Sunday, 2017-04-02

*** manheim has quit IRC00:04
*** yangyapeng has joined #openstack-kolla00:19
*** caoyuan has joined #openstack-kolla00:20
*** yangyapeng has quit IRC00:30
*** yangyapeng has joined #openstack-kolla00:30
*** caoyuan has quit IRC00:30
*** yangyapeng has quit IRC00:34
*** tonanhngo has joined #openstack-kolla00:52
*** tonanhngo has quit IRC00:56
openstackgerritOpenStack Proposal Bot proposed openstack/kolla-kubernetes master: Updated from global requirements  https://review.openstack.org/45101801:04
*** g3ek has quit IRC01:08
*** yangyapeng has joined #openstack-kolla01:15
*** g3ek has joined #openstack-kolla01:17
*** papacz has quit IRC01:51
*** shashank_t_ has joined #openstack-kolla01:54
*** ccesario has quit IRC02:03
*** ccesario has joined #openstack-kolla02:04
*** tonanhngo has joined #openstack-kolla02:11
*** tonanhngo has quit IRC02:13
*** shashank_t_ has quit IRC02:15
*** shashank_t_ has joined #openstack-kolla02:16
sdakesbezverk nice job on kubernetes 1.6 dude!02:17
klindgrenmnaser, thanks for the response here is what I have mapped in:02:19
klindgrenvolumes:02:19
klindgren  - /etc/localtime:/etc/localtime:ro02:19
klindgren  - /etc/kolla/nova-compute:/var/lib/kolla/config_files:ro02:19
klindgren  - /var/log/nova:/var/log/nova02:19
klindgren  - /var/lib/nova:/var/lib/nova02:19
klindgren  - /tmp/nova-compute:/tmp/nova-compute02:19
klindgren  - /run:/run:shared02:19
klindgren  - /dev:/dev02:19
klindgren  - /lib/modules:/lib/modules02:19
klindgren  - /var/lib/libvirt:/var/lib/libvirt02:19
klindgrenprivileged: true02:19
*** tonanhngo has joined #openstack-kolla02:21
*** tonanhngo has quit IRC02:32
*** caoyuan has joined #openstack-kolla02:48
*** tonanhngo has joined #openstack-kolla02:59
*** shashank_t_ has quit IRC03:02
*** shashank_t_ has joined #openstack-kolla03:02
*** hrw has quit IRC03:02
*** tonanhngo has quit IRC03:03
*** shashank_t_ has quit IRC03:07
*** tonanhngo has joined #openstack-kolla03:09
*** tonanhngo has quit IRC03:14
*** adrian_otto has joined #openstack-kolla03:23
*** adrian_otto has quit IRC03:25
*** lamt has quit IRC03:28
openstackgerritcaoyuan proposed openstack/kolla-ansible master: Add neutron sanity check to use built in shade  https://review.openstack.org/45250603:31
*** madgoat has joined #openstack-kolla03:38
*** madgoat has left #openstack-kolla03:38
*** caoyuan has quit IRC03:39
*** tonanhngo has joined #openstack-kolla03:40
*** tonanhngo has quit IRC03:57
*** caoyuan has joined #openstack-kolla04:15
*** unicell has joined #openstack-kolla04:20
*** unicell is now known as Guest7380004:20
*** igordcard has quit IRC04:24
*** igordcard has joined #openstack-kolla04:26
*** haplo37 has quit IRC04:29
*** leseb has quit IRC04:30
*** leseb has joined #openstack-kolla04:31
*** dciabrin has quit IRC04:32
*** dciabrin has joined #openstack-kolla04:32
*** haplo37 has joined #openstack-kolla04:32
*** dasTor has quit IRC04:33
*** dasTor has joined #openstack-kolla04:33
*** sgordon has quit IRC04:35
*** sgordon has joined #openstack-kolla04:35
*** bmace has quit IRC04:44
*** bmace has joined #openstack-kolla04:45
*** tonanhngo has joined #openstack-kolla04:54
*** tonanhngo has quit IRC05:03
eanylinsdake: Still there?05:07
*** tonanhngo has joined #openstack-kolla05:08
*** unicell has joined #openstack-kolla05:12
*** tonanhngo has quit IRC05:44
*** haplo37_ has quit IRC05:46
*** Guest73800 has quit IRC05:47
*** haplo37_ has joined #openstack-kolla05:49
*** unicell has quit IRC05:49
*** jascott1_ has joined #openstack-kolla05:56
*** jascott1_ has quit IRC06:02
*** unicell has joined #openstack-kolla06:02
*** unicell1 has joined #openstack-kolla06:06
*** unicell1 has quit IRC06:10
*** unicell has quit IRC06:14
*** unicell has joined #openstack-kolla06:20
*** tonanhngo has joined #openstack-kolla06:25
*** caoyuan has quit IRC06:34
openstackgerritBertrand Lallau proposed openstack/kolla-ansible master: Fix Fluentd warn on dnsmasq.log file parsing  https://review.openstack.org/45249806:59
*** tonanhngo has quit IRC07:01
*** iceyao has joined #openstack-kolla07:01
*** iceyao has quit IRC07:18
*** caoyuan has joined #openstack-kolla07:34
*** caoyuan has quit IRC07:39
*** jascott1_ has joined #openstack-kolla08:07
*** iceyao has joined #openstack-kolla08:09
*** manheim has joined #openstack-kolla08:30
*** manheim has quit IRC08:34
*** caoyuan has joined #openstack-kolla08:36
*** caoyuan has quit IRC08:40
*** zhubingbing has joined #openstack-kolla08:56
*** caoyuan has joined #openstack-kolla08:58
*** manheim has joined #openstack-kolla09:15
*** shashank_t_ has joined #openstack-kolla09:16
*** shashank_t_ has quit IRC09:21
*** manheim has quit IRC09:31
openstackgerritcaoyuan proposed openstack/kolla master: Update min Ansible version to 2.2.0  https://review.openstack.org/45252909:33
*** jascott1_ has quit IRC09:34
*** jascott1_ has joined #openstack-kolla09:35
*** jascott1_ has quit IRC09:35
*** iceyao has quit IRC09:36
*** jascott1_ has joined #openstack-kolla09:36
*** iceyao has joined #openstack-kolla09:47
*** iceyao has quit IRC09:50
*** n0isyn0i1e is now known as n0isyn0ise10:23
*** oanson has quit IRC10:25
*** lamt has joined #openstack-kolla10:31
*** pbourke has quit IRC10:34
*** pbourke has joined #openstack-kolla10:35
*** hachi has quit IRC10:40
*** oanson has joined #openstack-kolla10:44
*** hachi has joined #openstack-kolla10:55
*** oanson has quit IRC10:59
*** oanson has joined #openstack-kolla10:59
*** oanson has quit IRC11:23
*** oanson has joined #openstack-kolla11:27
*** oanson has quit IRC11:27
*** oanson has joined #openstack-kolla11:29
*** oanson has quit IRC11:37
*** pbandark has joined #openstack-kolla11:50
*** pbandark has quit IRC11:50
*** yangyapeng has quit IRC11:52
*** yangyapeng has joined #openstack-kolla12:01
*** oanson has joined #openstack-kolla12:22
*** oanson has quit IRC12:34
*** oanson has joined #openstack-kolla12:34
*** n0isyn0ise has quit IRC12:38
*** iceyao has joined #openstack-kolla12:45
*** oanson has quit IRC12:46
*** oanson has joined #openstack-kolla12:47
*** manheim has joined #openstack-kolla12:47
*** iceyao has quit IRC12:49
*** caoyuan has quit IRC13:01
*** iceyao has joined #openstack-kolla13:04
*** manheim has quit IRC13:05
*** yangyapeng has quit IRC13:05
sdakeeanylin morning13:06
nea1does the neutron_external_interface have to be available on all servers or only on the network nodes?13:16
*** erlon has joined #openstack-kolla13:35
eanylinsdake: Morning13:38
eanylinsdake: FYI, I was able to reach the same stage as before by applying all the workarounds that sbezverk applied with the gate for 1.6.013:42
sdakeeanylin thats good news13:44
sdakeeanylin i guess we should just document how to work with 1.6 then - i'm not really sure13:45
eanylinsdake: Yeah, maybe we should13:45
eanylinsdake: Since the gate is based on 1.6 now13:45
eanylinsdake: I went further actually, I was able to ping 8.8.8.8 from my VM now13:45
eanylinsdake: And I can ping across 2 VMs13:46
eanylinsdake: And I got NoVNC working13:46
*** specialguy has joined #openstack-kolla13:47
eanylinsdake: However, I still cannot ssh to the Cirros VM from my host machine but the Cirros VM can reach my host machine, am guessing firewall...13:48
specialguyHey :) Where can I see 3.0.3 release note and upgrading to 4.0.0 requirements13:49
specialguyDanke13:49
*** specialguy has quit IRC14:00
nea1is it possible to have multiple neutron_external_interfaces?14:05
eanylinnea1: Have not tested multiple interfaces before, what would be the use-case for this though?14:07
*** yangyapeng has joined #openstack-kolla14:08
*** yangyape_ has joined #openstack-kolla14:09
*** caoyuan has joined #openstack-kolla14:10
*** yangyapeng has quit IRC14:13
*** aolwas has quit IRC14:19
sdakeeanylin wow thats good!14:23
sdakeeanylin sorry jerking aroudn with my blueray 4k UHD player14:23
sdakeboy this ultraviolet thing is a racket14:24
*** caoyuan_ has joined #openstack-kolla14:28
*** caoyuan has quit IRC14:31
*** jtriley has joined #openstack-kolla14:33
nea1I'm still thinking about how to deploy my nodes14:34
nea1eanylin: I think my actual idea is not really realizable, the point is I have two different external networks which are connected to different nodes14:36
eanylinsdake: Yeah, I think went further this time round and I think we missed something for LVM Cinder14:36
eanylinsdake: Nice, 4K UHD player14:37
sdakeeanylin ya got the panasonic14:37
eanylinsdake: I see14:37
sdakeeanylin it was a return - so got 20% off14:37
sdakethe cat didn't realize I think that a microsd card is needed in order for it to operate14:37
eanylinsdake: Ah, ok. Good deal then :)14:37
eanylinnea1: Multiple clouds, VIM zone?14:38
eanylinsdake: You seen the issue with not being able to SSH/ping the Cirros VM before? I think this test passed in the gate, as I can see that its one of the tests.  Wasnt sure where I need to look at...14:40
*** zhangqiankun has joined #openstack-kolla14:40
nea1eanylin: no more route the IPs from the one datacenter to the other, compute / storage apparently won't be setup in the old datacenter14:40
sdakeeanylin i have not seen this issue you describe although I ahve seen it all the time with kolla-ansible14:40
sdakeeanylin since you are running in a vm your vm interface may need some help14:41
sdakeeanylin are you using kvm or virutalbox?14:41
eanylinnea1: I see. Hmm, I know tacker can handle multiple VIMs etc. And we can connect different datacenters together, not sure if that will be useful for you.14:42
*** jtriley has quit IRC14:42
eanylinsdake: I see this problem in kolla-ansible too14:42
sdakeno idea what tacker is :)14:42
sdakeeanylin right - its an envrionmental setup problem - i suspect if you wer erunning on bare metal yo uwould be good to go14:42
eanylinsdake: Tacker is quite interesting.  It is a big tent project as well.14:43
eanylinsdake: Driven mainly by the Brocade guys (Not sure if its still the case now)14:43
eanylinsdake: I see. I am on KVM, QEMU14:43
eanylinsdake: I dont have bare metal lab unfortunately :(14:43
eanylinsdake: I got it to work before in AIO Kolla-Ansible, but I had to use veth interface14:44
nea1eanylin: well my first Idea was for testing simply to have the network nodes in the other dc and use tinc for the main network_interface to connect them, but then there would be the problem that I can't route anything out over the servers there14:45
nea1other Idea was use tinc to connect the network to the new DC, but that way I'd have to route the traffic14:46
eanylinnea1: Hmm, I havent use tinc before14:48
sdakeeanylin the gate uses a veth interface -  pretty sure14:50
nea1like openvpn only in simple and with multi server which then uses peer to peer to route the packages (so that not everything has to go over the server)14:50
sdakeeanylin could be wrong on that - it may be a bridge14:50
eanylineanylin: So thats how they got it to work then14:50
eanylinsorry, sdake*14:50
eanylinsdake: I think we need a bridge too, for it to work14:51
sdakeeanylin i dont know if its a veth or a bridge14:51
*** krtaylor has quit IRC14:51
eanylinsdake: I did it on my MacBook the other day, cannot remember what I did though. That was Kolla Ansible AIO, with 3.0.214:51
eanylinsdake: Ok, probably I need to look at how I set it up14:51
sdakeeanylin what are your thoughts of kolla ansible?14:52
eanylinsdake: I think it is stable14:52
sdakeanything else?14:52
eanylinsdake: I worked on it in Jan and was able to get things up pretty quickly14:52
eanylinsdake: Its good too, similar to Fuel in terms of concepts, just that it is using ansible instead of puppet14:52
sdakeintereseting - never looked at fuel14:53
eanylinI got the multi-node working on my laptop too14:53
eanylinsdake: I used Fuel quite a lot14:53
eanylinsdake: The only problem I had with multi-node was my Cirros VM hung while booting up, probably related to the fact that I am using QEMU, it would have worked if I have bare metal14:54
eanylinsdake: I showed to my colleagues before that I can tear down multi-node Kolla Ansible and then bring it up again in about 20 to 30 mins on a powerful laptop, using the Operator node and Private registry built with Kolla-Build14:55
eanylinsdake: Thought it was pretty neat :)14:55
*** zhangqiankun has quit IRC14:55
eanylinnea1: Ok.  Seems like its open-source, self-routing, mesh networking protocol, used for compressed, encrypted, virtual private networks (based on wikipedia)  :)14:56
eanylinnea1: Your neutron would be the old datacenter though?15:00
nea1well that is the big question, if i put it in the old DC then how would the routing be if I want to go out over the new one?15:04
*** krtaylor has joined #openstack-kolla15:05
eanylinnea1: So you are actually doing migration?15:05
nea1I'd need multiple network nodes in both DCs which only take care of the network of the DC they are in15:06
nea1not really, currently the Idea is keeping two nodes in the old DC as that has some advantages in some points15:07
sdakeeanylin good to hear - lots o people like kolla-ansible15:07
sdakeeanylin i am hopeful we can make kolla-kubernetes as good as kolla-ansible15:07
sdakeeanylin as you can tell its a work in progress - getting it to work properly is the primary concern :)15:07
nea1for e.g. IPs are cheap there15:07
eanylinnea1: Ok. I would think that it should be treated as 2 different clouds/VIMs15:08
sdakeeanylin i am not entirely sure what to add to the current document to document sbezverk's workarounds15:08
sdakeeanylin almost all of the workarounds were kubernetes related right?15:08
eanylinsdake: Yes, I think Kolla-Ansible is pretty good.  The advantage that Kolla Kubernetes have is container cluster management (in my opinion)15:09
eanylinsdake: Yes, its mostly related to 1.6.0 workarounds in the gate15:09
sdakethose are dictated by the fact that kubernetes rpm packaging wasn't  gated and isn't gated15:09
eanylinsdake: I think sbezverk spent quite a lot of time fixing it15:09
sdakekbueadm also wasn't running e2e tests for the week in the runup to kubecon15:09
eanylinsdake: He did a great job fixing it :)15:10
eanylinsdake: Oh, ok. Didnt know that15:10
sdakekubeadm 1.6.0 = doa15:10
sdakekubelet RPM packaging for 1.6 = doa15:11
sdakehis workarounds deal with the doa'ness15:11
eanylinsdake: What is doa?15:11
sdakedead on arrival15:11
eanylinsdake: Haha, yeah. I see a lot of people cursing it online ;)15:11
sdakethats a term used to describe a release that is dead on delivery :)15:11
eanylinat least for the past few days :)15:11
sdakeeanylin what in the doc aroudn kolla-kubernets specifically is missing?15:12
eanylinsdake: I wonder if 1.6.1 would be out soon15:12
sdakeeanylin who can predict such things15:12
eanylinsdake: I think Rich put some comments there but I am not sure if its all correct15:12
eanylinsdake: And I think he has problems bringing his environment up15:13
sdakeindeed he seems to15:13
sdakei struggle to keep up with the comments as the editor of the document15:13
eanylinsdake: Yeah, its getting large15:13
sdakealso its sunday :)15:13
eanylinthe document I mean15:13
eanylinsdake: Yeah :)15:14
sdakei think we should have a "workaround kubadm guide"15:14
sdakeand a "kolla-kubernetes quickstart"15:14
eanylinsdake: We can do that too15:14
sdakeor deployment guide or whatever we are calling this thing15:14
eanylinsdake: To split it out from the main one15:14
eanylinsdake: Just to address the kubeadm part15:14
sdakeid rather kubeadm document kubeadm15:14
sbezverksdake: the issue was not with kubeadm, it was in kubelet15:15
sdakehowever the fact that kubeadm is broken is a blocker15:15
eanylinsdake: Ok15:15
sdakesbezverk ok - fiar enough kubelet then :)15:15
eanylinsbezverk: Ok15:15
sdakesbezverk the gate still isn't consisntetly green so i think kubeadm has problems15:15
sdakeseems kubeadm join (multi node) has problems15:16
sdakeAIO seems solid15:16
sbezverksdake: there are two issues, one with version 3.0.0 and placement, which seems to be nova bug15:16
eanylinMost changes were made in /etc/systemd/system/kubelet.service.d/10-kubeadm.conf15:17
sbezverksdake: second there is a race condition some time hits on multi node15:17
sbezverkthe rest should be solid15:17
sdakesbezverk right - that race condition on multinode is with kubeadm right?15:17
sbezverksdake: if you carefully check the log, you will see that sometimes on multinode BOTH nodes report as not ready, which is again NOT related to kubeadm but kubelet..15:18
sdakecool thanks15:18
eanylinsbezverk: I was discussing with sdake on why I cannot ping/ssh to Cirros VM. Any tips?15:19
sdakesbezverk we had debated whether the gate used a  veth or bridge to setup multiinterface on one interface15:19
eanylinMy cirros VM is able to ping 8.8.8.8 and the host and able to ping across 2 Cirros VMs15:19
sbezverkeanylin: I guess you have eliminated a possibility of security group misconfig?15:19
eanylinthe init-runonce would add security policy for port 22 and ICMP15:20
eanylinthink that one should be ok15:20
eanylinI think ping across 2 Cirros VMs would not work if security groups are not set up properly (if I remembered correctly)15:20
sbezverkeanylin: what I usually is hop by hop approach, which is tcpdump starting from tap interface on the instance and then until I find the place where packets get dropped..15:21
eanylinah, ok15:21
eanylinI was looking at the ovs container15:21
sbezverkonce you know where the drop happens you will get some extra clues where to look next15:21
eanylinis that the right place to look at?15:21
eanylinok15:22
sbezverkeanylin: well, you need to start from the instance15:22
eanylinok15:22
sdakeeanylin as the instructions stand now, are the kolla ones correct (step 3?)15:22
sbezverkvirsh dumpxml instance name | grep tap15:22
sbezverkyou need to do it in libvirt container15:22
eanylinsdake: /kolla-kubernetes/tools/patches/0001* is no longer needed, the latest code has been patched15:23
sdakeeanylin beyond that?15:24
eanylinsdake: cat <<EOF > nova.conf15:24
eanylin    [libvirt]15:24
eanylin    virt_type=qemu15:24
eanylin    cpu_mode=none15:24
eanylinsdake: Should come after genconfig15:24
eanylinelse genconfig will over-write it15:24
sdakeeanylin how do you figure15:24
sdakeeanylin its cat /etc/kolla/config/nova.conf15:24
sdakeconfig/nova.conf overrides defautls in /etc/kolla/nova.conf15:25
eanylinsdake: I used crunidi15:25
eanylinto update the j2 template15:25
sdakeya - thats the wrong way to do it for now :)15:25
sdakethe /etc/kolla/config/nova.conf is the correct method15:25
eanylinsbezverk: Good point, I will take a look at the libvirt container15:25
sdakei added that in reaction to your crudini recommendation15:26
eanylinsdake: Ok. Are they different?15:26
sdakeeanylin /etc/kolla/nova.conf is set with defaults from nova.conf.j215:26
eanylinsdake: Ultimately we need to make sure the config persist even with cluster reboot15:26
eanylinsdake: Ok15:26
sdake /etc/kolla/config/nova.conf _overrides_ any settings in /etc/kolla/nova.conf15:26
sdakegenconfig operation does the overriding15:26
eanylinsdake: Ok15:27
sdakeeanylin this is how kolla can be customized anyway you like15:27
sdakeeanylin without us having to maintain 100's ofvariables15:27
eanylinsdake: Hmm, ok. I did it in that sequence and it was working ok.15:28
sdakeya - crudini will work15:28
sdakeits a hack tho :)15:28
eanylinsdake: Okie. Cause I think thats how the gate did it too15:28
eanylinsdake: I see15:28
sdakethe gate is doing it wrong15:29
eanylinsdake: lol :)15:29
eanylinsdake: Lets keep it your way then15:29
sdakei gotta say ultra hd on bluray is way better than 4k streaming15:29
sdaketechnology is maddenign :)15:30
eanylinsdake: Sounds like you are having fun :)15:30
sdakegot a samsung tv at end of 2016 (closeout model) that was top of the line for 2k (around 1k savings)15:30
sdake75"15:30
eanylinwoot15:31
sdakethe new samsung 75" QLED crap is like 5k15:31
sdakerediculous15:31
sdakei thought 2k was rediculous15:31
eanylinwah, thats expensive15:32
sdakeya my wife was like "you will just want a new tv at the end of 2017"15:32
sdakeqled vs my tv is not worth 3k15:32
eanylin:)15:32
sdakethe picture quality is slightly better15:32
sdakethe picture quality of my 2016 HDR 4k tv is 3x better then my 2015 4k tv :)15:33
sdakei just rotate tvs through the house15:33
sdakemy kids get hte leftovers :)15:33
eanylinnice ;)15:33
sdakevudu has something called hdx which is close to blueray 1k15:34
sdakeamazon has hd which is 480p15:34
sdakeall my stuff is on amazon15:34
* sdake groans15:34
eanylinok15:35
sdakebuying blueray movies with ultraviolet is the way to go imo15:35
sdakethen you get a digital copy and a 4k copy15:35
sdakei guess i'll scan all my blueray movies into my vudu account - 2$/crack = racket15:36
sdakereally tired of physical media, however, streamign 4k UHD = 25mbit network requirement plus 2mbit for audio track15:37
sdakei've got gigabit, but most people rocking 20mbit or so ;)15:37
eanylinyeah15:37
sdakeand my gigabit only applies to the peering in Arizona15:37
sdake(which is where most peering takes place as there are no natural disasters)15:38
sdakethere are endless datacenters here with network peering equipment here that ou would never know existed15:38
sdakeas a result my end to end internet is usually pretty snappy :)15:39
sdakeeveryone in every other city complains about their pokey internets15:39
sdakeif i could just get a /28 allocation from my isp, i'd be godlen :)15:40
*** yangyape_ has quit IRC15:42
sdakesbezverk i ordered that server15:42
sdakesbezverk and a rack for it to go in15:43
sdakesbezverk rack requires assembly15:43
* sdake UGHS15:43
sdakepretty beefy server, 32 hyperthreads - only 32gig ram15:43
sdakelol15:43
sdakeneed more ram15:43
sdake128gb ram = 1.4k15:43
sdakei did not get an ilom vnic15:43
sdakefor the moment going to roll with my CNA intel 10gig nic15:44
sbezverksdake: cool, more cores would be a bit better but it is a good start and you can always replace CPU later15:44
sdakei've always operated under the "replace cpu later" theory and never eplaced the cpu15:45
sdakealthough have always augmented ram15:45
sdakemy z820 has 128gb15:45
sbezverksdake: I do, need more vms need more cpu15:45
sdakealthough my son has taken it over with overwatch15:45
sdakesbezverk my end game is to have 9 of these servers - so will have 288 cores15:46
sdakesbezverk wife wont let me buy em all at once ;)15:46
sdakemy minidells have about had it15:47
sbezverkI suggest instead of investing in number of servers, invest in higher end cpu15:47
sdakei want bare metal not virutalization15:47
sbezverk9 servers will be too noisy and suck tons of electricity15:47
sbezverksdake: if you find a way for either alternative electricity source ;) or make cisco pay for it. let me know. I would be very interested15:48
eanylinyou guys really invest heavily in servers ;)15:48
sdakesbezverk i can't get cisco to pay for anything15:49
sdakeeanylin well i have 3 minidells, and 2 are broken I think15:50
sdakeeanylin although i'm not really sure if the 2 are actually broken15:50
eanylinsdake: I only have 1 laptop with Xeon processor and 64GB RAM15:50
sdakeeanylin sadly I need them to make forward progress in my work15:50
eanylinyou guys are much better than me in that regard ;)15:50
sdakethe switches are 35k list - but i can buy them for 12k from provantage15:51
sdakeredonkulus price15:51
sdakeinstead I buy netgear - 100$/port15:51
sdakento very feature rich but does the job15:51
eanylinnice15:52
*** caoyuan_ has quit IRC15:53
sdakestar trek is amazing in 4k UHD15:55
sdakeso much more detail15:55
eanylinI can imagine15:56
eanylincomes with a price tag though :D15:56
sdakecan't take it with me ;)15:56
*** manheim has joined #openstack-kolla15:58
*** manheim has quit IRC16:07
*** markmcclain has quit IRC16:09
*** markmcclain has joined #openstack-kolla16:10
klindgrenany ideas on why nova-compute can't create bridges that are seen by the docker host with the following config:16:13
klindgrenhttps://gist.github.com/krislindgren/ad0815ec8308d0d407c3cbcd0e37b87a16:13
*** shashank_t_ has joined #openstack-kolla16:15
klindgrenI believe that  nothing special is done when running nova-libvirt as a container.  IE nova-libvirt and nova-compute are not setup to share a network name space.  I thought that with privileged  enabled it would be able to create real dev devices.  but it seems like the dev devices are limited to the network namespace that nova-compute runs in.16:15
sdakeklindgren net=host does is used on nova-compute and (all other containers) in kolla - which uses the host networking and doesn't set it up in a specific namespace16:18
klindgrenare you guys also doing net=host, ipc=host, pid_mode=host as well?16:22
sdakeklindgren pid=host is used in nova-libvirt container16:22
sdakeipc=host is used in various containers but not many16:22
sdakeklindgren like me to show you what to search for?16:22
klindgrenyes please - I was going through the template stuff, but it must be in the kolla-Container  stuff that I am not seeing as vars.16:23
sdakeklindgren https://github.com/openstack/kolla-ansible/blob/master/ansible/roles/iscsi/tasks/start.yml#L816:24
klindgrenkk - also what is "group" used for?16:26
sdakeklindgren note that ipc mode and pid mode default to off: https://github.com/openstack/kolla-ansible/blob/master/ansible/library/kolla_docker.py#L720-L72316:26
sdakeklindgren need more context for "group"16:27
klindgrenhttps://github.com/openstack/kolla-ansible/blob/700089f5b3e2c06546c7745c57beda55d77e1cb9/ansible/roles/telegraf/defaults/main.yml#L1016:27
mnaserklindgren thats related to the ansible inventory group afaik16:32
mnaserklindgren aka here https://github.com/openstack/kolla-ansible/blob/700089f5b3e2c06546c7745c57beda55d77e1cb9/ansible/inventory/multinode16:33
klindgrenkk - which is then used on the docker-pull images for group task?  Like glance where you have multiple container images to pull down16:33
*** tonanhngo has joined #openstack-kolla16:49
klindgrensdake, thanks  that fixed up my issue.16:51
sdakeklindgren which fixed your issue? :)16:52
klindgrensetting nova-compute to use host for network_mode16:52
sdakeklindgren could you expand on what you did?16:52
sdakei'm surprised that isn't default16:53
sdakemorning mnaser16:54
mnasero/ sdake16:54
sdakedisney movie anywhere and ultraviolet plus vudu and amazon video all work together in a cross fucntional sort of way16:54
sdakeannoying these movie co's can't work together16:54
klindgrenI am doing a different way of deploy containers.  API containers doing a blue/green approach, with managing the active container in haproxy as which is active.  Complete with draining/wait support.16:55
sdakeklindgren sounds cool - ought to implement upstream :)16:55
sdakeklindgren in your copious spare time im sure :)16:55
klindgrenFor RPC containers, for those that support it I am starting a script up that creates a socket, and telling those services to use the systemd_notify flag.  So we will wait/ assure that that the process inside actually started16:56
klindgrenwill also test that it has EStablished RPC connections to rabbitmq16:56
klindgrenwhich is about as good as we can get these days for external testing ofr RPC16:56
klindgrenfor API's all services brought up we wait until the ports they are suppose to be listening on work, then execute a per API specific healthcheck to confirm its actuall working16:57
klindgrenbefore moving the new container into the LB and stopping hte old container16:57
klindgrenIF tests fail - RPC containers the old container is automatically restarted.  and the deployment fails.  On API containers the new container is stopped and destroyed (configurable)16:58
klindgrenbasically just trying to really nail the deploy a container and make sure its "working"16:59
klindgrenOur current infra using puppet to blindly make config change and restart services - and pray that everything was working afterwards.16:59
klindgrenSo part of moving to containers and revamping that deploy process was to try to make each change (config or new software) as completely tested as possible17:00
spsuryanight all17:01
klindgrenWe also save the last working container.  To allow generic "rollbacks"17:01
*** tonanhngo has quit IRC17:02
sbezverksdake: so which samsung model you would recommend which is not qled?17:08
*** shashank_t_ has quit IRC17:11
mnaserklindgren sounds really nice how are you testing the containers that they work17:13
klindgrenAPI containers - with a customer script, per service that I execute against it after I wait for the ports to become available.17:15
klindgrenRPC - if it notifies for systemd, it means that it started, but may not have connected to rabbitmq, but alteast the main loop is up.17:16
klindgrenALso have other protections like.  If connectivity to rabbitmq is down.  Refuse to do anything with neutron-openvswitch agent.17:17
klindgrenexcept stop.17:17
klindgrenDont allow a deployment, dont allow a start, dont allow a restart.  Until connectivity to RMQ is confirmed.17:17
klindgrenAs an example, glance I may call into the API to list all the images. Nova-api I may list services17:22
klindgrenWe also run cells V1 so depending on what you call into may test a deeper communication path than expected. like a nova host-aggregate-list actually makes calls to all the child cells.17:23
klindgrenSo the key is to get something that tests that just the thing that you started is working.17:24
klindgrenSome of them we have healtcheck api's enabled, so we will make a call against that.17:24
klindgrensdake, is their a SPEC to start/run all the API services the same way?17:24
klindgrenvs's some as eventlet and some behind apache.17:25
klindgrenInternally we were running everything but neutron behind uwsgi, with that being fronted by haproxy.17:25
*** iceyao has quit IRC17:32
zhubingbinghi guys17:35
SamYapleklindgren: glance doesnt support uwsgi17:43
klindgrentouche - except for neutron and glance.  Neutron only because we are running an old enough release that we get screwed by neutron not having the https link support stuff.17:45
SamYapleneutron doesnt support uwsgi17:46
klindgrenwe had it running fine under uwsgi17:47
klindgrenexcept for the ssl being offloaded. and neutron not supporting fixing up the links17:47
SamYapleklindgren: i mean, it doesnt support it though. its a goal for Pike, but officially the stance is they dont support it17:48
SamYapleare you thinking of pecan?17:48
SamYaplethey tried doing that17:49
*** iceyao has joined #openstack-kolla17:52
*** iceyao has quit IRC17:57
*** zhubingbing has quit IRC17:58
*** rhallisey has joined #openstack-kolla18:04
*** dave-mccowan has joined #openstack-kolla18:51
sdakeklindgren not that i am aware of18:53
sdakesbezverk i really like my 2016 tv - let me see if i can find he model number18:54
sdakesbezverk this is what i have - in 75" I think http://www.bestbuy.com/site/samsung-55-class-54-6-diag--led-2160p-smart-4k-ultra-hd-tv-with-high-dynamic-range-silver/5034800.p?skuId=503480018:55
sdakesbezverk i could possibly have a 65" and upgraded from a 55"18:55
sdaketbh not certain18:55
sdakehttp://www.bestbuy.com/site/samsung-65-class-64-5-diag--led-2160p-smart-4k-ultra-hd-tv-with-high-dynamic-range-silver/5065600.p?skuId=506560018:56
sdake4 months ago they were 249918:56
klindgrensdake, I have the same tv - I like it as well.  but in 60" - they had some pretty wicked deals on black friday.19:22
klindgreniirc it was $1100 - for the 60"19:22
*** dave-mccowan has quit IRC19:23
sdakewow thats a good deal19:23
sdakealthough I did want maximum screen space19:23
sdakei bought mine dec 24 iirc19:23
sdakeor dec 28th iirc19:23
sdakesomething like that19:23
klindgrenyea - the space where my tv goes a 60" is the largest that can fit19:23
sdakeright after christmas = good deals too19:23
sdakei think my largest space is 65"19:24
sdakei got the right exact tv for the space :)19:24
sdakeklindgren the panasonic blueray goes well with it19:24
sdakealthough its 600 bucks which is pretty expensive19:24
sdakehttps://www.amazon.com/Panasonic-Blu-ray-playback-support-DMP-UB900-K/dp/B01GRLCM60/ref=sr_1_11?ie=UTF8&qid=1491161149&sr=8-11&keywords=panasonic+bluray19:26
sdakei got mine for 600 bucks open box at frys19:26
klindgrenI got the Samsung 4k blu-ray player.  The remote is kinda shitty.  But I couldn't justify that much on a blueray player19:26
sdakeya i had trouble justifying it19:27
klindgrenhttp://www.samsung.com/us/televisions-home-theater/home-theater/blu-ray-dvd-players/4k-ultra-hd-blu-ray-player-ubd-k8500-za/ - was on sale for like 200/25019:27
klindgrenreplaced an old PS3 that I use to use for movie watching19:27
klindgrenmuch happier with the new player19:28
klindgrenmuch quiter, has hdmi cnc19:28
*** rhallisey has quit IRC19:42
*** kong has quit IRC19:49
openstackgerritMerged openstack/kolla stable/newton: Remove signing_dir option  https://review.openstack.org/45020320:03
*** shashank_t_ has joined #openstack-kolla20:21
*** dave-mccowan has joined #openstack-kolla21:11
*** shashank_t_ has quit IRC21:25
*** dave-mcc_ has joined #openstack-kolla21:36
*** dave-mccowan has quit IRC21:39
*** kong has joined #openstack-kolla21:39
*** manheim has joined #openstack-kolla21:39
*** manheim has quit IRC21:48
*** manheim has joined #openstack-kolla21:48
*** jrist has quit IRC22:39
*** manheim has quit IRC22:51
*** jrist has joined #openstack-kolla22:57
*** jrist has quit IRC22:57
*** jrist has joined #openstack-kolla22:57
*** jrobinson has joined #openstack-kolla23:08
*** shashank_t_ has joined #openstack-kolla23:11
*** shashank_t_ has quit IRC23:14
*** shashank_t_ has joined #openstack-kolla23:14
*** shashank_t_ has quit IRC23:19
*** yangyapeng has joined #openstack-kolla23:40
*** yangyapeng has quit IRC23:45
*** eaguilar has joined #openstack-kolla23:55

Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!