Thursday, 2021-02-18

jeremyfreudberg#startmeeting sahara14:02
Meeting started Thu Feb 18 14:02:17 2021 UTC and is due to finish in 60 minutes.  The chair is jeremyfreudberg.
Useful Commands: #action #agreed #help #info #idea #link #topic #startvote.
*** openstack changes topic to " (Meeting topic: sahara)"
The meeting name has been set to 'sahara'
jeremyfreudberg#topic open discussion14:05
*** openstack changes topic to "open discussion (Meeting topic: sahara)"
toskyno many updates here - I guess the major update is about the upcoming changes to two big plugins?14:06
jeremyfreudbergi'm working on getting some answers about future plans for cdh/hdp14:07
tosky(also: there are a few reviews in the sahara.* world with a +2 by me, so ready for another +2 :)14:07
jeremyfreudberge.g. would there be developer subscriptions, would there be clones14:07
jeremyfreudbergthe conversation is a bit slow going, but we'll see where it goes14:08
jeremyfreudbergoh, i'll take a look14:08
jeremyfreudbergso, ptl nominations are in month, and i'll nominate myself again for X14:09
jeremyfreudbergbut i think X will be the last14:10
toskyI can understand14:11
toskya bit sad, but I can understand14:12
jeremyfreudbergyeah, i just don't have the time...14:15
jeremyfreudbergand there's not much interest in sahara anyway14:15
jeremyfreudberganyway, that's all for today14:18
jeremyfreudbergi will provide an update about status of plugins when i can14:18
*** openstack changes topic to "OpenStack Meetings ||"
Meeting ended Thu Feb 18 14:19:50 2021 UTC.
Minutes (text):
gibi#startmeeting nova16:00
Meeting started Thu Feb 18 16:00:15 2021 UTC and is due to finish in 60 minutes.  The chair is gibi.
Useful Commands: #action #agreed #help #info #idea #link #topic #startvote.
*** openstack changes topic to " (Meeting topic: nova)"
The meeting name has been set to 'nova'
artomWait, I want to be Adam Driver from Star Wars16:00
gibi#topic Bugs (stuck/critical)16:01
*** openstack changes topic to "Bugs (stuck/critical) (Meeting topic: nova)"
gibino critical bug16:02
gibi#link 12 new untriaged bugs (-1 since the last meeting): #link
gibiIs there any specific bug we need to discussi?16:02
*** sean-k-mooney has joined #openstack-meeting-316:03
gibiif no specific bug then16:04
gibi#topic Gate status16:04
*** openstack changes topic to "Gate status (Meeting topic: nova)"
gibiI don't track any high visibility gate failure so I think the gate is fine :)16:04
gibitell me if not :16:05
dansmithnothing specific to nova that I know of,16:05
dansmithbut perf hasn't been great16:05
dansmithI'm still pushing on some things16:05
dansmithdid we merge that patch to convert two jobs to parallel? I don't think we did16:05
lyarwoodwe did16:05
lyarwoodno issues thus far AFAICT16:05
sean-k-mooneyoh nice16:05
dansmithoh cool16:05
sean-k-mooneylyarwood: any update on the cirros image rebuild?16:06
lyarwooddansmith: btw, did you want to push ahead with the standalone grenade job removal ahead of the actual migration of grenade to zuulv3?16:06
dansmithlyarwood: well, I was deferring to you on that... I thought you wanted to wait16:06
dansmithjust being not on focal doesn't seem like a huge deal to me,16:07
dansmithbut if it is, then ... that's fine16:07
lyarwoodsean-k-mooney: only that the fix for q35 landed but the cirros team don't see a release coming soon, going to send a mail later about hosting a dev build somewhere for us to use16:07
gmannyeah may be waiting for migration nova grenade to zuulv3 is better16:07
lyarwoodwell that assumes that someone is working on it16:07
gmanndansmith: it is not focal. all legacy are on bionic16:07
dansmithgmann: I know16:07
lyarwoodI've not got the bandwidth at the moment16:07
lyarwoodso we either put it off and continue to consume resources16:08
sean-k-mooneylyarwood: ok yes i see is closed thanks.16:08
lyarwoodor switch to just multinode now and migrate to focal later in the cycle16:08
gmannI need to check, i think i have patch for that but id not resume16:08
lyarwoodyeah you do16:08
lyarwoodtbh I think it's worth more to kill the standalone job now16:08
lyarwoodand then migrate to focal later16:08
gmannok, I will look into that. cannot remember the status16:08
dansmithlyarwood: that's fine with me16:08
lyarwooddansmith: cool16:08
lyarwooddansmith: have you looked at using your async approach during the upgrade in grenade btw?16:09
lyarwooddansmith: for the db migrations etc16:09
dansmithlyarwood: nope not yet, but I could work on that maybe next week and see16:09
lyarwooddansmith: cool if not I'd love to help post m3 along with the focal migration stuff16:10
sean-k-mooneygrenade uses devstack underneat right16:10
lyarwoodright but the upgrade part isn't part of that AFAIK16:10
gmanngrenade zuulv3 yes, legacy use d-g16:10
sean-k-mooneyso if you set the envar it might work maybe a DNM test patch would be worth giving it a try16:10
dansmithI too am stretched pretty thin, but this is high payoff work if it helps16:10
dansmithsean-k-mooney: well, there's actual grenade things that could be parallelized16:10
dansmithwhich I assume is what he meant16:11
lyarwoodyup indeed16:11
sean-k-mooneyah right16:11
gibimoving on16:11
gibi#topic Runway status16:11
*** openstack changes topic to "Runway status (Meeting topic: nova)"16:11
gibiI did a scan of the open bps16:12
gibiwe have a pretty long list that are close to being merged16:12
bauzaswe're 3 weeks from FF, right?16:12
sean-k-mooneymarch 11th i think16:12
sean-k-mooneyso about that16:13
bauzasyeah, 3 weeks16:13
*** kashyap has joined #openstack-meeting-316:13
gibilet me copy some link here if you need some review targets :)16:13
gibi#link : review ongoing16:13
sean-k-mooneyand 2 weeks for non-client libs16:13
gibi#link : review ongoing16:13
gibi#link : had 2 +2 at some point but needs a quick review from sean-k-mooney before we approve16:13
gibi#link : the last necessary patch needs a second core16:14
sean-k-mooneygibi: ill review that after the meeting16:14
gibisean-k-mooney: thanks16:15
gibialso there are things that also close but still need work16:15
gibi#link : has multiple negative feedback16:15
bauzasgibi: once I'm free from routed networks, you're next16:15
gibi#link : nova_api db patches needs review16:15
gibi#link : the api code landed, the python-novaclient patch and the policy patch needs some work16:15
gibi#link : good progress, but there is an open discussion in the review about a config option16:15
gibi#link : discussion seems to be concluded, implementation needs code review16:15
gibibauzas: thanks, I try to get you out of routed net :)16:15
bauzasalso, that's not a BP but I promised to rework on and I'd appreciate reviews16:16
bauzasunless we merge features that touch the RPC API16:16
gibibauzas: is that patch out of WIP state?16:17
dansmithyeah I didn't realize there was stuff to look at on that16:17
gibibauzas: I don't remember seeing a review with RPC bump recently16:17
bauzasgibi: this change needs rebase due to the shelve API change from cyborg16:18
bauzas5.13 IIRC16:18
sean-k-mooneygibi: is code complete for the sriov portion and i hope to have teh draft of the numa vswitch part done by the end of the week16:18
bauzasand it's WIP because Zuul was mean to me16:18
dansmithbauzas: no change from nov 24,16:18
dansmithI thought you had other things to fix on that?16:19
bauzasdansmith: technically, once I make support for 5.13, it should be ready for reviews16:19
gibisean-k-mooney: ack I will try to look at it16:19
dansmithbauzas: okay16:19
bauzasdansmith: but I fought weird issues with the jobs16:19
gibibauzas: ok16:19
bauzasdansmith: and I can't see why they're failing, hence the WIP16:20
dansmithbauzas: okay I thought the gate problem was because you actually broke the api and weren't setting the new version right or something16:20
artomI've switched to 'Needs code review' FWIW, since I assume that's why it was not showing up in that list16:20
dansmithbut must be something else?16:20
bauzasdansmith: maybe, a rebase is serisouly needed asap, so we can have time for fixing the problem at time for FF16:20
dansmithbauzas: ack, yeah, we should be landing that at or just before M3, so.. time is close16:21
bauzasbut I was dragged on some PEP484 discussions :p16:21
gibibauzas: :p16:21
gibiartom: sorry, I missed that now I'm awar that bp also has code to review, thanks16:21
artomWe've not yet recovered the Gerrit/Lauchpad integration bot, right?16:22
gibi(honestly the broken gerrit - launchpad intergration does not help either)16:22
gibiartom: right16:22
artomThere's my answer :P16:22
gibiany other feature we need to talk about?16:23
gmannI will re-review the remove-tenant-id series, most of nova changes are in good shape. Brian mentioned that one change in simple-tenant-usage API route did not work which I need to debug why.16:23
gmannbut this is on top of for microversion number16:24
gibigmann: yeah I aware of that but the novnc patch before it is blocked with negative review at the moment16:24
gmannwhich need more work16:24
gmannso we are still going in same order right?16:24
gmannnovnc first then remove-tenant-id16:24
gibithose patches currently orderd, it can be reordered if needed you need to change the microversions16:24
gibiI mean the author need to change the microversion16:25
gibiif reordering is needed16:25
sean-k-mooneyim hoping we can still complete this cycle too but i have been held up by hardware avaiablity until recently. im hoping to move that along next week. no api chagne with this one however so no conflict with ^16:25
gmannlet's see how it goes16:25
gibimoving on then16:25
gibi #topic Release Planning16:25
gibi#topic Release Planning16:25
*** openstack changes topic to "Release Planning (Meeting topic: nova)"
gibias it was mentioned already we have 3 weeks until feature freeze16:26
gibiand two weeks until non client lib freeze16:26
gibiI think we made an os-vif relese this week16:26
gibiis there any outstanding commit for os-vif or os-traits / os-resource-classes?16:26
gibisorry I mixed up16:27
gibiwe did an os-traits release16:27
sean-k-mooneyos-vif i dont think so16:27
gibiI opened an etherpad for xena ptg #link
gibiyou can dump your topic there16:28
gibifor the ptg16:28
gibiany other release releated thing to discuss?16:29
gibi#topic Stable Branches16:30
*** openstack changes topic to "Stable Branches (Meeting topic: nova)"
gibitempest-slow job is fixed -> Rocky gate is OK \o/16:30
gibiother stable branches seem OK16:30
sean-k-mooneygibi: do we have anythin to do for placment?16:30
gibisean-k-mooney: release wise? I don't track anything pressing for placement16:30
gibisean-k-mooney: or for ptg wise?16:30
sean-k-mooneyrelease wise16:31
sean-k-mooneywe mention the libs like os-traits16:31
sean-k-mooneyjust wanted to make sure it was good otherwise. we can move on16:31
gibiyeah os-traits are good now I think16:31
gibisean-k-mooney: OK16:31
gibiso above you see stable status from elod16:31
gibianything else from stable side to mention?16:31
gibi#topic Sub/related team Highlights16:32
*** openstack changes topic to "Sub/related team Highlights (Meeting topic: nova)"
gibiLibvirt (bauzas)16:33
bauzashonestly, haven't looked this time16:33
bauzasbut I think we're all good16:33
gibi#topic Open discussion16:34
*** openstack changes topic to "Open discussion (Meeting topic: nova)"
gibino topic on the agenda16:34
sean-k-mooneyi wanted to highlihgt
sean-k-mooneynova has 2 public security bugs which we shoudl assess16:35
sean-k-mooneythe second one
openstackLaunchpad bug 1798904 in os-vif "tenant isolation is bypassed if port admin-state-up=false" [Critical,Confirmed] - Assigned to sean mooney (sean-k-mooney)16:35
*** kashyap has left #openstack-meeting-316:35
sean-k-mooneyi think will be covered by a patch that is currenlty under review so i will test that as part of my testing of that patch and cofim i fthe latest comments i lefat are  correct16:36
sean-k-mooneythe first bug
openstackLaunchpad bug 1552042 in OpenStack Compute (nova) "Host data corruption through nova inject_key feature" [Medium,In progress] - Assigned to Matt Riedemann (mriedem)16:36
sean-k-mooneyhas an abandonded patch that possibel fixes it
sean-k-mooneybut its a few years old and im not super famialr with this area16:37
sean-k-mooneyit would be good if we could re triage that and see if it still exist andif the patch is still valid16:37
sean-k-mooneythe second bug is related to file injection which is deprecated so as a ptg topic i would like to discuss if we can finally remove that form the api and what that would involve16:38
bauzaswhat says the security team on both ?16:38
bauzasthey aren't embargoed so I guess those aren't critical16:39
sean-k-mooneythe embargos expired16:39
bauzasdo we have workarounds for the flaws ?16:39
sean-k-mooneynot really16:40
sean-k-mooneywe have potentally a way to fix both16:40
bauzaswell, the advisory is incomplete16:40
bauzason both16:40
sean-k-mooneyright because we did not fully triage them16:40
sean-k-mooneyin any case the secuity team has a long standing policy which they have relitvly recently started enforcing again16:41
sean-k-mooneyto not let security bugs sit in the prive state indefintly16:41
sean-k-mooneyit look like they have gone through the security tracked project and made public any that have long exceeded that embargo period with no recent activity16:42
gibiI can try to look at the old file injection fix to see if it make sense16:42
sean-k-mooneyfor nova that is just these two bugs16:42
bauzasfor people unaware of the process, this guide helps ^16:42
sean-k-mooneygibi: i think its just removing a fall back  wehre libguest fs is not avaiable16:43
gibiyeah, and we assume libguestfs is safe while the fallback is the real problem16:43
bauzassean-k-mooney: gibi: my take is that given the VMT fully reviewed the impacts and the embargo expired on both, then we just need to treat them as usual bugs16:44
sean-k-mooneythat is my breif understanding but i have only looked at this for 30mins16:44
bauzassean-k-mooney: gibi: but we can debate on the priority16:44
sean-k-mooneybauzas: yes they are now normal bugs but i think we shoudl try to fix them this cycle16:44
gibibauzas: yeah, I'm fine treating them as normal bugs16:45
sean-k-mooneythe port one i have been trying to fix since 2017 i would really like to get that off my plate16:45
bauzassean-k-mooney: do you have time on owning them ?16:46
bauzas is assigned to mriedem, so... :)16:46
openstackLaunchpad bug 1552042 in OpenStack Compute (nova) "Host data corruption through nova inject_key feature" [Medium,In progress] - Assigned to Matt Riedemann (mriedem)16:46
sean-k-mooneyi can proably own the other one16:46
bauzaswell, if you have time on it, I can offer reviews16:46
sean-k-mooneywe can discuss this outside the meeting if we want16:46
gibiI can own the injection one16:47
gibiOK, anything else for today?16:47
gibiif not then16:50
gibithank you for joining16:50
gibisee you around16:50
*** openstack changes topic to "OpenStack Meetings ||"
Meeting ended Thu Feb 18 16:50:17 2021 UTC.
Minutes (text):
