15:00:33 <noonedeadpunk> #startmeeting openstack_ansible_meeting 15:00:33 <opendevmeet> Meeting started Tue Nov 22 15:00:33 2022 UTC and is due to finish in 60 minutes. The chair is noonedeadpunk. Information about MeetBot at http://wiki.debian.org/MeetBot. 15:00:33 <opendevmeet> Useful Commands: #action #agreed #help #info #idea #link #topic #startvote. 15:00:33 <opendevmeet> The meeting name has been set to 'openstack_ansible_meeting' 15:00:42 <noonedeadpunk> #topic rollcall 15:00:45 <noonedeadpunk> o/ 15:03:26 <NeilHanlon> o/ 15:04:44 <noonedeadpunk> #topic bug triage 15:05:01 <noonedeadpunk> We have fresh bug regarding debian, pbr and our new Yoga release (25.2.0) 15:05:14 <noonedeadpunk> https://bugs.launchpad.net/openstack-ansible/+bug/1997365 15:06:30 <noonedeadpunk> PBR should be constrained in u-c so I won't assume issue because of that 15:06:34 <mgariepy> hmm 15:07:13 <noonedeadpunk> Ubuntu is using py3.10 by default, Debian 3.9 which is by far only difference. 15:08:21 <noonedeadpunk> Oh damn 15:08:40 <noonedeadpunk> setuptools is not more constrained in u-c 15:12:04 <damiandabrowski> sorry i'm not available today but i'd appreciate some input in internal tls changes when you have some time 15:12:06 <damiandabrowski> https://review.opendev.org/q/topic:tls-backend 15:13:35 <noonedeadpunk> https://review.opendev.org/c/openstack/ansible-role-uwsgi/+/864783 is affacted by this bug 15:13:40 <noonedeadpunk> https://zuul.opendev.org/t/openstack/build/5cdb8c6ede164be9abd29e8743fcd2f3/log/job-output.txt#5232 15:14:58 <noonedeadpunk> ok, I will push a fix for that 15:15:02 <noonedeadpunk> #topic office hours 15:15:28 <noonedeadpunk> Well, we've released 25.2.0 that includes rocky 9 support in Yoga 15:15:50 <noonedeadpunk> so Yoga now supports both rocky 8 and 9 15:16:32 <noonedeadpunk> It's a bit weird as there's no reason to get 8 deployed - it's first release where R support was added and we're dropping 8 in Zed 15:16:59 <noonedeadpunk> But anyway 15:17:55 <noonedeadpunk> Zookeeper role is in fair shape I would say, except TLS part. I tried to follow what infra folks are doing to encrypt zookeeper, except using our pki role and failed with java trace that it can't read certs or smth 15:18:17 <noonedeadpunk> I will spend more time to sort this out 15:21:39 <noonedeadpunk> mgariepy: how's ovn tls is going? 15:21:48 <noonedeadpunk> ah, you've jsut uploaded new patchset :) 15:21:59 <mgariepy> it doing well :) 15:22:08 <mgariepy> was working in my vm but needs some review 15:22:12 <noonedeadpunk> ok, awesome 15:23:21 <mgariepy> is your zookeeper patch in gerrit ? 15:23:49 <noonedeadpunk> yup 15:24:05 <noonedeadpunk> https://review.opendev.org/q/topic:osa%252Fzookeeper 15:24:16 <noonedeadpunk> it even is passing ci 15:24:20 <noonedeadpunk> but without TLS yet 15:24:29 <noonedeadpunk> I'm going to add tls as a follow up patch 15:24:38 <mgariepy> ha ok 15:25:00 <noonedeadpunk> or well, almost passing it 15:25:22 <noonedeadpunk> but ready to be tested :) 15:25:28 <noonedeadpunk> or reviewed at least 15:25:46 <mgariepy> yours is way bigger than mine ;p hahah 15:25:53 <noonedeadpunk> btw skyline repo still has not been merged 15:26:27 <noonedeadpunk> sorry for that hehe 15:27:28 <mgariepy> hmm intermitent fail are no fun :/ 15:30:55 <opendevreview> Dmitriy Rabotyagov proposed openstack/openstack-ansible master: Constrain setuptools https://review.opendev.org/c/openstack/openstack-ansible/+/865297 15:31:59 <opendevreview> Dmitriy Rabotyagov proposed openstack/openstack-ansible stable/yoga: Constrain setuptools https://review.opendev.org/c/openstack/openstack-ansible/+/865160 15:32:19 <mgariepy> for zookeeper patch do we need additional logs / configs ? 15:33:18 <mgariepy> meyba add them in there : https://github.com/openstack/openstack-ansible/blob/master/scripts/log-collect.sh 15:33:49 <opendevreview> Dmitriy Rabotyagov proposed openstack/openstack-ansible stable/yoga: Constrain setuptools https://review.opendev.org/c/openstack/openstack-ansible/+/865160 15:34:50 <noonedeadpunk> mgariepy: oh, yes, good catch 15:36:18 <opendevreview> Dmitriy Rabotyagov proposed openstack/openstack-ansible master: Add zookeeper deployment https://review.opendev.org/c/openstack/openstack-ansible/+/864750 15:37:15 <opendevreview> Dmitriy Rabotyagov proposed openstack/openstack-ansible master: Add zookeeper deployment https://review.opendev.org/c/openstack/openstack-ansible/+/864750 15:37:43 <mgariepy> awesome 15:39:18 <noonedeadpunk> So I guess that zookeeper is by far the only thing out ones that we defined as required for Zed on PTG 15:39:51 <noonedeadpunk> So I'm thinking to make beta release once we merge this plus ovn and some bugfixes 15:40:03 <noonedeadpunk> Hopefully I will end tls part for zookeeper this week 15:40:32 <mgariepy> if you need some help i can probably take a couple hours to help you with the tls stuff on zookeeper. 15:43:12 <opendevreview> Jorge San Emeterio proposed openstack/openstack-ansible-os_tempest master: [DNM] Restarting glance before running tempest https://review.opendev.org/c/openstack/openstack-ansible-os_tempest/+/862304 15:44:38 <opendevreview> Jorge San Emeterio proposed openstack/openstack-ansible-os_tempest master: [DNM] Restarting glance before running tempest https://review.opendev.org/c/openstack/openstack-ansible-os_tempest/+/862304 15:49:06 <noonedeadpunk> Well, I think I followed infra scripts right in terms of pki role. But for some reason zookeeper doesn't like it 15:49:15 <noonedeadpunk> Maybe I need to re-create containers... 15:49:50 <noonedeadpunk> As if it's added to java storage, maybe it just refuses to add simmilar but a bit different key... Or with new key with same name... Hm 15:50:23 <noonedeadpunk> But it felt super close. As actually I made to the point where client auth worked but stuck on cluster trafic encryption... 15:50:40 <noonedeadpunk> I will ping you though for help if got completely stuck ) 15:51:01 <noonedeadpunk> As I get some code but seems I'm passing smth wrong still... 15:53:22 <mgariepy> okie 16:00:42 <noonedeadpunk> #endmeeting