*** jasonsb has quit IRC | 00:10 | |
*** jasonsb has joined #openstack-dns | 00:11 | |
*** dtx00ff has joined #openstack-dns | 00:18 | |
*** james_li has quit IRC | 00:22 | |
*** james_li has joined #openstack-dns | 00:25 | |
*** mlavalle has quit IRC | 00:38 | |
*** james_li has quit IRC | 00:42 | |
*** penick has quit IRC | 00:42 | |
*** jasonsb has quit IRC | 00:43 | |
*** jasonsb has joined #openstack-dns | 00:44 | |
*** rudrajit has joined #openstack-dns | 00:44 | |
*** rudraji__ has joined #openstack-dns | 00:45 | |
*** rudrajit_ has quit IRC | 00:47 | |
*** jasonsb has quit IRC | 00:48 | |
*** rudrajit has quit IRC | 00:48 | |
*** ducttape_ has joined #openstack-dns | 00:49 | |
*** rudraji__ has quit IRC | 01:14 | |
*** stanzgy has joined #openstack-dns | 01:18 | |
*** dtx00ff has quit IRC | 01:25 | |
*** ducttape_ has quit IRC | 01:55 | |
*** dtx00ff has joined #openstack-dns | 01:57 | |
*** rudrajit has joined #openstack-dns | 02:01 | |
*** dtx00ff has quit IRC | 02:23 | |
*** dtx00ff has joined #openstack-dns | 02:23 | |
*** dtx00ff has quit IRC | 02:27 | |
*** jasonsb has joined #openstack-dns | 02:28 | |
*** ducttape_ has joined #openstack-dns | 02:41 | |
*** dtx00ff has joined #openstack-dns | 02:42 | |
*** ducttape_ has quit IRC | 02:47 | |
*** ducttape_ has joined #openstack-dns | 02:55 | |
*** ducttape_ has quit IRC | 02:57 | |
*** kei_yama has quit IRC | 03:07 | |
*** dtx00ff has quit IRC | 03:08 | |
*** dtx00ff has joined #openstack-dns | 03:08 | |
openstackgerrit | XiaBing Yao proposed openstack/python-designateclient: Update installation.rst https://review.openstack.org/214433 | 03:12 |
---|---|---|
*** kei_yama has joined #openstack-dns | 03:12 | |
openstackgerrit | XiaBing Yao proposed openstack/python-designateclient: Update project repo name in installation.rst https://review.openstack.org/214433 | 03:13 |
*** raginbajin has quit IRC | 03:27 | |
*** raginbajin has joined #openstack-dns | 03:29 | |
*** logan2 has quit IRC | 03:31 | |
*** rudrajit has quit IRC | 03:32 | |
*** dtx00ff has quit IRC | 03:50 | |
*** km has quit IRC | 04:01 | |
*** km has joined #openstack-dns | 04:02 | |
*** kei_yama has quit IRC | 04:03 | |
*** kei_yama has joined #openstack-dns | 04:03 | |
*** raginbajin has quit IRC | 04:10 | |
*** raginbajin has joined #openstack-dns | 04:28 | |
*** dtx00ff has joined #openstack-dns | 04:32 | |
openstackgerrit | algerwang proposed openstack/python-designateclient: Update github's URL https://review.openstack.org/214445 | 04:35 |
*** rudrajit has joined #openstack-dns | 04:35 | |
*** dtx00ff has quit IRC | 04:36 | |
*** dtx00ff has joined #openstack-dns | 04:37 | |
*** rudrajit has quit IRC | 04:52 | |
*** rudrajit has joined #openstack-dns | 04:53 | |
*** rudrajit has quit IRC | 04:54 | |
*** rudrajit has joined #openstack-dns | 04:55 | |
*** kei_yama has quit IRC | 05:14 | |
*** km has quit IRC | 05:15 | |
*** kei_yama has joined #openstack-dns | 05:15 | |
*** boris-42 has quit IRC | 05:20 | |
*** rudrajit has quit IRC | 05:45 | |
*** rudrajit has joined #openstack-dns | 06:18 | |
*** dtx00ff has quit IRC | 06:20 | |
*** dtx00ff has joined #openstack-dns | 06:20 | |
*** bdx has quit IRC | 06:58 | |
*** bdx has joined #openstack-dns | 06:59 | |
*** rudrajit has quit IRC | 07:04 | |
*** jschwarz has joined #openstack-dns | 07:18 | |
*** fawadkhaliq has joined #openstack-dns | 07:23 | |
*** nyechiel_ has joined #openstack-dns | 07:40 | |
*** boris-42 has joined #openstack-dns | 07:58 | |
*** jordanP has joined #openstack-dns | 08:20 | |
*** timbyr_ has joined #openstack-dns | 08:21 | |
*** fawadkhaliq has quit IRC | 08:36 | |
*** kei_yama has quit IRC | 08:55 | |
*** jschwarz is now known as jschwarz|lunch | 09:10 | |
*** fawadkhaliq has joined #openstack-dns | 09:28 | |
*** f1ller has quit IRC | 10:05 | |
*** timsim has quit IRC | 10:06 | |
*** Trozz_ has quit IRC | 10:06 | |
*** d34dh0r53 has quit IRC | 10:07 | |
*** timsim has joined #openstack-dns | 10:07 | |
*** d34dh0r53 has joined #openstack-dns | 10:08 | |
*** f1ller has joined #openstack-dns | 10:09 | |
*** Trozz_ has joined #openstack-dns | 10:10 | |
*** jschwarz|lunch is now known as jschwarz | 10:29 | |
openstackgerrit | algerwang proposed openstack/python-designateclient: Update github's URL https://review.openstack.org/214445 | 10:35 |
*** en_austin has joined #openstack-dns | 10:39 | |
*** sonuk has joined #openstack-dns | 10:39 | |
*** stanzgy has quit IRC | 10:52 | |
*** fawadkhaliq has quit IRC | 10:53 | |
*** mwagner_lap has quit IRC | 10:57 | |
en_austin | hi all! can anybody help with designate deployment? i'm experiencing some issues with it - it doesn't want to communicate with backend :( | 11:06 |
en_austin | tried both stable/juno and stable/kilo versions - first is throwind "list out of range exception" on backend, Kilo one - does nothing, while successfully creating db records in designate. | 11:08 |
*** boris-42 has quit IRC | 11:20 | |
Kiall_ | en_austin: I'm guessing here because I haven't seen Kilo give an error like that re backends, but chances are it's something in the config file incorrect | 11:34 |
*** Kiall_ is now known as Kiall | 11:34 | |
Kiall | can you clear out anything sensitive from your conf file and paste on paste.openstack.org ? | 11:35 |
*** fawadkhaliq has joined #openstack-dns | 11:35 | |
en_austin | Kiall_: i'm now reinstalling Kilo on clear container without any previous attempts to start Designate - after it completion, sure, I'll share my configs | 11:39 |
*** rudrajit has joined #openstack-dns | 11:48 | |
Kiall | K | 11:48 |
*** rudrajit has quit IRC | 11:52 | |
en_austin | well, problem reproduced - clean installation of kilo does not communicates with bind9 backend :( will share my configs now. | 11:53 |
en_austin | you are asking for designate.conf and named.conf, right? | 11:54 |
*** jschwarz has quit IRC | 11:55 | |
*** jschwarz has joined #openstack-dns | 11:55 | |
en_austin | Kiall_: http://paste.openstack.org/show/cY3Vuyj94RhZjEIKCW6W/ | 11:56 |
en_austin | here is mine designate.conf | 11:56 |
Kiall | Let me have a look... | 11:57 |
Kiall | Ah - that looks like a Juno config file for Kilo - there was a bunch of changes :( | 11:58 |
Kiall | https://github.com/openstack/designate/blob/stable/kilo/etc/designate/designate.conf.sample#L251-L272 | 11:58 |
Kiall | Some work didn't make it in time into Kilo, so the config file got shafted with a PITA syntax :( (We're fixing it in L) | 11:59 |
Kiall | It replaces and adds more on top of the [backend:*] sections | 11:59 |
en_austin | Well, I should configure a nameserver pool to make my installation working? | 12:00 |
Kiall | Based on the paste you gave me.. http://paste.openstack.org/show/421762/ would be about right | 12:01 |
Kiall | (The ID's are currently mostly meaningless, they just need to be consistently used in the config until we migrate the Pool Config into the DB where it was meant to be | 12:02 |
Kiall | Actually.. 1 extra bit | 12:02 |
Kiall | http://paste.openstack.org/show/421769/ | 12:03 |
Kiall | If you're running bind9, typically, there would be 1 pool_nameserver and 1 pool_target section per bind9 server.. | 12:03 |
Kiall | For powerDNS etc, you have exactly 1 pool_target (the mysql DB), and Nx pool_nameservers (the actual PowerDNS servers using the DB) | 12:04 |
en_austin | I've applied your paste, but nothing changed (except log, saying "pool target.xxxxxx.options: .....") :( | 12:06 |
Kiall | Can you paste the stack trace? | 12:06 |
en_austin | there is no any stack trace or exceptions - Designate reports that domain is successfully created | 12:07 |
en_austin | but there is no any changes in bind9 zones file. | 12:07 |
en_austin | and there is no communication attempts in bind9 logs, too. | 12:07 |
en_austin | such as: "named[7291]: received control channel command ......." | 12:08 |
Kiall | Oh - So, since you had a juno config - I'm wondering if you're running the new to kilo pool-manager and mdns services? | 12:09 |
en_austin | Oops. Seems no :( I've running only Central and API | 12:09 |
Kiall | :) | 12:09 |
Kiall | (Pools and mDNS are mainly designed for 2 things.. 1) Make bind9 actually a production worthy backend, and 2) allow for scale out past what any single bind cluster can handle..) | 12:10 |
en_austin | sorry, I'm new to Designate and whole OpenStack, so i'm experiencing such stupid errors :) | 12:10 |
Kiall | No worries, we're aware of how terrible our docs are :( | 12:10 |
en_austin | TRACE designate ValueError: Invalid target type: None | 12:11 |
en_austin | while trying to start designate-pool-manager... | 12:11 |
Kiall | Ah - Right, so.. there's a cache used for pool manager (caches the current live serial # of zones on each of the nameservers) | 12:11 |
*** ducttape_ has joined #openstack-dns | 12:12 | |
Kiall | In kilo it defauled to a SQL based cache, which would log that error if mis-configured. in [service:pool_manager] - set "cache_driver = noop" to disable it.. or cache_driver = memcache/sqlalchemy and fill our their sections | 12:13 |
Kiall | If it's just quick dev/test syle env - noop is fine. It'll just mean we query the nameserver evertime we want to know the serial for a zone.. | 12:14 |
en_austin | i've configured a mysql backend for pool manager and now it's running | 12:15 |
Kiall | :) | 12:15 |
en_austin | i can try to add domain or there is smth else? | 12:15 |
en_austin | else to configure | 12:15 |
en_austin | * | 12:15 |
Kiall | Hopefully that's it | 12:15 |
Kiall | brb | 12:16 |
*** chlong has joined #openstack-dns | 12:27 | |
en_austin | Kiall: why you've specified masters=127.0.0.1:5354 in pool_target block? | 12:27 |
Kiall | You used 127.0.0.1 in your original config, which made me think everything was all on 1 server :) | 12:30 |
Kiall | It should be a list pointing to your designate-mdns servers, which run on 5354 by default | 12:30 |
en_austin | > designate-mdns | 12:30 |
en_austin | ... :( | 12:30 |
en_austin | i was worried about 5354 port) | 12:30 |
Kiall | Yea, we choose a >1024 port so we don't need root :) | 12:31 |
en_austin | my concern was - "what service should allocate this port?" :) | 12:31 |
Kiall | and - bind will be on 53 | 12:31 |
en_austin | so. | 12:31 |
en_austin | now I'm running: central, api, mdns (btw what its for?), pool-manager. | 12:31 |
en_austin | correct? | 12:31 |
Kiall | mdns will server AXFR's to BIND/PowerDNS/Akamai/DynECT etc | 12:33 |
Kiall | serve* | 12:33 |
Kiall | and yes - that's it.. | 12:33 |
*** mwagner_lap has joined #openstack-dns | 12:33 | |
Kiall | (You can point dig @ mdns, and it'll work as a DNS server.. Just .. It's python and SQL backed.. So you'd never even consider using it as your public facing DNS server ;)) | 12:34 |
en_austin | i've got an idea | 12:35 |
* Kiall runs! | 12:35 | |
en_austin | but now, it seems that i have a misconfiguration again :( | 12:35 |
Kiall | Any errors etc or? | 12:36 |
en_austin | I'm now trying to create new domain via API - Designate says that all is OK, but when I'm trying to dig @my-dns - i'm getting nothing. | 12:37 |
en_austin | http://paste.openstack.org/show/421834/ | 12:37 |
en_austin | ^ here is BIND log after API request to Designate | 12:38 |
Kiall | "skipping zone transfer as master 127.0.0.1#5354" would be the one, is mdns actually on the same server as bind? | 12:38 |
Kiall | and running + listening on 5354 etc.. | 12:38 |
en_austin | yes, they are running at same VM | 12:38 |
en_austin | http://paste.openstack.org/show/XSSLidr3n6UA78Ao4oqj/ <- my BIND config | 12:38 |
*** logan2 has joined #openstack-dns | 12:39 | |
Kiall | Okay.. does `dig -p5354 @127.0.0.1 SOA sometestdomain.com` work? | 12:39 |
en_austin | yes | 12:40 |
Kiall | and `dig -p5354 @127.0.0.1 AXFR sometestdomain.com` | 12:40 |
en_austin | it returned two equal SOAs and one NS record | 12:40 |
Kiall | Perfect.. Looking at the log again - I see it.. | 12:41 |
Kiall | skipping zone transfer as master 127.0.0.1#5354 (source 0.0.0.0#0) is unreachable (cached) | 12:41 |
Kiall | is unreachable (cached) == BIND has cached (by default, 10 mins I think) that it couldn't reach mDNS | 12:41 |
en_austin | well, I've done rndc flush | 12:42 |
en_austin | now: client 10.30.31.137#63791 (sometestdomain.com): query 'sometestdomain.com/A/IN' denied | 12:42 |
Kiall | That sounds like bind has the data, and is refusing your query? | 12:42 |
Kiall | Yes your config has | 12:43 |
Kiall | allow-query { localhost; }; | 12:43 |
en_austin | awh | 12:43 |
Kiall | and the source IP there is 10.30...x | 12:43 |
en_austin | great! seems it works | 12:43 |
en_austin | i've asked BIND for sometestdomain and got SOA record for it | 12:43 |
Kiall | Cool :) | 12:43 |
en_austin | to tell the truth: not so obvious :( | 12:44 |
en_austin | will patch my ansible playbook to get it up and running in one click. | 12:44 |
en_austin | btw, maybe, i can share it with you and write some short FAQ like "Deploy Designate and BIND on clean machine: step-by-step" ? | 12:45 |
Kiall | en_austin: yea, it's anything but right now :( We spent most of monday locked in a conference room during the mid-cycle meetup discussing it... | 12:45 |
Kiall | en_austin: please do! | 12:45 |
en_austin | with great pleasure - I have now such Ansible playbook for PDNS configurations, will write another one for BIND :) | 12:45 |
Kiall | We have a install section in our docs, e.g. https://github.com/openstack/designate/blob/master/doc/source/install/ubuntu-kilo.rst | 12:46 |
Kiall | but it totally glossses over the hard parts | 12:46 |
Kiall | (rendered @ http://docs.openstack.org/developer/designate/install/ubuntu-kilo.html ) | 12:46 |
*** fawadkhaliq has quit IRC | 12:46 | |
en_austin | I'll create and send a pull request when my installation will be ready and i will test it again from scratch. | 12:46 |
en_austin | but what about one-click ansible playbook? :) | 12:46 |
Kiall | I'm not sure we can take+maintain something like that I'm afraid :( | 12:47 |
Kiall | If you have it on GitHub etc.. we can add it to http://docs.openstack.org/developer/designate/related.html#related-projects | 12:48 |
en_austin | I will share it on Github, for sure | 12:48 |
Kiall | But .. Maintaining it is something we can't commit to! | 12:48 |
en_austin | awh, I think you should not maintain it :)) just a link in readme/etc will be enough! | 12:49 |
Kiall | That we can do :) | 12:50 |
Kiall | Kinda wish there was a better place for those kinda things, I know of 2 companies who already have ansible plays for designate.. :( | 12:50 |
Kiall | (neither are open source though) | 12:50 |
en_austin | there is no rocket science in that playbooks - but, unfortunately, a target OS is important variable while running playbook (yum-related commands will fail while running on Debian, for example) | 12:51 |
Kiall | Yea, ansible provides modules to "abstract" that to some extent (if the package name is the same on all, it can work..) | 12:53 |
Kiall | But.. Naming is usually not the same ;) | 12:53 |
*** ducttape_ has quit IRC | 13:00 | |
openstackgerrit | Kiall Mac Innes proposed openstack/designate-specs: Add deleted domain purging spec https://review.openstack.org/207115 | 13:28 |
*** sonuk has quit IRC | 13:30 | |
en_austin | Kiall, just to avoid misunderstanding from my side - a records add flow is like: client -> Designate API -> mDNS <- sync -> BIND (or other backend) | 13:37 |
en_austin | is it? | 13:37 |
*** james_li has joined #openstack-dns | 13:37 | |
*** james_li has quit IRC | 14:03 | |
*** kbyrne has quit IRC | 14:07 | |
*** timbyr_ has quit IRC | 14:07 | |
*** kbyrne has joined #openstack-dns | 14:11 | |
en_austin | and another question - why I cannot delete auto-created NS record for just created zone? I want to establish a zone delegation - so I need only SOA, NS (pointing at another NS server) and new A record pointing to NS above | 14:13 |
*** boris-42 has joined #openstack-dns | 14:15 | |
*** ducttape_ has joined #openstack-dns | 14:20 | |
*** ducttape_ has quit IRC | 14:24 | |
*** ducttape_ has joined #openstack-dns | 14:25 | |
*** csoukup has joined #openstack-dns | 14:27 | |
en_austin | and, are there any way to create a zone forwarding (like BINDs "type=forward forwarders {....}) ? | 14:42 |
*** ducttape_ has joined #openstack-dns | 14:44 | |
*** logan2 has quit IRC | 15:01 | |
*** logan2 has joined #openstack-dns | 15:05 | |
Kiall | en_austin: sorry, was AFK.. re flow - that looks about right... | 15:06 |
Kiall | re auto-created NS - we actually talked about that last night, and may allow the deletion .. BUT.. Generally, you wouldn't create the zone to be delegated in designate.. you would create it's parent (otherwise it's not really used/part of designate etc) | 15:07 |
Kiall | re zone forwarding - No, we generally expect the server with be authoritative only | 15:08 |
*** pglass has joined #openstack-dns | 15:08 | |
en_austin | so, there are no any possibility to create a zone forward? for example - foo.example.org IN NS nsXX.example.org - and to let BIND just forward all *.foo.example.org's queries to nsXX.example.org | 15:11 |
en_austin | I've tried to create glue records (NS + A), but all that I've got - an NS response for foo.example org (...IN NS nsXX.example.org) | 15:11 |
Kiall | If you configure BIND right, it should as far as I know follow the delegation and return for you.. Otherwise, the resolver will | 15:12 |
en_austin | my main goal - to delegate responsibility for *.[a-z0-9].example.org for different NS's, but I want to manage *.example.org's via Designate API | 15:12 |
Kiall | Okay, you can create the example.org. in designate, and delegate the sub-zones to another nameserver with NS's.. After that, it's down to configuring bind to do the right thing etc | 15:13 |
en_austin | Do you have an idea how to do this (in BINDs config)? | 15:14 |
*** mlavalle has joined #openstack-dns | 15:25 | |
*** james_li has joined #openstack-dns | 15:26 | |
openstackgerrit | Paul Glass proposed openstack/designate: Show functional test request logging https://review.openstack.org/214336 | 15:44 |
*** ccneill has joined #openstack-dns | 15:54 | |
*** rudrajit has joined #openstack-dns | 15:55 | |
*** rudrajit has quit IRC | 15:58 | |
*** rudrajit has joined #openstack-dns | 15:59 | |
*** fawadkhaliq has joined #openstack-dns | 16:08 | |
*** ccneill_ has joined #openstack-dns | 16:08 | |
*** jbratton_ has joined #openstack-dns | 16:08 | |
*** dtx00ff has quit IRC | 16:09 | |
*** ccneill__ has joined #openstack-dns | 16:09 | |
*** jbratton_ has quit IRC | 16:10 | |
*** ccneill has quit IRC | 16:11 | |
*** ccneill__ has quit IRC | 16:11 | |
*** jbratton has quit IRC | 16:12 | |
*** ccneill_ has quit IRC | 16:13 | |
*** ccneill__ has joined #openstack-dns | 16:13 | |
*** jbratton has joined #openstack-dns | 16:13 | |
*** rudrajit has quit IRC | 16:23 | |
elarson | Kiall: do we need a blueprint for the mdns wire format stuff? | 16:23 |
mugsie | elarson: maybe | 16:23 |
Kiall | elarson: maybe, but since we're all here etc etc.. We may be best pushing forward without one! | 16:25 |
*** penick has joined #openstack-dns | 16:26 | |
mlavalle | Kiall: is this the correct repo for the client? | 16:28 |
elarson | mugsie, Kiall: sounds good | 16:28 |
mlavalle | Kiall: http://git.openstack.org/cgit/openstack/python-designateclient/ | 16:28 |
*** dtx00ff has joined #openstack-dns | 16:30 | |
*** jordanP has quit IRC | 16:30 | |
Kiall | mlavalle: yep! | 16:31 |
mlavalle | Kiall: nova uses the neutron client to create networks, ports, etc on behalf on nova isntances. I intend to use a similar approach between Nuetron and Designate. Neutron using the designate client. Does that make sense? | 16:32 |
Kiall | mlavalle: yes, that makes perfect sense :) | 16:38 |
Kiall | No point reimplementing all that | 16:39 |
mlavalle | :-) | 16:39 |
*** dtx00ff has quit IRC | 16:44 | |
*** nyechiel_ has quit IRC | 16:44 | |
en_austin | Kiall: can you say smth about my question about creating a zone delegation via Designate? or, maybe, you can give an advice who can help with this | 16:45 |
en_austin | I sure, that there should be a solution - not so rare scenario, I think | 16:45 |
*** rudrajit has joined #openstack-dns | 16:49 | |
*** pglass has quit IRC | 16:50 | |
*** dtx00ff has joined #openstack-dns | 16:51 | |
*** ccneill__ has quit IRC | 17:00 | |
mlavalle | Kiall: no meeting today? | 17:04 |
*** dtx00ff has quit IRC | 17:09 | |
*** cliles has quit IRC | 17:12 | |
*** eXceptoR has joined #openstack-dns | 17:12 | |
*** en_austin has quit IRC | 17:13 | |
mlavalle | Kiall: I guess not..... it's lunchtime in Texas :-) | 17:19 |
*** fawadk has joined #openstack-dns | 17:20 | |
*** fawadkhaliq has quit IRC | 17:21 | |
*** james_li has quit IRC | 17:27 | |
*** jschwarz has quit IRC | 17:32 | |
*** ccneill__ has joined #openstack-dns | 17:33 | |
*** rudrajit_ has joined #openstack-dns | 17:41 | |
*** eXceptoR has quit IRC | 17:41 | |
*** rudrajit has quit IRC | 17:44 | |
*** jordanP has joined #openstack-dns | 17:49 | |
*** ericpeterson has joined #openstack-dns | 17:55 | |
*** ducttape_ has quit IRC | 17:57 | |
*** ccneill__ is now known as ccneill | 18:00 | |
*** james_li has joined #openstack-dns | 18:05 | |
*** jordanP has quit IRC | 18:08 | |
*** ericpeterson has quit IRC | 18:09 | |
*** rudrajit has joined #openstack-dns | 18:10 | |
*** rudrajit_ has quit IRC | 18:12 | |
*** dtx00ff has joined #openstack-dns | 18:17 | |
*** penick has quit IRC | 18:22 | |
*** pglass has joined #openstack-dns | 18:29 | |
*** pglass has quit IRC | 18:29 | |
*** pglass has joined #openstack-dns | 18:30 | |
*** bapalm has quit IRC | 18:31 | |
*** bapalm has joined #openstack-dns | 18:32 | |
*** ccneill has quit IRC | 18:35 | |
openstackgerrit | Merged openstack/designate-specs: Add deleted domain purging spec https://review.openstack.org/207115 | 18:37 |
*** jasonsb has quit IRC | 18:43 | |
*** jasonsb has joined #openstack-dns | 18:44 | |
*** jasonsb has quit IRC | 18:48 | |
openstackgerrit | Kiall Mac Innes proposed openstack/designate: WIP: Track items added/removed from ListObjects https://review.openstack.org/214751 | 18:49 |
*** dtx00ff has quit IRC | 19:00 | |
*** ducttape_ has joined #openstack-dns | 19:02 | |
elarson | Kiall: fyi, docker | 19:03 |
openstackgerrit | Kiall Mac Innes proposed openstack/designate: WIP: Track items added/removed from ListObjects https://review.openstack.org/214751 | 19:03 |
timsim | Kiall: Jsyk, docker | 19:03 |
*** fawadk has quit IRC | 19:04 | |
elarson | http://rancher.com/rancher-os/ | 19:04 |
elarson | !nailedit | 19:04 |
openstack | elarson: Error: "nailedit" is not a valid command. | 19:04 |
*** dtx00ff has joined #openstack-dns | 19:07 | |
ekarlso | elarson: what about docker ? | 19:12 |
mugsie | ekarlso: docker solves everything | 19:14 |
mugsie | Kiall: just doesn't know it yet | 19:14 |
Kiall | elarson / mugsie.... docker = pain and suffering with a good marketing department | 19:14 |
mugsie | bit like OpenStack | 19:14 |
ekarlso | :p | 19:15 |
timsim | True dat | 19:15 |
timsim | yeah it is Kiall | 19:15 |
mugsie | whatcha talking about willis? | 19:15 |
*** jasonsb has joined #openstack-dns | 19:25 | |
openstackgerrit | Kiall Mac Innes proposed openstack/designate: WIP: Track items added/removed from ListObjects https://review.openstack.org/214751 | 19:27 |
openstackgerrit | Kiall Mac Innes proposed openstack/designate: Track items added/removed from ListObjects https://review.openstack.org/214751 | 19:27 |
*** rudrajit has quit IRC | 19:28 | |
*** rudrajit has joined #openstack-dns | 19:29 | |
*** dtx00ff has quit IRC | 19:34 | |
bdx | Kiall: Hows it going? you around? | 19:41 |
Kiall | bdx: heya - yep | 19:45 |
bdx | core, dev: hows it going everyone?!? I struggling a bit trying to get designate to update my other dns servers when records are created using designate. Is there any documentation that might help facilitate what I'm trying to do? I don't feel like I'm to far off the beaten path... | 19:46 |
Kiall | Sounds like pretty standard use! What exactly are you seeing wrong? | 19:46 |
bdx | kiall: I guess I am a bit confused on what parts go where...pertaining to non local dns servers.. | 19:48 |
bdx | my designate conf looks like http://paste.ubuntu.com/12130186/ | 19:48 |
bdx | where 10.10.20.11 is my authoritative master for an internal dns cluster | 19:49 |
Kiall | And are changes making it out to that auth master? | 19:50 |
bdx | Kiall: yes | 19:50 |
bdx | and the acl's are configured correctly | 19:50 |
Kiall | K - So, there's 2 ways to use it.. The "normal" and the not-so-normal... | 19:50 |
bdx | ok....sweet...please do enlighten me:-) | 19:50 |
Kiall | Normal is that all your BIND nameservers are listed out in in our config, there all "masters".. e.g. a pool_target and pool_nameserver for each BIND server.. | 19:51 |
Kiall | (for pDNS, you have 1 pool target - the pDNS DB, and Nx pool nameservers - 1 for each pDNS server) | 19:51 |
Kiall | (hemce, the distinction between targets and nameservers) | 19:52 |
Kiall | hence* | 19:52 |
bdx | Kiall: what is the difference between targets and servers with bind9? | 19:52 |
Kiall | None, in the normal model.. They would be 1:1 for each server | 19:52 |
bdx | ok ....so then would I need to specify two different bind9 servers ....one for each? | 19:53 |
Kiall | The other model, which timsim knows more than I about, is using the "agent" .. where you have normal slaves + Nx "masters" etc | 19:53 |
bdx | ok gotcha. | 19:53 |
bdx | I am just trying to get the most simple basic way working initially | 19:53 |
bdx | where my single auth master bind9 server gets updated from designate mdns....this sounds like the standard model...>? | 19:54 |
Kiall | K - Then, list out a new pool_target and pool_nameserver section for each server, pick any old UUIDs for them, and it should manage them all for you | 19:54 |
Kiall | Not quite.. The normal (for designate) model is that you would have no difference between your bind9 servers.. there all the same, they all slave from mDNS | 19:55 |
bdx | ahhh gotcha.......so in my model I don't need mDNS then because my master server is non-local to designate? | 19:56 |
timsim | bdx: Just reading the scrollback, you've got Bind9 in a master-slave configuration right now or no? | 19:57 |
bdx | timsim: yes | 19:57 |
bdx | currently one auth master that update two slaves for our internal dns | 19:58 |
bdx | I am trying to get designate to update my auth master at 10.10.20.11 using this config http://paste.ubuntu.com/12130186/ | 19:59 |
timsim | The reason Designate has to be the master is because (for BIND9) all the creates/deletes (addzone/delzones) need to be replicated on each server. And if Designate isn't reaching out to those slaves, they're not informed of creates/deletes. | 19:59 |
bdx | ok totally | 19:59 |
timsim | But you're having trouble getting the update to show up on your master? | 19:59 |
bdx | timsim: I see them hit the master e.g. i see in my syslog on the auth master | 20:00 |
bdx | 10.16.110.20#55022: received notify for zone 'example.net' | 20:00 |
bdx | but no records are created | 20:01 |
bdx | exactly | 20:01 |
timsim | Ah right, so you'll need Designate to do the RNDC calls on that master | 20:02 |
timsim | Is 192.168.27.100 another interface for 10.10.20.11? | 20:02 |
bdx | timsim: no, 192.168.27.100 is a devstack vm where designate is running | 20:03 |
bdx | the two networks can talk back and fourth through a router | 20:03 |
timsim | Ok. The pool target is the dns server that Designate will write to. So in that case, you'll want it to be your authoritative bind9 server | 20:03 |
timsim | The pool_nameserver is the thing that Designate will check to ensure that changes have propagated. | 20:04 |
bdx | timsim: those are the same server then, my auth master? | 20:05 |
bdx | sl | 20:05 |
bdx | so | 20:05 |
bdx | options = rndc_host: 192.168.27.100, rndc_port: 953, rndc_config_file: /etc/bind/rndc.conf, rndc_key_file: /etc/bind/rndc.key | 20:05 |
bdx | should be | 20:05 |
bdx | options = rndc_host: 10.10.20.11, rndc_port: 953, rndc_config_file: /etc/bind/rndc.conf, rndc_key_file: /etc/bind/rndc.key | 20:05 |
timsim | I believe so | 20:05 |
bdx | and | 20:05 |
bdx | masters = 192.168.127.100:5354 | 20:05 |
bdx | should be | 20:05 |
*** ccneill has joined #openstack-dns | 20:05 | |
bdx | masters = 10.10.20.11:5354 ? | 20:06 |
timsim | The only situation where target/nameserver would be different for BIND9 would be if you had some sort of replication behavior and you wanted to ensure that a change went live somewhere other than your authoritative nameserver. | 20:06 |
timsim | No. The master should still be designate-mdns (designate host, port 5354) | 20:06 |
bdx | ok | 20:06 |
bdx | gotcha | 20:06 |
timsim | That's where BIND9 will zone transfer from | 20:06 |
*** rudrajit_ has joined #openstack-dns | 20:06 | |
bdx | ok | 20:07 |
bdx | so my config is very close.... | 20:07 |
bdx | from what I can tell I only need modify the options[rndc_host] param then ? | 20:08 |
* timsim looks again | 20:08 | |
timsim | I believe so | 20:09 |
*** rudrajit has quit IRC | 20:10 | |
bdx | timsim, Kiall: thanks for your support....I'll get back to you and let you know how things turn out! | 20:10 |
Kiall | :) | 20:13 |
bdx | timsim, kiall: I am wondering, if mDNS acts as the master, should I set up these domains on my auth master as slave zones? | 20:14 |
timsim | Designate will be the one that sets them up for you (doing those rndc addzones { type: slave } or whatevers) | 20:15 |
*** rudrajit has joined #openstack-dns | 20:15 | |
bdx | timsim: ....ok but does that make it authoritative? | 20:16 |
timsim | mugsie: http://www.amazon.com/gp/product/B00JUQZKZ0 | 20:17 |
timsim | bdx: Technically mdns and designate are authoritative for the zone | 20:17 |
*** rudraji__ has joined #openstack-dns | 20:18 | |
*** rudrajit_ has quit IRC | 20:18 | |
timsim | To run master-slave BIND9, you'll need some other mechanism to replicate creates/deletes to the slaves. | 20:18 |
timsim | Or run them all as masters, and let Designate update the lot. | 20:18 |
timsim | Or, if it's just a few zones, set your slaves up with the same zones and tell your 'bind9 master' to notify them, which I believe is possible, but they won't get new zones/delete deleted ones. | 20:19 |
*** rudrajit has quit IRC | 20:21 | |
*** rudrajit has joined #openstack-dns | 20:22 | |
*** rudraji__ has quit IRC | 20:25 | |
openstackgerrit | Kiall Mac Innes proposed openstack/designate: oslo.middleware 1.6.0 compatibility https://review.openstack.org/214783 | 20:25 |
openstackgerrit | Kiall Mac Innes proposed openstack/designate: oslo.middleware 2.6.0 compatibility https://review.openstack.org/214783 | 20:30 |
mugsie | timsim: https://review.openstack.org/#/c/204619/ | 20:33 |
mugsie | timsim: | 20:33 |
mugsie | timsim: | 20:33 |
mugsie | timsim: | 20:33 |
mugsie | timsim: | 20:33 |
mugsie | timsim: | 20:33 |
mugsie | timsim: | 20:33 |
mugsie | timsim: | 20:33 |
mugsie | timsim: | 20:33 |
mugsie | timsim: | 20:33 |
timsim | mugsie | 20:33 |
timsim | mugsie | 20:33 |
timsim | mugsie | 20:33 |
timsim | mugsie | 20:33 |
timsim | mugsie | 20:33 |
timsim | mugsie | 20:33 |
timsim | mugsie | 20:33 |
timsim | mugsie | 20:33 |
timsim | mugsie | 20:33 |
timsim | mugsie | 20:33 |
timsim | Sorry all | 20:34 |
Kiall | timsim | 20:34 |
Kiall | timsim | 20:34 |
Kiall | timsim | 20:34 |
mugsie | Kiall: | 20:34 |
mugsie | Kiall: | 20:34 |
mugsie | Kiall: | 20:34 |
*** cliles has joined #openstack-dns | 20:35 | |
openstackgerrit | Kiall Mac Innes proposed openstack/designate: Track items added/removed from ListObjects https://review.openstack.org/214751 | 20:45 |
*** jmcbride has joined #openstack-dns | 20:46 | |
mlavalle | Kiall: ping | 20:48 |
mlavalle | Kiall, timsim: I am creating a devstack with designate. 1 vm. do I need to configure a backend? | 20:49 |
Kiall | Eh - It will setup powerdns for you by default | 20:49 |
Kiall | or maybe it defalts to bind9 - either way, both should work for your case :) | 20:50 |
mlavalle | Kiall: so no need to enter anythin in ragrds to that in my local.conf? | 20:50 |
mlavalle | Kiall: i'll take that as a no, so i save you a few keystrokes :-) | 20:51 |
Kiall | oh | 20:52 |
Kiall | eh.. I dont think so.. from memory | 20:52 |
Kiall | it's been a while since I wrote a localrc by hand ;) | 20:52 |
openstackgerrit | Joe McBride proposed openstack/designate-specs: Alias Records Spec https://review.openstack.org/214788 | 20:53 |
mlavalle | Kiall: well, I just triggered ./stack.sh. i'll let you know my findings | 20:54 |
Kiall | mlavalle: fingers crossed ;) | 20:54 |
*** jmcbride has quit IRC | 20:59 | |
*** jmcbride has joined #openstack-dns | 21:01 | |
*** james_li has quit IRC | 21:05 | |
*** rudrajit_ has joined #openstack-dns | 21:07 | |
*** rudraji__ has joined #openstack-dns | 21:08 | |
*** pglass has quit IRC | 21:09 | |
*** rudrajit has quit IRC | 21:10 | |
*** rudrajit_ has quit IRC | 21:12 | |
*** sonuk has joined #openstack-dns | 21:30 | |
*** jmcbride has quit IRC | 21:32 | |
mlavalle | timsim: ping | 21:38 |
mlavalle | mugsie: ping | 21:45 |
mugsie | hey mlavalle | 21:55 |
mugsie | i am on a phobe, si i may end up dropping abruptly | 21:56 |
*** dtx00ff has joined #openstack-dns | 21:56 | |
*** dtx00ff has quit IRC | 21:56 | |
mugsie | phone* so* | 21:56 |
*** dtx00ff has joined #openstack-dns | 21:56 | |
*** csoukup has quit IRC | 21:58 | |
mlavalle | mugsie: I am trying to start create a devstack with designate. the following processes started correctly: designate-central, designate-pool-manager, designate-zone-manager, designate-mdns | 22:03 |
mlavalle | mugsie: designate-api failed to start. You can see the failure here: https://gist.github.com/miguellavalle/5c11b7a4e70c7ec5f0f0 | 22:03 |
mlavalle | mugsie: and my local.conf here: https://gist.github.com/miguellavalle/b69332df1beaae034d6c | 22:04 |
mlavalle | mugsie: can you help? | 22:04 |
mugsie | ah | 22:09 |
mugsie | yrs i can | 22:09 |
mugsie | you need to ensure oslo.middleware is at version 2.5.0 | 22:10 |
mugsie | they did a 2.6.0 release that broke us | 22:10 |
mugsie | mlavalle: ^ | 22:10 |
* mlavalle checking oslo.middleware version | 22:11 | |
*** csoukup has joined #openstack-dns | 22:14 | |
*** csoukup has quit IRC | 22:19 | |
mlavalle | mugsie: yeah, I got oslo.middleware 2.6.0 | 22:20 |
*** ccneill has quit IRC | 22:26 | |
*** ccneill has joined #openstack-dns | 22:32 | |
*** mwagner_lap has quit IRC | 22:32 | |
*** jmcbride has joined #openstack-dns | 22:32 | |
*** jasonsb has quit IRC | 22:55 | |
*** km has joined #openstack-dns | 23:02 | |
*** ccneill has quit IRC | 23:11 | |
*** ducttape_ has quit IRC | 23:11 | |
*** dtx00ff has quit IRC | 23:14 | |
*** dtx00ff has joined #openstack-dns | 23:14 | |
*** mwagner_lap has joined #openstack-dns | 23:19 | |
*** sonuk has quit IRC | 23:20 | |
*** kei_yama has joined #openstack-dns | 23:25 | |
*** chlong has quit IRC | 23:28 | |
*** ccneill has joined #openstack-dns | 23:33 | |
*** rudraji__ has quit IRC | 23:35 | |
*** rudrajit has joined #openstack-dns | 23:36 | |
*** rudrajit has quit IRC | 23:45 | |
*** jasonsb has joined #openstack-dns | 23:59 |
Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!