*** sdake has quit IRC | 00:04 | |
*** darrenc_afk is now known as darrenc | 00:05 | |
*** eil397 has quit IRC | 00:13 | |
*** markvoelker has quit IRC | 00:15 | |
*** admin0 has quit IRC | 00:32 | |
*** asettle has joined #openstack-ansible | 00:36 | |
*** asettle has quit IRC | 00:41 | |
*** markvoelker has joined #openstack-ansible | 00:46 | |
*** ShannonM has joined #openstack-ansible | 00:54 | |
*** Bofu2MBP has quit IRC | 01:06 | |
*** Guest75 has joined #openstack-ansible | 01:13 | |
*** rohanp_ has quit IRC | 01:20 | |
*** ShannonM has quit IRC | 01:26 | |
*** neerbeer has quit IRC | 01:27 | |
*** weezS has joined #openstack-ansible | 01:27 | |
*** gtt116_ has quit IRC | 01:28 | |
*** v1k0d3n_ has joined #openstack-ansible | 01:35 | |
*** severion has quit IRC | 01:37 | |
openstackgerrit | Merged openstack/openstack-ansible: Added conditional templating https://review.openstack.org/273293 | 01:39 |
---|---|---|
openstackgerrit | Merged openstack/openstack-ansible: Remove dependency on python2_lxc git source https://review.openstack.org/276766 | 01:40 |
*** weezS has quit IRC | 01:47 | |
*** izaakk has quit IRC | 01:47 | |
*** weezS has joined #openstack-ansible | 01:50 | |
*** sdake has joined #openstack-ansible | 01:51 | |
*** sdake_ has joined #openstack-ansible | 01:55 | |
*** sdake has quit IRC | 01:56 | |
*** pcaruana has quit IRC | 02:07 | |
*** sdake_ has quit IRC | 02:10 | |
*** woodard_ has quit IRC | 02:11 | |
*** pcaruana has joined #openstack-ansible | 02:19 | |
*** sdake has joined #openstack-ansible | 02:20 | |
openstackgerrit | Michael Davies proposed openstack/openstack-ansible-ironic: Ironic: Fix docs & linting tests https://review.openstack.org/283384 | 02:26 |
*** mgoddard_ has joined #openstack-ansible | 02:32 | |
*** mgoddard has quit IRC | 02:35 | |
*** sdake has quit IRC | 02:43 | |
*** pcaruana has quit IRC | 03:01 | |
*** sdake has joined #openstack-ansible | 03:13 | |
*** pcaruana has joined #openstack-ansible | 03:16 | |
*** sdake_ has joined #openstack-ansible | 03:16 | |
*** sdake has quit IRC | 03:18 | |
*** furlongm has quit IRC | 03:20 | |
*** asettle has joined #openstack-ansible | 03:29 | |
*** asettle has quit IRC | 03:34 | |
openstackgerrit | Ala Raddaoui proposed openstack/openstack-ansible: Add a function to check accuracy of user config https://review.openstack.org/282067 | 03:53 |
openstackgerrit | Michael Davies proposed openstack/openstack-ansible: WIP: Add Nova config for os_ironic role https://review.openstack.org/282965 | 03:54 |
*** jthorne has quit IRC | 03:56 | |
*** shausy has joined #openstack-ansible | 03:57 | |
*** pcaruana has quit IRC | 04:01 | |
*** sdake_ has quit IRC | 04:01 | |
*** furlongm has joined #openstack-ansible | 04:02 | |
*** pcaruana has joined #openstack-ansible | 04:15 | |
*** jthorne has joined #openstack-ansible | 04:21 | |
*** raddaoui has joined #openstack-ansible | 04:29 | |
*** raddaoui_ has joined #openstack-ansible | 04:29 | |
*** raddaoui_ has quit IRC | 04:30 | |
*** raddaoui has quit IRC | 04:30 | |
*** raddaoui has joined #openstack-ansible | 04:31 | |
*** raddaoui_ has joined #openstack-ansible | 04:31 | |
*** raddaoui_ has quit IRC | 04:37 | |
*** raddaoui has quit IRC | 04:37 | |
*** joseg has joined #openstack-ansible | 04:48 | |
*** weezS has joined #openstack-ansible | 04:54 | |
*** jamielennox is now known as jamielennox|away | 04:54 | |
*** sdake has joined #openstack-ansible | 04:59 | |
*** sdake has quit IRC | 05:14 | |
*** zhangjn has quit IRC | 05:14 | |
*** raddaoui has joined #openstack-ansible | 05:18 | |
*** raddaoui_ has joined #openstack-ansible | 05:18 | |
*** zhangjn has joined #openstack-ansible | 05:20 | |
*** jthorne has quit IRC | 05:25 | |
*** phalmos has joined #openstack-ansible | 05:30 | |
*** elo has quit IRC | 05:33 | |
*** weshay has quit IRC | 05:36 | |
*** pcaruana has quit IRC | 05:38 | |
*** chhavi has joined #openstack-ansible | 05:40 | |
*** phalmos has quit IRC | 05:43 | |
*** pcaruana has joined #openstack-ansible | 05:53 | |
*** v1k0d3n_ has quit IRC | 05:53 | |
*** joseg has quit IRC | 05:53 | |
*** v1k0d3n has joined #openstack-ansible | 05:53 | |
*** asettle has joined #openstack-ansible | 06:02 | |
*** galstrom_zzz is now known as galstrom | 06:05 | |
*** v1k0d3n_ has joined #openstack-ansible | 06:06 | |
*** asettle has quit IRC | 06:07 | |
*** v1k0d3n has quit IRC | 06:07 | |
*** fawadkhaliq has joined #openstack-ansible | 06:15 | |
*** cemmason has joined #openstack-ansible | 06:16 | |
*** raddaoui_ has quit IRC | 06:17 | |
*** raddaoui has quit IRC | 06:17 | |
*** v1k0d3n_ has quit IRC | 06:20 | |
*** openstack has joined #openstack-ansible | 13:23 | |
mgariepy | i would like to have it in kilo, but since the upgrade to liberty is near, i don't care that much. i can just keep the patch applied on top of the tag. | 13:23 |
*** subscope has quit IRC | 13:24 | |
*** jthorne has quit IRC | 13:25 | |
*** javeriak_ has joined #openstack-ansible | 13:33 | |
*** zhangjn has quit IRC | 13:33 | |
openstackgerrit | Jesse Pretorius (odyssey4me) proposed openstack/openstack-ansible: Add condition to local IP for overlay net https://review.openstack.org/273793 | 13:34 |
*** javeriak has quit IRC | 13:34 | |
*** mgoddard__ has joined #openstack-ansible | 13:38 | |
*** zhangjn has joined #openstack-ansible | 13:38 | |
admin0 | hey all :) | 13:40 |
*** mgoddard_ has quit IRC | 13:41 | |
openstackgerrit | Matt Thompson proposed openstack/openstack-ansible-memcached_server: [WIP] Multi-distro-ify role https://review.openstack.org/279608 | 13:43 |
*** joseg has joined #openstack-ansible | 13:44 | |
*** asettle has quit IRC | 13:54 | |
*** asettle has joined #openstack-ansible | 13:54 | |
*** KLevenstein has joined #openstack-ansible | 13:57 | |
mattt | howdy admin0 | 13:59 |
*** weshay has joined #openstack-ansible | 14:03 | |
*** rgogunskiy has quit IRC | 14:15 | |
*** sdake has joined #openstack-ansible | 14:15 | |
*** asettle_ has joined #openstack-ansible | 14:18 | |
*** asettle has quit IRC | 14:21 | |
*** severion has quit IRC | 14:22 | |
*** asettle_ is now known as asettle | 14:22 | |
*** severion has joined #openstack-ansible | 14:22 | |
*** severion has quit IRC | 14:23 | |
*** v1k0d3n has joined #openstack-ansible | 14:24 | |
*** mgugino has quit IRC | 14:28 | |
*** cemmason1 has joined #openstack-ansible | 14:28 | |
*** cemmason has quit IRC | 14:30 | |
mattt | how do you guys feel about backporting https://review.openstack.org/#/c/283508/ to liberty ? | 14:40 |
*** kencjohnston has joined #openstack-ansible | 14:41 | |
cloudnull | morning | 14:48 |
*** karimb has quit IRC | 14:49 | |
admin0 | morning | 14:50 |
openstackgerrit | Javeria Khan proposed openstack/openstack-ansible: Update PLUMgrid Appendix Doc paths https://review.openstack.org/283465 | 14:51 |
*** rohanp has quit IRC | 14:52 | |
*** jthorne has joined #openstack-ansible | 14:53 | |
*** jthorne has quit IRC | 14:56 | |
openstackgerrit | Jesse Pretorius (odyssey4me) proposed openstack/openstack-ansible: Move swift memcache conf into separate file https://review.openstack.org/281269 | 14:56 |
*** ShannonM has joined #openstack-ansible | 14:56 | |
*** neilus1 has joined #openstack-ansible | 14:56 | |
openstackgerrit | Jesse Pretorius (odyssey4me) proposed openstack/openstack-ansible: Remove local swift ring directory check https://review.openstack.org/280844 | 14:56 |
*** jthorne has joined #openstack-ansible | 14:56 | |
*** neilus has quit IRC | 14:57 | |
*** rohanp has joined #openstack-ansible | 14:58 | |
*** sigmavirus24_awa is now known as sigmavirus24 | 14:58 | |
*** jiteka has quit IRC | 14:59 | |
palendae | Morning | 14:59 |
odyssey4me | o/ pal | 15:02 |
odyssey4me | o/ palendae | 15:02 |
odyssey4me | tabfail | 15:02 |
andymccr | surely both work odyssey4me?! | 15:02 |
palendae | odyssey4me: Thanks for the edits on the upgrade reviews | 15:03 |
odyssey4me | palendae yeah, I figured I may as well just quickly do them as they're nits | 15:05 |
palendae | Sure | 15:05 |
tiagogomes | Everyone with a successful experience is setting up an environement using SQL for the openstack service users, and LDAP for the rest? | 15:10 |
mgariepy | tiagogomes, i use sql for service and federation for the rest. | 15:10 |
automagically | tiagogomes: Yes, on Liberty and Master | 15:11 |
tiagogomes | ok, I can operate openstack with the admin account. But I can't view the LDAP users. Unauthorized request | 15:12 |
automagically | tiagogomes: How are you attempting to view the LDAP users? | 15:13 |
palendae | For people interested in liberty upgrading - https://review.openstack.org/#/c/283823/ and https://review.openstack.org/#/c/272652/ | 15:13 |
tiagogomes | automagically, `openstack user list --domain ldap` | 15:14 |
automagically | That should work assuming your keystone domain conf is /etc/keystone/domains/keystone.ldap.conf | 15:15 |
tiagogomes | it is | 15:15 |
mgariepy | hmm funny http://pastebin.com/NEq2C5rp | 15:16 |
*** Mudpuppy has joined #openstack-ansible | 15:17 | |
*** Mudpuppy has quit IRC | 15:18 | |
*** Mudpuppy has joined #openstack-ansible | 15:19 | |
odyssey4me | tiagogomes I take it that you've read through http://docs.openstack.org/developer/openstack-ansible/install-guide/configure-keystone.html#implementing-ldap-or-ad-back-ends ? | 15:19 |
*** michaelgugino has joined #openstack-ansible | 15:19 | |
*** rromans_ is now known as rromans | 15:20 | |
michaelgugino | hello everyone | 15:21 |
*** rromans has quit IRC | 15:21 | |
tiagogomes | odyssey4me I saw that, thanks, I am making progress :) | 15:22 |
automagically | michaelgugino: Morning | 15:22 |
palendae | o/ | 15:23 |
michaelgugino | I see my rsyslog patch is now conflicting with something. | 15:23 |
openstackgerrit | Jesse Pretorius (odyssey4me) proposed openstack/openstack-ansible: Correct formatting in install-guide LDAP configuration https://review.openstack.org/284187 | 15:23 |
odyssey4me | tiagogomes There's a change between Juno/Kilo's configuration. In Juno/Kilo you could only do the default domain - now you don't have to. | 15:24 |
*** spotz_zzz is now known as spotz | 15:24 | |
odyssey4me | michaelgugino hiya - yeah, there was an update to the apt cache update tasks | 15:24 |
*** rromans has joined #openstack-ansible | 15:24 | |
michaelgugino | I'll try to reconcile the difference today and get it pushed back up | 15:25 |
palendae | git-harry: Do you have time to add a release note to https://review.openstack.org/#/c/272652/, or do you mind if I do it? | 15:25 |
odyssey4me | palendae git-harry is out and may be ill, so I'd suggest that you go ahead | 15:25 |
palendae | odyssey4me: Thanks | 15:25 |
git-harry | odyssey4me: no, I am about | 15:26 |
odyssey4me | ah git-harry sorry, I didn't realise you were about | 15:27 |
git-harry | palendae: but if you want to do it don't let me stop you ;) | 15:27 |
openstackgerrit | Robb Romans proposed openstack/openstack-ansible: Flatten the troubleshooting section https://review.openstack.org/284190 | 15:27 |
git-harry | odyssey4me: just hiding | 15:27 |
palendae | git-harry, odyssey4me: Either way :) Trying to help unblock people after a month of working on that one patch in a corner | 15:27 |
*** TheIntern has joined #openstack-ansible | 15:31 | |
odyssey4me | mattt cloudnull would you mind reviewing https://review.openstack.org/284078 to fix my blunder? | 15:33 |
meteorfox | andymccr: I'm Carlos. I assume you are Andy McCrae, because of your nick. | 15:36 |
andymccr | meteorfox: hey Carlos sure thing | 15:36 |
andymccr | just reading up on your email | 15:36 |
ralakus | Hi. I am trying to execute ansible-playbook haproxy-install.yml in /opt/openstack-ansible/playbooks folder to quickly update my haproxy settings. I got this error: | 15:38 |
ralakus | TASK: [haproxy_server | Create haproxy service config files] ****************** | 15:38 |
ralakus | <172.29.236.100> ESTABLISH CONNECTION FOR USER: root | 15:38 |
ralakus | <172.29.236.100> EXEC ssh -C -tt -v -o ControlMaster=auto -o ControlPersist=60s -o ControlPath="/root/.ansible/cp/ansible-ssh-%h-%p-%r" -o StrictHostKeyChecking=no -o KbdInteractiveAuthentication=no -o PreferredAuthentications=gssapi-with-mic,gssapi-keyex,hostbased,publickey -o PasswordAuthentication=no -o ConnectTimeout=120 172.29.236.100 /bin/sh -c 'mkdir -p | 15:38 |
ralakus | $HOME/.ansible/tmp/ansible-tmp-1456328345.84-152655794900507 && echo $HOME/.ansible/tmp/ansible-tmp-1456328345.84-152655794900507' | 15:38 |
ralakus | fatal: [aio1] => {'msg': "AnsibleUndefinedVariable: One or more undefined variables: 'ssl_cipher_suite' is undefined", 'failed': True} | 15:39 |
mattt | odyssey4me: sure | 15:39 |
ralakus | fatal: [aio1] => {'msg': 'One or more items failed.', 'failed': True, 'changed': False, 'results': [{'msg': "AnsibleUndefinedVariable: One or more undefined variables: 'ssl_cipher_suite' is undefined", 'failed': True}]} | 15:39 |
ralakus | FATAL: all hosts have already failed -- aborting | 15:39 |
ralakus | Any one has idea why? | 15:39 |
cloudnull | ralakus: run: openstack-ansible haproxy-install.yml | 15:39 |
palendae | cloudnull: That looks like what he's doing | 15:40 |
cloudnull | thats a wrapper around ansible-playbook which will source your extra variables in /etc/openstack_deploy | 15:40 |
ralakus | \o cloudnull hi I tired that and get error | 15:40 |
palendae | Oh, ansible-playbook | 15:40 |
ralakus | himm | 15:40 |
ralakus | let me check | 15:40 |
palendae | ralakus: Use openstack-ansible instead of ansible-playbook. That will automatically include the user_* variables as cloudnull said | 15:40 |
*** izaakk has joined #openstack-ansible | 15:40 | |
ralakus | great! many thanks. Community rocks :) | 15:41 |
cloudnull | +1 | 15:41 |
cloudnull | :D | 15:42 |
palendae | ralakus: np. Also, just a note - when pasting output or log entries, it's easier to read if you use a paste service like paste.openstack.org, gist.github.com, pastebin.com, etc | 15:42 |
*** johnmilton has quit IRC | 15:42 | |
ralakus | ok next time I will to that way. Many thanks to cloudnull palendae | 15:43 |
palendae | ralakus: In addition, if you don't want to use the openstack-ansible wrapper, you can use ansible-playbook itself and use the -e parameter to pass the variable files in. That's what the script does for you, though | 15:43 |
*** raddaoui has joined #openstack-ansible | 15:46 | |
*** raddaoui_ has joined #openstack-ansible | 15:46 | |
*** elopez_ has quit IRC | 15:46 | |
*** galstrom_zzz is now known as galstrom | 15:50 | |
*** asettle has quit IRC | 15:52 | |
*** asettle has joined #openstack-ansible | 15:53 | |
*** johnmilton has joined #openstack-ansible | 15:57 | |
*** admin0 has quit IRC | 15:59 | |
odyssey4me | for those of us who use more than one email address, including non company addresses, I'd suggest adding an entry to the stackalytics repo to ensure that your affiliation is appropriately registered - here's an example: https://review.openstack.org/284208 | 16:00 |
bgmccollum | odyssey4me you used to work at BCX? | 16:01 |
odyssey4me | bgmccollum yep | 16:01 |
bgmccollum | we did some training there in Johannesburg way back in the day | 16:01 |
*** phalmos has joined #openstack-ansible | 16:05 | |
odyssey4me | bgmccollum haha, I was meant to be there and missed it :) it was me who went on to be the guy doing the final install and operating that public cloud | 16:05 |
odyssey4me | those who went to the training were my advisors, and sometimes my tormentors :p | 16:05 |
bgmccollum | there was one guy in there logging into other student environments and doing bad bad things...took us a while to figure out what was going on. | 16:06 |
bgmccollum | stopping services randomly...adding and dropping iptable rules randomly | 16:07 |
odyssey4me | bgmccollum yeah, I expect I know who that was - he knew openstack well enough to be bored | 16:07 |
bgmccollum | good times | 16:07 |
*** phalmos has quit IRC | 16:08 | |
*** neilus has joined #openstack-ansible | 16:08 | |
*** jiteka has joined #openstack-ansible | 16:08 | |
cloudnull | bgmccollum odyssey4me if you have time to re-review https://review.openstack.org/#/c/283234/ | 16:11 |
cloudnull | it'd be appreciated. | 16:11 |
cloudnull | tiagogomes: you around ? | 16:11 |
bgmccollum | looking | 16:11 |
*** neilus1 has quit IRC | 16:11 | |
tiagogomes | cloudnull yep | 16:11 |
cloudnull | never mind. it seems you've seen https://review.openstack.org/#/c/273793/ | 16:11 |
* tiagogomes neverminds | 16:12 | |
*** neilus has quit IRC | 16:12 | |
cloudnull | odyssey4me: that var worked fine in the previous patch | 16:13 |
cloudnull | the problem is setting an ansible var in the aio template etc/openstack_deploy/openstack_user_config.yml.aio | 16:13 |
cloudnull | which is read by the bootstrap-host | 16:13 |
cloudnull | ansible role | 16:13 |
odyssey4me | cloudnull ah ok, that makes sense | 16:14 |
cloudnull | so in the aio I set the IP . | 16:14 |
cloudnull | in the example I set the var | 16:14 |
*** mgoddard__ has quit IRC | 16:14 | |
*** mgoddard has joined #openstack-ansible | 16:14 | |
cloudnull | the stroage address discovery bits are a pre-task which is being done here https://github.com/openstack/openstack-ansible/blob/master/playbooks/os-cinder-install.yml#L115-L154 | 16:15 |
bgmccollum | odyssey4me patch set 9 worked for me, and im happy with the change and structure | 16:17 |
bgmccollum | cloudnull ^ | 16:17 |
*** keedya has joined #openstack-ansible | 16:17 | |
odyssey4me | bgmccollum cloudnull now that I get that, looks fine to me | 16:17 |
cloudnull | tyvm | 16:18 |
cloudnull | odyssey4me: any chance we can rev master forward ? | 16:20 |
cloudnull | if so we can get https://review.openstack.org/#/c/277199/ moving forwrard | 16:20 |
cloudnull | which is waiting on a new heat SHA | 16:20 |
cloudnull | https://review.openstack.org/#/c/282321/ | 16:20 |
*** michaelgugino has quit IRC | 16:22 | |
*** rohanp has quit IRC | 16:22 | |
bgmccollum | mattt odyssey4me can i get some eyes on this again? sorry for my blunders -- https://review.openstack.org/#/c/279859/ | 16:23 |
mattt | bgmccollum: yeah sure | 16:23 |
*** gparaskevas has quit IRC | 16:24 | |
bgmccollum | tyvm | 16:25 |
odyssey4me | bgmccollum looks good to me, my only concern is that it clashes with cloudnull's keystone IRR patch | 16:25 |
cloudnull | odyssey4me bgmccollum mattt regarding that PR: I'm working on the os_keystone role | 16:26 |
cloudnull | and I'm trying to move the messaging taasks to the play as a pre_task | 16:26 |
*** GheRivero has left #openstack-ansible | 16:26 | |
cloudnull | instead of having it in the role . | 16:26 |
cloudnull | https://review.openstack.org/#/c/279710/ | 16:26 |
cloudnull | https://review.openstack.org/#/c/279710/2/playbooks/os-keystone-install.yml -- messaging and db create tasks moved here https://review.openstack.org/#/c/279710/2/playbooks/os-keystone-install.yml | 16:27 |
cloudnull | odyssey4me: I was going to ask you about this today. | 16:27 |
cloudnull | have you had a chance to review that role ? | 16:27 |
cloudnull | https://github.com/os-cloud/openstack-ansible-os_keystone | 16:28 |
mattt | cloudnull: so are you incorporating bgmccollum's change into your role ? | 16:28 |
odyssey4me | cloudnull I was poking around in it yesterday, but haven't explicitly reviewed it | 16:28 |
bgmccollum | is there a goal / desire to get the IRR bits into liberty? | 16:28 |
mattt | bgmccollum: don't believe so, no | 16:28 |
odyssey4me | cloudnull I did see that there have been changes from the current code base, so it's going to be hard to review :/ | 16:28 |
cloudnull | mattt: no I wasnt | 16:28 |
odyssey4me | bgmccollum no | 16:28 |
bgmccollum | cause ultimately, id like to get my ps backported to liberty, and thats the cleanest path | 16:28 |
mattt | cloudnull: can you? :) | 16:29 |
mattt | cloudnull: ah, i just saw what you said about ripping it out | 16:30 |
bgmccollum | so get 279859 merged to master, backported to liberty...then we can working about IRR landing in master | 16:30 |
mattt | i do worry that we merge bgmccollum's change and then break that 'functionality' with IRR roles | 16:30 |
bgmccollum | : | 16:30 |
bgmccollum | :/ | 16:30 |
cloudnull | so bgmccollum change could be incorporated here: https://review.openstack.org/#/c/279710/2/playbooks/os-keystone-install.yml | 16:31 |
bgmccollum | or, i can just retarget to liberty, and like the IRR work do a similar fix independently | 16:31 |
mattt | bgmccollum: i'd rather it go into master | 16:31 |
bgmccollum | *let* | 16:31 |
bgmccollum | ok | 16:31 |
cloudnull | that said, letting it in is just more merge conflicts for me . | 16:32 |
*** weezS has joined #openstack-ansible | 16:32 | |
mattt | cloudnull: wait, so don't let it in? | 16:33 |
mattt | your review is already conflicting | 16:33 |
cloudnull | it is. | 16:33 |
bgmccollum | im lost | 16:33 |
palendae | raddaoui: https://review.openstack.org/#/c/242225/13 | 16:33 |
*** neilus has joined #openstack-ansible | 16:33 | |
mattt | bgmccollum: yeah i'm not sure either, i feel like i'm missing something here | 16:33 |
cloudnull | bgmccollum: if you base you patch on the irr one already then I dont have to go re-create your work when the irr patch goes in | 16:34 |
palendae | raddaoui: As odyssey4me said, that's mostly a test from the outside, not necessarily unit testing. The only bug I had been aware of to test for regression there was making sure no duplicate IPs got generated, since that was a pain to debug | 16:35 |
cloudnull | as it stands now, we let that through, i rebase mine, i recreate your work. | 16:35 |
odyssey4me | bgmccollum ok, pull the keystone changes out of the existing patch so that it doesn't conflict with cloudnull's work - then do a seperate patch for the keystone change on top of cloudnull's patch | 16:35 |
mattt | wait, why are we building on a WIP review? | 16:36 |
odyssey4me | bgmccollum then when the master patch merges, you can adjust the backport to include the keystone changes too | 16:36 |
odyssey4me | fair point mattt | 16:36 |
cloudnull | its only WIP because i dont have an official home for the os_keystone role in the openstack namespace. | 16:36 |
palendae | raddaoui: Also, I made https://github.com/nrb/ansible_importer as an import hook so we can import ansible library/plugin scripts, though I think some of that may need to change. | 16:36 |
*** raddaoui__ has joined #openstack-ansible | 16:36 | |
odyssey4me | cloudnull the WIP tag in the subject line is why I didn't really look through the patch/role in detail | 16:36 |
mattt | yeah and we don't know when that review will go in, which means we block bgmccollum's work | 16:37 |
bgmccollum | im trying to parse what im being told to do...but i lack coffee. so let me resolve that first. | 16:37 |
mattt | and it sounds like this is needed in liberty | 16:37 |
mattt | bgmccollum: welcome to my life | 16:37 |
cloudnull | I have to block work so that as I work on the OS roles one at a time Im not missing changes. | 16:38 |
*** fawadkhaliq has joined #openstack-ansible | 16:38 | |
mattt | cloudnull: yeah that isn't ideal also | 16:39 |
mattt | i'm still +2 but have removed Workflow, i'll let one of you guys workflow if you wish | 16:39 |
raddaoui__ | okay thanks Palendae, I will look into those and see where I can help | 16:39 |
odyssey4me | cloudnull ok, if you're ready to roll with the keystone role I'll block further changes on keystone | 16:40 |
odyssey4me | general advice for everyone is to break patches up per role so that we don't have issues like this :) | 16:41 |
cloudnull | odyssey4me: its been ready for the past week. we've just all been midcycling. | 16:41 |
odyssey4me | mattt please help me identify and block further changes to keystone for any reviews that come through | 16:41 |
mattt | so contrary to what i said previously, should bgmccollum just create the PR against liberty ? | 16:41 |
mattt | since this won't cleanly backport if he depends on the IRR change | 16:42 |
*** 32NAAC6RR has quit IRC | 16:42 | |
odyssey4me | mattt yeah, I think so - then adjust the master patch as I suggested | 16:42 |
mattt | ^^^ bgmccollum :P | 16:43 |
* mattt shows himself out | 16:43 | |
cloudnull | odyssey4me: so im thinking that I'll make the PR to project config for all OS roles and leaving most of them empty for now. | 16:44 |
*** mgoddard_ has joined #openstack-ansible | 16:44 | |
odyssey4me | cloudnull could you backport https://review.openstack.org/279683 to liberty - I think this is quite a key fix | 16:45 |
odyssey4me | cloudnull yeah, I'm ok with that | 16:45 |
openstackgerrit | Kevin Carter proposed openstack/openstack-ansible: Resolve packaging problems in virtualenv(s) https://review.openstack.org/284247 | 16:45 |
cloudnull | that way we can post the reviews to the roles one at a time stead of having to wait on infra | 16:45 |
mattt | cloudnull: sounds sensible | 16:46 |
*** raddaoui_ has quit IRC | 16:47 | |
*** raddaoui has quit IRC | 16:47 | |
bgmccollum | ok, so retarget my review directly to liberty? | 16:47 |
*** mgoddard has quit IRC | 16:47 | |
stevelle | thats what I heard | 16:48 |
openstackgerrit | Kevin Carter proposed openstack/openstack-ansible: IRR - Implemented for os_keystone https://review.openstack.org/279710 | 16:48 |
bgmccollum | commend in the review indicates so as well...on it...thanks all for the lively discussion | 16:48 |
bgmccollum | comment* | 16:48 |
*** raddaoui__ has quit IRC | 16:49 | |
openstackgerrit | Byron McCollum proposed openstack/openstack-ansible: Do not setup messaging host and user when Rabbit is not installed https://review.openstack.org/284255 | 16:54 |
*** elo has quit IRC | 16:55 | |
openstackgerrit | Merged openstack/openstack-ansible: Fix trusted-host filter for pip_get_pip_options https://review.openstack.org/284078 | 16:56 |
*** Guest51435 is now known as mgagne | 16:56 | |
*** mgagne has quit IRC | 16:56 | |
*** mgagne has joined #openstack-ansible | 16:56 | |
bgmccollum | cloudnull odyssey4me original review abandoned, runway cleared... | 16:56 |
*** lbragstad has quit IRC | 16:58 | |
odyssey4me | bgmccollum you needn't have abandoned the original review - you could have just rebased on https://review.openstack.org/279710 and changed the keystone bits to work with cloudnull's changes to the playbook | 17:00 |
*** mikelk has quit IRC | 17:02 | |
*** galstrom is now known as galstrom_zzz | 17:03 | |
*** lbragstad has joined #openstack-ansible | 17:03 | |
bgmccollum | odyssey4me doh...sorry. how do i setup the dependency between the two reviews? haven't done that before. | 17:03 |
palendae | bgmccollum: https://www.mediawiki.org/wiki/Gerrit/Advanced_usage#Create_a_dependency | 17:04 |
bgmccollum | thx | 17:04 |
mattt | bgmccollum: we're failing at communication today it seems :) | 17:04 |
mattt | sorry about that | 17:04 |
bgmccollum | no worries... | 17:04 |
mattt | cloudnull odyssey4me : think i got all keystone reviews and removed workflow or -2'd them if they touched keystone, it'd be good if you two could have a peek to make sure i've not missed any | 17:05 |
tiagogomes | is there a way to deploy every service in the baremetal instead of having to fiddle with the files in env.d? | 17:05 |
palendae | tiagogomes: Not currently | 17:06 |
odyssey4me | tiagogomes sure, just search and replace on_metal and make it all true - but make sure you're not deploying horizon/keystone on the same hosts because they won't work together | 17:07 |
odyssey4me | and there may be other issue too | 17:07 |
odyssey4me | unfortunately that's not a tested code path | 17:08 |
odyssey4me | mattt https://review.openstack.org/284255 | 17:08 |
tiagogomes | 'k | 17:09 |
mattt | bgmccollum: i was going to +2 that but your whens need to use the dictionary style | 17:09 |
odyssey4me | bgmccollum :( | 17:09 |
bgmccollum | i thought they did? | 17:10 |
bgmccollum | (╯°□°)╯︵ ┻━┻ | 17:10 |
bgmccollum | ill be at the bar | 17:10 |
odyssey4me | hehehe, wrong patch set | 17:10 |
mattt | bgmccollum: see you there | 17:10 |
automagically | odyssey4me: Why won’t Keystone and Horizon co-exist and is that just in the on_metal case? | 17:14 |
automagically | I ask because I’m in the middle of attempting that exact scenario | 17:14 |
odyssey4me | automagically both roles setup Apache and both assume they own Apache | 17:14 |
logan- | i bet the apache config portions of each role expect to own apache completely | 17:14 |
odyssey4me | so they will override each other's settings | 17:15 |
automagically | Aha | 17:15 |
automagically | Makes sense | 17:15 |
odyssey4me | it should be easy enough to fix up, but I really, really don't recommend that you co-host those two services | 17:15 |
*** elopez has joined #openstack-ansible | 17:15 | |
odyssey4me | hack the web interface and you have direct DB access, this is a recipe for a bad day | 17:16 |
automagically | In my case, I’m not using on_metal | 17:16 |
*** evrardjp has quit IRC | 17:17 | |
openstackgerrit | Byron McCollum proposed openstack/openstack-ansible: Do not setup messaging host and user when Rabbit is not installed https://review.openstack.org/284255 | 17:18 |
automagically | odyssey4me: Maybe I’m missing something, but wouldn’t that be true regardless of where Horizon is hosted? | 17:19 |
*** asettle has quit IRC | 17:19 | |
odyssey4me | automagically well, horizon does have its own db access for session caching.... but giving an attacker free and clear access to the keystone DB too is not a recipe for a good day | 17:22 |
odyssey4me | bgmccollum :) | 17:23 |
automagically | In the case where I’m running keystone and horizon containers on the same physical host, if I compromise horizon, I then need to break out of the horizon container though correct? | 17:24 |
odyssey4me | automagically yes | 17:24 |
automagically | So, on_metal presents a big risk in this case, but co-resident containers should mitigate it sufficiently | 17:24 |
odyssey4me | if the services are containerised properly, which we do pretty well I think, then you're in a better position | 17:24 |
automagically | Appreciate you calling out and explaining the risk | 17:25 |
* automagically makes mental note to revisit http://docs.openstack.org/sec/ | 17:27 | |
automagically | Speaking of which, when I was working on Keystone SSL termination, I noticed we are running counter to this advice: http://docs.openstack.org/security-guide/identity/checklist.html#check-identity-06-disable-admin-token-in-etc-keystone-keystone-conf | 17:28 |
automagically | Presumably because the admin token ends up getting used by the keystone library throughout various roles | 17:29 |
bgmccollum | cloudnull, im rebasing and depending on your IRR keystone change...but are you going to add the same "only if rabbit" logic to your IRR, or should i just wait till your role lands in openstack git? | 17:29 |
cloudnull | bgmccollum: you can do the only if rabbit change as a dependent patch | 17:29 |
bgmccollum | im working on that, but the rebase conflict is a deleted file...looking again | 17:31 |
bgmccollum | i see now...it moved to os-keystone-install.yml | 17:31 |
*** admin0 has joined #openstack-ansible | 17:31 | |
bgmccollum | thanks | 17:31 |
odyssey4me | automagically ah, I see that we still have admin_token, which is only there for service setups actually - there is no need for it during normal operations | 17:33 |
odyssey4me | cc mhayden | 17:33 |
automagically | odyssey4me: Right, we should either doc that users should remove it after setup, or add a post-setup play for security hardening | 17:33 |
odyssey4me | automagically mhayden I think we could improve there - perhaps flip the admin_token thing on just before service setup changes, then flip it off afterwards | 17:34 |
logan- | isn't admin token only needed during the initial keystone bootstrap? | 17:34 |
odyssey4me | yeah, that would be good to make a note for discussion at the summit | 17:34 |
odyssey4me | logan- yes, although I think we use it for all the service setups... so we may have to change things up a bit | 17:35 |
bgmccollum | fingers crossed... | 17:35 |
odyssey4me | automagically note that the admin token can only be used against the admin endpoint (not the public/internal endpoint), so as long as you have the admin endpoint appropriately restricted your risk is managed | 17:35 |
odyssey4me | interesting, that checklist might be a nice set of checks to automate into openstack-ansible-security :) cc mhayden | 17:36 |
logan- | cool yeah, seems liek it would be easy enough to have the other services start using keystone_admin_password and lock down admin token by the end of keystone's role | 17:38 |
*** admin0 has quit IRC | 17:39 | |
odyssey4me | logan- yep, that seems a sensible idea | 17:39 |
bgmccollum | ok, i think i got it all sorted | 17:43 |
*** admin0 has joined #openstack-ansible | 17:48 | |
*** phiche1 has joined #openstack-ansible | 17:49 | |
*** admin0 has quit IRC | 17:50 | |
*** elo has joined #openstack-ansible | 17:52 | |
*** phiche has quit IRC | 17:53 | |
*** TheIntern has quit IRC | 17:57 | |
*** admin0 has joined #openstack-ansible | 17:59 | |
*** sigmavirus24 is now known as sigmavirus24_awa | 18:01 | |
*** admin0 has quit IRC | 18:02 | |
*** eil397 has joined #openstack-ansible | 18:02 | |
*** mgoddard_ has quit IRC | 18:02 | |
*** mgoddard has joined #openstack-ansible | 18:03 | |
*** admin0 has joined #openstack-ansible | 18:03 | |
*** permalac has quit IRC | 18:07 | |
*** neerbeer has joined #openstack-ansible | 18:14 | |
v1k0d3n | hey guys, have a question...i may be over-thinking, and maybe this is already documented... | 18:16 |
v1k0d3n | if I have an AIO test box, and I want to use VLAN interfaces for Openstack-Ansible...is this documented by chance? | 18:17 |
v1k0d3n | i have 4 10G, and I want to send various 802.1q tags to each of the interfaces. then i want openstack-ansible to be able to use those for tenant networks. | 18:18 |
v1k0d3n | i'm assuming that i can maybe do this with the ansible deployment, or modify it for these cases? | 18:19 |
v1k0d3n | i think this is where i get started with this? http://docs.openstack.org/developer/openstack-ansible/install-guide/targethosts-network.html | 18:23 |
automagically | Any thoughts about merging this https://review.openstack.org/#/c/283117 as is, or should this ultimately really move to http://docs.openstack.org/developer/openstack-ansible/install-guide/configure-initial.html#initial-environment-configuration? | 18:25 |
*** jthorne has quit IRC | 18:28 | |
spotz | automagically I can see have the same content but for ease I'd say 2 locations. Trying to think of a way to reword line 13 | 18:30 |
*** electrofelix has quit IRC | 18:30 | |
automagically | spotz: I was ignoring it for the moment, more focused on getting the host group stuff corrected | 18:31 |
spotz | automagically it hurts | 18:32 |
automagically | I hear that | 18:32 |
spotz | The sad part is it's usually not the most recent contributor who ends up with the -1 | 18:33 |
spotz | Or I should say is the cause of | 18:33 |
*** neilus has quit IRC | 18:33 | |
*** zhangjn has quit IRC | 18:35 | |
palendae | automagically: Honestly haven't given it a look yet.I'm testing another patch right now, I'll put that next in my queue | 18:36 |
*** zhangjn has joined #openstack-ansible | 18:36 | |
automagically | palendae: Thx | 18:36 |
automagically | spotz: Well “leave it cleaner than you found it“ seems like a good reason for a critical/-1 review | 18:37 |
spotz | automagically Giving alternative wording for that and getting rid of you farther down | 18:38 |
spotz | And with that afk for a bit. hit me up if needed automagically | 18:41 |
*** cloudtrainme has joined #openstack-ansible | 18:42 | |
*** neilus has joined #openstack-ansible | 18:47 | |
*** weezS has quit IRC | 18:48 | |
openstackgerrit | Travis Truman (automagically) proposed openstack/openstack-ansible: Docs: Editing deployment config README for clarity https://review.openstack.org/283117 | 18:54 |
*** sdake has quit IRC | 18:55 | |
stevelle | odyssey4me: I have been wanting to put something in to eliminate the use of admin_token outside of keystone bootstrapping for about a year now. related | 18:55 |
*** raddaoui has joined #openstack-ansible | 19:01 | |
*** raddaoui_ has joined #openstack-ansible | 19:01 | |
*** raddaoui__ has joined #openstack-ansible | 19:01 | |
*** jthorne has joined #openstack-ansible | 19:01 | |
*** weezS has joined #openstack-ansible | 19:05 | |
*** kencjohnston has quit IRC | 19:08 | |
*** sdake has joined #openstack-ansible | 19:09 | |
*** sigmavirus24_awa is now known as sigmavirus24 | 19:11 | |
*** kencjohnston has joined #openstack-ansible | 19:16 | |
*** woodard has joined #openstack-ansible | 19:23 | |
*** ddaskal has joined #openstack-ansible | 19:26 | |
*** woodard has quit IRC | 19:26 | |
*** woodard has joined #openstack-ansible | 19:27 | |
*** ddaskal has quit IRC | 19:28 | |
admin0 | is it posssible to use the current ansible playbook but to an existing keystone ? | 19:28 |
*** jthorne has quit IRC | 19:28 | |
admin0 | add the new system as 2nd region to an existing keystone | 19:28 |
*** eil397 has quit IRC | 19:29 | |
*** joseg has quit IRC | 19:31 | |
*** KLevenstein has quit IRC | 19:31 | |
*** KLevenstein has joined #openstack-ansible | 19:35 | |
*** neerbeer has quit IRC | 19:36 | |
*** fawadkhaliq has quit IRC | 19:40 | |
*** woodard has quit IRC | 19:43 | |
openstackgerrit | Robb Romans proposed openstack/openstack-ansible: Flatten the troubleshooting section https://review.openstack.org/284190 | 19:44 |
*** rgogunskiy has joined #openstack-ansible | 19:47 | |
*** woodard has joined #openstack-ansible | 19:47 | |
*** phiche1 has quit IRC | 19:47 | |
*** cloudtrainme has quit IRC | 19:54 | |
stevelle | admin0: we did a bit of testing of multi-region keystone environments but didn't finish the work iirc, so maybe | 19:58 |
stevelle | iirc our testing relied on fernet tokens working | 19:59 |
admin0 | here is the use case ( like me ) .. organizations have clusters that they cannot touch because its working fine .. and the people who worked on it left .. so it would be asesome if there is a way to add new liberty as a different region | 19:59 |
admin0 | this will make it easier to adopt | 19:59 |
*** KLevenstein_ has joined #openstack-ansible | 20:00 | |
admin0 | beause there are no changes .. people can just add to existing cluster and play wtih it | 20:00 |
stevelle | admin0: are you imaging that the region2 env is physically located alongside and can use the same DB? | 20:00 |
admin0 | i want to create a new cluster with the current ansible playbooks, but i have an existing working cluster that I do not want to upgrade/touch .. just declare it as region 1 EOL IN 3 months, and give users the new cluster/region as alternative | 20:00 |
admin0 | yes | 20:01 |
*** KLevenstein has quit IRC | 20:02 | |
*** KLevenstein_ is now known as KLevenstein | 20:02 | |
admin0 | stevelle: i want to keep only keystone and swift of the old one ( so that i do not have to redo billing or regive user/pass ) with swift glbally on all regions, they can use glance to backup image to swift and restore in the new region | 20:02 |
dolphm | stevelle: checkout "keystone-manage bootstrap" in mitaka :) | 20:02 |
dolphm | stevelle: http://cdn.pasteraw.com/h7irts0wjnzw114per18rgjz8m29i0n | 20:03 |
stevelle | admin0: cool use case, and dolphm: v nice indeed | 20:04 |
admin0 | stevelle: imagine .. with this .. people can deploy openstack on top of their existing deployment without worrying about breaking anything else .. and EOL the old one or attempt ways to migrate | 20:06 |
admin0 | or even have users migrate, because keystone is the same | 20:06 |
*** woodard has quit IRC | 20:07 | |
*** woodard has joined #openstack-ansible | 20:07 | |
stevelle | admin0: indeed, sounds like an awesome basis for a summit talk or a whitepaper as well | 20:07 |
admin0 | i am going to add it in midcycle :D | 20:07 |
stevelle | (why not both) | 20:07 |
admin0 | can I ? | 20:07 |
stevelle | I'd vote to see that | 20:08 |
admin0 | I will create the documentaiton | 20:08 |
palendae | I'd think this next summit's talk proposals are closed, but the one in October's certainly open | 20:08 |
admin0 | with use cases | 20:08 |
stevelle | next mid cycle will be Jan/Feb 2017 but if you think it will take that long to put together I don't see a problem with it | 20:09 |
palendae | stevelle: Eh? | 20:09 |
stevelle | err no that isn't right, probably late summer | 20:09 |
palendae | stevelle: Not before October? | 20:10 |
palendae | :) | 20:10 |
admin0 | i will make a good story to ensure people want to rush this first :D | 20:10 |
palendae | admin0: What will get people onboard faster is starting to implement ;) | 20:11 |
*** woodard has quit IRC | 20:11 | |
admin0 | i will create a blueprint | 20:11 |
palendae | Getting them a starting point to help contributing usually works better than proposing a use case and asking them to make it happen; a use case is a great first start, but everyone has priorities | 20:11 |
palendae | admin0: Cool. Just cautioning that people may not drop everything to start working on that right away | 20:12 |
admin0 | i know :) | 20:12 |
admin0 | brb ( 1 league of legends game ) :D | 20:13 |
admin0 | will be quick ;) | 20:13 |
palendae | Haha, those aren't quick | 20:13 |
admin0 | ARAM :D | 20:14 |
palendae | Ah | 20:14 |
palendae | Those do tend to be faster | 20:14 |
admin0 | while playing, i will think of good words to put in the blueprint :) | 20:15 |
openstackgerrit | Nate Potter proposed openstack/openstack-ansible: Check for AODH host before adding alarm_connection https://review.openstack.org/284392 | 20:16 |
*** javeriak_ has quit IRC | 20:17 | |
openstackgerrit | Nate Potter proposed openstack/openstack-ansible: Check for AODH host before adding alarm_connection https://review.openstack.org/284392 | 20:19 |
Nepoc | Good afternoon, I'm having some issues with haproxy listening on 443 and horizon listening on 80. When connecting to 443 I am alway redirected to 80. | 20:23 |
openstackgerrit | Bjoern Teipel proposed openstack/openstack-ansible: Adding UsePAM check for SSH inside the os_swift role https://review.openstack.org/284396 | 20:24 |
*** rgogunskiy has quit IRC | 20:25 | |
*** Bjoern_ has joined #openstack-ansible | 20:27 | |
*** cloudtrainme has joined #openstack-ansible | 20:45 | |
admin0 | is feature request a bug or a blueprint ? | 20:47 |
admin0 | i do not have a solution .. just maybe a strong case for consideration | 20:47 |
palendae | admin0: I'd say blueprint | 20:48 |
admin0 | there is no ansible project .. so what project should it be under ? | 20:48 |
palendae | admin0: Actually, sorry - I didn't read your full use case | 20:49 |
palendae | If you're proposing for openstack-ansible, https://blueprints.launchpad.net/openstack-ansible and http://git.openstack.org/cgit/openstack/openstack-ansible-specs | 20:49 |
palendae | If you're proposing to ansible itself, that's on https://github.com/ansible/ansible and follow their own process | 20:49 |
admin0 | :) | 20:50 |
admin0 | \o/ | 20:50 |
*** admin0 has quit IRC | 20:52 | |
*** admin0 has joined #openstack-ansible | 20:52 | |
Nepoc | nevermind... found the problem in horizon local_settings.py | 20:53 |
*** phiche has joined #openstack-ansible | 21:07 | |
openstackgerrit | Kevin Carter proposed openstack/openstack-ansible-repo_server: Removed sshd_config file https://review.openstack.org/284410 | 21:09 |
*** pcaruana has quit IRC | 21:10 | |
*** woodard has joined #openstack-ansible | 21:12 | |
admin0 | does this make a use_case ? https://blueprints.launchpad.net/openstack-ansible/+spec/enable-installation-as-alternate-region | 21:18 |
palendae | admin0: I'd advise making it a file in http://git.openstack.org/cgit/openstack/openstack-ansible-specs and copy the template. That way, people can reply inline as if it were a code review | 21:21 |
admin0 | how :D | 21:21 |
admin0 | i need to git checkout, add a file and then push ? | 21:21 |
admin0 | review | 21:21 |
Nepoc | FYI local/local_settings.py | 21:21 |
Nepoc | must uncomment this like for SSL termination on haproxy to work SECURE_PROXY_SSL_HEADER = ( 'HTTP_X_FORWARDED_PROTO', 'https' ) | 21:21 |
palendae | admin0: Check out the repo, copy the template and fill it out, then commit and do a git-review | 21:21 |
lbragstad | cloudnull where is the repo for prebuilt openstack packages from osa? | 21:22 |
palendae | lbragstad: http://mirror.rackspace.com/rackspaceprivatecloud/os-releases/ | 21:22 |
lbragstad | palendae thanks! | 21:22 |
*** raddaoui__ has quit IRC | 21:23 | |
*** raddaoui has quit IRC | 21:23 | |
*** raddaoui_ has quit IRC | 21:23 | |
cloudnull | lbragstad: what palendae said :) | 21:23 |
cloudnull | lbragstad: how goes it ? | 21:23 |
lbragstad | cloudnull it goes! | 21:24 |
*** johnmilton has quit IRC | 21:25 | |
Nepoc | Okay let me try that again. playbooks/roles/os_horizon/templates/horizon_local_settings.py.j2 needs to have SECURE_PROXY_SSL_HEADER = ( 'HTTP_X_FORWARDED_PROTO', 'https' ) uncommented for haproxy ssl termination. | 21:26 |
admin0 | palendae: is it all on a master branch ? | 21:28 |
cloudnull | Nepoc: https://review.openstack.org/#/c/214647/ -- is that what youre looking for ? | 21:28 |
Nepoc | I guess so! apparently I couldn't find that | 21:28 |
palendae | admin0: Yeah | 21:28 |
Nepoc | Thannk you | 21:28 |
cloudnull | np :) | 21:29 |
cloudnull | its not a merged commit yet. | 21:29 |
cloudnull | its waiting on a second reviewer. | 21:29 |
cloudnull | and because I took over the original patch I'm not able to make it go through | 21:29 |
cloudnull | but seems to work fine. | 21:29 |
Nepoc | interesting... I have this working but the only change I needed to make in horizon was that one line. The rest was in haproxy. | 21:31 |
*** cloudtrainme has quit IRC | 21:31 | |
admin0 | this blueprint will help the decisions on the county I am on : https://www.youtube.com/watch?v=BWPnjp12W5o :D | 21:32 |
admin0 | its a must watch :D | 21:32 |
*** kencjohnston has quit IRC | 21:35 | |
*** woodard has quit IRC | 21:36 | |
*** woodard has joined #openstack-ansible | 21:37 | |
*** cloudtrainme has joined #openstack-ansible | 21:38 | |
*** phiche has quit IRC | 21:41 | |
*** phiche has joined #openstack-ansible | 21:42 | |
admin0 | palendae: too late for liberty right? | 21:42 |
admin0 | i can do it for mitakea | 21:42 |
palendae | admin0: Probably | 21:42 |
palendae | Mitaka's released in April, so I'm not sure it'd get accepted for targetting | 21:42 |
palendae | But can start there | 21:42 |
*** Nepoc has quit IRC | 21:47 | |
*** cloudtrainme has quit IRC | 21:48 | |
*** sdake has quit IRC | 21:51 | |
*** sdake has joined #openstack-ansible | 21:52 | |
*** raddaoui has joined #openstack-ansible | 21:54 | |
*** raddaoui__ has joined #openstack-ansible | 21:54 | |
*** raddaoui_ has joined #openstack-ansible | 21:54 | |
*** woodard has quit IRC | 21:58 | |
palendae | raddaoui: on https://review.openstack.org/#/c/282067/4/releasenotes/notes/check_user-config_accuracy-3318f215a8d84b7d.yaml, very minor thing - trailing whitespace after data | 21:59 |
*** woodard has joined #openstack-ansible | 22:05 | |
*** raddaoui__ has quit IRC | 22:06 | |
*** raddaoui_ has quit IRC | 22:06 | |
*** raddaoui has quit IRC | 22:06 | |
admin0 | i cannot git push ? fatal: remote error: access denied or repository not exported: /openstack/openstack-ansible-specs | 22:08 |
admin0 | how to push specs ? | 22:09 |
palendae | admin0: git-review | 22:09 |
palendae | http://docs.openstack.org/infra/manual/developers.html | 22:10 |
palendae | http://docs.openstack.org/infra/manual/developers.html#submitting-a-change-for-review | 22:10 |
*** sdake has quit IRC | 22:13 | |
*** Mudpuppy has quit IRC | 22:14 | |
*** woodard has quit IRC | 22:15 | |
openstackgerrit | Merged openstack/openstack-ansible: Set AIO host apt sources to use a configured list of components https://review.openstack.org/278037 | 22:15 |
admin0 | hmm.. fatal: ICLA contributor agreement requires current contact information. .. and when i go to that page to update my contact info, i get code error - cannot store address :D | 22:26 |
admin0 | delete — adding again :D | 22:27 |
admin0 | created new review a/c ..cannot save address —get server error: 0702170116 | 22:31 |
admin0 | Cannot store contact information | 22:31 |
spotz | admin0 This is on review.openstack.org? | 22:36 |
admin0 | yes | 22:37 |
*** b3rnard0 is now known as b3rnard0_away | 22:37 | |
*** phiche has quit IRC | 22:37 | |
spotz | hrm, I just added a new email no error. I don't have anything else filled out there except name | 22:38 |
stevelle | admin0: I believe there are some known issues around that, might be a faq online and #openstack-infra might be able to point you at the right workaround | 22:42 |
stevelle | good thing is that once it's done you won't have to fight it again soon | 22:43 |
admin0 | :D | 22:43 |
v1k0d3n | what's the *safest method for rerunning ansible for things like changes in /etc/openstack_deploy/openstack_user_config.yml? | 22:51 |
v1k0d3n | i want to reconfigure some of the CIDR (or play with it), but i toasted my deployments in the past...still in a learning phase with this project.... | 22:52 |
*** woodard has joined #openstack-ansible | 22:52 | |
*** sigmavirus24 is now known as sigmavirus24_awa | 22:54 | |
*** woodard has quit IRC | 22:54 | |
*** woodard has joined #openstack-ansible | 22:55 | |
openstackgerrit | Sashi Dahal proposed openstack/openstack-ansible-specs: enable installation as an alternamte region https://review.openstack.org/284449 | 22:55 |
admin0 | \o/ — finally | 22:56 |
*** ShannonM has quit IRC | 22:56 | |
*** jcrst has joined #openstack-ansible | 22:57 | |
spotz | congrats admin0:) | 22:59 |
*** spotz is now known as spotz_zzz | 23:01 | |
admin0 | my first one was downvoted/abandoned :D https://review.openstack.org/#/c/103479/2 | 23:01 |
openstackgerrit | Merged openstack/openstack-ansible-ironic: Ironic: Fix docs & linting tests https://review.openstack.org/283384 | 23:02 |
openstackgerrit | Sashi Dahal proposed openstack/openstack-ansible-specs: enable installation as an alternate region https://review.openstack.org/284449 | 23:05 |
admin0 | do i have to fix the spaces ? | 23:06 |
admin0 | i was doing an amend | 23:06 |
openstackgerrit | Nolan Brubaker proposed openstack/openstack-ansible: Docs: Explanation of dynamic inventory https://review.openstack.org/284457 | 23:11 |
palendae | neillc, izaakk ^ | 23:11 |
*** sdake has joined #openstack-ansible | 23:12 | |
*** woodard has quit IRC | 23:13 | |
*** woodard has joined #openstack-ansible | 23:13 | |
*** KLevenstein has quit IRC | 23:14 | |
stevelle | admin0: we would like you to fix up the spaces, but you can choose to wait until more feedback comes in if you don't want to fix that up right away | 23:14 |
openstackgerrit | Sashi Dahal proposed openstack/openstack-ansible-specs: enable installation as an alternate region https://review.openstack.org/284449 | 23:16 |
izaakk | thanks palendae, checking the review right now | 23:20 |
*** abitha has joined #openstack-ansible | 23:20 | |
*** sdake has quit IRC | 23:25 | |
*** retreved_ has joined #openstack-ansible | 23:28 | |
*** cloudtrainme has joined #openstack-ansible | 23:31 | |
*** retreved has quit IRC | 23:32 | |
*** woodard has quit IRC | 23:34 | |
*** Nepoc has joined #openstack-ansible | 23:34 | |
*** woodard has joined #openstack-ansible | 23:34 | |
*** Guest75 has joined #openstack-ansible | 23:35 | |
*** Guest75 has quit IRC | 23:37 | |
*** admin0 has left #openstack-ansible | 23:39 | |
*** Bjoern_ has quit IRC | 23:46 | |
*** raddaoui has joined #openstack-ansible | 23:48 | |
*** raddaoui__ has joined #openstack-ansible | 23:48 | |
*** raddaoui_ has joined #openstack-ansible | 23:48 | |
*** Guest75 has joined #openstack-ansible | 23:49 | |
*** raddaoui has quit IRC | 23:50 | |
*** raddaoui_ has quit IRC | 23:50 | |
*** raddaoui__ has quit IRC | 23:50 | |
*** woodard has quit IRC | 23:56 |
Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!