*** nelson has joined #openstack | 00:00 | |
*** michaelkre has quit IRC | 00:00 | |
*** vernhart has joined #openstack | 00:01 | |
magg | im getting this error after running python tools/install_venv.py to install the dashboard | 00:04 |
---|---|---|
magg | http://pastebin.com/h0KxR3Lj | 00:04 |
*** nerens has quit IRC | 00:05 | |
magg | wtf :( | 00:05 |
vidd | Python.h: No such file or directory | 00:06 |
vidd | i told ya you would hit this | 00:06 |
magg | oh | 00:06 |
magg | ohh i need to install python-dev | 00:08 |
vidd | thats an apt-get | 00:09 |
* Kiall really hopes this works ;) https://launchpad.net/~kiall/+archive/openstack | 00:09 | |
magg | vidd: problem solved | 00:10 |
vidd | nice....after i went and did all this documentation =] thanks Kiall | 00:10 |
*** HowardRoark has joined #openstack | 00:11 | |
Kiall | lol .. It would only do the install, not the setup ;) | 00:11 |
Kiall | I've, I believe, fixed the oneiric packages to use the right version of keystone :) | 00:11 |
vidd | nice...how 'bout dashboard =] | 00:12 |
vidd | i havent gottent there yet =] | 00:12 |
Kiall | Need to get this going first ;') | 00:12 |
magg | brb | 00:13 |
Kiall | gah - PPA build queue is 2 hours -_- | 00:14 |
vidd | dunno what that means | 00:14 |
Kiall | It'll be 2 hours before lauchpad builds the .deb ;) | 00:14 |
*** mencken has quit IRC | 00:14 | |
*** magg has quit IRC | 00:15 | |
*** ewindisch has quit IRC | 00:15 | |
*** ewindisch has joined #openstack | 00:16 | |
*** magg has joined #openstack | 00:17 | |
*** alexn6 has quit IRC | 00:19 | |
magg | back | 00:20 |
*** thingee has quit IRC | 00:21 | |
magg | i got dashboard running but when i try to log in i get unable to connect | 00:23 |
magg | in the browser and stays at this url http://192.168.137.203:8080/auth/login/?next=/dash/ | 00:23 |
*** troya has joined #openstack | 00:25 | |
*** nati2 has quit IRC | 00:25 | |
*** thingee has joined #openstack | 00:26 | |
*** TooExcited has quit IRC | 00:26 | |
uvirtbot | New bug: #843056 in keystone "Design Documentation" [High,Confirmed] https://launchpad.net/bugs/843056 | 00:26 |
*** thingee has quit IRC | 00:31 | |
*** TooExcited has joined #openstack | 00:32 | |
troya | hi kiAll | 00:32 |
*** dendro-afk is now known as dendrobates | 00:32 | |
vidd | annegentle, any chance you are here? | 00:33 |
troya | hiv vidd | 00:33 |
vidd | hello troya | 00:33 |
*** ahasenack has quit IRC | 00:33 | |
vidd | magg, http://pastebin.com/zB57rijU | 00:34 |
*** justinlw has quit IRC | 00:34 | |
troya | vidd: i have questions, can i running windows 2003 as instances on openstack ? | 00:34 |
vidd | tell me how it works 4 you | 00:34 |
vidd | i suppose | 00:34 |
troya | yes :D | 00:35 |
magg | vidd, what do i do with that | 00:35 |
vidd | magg, follow the instructions | 00:35 |
magg | vidd, ohh | 00:35 |
*** doorlock has joined #openstack | 00:36 | |
vidd | is there anyone here with the documentation project? | 00:36 |
magg | keystone-manage role add Administrator | 00:37 |
magg | ERROR: Failed to create role Administrator: (<class 'sqlalchemy.exc.OperationalError'>, OperationalError('(OperationalError) attempt to write a readonly database',), <traceback object at 0x9ea2e64>) | 00:37 |
magg | OMG | 00:37 |
vidd | hey troya dont PM ppl without asking its RUDE | 00:38 |
magg | magg@cloudHQ1:~$ keystone-manage role list | 00:38 |
magg | id | 00:38 |
magg | ------------------------------------------------------------------------------ | 00:38 |
magg | i have no roles | 00:38 |
magg | and cant add new ones | 00:38 |
troya | i'm sorry vidd | 00:38 |
vidd | the sudo su | 00:38 |
vidd | *then sudo -s | 00:39 |
vidd | and then you can | 00:39 |
vidd | or, make your database writable | 00:39 |
*** rsampaio has joined #openstack | 00:39 | |
*** egant has quit IRC | 00:39 | |
vidd | troya i already answered your question | 00:39 |
vidd | "i suppose" | 00:39 |
magg | ook | 00:40 |
magg | it worked | 00:40 |
vidd | troya somewhere on the docs.openstack.org site there is an article about it...dont recall off hand where | 00:42 |
magg | sudo keystone-manage role grant Administrator MyAdmin | 00:43 |
magg | SUCCESS: Granted Administrator the MyAdmin role on None. | 00:43 |
vidd | magg, so you can start instaces and everything thru dashboard? | 00:43 |
magg | that message of success seems odd | 00:43 |
magg | vidd: not yet | 00:43 |
vidd | magg, you missed a step | 00:43 |
vidd | administrator needs to have a tenant name or you wont be able to get get your credentials loaded in | 00:44 |
magg | ahh | 00:44 |
magg | i missed the tenant | 00:45 |
vidd | the steps are numbered | 00:45 |
magg | hehe | 00:45 |
vidd | if you delete the database you can rebuild it | 00:45 |
troya | vidd: thanks :D, i'm soory for my foolish | 00:45 |
vidd | sorry i couldnt help ya earlier....ive been working on that project for the last 4 days | 00:46 |
*** t9md has joined #openstack | 00:46 | |
magg | vidd if dont have swift i dont do the service add command for swift | 00:47 |
vidd | anyone here on the documentation team? | 00:47 |
*** dragondm has joined #openstack | 00:47 | |
*** nati2 has joined #openstack | 00:47 | |
vidd | magg, you can skip over it | 00:47 |
magg | ok | 00:47 |
vidd | you want to at least get nova glance and keystone | 00:49 |
magg | HOST_IP is the ip where nova and keystone is installed? | 00:49 |
magg | ok | 00:49 |
vidd | right | 00:49 |
magg | k | 00:49 |
vidd | like if your host machine is 192,168.1.102, that is what you would put in the %HOST_IP% | 00:50 |
*** doorlock has quit IRC | 00:50 | |
vidd | is there anyone on the documentation team? | 00:51 |
magg | if i only have i only create one endpoint for my user MyAdmin | 00:55 |
magg | if i only have one user*** | 00:55 |
magg | sudo keystone-manage endpoint add MyAdmin 1 | 00:56 |
magg | SUCCESS: Endpoint 1 added to tenant MyAdmin. | 00:56 |
*** obino has quit IRC | 00:56 | |
*** sdake has quit IRC | 00:56 | |
magg | the success message is wrong | 00:56 |
magg | i think | 00:57 |
magg | where do i get the credentials for number 10, from novarc? | 00:58 |
vidd | yes | 00:58 |
*** xmltok has quit IRC | 00:59 | |
*** joeyang has joined #openstack | 01:00 | |
*** miclorb_ has quit IRC | 01:01 | |
*** t9md has quit IRC | 01:01 | |
*** vernhart has quit IRC | 01:03 | |
*** dysinger1 has joined #openstack | 01:06 | |
vidd | magg, and the servey says? | 01:06 |
*** bcwaldon has quit IRC | 01:06 | |
*** dysinger has quit IRC | 01:06 | |
*** pixelbeat has quit IRC | 01:07 | |
*** reed has quit IRC | 01:08 | |
*** jdurgin has quit IRC | 01:08 | |
magg | vidd add, disable, delete, and list are the only supported commands (right now) | 01:08 |
magg | after sudo keystone-manage credentials nova da234eef-b25d-4760-8a41-f76a277afa91 922657ac-cc6b-41e4-8b14-8db58695412d MyAdmin | 01:08 |
vidd | you are missing the "add" | 01:09 |
vidd | i missed it | 01:09 |
vidd | its in the format though =] | 01:10 |
vidd | what can you expect...ive been up over 36 hours afte 4 hours of sleep =] | 01:10 |
magg | credentials add nova | 01:10 |
magg | hehehe | 01:11 |
vidd | right | 01:11 |
magg | ? | 01:11 |
magg | ok | 01:11 |
vidd | i think i did pretty darn good for my first documentation project | 01:11 |
*** miclorb_ has joined #openstack | 01:12 | |
magg | SUCCESS: Credentials nova created. | 01:12 |
magg | yeah its pretty nice | 01:12 |
magg | thanks alot | 01:12 |
vidd | now go into dashboard and make sure they work | 01:12 |
vidd | but first....tell me waht you did for dashboard | 01:13 |
*** justinlw has joined #openstack | 01:13 | |
magg | it doesnt work | 01:13 |
magg | the dashboard i mean | 01:13 |
vidd | ic | 01:13 |
vidd | of to the git i go | 01:13 |
*** justinlw has quit IRC | 01:13 | |
vidd | actually, i have it already downloaded | 01:14 |
magg | yeah i got it from git | 01:15 |
vidd | and it dont work? | 01:15 |
magg | well i can browse to the log in page | 01:15 |
magg | i enter my crendentials | 01:16 |
*** ton_katsu has joined #openstack | 01:16 | |
vidd | well thats what we want | 01:16 |
magg | and page goes blank | 01:16 |
*** GeoDud has quit IRC | 01:16 | |
*** Xenith has quit IRC | 01:16 | |
vidd | ic (well...no, not really) | 01:16 |
magg | i got it to run in apache | 01:16 |
*** doorlock has joined #openstack | 01:16 | |
magg | and i run it without apache also | 01:17 |
vidd | that's a plus | 01:17 |
magg | both ways dont work | 01:17 |
magg | here's the error log from apache | 01:17 |
magg | http://pastebin.com/D2ruhFsn | 01:17 |
magg | vidd: yeah i guess so | 01:17 |
vidd | you have mpm-worker installed | 01:19 |
vidd | that isnt compatable | 01:19 |
magg | mmm | 01:19 |
vidd | give me a sec | 01:19 |
*** t9md has joined #openstack | 01:19 | |
*** Xenith has joined #openstack | 01:19 | |
magg | ok | 01:19 |
*** mattray has quit IRC | 01:20 | |
vidd | sudo apt-get install apache2-mpm-prefork | 01:21 |
vidd | 01:21 | |
vidd | that should fix ya right up | 01:21 |
magg | and i uninstall apache2? | 01:22 |
magg | first i mean | 01:22 |
vidd | no...just run that | 01:22 |
vidd | it will take the "bad" stuff | 01:22 |
vidd | and replace it with the "good" | 01:22 |
vidd | its a tummy tuck, not open heart surgery....this is linux after all....not windows | 01:23 |
*** GeoDud has joined #openstack | 01:23 | |
vidd | anyone here from the documentation team? | 01:23 |
*** livemoon has joined #openstack | 01:25 | |
vidd | hello livemoon | 01:26 |
vidd | check out my lovely documentation: | 01:26 |
vidd | http://pastebin.com/zB57rijU | 01:26 |
*** maplebed has quit IRC | 01:27 | |
*** t9md has quit IRC | 01:27 | |
magg | vidd many many thanks | 01:27 |
magg | gotta run | 01:28 |
magg | later | 01:28 |
vidd | np | 01:28 |
livemoon | hi,all | 01:29 |
vidd | livemoon, check out my lovely documentation: | 01:29 |
livemoon | hi,livemoon | 01:29 |
vidd | http://pastebin.com/zB57rijU | 01:29 |
livemoon | ok | 01:30 |
livemoon | I will see it | 01:30 |
livemoon | it's morning here ,but raining today | 01:30 |
*** bcwaldon has joined #openstack | 01:31 | |
*** magg has quit IRC | 01:32 | |
*** Narayanan has joined #openstack | 01:34 | |
Narayanan | hi guys, i have question about how you do post-installation for the VMs provisioned | 01:36 |
Narayanan | does nova-compute offer anything, like integration to puppet or chef? | 01:37 |
Narayanan | also i want to understand the basic customization support, like changing the hostname, ip, adding users, etc | 01:38 |
vidd | Narayanan, http://docs.openstack.org/diablo/openstack-compute/admin/content/ch_openstack-compute-automated-installations.html covers info on puooet and chef | 01:41 |
vidd | and its linux....you can customize just about everything | 01:42 |
*** msivanes has joined #openstack | 01:42 | |
*** ziyadb has quit IRC | 01:44 | |
*** imsplitbit has quit IRC | 01:44 | |
*** dendrobates is now known as dendro-afk | 01:46 | |
*** t9md has joined #openstack | 01:47 | |
*** ton_katsu has quit IRC | 01:48 | |
*** timr has joined #openstack | 01:49 | |
*** ziyadb has joined #openstack | 01:49 | |
Narayanan | thanks vidd | 01:50 |
vidd | np | 01:50 |
Narayanan | vidd, are you commiter or user? | 01:50 |
vidd | im a user | 01:50 |
Narayanan | ok. i also heard the customization the way it works is it writes to the filesystem in the disk and then poerson the vm | 01:51 |
Narayanan | powers on | 01:51 |
vidd | not sure what you mean | 01:52 |
Narayanan | for example if you want to change the ip of the VM, at the time of deployment before attaching the disk, it would load the file system from the disk and change it? | 01:54 |
*** t9md has quit IRC | 01:55 | |
Narayanan | i am trying to understand how the customization works internally | 01:55 |
vidd | yes...you can set it up like that | 01:55 |
Narayanan | ok | 01:55 |
vidd | you can also change the ip while the VM is up and running | 01:55 |
Narayanan | using puppet/chef? | 01:55 |
vidd | not using puppet or checf | 01:56 |
Narayanan | ok | 01:56 |
vidd | ]puppet and chef are not really for vm's....they can be used for it...there's no doubt | 01:57 |
vidd | if you have to configure say 15 machines | 01:57 |
Narayanan | ok | 01:57 |
vidd | but if all you need to do is change an ip address you dont need puppet or chef to do that | 01:57 |
Narayanan | nova API exposes some method? | 01:58 |
vidd | yes | 01:58 |
Narayanan | cool | 01:58 |
*** HugoKuo_ has joined #openstack | 01:58 | |
vidd | i dont know exactly how it works....im new to this kind of thig | 01:59 |
*** df1 has quit IRC | 01:59 | |
*** halfss has joined #openstack | 02:00 | |
halfss | hi | 02:00 |
vidd | hello halfss | 02:00 |
halfss | is there anybody resize sucess | 02:00 |
halfss | vidd::> | 02:01 |
*** worstadmin has quit IRC | 02:01 | |
*** worstadmin has joined #openstack | 02:01 | |
vidd | none that ive seen....but ive been working on some documentation for keystone setup | 02:01 |
halfss | for what? keystone with swift? | 02:02 |
vidd | livemoon, you get a chance to look over my work? | 02:02 |
Narayanan | ok | 02:02 |
vidd | keystone with everything | 02:02 |
halfss | can i see? | 02:02 |
halfss | :> | 02:02 |
vidd | sure | 02:02 |
halfss | :> where? | 02:02 |
vidd | you have dashboard up and running? | 02:02 |
Narayanan | vidd, you local to bay area? and may i ask who you work for? | 02:02 |
vidd | http://pastebin.com/zB57rijU | 02:03 |
vidd | Narayanan, there are no bays around here and im currently unemployed | 02:03 |
halfss | my dashbaord don't work with swift | 02:03 |
vidd | halfss, maybe i have the cure for that =] | 02:04 |
halfss | what? | 02:04 |
vidd | for your dashboard not working with swift | 02:04 |
vidd | Narayanan, it is RUDE to PM ppl without permission | 02:05 |
halfss | now i don't have an swift,let me make one, | 02:05 |
halfss | waitting me | 02:05 |
vidd | Narayanan, i am working on openstack so i can get back to work | 02:06 |
livemoon | vidd: I am so busy now. | 02:06 |
*** tsuzuki_ has joined #openstack | 02:06 | |
livemoon | because my nova cannot boot server | 02:06 |
Narayanan | vidd, sorry, i am new to using this tool i wanted to reply to your PM message | 02:06 |
vidd | livemoon, since you installed keystone? | 02:06 |
HugoKuo_ | does any one knows how noVNC verify the VNC port of instance ? | 02:06 |
*** mandela123 has joined #openstack | 02:06 | |
Narayanan | it was high lighted red, thought it was a PM from you | 02:07 |
vidd | no...red just means i said your name | 02:07 |
Narayanan | sorry about that | 02:07 |
vidd | we do it especially when we have 4 or 5 conversations going on at once | 02:07 |
Narayanan | ok | 02:08 |
*** t9md has joined #openstack | 02:08 | |
vidd | hugokuo you using dashboard? | 02:08 |
HugoKuo_ | vidd , both dashboard and NOVA cline | 02:09 |
vidd | i cant get dashboard up ATM but i believ it has a tool in it for just purpose | 02:10 |
vidd | livemoon, do you know why your nova cant boot? | 02:10 |
vidd | and is it that it cant boot or they are not talking to each other | 02:10 |
livemoon | all: when I nova boot server, errors show "http://pastebin.com/HWQWF2nz" | 02:11 |
vidd | livemoon, if two machines are not talking to each other it could be a time sync issue | 02:11 |
livemoon | vidd: I cannot boot instances | 02:12 |
vidd | livemoon, have you verified the integitu of the image? | 02:12 |
vidd | or does the image boot fine on other machines? | 02:13 |
livemoon | I just one controller can boot instances | 02:14 |
vidd | so the controller can boot but the node cannot or ALL nodes cannot? | 02:14 |
livemoon | just not running "nova boot" | 02:15 |
livemoon | return 400 | 02:15 |
vidd | welll this can be a glance issue or a networking issue | 02:15 |
vidd | maybe even a rabbitQM issue | 02:16 |
vidd | you have nova-network installed on the host withthe isue? | 02:16 |
*** troya has quit IRC | 02:17 | |
livemoon | yes | 02:18 |
vidd | are there any othe VM active and working on that node? | 02:19 |
uvirtbot | New bug: #879195 in glance "Functional tests will not run on Mac OS X" [High,In progress] https://launchpad.net/bugs/879195 | 02:21 |
*** Ryan_Lane has joined #openstack | 02:22 | |
*** dysinger1 has quit IRC | 02:22 | |
*** dysinger has joined #openstack | 02:24 | |
mandela123 | any one can tell me in keystone what admin-url public_url and internal url used for | 02:25 |
vidd | mandela123, pubplic url is the world-facig ip address | 02:26 |
vidd | internal is you local netmask | 02:27 |
*** miclorb_ has quit IRC | 02:27 | |
*** rods has quit IRC | 02:27 | |
vidd | admin is like, for example keystone sends on port 5000 but listens on port 5001, so it's admin and local are differemnt | 02:27 |
*** ewindisch has quit IRC | 02:28 | |
*** ewindisch has joined #openstack | 02:28 | |
*** mandela123 has quit IRC | 02:30 | |
*** kernelfreak has quit IRC | 02:30 | |
*** mandela123 has joined #openstack | 02:30 | |
*** wariola has joined #openstack | 02:30 | |
vidd | anyone here that works on the documents projetc....or knows how i can get a hold of them? | 02:31 |
vidd | anyone: | 02:31 |
*** dysinger has quit IRC | 02:32 | |
*** ziyadb has quit IRC | 02:36 | |
*** ziyadb has joined #openstack | 02:38 | |
*** snail has joined #openstack | 02:38 | |
*** sdake_ has joined #openstack | 02:40 | |
vidd | livemoon, have you been able to get that issue fixes? | 02:47 |
livemoon | no | 02:47 |
livemoon | I google it ,but have no result | 02:47 |
vidd | do you have other vm's active on that machine? | 02:48 |
livemoon | no | 02:48 |
livemoon | I have no vm | 02:48 |
vidd | is it a node or controller? | 02:48 |
*** df1 has joined #openstack | 02:50 | |
livemoon | I install novaclient in controller | 02:50 |
livemoon | It return 400 | 02:51 |
vidd | the machine with the issue....none? | 02:51 |
vidd | *node | 02:51 |
vidd | halfss, whats up? | 02:55 |
*** jakedahn has quit IRC | 02:55 | |
halfss | vidd: can you help me about swift? | 02:55 |
vidd | i can try... i know very little about it | 02:56 |
halfss | :> when here curl -k -v -H 'X-Storage-User: system:root' -H 'X-Storage-Pass: testpass' https://$PROXY_LOCAL_NET_IP:8080/auth/v1.0 | 02:56 |
vidd | i feel a keystone question coming on | 02:57 |
halfss | it work well,but curl -k -v -H 'X-Auth-Token:AUTH_tk50292c0550754656ab27387f62f390c4' https://192.168.2.103:8080/v1/AUTH_system | 02:57 |
halfss | error 401 Unauthorized< | 02:57 |
halfss | the swift does not work well | 02:57 |
vidd | this is not a swift uestion its a keystone question....riight | 02:58 |
livemoon | I want to know how to look source code to fixed the issue | 02:58 |
*** andy-hk has joined #openstack | 02:58 | |
vidd | livemoon, i dont know anything about source code | 02:58 |
halfss | vidd:can you help me about swift? | 02:58 |
*** Narayanan has quit IRC | 02:58 | |
vidd | halfss, you eith dont have keystone turned on or you are missing a setting | 03:00 |
vidd | pastbin me your conf file | 03:00 |
vidd | ive seen this issue b4 | 03:00 |
vidd | and its a keystone thing, not a swift thing | 03:01 |
vidd | ive been working on keystone the last 4 days....i think i know it pretty well | 03:01 |
halfss | vidd: how about this, i can let you loggin the server,you can fixed it faster | 03:01 |
*** lionel__ has quit IRC | 03:01 | |
*** lionel_ has joined #openstack | 03:01 | |
vidd | i dont like walking around in other ppl's computers | 03:01 |
vidd | and i dag sure dont want root privleges in there! | 03:02 |
halfss | :> | 03:02 |
halfss | :> | 03:02 |
vidd | you can break alot of stuff with god rights in other ppls stuff | 03:04 |
halfss | it's ok.the server is juse test, | 03:05 |
vidd | you dont understand...its NOT ok with me | 03:05 |
halfss | :> | 03:06 |
vidd | ill sleep with anoth man's wife but i draw the line at root in other ppls computers | 03:06 |
livemoon | vidd: have you sleeped? | 03:06 |
vidd | livemoon, none | 03:06 |
halfss | :D | 03:06 |
livemoon | anoth man's wife? | 03:07 |
vidd | he was in jail | 03:07 |
halfss | :< | 03:07 |
vidd | they were breaking up anyway | 03:07 |
vidd | yes...im a home wreacker | 03:08 |
vidd | now lets fix up your machine | 03:08 |
vidd | where is that config file? | 03:08 |
livemoon | vidd: you are cool | 03:08 |
livemoon | how old are you? | 03:08 |
halfss | proxy-server.conf? | 03:08 |
vidd | what year is it.... | 03:08 |
vidd | im 41 | 03:09 |
livemoon | I am appreciate you | 03:09 |
vidd | https://192.168.2.103:8080/v1/AUTH_system is that the proxy? | 03:09 |
halfss | yes , | 03:09 |
vidd | let me tell you what i see just from your curls.... | 03:10 |
vidd | password is turned on and keystone is turned off | 03:10 |
vidd | thats why dashboard wont work for you | 03:11 |
halfss | no, now i just config swift | 03:11 |
vidd | and most everything else you got going on | 03:11 |
halfss | i config swift as here http://swift.openstack.org/howto_installmultinode.html | 03:11 |
halfss | curl -k -v -H 'X-Storage-User: system:root' -H 'X-Storage-Pass: testpass' https://$PROXY_LOCAL_NET_IP:8080/auth/v1.0 this is ok | 03:12 |
halfss | > X-Storage-User: system:root | 03:12 |
halfss | > X-Storage-Pass: testpass | 03:12 |
halfss | > | 03:12 |
halfss | < HTTP/1.1 200 OK | 03:12 |
halfss | < X-Storage-Url: https://192.168.2.103:8080/v1/AUTH_system | 03:12 |
halfss | < X-Storage-Token: AUTH_tkb2272ee9bd6b42149f638bf350fe4f01 | 03:12 |
halfss | < X-Auth-Token: AUTH_tkb2272ee9bd6b42149f638bf350fe4f01 | 03:12 |
vidd | pipeline = healthcheck cache tempauth proxy-server should be commented out and keystone's turned on | 03:13 |
halfss | [pipeline:main] | 03:13 |
halfss | pipeline = healthcheck cache tempauth proxy-server | 03:13 |
halfss | yes | 03:13 |
vidd | you are set up to use tempauth and not keystone | 03:15 |
halfss | yes | 03:15 |
vidd | thats why your keystone curl fails | 03:15 |
halfss | no , i just config swift,no with keystone | 03:15 |
*** wariola has quit IRC | 03:17 | |
*** nati2 has quit IRC | 03:17 | |
*** wariola has joined #openstack | 03:18 | |
vidd | what are you trying to do with this auth-tk? | 03:18 |
*** Ryan_Lane has quit IRC | 03:18 | |
vidd | auth-token | 03:18 |
halfss | Get an X-Storage-Url and X-Auth-Token: | 03:19 |
halfss | curl -k -v -H 'X-Storage-User: system:root' -H 'X-Storage-Pass: testpass' https://$PROXY_LOCAL_NET_IP:8080/auth/v1.0 | 03:19 |
halfss | Check that you can HEAD the account: | 03:19 |
halfss | curl -k -v -H 'X-Auth-Token: <token-from-x-auth-token-above>' <url-from-x-storage-url-above> | 03:19 |
*** alice has joined #openstack | 03:19 | |
halfss | now my swift does not work well | 03:20 |
vidd | the url from above is https://$PROXY_LOCAL_NET_IP:8080/auth/v1.0 | 03:20 |
halfss | yes | 03:20 |
vidd | you have a proxy server going on here....you get no static ips | 03:21 |
*** jdg has joined #openstack | 03:21 | |
halfss | sure | 03:22 |
halfss | # curl -k -v -H 'X-Storage-User: system:root' -H 'X-Storage-Pass: testpass' https://192.168.2.103:8080/auth/v1.0 | 03:22 |
halfss | * About to connect() to 192.168.2.103 port 8080 (#0) | 03:22 |
halfss | * Trying 192.168.2.103... connected | 03:22 |
halfss | * Connected to 192.168.2.103 (192.168.2.103) port 8080 (#0) | 03:22 |
halfss | * successfully set certificate verify locations: | 03:22 |
*** halfss has quit IRC | 03:22 | |
*** nelson has quit IRC | 03:22 | |
*** bcwaldon has quit IRC | 03:22 | |
*** nelson has joined #openstack | 03:22 | |
*** halfss has joined #openstack | 03:24 | |
vidd | halfss, that is what pastbin is for =] | 03:25 |
*** Ryan_Lane has joined #openstack | 03:25 | |
halfss | ? | 03:26 |
vidd | halfss, should your server name have that stuff trailing ofter the port number? | 03:28 |
*** jdg has quit IRC | 03:29 | |
halfss | i am checking , waiting me :> | 03:30 |
*** naehring has joined #openstack | 03:30 | |
vidd | its ther ein all the example, so i guess its ok | 03:31 |
vidd | this really isnt my kind of thing | 03:31 |
halfss | :> | 03:31 |
*** miclorb_ has joined #openstack | 03:32 | |
vidd | how old is this hardware your using? | 03:33 |
halfss | it's new | 03:34 |
halfss | :D | 03:34 |
vidd | ok | 03:34 |
vidd | what do your logs say | 03:35 |
halfss | swift's log? | 03:35 |
vidd | your proxy server's logs | 03:36 |
vidd | thats where the failuer is...right? | 03:36 |
halfss | sorry, where is the log? | 03:36 |
vidd | bottom of that page: Troubleshooting Notes | 03:37 |
vidd | If you see problems, look in var/log/syslog (or messages on some distros). | 03:37 |
vidd | Also, at Rackspace we have seen hints at drive failures by looking at error messages in /var/log/kern.log. | 03:37 |
vidd | There are more debugging hints and tips in the Administrator’s Guide. | 03:37 |
vidd | since its new hardware we can skip the /var/log/kern.log | 03:38 |
halfss | proxy-server STDOUT: ERROR:root:Error connecting to memcached: 192.168.2.103:11211#012Traceback (most recent call last):#012 File "/usr/lib/python2.7/dist-packages/swift/common/memcached.py", line 111, in _get_conns#012 sock.connect((host, int(port)))#012 File "/usr/lib/python2.7/dist-packages/eventlet/greenio.py", line 187, in connect#012 socket_checkerr(fd)#012 File "/usr/lib/py | 03:38 |
halfss | thon2.7/dist-packages/eventlet/greenio.py", line 43, in socket_checkerr#012 raise socket.error(err, errno.errorcode[err])#012error: [Errno 111] ECONNREFUSED | 03:38 |
halfss | here is in /var/log/syslog when i want to check account | 03:39 |
vidd | are all your machies using the same usth protocol? | 03:40 |
halfss | i install proxy and sotrage all in one | 03:41 |
vidd | everyone using the same auth protocal? | 03:41 |
halfss | sure | 03:42 |
halfss | ok swift work well | 03:44 |
vidd | the machine with IP 192.168.2.130....what is on it? | 03:44 |
halfss | # swift -A https://$PROXY_LOCAL_NET_IP:8080/auth/v1.0 -U system:root -K testpass stat | 03:44 |
halfss | Account: AUTH_system | 03:44 |
halfss | Containers: 0 | 03:44 |
halfss | Objects: 0 | 03:44 |
halfss | Bytes: 0 | 03:44 |
halfss | Accept-Ranges: bytes | 03:44 |
halfss | can you help me let dashboard manage swift? | 03:44 |
*** msivanes has left #openstack | 03:45 | |
vidd | so now its working? | 03:45 |
halfss | yes | 03:45 |
halfss | memcached does not listen correct address | 03:45 |
vidd | what machine did you connect to that time that it worked? | 03:45 |
halfss | i fixed it | 03:45 |
*** timr has quit IRC | 03:45 | |
vidd | dollars to donuts it was not 103 | 03:45 |
vidd | ah ok | 03:46 |
vidd | see...reading the logs does wonders =] | 03:46 |
halfss | yes the log say memecached is error | 03:46 |
vidd | mamcached and an od port number | 03:47 |
halfss | sorry ,i am going to lunch | 03:47 |
halfss | :> | 03:47 |
halfss | afternoon | 03:47 |
halfss | byt | 03:47 |
halfss | bye | 03:47 |
vidd | opk...im going to bed | 03:47 |
*** vidd is now known as vidd-away | 03:48 | |
*** wariola has quit IRC | 03:49 | |
*** hadrian has quit IRC | 03:49 | |
*** patelna has joined #openstack | 03:49 | |
*** robo268 has joined #openstack | 03:49 | |
*** robo268 has left #openstack | 03:50 | |
*** adjohn has joined #openstack | 04:01 | |
*** timr has joined #openstack | 04:02 | |
*** doorlock has quit IRC | 04:08 | |
halfss | hi im back | 04:12 |
*** adjohn has quit IRC | 04:12 | |
halfss | vidd: here? | 04:15 |
*** HowardRoark has quit IRC | 04:17 | |
*** pmyers has quit IRC | 04:22 | |
*** miclorb_ has quit IRC | 04:27 | |
*** nati2 has joined #openstack | 04:32 | |
livemoon | vidd is sleeping | 04:34 |
halfss | oh | 04:34 |
livemoon | liuwei | 04:36 |
halfss | en | 04:36 |
*** adjohn has joined #openstack | 04:41 | |
*** rnorwood has joined #openstack | 04:45 | |
*** obino has joined #openstack | 04:46 | |
*** supriya has joined #openstack | 04:47 | |
*** supriya_ has joined #openstack | 04:51 | |
*** supriya has quit IRC | 04:55 | |
*** ejat has joined #openstack | 04:56 | |
*** bengrue has quit IRC | 05:06 | |
*** cereal_bars has quit IRC | 05:09 | |
*** dragondm has quit IRC | 05:09 | |
*** tillmo has joined #openstack | 05:11 | |
*** dragondm has joined #openstack | 05:12 | |
*** tillmo has quit IRC | 05:23 | |
*** llang629 has joined #openstack | 05:25 | |
*** dnjaramba has joined #openstack | 05:48 | |
*** miclorb_ has joined #openstack | 05:52 | |
*** kaigan_ has joined #openstack | 05:59 | |
*** rsampaio has quit IRC | 06:00 | |
*** nerens has joined #openstack | 06:03 | |
*** tillmo has joined #openstack | 06:03 | |
halfss | is there any body block_migrate sucess? | 06:05 |
*** nati2 has quit IRC | 06:13 | |
*** TheOsprey has joined #openstack | 06:18 | |
*** mandela123 has quit IRC | 06:18 | |
*** nerens has quit IRC | 06:25 | |
*** dragondm has quit IRC | 06:25 | |
*** supriya has joined #openstack | 06:26 | |
*** supriya_ has quit IRC | 06:28 | |
*** supriya has quit IRC | 06:30 | |
*** Horroreyes has joined #openstack | 06:31 | |
*** lionel_ has quit IRC | 06:33 | |
*** lionel_ has joined #openstack | 06:33 | |
uvirtbot | New bug: #879248 in nova "flavor_extra_data extension is meaningless" [Undecided,New] https://launchpad.net/bugs/879248 | 06:36 |
rmk | halfss: you need a patch to have it work with diablo | 06:37 |
rmk | halfss: per the final release it was broken | 06:37 |
halfss | ? | 06:37 |
rmk | https://bugs.launchpad.net/nova/+bug/850602 | 06:38 |
halfss | block_migration is can't use now? | 06:38 |
halfss | is block_migration is used to migration an shutdown instance from one host to anthoer? | 06:39 |
halfss | or migration an live instance? | 06:42 |
*** troya has joined #openstack | 06:47 | |
*** sahuram has joined #openstack | 06:47 | |
*** sahuram is now known as ramesh_hp | 06:47 | |
*** supriya has joined #openstack | 07:03 | |
*** troya has quit IRC | 07:04 | |
winston-d | hi guys. i've a question about Nova + Keystone. In my setup, it seems 'nova-manage' uses its own database to store 'account/user/project' infor, while keystone uses another. | 07:05 |
winston-d | is there anything wrong with that? | 07:06 |
*** miclorb_ has quit IRC | 07:06 | |
*** Ryan_Lane has quit IRC | 07:06 | |
winston-d | hugokuo: hi, do you have any insight on my issue? | 07:07 |
HugoKuo_ | winston-d , you r right | 07:07 |
HugoKuo_ | keystone uses it's own DB | 07:08 |
livemoon | hi,hugokuo | 07:08 |
HugoKuo_ | so that you can not manage user via nova-manage | 07:08 |
livemoon | nice to meet you | 07:08 |
HugoKuo_ | bonjour | 07:09 |
winston-d | HugoKuo_ : so? nova-manage is deprecated? | 07:09 |
HugoKuo_ | https://answers.launchpad.net/swift/+question/175542 need some help on swift + swauth | 07:09 |
livemoon | hugokuo: do you know how to control nova-volume? | 07:10 |
HugoKuo_ | winston-d , not really , you still can use nova-manage to check service status | 07:10 |
HugoKuo_ | and so on ..... | 07:10 |
HugoKuo_ | livemoon , what do you mean control nova-volume | 07:11 |
HugoKuo_ | I use volume on Cactus but not try it on Diablo | 07:11 |
HugoKuo_ | not sure if it same as before though | 07:11 |
HugoKuo_ | what do you want to know about nova-volume | 07:11 |
livemoon | euca2ool | 07:12 |
HugoKuo_ | winston-d , nova db still store many info beside user's data | 07:12 |
livemoon | like euca2ool | 07:12 |
HugoKuo_ | euca-create-volume | 07:12 |
HugoKuo_ | euca-attach-volume | 07:12 |
HugoKuo_ | as I know there's three euca cmd for volume | 07:13 |
winston-d | HugoKuo_ : so nova-mange account/user/project part are deprecated, the rest are not. | 07:13 |
livemoon | I know, if I use keystone, I cannot use euca | 07:13 |
HugoKuo_ | creat / attach / disattach | 07:13 |
livemoon | any other tools? | 07:13 |
*** nerens has joined #openstack | 07:13 | |
HugoKuo_ | winston-d , yes | 07:13 |
HugoKuo_ | livemoon , nova client | 07:13 |
winston-d | livemoon : sounds like a auth problem rather that volume one. | 07:14 |
livemoon | I havenot found volume command in novaclient | 07:14 |
winston-d | HugoKuo_ : good, that clears some mystery. next question is i've already created some tenant/user in keystone, how can i export the credentials to enduser, such as API_key stuff. | 07:15 |
winston-d | livemoon : last time i checked (Cactus) 'nova' doesn't support volume yet. | 07:16 |
HugoKuo_ | winston-d , manually | 07:17 |
winston-d | livemoon: but if it was auth caused 'euca2ool' failure, then even 'nova' supports volume, you'll still fail. | 07:17 |
*** ziyadb has quit IRC | 07:18 | |
HugoKuo_ | example | 07:18 |
HugoKuo_ | export NOVA_USERNAME="admin" | 07:18 |
HugoKuo_ | export NOVA_API_KEY="tony1020" | 07:18 |
HugoKuo_ | export NOVA_PROJECT_ID="1" | 07:18 |
HugoKuo_ | export NOVA_URL="http://10.103.1.134:5000/v2.0" | 07:18 |
HugoKuo_ | export NOVA_REGION_NAME="RegionOne" | 07:18 |
HugoKuo_ | export NOVA_VERSION="1.1 | 07:18 |
winston-d | HugoKuo_ : :$ Manually? | 07:18 |
HugoKuo_ | yup ....at least I don't know other method currently | 07:18 |
winston-d | HugoKuo_ : I see, so this time, NOVA_URL has to be switched from 'API' service URL to keystone URL? | 07:19 |
HugoKuo_ | yes ...baby | 07:19 |
winston-d | HugoKuo_ : OK. I'll have a try. Thanks! | 07:19 |
*** koolhead17 has joined #openstack | 07:22 | |
*** tillmo has quit IRC | 07:23 | |
*** tillmo has joined #openstack | 07:23 | |
*** t9md has quit IRC | 07:25 | |
*** Ryan_Lane has joined #openstack | 07:26 | |
*** ramesh_hp has quit IRC | 07:29 | |
*** worstadmin has quit IRC | 07:30 | |
*** carlp has quit IRC | 07:32 | |
*** worstadmin has joined #openstack | 07:33 | |
*** ziyadb has joined #openstack | 07:34 | |
*** Ryan_Lane has quit IRC | 07:37 | |
*** uksysadmin has joined #openstack | 07:39 | |
*** Oneiroi has joined #openstack | 07:41 | |
*** FabriceB has joined #openstack | 07:42 | |
*** pringles_ has quit IRC | 07:43 | |
Oneiroi | morning all | 07:45 |
*** worstadmin has quit IRC | 07:46 | |
*** nck has joined #openstack | 07:47 | |
koolhead17 | morning all | 07:49 |
*** andy-hk has quit IRC | 07:52 | |
*** nacx has joined #openstack | 07:54 | |
winston-d | HugoKuo_ : is there any documents for nova+keystone outthere? I encountered some problem when manually export credentials. | 07:56 |
livemoon | Hi, | 07:56 |
livemoon | how can restart rabbitmq? | 07:56 |
Vadim2 | service rabbitmq-server restart | 07:59 |
*** reidrac has joined #openstack | 08:00 | |
*** siwos has joined #openstack | 08:02 | |
*** adjohn has quit IRC | 08:03 | |
*** ziyadb has quit IRC | 08:07 | |
*** sdake_ is now known as sdake | 08:08 | |
*** dnjaramba_ has joined #openstack | 08:09 | |
*** vdo has joined #openstack | 08:09 | |
HugoKuo_ | winston-d ,https://github.com/cloudbuilders/python-novaclient | 08:10 |
*** dnjaramba has quit IRC | 08:11 | |
winston-d | HugoKuo_ : thx. I still don't know what the right format of 'NOVA_PROJECT_ID' is. | 08:13 |
HugoKuo_ | for latest master branch of python-novaclinet it should be a string | 08:14 |
HugoKuo_ | I mean the "name" of tenant | 08:14 |
HugoKuo_ | instead of a number | 08:14 |
HugoKuo_ | depends on your python nova-client | 08:14 |
*** carlp has joined #openstack | 08:18 | |
winston-d | HugoKuo_ : well, it always return '400' whatever PROJECT_ID i use. | 08:19 |
*** pixelbeat has joined #openstack | 08:23 | |
*** katkee has joined #openstack | 08:25 | |
*** carlp has quit IRC | 08:26 | |
*** sahuram has joined #openstack | 08:31 | |
*** javiF has joined #openstack | 08:32 | |
zykes- | anyone seen this before? | 08:34 |
zykes- | http://paste.pocoo.org/show/495955/ | 08:34 |
*** koolhead17 has quit IRC | 08:43 | |
*** uksysadmin has quit IRC | 08:44 | |
*** ewindisch has quit IRC | 08:46 | |
*** ewindisch has joined #openstack | 08:47 | |
*** dnjaramba has joined #openstack | 08:53 | |
*** dnjaramba_ has quit IRC | 08:55 | |
*** koolhead17 has joined #openstack | 09:03 | |
*** supriya_ has joined #openstack | 09:04 | |
*** supriya has quit IRC | 09:04 | |
*** Razique has joined #openstack | 09:04 | |
livemoon | who use novaclient to boot instance? | 09:05 |
Razique | hi all | 09:07 |
*** gondoi has quit IRC | 09:07 | |
Razique | it like i can't launch instances anymore | 09:07 |
Razique | they remaine in "pending" or "build" state | 09:07 |
*** dabo has quit IRC | 09:07 | |
Razique | while the compute node doesn't show any error | 09:07 |
*** gondoi has joined #openstack | 09:08 | |
*** pringles_ has joined #openstack | 09:08 | |
*** koolhead17 has quit IRC | 09:08 | |
livemoon | hi,Razique | 09:08 |
Razique | hi :) | 09:09 |
livemoon | how do you launch instance? | 09:09 |
*** ironcamel has quit IRC | 09:09 | |
livemoon | yesterday I can "nova boot" instance sucessfully,not today ,it show errors | 09:09 |
*** ironcamel has joined #openstack | 09:09 | |
*** dabo has joined #openstack | 09:10 | |
siwos | Razique: try to restart rabbitmq | 09:11 |
Razique | siwos: already did :) | 09:11 |
siwos | daemons also? (scheduler,compute, etc.) | 09:11 |
Razique | I see "networking" in task_state into the database | 09:11 |
Razique | siwos: also did | 09:11 |
livemoon | Razique: how do you lanuch? by euca or novaclient? | 09:12 |
Razique | livemoon: rightnow euca | 09:12 |
Razique | but nova does the same | 09:12 |
livemoon | today I cannot "nova boot" | 09:12 |
livemoon | It show "Missing imageRef attribute (HTTP 400)" | 09:12 |
livemoon | have you meet this? | 09:12 |
*** hugokuo has quit IRC | 09:13 | |
Razique | nope | 09:14 |
Razique | what is your exact command ? | 09:15 |
livemoon | "nova boot --flavor 1 --image 1 test" | 09:17 |
*** ziyadb has joined #openstack | 09:19 | |
*** dobber has joined #openstack | 09:21 | |
*** clauden has quit IRC | 09:21 | |
*** ziyadb has quit IRC | 09:24 | |
*** supriya_ has quit IRC | 09:26 | |
uvirtbot | New bug: #879315 in openstack-qa "/nova/notifier/rabbit_notifier.py" [Undecided,New] https://launchpad.net/bugs/879315 | 09:26 |
*** supriya_ has joined #openstack | 09:27 | |
zykes- | Razique: have you seen the error i got ? | 09:31 |
Razique | zykes-: nope, which one ? | 09:31 |
uvirtbot | New bug: #879318 in keystone ""nova boot" command show "Missing imageRef attribute (HTTP 400)"" [Undecided,New] https://launchpad.net/bugs/879318 | 09:31 |
zykes- | http://paste.pocoo.org/show/495955/ | 09:32 |
Razique | mmm I've never met that error | 09:32 |
Razique | try to restart libvirt I'd say | 09:33 |
*** alice has quit IRC | 09:34 | |
*** TreeStump has quit IRC | 09:36 | |
*** clauden has joined #openstack | 09:36 | |
zykes- | already tried that Razique | 09:38 |
*** nck has quit IRC | 09:38 | |
Razique | does the server supports vt ? | 09:40 |
zykes- | yes | 09:41 |
Razique | that happens when u spawn a new instance ? | 09:41 |
zykes- | start nova-compute | 09:42 |
Razique | ahh ok | 09:44 |
Razique | which proc do u have on that server ? | 09:44 |
zykes- | amd x4 620 | 09:46 |
Razique | what do u see by running $ egrep «(vmx|svm)» /proc/cpuinfo | 09:51 |
zykes- | that's in there | 09:51 |
zykes- | svm that is | 09:52 |
livemoon | hi, | 09:52 |
livemoon | No module named lockfile | 09:52 |
zykes- | i've used it fine before with kvm Razique | 09:52 |
Razique | good to know | 09:52 |
livemoon | how to fix it "No module named lockfile" | 09:52 |
Oneiroi | livemoon: paste the full error, could be a missing pypi package or borked sys paths | 09:53 |
Oneiroi | on paste.openstack.org | 09:53 |
Razique | zykes-: dpkg | grep kvm | 09:54 |
Oneiroi | zykes-: lucky you I nearly wept when `egrep "(vmx|svm)" /proc/cpuinfo` came back blank yesterday after getting all the services talking to each other successfully | 09:54 |
Razique | is the package "qemu-kvm installed ?" | 09:54 |
Oneiroi | xD | 09:54 |
Razique | or only the kvm one ? | 09:54 |
Oneiroi | lsmod | grep -i kvm | 09:54 |
Razique | Oneiroi: :D | 09:54 |
Oneiroi | make sure it's loaded ;-) | 09:54 |
Razique | and also the chowning hack | 09:55 |
livemoon | hi,Oneiroi | 09:55 |
livemoon | can you help me about this issue "https://bugs.launchpad.net/keystone/+bug/879318" | 09:55 |
Razique | chown root:kvm /dev/kvm | 09:55 |
Razique | chmod 0660 /dev/kvm | 09:55 |
*** `g has joined #openstack | 09:56 | |
Oneiroi | Ho hum, got 2 HP ML110's on order recycling the 2 Q8300 Cpu's into a percona 2node cluster | 09:56 |
`g | hi | 09:56 |
*** supriya_ has quit IRC | 09:57 | |
Oneiroi | livemoon: looks like a client bug :S | 09:57 |
Oneiroi | `g: hello | 09:57 |
*** ejat has quit IRC | 09:57 | |
zykes- | Oneiroi: hehe, Razique nope i run EL6 | 09:57 |
zykes- | i simply think that booting ubuntu via pxe is too slow :( | 09:58 |
Oneiroi | zykes-: griddynamics rpm's ? | 09:58 |
zykes- | Oneiroi: atm yeah, but hoping for EPEL ones later | 09:58 |
*** supriya_ has joined #openstack | 09:58 | |
Oneiroi | zykes-: hmmm lemme check on that | 09:58 |
zykes- | they are in "progress" | 09:58 |
Oneiroi | Is anyone rolling the EPEL rpm's yet? | 09:58 |
halfss | resize just suppt xen? | 09:59 |
* Oneiroi is a fedora registerted packager with nothing to package ;D | 09:59 | |
zykes- | Oneiroi: yes they are, RH / Fedora team is packaging for f16 | 09:59 |
* Oneiroi awwww | 09:59 | |
zykes- | ;) | 09:59 |
Oneiroi | F16 != EPEL though | 09:59 |
zykes- | Oneiroi: yeah, but i guess there's a high chance of it getting backported ;) | 09:59 |
zykes- | http://fedoraproject.org/wiki/OpenStack | 10:00 |
livemoon | Oneiroi: if it is client bugs, I cannot create instances | 10:00 |
Razique | ok weird …. when I run the instance on the same server as the nova-* one it works | 10:00 |
zykes- | Razique: what's weird + | 10:00 |
Razique | now if the instance run a a node | 10:00 |
Razique | it doesn't | 10:00 |
Razique | I've server1 : nova-* | 10:00 |
Razique | server 2 : nova-compute | 10:01 |
Razique | when I ask to use the server 2 to run the instance | 10:01 |
livemoon | Razique: you need teach me how to use euca with keystone | 10:01 |
Razique | it remains in pending state | 10:01 |
Oneiroi | livemoon: euca is being deprecated iirc | 10:01 |
Razique | livemoon: yup | 10:01 |
*** hyakuhei has joined #openstack | 10:02 | |
Oneiroi | zykes-: *meh* well I want to run EL6 packages I'd happily roll them in koji imo | 10:02 |
zykes- | Oneiroi: check with markmc | 10:02 |
Oneiroi | :-/ esp as I have nothing to package atm, everyons doing stuff :P | 10:02 |
*** mikemowgli has joined #openstack | 10:04 | |
zykes- | Oneiroi: again check with the fedora team > markmc @ #openstack-dev | 10:04 |
Oneiroi | zykes-: k | 10:05 |
Oneiroi | was just digging out my moji cert to login and get his email xD | 10:05 |
Oneiroi | koji* | 10:05 |
Razique | ok I've resolved my issue | 10:05 |
*** adjohn has joined #openstack | 10:05 | |
Razique | It was related to that new multi_host mode | 10:05 |
Razique | it requires indeed to install nova-network on nodes | 10:05 |
Razique | but even when I had it disabled, It make the node unusable | 10:05 |
Razique | gota check that | 10:05 |
zykes- | they are having a test day | 10:05 |
zykes- | if they haven't done that already | 10:06 |
Oneiroi | yeh I saw the tweet | 10:06 |
livemoon | euca is being deprecated iirc?? what's mean? | 10:06 |
Oneiroi | don't use euca | 10:06 |
livemoon | use what? | 10:07 |
livemoon | now I cannot use novaclient to boot an instance | 10:07 |
livemoon | how can I do then? | 10:07 |
*** adjohn has quit IRC | 10:09 | |
Razique | OMG | 10:13 |
Razique | that new multi_host stuff is awesome :D | 10:13 |
Razique | it allows you to have a total decorrelation between the managment server which spawns instances and the compute nodes | 10:13 |
Razique | if the "frontend" is down, the instances are still reacheable | 10:14 |
Razique | since nodes act as gateways to instances | 10:14 |
Razique | just need to test now how it deals with floating ips but :D | 10:14 |
*** cur8or has joined #openstack | 10:19 | |
*** livemoon has quit IRC | 10:21 | |
*** joeyang has quit IRC | 10:26 | |
*** hyakuhei has quit IRC | 10:30 | |
*** ziyadb has joined #openstack | 10:31 | |
*** ziyadb has quit IRC | 10:37 | |
*** sahuram has quit IRC | 10:38 | |
Oneiroi | zykes-: once my keysa have all be rolled out will get the ball rolling on those el6 packages | 10:39 |
zykes- | ok : ) | 10:39 |
*** tyska has joined #openstack | 10:42 | |
*** sahuram has joined #openstack | 10:45 | |
*** javiF has quit IRC | 10:48 | |
*** viraptor has joined #openstack | 10:53 | |
*** cur8or has left #openstack | 10:56 | |
*** cereal_bars has joined #openstack | 11:08 | |
*** ziyadb has joined #openstack | 11:08 | |
*** koolhead17 has joined #openstack | 11:09 | |
*** PotHix has joined #openstack | 11:10 | |
tyska | hi guys | 11:10 |
*** sahuram_ has joined #openstack | 11:10 | |
tyska | im having problem with fake raid | 11:10 |
tyska | can anyone helpme? | 11:11 |
Razique | tyska: just ask :) | 11:13 |
*** sahuram has quit IRC | 11:13 | |
Oneiroi | "fake" raid so software raid? | 11:13 |
*** ziyadb has quit IRC | 11:14 | |
Razique | ok it's getting weirder http://paste.openstack.org/show/2804/ | 11:14 |
Razique | I mean, wtf... | 11:14 |
tyska | Razique: just solved it! =) | 11:14 |
tyska | Razique: thanks anyway ;) | 11:14 |
Razique | everything was working greate before keystone =D | 11:14 |
*** ahasenack has joined #openstack | 11:14 | |
Razique | now I'v totally disabled it, i've new errors | 11:15 |
Razique | ok cool tyska :) | 11:15 |
FabriceB | 2011-10-21 13:13:57,625 AUDIT nova.compute.manager [7e228ee8-bc2b-4f6b-bdcd-7eccdbc87d99 nuage-and-co nuage-and-co] L'instance 310: est en train d'être démarée... | 11:15 |
FabriceB | (nova.compute.manager): TRACE: UnicodeEncodeError: 'ascii' codec can't encode character u'\xe9' in position 11: ordinal not in range(128) | 11:15 |
*** HugoKuo_ has quit IRC | 11:15 | |
Razique | yah I saw that | 11:15 |
Razique | but nothing on the web | 11:15 |
FabriceB | did you try running your code in a C or POSIX local ? | 11:15 |
*** HugoKuo_ has joined #openstack | 11:15 | |
FabriceB | not fr_* | 11:15 |
Razique | how can I do that ? | 11:16 |
FabriceB | here localized server are totally forbiden | 11:16 |
FabriceB | Razique: what distrib ? | 11:16 |
Razique | what does that mean "totally forbiden" ? | 11:16 |
tyska | Razique: i think it is the good 'aura' of this channel =) | 11:16 |
FabriceB | Razique: any locale other than C is forbidden to run servers | 11:16 |
FabriceB | or POSIX | 11:17 |
Razique | FabriceB: Ubuntu lucid | 11:17 |
Razique | tyska: lucky you :p Keytone is driving us all crazy | 11:17 |
Razique | thanks FabriceB, good to know that | 11:17 |
FabriceB | for redhat: in /etc/sysconfig/i18n | 11:17 |
FabriceB | LANG=C | 11:18 |
*** carlp has joined #openstack | 11:19 | |
*** ziyadb has joined #openstack | 11:20 | |
Razique | FabriceB: so I should change the servers's locale ? | 11:21 |
*** supriya_ has quit IRC | 11:21 | |
FabriceB | I think that will remove one possible problem | 11:21 |
FabriceB | every thing is easier when you don't have to manage encoding | 11:22 |
*** ejat has joined #openstack | 11:22 | |
tyska | Razique: would be much complicated if i ask what is keytone? =) | 11:22 |
*** javiF has joined #openstack | 11:22 | |
Razique | tyska: I've started to write a small doc | 11:24 |
Razique | leme find it | 11:24 |
koolhead17 | hey all | 11:25 |
Razique | here v | 11:26 |
Razique | http://paste.openstack.org/show/2805/ | 11:26 |
*** ejat has quit IRC | 11:26 | |
tyska | Razique: now im having a problem executing this: sudo nova-manage network create 192.168.3.0/24 1 255 | 11:27 |
Razique | FabriceB: sorry to ask, but i'm not sure to totally get it : I need to change the server's language, but I could keep my french keyboard layout | 11:27 |
tyska | Razique: im following the beginners guide from ubuntu (im migrating from eucalyptus) | 11:27 |
Razique | or do I only need to specify the export LANG=C | 11:27 |
FabriceB | LANG does not change the layout | 11:28 |
FabriceB | the keyboard layout is in the window manager | 11:28 |
Razique | FabriceB: I don't have any gui :p | 11:28 |
FabriceB | mm, you're directly connected to the server, in console mode ? | 11:29 |
*** ejat has joined #openstack | 11:29 | |
*** ejat has joined #openstack | 11:29 | |
Razique | FabriceB: yup | 11:29 |
FabriceB | that's rough | 11:29 |
Razique | but if I run an export LANG=C, does the nova user benefits from that ? | 11:29 |
FabriceB | fire a ssh connection through a workstation | 11:29 |
*** HugoKuo_ has quit IRC | 11:29 | |
Razique | well not really, it's my lab, which is at the desk ; few meters from here :p | 11:30 |
FabriceB | Razique: not from you're command line | 11:30 |
FabriceB | I don't get it | 11:30 |
Razique | I'm at home ; working on my lab, which is at the office | 11:30 |
Razique | situated few meters from here | 11:30 |
Razique | :D | 11:31 |
FabriceB | so change the worksation locale and not you're home station locale | 11:31 |
FabriceB | I'm working this way | 11:31 |
FabriceB | from a french talking mac book to C configured server | 11:31 |
mikemowgli | Razique, your keystone description should go on keystone.openstack.org which is rather empty at the moment... | 11:31 |
*** sahuram_ has quit IRC | 11:32 | |
*** darraghb has joined #openstack | 11:32 | |
Razique | FabriceB: aha I'm on a mac also :D | 11:32 |
Razique | ok … now if I run export LANG=C | 11:32 |
Razique | what the useer "nova" will see | 11:32 |
FabriceB | change you're servec setup and reboot it | 11:32 |
Razique | still the fr_FR.UTF-8 locale or the C one ? | 11:32 |
FabriceB | LANG=C will change only the locale for the process you launch afterward | 11:33 |
koolhead17 | Razique: | 11:33 |
Razique | FabriceB: ok that's what I thought | 11:33 |
koolhead17 | https://bugs.launchpad.net/openstack-manuals/+bug/814874 | 11:33 |
Razique | so let's totally set the server in english | 11:33 |
FabriceB | but launchtime for me | 11:33 |
Razique | that would prevent further issues | 11:33 |
Razique | mikemowgli: yah I know, working on it | 11:34 |
Razique | thanks FabriceB | 11:34 |
Razique | enjoy | 11:34 |
*** ziyadb has quit IRC | 11:34 | |
*** LanceHaig has quit IRC | 11:37 | |
*** LanceHaig has joined #openstack | 11:37 | |
*** tillmo has quit IRC | 11:39 | |
*** tillmo has joined #openstack | 11:40 | |
uvirtbot | New bug: #879371 in swift "HEAD request over a container is not returning the ACL headers" [Undecided,New] https://launchpad.net/bugs/879371 | 11:41 |
*** LanceHaig has quit IRC | 11:42 | |
*** LanceHaig has joined #openstack | 11:42 | |
*** supriya_ has joined #openstack | 11:43 | |
Razique | ok so thank to FabriceB I resolved my issue | 11:52 |
Razique | you need to edit /etc/default/locales in debian like distros | 11:52 |
Razique | and put LOCALE="C" | 11:52 |
Razique | reboot and voila | 11:52 |
tyska | guys i really need some tip here | 11:54 |
tyska | im following the ubuntu beginners guide | 11:54 |
tyska | im in the following command: sudo nova-manage network create 192.168.1.0/24 1 255 | 11:54 |
Razique | what's the output ? | 11:54 |
tyska | command failed see the log | 11:55 |
Razique | ok | 11:55 |
tyska | the log saids: --bridge_interface is required | 11:55 |
Razique | mmmm | 11:55 |
Razique | diablo or cactus ? | 11:55 |
tyska | dont know, im following this guide: http://cssoss.files.wordpress.com/2011/08/openstackbookv1-0_csscorp.pdf | 11:56 |
tillmo | yesterday, you have used 2011.3, which is diablo | 11:56 |
*** lts has joined #openstack | 11:56 | |
Razique | dpkg -l | grep nova | 11:57 |
Razique | ok | 11:57 |
tyska | tillmo: yeah, then that's it | 11:57 |
tyska | tillmo: i've solved the problem with the raid | 11:57 |
tyska | tillmo: new problem now =) | 11:57 |
Razique | for diablo, the command is that one : sudo nova-manage network create public 10.0.0.0/8 3 16 --bridge_interface=br0 | 11:57 |
tyska | but the br0 is not the public interface right? | 11:58 |
tyska | in my case its br100 | 11:58 |
Razique | nope | 11:58 |
tyska | the bridge interface is the comunication with compute nodes right? | 11:59 |
Razique | so the bridge will be a different name | 11:59 |
Razique | mainly yah | 11:59 |
tillmo | tyska: the raid problem, was it the filtering? | 11:59 |
tyska | tillmo: in fact, it was my mistake, there was a directory /dev/mapper | 11:59 |
tyska | tillmo: with the raid volumes | 11:59 |
*** BasTichelaar has joined #openstack | 12:00 | |
*** shang has quit IRC | 12:00 | |
tyska | tillmo: and my raid is, in a ubuntu taxonomy, a fake raid | 12:00 |
tyska | Razique: what is the 3 and 16 number after the IP? | 12:00 |
*** zul has quit IRC | 12:04 | |
tyska | Razique: i must run this command for private? nova-manage network create private | 12:04 |
tyska | ? | 12:04 |
*** adjohn has joined #openstack | 12:05 | |
*** ziyadb has joined #openstack | 12:05 | |
Razique | 3 : gateway 16 : broadcast | 12:05 |
Razique | the "private" ain't mandatory | 12:05 |
Razique | is simply a "label" which describes ur network | 12:06 |
*** foexle has joined #openstack | 12:08 | |
tyska | Razique: can you take a look in my /etc/network/interfaces and /etc/nova/nova.conf files (http://paste.openstack.org/show/2806/) and see what command i must run? | 12:09 |
foexle | hiho guys, i've a question about keystone is that the right place ? :) | 12:09 |
Razique | foexle: sure | 12:09 |
*** kaigan_ has quit IRC | 12:09 | |
Razique | just ask :) | 12:09 |
*** adjohn has quit IRC | 12:10 | |
Razique | tyska: what network mode ? | 12:10 |
tyska | Razique: i think it VLan | 12:10 |
tyska | Razique: i saw in somewhere that if it is not set in the nova.conf, it is VLan by default | 12:10 |
*** PeteDaGuru has joined #openstack | 12:10 | |
foexle | so i'll try to use keystone with mysql instead of sqlite. But i cant find any documentation.... is that possible ? | 12:10 |
*** tsuzuki_ has quit IRC | 12:10 | |
Razique | tyska: exactly :) | 12:11 |
Razique | what br100 is used for ? | 12:11 |
Razique | in vlan mode, no bridge needed | 12:11 |
Razique | nova creates them for you | 12:11 |
tyska | Razique: hmm, i just followed the guide | 12:11 |
Razique | ok | 12:11 |
tyska | Razique: indeed there is a vibr0 | 12:12 |
Razique | how many servers do you have ? | 12:12 |
tyska | Razique: 2 | 12:12 |
Razique | ok | 12:12 |
Razique | one node and one "everything else" ? | 12:12 |
tyska | yeah | 12:12 |
Razique | node = compute node | 12:12 |
*** zul has joined #openstack | 12:12 | |
Razique | ok so enventually here is a setup that would suit your conf | 12:12 |
foexle | Razique: so i'll try to use keystone with mysql instead of sqlite. But i cant find any documentation.... is that possible ? | 12:13 |
foexle | Razique: i'm sorry forgot the highlight above :) | 12:13 |
tyska | Razique: where? | 12:14 |
Razique | tyska: I'm writing it | 12:14 |
Razique | leme mn | 12:14 |
Razique | 2 mn | 12:15 |
tyska | Razique: sry for the rush =) | 12:15 |
Razique | tyska: server 1 = http://paste.openstack.org/show/2807/ | 12:17 |
Razique | server 2 = http://paste.openstack.org/show/2808/ | 12:17 |
*** pmyers has joined #openstack | 12:18 | |
*** lorin1 has joined #openstack | 12:18 | |
*** guigui has joined #openstack | 12:19 | |
*** hyakuhei has joined #openstack | 12:19 | |
tyska | Razique: then what command i must run at my point? (nova-manage network ...) | 12:21 |
Razique | a third network :D | 12:22 |
Razique | for instance nova-manage network create 172.16.50.0/24 1 255 --bridge_interface=br0 | 12:22 |
tyska | Razique: but there is no longer exists a br0 | 12:28 |
Razique | tyska: yup in vlan mode you don't need bridges | 12:28 |
Razique | nova manages them for u | 12:28 |
tyska | Razique: ok | 12:29 |
*** tillmo has quit IRC | 12:29 | |
tyska | Razique: but there is a param in nova.conf, fixed_range=192.168.0.0/12 | 12:29 |
tyska | Razique: the nova-manage network command, that creates the third network, does not have to be this subnet? | 12:30 |
Razique | oh yes you are right | 12:30 |
Razique | I did a mistake sorry :D | 12:30 |
tyska | Razique: no problem | 12:30 |
*** cereal_bars has quit IRC | 12:32 | |
tyska | Razique: if i change the fixed_range param, must i change the isci_ip_prefix param too? | 12:33 |
Razique | yah | 12:33 |
*** supriya_ has quit IRC | 12:34 | |
tyska | Razique: but this is really a third subnet right? it has be different from the eth1 iface of server1, that is the iface used to comunicate with compute node | 12:34 |
Razique | yah since it's the nova's private network | 12:34 |
tyska | Razique: ok | 12:35 |
tyska | Razique: i realize that has a difference between your nova.conf and the ubuntu beginners guide, mainly in the rabiit_host and cc_host IP's | 12:36 |
Razique | rabbit-host : the server running nova-schedule | 12:36 |
tyska | Razique: your config put the IP of the eth0 in this params, while the guide put the IP's of eth1 | 12:36 |
Razique | cc_host I'd say server running nova-api | 12:37 |
Razique | tyska: on that you free to do how you want | 12:37 |
Razique | I guess they don't use the same interfaces as I do :) | 12:37 |
*** twisla has quit IRC | 12:38 | |
tyska | Razique: ah ok, my doubt was just if we can configure as we want ;) | 12:38 |
tyska | Razique: im doing like you said | 12:38 |
Razique | yah totally, just stay logical that's it :p | 12:38 |
tyska | Razique: the name of bridge created by nova is vibr0 | 12:41 |
tyska | Razique: must i put this bridge in the command? (nova-manage network create 172.16.50.0/24 1 255 --bridge_interface=br0) | 12:41 |
Razique | it creates two bridges actually | 12:42 |
tyska | but if config just shows 1 | 12:42 |
tyska | ifconfig | 12:42 |
*** `g has quit IRC | 12:42 | |
tyska | Razique: ifconfig just shows 1 bridge, that is normal? | 12:43 |
*** livemoon has joined #openstack | 12:44 | |
Razique | no that aint | 12:44 |
livemoon | hi,all | 12:44 |
Razique | have you restarted the nova-network service ? | 12:44 |
tyska | Razique: i rebooted the server | 12:44 |
Razique | ok | 12:45 |
Razique | mmm | 12:45 |
tyska | Razique: and now restart the service too, we have still 1 bridge | 12:45 |
livemoon | I will write some simple doc to website of our country | 12:45 |
livemoon | Let more people know openstack and use it | 12:46 |
tyska | restarted the service too* | 12:46 |
livemoon | Razique£ºIf can ,I will use your keystone sql | 12:48 |
Razique | check the nova-network.log in debug mode by precaustion | 12:48 |
tyska | Razique: how i enter in debug mode? | 12:49 |
Razique | tyska: you add --debug i nova.conf | 12:50 |
Razique | then restart the service nova-network | 12:50 |
*** jeh has joined #openstack | 12:55 | |
*** pradeep1 has joined #openstack | 12:56 | |
livemoon | Razique£ºwhat command can export mysql db save as sql text and import later? | 12:56 |
*** tyska has quit IRC | 12:56 | |
Razique | livemoon: mysqldump -u $USER -p$PASS (no space) $DATABASE > $DATABASE.sql | 12:57 |
*** tyska has joined #openstack | 12:57 | |
Razique | mysqldump -u glance -pglance glance > glance.sql | 12:57 |
tyska | Razique: http://paste.openstack.org/show/2809/ here is the log | 12:57 |
livemoon | Razique£º what about import£¿ | 12:57 |
*** mjfork_ has joined #openstack | 12:57 | |
*** GheRivero has quit IRC | 12:57 | |
Razique | livemoon: mysql -u glance -pglance glance < glance.sql | 12:57 |
Razique | :) | 12:57 |
Razique | tyska: seems good | 12:57 |
livemoon | Razique£ºthanks | 12:58 |
Razique | what nova-manage service list gives ? | 12:58 |
*** ziyadb has quit IRC | 12:59 | |
*** TreeStump has joined #openstack | 12:59 | |
tyska | Razique: thats return a error | 12:59 |
*** ziyadb has joined #openstack | 13:00 | |
tyska | Razique: http://paste.openstack.org/show/2810/ | 13:00 |
*** datajerk has joined #openstack | 13:02 | |
tyska | 2011-10-21 11:01:26,913 INFO nova.db.sqlalchemy [-] Using mysql/eventlet db_pool. 2011-10-21 11:01:32,064 | 13:02 |
tyska | CRITICAL nova [-] | 13:02 |
tyska | this are the messages in the log | 13:02 |
tyska | for nova-manage service list | 13:02 |
*** PeteDaGuru has left #openstack | 13:04 | |
Razique | tyska: run as root | 13:05 |
tyska | Razique: yeah, i did it later | 13:05 |
*** marrusl has joined #openstack | 13:05 | |
tyska | Razique: it returned: command failed, see the log | 13:05 |
tyska | Razique: and the messages log are these i put here | 13:05 |
*** mjfork_ has quit IRC | 13:05 | |
*** mies has joined #openstack | 13:05 | |
Razique | 13:06 | |
Razique | 2011-10-21 11:01:26,913 INFO nova.db.sqlalchemy [-] Using mysql/eventlet db_pool. 2011-10-21 11:01:32,064 | 13:06 |
Razique | CRITICAL nova [-] | 13:06 |
Razique | this are the messages in the log | 13:06 |
Razique | for nova-manage service list | 13:06 |
Razique | that one ? | 13:06 |
tyska | yeah | 13:07 |
tyska | just this 2 | 13:07 |
tyska | Razique: it worked know | 13:08 |
tyska | Binary Host Zone Status State Updated_At nova-network c3cloud nova enabled :-) 2011-10-21 13:07:51 nova-compute c3cloud nova enabled :-) 2011-10-21 13:07:50 nova-volume c3cloud nova enabled :-) 2011-10-21 13:07:52 nova-schedul | 13:08 |
Razique | great | 13:08 |
Razique | use tyska btw :) | 13:08 |
Razique | paste sorry | 13:08 |
tyska | ok sry | 13:08 |
Razique | ;) | 13:09 |
tyska | Razique: what's the next step? | 13:10 |
Razique | well run images then | 13:10 |
tyska | Razique: but i dont executed that command. (nova-manage network...) | 13:11 |
tyska | Razique: dont i have to do it | 13:11 |
tyska | ? | 13:11 |
Razique | so do it yah | 13:11 |
Razique | I thought u did | 13:11 |
tyska | Razique: i did not because there is not br0 | 13:11 |
Razique | try anyway | 13:11 |
Razique | :D | 13:11 |
Razique | maybe it's created afterward | 13:11 |
Razique | which I doubt but, why not | 13:11 |
tyska | nova-manage network create 172.16.0.0/16 1 256 --bridge_interface=br0 is that it? | 13:12 |
*** ejat has quit IRC | 13:12 | |
Razique | I've an issues my floating ip don't work anymore :/ | 13:13 |
Razique | since the iptables'NAT prerouting rule is created, I can't ping the ip | 13:13 |
Razique | while the instance is still reachable via it's fixed ip | 13:13 |
Razique | tyska: yup | 13:13 |
siwos | guys - anyone running windows in openstack? | 13:15 |
*** tillmo has joined #openstack | 13:16 | |
*** mikemowgli has quit IRC | 13:16 | |
*** msivanes has joined #openstack | 13:17 | |
*** msivanes has left #openstack | 13:17 | |
*** hadrian has joined #openstack | 13:18 | |
*** supriya_ has joined #openstack | 13:18 | |
*** kbringard has joined #openstack | 13:20 | |
*** rods has joined #openstack | 13:20 | |
*** ewindisch_ has joined #openstack | 13:21 | |
tyska | Razique: Command failed =( | 13:21 |
tyska | Razique: CRITICAL nova [-] The network range is not big enough to fit 256. Network size is 1 | 13:22 |
*** ewindisch__ has joined #openstack | 13:22 | |
Razique | mmmm | 13:23 |
Razique | siwos: I managed yah | 13:23 |
siwos | Razique: with hyperv? | 13:23 |
siwos | or kvm? | 13:23 |
*** ewindisch has quit IRC | 13:23 | |
*** ewindisch__ has quit IRC | 13:23 | |
Razique | kvm | 13:24 |
*** ewindisch has joined #openstack | 13:24 | |
Razique | tyska: try a bigger range then | 13:24 |
tyska | Razique: like what? | 13:25 |
*** ewindisch has quit IRC | 13:25 | |
Razique | a /12 one ? | 13:25 |
kbringard | do a /1! | 13:25 |
kbringard | :-p | 13:25 |
*** ewindisch_ has quit IRC | 13:25 | |
*** ewindisch has joined #openstack | 13:25 | |
tyska | Razique: same problem with /12 =(I | 13:25 |
tyska | Razique: im considering try to install with ubuntu 11.10 =/ | 13:26 |
livemoon | Razique: how are you? | 13:26 |
Razique | show me nova.conf and the network u set with nova-manage | 13:26 |
Razique | livemoon: ont cool :( my floating ips don't work anymore | 13:26 |
Razique | since this morning I've tons of new issues | 13:26 |
livemoon | have any error? | 13:27 |
Razique | it's f***in unbelieveable | 13:27 |
Razique | not any | 13:27 |
Razique | i'm debbuging iptables rules | 13:27 |
livemoon | I have meet some issues too. yesterday it works well.today.just git pull and install ,then some errors show | 13:28 |
*** sannes has quit IRC | 13:28 | |
Razique | well I dunno what to look | 13:29 |
Razique | iptables rules seem good | 13:30 |
tyska | Razique: http://pastebin.com/wNuaP5z4 here is the configs | 13:30 |
*** bcwaldon has joined #openstack | 13:31 | |
Razique | --fixed_range=172.16.0.0/16 - > --fixed_range=172.16.0.0/12 | 13:31 |
Razique | seems weird | 13:32 |
tyska | Razique: yeah, just changed it, | 13:32 |
*** jsh has quit IRC | 13:34 | |
Razique | nova should be able to allocate 256 adresses in a /24 | 13:34 |
tyska | Razique: but dont think it is the problem | 13:34 |
Razique | neither do I | 13:34 |
tyska | Razique: exactly | 13:34 |
Razique | check logs :p | 13:34 |
livemoon | I found new nova have changed some flag | 13:34 |
*** jsh_ has joined #openstack | 13:34 | |
livemoon | some flages donnot need value | 13:34 |
Razique | any network guys around ? :D | 13:34 |
Razique | livemoon: yah ? | 13:34 |
*** sannes has joined #openstack | 13:34 | |
livemoon | but I don't know its default | 13:34 |
tyska | if i run the command for 50 IP's, the error is the same | 13:34 |
livemoon | for example, --multi_host, I used to set =true | 13:34 |
livemoon | now.it cannot be set value | 13:34 |
*** jsh_ is now known as jsh | 13:34 | |
tyska | Razique: im aborting the mission, im going to try to install using ubuntu server 11.10 | 13:35 |
tyska | Razique: than, the beginners guide must work | 13:35 |
tyska | Razique: thank you very much for the help | 13:36 |
Razique | tyska: mm don't give that that close :p | 13:36 |
uvirtbot | New bug: #879442 in nova "Some tests take too much time to run" [Undecided,New] https://launchpad.net/bugs/879442 | 13:36 |
Razique | plus its not related to the server imho | 13:36 |
Razique | livemoon: yah that multi_host stuff is weird | 13:36 |
tyska | Razique: do you think it is possible to solve that trouble? | 13:36 |
Razique | it's like the flag is useless | 13:37 |
Razique | I had to put to false into the database that table | 13:37 |
Razique | yah, could you show me the exact message | 13:37 |
Razique | I only saw a part of it | 13:37 |
tyska | Razique: what message? | 13:38 |
*** pradeep1 has quit IRC | 13:38 | |
*** marrusl has quit IRC | 13:39 | |
Razique | u have that ValueError: The network range is not big enough to fit 255. Network size is 1 | 13:39 |
*** pradeep has joined #openstack | 13:39 | |
*** siwos has quit IRC | 13:41 | |
Razique | tyska: got it | 13:43 |
Razique | try nova-manage network create private 172.16.50.0/24 | 13:43 |
Razique | should works | 13:43 |
tyska | Razique: owww, worked out! =) | 13:44 |
tyska | Razique: how did you do that? | 13:44 |
Razique | I googled | 13:44 |
Razique | there have been somes changes on the versions | 13:44 |
tyska | Razique: but, why worked that way? | 13:44 |
*** ChrisAM has quit IRC | 13:44 | |
Razique | it's the label "private" which does the trick | 13:44 |
Razique | https://answers.launchpad.net/nova/+question/163627 | 13:44 |
*** worstadmin_ has joined #openstack | 13:44 | |
tyska | Razique: but the subnet is wrong now, with my nova.conf | 13:45 |
Razique | nope since you can create multiple networks | 13:45 |
Razique | into the conf you always specify the biggest range | 13:45 |
Razique | while with nova-manage network, u create smaller network | 13:46 |
tyska | Razique: ok, then now its time to run this command sudo nova-manage floating create 10.10.10.2 10.10.10.224/27 | 13:46 |
tyska | Razique: there is some difference for the version im using? | 13:46 |
Razique | the floating range is an accessible one by the nova-network server ; in ur case the server 1 | 13:46 |
Razique | so make sure these are routable adresses | 13:47 |
*** nerens has quit IRC | 13:47 | |
*** RobertLaptop has quit IRC | 13:47 | |
tyska | my server is 10.0.0.254 | 13:47 |
tyska | what i must run? | 13:47 |
Razique | start by create two /32 adresses | 13:48 |
Razique | pick the ones u like | 13:48 |
tyska | 32? 255.255.255.255? | 13:48 |
tyska | this floating range is for what end? | 13:50 |
tyska | thanks for the help | 13:50 |
tyska | im going to lunch, see you later ;) | 13:50 |
*** dnjaramba has quit IRC | 13:50 | |
Razique | the floating ip allows you to reach the instances from the outside world | 13:51 |
*** RobertLaptop has joined #openstack | 13:51 | |
*** ChrisAM1 has joined #openstack | 13:51 | |
*** RobertLaptop has left #openstack | 13:51 | |
Razique | djjeeeee I can't get floating ips working :( | 13:52 |
Razique | the iptables rules are not set correctly, but can't find where | 13:52 |
*** dgags has joined #openstack | 13:54 | |
*** GheRivero has joined #openstack | 13:54 | |
*** robbiew has joined #openstack | 13:55 | |
mjfork | Razique: i only got floating ips to work after changing a sysctl setting (obviously depends on your env) | 13:55 |
mjfork | getting it now | 13:56 |
kbringard | it's net.ipv4.ip_forward=1 | 13:56 |
kbringard | in /etc/sysctl.conf | 13:57 |
mjfork | net.ipv4.conf.default.rp_filter = 2 | 13:57 |
kbringard | then sysctl -p will reload it | 13:57 |
kbringard | oh, you're talking about something else | 13:57 |
mjfork | note mine is a different setting | 13:57 |
mjfork | i didn't see Razique earlier question, so mine may not help | 13:58 |
mjfork | but worth a try | 13:58 |
kbringard | mjfork: right, sorry, I thought you were talking about how to turn on ip forwarding on the NC | 13:58 |
Razique | kbringard: no it use to work find | 13:58 |
mjfork | ahh, ok. | 13:58 |
Razique | fine | 13:58 |
kbringard | Razique: yea, I remember | 13:59 |
kbringard | weird that it would just die | 13:59 |
Razique | not I can't reach floating ips :D | 13:59 |
*** dgags1 has joined #openstack | 13:59 | |
Razique | yah, i'll check the forwarding | 13:59 |
kbringard | if you ip addr show $public_device | 13:59 |
Razique | coudl be that | 13:59 |
*** rods has quit IRC | 13:59 | |
kbringard | are the IPs up? | 13:59 |
Razique | kbringard: the ip is hsre | 13:59 |
Razique | here | 13:59 |
Razique | when I flush the nat rule, the ip points to the server | 13:59 |
Razique | I mean nova | 13:59 |
Razique | since I restart nova-network (which re-set iptables rules) | 13:59 |
kbringard | yea, and you can ping it? when you have the nat rules flushed? | 13:59 |
Razique | it's not working at all | 14:00 |
Razique | yup I can when the rules are flushed | 14:00 |
kbringard | ok, so yea, that definitely points to a problem in the natting | 14:00 |
*** dgags1 has quit IRC | 14:00 | |
*** dgags has quit IRC | 14:00 | |
kbringard | can your VMs NAT out if they only have internal IPs? | 14:00 |
*** GheRivero has quit IRC | 14:01 | |
Razique | kbringard: nope | 14:01 |
Razique | they need a floating in order to go out | 14:02 |
kbringard | do you have the —fixed_range flag set? | 14:02 |
Razique | yah | 14:03 |
kbringard | (assuming you're using flatDHCP) | 14:03 |
Razique | but I'm using VLanmode | 14:03 |
kbringard | oooo | 14:03 |
kbringard | you have your vlan_interface and public_interface set right? | 14:03 |
*** kaigan_ has joined #openstack | 14:03 | |
kbringard | (I know it iused to work, I'm just thinking through all the possible problems) | 14:03 |
Razique | yup | 14:03 |
*** mdomsch has joined #openstack | 14:04 | |
kbringard | eh, I dunno, weird | 14:04 |
Razique | --public_interface=eth0 | 14:04 |
Razique | --vlan_interface=eth1 | 14:04 |
kbringard | I'd check to make sure ip forwarding is still on | 14:04 |
Razique | that what I'm trying | 14:04 |
kbringard | grep net.ipv4.ip_forward /etc/sysctl.conf | 14:04 |
Razique | I just turned it on on both servers | 14:05 |
kbringard | you should only need it on the network controller | 14:05 |
*** rods has joined #openstack | 14:05 | |
Razique | ok | 14:05 |
kbringard | once you set that to =1 | 14:05 |
*** adjohn has joined #openstack | 14:05 | |
kbringard | run sysctl -p | 14:05 |
kbringard | to reload it on the fly | 14:05 |
Razique | yup did it :) | 14:06 |
kbringard | you mean you ran that command, or that fixed it? | 14:06 |
kbringard | :-) | 14:06 |
Razique | unfortunately I ran the command | 14:07 |
Razique | but it's not working | 14:07 |
kbringard | and I assume you can get to the VMs internal IPs from the NC? | 14:08 |
kbringard | VM's* | 14:08 |
*** blamar has quit IRC | 14:08 | |
Razique | Diablo has a new table into the database "brige_interface" which overrides the "--vlan_interface" | 14:08 |
Razique | on the node 1 I've : --public_interface=eth0 | 14:08 |
Razique | --vlan_interface=eth1 | 14:08 |
Razique | while I've in the node 2 : --public_interface=eth0 | 14:08 |
Razique | --vlan_interface=eth0 | 14:08 |
Razique | Yah I can reach the VM via it's private IP | 14:09 |
*** adjohn has quit IRC | 14:10 | |
crussell | guys, i'm stumped here. | 14:10 |
crussell | NEver had this issue before | 14:10 |
crussell | I can't get images to upload | 14:10 |
crussell | First think i noticed when publishing.. no ramdisk | 14:11 |
crussell | This wasn't the case the last time i setup openstack, and using this ubuntu single user image | 14:11 |
*** blamar has joined #openstack | 14:12 | |
crussell | second, it spits out an error about connection refused 1111 | 14:12 |
crussell | I've created a new user, and project, and sourced novarc to make sure it was right | 14:12 |
crussell | I checked my nov.conf. made sure the s3_url is there. | 14:12 |
crussell | Object store is running | 14:12 |
crussell | All services up and avilable. | 14:12 |
*** sdake_ has joined #openstack | 14:12 | |
*** sdake has quit IRC | 14:12 | |
*** marrusl has joined #openstack | 14:12 | |
crussell | failed: euca-upload-bundle --bucket dub-bucket --manifest /tmp/uec-publish-image.G1hJsi/maverick-server-uec-amd64-vmlinuz-virtual.manifest.xml | 14:12 |
crussell | socket.error: [Errno 111] Connection refused | 14:13 |
crussell | It's actually failing on the euca-upload-bundle. | 14:13 |
crussell | I'm not seeing the bucket being created at /var/lib/nova/buckets | 14:13 |
crussell | Permissions appear to be right on the folder | 14:13 |
crussell | Ahh hell.. objectstore running under root.. and everything else running under nova.. | 14:14 |
crussell | think this could be it? | 14:14 |
crussell | If so how do i fix | 14:14 |
*** rnorwood has quit IRC | 14:14 | |
*** gnu111 has joined #openstack | 14:15 | |
*** slyphon has joined #openstack | 14:18 | |
*** fmancinelli has joined #openstack | 14:18 | |
*** cereal_bars has joined #openstack | 14:20 | |
*** sdake_ is now known as sdake | 14:20 | |
*** rsampaio has joined #openstack | 14:21 | |
*** supriya_ has quit IRC | 14:21 | |
*** cereal_bars has quit IRC | 14:21 | |
*** code_franco has joined #openstack | 14:22 | |
*** imsplitbit has joined #openstack | 14:22 | |
*** shentonfreude has joined #openstack | 14:22 | |
*** sdake has quit IRC | 14:23 | |
*** sdake has joined #openstack | 14:25 | |
*** kaigan_ has quit IRC | 14:25 | |
*** ejat has joined #openstack | 14:25 | |
*** ejat has joined #openstack | 14:26 | |
*** obino has quit IRC | 14:28 | |
Razique | kbringard: here is what happens when I attach a floating ip http://paste.openstack.org/show/2811/ | 14:28 |
*** mdomsch has quit IRC | 14:28 | |
*** nhubbard_away is now known as nhubbard | 14:30 | |
*** livemoon has left #openstack | 14:30 | |
*** perestrelka has quit IRC | 14:40 | |
crussell | argh.. i'm stumped.. | 14:43 |
crussell | Anyone around want to help me troubleshoot this objectstore problem | 14:43 |
mjfork | sure | 14:45 |
*** dillon-w has joined #openstack | 14:46 | |
*** reed has joined #openstack | 14:46 | |
*** rhookway has quit IRC | 14:47 | |
mjfork | crussell: fire away | 14:47 |
*** Ryan_Lane has joined #openstack | 14:48 | |
*** nerens has joined #openstack | 14:49 | |
Oneiroi | zykes-: ping | 14:53 |
crussell | ty mjfork | 14:54 |
crussell | socket.error: [Errno 111] Connection refused | 14:54 |
mjfork | ha | 14:54 |
mjfork | is nova-objectstore running? | 14:54 |
crussell | I'm getting that error when performing euca-publish-tarball | 14:54 |
crussell | Yes, running, uninstalled reinstalled a couple time | 14:54 |
crussell | Tried with/without glance since this is a single server install at the moment | 14:55 |
mjfork | if so, what does netstat -tnap show for port | 14:55 |
crussell | port 3333? | 14:55 |
crussell | funny enough, don't see port 3333 listed | 14:56 |
crussell | i see 9292 for glance though | 14:56 |
*** osier has quit IRC | 14:57 | |
mjfork | what is the PID of objectstore? | 14:57 |
crussell | root 26945 0.0 0.0 61232 16180 ? S 10:51 0:00 /usr/bin/python /usr/bin/nova-objectstore --uid 112 --gid 65534 --pidfile /var/run/nova/nova-objectstore.pid --flagfile=/etc/nova/nova.conf --nodaemon --logfile=/var/log/nova/nova-objectstore.log | 14:57 |
mjfork | what ports is PID 26945 listening | 14:58 |
eqx311 | netstat -pln | 14:58 |
crussell | tcp 0 0 192.168.10.1:3333 0.0.0.0:* LISTEN 26945/python | 14:58 |
kbringard | or lsof -i | grep 26945 | 14:58 |
eqx311 | nice1 | 14:58 |
*** naehring has quit IRC | 14:59 | |
gnu111 | notmyname: I rebalanced the ring and swift-bench is working: http://paste.openstack.org/show/2812/ | 14:59 |
kbringard | <3 lsof | 14:59 |
crussell | lsof shows nothing | 14:59 |
notmyname | gnu111: great! | 14:59 |
eqx311 | arista switches + nova .. anyone ? | 15:00 |
*** adjohn has joined #openstack | 15:00 | |
mjfork | crussell: my guess is you are connecting via localhost | 15:00 |
gnu111 | notmyname: do the numbers look ok? what do they mean? | 15:00 |
mjfork | and not the IP | 15:00 |
notmyname | gnu111: PUTs look a little slow, but that's dependent on your particular infrastructure | 15:00 |
mjfork | crussell: telnet localhost 3333 fails right? | 15:00 |
gnu111 | notmyname: i am using ext4 with xattr. not xfs. | 15:01 |
crussell | it does... | 15:01 |
crussell | you may be on to something | 15:01 |
crussell | only works on my private ip of 192.168.10.1 | 15:01 |
crussell | what flag is that in nova-.conf | 15:01 |
mjfork | in nova.conf what is your s3_interface? | 15:01 |
*** MarkAtwood has joined #openstack | 15:02 | |
mjfork | (i think thats the flag, doing from memory) | 15:02 |
crussell | no s3 interface | 15:02 |
crussell | have s3 host | 15:02 |
crussell | s3 url | 15:02 |
crussell | both of which point to correct ip | 15:02 |
mjfork | s3_host | 15:02 |
crussell | it has the ip, minue the port, i'd assume it just uses the default. | 15:03 |
crussell | or should i ada a :3333 | 15:03 |
*** nati2 has joined #openstack | 15:03 | |
notmyname | gnu111: my numbers running on a 1GB slicehost account (so numbers on dedicated hardware should be much better) http://paste.openstack.org/show/2813/ | 15:03 |
*** mrjazzcat has joined #openstack | 15:04 | |
gnu111 | notmyname: i see. yes your PUTs look much better. what should I look for in the config? ring setup? | 15:05 |
notmyname | gnu111: that starts to get in to the black art of perf tuning. fs options, timeout values, etc can all affect it. pandemicsyn probably could help you more than me on tuning issues | 15:06 |
crussell | hmm when i type env | 15:06 |
crussell | i do not see my s3_host | 15:06 |
mjfork | crussell: is your ss3_host that IP or is it 0.0.0.0? | 15:07 |
crussell | just exported it in, and trying again | 15:07 |
crussell | it's the ip. 192.168.10.1 it's the only one that will accept conenction | 15:07 |
*** rnirmal has joined #openstack | 15:07 | |
mjfork | my file has 0.0.0.0 | 15:08 |
*** nati2 has quit IRC | 15:08 | |
mjfork | try that and restart objectsore | 15:08 |
*** eferenr has quit IRC | 15:08 | |
crussell | kk | 15:08 |
gnu111 | notmyname: earlier my balance wasn't zero. I added a new node, had to wait an hour. do you the error was due to that? | 15:08 |
*** ziyadb has quit IRC | 15:09 | |
crussell | ok now i can telnet to 0.0.0.0 on port 3333 | 15:09 |
crussell | trying again | 15:09 |
crussell | anyway to elvate logging verbosity on objectstore.. | 15:10 |
notmyname | gnu111: probably not (for a nearly empty cluster). ring balance is going to affect how your data is distributed as the cluster fills up. it's important, but I don't think it would affect swift-bench numbers all that much | 15:10 |
crussell | because as i'm tailing it, nothing really showing | 15:10 |
*** nycko has quit IRC | 15:10 | |
crussell | failed again, sadly | 15:10 |
mjfork | crussell: well, it was never connected | 15:10 |
mjfork | are you on diablo? | 15:10 |
*** rnorwood has joined #openstack | 15:10 | |
crussell | cactus i believe 2011.2 | 15:10 |
crussell | i pulled from ubuntu universe | 15:11 |
*** freeflyi1g has joined #openstack | 15:11 | |
mjfork | ok, hmm | 15:11 |
crussell | want me to just go and update it from the ppa? | 15:11 |
crussell | all modules, and try again | 15:11 |
mjfork | well, diablo makes it easier :-) | 15:11 |
*** kernelfreak has joined #openstack | 15:11 | |
mjfork | where do you see conenction refused? | 15:11 |
mjfork | from ecua_publish_image? | 15:12 |
mjfork | whats in your novarc you source? | 15:12 |
crussell | failed: euca-bundle-image --destination /tmp/uec-publish-image.xmw7Rf --arch i38 | 15:12 |
notmyname | gnu111: also, FWIW, only doing 100 PUTs etc won't give you as accurate of numbers. I'd suggest using much bigger numbers, especially if you have a large cluster | 15:13 |
mjfork | crussell: where did yo usee connection refused? | 15:13 |
crussell | http://pastebin.com/7cWu5BNQ | 15:13 |
gnu111 | notmyname: ok, will try that. | 15:13 |
*** fmancinelli has quit IRC | 15:13 | |
mjfork | crussell: this may be your issue "http://10.0.64.201:3333" | 15:13 |
*** TheOsprey has quit IRC | 15:14 | |
*** dragondm has joined #openstack | 15:14 | |
mjfork | telnet 10.0.64.201 3333 | 15:14 |
*** freeflying has quit IRC | 15:14 | |
mjfork | does that open up | 15:14 |
*** vladimir3p has joined #openstack | 15:14 | |
crussell | I see it after i attempt a uec-publish-tarball. that is the command giving me the error | 15:14 |
crussell | hold up... it's not giving the connection refused now. | 15:14 |
crussell | we've moed up in problems. | 15:14 |
notmyname | gnu111: what is your cluster now? a single VM like mine (dev env)? or real hardware with multiple machines? | 15:14 |
*** TreeStump has quit IRC | 15:14 | |
gnu111 | notmyname: real hardware with multiple nodes. | 15:14 |
crussell | no it's not...let me change it to 0.0.0.0 | 15:14 |
*** mjfork_ has joined #openstack | 15:14 | |
*** TreeStump has joined #openstack | 15:15 | |
*** livemoon has joined #openstack | 15:15 | |
mjfork | wait, no don't chagne it to 0 | 15:15 |
mjfork | chagne it to localhost | 15:15 |
crussell | okies | 15:15 |
crussell | name or 127 | 15:15 |
mjfork | either or | 15:15 |
crussell | kk | 15:15 |
livemoon | hi, all | 15:15 |
notmyname | gnu111: how many proxies? | 15:15 |
gnu111 | notmyname: one so far. I can add another one. I have 8 nodes to play with. | 15:16 |
*** HowardRoark has joined #openstack | 15:16 | |
livemoon | Does anyone meet "novaclient.exceptions.BadRequest: Missing imageRef attribute (HTTP 400)" this error ? | 15:16 |
*** nycko has joined #openstack | 15:16 | |
mjfork | livemoon: what was glance show <image id> show | 15:17 |
mjfork | livemoon: guessing you are missing a parameter value | 15:17 |
livemoon | I found it | 15:18 |
livemoon | bugs in apiv1_1 | 15:19 |
Oneiroi | guys if you happend to see zykes- before I do, please ask him to check out : http://koji.fedoraproject.org/koji/taskinfo?taskID=3449777 and let me know if there any issues with the EL6 packages | 15:19 |
Oneiroi | happen* | 15:19 |
Oneiroi | I'll be testing them also :) | 15:19 |
*** dgags has joined #openstack | 15:19 | |
*** llang629 has quit IRC | 15:19 | |
notmyname | gnu111: ah. now I remember. also keep in mind that swift-bench can very easily flood your network if you are hitting a remote proxy. this is good. you should probably test from a separate box to ensure the benchmarking isn't getting in the way of responding to the benchmarking tool. you should definitely play with the concurrency and raise it a lot. I can easily run with a concurrency of 40 on my VM, so you should be able to do more than that | 15:20 |
*** troya has joined #openstack | 15:20 | |
gnu111 | notmyname: ok, i will try that. | 15:20 |
troya | hi all | 15:21 |
troya | good night :) | 15:21 |
*** jsavak has joined #openstack | 15:22 | |
*** vdo has quit IRC | 15:23 | |
Oneiroi | el6 build completed http://koji.fedoraproject.org/koji/buildinfo?buildID=269933 | 15:23 |
gnu111 | notmyname: I am running these from the proxy node. | 15:23 |
gnu111 | notmyname: I am getting some GETS failure with higher numbers. | 15:24 |
troya | hi JordanRinke | 15:24 |
*** ziyadb has joined #openstack | 15:24 | |
mjfork | crussell: any luck? | 15:24 |
notmyname | gnu111: some failures are expected when concurrency gets too high | 15:24 |
reidrac | gnu111: are you using ssl? | 15:25 |
gnu111 | reidrac: yes. | 15:25 |
gnu111 | do these benchmarking produce any log files? | 15:25 |
reidrac | gnu111: we have found lots of problems with proxy serving ssl | 15:26 |
reidrac | gnu111: looks like there's something not 100% OK in the proxy ssl implementation | 15:26 |
*** freeflyi1g has quit IRC | 15:26 | |
gnu111 | reidrac: ok. I can try with non-ssl at some point. | 15:27 |
*** koolhead17 has quit IRC | 15:27 | |
reidrac | notmyname: do you have time for a quick look into a bug? :) | 15:27 |
*** livemoon has quit IRC | 15:28 | |
notmyname | gnu111: just the proxy logs | 15:28 |
reidrac | gnu111: do it! you may not have problems in load tests, but we had to use a reverse proxy for ssl because it was too unstable with lots of timeouts | 15:28 |
*** HowardRoark has quit IRC | 15:29 | |
*** guigui has quit IRC | 15:29 | |
notmyname | gnu111: reidrac: using ssl directly to the proxy seems to cause some errors (probably in Python itself). we strongly recommend that you terminate ssl on a LB in front of the proxy | 15:29 |
notmyname | reidrac: what's up? | 15:29 |
reidrac | notmyname: https://bugs.launchpad.net/swift/+bug/879371 :P | 15:29 |
reidrac | I'd appreciate your opinion | 15:29 |
*** freeflying has joined #openstack | 15:30 | |
reidrac | notmyname: yep, we though for some time it was an issue with python-cloudfiles, but after some weird stuff last week we concluded it's something in the proxy :( | 15:30 |
notmyname | reidrac: I saw that come through this morning, but I haven't had a chance to look at it yet | 15:30 |
*** guigui has joined #openstack | 15:31 | |
reidrac | notmyname: OK, I just want to know if the x-container-read/write headers were removed intentionally | 15:31 |
*** HowardRoark has joined #openstack | 15:31 | |
notmyname | reidrac: no. without looking at it in detail, it does sound like a bug | 15:32 |
reidrac | notmyname: OK, thanks | 15:32 |
reidrac | it's the only problem we had migrating from 1.4.0 to 1.4.3 | 15:32 |
Razique | ok I've fixed my issue | 15:32 |
Razique | now floating ips work | 15:33 |
gnu111 | notmyname: swift does not come with a LB right? I have to use a third party one. | 15:33 |
notmyname | gnu111: correct | 15:33 |
mjfork | Razique: what was it? | 15:33 |
Razique | I don't know :/ | 15:33 |
Razique | I deleted the netwrok, recreated it | 15:34 |
Razique | used nova instead of euca2ools | 15:34 |
Razique | now it's working, don't know how really | 15:34 |
Razique | I've lost my mind | 15:34 |
Razique | :d | 15:34 |
reidrac | gnu111: look at pound, we're very happy with it so fa... http://www.apsis.ch/pound/ | 15:34 |
reidrac | *far | 15:34 |
notmyname | gnu111: based on our testing, we'd recommend pound if you want something free. we use zeus (proprietary, $) because it gave us better performance | 15:34 |
gnu111 | reidrac, notmyname: thanks. will try it. I don't have much experience with LB but shouldn't be that bad. | 15:35 |
btorch | zeus is pretty cool to manage too :) | 15:35 |
notmyname | gnu111: but that being said, this was done without using the intel aes acceleration, and it may be possible to speed it up with a custome build of openssl | 15:35 |
notmyname | gnu111: listen to btorch. he's one of our swift ops guys | 15:36 |
notmyname | gnu111: he keeps these huge clusters running | 15:36 |
*** troya has quit IRC | 15:36 | |
gnu111 | btorch: thanks. will check it out. is it this one: http://www.zeus.com/products/load-balancer not free though right? | 15:37 |
kbringard | I don't know what kind of load you're putting on stuff, but if you're just doing http(s) I use nginx for both reverse proxy and SSL termination and it works great | 15:37 |
notmyname | kbringard: nginx isn't good for something like swift | 15:38 |
kbringard | oh, I didn't realize you were talking about swift | 15:38 |
* kbringard goes back to his cave | 15:38 | |
notmyname | kbringard: nginx spools PUTs to disk, so large objects can _quickly_ overwhelm your LB | 15:38 |
notmyname | kbringard: other than that, it's good though :-) | 15:38 |
kbringard | haha, yea, I thought you were just talking about straight up LB for like the API or something | 15:39 |
reidrac | kbringard: it won't work, nginx doesn't love too much some of the chunked PUT operations | 15:39 |
kbringard | reidrac: right, yea, I agree, I didn't realize you were talking about swift | 15:40 |
kbringard | sorry to jump in uninformed | 15:40 |
notmyname | kbringard: no worries :-) | 15:40 |
reidrac | notmyname: I couldn't make it work, python-cloudfiles does some nasty things and I was getting 411 errors constantly :) | 15:40 |
*** guigui has left #openstack | 15:40 | |
reidrac | kbringard: it's OK! | 15:41 |
*** dobber has quit IRC | 15:41 | |
btorch | gnu111: yes that's the one | 15:41 |
notmyname | reidrac: what couldn't you get to work? | 15:41 |
reidrac | notmyname: PUTs, basically using python-cloudfiles | 15:42 |
gnu111 | notmyname: I can't find the proxy logs. are they in the system logs? | 15:42 |
notmyname | reidrac: through nginx? | 15:42 |
reidrac | yep | 15:42 |
notmyname | gnu111: they log to syslog. so /var/log/syslog unless you've changed the syslog config | 15:42 |
notmyname | reidrac: good to know | 15:42 |
reidrac | notmyname: I think it's because nginx wants a content-length for PUT/POST | 15:43 |
*** rnorwood has quit IRC | 15:43 | |
*** HowardRoark has quit IRC | 15:43 | |
*** HowardRoark has joined #openstack | 15:43 | |
gnu111 | notmyname: ok found it in the sys log. I am seeing my connection refused errors. Oct 21 10:54:11 b002 proxy-server ERROR with Object server 172.29.202.15:6000/sda3 re: Trying to GET /AUTH_system/gerald-test_segments/400GB.dat/1318342396.76/429496729600/00002586: Connection refused (client_ip: 172.29.202.19) | 15:46 |
gnu111 | Oct 21 10:54:14 b002 proxy-server ERROR with Object server 172.29.202.16:6000/sda3 re: Trying to GET /AUTH_system/gerald-test_segments/400GB.dat/1318342396.76/429496729600/00002588: Connection refused (client_ip: 172.29.202.19) | 15:46 |
gnu111 | Oct 21 10:54:16 b002 proxy-server ERROR with Object server 172.29.202.15:6000/sda3 re: Trying to GET /AUTH_system/gerald-test_segments/400GB.dat/1318342396.76/429496729600/00002589: Connection refused (client_ip: 172.29.202.19) | 15:46 |
gnu111 | Oct 21 10:54:24 b002 proxy-server ERROR with Object server 172.29.202.15:6000/sda3 re: Trying to GET /AUTH_system/gerald-test_segments/400GB.dat/1318342396.76/429496729600/00002594: Connection refused (client_ip: 172.29.202.19) | 15:46 |
gnu111 | Oct 21 10:54:28 b002 proxy-server ERROR with Object server 172.29.202.16:6000/sda3 re: Trying to GET /AUTH_system/gerald-test_segments/400GB.dat/1318342396.76/429496729600/00002596: Connection refused (client_ip: 172.29.202.19) | 15:46 |
gnu111 | Oct 21 10:54:31 b002 proxy-server ERROR with Object server 172.29.202.15:6000/sda3 re: Trying to GET /AUTH_system/gerald-test_segments/400GB.dat/1318342396.76/429496729600/00002598: Connection refused (client_ip: 172.29.202.19) | 15:46 |
gnu111 | Oct 21 10:54:32 b002 proxy-server ERROR with Object server 172.29.202.15:6000/sda3 re: Trying to GET /AUTH_system/gerald-test_segments/400GB.dat/1318342396.76/429496729600/00002599: Connection refused (client_ip: 172.29.202.19) | 15:46 |
notmyname | gnu111: paste.openstack.org :-) | 15:46 |
gnu111 | Oct 21 10:54:36 b002 proxy-server ERROR with Object server 172.29.202.16:6000/sda3 re: Trying to GET /AUTH_system/gerald-test_segments/400GB.dat/1318342396.76/429496729600/00002602: Connection refused (client_ip: 172.29.202.19) | 15:46 |
gnu111 | Oct 21 10:54:38 b002 proxy-server ERROR with Object server 172.29.202.16:6000/sda3 re: Trying to GET /AUTH_system/test_segments/400GB.da | 15:46 |
gnu111 | sorry folks. | 15:46 |
gnu111 | meant to post only one line..sorry | 15:46 |
gnu111 | notmyname: so seeing these errors in the log: http://paste.openstack.org/show/2814/ | 15:46 |
Oneiroi | iptables on the node? | 15:47 |
notmyname | gnu111: with the higher concurrency to swift-bench? | 15:47 |
gnu111 | notmyname: no, I think this a test user who I have gave access to the system. | 15:47 |
gnu111 | notmyname: but I think i saw the same error during the benchmarking as well. | 15:48 |
notmyname | gnu111: there could be many reasons the connection was refused. looks like some investigation is needed | 15:49 |
*** troya has joined #openstack | 15:51 | |
tyska | Razique: solved your problem with floating ips? | 15:52 |
*** slyphon has quit IRC | 15:53 | |
*** rnorwood has joined #openstack | 15:54 | |
troya | hi all | 15:54 |
troya | anyone can help me? | 15:55 |
Ryan_Lane | I'm trying to figure out how to load this kexec-loader using the glance-upload command: http://bazaar.launchpad.net/~smoser/+junk/kexec-loader/view/head:/doc/loader-ramdisks.txt | 15:56 |
Ryan_Lane | anyone have any ideas? | 15:56 |
smoser | ah. yeah. sorry i missed you yesterday. | 15:56 |
smoser | its just a kernel and a ramdisk. | 15:56 |
smoser | how do you normally load those into glance? | 15:56 |
Ryan_Lane | it's two ramdisks though | 15:56 |
troya | hi smoser | 15:56 |
Ryan_Lane | I upload the kernel, then the ramdisk, then the image | 15:57 |
Ryan_Lane | this has a loader ramdisk, and a loader-sdb1 ramdisk though | 15:57 |
Ryan_Lane | and I don't see how to upload both | 15:58 |
smoser | Ryan_Lane, you dont want the -sdb1 . | 15:58 |
Ryan_Lane | oh. just the regular loader? | 15:58 |
Ryan_Lane | smoser: is this different than the loader that is shipped with the UEC images? | 15:58 |
smoser | yes. that is actually a grub multiboot loader. | 15:58 |
* Ryan_Lane nods | 15:58 | |
smoser | and that will not work on nova | 15:59 |
Ryan_Lane | thought so | 15:59 |
smoser | we had to hack eucalyptus to use it. | 15:59 |
smoser | that would have been a cleaner solution all around. | 15:59 |
tyska | Hi guys, i installed a dual node architecture open stack | 15:59 |
smoser | but the issue is that if you launch kvm with '-kernel' the bios does not get completely initialized | 15:59 |
tyska | it means i used two servers | 15:59 |
smoser | so grub was unable to see any disks. so it would fail. | 16:00 |
troya | smoser: can you explain to me, what's function of nova-volume ? | 16:00 |
tyska | server1 needs to be the gateway to server2, but for some reason it is not working | 16:00 |
Ryan_Lane | ah | 16:00 |
Ryan_Lane | troya: it's for procuring and attaching volumes to instances | 16:00 |
tyska | im a little confuse with the iptables chains, they are different from the standard chains | 16:00 |
smoser | troya, nova-volume provides ebs like functionality. | 16:00 |
smoser | Ryan_Lane, so please don't judge me. | 16:01 |
Razique | tyska: I did yah | 16:01 |
*** clauden has quit IRC | 16:01 | |
Razique | but I don't explain how :/ | 16:01 |
Ryan_Lane | smoser: heh. no judging. I'm glad to have a solution :) | 16:01 |
*** clauden has joined #openstack | 16:01 | |
smoser | but the way that the 'loader' files are used in eucalyptus is that they're shoved onto a floppy disk, the floppy disk is attached and kvm told to boot off th efloppy. | 16:01 |
smoser | it works. | 16:01 |
Razique | I mean the resolution doesn't make any sense at all | 16:01 |
tyska | Razique: this is not good =( but at least it is working now ;) | 16:01 |
Ryan_Lane | floppies ftw! | 16:01 |
Ryan_Lane | :D | 16:01 |
tyska | Razique: now im with a silly problem | 16:01 |
*** HowardRoark has quit IRC | 16:01 | |
troya | Ryan_lane: but why instances can run without i configure nova-volume ? | 16:01 |
smoser | but, yes, in 2010 I implemented something that uses a floppy drive for booting :) | 16:01 |
Razique | tyska: it used to work very well one day ago =D | 16:02 |
Ryan_Lane | hahahaha | 16:02 |
tyska | Razique: the compute node does not have Internet conectivity | 16:02 |
Razique | what music do you listen to guys when u run some errands | 16:02 |
Razique | fridge's empty here :D | 16:02 |
tyska | Razique: and i dont know why, adn the iptables chain are a lot different from the normal chains of iptables | 16:02 |
Razique | tyska: is it an expected behaviour ? | 16:02 |
smoser | Ryan_Lane, so upload the kernel and the loader ami (without the -loader-sdb1). and then use those as kernel and ramdisk for your image. | 16:03 |
*** reidrac has quit IRC | 16:03 | |
Razique | tyska: in fact nova chains drag all the chains mainly | 16:03 |
Razique | so it not's biggie | 16:03 |
troya | HI Razique | 16:03 |
Ryan_Lane | great. and I can use any lucid image? | 16:03 |
smoser | be aware, though, that it parses /boot/grub/menu.lst, so you have to have one. | 16:03 |
tyska | Razique: i think it is not a expected behavior, because the compute node needs to reach the Internet, no? | 16:03 |
Ryan_Lane | ah. so the image that is included has that? | 16:03 |
*** doorlock has joined #openstack | 16:04 | |
Ryan_Lane | and the normal UEC images do not? | 16:04 |
smoser | any recent ubuntu image will have it. | 16:04 |
Ryan_Lane | oh. good | 16:04 |
smoser | at http://uec-images.ubuntu.com/releases/10.04/ , i think anything after 10101228 | 16:05 |
*** HowardRoark has joined #openstack | 16:05 | |
smoser | oops. 20101228 or later. | 16:05 |
Razique | tyska: make sure the main interface of the node can reach the gateway | 16:06 |
Razique | nova rules don't block any acess | 16:06 |
Ryan_Lane | cool. I'm using much newer versions | 16:06 |
smoser | Ryan_Lane, if you wanted to document what you come up with in that bug, that would be very helpful. | 16:06 |
Ryan_Lane | will do | 16:06 |
*** MarcMorata has joined #openstack | 16:06 | |
Ryan_Lane | thankfully bootable images are usable later | 16:06 |
troya | Razique: can you explain me, why i can running instances without create nova-volume ? | 16:07 |
*** cclien has joined #openstack | 16:08 | |
*** livemoon has joined #openstack | 16:08 | |
Ryan_Lane | troya: because the instances don't have to be nova-volume backed | 16:08 |
tyska | Razique: it is ok, the main interface of the compute node is reaching the gateway | 16:08 |
*** nacx has quit IRC | 16:08 | |
livemoon | hi | 16:08 |
*** adjohn has quit IRC | 16:08 | |
tyska | Razique: already enabled the forward property in the gateway | 16:08 |
Ryan_Lane | troya: they will use the local disk space on your compute node | 16:08 |
Razique | ok so it shoud be able to reach the outside | 16:08 |
livemoon | Razique: are you here? | 16:09 |
Razique | try to ping an outside ip from the node | 16:09 |
tyska | Razique: yeah, but is not =( | 16:09 |
Razique | livemoon: yah I was about to leave for a few minutes, need to run some errands | 16:09 |
tyska | Razique: does not work | 16:09 |
Razique | tyska: mmmm | 16:09 |
Razique | does the name resolution work ? | 16:09 |
Ryan_Lane | smoser: one last question. is the loader the only important thing here? or do I also need to use the kernel that's included? | 16:10 |
tyska | Razique: im using ping to 8.8.8.8 then name is not important now | 16:10 |
livemoon | Razique: are you free? I meet a problem | 16:10 |
*** pradeep has left #openstack | 16:10 | |
Razique | tyska: does tcp work ? | 16:10 |
smoser | Ryan_Lane, its a kernel and a ramdisk. | 16:10 |
Razique | try to telnet an IP | 16:10 |
troya | Ryan_lane: so, every i running instances without configure nova-volume, it will reduce space HD of node-controller ? | 16:10 |
Ryan_Lane | ah. right. they are linked :) | 16:10 |
Razique | I say this cuz I had a similar issue | 16:10 |
smoser | so you need both. kernel must match ramdisk (it has modules) | 16:10 |
Razique | icmp issue | 16:10 |
* Ryan_Lane nods | 16:10 | |
*** mrjazzcat has left #openstack | 16:11 | |
livemoon | Razique: using nova add-floating-ip . it cannot at work | 16:11 |
Ryan_Lane | troya: depends on how you have things configured. nova-volume may also be hitting the disks of the compute node | 16:11 |
*** crussell has quit IRC | 16:11 | |
Razique | check nova-api.log and nova-network.log | 16:11 |
Ryan_Lane | troya: but why would it matter if the disks were hit on the compute node? they aren't doing anything else | 16:11 |
tyska | tcp/ip does not work too | 16:12 |
*** maplebed has joined #openstack | 16:12 | |
livemoon | Does anyone can use "nova add-floating-ip" | 16:12 |
tyska | Razique: the compute node machine still does not have the openstack packages =) | 16:12 |
Ryan_Lane | oh. you said space, not speed | 16:12 |
*** llang629 has joined #openstack | 16:13 | |
Ryan_Lane | troya: yes, it will reduce the space of the compute node | 16:13 |
tyska | Razique: i need Internet to install the packages =) | 16:13 |
Razique | tyska: ok | 16:13 |
Razique | ahah | 16:13 |
livemoon | Razique:I cannot associate floating ip using novaclient | 16:13 |
Razique | mmm so you ping the gateway but u can't reach the outside | 16:13 |
Razique | seems like firewall issue maybe ? | 16:13 |
tyska | Razique: yeah | 16:13 |
*** llang629 has left #openstack | 16:13 | |
tyska | Razique: i think could be it, but i dont understand well the iptables rules | 16:13 |
tyska | Razique: not with that much chain | 16:14 |
tyska | Razique: i will put a log in forward to see what i can find | 16:14 |
*** lborda has joined #openstack | 16:14 | |
Razique | tyska: you can run iptables-save > iptable.rules | 16:14 |
Razique | for a clean view | 16:14 |
livemoon | Razique:? | 16:15 |
*** mjfork has quit IRC | 16:15 | |
*** justinlw has joined #openstack | 16:15 | |
tyska | Razique: the good new is the packets are arriving in the gateway | 16:16 |
tyska | Razique: IN=eth1 OUT=eth0 SRC=192.168.1.1 DST=8.8.8.8 LEN=84 TOS=0x00 PREC=0x00 TTL=63 ID=0 DF PROTO=ICMP TYPE=8 CODE=0 ID=9733 SEQ=1 | 16:16 |
Razique | livemoon: was talking to tyska :p | 16:17 |
*** slyphon has joined #openstack | 16:17 | |
Razique | livemoon: check nova-api.log and nova-network.log | 16:17 |
*** mattray has joined #openstack | 16:18 | |
Razique | is it a Linux gateway ? | 16:18 |
tyska | Razique: the gateway is the server1 | 16:19 |
Razique | ah… mmm why is that ? | 16:19 |
Oneiroi | I sense a need for `echo 1 > /proc/sys/net/ip_forward` | 16:20 |
tyska | Razique: server1 have 2 nics, 1 in the public IP (internet connectivity) and other connected directly in the compute node with a cross-over cable | 16:20 |
*** doorlock has quit IRC | 16:20 | |
tyska | Razique: later i will reorganize the network topology, but now i have this limitation | 16:20 |
*** mjfork has joined #openstack | 16:21 | |
dillon-w | hi, can anyone shed some light on how to use euca2ools/novaclient with keystone? | 16:21 |
Razique | Oneiroi: hehe | 16:21 |
Oneiroi | tyska: what does cat /proc/sys/net/ip_forward give? | 16:21 |
Razique | sorry guys but I need to leave =D | 16:21 |
Razique | be right back | 16:21 |
Oneiroi | Razique: ciao | 16:21 |
tyska | Oneiroi: you mean cat /proc/sys/net/ipv4/ip_forward ? It's 1 | 16:22 |
tyska | Razique: ok, tks | 16:22 |
*** livemoon has quit IRC | 16:23 | |
Oneiroi | tyska: varies system to system but yeh, also BAH that would of been awesome if it were 0, instant fix! | 16:23 |
*** mjfork has quit IRC | 16:23 | |
tyska | Oneiroi: yeah i know, it is the first thing that i do thinking it is instantly solved | 16:23 |
tyska | Oneiroi: but not =( im still fighting with this | 16:23 |
*** mjfork has joined #openstack | 16:23 | |
Oneiroi | so packet flow: client --> gateway | 16:24 |
Oneiroi | but it's not getting beyond that point? | 16:24 |
Oneiroi | essentially need to know if it's the outbound journey broken, the return packet journey brokwn, or both | 16:24 |
*** foexle has quit IRC | 16:25 | |
*** imsplitbit has quit IRC | 16:26 | |
*** wilmoore has joined #openstack | 16:26 | |
uvirtbot | New bug: #879526 in nova "Instance fails to aloocate the correct IP address after receiving two" [Undecided,New] https://launchpad.net/bugs/879526 | 16:26 |
*** lborda has quit IRC | 16:28 | |
tyska | Oneiroi: the packet goes to the gateway | 16:29 |
*** livemoon has joined #openstack | 16:29 | |
*** ziyadb has quit IRC | 16:30 | |
*** Oneiroi has quit IRC | 16:30 | |
livemoon | I solved it .thanks Razique | 16:30 |
*** katkee has quit IRC | 16:31 | |
*** vernhart has joined #openstack | 16:31 | |
*** HowardRoark has quit IRC | 16:32 | |
*** joesavak has joined #openstack | 16:33 | |
*** jsavak has quit IRC | 16:33 | |
*** javiF has quit IRC | 16:34 | |
*** joshua_d has joined #openstack | 16:35 | |
*** timr has quit IRC | 16:35 | |
tyska | guys im having a silly network problem, can anyone help me? | 16:36 |
*** livemoon has left #openstack | 16:37 | |
*** troya has quit IRC | 16:38 | |
*** lborda has joined #openstack | 16:38 | |
*** Pr0toc0l has joined #openstack | 16:40 | |
*** obino has joined #openstack | 16:40 | |
*** tacitone has left #openstack | 16:40 | |
*** jdurgin has joined #openstack | 16:41 | |
*** vidd-away is now known as vidd | 16:41 | |
vidd | tyska, what network issue you having? | 16:41 |
*** nerens has quit IRC | 16:42 | |
aliguori | hi | 16:42 |
*** mmetheny has joined #openstack | 16:42 | |
vidd | annegentle, are you here? | 16:42 |
*** alekibango has quit IRC | 16:42 | |
vidd | is there anyone here from the documentation team? | 16:43 |
*** misheska has joined #openstack | 16:43 | |
vidd | dillon-w, you still here? | 16:44 |
dillon-w | vidd : yeah | 16:45 |
tyska | vidd: 2 servers | 16:45 |
tyska | vidd: dual node configuration of open stack, 1 is compute node and the other is 'everything else' | 16:45 |
vidd | dillon-w, i wrote some documentation for setting up keystone properly that i want to submit to the documentation team | 16:46 |
tyska | vidd: the server1, the 'everything else' server, is already with the openstack packages installed and configured | 16:46 |
vidd | i think its exactly what you need | 16:46 |
vidd | http://pastebin.com/HWQWF2nz | 16:46 |
dillon-w | vidd : perfect. could you share it? | 16:46 |
tyska | vidd: this server has 2 nics, eth0 with 10.0.0.254 ip (internet conectivity) and eth1 with 192.168.1.254 | 16:46 |
*** joesavak has quit IRC | 16:46 | |
tyska | vidd: the eth1 iface is connected directly, through a cross-over cable, in the compute node, that have eth0 with the ip 192.168.1.1 | 16:47 |
*** mcclurmc has quit IRC | 16:47 | |
tyska | vidd: the server2 needs to use server1 as gateway to reach Internet | 16:47 |
tyska | vidd: but for some reason it is not working | 16:48 |
vidd | tyska, dont use a cross-over...put it throught the router | 16:48 |
tyska | vidd: i will change this later, but now i have this limitation | 16:48 |
*** ejat has quit IRC | 16:48 | |
tyska | vidd: the cross-over connection is working, the packages reach the gateway | 16:48 |
tyska | vidd: i can see them when i log the forward chain in the gateway | 16:49 |
dillon-w | vidd : the pastebin URL was some error output of 'nova'. were you meant to send a URL for your keystone document? | 16:50 |
vidd | http://pastebin.com/zB57rijU | 16:50 |
vidd | dillon-w, sorry | 16:50 |
vidd | im so used to the highlight -only copy of ssh =] | 16:51 |
dillon-w | vidd : thx! | 16:51 |
uvirtbot | New bug: #879533 in nova "nova-api's 300-multichoice link reads v1.1/v2.0" [Undecided,Invalid] https://launchpad.net/bugs/879533 | 16:51 |
tyska | vidd: solved it!!! =) | 16:52 |
vidd | tyska, let me make sure i understand your network config.... | 16:52 |
vidd | nvmd | 16:52 |
*** Oneiroi has joined #openstack | 16:52 | |
*** Oneiroi has quit IRC | 16:52 | |
*** Oneiroi has joined #openstack | 16:52 | |
*** robix has joined #openstack | 16:53 | |
vidd | dillon-w, just a caution...in the last step, im missing "add" in the example (its there in the FORMAT= line) | 16:53 |
tyska | vidd: it was missing a rule to do the masquerade in the packages coming from the subnet 192.168.1.0 | 16:53 |
tyska | vidd: i added it and now everything is working fine ;) | 16:53 |
dillon-w | vidd : ok. thx for the heads-up | 16:53 |
*** darraghb has quit IRC | 16:54 | |
*** ejat has joined #openstack | 16:54 | |
*** ejat has joined #openstack | 16:55 | |
*** Oneiroi has quit IRC | 16:56 | |
tyska | now im having problem to create floating ip with this command ---> sudo nova-manage floating create 10.0.0.254 10.0.0.224/27 | 16:57 |
*** troya has joined #openstack | 16:57 | |
*** jdg has joined #openstack | 16:58 | |
tyska | The error is: Possible wrong number of arguments supplied - Creates floating ips for zone by range | 16:58 |
tyska | anyone can help me? | 16:58 |
*** Oneiroi has joined #openstack | 16:58 | |
tyska | Oneiroi: solved the network problem ;) | 16:58 |
Oneiroi | awesome what was the issue? | 16:58 |
tyska | Oneiroi: a iptables rule was missing in POSTROUING chain | 16:58 |
Oneiroi | ah :D glad it's sorted :) | 16:58 |
tyska | but know i have another problem =) | 16:59 |
Oneiroi | lol | 16:59 |
Oneiroi | always the way | 16:59 |
tyska | hehehe | 16:59 |
tyska | always | 16:59 |
vidd | tyska, you have one ip and a range....pick one | 16:59 |
vidd | not both | 16:59 |
dillon-w | vidd : in your document, 3) seemed to use tenant description in step 2) instead of tenant name. is that so? | 16:59 |
Oneiroi | ping me if needed I'm going to at rolling epel packages for keystone and glance now | 17:00 |
vidd | dillon-w, your right... | 17:00 |
tyska | vidd: just with the range the command returned: Exception TypeError: "'Connection' object is not iterable" in <bound method TpooledConnectionPool.__del__ of <eventlet.db_pool.TpooledConnectionPool object at 0x3c15450>> ignored | 17:00 |
vidd | User_account_alpha is the proper one from my example | 17:01 |
vidd | tyska, then idk.... | 17:01 |
Razique | vidd: back | 17:01 |
dillon-w | vidd : and does service have to be added before adding endpoint templates? | 17:02 |
Razique | you can send me the doc if you want to | 17:02 |
tyska | vidd: what is idk? | 17:02 |
tyska | Razique: solved the problem with the network =) | 17:02 |
Razique | we will read it, and integrate it | 17:02 |
Razique | great | 17:02 |
Razique | what was it ? | 17:02 |
Razique | forwarding rule ? :p | 17:02 |
tyska | Razique: it was missing a iptables rule | 17:02 |
vidd | dillon-w, yes because the enpoint templet needs it | 17:02 |
*** obino has quit IRC | 17:03 | |
tyska | Razique: masquerade in the POSTROUTING chain | 17:03 |
*** obino has joined #openstack | 17:03 | |
Razique | mmmm not sure it's mandatory one but cool though :D | 17:03 |
tyska | Razique: but now im with a problem in the command -- sudo nova-manage floating create 10.0.0.0/27 | 17:03 |
Razique | ah yes it is actually :p | 17:03 |
Razique | output ? | 17:03 |
tyska | vidd: just with the range the command returned: Exception TypeError: "'Connection' object is not iterable" in <bound method TpooledConnectionPool.__del__ of <eventlet.db_pool.TpooledConnectionPool object at 0x3c15450>> ignored | 17:03 |
vidd | you can do service1 template1 endpoint1, then service2 template2 endoint2 | 17:03 |
tyska | i executed just sudo nova-manage floating create 10.0.0.224/27 | 17:04 |
vidd | tyska, idk...i use keystone and dash...not nova directly | 17:04 |
dillon-w | vidd: but in my previous tests, i add endpoint templates first, then add service. keystone-mange doesn't complain anything, just 'Successfully add blahblahblah...' | 17:04 |
*** lorin1 has quit IRC | 17:05 | |
vidd | dillon-w, yeah...it assigns it to service = 0 | 17:05 |
tyska | Razique: some clue? | 17:05 |
vidd | and then your credentials dont work | 17:05 |
dillon-w | vidd : does 'keystone-mange endpointTemplates list' work for you? here it doesn't. | 17:06 |
vidd | drop the "s" | 17:06 |
dillon-w | vidd : well, how can i undo/correct my mistakes? | 17:06 |
vidd | its "endpointTemplate" | 17:07 |
jeremydei | hi guys, I'm looking around for openstack-dashboard packages in the Ubuntu PPA. It appears they're not quite building yet (horizon). Is there an un-official ppa for this or is the best method to install from source for now? | 17:07 |
dillon-w | keystone-mange endpointTemplate list? 'endpointTemplate' is not a supported obj type. | 17:07 |
*** troya has quit IRC | 17:08 | |
vidd | sudo keystone-manage endpointTemplates list | 17:09 |
vidd | yes...its working for me | 17:09 |
dillon-w | vidd : hmm, maybe i should upgrade my keystone | 17:10 |
vidd | what database are you using? | 17:10 |
dillon-w | vidd : sqlite | 17:11 |
*** B-Wong has joined #openstack | 17:11 | |
*** ipl31 has quit IRC | 17:14 | |
*** TheOsprey has joined #openstack | 17:15 | |
*** egant has joined #openstack | 17:16 | |
*** adjohn has joined #openstack | 17:16 | |
dillon-w | vidd : can i have your email add? I have to leave now. but i have lots of keystone questions to ask. :) | 17:17 |
*** Razique has quit IRC | 17:17 | |
*** negronjl has quit IRC | 17:17 | |
vidd | may i pm you? | 17:18 |
vidd | dillon-w, may i pm you? | 17:19 |
dillon-w | vidd : sure. | 17:20 |
vidd | its RUDE to pm without permission =] | 17:20 |
tyska | guys im installing now the compute node and i having problem in sudo apt-get install -y nova-common python-nova nova-compute vlan | 17:21 |
tyska | the package nova-comman is not found | 17:21 |
tyska | and i already did the add-apt-repository | 17:21 |
dillon-w | vidd : it is? I don't know about this manner b4. well, i must have been rude several times already... | 17:21 |
vidd | did you apt-get update? | 17:21 |
vidd | dillon-w, ppl are rude all the time =] | 17:22 |
tyska | vidd: =) im a dumb! | 17:23 |
tyska | vidd: tks | 17:23 |
vidd | its the little things that get you all the time =] | 17:23 |
dillon-w | vidd : have you used command line tools such as 'euca2ools' or 'nova' with keystone? | 17:23 |
vidd | personally...no | 17:24 |
vidd | but others have | 17:24 |
tyska | vidd: then i do not need to the that command --- nova-manage floating create... ? | 17:24 |
tyska | vidd: can i do this later, with dashboard? | 17:25 |
vidd | tyska, i believe....i havent gotten dashboard up yet | 17:25 |
tyska | vidd: what do you use then? | 17:26 |
*** koolhead17 has joined #openstack | 17:26 | |
vidd | until i get my system together, i dont use anything | 17:26 |
*** lorin1 has joined #openstack | 17:27 | |
*** patelna has quit IRC | 17:27 | |
vidd | tyska, i would use the nova-manage commands for now | 17:27 |
*** wilmoore has quit IRC | 17:28 | |
dillon-w | vidd : thx for ur help. really appreciate that. have to go. see u. | 17:28 |
tyska | vidd: but im with problem to create the floating range with nova-manage =( | 17:29 |
*** katkee has joined #openstack | 17:31 | |
*** dillon-w has quit IRC | 17:31 | |
*** koolhead17 has quit IRC | 17:35 | |
*** dnjaramba has joined #openstack | 17:37 | |
tyska | im now having problem to use sudo euca-describe-availability-zones verbose, EC2_ACCESS_KEY environment variable must be set, but it is set, echo $.... returns "novaadmin:proj" | 17:38 |
tyska | what's the problem them? | 17:38 |
*** gohko_na_ has joined #openstack | 17:38 | |
vidd | tyska, did you create your novarc? | 17:39 |
*** gohko_nao has quit IRC | 17:39 | |
tyska | vidd: yeah | 17:39 |
tyska | and did source novarc | 17:39 |
vidd | read your novarc and make sure it has EC2 credentials as well as nova credentils | 17:40 |
vidd | then resource it | 17:40 |
vidd | then re source it | 17:40 |
tyska | here is the novarc content http://pastebin.com/7rk982sr | 17:40 |
tyska | it is right? | 17:40 |
vidd | looks right | 17:41 |
tyska | the command nova-manage service list looks fine http://pastebin.com/t8kh16eg | 17:42 |
tyska | but i wanna use euca2ools too | 17:42 |
vidd | this is the second machine....right? | 17:42 |
vidd | tyska, is this the first machine or the second? | 17:44 |
tyska | first | 17:44 |
tyska | second is just the compute-node | 17:44 |
*** FabriceB has quit IRC | 17:45 | |
vidd | in the directory with your novarc, do you have pk.pem, cer.pem, and cacert.pem? | 17:45 |
vidd | *cert.mem | 17:46 |
vidd | cert.pem | 17:46 |
vidd | tyska, in the directory with your novarc, do you have pk.pem, cert.pem, and cacert.pem? | 17:46 |
tyska | vidd: yes | 17:47 |
tyska | vidd: have all this .pem files | 17:48 |
btorch | it would be nice if keystone project actually provided the versions of the requirements it needs or at least update the pip-require | 17:48 |
vidd | your EC@ access key doesnt look right | 17:49 |
vidd | how did you make it? | 17:49 |
*** tillmo has quit IRC | 17:50 | |
*** misheska has quit IRC | 17:50 | |
vidd | btorch, whouldnt it though | 17:51 |
*** tyska_ has joined #openstack | 17:51 | |
tyska_ | vidd: i know, ec2 key does not look right, but i dont modified it | 17:51 |
vidd | tyska_ did you create them or copy them? | 17:52 |
tyska_ | create using the following command | 17:52 |
tyska_ | sudo nova-manage project zipfile proj novaadmin /home/localadmin/creds/novacreds.zip | 17:52 |
zykes- | when you use nova with keystone do you do the create project part as well ? | 17:52 |
tyska_ | (quick question: what package i need to use easy_install command???) | 17:52 |
vidd | tyska_ its part of apt-get i believe | 17:53 |
tyska_ | vidd: no, im getting easy_install not found =( | 17:53 |
vidd | its in the python tools package | 17:54 |
vidd | the first thing openstack docs tell you to install | 17:54 |
tyska_ | vidd: what is the name of package? | 17:54 |
tyska_ | vidd: just python? | 17:54 |
tyska_ | vidd: already installed that | 17:55 |
*** tyska has quit IRC | 17:55 | |
vidd | sudo apt-get install python-software-properties | 17:55 |
tyska_ | sudo apt-get install python-software-properties | 17:55 |
tyska_ | =) | 17:55 |
vidd | sudo apt-get install -y python-greenlet python-mysqldb | 17:55 |
tyska_ | already installed too | 17:56 |
vidd | tyska_, dunno then...i know i got it somehow =\ | 17:57 |
vidd | but to your network create: | 17:57 |
vidd | nova-manage network create novanet 192.168.0.0/24 1 256 | 17:57 |
Pr0toc0l | python-setuptools: /usr/bin/easy_install | 17:57 |
vidd | that is the example given | 17:57 |
tyska_ | vidd: solved. sudo apt-get install python-setuptools | 17:58 |
tyska_ | Pr0toc0l: thanks | 17:58 |
Pr0toc0l | np | 17:58 |
tyska_ | im having just with that trouble with nova-manage floating create 10.0.0.224/27 =S | 17:59 |
tyska_ | and with the EC2 key problem too | 17:59 |
vidd | tyska_, so change the 12.168.0.0/24 with the ip range your going to use | 17:59 |
vidd | no...thats the fixed | 17:59 |
tyska_ | vidd: but this floating ip are the public ip of the instances right? | 17:59 |
vidd | yes | 18:00 |
tyska_ | then the range needs to be in the subnet 10.0.0... | 18:00 |
vidd | yes | 18:00 |
vidd | i think someone that has actually gotten nova instances to load should help you with this | 18:02 |
tyska_ | ok, the problem now is here - sudo bzr branch lp:openstack-dashboard -r 46 /opt/osdb | 18:03 |
tyska_ | did you already installed dashboard? | 18:03 |
vidd | its installed but not working | 18:04 |
vidd | i cant find where to set the keystone token | 18:04 |
*** tillmo has joined #openstack | 18:06 | |
uvirtbot | New bug: #879582 in nova "Request id doesn't appear in logs" [Undecided,New] https://launchpad.net/bugs/879582 | 18:06 |
tyska_ | vidd: and did you used this command? sudo bzr branch lp:openstack-dashboard -r 46 /opt/osdb | 18:08 |
vidd | no | 18:09 |
*** koolhead17 has joined #openstack | 18:09 | |
tillmo | I have a question: how do I register a bootable image? I tried euca-bundle-image, then euca-upload-bundle, then euca-register, but my launched VMs fail to boot | 18:10 |
vidd | i got it from github | 18:10 |
*** TreeStump has quit IRC | 18:10 | |
*** TreeStump has joined #openstack | 18:11 | |
tyska_ | guys anyone knows something about the no supported scheme error from bzr | 18:14 |
*** lborda has quit IRC | 18:14 | |
tyska_ | following this guide to install dashboard http://docs.openstack.org/cactus/openstack-compute/admin/content/installing-openstack-dashboard.html | 18:14 |
tyska_ | im having the same problem of Rubens Pinheiro | 18:14 |
tyska_ | the guy on the comments | 18:15 |
vidd | that doc is out of date | 18:16 |
vidd | that is for cactus, you are using diablo | 18:16 |
tyska_ | hmm | 18:16 |
tyska_ | where i found the right guide? | 18:16 |
tyska_ | find* | 18:16 |
vidd | chapter 9 of the nova guide i told you about yesterday | 18:17 |
vidd | http://docs.openstack.org/diablo/openstack-compute/admin | 18:17 |
zykes- | Oneiroi: around ? | 18:19 |
Oneiroi | zykes-: indeed | 18:19 |
Oneiroi | infact just working on el6 glance right now | 18:19 |
tyska_ | from what package i get git? | 18:20 |
Oneiroi | zykes-: nova, done :) http://koji.fedoraproject.org/koji/buildinfo?buildID=269933 | 18:20 |
*** mattray has quit IRC | 18:20 | |
zykes- | oh | 18:21 |
zykes- | ;) | 18:21 |
zykes- | tyska_: apt-get install git-core or yum install git | 18:21 |
tyska_ | zykes-: tks | 18:22 |
*** cp16net has joined #openstack | 18:22 | |
Oneiroi | zykes-: if you get the chance to test the rpm's please let me know if anything is screwy :) | 18:22 |
Oneiroi | ok ... with any luck this build will go through for glance now I've worked out the kinks | 18:26 |
Oneiroi | nope >< | 18:27 |
tyska_ | vidd: fatal: https://github.com/4P/openstack-dashboard/info/refs not found: did you run git update-server-info on the server? | 18:28 |
tyska_ | vidd: when i tried to do the git clone | 18:28 |
*** jsavak has joined #openstack | 18:29 | |
vidd | tyska_, git://github.com/4P/horizon.git | 18:29 |
zykes- | Oneiroi: which kinks ? | 18:29 |
tyska_ | vidd: yeah, the repository has changed: https://github.com/openstack/openstack-dashboard.git | 18:30 |
B-Wong | Hi, I just finish setting up a instance, but the problem is it has no IP assigned to it. So I follow these instructructions to configure flat network http://docs.openstack.org/cactus/openstack-compute/admin/content/configuring-flat-networking.html | 18:30 |
*** datajerk has quit IRC | 18:30 | |
Oneiroi | zykes- well so far, nova needed to fix a sphinx dependency, glance mock just doesn't like it and seems to be doing weird things: http://koji.fedoraproject.org/koji/getfile?taskID=3450114&name=root.log | 18:30 |
B-Wong | this is my setup http://pastebin.com/nRuZSAi4 | 18:30 |
*** lborda has joined #openstack | 18:30 | |
B-Wong | but its not working and I don't know why. =/ | 18:30 |
*** datajerk has joined #openstack | 18:31 | |
tyska_ | ok, now how to install keystone-manage? | 18:31 |
Oneiroi | tyska_: install keystone | 18:32 |
Oneiroi | it comes with | 18:32 |
Oneiroi | :) | 18:32 |
tyska_ | sudo apt-get install keystone??? | 18:32 |
B-Wong | these are the files I modified. | 18:32 |
B-Wong | http://pastebin.com/pUzdRDW7 | 18:32 |
tyska_ | did not found the package | 18:32 |
tyska_ | do not* | 18:32 |
vidd | tyska_, i wrote documentation it | 18:32 |
vidd | http://pastebin.com/zB57rijU | 18:33 |
*** martine has joined #openstack | 18:33 | |
zykes- | funkly Oneiroi | 18:33 |
Oneiroi | indeedy | 18:33 |
Oneiroi | I shall make it work >) | 18:33 |
Oneiroi | I am determined | 18:34 |
tyska_ | vidd: my problem is: keystone-manage not found =) | 18:34 |
vidd | did you install keystone? | 18:34 |
tyska_ | vidd: sudo apt-get install keystone does not work | 18:34 |
vidd | i know this | 18:34 |
vidd | you git keystaone, just like you git dashboard | 18:35 |
*** doorlock has joined #openstack | 18:35 | |
*** hugokuo has joined #openstack | 18:35 | |
vidd | just make sure you do all the configuring of keyston in the /etc directory so it plays nice with the ubuntu installed keystone | 18:36 |
*** adjohn has quit IRC | 18:36 | |
vidd | /etc/keystone....where ubuntu put it | 18:37 |
*** HowardRoark has joined #openstack | 18:37 | |
vidd | and do sudo -s so everything is done as root | 18:37 |
vidd | anyone here from the documentation team? | 18:37 |
vidd | anyone know how i can submit my how-to to the documentation team for review? | 18:38 |
tyska_ | vidd: where i find a guide to install keystone? | 18:38 |
vidd | tyska_, your KILLING me | 18:39 |
*** doorlock has quit IRC | 18:39 | |
vidd | http://docs.openstack.org/diablo/openstack-identity/admin | 18:39 |
tyska_ | vidd: ok ok, im sry, im just desperate to see this working, i will take a break. tks for the help | 18:40 |
vidd | tyska_, docs on openstack follow this standard format: docs.openstack.org/[release-name]/openstack-[project]/admin | 18:41 |
vidd | all of them | 18:41 |
vidd | tyska_, you are working with dioblo release so release-name=diablo ; your working now with keysone (project=identity) | 18:43 |
vidd | tyska_, so docs are at http://docs.openstack.org/diablo/openstack-identity/admin | 18:43 |
vidd | when you start hitting up glance they will be http://docs.openstack.org/diablo/openstack-image-service/admin (glance=image-service) | 18:45 |
jeh | vidd: have you been able to get glance to authenticate with keystone using the OS_AUTH_ env variables? I've only been able to get it working with -A, --auth_token | 18:47 |
vidd | jeh, have you added your OS_AUTH credentials to keystone? | 18:48 |
jeh | vidd: yes, it works correctly for curl tests | 18:48 |
vidd | jeh, how did you add your os-auth credentials? | 18:49 |
jeh | vidd: my instance isn't up at the moment, I was just curious if you're able to do a glance index without using the token parameter | 18:49 |
B-Wong | anyone using Openstack for CentOS? | 18:49 |
vidd | did you use the "keystone-manage credentials add" | 18:49 |
*** mark- has joined #openstack | 18:50 | |
jeh | vidd: no I don't believe I did that | 18:50 |
vidd | then keystone is not configured to supply other apps with the os-auth info | 18:50 |
* jeh is reading Vidd's documentation | 18:50 | |
*** TreeStump has quit IRC | 18:50 | |
jeh | vidd: I think that's the step I missed, thanks | 18:51 |
vidd | there are alot of steps to get those creds added =] | 18:52 |
jeh | vidd: don't you need to use %tenant_id% in the endpointTemplate add glance command? | 18:56 |
vidd | dunno probable | 18:57 |
vidd | my glance isnt working right yet | 18:58 |
Oneiroi | zykes-: http://koji.fedoraproject.org/koji/buildinfo?buildID=269961 it's building :D | 18:58 |
vidd | jeh, go ahead and add it | 18:58 |
jeh | I'm by no means a keystone expert, but your docs look good except for step 7 | 18:58 |
vidd | I do not know what the proper URLs are | 18:59 |
jeh | I'm using that on mine, per http://docs.openstack.org/diablo/openstack-identity/admin/content/creating-tenants-users-roles-tokens-and-endpoints.html | 18:59 |
vidd | i will ahve to make som update =\ | 19:00 |
*** adjohn has joined #openstack | 19:01 | |
vidd | i was up for 36 hours after only 4 hours of sleep when I documented it =] | 19:01 |
*** hugokuo has quit IRC | 19:02 | |
vidd | its one of the reasons i need someone from the documentation team to look it over | 19:02 |
annegentle | vidd: happy to take a look | 19:02 |
vidd | annegentle, http://pastebin.com/zB57rijU | 19:03 |
vidd | step 7 im shakey on | 19:03 |
annegentle | vidd: reading... | 19:03 |
*** tillmo has quit IRC | 19:05 | |
*** HowardRoark has quit IRC | 19:05 | |
gnu111 | B-Wong: I have RHEL. what's going on with your setup? | 19:07 |
B-Wong | well, I am trying to run a test instance | 19:07 |
annegentle | vidd: so by doing keystone-manage credentials nova are you adding EC2 creds so euca- commands work? | 19:07 |
B-Wong | but the problem is it is not assigning an IP to it | 19:07 |
*** dublon has joined #openstack | 19:08 | |
B-Wong | so Im configuring with the Flat Networking instructions | 19:08 |
vidd | there is an "add" after credentials | 19:08 |
B-Wong | http://docs.openstack.org/cactus/openstack-compute/admin/content/configuring-flat-networking.html | 19:08 |
annegentle | vidd: and you're right, afaik delete/disable/revoke doesn't work | 19:08 |
B-Wong | http://pastebin.com/nRuZSAi4 | 19:08 |
vidd | i do beleive so | 19:08 |
zykes- | hmm | 19:08 |
B-Wong | http://pastebin.com/pUzdRDW7 | 19:08 |
annegentle | vidd: ok | 19:08 |
B-Wong | thats my set up, and those are the two files I modified. | 19:08 |
zykes- | anyone gotten euca thing to work with nova + keystone ? | 19:08 |
vidd | does nova have more then one set of creds? | 19:08 |
*** TheOsprey has quit IRC | 19:08 | |
B-Wong | since the instructions are in ubuntu, i had to adjust. | 19:08 |
gnu111 | B-Wong: I didn't edit/add the ifcfg-br100 files. I think the bridge creation is taken care by nova-network. | 19:09 |
*** jdag has quit IRC | 19:09 | |
gnu111 | B-Wong: you have one NIC right? hmmm... | 19:09 |
annegentle | so if you want to modify docs.openstack.org, git clone https://github.com/openstack/openstack-manuals.git and work on the files in doc/src/docbkx/openstack-identity-service-starter | 19:09 |
*** tillmo has joined #openstack | 19:09 | |
annegentle | vidd: it's in Docbook but easy as HTML to edit | 19:09 |
*** MarkAtwood has quit IRC | 19:10 | |
B-Wong | yeah this OS is running on a VM in a server. | 19:10 |
annegentle | vidd: and follow the instructions in http://wiki.openstack.org/Documentation/HowTo for submitting your edits (same as the Gerrit workflow) | 19:10 |
B-Wong | this is my instance: http://pastebin.com/WUBrNTRE | 19:11 |
*** jdag has joined #openstack | 19:11 | |
vidd | annegentle, i would rather someone who knows this stuff better make the adds =] | 19:11 |
vidd | im not sure the urls are correct in step 7 for example | 19:12 |
gnu111 | B-Wong: ya. networking is not working. what you have for --flat_interface=? | 19:12 |
B-Wong | in nova.conf? | 19:13 |
gnu111 | yes. | 19:13 |
*** mdomsch has joined #openstack | 19:13 | |
annegentle | vidd: I'm pretty sure I can get it in there, also want to verify the URLs but I think you're real close. | 19:13 |
B-Wong | --network_manager=nova.network.manager.FlatManager | 19:13 |
B-Wong | i dont have --flat_interface | 19:13 |
B-Wong | 1 sec i post my nova | 19:14 |
*** ipl31 has joined #openstack | 19:14 | |
B-Wong | http://pastebin.com/qz98DayH | 19:15 |
vidd | annegentle, besides...if i dont get my Proof-of_Concept project done, i'll never get back to work =] | 19:15 |
*** HowardRoark has joined #openstack | 19:17 | |
gnu111 | B-Wong: I have FlatDHCP setup with no ifcfg-br100 file and bo BRIDGE option in ifcfg-eth0. also I have --flat_interface=eth0. | 19:17 |
B-Wong | hmm ok... | 19:18 |
annegentle | vidd: yes I know what you mean :) | 19:18 |
B-Wong | so should I revert back to my original eth0 config and add a bo BRIDGE? | 19:18 |
annegentle | vidd: so one thing to double-check is this: https://github.com/cloudbuilders/devstack/blob/master/files/keystone_data.sh | 19:18 |
annegentle | and compare your URLs to those | 19:19 |
gnu111 | B-Wong: ya, try that. and see if that helps. you also did nova-manange network create right? | 19:19 |
B-Wong | actually I have not done that yet. I was wondering about that. | 19:19 |
B-Wong | didn't see it in the instructions. | 19:20 |
B-Wong | ls | 19:20 |
B-Wong | oops | 19:20 |
gnu111 | B-Wong: I think you will need that as well. | 19:21 |
zykes- | why is there 2 admins in that example ? | 19:21 |
B-Wong | gnu111 how do I add a bo BRIDGE option? | 19:22 |
*** jakedahn has joined #openstack | 19:23 | |
gnu111 | B-Wong: the br100 will get created automatically when a new instance starts. do you see a bridge if you do ifconfig? | 19:23 |
*** dublon has quit IRC | 19:24 | |
B-Wong | well I reverted back to my old eth0 configurations | 19:25 |
B-Wong | i havent restarted yet. but I do not see br100 on my new instance | 19:25 |
*** PotHix has quit IRC | 19:26 | |
gnu111 | B-Wong: did you create nova-manage network create <CIDR>? and restart the services? | 19:29 |
*** wilmoore has joined #openstack | 19:29 | |
B-Wong | not yet, creating it now | 19:30 |
B-Wong | would you mind showing me how yours look like? | 19:30 |
B-Wong | and your ifcfg-eth0? | 19:30 |
uvirtbot | New bug: #879626 in horizon "Delete tenant non-functional" [Undecided,New] https://launchpad.net/bugs/879626 | 19:31 |
*** johnmark is now known as jmw-vm-guest | 19:31 | |
*** nerdstein has joined #openstack | 19:32 | |
gnu111 | B-Wong: here it is http://paste.openstack.org/show/2820/ I am using FlatDHCP but have two NICs, one public and one private. I haven't tested with one NIC. | 19:35 |
*** jmw-vm-guest is now known as johnmark | 19:39 | |
*** tyska_ has quit IRC | 19:39 | |
*** maoy has joined #openstack | 19:40 | |
*** dgags has quit IRC | 19:43 | |
*** maoy has quit IRC | 19:43 | |
*** wilmoore has quit IRC | 19:52 | |
uvirtbot | New bug: #879633 in horizon "User name not returned for editing" [Undecided,New] https://launchpad.net/bugs/879633 | 19:53 |
uvirtbot | New bug: #879641 in horizon "Tenant name editing doesn't stick" [Undecided,New] https://launchpad.net/bugs/879641 | 19:56 |
*** wilmoore has joined #openstack | 19:57 | |
*** B-Wong has quit IRC | 20:04 | |
*** nerdstein has left #openstack | 20:05 | |
*** xmltok has joined #openstack | 20:05 | |
*** vernhart has quit IRC | 20:05 | |
*** B-Wong has joined #openstack | 20:09 | |
Pr0toc0l | hello...was wondering if someone can confirm something for me | 20:10 |
Pr0toc0l | to inject or customize a guest VM, ie. Ubuntu, cloud init must be installed correct? | 20:10 |
Pr0toc0l | i should say to customize during instance start | 20:11 |
*** lts has quit IRC | 20:11 | |
vidd | Pr0toc0l, i would install it anyway | 20:12 |
*** dragondm has quit IRC | 20:12 | |
btorch | anyone know if keysone supports ssl ? | 20:12 |
*** gnu111 has left #openstack | 20:12 | |
vidd | better to have it and not need it then to need it and not have it | 20:12 |
*** nhubbard is now known as nhubbard_away | 20:12 | |
Kiall | Pr0toc0l: there are other ways .. but .. its probably the easiest way, assuming ubuntu images | 20:12 |
Pr0toc0l | ok | 20:12 |
vidd | btorch, i believe it does | 20:12 |
vidd | btorch, what exactly are you trying to do with ssl and keystone? | 20:13 |
btorch | I just need it to be on 443 using ssl | 20:14 |
btorch | the sample config doesn't have any param for ssl ... I could always put pound in front of it for this quick test | 20:14 |
vidd | keystone isnt exposed outside the controller | 20:15 |
btorch | not using nova | 20:15 |
vidd | not usiojng anything | 20:15 |
btorch | swift+keystone test only | 20:15 |
vidd | its middleware | 20:15 |
vidd | to use keystone with swift, you need to add the endpoint for swift to it | 20:16 |
btorch | have you seen any ssl integration on keystone ? | 20:17 |
vidd | keystone is the man-in-the-middle | 20:17 |
vidd | like you use dashboard to do something.... | 20:18 |
Kiall | btorch: keystone depeds on libssl-dev... so .. it likely had support | 20:18 |
Kiall | and has piles of "<!-- We should use SSL in production -->" comments in the code | 20:18 |
Kiall | but, i have no idea if thats unrelated :) | 20:18 |
btorch | vidd: you need to auth against keystone first to get the token + storage URL, once you have that you hit swift and swift will then validate the token by contacting keystone | 20:18 |
vidd | i think its all in the endoints you load into your keystone database | 20:19 |
btorch | Kiall: cool, guess I got find out what parameraters I need to add to the keystone.conf | 20:19 |
vidd | btorch, ive only been working with keystone+nova+glance | 20:20 |
Kiall | as i said, it could be unrelated! | 20:20 |
*** katkee has quit IRC | 20:20 | |
*** jsavak has quit IRC | 20:20 | |
Kiall | vidd: irregardless of if keystone is an internal only service, the network may be unsecure, and SSL might be required due to that.. | 20:21 |
Kiall | (by "network may be unsecure" i mean, might have people who you dont want seeing your passwords on it) | 20:21 |
vidd | if im reading http://docs.openstack.org/incubation/identity-dev-guide/identity-dev-guide.pdf correctly, if you set your swift endpoint in keystone to the ssl then it "should" be sent securely | 20:25 |
annegentle | vidd: those are outdated, not sure if that's a good promise :) | 20:26 |
*** adrian17od has joined #openstack | 20:28 | |
btorch | vidd: you are talking about something very different | 20:28 |
vidd | Kiall, try setting your swift endpoints in keystone with https instead of http | 20:28 |
Kiall | you mean btorch :) | 20:28 |
vidd | yeah....sorry | 20:29 |
btorch | I've setup keystone before when it was in its early stages, but just looking in trying it out again but this time having keystone with ssl :) | 20:29 |
btorch | before was all non-ssl | 20:29 |
btorch | I just added pound infront of it if I'm not mistaken | 20:30 |
vidd | btorch, what database scheme you using? | 20:30 |
zykes- | http://paste.openstack.org/show/2822/ < anyone seen that with nova + keystone ? | 20:32 |
Kiall | zykes-: looks like nova-api is not running .. | 20:33 |
vidd | zykes-, there is a bad auth token | 20:33 |
Kiall | or keystone .. hard to tell without context ;) | 20:34 |
Kiall | its an ECONNREFUSED (ie Connection Refused) | 20:34 |
vidd | zykes-, i meant "is there" not there is" | 20:34 |
zykes- | it's so fun that it doesn't give details on to what it's connection refused... | 20:34 |
Kiall | there are only a few services to check ;) | 20:35 |
*** localhost has quit IRC | 20:37 | |
*** adrian17od has quit IRC | 20:37 | |
*** sdake has quit IRC | 20:37 | |
vidd | has anyone gotten dashboard to load from the ubuntu 11.10 repo? | 20:38 |
*** krow has joined #openstack | 20:38 | |
*** krow_ has joined #openstack | 20:38 | |
Kiall | vidd: no, it doesnt work | 20:38 |
*** vernhart has joined #openstack | 20:38 | |
Kiall | I've nearly got updated packages for everything though :) | 20:38 |
Kiall | Just dashboard left to do | 20:38 |
vidd | Kiall, cant wait =] | 20:39 |
Kiall | The guts of the packages are up at https://launchpad.net/~managedit/+archive/openstack | 20:39 |
Kiall | BUT .. the PPA build queue is like 10 houts | 20:39 |
Kiall | hours* | 20:39 |
Kiall | so .. it'll be a while before they can be used ;) | 20:39 |
vidd | Kiall, are your packages being considered for inclusion ? | 20:40 |
Kiall | No - Ubuntu may or may not update them (and from what I'm hearing, they are not planning on fixing em) | 20:40 |
*** paltman has quit IRC | 20:41 | |
Kiall | (hence me going to the effort of packaging everything up!) | 20:41 |
vidd | i have some friends over there | 20:41 |
*** paltman has joined #openstack | 20:41 | |
vidd | dunno why they dont want to kix the stuff | 20:41 |
Kiall | 99% of mine are the ubuntu packages, literally! So the re-builds have been easy enough .. | 20:41 |
*** paltman has joined #openstack | 20:41 | |
*** MarcMorata has quit IRC | 20:41 | |
Kiall | but the dash package was pretty broken, so that will probably take a tad longer ;) | 20:42 |
vidd | bocken? its like a plane crash on a mountain | 20:42 |
nhm | so what's the current status of lunr? | 20:43 |
vidd | *broken | 20:43 |
Kiall | and woosh .. there goes openstackx packages into the PPA.. Pretty sure its just dash now :) | 20:43 |
vidd | im trying to hack together the git and the package | 20:43 |
*** bengrue has joined #openstack | 20:44 | |
Kiall | vidd: i gave up on that .. | 20:44 |
Kiall | And i *hate* installing straight from git .. | 20:44 |
vidd | as do I ...it strews stuff all over the palce and you have to hunt for hours to find the files you need to change | 20:44 |
Kiall | And i also *hate* the likes of pip/rubygems/"python setup.py" since it litters your FS with files that cant be easily removed | 20:45 |
vidd | reminds me of a particular OS | 20:45 |
zykes- | keystone_ec2_url is probably worth mentioning | 20:45 |
*** ahasenack has quit IRC | 20:46 | |
vidd | zykes-, what do you mean? | 20:46 |
zykes- | that's the url it fails to connect to.. cause i didn't have it in nova.conf | 20:46 |
vidd | clayg, did you need something? i dont like to be PM'ed | 20:47 |
clayg | rly? | 20:47 |
vidd | yes...really...PMing without permission is rude | 20:48 |
clayg | :D | 20:48 |
clayg | my bad... myself and a couple other guys sittin over here at the castle were trying to figure out if we knew who you were | 20:49 |
btorch | lol | 20:49 |
clayg | I thought I'd ask | 20:49 |
clayg | hey vidd, are you a racker - do you work out of san antone? | 20:49 |
vidd | no....im just a general slug tryng to build a proof-of-concept | 20:50 |
clayg | right on - not sure where we got that wrong idea | 20:50 |
clayg | sorry for the rudness, ment no harm - best regards | 20:51 |
vidd | ive been helping out where i can (quite a bit acually) | 20:51 |
creiht | vidd: some were curious since you quoted some RS stuff a couple of times | 20:51 |
vidd | im a google ninja =] | 20:52 |
creiht | vidd: google on, my friend :) | 20:52 |
vidd | my goggle-fu is ledgendary | 20:52 |
vidd | (my spell, on the other hand leaves much to be desired) | 20:52 |
*** jeh has quit IRC | 20:53 | |
*** dragondm has joined #openstack | 20:53 | |
*** dragondm has quit IRC | 20:55 | |
*** doorlock has joined #openstack | 20:55 | |
*** dragondm has joined #openstack | 20:56 | |
*** katkee has joined #openstack | 20:56 | |
nhm | creiht: Heya, I've been reading up on lunr, vsa, nova-volumes, etc. I'm trying to figure out the right way going forward to enable on-demand block storage (hopefully with keystone authentication), but I'm still pretty confused. :) | 20:56 |
zykes- | nhm: is lunr even a project yet ? | 20:56 |
* creiht ques clayg | 20:57 | |
creiht | er cues | 20:57 |
nhm | zykes-: didn't find any code for it. | 20:57 |
*** magg has joined #openstack | 20:57 | |
*** xmltok has quit IRC | 20:57 | |
magg | vidd, you there? | 20:58 |
vidd | magg, yeah | 20:58 |
* creiht quotes clayg | 20:58 | |
creiht | lunr is the internal code name of a rackspace project - the rumors of it's involvement with openstack were greatly exaggerated | 20:58 |
creiht | :) | 20:58 |
magg | vidd: i still have problems with the dashboard, i installed apache2-mpm-prefork | 20:58 |
creiht | seriously though... we are still working on Lunr at rackspace | 20:59 |
clayg | creiht: thanks! | 20:59 |
magg | after log in i get segmentation fault (11) in the error.log | 20:59 |
creiht | clayg: sorry... couldn't wait any longer :) | 20:59 |
zykes- | creiht: will it be openstacked ? | 20:59 |
*** ziyadb has joined #openstack | 20:59 | |
vidd | magg, i've started to work on dashboard myself | 20:59 |
magg | vidd, great | 20:59 |
zykes- | vidd: do you have a working nova with keystone ? | 21:00 |
vidd | i havent even been able to get the first page up yet | 21:00 |
creiht | zykes-: we are still planning on open sourcing it | 21:00 |
nhm | creiht: how will it be different from the VSA project? | 21:00 |
creiht | Not sure it really belongs as an core openstack project | 21:00 |
vidd | zykes-, no...but i dont have a working nova without keystone =\ | 21:00 |
zykes- | creiht: what is lunr really ? | 21:00 |
creiht | the easiest answer is DAS as a service :) | 21:01 |
zykes- | hmm, iscsi stuff? | 21:01 |
creiht | cheap, scalable iscsi storage | 21:01 |
vidd | zykes-, i didnt want to build creds with nova manage if keystone was going to handle the dreds | 21:02 |
magg | vidd, i run it also with tools/with_venv.sh dashboard/manage.py runserver 0.0.0.0:8080 and i get the log i page. after i enter the user and pass the page goes blank | 21:02 |
creiht | with backups to swift | 21:02 |
vidd | but it looks like i have to make them anyway | 21:02 |
creiht | I haven't been on IRC/mailing lists much since I've been trying to stay focused on it | 21:02 |
clayg | nhm: vladimir3p would be the man to talk to about vsa - zadara has some interesting ideas for leverging nova to build a storage cluster... | 21:02 |
creiht | it also includes a nova volume driver that provides the integration in to Nova | 21:03 |
*** sdake has joined #openstack | 21:03 | |
vidd | magg, did you modify the local_settings before you ran the script to put in the auth key? | 21:04 |
nhm | clayg: storage is definitely the biggest hurdle for me to overcome right now. | 21:04 |
clayg | nhm: in what way? | 21:04 |
creiht | Our storage back end is much more no frills | 21:04 |
vidd | magg, also, there has been YET ANOTHER dashboard release | 21:04 |
clayg | most folks are just using local storage on compute for the vm images | 21:04 |
magg | vidd.. yeah | 21:04 |
magg | OPENSTACK_KEYSTONE_URL = "http://localhost:5000/v2.0/" OPENSTACK_KEYSTONE_ADMIN_URL = "http://localhost:5001/v2.0" | 21:05 |
magg | OPENSTACK_KEYSTONE_DEFAULT_ROLE = "Member" | 21:05 |
* vidd is going to the git page now | 21:05 | |
magg | do i download it again | 21:05 |
vidd | magg, did you set up a "member" tenant in your keystone? | 21:05 |
vidd | not tenant....role | 21:06 |
nhm | clayg: A lot of the applications we have here probably can't be made to work well with S3 like storage (though some of them can), so I'm trying to find a way to get large amounts of globally-accessable block storage to VMs. | 21:06 |
magg | vidd, nop | 21:06 |
uvirtbot | New bug: #879666 in nova "chown error for console.fifo when launching vm" [Undecided,New] https://launchpad.net/bugs/879666 | 21:06 |
zykes- | comstud: you know if there's plans for more advanced dns stuff ? | 21:06 |
magg | i only have Administrator | 21:06 |
clayg | nhm: you want to SHARE the storage between vm's? | 21:06 |
vidd | magg, dashboard is looking for someone with the role "member" | 21:06 |
nhm | clayg: And potentially between VMs and supercomputers. | 21:06 |
clayg | like nfs, cifs or something | 21:06 |
magg | vidd, can i change to Administrator. or do i need to create that role and grant it | 21:07 |
vidd | if your user is not assigned a "member" role, it cant accesss | 21:07 |
zykes- | creiht: how's lunr contra vsa ? | 21:07 |
vidd | i would create that role add then grant it | 21:07 |
clayg | vsa's are kind of a thing onto themselves | 21:07 |
magg | ook | 21:07 |
comstud | zykes-: more advanced DNS stuff where? | 21:08 |
clayg | nhm: well if you think about ec2/ebs - you'd basically have to get create a big volume, attach it to a vm and share it back out on a private net to the rest of the vms | 21:08 |
zykes- | comstud: aka dnsaas | 21:08 |
comstud | zykes-: I'm just not sure in what context you're asking | 21:09 |
*** lorin1 has quit IRC | 21:09 | |
comstud | openstack, rackspace, etc | 21:09 |
nhm | clayg: one use case that is really interesting to me is being able to use openstack images as remote workstations to do visualization of supercomputer analyses directly from a global filesystem. | 21:09 |
creiht | zykes-: as I understand it, the VSAs give you fine tuning like more traditional storage systems | 21:09 |
zykes- | comstud: for openstack yeah | 21:09 |
clayg | ^ with zadara custom kit | 21:09 |
uvirtbot | clayg: Error: "with" is not a valid command. | 21:10 |
zykes- | it's kind of one of the services that's missing | 21:10 |
comstud | zykes- Ah.. i haven't heard of anything, really, myself. | 21:10 |
creiht | You tell it, I want 5 volumes that are RAID with replication over to another volume, and dedupe enabled | 21:10 |
comstud | but | 21:10 |
creiht | or something like that | 21:10 |
comstud | I'm not sure what you mean by 'DNSaaS' | 21:10 |
comstud | DNS is already a service | 21:10 |
comstud | :) | 21:10 |
nhm | clayg: A lot of the visualization tools for some of these scientific applications are rediculously difficult to keep running on our clusters due to various software dependencies. Moving them openstack images could be a big win for us. | 21:10 |
clayg | lol @ comstud | 21:10 |
magg | vidd, didn't work | 21:10 |
zykes- | comstud: dns as a service like the RedDwarf project is a MySQL as a service.. | 21:10 |
zykes- | i mean that you can manage dns names | 21:11 |
magg | vidd, should i dl again dashboard | 21:11 |
vidd | magg, like i said...my dashboard work is | 21:11 |
clayg | yeah and the gfs bit, couldn't that just be a seperate cluster that the nova cluster has access to over network? | 21:11 |
vidd | 'in progress" | 21:11 |
magg | vidd hahaha | 21:11 |
vidd | all i can do is make suggestions at this point | 21:11 |
magg | can i do an update from git with git pull | 21:11 |
nhm | clayg: it could be, though it'd only really work for fully managed VM images and we'd have to assign them a different set of IP addresses. | 21:12 |
vidd | TBH im not sure...im sure you can | 21:12 |
zykes- | but gah, how can i get nova to use keystone :( | 21:12 |
*** jdg has quit IRC | 21:13 | |
vidd | just make sure you launch it for the new git | 21:13 |
comstud | zykes-: I've really not looked at Reddwarf... so I'm not sure how it is Openstack specific | 21:13 |
vidd | and edit your local_settings file | 21:13 |
magg | ok | 21:13 |
zykes- | comstud: allows to to launch a mysql db onto your project | 21:13 |
comstud | zykes-: But sure.. anyone could build out some sort of hosted DNS platform on top of OpenStack if they wanted... and create an API for it. :) | 21:13 |
comstud | But I know of no one working on that, really. | 21:14 |
*** heckj has joined #openstack | 21:14 | |
clayg | nhm: there's always multinic | 21:14 |
*** rnirmal has quit IRC | 21:14 | |
*** rbergeron has quit IRC | 21:14 | |
zykes- | i was wanting to maybe start @ comstud and integrate it with melange / quantum | 21:14 |
*** tillmo has quit IRC | 21:14 | |
clayg | comstud, zykes- : http://www.rackspace.com/cloud/cloud_hosting_products/dns/ | 21:15 |
Glacee | in swift.could you have a gre ipsec tunnel.. between 2 locations.. and having different zones in each location within the same cluster? | 21:15 |
*** rbergero1 has joined #openstack | 21:15 | |
zykes- | isn't that public dns only clayg ? | 21:15 |
clayg | Glacee: NASA did that once, 4 zones, 3 replicats, 2 regions - guarenteed geographic devirsity | 21:16 |
clayg | zykes-: no idea | 21:16 |
nhm | clayg: thinking much smaller, just having the ability to take a bunch of storage servers and easily mounting some disk on a single VM would be very useful. | 21:16 |
Glacee | cool clayg | 21:16 |
Glacee | within the same cluster right? | 21:16 |
nhm | clayg: which it kind of sounds like the VSA project is... | 21:16 |
creiht | Glacee: the major downside to that is that every request is going to be limited by the extra latency of that link | 21:17 |
*** wilmoore has quit IRC | 21:17 | |
*** rbergero1 is now known as rbergeron | 21:17 | |
comstud | clayg: Yeah, i'm aware Rackspace has a DNS hosting product... but I'm not aware of an Openstack project. | 21:17 |
*** rbergeron has quit IRC | 21:17 | |
*** rbergeron has joined #openstack | 21:17 | |
clayg | nhm: it would be nice if the vsa/zadara stuff had better docs... but I don't think it's a little more complicated than that... | 21:17 |
creiht | There was a lot of talk durring the summit of how we could better handle zones that have higher latencies | 21:18 |
clayg | either way, you can't currently run/test/use vsa w/o zadara kit | 21:18 |
*** HowardRoark has quit IRC | 21:18 | |
*** cp16net has quit IRC | 21:19 | |
nhm | clayg: ok, I'm not sure what zadara is yet. Looking it up now. | 21:19 |
clayg | comstud: _my_ bad - maybe it's in the same spot as LBAAS, trying to opensource... | 21:19 |
Glacee | got it creiht thanks | 21:20 |
Glacee | it would make sense if you have a very fast direct line between both sites | 21:20 |
creiht | Glacee: yes, and some are already doing that with some success | 21:21 |
*** robbiew has quit IRC | 21:21 | |
creiht | some of the proposed future enhancements for the ring and replication should make that work even better | 21:21 |
magg | is there a log for the dashboard where i can see errors or somerhing? | 21:21 |
Glacee | but if both of your sites are down | 21:21 |
magg | something*** | 21:21 |
Glacee | i mean.. one of your site is down | 21:21 |
Glacee | your screwed right.. it does not provide HA but... having a file in multiple location | 21:22 |
Glacee | Am I right? | 21:22 |
creiht | Glacee: it depends on how you have it set up | 21:22 |
creiht | if you have 4 zones in 2 locations (2 zones in each) | 21:23 |
creiht | this guarantees that you have 1 copy in each | 21:23 |
creiht | at least | 21:23 |
creiht | if one whole side dies, you still have 2 zones that can be written to | 21:23 |
creiht | so unless there are other failures, things should succeed | 21:23 |
*** aliguori has quit IRC | 21:24 | |
creiht | this also assumes that the client can speak to a proxy in side that is still up | 21:24 |
Glacee | yes.. thanks! | 21:24 |
creiht | and there would probably be some extra latency | 21:24 |
creiht | due to timeouts, etc. | 21:24 |
comstud | clayg: Yea maybe | 21:24 |
Glacee | I thought you always needed 3 files to be available to have swift works | 21:25 |
creiht | Glacee: for writes, you have to have 2 success for it to return success | 21:25 |
Glacee | ok | 21:25 |
Glacee | and read? | 21:25 |
creiht | read will return the first one it finds | 21:25 |
Glacee | cool | 21:25 |
zykes- | win 21 | 21:26 |
*** katkee has quit IRC | 21:28 | |
*** __Ben has quit IRC | 21:28 | |
*** B-Wong has quit IRC | 21:28 | |
*** wilmoore has joined #openstack | 21:28 | |
creiht | of course, most of this is theory | 21:29 |
vidd | for creating the floating IP's, if i want to use 192.168.1.215 - 192.168.168.1.245 do I "nova-manage network create novanet 192.168.0.214/24 1 256" ? | 21:29 |
creiht | I haven't done this myself, so the proof is in the testing/validation :) | 21:29 |
creiht | and let us know if you run into issues | 21:29 |
*** wilmoore has quit IRC | 21:29 | |
zykes- | creiht: how would one use lunr with nova ? | 21:29 |
*** HowardRoark has joined #openstack | 21:30 | |
*** viraptor has quit IRC | 21:30 | |
notmyname | creiht: arent' you glad you stuck your head in here today? :-) | 21:30 |
zykes- | ;p | 21:30 |
creiht | notmyname: lol... I wasn't geting much work done today anyways :) | 21:30 |
vidd | for creating the floating IP's, if i want to use 192.168.1.215 - 192.168.168.1.245 do I "nova-manage network create novanet 192.168.1.214/24 1 256" ? | 21:30 |
*** wilmoore has joined #openstack | 21:30 | |
vidd | for creating the floating IP's, if i want to use 192.168.1.215 - 192.168.168.1.245 do I "nova-manage network create novanet 192.168.1.214/27 1 256" ? | 21:31 |
creiht | zykes-: at what level? How would an end user use it, or how would an operator use it? | 21:31 |
creiht | or something else? | 21:31 |
creiht | :) | 21:31 |
Ryan_Lane | vidd: if you really want floating IPs, no | 21:32 |
zykes- | creiht: both maybe ;p | 21:32 |
Ryan_Lane | vidd: nova-manage floating create <network-host> <range> | 21:32 |
vidd | not floating....fixed | 21:32 |
creiht | hah | 21:32 |
Ryan_Lane | yes. that would be the way to do it | 21:32 |
vidd | wait.... | 21:32 |
Glacee | thank you creith :) | 21:32 |
Ryan_Lane | though 256 looks wrong | 21:32 |
creiht | zykes-: from an end users perspective, it should be like using any other volume in Nova | 21:32 |
vidd | im confused now =\ | 21:32 |
Ryan_Lane | 255 would be correct | 21:32 |
*** msivanes has joined #openstack | 21:33 | |
creiht | make an api call to create a volume, attach it to your vm, etc. | 21:33 |
vidd | private ips for nove to vm is fixed or floating? | 21:33 |
Ryan_Lane | vidd: well, fixed and floating really only make sense if you are using a private and a public range | 21:33 |
Ryan_Lane | private ranges are fixed | 21:33 |
Ryan_Lane | and public ranges are floating | 21:33 |
*** jtanner has quit IRC | 21:33 | |
creiht | on the backend, lunr software runs on a bunch of commodity storage servers with its own api | 21:34 |
vidd | ok...so for the vms to be remoted into from some other computer...that is floating | 21:34 |
zykes- | creiht: is there any slides for it or just internal for now ? | 21:34 |
creiht | and provides a Nova driver that knows how to talk to that api | 21:34 |
Ryan_Lane | vidd: correct | 21:34 |
creiht | zykes-: not really any slides, but I can answer any questions you may have :) | 21:34 |
zykes- | ah | 21:34 |
zykes- | what storage providers are onboard atm ? | 21:34 |
vidd | so nova-manage network create novanet is for the fixed range ... nova-to-VM's | 21:35 |
creiht | zykes-: lunr is basically its own storage provider | 21:35 |
Ryan_Lane | vidd that's the addresses that will be assigned via dhcp | 21:35 |
Ryan_Lane | or injected, depending on how you are doing things | 21:35 |
zykes- | creiht: can it built ontop of others ? | 21:35 |
creiht | the idea is thhat you take a commodity storage node with some number of raid 10 drives (or whatever config you like) and turn it in to a storage cluster | 21:35 |
zykes- | or does it base itself on linux and servers ? | 21:35 |
creiht | right | 21:36 |
zykes- | ah ok | 21:36 |
zykes- | so kinda like openfiler then, just at large scale | 21:36 |
magg | well the dashboard crashes after log in... | 21:36 |
creiht | so the simple idea is carve up devices with lvm on the raid 10 and expose them as iscsi targets, with some extra smarts mixed in | 21:37 |
*** hallyn has quit IRC | 21:37 | |
creiht | mix in backups to swift | 21:37 |
creiht | and that is about it | 21:37 |
zykes- | creiht: does it spread volumes across nodes ? | 21:38 |
*** B-Wong has joined #openstack | 21:38 | |
creiht | no we aren't trying to do anything like that yet | 21:38 |
B-Wong | gnu111 are you there? | 21:38 |
creiht | we found that EBS reliability/available rates were similar if not worse than a traditional DAS | 21:39 |
zykes- | creiht: but what happens if a node goes down then, won't the volume go splat ? | 21:39 |
creiht | add to that, that most people who use that tend to do things like software raids of volumes already | 21:39 |
creiht | zykes-: yup the volume goes away | 21:39 |
creiht | until we bring the node back up, or you restore the volume to another node | 21:39 |
zykes- | then the vm goes away as well then | 21:39 |
creiht | nope | 21:40 |
creiht | well, we are using it just for additional attached storage | 21:40 |
zykes- | i mean, you loose the disk no ? | 21:40 |
creiht | the vms here still run on local storage | 21:40 |
nhm | creiht: could you do something like use gluster underneath? | 21:40 |
*** mdomsch has quit IRC | 21:41 | |
creiht | nhm: why would you want to do that? ;) | 21:41 |
creiht | if you wanted to use gluster, you could use the volume support that is already available? or at least is currently in dev | 21:41 |
nhm | creiht: I thought they just had a swift implementation.. I didn't know they were doing block too (though it would make sense). | 21:42 |
creiht | I don't know for sure, but I thought they were pushing for that as well | 21:42 |
zykes- | redhat now :p | 21:43 |
creiht | I personally wouldn't run gluster, but there are other people that will, and that's cool | 21:43 |
nhm | creiht: Heh, I'm running 550TB of lustre right now. ;) | 21:43 |
creiht | especially at the scale we will need to run at | 21:43 |
zykes- | hmm, i wonder why keystone gives {"unauthorized": {"message": "Unauthorized on this tenant", "code": "401"}} for euca-describe-images | 21:43 |
creiht | I realize that what we are creating will not be useful for everyone :) | 21:44 |
nhm | creiht: one thing I'm still unclear about is if/how keystone fits into all of this? | 21:45 |
creiht | from lunr's perspective it isn't concerned with keystone | 21:45 |
nhm | creiht: that's higher level? | 21:45 |
magg | vidd, what about the nova paste ini and keystone. i haven't any configuration to that file | 21:45 |
creiht | as lunr will conect at the host level, and the users never talk to lunr directly | 21:45 |
*** hezekiah_ has joined #openstack | 21:45 | |
creiht | so the api calls will be through Nova volume | 21:46 |
nhm | creiht: is that the case then for all nova-volume drivers? | 21:46 |
creiht | which will handle whatever auth scheme that you are using | 21:46 |
creiht | nhm: correct | 21:46 |
hezekiah_ | why is this? | 21:46 |
hezekiah_ | 2011-10-21 16:47:16,490 DEBUG nova.auth.manager [-] Using project name = user name (root) from (pid=16791) authenticate /usr/lib/python2.7/dist-packages/nova/auth/manager.py:293 | 21:46 |
hezekiah_ | I am failing with diablo because it's trying to use the username for hte project. I don't have a project with the usernamee | 21:46 |
hezekiah_ | I'm trying euca-add-keypair mykey2 | 21:47 |
hezekiah_ | which is failing | 21:47 |
nhm | creiht: Does it work that way in diablo right now? IE if I have an iscsi target with a bunch of disk I can use nova-volumes to auth against keystone for provisioning that storage? | 21:48 |
zykes- | keystone is really a pain in the *beep* atm | 21:49 |
creiht | nhm: possibly... you can use the built in nova volume iscsi stuff | 21:49 |
vidd | magg, check out the git for keystone (https://github.com/cloudbuilders/keystone/blob/master/examples/paste/nova-api-paste.ini).... compare to your nova-api and fix the difference | 21:50 |
*** romain_lenglet_ has joined #openstack | 21:50 | |
zykes- | vidd: have you used nova + ks yet and euca* commands ? | 21:51 |
*** romain_lenglet has joined #openstack | 21:51 | |
creiht | nhm: not sure if it has everything you need, but would be a starting point to look | 21:51 |
*** romain_lenglet_ has left #openstack | 21:51 | |
*** romain_lenglet has quit IRC | 21:52 | |
nhm | creiht: thanks for all of the information. I'll probably be looking at iscsi as my backup, but something like lunr or glusterfs as a backend for nova-volumes would probably be the long term goal... | 21:52 |
*** HowardRoark has quit IRC | 21:52 | |
vidd | zykes-, no...nova-manage wont let me make my netwirk =\ | 21:52 |
zykes- | heh, you'll probably get stuck @ nova ec2 stuff anyways ;p | 21:52 |
creiht | nhm: if you are interested in something like glusterfs, you might also consider ceph | 21:52 |
vidd | zykes-, why? | 21:52 |
vidd | i built ec2 creds | 21:53 |
vidd | once i import them into keystone, there shouldnt be any issue | 21:53 |
nhm | creiht: it's been on my radar. Waiting for dreamhost to say it's production ready. ;) | 21:54 |
creiht | hah | 21:54 |
Ryan_Lane | nhm: they plan on launching a service with it very. very soon | 21:54 |
zykes- | vidd: i created my creds @ keystone using the ks-m command and they don't wannt work :( | 21:55 |
Ryan_Lane | so I'd have to imagine they think it's ready, at least with a non-btrfs backend | 21:55 |
zykes- | Ryan_Lane: does ceph have multiple backends | 21:55 |
Ryan_Lane | I get wishy-washy answers when I ask about btrfs backend. heh | 21:55 |
vidd | have you followed my guide for adding creds in keystone? | 21:55 |
Ryan_Lane | yeah, you can use any filesystem you want underneath, as long as it supports xattrs, I believe | 21:56 |
nhm | Ryan_Lane: Do they have any openstack code available at this point? | 21:56 |
Ryan_Lane | nhm: libvirt has ceph support | 21:56 |
zykes- | vidd: i get "{"unauthorized": {"message": "Unauthorized on this tenant", "code": "401"}}" when using euca* commands | 21:56 |
Ryan_Lane | so they don't actually need any | 21:56 |
zykes- | vidd: what guide? | 21:56 |
vidd | zykes-, i will take that as a "no" | 21:56 |
vidd | http://pastebin.com/zB57rijU | 21:57 |
Ryan_Lane | nhm: that said, I think you need natty or oneric to get that support in ubuntu | 21:57 |
vidd | there are some things that need to be fixed..... | 21:57 |
Ryan_Lane | I'm waiting on the next LTS before I try to deploy volumes :) | 21:57 |
nhm | Ryan: that's fine, none of my stuff is going production in next spring/summer. | 21:57 |
vidd | like step 7 URLs for example | 21:57 |
nhm | Ryan: Right now I'm still just figuring out what I'm going to deploy. | 21:57 |
Ryan_Lane | I'd test things out in oneric | 21:57 |
nhm | Ryan_Lane: So I suppose it's using nova.virt.libvirt.volume or something? | 21:58 |
Ryan_Lane | I believe so | 21:58 |
*** magg has quit IRC | 21:59 | |
Ryan_Lane | I think it's using qemu-rbd | 21:59 |
*** Ruetobas has quit IRC | 21:59 | |
*** joshua_d has quit IRC | 22:00 | |
creiht | yeah, if you have a qemu compat vm, you can mount ceph rbd volumes | 22:00 |
creiht | the code is there, but I haven't ever tried it | 22:00 |
nhm | hrm hrm rhm | 22:00 |
Ryan_Lane | it's using the RBDDriver | 22:00 |
*** nerdstein has joined #openstack | 22:00 | |
nhm | ack, gotta catch my bus. you guys have been a very big help! thanks | 22:01 |
Ryan_Lane | yw | 22:01 |
creiht | nhm: no problem | 22:01 |
Ryan_Lane | hmm. I wonder if libvirt-rbd support existed in lucid | 22:02 |
Ryan_Lane | oohhh. seems it does | 22:03 |
*** Horroreyes has quit IRC | 22:03 | |
zykes- | vidd: technically your doc has an error: the first arg to credentials is the uesrname | 22:03 |
Ryan_Lane | maybe I'll be adding support for this sooner rather than later | 22:03 |
vidd | my doc has a few errors | 22:03 |
*** hezekiah_ has left #openstack | 22:04 | |
vidd | like the URLs in step 7 | 22:04 |
*** shentonfreude has quit IRC | 22:04 | |
heckj | vidd - I've just set some of this into a doc pull request for Keystone | 22:04 |
*** koolhead17 is now known as koolhead17|zzZZZ | 22:05 | |
annegentle | heckj: woo thanks | 22:05 |
vidd | heckj, yes...TYVM | 22:06 |
zykes- | vidd: but you haven't done any euca* commands yet using keystone ? | 22:06 |
heckj | not entirely there, but something - https://review.openstack.org/#change,1013 (specifically: https://review.openstack.org/#patch,sidebyside,1013,5,doc/source/installing.rst) | 22:06 |
vidd | zykes-, i havent even done any euca* comamand from nova | 22:06 |
vidd | i dont have a base to test this on | 22:07 |
zykes- | vidd: then you don't have the issues i have atm ;p | 22:07 |
*** Ruetobas has joined #openstack | 22:07 | |
*** duffman has quit IRC | 22:07 | |
*** lborda has quit IRC | 22:08 | |
*** ziyadb has quit IRC | 22:09 | |
*** robix has quit IRC | 22:09 | |
*** ewindisch has quit IRC | 22:09 | |
*** Tribaal has quit IRC | 22:09 | |
*** edlang has quit IRC | 22:09 | |
*** sleepsonthefloor has quit IRC | 22:09 | |
*** mgius has quit IRC | 22:09 | |
*** jasona has quit IRC | 22:09 | |
*** MrNfector has quit IRC | 22:09 | |
*** cdbs has quit IRC | 22:09 | |
*** cynb has quit IRC | 22:09 | |
*** romans has quit IRC | 22:09 | |
*** snowboarder04 has quit IRC | 22:09 | |
*** duffman has joined #openstack | 22:09 | |
*** sleepsonthefloor has joined #openstack | 22:10 | |
*** ziyadb has joined #openstack | 22:11 | |
*** robix has joined #openstack | 22:11 | |
*** ewindisch has joined #openstack | 22:11 | |
*** Tribaal has joined #openstack | 22:11 | |
*** edlang has joined #openstack | 22:11 | |
*** mgius has joined #openstack | 22:11 | |
*** jasona has joined #openstack | 22:11 | |
*** MrNfector has joined #openstack | 22:11 | |
*** cdbs has joined #openstack | 22:11 | |
*** cynb has joined #openstack | 22:11 | |
*** romans has joined #openstack | 22:11 | |
*** snowboarder04 has joined #openstack | 22:11 | |
*** sdake has quit IRC | 22:16 | |
*** bcwaldon has quit IRC | 22:17 | |
*** egant has quit IRC | 22:19 | |
*** code_franco has quit IRC | 22:19 | |
vidd | ok...these fixed and floating IPs in nova are making my head hurt | 22:20 |
vidd | when you set --fixed_range= " in nova config, are those ip's routable from your local network? | 22:21 |
vidd | or are they the ip's only nova sees? | 22:22 |
*** wilmoore has quit IRC | 22:23 | |
*** rnorwood has quit IRC | 22:25 | |
*** hezekiah_ has joined #openstack | 22:27 | |
hezekiah_ | is this an ok place to ask a nub question? | 22:27 |
vidd | hezekiah_, go ahead and ask | 22:27 |
hezekiah_ | I am trying to get openstack up on 11.04. Seems ok. But when I start the tty instance it never gets past the build state | 22:28 |
hezekiah_ | there are no errors in the logs | 22:28 |
hezekiah_ | but I'm seeing a repeated | 22:28 |
hezekiah_ | nova.compute.manager [-] Found 2 in the database and 0 on the hypervisor | 22:28 |
hezekiah_ | in the log compute log | 22:28 |
vidd | your further along than I am | 22:28 |
*** halfss has quit IRC | 22:29 | |
hezekiah_ | :*( | 22:29 |
hezekiah_ | :( | 22:29 |
vidd | hezekiah_, what arc your compute running on?64 bit or 32 bit? | 22:29 |
hezekiah_ | 64 | 22:29 |
hezekiah_ | I was able to use the puppet classes to get everything installed | 22:29 |
vidd | how many nodes you currentyly have set up? | 22:30 |
hezekiah_ | just one | 22:30 |
hezekiah_ | it's also running the scheduler and api | 22:30 |
*** msivanes has quit IRC | 22:30 | |
hezekiah_ | we had a few nodes up with cactus | 22:30 |
hezekiah_ | and we are trying to move to diablo to get a working openstack v1.1 api | 22:30 |
vidd | you havent made any newbie mastakes so far as i can tell....your question isnt a nub question =] | 22:31 |
hezekiah_ | ok | 22:31 |
hezekiah_ | there is no instance started :( | 22:31 |
vidd | this machine is isolated from your other computers? | 22:31 |
hezekiah_ | yes | 22:34 |
*** doorlock has quit IRC | 22:34 | |
hezekiah_ | it has it's own networks | 22:34 |
*** kbringard has quit IRC | 22:34 | |
vidd | i have no answers for ya =[ one of the other ppl here should be able to help ya though | 22:35 |
vidd | zykes-, you here? | 22:35 |
B-Wong | does anyone have a test instance up | 22:36 |
B-Wong | can you show me how it suppse to look like? I have trouble assigning IP to it. | 22:36 |
zykes- | vidd: ? | 22:36 |
hezekiah_ | ok | 22:36 |
hezekiah_ | I had to restar tnova-network | 22:37 |
hezekiah_ | now they are active | 22:37 |
vidd | zykes-, can you help me get my head around these fixed and floating ips | 22:37 |
zykes- | vidd: i've got myself full already with the keystone ec2 token issue :( | 22:37 |
zykes- | i've found a bug i think... | 22:38 |
*** sdake has joined #openstack | 22:40 | |
*** shentonfreude has joined #openstack | 22:40 | |
zykes- | heh, solved it ! | 22:42 |
vidd | how? | 22:42 |
zykes- | pretty silly, the sample data gives you admin credentials but with a tenant with it, the code logic does some stuff if you have a tenant assigned... | 22:43 |
*** PiotrSikora has quit IRC | 22:43 | |
*** PiotrSikora has joined #openstack | 22:43 | |
vidd | zykes-, so when you made credentials based on real info, it works? | 22:45 |
*** ziyadb has quit IRC | 22:46 | |
hezekiah_ | it looks like i can start instances correctly, but they are not getting IP's | 22:50 |
hezekiah_ | I'm using flatDHCP | 22:50 |
*** ziyadb has joined #openstack | 22:50 | |
*** beekhof has quit IRC | 22:51 | |
*** shentonfreude has quit IRC | 22:54 | |
*** mrjazzcat has joined #openstack | 22:56 | |
*** lvaughn has quit IRC | 22:56 | |
B-Wong | I am having the same problem. | 23:01 |
B-Wong | do you see the correct range with you type nova-manage network list | 23:01 |
*** lvaughn has joined #openstack | 23:02 | |
*** mrjazzcat has left #openstack | 23:02 | |
*** nerdstein has left #openstack | 23:03 | |
hezekiah_ | hmm | 23:04 |
hezekiah_ | 1 sec | 23:04 |
*** heckj has left #openstack | 23:04 | |
hezekiah_ | no networks defined | 23:04 |
hezekiah_ | ah | 23:04 |
zykes- | correct vidd | 23:04 |
*** dnjaramba has quit IRC | 23:04 | |
vidd | zykes-, i think that was what i said b4 | 23:05 |
vidd | the default data does not work | 23:05 |
*** dragondm has quit IRC | 23:09 | |
hezekiah_ | ok | 23:09 |
hezekiah_ | nova-manage network create 10.21.41.0/24 1 255 | 23:09 |
hezekiah_ | fails | 23:09 |
hezekiah_ | logs say nova [-] --bridge is required to create a network | 23:10 |
hezekiah_ | but I'm pretty sure we didn't have to do that with cactus | 23:10 |
hezekiah_ | it did it for us | 23:10 |
*** ziyadb has quit IRC | 23:10 | |
vidd | hezekiah_, you have a bridge set in your nova config? | 23:10 |
hezekiah_ | --dhcpbridge=/usr/bin/nova-dhcpbridge | 23:10 |
hezekiah_ | ? | 23:10 |
*** magg has joined #openstack | 23:11 | |
vidd | hezekiah_, --flat_network_bridge=ethZ | 23:12 |
hezekiah_ | is that new? | 23:12 |
hezekiah_ | in diablo? | 23:12 |
vidd | dunno | 23:12 |
vidd | but until i had it, i could not get past the add networks | 23:13 |
vidd | also, is the --fixed_range set | 23:14 |
hezekiah_ | I have this | 23:14 |
hezekiah_ | --network_manager=nova.network.manager.FlatDHCPManager | 23:14 |
hezekiah_ | --public_interface=eth0 | 23:14 |
hezekiah_ | --flat_interface=eth1 | 23:14 |
hezekiah_ | --fixed_range=10.21.41.0/24 | 23:14 |
hezekiah_ | which matches the docs. | 23:14 |
hezekiah_ | can't find the flat_network_bridge | 23:14 |
hezekiah_ | inm the docs | 23:14 |
vidd | i assume that network range is NOT the same subnet that your machine gets from your network? | 23:15 |
vidd | hezekiah_, it not in the docs | 23:16 |
hezekiah_ | internal and external ranges are different. is that what you mean? | 23:16 |
vidd | yes | 23:16 |
vidd | hezekiah_, im following http://cssoss.files.wordpress.com/2011/10/openstackbookv2-0_csscorp.pdf | 23:17 |
*** rsampaio has quit IRC | 23:18 | |
*** rsampaio has joined #openstack | 23:18 | |
*** msivanes has joined #openstack | 23:19 | |
*** andy-hk has joined #openstack | 23:19 | |
*** paltman has quit IRC | 23:21 | |
*** paltman has joined #openstack | 23:21 | |
*** nerdstein has joined #openstack | 23:22 | |
hezekiah_ | ok | 23:22 |
hezekiah_ | thx | 23:22 |
hezekiah_ | now I'm at count outside of current IP subnet boundary | 23:22 |
hezekiah_ | in the log | 23:22 |
nerdstein | i cant get nova-volume to start up | 23:22 |
nerdstein | in the log i get the following message: Table 'nova.volume_metadata' doesn't exist | 23:22 |
nerdstein | anyone seen this? | 23:22 |
Kiall | no, but it means the DB table is missing .. try `nova-manage syncdb` | 23:24 |
nerdstein | ok... | 23:24 |
Kiall | If it doesnt work, try wiping to DB if you can, and running that command again to recreate a fresh DB .. although, I can't see how the table would go missing | 23:25 |
*** Oneiroi has quit IRC | 23:25 | |
*** vladimir3p has quit IRC | 23:25 | |
nerdstein | worked!! | 23:25 |
nerdstein | thanks :) | 23:25 |
nerdstein | you da man! | 23:25 |
hezekiah_ | ok. | 23:26 |
hezekiah_ | I found this | 23:26 |
nerdstein | Kiall++ | 23:26 |
hezekiah_ | nova-manage network create public 10.21.41.0/24 1 250 | 23:26 |
hezekiah_ | is needed | 23:26 |
hezekiah_ | public is a new param that's also not correct in the docs | 23:26 |
B-Wong | If I wanted to add another eth | 23:34 |
B-Wong | I just simply have to create a ifcfg-ethX file right? | 23:34 |
*** ziyadb has joined #openstack | 23:41 | |
*** krow has quit IRC | 23:50 | |
*** krow_ has quit IRC | 23:50 | |
*** BasTichelaar has quit IRC | 23:50 | |
*** justinlw has quit IRC | 23:52 | |
* Kiall just got ubuntu packages for keystone+dashboard working :) | 23:53 | |
Kiall | Bout time! | 23:53 |
nerdstein | Kiall: do you have that documented anywhere? id love to do that | 23:54 |
Kiall | the stock ubuntu packages are .. lets be diplomatic and just say broken. | 23:55 |
nerdstein | :) | 23:55 |
nerdstein | tried it | 23:55 |
Kiall | Yea - I ended up re-packaging everything | 23:55 |
Kiall | https://launchpad.net/~managedit/+archive/openstack | 23:55 |
nerdstein | awesome | 23:56 |
Kiall | (they are still waiting to be built .. the PPA build queue is *loooong*) | 23:56 |
Kiall | they should be in that PPA by .. say.. tomorrow sometime | 23:56 |
*** ziyadb has quit IRC | 23:56 | |
Kiall | The current build queue is 14 hours, and I only just pushed the dashboard package like 2 mins ago | 23:56 |
*** egant has joined #openstack | 23:57 | |
nerdstein | nice | 23:57 |
*** HowardRoark has joined #openstack | 23:57 | |
Kiall | be warned tho ..there are still some bugs with that packaging .. (silly defaults in config files, some weird error on the dashboard (but it doesnt stop it working) | 23:58 |
*** ziyadb has joined #openstack | 23:58 | |
vidd | " euca-describe-availability-zones verbose" returns "invalid literal for int() with base 10: '192.168.15.200'" .... anyone know where i should look to fix this? | 23:58 |
vidd | Kiall, any chance you have a .deb ppl can download? | 23:59 |
vidd | =] | 23:59 |
*** B-Wong has quit IRC | 23:59 | |
Kiall | I have hundreds at this stage ;) | 23:59 |
Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!