uninstall.yml 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572
  1. # This deletes *ALL* Origin and OpenShift Enterprise content installed by
  2. # ansible. This includes:
  3. #
  4. # configuration
  5. # containers
  6. # example templates and imagestreams
  7. # images
  8. # RPMs
  9. ---
  10. - hosts: OSEv3:children
  11. become: yes
  12. tasks:
  13. - name: Detecting Operating System
  14. shell: ls /run/ostree-booted
  15. ignore_errors: yes
  16. failed_when: false
  17. register: ostree_output
  18. # Since we're not calling openshift_facts we'll do this for now
  19. - set_fact:
  20. is_atomic: "{{ ostree_output.rc == 0 }}"
  21. - set_fact:
  22. is_containerized: "{{ is_atomic or containerized | default(false) | bool }}"
  23. # Stop services on all hosts prior to removing files.
  24. - hosts: nodes
  25. become: yes
  26. tasks:
  27. - name: Remove dnsmasq dispatcher
  28. file:
  29. path: "{{ item }}"
  30. state: absent
  31. with_items:
  32. - /etc/dnsmasq.d/origin-dns.conf
  33. - /etc/dnsmasq.d/origin-upstream-dns.conf
  34. - /etc/dnsmasq.d/openshift-ansible.conf
  35. - /etc/NetworkManager/dispatcher.d/99-origin-dns.sh
  36. - service:
  37. name: NetworkManager
  38. state: restarted
  39. - name: Stop services
  40. service: name={{ item }} state=stopped
  41. with_items:
  42. - atomic-openshift-node
  43. - openshift-node
  44. - openvswitch
  45. - origin-node
  46. failed_when: false
  47. - hosts: masters
  48. become: yes
  49. tasks:
  50. - name: Stop services
  51. service: name={{ item }} state=stopped
  52. with_items:
  53. - atomic-openshift-master
  54. - atomic-openshift-master-api
  55. - atomic-openshift-master-controllers
  56. - openshift-master
  57. - openshift-master-api
  58. - openshift-master-controllers
  59. - origin-master
  60. - origin-master-api
  61. - origin-master-controllers
  62. - pcsd
  63. failed_when: false
  64. - hosts: etcd
  65. become: yes
  66. tasks:
  67. - name: Stop services
  68. service: name={{ item }} state=stopped
  69. with_items:
  70. - etcd
  71. failed_when: false
  72. - hosts: lb
  73. become: yes
  74. tasks:
  75. - name: Stop services
  76. service: name={{ item }} state=stopped
  77. with_items:
  78. - haproxy
  79. failed_when: false
  80. - hosts: nodes
  81. become: yes
  82. vars:
  83. node_dirs:
  84. - "/etc/origin"
  85. - "/var/lib/origin"
  86. tasks:
  87. - name: unmask services
  88. command: systemctl unmask "{{ item }}"
  89. changed_when: False
  90. failed_when: False
  91. with_items:
  92. - firewalld
  93. - block:
  94. - block:
  95. - name: Remove packages
  96. package: name={{ item }} state=absent
  97. with_items:
  98. - atomic-openshift
  99. - atomic-openshift-clients
  100. - atomic-openshift-excluder
  101. - atomic-openshift-docker-excluder
  102. - atomic-openshift-node
  103. - atomic-openshift-sdn-ovs
  104. - cockpit-bridge
  105. - cockpit-docker
  106. - cockpit-system
  107. - cockpit-ws
  108. - kubernetes-client
  109. - openshift
  110. - openshift-node
  111. - openshift-sdn
  112. - openshift-sdn-ovs
  113. - openvswitch
  114. - origin
  115. - origin-excluder
  116. - origin-docker-excluder
  117. - origin-clients
  118. - origin-node
  119. - origin-sdn-ovs
  120. - tuned-profiles-openshift-node
  121. - tuned-profiles-origin-node
  122. - name: Remove flannel package
  123. package: name=flannel state=absent
  124. when: openshift_use_flannel | default(false) | bool
  125. when: not is_atomic | bool
  126. - shell: systemctl reset-failed
  127. changed_when: False
  128. - shell: systemctl daemon-reload
  129. changed_when: False
  130. - name: Remove br0 interface
  131. shell: ovs-vsctl del-br br0
  132. changed_when: False
  133. failed_when: False
  134. - name: Remove linux interfaces
  135. shell: ip link del "{{ item }}"
  136. changed_when: False
  137. failed_when: False
  138. with_items:
  139. - lbr0
  140. - vlinuxbr
  141. - vovsbr
  142. - name: Remove virtual devices
  143. command: nmcli delete device "{{ item }}"
  144. failed_when: False
  145. with_items:
  146. - tun0
  147. - docker0
  148. when: openshift_remove_all | default(true) | bool
  149. - shell: atomic uninstall "{{ item }}"-master-api
  150. changed_when: False
  151. failed_when: False
  152. with_items:
  153. - openshift-enterprise
  154. - origin
  155. - shell: atomic uninstall "{{ item }}"-master-controllers
  156. changed_when: False
  157. failed_when: False
  158. with_items:
  159. - openshift-enterprise
  160. - origin
  161. - shell: atomic uninstall "{{ item }}"-master
  162. changed_when: False
  163. failed_when: False
  164. with_items:
  165. - openshift-enterprise
  166. - origin
  167. - shell: atomic uninstall "{{ item }}"-node
  168. changed_when: False
  169. failed_when: False
  170. with_items:
  171. - openshift-enterprise
  172. - origin
  173. - shell: atomic uninstall "{{ item }}"
  174. changed_when: False
  175. failed_when: False
  176. with_items:
  177. - etcd
  178. - openvswitch
  179. - shell: find /var/lib/origin/openshift.local.volumes -type d -exec umount {} \; 2>/dev/null || true
  180. changed_when: False
  181. - shell: docker rm -f "{{ item }}"-master "{{ item }}"-node
  182. changed_when: False
  183. failed_when: False
  184. with_items:
  185. - openshift-enterprise
  186. - origin
  187. - shell: docker ps -a | grep Exited | egrep "{{ item }}" | awk '{print $1}'
  188. changed_when: False
  189. failed_when: False
  190. register: exited_containers_to_delete
  191. with_items:
  192. - openshift3/ose
  193. - openshift3/node
  194. - openshift3/openvswitch
  195. - openshift/origin
  196. - shell: "docker rm {{ item.stdout_lines | join(' ') }}"
  197. changed_when: False
  198. failed_when: False
  199. with_items: "{{ exited_containers_to_delete.results }}"
  200. - block:
  201. - block:
  202. - shell: docker images | egrep {{ item }} | awk '{ print $3 }'
  203. changed_when: False
  204. failed_when: False
  205. register: images_to_delete
  206. with_items:
  207. - registry\.access\..*redhat\.com/openshift3
  208. - registry\.qe\.openshift\.com/.*
  209. - registry\.access\..*redhat\.com/rhel7/etcd
  210. - docker.io/openshift
  211. - shell: "docker rmi -f {{ item.stdout_lines | join(' ') }}"
  212. changed_when: False
  213. failed_when: False
  214. with_items: "{{ images_to_delete.results }}"
  215. when: openshift_uninstall_images | default(True) | bool
  216. - name: remove sdn drop files
  217. file:
  218. path: /run/openshift-sdn
  219. state: absent
  220. - name: Remove files owned by RPMs
  221. file: path={{ item }} state=absent
  222. with_items:
  223. - /etc/sysconfig/openshift-node
  224. - /etc/sysconfig/openvswitch
  225. - /run/openshift-sdn
  226. when: openshift_remove_all | default(True) | bool
  227. - find: path={{ item }} file_type=file
  228. register: files
  229. with_items:
  230. - "{{ node_dirs }}"
  231. - find: path={{ item }} file_type=directory
  232. register: directories
  233. with_items:
  234. - "{{ node_dirs }}"
  235. - file: path={{ item.1.path }} state=absent
  236. with_subelements:
  237. - "{{ files.results | default([]) }}"
  238. - files
  239. - file: path={{ item.1.path }} state=absent
  240. with_subelements:
  241. - "{{ directories.results | default([]) }}"
  242. - files
  243. - shell: systemctl daemon-reload
  244. changed_when: False
  245. - name: restart container-engine
  246. service: name=container-engine state=stopped enabled=no
  247. failed_when: false
  248. register: container_engine
  249. - name: restart docker
  250. service: name=docker state=stopped enabled=no
  251. failed_when: false
  252. when: not (container_engine | changed)
  253. register: l_docker_restart_docker_in_pb_result
  254. until: not l_docker_restart_docker_in_pb_result | failed
  255. retries: 3
  256. delay: 30
  257. - name: Remove remaining files
  258. file: path={{ item }} state=absent
  259. with_items:
  260. - /etc/ansible/facts.d/openshift.fact
  261. - /etc/openshift
  262. - /etc/openshift-sdn
  263. - /etc/pki/ca-trust/source/anchors/openshift-ca.crt
  264. - /etc/sysconfig/atomic-openshift-node
  265. - /etc/sysconfig/atomic-openshift-node-dep
  266. - /etc/sysconfig/openshift-node-dep
  267. - /etc/sysconfig/origin-node
  268. - /etc/sysconfig/origin-node
  269. - /etc/sysconfig/origin-node-dep
  270. - /etc/systemd/system/atomic-openshift-node-dep.service
  271. - /etc/systemd/system/atomic-openshift-node.service
  272. - /etc/systemd/system/atomic-openshift-node.service.wants
  273. - /etc/systemd/system/docker.service.d/docker-sdn-ovs.conf
  274. - /etc/systemd/system/openvswitch.service
  275. - /etc/systemd/system/origin-node-dep.service
  276. - /etc/systemd/system/origin-node.service
  277. - /etc/systemd/system/origin-node.service.wants
  278. - /var/lib/docker
  279. - name: Rebuild ca-trust
  280. command: update-ca-trust
  281. - name: Reset Docker proxy configuration
  282. lineinfile:
  283. state=absent
  284. dest=/etc/sysconfig/docker
  285. regexp='(NO_PROXY|HTTP_PROXY|HTTPS_PROXY)=.*'
  286. - name: Reset Docker registry configuration
  287. lineinfile:
  288. state=absent
  289. dest=/etc/sysconfig/docker
  290. regexp='(ADD_REGISTRY|BLOCK_REGISTRY|INSECURE_REGISTRY)=.*'
  291. - name: Detect Docker storage configuration
  292. shell: vgs -o name | grep docker
  293. register: docker_vg_name
  294. failed_when: false
  295. changed_when: false
  296. - name: Wipe out Docker storage contents
  297. command: vgremove -f {{ item }}
  298. with_items: "{{ docker_vg_name.stdout_lines }}"
  299. when: docker_vg_name.rc == 0
  300. - name: Wipe out Docker storage configuration
  301. file: path=/etc/sysconfig/docker-storage state=absent
  302. when: docker_vg_name.rc == 0
  303. - hosts: masters
  304. become: yes
  305. vars:
  306. master_dirs:
  307. - "/etc/origin"
  308. - "/var/lib/origin"
  309. tasks:
  310. - name: unmask services
  311. command: systemctl unmask "{{ item }}"
  312. changed_when: False
  313. failed_when: False
  314. with_items:
  315. - firewalld
  316. - atomic-openshift-master
  317. - name: Remove packages
  318. package: name={{ item }} state=absent
  319. when: not is_atomic | bool and openshift_remove_all | default(True) | bool
  320. with_items:
  321. - atomic-openshift
  322. - atomic-openshift-clients
  323. - atomic-openshift-excluder
  324. - atomic-openshift-docker-excluder
  325. - atomic-openshift-master
  326. - cockpit-bridge
  327. - cockpit-docker
  328. - cockpit-system
  329. - cockpit-ws
  330. - corosync
  331. - kubernetes-client
  332. - openshift
  333. - openshift-master
  334. - origin
  335. - origin-clients
  336. - origin-excluder
  337. - origin-docker-excluder
  338. - origin-master
  339. - pacemaker
  340. - pcs
  341. - shell: systemctl reset-failed
  342. changed_when: False
  343. - shell: systemctl daemon-reload
  344. changed_when: False
  345. - name: Remove files owned by RPMs
  346. file: path={{ item }} state=absent
  347. when: openshift_remove_all | default(True) | bool
  348. with_items:
  349. - /etc/sysconfig/atomic-openshift-master
  350. - /etc/sysconfig/openvswitch
  351. - find: path={{ item }} file_type=file
  352. register: files
  353. with_items:
  354. - "{{ master_dirs }}"
  355. - find: path={{ item }} file_type=directory
  356. register: directories
  357. with_items:
  358. - "{{ master_dirs }}"
  359. - file: path={{ item.1.path }} state=absent
  360. with_subelements:
  361. - "{{ files.results | default([]) }}"
  362. - files
  363. - file: path={{ item.1.path }} state=absent
  364. with_subelements:
  365. - "{{ directories.results | default([]) }}"
  366. - files
  367. - set_fact:
  368. client_users: "{{ [ansible_ssh_user, 'root'] | unique }}"
  369. - name: Remove client kubeconfigs
  370. file:
  371. path: "~{{ item }}/.kube"
  372. state: absent
  373. with_items:
  374. - "{{ client_users }}"
  375. - name: Remove remaining files
  376. file: path={{ item }} state=absent
  377. with_items:
  378. - /etc/ansible/facts.d/openshift.fact
  379. - /etc/corosync
  380. - /etc/openshift
  381. - /etc/openshift-sdn
  382. - /etc/systemd/system/atomic-openshift-master.service
  383. - /etc/systemd/system/atomic-openshift-master-api.service
  384. - /etc/systemd/system/atomic-openshift-master-controllers.service
  385. - /etc/systemd/system/origin-master.service
  386. - /etc/systemd/system/origin-master-api.service
  387. - /etc/systemd/system/origin-master-controllers.service
  388. - /etc/systemd/system/openvswitch.service
  389. - /etc/sysconfig/atomic-openshift-master-api
  390. - /etc/sysconfig/atomic-openshift-master-controllers
  391. - /etc/sysconfig/origin-master
  392. - /etc/sysconfig/origin-master-api
  393. - /etc/sysconfig/origin-master-controllers
  394. - /etc/sysconfig/openshift-master
  395. - /etc/sysconfig/origin-master
  396. - /etc/sysconfig/origin-master-api
  397. - /etc/sysconfig/origin-master-controllers
  398. - /usr/share/openshift/examples
  399. - /var/lib/pacemaker
  400. - /var/lib/pcsd
  401. - /usr/lib/systemd/system/atomic-openshift-master-api.service
  402. - /usr/lib/systemd/system/atomic-openshift-master-controllers.service
  403. - /usr/lib/systemd/system/origin-master-api.service
  404. - /usr/lib/systemd/system/origin-master-controllers.service
  405. - /usr/local/bin/openshift
  406. - /usr/local/bin/oadm
  407. - /usr/local/bin/oc
  408. - /usr/local/bin/kubectl
  409. - /etc/flannel
  410. # Since we are potentially removing the systemd unit files for separated
  411. # master-api and master-controllers services, so we need to reload the
  412. # systemd configuration manager
  413. - name: Reload systemd manager configuration
  414. command: systemctl daemon-reload
  415. - hosts: etcd
  416. become: yes
  417. vars:
  418. etcd_dirs:
  419. - "/etc/etcd"
  420. - "/var/lib/etcd"
  421. tasks:
  422. - name: unmask services
  423. command: systemctl unmask "{{ item }}"
  424. changed_when: False
  425. failed_when: False
  426. with_items:
  427. - etcd
  428. - etcd3
  429. - firewalld
  430. - name: Stop additional atomic services
  431. service: name={{ item }} state=stopped
  432. when: is_containerized | bool
  433. with_items:
  434. - etcd_container
  435. failed_when: false
  436. - name: Remove packages
  437. package: name={{ item }} state=absent
  438. when: not is_atomic | bool and openshift_remove_all | default(True) | bool
  439. with_items:
  440. - etcd
  441. - etcd3
  442. - shell: systemctl reset-failed
  443. changed_when: False
  444. - shell: systemctl daemon-reload
  445. changed_when: False
  446. - find: path={{ item }} file_type=file
  447. register: files
  448. with_items:
  449. - "{{ etcd_dirs }}"
  450. - find: path={{ item }} file_type=directory
  451. register: directories
  452. with_items:
  453. - "{{ etcd_dirs }}"
  454. - file: path={{ item.1.path }} state=absent
  455. with_subelements:
  456. - "{{ files.results | default([]) }}"
  457. - files
  458. - file: path={{ item.1.path }} state=absent
  459. with_subelements:
  460. - "{{ directories.results | default([]) }}"
  461. - files
  462. # Intenationally using rm command over file module because if someone had mounted a filesystem
  463. # at /var/lib/etcd then the contents was not removed correctly
  464. - name: Remove etcd data
  465. shell: rm -rf /var/lib/etcd/*
  466. args:
  467. warn: no
  468. failed_when: false
  469. - name: Remove remaining files
  470. file: path={{ item }} state=absent
  471. with_items:
  472. - /etc/ansible/facts.d/openshift.fact
  473. - /etc/systemd/system/etcd_container.service
  474. - /etc/profile.d/etcdctl.sh
  475. - hosts: lb
  476. become: yes
  477. tasks:
  478. - name: unmask services
  479. command: systemctl unmask "{{ item }}"
  480. changed_when: False
  481. failed_when: False
  482. with_items:
  483. - firewalld
  484. - name: Remove packages
  485. package: name={{ item }} state=absent
  486. when: not is_atomic | bool and openshift_remove_all | default(True) | bool
  487. with_items:
  488. - haproxy
  489. - shell: systemctl reset-failed
  490. changed_when: False
  491. - shell: systemctl daemon-reload
  492. changed_when: False
  493. - name: Remove remaining files
  494. file: path={{ item }} state=absent
  495. with_items:
  496. - /etc/ansible/facts.d/openshift.fact
  497. - /var/lib/haproxy/stats
  498. # Here we remove only limits.conf rather than directory, as users may put their files.
  499. # - /etc/systemd/system/haproxy.service.d
  500. - /etc/systemd/system/haproxy.service.d/limits.conf
  501. - /etc/systemd/system/haproxy.service