jebovic.php

php

构建状态 Ansible Galaxy

安装并配置 php-fpm,以便用于 LAMP 和 LEMP 栈,添加您自己的池配置,并通过 yaml 变量自定义所有的 php.ini 配置。

奖励:为 blackfire 和 newrelic APM 添加扩展。

该角色是我的 OPS 项目 的一部分,请通过这个链接查看实际效果。OPS 提供了很多内容,比如开发虚拟机的 vagrant 文件、角色编排的 playbook、清单文件、角色配置示例、ansible 配置文件等。

兼容性

已在以下系统上测试并审核:

  • Debian jessie (8+)
  • Ubuntu Trusty (14.04 LTS)
  • Ubuntu Xenial (16.04 LTS)

角色变量

# 使用自定义仓库
php_use_custom_repository: yes
php_custom_repositories_key_url: https://www.dotdeb.org/dotdeb.gpg
php_custom_repositories:
  - deb http://packages.dotdeb.org jessie all
  - deb-src http://packages.dotdeb.org jessie all

# 选择要安装的包
php_packages:
  - php7.0-fpm
  - php7.0-cli
  - php7.0-common
  - php7.0-dev
  - php7.0-opcache
  - php7.0-mbstring
  - php7.0-memcached
  - php7.0-mysql
  - php7.0-redis
  - php7.0-curl
  - php7.0-json
  - php7.0-xsl
  - php7.0-xml
  - php7.0-mongodb
  - php7.0-imagick

# 定义您自己的池
php_pools:
  www:
    user: "www-data"
    group: "www-data"
    listen: "/var/run/php-fpm.sock"
    listen.owner: "www-data"
    listen.group: "www-data"
    listen.allowed_clients: "127.0.0.1"
    pm: "dynamic"
    pm.max_children: "5"
    pm.start_servers: "2"
    pm.min_spare_servers: "1"
    pm.max_spare_servers: "3"
    pm.process_idle_timeout: "30s"
    pm.max_requests: "500"

# 自定义 php.ini 配置
php_ini_custom:
  opcache:
    opcache.blacklist_filename: "{{ php_fpm_root_dir }}/fpm/opcache.blacklist"
  newrelic:
    newrelic.enabled: "true"
    newrelic.license: "用您的密钥替换"
    newrelic.logfile: "/var/log/newrelic/php_agent.log"
    newrelic.appname: "{{ ansible_hostname|default('VM 测试') }}"
    newrelic.daemon.logfile: "/var/log/newrelic/newrelic-daemon.log"
    newrelic.daemon.port: "/tmp/.newrelic.sock"
    newrelic.daemon.location: "/usr/bin/newrelic-daemon"
    newrelic.daemon.collector_host: "collector.newrelic.com"
    newrelic.analytics_events.enabled: "true"

# Opcache 黑名单
php_opcache_blacklist: []

# Php FPM 基本配置
php_fpm_root_dir: /etc/php/7.0
php_fpm_daemon: php7.0-fpm
php_fpm_pid: /run/php-fpm.pid
php_fpm_error_log: /var/log/php-fpm.log
php_fpm_syslog_facility: daemon
php_fpm_syslog_ident: php-fpm
php_fpm_log_level: notice
php_fpm_emergency_restart_threshold: 0
php_fpm_emergency_restart_interval: 0
php_fpm_process_control_timeout: 0
php_fpm_process_max: 128
php_fpm_process_priority: -19
php_fpm_daemonize: yes
php_fpm_rlimit_files: 1024
php_fpm_rlimit_core: 0
php_fpm_events_mechanism: epoll
php_fpm_systemd_interval: 10
php_fpm_pools_include: "{{ php_fpm_root_dir }}/fpm/pool.d/*.conf"

# 启用扩展
php_blackfire_enabled: true
php_composer_enabled: true
php_newrelic_enabled: true

# Blackfire.io 配置
php_blackfire_daemon: blackfire-agent
php_blackfire_test_mode: false
php_blackfire_key_url: https://packagecloud.io/gpg.key
php_blackfire_package_url: http://packages.blackfire.io/debian
php_blackfire_directory: /etc/blackfire
php_blackfire_packages:
    - blackfire-agent
    - blackfire-php

# Blackfire 代理配置
php_blackfire_cert: # 设置 PEM 编码证书
php_blackfire_collector: https://blackfire.io                # 设置 Blackfire 数据收集器的 URL
php_blackfire_http_proxy: # 设置使用的 http 代理
php_blackfire_https_proxy: # 设置使用的 https 代理
php_blackfire_log_file: stderr                               # 设置日志文件路径。使用 stderr 将日志记录到 stderr
php_blackfire_log_level: 1                                   # 日志详细级别 (4: 调试, 3: 信息, 2: 警告, 1: 错误)
php_blackfire_server_id: "用您的密钥替换"                       # 设置用于与 Blackfire API 进行身份验证的服务器 ID
php_blackfire_server_token: "用您的密钥替换"                    # 设置用于与 Blackfire API 进行身份验证的服务器令牌。通过命令行设置此项不安全
php_blackfire_socket: "unix:///var/run/blackfire/agent.sock" # 设置代理读取跟踪的套接字。可能的值可以是 Unix 套接字或 TCP 地址
php_blackfire_spec: # 设置 json 规范文件的路径

# Composer 配置
php_composer_download_url: https://getcomposer.org/installer
php_composer_path: /usr/local/bin/composer
php_composer_version: ''

# Newrelic APM 配置
php_newrelic_apt_key_url: https://download.newrelic.com/548C16BF.gpg
php_newrelic_apt_url: http://apt.newrelic.com/debian/
php_newrelic_packages:
  - newrelic-php5

示例 Playbook

- hosts: servers
  roles:
     - { role: jebovic.php }

示例:配置

# 定义您自己的池
php_pools:
  my_pool:
    user: "me"
    group: "me"
    listen: "/var/run/php-fpm.sock"
    listen.owner: "www-data"
    listen.group: "www-data"
    listen.allowed_clients: "127.0.0.1"
    pm: "dynamic"
    pm.max_children: "10"
    pm.start_servers: "4"
    pm.min_spare_servers: "2"
    pm.max_spare_servers: "6"
    pm.process_idle_timeout: "300s"
    pm.max_requests: "300"
# 自定义 php 配置,与我的其他角色链接,mailhog(邮件捕获器)、memcached、newrelic、blackfire...
php_ini_custom:
  Session:
    session.save_handler: memcached
    session.save_path: "{{ memcache_listen_address }}:{{ memcache_port }}"
  mail function:
    sendmail_from: [email protected]
    sendmail_path: "{{ mailhog_mhsendmail_path }}"
  opcache:
    opcache.enable_cli: Off
    opcache.blacklist_filename: /etc/php5/fpm/opcache.blacklist
  newrelic:
    newrelic.enabled: "true"
    newrelic.license: "{{ newrelic_license }}"
    newrelic.logfile: "/var/log/newrelic/php_agent.log"
    newrelic.appname: "{{ ansible_hostname|default('VM 测试') }}"
    newrelic.daemon.logfile: "/var/log/newrelic/newrelic-daemon.log"
    newrelic.daemon.port: "/tmp/.newrelic.sock"
    newrelic.daemon.location: "/usr/bin/newrelic-daemon"
    newrelic.daemon.collector_host: "collector.newrelic.com"
    newrelic.analytics_events.enabled: "true"

标签

  • php_blackfire_config:仅配置 blackfire 并重启 php 和 blackfire 服务
  • php_config:仅更新配置并重启服务
  • php_composer:仅安装 composer
  • php_blackfire:仅安装、配置并启动 blackfire 服务
  • php_newrelic:仅为 php 添加 newrelic apm 插件

许可证

MIT

作者信息

Jérémy Baumgarth https://github.com/jebovic

关于项目

Install and configure php-fpm for lamp and lemp stack, add your own pools configurations, and customize all the php.ini config from yaml variables, also included: composer, newrelic apm, blackfire apm

安装
ansible-galaxy install jebovic.php
许可证
mit
下载
591