Friday, 2016-06-03

*** sdake_ has joined #openstack-ansible00:02
*** sdake has quit IRC00:02
*** thorst has joined #openstack-ansible00:03
*** Drago has quit IRC00:03
*** Nepoc has quit IRC00:06
*** Nepoc has joined #openstack-ansible00:07
*** smatzek has joined #openstack-ansible00:08
openstackgerritkboratynski proposed openstack/openstack-ansible-security: Implemented: V-38548.  https://review.openstack.org/32495500:08
openstackgerritJimmy McCrory proposed openstack/openstack-ansible-os_keystone: Remove pip_lock_down dependency  https://review.openstack.org/31388900:09
*** scarlisle has joined #openstack-ansible00:09
*** thorst has quit IRC00:09
*** thorst has joined #openstack-ansible00:10
kboratynskipalendae: Well, I handled it, but IMHO there are too many steps to create a simple pull-request.00:10
palendaekboratynski, I don't disagree00:11
palendaeIt's the general Openstack process, which is clunky00:11
kboratynskiWell, I will migrate my PRs, I've sent to Github repository. palendae thank you for your help.00:12
palendaekboratynski, No proble,m00:13
openstackgerritJimmy McCrory proposed openstack/openstack-ansible-os_keystone: Remove pip_lock_down dependency  https://review.openstack.org/31388900:13
openstackgerritJimmy McCrory proposed openstack/openstack-ansible-os_magnum: Remove pip_lock_down dependency  https://review.openstack.org/31389000:15
*** thorst has quit IRC00:15
openstackgerritkboratynski proposed openstack/openstack-ansible-security: Implemented: V-38526.  https://review.openstack.org/32495900:16
openstackgerritJimmy McCrory proposed openstack/openstack-ansible-os_magnum: Remove pip_lock_down dependency  https://review.openstack.org/31389000:17
*** Iqbal has quit IRC00:17
openstackgerritkboratynski proposed openstack/openstack-ansible-security: Implemented: V-38524.  https://review.openstack.org/32496000:18
*** rahuls has quit IRC00:20
openstackgerritkboratynski proposed openstack/openstack-ansible-security: Implemented: V-38511.  https://review.openstack.org/32496100:22
*** david-lyle has quit IRC00:25
*** david-lyle has joined #openstack-ansible00:26
*** david-lyle has quit IRC00:30
kboratynskiAnd according to the: [V-38652] and the others associated with file systems. Do you think, it would be pretty to check fstab as well as currently mounted devices options?00:33
*** raddaoui has quit IRC00:37
*** smatzek has quit IRC00:38
*** markvoelker has joined #openstack-ansible00:40
*** woodard has quit IRC00:44
*** Guest75 has quit IRC00:57
openstackgerritKevin Carter (cloudnull) proposed openstack/openstack-ansible: change host_containers group names in inventory  https://review.openstack.org/28314900:58
*** kylek3h_ has quit IRC00:58
openstackgerritMerged openstack/openstack-ansible-security: Don't start LSM in check mode  https://review.openstack.org/32480200:59
*** wadeholler has joined #openstack-ansible01:01
openstackgerritMerged openstack/openstack-ansible-security: Setting default runlevel/target to non-graphical  https://review.openstack.org/32113001:01
openstackgerritMerged openstack/openstack-ansible-security: Ensure V-38574 works reliably on CentOS  https://review.openstack.org/32111201:01
*** Qiming has joined #openstack-ansible01:02
openstackgerritMerged openstack/openstack-ansible-os_nova: Always execute Nova virt type detection  https://review.openstack.org/32337701:12
*** Mudpuppy has quit IRC01:12
*** Mudpuppy has joined #openstack-ansible01:13
openstackgerritJimmy McCrory proposed openstack/openstack-ansible-os_gnocchi: Remove pip_lock_down dependency  https://review.openstack.org/31388601:16
*** Mudpuppy has quit IRC01:17
openstackgerritKevin Carter (cloudnull) proposed openstack/openstack-ansible-os_neutron: Updated multi-distro setup for isolation  https://review.openstack.org/32497401:31
openstackgerritSteve Lewis (stevelle) proposed openstack/openstack-ansible-os_gnocchi: Adopting the common role documentation pattern  https://review.openstack.org/32497601:35
*** wadeholler has quit IRC01:37
openstackgerritMerged openstack/openstack-ansible-os_neutron: Neutron 16.04 support  https://review.openstack.org/32224901:39
errrI have a custom dashboard Im trying to add to horizon. Ive done this for another role I made but it required me to modify the os_horizon role to add the dashboard provided by the role I was working on. This time I do not want and cant do it that way. What is the best way to do this?01:46
*** Qiming has quit IRC01:49
openstackgerritMerged openstack/openstack-ansible: Revert to test role master branches for Newton-2 development  https://review.openstack.org/32477301:49
*** Mudpuppy has joined #openstack-ansible01:59
openstackgerritMerged openstack/openstack-ansible: Update all SHAs for 12.0.15  https://review.openstack.org/32476202:00
openstackgerritMerged openstack/openstack-ansible: Create symlink for libvirt save directory  https://review.openstack.org/32472102:00
*** Mudpuppy has quit IRC02:04
*** scarlisle has quit IRC02:14
*** mummer has quit IRC02:17
*** jamesdenton has joined #openstack-ansible02:24
*** aslaen has quit IRC02:37
*** sacharya has joined #openstack-ansible02:37
*** aslaen has joined #openstack-ansible02:38
*** smatzek has joined #openstack-ansible02:50
*** jamesdenton has quit IRC02:53
openstackgerritKevin Carter (cloudnull) proposed openstack/openstack-ansible-os_neutron: Updated multi-distro setup for isolation  https://review.openstack.org/32497402:55
*** smatzek has quit IRC02:56
prometheanfirecloudnull: to03:16
cloudnullwat?03:16
prometheanfireta03:17
prometheanfiresorry03:17
prometheanfirefor the other +203:17
*** smatzek has joined #openstack-ansible03:23
*** Mudpuppy has joined #openstack-ansible03:25
*** yatin has joined #openstack-ansible03:30
*** aslaen has quit IRC03:36
*** aslaen has joined #openstack-ansible03:37
*** jamielennox is now known as jamielennox|away03:39
*** smatzek has quit IRC03:41
*** markvoelker has quit IRC03:44
*** john51 has quit IRC03:51
*** john51 has joined #openstack-ansible03:53
*** v1k0d3n has quit IRC03:54
*** javeriak has joined #openstack-ansible04:01
*** javeriak_ has joined #openstack-ansible04:04
*** javeriak has quit IRC04:05
*** automagically has quit IRC04:12
*** automagically has joined #openstack-ansible04:14
*** sguduru has joined #openstack-ansible04:14
*** v1k0d3n has joined #openstack-ansible04:24
*** markvoelker has joined #openstack-ansible04:44
*** markvoelker has quit IRC04:49
*** aslaen has quit IRC04:50
*** sguduru has quit IRC04:51
*** hybridpollo has quit IRC05:01
*** chhavi has joined #openstack-ansible05:15
*** johnmilton has quit IRC05:26
*** yatin has quit IRC05:35
openstackgerritKevin Carter (cloudnull) proposed openstack/openstack-ansible-lxc_hosts: Update the version of LXC for centos7  https://review.openstack.org/32505205:44
openstackgerritKevin Carter (cloudnull) proposed openstack/openstack-ansible-os_keystone: Implement CentOS 7 support in os_keystone  https://review.openstack.org/32021605:45
*** Nepoc has quit IRC05:47
*** Nepoc has joined #openstack-ansible05:47
*** yatin has joined #openstack-ansible06:05
*** yatin has joined #openstack-ansible06:05
*** Iqbal has joined #openstack-ansible06:06
*** openstackgerrit has quit IRC06:17
*** openstackgerrit has joined #openstack-ansible06:18
*** Mudpuppy has quit IRC06:27
*** Mudpuppy has joined #openstack-ansible06:27
*** Mudpuppy has quit IRC06:32
*** markvoelker has joined #openstack-ansible06:45
*** yatin has quit IRC06:46
*** yatin has joined #openstack-ansible06:48
*** markvoelker has quit IRC06:58
*** openstackgerrit has quit IRC07:03
*** openstackgerrit has joined #openstack-ansible07:03
openstackgerritMerged openstack/openstack-ansible-os_nova: UCA support for nova compute  https://review.openstack.org/32285107:06
*** sacharya has quit IRC07:07
*** mikelk has joined #openstack-ansible07:15
*** bsv has joined #openstack-ansible07:23
*** javeriak_ has quit IRC07:31
*** saneax_AFK is now known as saneax07:36
*** karimb has joined #openstack-ansible07:42
*** yatin has quit IRC07:46
*** javeriak has joined #openstack-ansible07:49
*** b3rnard0 has quit IRC07:58
*** sdake_ has quit IRC08:03
*** sacharya has joined #openstack-ansible08:08
*** permalac has joined #openstack-ansible08:08
*** sacharya has quit IRC08:13
*** jwitko has quit IRC08:23
pjm6 good morning all08:24
*** oneswig has joined #openstack-ansible08:25
*** javeriak has quit IRC08:25
bsvpjm6: moinmoin :)08:28
pjm6bsv, o/08:28
bsvo708:29
bsvbeen working on a single problem the last 3 days, im about to jump out the window >.<08:30
pjm6its possible to change a compute node dead to a new node, using same ip address?08:30
pjm6bsv, what are you working with?08:30
bsvpjm6: think you will have a lot of metadata issues (and all your logs will mix up).08:31
pjm6bsv, it was a clean install, i only deployed08:32
pjm6didn't create anything08:32
pjm6still same problem?08:32
bsvhmm, only a test will show :)08:32
pjm6or maybe will reset all08:34
pjm6lxc destroy and recreate everything :D08:34
bsvi've been trying to make designate-dns create autogenerated records at instance launch. It worked, then did a complete reset of the environment, now... im not getting any events in the designate-sink when events are fired. Going insane.08:36
*** phschwartz_ has joined #openstack-ansible08:36
pjm6you're making a custom dns?08:36
bsvSame playbook, same files....08:36
pjm6and same branch?08:36
bsvI ported the designate-dns ansible-playbooks to use OpenBSD as auth. DNS servers. But the issue is somewhere between nova-compute and the designate-sink service.08:37
bsvmitaka all the way.08:37
*** ggillies_ has joined #openstack-ansible08:37
*** sonus_ has joined #openstack-ansible08:38
bsvdesignate is working fine beside the auto-generation issue.08:38
*** rackertom has quit IRC08:39
*** phschwartz has quit IRC08:39
*** sonus has quit IRC08:39
*** zhangjn has quit IRC08:39
*** ggillies has quit IRC08:39
*** zhangjn has joined #openstack-ansible08:39
pjm6thats strange :o08:40
bsvvery08:40
*** rackertom has joined #openstack-ansible08:41
pjm6btw: the designate allows user to attribute DNS entries to their machiens?08:41
bsvyes, complete DNS management. Also latest development allows you to automate stuff via Neutron.08:42
pjm6seems interesting :D08:42
bsvtwo parts, the core dns infrastrucure and then you have the integration with nova/neutron to automate stuff.08:43
bsvYou dont need that last part, but nice to have in larger setups08:43
pjm6btw bsv do you know if its possible to delegate our primary DNS08:44
pjm6to secondary subdomains (associated with openstack?)08:44
pjm6like08:44
pjm6acme.com08:44
pjm6and08:44
pjm6*.cloud.acme.com08:44
pjm6be generated by the designate08:44
bsvyes08:44
bsvyou can do that08:44
bsvThat is what i'm doing.08:45
bsvso every instance spawned will have an A-record like $instance-id.cloud.acme.com08:46
pjm6nice :D08:47
pjm6are you using some guide ?08:47
bsvpartial08:49
bsvdocumentaion + old ansible playbook + irc + more documentation = New playbook :)08:50
pjm6ahah :D will have look at it when have time, thats a plus to have, definitely :D08:50
pjm6btw: do you know where rabbitmq vhosts are created?08:51
bsvbe warned, only use documentation from the official domain. Config variables have changed, and only the official repo reflect that.08:51
bsvso copy/paste from old example will most likely not work.08:52
pjm6thanks bsv :)08:56
bsvnp :)08:57
*** zhangjn has quit IRC09:01
*** yatin has joined #openstack-ansible09:01
*** zhangjn has joined #openstack-ansible09:03
*** yatin has quit IRC09:06
*** b3rnard0 has joined #openstack-ansible09:19
*** woodard has joined #openstack-ansible09:35
-openstackstatus- NOTICE: CI is experiencing issues with test logs, all jobs are currently UNSTABLE as a result. No need to recheck until this is fixed! Thanks for your patience.09:36
*** woodard has quit IRC09:41
*** yatin has joined #openstack-ansible09:43
*** pcaruana has joined #openstack-ansible09:44
*** johnmilton has joined #openstack-ansible09:53
*** johnmilton has quit IRC09:57
*** logan_ has joined #openstack-ansible09:57
*** logan_ is now known as Guest6297109:58
*** charz_ has joined #openstack-ansible09:59
*** logan- has quit IRC09:59
*** LanceHaig has quit IRC10:00
*** javeriak has joined #openstack-ansible10:00
*** yatin has quit IRC10:01
*** charz has quit IRC10:01
*** lkoranda has quit IRC10:01
*** Guest62971 is now known as logan-10:01
*** b3rnard0 has quit IRC10:02
*** LanceHaig has joined #openstack-ansible10:03
*** haasn has quit IRC10:06
-openstackstatus- NOTICE: CI is experiencing issues with test logs, all jobs are currently UNSTABLE as a result. No need to recheck until this is fixed! Thanks for your patience.10:06
*** ChanServ changes topic to "CI is experiencing issues with test logs, all jobs are currently UNSTABLE as a result. No need to recheck until this is fixed! Thanks for your patience."10:06
pjm6the rabbitmq vhosts are created in the rabbitmq server or in the individual playbooks?10:09
pjm6i see in the individual playbooks the name of the vhosts, but idk where its created10:09
pjm6w810:10
pjm6i think i found it10:10
pjm6forget its the test-install-keystone.yml10:10
pjm6https://github.com/openstack/openstack-ansible-os_nova/blob/b3c05fa39dacc87fa54f79192855a852e2f01263/tests/test-install-keystone.yml#L20-L29 this shouldn't be executed in playbook .yml?10:12
*** yatin has joined #openstack-ansible10:13
*** andymccr_ has joined #openstack-ansible10:13
*** haasn has joined #openstack-ansible10:15
*** javeriak has quit IRC10:16
*** permalac has quit IRC10:16
*** dweaver` has quit IRC10:16
*** andymccr has quit IRC10:16
*** andymccr_ is now known as andymccr10:16
*** oneswig has quit IRC10:18
*** Trident has quit IRC10:24
*** haasn has quit IRC10:25
*** smatzek has joined #openstack-ansible10:29
*** bsv_ has joined #openstack-ansible10:32
*** haasn has joined #openstack-ansible10:34
*** bsv is now known as Guest52510:34
*** bsv_ is now known as bsv10:35
*** Guest525 has quit IRC10:35
*** Trident has joined #openstack-ansible10:43
*** b3rnard0 has joined #openstack-ansible10:44
*** yatin has quit IRC10:45
*** permalac has joined #openstack-ansible10:45
*** dweaver` has joined #openstack-ansible10:49
*** orwell.freenode.net changes topic to "Launchpad: https://launchpad.net/openstack-ansible || Weekly Meetings: https://wiki.openstack.org/wiki/Meetings/openstack-ansible || Review Dashboard: https://goo.gl/tTmdgs"10:49
*** yatin has joined #openstack-ansible10:51
*** lkoranda has joined #openstack-ansible10:53
*** markvoelker has joined #openstack-ansible10:55
*** markvoelker has quit IRC11:00
*** yatin has quit IRC11:03
*** javeriak has joined #openstack-ansible11:04
*** yatin has joined #openstack-ansible11:07
*** karimb has quit IRC11:08
*** yatin has quit IRC11:12
*** oneswig has joined #openstack-ansible11:19
*** oneswig has quit IRC11:24
*** johnmilton has joined #openstack-ansible11:29
-openstackstatus- NOTICE: CI is experiencing issues with test logs, all jobs are currently UNSTABLE as a result. No need to recheck until this is fixed! Thanks for your patience.11:39
*** ChanServ changes topic to "CI is experiencing issues with test logs, all jobs are currently UNSTABLE as a result. No need to recheck until this is fixed! Thanks for your patience."11:39
*** pcaruana has quit IRC11:45
smatzekI'm experiencing a race condition with cinder volume type creation when using ceph. LP 1588777.  Does anyone have good suggestions on how to avoid the race condition while also avoiding creating multiple Cinder volume types for the same Ceph cluster?11:47
openstackLaunchpad bug 1588777 in openstack-ansible "Cinder volume type creation race condition failure" [Undecided,New] https://launchpad.net/bugs/1588777 - Assigned to Samuel Matzek (smatzek)11:47
*** thorst has joined #openstack-ansible11:50
*** thorst has quit IRC11:50
*** thorst has joined #openstack-ansible11:50
*** psilvad has joined #openstack-ansible12:03
*** woodard has joined #openstack-ansible12:08
*** woodard has quit IRC12:09
odyssey4meo/12:09
*** woodard has joined #openstack-ansible12:09
odyssey4mepjm6 the db and rabbitmq stuff is now done in the playbooks so that the roles are independent12:09
*** sacharya has joined #openstack-ansible12:10
*** markvoelker has joined #openstack-ansible12:11
mhaydenbuenos dias12:11
*** sacharya has quit IRC12:15
*** markvoelker has quit IRC12:15
*** markvoelker has joined #openstack-ansible12:16
*** oneswig has joined #openstack-ansible12:21
*** oneswig has quit IRC12:25
*** pester has joined #openstack-ansible12:26
*** Mudpuppy has joined #openstack-ansible12:28
*** kylek3h has joined #openstack-ansible12:29
*** fxpester has quit IRC12:30
*** saneax is now known as saneax_AFK12:31
*** deadnull_ has joined #openstack-ansible12:34
javeriakhey folks12:34
javeriakive got a issue and it just wont go away :(12:35
javeriakTASK: [os_nova | Get package from git check] ...... stderr: fatal: repository 'http://2.1.1.226:8181/openstackgit/spice-html5/' not found12:35
javeriakit works fine for my the other two conatiners, and i even tried cloning from upstream git and checking out the tag it looks for, but it still gets stuck on that12:36
*** Guest75 has joined #openstack-ansible12:38
openstackgerritJesse Pretorius (odyssey4me) proposed openstack/openstack-ansible: Add release file prep script  https://review.openstack.org/32473612:39
automagicallymorning all12:47
*** sdake has joined #openstack-ansible12:49
evrardjphey automagically12:50
automagicallyo/ evrardjp12:51
odyssey4mejaveriak hi there! that's odd - can you confirm that the host/container in question is able to reach the LB, and that all the repo containers have all the same data?12:51
evrardjpthanks for the explanation about rechecks odyssey4me. It's not bad to explain why the recheck happened 'though.12:51
gregfaustgood morning everyone :)12:52
odyssey4meevrardjp sure - just clarifying... your second attempt worked only because you used 'recheck'12:52
odyssey4mefor the experimental pipeline it would always be 'check experimental' - the starting word 'recheck' kicks of the check pipeline only12:53
evrardjpyes, I'm also using this to learn myself without bothering ppl with stupid questions :p12:53
odyssey4meevrardjp loads of people don't understand how this stuff works throughout openstack12:53
javeriakodyssey4me hey; yep i cloned directly from the LB source and that works; how do i check if the repo conatiners have the same data?12:53
odyssey4megregfaust o/12:53
evrardjphow do I know if I'm in the experimental pipeline for the repo?12:53
javeriakodyssey4me how about i just turn two of them off in haproxy....12:54
evrardjpuntil I do a check experimental12:54
evrardjpor wait for the results12:54
evrardjpI should check here? https://github.com/openstack-infra/project-config12:55
odyssey4mejaveriak you could do that, of course12:55
odyssey4meevrardjp the key is here, for example: https://github.com/openstack-infra/project-config/blob/master/zuul/layout.yaml#L8419-L843012:56
javeriakodyssey4me so this might just be due to a problematic repo backend? but its consistent for me, i.e. this is failing everytime12:56
odyssey4mejaveriak yeah, it's unlikely but worth checking - I can't recall whether the LB config for that is sticky or not12:57
javeriakk leme try12:57
odyssey4meevrardjp but, just to complicate things the 'template' items provide some defaults too and you have to know where to find those to see what jobs are part of the template and in which pipeline they are... but basically the zuul layout file has the 'unusual' jobs specified explicitly so it's a good starting point12:58
evrardjpI don't understand ATM, how it's made12:59
evrardjpso I followed this first : https://github.com/openstack-infra/project-config/blob/master/jenkins/jobs/openstack-ansible-jobs.yaml12:59
evrardjpbut I have to follow all the things, and this way I'll understand12:59
evrardjpI'll read the docs too12:59
evrardjpthis way I can help better in the future12:59
odyssey4meevrardjp openstack-ansible-jobs only applies to the main integrated repo13:00
odyssey4methere's another one - ansible-role-jobs.yml - which applies to the roles13:00
*** psilvad has quit IRC13:00
odyssey4methen there's also https://github.com/openstack-infra/project-config/blob/master/jenkins/jobs/projects.yaml13:01
evrardjpok13:01
javeriakodyssey4me yep that fixed it.. this is odd though13:01
evrardjpjaveriak: haproxy issues?13:01
evrardjpwant help?13:01
evrardjpodyssey4me: I need to put all these notions together13:02
odyssey4mejenkins/jobs/{openstack-ansible,ansible-role}-jobs.yaml defines the jobs themselves, jobs/projects.yaml defines which jobs relate to which repositories, and zuul/layout.yaml defines which queues things go into and some other bits which zuul needs13:02
evrardjpthanks for the references13:02
javeriakevrardjp not exactly haproxy, since the forwarding seemed to happening fine, the repo containers themselves had some issue i think13:02
evrardjpI'll bookmark them (because you already gave them in the past)13:02
odyssey4mejaveriak yeah, check the lsync logs in the primary repo - it may be having trouble synchronising to one of the repo containers13:02
javeriakhmm i do see some "rsync warning: some files vanished before they could be transferred (code 24)"13:04
evrardjpodyssey4me: that's the most clear explanation I heard for a long time :D13:04
odyssey4meevrardjp that's how I understand it - of course I may be completely wrong, but it's enough for me to get by and the project-config admins usually correct my patches when I get it wrong13:04
odyssey4meevrardjp there's a bunch of stuff in http://docs.openstack.org/infra/manual/creators.html13:05
javeriakbtw i upgraded this setup from a previous liberty tag, so it built the repo with a newer tag, maybe that mightve messed something up...13:05
v1k0d3nhey evrardjp good morning/afternoon...depending :)13:05
evrardjpcool stuff odyssey4me13:06
v1k0d3nwere you the haproxy "person" that spoke up yesterday? i can't remember.13:06
*** jiteka has joined #openstack-ansible13:06
*** alikins_home has quit IRC13:06
evrardjpafternoon for me13:06
evrardjpspeak, and I shall help !13:07
evrardjp(or at least try :p)13:07
v1k0d3nyou are awesome! thank you.13:07
Guest75now my galera controller won't start back up, dammit.13:07
*** Guest75 is now known as Bofu2MBP13:07
v1k0d3nso couple of things. i reconfigured ha[proxy last night...just to get a feel...etc.13:07
evrardjpGuest75 there are docs for bootstraping your galera cluster back on the openstack-ansible docs :D13:08
evrardjpv1k0d3n: ok13:08
evrardjpsingle node/multi node/aio?13:08
v1k0d3nthis is a new deployment, and most of the config params i am getting from someone else, based on what was in their config orig. trying to work through.13:08
v1k0d3nso multi...13:08
*** phschwartz_ is now known as pschwartz13:08
v1k0d3nhere's the scoop.13:08
evrardjpok13:08
odyssey4mejaveriak we changed the way the sync happens at some point to make it shut down the web server while synchronising, and also to persist trying to sync until forever13:09
v1k0d3none sec...looking through config...so i can give examples.13:09
*** pschwartz is now known as phschwartz13:09
v1k0d3nthere are three internal ip's for infra boxes...13:09
v1k0d3n.9 - .1113:09
evrardjpok13:09
javeriakodyssey4me i'm probably behind those changes then, this is liberty 12.0.1113:09
evrardjp3 boxes ?13:09
evrardjpor just 3 ips?13:09
v1k0d3nfor the haproxy LB ip...what do i use?13:10
odyssey4methis was to overcome situations where the sync hadn't completed, but the LB was happily dishing out connections to incomplete repositories... and also to cover the situation where a container wasn't completely up in time to receive the sync (resulting in the whole sync process dieing)13:10
v1k0d3n3 servers...13:10
evrardjpok13:10
evrardjpit's simple13:10
v1k0d3ni can give the other ip's for other externals...but those are the internals. since this spans more than 1 box...i need keepalive, right?13:10
v1k0d3nand ka is going to broadcast?13:10
evrardjpyou want to have one VIP for the 3 servers, and the VIP receives the traffic13:10
odyssey4mejaveriak so it's possible that you had an issue with connectivity after the update when the sync tried to happen and didn't complete due to an ssh connection failure or something13:10
openstackgerritAlexandra Settle proposed openstack/openstack-ansible-specs: DOCS: Overhaul installation guide  https://review.openstack.org/32347113:11
evrardjpv1k0d3n: keepalived is gonna help you... but13:11
evrardjpyou're gonna need 4 IPs internally, and 4 IPs externally.13:12
javeriakodyssey4me but ive run the repo-build a few times since, it should've been able to sync later at some point i think13:12
evrardjp(best practice)13:12
v1k0d3nso shared across the hosts?13:12
asettleodyssey4me: addressed some of your comments inline on the spec. However, your larger question regarding the developer guide/role documentation. I see no reason *not* to split the content. The idea is that it is still all in the same repo, so theoretically it shouldn't cause confusion provided that the appropriate content is in the appropriate place (rather than dumping the pre-existing content into the same place just because it's li13:12
asettleke that now)13:12
v1k0d3nyeah, best practice i like :)13:12
*** berendt has joined #openstack-ansible13:12
evrardjpv1k0d3n: one will be floating around and the three others are assigned 1 per host (these IPs won't float) x2 (internal/external)13:13
odyssey4measettle I'm not sure what the point is of moving content into the dev guide, then again to the role docs. Why not just move it to the role docs immediately?13:13
*** jiteka has quit IRC13:13
evrardjpyou could bypass this, but you'll definitely don't want that13:14
v1k0d3nhmm13:14
asettleodyssey4me: if you're happy with that, I am too. I just read your comment as you'd like to see it in both and you were unsure if that was feasible? Either way, honestly, it all works.13:14
asettleI can just clarify that in the spec.13:14
v1k0d3nok. so i pick ip's ... but i will probably need to tear down and rebuild again (fine because there is no traffic or real customers on this yet).13:15
evrardjpso, now that you have your 3 "haproxy" nodes with their internal IPs, you have to get them an external ips13:15
v1k0d3nso i would need to exclude another ip13:15
v1k0d3nso let me give you a better lay of the land. can you give me about 8 minutes or so?13:15
odyssey4measettle yeah, if we grab the content from chap 4 and move it to the appropriate repo docs piece by piece then it'll be easy enough to compare and validate that no data is lost13:15
v1k0d3ni will create an easier gist to help, but need to grab some more coffee.13:16
evrardjpsure13:16
v1k0d3nthanks a ton man13:16
v1k0d3nappreciate it.13:16
odyssey4meie patch the role repo with the docs, and remove the same content from the integrated repo at the same time13:16
asettleodyssey4me: I'll note that specifically in the spec then (rather than the 'developer documentaion' note I have currently)13:17
asettleCool? :)13:17
asettleWe'll sort out the details once this is approved13:17
*** Zucan has joined #openstack-ansible13:18
openstackgerritAlexandra Settle proposed openstack/openstack-ansible-specs: DOCS: Overhaul installation guide  https://review.openstack.org/32347113:18
*** mkrish004c has joined #openstack-ansible13:23
Adri2000hello13:24
Adri2000http://docs.openstack.org/developer/openstack-ansible/install-guide/configure-ceilometer.html#setting-up-a-mongodb-database-for-ceilometer13:25
Adri2000was it considered to have a mongodb role in OSA?13:25
Adri2000"just do it"? :) or are we just planning to have gnocchi included and not care about mongodb anymore?13:26
evrardjpwe don't have one now Adri200013:26
odyssey4meAdri2000 There are several roles available in Ansible Galaxy for MongoDB, so we won't curate a role ourselves.13:26
evrardjp^ that's the why13:26
Adri2000odyssey4me: I understand this, though for galera and rabbitmq it's included in OSA13:26
odyssey4meAdri2000 We'd be happy to accept patches for a playbook and docs to deploy MongoDB though from someonw who understands it.13:26
Adri2000so why make a difference?13:26
evrardjpAdri2000: if there is something good to consume we'll do it13:27
odyssey4meAdri2000 When we build the roles for MariaDB/RabbitMQ there weren't existing roles available to meet our needs.13:27
odyssey4meAdri2000 We'd be happy to have the instrumentation to consume one of the Galaxy roles, like we do for keepalived.13:27
Adri2000hmm ok, I'll have a look at how it's done for keepalived13:28
Adri2000anyway with this https://blueprints.launchpad.net/openstack-ansible/+spec/role-gnocchi, I think the mongodb issue will become less relevant13:28
*** michaelgugino has joined #openstack-ansible13:28
Adri2000as you'd be able to deploy ceilometer with gnocchi as a backend, instead of mongodb13:28
odyssey4meAdri2000 sure, although as I understand it there are still other parts of Ceilometer which may best use MongoDB or something similar13:28
evrardjpkeepalived is maybe specific to haproxy here, but that's another question13:28
Adri2000ok, thanks for those informations!13:30
michaelguginoI think I may have solved part of our container network connection problems13:31
*** messy has joined #openstack-ansible13:31
automagicallyOooh, what was the change you made michaelgugino13:33
michaelguginohttps://review.openstack.org/#/c/324801/13:33
automagicallymichaelgugino: ++13:34
odyssey4mehmm, must iptables be in the containers as well?13:37
odyssey4meI guess the neutron containers need it, but do all the others?13:37
pjm6odyssey4me, o/13:37
pjm6thanks, I see that, but i don't find where the vhost were being created (about rabbitmq vhost config)13:38
pjm6only find in playbook test13:38
odyssey4mepjm6 here's an example for you: https://github.com/openstack/openstack-ansible/blob/master/playbooks/os-cinder-install.yml#L119-L14513:39
odyssey4mepjm6 it's not done in the role, except in the test playbook - it's done as part of the 'glue' to put things together in the playbooks13:39
pjm6oh thanks odyssey4me , i find similiar code but were in testing13:41
pjm6it's not a problem adding an aditional vhost?13:41
odyssey4meautomagically it looks like cloudnull patched up the centos lxc version to resolve the centos keystone build errors: https://review.openstack.org/32505213:41
odyssey4mepjm6 and additional vhost for what?13:41
pjm6for the rabbitmq instalattion13:42
*** smatzek has quit IRC13:42
automagicallyodyssey4me: Oh nice, looking13:42
odyssey4mepjm6 you can add any amount of vhosts for your own needs13:42
pjm6and it will be replicated to others rabbitmq, because its in cluster mode13:43
odyssey4mepjm6 yep13:43
pjm6(when having more than one)13:43
pjm6thanks odyssey4me  :)13:43
odyssey4mepjm6 you'll see that we do https://github.com/openstack/openstack-ansible/blob/master/playbooks/os-cinder-install.yml#L85-L97 too13:43
*** sawblade6 has quit IRC13:44
odyssey4methat's so that we get a deterministic order that varies from controller to controller to help balance the load across the rabbit cluster13:44
automagicallyodyssey4me: Reviewed, really not sure how the graphviz package figures in to the LXC version change13:44
*** sawblade6 has joined #openstack-ansible13:44
odyssey4memhayden FYI https://review.openstack.org/#/q/project:openstack/releases+owner:%22Jesse+Pretorius+(odyssey4me)+%253Cjesse.pretorius%2540rackspace.co.uk%253E%2213:45
odyssey4meautomagically me neither, but it can always be cleaned up later if it's important13:45
automagicallyAh, strangely its part of the documentation build done during the LXC make run13:46
*** yatin has joined #openstack-ansible13:46
automagicallyHad to dig a bit, but now it _sorta_ makes sense13:46
odyssey4meautomagically heh, probably for a diagram13:47
pjm6odyssey4me, that will choose which rabbitmq13:47
pjm6will be working,. right?13:47
odyssey4mepjm6 the config for the service gets a list of IP's containing each IP for the rabbitmq servers - the oslo library understands how to use that as a set and if it fails to connect to one, it tries the next one13:48
v1k0d3nevrardjp: ok sorry man. pasting on gist now...13:48
odyssey4mepjm6 that's why we don't have to put rabbitmq behind the load balancer13:48
mkrish004cHi Guys, i am running OSA 12.0.9, it is using Ansible v1.9.4. Will it impact the OSA if i update Ansible v2.0.1 by anyway ?13:48
pjm6so the responsability is in the side of oslo library to do LB, nice =D13:49
odyssey4mepjm6 but the way rabbitmq does the queue clustering, the first cluster node that is connected to which creates the queue always manages the queue from then on unless it goes down13:49
odyssey4memkrish004c it will not work with Ansible > 1.9.413:49
odyssey4memkrish004c we will support Ansible 2.1 for the Newton release13:49
odyssey4mepjm6 yes, the oslo library handles the reconnects and therefore the resiliency13:50
pjm6odyssey4me, btw: do you know what happens if a task is interrupted in the middle?13:50
mkrish004cOkay, Thanks a lot odyssey4me, and is there any one trying out OVS+DPDK for liberty, because i am writing my own on 12.0.9. I just want to foresee if any know issue our team faced.13:51
pjm6in this way, is being consumed by an API, but the process is interrupted13:51
odyssey4mepjm6 I don't know specifically, but in other MQ systems I've worked with it works something like this - if your client has read the message, the message is removed from the server. If that client is lost or loses the message, it's gone.13:52
*** ametts has joined #openstack-ansible13:52
michaelguginomkrish004c: we have some ovs stuff in master, but not utilizing dpdk.  You may want to base your work off of that13:52
odyssey4memkrish004c We are implementing OVS in Newton.13:52
v1k0d3nevrardjp: ok...https://gist.github.com/v1k0d3n/3aedc7b7db8511d3c172d6361d9adf0e13:53
mrhillsmanmorning13:53
pjm6odyssey4me, yes, that make sense, and as I know, make sense, the question was a "isolated situation" in case of the client read the message but not completing13:53
v1k0d3nthink there are a few things that need to change. some i'm fairly confident in...although haven't done a multi-node deploy in a bit.13:53
odyssey4memkrish004c You may wish to work with us in Newton using a test environment to validate that it meets your needs and submit patches for any issues you find. Once the patches are merged you can try backporting them into your own fork at your discretion. That way you can be assured that your tech debt will not carry through to the next version of OVS, and you also get input from the whole community on what you think13:54
odyssey4me is a good solution.13:54
odyssey4mepjm6 You'll have to test. I have no idea.13:54
openstackgerritMerged openstack/openstack-ansible-lxc_hosts: Update the version of LXC for centos7  https://review.openstack.org/32505213:54
pjm6odyssey4me, ok :) i will test it and let you known when i got a conclusion :D thanks for the explation :D will be a great help13:54
Bofu2MBPFailing on setup-openstack.yaml on "ensure service tenant" with the following flooding the keystone logs: https://gist.github.com/automatedtendencies/54bc299c2e8863bd71ff978cf3ae1e8b any ideas? :(13:55
odyssey4meBofu2MBP I'm not seeing a relevant error, other than 'Authorization failed. The request you have made requires authentication. from 10.102.0.13'13:57
Bofu2MBP.13 is one of the controllers13:57
*** weezS has joined #openstack-ansible13:57
Bofu2MBP(the same one it's trying to fix in the task)13:57
Bofu2MBPbut the creds haven't changed at all. :|13:57
odyssey4meThe admin_token_auth warnings will disappear once the upstream api-paste has that removed, so it's a cosmetic warning13:57
*** ChanServ changes topic to "Launchpad: https://launchpad.net/openstack-ansible || Weekly Meetings: https://wiki.openstack.org/wiki/Meetings/openstack-ansible || Review Dashboard: https://goo.gl/tTmdgs"13:58
-openstackstatus- NOTICE: Cleanup from earlier block storage disruption on static.openstack.org has been repaired, and any jobs which reported an "UNSTABLE" result or linked to missing logs between 08:00-14:00 UTC can be retriggered by leaving a "recheck" comment.13:58
odyssey4meBofu2MBP you may wish to confirm that auth works for all the services based on the userid/password from secrets13:58
Bofu2MBPk ill give it a shot real quick, if those fail in any way what would be the best way to fix it?13:58
Bofu2MBPodyssey4me: root@controller2-utility-container-51868550:~# nova list13:59
Bofu2MBPERROR (Unauthorized): The request you have made requires authentication. (HTTP 401) (Request-ID: req-dc652bf2-8cce-4157-a650-312d170d2e34) :|13:59
Bofu2MBPthat's after I source'd the openrc, obv.14:00
mkrish004cThats also  a good idea odyssey4me, how can i get the newton test version ?14:02
odyssey4memkrish004c Newton is our master branch.14:03
evrardjpmkrish004c: I'd be happy to share with you about your experience of dpdk14:04
odyssey4meBofu2MBP you'll have to use the keystone admin endpoint to set the password for the user to the one that it's supposed to be14:05
Bofu2MBPodyssey4me that requires the token correct? I don't see that in the keystone conf :-/14:05
*** smatzek has joined #openstack-ansible14:05
odyssey4meBofu2MBP oh, so even your admin:admin account is failing? oh dear - you may have to either set a token in keystone.conf temporarily, or use keystone-manage bootstrap to reset the password14:06
odyssey4meI'm not sure if the keystone-manage bootstrap can be used to reset the password, but it's worth a try14:06
evrardjpv1k0d3n: You have an issue with external and internal lb address14:08
*** aslaen has joined #openstack-ansible14:08
v1k0d3nevrardjp: yeah...my general understanding of it.14:08
v1k0d3nlol14:08
v1k0d3ni'm trying to understand it better14:08
*** aboyle has joined #openstack-ansible14:09
Bofu2MBPodyssey4me alright I can try keystone-manage bootstrap14:11
evrardjpyou have the same ip assigned to your public/internal net14:11
Bofu2MBPor the token, which would you like me to try first? :P I don't trust my judgement on this anymore lol14:11
evrardjpI think you should probably set 10.2.32.9 for external vip14:12
Bofu2MBPodyssey4me interesting ... my regular credentials are working for horizon now14:12
odyssey4meBofu2MBP try the bootstrap first14:12
mkrish004cevrardjp Sure, i have a set up of manual installation of OVS+DPDK from the intel doc, i thought of do it in OSA frameworks.14:13
evrardjp:D14:13
evrardjpgood news :D14:13
Bofu2MBPodyssey4me: is that through the utility container or ...?14:14
odyssey4meBofu2MBP keystone-manage will need DB access to the keystone DB, so it likely uses /etc/keystone/keystone.conf so I'd guess the keystone container14:15
Bofu2MBPcommand not found. doh14:15
v1k0d3nevrardjp: this was one of the things i wanted to ask you about actually....14:15
mkrish004ci started working on OSA from 12.0.9, so just took a very long time to get through it and play around with it. I am using the same version to have OVS patch on the quite similar way of walmart patch.14:16
evrardjpv1k0d3n: also your br-vlan (used for keepalived) should be dedicated for it. So you should not reuse-it elsewhere, for example on a network node14:16
evrardjpor infra node14:16
evrardjpyou should wire it with a fake interface or use another interface14:16
asettleodyssey4me: you got the link to the meeting minutes last night?14:17
*** weshay has joined #openstack-ansible14:17
asettleI can't find.14:17
v1k0d3nok... evrardjp good stuff. sooo....for keepalive, can i just use a vlan interface? let me show you how it's prepared...14:18
odyssey4measettle I haven't updated the wiki - gimme a moment14:18
asettleodyssey4me: all good, found the eavesdrop14:18
odyssey4measettle you can always look for them here: http://eavesdrop.openstack.org/meetings/openstack_ansible/2016/14:19
v1k0d3nevrardjp: https://github.com/att-esst/osa-prep/tree/master/roles/osa-deploy-networking/templates14:19
v1k0d3nso bond1 has 3 (now 4) vlans assigned...14:19
Bofu2MBPodyssey4me: "The request you have made requires authentication. (HTTP 401) (Request-ID: req-22fb0dbf-f02e-48c8-b728-26c61baccaa6)" on "keystone bootstrap"14:19
v1k0d3nso physical (interfaces) bonds (bonds) vlans (you see it now) and then osad. i automate the preparation of the interfaces and the policy based routes for each interface.14:20
v1k0d3nso everything is automated for prep, and then i just have to drop configs and launch.14:20
Bofu2MBPv1k0d3n thats how I have mine14:20
Bofu2MBPvlans on bridges on bonds14:21
v1k0d3nso should i create a new vlan, and have haproxy configured for that then?14:21
odyssey4meBofu2MBP have you validated that your galera auth works?14:21
evrardjpv1k0d3n: are the haproxy nodes dedicated to doing the LB?14:21
*** KLevenstein has joined #openstack-ansible14:21
Bofu2MBPodyssey4me: regular mysql authentication? I'm in right now through navicat (mysql management type shit - software) so that does work14:21
Bofu2MBPI haven't tested keystone specific login, though.14:21
v1k0d3ni guess they should be. but how would i know for sure?14:22
evrardjpv1k0d3n: if not, and you're giving br-vlan to neutron, you shouldn't use the same interface14:22
odyssey4meBofu2MBP it may be working for your root account, but each service has its own accounts - check that they work14:22
evrardjpv1k0d3n: you can drop me your openstack_user_variables next week14:22
*** sigmavirus24_awa is now known as sigmavirus2414:22
evrardjpbecause I have to leave now14:22
v1k0d3nok. that's cool14:22
odyssey4meBofu2MBP rebuilds are no fun :/14:22
Bofu2MBPodyssey4me especially when all of the stuff is down. :(14:23
v1k0d3nthanks for offering to help. i really want to understand and wrap my head around this.14:23
*** oneswig has joined #openstack-ansible14:23
Bofu2MBPodyssey4me: is there a playbook part that sets all of the users/pass up?14:23
evrardjpyw14:23
Bofu2MBPv1k0d3n: do you want me to send you my config?14:23
Bofu2MBPI have R610s as my controllers, each of which has 4 NICs in a LACP bond14:23
Bofu2MBPNIC ports that is14:23
odyssey4meBofu2MBP it gets done in each os-<service>-install.yml playbook14:23
Bofu2MBPand then VLANs on top of it14:23
Bofu2MBPodyssey4me: so in theory if I run the keystone install and it works, it should be oK?14:24
v1k0d3nBofu2MBP: yeah that would be amazing.14:24
Bofu2MBPwhats your email14:25
v1k0d3nso you guys are using haproxy too14:25
Bofu2MBPyep14:25
v1k0d3nbjozsa@jinkit.com14:25
Bofu2MBP3 node haproxy14:25
v1k0d3nhow many nodes are you running from infra/compute?14:25
Bofu2MBP8 compute14:25
Bofu2MBP3 controllers14:25
v1k0d3nwondering at what point it starts tanking? think i read somewhere about 150 or so14:25
Bofu2MBP1 storage14:25
odyssey4meBofu2MBP without inspecting the play tasks in question, I guess - it should use the root account to set the password14:25
v1k0d3n?14:25
odyssey4meBofu2MBP it should also use the keystone-manage bootstrap to set the keystone admin account14:26
Bofu2MBPv1k0d3n not sure about that one, we use C6100s as compute nodes but as we're starting to sell more we'll be scaling fairly fast.14:26
Bofu2MBPodyssey4me: "perform a keystone db sync" successfully works, always just freezes on the ensure tenant part14:27
*** oneswig has quit IRC14:27
odyssey4meBofu2MBP ok, so the galera creds are working then - the issue is that keystone admin creds and it looks like the bootstrap doesn't overwrite the existing settings14:28
Bofu2MBPodyssey4me so what's the best way to proceed without jumping out of the closest window?14:29
odyssey4medolphm lbragstad is keystone-manage bootstrap meant to skip the bootstrap if there are already settings in place? what is the right way to fix up creds that are lost somehow for the keystone admin?14:29
Bofu2MBPv1k0d3n: just to confirm, is the only thing you need the network config settings for the bridges, etc?14:30
dolphmodyssey4me: bootstrap should be idempotent, but i don't think it'll change an admin's password if you specify something different14:30
odyssey4meBofu2MBP considering that the token_auth is still available in the keystone api pipeline, I expect that you could use the config_override mechanism to implement an auth_token temporarily and use the token auth method to reset the admin account password14:30
odyssey4medolphm so the options are, I guess, to delete the admin account in the db or to use the auth_token middleware?14:31
dolphmodyssey4me: at least not in mitaka -- i can't think of a reason for it not to behave that way, though14:31
dolphmodyssey4me: i prefer the idea of it doing a password reset14:31
odyssey4medolphm me too14:31
Bofu2MBPso throw an auth_token into the config_override and then use that token to reset the admin account password14:32
lbragstadodyssey4me right - it looks like bootstrap attempts to create things if you run it again but it excepts the conflicts14:32
odyssey4meBofu2MBP yep, you'll have to do the reset using the admin endpoint and specifically using the token auth method14:32
Bofu2MBPodyssey4me k. I'll grab some coffee then try to find out how to do the shit I literally just said. Too early and being sick == not a good combo.14:33
Bofu2MBPheh14:33
odyssey4melbragstad dolphm yeah, considering the removal of the auth_token middleware (possibly in O) it would seem that this is a bit of an operational oversight in functionality14:33
Bofu2MBPwait, didn't the error log indicate that I had a token set?14:34
odyssey4meBofu2MBP nope, it was indicating that you had the auth_token middleware in the pipeline14:35
Bofu2MBPAH ok14:35
Bofu2MBPodyssey4me: keystone_keystone_conf_overrides correct?14:37
odyssey4meBofu2MBP yep14:37
*** scarlisle has joined #openstack-ansible14:38
Bofu2MBPodyssey4me: and it's just "admin_token"?14:39
odyssey4meBofu2MBP yep, according to http://docs.openstack.org/mitaka/config-reference/identity/options.html14:39
Bofu2MBPrgr14:40
Bofu2MBPhere goes nothin14:40
*** bryan_att has joined #openstack-ansible14:40
odyssey4meBofu2MBP then you should be able to use the bits at the start of this page to tell the client to use the token: http://docs.openstack.org/mitaka/install-guide-ubuntu/keystone-services.html14:41
odyssey4mewhere 'ADMIN_TOKEN' should be replaced by your specific token that you added to the config_override14:41
*** deadnull_ has quit IRC14:42
*** yatin has quit IRC14:43
Bofu2MBPodyssey4me: "__init__() got an unexpected keyword argument 'token'" :|14:44
Bofu2MBPwhen I ran the openstack service create14:44
v1k0d3nBofu2MBP: that would be helpful i guess...but really looking at how you have haproxy configured.14:47
Bofu2MBPv1k0d3n I just used the default playbooks14:47
Bofu2MBPall 3 controllers are on the role14:47
Bofu2MBPwith keepalive14:47
v1k0d3nyeah, so you have a separate interface for keepalive?14:48
odyssey4meBofu2MBP you shouldn't have to do a service create - try executing 'openstack catalog list' I think it is to show the existing catalog14:49
odyssey4meand 'openstack endpoint list' to see if all the endpoints are there14:50
odyssey4meBofu2MBP all you actually need to do is ensure that the admin user is there, and its password is right - then the playbooks will do all the rest14:50
odyssey4meBofu2MBP oh, and of course that the endpoints are using the right LB addresses14:51
Bofu2MBProot@controller1-utility-container-7c63504d:~# export OS_TOKEN=xxxxroot@controller1-utility-container-7c63504d:~# openstack catalog list14:51
Bofu2MBP__init__() got an unexpected keyword argument 'token'14:51
Bofu2MBP:|14:51
odyssey4meBofu2MBP odd, what version of openstack is this? mitaka?14:51
Bofu2MBPshould be14:52
Bofu2MBPallegedly14:52
Bofu2MBPcoming from liberty on an upgrade, technically14:52
*** raddaoui has joined #openstack-ansible14:52
odyssey4meBofu2MBP is the auth_token line now in keystone.conf ?14:52
odyssey4mesorry - admin_token14:53
Bofu2MBPodyssey4me: root@controller1-keystone-container-f8991646:~# cat /etc/keystone/keystone.conf|grep token14:53
Bofu2MBPadmin_token = xxxxxx14:53
odyssey4meand the keystone services restart after the conf was changed?14:53
Bofu2MBPfrom what I can tell yeah14:53
odyssey4meso the openstack client is erroring out on the token keyword?14:54
odyssey4meweird14:54
Bofu2MBPis there a way I can manually reset the password within the database itself14:54
Bofu2MBPsince I have access to the mysql14:54
odyssey4medolphm lbragstad any advice? it looks like trying to use auth_token isn't working either...14:55
Bofu2MBPI somehow always find the edge cases ;)14:55
odyssey4memaybe just delete the admin user from the DB, then bootstrap again?14:55
odyssey4meBofu2MBP it's probably best to do a DB backup 'round about now14:56
lbragstadodyssey4me that would probably work - then it would recreate it for you14:56
mhaydenodyssey4me: thanks14:56
lbragstad++ to the backup14:56
Bofu2MBPodyssey4me: trust me it's backed up in like 5 places14:56
Bofu2MBPbecause I had to recover it from a crash. :|14:56
*** javeriak has quit IRC14:58
Bofu2MBPodyssey4me - alright, so am I deleting the admin mysql user? a different user? keystone user? which db if you know?14:58
odyssey4meBofu2MBP I'm not familiar with the current DB layout, but it's likely you'll have to delete the user and the associated password entry15:00
Bofu2MBPkk15:00
*** javeriak has joined #openstack-ansible15:00
Bofu2MBPI see the user table within keystone db, assuming that's the right place for this - but just in case, lbragstad any chance you can confirm real quick before I go delete heavy on everything around me?15:00
lbragstadBofu2MBP https://github.com/openstack/keystone/blob/master/keystone/cmd/cli.py#L21915:01
lbragstadyep - it should be in the user tabl;e15:01
*** saneax_AFK is now known as saneax15:01
*** Drago has joined #openstack-ansible15:01
*** Drago has joined #openstack-ansible15:02
Bofu2MBPappreciated15:02
Bofu2MBPhere goes nothing, fingers crossed15:02
Bofu2MBPhm... lbragstad the schema doesn't match the vars in that code15:04
Bofu2MBPcode: name/enabled/domain_id/password, DB schema: id/extra/enabled/default_project_id15:04
gregfaustanyone know why lxc-br needs to be bounced when building an AIO?  https://github.com/openstack/openstack-ansible/blob/master/scripts/run-playbooks.sh#L56-L5915:05
lbragstadBofu2MBP does it look like this - https://github.com/openstack/keystone/blob/master/keystone/identity/backends/sql_model.py#L24 ?15:05
gregfaustcommenting that out seems to help with the container connectivity issues that I was running into yesterday15:05
odyssey4megregfaust yep, run-playbooks should not be executed more than once15:06
Bofu2MBPlbragstad good call on that code, it's local_user not user -- but both tables exist in keystone db15:06
javeriakhey odyssey4me is there any official workflow to switching out a infra node?15:06
odyssey4megregfaust if you've executed it once, then only run the playbooks directly from then on15:06
lbragstadBofu2MBP oh - right. Sorry, i should have been more specific15:06
Bofu2MBPlbragstad no worries. I appreciate the help :)15:07
*** yatin has joined #openstack-ansible15:07
lbragstadBofu2MBP the admin user should be a local user with respect to keystone SQL backend15:07
odyssey4mejaveriak add a new infra node, then remove the old one - it'd be nice to have that added to the ops docs15:07
gregfaustthanks odyssey4me, i'm going to start over and see if I get a clean run on the first try15:07
lbragstadBofu2MBP no problem15:07
javeriakodyssey4me sure would, i think there are some things that need to be taken care of on top; i just root caused my earlier problem with the repo containers. the old primary couldnt talk to the new one because it still had the old ones key in it15:08
javeriakodyssey4me, that could be the issue with any of the other services too though that sync among themselves...15:09
palendaeIf any cores have time today, a look at https://review.openstack.org/#/c/283149/ would be appreciated15:09
odyssey4meautomagically jmccrory we could do with some reviews for https://review.openstack.org/323504 / https://review.openstack.org/323033 - those need backports to stable/mitaka to fix upgrades from liberty15:12
* automagically looking15:12
*** javeriak has quit IRC15:13
dolphmodyssey4me: https://bugs.launchpad.net/keystone/+bug/158886015:14
openstackLaunchpad bug 1588860 in OpenStack Identity (keystone) "keystone-manage bootstrap cannot recover admin account" [Undecided,In progress] - Assigned to Dolph Mathews (dolph)15:14
dolphmodyssey4me: fixed in https://review.openstack.org/#/c/325352/15:14
dolphmodyssey4me: and i'll try to get it backported15:14
odyssey4medolphm awesome, thanks - is there potentially a case where there could be two admin accounts of the same name in the same domain - one disabled and one enabled?15:17
cloudnullany chance I can get some reviewer love on https://review.openstack.org/#/c/323504 and https://review.openstack.org/#/c/32303315:17
odyssey4mecloudnull I just asked automagically and jmccrory to peek at it :)15:18
cloudnullah cool15:18
cloudnullthanks15:18
* cloudnull missed the scroll back message15:18
cloudnullodyssey4me: Also this one https://review.openstack.org/#/c/324974/15:18
Bofu2MBPlbragstad odyssey4me: re-ran the keystone install which failed due to "missing credentials" so now just doing setup-everything to be safe.15:19
cloudnullthat should round out multi-distro support for neutron15:19
errrprometheanfire: ping15:19
odyssey4meBofu2MBP missing credentials? I'm not sure that setup-everything will do much better15:21
Bofu2MBPincorrect credentials* sorry15:21
Bofu2MBPaka it tried to authenticate but didn't work - assuming the create user was on a different playbook earlier in the run?15:21
odyssey4meBofu2MBP are your secrets populated, and are you using the 'openstack-ansible' command to execute the playbook15:21
Bofu2MBPyep and yep.15:22
odyssey4mehmf15:22
*** yatin has quit IRC15:23
odyssey4mecloudnull see automagically's comment in https://review.openstack.org/32350415:23
*** klamath has joined #openstack-ansible15:32
*** karimb has joined #openstack-ansible15:40
*** asettle has quit IRC15:42
*** sacharya has joined #openstack-ansible15:49
odyssey4meoh neat, mhayden has a new contributor: https://review.openstack.org/#/q/project:openstack/openstack-ansible-security+status:open15:51
openstackgerritMajor Hayden proposed openstack/openstack-ansible-security: [WIP] Add check/audit to gate testing  https://review.openstack.org/32448215:52
openstackgerritMajor Hayden proposed openstack/openstack-ansible-security: Fix broken check mode for CentOS 7  https://review.openstack.org/32537615:52
mhaydenodyssey4me: yeah, i need to gander at those15:52
mhaydenodyssey4me: also had a bug come in for better RHEL support15:52
mhaydenthere are some things around RHN and GPG checks that need to be adjusted15:52
*** sc68cal has joined #openstack-ansible15:52
mhaydenbut it shouldn't be a heavy lift15:53
odyssey4memhayden :)15:53
openstackgerritTravis Truman (automagically) proposed openstack/openstack-ansible: POC - Bug in dynamic_inventory that persists global_overrides  https://review.openstack.org/32538015:57
automagicallypalendae if you are around I would appreciate your eyes on that ^15:57
mhaydenodyssey4me: do you know offhand if we have a rhel image in CI-land?15:57
palendaeI am15:57
automagicallyI have seen this bug crop up when doing deployments, and finally think I’ve got a test case that demonstrates its existence15:58
mhaydenkboratynski: i just put a few comments in your security role patches -- let me know if i can help!15:58
*** mikelk has quit IRC15:58
odyssey4memhayden nope, no non-free images in openstack-ci15:59
mhaydenwell darn15:59
dmsimardfyi spotted a 2.1 regression .. https://github.com/ansible/ansible/issues/1612516:02
odyssey4methanks dmsimard - hopefully that gets resolved quickly, and a proper test applied to ensure it never happens again16:05
dmsimardwe poked the beehive about it already16:05
dmsimardgetting pretty frustrated about the amount of regressions that have been landing since 2.016:06
palendaeUnderstandable, though I don't think their test suite was very big prior to the refactor, either16:06
openstackgerritMerged openstack/openstack-ansible-lxc_hosts: Fix missing iptables in containers  https://review.openstack.org/32480116:07
palendae(also that is why I'm trying to wrap dynamic_inventory.py in tests :))16:08
*** javeriak has joined #openstack-ansible16:09
*** alikins has joined #openstack-ansible16:09
odyssey4meautomagically palendae can we get rid of global overrides and replace them with group_vars instead please? :)16:10
Bofu2MBPodyssey4me lbragstad looks like as it's running setup-openstack more data is starting to show up in the interface and I can login now, at this rate I may actually be up and running again soon. thank you!16:10
palendaeodyssey4me, Yes, but IMO they need a deprecation cycle16:10
automagicallyodyssey4me: I think that’s quite likely, but presents some migration challenges16:10
palendaeAlso, group_vars doesn't generate networks16:10
lbragstadBofu2MBP good to hear!16:10
*** bsv has quit IRC16:11
palendaeWe still don't have solid plans for alternative inventory implementations, which makes it murkier16:11
odyssey4meautomagically palendae sure, a dep cycle is important and perhaps there are some items that we'll need to figure out a better solution for... but if we can gradually move towards using more standard ansible inventory tooling and less dynamic inventory magic then it'd be far easier for people ot understand how it all works16:12
openstackgerritTravis Truman (automagically) proposed openstack/openstack-ansible-openstack_hosts: Adopting the common role documentation pattern  https://review.openstack.org/32539016:12
palendae automagically I wouldn't be at all surprised if fixing this bug will break people relying on the bad behavior :(16:12
automagicallypalendae: That is very likely16:12
automagicallyodyssey4me: I could not agree more16:13
palendaeodyssey4me, Don't disagree. We still have to worry about creating containers, though16:13
palendaewe wedged ourselves with that16:13
*** javeriak_ has joined #openstack-ansible16:13
automagicallypalendae: But, if that’s the only thing we do is container creation, then the better16:13
palendaeWe could have LXD take it over, but then, afaik, that precludes RHEL support16:13
odyssey4mepalendae automagically I think a mid cycle topic of note will have to be a design discussion around what we want from the inventory, so we can spec it out.16:13
*** Drago has left #openstack-ansible16:13
automagicallyodyssey4me: ++16:13
odyssey4mepalendae we can just compile lxd on RHEL like we do for LXC16:13
*** metral has quit IRC16:13
palendaeThat was supposed to be at summit too :p16:13
palendaeI'm all for it, it's just that so far none of us have good ideas of what we actually want as a replacement16:14
automagicallyWe’ll get there16:14
palendaeWe have ideas about structure, which is good16:14
palendaeautomagically, Sure, just saying we're having cyclical conversations so far16:14
automagicallyTrimming out the gross bits slowly should help us determine a much better final shape16:14
odyssey4mepalendae yeah, we did start discussions there and I expect that the design discussion will take quite a bit of wrangling and might need another summit to finalise16:14
palendaeodyssey4me, Yeah, absolutely16:15
palendaeIMO Newton will be making dynamic_inventory.py less scary, O can be about breaking it up16:15
odyssey4mewe have some actual requirements from those discussions in terms of real world usage needs... we just never got to writing them down16:15
*** javeriak has quit IRC16:16
automagicallyWe got a good list of desired features: https://etherpad.openstack.org/p/openstack-ansible-newton-dynamic-inventory16:16
openstackgerritMerged openstack/openstack-ansible-os_magnum: Enable developer mode  https://review.openstack.org/32480916:16
odyssey4meI think it makes sense for us to focus on functional needs rather than implementation details for back-ends and such. The functional needs then need to drive the back-end implementation proposals.16:16
palendaeautomagically, So just container creation entials having networks16:16
openstackgerritMerged openstack/openstack-ansible-os_magnum: Remove pip_lock_down dependency  https://review.openstack.org/31389016:16
palendaeautomagically, So container creation as the only thing is still a bit big16:17
palendaeThat said, definition of that can be done somewhere else16:17
odyssey4meautomagically let me add a few more from discussions later which never made it onto there16:18
automagicallyodyssey4me: Please do16:18
*** cloader89 has joined #openstack-ansible16:19
palendaeI'm currently most interested in the 'be more like normal ansible inventory' requirement16:19
palendaeWe don't really have a place to specify hosts/IPs otherwise yet16:19
palendaeNearly everyone will have a different place for that16:20
palendaeIdeally we'd take a connection string and a query to get it though16:20
*** Zucan has quit IRC16:23
palendaesigmavirus24, If you have time today, would you mind providing some feedback on my approach at https://review.openstack.org/#/c/323601/ ?16:36
*** deadnull_ has joined #openstack-ansible16:37
*** smatzek has quit IRC16:39
*** Bofu2MBP has quit IRC16:41
prometheanfireerrr: ?16:42
sigmavirus24palendae: surely16:43
kboratynskimhayden: Hey! Yep, I agree with variables. Small question, what relase notes would you like to me provide? V-ids comments everything, I think. ;-)16:44
palendaeLunching16:46
*** javeriak has joined #openstack-ansible16:47
odyssey4mealright, I'm out for the w/end - have a great w/end all!16:48
palendaeYou too16:48
*** javeriak_ has quit IRC16:50
mhaydenkboratynski: for release notes, just think about what you might want to see if you were a sysadmin working with that change16:53
mhaydenlet me see if i can find an example16:53
openstackgerritSudarshan Acharya proposed openstack/openstack-ansible: Adding missing / to swift rabbit connection string  https://review.openstack.org/32541316:53
mhaydenkboratynski: http://docs.openstack.org/releasenotes/openstack-ansible-security/unreleased.html16:54
mhaydenkboratynski: look at the release note for V-51337 there16:54
kboratynskimhayden: Aaaach! Ok, then. I will add it today in the evening.16:55
kboratynskiAnd I have few more branches to push, but I will add variables and release notes previously.16:56
*** chhavi has quit IRC16:56
mhaydenthanks kboratynski!16:57
*** deadnull_ has quit IRC17:06
*** sacharya_ has joined #openstack-ansible17:11
openstackgerritTravis Truman (automagically) proposed openstack/openstack-ansible-openstack_hosts: Cleanup/standardize usage of tags  https://review.openstack.org/32541817:11
openstackgerritTravis Truman (automagically) proposed openstack/openstack-ansible-openstack_hosts: Fail immediately when kernel needs an update  https://review.openstack.org/32541917:13
*** sacharya has quit IRC17:13
*** tiagogomes has quit IRC17:17
*** metral has joined #openstack-ansible17:24
*** oneswig has joined #openstack-ansible17:25
openstackgerritMajor Hayden proposed openstack/openstack-ansible-security: Add initial support for Red Hat Enterprise Linux 7  https://review.openstack.org/32542117:27
*** oneswig has quit IRC17:29
mhaydenweird, a dependent review made it through the gate faster than the thing it depends on17:29
*** smatzek has joined #openstack-ansible17:29
* mhayden scratches his head17:30
michaelguginobad news, the iptables didn't fix the container networking, at least not for os_nova17:31
*** deadnull_ has joined #openstack-ansible17:31
*** Guest75 has joined #openstack-ansible17:32
*** Guest75 is now known as Bofu2MBP17:32
*** smatzek has quit IRC17:32
*** smatzek has joined #openstack-ansible17:33
*** Iqbal has quit IRC17:33
openstackgerritMajor Hayden proposed openstack/openstack-ansible-security: Add initial support for Red Hat Enterprise Linux 7  https://review.openstack.org/32542117:35
*** yatin has joined #openstack-ansible17:36
mgagneI'm confused. What's the correct syntax in a when clause to determine if a task changed? As an example with "result" registered, I see result.changed and result|changed. Which syntax is recommended?17:40
mgagnehttps://github.com/openstack/openstack-ansible-os_neutron/blob/656a9769899f090278f53768b0ae825e798f10ba/tasks/ovs_install-apt.yml#L29 vs https://github.com/openstack/openstack-ansible-os_neutron/blob/dbbdebba564aa2e9dad1d7fe372774ad083d272c/tasks/neutron_init_upstart.yml#L3117:40
automagicallyresult | changed is recommended17:41
mgagnethanks!17:41
*** v1k0d3n has quit IRC17:44
*** weezS has quit IRC17:45
*** klamath has quit IRC17:52
*** permalac has quit IRC17:58
*** KLevenstein has quit IRC18:01
*** metral has quit IRC18:02
*** psilvad has joined #openstack-ansible18:06
*** deadnull_ has quit IRC18:26
chris_hultinI'm running into an issue trying to install Magnum - it looks like the packages that are getting cached on the deploy server don't include the version of oslo.middleware that is required for Magnum.18:28
*** javeriak has quit IRC18:30
*** javeriak has joined #openstack-ansible18:31
chris_hultinSpecifically, Magnum wants >=3.0.0, it's only caching 2.8.018:33
automagicallyWhich version of OSA are you using chris_hultin18:34
chris_hultinautomagically: Very good question.  What's the best way to find that out?18:37
automagicallyThe value of openstack_release in playbooks/inventory/group_vars/all.yml18:37
pjm6anyone had problems like: "not bound, no agent registered on host os-compute01" ?18:38
chris_hultinautomagically: 12.0.1418:38
pjm6before failing Port binding (when creating an instance)18:38
pjm6i get that warning, and in the compute host, i don't see the br-vlan.VLAN_ID craeted18:38
automagicallyOkay, so that’s a Liberty release chris_hultin. TBH, I’m not sure the magnum role got much testing in that release, or since18:38
automagicallyIts not part of the integrated gate testing and I’m not aware of deployers who are using it currently18:39
automagicallyIts quite possible that the role needs some fixes. IIRC sigmavirus24 was the primary contributor there, he may have some more tips for you chris_hultin18:40
chris_hultinautomagically: This should be extremely fun then.  Do you have any recommendations on where to start with fixing this dependency issue?18:40
chris_hultinautomagically: Thanks for the advice18:40
automagicallysure, np18:40
automagicallyI have not used the role, nor do I have any experience with Magnum in general, so that’s probably the best I can offer right now18:41
chris_hultinFair enough.  Do you know of any way to change what packages are cached on the local PIP server?18:41
openstackgerritMerged openstack/openstack-ansible-rsyslog_client: Add CentOS7 support to rsyslog client  https://review.openstack.org/32009918:44
pjm6for some reason linux bridge agent don't detect18:47
pjm6in the network agents18:47
automagicallychris_hultin: I believe there is a way, but I’m not finding it at the moment.18:47
*** asettle has joined #openstack-ansible18:47
automagicallychris_hultin: This may be useful tho: https://github.com/openstack/openstack-ansible-repo_build/blob/master/defaults/main.yml#L3318:48
pjm6anyone have a clue?18:48
*** weezS has joined #openstack-ansible18:51
*** asettle has quit IRC18:52
*** yatin has quit IRC18:57
openstackgerritAntony Messerli proposed openstack/openstack-ansible-specs: Xen Virt Driver Support  https://review.openstack.org/32549019:00
openstackgerritkboratynski proposed openstack/openstack-ansible-security: Implemented: V-38524.  https://review.openstack.org/32496019:00
kboratynskimhayden: Be so kind have a look at my commit message. Is it OK up to you?19:00
*** aslaen has quit IRC19:03
*** mfisch has quit IRC19:06
*** aslaen has joined #openstack-ansible19:06
*** hybridpollo has joined #openstack-ansible19:07
mhaydensure, let me look19:10
mhaydenAnsible 2.2 roadmap is out -> https://github.com/ansible/ansible/blob/devel/docsite/rst/roadmap/ROADMAP_2_2.rst19:10
openstackgerritNolan Brubaker proposed openstack/openstack-ansible: Extract and test inventory and backup I/O  https://review.openstack.org/32360119:11
palendaeautomagically, ^ may be helpful to build off of for that global overrides stuff19:11
*** javeriak has quit IRC19:11
mhaydenkboratynski: that one may need to be disabled by default (just commented)19:14
mhaydenalso, i forgot to mention docs on the previous review comments19:14
*** hybridpollo has quit IRC19:14
mhaydenhttp://docs.openstack.org/developer/openstack-ansible-security/writing-docs.html19:15
kboratynskimhayden: Sure! Sorry, I have not found these docs.19:16
mhaydenthe docs eventually end up here -> http://docs.openstack.org/developer/openstack-ansible-security/controls-cat2.html#v-38524-the-system-must-not-accept-icmpv4-redirect-packets-on-any-interface19:16
automagicallyThx palendae19:16
mhaydenno, thank you automagically19:17
*** metral_zzz has joined #openstack-ansible19:21
*** metral_zzz is now known as metral19:21
*** ametts has quit IRC19:22
*** oneswig has joined #openstack-ansible19:26
*** bbmbx__ has joined #openstack-ansible19:27
*** Mudpuppy has quit IRC19:29
*** Mudpuppy has joined #openstack-ansible19:29
*** bbmbx has quit IRC19:30
*** oneswig has quit IRC19:31
openstackgerritkboratynski proposed openstack/openstack-ansible-security: Implemented: V-38524.  https://review.openstack.org/32496019:34
kboratynskimhayden: Done. ;-)19:34
*** Mudpuppy has quit IRC19:34
kboratynskiBut... Mayby we shall add a boolean variable for every test in this role? If so?19:36
mhaydenkboratynski: looking good -- just one comment about using the variable to skip that configuration19:36
mhaydeni'd rather direct deployers to the variables rather than --skip-tag19:37
kboratynskimhayden: Well... Have a look at http://docs.openstack.org/developer/openstack-ansible-security/writing-docs.html19:38
kboratynskiAnd the example that is written there. ;-)19:38
mhaydenkboratynski: hah, i'm fixing up that page as we speak :P19:38
mhaydenit needs some love19:38
kboratynski<319:38
kboratynskiOk, I will fix it.19:38
mhaydenthanks, kboratynski!19:38
kboratynski(I mean, my documentation and this example, if you want to.)19:39
*** johnmilton has quit IRC19:40
openstackgerritkboratynski proposed openstack/openstack-ansible-security: Implemented: V-38524.  https://review.openstack.org/32496019:43
*** aboyle has quit IRC19:43
mhaydencool -- waiting on the gate job19:44
openstackgerritGreg Faust proposed openstack/openstack-ansible: add note about building AIO more than once  https://review.openstack.org/32549819:49
*** KLevenstein has joined #openstack-ansible19:49
*** rahuls has joined #openstack-ansible19:51
openstackgerritMajor Hayden proposed openstack/openstack-ansible-security: Docs: Add developer guide for security role  https://review.openstack.org/32549919:52
*** rahuls has quit IRC19:52
*** rahuls has joined #openstack-ansible19:53
openstackgerritMajor Hayden proposed openstack/openstack-ansible-security: Docs: Fix OpenStack-Ansible capitalization  https://review.openstack.org/32550119:57
*** asettle has joined #openstack-ansible19:58
*** klamath has joined #openstack-ansible19:58
-openstackstatus- NOTICE: The infrastructure team is taking Gerrit offline for maintenance this afternoon, beginning shortly after 20:00 UTC. We aim to have it back online around 00:00 UTC.19:58
*** asettle has quit IRC19:58
palendaeoof, didn't mean to pile on there gregfaust19:59
*** aslaen has quit IRC20:02
gregfaustlol, thanks for the feedback :)20:05
*** metral has quit IRC20:05
*** metral_zzz has joined #openstack-ansible20:05
*** metral_zzz is now known as metral20:05
-openstackstatus- NOTICE: Gerrit is offline for maintenance until 00:00 UTC20:07
*** ChanServ changes topic to "Gerrit is offline for maintenance until 00:00 UTC"20:07
*** kstev has quit IRC20:16
*** bsv has joined #openstack-ansible20:17
*** johnmilton has joined #openstack-ansible20:20
*** Drago has joined #openstack-ansible20:24
*** johnmilton has quit IRC20:24
*** metral has quit IRC20:26
*** metral_zzz has joined #openstack-ansible20:27
*** metral_zzz is now known as metral20:27
kboratynskihttps://review.openstack.org/ - 50020:29
kboratynskiUps.20:30
kboratynskiBy the way, ServerTokens <3. ;)20:30
*** smatzek_ has joined #openstack-ansible20:31
*** oneswig has joined #openstack-ansible20:32
*** oneswig has quit IRC20:32
*** persia has quit IRC20:33
*** smatzek has quit IRC20:33
*** persia has joined #openstack-ansible20:35
*** johnmilton has joined #openstack-ansible20:38
*** aslaen has joined #openstack-ansible20:44
bsvodyssey4me: did you get any further porting designate into osa?20:50
*** Drago has quit IRC20:52
cloudnullkboratynski: gerrit is down for maint right now. :'(21:01
bsvgreat, even more time for debugging designate ;)21:01
*** Drago has joined #openstack-ansible21:07
*** psilvad has quit IRC21:10
*** KLevenstein has quit IRC21:20
*** weezS has quit IRC21:22
*** thorst has quit IRC21:24
*** thorst has joined #openstack-ansible21:24
*** smatzek_ has quit IRC21:26
*** thorst_ has joined #openstack-ansible21:27
*** thorst has quit IRC21:29
*** thorst_ has quit IRC21:31
*** bryan_att has quit IRC21:43
lbragstaddoes anyone else seem to get this with the latest master of os_keystone ? http://cdn.pasteraw.com/pkjkps2fgit4kvt5hwlb2dkhyuqyxl421:43
*** thorst has joined #openstack-ansible21:46
lbragstadoh actually - it looks like that is coming from galera client21:47
lbragstadyep - https://github.com/openstack/openstack-ansible-galera_client/blob/master/defaults/main.yml#L2521:48
*** thorst has quit IRC21:50
*** Bofu2MBP has quit IRC21:52
*** messy has quit IRC21:58
*** saneax is now known as saneax_AFK22:03
*** Guest75 has joined #openstack-ansible22:04
*** kylek3h has quit IRC22:06
*** weezS has joined #openstack-ansible22:07
*** Guest75 has quit IRC22:08
*** cloader89 has quit IRC22:09
*** michaelgugino has quit IRC22:19
*** berendt has quit IRC22:20
*** weezS has quit IRC22:20
*** markvoelker has quit IRC22:31
lbragstadso - it appears that for some reason pip is ignoring the pypi index when using root to install pip packages22:43
lbragstadis that something OSA does or ... ?22:43
*** saneax_AFK is now known as saneax22:44
lbragstadpip installs work at the ubuntu user22:49
lbragstadwhich is the user that i'm using to run the playbook22:49
DragoI don't know if it's the same problem, but someone on our team is currently having difficulty getting OSA to install oslo.middleware 3.0.0 vs 2.8.022:49
lbragstadDrago just those packages?22:51
lbragstador other packages as well?22:51
DragoNot totally sure, but that's the one they're stuck on22:51
lbragstadhmm22:51
*** woodard has quit IRC22:53
*** woodard has joined #openstack-ansible22:54
*** hybridpollo has joined #openstack-ansible22:57
*** klamath has quit IRC23:11
*** mummer has joined #openstack-ansible23:25
*** mummer has quit IRC23:26
*** mkrish004c has quit IRC23:30
*** Drago has quit IRC23:32
*** weshay has quit IRC23:41
*** scarlisle has quit IRC23:42
*** rahuls has quit IRC23:54
*** karimb has quit IRC23:54
*** basilAB has quit IRC23:55

Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!