Preflight Checklist
New in version 0.60.
This Preflight Checklist will help you prepare an admin node for use withceph-deploy
, and server nodes for use with passwordless ssh
andsudo
.
Before you can deploy Ceph using ceph-deploy
, you need to ensure that youhave a few things set up first on your admin node and on nodes running Cephdaemons.
Install an Operating System
Install a recent release of Debian or Ubuntu (e.g., 16.04 LTS) onyour nodes. For additional details on operating systems or to use otheroperating systems other than Debian or Ubuntu, see OS Recommendations.
Install an SSH Server
The ceph-deploy
utility requires ssh
, so your server node(s) require anSSH server.
- sudo apt-get install openssh-server
Create a User
Create a user on nodes running Ceph daemons.
Tip
We recommend a username that brute force attackers won’tguess easily (e.g., something other than root
, ceph
, etc).
- ssh user@ceph-server
- sudo useradd -d /home/ceph -m ceph
- sudo passwd ceph
ceph-deploy
installs packages onto your nodes. This means thatthe user you create requires passwordless sudo
privileges.
Note
We DO NOT recommend enabling the root
passwordfor security reasons.
To provide full privileges to the user, add the following to/etc/sudoers.d/ceph
.
- echo "ceph ALL = (root) NOPASSWD:ALL" | sudo tee /etc/sudoers.d/ceph
- sudo chmod 0440 /etc/sudoers.d/ceph
Configure SSH
Configure your admin machine with password-less SSH access to each noderunning Ceph daemons (leave the passphrase empty).
- ssh-keygen
- Generating public/private key pair.
- Enter file in which to save the key (/ceph-client/.ssh/id_rsa):
- Enter passphrase (empty for no passphrase):
- Enter same passphrase again:
- Your identification has been saved in /ceph-client/.ssh/id_rsa.
- Your public key has been saved in /ceph-client/.ssh/id_rsa.pub.
Copy the key to each node running Ceph daemons:
- ssh-copy-id ceph@ceph-server
Modify your ~/.ssh/config file of your admin node so that it defaultsto logging in as the user you created when no username is specified.
- Host ceph-server
- Hostname ceph-server.fqdn-or-ip-address.com
- User ceph
Install ceph-deploy
To install ceph-deploy
, execute the following:
- wget -q -O- 'https://download.ceph.com/keys/release.asc' | sudo apt-key add -
- echo deb https://download.ceph.com/debian-nautilus/ $(lsb_release -sc) main | sudo tee /etc/apt/sources.list.d/ceph.list
- sudo apt-get update
- sudo apt-get install ceph-deploy
Ensure Connectivity
Ensure that your Admin node has connectivity to the network and to your Servernode (e.g., ensure iptables
, ufw
or other tools that may preventconnections, traffic forwarding, etc. to allow what you need).
Once you have completed this pre-flight checklist, you are ready to begin usingceph-deploy
.