alex_openstackhi, i use two pc(as server) for install muilt-node nova03:51
alex_openstackwhat's docs is the best can i follow?03:51
annegentleYou can start here to choose your instructions.03:56
aaronAUSHi All04:42
*** nRy has quit IRC05:09
*** _william_ has joined #openstack05:20
*** naehring1 has joined #openstack05:22
*** guigui1 has joined #openstack05:52
HugoKuo_koolheadi7 , how's going06:44
*** PW__ has quit IRC06:45
*** koolhead17 has quit IRC06:52
*** bonzay has joined #openstack08:09
*** bonzay has quit IRC08:12
*** zz_bonzay is now known as bonzay08:13
*** Funnnny has joined #openstack08:13
FunnnnyHello everyone, is someup up there, I have a question08:17
*** daysmen has joined #openstack09:14
*** Binbin has quit IRC09:39
chemikadzeIs replay for yesterday webinar available?09:44
shriihey All09:55
shriiHello All,09:55
shriiHow are you All.!09:56
shriiI am setting up stackops on our new server.09:56
*** magglass1 has joined #openstack10:05
*** wilmoore has joined #openstack10:07
Funnnnyis openstack support xenserver10:08
Funnnnyand if it's not, is there any plan to support ?10:08
uvirtbotNew bug: #800591 in nova "Unable to attache more than one volume to a compute-node" [Undecided,New]
uvirtbotNew bug: #800593 in nova "Flash websocket emulation doesn't work with nova-vncproxy" [Undecided,New]
ccookeFunnnny: openstack does support xenserver as a hypervisor10:15
Funnnnyccooke: thanks, is there any document on it, I can't find any10:16
bonzayccooke: will you share your method?10:23
Funnnnybut seems that those two both are more nicely fit to a "workload", rather than a virtual infrastructure10:23
ccookebonzay: absolutely10:23
ccookebonzay: it's really a managed, packaged chroot image.10:24
ccookeit's nice and clean and comes as a single file10:24
ccookethere are, however, a couple of issues I need to deal with to make it work cleanly10:24
bonzayccooke: is it a .deb package you need to install in domU?10:25
ccookean rpm for the xenserver dom0, actually10:26
ccookemuch cleaner10:26
bonzayi agree10:26
bonzayso you dont need the domU then?10:26
ccookeYou currently do10:26
*** Fusion[SSP] has joined #openstack10:26
ccookebecause the dom0 option requires me to document and fix a couple of bugs in openstack10:27
shrii[15:26] <shrii> i am getting some issue with openstack-dashboard, [15:27] <shrii> not connecting to database.10:27
bonzaybut with your script you wont need it, right?10:27
ccookeAye. I expect I'll get time to work on that in a few weeks.10:27
ccookeHowever, that is just my option - it might turn out a bad one for openstack as a whole10:27
ccookeBut hey, it will make me *much* happier with the xenserver support10:28
ccookea domU is... messy10:28
bonzayyep, totally agreed10:28
ccookeAnd involves violation of levels of access/control10:29
bonzayI am very interested in a clean version of xen-server support10:29
bonzayso keep us informed :)10:29
ccookeWill do.10:30
ccookeI *have* had permission to share the implementation once it's actually usable, which is nice (since I'm doing it on work time)10:30
Funnnnyccooke: did you make xenserver usable with openstack dashboard10:31
*** katkee has quit IRC11:20
shriiok Razique11:21
*** Razique has quit IRC11:21
*** Razique has joined #openstack11:21
*** adjohn has joined #openstack11:23
*** onlany has joined #openstack12:12
onlanyi have a question about kvm12:12
*** aaronAUS has joined #openstack12:12
onlanymy cpu supports hardware virt12:13
onlanyand it is enabled in bios12:13
onlanyi have set the libvit type flag in conf12:13
onlanyrestarted all the services12:13
onlanybut in mysql in the compute node table still qemu is the hypervisor type12:13
onlanycould u help me why?12:14
*** katkee has joined #openstack12:15
*** dprince has joined #openstack12:15
xxtjaxxHow do you create that again?12:33
Raziquexxtjaxx: nova-manage project zipfile $project $project_user /zip/destination12:37
xxtjaxxRazique: Thx found it :) << I can haz explanation? :]12:39
Raziquexxtjaxx: ok, try,mmm a euca-add-group -d test test12:44
xxtjaxxRazique: instead of doing all the mojo with manifest.xml files and things like that can I instead use those flavours and just tell it to start an instance?12:44
xxtjaxxRazique: same result12:45
Raziquexxtjaxx: of course, you can run a euca-run-instance -k da_key -t $flavor $image-id12:45
Raziquexxtjaxx: which one, the auth error ?12:45
xxtjaxxDo I need both private and pubkey on it?12:47
*** ziyadb_ has joined #openstack12:48
*** tudamp has joined #openstack12:49
*** nphase has quit IRC12:50
*** FallenPegasus has joined #openstack12:50
xxtjaxxRazique: how should I add this key in order to get to it?12:58
xxtjaxxhmm db sync didn't happen yet btw13:06
Raziquexxtjaxx: try to run it manually13:09
Raziquenova-manage db sync13:09
notmynameaaronAUS: I'd guess that your proxy server config has "swauth" in the pipeline13:10
*** Shentonfreude1 has joined #openstack13:10
aaronAUSnotmyname: thats what I was trying to achieve.... damn this is impossible... I tried following a different article13:10
aaronAUSit uses swauth (and SSL)13:11
*** jedi4ever has quit IRC13:11
aaronAUSso I was hoping it would work with cyberduck13:11
notmynameaaronAUS: you can use swauth, but swauth was just taken out of swift proper (it's its own project now). so that tutorial is slightly out of date. swauth can be found at
*** jedi4ever has joined #openstack13:12
notmynamethere are also instructions there for setting it up13:12
aaronAUShmmm time to start over again13:13
xxtjaxxRazique: db sync worked13:13
*** rchavik has joined #openstack13:14
notmynameaaronAUS: install swauth from that project and you should be good to go. no need to start over13:14
aaronAUSI have stuffed around with too much stuff... its ok... just revert back to blank ubuntu with snapshot13:15
*** grapex has joined #openstack13:23
*** grapex has left #openstack13:23
xxtjaxxRazique: okay whats next....13:24
Raziquexxtjaxx: mmm so you told me it worked with your newly created project, but not with your current project right ?13:24
Raziqueif yours ain't critical, you should scrub it and delete it13:24
xxtjaxxRazique: where do I take the Image-ID from? I'd have to create images for that first right?13:24
Raziquexxtjaxx: yup, what kind of images u looking for ?13:25
Raziquea good start :
xxtjaxxRazique: some smallish web servery things for a start. I'm just evalling it13:25
Raziquefrom it, you download the tar.gz and use the uec-publish-tarball command to upload it to your store (local or glance one)13:26
xxtjaxxRazique: shame is we are a debian shop mostli13:26
*** throughn1thing has quit IRC13:31
xxtjaxxRazique: tried fixing it by chrooting and update initrd?13:36
*** throughnothing has joined #openstack13:37
*** rchavik has joined #openstack13:37
Raziqueah get it!
Raziquexxtjaxx: well it pissed me off, and I lost so many hours on it, so i've suspended this task atm ^^13:38
*** naehring has quit IRC13:39
*** throughnothing has quit IRC13:39
xxtjaxxRazique: I feel the same here with nova for some reason13:39
*** naehring has joined #openstack13:40
*** vernhart has joined #openstack13:53
*** ton_katsu has quit IRC14:18
*** nati has joined #openstack14:19
NashTrashGood morning Openstack'ers!14:20
*** shrii has quit IRC14:21
*** zobel has joined #openstack14:21
NashTrashQuestion for the group on nova-network and iptables14:22
NashTrashOk, my question...14:23
RaziqueNashTrash: ahah, everytime I'll have my frenchie word coming from you then :p14:23
NashTrashI have an instance with a public IP address.  If I try to ping that address from another instance within the cloud I get a time out.  If I ping the private IP it works just fine.14:24
NashTrashClearly when I use the public IP address it routes through the nova-network machine.14:25
*** markvoelker has quit IRC14:25
NashTrashI looked at the IPtables setup on nova-network and it seemed like it should work, but my iptables skillz are poor14:25
NashTrashShould one instance be able to connect to another instance using a public IP address?14:26
*** rchavik has quit IRC14:43
coggyRazique: alright. I'm asking because the template for seems to be out of sync with the documentation in the wiki. Thanks, I'll experiment...14:43
*** aliguori has joined #openstack14:43
*** deshantm has joined #openstack14:45
Raziquecoggy: I followed that guide : and it worked perfectly14:45
*** rchavik has joined #openstack14:45
coggyRazique: that's what I'm referring to. None of the NOVA_* settings mentioned in the wiki are found in the template. I'll just add them and see what happens14:46
Raziquecoggy: what settings ?14:49
Raziquei'll look at my files14:49
coggyRazique: NOVA_DEFAULT_ENDPOINT, for instance14:51
*** imsplitbit has quit IRC14:52
*** vernhart has joined #openstack14:52
Raziquecoggy: in root/src/openstack-dashboard/trunk/openstack-dashboard/local/local_settings.py14:53
Raziqueand the reste14:53
coggyRazique: is this current code from git?14:53
xxtjaxxRazique: Looking at the paste again it may be that the boot failed because it was trying to use the device(vda) and not a partition on the device like vda1. This explains the "unknown partitiontable" failure reported in this log.14:54
zobelxxtjaxx, Razique: what are you talking about? url to pastbin?14:55
Raziquezobel: na, I' explained him I was unable to create a squeeze ami14:56
xxtjaxxzobel: Razique tried to boot a Debian image with grub 2. This log entails his misfortune at this endeavour.14:56
RaziqueI had an error during the instanciation process14:56
zobelxxtjaxx: unknown partitiontable may mean that there is no partition table at all.14:58
zobelon the other hand...14:58
zobelRazique: it reads like the tries to mount a device that is non-existing14:58
zobelline 238 reads as there is an error while mounting.15:00
zobelare you sure your "root=" in the grub-config is okay?15:00
*** alandman has joined #openstack15:01
Raziquezobel: yup I used kvm to create a stand-alone image15:03
Raziquewhen I reboot it, it reboots fine under kvm15:04
Raziquebut when I put it into my nova-repo, I've the error ^^15:04
Raziquecoggy: I installed it few weeks ago15:05
Raziqueplease paste your file15:05
zobelRazique: may it be that vda devices are mapped to sda in nova?15:06
Raziquezobel: already tried :)15:06
Raziqueby modifying the /etc/fstab file15:06
zobelRazique: no, in your grub15:06
zobelits grub that passes root= to the kernel/initrd15:07
Raziquezobel: ah, no I did not tried that15:07
coggyRazique: it's this version:
zobelRazique: if that works, you should be able to start your vm, but will need to adjust /etc/fstab afterwards, and then rebuild your initrd15:08
coggyRazique: never mind. I added the missing configuration manually and it seems to work just fine. Thank you15:09
Raziquecoggy: ok nice, you should look at the file's history to see if these settings were removed15:10
*** ziyadb_ has joined #openstack15:24
bpaluchDoes the current code in trunk support the keystone code in the latest dashboard then?15:24
bpaluchits funny I  was trying to set up dashboard again this morning, and then I looked at what coggy posted in here having the same issue15:25
*** ziyadb has quit IRC15:25
*** ziyadb has joined #openstack15:26
*** ziyadb has joined #openstack15:26
heckjbpaluch: nova yes, glance not yet, swift damn near but not quite15:28
*** jedi4ever has quit IRC15:32
aaronAUSand my proxy-config reflects those changes you made in past 172815:33
btorchaaronAUS: hmm is everything running ? what does syslog show ?15:34
CatKillerHi There, does anyone know what I should do if I wanted to extend a table within the Nova DB with a new field?15:34
heckjCatKiller it's all set up with SQLAlchemy - is your question about the process to contribute, or how to technically do it?15:35
CatKillerWell, it's both actually15:35
CatKillerHow to technically do it so I can contribute ;)15:35
*** reidrac has quit IRC15:42
btorchaaronAUS: ok try to stop everything " sudo swift-init all stop" , then check to make sure nothing is already listening on 6011 port .. "sudo netstat -tnpl"15:42
aaronAUSpython is listening on that port15:43
*** Jamey has quit IRC15:43
aaronAUScan I kill a PID ??15:43
btorchaaronAUS: also double check your configs to make sure you don't have something trying to bind on the same port twice15:43
*** Jamey has joined #openstack15:43
heckjCatKiller: nova-manage db sync should create/recreate the database after your updates. I know it works on versions to manage forward and reverse migrations, but I'm not 100% clear on how that's all configured15:43
btorchaaronAUS: find out what that is first15:43
aaronAUSbtorch: checked all configs... only one container-server conf is set to use port 601115:46
btorchaaronAUS: ok cool, what is attached to that port right now after you stopped everything ?15:46
aaronAUSbtorch: container-server 115:47
btorchaaronAUS: ok kill it15:47
btorchaaronAUS: then try to start things up again15:48
aaronAUSmuch better15:48
aaronAUSbtorch: so shall I try to swauth-add-user ????15:48
*** vernhart has quit IRC15:49
aaronAUSbtorch: yay!15:49
btorchaaronAUS: a swauth-list will give you info back to verify things15:49
*** adjohn has quit IRC15:50
*** nRy has joined #openstack15:51
uvirtbotNew bug: #800759 in nova "Zone Manager does not "expire" offline hosts" [Undecided,New]
CatKillerheckj: Thanks, I figured out15:55
heckjCatKiller glad to help15:55
CatKillerheckj: The DB is created with sqlachemy.migrate using a migration repo, and the just defines the object model to match the db15:55
CatKillerheckj: The models is used internally in nova while the migrate defines the tables. Technically it could take the table definition from the classes but then you'd lose the versioning capability.15:56
*** mgoldmann has quit IRC15:57
*** iRTermite has quit IRC15:58
bonzayapparenty the urls are outdated16:11
*** ziyadb has quit IRC16:13
bodepdadam_g and I were just discussing what node the db sync should be done on.16:13
bodepdthe easist would be on the DB itself. Could this be problematic (b/c potentially a DB could have multiple instances per controller?)16:13
bodepdand just install nova-common on the db16:13
*** vernhart has quit IRC16:14
*** jkoelker has quit IRC16:15
adam_gas i understand it, the first 'nova-manage db sync' is necessary to run the required migrations on the specificied database. i dont believe its bound to any one nova project/controller/instance16:15
*** dmshelton has quit IRC16:16
*** chemikadze has quit IRC16:16
heckjadam_g: correct16:17
heckjadam_g: I've been using the rough outlines of the install script from
bonzaycan someone help me with my problem? please?16:19
bonzayas i can see  there are two major problems16:20
bonzay1.  ImportError: No module named greenlet16:20
*** rnirmal has joined #openstack16:20
heckjbonzay: what are you installing this on? Ubuntu? CentOS?16:20
bonzayheckj: ubuntu 10.04.2 LTS16:21
adam_gbodepd: if thats the case, i think the best would be bind database migration/sync to some component of the controller since installations might be depending on an external db instance outside the scope of puppet16:21
heckjYou might riff off the script I just mentioned and install the base packages into the OS from that - it'll be reasonably quick16:21
heckjbonzay: you could also just "sudo pip install greenlet" - I think it's pip installable16:22
adam_gbonzay: install python-greenlet16:22
bodepdif we run db sync from teh controller, which subcomponent makes the most sense?16:23
*** jkoelker has quit IRC16:23
heckjbonzay: here's the list of packages from nova.sh16:24
heckj    apt-get install -y python-mox python-ipy python-paste python-migrate \16:24
heckj        python-gflags python-greenlet python-libvirt python-libxml2 python-routes \16:24
heckj        python-netaddr python-pastedeploy python-eventlet python-novaclient \16:24
heckj        python-glance python-cheetah python-carrot python-tempita \16:24
heckj        python-sqlalchemy python-suds python-lockfile python-m2crypto python-boto16:24
*** Razique has quit IRC16:24
adam_gbodepd: nova-api seems logical to me, for some reason, since without the proper nova-manage setup the api is useless to users16:25
bodepdI was thinking that or the scheduler.16:26
bonzayok looks as if the first problem is solved by installing python-greenlet16:26
bonzaythx for that16:27
aaronAUSbtorch: is there a log i can vieww to see the actual http headers which were passed to swift???16:28
*** mies has joined #openstack16:28
*** ohnoimdead has joined #openstack16:29
*** Jamey has quit IRC16:29
bonzaybut now i'm getting this error
*** gaveen has joined #openstack16:33
*** rchavik has quit IRC16:33
*** kashyap has quit IRC16:34
heckjbonzay: apt-get install python-suds16:35
*** obino has joined #openstack16:35
bonzay"python-suds is already the newest version."16:36
bonzayah its suds 0.4.1 but the requirement is ==0.416:37
*** Guest3167 has joined #openstack16:38
*** anneg has joined #openstack16:40
bonzaywill it work if I just change the requirements or should I use ==0.416:41
heckjbonzay: I would suspect it will just work16:41
*** bsa has joined #openstack16:41
*** iRTermite has joined #openstack16:42
bonzayheckj: ok, thx, I'll try to change the requirements first16:42
*** markvoelker has joined #openstack16:43
bonzaynow cheetah is outdated :) but I think I know now what to do16:44
heckjbonzay: I suspect you'll find several outdated pieces there. You should mark up a bug and suggest a patch since you're getting all the details nailed down :-)16:44
bonzayheckj: will do :)16:45
aaronAUSbtorch: OMFG!!!! i finally got it to work16:45
aaronAUSI had to change a hidden configuration in cyberduck which sets the authentication.context (eg: /auth/v1.0)16:45
*** imsplitbit has joined #openstack17:01
*** jamiep has joined #openstack17:01
aaronAUSgood night all!17:03
*** aaronAUS has quit IRC17:03
*** maplebed has joined #openstack17:05
*** katkee has quit IRC17:05
*** koolhead17 has joined #openstack17:14
*** qhead has joined #openstack17:40
*** jkoelker has joined #openstack17:41
qheadhey.. I'm researching distributed file storage systems and found Swift.. from the website I got the impression that Proxy Server is SPOF in the system?17:41
WormManonly if you don't put in more than one of them17:42
NashTrashNope.  You can have N proxy servers17:42
WormMan(from what I've read)17:42
qheadah, ok17:42
qheadI'm currently trying to decide whether to use Riak's Luwak or Swift17:42
NashTrashBe aware that Swift is not a "file system".  It just has buckets and blobs inside the buckets.  If you need a true filesystem look at things like ceph, MooseFS, Gluster, Lustre, etc.17:43
qheadYeah, I knew that, poor choice of words from my part :/17:44
qheadI'll spread it over several clusters which are basically Ubuntu VPS instances17:44
qheadHmm, I think I'm going to do some benchmarking to see which one has the edge there17:45
*** huslage has joined #openstack17:48
*** cp16net has joined #openstack17:50
NashTrashI have an instance with a public IP address.  If I try to ping that address from another instance within the cloud I get a time out.  If I ping the private IP it works just fine.17:50
CatKillerWould anyone know of a good Python interface to the Nova API, similar to the Euca suite?17:57
*** anneg has quit IRC17:58
*** shawndecuir has joined #openstack17:59
heckjqhead: you can load balance the proxy servers - and there's a general rule of thumb that you want 1 proxy server for every ~8 storage servers18:00
heckjNashTrash: yeah, I'm afraid so18:01
*** ziyadb_ has quit IRC18:01
heckjNashTrash - nova-network manages that routing (and is the bottleneck) in the system today18:02
heckjCatKiller - there's a nova-api client library - I believe Dashboard uses it18:02
NashTrashheckj: Yeah, I know.  But, right now if I try to ping from one VM to another using the pubic IP it fails.  Ping with the private IP works.  Is this expected?18:03
* heckj looks for it...18:03
CatKillerheckj: Thanks, I'll check it out.18:03
NashTrashCatKiller: nova-adminclient is the name I think18:03
*** obino1 has joined #openstack18:03
huslageNashTrash: if the IPs are on the same host then it won't work to talk between the public IPs18:04
heckjNashTrash - yeah, I believe that's expected. You'll need to fiddle IPTables on your nova-network instance to allow the traffic18:04
*** obino1 has quit IRC18:04
heckjCatKIller: This is what I was thinking of:
*** obino1 has joined #openstack18:05
*** obino has quit IRC18:05
NashTrashheckj: I took a look at the nova-network iptables, but my *pathetic* knowledge of iptables led me to not see where things were getting hung up.18:05
heckjgithub link is broken on PyPi - source is here:
CatKillerheckj: For instance I had started using euca2ools in python too18:07
NashTrashCatKiller: Euca is great.  It makes use of Boto underneath.18:08
*** CloudChris has joined #openstack18:08
*** PW__ has joined #openstack18:13
bonzayhi, me again :)18:13
bonzayalmost got the xen thing working, but now
*** Funnnny has quit IRC18:14
bonzaywhen i it runs ok for 117 tests and then fails18:15
bonzaysry for being such a noob regarding python and these errors...18:15
NashTrashvishy: Do you have a moment for an iptables/nova-network question?18:22
NashTrashvishy: I have two VMs (A and B).  If B pings A using A's public IP it times out.  If B pings A's private IP it works.  What do I need to do to nova-network's iptables to allow B to use A's public IP address?18:23
*** mdomsch has joined #openstack18:24
NashTrashI have tried understanding iptables enough to get this working, but my kun-fo is not strong here18:24
*** gaveen has quit IRC18:24
*** imsplitbit has quit IRC18:25
vishyNashTrash: euca-authorize -P icmp -t -1:-1 default18:25
NashTrashvishy: That has been done.18:26
vishyoh right18:26
vishyyeah you can't hit via public instance to instance18:26
vishylet me think if there is a way you can make it work18:26
NashTrashvishy: Still doesn't work.  It is only the difference between using the public vs. private IPs.18:26
vishyi think if you add the forward to output it will work18:27
NashTrashvishy: Sorry, I am not sure I understand.  Add which forward to which output?18:28
*** bonzay is now known as zz_bonzay18:31
vishyone sec18:31
NashTrashvishy: No problem.18:33
adam_gare the nova.conf options glance_host and glance_port needed if glance_api_servers points to the same?18:35
*** zz_bonzay is now known as bonzay18:35
vishyadam_g: no glance_api_servers replaces the other options18:35
*** odyi has joined #openstack18:36
*** odyi has joined #openstack18:36
vishyNashTrash: so there is a prerouting rule that nats for floating ips18:36
vishyi think if you add the same rule to the output chain it will allow vm traffic to work18:36
NashTrashvishy: Hmm…The same rule is already in the nova-network-OUTPUT chain.18:38
vishyyeah i was just noticing that18:38
vishyare you in flatdhcp?18:39
NashTrashvishy: Yes, flatDHCP18:39
*** gregp76 has joined #openstack18:39
vishyis br100 in promisc mode?18:40
NashTrashvishy: Not certain.  How do I check?18:41
vishytry this on the network host: sudo ip link set promisc on dev br10018:42
NashTrashvishy: Ok, it was not before and now it is.  Testing...18:42
NashTrashvishy: Still does not work18:43
vishy:( well it was worth a shot :)18:43
vishyso i'm thinking that the issue is actually the snat18:44
NashTrashthe nova-network-snat?  It seems to me that it makes everything look like it is coming from the nova-network machine18:44
vishyright which is fine for outbound traffic18:45
NashTrashbut no good for VM to VM18:45
vishycan youy try this18:45
NashTrashI also thought that this could a problem behind why my metadata stuff never worked.  I had to add a NAT entry on each nova-compute18:46
vishyiptables -t nat -A nova-network-POSTROUTING -s -d <public_ip>/32 -j ACCEPT18:46
vishyassuming your private ips are in the range18:46
vishyNashTrash: the metadata stuff in flat mode is usually due to br100 not being promisc18:47
*** jesse_ has joined #openstack18:47
*** sdadh01 has quit IRC18:47
vishy* flatdhcp18:47
NashTrashStill not working.  Grr...18:49
*** katkee has joined #openstack18:50
*** wilmoore has joined #openstack18:51
*** arun_ has joined #openstack18:51
*** arun_ has joined #openstack18:51
*** clauden_ has joined #openstack18:52
*** jesse_ has quit IRC18:52
*** dgags has quit IRC18:55
vishyrhar was my best guess18:57
vishyer that18:57
vishygoing to have to do some tcpdumping to find out what is happenning to the packets18:57
NashTrashOk.  Strangely, that rule gets wiped out after about 30 seconds.  It is like nova-network clears everything periodically.  Kind of strange18:58
vishyyes it does18:58
vishythe nova chains get recreated from memory18:59
*** johnpur has joined #openstack18:59
*** ChanServ sets mode: +v johnpur18:59
vishyso you can't manually add stuff and have it stick18:59
vishybut you can throw it in for testing :)18:59
NashTrashAh.  Ok.18:59
CatKillerHi again, I have a quick question about nova zones. I can't find where to add a new zone within nova. Would anyone know where should I look?19:01
*** alandman has quit IRC19:02
*** ctennis has quit IRC19:04
*** pvo has joined #openstack19:04
NashTrashvishy: I see a bunch of ARP traffic happen between the two VMs when packets have to go through the nova-network (using public IPs), but no ARP traffic when they go directly between the VMs (using privateIPs)19:04
uvirtbotNew bug: #800843 in nova "OSAPI: extra 'checksum' property in image metadata" [Undecided,New]
*** perestrelka has quit IRC19:07
*** irahgel has joined #openstack19:08
*** ewindisch has quit IRC19:09
*** woleium_ has joined #openstack19:09
*** Xenith has quit IRC19:09
vishyNashTrash: does the arp exchange work?  Is it followed by actual data packets being sent?19:09
*** woleium has quit IRC19:10
*** woleium has joined #openstack19:10
uvirtbotNew bug: #800842 in nova "nova-manage displaying incorrect error msgs on flavor create" [Undecided,In progress]
*** irahgel has quit IRC19:12
*** woleium_ has quit IRC19:13
*** perestrelka has joined #openstack19:15
CatKillerI guess I should probably understand this first:19:15
CatKillerWhat is the concept of availability zones?19:15
CatKillerI can't find much on it even after googling a while19:16
*** gregp76 has quit IRC19:23
*** vasichkin has joined #openstack19:23
smoseris this a known issue with trunk at the moment:19:24
smoser ?19:24
bpaluchsmoser you are using an older version of glance with trunk nova19:26
bpaluchtry using trunk glance19:26
bpaluchthe older version of glance doesn't support filter19:27
smoserthank you.19:29
bpaluchalso if you are using newer glance the nova.conf attributes have changed.19:30
vasichkinHello. I'm trying to install openstack, diablo-1 on RHEL 6.1. I've done all needed configuration, but when i try to start nova-compute i get trouble with libvrt: (nova.exception): TRACE: libvirtError: internal error Cannot find suitable emulator for x86_6419:30
vasichkincan anybody help?19:30
*** vasichkin has quit IRC19:37
NashTrashvishy: Sorry, I was AFK.  No.  The ARP exchange does not seem to work.19:55
NashTrashvishy: It appears to me that no traffic that goes from VM to nova-manage to VM works.  I very well could be wrong though.19:56
*** vernhart has joined #openstack19:57
*** imsplitbit has joined #openstack20:02
NashTrashvishy: Should I open a but to track this?  I really do feel that this is the same problem I had with
vishyNashTrash: 169.254 works fine for me20:13
NashTrashvishy: It should be the nova-compute instances that do the iptables magic and not nova-network20:13
vishyso i don't think it is the same issue20:13
NashTrashvishy: Well then maybe my nova-manage is just wrong somehow20:14
NashTrashvishy: If I try to have 169.254 traffic go through nova-manage it does the same ARP-then-die dance20:15
vishyarp should work for 16920:15
vishynova-network adds the ip to loopback20:15
*** bz has quit IRC20:16
vishyperhaps you are missing a setting somewhere20:17
NashTrashI see VM GET to 169.254, it gets nat at nova-manage, and then I see nova-api trying to arp the VM.  Nothing happens after tat20:17
*** woleium has quit IRC20:18
vishyis nova-manage running nova-network and nova-api?20:21
NashTrashnova-manage service list shows everything running nicely20:22
vishyno i mean is the host that you are referring to nova-manage20:22
vishyrunning the network and api?20:22
vishyor are they all different hosts?20:22
*** AimanA has joined #openstack20:22
NashTrashthey are on different machines20:22
*** dmshelton has joined #openstack20:23
vishyso nova-api is trying to arp for the private address?20:23
*** rminnear has quit IRC20:23
vishyyou need a route on nova-api to private range20:23
vishyroute add -net <private_range> gw <ip_of_nova_network>20:23
vishyif they are on separate hosts like that20:24
NashTrashMakes sense.  But I have the same issue if I try to do a GET from a nova-compute machine to the nova-api (via nova-network using 169.254)20:24
vishyso if you curl from compute it doesn't work?20:25
vishyis nova-network the default gateway for your compute machines?20:25
*** bz has joined #openstack20:26
vishyit works for vms because it is their gateway20:26
vishyit won't necessarily work for the hosts20:26
*** huslage has quit IRC20:26
NashTrashWait wait wait…My nova-compute network is 192.168.50.x.  If I run route on nova-api it only shows routes for "localnet" and "default".  Default points to the nova-network machine.  I really should have a route to right?!?!20:27
NashTrashnova-compute do have the nova-network as their gateway20:27
vishyyou should have a route for guests20:27
vishyi don't know if you need one for hosts20:27
vishywhat private range are you using?20:27
vishy* fixed_range20:27
vishyand you are using 50.0/24 for hosts?20:29
*** bkkrw has joined #openstack20:29
vishyand your guests are getting ips properly?20:30
*** vernhart has quit IRC20:30
*** jaypipes is now known as jaypipes-afk20:31
vishymight need to add a route for 51.0/2420:31
*** vernhart has joined #openstack20:32
vishyalso you should make sure that there are no weird iptables rules using the 10.0 range or something weird like that20:32
NashTrashOk.  I will try that and keep tinkering.  I added an iptables entry on each nova-compute that translates 169.254 to my nova-api and that works.20:33
NashTrashWill do20:33
NashTrashmy nova-api machine has nothing (I mean nothing) in its iptables20:33
vishyi'm thining that you need to set --dmz_cidr as well20:33
NashTrashwhat is that used for?20:34
vishyto a cidr that includes nova-api20:34
vishythere is an accept rule that is added20:34
vishyso it doesn't snat traffic to that range20:34
*** pvo has joined #openstack20:35
vishyotherwise it snats traffic going to nova-api to the network_host ip20:35
vishyand the response won't get there20:35
NashTrashhmm.  Could be20:35
*** katkee has quit IRC20:35
*** cbeck has quit IRC20:43
*** Xenith has quit IRC20:47
NashTrashheckj: You are right.  Single instance with all traffic through it (for now)21:11
heckjNashTrash: thanks21:11
NashTrashheckj: NP21:12
cowmixvishy: the overhead of OpenStack shouldn't be a big deal on one node then?21:14
vishywouldn't thik so21:19
*** ameade has quit IRC21:21
*** cereal_bars has joined #openstack22:01
*** vernhart has joined #openstack22:06
*** vernhart1 has quit IRC22:08
*** imsplitbit has quit IRC22:08
Davor`Is this the right place to follow-up on my unanswered Launchpad questions?22:12
*** clauden_ has quit IRC22:12
*** qhead has joined #openstack22:13
*** PW__ has quit IRC22:18
cereal_barsDavor`: maybe.. tell us about your question :)22:19
Davor`I have two machines (controller + compute), but I can't even ping from the controller its own VMs22:21
*** vernhart1 has quit IRC22:21
Davor`Each host has two NICs, one on the corporate LAN and the other on the private management subnet; plus another subnet (10.x.x.x) for the VMs22:21
Davor`Using FlatDHCP manager...22:22
*** vernhart has joined #openstack22:22
heckjDavor: just checking - you can't ping from the CloudController to a VM running on the compute node?22:24
*** llang629_ has quit IRC22:24
Davor`No, the VM is running on the cloud controller22:24
*** markvoelker has quit IRC22:26
*** Cromulent has quit IRC22:45
*** mattray has quit IRC22:47
*** MotoMilind has quit IRC22:51
Davor`heckj: ifconfig is at; iptables at
*** katkee has quit IRC22:53
*** bkkrw has quit IRC22:56
Davor`heckj: eth0 is not unplugged, I'm using both NICs on the machine (so that it is on two "real" networks -- corporate and openstack-management)22:58
Davor`heckj: and the VM is shown by euca-describe-instances as
heckjDavor: eth0 is bound to the br100 then?22:59
heckjDavor: the IP tables are all set up for this system to be able to ping
*** MotoMilind has joined #openstack23:00
heckjDavor: are you getting no route to host when you try?23:00
Davor`heckj: I'm pretty sure eth0 is bound to br100. I'm able to ping its "management network" IP from the compute node23:02
Davor`heckj: ah right, that's how it looks from ip addr show:
*** rnirmal has quit IRC23:05
Davor`heckj: br100 is bound to eth0's MAC and shows IPs on both the management ( and VM ( subnets23:05
*** soosfarm has quit IRC23:06
heckjDavor: I'm at a loss beyond here - my IPTables foo isn't cutting this, from what I can see, that node should be completely able to ping
*** soosfarm has joined #openstack23:08
Davor`heckj: and I noticed that I have two identical dnsmasq processes running23:15
Davor`except for the PID, both have the same parameters in 'ps ax' output:  1495 ?        S      0:02 dnsmasq --strict-order --bind-interfaces --conf-file= --domain=novalocal --pid-file=/var/lib/nova/networks/ --listen-address= --except-interface=lo --dhcp-range=,static,120s --dhcp-lease-max=32 --dhcp-hostsfile=/var/lib/nova/networks/nova-br100.conf --dhcp-script=/usr/bin/nova-dhcpbridge --lea23:15
heckjDavor: you probably want to kill one of those DNSMASQ processes, but that shouldn't stop the networking.23:15
heckjDavor: not sure about the log file either - nova is mostly set to scroll output to the console from each process, but can be configured to log to a file. And I'm learning the debugging of the networking stuff right now - so I'm afraid I don't have much idea of where to go next except to ask others on this channel.23:17
Ryan_LaneDavor`: one of them is the parent of the other23:17
Davor`Ryan_Lane: so I shouldn't touch either?23:18
Davor`Ryan_Lane: and there is a third one, comming from libvirt, but listening on a different IP and for a different DHCP range23:19
*** MarkAtwood has joined #openstack23:19
Davor`Ryan_Lane: that's correct. Ubuntu Natty server, cactus release23:19
Ryan_Lane*that* one needs to die23:19
Ryan_Lane /etc/init.d/dnsmasq stop23:20
Davor`Ryan_Lane: there is no /etc/init.d/dnsmasq23:20
Ryan_Laneeh? really?23:20
Ryan_Laneah. right23:21
Ryan_Lanedo this, then: stop dnsmasq23:21
Ryan_Lanestupid upstart23:21
Ryan_Laneyou'll also need to disable dnsmasq in the upstart file23:21
Davor`Ryan_Lane: no such luck -- "stop: Unknown job: dnsmasq"23:21
Ryan_Lanethat's odd. dnsmasq must be installed. that usually installs an init script too23:22
Ryan_Lanesomehow that 3rd process is getting started23:22
*** victor_lowther has quit IRC23:23
Ryan_Lanewell. i gotta go. good luck :)23:23
*** Ryan_Lane has quit IRC23:23
*** vernhart has quit IRC23:25
Davor`Me too... Thanks all for your help. To be continued...23:25
*** Davor` has quit IRC23:26
*** adjohn has joined #openstack23:26
*** adjohn has quit IRC23:26
*** RoAkSoAx has quit IRC23:35
*** rminnear has joined #openstack23:45
*** pguth66 has quit IRC23:53

