Skip to content
Snippets Groups Projects
  1. Jun 18, 2020
    • wu.chunyang's avatar
      Add support of octavia dev mod · 36b93dd6
      wu.chunyang authored
      Similarly to other OpenStack services octavia should support
      kolla dev mod for debugging.
      
      Change-Id: I81b79dc0a4c5e40a67af7120a4109dfe11098a97
      36b93dd6
  2. Jun 17, 2020
  3. Jun 16, 2020
    • Zuul's avatar
      1e35ef5a
    • gugug's avatar
      Clean up the unnecessary "" for include_tasks · f220970d
      gugug authored
      The double quotation is not necessary for include_tasks, this
      ps to cleanup it.
      
      Change-Id: I0701035d185fdf19286cced7fe51fc277511e4c1
      f220970d
    • Xing Zhang's avatar
      Switch octavia to use service project in service_auth · c2037885
      Xing Zhang authored
      Recently a patch [1] was merged to stop adding the octavia user to the
      admin project, and remove it on upgrade. However, the octavia
      configuration was not updated to use the service project, causing load
      balancer creation to fail.
      
      There is also an issue for existing deployments in simply switching to
      the service project. While existing load balancers appear to continue to
      work, creating new load balancers fails due to the security group
      belonging to the admin project. At a minimum, the deployer needs to
      create a security group in the service project, and update
      'octavia_amp_secgroup_list' to match its ID. Ideally the flavor and
      network would also be recreated in the service project, although this
      does not seem to impact operation and will result in downtime for
      existing Amphorae.
      
      This change adds a new variable, 'octavia_service_auth_project', that
      can be used to set the project. The default in Ussuri is 'service',
      switching to the new behaviour. For backports of this patch it should be
      switched to 'admin' to maintain compatibility.
      
      If a deployer sets 'octavia_service_auth_project' to 'admin', the
      octavia user will be assigned the admin role in the admin project, as
      was done previously.
      
      Closes-Bug: #1882643
      Related-Bug: #1873176
      
      [1] https://review.opendev.org/720243/
      
      
      
      Co-Authored-By: default avatarMark Goddard <mark@stackhpc.com>
      
      Change-Id: I1efd0154ebaee69373ae5bccd391ee9c68d09b30
      c2037885
    • Zuul's avatar
      e7f39d31
    • James Kirsch's avatar
      Replace internal and external VIP CA with root CA · e3cd02ed
      James Kirsch authored
      Replaced "kolla_external_fqdn_cacert" and "kolla_internal_fqdn_cacert" with
      "kolla_admin_openrc_cacert". OS_CACERT is now set to the value of
      "kolla_admin_openrc_cacert" in the generated admin-openrc.sh file.
      
      Change-Id: If195d5402579cee9a14b91f63f5fde84eb84cccf
      Partially-Implements: blueprint add-ssl-internal-network
      Depends-On: https://review.opendev.org/#/c/731344/
      e3cd02ed
  4. Jun 15, 2020
    • Zuul's avatar
    • James Kirsch's avatar
      Generate Root CA for Self-Signed Certificates · a982d3ac
      James Kirsch authored
      Update the certificate generation task to create a root CA for the
      self-signed certificates. The internal and external facing certificates
      are then generated using the root CA.
      
      Updated openstack_cacert to use system CA trust store in CI tests
      certificate by default.
      
      Change-Id: I6c2adff7d0128146cf086103ff6060b0dcefa37b
      Partially-Implements: blueprint add-ssl-internal-network
      a982d3ac
    • Mark Goddard's avatar
      Remove max count from Cinder online schema migration · 55c0787d
      Mark Goddard authored
      During an upgrade from Stein to Train, Kolla Ansible fails while running
      TASK [cinder : Running Cinder online schema migration]
      
      This is because the `--max_count 10` option is used, which returns 1
      while migrations are processed. According to the upgrade documentation,
      the command should be rerun while the exit status is 1:
      https://docs.openstack.org/cinder/train/upgrade.html
      
      This issue was introduced by a change to the image [1] which fixed a bug
      in the way that the max count was interpreted, but exposed an issue in
      using the max count.
      
      This change fixes the issue by ceasing to pass MAX_NUMBER, which will
      cause all migrations to occur in a single pass.
      
      [1] https://review.opendev.org/#/c/712055
      
      Change-Id: Ia786d037f5484f18294188639c956d4ed5ffbc2a
      Closes-Bug: #1880753
      55c0787d
    • Zuul's avatar
      Merge "Fix Grafana datasource update" · d6b2f5e6
      Zuul authored
      d6b2f5e6
    • Zuul's avatar
      Merge "Safeguard kolla_source_version" · 5d3703c8
      Zuul authored
      5d3703c8
    • Michal Arbet's avatar
      Remove chrony package if containerized chrony is enabled · 3d747b72
      Michal Arbet authored
      This patch is removing chrony package
      from docker host when containerized chrony is enabled.
      It is also fixing issue with chrony container running
      under Ubuntu docker host as noted below.
      
      + exec /usr/sbin/chronyd -d -f /etc/chrony/chrony.conf
      2020-06-08T08:19:09Z chronyd version 3.4 starting (+CMDMON +NTP +REFCLOCK +RTC +PRIVDROP +SCFILTER +SIGND +ASYNCDNS +SECHASH +IPV6 -DEBUG)
      2020-06-08T08:19:09Z Fatal error : Could not open configuration file /etc/chrony/chrony.conf : Permission denied
      
      Added also removal apparmor profile for ubuntu when
      containerized chrony is enabled, as chrony's package
      is not removing apparmor profile, and therefore
      containerized chrony is not working.
      
      Change-Id: Icf3bbae38b9f5630b69d5c8cf6a8bee11786a836
      Closes-Bug: #1882513
      3d747b72
    • Radosław Piliszek's avatar
      Fix Grafana datasource update · 7bd88050
      Radosław Piliszek authored
      Grafana changed the error message wording.
      Match on the shortest sane string to play it safe.
      
      Change-Id: Ic175ebdb1da6ef66047309ff07bcbba98fc67008
      Closes-Bug: #1881890
      7bd88050
    • Radosław Piliszek's avatar
      Fix issues with Prometheus config generation · d86f8ab9
      Radosław Piliszek authored
      related to newly introduced merge mechanism.
      1) Per-host overrides cannot be run_once.
      2) Since merge_yaml is silent about missing files, it ignored
         the fact that no proper file was given due to wrong variable
         being referenced (see the closed bug).
      
      Change-Id: I6db4af4c6e3364838bdae510f300038b0c1560b0
      Closes-Bug: #1882460
      d86f8ab9
    • Zuul's avatar
      03b6aaf3
    • wu.chunyang's avatar
      fix deploy nova failed when use kolla_dev_mod · 40096b48
      wu.chunyang authored
      There's a logic error here, we call nova role from nova.yml file
      under ansible folder. we should clone code before run
      bootstrap_service task. if not, /opt/stack/nova which is empty
      will mount to nova_api container.
      
      Change-Id: Icc54c15080db9c2dc92709480e00b990e5a88662
      40096b48
    • gugug's avatar
      Remove nova-consoleauth task in U cycle · 2ebd6201
      gugug authored
      planned task removal
      
      Change-Id: I613794667b8c08f524a69e7e3f447b2217efb3f7
      2ebd6201
  5. Jun 11, 2020
  6. Jun 10, 2020
  7. Jun 09, 2020
  8. Jun 08, 2020
Loading