X-Git-Url: https://git.openstreetmap.org/chef.git/blobdiff_plain/a98f185bb1612b38b9a2eaed85ac9711ca2afe9f..bd3a77ffbae2be8b346c4f1e0309790fdbb36a49:/cookbooks/planet/recipes/replication.rb diff --git a/cookbooks/planet/recipes/replication.rb b/cookbooks/planet/recipes/replication.rb index 883ab7225..2a3e65cb2 100644 --- a/cookbooks/planet/recipes/replication.rb +++ b/cookbooks/planet/recipes/replication.rb @@ -17,20 +17,23 @@ # limitations under the License. # +require "yaml" + include_recipe "accounts" include_recipe "osmosis" db_passwords = data_bag_item("db", "passwords") -package "postgresql-client" - -package "ruby" -package "ruby-dev" -package "ruby-libxml" - -package "make" -package "gcc" -package "libpq-dev" +package %w[ + postgresql-client + ruby + ruby-dev + ruby-libxml + make + gcc + libpq-dev + osmdbt +] gem_package "pg" @@ -63,6 +66,13 @@ remote_directory "/usr/local/bin" do files_mode "755" end +template "/usr/local/bin/replicate-minute" do + source "replicate-minute.erb" + owner "root" + group "root" + mode "755" +end + template "/usr/local/bin/users-agreed" do source "users-agreed.erb" owner "root" @@ -121,6 +131,37 @@ directory "/store/planet/replication/minute" do mode "755" end +directory "/store/planet/replication/test" do + owner "planet" + group "planet" + mode "755" +end + +directory "/store/planet/replication/test/minute" do + owner "planet" + group "planet" + mode "755" +end + +directory "/store/replication" do + owner "planet" + group "planet" + mode "755" +end + +directory "/store/replication/minute" do + owner "planet" + group "planet" + mode "755" +end + +systemd_tmpfile "/run/replication" do + type "d" + owner "planet" + group "planet" + mode "755" +end + directory "/etc/replication" do owner "root" group "root" @@ -141,6 +182,47 @@ template "/etc/replication/auth.conf" do variables :password => db_passwords["planetdiff"] end +osmdbt_config = { + "database" => { + "host" => node[:web][:database_host], + "dbname" => "openstreetmap", + "user" => "planetdiff", + "password" => db_passwords["planetdiff"], + "replication_slot" => "osmdbt" + }, + "log_dir" => "/var/lib/replication/minute", + "changes_dir" => "/store/planet/replication/test/minute", + "tmp_dir" => "/store/replication/minute", + "run_dir" => "/run/replication" +} + +file "/etc/replication/osmdbt-config.yaml" do + user "root" + group "planet" + mode "640" + content YAML.dump(osmdbt_config) +end + +systemd_service "replication-minutely" do + description "Minutely replication" + user "planet" + working_directory "/etc/replication" + exec_start "/usr/local/bin/replicate-minute" + private_tmp true + private_devices true + protect_system "full" + protect_home true + restrict_address_families %w[AF_INET AF_INET6] + no_new_privileges true +end + +systemd_timer "replication-minutely" do + description "Minutely replication" + on_boot_sec 60 + on_unit_active_sec 60 + accuracy_sec 5 +end + template "/etc/replication/changesets.conf" do source "changesets.conf.erb" user "root" @@ -163,6 +245,12 @@ directory "/var/lib/replication" do mode "755" end +directory "/var/lib/replication/minute" do + owner "planet" + group "planet" + mode "755" +end + directory "/var/lib/replication/hour" do owner "planet" group "planet" @@ -222,6 +310,10 @@ if node[:planet][:replication] == "enabled" mailto "zerebubuth@gmail.com" end + service "replication-minutely.timer" do + action [:enable, :start] + end + cron_d "replication-minutely" do user "planet" command "/usr/local/bin/osmosis -q --replicate-apidb authFile=/etc/replication/auth.conf validateSchemaVersion=false --write-replication workingDirectory=/store/planet/replication/minute" @@ -257,6 +349,10 @@ else action :delete end + service "replication-minutely.timer" do + action [:stop, :disable] + end + cron_d "replication-minutely" do action :delete end