Complete bootstrapping of clustered GeoServer in a DCOS environment.
100K+
Complete bootstrapping of clustered GeoServer in a DCOS environment.
This repository contains scripts responsible both for initialization and synchronization of multiple GeoServer instances running in Mesosphere DCOS. Synchronization is done by watching the GeoServer data directory for changes and then signaling each GeoServer to reload the configuration from the shared data directory. This configuration reload is performed in round robin fashion on a configurable interval.
From the DCOS Administrative Web UI browse to the Universe package page, select the GeoServer package and click Install. If marathon-lb is not already installed, it should also be installed from the Universe package page. Within a minute the geoserver and geoserver-app applications should be active and healthy. Once it is healthy simply browse to the URL specified in the haproxy-vhost label of the geoserver-app application in Marathon. This defaults to geoserver.marathon.mesos unless overridden with the advanced install settings.
Reference DCOS Example documentation for complete quickstart: https://github.com/dcos/examples/tree/master/geoserver
The following are variables that are either used during bootstrapping of the geoserver-app Marathon application or to configure the synchronization of the instances on configuration update.
.log)/shared/geoserver)root:root)false)8080)false)3)2)512MiB)appliedis/geoserver:2.13.1)None)None)geoserver.marathon.mesos).
Multiple values are allowed in comma delimited form (default: http://public1,http://public2)./shared/geoserver)Additions have been made to support login with ACS to allow access through to the Marathon API in a Strict security posture. Creation of the service secret can be done as follows using the DCOS CLI:
dcos security org service-accounts keypair service-account-private.pem service-account-public.pem
dcos security org service-accounts create -p service-account-public.pem -d "Service account for GeoServer framework" service-account
dcos security secrets create-sa-secret --strict service-account-private.pem service-account service-account-secret
# Test with SUPERUSER perms on user
dcos security org users grant service-account dcos:superuser full
# Deploy GeoServer package and enter service-account as the name of the secret containing credentials
# Once success has been confirmed, more granular permissions should be applied
dcos security org users revoke service-account dcos:superuser full
dcos security org users grant service-account dcos:service:marathon:marathon:services:/geoserver full
dcos security org users grant service-account dcos:service:marathon:marathon:admin:leader full
dcos security org users grant service-account dcos:service:marathon:marathon:admin:events full
dcos security org users grant service-account dcos:service:marathon:marathon:admin:config read
Content type
Image
Digest
Size
25.6 MB
Last updated
almost 8 years ago
docker pull appliedis/dcos-geoserver