Wednesday, 2025-12-17

cardoeSo I wrote a little CLI inspired by clif and TBN. I’ll contribute it for the inspection rules.00:42
TheJulia++01:02
TheJuliahttps://review.opendev.org/c/openstack/ironic-tempest-plugin/+/971233 should allow us to remove non-voting on the advanced ops tests, so we can unwind the issues alegacy and the otehr reporter highlighted regarding dhcpless paths01:05
opendevreviewJacob Anders proposed openstack/ironic master: Add hardware health monitoring via management interface  https://review.opendev.org/c/openstack/ironic/+/96694603:45
opendevreviewMerged openstack/ironic-tempest-plugin master: ci: fix and log errors on advanced tests disqualification  https://review.opendev.org/c/openstack/ironic-tempest-plugin/+/97123304:12
opendevreviewJacob Anders proposed openstack/ironic master: Add hardware health monitoring via management interface  https://review.opendev.org/c/openstack/ironic/+/96694604:33
opendevreviewJacob Anders proposed openstack/ironic master: Add hardware health monitoring via management interface  https://review.opendev.org/c/openstack/ironic/+/96694604:42
opendevreviewJacob Anders proposed openstack/python-ironicclient master: Add support for node health status field  https://review.opendev.org/c/openstack/python-ironicclient/+/96705504:59
rpittaugood morning ironic! o/07:45
rpittauTheJulia: the bifrost jobs running out of ram at grub is a known issue, I think I mentioned it when I started working on the migration of the bifrost jobs from tinyipa to DIB based07:47
rpittauthe migration to debian based ramdisks should mitigate that https://review.opendev.org/c/openstack/bifrost/+/96988607:47
rpittaucc dtantsur ^07:47
rpittauuh jsut realized there's a comment there I need to address :D07:48
opendevreviewRiccardo Pittau proposed openstack/bifrost master: Switch IPA ramdisk to debian DIB based  https://review.opendev.org/c/openstack/bifrost/+/96988607:52
opendevreviewcid proposed openstack/ironic master: Omit `CapacityBytes` for Redfish RAID MAX size_gb  https://review.opendev.org/c/openstack/ironic/+/97131912:57
TheJuliarpittau: then lets turn off bookworm on the centos10 fix for now, then re-enable in your change14:11
TheJuliasince we can get centos10 to pass now minus bookworm14:12
opendevreviewJulia Kreger proposed openstack/bifrost master: Centos: set masked: false for firewalld  https://review.opendev.org/c/openstack/bifrost/+/97121214:22
TheJuliarpittau: ^14:22
rpittauTheJulia: ok, sounds good :)14:22
opendevreviewJulia Kreger proposed openstack/bifrost master: ci: undo non-voting for centos10 upgrade  https://review.opendev.org/c/openstack/bifrost/+/97125814:33
opendevreviewJulia Kreger proposed openstack/bifrost master: add an OCI artifact registry  https://review.opendev.org/c/openstack/bifrost/+/96138814:34
opendevreviewJulia Kreger proposed openstack/bifrost master: bifrost-registry-install: install the ORAS client  https://review.opendev.org/c/openstack/bifrost/+/96835514:34
opendevreviewJulia Kreger proposed openstack/bifrost master: Upload a disk image to OCI  https://review.opendev.org/c/openstack/bifrost/+/96841614:34
opendevreviewJulia Kreger proposed openstack/bifrost master: Upload to and use artifact from OCI registry  https://review.opendev.org/c/openstack/bifrost/+/96841714:34
dtantsurcardoe: on the Metal3 meeting right now, a few people are basically asking for the Redfish quirks mechanism. I'll point them at you.14:53
cardoeheh. okay. I actually just wanted to get back to that.14:53
dtantsurNow you have extra motivation :) (and I as wel)14:53
opendevreviewJulia Kreger proposed openstack/ironic-python-agent-builder master: WIP: re-enable simple-init by default  https://review.opendev.org/c/openstack/ironic-python-agent-builder/+/97133015:02
opendevreviewJulia Kreger proposed openstack/ironic master: Revert "ci: stabilize ironic-standalone-redfish"  https://review.opendev.org/c/openstack/ironic/+/95651515:07
opendevreviewJulia Kreger proposed openstack/ironic master: Revert "ci: stabilize ironic-standalone-redfish"  https://review.opendev.org/c/openstack/ironic/+/95651515:07
TheJuliacardoe: to answer your question, we should likely merge it based upon requests back in august, but since nobody has really reviewed it... *shrugs*15:08
cardoeTheJulia: uhhh what did I ask?15:11
cardoedtantsur: honestly I'd love if sushy remained standalone and we could do rapid releases of it without an upper-contraints so we can push out quirks fixes.15:11
TheJuliacardoe: if we should drop or merge that job config revert15:14
cardoeoh15:14
* TheJulia tosses a wet cat at zuul and a node_failure15:14
cardoedtantsur: https://review.opendev.org/c/openstack/ironic/+/971142 speaking of redfish...15:15
cardoedtantsur: btw where are your metal3 meetings? I can toss those on my calendar and come sometimes15:15
TheJuliaWell, so far so good for the stack of bifrost changes15:19
rpittaucardoe: https://docs.google.com/document/d/1IkEIh-ffWY3DaNX3aFcAxGbttdEY_symo7WAGmzkWhU/edit?tab=t.0#heading=h.w4ou76o3rp1v15:31
dtantsurcardoe: that could be an argument for keeping sushy, although the "without upper-constraints" part is hard to make happen15:43
opendevreviewVerification of a change to openstack/ironic-python-agent-builder master failed: ci: Start running the advaned ironic job  https://review.opendev.org/c/openstack/ironic-python-agent-builder/+/97123215:44
cardoedtantsur: well we can do patch releases in the stable branches.15:47
dtantsurTrue. Which is equally possible for Sushy standalone and Sushy inside Ironic.15:47
dtantsurIn fact, Ironic has more branches to release from.15:48
TheJuliaSo: thoughts on opinions on un-blocking cloud-init in IPA ramdisks?16:04
dtantsurAs long as we don't break something else :)16:05
TheJuliaYeah, trying not to, hopefully the advanced job will be running on IPA-b today16:05
TheJuliawell, voting on it most likely16:05
cardoedtantsur: oh https://review.opendev.org/c/openstack/ironic/+/970918 should re-enable those checks. You want that? The issue is that hacking is broken with "pre-commit run --all-files"16:12
cardoeBut we've got another issue that codespell ignores our settings right now as well.16:13
dtantsurle sigh16:13
dtantsurI'd definitely enable the missing checks but not at the expense of breaking something else16:13
cardoeThe issue is a few things have merged that aren't compliant with E128 so I'd need to fix those up first.16:14
cardoeWhich is why it's failed.16:14
cardoehttps://review.opendev.org/c/openstack/ironic/+/968154 is where codespell fails.16:14
opendevreviewDoug Goldstein proposed openstack/ironic master: fix: inspection rules docs to match the code  https://review.opendev.org/c/openstack/ironic/+/97126516:19
opendevreviewDoug Goldstein proposed openstack/ironic master: fix loading of built-in inspection rules  https://review.opendev.org/c/openstack/ironic/+/97126616:19
cardoe^ that's another set of backports.16:19
TheJulia[   22.824997] systemd[1]: /usr/lib/systemd/system/ironic-python-agent.service:6: Unknown key name 'ConditionPathExists' in section 'Service', ignoring.16:22
TheJuliaConditionPathExists=!/etc/.rescued :(16:23
JayFWait, waht?16:23
JayFsystemd removed that?!16:23
cardoeDoes the oslo.i18n function... _() take args like _("my string %s", arg) ?16:23
TheJulialooks like it16:24
cardoeCause I noticed the inspection_rules use that style but everywhere else we do _("some format %s") % arg16:24
JayFTheJulia: it goes in [unit] now16:24
TheJuliayup, just found that16:24
JayFman 5 systemd.unit  # still lists it 16:24
JayFmakes me wonder if it ever worked16:25
JayFand they just now tell us up front it won't16:25
opendevreviewDoug Goldstein proposed openstack/ironic master: fix loading of built-in inspection rules  https://review.opendev.org/c/openstack/ironic/+/97126616:25
opendevreviewJulia Kreger proposed openstack/ironic-python-agent-builder master: Fixed rescue ConditionPathExists flag  https://review.opendev.org/c/openstack/ironic-python-agent-builder/+/97135316:26
opendevreviewMerged openstack/tenks master: Modernize and fix CI  https://review.opendev.org/c/openstack/tenks/+/96820016:29
opendevreviewRiccardo Pittau proposed openstack/sushy master: Add connect_timeout parameter for faster failure on unreachable BMCs  https://review.opendev.org/c/openstack/sushy/+/97135516:34
opendevreviewRiccardo Pittau proposed openstack/sushy master: Add read_timeout and connect_timeout parameters for faster BMC failure  https://review.opendev.org/c/openstack/sushy/+/97135516:40
opendevreviewJulia Kreger proposed openstack/ironic-python-agent-builder master: WIP: lockout configdrive reads on network boots  https://review.opendev.org/c/openstack/ironic-python-agent-builder/+/97123616:44
opendevreviewJulia Kreger proposed openstack/ironic-python-agent-builder master: WIP: re-enable simple-init by default  https://review.opendev.org/c/openstack/ironic-python-agent-builder/+/97133016:45
opendevreviewJulia Kreger proposed openstack/ironic-python-agent-builder master: Fixed rescue ConditionPathExists flag  https://review.opendev.org/c/openstack/ironic-python-agent-builder/+/97135316:45
TheJuliaokay, rebases complete16:45
TheJuliaLets see!16:46
TheJuliaalegacy: I think I'm close on the issue you've denoted, ultimately you may want to build yourself a new IPA image with the patches to see for sure, but I'm looking to see if I can also just entirely torpedo glean from running at all if we don't detect the needful as well.16:49
opendevreviewMerged openstack/ironic master: Omit `CapacityBytes` for Redfish RAID MAX size_gb  https://review.opendev.org/c/openstack/ironic/+/97131917:25
cardoecid: so I've updated that inspection rules stuff. I kinda just wanna merge in those docs fixes and just backport them cause that'll make the docs match the code. The last patch just fixes it so the built-in rules can load but the follow on I'm doing is adding examples and a CLI loader / validator tool. That's why I changed it to take the path in.17:55
opendevreviewMerged openstack/bifrost master: Centos: set masked: false for firewalld  https://review.opendev.org/c/openstack/bifrost/+/97121217:56
cardoeTheJulia: https://opendev.org/openstack/ironic/src/commit/5f911ad688e682bb52c2f69b0630a497b67beacf/ironic/drivers/modules/fake.py#L112 is why the tests pass on that pxe boot issue.18:01
cardoeSo the only thing he can do is change it to walk through each boot interface and mock those out instead of using the fkae.18:02
TheJuliayeah, lets undo the capability label change which removed pxe_boot when kaifeng went in and further split pxe/ipxe stuffs18:05
cardoeI think we shouldn't be calling it "ipxe_boot"18:05
TheJuliawhy?18:05
TheJuliaI ask becasue that was the signaling mechanism and the prior change created a break18:06
TheJuliaso we need to "fix" it in prior branches too18:06
cardoeYes. That's the fix that's backportable.18:06
cardoeGenerically speaking though any of the capabilities that's a superset of another capability needs to be signaled in such a way that the mistake cannot happen.18:07
TheJulia(fwiw, the whole purpose of the flags is so we can further hint to the interfaces about what they can/do without doing name inspection which also allows for derivitiave interfaces to be handled appropriately without splitting out an ipxe flavored neutron interface18:07
cardoee.g. you identified that when you added http_boot as a separate parameter on the BootInterface instead of as a capability18:07
TheJuliaYes18:07
cardoeSo you didn't add http_boot to the capabilities list.18:08
cardoeSo Milan can add pxe_boot back. But the test is gonna be hard since he'll have to load the interfaces instead of the fake.18:08
TheJuliaokay18:10
cardoehttps://opendev.org/openstack/ironic/src/commit/c11e12a45b3c762b9b701e704bc1a8e9623c4ae8/ironic/drivers/modules/pxe.py#L50 that's what I'm referring to btw.18:10
TheJulialets not worry about a test then, and just fix the flag18:10
TheJuliasince the tests using fake do the needful18:11
cardoeWe're talking in a follow up how to adjust the interface so that we make it hard to use incorrectly.18:11
TheJuliaat what point is there really a gain then?18:13
cidcardoe, ack. I have already added my vote, we just need another core to land it.18:14
cidOr should I single core land the doc updates?18:14
TheJulia(FWIW, I'm super low on spoons for this year, and it might be coming off in my replies, sorry)18:14
cidTheJulia, it's been a good and eventful year. Maybe time for a well deserved rest.18:16
cidAlso, mind landing this patch? https://review.opendev.org/c/openstack/ironic/+/97126518:16
TheJuliaI'm trying to get the vmedia stuff and bifrost stuff sorted first ;)18:16
JayFTheJulia: you need any more approvals on that chain?18:17
JayFcid: looking 18:17
cidTheJulia, ack, JayF, tks18:17
JayFTheJulia: I am in full holiday motivation mode, and there isn't enough caffeine in the universe to kick me outta it18:17
cidhttps://review.opendev.org/c/openstack/ironic/+/971264/118:18
TheJuliaJayF: eh, not really, a look on the bifrost changes on https://review.opendev.org/c/openstack/bifrost/+/961388 and beyond it would be good since that make dmitry smile and help us get the OCI image service tested in CI for ironic18:19
JayFthese are tested and high confidence?18:19
JayFI don't usually review bifrost stuff so making sure it's OK I'm going to be a human rubber stamp with a sanity check18:20
TheJuliafairly high confidence, still unbricking the rest of bifrost's CI18:20
TheJuliaoh!18:20
TheJuliaI already approved https://review.opendev.org/c/openstack/bifrost/+/96988618:20
TheJuliaso bookworm jobs will be happy moving forward18:21
JayFthat registry patch is exactly the sorta thing I'm not really good to review in bifrost18:22
TheJuliafair enough18:23
TheJulia:)18:23
opendevreviewJulia Kreger proposed openstack/ironic-python-agent-builder master: Lockout configdrive reads on network boots  https://review.opendev.org/c/openstack/ironic-python-agent-builder/+/97123618:31
opendevreviewJulia Kreger proposed openstack/ironic-python-agent-builder master: WIP: re-enable simple-init by default  https://review.opendev.org/c/openstack/ironic-python-agent-builder/+/97133018:35
TheJuliaalegacy: I sort of see why you didn't see it until a couple days ago too, looks like the images in CI didn't get picked up to actually start using it until this past week really. I'm curious if your end CI job result would have encountered the case you expect or not, otherwise we could consider building a duplicate of the multinode jobs we have, but the downside is we moved those over to be vmedia based instead of network 18:50
TheJuliaboot based for performance reasons. :\18:50
opendevreviewSteve Baker proposed openstack/ironic-tempest-plugin master: Add graphical console validate to basic ops scenario  https://review.opendev.org/c/openstack/ironic-tempest-plugin/+/96364318:51
opendevreviewMerged openstack/ironic-python-agent-builder master: Fixed rescue ConditionPathExists flag  https://review.opendev.org/c/openstack/ironic-python-agent-builder/+/97135318:56
opendevreviewMerged openstack/ironic-python-agent-builder master: ci: Start running the advaned ironic job  https://review.opendev.org/c/openstack/ironic-python-agent-builder/+/97123219:11
opendevreviewMerged openstack/ironic master: update inspection rules docs and code to the same order  https://review.opendev.org/c/openstack/ironic/+/97126419:47
opendevreviewMerged openstack/ironic master: fix: inspection rules docs to match the code  https://review.opendev.org/c/openstack/ironic/+/97126519:48
opendevreviewDoug Goldstein proposed openstack/ironic stable/2025.2: update inspection rules docs and code to the same order  https://review.opendev.org/c/openstack/ironic/+/97137020:26
cardoeJayF: you have a few?20:27
JayFI have enough experience to know better than to say "yes" without knowing the next question :D 20:27
opendevreviewJulia Kreger proposed openstack/ironic-python-agent-builder master: Make multiple integration jobs voting  https://review.opendev.org/c/openstack/ironic-python-agent-builder/+/97137120:27
JayFcardoe: seriously what you need?20:29
cardoeJust following up on your comment on the patch for inspection rules20:29
JayFoh, yeah, happy to walk thru that now if you want20:30
JayFmeetpad.opendev.org/p/ironic-review-cardoes-thing20:30
cardoeheh beat me to it... I joined https://meetpad.opendev.org/ironic-adhoc20:30
cardoeI'm in yours now20:30
* TheJulia blinks20:38
opendevreviewMerged openstack/bifrost master: Switch IPA ramdisk to debian DIB based  https://review.opendev.org/c/openstack/bifrost/+/96988621:00
JayFcardoe: https://docs.openstack.org/ironic/latest/admin/runbooks.html#access-control-for-runbooks21:02
opendevreviewMikkel Vestergård proposed openstack/ironic stable/2025.1: Provide pw_file to ipmitool-socat console  https://review.opendev.org/c/openstack/ironic/+/97137721:14
cardoeTheJulia: tl;dr if you're curious... I'm gonna write a bug for https://review.opendev.org/c/openstack/ironic/+/971266 and we'll backport that to 2025.2 to fix the crasher21:14
opendevreviewJulia Kreger proposed openstack/bifrost stable/2025.2: Centos: set masked: false for firewalld  https://review.opendev.org/c/openstack/bifrost/+/97137821:15
cardoeAs a follow up we'll turn off mutable on the built_in_rules per JayF and I'll add an oslo type check for validating the input file rather than doing it when the file is first used but that won't be backported.21:16
cardoePlus my examples and my tools/inspection_rules/tester.py inspired by clif's tools/trait_based_networking/simulator.py will be another commit which won't be backported.21:16
TheJuliacool cool21:17
cardoeThen I'll make a spec for inspection rules API access updates like runbooks so that its not entirely under system scope and implement that but that's likely in scope for 2026.221:17
cardoeTrying hard to get our flow to be "see initial box and inspect with redfish... apply some hooks and rules.... switch to agent inspect and apply other hooks and rules"21:18
JayFyeah I suggested to cardoe that he steal the rbac approach for runbooks around having a project + a public  field that are mutually exclusive21:31
TheJulia++21:41
cardoeDo you want me to update the commit message / release note with a link to https://bugs.launchpad.net/ironic/+bug/2136776 ?22:25
cardoeCause that'll wipe away your review.22:25
JayFdo it and ping me to re-add if I don't22:30
opendevreviewDoug Goldstein proposed openstack/ironic master: fix loading of built-in inspection rules  https://review.opendev.org/c/openstack/ironic/+/97126622:44
cardoeJayF: ^22:44
JayFcardoe: curious if you use openstack-exporter at all  (https://github.com/openstack-exporter/openstack-exporter)22:45
cardoeI am22:47
* JayF -> DM you22:48

Generated by irclog2html.py 4.0.0 by Marius Gedminas - find it at https://mg.pov.lt/irclog2html/!