CentOS Stream 9
OpenStack Caracal : Configure CloudKitty2024/08/08


Install OpenStack Rating Service (CloudKitty).

This example is based on the environment like follows.

            |                          |                          |
        eth0|             eth0|             eth0|
+-----------+-----------+  +-----------+-----------+  +-----------+-----------+
|   [ dlp.srv.world ]   |  | [ network.srv.world ] |  |  [ node01.srv.world ] |
|     (Control Node)    |  |     (Network Node)    |  |     (Compute Node)    |
|                       |  |                       |  |                       |
|  MariaDB    RabbitMQ  |  |      Open vSwitch     |  |        Libvirt        |
|  Memcached  Nginx     |  |     Neutron Server    |  |      Nova Compute     |
|  Keystone   httpd     |  |      OVN-Northd       |  |      Open vSwitch     |
|  Glance     Nova API  |  |  Nginx  iSCSI Target  |  |   OVN Metadata Agent  |
|  Cinder API           |  |     Cinder Volume     |  |     OVN-Controller    |
|                       |  |     Gnocchi httpd     |  |   Ceilometer Compute  |
|                       |  |   Ceilometer Central  |  |                       |
|                       |  |     CloudKitty API    |  |                       |
+-----------------------+  +-----------------------+  +-----------------------+

[1] Add users and others for CloudKitty in Keystone.
# create [cloudkitty] user in [service] project

[root@dlp ~(keystone)]#
openstack user create --domain default --project service --password servicepassword cloudkitty

| Field               | Value                            |
| default_project_id  | 0b826f1bf49d489494e94badc32f2cea |
| domain_id           | default                          |
| enabled             | True                             |
| id                  | 1a521129955443adb0eac2da5cc5a757 |
| name                | cloudkitty                       |
| options             | {}                               |
| password_expires_at | None                             |

# add [cloudkitty] user in [admin] role

[root@dlp ~(keystone)]#
openstack role add --project service --user cloudkitty admin
# create [rating] role

[root@dlp ~(keystone)]#
openstack role create rating
| Field       | Value                            |
| description | None                             |
| domain_id   | None                             |
| id          | b124627a63404cbb89cec596306ab1f3 |
| name        | rating                           |
| options     | {}                               |

# create service entry for [cloudkitty]

[root@dlp ~(keystone)]#
openstack service create --name cloudkitty --description "OpenStack Rating Service" rating

| Field       | Value                            |
| description | OpenStack Rating Service         |
| enabled     | True                             |
| id          | 46db36c504f14e7aaadd80877821aeef |
| name        | cloudkitty                       |
| type        | rating                           |

# set CloudKitty API Host

[root@dlp ~(keystone)]#
export cloudkitty_api=network.srv.world
# create endpoint for [cloudkitty] (public)

[root@dlp ~(keystone)]#
openstack endpoint create --region RegionOne rating public http://$cloudkitty_api:8889

| Field        | Value                            |
| enabled      | True                             |
| id           | 80afe213e5bc4610983ebc6f5648d264 |
| interface    | public                           |
| region       | RegionOne                        |
| region_id    | RegionOne                        |
| service_id   | 46db36c504f14e7aaadd80877821aeef |
| service_name | cloudkitty                       |
| service_type | rating                           |
| url          | http://network.srv.world:8889    |

# create endpoint for [cloudkitty] (internal)

[root@dlp ~(keystone)]#
openstack endpoint create --region RegionOne rating internal http://$cloudkitty_api:8889

| Field        | Value                            |
| enabled      | True                             |
| id           | bbc86d0d9ac74b7ca38b4e19d60891b5 |
| interface    | internal                         |
| region       | RegionOne                        |
| region_id    | RegionOne                        |
| service_id   | 46db36c504f14e7aaadd80877821aeef |
| service_name | cloudkitty                       |
| service_type | rating                           |
| url          | http://network.srv.world:8889    |

# create endpoint for [cloudkitty] (admin)

[root@dlp ~(keystone)]#
openstack endpoint create --region RegionOne rating admin http://$cloudkitty_api:8889

| Field        | Value                            |
| enabled      | True                             |
| id           | 4a19b7f9f83a4538b9439475d1644524 |
| interface    | admin                            |
| region       | RegionOne                        |
| region_id    | RegionOne                        |
| service_id   | 46db36c504f14e7aaadd80877821aeef |
| service_name | cloudkitty                       |
| service_type | rating                           |
| url          | http://network.srv.world:8889    |
[2] Add a User and Database on MariaDB for CloudKitty.
[root@dlp ~(keystone)]#

Welcome to the MariaDB monitor.  Commands end with ; or \g.
Your MariaDB connection id is 24229
Server version: 10.5.22-MariaDB MariaDB Server

Copyright (c) 2000, 2018, Oracle, MariaDB Corporation Ab and others.

Type 'help;' or '\h' for help. Type '\c' to clear the current input statement.

MariaDB [(none)]> create database cloudkitty; 
Query OK, 1 row affected (0.00 sec)

MariaDB [(none)]> grant all privileges on cloudkitty.* to cloudkitty@'localhost' identified by 'password'; 
Query OK, 0 rows affected (0.00 sec)

MariaDB [(none)]> grant all privileges on cloudkitty.* to cloudkitty@'%' identified by 'password'; 
Query OK, 0 rows affected (0.00 sec)

MariaDB [(none)]> exit 
[3] Install CloudKitty on Network Node.
# install from Caracal, EPEL, CRB

[root@network ~]#
dnf --enablerepo=centos-openstack-caracal,epel,crb -y install openstack-cloudkitty-api openstack-cloudkitty-processor python3-cloudkittyclient python3-datetimerange
[4] Configure CloudKitty.
[root@network ~]#
mv /etc/cloudkitty/cloudkitty.conf /etc/cloudkitty/cloudkitty.conf.org

[root@network ~]#
vi /etc/cloudkitty/cloudkitty.conf
# create new

log_dir = /var/log/cloudkitty
transport_url = rabbit://openstack:password@dlp.srv.world
auth_strategy = keystone

collector = gnocchi
# set period for rating
# default is 3600 (sec)
# * following short period is for testing one
period = 600
metrics_conf = /etc/cloudkitty/metrics.yml

auth_section = keystone_authtoken
region_name = RegionOne

# MariaDB connection info
connection = mysql+pymysql://cloudkitty:password@dlp.srv.world/cloudkitty

backend = gnocchi

auth_section = keystone_authtoken
region_name = RegionOne

keystone_version = 3
auth_section = keystone_authtoken
region_name = RegionOne

# Keystone auth info
www_authenticate_uri = https://dlp.srv.world:5000/v3
auth_url = https://dlp.srv.world:5000/v3
memcached_servers = dlp.srv.world:11211
auth_type = password
project_domain_name = Default
user_domain_name = Default
project_name = service
username = cloudkitty
password = servicepassword
region_name = RegionOne
service_token_roles_required = true
# if using self-signed certs on Apache2 Keystone, turn to [true]
insecure = false

driver = messagingv2
transport_url = rabbit://openstack:password@dlp.srv.world

backend = sqlalchemy
version = 1

# MariaDB connection info
coordination_url = mysql://cloudkitty:password@dlp.srv.world/cloudkitty

[root@network ~]#
mv /etc/cloudkitty/metrics.yml /etc/cloudkitty/metrics.yml.org

[root@network ~]#
vi /etc/cloudkitty/metrics.yml
# create new

    unit: instance
    alt_name: instance
      - id
      - user_id
      - project_id
      - flavor_name
      - flavor_id
      - vcpus
    mutate: NUMBOOL
      aggregation_method: mean
      resource_type: instance
      force_granularity: 300

    unit: GiB
      - id
      - user_id
      - project_id
      - volume_type
      aggregation_method: mean
      resource_type: volume
      force_granularity: 300

[root@network ~]#
vi /etc/httpd/conf.d/10-cloudkitty_wsgi.conf
# create new

Listen 8889
<VirtualHost *:8889>
    <Directory /usr/bin>
        AllowOverride None
        Require all granted

    CustomLog /var/log/httpd/cloudkitty_wsgi_access.log combined
    ErrorLog /var/log/httpd/cloudkitty_wsgi_error.log
    WSGIApplicationGroup %{GLOBAL}
    WSGIDaemonProcess cloudkitty display-name=cloudkitty_wsgi user=cloudkitty group=cloudkitty processes=6 threads=6
    WSGIProcessGroup cloudkitty
    WSGIScriptAlias / /usr/bin/cloudkitty-api

[root@network ~]#
chmod 640 /etc/cloudkitty/{cloudkitty.conf,metrics.yml}

[root@network ~]#
chgrp cloudkitty /etc/cloudkitty/{cloudkitty.conf,metrics.yml}

[root@network ~]#
su -s /bin/bash cloudkitty -c "cloudkitty-dbsync upgrade"

[root@network ~]#
su -s /bin/bash cloudkitty -c "cloudkitty-storage-init"

[root@network ~]#
systemctl restart httpd

[root@network ~]#
systemctl enable --now cloudkitty-processor

[5] If Firewalld is running, allow service port.
[root@network ~]#
firewall-cmd --add-port=8889/tcp

[root@network ~]#
firewall-cmd --runtime-to-permanent

[6] Verify state on Control Node.
[root@dlp ~(keystone)]#
dnf --enablerepo=centos-openstack-caracal,epel,crb -y install python3-cloudkittyclient

[root@dlp ~(keystone)]#
openstack rating summary get

| Tenant ID                        | Resource Type | Rate | Begin Time          | End Time            |
| b62e60c6d4b7406a90eee2f2d9c45917 | ALL           | 0    | 2024-08-01T00:00:00 | 2024-09-01T00:00:00 |
Matched Content