2cmd config. Mga detalye dito problema.

Kung Mali ang signature_v2, magkakaroon ng error tulad nito:

WARNING: Retrying failed request: /?delimiter=%2F (getaddrinfo() argument 2 must be integer or string)
WARNING: Waiting 3 sec...
WARNING: Retrying failed request: /?delimiter=%2F (getaddrinfo() argument 2 must be integer or string)
WARNING: Waiting 6 sec...
ERROR: Test failed: Request failed for: /?delimiter=%2F

Pagsubok sa pag-load

Gumawa ng 1GB na file

fallocate -l 1GB 1gb

I-upload ito sa Leofs

time s3cmd put 1gb s3://leofs/
real    0m19.099s
user    0m7.855s
sys 0m1.620s

statistics

leofs-adm du para sa 1 node:

leofs-adm du [email protected]
 active number of objects: 156
  total number of objects: 156
   active size of objects: 602954495
    total size of objects: 602954495
     ratio of active size: 100.0%
    last compaction start: ____-__-__ __:__:__
      last compaction end: ____-__-__ __:__:__

Nakikita namin na ang konklusyon ay hindi masyadong nagbibigay-kaalaman.

Tingnan natin kung saan matatagpuan ang file na ito.
leofs-adm whereis leofs/1gb

leofs-adm whereis leofs/1gb
-------+----------------------+--------------------------------------+------------+--------------+----------------+----------------+----------------+----------------------------
 del?  |         node         |             ring address             |    size    |   checksum   |  has children  |  total chunks  |     clock      |             when            
-------+----------------------+--------------------------------------+------------+--------------+----------------+----------------+----------------+----------------------------
       | [email protected]      | 657a9f3a3db822a7f1f5050925b26270     |    976563K |   a4634eea55 | true           |             64 | 598f2aa976a4f  | 2019-12-05 10:48:15 +0000
       | [email protected]      | 657a9f3a3db822a7f1f5050925b26270     |    976563K |   a4634eea55 | true           |             64 | 598f2aa976a4f  | 2019-12-05 10:48:15 +0000

I-activate ang NFS

Ina-activate namin ang NFS sa Leo Gateway 172.26.9.184 server.

I-install ang nfs-utils sa server at client

sudo yum install nfs-utils

Ayon sa mga tagubilin, itatama namin ang configuration file /usr/local/leofs/current/leo_gateway/etc/leo_gateway.conf

protocol = nfs

Sa server 172.26.9.184 patakbuhin ang rpcbind at leofs-gateway

sudo service rpcbind start
sudo service leofs-gateway restart

Sa server kung saan tumatakbo si leo_manager, gumawa ng bucket para sa NFS at bumuo ng key para sa pagkonekta sa NFS

leofs-adm add-bucket test 05236
leofs-adm gen-nfs-mnt-key test 05236 ip-адрСс-nfs-ΠΊΠ»ΠΈΠ΅Π½Ρ‚Π°

Kumokonekta sa NFS

sudo mkdir /mnt/leofs
## for Linux - "sudo mount -t nfs -o nolock <host>:/<bucket>/<token> <dir>"
sudo mount -t nfs -o nolock ip-адрСс-nfs-сСрвСра-Ρ‚Π°ΠΌ-Π³Π΄Π΅-Ρƒ-вас-установлСн-gateway:/bucket/access_key_id/ΠΊΠ»ΡŽΡ‡-ΠΏΠΎΠ»ΡƒΡ‡Π΅Π½Π½Ρ‹ΠΉ-ΠΎΡ‚-gen-nfs-mnt-key /mnt/leofs
sudo mount -t nfs -o nolock 172.26.9.184:/test/05236/bb5034f0c740148a346ed663ca0cf5157efb439f /mnt/leofs

Tingnan ang espasyo sa disk sa pamamagitan ng NFS client

Disk space, isinasaalang-alang na ang bawat storage node ay may 40GB disk (3 running node, 1 attached node):

df -hP
Filesystem                                                         Size  Used Avail Use% Mounted on
172.26.9.184:/test/05236/e7298032e78749149dd83a1e366afb328811c95b   60G  3.6G   57G   6% /mnt/leofs

Pag-install ng LeoFS na may 6 na storage node.

Imbentaryo (walang tagabuo):

# Please check roles/common/vars/leofs_releases for available versions
[all:vars]
leofs_version=1.4.3
build_temp_path="/tmp/leofs_builder"
build_install_path="/tmp/"
build_branch="master"
source="package"

# nodename of leo_manager_0 and leo_manager_1 are set at group_vars/all
[leo_manager_0]
172.26.9.177

# nodename of leo_manager_0 and leo_manager_1 are set at group_vars/all
[leo_manager_1]
172.26.9.176

[leo_storage]
172.26.9.178 [email protected]
172.26.9.179 [email protected]
172.26.9.181 [email protected]
172.26.9.182 [email protected]
172.26.9.183 [email protected]
172.26.9.185 [email protected]

[leo_gateway]
172.26.9.180 [email protected]
172.26.9.184 [email protected]

[leofs_nodes:children]
leo_manager_0
leo_manager_1
leo_gateway
leo_storage

Output leofs-adm status

Output leofs-adm status

 [System Confiuration]
-----------------------------------+----------
 Item                              | Value    
-----------------------------------+----------
 Basic/Consistency level
-----------------------------------+----------
                    system version | 1.4.3
                        cluster Id | leofs_1
                             DC Id | dc_1
                    Total replicas | 2
          number of successes of R | 1
          number of successes of W | 1
          number of successes of D | 1
 number of rack-awareness replicas | 0
                         ring size | 2^128
-----------------------------------+----------
 Multi DC replication settings
-----------------------------------+----------
 [mdcr] max number of joinable DCs | 2
 [mdcr] total replicas per a DC    | 1
 [mdcr] number of successes of R   | 1
 [mdcr] number of successes of W   | 1
 [mdcr] number of successes of D   | 1
-----------------------------------+----------
 Manager RING hash
-----------------------------------+----------
                 current ring-hash | d8ff465e
                previous ring-hash | d8ff465e
-----------------------------------+----------

 [State of Node(s)]
-------+----------------------+--------------+---------+----------------+----------------+----------------------------
 type  |         node         |    state     | rack id |  current ring  |   prev ring    |          updated at         
-------+----------------------+--------------+---------+----------------+----------------+----------------------------
  S    | [email protected]      | running      |         | d8ff465e       | d8ff465e       | 2019-12-06 05:18:29 +0000
  S    | [email protected]      | running      |         | d8ff465e       | d8ff465e       | 2019-12-06 05:18:29 +0000
  S    | [email protected]      | running      |         | d8ff465e       | d8ff465e       | 2019-12-06 05:18:30 +0000
  S    | [email protected]      | running      |         | d8ff465e       | d8ff465e       | 2019-12-06 05:18:29 +0000
  S    | [email protected]      | running      |         | d8ff465e       | d8ff465e       | 2019-12-06 05:18:29 +0000
  S    | [email protected]      | running      |         | d8ff465e       | d8ff465e       | 2019-12-06 05:18:29 +0000
  G    | [email protected]      | running      |         | d8ff465e       | d8ff465e       | 2019-12-06 05:18:31 +0000
  G    | [email protected]      | running      |         | d8ff465e       | d8ff465e       | 2019-12-06 05:18:31 +0000
-------+----------------------+--------------+---------+----------------+----------------+----------------------------

Disk space, isinasaalang-alang na ang bawat storage node ay may 40GB disk (6 running node):

df -hP
Filesystem                                                         Size  Used Avail Use% Mounted on
172.26.9.184:/test/05236/e7298032e78749149dd83a1e366afb328811c95b  120G  3.6G  117G   3% /mnt/leofs

Kung 5 storage node ang ginamit

[leo_storage]
172.26.9.178 [email protected]
172.26.9.179 [email protected]
172.26.9.181 [email protected]
172.26.9.182 [email protected]
172.26.9.183 [email protected]

df -hP
172.26.9.184:/test/05236/e7298032e78749149dd83a1e366afb328811c95b  100G  3.0G   97G   3% /mnt/leofs

Mga log

Ang mga log ay matatagpuan sa mga direktoryo /usr/local/leofs/current/*/log

Telegram channel: SDS at Cluster FS

Pinagmulan: www.habr.com

Magdagdag ng komento