Wednesday, 2016-08-10

*** mlavalle has quit IRC00:00
*** ducttape_ has quit IRC00:10
*** ducttape_ has joined #openstack-dns01:11
*** ducttape_ has quit IRC01:16
*** ducttape_ has joined #openstack-dns01:26
*** ducttape_ has quit IRC01:28
*** richm has quit IRC01:28
*** puck has quit IRC01:31
*** puck has joined #openstack-dns01:35
*** stanzgy has joined #openstack-dns01:38
*** ducttape_ has joined #openstack-dns02:28
*** ducttape_ has quit IRC02:33
*** ducttape_ has joined #openstack-dns02:38
*** tyr_ has joined #openstack-dns02:46
*** tyr_ has quit IRC02:52
*** ducttape_ has quit IRC03:04
*** tyr_ has joined #openstack-dns03:11
*** rudrajit has quit IRC03:25
*** penick has quit IRC03:53
*** rkrum has joined #openstack-dns04:13
*** rudrajit has joined #openstack-dns04:24
*** ducttape_ has joined #openstack-dns04:35
*** ducttape_ has quit IRC04:40
*** pcaruana has quit IRC05:01
*** tyr_ has quit IRC05:12
-openstackstatus- NOTICE: zuul is being restarted to reload configuration. Jobs should be re-enqueued but if you're missing anything (and it's not on http://status.openstack.org/zuul/) please issue a recheck in 30min.05:24
*** ducttape_ has joined #openstack-dns05:47
*** penick has joined #openstack-dns05:51
*** ducttape_ has quit IRC05:52
*** GonZo2000 has quit IRC06:11
*** rudrajit has quit IRC06:44
*** penick has quit IRC06:45
*** f13o has joined #openstack-dns06:47
*** ducttape_ has joined #openstack-dns06:48
*** ducttape_ has quit IRC06:53
*** f13o has quit IRC06:55
*** rkrum has quit IRC07:06
*** greghaynes has quit IRC07:20
*** greghaynes has joined #openstack-dns07:20
*** pcaruana has joined #openstack-dns07:24
*** ducttape_ has joined #openstack-dns07:49
*** ducttape_ has quit IRC07:54
*** nyechiel has joined #openstack-dns08:07
*** simonmcc has quit IRC08:08
*** simonmcc has joined #openstack-dns08:10
*** nyechiel has quit IRC08:14
*** openstackgerrit has quit IRC08:18
*** openstackgerrit has joined #openstack-dns08:18
*** ChanServ sets mode: +v openstackgerrit08:18
*** GonZo2000 has joined #openstack-dns08:34
*** GonZo2000 has joined #openstack-dns08:34
*** ducttape_ has joined #openstack-dns08:50
*** ducttape_ has quit IRC08:55
*** ducttape_ has joined #openstack-dns09:50
*** ducttape_ has quit IRC09:56
*** nyechiel has joined #openstack-dns10:10
openstackgerritDavanum Srinivas (dims) proposed openstack/designate: [WIP] Testing latest u-c  https://review.openstack.org/31802010:10
*** rkrum has joined #openstack-dns10:23
*** ducttape_ has joined #openstack-dns10:51
*** cvstealth has joined #openstack-dns10:53
*** cvstealt1 has quit IRC10:55
*** ducttape_ has quit IRC10:56
*** abalutoiu has joined #openstack-dns11:12
*** GonZo2000 has quit IRC11:13
*** kei_yama has joined #openstack-dns11:22
*** kei_yama has quit IRC11:25
*** kei_yama has joined #openstack-dns11:27
*** kei_yama has quit IRC11:31
*** rkrum has quit IRC11:43
*** ducttape_ has joined #openstack-dns11:52
*** ducttape_ has quit IRC11:57
*** ducttape_ has joined #openstack-dns12:07
*** ducttape_ has quit IRC12:31
*** richm has joined #openstack-dns12:35
*** GonZo2000 has joined #openstack-dns12:46
*** GonZo2000 has joined #openstack-dns12:46
*** GonZo2000 has quit IRC12:48
*** stanzgy has quit IRC12:50
*** GonZo2000 has joined #openstack-dns12:56
*** GonZo2000 has quit IRC12:56
*** GonZo2000 has joined #openstack-dns12:58
*** GonZo2000 has joined #openstack-dns12:58
*** hoobaman has joined #openstack-dns13:26
hoobamanHi13:26
hoobamananyone alredy tested designate with an infoblox backend?13:26
*** ducttape_ has joined #openstack-dns13:27
mugsiehoobaman: yeah infoblox themselves test it13:31
*** ducttape_ has quit IRC13:31
*** kei_yama has joined #openstack-dns13:40
*** kei_yama has quit IRC13:41
*** kei_yama has joined #openstack-dns13:42
*** stanzgy has joined #openstack-dns13:42
*** kei_yama has quit IRC13:43
*** kei_yama has joined #openstack-dns13:44
*** kei_yama has quit IRC13:47
*** kei_yama has joined #openstack-dns13:47
*** rkrum has joined #openstack-dns13:47
*** kei_yama has quit IRC13:51
*** kei_yama has joined #openstack-dns13:51
*** kei_yama has quit IRC13:52
*** kei_yama has joined #openstack-dns13:52
*** malos_ has joined #openstack-dns13:57
*** kei_yama has quit IRC13:57
*** ducttape_ has joined #openstack-dns13:59
*** GonZo2000 has quit IRC14:05
hoobamanmugsie: ok thx14:09
*** catintheroof has joined #openstack-dns14:09
mugsiehoobaman: he is not online right now, but johnbelamaric is good point of contact for the infoblox driver14:11
hoobamanmugsie: ok thanks for the contact! :)14:15
*** rkrum has quit IRC14:15
*** kei_yama has joined #openstack-dns14:28
*** kei_yama has quit IRC14:29
*** kei_yama has joined #openstack-dns14:29
*** mlavalle has joined #openstack-dns14:32
*** kei_yama has quit IRC14:33
*** kei_yama has joined #openstack-dns14:47
*** leitan has joined #openstack-dns14:50
leitanHi guys, i have some questions about multiple dns servers on the pool.yml file14:51
leitananyone that can lend me a hand ?14:51
*** d34dh0r531234123 is now known as d34dh0r5314:51
*** kei_yama has quit IRC14:51
leitani have everything working with one instance14:52
elarsonleitan: ask away!14:59
leitanelarson,14:59
leitangreat14:59
leitani have 3 powerdns14:59
leitanthey share the database14:59
leitanits a galera mariadb cluster14:59
leitanso i want to know on the TARGET section15:00
leitani have the options section with the mysql connection string15:00
leitanbut on HOST and PORT i have only one instance of powerdns15:00
leitancan i name multiple instances there ?15:00
leitanwith multiple host/port statements ?15:00
leitanpointing to the same DB ?15:01
timsimYou can not.15:01
timsimI'm assuming you only want to write to one db?15:01
elarsonyou probably don't want to since they share the same db15:02
timsimOr, one node in your cluster?15:02
leitanon the connection string15:02
leitani put the VIP address15:02
elarsonthe idea being write to one target, verify it lands on multiple nameservers15:02
leitanof the galera db15:02
timsimSure, ok.15:02
leitanso the DB is not an issue15:02
leitanis the HOST/PORT part15:02
leitanof the options section that worries me15:02
leitanif that HOST/PORT goes down15:02
timsimSo the only thing the host/port are used for there is notifying.15:02
leitani want to keep going15:02
timsimSo you should put the host/port of one of your PowerDNS instances there, and put the other two ips as "also-notify"s15:03
*** pglass has joined #openstack-dns15:03
timsimhttps://github.com/openstack/designate/blob/master/etc/designate/pools.yaml.sample#L5115:04
leitantimsim, awesome, if that isntance its down, it will notify to the "also notify" and dont fail or stack trying to notify the first one ?15:04
*** tyr_ has joined #openstack-dns15:05
timsimAs long as the database is up, it should notify all three.15:07
timsimIf I'm reading the code right :P15:07
timsimI think those notifies only matter for creates though.15:10
timsimin Powerdns15:10
timsimBecause it doesn't look like we send one for updates?15:10
timsimmugsie ^15:11
*** haplo37__ has joined #openstack-dns15:29
leitantimsim, thats my doubt15:30
leitanif that host/port on the options section on the target, if its down, it will fail ? cause if thats the case ill need to use haproxy to balance tcp15:31
leitanthe tcp 53, so it can reach any powerdns availble15:32
timsimIt looks like it will only fail to notify the also-notifies on creates if the database is down15:33
timsimIt doesn't appear that notifying everyone on updates is necessary, but the also-notifies will get notified on updates, but not the primary host/port (nothing saying you couldn't put the primary in also-notify too)15:33
timsimand no one gets notified on deletes.15:33
timsimIt will fail to notify the primary if the db is down too15:34
timsimprimary == the powerdns server that has host/port specified in pool target options15:34
leitantimsim, http://paste.openstack.org/show/h2bRXoWbxSRomyxK4m5v/15:36
leitanso this will be ok15:36
leitantaking into account that that the .200 is the VIP of the db cluster15:37
leitansorry im missing the also_notifies15:37
openstackgerritAlin Balutoiu proposed openstack/designate: Add support for Microsoft DNS Server backend  https://review.openstack.org/33270315:37
*** rudrajit has joined #openstack-dns15:39
openstackgerritAlin Balutoiu proposed openstack/designate: Add support for Microsoft DNS Server backend  https://review.openstack.org/33270315:40
*** pglass has quit IRC15:50
*** nyechiel has quit IRC15:52
*** rudrajit has quit IRC15:54
*** rudrajit has joined #openstack-dns15:55
*** rudrajit has quit IRC15:57
*** rudrajit has joined #openstack-dns15:57
*** rudrajit has quit IRC16:01
*** pglass has joined #openstack-dns16:03
*** penick has joined #openstack-dns16:17
*** pglass has quit IRC16:25
*** pcaruana has quit IRC16:29
*** pglass has joined #openstack-dns16:32
*** rudrajit has joined #openstack-dns16:40
*** rudrajit has quit IRC16:43
*** shewless has joined #openstack-dns16:43
*** rudrajit has joined #openstack-dns16:44
shewlessHello. I'm trying to setup a dns such that instances with a floating IP each have a unique DNS name. I found this doc (http://docs.openstack.org/mitaka/networking-guide/adv-config-dns.html) which I think explains the "dns" side, but I *think* I need to also setup designate seperately as well. Can someone confirm?16:45
shewlessI found this doc but it's liberty specific (I'm running Mitaka) and I'm not sure how much has changed: http://docs.openstack.org/developer/designate/install/ubuntu-liberty.html16:46
pglassshewless: the pool configuration is totally different in mitaka16:50
pglassinstead of putting pool_targets and pool_nameservers in designate.conf, they go in a pools.yaml file16:51
shewlesspglass: do you know of any documentation or examples for this?16:51
pglasshere: http://docs.openstack.org/developer/designate/upgrade/mitaka.html16:51
pglassthere is also backend documentation here: http://docs.openstack.org/developer/designate/backends.html with the yaml fields needed for different nameservers16:52
shewlesspglass: okay I saw that one. So I need to install it as part of liberty and then decipher the bits that are different in the upgrade guide?16:52
*** abalutoiu has quit IRC16:53
pglassyeah. nobody has written a mitaka install guide yet16:53
shewlesspglass: in the end I want something like this for each floating IP. Do you know if it would be possible?  hostName.projectName.domain.com16:53
pglassi don't have any idea how the flip stuff works...16:54
shewlessalso, is this correct: http://docs.openstack.org/mitaka/networking-guide/adv-config-dns.html sets up DNS on openstack, while http://docs.openstack.org/developer/designate/install/ubuntu-liberty.html setups up an external DNS service?16:54
*** rudrajit_ has joined #openstack-dns17:00
*** rudrajit has quit IRC17:04
leitanshewless, the installing guide for liberty works for you ok, then use the pool yml part to update the pool definition on the database, pools are now persisted there an its config17:15
*** kei_yama has joined #openstack-dns17:15
shewlessleitan: thanks. I'll give it a try.17:19
*** kei_yama has quit IRC17:20
leitanshewless, let me know, i have successfully installed a mitaka deployment with FIP neutron integration a couple of days ago17:20
*** pglass has quit IRC17:21
shewlessleitan: that is awesome. how long did it take? :)17:21
shewlessleitan: does the FIP get a DNS automatically or do you have to do a command to make it happen?17:22
leitannope17:22
leitanneutron puts a message on the queue17:22
leitandesignate picks ups this message17:23
leitanthats floatingip.associate or something like this17:23
leitanthen grabs the FIP from the message and create the record on designate17:23
leitanand then designate propagate the record to your dns backend/target17:23
mugsieleitan: ah, you used sink?17:23
leitanmugsie, yes i did17:23
mugsiethe new integration in mitaka means that neutron calls us directly17:24
mugsie(our HTTP API)17:24
leitanmugsie, didnt try that yet, the adv-config-dns guide17:24
mugsieyeah17:24
*** penick has quit IRC17:24
mugsiejust avoids using a queue. and means that it is more reliable17:24
mugsie(as queues can drop messages)17:25
leitanmugsie, does the notification from neutron retries to designate ?17:25
mugsienope17:25
mugsieneutron just dumps it on a queue17:25
mugsieit doensnt care if it is read at all17:25
leitanmugsie, i know, on sinks op mode17:25
leitanbut on direct http call mode17:25
leitanretries ?17:25
mugsieoh, yeah. its should17:26
mugsieit*17:26
shewlessleitan: the setup you have.. is it the one that has performance implications?17:26
leitanmugsie, ok, ill take a look, because if dont, its more unreliable than the queue method, we use queing the queue for metering and we dont loose any message on our queue cluster17:26
KrenairAh, my bug about not being able to create origin domains as records was a dupe, okay17:28
KrenairBut I saw https://review.openstack.org/#/c/337773/3/designatedashboard/dashboards/project/dns_domains/forms.py17:28
KrenairWhy aren't CNAME/PTR covered?17:28
KrenairDunno about SRV17:29
mugsieneither should be at the root of a domain17:29
mugsiewell.17:29
mugsieCNAME can be, but we disallow it17:29
mugsie(in the API)17:29
KrenairSay you control IP 123.123.123.12317:29
Krenairthe operator grants you domain 123.123.123.123.in-addr.arpa.17:29
Krenairyou should be able to create a PTR record at the root of this domain17:30
*** ducttape_ has quit IRC17:30
mugsietrue. We assume that most operators will not do that17:31
mugsieso, PTR may need to move down17:31
KrenairBut I think it's a valid use case17:31
Krenairyou're right most won't17:31
*** kei_yama has joined #openstack-dns17:33
*** kei_yama has quit IRC17:34
*** kei_yama has joined #openstack-dns17:35
shewlessin the liberty doc there is a configure the pool section. something about [pool:794ccc2c-d751-44fe-b57f-8894c9f5c842]. Is that required for Mitaka?17:36
*** rudrajit has joined #openstack-dns17:36
Krenairmugsie, any thoughts about SRV? I've honestly never used that type17:36
*** penick has joined #openstack-dns17:36
*** rudrajit_ has quit IRC17:38
mugsieshewless: no17:38
shewlessexcellent17:39
shewlessthat part looks confusing :)17:39
mugsieKrenair: SRV have a very defined recordset name format, so wiht our current validation, they cant go in the root17:39
mugsieshewless: yeap. thats why we got the yaml file in for mitaka17:39
*** kei_yama has quit IRC17:40
*** ducttape_ has joined #openstack-dns17:48
*** pglass has joined #openstack-dns17:52
*** kei_yama has joined #openstack-dns17:53
*** kei_yama has quit IRC17:53
*** kei_yama has joined #openstack-dns17:54
*** sonuk has quit IRC17:57
*** kei_yama has quit IRC17:58
Krenairmugsie, okay, thanks. should I upload a patch for PTR?18:01
mugsieyeah, please do18:01
mugsie:)18:01
shewlesswhen I run this command: "sudo su -s /bin/sh -c "designate-manage pool-manager-cache sync" designate"18:06
shewlessI get this error: DbMigrationError: Pool Manager Cache requires its own database. Please check your config file.18:06
shewlessI setup a designate_pool_manager database18:06
*** ducttape_ has quit IRC18:07
shewlessbut I didn't setup the pool manager stuff. Do I need to run designate-manage pool update first?18:07
*** ducttape_ has joined #openstack-dns18:07
Krenairmugsie, I wanted to get my own devstack environment set up so I could test designate changes properly locally18:09
KrenairUnfortunately I ran into issues with a different OpenStack project, and no one has been able to fix it18:10
*** kei_yama has joined #openstack-dns18:11
shewlessany recommendations on the DNS server? Was going to use bind but maybe powerDNS is easier?18:11
mugsieshewless: did you set https://github.com/openstack/designate/blob/master/etc/designate/designate.conf.sample#L375 ?18:12
*** rudrajit_ has joined #openstack-dns18:12
*** kei_yama_ has joined #openstack-dns18:12
mugsieBind & powerdns are both fully tested18:12
*** kei_yama has quit IRC18:12
mugsiepersonally I prefer powerdns18:13
mugsiebut peope get attached to bind18:13
shewlessmugsie: no I didn't set that.. I thought maybe I didn't need to in Mitaka.. thanks I'll set it18:13
shewlessmugsie: thanks I think powerdns looks slightly easier18:14
openstackgerritAlexander Monk proposed openstack/designate-dashboard: Follow-up Ibddffc5f: Also allow PTR records pointing to the domain itself  https://review.openstack.org/35367118:14
*** rudrajit has quit IRC18:15
*** kei_yama_ has quit IRC18:17
Krenairmugsie, done ^18:26
*** catintheroof has quit IRC18:34
*** ducttape_ has quit IRC18:38
*** ducttape_ has joined #openstack-dns18:49
shewlessmugsi, leitan: any reason why I couldn't just follow http://docs.openstack.org/mitaka/networking-guide/adv-config-dns.html?18:57
shewlessI mean.. what does "external dns" get me? I'm confused18:57
leitanshewless, no reason18:58
shewlessleitan: I mean.. it's missing all the stuff about setting up bind, etc.. do I need that?18:58
leitanshewless, you will need that , so designate can update your actual dns ... if its bind or powerdns18:59
leitanthe ones that will actually resolv19:00
shewlessleitan: if I already have a bind9 service in my lab.  I know I want to integrate that somehow but I'm not sure how19:00
leitanshewless, you can totally do that check http://docs.openstack.org/developer/designate/backends/bind9.html19:01
leitanshewless, just a few things you need to change19:01
shewlessleitan: this would give openstack direct control to my bind server right? Is it possible to create another bind server which somehow interacts with the main bind server?19:02
leitanyes, but thats just plain DNS, nothing to do with designate, you can allow transfer from your "designate bind" to your main productive bind19:03
leitanshewless, you can use the "also-notifies" too19:03
shewlessleitan: so setup a sort of "internal" bind server just for openstack and then set the also-notifies to notify my main bind server - is that what you mean?19:04
pglassi think that setup will work for zone updates, but not creates and deletes (out of the box)19:05
pglassi.e. bind doesn't support replicating zone creates/deletes19:05
leitanshewless, thats an option19:06
leitanshewless, or for example, you can mount 3 bind servers19:06
leitanshewless, just for your cloud19:06
leitanand delegate only cloud domains to it19:06
leitanmake it authoritative for shewlesscloud.com19:06
leitanand you keep your main dns, for other "legacy" things19:06
leitanuntouched19:06
leitanshewless, there are a lot of ways of acomplish this19:07
leitanthe last one is what i mainly do on production with clients19:07
leitanthat has legacy dns servers19:07
shewlessleitan. I think that last one might work the best19:08
shewlessleitan: just curious - what did you mean about mounting "3" bind servers.. why 3?19:11
*** GonZo2000 has joined #openstack-dns19:14
*** tyr__ has joined #openstack-dns19:19
leitanshewless, just random number for redundancy purposes19:20
leitanns1.shewlesscloud.com, ns2.shewlesscloud.com, ns3.shewlesscloud.com19:21
leitanthe 3 authoritative for your cloud zones19:21
leitanjust not to depend on one bind server/instance19:21
*** tyr_ has quit IRC19:22
leitanyou can use 2  servers too19:22
*** rudrajit has joined #openstack-dns19:23
shewlessleitan: I see. thanks. I'll have to think about this. would be easier to give openstack access to the existing bind server but I don't think my network admin will go for that :)19:27
*** rudrajit_ has quit IRC19:27
leitanshewless, thats the usual behaviour haha19:27
*** haplo37__ has quit IRC20:07
*** GonZo2K has joined #openstack-dns20:26
*** GonZo2K has quit IRC20:26
*** GonZo2K has joined #openstack-dns20:26
*** GonZo2000 has quit IRC20:29
*** kei_yama has joined #openstack-dns20:39
*** kei_yama has quit IRC20:41
*** kei_yama has joined #openstack-dns20:41
*** kei_yama has quit IRC20:46
*** kei_yama has joined #openstack-dns20:47
*** pglass has quit IRC21:00
*** kei_yama has quit IRC21:02
*** kei_yama has joined #openstack-dns21:02
*** pglass has joined #openstack-dns21:13
*** ducttape_ has quit IRC21:18
*** ducttape_ has joined #openstack-dns21:20
*** sonuk has joined #openstack-dns21:30
*** ducttape_ has quit IRC21:36
*** ducttape_ has joined #openstack-dns21:38
*** pglass has quit IRC22:08
*** rudrajit_ has joined #openstack-dns22:09
*** rudrajit has quit IRC22:12
*** kei_yama has quit IRC22:15
*** kei_yama has joined #openstack-dns22:16
*** ducttape_ has quit IRC22:19
*** ducttape_ has joined #openstack-dns22:20
*** kei_yama has quit IRC22:21
*** ducttape_ has quit IRC22:24
*** sonuk has quit IRC22:36
*** leitan has quit IRC22:47
*** chlong|mtg has quit IRC23:31
*** rkrum has joined #openstack-dns23:50

Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!