summaryrefslogtreecommitdiffstats
path: root/keystone.yaml
blob: b17397a1bdf6546cad15a7c3f4f139eb5c5c0648 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
HeatTemplateFormatVersion: '2012-12-12'
Description: 'HEAT Template - Keystone'
Parameters:
  KeyName: 
    Description: Name of an existing EC2 KeyPair to enable SSH access to the instances
    Type: String
    Default: default
  InstanceType:
    Description: Use this flavor
    Type: String
    Default: bm.small
  KeystoneDSN:
    Description: DSN for connecting to keystone
    Type: String
  KeystoneImage:
    Type: String
Resources:
  ApiAccessPolicy:
    Type: OS::Heat::AccessPolicy
    Properties:
      AllowedResources: [ KeystoneLaunch, Keystone ]
  ApiUser:
    Type: AWS::IAM::User
    Properties:
      Policies: [ { Ref: ApiAccessPolicy } ]
  ApiKey:
    Type: AWS::IAM::AccessKey
    Properties:
      UserName:
        Ref: ApiUser
  KeystoneLaunch:
    Type: AWS::AutoScaling::LaunchConfiguration
    Properties:
      ImageId:
        {Ref: KeystoneImage}
      InstanceType: {Ref: InstanceType}
      KeyName: {Ref: KeyName}
    Metadata:
      OpenStack::Heat::CFNTools:
        AWSAccessKeyId:
          Ref: ApiKey
        AWSSecretAccessKey:
          Fn::GetAtt: [ ApiKey, SecretAccessKey ]
      OpenStack::ImageBuilder::Elements: [ keystone ]
      OpenStack:
        keystone:
          db: {Ref: KeystoneDSN}
  Keystone:
    Type: OS::Heat::InstanceGroup
    Properties:
      LaunchConfigurationName: { Ref: KeystoneLaunch }
      AvailabilityZones: [ 1 ]
      Size: '1'