8 # This wrapper implements the Geni Registry and Slice Interfaces on PLC.
9 # Depending on command line options, it starts some combination of a
10 # Registry, an Aggregate Manager, and a Slice Manager.
12 # There are several items that need to be done before starting the wrapper
15 # NOTE: Many configuration settings, including the PLC maintenance account
16 # credentials, URI of the PLCAPI, and PLC DB URI and admin credentials are initialized
17 # from your MyPLC configuration (/etc/planetlab/plc_config*). Please make sure this information
18 # is up to date and accurate.
20 # 1) Import the existing planetlab database, creating the
21 # appropriate geni records. This is done by running the "sfa-import-plc.py" tool.
23 # 2) Create a "trusted_roots" directory and place the certificate of the root
24 # authority in that directory. Given the defaults in sfa-import-plc.py, this
25 # certificate would be named "planetlab.gid". For example,
27 # mkdir trusted_roots; cp authorities/planetlab.gid trusted_roots/
29 # TODO: Can all three servers use the same "registry" certificate?
32 # TCP ports for the three servers
38 from optparse import OptionParser
40 from sfa.trust.trustedroot import TrustedRootList
41 from sfa.trust.certificate import Keypair, Certificate
43 from sfa.server.registry import Registry
44 from sfa.server.aggregate import Aggregate
45 from sfa.server.slicemgr import SliceMgr
47 from sfa.trust.hierarchy import Hierarchy
49 from sfa.util.config import Config
51 # after http://www.erlenstar.demon.co.uk/unix/faq_2.html
53 """Daemonize the current process."""
54 if os.fork() != 0: os._exit(0)
56 if os.fork() != 0: os._exit(0)
58 devnull = os.open(os.devnull, os.O_RDWR)
60 # xxx fixme - this is just to make sure that nothing gets stupidly lost - should use devnull
61 crashlog = os.open('/var/log/sfa.daemon', os.O_RDWR | os.O_APPEND | os.O_CREAT, 0644)
66 # xxx get rid of globals - name consistently CamelCase or under_score
73 # Generate command line parser
74 parser = OptionParser(usage="sfa-server [options]")
75 parser.add_option("-r", "--registry", dest="registry", action="store_true",
76 help="run registry server", default=False)
77 parser.add_option("-s", "--slicemgr", dest="sm", action="store_true",
78 help="run slice manager", default=False)
79 parser.add_option("-a", "--aggregate", dest="am", action="store_true",
80 help="run aggregate manager", default=False)
81 parser.add_option("-v", "--verbose", dest="verbose", action="store_true",
82 help="verbose mode", default=False)
83 parser.add_option("-d", "--daemon", dest="daemon", action="store_true",
84 help="Run as daemon.", default=False)
85 (options, args) = parser.parse_args()
87 hierarchy = Hierarchy()
88 path = hierarchy.basedir
89 key_file = os.path.join(path, "server.key")
90 cert_file = os.path.join(path, "server.cert")
92 # XX TODO: Subject should be the interfaces's hrn
94 if (options.daemon): daemon()
96 if (os.path.exists(key_file)) and (not os.path.exists(cert_file)):
97 # If private key exists and cert doesnt, recreate cert
98 key = Keypair(filename=key_file)
99 cert = Certificate(subject=subject)
100 cert.set_issuer(key=key, subject=subject)
103 cert.save_to_file(cert_file)
105 elif (not os.path.exists(key_file)) or (not os.path.exists(cert_file)):
106 # if no key is specified, then make one up
107 key = Keypair(create=True)
108 key.save_to_file(key_file)
109 cert = Certificate(subject=subject)
110 cert.set_issuer(key=key, subject=subject)
113 cert.save_to_file(cert_file)
115 AuthHierarchy = Hierarchy()
117 TrustedRoots = TrustedRootList(Config().get_trustedroots_dir())
119 # start registry server
120 if (options.registry):
121 r = Registry("", registry_port, key_file, cert_file)
122 #r.trusted_cert_list = TrustedRoots.get_list()
123 #r.hierarchy = AuthHierarchy
126 # start aggregate manager
128 a = Aggregate("", aggregate_port, key_file, cert_file)
129 #a.trusted_cert_list = TrustedRoots.get_list()
132 # start slice manager
134 s = SliceMgr("", slicemgr_port, key_file, cert_file)
135 #s.trusted_cert_list = TrustedRoots.get_list()
138 if __name__ == "__main__":