*** this10nly has quit IRC | 00:55 | |
*** markvoelker has joined #openstack-ansible | 01:15 | |
*** schwicht has quit IRC | 01:18 | |
*** markvoelker has quit IRC | 01:19 | |
*** markvoelker has joined #openstack-ansible | 02:21 | |
*** cshen has joined #openstack-ansible | 02:23 | |
*** markvoelker has quit IRC | 02:25 | |
*** cshen has quit IRC | 02:27 | |
*** nurdie has joined #openstack-ansible | 02:33 | |
*** markvoelker has joined #openstack-ansible | 02:34 | |
*** markvoelker has quit IRC | 02:39 | |
*** markvoelker has joined #openstack-ansible | 03:31 | |
*** markvoelker has quit IRC | 03:36 | |
*** dave-mccowan has quit IRC | 03:37 | |
*** raukadah is now known as chandankumar | 04:20 | |
*** cshen has joined #openstack-ansible | 04:23 | |
*** cshen has quit IRC | 04:27 | |
*** evrardjp has quit IRC | 04:33 | |
*** evrardjp has joined #openstack-ansible | 04:33 | |
*** nurdie has quit IRC | 04:56 | |
*** nurdie has joined #openstack-ansible | 04:57 | |
*** nurdie has quit IRC | 05:01 | |
*** markvoelker has joined #openstack-ansible | 05:32 | |
*** markvoelker has quit IRC | 05:36 | |
*** udesale has joined #openstack-ansible | 05:38 | |
chandankumar | noonedeadpunk: Hello, please have a look at this patch https://review.opendev.org/#/c/736507/ and https://review.opendev.org/727067 why ironic tests are not getting triggered, when free, thanks! | 05:56 |
---|---|---|
janno | does anyone deploy designate with openstack-ansible? how do you connect your nameservers with the designate containers as they don't have any public ip address | 05:56 |
*** nurdie has joined #openstack-ansible | 06:17 | |
*** cshen has joined #openstack-ansible | 06:23 | |
*** nurdie has quit IRC | 06:23 | |
*** cshen has quit IRC | 06:28 | |
*** this10nly has joined #openstack-ansible | 06:39 | |
*** arkan has joined #openstack-ansible | 06:39 | |
*** tosky has joined #openstack-ansible | 06:39 | |
*** pcaruana has joined #openstack-ansible | 06:49 | |
*** arkan has quit IRC | 06:52 | |
*** yolanda has joined #openstack-ansible | 07:07 | |
*** stingrayza has joined #openstack-ansible | 07:22 | |
*** also_stingrayza has quit IRC | 07:23 | |
jrosser | janno: it is possible to add extra interfaces to specific containers | 07:26 |
jrosser | janno: but this really all depends on how you want the architecture to end up and which actual dns server you're going to use | 07:30 |
jrosser | i've done this with bind in the past | 07:30 |
*** arkan_ has joined #openstack-ansible | 07:53 | |
*** arkan_ is now known as arkan | 07:53 | |
*** halali_ has joined #openstack-ansible | 07:54 | |
*** spatel has joined #openstack-ansible | 08:20 | |
janno | jrosser: thanks for the hint. we are looking at pdns at the moment, but bind would be an option as well | 08:22 |
jrosser | janno: i don't really know how it would work for pdns but with bind it does a zone transfer | 08:23 |
*** cshen has joined #openstack-ansible | 08:23 | |
jrosser | and i had it set up so that there was an interface on the designate container that could communicate both ways with where the bind was | 08:24 |
jrosser | but in my case that wasnt a public IP as the bind instance was pretty much in the same infrastructure | 08:25 |
*** spatel has quit IRC | 08:25 | |
*** cshen has quit IRC | 08:28 | |
jrosser | janno: actually i made some documentation for adding extra networks https://opendev.org/openstack/openstack-ansible/src/branch/master/doc/source/reference/configuration/extra-networks.rst | 08:28 |
jrosser | for something like designate it's good to arrange it so that there are fixed, known addresses on those extra container interfaces | 08:31 |
jrosser | then you can set up the config of the dns server to only allow transfers from those IP | 08:31 |
*** nurdie has joined #openstack-ansible | 08:35 | |
*** jbadiapa has joined #openstack-ansible | 08:40 | |
*** nurdie has quit IRC | 08:40 | |
janno | jrosser: thanks, I'll have a look at adding extra networks | 08:42 |
jrosser | if you need any help give me a shout - you can also do it with fixed IP rather than the dynamic inventory which might be important for designate | 08:43 |
*** cshen has joined #openstack-ansible | 08:48 | |
*** nurdie has joined #openstack-ansible | 08:51 | |
*** arkan has quit IRC | 08:52 | |
*** arkan has joined #openstack-ansible | 08:52 | |
*** nurdie has quit IRC | 08:56 | |
*** nurdie has joined #openstack-ansible | 09:06 | |
*** sshnaidm|afk is now known as sshnaidm | 09:09 | |
*** nurdie has quit IRC | 09:11 | |
openstackgerrit | Martin Kopec proposed openstack/openstack-ansible-os_tempest master: Remove deprecated scenario image option https://review.opendev.org/720242 | 09:11 |
openstackgerrit | Martin Kopec proposed openstack/openstack-ansible-os_tempest master: Remove deprecated scenario image option https://review.opendev.org/720242 | 09:17 |
openstackgerrit | Martin Kopec proposed openstack/openstack-ansible-os_tempest master: Remove deprecated scenario image option https://review.opendev.org/720242 | 09:17 |
*** aedc_ has joined #openstack-ansible | 09:27 | |
*** cshen has quit IRC | 09:28 | |
*** gshippey has joined #openstack-ansible | 09:41 | |
*** halali_ has quit IRC | 09:43 | |
*** shyamb has joined #openstack-ansible | 09:46 | |
*** arkan has quit IRC | 09:52 | |
*** shyamb has quit IRC | 09:53 | |
*** arkan_ has joined #openstack-ansible | 09:54 | |
*** arkan_ is now known as arkan | 09:54 | |
*** cshen has joined #openstack-ansible | 10:01 | |
*** cshen has quit IRC | 10:06 | |
*** shyamb has joined #openstack-ansible | 10:27 | |
*** cshen has joined #openstack-ansible | 10:33 | |
*** cshen has quit IRC | 10:37 | |
*** arkan has quit IRC | 10:52 | |
*** halali_ has joined #openstack-ansible | 11:00 | |
*** mgariepy has quit IRC | 11:03 | |
*** markvoelker has joined #openstack-ansible | 11:06 | |
*** arkan has joined #openstack-ansible | 11:09 | |
*** schwicht has joined #openstack-ansible | 11:10 | |
*** cshen has joined #openstack-ansible | 11:12 | |
*** markvoelker has quit IRC | 11:16 | |
*** cshen has quit IRC | 11:17 | |
*** shyamb has quit IRC | 11:18 | |
*** cshen has joined #openstack-ansible | 11:28 | |
*** shyamb has joined #openstack-ansible | 11:30 | |
*** markvoelker has joined #openstack-ansible | 12:01 | |
*** markvoelker has quit IRC | 12:04 | |
*** udesale_ has joined #openstack-ansible | 12:09 | |
*** dave-mccowan has joined #openstack-ansible | 12:11 | |
*** strattao has joined #openstack-ansible | 12:11 | |
*** rh-jelabarre has joined #openstack-ansible | 12:12 | |
*** udesale has quit IRC | 12:12 | |
*** rh-jelabarre has quit IRC | 12:12 | |
*** rh-jelabarre has joined #openstack-ansible | 12:12 | |
*** mgariepy has joined #openstack-ansible | 12:13 | |
*** dave-mccowan has quit IRC | 12:15 | |
*** shyamb has quit IRC | 12:40 | |
*** namrata has joined #openstack-ansible | 12:59 | |
*** spatel has joined #openstack-ansible | 12:59 | |
*** cshen has quit IRC | 13:06 | |
*** mmethot has joined #openstack-ansible | 13:10 | |
*** cshen has joined #openstack-ansible | 13:11 | |
janno | jrosser: I am following https://docs.openstack.org/openstack-ansible/latest/reference/configuration/extra-networks.html, but I wonder how/where to add the container_vars part as we have 'dnsaas_hosts: *infrastructure_hosts' in our config | 13:11 |
namrata | Hi Folks, I have a question about the release schedule, is there going to be a next stable/train release and if yes when it is planned.I have to present somethin which involves checkout to stable/train which I will do on 20.1.3(which fices inventory-manage.py TypeError issue) and do a minor upgrade (hence the next release question) | 13:24 |
*** aedc_ has quit IRC | 13:26 | |
openstackgerrit | Merged openstack/openstack-ansible-plugins stable/ussuri: Do not use paramkio transport for delegated tasks https://review.opendev.org/739526 | 13:26 |
*** udesale_ has quit IRC | 13:27 | |
*** jbadiapa has quit IRC | 13:27 | |
*** irclogbot_2 has quit IRC | 13:27 | |
*** alvinstarr has quit IRC | 13:27 | |
*** maharg101 has quit IRC | 13:27 | |
*** admin0 has quit IRC | 13:27 | |
*** udesale_ has joined #openstack-ansible | 13:28 | |
*** jbadiapa has joined #openstack-ansible | 13:28 | |
*** irclogbot_2 has joined #openstack-ansible | 13:28 | |
*** alvinstarr has joined #openstack-ansible | 13:28 | |
*** maharg101 has joined #openstack-ansible | 13:28 | |
*** admin0 has joined #openstack-ansible | 13:28 | |
*** noonedeadpunk has quit IRC | 13:31 | |
*** d34dh0r53 has joined #openstack-ansible | 13:45 | |
*** nurdie has joined #openstack-ansible | 14:05 | |
*** nurdie has quit IRC | 14:07 | |
*** nurdie has joined #openstack-ansible | 14:08 | |
*** cshen has quit IRC | 14:10 | |
*** nurdie has quit IRC | 14:12 | |
*** namrata has quit IRC | 14:13 | |
*** spatel has quit IRC | 14:23 | |
*** namrata has joined #openstack-ansible | 14:32 | |
jrosser | janno: sorry was in meetings, you need something like this https://github.com/jrosser/openstack-ansible-ops/blob/designate-bind/designate-bind/groupvars/dnsaas-bind.yml | 14:35 |
jrosser | but i did that before the extra networks variable existed so the bottom part is no longer required | 14:35 |
*** spatel has joined #openstack-ansible | 14:41 | |
*** cshen has joined #openstack-ansible | 14:42 | |
*** cshen has quit IRC | 14:46 | |
*** spatel has quit IRC | 14:47 | |
admin0 | jrosser, i have this as my config https://gist.github.com/a1git/8d8f3369b861f10102c7fc7c08cbec21 .. i do not know how to map the hosts to the correct group | 14:51 |
admin0 | do i create c1_hosts: put c1: ip .. .. but how do I specify those for image_hosts or haproxy_hosts ? | 14:52 |
admin0 | oh .. i get it .i think | 14:53 |
jrosser | admin0: not quite sure what the trouble is? also i'm in a meeting right now | 14:58 |
admin0 | oh .. | 14:59 |
*** this10nly has quit IRC | 15:06 | |
*** udesale_ has quit IRC | 15:07 | |
*** nurdie has joined #openstack-ansible | 15:07 | |
nsmeds | With the galera role, if we initially launched it with `galera_use_ssl: false` and want to switch to `true`, happen to know if the role supports this? | 15:09 |
nsmeds | i.e. will the cluster remain online and healthy, or will there be issues when some galera servers are SSL and others aren't (since the role is applied in serial) | 15:10 |
*** cshen has joined #openstack-ansible | 15:16 | |
*** cshen has quit IRC | 15:20 | |
admin0 | jrosser, when you are free to look, complete error message I am getting and all the configs: https://gist.github.com/a1git/af375603b3b41e0fd773d1921a333db3 | 15:25 |
admin0 | error is on line 8 | 15:26 |
admin0 | my bad :D | 15:27 |
*** gyee has joined #openstack-ansible | 15:41 | |
*** d34dh0r53 has quit IRC | 15:47 | |
openstackgerrit | Merged openstack/ansible-role-systemd_service stable/ussuri: Revert "Build out the PrivateNetwork function for services" https://review.opendev.org/739564 | 15:48 |
*** grantza has joined #openstack-ansible | 15:57 | |
*** d34dh0r53 has joined #openstack-ansible | 15:58 | |
openstackgerrit | Merged openstack/openstack-ansible-os_keystone stable/ussuri: Identity Providers support improvments https://review.opendev.org/739570 | 16:01 |
*** nurdie_ has joined #openstack-ansible | 16:05 | |
*** nurdie has quit IRC | 16:09 | |
*** nurdie_ has quit IRC | 16:13 | |
*** mgariepy has quit IRC | 16:14 | |
*** namrata has quit IRC | 16:25 | |
*** d34dh0r53 has quit IRC | 16:29 | |
*** spatel has joined #openstack-ansible | 16:31 | |
*** d34dh0r53 has joined #openstack-ansible | 16:32 | |
openstackgerrit | Merged openstack/openstack-ansible stable/ussuri: Fix KeyError raised when max hostname length exceeded https://review.opendev.org/740441 | 16:56 |
*** mgariepy has joined #openstack-ansible | 17:13 | |
*** cshen has joined #openstack-ansible | 17:17 | |
*** cshen has quit IRC | 17:21 | |
*** spatel has quit IRC | 17:50 | |
admin0 | has anyone came across this type of neutron error: https://gist.githubusercontent.com/a1git/2693eb0661b4539e282cc043ae0dffd6/raw/5d88e284628a85a167828ddb56c634c5ce54a867/gistfile1.txt | 17:50 |
admin0 | the playbooks ran fine .. no errors .. | 17:50 |
admin0 | also I do not have the /var/log/neutron folders .. everything is on /var/log/syslog file | 17:51 |
admin0 | on 21.0.0.0rc2 | 17:52 |
*** spatel has joined #openstack-ansible | 17:56 | |
jrosser | admin0: "Permission denied: '/var/lock/neutron'" can you see if you have that directory and what the permissions problem might be? | 18:06 |
ioni | i've updated an aio from train to ussuri and most of the upgrade went fine | 18:07 |
ioni | i've noticed that ceph mon wasn't updated but ceph osd was updated | 18:07 |
ioni | so on ceph-mon packages are still on 14.2.8 and ceph osd are on 15.2..4 | 18:08 |
admin0 | i have the following directory neutron neutron-dhcp-agent/ neutron-l3-agent/ neutron-linuxbridge-agent/ neutron-metadata-agent/ neutron-metering-agent/ .. all ownership of neutron neutron | 18:08 |
ioni | is this issue known? | 18:08 |
arkan | Hi guys, I just want to thank this community for the great efforts and for helping people (newbies like me) and a special thank for the warrior @CeeMac who came with a brilliant idea of helping me to make progress with octavia | 18:11 |
arkan | also thanks for @jrosser @ioni @jamesdenton and all | 18:12 |
ioni | arkan: nice to hear that is working. any chance to tell me what was wrong? | 18:13 |
arkan | CeeMac made me first escape of Netplan :)) | 18:14 |
arkan | so I destroyed it | 18:14 |
arkan | and returned to ifupdown | 18:15 |
ioni | really, i think i made a comment about netplan , i joked around that i never saw anyone using that stuff | 18:15 |
arkan | then I he told me to move neutron to compute node | 18:15 |
arkan | ioni: guys you are mentally connected | 18:15 |
arkan | your network is the stars | 18:16 |
arkan | even when you joke you give solutions | 18:16 |
arkan | :)) | 18:16 |
arkan | then he told me to make some changes in the openstack_user_config and user_variables | 18:17 |
arkan | and creat veth pairs also | 18:17 |
admin0 | jrosser, any ideas on how i can solve this | 18:18 |
CeeMac | To be fair we made some other changes as well, so I can't say for certainty it was netplan. But I've never been a big fan and it does cause some known issues | 18:18 |
ioni | nice to hear that is everything is working fine for you | 18:18 |
arkan | ioni: we made progress, now the LB is online | 18:18 |
arkan | but the current problem is the certificate issue | 18:19 |
arkan | but at least I can see the "503 Service Unavailable" | 18:19 |
admin0 | arkan, when can we see the configs to replicate this in our env :D | 18:19 |
ioni | i don't have any issues with certs | 18:19 |
ioni | working fine in "production" and inn testing lab | 18:20 |
arkan | I can not add vms into the pool because of http://paste.openstack.org/show/795892/ | 18:20 |
*** spatel has quit IRC | 18:20 | |
ioni | ok, you have public endpoint on ssl that is invalid? | 18:20 |
arkan | it's pointing on the controller node | 18:21 |
arkan | openstack.arkan.cloud ---> 192.168.50.210 | 18:21 |
ioni | i think that's the issue | 18:21 |
arkan | should I install a certificate with letencrypt ? | 18:22 |
ioni | it won't generate because it's a private ip | 18:22 |
ioni | can you paste /etc/octavia/octavia.conf ? | 18:22 |
arkan | ok | 18:23 |
ioni | all sections should have endpoint_type = internalURL | 18:23 |
arkan | http://paste.openstack.org/show/795893/ | 18:24 |
ioni | it's all internal | 18:25 |
ioni | what about openstack endpoint list | 18:25 |
arkan | http://paste.openstack.org/show/795894/ | 18:26 |
arkan | admin0: I will give the config | 18:27 |
ioni | ok, so why is using the public endpoint for neutron? | 18:28 |
arkan | maybe if the cert stuff to be resolved, so you will get the full functional package | 18:28 |
ioni | add in [neutron] | 18:28 |
ioni | insecure=true | 18:28 |
arkan | I use this in my openstack_user_config.yml external_lb_vip_address: openstack.arkan.cloud | 18:29 |
arkan | and keystone_public_endpoint: https://openstack.arkan.cloud:5000 in user_variables | 18:30 |
arkan | ioni: I will add insecure=true under [neutron] section | 18:30 |
ioni | maybe add them in all sections | 18:31 |
jrosser | admin0: did you look at /var/lock/neutron like i asked? | 18:31 |
admin0 | yes | 18:31 |
admin0 | all folders have ownership of neutron:neutron | 18:31 |
johnsom | arkan There was a recent bug that might be causing that for you. In your octavia.conf file, can you try (we don't recommend leaving this set) adding "allow_invisible_resource_usage = True" to the "[networking]" section, then restart the API and worker processes? This will test if it is the bug or not. | 18:31 |
admin0 | jrosser, this is how the /var/lock looks like http://paste.openstack.org/show/795895/ | 18:32 |
arkan | johnsom: ok, I will do that | 18:32 |
openstackgerrit | Merged openstack/openstack-ansible stable/stein: Fix KeyError raised when max hostname length exceeded https://review.opendev.org/740443 | 18:32 |
arkan | wooooooooowwwww. it worked | 18:36 |
arkan | magic stuff | 18:36 |
johnsom | arkan Are you on Train or ??? | 18:36 |
arkan | yes | 18:36 |
arkan | train | 18:36 |
johnsom | You are missing this patch: https://review.opendev.org/738265 It's included in 5.0.2 release of Train | 18:36 |
arkan | oohhh my goodness my mind now got crazy of happiness | 18:37 |
arkan | the LB is working, with round robin | 18:37 |
arkan | for my 2 vms with simple web server | 18:37 |
johnsom | Sorry about that, a recent patch forgot to include the interface/endpoint in the keystone setup. | 18:37 |
jrosser | arkan: i'm fairly sure that octaiva bug is the one i asked you to update the SHA of the octavia service for | 18:37 |
johnsom | jrosser +1 | 18:37 |
arkan | jrosser: about the sha256, I've changed only os_horizon | 18:38 |
arkan | for octavia, no, I did not change it | 18:38 |
jrosser | right ok - so for now you can stick with the workaround from johnsom i guess as you've got it all working | 18:38 |
arkan | this is amazing guys | 18:39 |
johnsom | arkan Don't forget to unset that after you apply the new release | 18:39 |
jrosser | but if you do an upgrade to the next tag of openstack-ansible train then i think you will get the fix automatically | 18:39 |
admin0 | arkan, send in a howto so that we can replicate it :) | 18:39 |
arkan | admin0: sure I will arrange the config stuff and files | 18:39 |
admin0 | jrosser, i am on 21.0.0.0rc2 and hosts are ubuntu-20.04 if that helps | 18:40 |
jrosser | admin0: i don't really know whats happening there, i have a train/bionic deployment here and i see that directory and files inside it | 18:42 |
admin0 | i see 2 issues .. 1 .. that error itself 2. the absence of /var/log/neutron folder ( everything is coming on syslog ) | 18:43 |
*** cshen has joined #openstack-ansible | 18:44 | |
jrosser | the logs should be in the journal these days? | 18:44 |
jrosser | hmm thats not entirely whats happening here though | 18:45 |
*** spatel has joined #openstack-ansible | 18:48 | |
*** spatel has quit IRC | 18:48 | |
*** spatel has joined #openstack-ansible | 18:48 | |
admin0 | i did a chmod -R 777 /var/lock/neutron* | 18:55 |
admin0 | result is the same | 18:55 |
arkan | admin0: https://gist.github.com/arkanmgerges/9e2d5174683649f007993a4f6523604c | 19:21 |
*** cshen has quit IRC | 19:52 | |
*** cshen has joined #openstack-ansible | 19:54 | |
*** cshen has quit IRC | 19:58 | |
*** cshen has joined #openstack-ansible | 20:01 | |
*** cshen has quit IRC | 20:05 | |
admin0 | jrosser, a reboot fixed that issue .. but i have 3 more issues :D | 20:07 |
admin0 | i created a flat networking .. but the brq is not the interface or under br-vlan .. its kind of isolated | 20:07 |
admin0 | jrosser, latest issue and the config: https://gist.github.com/a1git/af375603b3b41e0fd773d1921a333db3 | 20:13 |
*** cshen has joined #openstack-ansible | 20:33 | |
jrosser | admin0: uuuurrrrrggghhh https://bugs.launchpad.net/nova/+bug/1863021 | 20:38 |
openstack | Launchpad bug 1863021 in OpenStack DBaaS (Trove) "[SRU] eventlet monkey patch results in assert len(_active) == 1 AssertionError" [Undecided,In progress] - Assigned to Lingxian Kong (kong) | 20:38 |
*** arkan has quit IRC | 20:52 | |
*** cshen has quit IRC | 21:06 | |
*** cshen has joined #openstack-ansible | 21:39 | |
*** tow has joined #openstack-ansible | 22:09 | |
*** cshen has quit IRC | 22:13 | |
admin0 | jrosser, i have decided to forget 20.04 and ussuri rc2 and go with bionic/train for the time being | 22:30 |
*** gshippey has quit IRC | 22:31 | |
*** tosky has quit IRC | 22:42 | |
*** spatel has quit IRC | 22:43 | |
*** cshen has joined #openstack-ansible | 22:43 | |
*** schwicht has quit IRC | 22:55 | |
*** schwicht has joined #openstack-ansible | 23:00 | |
*** spatel has joined #openstack-ansible | 23:15 | |
*** cshen has quit IRC | 23:18 | |
*** spatel has quit IRC | 23:19 | |
*** tow has quit IRC | 23:45 | |
*** tow has joined #openstack-ansible | 23:45 | |
*** cshen has joined #openstack-ansible | 23:49 | |
openstackgerrit | Merged openstack/openstack-ansible stable/train: Fix KeyError raised when max hostname length exceeded https://review.opendev.org/740442 | 23:56 |
Generated by irclog2html.py 2.17.2 by Marius Gedminas - find it at https://mg.pov.lt/irclog2html/!