Skip to content

devopxteam/salt-formula-mysql

 
 

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

25 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

MySQL

MySQL is the world's second most widely used open-source relational database management system (RDBMS).

Sample pillars

Standalone servers

Standalone MySQL server

mysql:
  server:
    enabled: true
    version: '5.5'
    admin:
      user: root
      password: pass
    bind:
      address: '127.0.0.1'
      port: 3306
    database:
      name:
        encoding: 'utf8'
        users:
        - name: 'username'
          password: 'password'
          host: 'localhost'
          rights: 'all privileges'

MySQL replication master with SSL

mysql:
  server:
    enabled: true
    version: 5.5
    replication:
      role: master
    ssl:
      enabled: true
      authority: Org_CA
      certificate: name_of_service
    admin:
      user: root
      password: pass
    bind:
      address: '127.0.0.1'
      port: 3306

MySQL replication slave with SSL

mysql:
  server:
    enabled: true
    version: '5.5'
    replication:
      role: slave
      master: master.salt.id
    ssl:
      enabled: true
      authority: Org_CA
      certificate: name_of_service
      client_certificate: name_of_client_cert
    admin:
      user: root
      password: pass
    bind:
      address: '127.0.0.1'
      port: 3306

Tuned up MySQL server

mysql:
  server:
    enabled: true
    version: '5.5'
    admin:
      user: root
      password: pass
    bind:
      address: '127.0.0.1'
      port: 3306
    key_buffer: 250M
    max_allowed_packet: 32M
    max_connections: 1000
    thread_stack: 512K
    thread_cache_size: 64
    query_cache_limit: 16M
    query_cache_size: 96M
    force_encoding: utf8
    sql_mode: "ONLY_FULL_GROUP_BY,STRICT_TRANS_TABLES,NO_ZERO_IN_DATE,ERROR_FOR_DIVISION_BY_ZERO,NO_AUTO_CREATE_USER,NO_ENGINE_SUBSTITUTION"
    database:
      name:
        encoding: 'utf8'
        users:
        - name: 'username'
          password: 'password'
          host: 'localhost'
          rights: 'all privileges'

MySQL galera cluster

MySQL Galera cluster is configured for ring connection between 3 nodes. Each node should have just one member.

Galera initial server (master)

mysql:
  cluster:
    enabled: true
    name: openstack
    role:master
    bind:
      address: 192.168.0.1
    members:
    - host: 192.168.0.1
      port: 4567
    user:
      name: wsrep_sst
      password: password
 server:
    enabled: true
    version: 5.5
    admin:
      user: root
      password: pass
    bind:
      address: 192.168.0.1
    database:
      name:
        encoding: 'utf8'
        users:
        - name: 'username'
          password: 'password'
          host: 'localhost'
          rights: 'all privileges'

Database management

User, Database management on independent mysql server

mysql:
  server:
    admin:
      user: root
      password: pass
    database:
      name:
        encoding: 'utf8'
        users:
        - name: 'username'
          password: 'password'
          host: 'localhost'
          rights: 'all privileges'

Usage

MySQL Galera check sripts

mysql> SHOW STATUS LIKE 'wsrep%';

mysql> SHOW STATUS LIKE 'wsrep_cluster_size' ;"

Galera monitoring command, performed from extra server

garbd -a gcomm://ipaddrofone:4567 -g my_wsrep_cluster -l /tmp/1.out -d
  1. salt-call state.sls mysql
  2. Comment everything starting wsrep* (wsrep_provider, wsrep_cluster, wsrep_sst)
  3. service mysql start
  4. run on each node mysql_secure_install and filling root password.
Enter current password for root (enter for none):
OK, successfully used password, moving on...

Setting the root password ensures that nobody can log into the MySQL
root user without the proper authorisation.

Set root password? [Y/n] y
New password:
Re-enter new password:
Password updated successfully!
Reloading privilege tables..
 ... Success!

By default, a MySQL installation has an anonymous user, allowing anyone
to log into MySQL without having to have a user account created for
them.  This is intended only for testing, and to make the installation
go a bit smoother.  You should remove them before moving into a
production environment.

Remove anonymous users? [Y/n] y
 ... Success!

Normally, root should only be allowed to connect from 'localhost'.  This
ensures that someone cannot guess at the root password from the network.

Disallow root login remotely? [Y/n] n
 ... skipping.

By default, MySQL comes with a database named 'test' that anyone can
access.  This is also intended only for testing, and should be removed
before moving into a production environment.

Remove test database and access to it? [Y/n] y
 - Dropping test database...
 ... Success!
 - Removing privileges on test database...
 ... Success!

Reloading the privilege tables will ensure that all changes made so far
will take effect immediately.

Reload privilege tables now? [Y/n] y
 ... Success!

Cleaning up...
  1. service mysql stop
  2. uncomment all wsrep* lines except first server, where leave only in my.cnf wsrep_cluster_address='gcomm://';
  3. start first node
  4. Start third node which is connected to first one
  5. Start second node which is connected to third one
  6. After starting cluster, it must be change cluster address at first starting node without restart database and change config my.cnf.
mysql> SET GLOBAL wsrep_cluster_address='gcomm://10.0.0.2';

Read more

Galera replication

Mysql Backup

About

No description, website, or topics provided.

Resources

License

Stars

Watchers

Forks

Packages

No packages published

Languages

  • Shell 86.2%
  • SaltStack 12.0%
  • Other 1.8%