Tuesday, 2014-11-11

*** SumitNaiksatam has joined #openstack-lbaas00:24
*** rm_you| has joined #openstack-lbaas01:56
rm_you|blogan: blogan03:29
bloganrm_you|: rm_you|03:40
rm_you|blogan: ah we just started a round03:41
bloganah i plan on doing some work for a bit03:41
rm_you|blogan__: blogan: ok do that for at least the next 1.5h03:59
rm_you|blogan__: srsly?04:05
rm_you|ah well out for 1-1.5h04:06
blogan__i hate tox/testr sometimes04:20
blogan__doesn't give me a log of the failed tests04:20
blogan__or any output04:21
kryptohello all ,i just started using lbaas. i can see vip assigned to lbaas namespace but there is only one namespace with lbaas.Is there any way to create multiple lbaas and make it active passive using VRRP08:30
dougwigkrypto: not with v1.  You'd need a hardware solution, or you might be interested in following the Octavia project, which will have ha features11:27
jschwarzdougwig, hi11:28
jschwarzdougwig, would like to talk to you about an lbaas v1 patch i'm writing but was just heading out11:28
jschwarzuntil when are you available today?11:28
dougwigI'm about to grab lunch.  Will you be around in an hour?11:29
dougwigI'll be around all afternoon/event, gmt time11:29
dougwigEvening, I mean11:30
jschwarzI'll do my best11:30
jschwarzworst case scenario I'll be back around 7pm GMT11:31
jschwarzhave fun :)11:31
jschwarzdougwig, ping12:13
IZebraNow the Octavia  is mainly target at service vm lbaas technology ,is this right?14:54
*** mlavalle has joined #openstack-lbaas15:02
IZebraWhen the meeting start?15:08
*** markmcclain has joined #openstack-lbaas15:11
*** kobis has quit IRC15:18
dougwigIZebra: correct on octavia.  octavia meeting is tomorrow.  neutron lbaas meeting is in 40 minutes.15:22
IZebrathank you dougwig15:22
dougwignew lbaas meeting day/time/channel about to begin.15:58
*** TrevorV_ has joined #openstack-lbaas15:59
IZebraevening.... 24:0016:00
dougwigwhere are you, IZebra?16:01
IZebrawhy no body say anything16:14
IZebrais the meeting not here ? other method or channel?16:16
dougwigit's in #openstack-meeting-416:16
IZebrathank you ,dougwig16:17
IZebrahi all16:28
dougwigIZebra: re: the namespace driver, are you asking from a deployment perspective, or adding features, or?16:28
IZebraI want to know why no body implement the lbaasv2 API using Plugin-Agent architecture.16:29
IZebraAnd I want to implement it using namespace driver for haproxy .16:29
IZebraI know the lbaasv1 API has been implemented by Plugin-Agent architecture . so ..16:34
dougwigIZebra: it was a time constraint issue, attempting to get the code into Juno.  we plan to make an agent version of the namespace driver, just like v1, for kilo.  if you want to volunteer to do that work, it would be welcome.  but it's definitely on our kilo roadmap.16:35
IZebraOK. My company want to make the lbaas on-line to service many public-cloud end-users. So we will write the namepsace-base driver to achieve it.16:38
IZebraOtherwise, I think the database model of current lbaasv2 is hard to make the end-user easy to use. especially “all root level object”。 Our on-line service url: https://console.ustack.com/uos/overview16:41
dougwigwe'll be talking about the "everything is a root object" thing next week.  i am also not in favor of that.16:43
IZebraOK. Thank you dougwig . I will follow with interest.16:45
dougwiggreat, thanks for attending.16:46
rm_you|lol, i didn't have the new meeting time in my calendar yet T_T16:46
*** rm_you| is now known as rm_you16:47
IZebra i am tired... Good night then.16:48
dougwignight IZebra16:48
blogangood afternoon everyone, sorry i missed the meeting18:07
TrevorVAll of Rax missed the meeting18:10
TrevorVWe stink :P18:10
*** jschwarz has joined #openstack-lbaas18:57
jschwarzdougwig, ping? :)18:57
rm_workjohnsom: hey19:08
rm_workjohnsom: "Shouldn't we also be able to specify a validity period? The default of 30 days may not meet all of the use cases/tests"19:08
rm_worktotally agree, working on the "how" right now19:08
rm_workthinking: :param validity: Valid for a number of seconds from the current time19:09
rm_workso, validity=60*60*24*365*2 for two years19:09
johnsomCool, yeah, I thought it was something to consider but not hold up the reviews19:09
rm_workdougwig / sballe / johnsom: that sound ok to you guys?19:10
johnsomI saw that for the CA cert validity, but the signed cert is the default 30 days right?19:10
rm_workno, I totally agree, forgot to account for that19:10
rm_worknot really usable19:10
rm_workneeds to be in Years, definitely19:10
johnsomI was thinking really short validity would be good for test suites too19:10
rm_workwhich brings up another concern -- we may need to deal with certificate expiry for Amphora19:11
rm_workwill we just treat Amphora as "down" when their certs expire and shoot them and re-make them? :P19:11
johnsomYeah, that is a concern for me too.  Some folks have talked of the ephemeral certs, but that worries me.19:12
*** jschwarz has quit IRC19:22
rm_workEphemeral *certs* or just Ephemeral PKI for delivery of certs?19:23
rm_workthis is what I am remembering the most: https://www.youtube.com/watch?v=jf_YOzW7I3s19:24
openstackgerritAdam Harwell proposed a change to stackforge/octavia: Local development implementation for Certificates  https://review.openstack.org/13257820:34
openstackgerritAdam Harwell proposed a change to stackforge/octavia: Support for Certificate data handling  https://review.openstack.org/13188920:34
openstackgerritmin wang proposed a change to stackforge/octavia: Defining interface for amphora base driver  https://review.openstack.org/13189421:46
