Monday, 2024-11-18

opendevreviewMerged openstack/openstack-ansible-os_keystone stable/2024.1: federation: ensure cloud credentials are found on utility host  https://review.opendev.org/c/openstack/openstack-ansible-os_keystone/+/93453310:01
opendevreviewJonathan Rosser proposed openstack/openstack-ansible-os_neutron master: [doc] Add description of the LR binded usecase  https://review.opendev.org/c/openstack/openstack-ansible-os_neutron/+/93261610:07
opendevreviewJonathan Rosser proposed openstack/openstack-ansible stable/2024.1: Bump SHA for rabbitmq_server role  https://review.opendev.org/c/openstack/openstack-ansible/+/93549410:11
opendevreviewDmitriy Rabotyagov proposed openstack/openstack-ansible master: Move healthcheck playbooks to the collection  https://review.opendev.org/c/openstack/openstack-ansible/+/93361110:24
noonedeadpunkI was thnking to perform sha bumps for 2024.1 overall10:28
noonedeadpunkjsut wait for https://review.opendev.org/c/openstack/openstack-ansible-rabbitmq_server/+/931802 and https://review.opendev.org/c/openstack/openstack-ansible-os_rally/+/93481510:28
noonedeadpunkas sooner we get new tag the better...10:29
jrosserdid we have a topic for moving all the web serving to apache?10:29
jrosseri think that the ironic role needs some attention for that10:30
noonedeadpunkwe had topic only for MPM selection: https://review.opendev.org/q/topic:%22osa/apache_mpm_alignment%2210:31
noonedeadpunkfor acpache we agreed only to make a unified role for setup10:32
noonedeadpunkbut I had no progress there so far10:32
jrosserironic role is still dewplying ngin and fails as a result10:51
jrosser*deploying10:52
noonedeadpunkI somehow was totally unaware that it's installing nginx10:59
noonedeadpunkalso I can recall you saying about inspector deprecation10:59
jrosseryes it is deprecated, but not removed11:33
jrosseri was thinking we could deal with that next cycle11:33
noonedeadpunkthere was smth we needed to do to allow same functionality from ironic natively?11:33
opendevreviewMerged openstack/openstack-ansible-os_rally stable/2024.1: Add retries for UC fetching over HTTP  https://review.opendev.org/c/openstack/openstack-ansible-os_rally/+/93481511:40
jrosserafaik the same/similar functionality has been merged into ironic itself11:47
noonedeadpunkyeah I saw smth related there for sure11:47
jrosserso it might need eventually some "sensible defaults" but otherwise overrides would be sufficient11:48
mgariepyhow far shall we backport this one: https://review.opendev.org/c/openstack/openstack-ansible/+/93468613:27
jrosserwould not be a bad thing to put it on all the stable branches13:29
opendevreviewMarc Gariépy proposed openstack/openstack-ansible stable/2023.2: Deny access to any paths including /. for console proxies.  https://review.opendev.org/c/openstack/openstack-ansible/+/93551513:32
opendevreviewMarc Gariépy proposed openstack/openstack-ansible stable/2023.1: Deny access to any paths including /. for console proxies.  https://review.opendev.org/c/openstack/openstack-ansible/+/93551613:39
opendevreviewMarcus Klein proposed openstack/openstack-ansible-ops master: Fix Grafana deployment  https://review.opendev.org/c/openstack/openstack-ansible-ops/+/93552014:12
kleini^^^ as previously discussed. traefik_common role in skydive requires Ansible fact vars14:15
noonedeadpunkI recently made a patch to elk just converting facts to reffer correctly14:16
noonedeadpunkbut I haven't looked into rest14:16
noonedeadpunkhttps://review.opendev.org/c/openstack/openstack-ansible-ops/+/93454714:16
noonedeadpunkso in case some time on hands, I'd really prefer fixing vars used then enabling injection...14:17
kleinihttps://github.com/grafana/grafana-ansible-collection/blob/main/roles/grafana/tasks/main.yml#L9 grafana collection still relies on ansible_ vars14:20
kleinisame for Prometheus collection14:21
jrosseranyone fancy making a PR for those?14:30
noonedeadpunkfwiw, I was able to get elk bits running standalone15:02
noonedeadpunk(also to realize that journalbeat is replaced with filebeat anyway)15:02
noonedeadpunkbtw, somehow struggling with filebeat picking up journals for now...15:02
opendevreviewMerged openstack/openstack-ansible-rabbitmq_server stable/2024.1: Proceed with installation/upgrade even if cluster not healthy  https://review.opendev.org/c/openstack/openstack-ansible-rabbitmq_server/+/93180217:40
opendevreviewMerged openstack/openstack-ansible stable/2023.2: Deny access to any paths including /. for console proxies.  https://review.opendev.org/c/openstack/openstack-ansible/+/93551518:39
opendevreviewDmitriy Rabotyagov proposed openstack/openstack-ansible stable/2024.1: Bump SHAs for 2024.1  https://review.opendev.org/c/openstack/openstack-ansible/+/93555719:22
sykebenXHello, does anyone know whether there is a way to do hostname-based routing for openstack APIs and have them all bind to port 443 on HAProxy instead? I prefer not to have all the API services hosted on other ports since then I have to create firewall rules for 8-9 ports rather than just doing everything over 44319:45
mgariepysomething like : https://review.opendev.org/c/openstack/openstack-ansible/+/93453619:46
mgariepy?19:46
noonedeadpunkthere's renderred version that easier to read:) https://b4eff72617e82999ea33-03e51d134fc1c044893e5fb53732499a.ssl.cf5.rackcdn.com/934536/8/check/openstack-tox-docs/d360b2e/docs/user/prod/pretty_endpoint_naming.html19:53
mgariepyit has colors !19:54
noonedeadpunkit's it really needs quite some overrides to happen, I'd say...19:54
noonedeadpunkbut already having couple of deployments on hand with this approach19:54

Generated by irclog2html.py 2.17.3 by Marius Gedminas - find it at https://mg.pov.lt/irclog2html/!