vFW general improvements
[demo.git] / vnfs / vFW / scripts / v_firewall_install.sh
1 #!/bin/bash
2
3 REPO_URL_ARTIFACTS=$(cat /opt/config/repo_url_artifacts.txt)
4 DEMO_ARTIFACTS_VERSION=$(cat /opt/config/demo_artifacts_version.txt)
5 INSTALL_SCRIPT_VERSION=$(cat /opt/config/install_script_version.txt)
6 CLOUD_ENV=$(cat /opt/config/cloud_env.txt)
7
8 # Convert Network CIDR to Netmask
9 cdr2mask () {
10         # Number of args to shift, 255..255, first non-255 byte, zeroes
11         set -- $(( 5 - ($1 / 8) )) 255 255 255 255 $(( (255 << (8 - ($1 % 8))) & 255 )) 0 0 0
12         [ $1 -gt 1 ] && shift $1 || shift
13         echo ${1-0}.${2-0}.${3-0}.${4-0}
14 }
15
16 # OpenStack network configuration
17 if [[ $CLOUD_ENV == "openstack" ]]
18 then
19         echo 127.0.0.1 $(hostname) >> /etc/hosts
20
21         # Allow remote login as root
22         mv /root/.ssh/authorized_keys /root/.ssh/authorized_keys.bk
23         cp /home/ubuntu/.ssh/authorized_keys /root/.ssh
24
25         MTU=$(/sbin/ifconfig | grep MTU | sed 's/.*MTU://' | sed 's/ .*//' | sort -n | head -1)
26
27         IP=$(cat /opt/config/vfw_private_ip_0.txt)
28         BITS=$(cat /opt/config/unprotected_private_net_cidr.txt | cut -d"/" -f2)
29         NETMASK=$(cdr2mask $BITS)
30         echo "auto eth1" >> /etc/network/interfaces
31         echo "iface eth1 inet static" >> /etc/network/interfaces
32         echo "    address $IP" >> /etc/network/interfaces
33         echo "    netmask $NETMASK" >> /etc/network/interfaces
34         echo "    mtu $MTU" >> /etc/network/interfaces
35
36         IP=$(cat /opt/config/vfw_private_ip_1.txt)
37         BITS=$(cat /opt/config/protected_private_net_cidr.txt | cut -d"/" -f2)
38         NETMASK=$(cdr2mask $BITS)
39         echo "auto eth2" >> /etc/network/interfaces
40         echo "iface eth2 inet static" >> /etc/network/interfaces
41         echo "    address $IP" >> /etc/network/interfaces
42         echo "    netmask $NETMASK" >> /etc/network/interfaces
43         echo "    mtu $MTU" >> /etc/network/interfaces
44
45         IP=$(cat /opt/config/vfw_private_ip_2.txt)
46         BITS=$(cat /opt/config/onap_private_net_cidr.txt | cut -d"/" -f2)
47         NETMASK=$(cdr2mask $BITS)
48         echo "auto eth3" >> /etc/network/interfaces
49         echo "iface eth3 inet static" >> /etc/network/interfaces
50         echo "    address $IP" >> /etc/network/interfaces
51         echo "    netmask $NETMASK" >> /etc/network/interfaces
52         echo "    mtu $MTU" >> /etc/network/interfaces
53
54         ifup eth1
55         ifup eth2
56         ifup eth3
57 fi
58
59 # Download required dependencies
60 echo "deb http://ppa.launchpad.net/openjdk-r/ppa/ubuntu $(lsb_release -c -s) main" >>  /etc/apt/sources.list.d/java.list
61 echo "deb-src http://ppa.launchpad.net/openjdk-r/ppa/ubuntu $(lsb_release -c -s) main" >>  /etc/apt/sources.list.d/java.list
62 apt-get update
63 apt-get install --allow-unauthenticated -y make wget openjdk-8-jdk gcc libcurl4-openssl-dev python-pip bridge-utils apt-transport-https ca-certificates
64 pip install jsonschema
65
66 # Download artifacts for virtual firewall
67 mkdir /opt/honeycomb
68 cd /opt
69
70 unzip -p -j /opt/vfw-scripts-$INSTALL_SCRIPT_VERSION.zip v_firewall_init.sh > /opt/v_firewall_init.sh
71 unzip -p -j /opt/vfw-scripts-$INSTALL_SCRIPT_VERSION.zip vfirewall.sh > /opt/vfirewall.sh
72 wget $REPO_URL_ARTIFACTS/org/onap/demo/vnf/sample-distribution/$DEMO_ARTIFACTS_VERSION/sample-distribution-$DEMO_ARTIFACTS_VERSION-hc.tar.gz
73 wget $REPO_URL_ARTIFACTS/org/onap/demo/vnf/ves5/ves/$DEMO_ARTIFACTS_VERSION/ves-$DEMO_ARTIFACTS_VERSION-demo.tar.gz
74 wget $REPO_URL_ARTIFACTS/org/onap/demo/vnf/ves5/ves_vfw_reporting/$DEMO_ARTIFACTS_VERSION/ves_vfw_reporting-$DEMO_ARTIFACTS_VERSION-demo.tar.gz
75
76 tar -zmxvf ves-$DEMO_ARTIFACTS_VERSION-demo.tar.gz
77 mv ves-$DEMO_ARTIFACTS_VERSION VES
78 tar -zmxvf ves_vfw_reporting-$DEMO_ARTIFACTS_VERSION-demo.tar.gz
79 mv ves_vfw_reporting-$DEMO_ARTIFACTS_VERSION /opt/VES/evel/evel-library/code/VESreporting
80 tar -zmxvf sample-distribution-$DEMO_ARTIFACTS_VERSION-hc.tar.gz
81
82 mv sample-distribution-$DEMO_ARTIFACTS_VERSION honeycomb
83 sed -i 's/"restconf-binding-address": "127.0.0.1",/"restconf-binding-address": "0.0.0.0",/g' honeycomb/sample-distribution-$DEMO_ARTIFACTS_VERSION/config/honeycomb.json
84 rm *.tar.gz
85
86 chmod +x v_firewall_init.sh
87 chmod +x vfirewall.sh
88 chmod +x /opt/VES/evel/evel-library/code/VESreporting/go-client.sh
89
90 # Install VPP
91 export UBUNTU="trusty"
92 export RELEASE=".stable.1609"
93 rm /etc/apt/sources.list.d/99fd.io.list
94 echo "deb [trusted=yes] https://nexus.fd.io/content/repositories/fd.io$RELEASE.ubuntu.$UBUNTU.main/ ./" | sudo tee -a /etc/apt/sources.list.d/99fd.io.list
95 apt-get update
96 apt-get install -y vpp vpp-dpdk-dkms vpp-lib vpp-dbg vpp-plugins vpp-dev
97 sleep 1
98
99 # Install VES
100 cd /opt/VES/evel/evel-library/bldjobs/
101 make clean
102 make
103 sleep 1
104
105 # Run instantiation script
106 cd /opt
107 mv vfirewall.sh /etc/init.d
108 update-rc.d vfirewall.sh defaults
109 ./v_firewall_init.sh