X-Git-Url: https://git.openstreetmap.org./chef.git/blobdiff_plain/7108c794e6ce1a3ea78f3ac6ff8fd7ea3bdc62a3..82dbf98a3d5a2c17729b0e6d56b8065a83599c2e:/cookbooks/community/recipes/default.rb diff --git a/cookbooks/community/recipes/default.rb b/cookbooks/community/recipes/default.rb index 89743de31..c317b177b 100644 --- a/cookbooks/community/recipes/default.rb +++ b/cookbooks/community/recipes/default.rb @@ -19,13 +19,17 @@ include_recipe "accounts" include_recipe "docker" -include_recipe "geoipupdate" include_recipe "git" include_recipe "ssl" passwords = data_bag_item("community", "passwords") license_keys = data_bag_item("geoipupdate", "license-keys") unless kitchen? +# Disable any default installed apache2 service. Web server is embedded within the discourse docker container +service "apache2" do + action [:disable, :stop] +end + directory "/srv/community.openstreetmap.org" do owner "root" group "root" @@ -45,67 +49,92 @@ git "/srv/community.openstreetmap.org/docker" do depth 1 user "root" group "root" - notifies :run, "execute[discourse_container_data_rebuild]" - notifies :run, "execute[discourse_container_web_only_bootstrap]" - notifies :run, "execute[discourse_container_mail_receiver_rebuild]" + notifies :run, "notify_group[discourse_container_new_data]" + notifies :run, "notify_group[discourse_container_new_web_only]" + notifies :run, "notify_group[discourse_container_new_mail_receiver]" end template "/srv/community.openstreetmap.org/docker/containers/data.yml" do source "data.yml.erb" owner "root" group "root" - mode "644" + mode "640" variables :passwords => passwords - notifies :run, "execute[discourse_container_data_rebuild]" + notifies :run, "notify_group[discourse_container_new_data]" end template "/srv/community.openstreetmap.org/docker/containers/web_only.yml" do source "web_only.yml.erb" owner "root" group "root" - mode "644" + mode "640" variables :license_keys => license_keys, :passwords => passwords - notifies :run, "execute[discourse_container_web_only_bootstrap]" + notifies :run, "notify_group[discourse_container_new_web_only]" end template "/srv/community.openstreetmap.org/docker/containers/mail-receiver.yml" do source "mail-receiver.yml.erb" owner "root" group "root" - mode "644" + mode "640" variables :passwords => passwords - notifies :run, "execute[discourse_container_mail_receiver_rebuild]" -end - -# Destroy Bootstap Start -execute "discourse_container_data_rebuild" do - action :nothing - command "./launcher rebuild data" - cwd "/srv/community.openstreetmap.org/docker/" - user "root" - group "root" + notifies :run, "notify_group[discourse_container_new_mail_receiver]" end ssl_certificate "community.openstreetmap.org" do domains ["community.openstreetmap.org", "community.osm.org", "communities.openstreetmap.org", "communities.osm.org"] - notifies :run, "execute[discourse_container_web_only_bootstrap]" + notifies :run, "notify_group[discourse_container_new_web_only]" + notifies :run, "notify_group[discourse_container_new_mail_receiver]" end -execute "discourse_container_data_start" do +notify_group "discourse_container_new_web_only" do + notifies :run, "execute[discourse_container_data_start]", :immediately # noop if site up + notifies :run, "execute[discourse_container_web_only_bootstrap]", :immediately # site up but runs in parallel. Slow + notifies :run, "execute[discourse_container_web_only_destroy]", :immediately # site down + notifies :run, "execute[discourse_container_data_rebuild]", :immediately # site down + notifies :run, "execute[discourse_container_web_only_start]", :immediately # site restore +end + +notify_group "discourse_container_new_data" do + notifies :run, "execute[discourse_container_web_only_destroy]", :immediately # site down + notifies :run, "execute[discourse_container_data_rebuild]", :immediately # site down + notifies :run, "execute[discourse_container_web_only_start]", :immediately # site restore +end + +notify_group "discourse_container_new_mail_receiver" do + notifies :run, "execute[discourse_container_mail_receiver_rebuild]", :immediately +end + +# Attempt at a failsafe to ensure all containers are running +notify_group "discourse_container_ensure_all_running" do action :run + notifies :run, "execute[discourse_container_data_start]", :delayed + notifies :run, "execute[discourse_container_web_only_start]", :delayed + notifies :run, "execute[discourse_container_mail_receiver_start]", :delayed +end + +execute "discourse_container_data_start" do + action :nothing command "./launcher start data" cwd "/srv/community.openstreetmap.org/docker/" user "root" group "root" end +execute "discourse_container_data_rebuild" do + action :nothing + command "./launcher rebuild data" + cwd "/srv/community.openstreetmap.org/docker/" + user "root" + group "root" +end + execute "discourse_container_web_only_bootstrap" do action :nothing command "./launcher bootstrap web_only" cwd "/srv/community.openstreetmap.org/docker/" user "root" group "root" - notifies :run, "execute[discourse_container_web_only_destroy]", :immediately end execute "discourse_container_web_only_destroy" do @@ -114,19 +143,17 @@ execute "discourse_container_web_only_destroy" do cwd "/srv/community.openstreetmap.org/docker/" user "root" group "root" - notifies :run, "execute[discourse_container_web_only_start]", :immediately end execute "discourse_container_web_only_start" do - action :run + action :nothing command "./launcher start web_only" cwd "/srv/community.openstreetmap.org/docker/" user "root" group "root" - notifies :run, "execute[discourse_container_data_start]", :before end -# Destroy Bootstap Start +# Rebuild: Stop Destroy Bootstap Start execute "discourse_container_mail_receiver_rebuild" do action :nothing command "./launcher rebuild mail-receiver" @@ -135,6 +162,14 @@ execute "discourse_container_mail_receiver_rebuild" do group "root" end +execute "discourse_container_mail_receiver_start" do + action :nothing + command "./launcher start mail-receiver" + cwd "/srv/community.openstreetmap.org/docker/" + user "root" + group "root" +end + template "/etc/cron.daily/community-backup" do source "backup.cron.erb" owner "root"