Skip to content
Snippets Groups Projects
  1. Feb 03, 2022
    • Mark Goddard's avatar
      certificates: generate libvirt TLS certificates · 33e93ab3
      Mark Goddard authored
      Adds support to the 'kolla-ansible certificates' command for generating
      certificates for libvirt TLS, when libvirt_tls is true. The same
      certificate and key are used for the libvirt client and server.
      
      The certificates use the same root CA as the other generated
      certificates, and are written to
      {{ node_custom_config }}/nova/nova-libvirt/, ready to be picked up by
      nova-libvirt and nova-compute.
      
      Change-Id: I1bde9fa018f66037aec82dc74c61ad1f477a7c12
      33e93ab3
  2. Feb 02, 2022
    • Buddhika Sanjeewa's avatar
      Deploy Zun with Cinder Ceph support · eb7e0f6f
      Buddhika Sanjeewa authored
      Enables zun to access cinder volumes when cinder is configured to use
      external ceph.
      Copies ceph config file and ceph cinder keyring to /etc/ceph in
      zun_compute container.
      
      Closes-Bug: 1848934
      Change-Id: Ie56868d5e9ed37a9274b8cbe65895f3634b895c8
      eb7e0f6f
    • Will Szumski's avatar
      Add OIDCDiscoverURL mod_oidc option · e7455759
      Will Szumski authored
      This gets rid of one of the steps in the authentication flow.
      
      Closes-Bug: 1930055
      Change-Id: I4ed4651b55a912f1d9aec7277bae6bb4776f1e0a
      e7455759
  3. Jan 31, 2022
  4. Jan 25, 2022
    • Kevin Rasmussen's avatar
      Fix bad openstack command while registering IDP · f955383b
      Kevin Rasmussen authored
      This fixes a bug in registering identity providers
      
      The bug was caused by a missing `=` in the openstack command
      
      Add the missing `=` after `--os-user-domain-name`
      
      Closes-Bug: #1959022
      Change-Id: I73f80cd2c81a3944de0933e60f5768956a1a3b70
      f955383b
    • Isaac Prior's avatar
      Fix log rotation for fluentd created files · 79b59e2c
      Isaac Prior authored
      Overrides default fluentd buffer config to stop log files from using
      datestamped filenames, allowing logrotate to manage them.
      
      Closes-Bug: #1940118
      Change-Id: I40c4e209470d21e0a02fd447fb628acfdae9fa9d
      79b59e2c
    • likui's avatar
      update the default value of node_custom_config · 825ef7ac
      likui authored
      The value of node_custom_config should is {{ node_config }}/config,
      when specified using --configdir
      
      Change-Id: I076b7d2c8980ddd3baa28f998f84a6b7005dc352
      825ef7ac
  5. Jan 21, 2022
  6. Jan 20, 2022
  7. Jan 19, 2022
  8. Jan 18, 2022
  9. Jan 17, 2022
  10. Jan 12, 2022
    • Buddhika Sanjeewa's avatar
      Access to zun container fails when tls_external enabled. · d8c73aa2
      Buddhika Sanjeewa authored
      Access to console of any zun container fails when
      kolla_enable_tls_external is true.
      This is due to the protocol of the base_url of the websocket_proxy
      section in zun.conf is hardcoded to 'ws'.
      [base_url = ws://<external_fqdn>:<port>]
      
      This fix adds a new variable zun_wsproxy_protocol
      and sets it's value to 'wss' when kolla_enable_tls_external is true
      or to 'ws' otherwise
      
      Then the base url's protocol of the websocket_proxy section
      in zun.conf is set by zun_wsproxy_protocol
      [base_url = "{{ zun_wsproxy_protocol }}://<external_fqdn>:<port>"]
      
      Closes-Bug: 1957117
      Change-Id: Ibd9ca6e40ee8c265775b0657d318aa3f82e4cccb
      d8c73aa2
    • Michal Nasiadka's avatar
      multiple: remove duplicated variables between defaults and group vars · 1736c788
      Michal Nasiadka authored
      Change-Id: I547ab4b05aa14ed3bbee8be2dc77a6840d4816f6
      1736c788
  11. Jan 11, 2022
  12. Jan 10, 2022
  13. Jan 09, 2022
    • Stig Telfer's avatar
      OpenID Connect certifiate file is optional · 78f29fdc
      Stig Telfer authored
      Some ID provider configurations do not require a certificate file.
      Change the logic to allow this, and update documentation accordingly.
      
      Change-Id: I2c34a6b5894402bbebeb3fb96768789bc3c7fe84
      78f29fdc
    • LinPeiWen's avatar
      Support enable/disable rabbitmq prometheus plugins · 1f3dcce5
      LinPeiWen authored
      rabbitmq starting from 3.8.0, built-in Prometheus support,
      prometheus plugins are enabled by default, when the environment is
      "enable_prometheus is no", rabbitmq role will disable prometheus plugins
      
      Closes-Bug: #1885106
      
      Change-Id: I4d694d6224c813285d228d6bc7eece5731db1078
      1f3dcce5
  14. Jan 07, 2022
  15. Jan 06, 2022
  16. Jan 05, 2022
    • Michal Nasiadka's avatar
      nova: disable external metadata haproxy frontend · 3dcb6ad8
      Michal Nasiadka authored
      We are not using it anywhere (metadata agents are using internal network),
      so let's disable it by default.
      
      Change-Id: If06db5030b0f09e20ef506c3b3ab39c3573b5f3d
      3dcb6ad8
    • Angelos Kolaitis's avatar
      Use Volume V3 API in OpenStack exporter · 4410ca78
      Angelos Kolaitis authored
      Kolla has removed the Volume V2 API by default since OpenStack Wallaby.
      However, openstack-exporter attempts to use the Volume V2 API by
      default, resulting in clean installs failing to fetch Cinder metrics
      in Prometheus.
      
      This patch updates the clouds.yml configuration file for
      openstack-exporter to use the Volume V3 API instead.
      
      Closes-Bug: #1938194
      Change-Id: Ifbb601be3ef1a1e853d5a7e832adf556c0ae38b9
      Unverified
      4410ca78
  17. Jan 04, 2022
  18. Dec 31, 2021
  19. Dec 29, 2021
  20. Dec 28, 2021
  21. Dec 23, 2021
  22. Dec 22, 2021
  23. Dec 21, 2021
    • Mark Goddard's avatar
      horizon: move horizon_enable_tls_backend to group_vars · 4c6d7778
      Mark Goddard authored
      This variable is referenced by horizon_listen_port, which becomes
      undefined outside of the horizon role. One symptom of this is that
      the hostvars variable becomes undefined when referenced for debugging
      purposes.
      
      This issue was introduced by Ibb5ad1a5d1bbc74bcb62610d77852d8124c4a323,
      which has been backported to Victoria.
      
      This change fixes the issue by moving horizon_enable_tls_backend to
      group_vars.
      
      TrivialFix
      
      Change-Id: I1fc4e2a24fe096a49434d7e16851e63efd25d74c
      4c6d7778
Loading