openstackgerrit | Jonathan Rosser proposed openstack/openstack-ansible master: Bump SHAs for master https://review.opendev.org/721089 | 00:02 |
---|---|---|
*** threestrands has joined #openstack-ansible | 00:04 | |
*** gyee has quit IRC | 01:04 | |
*** rh-jelabarre has quit IRC | 01:28 | |
*** tinwood has quit IRC | 02:10 | |
*** tinwood has joined #openstack-ansible | 02:12 | |
*** viks____ has joined #openstack-ansible | 02:17 | |
*** spatel has quit IRC | 02:52 | |
*** spatel has joined #openstack-ansible | 03:47 | |
*** spatel has quit IRC | 03:53 | |
*** evrardjp has quit IRC | 04:35 | |
*** evrardjp has joined #openstack-ansible | 04:35 | |
*** cshen has joined #openstack-ansible | 05:01 | |
*** cshen has quit IRC | 05:07 | |
*** udesale has joined #openstack-ansible | 05:39 | |
*** miloa has joined #openstack-ansible | 06:10 | |
*** d34dh0r53 has quit IRC | 06:12 | |
*** cshen has joined #openstack-ansible | 06:17 | |
*** this10nly has joined #openstack-ansible | 06:23 | |
*** fghaas has joined #openstack-ansible | 06:41 | |
*** jbadiapa has joined #openstack-ansible | 06:42 | |
*** threestrands has quit IRC | 06:53 | |
*** threestrands has joined #openstack-ansible | 06:54 | |
*** threestrands has quit IRC | 06:55 | |
*** threestrands has joined #openstack-ansible | 06:55 | |
*** threestrands has quit IRC | 06:56 | |
*** threestrands has joined #openstack-ansible | 06:56 | |
*** threestrands has quit IRC | 06:58 | |
*** threestrands has joined #openstack-ansible | 06:58 | |
*** threestrands has quit IRC | 06:59 | |
*** threestrands has joined #openstack-ansible | 06:59 | |
*** threestrands has quit IRC | 07:01 | |
*** threestrands has joined #openstack-ansible | 07:01 | |
*** threestrands has quit IRC | 07:02 | |
*** threestrands has joined #openstack-ansible | 07:02 | |
*** threestrands has quit IRC | 07:04 | |
*** threestrands has joined #openstack-ansible | 07:04 | |
*** threestrands has quit IRC | 07:05 | |
*** threestrands has joined #openstack-ansible | 07:06 | |
*** threestrands has quit IRC | 07:07 | |
*** threestrands has joined #openstack-ansible | 07:07 | |
*** threestrands has quit IRC | 07:08 | |
*** threestrands has joined #openstack-ansible | 07:08 | |
*** threestrands has quit IRC | 07:10 | |
*** threestrands has joined #openstack-ansible | 07:10 | |
*** threestrands has quit IRC | 07:11 | |
*** threestrands has joined #openstack-ansible | 07:12 | |
*** threestrands has quit IRC | 07:13 | |
*** threestrands has joined #openstack-ansible | 07:13 | |
*** thuydang has joined #openstack-ansible | 07:14 | |
*** threestrands has quit IRC | 07:14 | |
*** threestrands has joined #openstack-ansible | 07:14 | |
*** threestrands has quit IRC | 07:16 | |
*** threestrands has joined #openstack-ansible | 07:16 | |
*** threestrands has quit IRC | 07:17 | |
*** threestrands has joined #openstack-ansible | 07:18 | |
*** threestrands has quit IRC | 07:19 | |
*** threestrands has joined #openstack-ansible | 07:19 | |
*** threestrands has quit IRC | 07:20 | |
*** threestrands has joined #openstack-ansible | 07:21 | |
*** threestrands has quit IRC | 07:22 | |
*** threestrands has joined #openstack-ansible | 07:22 | |
*** threestrands has quit IRC | 07:23 | |
*** threestrands has joined #openstack-ansible | 07:24 | |
*** rpittau|afk is now known as rpittau | 07:24 | |
*** threestrands has quit IRC | 07:25 | |
*** threestrands has joined #openstack-ansible | 07:25 | |
*** threestrands has quit IRC | 07:26 | |
*** threestrands has joined #openstack-ansible | 07:27 | |
*** threestrands has quit IRC | 07:28 | |
*** threestrands has joined #openstack-ansible | 07:28 | |
*** threestrands has quit IRC | 07:29 | |
*** threestrands has joined #openstack-ansible | 07:30 | |
*** yolanda has joined #openstack-ansible | 07:30 | |
*** threestrands has quit IRC | 07:31 | |
*** threestrands has joined #openstack-ansible | 07:31 | |
*** threestrands has quit IRC | 07:32 | |
*** threestrands has joined #openstack-ansible | 07:33 | |
*** threestrands has quit IRC | 07:34 | |
*** threestrands has joined #openstack-ansible | 07:34 | |
*** threestrands has quit IRC | 07:35 | |
*** threestrands has joined #openstack-ansible | 07:36 | |
*** threestrands has quit IRC | 07:37 | |
*** threestrands has joined #openstack-ansible | 07:37 | |
*** threestrands has quit IRC | 07:38 | |
*** threestrands has joined #openstack-ansible | 07:39 | |
*** threestrands has quit IRC | 07:40 | |
*** threestrands has joined #openstack-ansible | 07:40 | |
*** threestrands has quit IRC | 07:41 | |
*** threestrands has joined #openstack-ansible | 07:41 | |
*** miloa has quit IRC | 07:43 | |
*** threestrands has quit IRC | 07:43 | |
*** threestrands has joined #openstack-ansible | 07:43 | |
*** threestrands has quit IRC | 07:44 | |
*** threestrands has joined #openstack-ansible | 07:45 | |
*** tosky has joined #openstack-ansible | 07:45 | |
*** threestrands has quit IRC | 07:46 | |
*** threestrands has joined #openstack-ansible | 07:46 | |
*** NewJorg has quit IRC | 07:47 | |
*** threestrands has quit IRC | 07:47 | |
*** threestrands has joined #openstack-ansible | 07:47 | |
*** NewJorg has joined #openstack-ansible | 07:48 | |
*** threestrands has quit IRC | 07:49 | |
*** threestrands has joined #openstack-ansible | 07:49 | |
*** threestrands has quit IRC | 07:50 | |
*** threestrands has joined #openstack-ansible | 07:51 | |
*** threestrands has quit IRC | 07:52 | |
*** threestrands has joined #openstack-ansible | 07:52 | |
*** threestrands has quit IRC | 07:53 | |
*** spatel has joined #openstack-ansible | 07:53 | |
*** threestrands has joined #openstack-ansible | 07:54 | |
*** threestrands has quit IRC | 07:55 | |
*** threestrands has joined #openstack-ansible | 07:55 | |
noonedeadpunk | jrosser: huh, I thought your patch is going to fix bionic distro as well, since it fails due to the same thing, isn't it? | 07:56 |
*** threestrands has quit IRC | 07:56 | |
jrosser | don't we install distro tempest on bionic/distro? | 07:57 |
noonedeadpunk | So for bionic we do install tempest from source the same way as for source installs? | 07:57 |
*** threestrands has joined #openstack-ansible | 07:57 | |
jrosser | we should check that..... | 07:57 |
noonedeadpunk | oh... so we install tempest from distro package but plugins from source | 07:57 |
noonedeadpunk | yeah, you are right | 07:57 |
*** threestrands has quit IRC | 07:58 | |
*** threestrands has joined #openstack-ansible | 07:58 | |
*** spatel has quit IRC | 07:58 | |
openstackgerrit | Dmitriy Rabotyagov (noonedeadpunk) proposed openstack/openstack-ansible master: Bump SHAs for master https://review.opendev.org/721089 | 07:59 |
*** threestrands has quit IRC | 07:59 | |
jrosser | i think we need to merge the os_tempest patch ASAP | 07:59 |
*** threestrands has joined #openstack-ansible | 08:00 | |
jrosser | becasue the master SHA bump will never pass the upgrade job | 08:00 |
openstackgerrit | Dmitriy Rabotyagov (noonedeadpunk) proposed openstack/openstack-ansible master: Bump SHAs for master https://review.opendev.org/721089 | 08:00 |
*** threestrands has quit IRC | 08:01 | |
*** threestrands has joined #openstack-ansible | 08:01 | |
*** threestrands has quit IRC | 08:02 | |
*** threestrands has joined #openstack-ansible | 08:02 | |
*** threestrands has quit IRC | 08:04 | |
*** threestrands has joined #openstack-ansible | 08:04 | |
*** threestrands has quit IRC | 08:05 | |
*** threestrands has joined #openstack-ansible | 08:06 | |
*** threestrands has quit IRC | 08:07 | |
*** threestrands has joined #openstack-ansible | 08:07 | |
*** threestrands has quit IRC | 08:08 | |
*** thuydang has quit IRC | 08:36 | |
*** thuydang has joined #openstack-ansible | 08:41 | |
*** thuydang has quit IRC | 09:32 | |
*** spatel has joined #openstack-ansible | 09:42 | |
*** spatel has quit IRC | 09:46 | |
*** thuydang has joined #openstack-ansible | 09:47 | |
*** evrardjp has quit IRC | 09:51 | |
*** evrardjp has joined #openstack-ansible | 09:51 | |
*** rpittau is now known as rpittau|bbl | 10:42 | |
*** cshen has quit IRC | 10:45 | |
*** cshen has joined #openstack-ansible | 10:56 | |
*** cshen has quit IRC | 11:23 | |
*** cshen has joined #openstack-ansible | 11:38 | |
openstackgerrit | Andreas Jaeger proposed openstack/openstack-ansible-galera_server master: Cleanup py27 support https://review.opendev.org/721824 | 11:46 |
*** rh-jelabarre has joined #openstack-ansible | 11:48 | |
openstackgerrit | Andreas Jaeger proposed openstack/openstack-ansible-galera_server master: Cleanup py27 support https://review.opendev.org/721824 | 11:49 |
*** rpittau|bbl is now known as rpittau | 11:50 | |
openstackgerrit | Andreas Jaeger proposed openstack/openstack-ansible-os_keystone master: Cleanup py27 support https://review.opendev.org/721834 | 11:52 |
openstackgerrit | Andreas Jaeger proposed openstack/openstack-ansible-os_murano master: Cleanup py27 support https://review.opendev.org/721835 | 11:55 |
openstackgerrit | Andreas Jaeger proposed openstack/openstack-ansible-plugins master: Cleanup py27 support https://review.opendev.org/721837 | 11:58 |
fridtjof[m] | quick Q: is there anything I should keep in mind when I have an external (flat) provider network which already has a DHCP server and some used IPs? | 12:05 |
fridtjof[m] | Is that something that only requires special configuration when "creating" the network in openstack itself? Or is there something to pay special attention to in the ansible configuration? | 12:06 |
noonedeadpunk | fridtjof[m]: so it won't be easy I think. As then you will need to manually reserve ips on your dhcp and create neutron ports with specified ips.... | 12:09 |
noonedeadpunk | As kinda anyway neutron will manage ip delegation for isntances wich should eventually match with your dhcp | 12:10 |
openstackgerrit | Andreas Jaeger proposed openstack/openstack-ansible-os_murano master: Cleanup py27 support https://review.opendev.org/721835 | 12:10 |
noonedeadpunk | Or if you're thinking about setting static IPs for instances (instead of dhcp) that you'll need to use config drives for cloud-init https://docs.openstack.org/nova/train/user/metadata.html#config-drives | 12:10 |
fridtjof[m] | would reserving a smaller portion of the DHCP subnet work, in conjunction with only telling neutron about that "sub-subnet"? | 12:11 |
noonedeadpunk | * https://docs.openstack.org/nova/train/admin/config-drive.html | 12:11 |
noonedeadpunk | I don't think 2 dhcp servers may work withing the sae network | 12:12 |
fridtjof[m] | ohhh | 12:13 |
fridtjof[m] | i see | 12:14 |
fridtjof[m] | so technically, avoiding IP conflicts isn't the problem (i could just reserve a smaller subnet in the existing dhcp server for neutron) but then having two DHCP servers is | 12:14 |
noonedeadpunk | yeah. so you actually can try using a space without dhcp for neutron - and I think that vms will be given static ips in case of configuration with config drives (but not 100% sure about that) | 12:15 |
noonedeadpunk | Also you can use floating ips - they will be added to l3 agent namespaces so do not require dhcp | 12:16 |
noonedeadpunk | while create instances in private network | 12:16 |
fridtjof[m] | yeah, static IPs it is then | 12:16 |
fridtjof[m] | those employ NAT, right? | 12:17 |
noonedeadpunk | yeah | 12:17 |
fridtjof[m] | what i've always wondered was why ubuntu (18.04, at least) explicitly patches cloud-init to ignore network configuration coming from the metadata service | 12:18 |
noonedeadpunk | or you may split your current net to 2 smaller ones:) | 12:18 |
fridtjof[m] | (good to know it works through config drives, though) | 12:18 |
noonedeadpunk | fridtjof[m]: maybe because they use cloud-init in their new fancy setup tool? | 12:19 |
fridtjof[m] | i'm talking about this specific patch: https://github.com/delphix/cloud-init/tree/master/.pc/openstack-no-network-config.patch | 12:25 |
fridtjof[m] | i spent an entire day some months ago trying to find any reasoning as to why it's there, and all i ever found was it being mentioned in automated release diffs | 12:26 |
fridtjof[m] | * i spent an entire day some months ago trying to find any reasoning as to why it's there, and all i ever found was it being mentioned in automated release diffs on launchpad | 12:26 |
fridtjof[m] | (oh wait, let me find a better view) | 12:26 |
fridtjof[m] | those are files with the patch applied, not expecting you to compare it manually of course | 12:27 |
noonedeadpunk | huh interesting... | 12:28 |
noonedeadpunk | but have no idea as well:) | 12:28 |
openstackgerrit | Andreas Jaeger proposed openstack/openstack-ansible-plugins master: Cleanup py27 support https://review.opendev.org/721837 | 12:30 |
fridtjof[m] | https://git.launchpad.net/cloud-init/tree/debian/patches/openstack-no-network-config.patch?h=ubuntu/bionic | 12:31 |
fridtjof[m] | found it, noonedeadpunk | 12:31 |
fridtjof[m] | it seems they patched it to not change old behavior | 12:31 |
openstackgerrit | Andreas Jaeger proposed openstack/openstack-ansible-os_murano master: Cleanup py27 support https://review.opendev.org/721835 | 12:32 |
fridtjof[m] | yup, it's gone from 20.04 | 12:32 |
*** cshen has quit IRC | 12:53 | |
*** cshen has joined #openstack-ansible | 12:53 | |
openstackgerrit | Andreas Jaeger proposed openstack/openstack-ansible-ops master: Cleanup py27 support https://review.opendev.org/719944 | 13:01 |
*** smorant has joined #openstack-ansible | 13:20 | |
*** strattao has joined #openstack-ansible | 13:23 | |
openstackgerrit | Dmitriy Rabotyagov (noonedeadpunk) proposed openstack/openstack-ansible master: Use defined keepalived track_scripts https://review.opendev.org/721957 | 13:36 |
openstackgerrit | Dmitriy Rabotyagov (noonedeadpunk) proposed openstack/openstack-ansible master: Use defined keepalived track_scripts https://review.opendev.org/721957 | 13:39 |
*** udesale_ has joined #openstack-ansible | 13:40 | |
*** udesale has quit IRC | 13:42 | |
*** cshen has quit IRC | 13:43 | |
*** d34dh0r53 has joined #openstack-ansible | 13:59 | |
*** gshippey has joined #openstack-ansible | 14:04 | |
*** cshen has joined #openstack-ansible | 14:08 | |
*** this10nly has quit IRC | 14:08 | |
*** cshen has quit IRC | 14:12 | |
*** smorant has quit IRC | 14:17 | |
openstackgerrit | Merged openstack/openstack-ansible-os_tempest master: Refactor tempest plugin install from source https://review.opendev.org/721645 | 14:23 |
*** cshen has joined #openstack-ansible | 14:24 | |
mgariepy | hey, if i have a patch to do accross all the conf files on all the roles , is there a helper script that exist for that ? | 15:02 |
*** gyee has joined #openstack-ansible | 15:11 | |
mnaser | mgariepy: i wrote a small tool aw hiel back | 15:11 |
mnaser | mgariepy: https://github.com/mnaser/squip | 15:11 |
mnaser | noonedeadpunk: do you mind looking into resolving the config errors in the openstack tenant from the retirement of pip_install and friends? Andreas asked about that a few days ago | 15:12 |
noonedeadpunk | Oh, yeah, we have left stuff in queens and ealier | 15:15 |
noonedeadpunk | So will place patches and ask for force-push infra | 15:16 |
mgariepy | mnaser, thanks a lot, i'll try that :D | 15:19 |
openstackgerrit | Dmitriy Rabotyagov (noonedeadpunk) proposed openstack/openstack-ansible-tests stable/queens: Retire repo_build and pip_install roles https://review.opendev.org/722020 | 15:31 |
openstackgerrit | Dmitriy Rabotyagov (noonedeadpunk) proposed openstack/openstack-ansible-tests stable/pike: Retire repo_build and pip_install roles https://review.opendev.org/722021 | 15:32 |
openstackgerrit | Dmitriy Rabotyagov (noonedeadpunk) proposed openstack/openstack-ansible-tests stable/ocata: Retire repo_build and pip_install roles https://review.opendev.org/722022 | 15:32 |
*** spatel has joined #openstack-ansible | 15:50 | |
*** fghaas has quit IRC | 16:11 | |
*** thuydang has quit IRC | 16:19 | |
*** udesale_ has quit IRC | 16:27 | |
*** stache has joined #openstack-ansible | 16:28 | |
*** rpittau is now known as rpittau|afk | 16:29 | |
*** evrardjp has quit IRC | 16:35 | |
*** evrardjp has joined #openstack-ansible | 16:35 | |
stache | Hi, I'm currently participating in RHOSC and have been tasked with working on creating an ansible role/module for servers on openstack. I couldn't find an openstack ansible modules IRC or Repo, and this was the only official ansible IRC I could find for openstack. I was hoping someone here could guide me to the modules repo for openstack. Thanks!! | 16:39 |
noonedeadpunk | stache: it's eventually #openstack-ansible-sig for such questions. But in case of ansible collection regarding openstack - the repo is https://opendev.org/openstack/ansible-collections-openstack | 16:43 |
stache | Oh sorry I didn't know. Thanks for the help though noonedeadpunk!! | 16:46 |
noonedeadpunk | sure, np | 16:46 |
*** stache has left #openstack-ansible | 16:48 | |
openstackgerrit | Merged openstack/openstack-ansible master: Disable test_list_user_groups temepst test https://review.opendev.org/720698 | 16:51 |
*** cshen has quit IRC | 16:52 | |
openstackgerrit | Dmitriy Rabotyagov (noonedeadpunk) proposed openstack/openstack-ansible-tests stable/ocata: Retire repo_build and pip_install roles https://review.opendev.org/722022 | 16:53 |
openstackgerrit | Dmitriy Rabotyagov (noonedeadpunk) proposed openstack/openstack-ansible-tests stable/pike: Retire repo_build and pip_install roles https://review.opendev.org/722021 | 16:54 |
openstackgerrit | Dmitriy Rabotyagov (noonedeadpunk) proposed openstack/openstack-ansible-tests stable/queens: Retire repo_build and pip_install roles https://review.opendev.org/722020 | 16:54 |
*** yolanda has quit IRC | 16:54 | |
*** cshen has joined #openstack-ansible | 17:23 | |
*** cshen has quit IRC | 17:27 | |
masterpe | I'm looking into ceph cache options I see in ./roles/ceph-defaults/defaults/main.yml that rbd_cache is set to true, but I don't see that variable is used in the rest of the OSA | 17:30 |
masterpe | I'm using 18.1.12, is this an old variable? | 17:31 |
jrosser | that role is part of ceph-ansible | 17:31 |
jrosser | so that variable would be consumed by the ceph-ansible playbooks, rather than the OSA ones | 17:32 |
jrosser | playbooks/roles etc | 17:32 |
masterpe | if I do a egrep -Ri "rbd.cache" . in the directory /etc/ansible/roles/ceph-ansible I only see it in ./roles/ceph-defaults/defaults/main.yml and I don't see it used by a template, in a tasks or anything else | 17:38 |
*** mgariepy has quit IRC | 17:39 | |
*** mgariepy has joined #openstack-ansible | 17:39 | |
mgariepy | jrosser, i'm looking a setting the www_authentication_uri to the public uri instead of internal one. as stated in the config ref: https://docs.openstack.org/neutron/train/configuration/neutron.html#keystone-authtoken | 17:41 |
jrosser | ewwww | 17:41 |
mgariepy | and i saw you changed the heat config to use the internaluri in heat: https://github.com/openstack/openstack-ansible-os_heat/commit/288634ce0bf042bed614b3f764753d7b65a7170f | 17:42 |
jrosser | everything breaks if you undo that | 17:42 |
mgariepy | ecause of certs ? | 17:42 |
mgariepy | because of certs ? | 17:42 |
jrosser | thats one thing, yes | 17:42 |
jrosser | self signed doesnt work | 17:43 |
mgariepy | if the cert is self- signed can we add the insecure boot to true ? | 17:43 |
jrosser | and then if theres no network path from the mgmt network to the external endpoint, everything is hosed | 17:43 |
mgariepy | what i'm willing to fix is the internal ip leakage of differents apis. | 17:44 |
jrosser | took me the entire rocky cycle to fix heat for this | 17:44 |
jrosser | there is similar trouble in horizon with federation | 17:44 |
jrosser | do you have a specific problem to solve here? | 17:45 |
mgariepy | if you `curl --head https://yourclouddnshere:9292/v2` | 17:47 |
mgariepy | you see the headers wit hthe keystone-uri poiting to the internal ip. | 17:47 |
jrosser | yes you do | 17:49 |
mgariepy | would be better to point to the publicuri | 17:50 |
jrosser | so long as it doesnt break anything else | 17:50 |
jrosser | none of this is tested at all in wider openstack ci / devstack | 17:50 |
jrosser | it's just everything bound to localhost | 17:50 |
jrosser | which is why heat was such a mess to untangle | 17:50 |
mgariepy | heat is a mess on his own. | 17:51 |
jrosser | the issue there was internal endpoint getting put in cloud-init for VM created by heat | 17:51 |
jrosser | so similar | 17:51 |
jrosser | i'd like to test these changes very carefully | 17:51 |
mgariepy | mnaser, do you have an opinion on this ? | 17:51 |
jrosser | my clouds are a bit strange in that there is no internal <> external IP route at all | 17:52 |
mgariepy | or noonedeadpunk ^^ | 17:52 |
mgariepy | every cloud are unique, just like everyone else :D | 17:52 |
jrosser | hah yes | 17:53 |
jrosser | i figure in a lot of cases this stuff is working by accident because of a NAT firewall between mgmt network and external endpoints | 17:53 |
jrosser | could use another review on this https://review.opendev.org/#/c/721089/5 (before something else breaks!) | 17:55 |
* noonedeadpunk has no opinion :( | 17:55 | |
mgariepy | noonedeadpunk, lol | 17:56 |
mgariepy | jrosser, done. | 17:56 |
jrosser | mgariepy: i guess changing them one by one in my environment then running refstack will tell the answer | 17:56 |
noonedeadpunk | like I never was facing issues with heat in our environments... | 17:57 |
mgariepy | no issue with heat ? | 17:57 |
noonedeadpunk | magnum was the reason for all of them I'd say:) | 17:57 |
mgariepy | it's not just for heat.. | 17:57 |
mgariepy | i want to swap it to public uri for all the services. | 17:58 |
mgariepy | so when you poke the apis, the headers won't leak the internal ips. | 17:58 |
jrosser | thats fine so long as the services treat the variables correctly | 17:58 |
noonedeadpunk | I can kinda recall this and with public there were issues, yes | 17:58 |
jrosser | for heat we made it use the service catalog instead of read the config file | 17:58 |
noonedeadpunk | and jrosser's fix worked nicely... | 17:59 |
jrosser | but i don't know if we addressed anything to do with leaked IP in headers | 17:59 |
mgariepy | heat config key seems only to be in heat, nova and neutron don't have them, | 17:59 |
mgariepy | jrosser, does heat leak the ip now ? | 18:02 |
mgariepy | on your setup ? | 18:02 |
jrosser | i don't get a WWW-Authenticate header at all from port 8004 | 18:03 |
mgariepy | need uri/v1 | 18:03 |
mgariepy | you genre a multiple choice responss | 18:04 |
mgariepy | you genre a multiple choice response | 18:04 |
jrosser | oh right | 18:04 |
*** sshnaidm is now known as sshnaidm|afk | 18:04 | |
jrosser | yes its there with an internal IP again | 18:04 |
jrosser | i think that in the code for these services there is a giant mess | 18:04 |
mgariepy | lol. | 18:04 |
mgariepy | major understatement haha | 18:05 |
jrosser | the way we fixed heat was to make a new config variable that did the right thing in the right place when you enabled it | 18:05 |
mgariepy | hmm. | 18:05 |
jrosser | otherwise it left the "historical" behaviour the same becasue it was just too much to try to figure out what it all meant | 18:05 |
mgariepy | i wonder if haproxy could prenvent the leak in the mean time. | 18:06 |
mgariepy | but it's kinda bad also haha | 18:06 |
mgariepy | the internal uri is working only because it's not ssl isn't it? | 18:07 |
jrosser | the internal VIP is not ssl - is that what you mean? | 18:10 |
mgariepy | yep | 18:10 |
jrosser | so thats another way this all goes wrong | 18:10 |
jrosser | when you start switching up internal/external you get things trying to talk https to the internal vip, and that blows up too | 18:10 |
mgariepy | in my case i listen on 2 ips. internal is not ssl and the external one is ssl. | 18:11 |
*** fghaas has joined #openstack-ansible | 18:20 | |
*** thuydang has joined #openstack-ansible | 18:44 | |
*** thuydang has quit IRC | 18:50 | |
*** thuydang has joined #openstack-ansible | 19:05 | |
openstackgerrit | Dmitriy Rabotyagov (noonedeadpunk) proposed openstack/openstack-ansible-tests stable/pike: Retire repo_build and pip_install roles https://review.opendev.org/722021 | 19:12 |
fridtjof[m] | a very stupid question from me | 19:27 |
fridtjof[m] | so i'm building a deployment with two compute hosts | 19:27 |
fridtjof[m] | and on one of them i just broke the network config to the point where I can't SSH into it. the server's remote management doesn't have a console license and I can't go in because the building's in lockdown. | 19:28 |
fridtjof[m] | long story short, i'll set it up with one host less now, but due to naming consistency etc i'd like to still reserve "compute1" for that (now unreachable) host and call the remaining host "compute2" | 19:30 |
fridtjof[m] | then when it's back online, i'll add it to the deployment | 19:30 |
fridtjof[m] | does anything in os-ansible depend on the names for it to work nicely? i'm pretty sure the answer is no, but i'd love the extra assurance if someone knows this off the top of their head | 19:31 |
noonedeadpunk | the only thing is that this host is still in cached inventory, you you maybe would like to do smth like this while running roles | 19:38 |
noonedeadpunk | openstack-ansible setup-openstack.yml --limit 'all:!compute1' | 19:38 |
noonedeadpunk | mnaser: jrosser mgariepy and all cores I didn't mention - are we going to participate in virtual ptg? | 19:43 |
noonedeadpunk | I saw an email questioning that... but maybe we still want to chat a bit about things? | 19:47 |
*** cshen has joined #openstack-ansible | 20:02 | |
*** fghaas has quit IRC | 20:05 | |
*** cshen has quit IRC | 20:06 | |
*** thuydang has quit IRC | 20:06 | |
*** gshippey has quit IRC | 20:31 | |
openstackgerrit | Merged openstack/openstack-ansible master: Bump SHAs for master https://review.opendev.org/721089 | 21:02 |
*** spatel has quit IRC | 21:31 | |
*** mmethot_ has joined #openstack-ansible | 21:44 | |
*** itsjg has quit IRC | 21:45 | |
*** itsjg has joined #openstack-ansible | 21:47 | |
*** mmethot has quit IRC | 21:48 | |
*** spatel has joined #openstack-ansible | 22:44 | |
*** spatel has quit IRC | 23:07 | |
*** spatel has joined #openstack-ansible | 23:14 | |
*** spatel has quit IRC | 23:45 | |
*** tosky has quit IRC | 23:51 |
Generated by irclog2html.py 2.15.3 by Marius Gedminas - find it at mg.pov.lt!