LNMP分布式剧本
- 一:环境设置
- 二:编写Nginx剧本
- 准备nginx下载源
- 准备配置文件并开放PHP的访问路径
- 准备php测试页面
- 编写nginx剧本
- 三:编写Mysql剧本
- 编写密码获取脚本
- 准备Mysql的yum源
- 编写mysql剧本
- 四:准备PHP剧本
- 准备两个配置文件
- 编写php剧本
一:环境设置
主机 | 部署应用 |
---|---|
192.168.52.100 | ansible |
192.168.52.110 | nginx |
192.168.52.120 | mysql |
192.168.52.130 | php |
二:编写Nginx剧本
准备nginx下载源
mkdir -p /etc/ansible/playbook/nginx
cd /etc/ansible/playbook/nginx
vim nginx.repo
[nginx-stable]
name=nginx stable repo
baseurl=http://nginx.org/packages/centos/7/$basearch/
gpgcheck=0
enabled=1
准备配置文件并开放PHP的访问路径
vim default.conf
...
location / {root /usr/share/nginx/html;index index.html index.htm index.php;# 添加Nginx.php匹配项}
....
location ~ \.php$ {root html;fastcgi_pass 192.168.52.130:9000; #执行php的服务器和端口fastcgi_index index.php;fastcgi_param SCRIPT_FILENAME /usr/share/nginx/html$fastcgi_script_name;include fastcgi_params;
准备php测试页面
vim /etc/ansible/playbook/nginx/index.php
<?php
phpinfo();
?>
编写nginx剧本
vim /etc/ansible/playbook/nginx/nginx.yml
- name: LAMP nginxhosts: webserversremote_user: roottasks:- name: stop firewalld #关闭防火墙service: name=firewalld state=stopped enabled=no- name: stop selinux #关闭selinuxcommand: '/usr/sbin/setenforce 0'ignore_errors: true- name: nginx.repo #准备Nginx的yum源copy: src=/etc/ansible/playbook/nginx/nginx.repo dest=/etc/yum.repos.d/nginx.repo- name: install nginx #下载nginxyum: name=nginx- name: start nginx #启动Nginxservice: name=nginx state=started enabled=yes- name: copy nginx.conf #修改配置文件copy: src=/etc/nginx/conf.d/default.conf dest=/etc/nginx/conf.d/default.confnotify: "restart nginx" #指定触发器- name: index.php #准备网页测试王建copy: src=/etc/ansible/playbook/nginx/index.php dest=/usr/share/nginx/htmlhandlers:- name: restart nginx #触发器任务,重启Nginxservice: name=nginx state=restarted
ansible-playbook nginx.yml
三:编写Mysql剧本
编写密码获取脚本
mkdir -p /etc/ansible/playbook/mysql
vim /etc/ansible/playbook/mysql/passwd.sh#!/bin/bash
#获取Mysql的密码
passd=$(grep "password" /var/log/mysqld.log | awk '{print $NF}' | head -1)
#更改密码
mysql -uroot -p"$passd" --connect-expired-password -e "ALTER USER 'root'@'localhost' IDENTIFIED BY 'Admin@123';"
#授权
mysql -uroot -pAdmin@123 -e "grant all privileges on *.* to root@'%' identified by 'Admin@123' with grant option;
准备Mysql的yum源
sed -i 's/gpgcheck=1/gpgcheck=0/' /etc/yum.repos.d/mysql-community.repo
编写mysql剧本
vim /etc/ansible/playbook/mysql/mysql.yml
- name: LAMP mysqlhosts: mysqlremote_user: roottasks:- name: stop firewalldservice: name=firewalld state=stopped enabled=no- name: stop selinuxcommand: '/usr/sbin/setenforce 0'ignore_errors: true- name: install mysql.repo #转变mysql瞎子啊源shell: wget https://repo.mysql.com/mysql57-community-release-el7-11.noarch.rpm && rpm -ivh mysql57-community-release-el7-11.noarch.rpmignore_errors: true- name: mysql.repo #修改yum源,把仓库打开copy: src=/etc/yum.repos.d/mysql-community.repo dest=/etc/yum.repos.d/mysql-community.repo- name: install mysql #下载mysqlyum: name=mysql-server- name: start msql #启动mysqlservice: name=mysqld state=started enabled=yes- name: grep passwd #指定修改密码脚本,修改密码并授权script: /etc/ansible/playbook/mysql/passwd.sh
ansible-playbook mysql.yml
四:准备PHP剧本
准备两个配置文件
php.ini
#添加修改时时区
date.timezone = Asia/Shanghai
www.conf文件
user = php
group = php
listen = 192.168.52.130:9000
listen.allowed_clients = 192.168.52.110
编写php剧本
vim //etc/ansible/playbook/php.yml
- name: LAMP nginxhosts: dbserversremote_user: roottasks:- name: stop firewalldservice: name=firewalld state=stopped enabled=no- name: stop selinuxcommand: '/usr/sbin/setenforce 0'ignore_errors: true- name: install php1 #准备php下载源shell: rpm -Uvh https://dl.fedoraproject.org/pub/epel/epel-release-latest-7.noarch.rpm && rpm -Uvh https://mirror.webtatic.com/yum/el7/webtatic-release.rpmignore_errors: true- name: install php2 #下载PHP及依赖包shell: yum -y install php72w php72w-cli php72w-common php72w-devel php72w-embedded php72w-gd php72w-mbstring php72w-pdo php72w-xml php72w-fpm php72w-mysqlnd php72w-opcacheignore_errors: true- name: start php #开启phpservice: name=php-fpm state=started enabled=yes- name: user php #创建运行用户user: name=php create_home=no shell=/sbin/nologin- name: php.ini #修改配置文件copy: src=/etc/ansible/playbook/php.ini dest=/etc/php.ini- name: www.confcopy: src=/etc/ansible/playbook/www.conf dest=/etc/php-fpm.d/www.conf- name: create nginxfile: name=/usr/share/nginx state=directory- name: create nginxfile: name=/usr/share/nginx/html state=directory- name: index.php #准备测试页面copy: src=/etc/ansible/playbook/nginx/index.php dest=/usr/share/nginx/html
ansible-playbook php.yml