15:00:33 <noonedeadpunk> #startmeeting openstack_ansible_meeting
15:00:33 <opendevmeet> Meeting started Tue Nov 22 15:00:33 2022 UTC and is due to finish in 60 minutes.  The chair is noonedeadpunk. Information about MeetBot at http://wiki.debian.org/MeetBot.
15:00:33 <opendevmeet> Useful Commands: #action #agreed #help #info #idea #link #topic #startvote.
15:00:33 <opendevmeet> The meeting name has been set to 'openstack_ansible_meeting'
15:00:42 <noonedeadpunk> #topic rollcall
15:00:45 <noonedeadpunk> o/
15:03:26 <NeilHanlon> o/
15:04:44 <noonedeadpunk> #topic bug triage
15:05:01 <noonedeadpunk> We have fresh bug regarding debian, pbr and our new Yoga release (25.2.0)
15:05:14 <noonedeadpunk> https://bugs.launchpad.net/openstack-ansible/+bug/1997365
15:06:30 <noonedeadpunk> PBR should be constrained in u-c so I won't assume issue because of that
15:06:34 <mgariepy> hmm
15:07:13 <noonedeadpunk> Ubuntu is using py3.10 by default, Debian 3.9 which is by far only difference.
15:08:21 <noonedeadpunk> Oh damn
15:08:40 <noonedeadpunk> setuptools is not more constrained in u-c
15:12:04 <damiandabrowski> sorry i'm not available today but i'd appreciate some input in internal tls changes when you have some time
15:12:06 <damiandabrowski> https://review.opendev.org/q/topic:tls-backend
15:13:35 <noonedeadpunk> https://review.opendev.org/c/openstack/ansible-role-uwsgi/+/864783 is affacted by this bug
15:13:40 <noonedeadpunk> https://zuul.opendev.org/t/openstack/build/5cdb8c6ede164be9abd29e8743fcd2f3/log/job-output.txt#5232
15:14:58 <noonedeadpunk> ok, I will push a fix for that
15:15:02 <noonedeadpunk> #topic office hours
15:15:28 <noonedeadpunk> Well, we've released 25.2.0 that includes rocky 9 support in Yoga
15:15:50 <noonedeadpunk> so Yoga now supports both rocky 8 and 9
15:16:32 <noonedeadpunk> It's a bit weird as there's no reason to get 8 deployed - it's first release where R support was added and we're dropping 8 in Zed
15:16:59 <noonedeadpunk> But anyway
15:17:55 <noonedeadpunk> Zookeeper role is in fair shape I would say, except TLS part. I tried to follow what infra folks are doing to encrypt zookeeper, except using our pki role and failed with java trace that it can't read certs or smth
15:18:17 <noonedeadpunk> I will spend more time to sort this out
15:21:39 <noonedeadpunk> mgariepy: how's ovn tls is going?
15:21:48 <noonedeadpunk> ah, you've jsut uploaded new patchset :)
15:21:59 <mgariepy> it doing well :)
15:22:08 <mgariepy> was working in my vm but needs some review
15:22:12 <noonedeadpunk> ok, awesome
15:23:21 <mgariepy> is your zookeeper patch in gerrit ?
15:23:49 <noonedeadpunk> yup
15:24:05 <noonedeadpunk> https://review.opendev.org/q/topic:osa%252Fzookeeper
15:24:16 <noonedeadpunk> it even is passing ci
15:24:20 <noonedeadpunk> but without TLS yet
15:24:29 <noonedeadpunk> I'm going to add tls as a follow up patch
15:24:38 <mgariepy> ha ok
15:25:00 <noonedeadpunk> or well, almost passing it
15:25:22 <noonedeadpunk> but ready to be tested :)
15:25:28 <noonedeadpunk> or reviewed at least
15:25:46 <mgariepy> yours is way bigger than mine ;p hahah
15:25:53 <noonedeadpunk> btw skyline repo still has not been merged
15:26:27 <noonedeadpunk> sorry for that hehe
15:27:28 <mgariepy> hmm intermitent fail are no fun :/
15:30:55 <opendevreview> Dmitriy Rabotyagov proposed openstack/openstack-ansible master: Constrain setuptools  https://review.opendev.org/c/openstack/openstack-ansible/+/865297
15:31:59 <opendevreview> Dmitriy Rabotyagov proposed openstack/openstack-ansible stable/yoga: Constrain setuptools  https://review.opendev.org/c/openstack/openstack-ansible/+/865160
15:32:19 <mgariepy> for zookeeper patch do we need additional logs / configs ?
15:33:18 <mgariepy> meyba add them in there : https://github.com/openstack/openstack-ansible/blob/master/scripts/log-collect.sh
15:33:49 <opendevreview> Dmitriy Rabotyagov proposed openstack/openstack-ansible stable/yoga: Constrain setuptools  https://review.opendev.org/c/openstack/openstack-ansible/+/865160
15:34:50 <noonedeadpunk> mgariepy: oh, yes, good catch
15:36:18 <opendevreview> Dmitriy Rabotyagov proposed openstack/openstack-ansible master: Add zookeeper deployment  https://review.opendev.org/c/openstack/openstack-ansible/+/864750
15:37:15 <opendevreview> Dmitriy Rabotyagov proposed openstack/openstack-ansible master: Add zookeeper deployment  https://review.opendev.org/c/openstack/openstack-ansible/+/864750
15:37:43 <mgariepy> awesome
15:39:18 <noonedeadpunk> So I guess that zookeeper is by far the only thing out ones that we defined as required for Zed on PTG
15:39:51 <noonedeadpunk> So I'm thinking to make beta release once we merge this plus ovn and some bugfixes
15:40:03 <noonedeadpunk> Hopefully I will end tls part for zookeeper this week
15:40:32 <mgariepy> if you need some help i can probably take a couple hours to help you with the tls stuff on zookeeper.
15:43:12 <opendevreview> Jorge San Emeterio proposed openstack/openstack-ansible-os_tempest master: [DNM] Restarting glance before running tempest  https://review.opendev.org/c/openstack/openstack-ansible-os_tempest/+/862304
15:44:38 <opendevreview> Jorge San Emeterio proposed openstack/openstack-ansible-os_tempest master: [DNM] Restarting glance before running tempest  https://review.opendev.org/c/openstack/openstack-ansible-os_tempest/+/862304
15:49:06 <noonedeadpunk> Well, I think I followed infra scripts right in terms of pki role. But for some reason zookeeper doesn't like it
15:49:15 <noonedeadpunk> Maybe I need to re-create containers...
15:49:50 <noonedeadpunk> As if it's added to java storage, maybe it just refuses to add simmilar but a bit different key... Or with new key with same name... Hm
15:50:23 <noonedeadpunk> But it felt super close. As actually I made to the point where client auth worked but stuck on cluster trafic encryption...
15:50:40 <noonedeadpunk> I will ping you though for help if got completely stuck )
15:51:01 <noonedeadpunk> As I get some code but seems I'm passing smth wrong still...
15:53:22 <mgariepy> okie
16:00:42 <noonedeadpunk> #endmeeting