Wednesday, 2018-02-21

*** openstackstatus has quit IRC00:12
*** openstackstatus has joined #openstack-ansible00:13
*** ChanServ sets mode: +v openstackstatus00:13
*** acormier has joined #openstack-ansible00:30
*** lbragstad has quit IRC00:32
*** acormier has quit IRC00:35
*** chyka has quit IRC00:36
*** chyka has joined #openstack-ansible00:37
*** chyka has quit IRC00:41
*** openstackgerrit has joined #openstack-ansible00:42
openstackgerritMerged openstack/openstack-ansible-os_ceilometer stable/pike: [pike only] Stop using 'latest' for pymongo installation  https://review.openstack.org/54629300:42
openstackgerritMerged openstack/openstack-ansible-os_ceilometer stable/pike: Zuul: Remove project name  https://review.openstack.org/54260100:42
openstackgerritMerged openstack/openstack-ansible-os_ceilometer master: Deprecate os_endpoint_type option Option "os_endpoint_type" from groups "service_credentials" and "keystone_authtoken" is deprecated[1]. Use option "interface" from groups "service_credentials" and "keystone_authtoken".  https://review.openstack.org/52185700:42
openstackgerritMerged openstack/openstack-ansible-os_aodh master: Standardize services list and package installation  https://review.openstack.org/49258000:50
*** acormier has joined #openstack-ansible00:58
*** dave-mccowan has joined #openstack-ansible01:07
*** acormier has quit IRC01:22
*** acormier has joined #openstack-ansible01:22
*** acormier has quit IRC01:35
*** woodard_ has joined #openstack-ansible01:39
*** woodard has quit IRC01:39
*** sm806 has joined #openstack-ansible01:51
*** woodard_ has quit IRC01:56
*** woodard has joined #openstack-ansible01:57
JohnnyOSAHey all -- after doing a simple typo with using the --limit flag with an ansible ad-hoc command (using --limit galera_container[12 instead of --limit galera_container[1]), the inventory python tools have broken and yield the following error: http://paste.openstack.org/show/679696/02:01
JohnnyOSAHas anyone seen this or know how to fix it?02:01
JohnnyOSA(Hitting the road, but will check for any feedback shortly)02:02
openstackgerritJimmy McCrory proposed openstack/openstack-ansible-os_glance stable/queens: Remove registry options from scrubber config  https://review.openstack.org/54647102:24
*** sm806 has quit IRC02:24
*** sm806 has joined #openstack-ansible02:25
*** sm806_ has joined #openstack-ansible02:29
sm806_NickServ02:29
sm806_NickServ02:31
*** sm806_ has quit IRC02:32
*** sm806_ has joined #openstack-ansible02:35
sm806_NickServ02:35
*** tux_ has joined #openstack-ansible02:39
matttJohnnyOSA: sounds like this: https://bugs.launchpad.net/openstack-ansible/+bug/175023302:45
openstackLaunchpad bug 1750233 in openstack-ansible "corrupted dynamic_inventory.py backup file" [High,Confirmed]02:45
mnaserhwoarang: https://review.openstack.org/#/c/521860/2 please let me know if its okay to drop your -203:09
*** gkadam has quit IRC03:14
*** gkadam has joined #openstack-ansible03:15
*** sm806 has quit IRC03:17
tux_Question:- br-vxlan vs br-vlan  if i am not doing VLAN network type then i don't need that interface right?  my all tenant going to be on VxLAN for inter communication03:25
*** udesale has joined #openstack-ansible03:36
*** udesale has quit IRC03:38
*** udesale has joined #openstack-ansible03:39
*** sm806 has joined #openstack-ansible03:41
*** lbragstad has joined #openstack-ansible03:43
*** udesale has quit IRC03:55
*** dave-mccowan has quit IRC04:34
*** acormier has joined #openstack-ansible04:36
*** esberglu has quit IRC04:37
*** nurdie has quit IRC04:38
*** nurdie has joined #openstack-ansible04:38
*** ivve has quit IRC04:39
*** acormier has quit IRC04:40
openstackgerritGerman Eichberger proposed openstack/openstack-ansible-os_octavia master: Fixes Lint errors and improve tests  https://review.openstack.org/54411704:47
*** taseer2 is now known as Taseer04:54
*** ivve has joined #openstack-ansible04:56
JohnnyOSAmattt: great tip!  Thanks for the link -- that solved the issue.04:57
*** sm806 has quit IRC04:59
*** sm80664 has joined #openstack-ansible05:03
*** sm80664 is now known as sm80605:03
*** sm806 has quit IRC05:04
*** sm806 has joined #openstack-ansible05:07
*** tux_ has quit IRC05:12
*** udesale has joined #openstack-ansible05:14
cloudnullevenings05:18
cloudnullmhayden: I love this https://review.openstack.org/#/c/546319/2/tasks/dirty_hacks.yml05:19
cloudnulla commit after my own heart :)05:19
cloudnulltux_ did you get your questions answered?05:20
*** lbragstad has quit IRC05:28
*** indistylo has joined #openstack-ansible05:34
*** taseer1 has joined #openstack-ansible05:37
*** Taseer has quit IRC05:37
*** dariko has joined #openstack-ansible05:41
*** poopcat has quit IRC05:50
*** SmearedBeard has joined #openstack-ansible05:54
*** SmearedBeard has quit IRC05:58
gokhanodyssey4me, sorry I had been ill for these days. we can talk about panko role when you are available on there.06:00
*** dariko has quit IRC06:00
*** pmannidi has quit IRC06:04
JohnnyOSAHi Cloudnull -- I'm experiencing what seems like a source routing issue between the external LB vip and br-mgmt gateway with my setup.  Any ideas?  (http://eavesdrop.openstack.org/irclogs/%23openstack-ansible/%23openstack-ansible.2018-02-20.log.html#t2018-02-20T12:59:49)06:16
prometheanfirecloudnull: mhayden: LOL, love the dirty hack, I'm trying to figure out if I should yell at heat to put them in extras or not (hint, they should)06:18
prometheanfirecloudnull: mhayden: you know if heat NEEDS any of the clients?06:18
prometheanfireJohnnyOSA: can you make (even via simple ascii) something like https://dev.gentoo.org/~prometheanfire/images/VM-host-network.svg to describe your issue?06:20
*** aruns has joined #openstack-ansible06:21
prometheanfireJohnnyOSA: the ip route from a horizon container would help (and from the haproxy too)06:22
prometheanfireJohnnyOSA: also, traceroute06:22
*** indistylo has quit IRC06:23
JohnnyOSAPrometheanfire: that's a nice diagram you have there.  Yes I could do something like that.  I'm a little perplexed though.  I've brought the full OSA environment down and back up and the issue appears to have disappeared.  I'm not sure what, if anything has changed.06:25
prometheanfireubuntu networking sucks06:25
JohnnyOSALet me investigate for another day and if the issue comes back up, I'll draft up a diagram and return.06:25
prometheanfirenetworkd is better06:25
prometheanfirenetifrc is good too (what gentoo uses)06:25
JohnnyOSAReally appreciate the support and expertise you guys offer on the channel.06:26
prometheanfirebest effort, ymmv, ybyb :P06:27
JohnnyOSAhaha :)06:27
prometheanfireto be honest I don't even do OSA all that much06:28
prometheanfireI'm just here to annoy people and be a helper06:28
JohnnyOSAwelp, I'm still enough of an OSA newbie that when I try to troubleshoot and fix something, I seem to break something else in the process.  Still a little clumsy :).06:29
JohnnyOSAFrom the 2017 OS survey, page 42, Ansible is shown as the leading deployment tool for OS (https://www.openstack.org/assets/survey/April2017SurveyReport.pdf).06:37
prometheanfirelol, that's good06:37
prometheanfirewe were not on the last one06:37
prometheanfiregot skipped06:37
JohnnyOSASince some of the other Ansible projects are broken out on that page (Kolla, Lxc), does that mean the OSA is the majority of that large percentage?06:37
prometheanfirehell if I know06:38
prometheanfirethey only mention newton too06:38
JohnnyOSAyeah -- I came across a newer reference recently somewhere (don't have the link handy at the moment).  I think they broke OSA out as a seperate category and then another "Ansible" category separately.  Made me wonder how they were classifying the main "Ansible" category.  Maybe they were just lumping everything together that used Ansible.06:41
JohnnyOSAAnyway, I'm out for the night... Later!06:41
prometheanfireansible is the new hotness06:42
* prometheanfire waits for the next thing06:43
prometheanfireit's probably in go or rust06:43
prometheanfirehttps://fishofgold.files.wordpress.com/2012/01/get-off-my-lawn.jpg06:44
*** udesale_ has joined #openstack-ansible06:54
*** taseer2 has joined #openstack-ansible06:55
*** taseer1 has quit IRC06:55
*** taseer3 has joined #openstack-ansible06:55
sm806I am seeing failures while ansible is creating repo_container --> http://paste.openstack.org/show/680126/06:56
*** udesale_ has quit IRC06:56
*** udesale_ has joined #openstack-ansible06:56
sm806Same setup worked few weeks before. I changed few networking configs and installing the setup again.... any idea why this failure is seen ?06:57
sm806Looks like some failure with git cloning, but cant figure out why its failing.06:57
*** udesale has quit IRC06:58
*** taseer2 has quit IRC07:00
*** udesale_ has quit IRC07:02
*** udesale has joined #openstack-ansible07:02
*** chyka has joined #openstack-ansible07:13
*** sar has joined #openstack-ansible07:16
*** chyka has quit IRC07:18
*** udesale_ has joined #openstack-ansible07:43
*** udesale has quit IRC07:44
*** pcaruana has joined #openstack-ansible07:47
*** mancdaz has quit IRC07:57
*** mancdaz_ has joined #openstack-ansible07:58
*** mancdaz_ is now known as mancdaz07:58
*** mbuil has joined #openstack-ansible07:58
openstackgerritJean-Philippe Evrard proposed openstack/openstack-ansible master: [Docs] Uniform landing text  https://review.openstack.org/54652108:05
openstackgerritJean-Philippe Evrard proposed openstack/openstack-ansible master: [Docs] Move AIO to first scenario  https://review.openstack.org/54652208:05
openstackgerritJean-Philippe Evrard proposed openstack/openstack-ansible master: [Docs] Include test scenario as a new user story  https://review.openstack.org/54652308:05
openstackgerritJean-Philippe Evrard proposed openstack/openstack-ansible master: [Docs] Fix references  https://review.openstack.org/54652408:05
openstackgerritJean-Philippe Evrard proposed openstack/openstack-ansible master: [Docs] Move more examples to user guide  https://review.openstack.org/54652508:05
openstackgerritJean-Philippe Evrard proposed openstack/openstack-ansible master: [Docs] Move Ceph example to user guides  https://review.openstack.org/54652608:05
*** epalper has joined #openstack-ansible08:07
*** udesale_ is now known as udesale08:09
*** aruns has quit IRC08:10
*** Guy has joined #openstack-ansible08:14
ThomasShi08:17
ThomasSi wnated to enable VPNaaS08:18
ThomasSadded vpnaas to user_vars and did openstack-ansible os-neutron-install.yml && openstack-ansible os-horizon-install.yml08:18
*** woodard has quit IRC08:18
ThomasSwithout errors but not showing i n horizon under network08:18
ThomasSneutron_plugin_base:   - router   - metering   - vpnaas   - qos08:19
ThomasSmaybe i am missing something here08:19
openstackgerritPeriyasamy Palanisamy proposed openstack/openstack-ansible master: Make Opendaylight as the BGP speaker using Quagga  https://review.openstack.org/52390708:23
ThomasSlooks like i am missing the kernel modules08:24
ThomasSfollowed this guide08:24
ThomasShttps://docs.openstack.org/openstack-ansible/mitaka/install-guide/configure-network-services.html08:24
ThomasSbut this does look outdated08:24
ThomasSopenstack-ansible openstack-hosts-setup.yml --limit network_hosts\ --tags "openstack-hosts-setup,openstack-host-specific-kernel-modules"08:24
ThomasSi am trying this guide now08:29
ThomasShttps://docs.openstack.org/openstack-ansible-os_neutron/latest/configure-network-services.html08:29
*** sar has quit IRC08:29
ThomasSthis looks better so far :-)08:29
*** indistylo has joined #openstack-ansible08:30
evrardjpThomasS: the guide is I guess for mitaka08:38
evrardjpwhy not checking on the one for your branch?08:38
evrardjpbut yeah vpnaas might require updating the docs08:39
*** electrofelix has joined #openstack-ansible08:39
*** SmearedBeard has joined #openstack-ansible08:41
*** jwitko_ has quit IRC08:42
ThomasSi used this one now08:48
ThomasShttps://docs.openstack.org/openstack-ansible-os_neutron/latest/configure-network-services.html08:48
ThomasSthis is for 17.008:48
ThomasSall steps of vpnaas worked08:48
ThomasSbut no vpnaas in horizon08:49
ThomasSso am on 16.008:51
evrardjpmight have a bug. Check also pike instead of latest?08:51
*** sxc731 has joined #openstack-ansible08:51
ThomasSi think the guide is fine but it is missing one step i guess08:52
openstackgerritJean-Philippe Evrard proposed openstack/openstack-ansible master: [Docs] Move network architecture into reference  https://review.openstack.org/54653808:53
ThomasSpike and queens are the same guides :-)08:54
openstackgerritJean-Philippe Evrard proposed openstack/openstack-ansible master: [Docs] Include test scenario as a new user story  https://review.openstack.org/54652308:58
openstackgerritJean-Philippe Evrard proposed openstack/openstack-ansible master: [Docs] Fix references  https://review.openstack.org/54652408:58
openstackgerritJean-Philippe Evrard proposed openstack/openstack-ansible master: [Docs] Move more examples to user guide  https://review.openstack.org/54652508:58
openstackgerritJean-Philippe Evrard proposed openstack/openstack-ansible master: [Docs] Move Ceph example to user guides  https://review.openstack.org/54652608:58
openstackgerritJean-Philippe Evrard proposed openstack/openstack-ansible master: [Docs] Move network architecture into reference  https://review.openstack.org/54653809:01
evrardjpThomasS: patches welcome :)09:01
*** shardy has joined #openstack-ansible09:12
*** PTO has joined #openstack-ansible09:13
*** SmearedBeard has quit IRC09:14
*** hamzy_ has joined #openstack-ansible09:17
*** pbandark has joined #openstack-ansible09:17
*** sar has joined #openstack-ansible09:17
*** hamzy has quit IRC09:19
ThomasSif i find the püroblem09:22
ThomasSproblem09:22
*** sxc731 has quit IRC09:23
ThomasSi currently have no clue09:24
evrardjpThomasS: it's the dashboard that doesn't show up?09:24
ThomasSyes09:24
evrardjpunder pike09:24
ThomasSyes09:24
MiougeGood morning, feedback on https://review.openstack.org/#/c/517856/ is welcome. Let me know if there is anything else I can do for ceph-rgw integration09:26
*** SmearedBeard has joined #openstack-ansible09:26
evrardjpThomasS: it looks like the vpnaas dashboard isn't copied over09:26
ThomasSok...09:26
evrardjpThomasS: https://github.com/openstack/openstack-ansible-os_horizon/blob/stable/pike/tasks/horizon_post_install.yml#L35-L11509:27
evrardjpI don't see anything for vpnaas09:27
evrardjpCan you either file a bug, stating it, or proposing a patch?09:28
evrardjphas anyone the chance to look at the apt package install issue that's appearing in all branches?09:29
evrardjpMiouge: great !09:29
evrardjpMiouge: really great work there09:31
*** gillesMo has joined #openstack-ansible09:31
evrardjpdo you mind if I edit it?09:31
Miougeevrardjp: Thanks but I wouldn’t have managed without logan- and your help. Go ahead with edits. I was wondering if I should add things around documentation for rgw.09:32
evrardjpDon't for now09:32
evrardjpI am refactoring the docs09:32
openstackgerritJean-Philippe Evrard proposed openstack/openstack-ansible master: Ceph RadosGW integration  https://review.openstack.org/51785609:33
evrardjpsmall detail but would help later.09:33
odyssey4megokhan you around now?09:33
evrardjpMiouge: I took this change into consideration, so the user story around ceph can be more extended if need be09:33
evrardjphttps://review.openstack.org/#/c/546526/09:34
evrardjpif there are ppl ready to vote on https://review.openstack.org/#/q/topic:bp/docs-improvements+(status:open) that would be great.09:34
odyssey4mesm806_ for that repo build failure, can you find the wheel build log in /var/log/repo/ and extract the actual failure - the ansible result is hard to read09:36
evrardjpsm806: what issue do you have?09:36
evrardjpoh nvm I read the logs09:37
odyssey4meMiouge evrardjp perhaps add some rgw stuff to the ceph example appendix?09:37
evrardjpodyssey4me: it's moving to a ceph user story indeed09:38
Miougeevrardjp: Good idea. I can add doc’ about ceph-rgw in the ceph/full-deploy.rst file. I wait for the refactor to be merged to avoid conflicts?09:38
evrardjpa chapter can be dedicated to ceph rgw09:38
*** aruns has joined #openstack-ansible09:38
evrardjpMiouge: yeah, just wait or add your patch on top of mine09:38
odyssey4meevrardjp there is one already: https://docs.openstack.org/project-deploy-guide/openstack-ansible/latest/app-config-prod-ceph.html09:39
evrardjpodyssey4me: ofc I know :)09:39
MiougeI think he is moving that from the deploy-guide to the user-guide?09:39
evrardjpI am refactoring the docs according to the accepted blueprint09:39
evrardjpsee https://review.openstack.org/#/c/546526/09:39
openstackgerritJesse Pretorius (odyssey4me) proposed openstack/openstack-ansible-os_glance stable/queens: Remove registry options from scrubber config  https://review.openstack.org/54647109:40
sm806evrardjp, odyssey4me: I did some drill down and found out that keystone and nova-xxxx package's git clone in /var/www/repo/openstackgit was not checked out with required commit version. I checked them out manually to the version expected in the error log and it went ahead.09:40
odyssey4mesm806 hmm, odd - you could have done the force reclone too - but happy you figured it out09:40
odyssey4meunfortunately ansible doesn't do retries when doing async tasks :/09:40
evrardjpsm806: which SHA did you check out?09:40
*** indistylo has quit IRC09:40
sm806odyssey4me : how to trigger force reclone ?09:41
evrardjpThe branch or the expected sha from defaults?09:41
evrardjpsm806: there is an option for that.09:41
odyssey4mesm806 https://github.com/openstack/openstack-ansible-repo_build/blob/master/defaults/main.yml#L5609:41
odyssey4meso you would do: openstack-ansible repo-build.yml -e "repo_build_git_reclone=yes,repo_build_wheel_rebuild=yes,repo_build_venv_rebuild=yes" for a full rebuild09:42
*** aruns__ has joined #openstack-ansible09:42
sm806odyssey4me thanks09:43
*** shardy has quit IRC09:43
sm806evrardjp : i checked out the commit "6a67918f9d5f39564af8eacc57b80cba98242683" for keystone. Couple of other packages has similar issues. I took the commit id from ansible error log.09:44
evrardjpok good09:44
*** aruns has quit IRC09:45
*** Sha000000 has joined #openstack-ansible09:45
evrardjpok, good and bad thing. All the failures I got in the periodics of today seem to not apply on my first node. Retrying with a different branch.09:46
odyssey4meevrardjp very odd, but in a test in my own env https://review.openstack.org/#/c/537015/ works just fine for the integrated build, but in the experimental results it seems to consistently not have the lbaas wheel... very odd09:46
evrardjpand working on suse?09:47
*** armaan has joined #openstack-ansible09:47
odyssey4meI haven't tried SuSE, but the failures in that patch for the tests historically have related to container access failure and not anything to do with the code itself.09:48
*** aruns has joined #openstack-ansible09:48
odyssey4mein this case it failed to build rally with an obscure error: http://logs.openstack.org/15/537015/17/check/openstack-ansible-functional_selective-opensuse-423/dbbb02b/logs/openstack/container1/repo/venv_build_rally-testing-x86_64.log.txt.gz09:49
*** aruns__ has quit IRC09:51
evrardjphaha yeah09:51
PTOodyssey4me: Regaring the ceph-ansible guide you mentioned before. I cant quite figure out hot to configure which disks devices the Ceph OSD are supposed to use. Can you help clarify?09:51
odyssey4meanyway, I'll keep plugging at it - don't worry about looking into it09:51
evrardjpbad zip09:52
evrardjpbad zippy!09:52
evrardjpI can have a look if you want09:53
evrardjpPTO: it's probably linked to ceph ansible. You should check ceph-ansible docs09:53
evrardjpodyssey4me: when you say container access failure, you mean the rsync task?09:54
evrardjpoh no it must be somthing else09:54
PTOevrardjp: I allready did, and they have a configuration parameter called devices: []. How is this translated into the user_variables.yml?09:55
evrardjpyou should probably use it directly, and it will be passed into ceph ansible.09:55
evrardjpthat applies to all nodes.09:55
evrardjpwe don't do namespacing when including roles for now09:55
odyssey4meevrardjp nope, I mean http://eavesdrop.openstack.org/irclogs/%23openstack-ansible/%23openstack-ansible.2018-02-20.log.html#t2018-02-20T18:34:5809:56
odyssey4mePTO it doesn't look like devices are set in that config - maybe there should be some words to say it's missing on purpose - not sure - logan- ?09:56
odyssey4meand wow, I'm surprised that ceph-ansible does no namespacing for its vars... that's terribad09:57
evrardjpwell, namespacing of vars is hard, but at least proper naming to avoid collisions would be a good start.09:59
odyssey4menamespacing is not hard, it's just something that should be done - transitioning from non-namespaced vars to namespaced vars *is* hard10:00
evrardjpPTO: if you think you're gonna have issues with overlaps (depends on what you have on the side), you can apply these vars more surgically with host and group vars10:00
odyssey4mebut wow, many of those vars will collide with so many other things10:00
evrardjpI meant real ansible namespacing.10:00
evrardjplike not having vars scoped in vars[]10:01
evrardjpanyway, that's details, the variable naming right now really sucks.10:01
evrardjpbut that's outside our control10:01
odyssey4mePTO our very own evrardjp did a very neat blog post explaining how to make use of host vars with OSA: https://evrard.me/group-and-host-variables-overriding-in-openstack-ansible.html10:01
evrardjpodyssey4me: my goal is to have that move to our very own reference :)10:02
odyssey4meoh sure, that should probably go into the existing chapter about the inventory10:02
evrardjpI've noticed the configuration details about how to configure osa was spread in ... 4 guides.10:02
evrardjpKinda not easy for new comers. And that's how the spec started...10:03
evrardjpafter long hours of re-reading the guide :)10:03
odyssey4meevrardjp oh sure - the different guides have not been updated to suit the audience better since docs set them out10:03
evrardjpwhen your head is in it, it seems obvious, but it's not so for newcomers10:03
odyssey4mewe were given categories, and did a simple rename of our existing guides to try and fit them into those categories10:03
evrardjpyeah10:04
evrardjpI think we'll be in a very good place later.10:04
evrardjp "Definitely the most readable openstack deploy guide"10:04
evrardjp "Probably the best _OS deploy guide_ in the world"10:04
evrardjphahaha. That calls for a Stella.10:05
*** pcaruana has quit IRC10:05
odyssey4menow that we have specific categories, I expect we'll need to revisit the content to suit the audiences... and I expect that a ton of the operations guide content is duplicated all over the place... seeing as that was wholly imported and not modified much10:05
evrardjpso many beer references.10:05
odyssey4methe rest of the docs were built before that existed10:05
evrardjpodyssey4me: well, in my refactor I remove the duplications, and rephrase a few things. Not a lot, but it simplifies.10:06
evrardjpwell let's talk about that later :)10:08
evrardjpwhen it's all merged!10:08
*** nikm has joined #openstack-ansible10:10
MiougePTO: something like this: http://paste.openstack.org/show/680298/10:11
nikmevrardjp : hi there10:11
openstackgerritgit-harry proposed openstack/openstack-ansible-galera_server master: Fix cache update after initial apt_repository fail  https://review.openstack.org/54631210:11
nikmevrardjp: we are getting an issue while running infrastructure playbook of openstack-ansible ocata for production environment10:13
nikmfollowing is the issue: http://paste.openstack.org/show/680299/10:13
evrardjpoh interesting nikm10:13
nikmpip_validate_certs: false10:14
*** Sha000000 has quit IRC10:14
nikmdo we have to use this10:14
evrardjpnikm: no10:14
evrardjpdo you have a complete log of the run?10:14
evrardjpnot only the last taks10:14
evrardjpthat log, not a new run10:14
nikmwhat starting point of logs u want10:15
evrardjpthe whole playbook10:15
evrardjpthe infrastructure one10:16
evrardjpalso10:16
evrardjpif you could connect on your infra1_repo_container, and do a curl of the https://repos.fedorapeople.org that would be great.10:16
*** SmearedBeard has quit IRC10:17
odyssey4mefyi evrardjp it looks like the infra ubuntu mirrors may be out of date - asking in infra10:20
*** pcaruana has joined #openstack-ansible10:20
odyssey4mesee http://logs.openstack.org/39/546239/1/check/openstack-ansible-functional-ubuntu-xenial/10034d0/logs/host/lxc-cache-prep-commands.log.txt.gz for why I think that's the case.10:20
nikmevrardjp: http://paste.openstack.org/show/680305/10:22
nikmevrardjp: above is the curl output inside container10:23
nikm?10:27
*** shardy has joined #openstack-ansible10:27
*** aruns__ has joined #openstack-ansible10:28
*** aruns has quit IRC10:30
gokhanhi odyssey4me, I am  here now :)10:30
odyssey4megokhan :)10:31
gokhanodyssey4me, we can pull panko role. It would be great.10:33
*** Guy has quit IRC10:34
*** acormier has joined #openstack-ansible10:37
odyssey4megokhan ok awesome - could you do the things I mentioned quickly?10:39
openstackgerritgit-harry proposed openstack/openstack-ansible-galera_client master: Fix cache update after initial apt_repository fail  https://review.openstack.org/54655910:39
odyssey4meactually, never mind - I think we can do it instead10:40
evrardjpodyssey4me: yeah that's the same issue I got everywhere10:40
evrardjpI am trying locally to see if that works better.10:40
evrardjpyes I've got my success in my logs :)10:40
evrardjpwe can do that?10:41
evrardjpodyssey4me: "we can do it instead"?10:41
odyssey4meevrardjp we can do everything ;)10:41
*** acormier has quit IRC10:41
odyssey4meit's just a patch away :p10:41
nikmevrardjp : curl output inside container http://paste.openstack.org/show/680305/10:42
evrardjpnikm: ping of repos.fedorapeople.org ?10:42
gokhanodyssey4me, also about redis, I wrote a role about redis cluster. what do you think about using redis role ? it can be used either gnocchi storage driver or coordinator for telemetry services. I wonder your and mnaser thoughts?10:43
evrardjpnikm: I think you have a connectivity issue10:43
evrardjpgokhan: I think a redis role can be used by dragonflow IIRC. So I am thinking that a generic redis role could be useful, but we should maybe "just consume it" ?10:44
*** SmearedBeard has joined #openstack-ansible10:45
odyssey4megokhan redis integration in the roles wherever applicable would be great, but if possible I'd like to avoid using a role which is OSA-specific... I would definitely prefer using a well established redis community role if there is such a thing... if you see opportunities for integration, then it might be a good idea to submit a spec outlining where you think it would be a good fit... and if you feel that a custom role would be more10:45
odyssey4me beneficial than a redis community role, then explain why in the spec10:45
gokhanodyssey4me, evrardjp I searched for redis community role but I didn't find it. There are lots of custom redis roles. so I decided to write its role myself with benefit from custom roles.10:50
gokhanI wrote a one whose address is https://github.com/gokhan27/openstack-ansible-os_redis10:51
gokhanI am using it now with openstack-ansible10:51
gokhansorry for its name ''openstack-ansible-os_redis'10:52
gokhanmay be it could be good to use only  'redis'10:52
odyssey4meansible-role-redis would be a more appropriate name10:54
evrardjpyeah10:54
odyssey4methe os_ names are meant for openstack services10:54
odyssey4meredis is definitely not an openstack service ;)10:54
PTOnikm: Thanks for the clarifications. I will try and make and deploy it straight away10:55
evrardjpodyssey4me: until...!10:55
nikmevrardjp : I am able to run curl command from ansible node but with container it is getting failed, any suggestion to fix it10:56
evrardjpnikm: could you do a ping ?10:57
nikmsure10:57
evrardjpwith name not, the ip10:57
*** mbuil has quit IRC10:58
evrardjpI think you might have seen what mattt  has seen recently -- a failure in dnsmasq when rebooting. He did another reboot to fix it. Weird as nothing appeared in the logs10:58
*** mbuil has joined #openstack-ansible10:58
nikmping is working and curl is also working using this command >> repos.fedorapeople.org10:58
evrardjp?10:59
evrardjpdo you have a new log ?10:59
gokhanodyssey4me, ok I will change its name with ansible-role-redis :)10:59
nikmsorry the command is >> curl -k https://repos.fedorapeople.org11:00
evrardjpgokhan: that is great :)11:00
evrardjpok11:00
evrardjpso insecure11:00
nikmit is giving web page content output11:00
nikmI am facing this issue first time while deployment in production11:00
evrardjpgokhan: what I generally do with galaxy roles, is try to submit issues to other roles to see if they want to work with me. And I try to make the role very generic11:00
evrardjpnikm: it's weird because validate cert is not done in pip install11:01
odyssey4megokhan I'll be doing some PR's to the os_panko repo. Please look out for them.11:02
evrardjpwait11:02
evrardjpsorry I meant that to nikm11:03
gokhanodyssey4me, ok.11:04
evrardjpnikm: so let me rephrase: host "curl" works, container "curl" works when insecure , container "curl" doesn't work when secure11:06
evrardjpdo you have a proxy?11:06
gokhanevrardjp, yep in fact you are right. this is the best to submit issue. I should have do like you.  but it was urgent to see redis role on my production so I choose this way.11:07
nikmevrardjp: I don't have idea regarding proxy in network, my client has not provide proxy details11:07
evrardjpgokhan: don't get me wrong, I only get good results like 10% of the time11:08
evrardjpand don't worry, I understand the constraints11:08
ThomasShi11:13
ThomasSwanted to fill a bug for vpnaas11:13
ThomasSwhere to do so? Github openstack ansible repo?11:13
ThomasSlaunchpad?11:13
evrardjplaunchpad11:14
evrardjphttps://bugs.launchpad.net/openstack-ansible11:14
evrardjpreport a bug on the top right11:14
nikmevrardjp: is there any work around to not check certificates11:14
gokhanevrardjp yep you are right also me too.  thanks for your advices. may be this was a bad experince for me. after that, I will choose your way because this is sensible, right way.11:14
ThomasSok will do11:14
evrardjpThomasS: please write what you expected to happen, what happened, and your configuration (conf files/openstack-ansible version), that should be enough to help us11:15
odyssey4megokhan actually, never mind - I'll fork and make the right changes to make it ready for import, and then just import from the fork11:17
ThomasSok11:17
odyssey4meI'm not sure what your time zone is, but I suspect it might be getting quite late for you... no need to stay up.11:18
nikmevrardjp: on the all hosts curl is working fine, curl is not working  with container11:18
*** pcaruana has quit IRC11:19
ThomasSdone11:20
ThomasShttps://bugs.launchpad.net/openstack-ansible/+bug/175078911:21
openstackLaunchpad bug 1750789 in openstack-ansible "VPNaaS dashboard not copied to horizon container" [Undecided,New]11:21
gokhanodyssey4me, ok I am following your changes. my timezone is Europe/Istanbul (+03, +0300)11:21
nikmevrardjp: If the issue is because of proxy, then what is solution to avoid this issue ?11:25
*** epalper has quit IRC11:25
*** acormier has joined #openstack-ansible11:25
*** acormier has quit IRC11:26
*** acormier has joined #openstack-ansible11:26
*** acormier has quit IRC11:27
*** acormier has joined #openstack-ansible11:27
evrardjpnikm: 1) you can configure your proxy appropriately to return correct certificates 2) you can maybe pass environment variables to have a proper behavior on the proxy side11:28
*** acormier has quit IRC11:32
*** pcaruana has joined #openstack-ansible11:33
odyssey4megokhan you've done a good job prepping this role with many things :) I'm just adding a few more things which are required for it to work in openstack-infra once it's imported11:36
*** udesale has quit IRC11:39
nikmevrardjp:  same issue after enabling "pip_validate_certs: false"11:43
*** stuartgr has joined #openstack-ansible11:45
*** epalper has joined #openstack-ansible11:51
evrardjpodyssey4me: does that look right to you? https://review.openstack.org/#/c/546577/11:52
evrardjpnikm: ok let me double check11:52
odyssey4meevrardjp yep, I think so11:53
gunixodyssey4me: cloudnull: i switched to ubuntu and the AIO worked without issues.11:54
evrardjpnikm: so11:59
*** armaan has quit IRC12:00
evrardjpwe generally have something to check for certificates12:00
evrardjphttps://github.com/openstack/openstack-ansible-pip_install/blob/stable/ocata/tasks/pre_install_yum.yml#L7112:00
evrardjphowever this task: https://github.com/openstack/openstack-ansible-pip_install/blob/stable/ocata/tasks/pre_install_yum.yml#L2312:00
evrardjpdoesn't have validate_certs12:00
evrardjpit just has disable_gpg_check12:00
evrardjpso we could add this feature to be able to bypass those for people that have intercepting proxies.12:01
evrardjpnikm: please note the mechanism is different in Pike and above12:02
evrardjpand should work12:02
evrardjpwithout patching12:02
evrardjpnikm: is there a reason you need to be in ocata?12:03
nikmyes our client requirement is ocata12:03
evrardjpI'd strongly advise to discuss with your client :)12:04
evrardjpbut hey, that's outside my scope :D12:04
*** Sha000000 has joined #openstack-ansible12:04
evrardjpyou could fork the role if you want a fast answer.12:04
odyssey4menikm your client requirement is both centos and ocata?12:05
evrardjpElse, you will need to wait for this kind of patches to land in stable/ocata.12:05
evrardjpodyssey4me: valid point!12:05
nikmodyssey4me: yes12:05
odyssey4meI'm not sure centos works for ocata. It was only ever experimental, and to my knowledge it doesn't work.12:06
odyssey4meBy that I mean the OSA CentOS implementation for Ocata is probably a bit broken.12:06
*** lvdombrkr has joined #openstack-ansible12:06
evrardjpdepends on the role I'd say12:06
evrardjpbut we are welcoming fixes !12:06
nikmI have working ocata on centos locally12:06
odyssey4meThat's not to say it couldn't be fixed, but that would require some effort and someone would have to volunteer to do it.12:07
evrardjpok12:07
evrardjpI can propose a patch12:07
lihiodyssey4me, evrardjp, gokhan, I'm working on a Dragonflow(with redis) deployment with OSA. I'm using a general role (https://github.com/idealista/redis-role), but I'm running into issues integrating it with osa, so maybe a osa-spesific-role would be benefitional.12:08
odyssey4meOh? Well, that's nice then. :) If you find patches to improve things in the later branches, you can propose backports yourself if you're able to do so.12:08
lihigokhan, your role currently supports only redis HA clusters(redis-sentinel). If you could add support for regular redis clustering, I can help you test it in different envs12:08
odyssey4melihi what sort of issues are you hitting?12:08
nikmPlease propose the patch12:08
evrardjpnikm: you'll have to wait quite a certain amount of time12:09
evrardjpjust fyi12:10
nikmevrardjp: No problem, I can wait for it12:10
*** aruns has joined #openstack-ansible12:10
evrardjpnikm: it would need to get accepted by the community, but you have an idea this way.12:11
evrardjpI still think you should mirror12:11
nikmcan you tell the what are the steps we need to follow for fix ??12:12
lihiodyssey4me, I install redis clusters on several containers. The role uses ansible_play_hosts to know which hosts are used, in order to split the key hash between the clusters. But the role is ran from the os-neutron playbook, so ansible_play_hosts includes all the hosts instead only the one I want to install redis on12:12
*** aruns__ has quit IRC12:13
openstackgerritJean-Philippe Evrard proposed openstack/openstack-ansible-pip_install stable/ocata: Make possible to skip certificate checking for rdo repo  https://review.openstack.org/54658212:14
evrardjpnikm: ^12:14
openstackgerritJean-Philippe Evrard proposed openstack/openstack-ansible-pip_install stable/ocata: Make possible to skip certificate checking for rdo repo  https://review.openstack.org/54658212:15
*** acormier has joined #openstack-ansible12:16
evrardjpnikm: ^ updated12:16
evrardjphave a look at the commit.12:16
*** armaan has joined #openstack-ansible12:17
odyssey4melihi that role is debian only - it'd be better to use one that supports more distributions, or to PR it to add more distribution support12:17
evrardjpthis will need some time to land (we need ppl willing to merge it, and then bump it)12:17
nikmyeah, I can see the changes12:17
nikmevrardjp: shall I add this line manually in role and try it ??12:18
odyssey4melihi however, you should be able to scope the hosts included by changing the play to target the right hosts, so instead of calling it from inside os_neutron, call it from the play12:18
*** mgagne has quit IRC12:19
*** afranc has quit IRC12:20
*** d34dh0r53 has quit IRC12:20
*** toan has quit IRC12:20
*** chris_hultin has quit IRC12:20
*** arbrandes has quit IRC12:20
*** evrardjp has quit IRC12:22
openstackgerritMarkos Chandras (hwoarang) proposed openstack/openstack-ansible-repo_build stable/pike: SUSE: Fix MariaDB development package  https://review.openstack.org/54658312:22
*** dhellmann has quit IRC12:22
*** acormier has quit IRC12:23
lihiodyssey4me, I will try, thanks :)12:23
*** acormier has joined #openstack-ansible12:25
*** evrardjp has joined #openstack-ansible12:26
*** d34dh0r53 has joined #openstack-ansible12:26
*** afranc has joined #openstack-ansible12:26
lihiodyssey4me, I was looking for redis role that supports redis regular clustering (splitting the keys between clusters), but seems like most the ansible redis roles supports only ha clusters. It can send them PL for more distributions after I'll manage to get a working env with it :)12:27
*** toan has joined #openstack-ansible12:27
nikmevrardjp: thanks, we applied manually and that failed step passed and now the script is executing12:29
nikmwe will let u know if it fails some where else12:29
nikmhttps://review.openstack.org/#/c/546582/2 worked12:29
*** dhellmann has joined #openstack-ansible12:30
*** arbrandes has joined #openstack-ansible12:31
evrardjpnikm: you should review it12:31
evrardjptell it's fixing the issue for you12:32
evrardjpit might never land :)12:32
odyssey4menikm if you can vote and comment that it worked for you, it helps other reviewers to understand that it's been tested12:33
nikmevrardjp: now it is failing for https://review.openstack.org/#/c/546582/212:33
nikmsorry12:33
nikmhttp://paste.openstack.org/show/680349/12:34
nikmlooks like it will fail for many others12:34
odyssey4meyep, I expect that it will12:35
*** mgagne has joined #openstack-ansible12:36
*** mgagne is now known as Guest2094612:36
odyssey4menikm it might be easier to just override the repo URL's to all use HTTP instead of HTTPS12:36
nikmodyssey4me evrardjp : here one question, if curl https://repos.fedorapeople.org is working from controller node then why it is failing from a container inside controller node12:36
odyssey4menikm do you have the correct environment variables set to make the container use the proxy properly12:37
persiaFor clarity, is this intending to add an option to intentionally permit detected MITM attacks on the transport layer?12:38
odyssey4methere's a whole thing in https://github.com/openstack/openstack-ansible/blob/stable/ocata/etc/openstack_deploy/user_variables.yml#L113-L138 which explains how to make proxies work12:38
*** chris_hultin|AWA has joined #openstack-ansible12:38
evrardjppersia: YES12:39
*** chris_hultin|AWA is now known as chris_hultin12:39
evrardjpthat's insane right?12:39
persiaThen surely there's another option to solve the underlying problem, isn't there?12:39
evrardjpYes, many12:39
persiaevrardjp: YES12:39
odyssey4mepersia unfortunately in some environments there are proxies which intercept HTTPS - terrible, but what can we do... if that's what's there all we can do is give you the rope ;)12:39
nikmodyssey4me evrardjp: we ran openstack-ansible setup-hosts.yml with repo_pkg_cache_enabled: false initially12:39
nikmthen we ran openstack-ansible setup-infrastructure.yml12:40
odyssey4menikm sure, but that doesn't really solve the problem - that just removes the local package caching12:40
nikmwhich failed with this cert issue12:40
persiaodyssey4me: There are many badly implemented HTTPS proxies.  Most of them can be worked around, either by a) importing the proxy certificate into the trusted certificates for the downloading platform or b) tunneling transport.12:40
*** acormier has quit IRC12:40
evrardjppersia: 1) don't use a intercepting proxy 2) use it with a proper ca 3) give the CA on the host 4) override the URL to a local valid one 5) move back to http 6) the rope solution.12:40
persiaI'd think docs explaining how to do a) would be more valuable than breaking things.12:40
*** acormier has joined #openstack-ansible12:40
persiaIf one is forced to deal with a bad proxy, and can't change much, 5) is probably the least bad.12:41
odyssey4meagreed on both counts12:41
persiabut 6) just seems like overkill :)12:41
evrardjpwhat you are asking in a) is basically 3)12:41
nikmodyssey4me : which environment variables need to set to make the container use the proxy properly12:42
*** acormier has quit IRC12:42
evrardjpthis patch just adds the 6)12:42
persiaevrardjp: Yep, as 4) is something that I hadn't considered (and likely requires one of 1,2,3 to do cleanly)12:42
odyssey4menikm please read https://github.com/openstack/openstack-ansible/blob/stable/ocata/etc/openstack_deploy/user_variables.yml#L113-L138, it explains it all12:42
evrardjppersia: well, not really you could have a server in your environment with proper certificates that do it12:42
evrardjpbut that's detail12:43
evrardjpodyssey4me: I advised nikm to use proper proxy environment setting, but it was not possible.12:44
evrardjpat least to what I understood12:44
evrardjpyou know my english :p12:44
nikmodyssey4me: we did not set any variable on controller node but curl is working12:44
evrardjpnikm: and curl is broken ONLY on containers?12:44
evrardjpthat sounds like a mtu issue.12:44
nikmyes12:44
evrardjpor nat issue12:45
odyssey4menikm I'm guessing that the proxy is transparent then, so it doesn't *require* OS configuration to us it, but it intecepts the packets anyway.12:45
evrardjpI meant a checksum issue12:45
odyssey4mebut yeah, this could be some other issue too if it's isolated to the container12:45
*** persia has quit IRC12:46
evrardjptry icmp with increased packet size12:46
odyssey4meit could be MTU, or bad routing/CIDR config12:46
nikmevrardjp: i remember client is providing internet to management network using NAT12:46
odyssey4meyou'd have to trace the packets to see why it's really failing12:47
*** persia has joined #openstack-ansible12:47
gokhanlihi, yep my role currently supports  redis-sentinel. I can also work on regular clustering but I need time.12:48
*** electrofelix has quit IRC12:49
nikmevrardjp: ping is working with increased packet size12:57
evrardjpso definitely a checksum thing12:58
nikmevrardjp: I remember they are using NAT for providing internet to management network, any suggestion for this12:58
evrardjpshould be okay12:58
*** acormier has joined #openstack-ansible12:59
*** omegapoint has joined #openstack-ansible12:59
nikmI have verified the connectivity in all nodes , looks fine12:59
omegapointhey, i have a quick question regarding configuring the swift service: can i disable mounting the drives in the playbook completely somehow? i have overriden mount_check in the swift conf, but the playbook fails because i'm not mounting any drives (I've run swift without a separate partition previously and it would be a huge hassle to set up my hosts with a partition for swift now (fully expanded LVM vol group))13:00
TahvokHey guys! Will you be coming to ptg meeting in Dublin? On what days?13:03
*** dave-mccowan has joined #openstack-ansible13:09
evrardjpTahvok: yes! From Wed to Friday.13:09
evrardjpI have to leave early on Friday though.13:09
evrardjpWell that's for OSA sessions13:10
TahvokWill you be going to other sessions?13:10
evrardjpTahvok: But I will be there from cross projects sessions too (and some others too), so you can meet us even on Sunday/Monday.13:10
TahvokI'm new at this, and would like to stick to some group13:10
evrardjpTahvok: welcome :)13:10
TahvokSunday? It starts at Monday13:11
evrardjpIt starts on Monday, so I'll land on Sunday evening13:11
TahvokOh, I see :)13:11
*** sxc731 has joined #openstack-ansible13:11
TahvokWell, I'll cross fingers that my management approves my travel13:12
evrardjphaha13:12
evrardjppersia: for a moment I thought you had rage quitted this channel. :D13:13
evrardjpcould I get some votes on https://review.openstack.org/#/q/topic:bp/docs-improvements+(status:open) ?13:14
ArchiFleKsHi, evrardjp , regarding : https://review.openstack.org/#/c/545307/ is there some manual cleanup needed when upgrading ? I'm on master and I still have the systemd-unit etc even if heat does not include cloudwatch, also haproxy entries are not cleaned up either13:14
evrardjpArchiFleKs: queens is not released yet :)13:15
evrardjpbut yeah13:15
ArchiFleKsyes but i mean when running master day to day :p13:16
ArchiFleKsI just wanted to know if there was some plan to do so and how it was handle ?13:16
evrardjpI don't know how to handle it yet13:16
evrardjpeither in major upgrades work, or in role13:17
evrardjpthe haproxy is a good point, I completely forgot that13:18
evrardjpthat's the problem of the assemble13:18
evrardjpit's good for user stories, but it's awful for upgrades13:18
ArchiFleKsyes I'm a bit lost when it comes to removing things automaticly ^^  But for haproxy, just removing the entries in openstack-ansible group_vars should only affect people in master/queens right ?13:20
ArchiFleKsalso I'm wondering how is it planned to handle the "container merge" I had no issue on master but I got left with a bunch of container (the old ones for nova, neutron, heat) so I cleaned them up manually13:21
evrardjpArchiFleKs: removing the group vars is preventing the greenfield, but also for ppl that cleanup their conf.d13:24
evrardjpI hean haproxy/conf.d/13:24
evrardjpArchiFleKs: that last part is handled by Kevin Carter13:25
evrardjphe said he will write a toolkit for doing that13:25
evrardjpcloudnull: we are waiting for your patch there!13:25
*** woodard has joined #openstack-ansible13:25
MiougeI’m seeing a couple of “E: Unable to correct problems, you have held broken packages.” (545849, 517856, …) in Zuul checks. Is there something wrong with Zuul tests? It’s a matter of recheck?13:25
evrardjpMiouge: broken apt mirror13:26
evrardjpgcc thing?13:26
MiougeYep :)13:26
evrardjpMiouge: odyssey4me was tracking the status13:26
MiougeOK. I see odyssey4me asked about it this morning in #openstack-infra . so a recheck won’t help until the mirror is up to date I guess13:29
odyssey4meyeah, it seems that the base image from lxc has packages newer than the mirror13:31
odyssey4meyou could fix it by changing it from a download to a debootstrap, or you could wait until the mirror updates ;)13:32
Miougeodyssey4me: I like option 2: grab beer and wait for the mirror to update :)13:32
odyssey4meMiouge sounds good, although we might have to wait for a day13:33
odyssey4meunless we make another plan13:33
odyssey4methat is, of course, if an outdated mirror is the actual problem13:33
odyssey4melemme finish something up, then I'll double-check that13:34
persiaevrardjp: No, just poor connectivity.13:35
openstackgerritJean-Philippe Evrard proposed openstack/openstack-ansible master: Remove cloudwatch haproxy configuration  https://review.openstack.org/54661513:37
odyssey4meArchiFleKs if you want to take a stab at something, perhaps the automated clean-up done in https://github.com/openstack/openstack-ansible-os_glance/commit/4fa98725102f98700ddc0844272222ab7b8bfea1 can inspire you? cc evrardjp13:38
evrardjpodyssey4me: I want to introduce a new pattern in systemd.13:40
evrardjpodyssey4me: when I see this: https://github.com/openstack/openstack-ansible-os_heat/blob/master/tasks/heat_init_systemd.yml#L6313:42
*** kstev has joined #openstack-ansible13:42
evrardjpthe with_items is included in ALL tasks of that thing13:42
evrardjpwe should probably loop over the include, so we can do smarter things in the default configuration, like the removal.13:42
evrardjps/so/and/13:43
evrardjpArchiFleKs: patches welcome on the heat role side :)13:43
odyssey4meevrardjp I'm not sure what you mean.13:44
evrardjpeach task gets the same with_items clause.13:45
*** kstev1 has joined #openstack-ansible13:45
evrardjp1) we could loop over the include instead to avoid repetition13:46
*** kstev has quit IRC13:46
odyssey4mefair enough13:46
evrardjp2) if change the tasks to handle removals too, we don't need new code13:46
evrardjpthe include is becoming a state machine13:47
evrardjp(you only pass it state changes)13:48
odyssey4melooking forward to seeing your proposal then13:49
*** acormier has quit IRC13:53
*** gillesMo has quit IRC13:53
*** woodard has quit IRC13:56
*** gillesMo has joined #openstack-ansible13:57
*** woodard has joined #openstack-ansible13:57
*** aruns has quit IRC14:06
*** aruns has joined #openstack-ansible14:06
*** bhujay has joined #openstack-ansible14:13
odyssey4meok, the ubuntu mirrors will be updated shortly - infra's on it14:14
*** lbragstad has joined #openstack-ansible14:15
armaanevrardjp: Hello, how are you? You mentioned the bug related to mariadb, I changed the ram allocation ratio re-ran the nova-playbook in on of our production environment and it failed on this task http://paste.openstack.org/show/680371/14:19
armaanevrardjp: do i need this https://docs.openstack.org/releasenotes/openstack-ansible/ocata.html#id114:20
evrardjparmaan: yes it would seem so. But on top of that a cleanup would be advised.14:21
evrardjpyou are in the middle of two states I guess?14:22
armaanevrardjp: http://paste.openstack.org/show/680372/14:22
armaanevrardjp: could you please suggest on how i can perform cleanup?14:22
evrardjparmaan: could you output somewhere the content of your repo?14:22
evrardjpyour repo lis14:22
evrardjpwow14:22
evrardjpthat's terrible wording14:22
evrardjpcould you do:14:22
odyssey4meevrardjp what do you mean 'a cleanup' ?14:23
odyssey4methe venvs will rebuild, and life will be good again after deploying14:23
armaanevrardjp: sorry, i am stupid. This is a Pike setup, 16.0514:23
evrardjpansible -m shell -a "cat /etc/apt/sources.list.d/*" all > /root/aptlist; pastebinit /root/aptlist14:23
odyssey4meoh, you're speaking about the mariadb issues?14:23
armaan16.0.514:23
evrardjpodyssey4me: yes.14:24
evrardjpI'd think that armaan has booth repos setup and one is giving 503.14:24
odyssey4meah ok, never mind14:24
evrardjpboth*14:24
evrardjparmaan: this is no stupid question14:25
evrardjpit looks like an apt issue, so always worrying.14:25
*** rromans has quit IRC14:27
armaanevrardjp: http://paste.openstack.org/show/680374/14:27
*** weezS has joined #openstack-ansible14:28
evrardjparmaan: that's not for all your containers :)14:28
evrardjpI don't see galera there14:28
*** esberglu has joined #openstack-ansible14:29
armaanevrardjp: I should execute this "ansible -m shell -a "cat /etc/apt/sources.list.d/*" all > /root/aptlist; pastebinit /root/aptlist" from inside the playbooks directory?14:29
armaanevrardjp: "deb http://mirror.rackspace.com/mariadb/repo/10.1/ubuntu xenial main"14:31
armaanevrardjp: http://paste.openstack.org/show/680376/14:31
evrardjparmaan: yeah, a cleanup would be necessary.14:33
evrardjpthis mirror is pointing to 10.1.3114:33
*** srf_ has joined #openstack-ansible14:34
openstackgerritGerman Eichberger proposed openstack/openstack-ansible-os_octavia master: Fixes Lint errors and improve tests  https://review.openstack.org/54411714:35
openstackgerritJean-Philippe Evrard proposed openstack/openstack-ansible stable/ocata: Update all SHAs for 15.1.17  https://review.openstack.org/54566614:35
armaanevrardjp: Do you think this will fix the problem http://paste.openstack.org/show/680379/14:36
*** jwitko_ has joined #openstack-ansible14:36
evrardjparmaan: it would be better on all the infra containers14:37
evrardjpbut that would be enough14:37
evrardjpyou can also remove the ocata uca that is a remnant of your thing before the upgrade14:38
armaanevrardjp: ok, understood... Let me try it. I hope this is not affecting our customers in any way :/14:39
*** weezS has quit IRC14:42
*** rromans has joined #openstack-ansible14:43
*** kstev1 has quit IRC14:52
srf_i want know, can i use ansible to install package to instance ? when i want to try, still error in ssh key pair14:52
cloudnullg'mornings14:53
spotzhey14:54
armaansrf_: have you tried with cloud init?14:55
*** bhujay has quit IRC14:55
cloudnullhows it spotz14:56
*** aruns has quit IRC14:56
*** sm806_ has quit IRC14:57
spotzcloudnull: mudpuppy got me sick, you?14:57
*** sar has quit IRC15:03
evrardjpsrf_: ansible is using ssh, that's it. If you have ssh you're good.15:03
*** Sha000000 has quit IRC15:04
evrardjpthen you need to ofc point your inventory and credentials, but that's standard ansible. You should maybe ask on #ansible channel :)15:04
srf_armaan : what means?15:04
evrardjpcloudnull: spotz good monring15:05
*** kstev has joined #openstack-ansible15:05
evrardjpspotz: here are a few docs changes for you: https://review.openstack.org/#/q/topic:bp/docs-improvements+(status:open)15:06
evrardjpmy present to you on this day!15:06
evrardjp:D15:06
spotzthanks evrardjp checking now15:06
*** sxc731 has quit IRC15:06
srf_evrardjp : but instance have cloud.key for access the instance when use the ansible i don't know how command to connect with cloud.key15:07
*** SmearedBeard has quit IRC15:07
openstackgerritAmy Marrich (spotz) proposed openstack/openstack-ansible master: [Docs] Move Ceph example to user guides  https://review.openstack.org/54652615:10
*** acormier has joined #openstack-ansible15:14
*** sar has joined #openstack-ansible15:17
mudpuppycloudnull: lies propagated by the spotz collation15:20
openstackgerritAmy Marrich (spotz) proposed openstack/openstack-ansible master: [Docs] Include test scenario as a new user story  https://review.openstack.org/54652315:22
spotzevrardjp: done15:26
*** SmearedBeard has joined #openstack-ansible15:26
armaanevrardjp: aha, that worked. Thanks a lot :D15:30
*** kstev1 has joined #openstack-ansible15:32
mnaserhwoarang: just a small ping that this patch now has functional tests so not sure if you want to remove your -2 https://review.openstack.org/#/c/521860/ :)15:32
*** kstev has quit IRC15:32
shananiganssrf_:  You should be able to use something like '--key-file /location/of/cloud.key' with ansible to specify a key file.15:35
*** deadnull has joined #openstack-ansible15:35
shananiganssrf_: I think '--private-key' also works.15:37
*** epalper has quit IRC15:37
*** epalper has joined #openstack-ansible15:38
evrardjpmudpuppy: :)15:40
evrardjpmnaser: making it happen!15:41
hwoarangmnaser: i didn't add -2 there15:41
hwoarangit's just -115:41
mnaserhwoarang: oh my bad, i just like to avoid +A when i see red D:15:41
hwoarang:)15:42
srf_shananigans : '--private-key' in YAML ?15:44
shananiganssrf_: When using on the command line.  The inventory yml will be ansible_ssh_private_key_file15:45
shananiganssrf_: http://docs.ansible.com/ansible/latest/intro_inventory.html#list-of-behavioral-inventory-parameters15:46
srf_shananigans : oh thank you so use ansible_ssh_private_key_file to get cloud.key locate for connection some intances, i'll try so thanks15:51
*** weezS has joined #openstack-ansible15:53
evrardjpcloudnull: you'd be pleased to know things are going forward: This just merged: https://review.openstack.org/#/c/546075/15:57
evrardjpstill a few paperwork things to get throught though15:58
*** cmorelli has joined #openstack-ansible15:58
cmorellihi all15:58
*** taseer3 is now known as Taseer16:00
*** woodard has quit IRC16:02
cmorelliKindly asking some help. I'm trying to setup openstack with openstack-ansible 15.1.15 playbooks following instructions at https://docs.openstack.org/project-deploy-guide/openstack-ansible/ocata/run-playbooks.html . Unfortunately the 'setup-infrastructure.yml' playbook fails because of this error >>>> "stderr": "  Could not find a version that satisfies the requirement pyasn1-modules>=0.1.5 (from16:03
cmorellipython-ldap) (from versions: 0.0.8)\nNo matching distribution found for pyasn1-modules>=0.1.5 (from python-ldap)"16:03
*** srf_ has quit IRC16:05
cmorellifound this LaunchPad issue here : https://bugs.launchpad.net/openstack-ansible/+bug/1736789 --> following the link it seems that a patch about this was merged in 15.1.13, but appareantly it is not fixed for me16:06
openstackLaunchpad bug 1736241 in openstack-ansible "duplicate for #1736789 Keystone role should use pyldap instead of python-ldap" [Critical,Fix released]16:06
cloudnullcmorelli: That's an error due to an unversioned dependency, which was fixed, but it would seem it's not in a released tag.16:06
cmorelli:(16:06
cloudnullyou might want to just checkout the SHA from the head of the ocata branch16:07
cloudnull4aba989d084d373a58a06af93d980279f3aba5f516:07
cloudnullthis was the fix for ocata16:07
cloudnullhttps://github.com/openstack/openstack-ansible-os_keystone/commit/929e1114722825fdc48e67922956825ef165158316:07
cloudnullevrardjp: ^ do we know when there will be another ocata tag ?16:07
cmorellicloudnull: great thanks I will try. It is enough to rerun the setup-infrastructure.yml or do I need to start from scratch with setup-hosts.yml ? thank you16:07
cloudnullcheckout that SHA, rerun ./scripts/bootstrap-ansible.sh, then setup-infrastructure.yml setup-openstack.yml16:08
cmorellioh ok, I also need to re-run the bootstrap16:08
cmorellithanks16:08
cloudnullto be SUPER sure its all happy, you might want to nuke the repo containers. but totally optional. `openstack-ansible lxc-container-destroy.yml --limit repo_all; openstack-ansible lxc-container-create.yml --limit 'hosts:repo_all'`16:10
cloudnullbut that's totally optional16:10
*** lvdombrkr has quit IRC16:10
cloudnullevrardjp: nice to see that progressing16:10
evrardjpcloudnull: there was just one last week. It's every 2 weeks.16:11
evrardjpwell it's mid month, and the last friday of the month basically16:11
cloudnullmaybe we missed the keystone change?16:12
cloudnullah...16:12
cloudnull15.1.16 - cmorelli16:12
cloudnullthat tag has the fix in it16:12
cloudnullsame process to pull it all together. checkout, bootstrap, run16:13
* cloudnull was thinking 15.1.15 was the latest, my bad16:13
* cloudnull goes back to being on PTO today :)16:13
*** omegapoint has quit IRC16:16
*** pcaruana has quit IRC16:16
spotzhave fun cloudnull16:17
cmorellicloudnull: just bootstrapped again, after the bootstrap do I need to wipe away /etc/openstack-ansible as well ?16:17
cloudnullno.16:18
cmorelligreat16:18
cloudnullbootstrap will gather the required roles and make sure the system is ready to use with the release checked out16:18
*** openstackgerrit has quit IRC16:19
*** efried_omalley has joined #openstack-ansible16:19
efried_omalleyHowdy folks.  Here's an infra patch that may interest you:16:20
efried_omalleyEric Fried proposed openstack-infra/project-config master: Regex gerritbot notifications: #openstack-ansible  https://review.openstack.org/54668216:20
evrardjpefried_omalley: I know :)16:20
evrardjpwe had to wait for it to be released right?16:20
evrardjpIt's done now ?16:20
evrardjpoh yeah I see16:20
efried_omalleyevrardjp: Oh, hi there.  Yeah, the feature is merged.16:20
evrardjpwoot16:24
evrardjpI have to go afk, will talk to you later. And thanks for the feature :)16:24
* efried_omalley waves16:25
*** kukacz_ has joined #openstack-ansible16:26
*** sar has quit IRC16:28
*** kukacz_ is now known as kukacz16:29
efried_omalleySorry folks, I made a paperwork error.  Your new review is16:29
efried_omalleyRegex gerritbot notifications: #openstack-ansible  https://review.openstack.org/54668716:29
*** wagner__ has joined #openstack-ansible16:36
*** efried_omalley has left #openstack-ansible16:41
*** john51 has quit IRC16:45
*** openstackgerrit has joined #openstack-ansible16:46
openstackgerritMerged openstack/openstack-ansible master: [Docs] Uniform landing text  https://review.openstack.org/54652116:46
*** john51 has joined #openstack-ansible16:49
*** dariko has joined #openstack-ansible16:50
*** woodard has joined #openstack-ansible16:52
*** sar has joined #openstack-ansible16:54
*** chyka has joined #openstack-ansible17:00
*** sxc731 has joined #openstack-ansible17:06
wagner__hy guys, I've deployed an openstack pike environment with 4 computes and 2 controllers (all services on-metal), after this I turned off the HA for neutron. After this I start 4 instances, one instance in each compute. The instances on compute 3 and 4 are accessible and the cloud_init procceed as expected they get the IP and other data from metadata agent. The instances inside compute 1 and 2 get the IP but not get the me17:07
wagner__All the configs are the same on the computes and the NTPD are synced. The security group are configured, all ICMP are working from and to any instance17:07
*** epalper has quit IRC17:08
*** Smeared_Beard has joined #openstack-ansible17:22
*** SmearedBeard has quit IRC17:23
sarHi. I'm using ocata 15.1.13 and trying to migrate a volume. Getting these errors in cinder-volume.log: 2018-02-21 09:23:04.944 1258 ERROR cinder.volume.manager [req-2b86722a-06eb-4d31-979f-e3b31aa210c5 cfd622d9765c47579609b4e4cc0f551e 225e74483bbc49369ef6442f85f02081 - default default] Failed to copy volume 3131aeae-e92c-4a56-b308-4d3c8fdab7d2 to cb8dd14d-0d5e-4d1f-a7c4-f21979b8792017:32
sar2018-02-21 09:23:04.977 1258 ERROR oslo_messaging.rpc.server DiscoveryFailure: Could not determine a suitable URL for the plugin17:32
sarDoes anyone know what the problem is?17:33
*** openstackgerrit has quit IRC17:48
*** lvdombrkr has joined #openstack-ansible17:51
*** Smeared_Beard has quit IRC17:55
*** mbuil has quit IRC18:09
sm806I want to configure additional provider/external network apart from br-vlan and br-vxlan. I would like to know how to define this additional provider network in openstack_user_config.xml. A sample openstack_user_config.xml and interfaces file will be very much useful.18:09
*** SmearedBeard has joined #openstack-ansible18:13
*** gillesMo has quit IRC18:14
*** SmearedBeard has quit IRC18:20
*** sxc731 has quit IRC18:20
*** hamza21 has joined #openstack-ansible18:28
*** wagner__ has quit IRC18:49
*** poopcat has joined #openstack-ansible18:59
*** stuartgr has quit IRC19:15
*** sxc731 has joined #openstack-ansible19:15
*** openstackgerrit has joined #openstack-ansible19:16
openstackgerritAndreas Jaeger proposed openstack/openstack-ansible-nspawn_container_create master: Remove zuul.d  https://review.openstack.org/54674619:16
*** esberglu has quit IRC19:19
spotzsar what plugin are you using? I'm asking over on openstack-cinder19:27
sarI haven't changed any defaults on this, as far as i know. By plugin, do you mean what is specified in auth_type?19:29
*** hamza21 has quit IRC19:30
*** MikeW has joined #openstack-ansible19:33
MikeWHey guys I'm trying to add magnum to my install... I updated the user_config.yml, and when I try to run the playbooks it populates the dynamic inventory, but it doesn't try and create the containers. Any idea on steps I'm missing?19:35
evrardjpMikeW: your openstack_user_config19:36
evrardjpthat's where the host would get assigned19:36
evrardjpI mean that's what we use to populate groups19:37
evrardjpor conf.d19:37
evrardjpmaybe check on the os_magnum docs?19:37
MikeWYeah let me double check them again. I'm not sure what's happening exactly, because it fails on gather variables which seems to work elsewhere just fine19:38
*** lbragstad has quit IRC19:40
*** armaan has quit IRC19:43
*** esberglu has joined #openstack-ansible19:43
*** esberglu has quit IRC19:44
*** esberglu has joined #openstack-ansible19:44
*** SmearedBeard has joined #openstack-ansible19:53
openstackgerritJean-Philippe Evrard proposed openstack/openstack-ansible-nspawn_hosts master: Remove zuul.d bad jobs  https://review.openstack.org/54675820:00
*** lbragstad has joined #openstack-ansible20:01
sarSo i'm getting this stack trace in cinder-volumes.log when trying to migrate a volume: https://pastebin.com/AhwAXQkd20:03
sarThe stack trace leads me to believe it's related to some keystone auth problem. I'm looking at https://docs.openstack.org/ocata/config-reference/compute/config-options.html, under the keystone_authtoken section. In the nova.conf file generated by os-ansible there is a parameter like "username = nova", but as far as i can tell, that is not a valid config option according to the config-reference.20:03
sarCould something like this be the reason it's failing?20:04
MikeWevrardjp: Hey my /etc/ansible/facts.d directory shouldn't be empty on my infra hosts should it?20:06
MikeWsar How up is your environment at this point? Can you run openstack endpoint list?20:07
sarYeah, sure20:07
MikeWRun that real quick and make sure your endpoints are all registered correctly20:07
sarAnd cinder works fine. I can create volumes etc. from horizon20:07
sarI don't see anything wrong with the endpoints. They look fine to me20:08
evrardjpMikeW: check identation and all of your files, and then double check the inventory.json20:09
evrardjpThen you can amaybe try to run20:09
evrardjpansible -m setup all20:09
MikeWInteresting as setup has been what's failing let fine comb through all my configs20:12
MikeWsar: Are you migrating from one cinder setup to another?20:13
sarWhat do you mean? I'm migrating from one storage host to another20:13
MikeWsar: Oooh ok totally different than my setup I have a massive ceph cluster behind my openstack install20:13
MikeWevrardjp ansible -m setup all would show specific errors if I had formatting problems right?20:16
sarThe storage hosts are configured like this in openstack_user_config.yml:20:16
sar      cinder_backends:20:16
sar        limit_container_types: cinder_volume20:16
sar        lvm:20:16
sar          volume_backend_name: LVM_iSCSI20:16
sar          volume_driver: cinder.volume.drivers.lvm.LVMVolumeDriver20:16
sar          volume_group: cinder-volumes20:16
sar          iscsi_ip_address: x.x.x.x20:16
evrardjpMikeW: you'd expect that inventory failure would prevent from proper connecting to all nodes.20:18
*** armaan has joined #openstack-ansible20:18
MikeWevrardjp Yeah setup all works on everything but these magnum containers, here's the error they're giving: https://pastebin.com/C6qiG96L I've got the magnum-infra_hosts setup in openstack_user_config.yml and they're showing up in the dynamic inventory. Where else should they be?20:19
logan-"Error: container infra2_magnum_container-4c7ba388 is not defined" -- did you run the lxc-containers-create playbook?20:20
*** hybridpollo has joined #openstack-ansible20:22
MikeWlogan- Yeah I've attempted to run that playbook as well... I read this playbook and saw it contained the common container create. Are these non equivalent?20:24
MikeWI should also note I'm trying to touch as little of the environment as possible as it's currently a dev cluster for those brave enough to start working inside of it20:25
MikeWlogan- Thanks I was being too careful before in my scoping this should be my fix20:27
*** lbragstad has quit IRC20:29
mnaserevrardjp: fyi os_gnocchi change merged if you want to add me onto that20:29
*** lbragstad has joined #openstack-ansible20:29
*** lbragstad has quit IRC20:29
evrardjpmnaser: ofc!20:29
*** lbragstad has joined #openstack-ansible20:30
openstackgerritMerged openstack/openstack-ansible-nspawn_container_create master: Remove zuul.d  https://review.openstack.org/54674620:32
*** lbragstad has quit IRC20:32
*** lbragstad has joined #openstack-ansible20:33
evrardjpmnaser: I think we did it wrong, I can't add you there.20:33
evrardjp:D20:33
mnaseruhoh20:34
evrardjpI can add you on ceilometer, where you currently already are.20:34
evrardjpgood.20:34
mnasercan you add anyone else?20:34
evrardjpnope I am not part of the group20:34
mnaseri mean, do you have admin access to the group20:34
mnaserok20:34
evrardjpI thought the other one had the openstack-ansible-core group into it20:35
mnaseri think we have to ask an infra-root to do it20:35
mnaserone sec20:35
evrardjpmnaser: done!20:39
mnaserevrardjp: merci beaucoup20:39
evrardjpand congrats!20:39
evrardjpde rien!20:39
evrardjpdid I finally get a french speaking core?20:39
mnaseroui20:39
evrardjpwow20:39
evrardjp "achievement unlocked"20:40
mnasermais bon du francais de quebec de quelqu'un qui est plutot plus anglophone20:40
mnaserlol20:40
evrardjphaha20:40
evrardjpso you have gnocchi, ceilometer... Let me check aodh20:40
evrardjpthat's done20:40
mnaseryup, os_panko is left once that unbreaks the world20:41
evrardjpwell it's already in gerrit20:41
mnaserand we'll hopefully have enough roles to do a full telemetry (attempt)20:41
mnaserhttps://review.openstack.org/#/admin/groups/1869,members20:41
evrardjpso maybe we can ask in infra20:41
mnaserindeed it is20:41
* mnaser already used up an 'ask' token20:41
mnaser:P20:41
mnaseris there a gate issue right now20:43
mnaserwith installing gcc?20:43
evrardjpyeah, wrong images in infra or something20:43
mnaserok cool20:43
mnaserdoesnt look like its here https://wiki.openstack.org/wiki/Infrastructure_Status20:43
evrardjpso basically the lxc template downloaded from ubuntu has a version of gcc that's different than the host20:43
mnaseri thought that was fixed earlier today20:43
mnaseror thats what i thought20:43
evrardjpmnaser: you got your answer.20:45
evrardjpYeah I thought it was fixed too, so I did a few rechecks. But then I realized it wasn't.20:45
*** acormier has quit IRC20:46
evrardjpmnaser: you should be on panko now20:46
mnaserevrardjp: thank you, is the project technically imported now?20:47
mnaserlooks like its there20:48
openstackgerritMohammed Naser proposed openstack/openstack-ansible-os_panko master: dnm: test commit to get first ci pass  https://review.openstack.org/54677120:49
mnaserlook at thaaat20:49
mnaserthanks to odyssey4me for doing the bulk of the import work20:50
evrardjpyeah20:50
spotzevrardjp: or logan- know of any reason why sar can make volumes but gets an auth url error when migrating one?20:50
evrardjpmmm. I don't know, it's probably another endpoint? Could we have a log with --debug? That would probably help20:51
spotzsar can you get that?20:51
logan-yeah id watch --debug output on the client side and also cinder-api logs while doing the request20:52
logan-and maybe keystone logs also20:52
openstackgerritAndreas Jaeger proposed openstack/openstack-ansible-os_panko master: Zuul: Remove project name  https://review.openstack.org/54677320:52
openstackgerritAndreas Jaeger proposed openstack/openstack-ansible-os_panko stable/pike: Zuul: Remove project name  https://review.openstack.org/54677520:54
openstackgerritAndreas Jaeger proposed openstack/openstack-ansible-os_panko stable/queens: Zuul: Remove project name  https://review.openstack.org/54677620:55
*** sxc731 has quit IRC20:55
*** dave-mccowan has quit IRC21:00
*** SmearedBeard has quit IRC21:01
openstackgerritMerged openstack/openstack-ansible-nspawn_hosts master: Remove zuul.d bad jobs  https://review.openstack.org/54675821:01
*** openstackgerrit has quit IRC21:03
*** armaan has quit IRC21:04
MikeWI'm running into an issue very similar to this https://bugs.launchpad.net/openstack-ansible/+bug/1696802 is there a workaround that doesn't require me to destroy all containers?21:04
openstackLaunchpad bug 1696802 in openstack-ansible "lxc-containers-create fails when run on a host with existing containers" [Critical,Fix released] - Assigned to Jimmy McCrory (jimmy-mccrory)21:04
*** mardim has quit IRC21:06
*** armaan has joined #openstack-ansible21:08
*** lvdombrkr has quit IRC21:09
mnaserevrardjp: do we have to make a change to os_panko to remove the zuul.d stuff?21:16
mnaserno jobs for os_panko seem to be running21:17
evrardjpI think that's not needed21:18
evrardjpI am surprised there is no job running21:18
evrardjpmaybe the system is jammed and we should indeed remove them to better add them later21:19
evrardjpI thought this was good though.21:19
*** weezS has quit IRC21:19
MikeWevrardjp Hey how do containers get connected to before the management network is setup?21:21
MikeWI'm getting the same error as an old bug, but I know it's not the same. I have the updated role, the correct ansible version, etc.21:22
evrardjpmnaser: there are still discussions in infra21:22
mnaserevrardjp: ah ok21:22
* mnaser gets back to fixing nova bugs for now21:22
evrardjpMikeW: lxbr021:22
evrardjpbut it's not really "before"21:22
MikeWRight os it should be using the osa ssh plugin right?21:22
evrardjpwe generate the configuration for all the nics when creating the container21:22
evrardjpYes, anything ansible using our connection plugin should attach to the container independantly of the network21:23
MikeWAny ideas on how this is happening? https://pastebin.com/wxWNtkDk21:24
evrardjp(ssh to the physical host if need be)21:24
evrardjpMikeW: I'd need your openstack_user_config / conf.d21:25
evrardjpand maybe the container definition21:25
*** olivierbourdon38 has quit IRC21:26
evrardjpthat's into /var/lib/lxc/containername/21:27
evrardjpMikeW: try running with python221:28
evrardjpI don't know that's stabbing in the dark for me :)21:29
sar This is the output from the cinder api container: https://pastebin.com/6TAiPTkV21:31
MikeWhahah I'm running in circles myself I'll try it21:31
evrardjpMikeW: please paste the openstack_user_config/conf.d21:32
evrardjpthat would help.21:32
evrardjpand the inventory.json21:32
evrardjpopenstack_inventory.json21:32
sarThe problem does not appear to be on the client side, as the migrate command works, but the back end side fails with the stack trace i've pasted earlier21:32
evrardjpsar: where is that stacktrace?21:32
evrardjpcould you paste it here?21:32
sarhttps://pastebin.com/AhwAXQkd21:33
sar"Could not determine a suitable URL"21:33
MikeWevrardjp My conf.d is pretty sparse I'll paste in the inventory21:33
MikeWevrardjp: https://pastebin.com/pG6JBpY721:36
sar(the output is from cinder-volume.log on the donating storage host)21:36
evrardjpsar endpoint list and cinder config would be needed21:37
evrardjpMikeW: has that ever worked?21:40
evrardjpor is that a new deploy ?21:40
evrardjpI don't think your openstack_user_config is right.21:40
MikeWThis deploy is working believe it or not, but magnum is a new additon21:40
evrardjpcould you tell me what you changed to get magnum?21:41
MikeWhaha feel free to help me out on fixing stuff21:41
*** niraj_singh has quit IRC21:41
MikeWI've got probably 40-50 vms working right now hopefully I've not got everything too effed up21:41
evrardjpMikeW: I still haven't seen the openstack_user_config21:41
evrardjpfirst lesson is not to do it on prod :)21:42
evrardjpconfiguration management isn't forgiving21:42
MikeWSo true so true21:42
MikeWI'm deploying two more clouds, and then they want a prod21:42
MikeWOut of just me21:42
MikeWhttps://pastebin.com/Yi4YBcW721:43
MikeWevrardjp Above is my user config... I'm new to ansible and openstack simultaneously but somehow deployed a "working" cloud21:43
sarHere is the endpoint list: https://pastebin.com/RKHygQ2R21:43
evrardjpdid you change L23 and L57?21:44
MikeWI left out some of the superfluous services in favor of finishing the first deployment early, and now I'm adding them in as they're request.. fml21:44
evrardjpalso ceph mon hosts are misaligned21:44
MikeWevrardjp Yeah I pulled ceph out of here those are old and not cleaned up yet. For sure I probably changed both those lines21:45
MikeWevrardjp I wrote some custom playbooks for the ceph cluster separate of this21:45
MikeWevrardjp If you mean did I recently change them... no that's how they've been since I completed the deployment21:46
evrardjpalso you have weird double wrongly indented group_binds21:46
evrardjpelse it's your copy paste that's flaky :)21:46
MikeWCould be either :) please elaborate21:47
evrardjpL61 missing a space21:47
evrardjpsame for L5221:47
evrardjpL52 and L53 are opposite in ideas, you shouldn't do that21:47
evrardjpL40 missing a space21:48
evrardjpl27 too21:48
evrardjpand container_interface are generally not overriden, so you might have hit a bug21:48
sarevrardjp: And here is cinder.conf: https://pastebin.com/gpJkx8pK21:49
evrardjpit's very late for me21:49
evrardjpsar: looks okay to me, could you show endpoints just for making sure?21:51
sarHere are endpoints: https://pastebin.com/RKHygQ2R21:51
MikeWevrardjp Is there anything directly wrong with the magnum part? I know this configs messed up a lot, but it hasn't been a huge issue21:52
evrardjpMikeW: I am worried your openstack_user_config doesn't generate anything good in openstack_inventory.json, but hey I am so tired, don't trust my word on it :)21:52
MikeWevrardjp Would it help you to know I deployed heat today with no issues?21:52
evrardjpmmm21:53
MikeWevrardjp Also is there a vim plugin I can use to help me keep these json files not crappy?21:53
evrardjpMikeW: never edit json files :)21:53
MikeWhahah sorry :) I couldn't help it21:53
evrardjpit's hard to know what's wrong, maybe your inventory is completely busted, and there is no way to find out21:54
MikeWIf you need to leave that's fine I'm just doing this so I can deploye a kubernetes cluster for a demo tomrrow. I'll find a way just like I did before21:54
evrardjpyeah sorry21:55
evrardjpsar: it looks okay. haproxy is fine I guess21:56
saryes, haproxy is working fine21:56
evrardjpsar: interesting enough we don't have the same output when doing endpoint list21:58
evrardjpfor keystone I don't have the /v321:58
evrardjpwhich branch are you on?21:58
evrardjpI am definitely off for today -- Sorry guys21:59
evrardjpI am sleeping on my keyboard :p21:59
*** acormier has joined #openstack-ansible21:59
*** weezS has joined #openstack-ansible21:59
evrardjpif I could get some votes on https://review.openstack.org/#/q/topic:bp/docs-improvements+(status:open) that would be great!22:01
evrardjpsee you tomorrow!22:02
*** acormier has quit IRC22:03
sarevrardjp: i'm on ocata 15.1.1322:10
*** armaan has quit IRC22:14
*** armaan has joined #openstack-ansible22:14
*** openstackgerrit has joined #openstack-ansible22:18
openstackgerritMerged openstack/openstack-ansible master: [Docs] Move AIO to first scenario  https://review.openstack.org/54652222:18
*** kstev1 has quit IRC22:29
*** acormier has joined #openstack-ansible22:31
*** acormier has quit IRC22:32
*** acormier has joined #openstack-ansible22:33
*** jwitko__ has joined #openstack-ansible22:34
*** jwitko_ has quit IRC22:37
*** jwitko__ has quit IRC22:39
*** lbragstad has quit IRC22:47
*** lbragstad has joined #openstack-ansible22:48
*** jwitko_ has joined #openstack-ansible23:02
*** weezS has quit IRC23:02
*** MikeW has quit IRC23:11
*** acormier has quit IRC23:19
*** wagner has joined #openstack-ansible23:32
*** wagner has left #openstack-ansible23:33
*** wagner has joined #openstack-ansible23:33
*** acormier has joined #openstack-ansible23:38
*** acormier has quit IRC23:40
*** acormier has joined #openstack-ansible23:40
*** acormier has quit IRC23:41
*** acormier has joined #openstack-ansible23:41
*** wagner has quit IRC23:54
*** chyka has quit IRC23:55
*** chyka has joined #openstack-ansible23:56
*** acormier has quit IRC23:58

Generated by irclog2html.py 2.15.3 by Marius Gedminas - find it at mg.pov.lt!