Tuesday, 2019-05-07

*** mattw4 has quit IRC00:03
*** mriedem has quit IRC00:09
pabelangerianw: yah, maybe https://review.opendev.org/656905/ / https://review.opendev.org/657126 / https://review.opendev.org/656838 for the next release, should be good for me00:28
pabelangerthen I can start work on fedora-30 and see what we are doing to grub00:29
*** ijw has quit IRC00:30
*** ijw has joined #openstack-infra00:30
*** yamamoto has joined #openstack-infra00:34
*** ijw has quit IRC00:36
*** larainema has quit IRC00:42
*** oyrogerg has joined #openstack-infra00:43
*** Adri2000 has quit IRC00:46
*** Lucas_Gray has quit IRC00:46
*** larainema has joined #openstack-infra00:49
*** Adri2000 has joined #openstack-infra00:51
*** whoami-rajat has joined #openstack-infra01:16
*** diablo_rojo has joined #openstack-infra01:17
*** jamesmcarthur has joined #openstack-infra01:25
*** yamamoto has quit IRC01:33
*** logan- has quit IRC01:33
*** logan- has joined #openstack-infra01:37
*** jamesmcarthur has quit IRC01:43
*** Swami has quit IRC01:44
*** jamesmcarthur has joined #openstack-infra02:14
*** hongbin has joined #openstack-infra02:19
openstackgerritTristan Cacqueray proposed zuul/nodepool master: Add python-path option to node  https://review.opendev.org/63733802:22
*** rh-jlabarre has quit IRC02:23
openstackgerritTristan Cacqueray proposed zuul/nodepool master: Implement a Runc driver  https://review.opendev.org/53555602:24
openstackgerritTristan Cacqueray proposed zuul/nodepool master: Implement an OpenShift Pod provider  https://review.opendev.org/59033502:25
*** jamesmcarthur has quit IRC02:30
*** udesale has joined #openstack-infra02:42
*** jamesmcarthur has joined #openstack-infra02:43
*** rcernin has quit IRC02:43
*** samueldmq has quit IRC02:46
logan-http://logs.openstack.org/15/657415/2/gate/openstack-ansible-deploy-aio_metal-debian-stable/eb22e7e/job-output.txt.gz#_2019-05-07_02_52_49_354574 odd that this url 404'd02:55
*** jamesmcarthur has quit IRC03:04
*** bhavikdbavishi has joined #openstack-infra03:05
*** jamesmcarthur has joined #openstack-infra03:06
*** ramishra has joined #openstack-infra03:10
*** yamamoto has joined #openstack-infra03:20
*** jamesmcarthur has quit IRC03:26
*** rcernin has joined #openstack-infra03:29
*** eernst has joined #openstack-infra03:30
*** ykarel|away has joined #openstack-infra03:30
openstackgerritTristan Cacqueray proposed zuul/zuul master: Get executor job params  https://review.opendev.org/60707803:41
openstackgerritTristan Cacqueray proposed zuul/zuul master: Separate out executor server from runner  https://review.opendev.org/60707903:41
openstackgerritTristan Cacqueray proposed zuul/zuul master: Move repository preparation into common class  https://review.opendev.org/64864203:41
openstackgerritTristan Cacqueray proposed zuul/zuul master: Separate out executor concerns from AnsibleJob  https://review.opendev.org/64864303:41
openstackgerritTristan Cacqueray proposed zuul/zuul master: runner: implement prep-workspace  https://review.opendev.org/60708203:41
*** ekultails has quit IRC03:41
*** raukadah is now known as chandankumar03:52
*** jamesmcarthur has joined #openstack-infra03:56
*** ykarel|away has quit IRC03:59
*** e0ne has joined #openstack-infra04:06
*** tkajinam has quit IRC04:07
*** tkajinam has joined #openstack-infra04:08
*** tkajinam has quit IRC04:08
*** tkajinam has joined #openstack-infra04:08
*** eernst has quit IRC04:10
*** e0ne has quit IRC04:12
*** diablo_rojo has quit IRC04:16
*** ykarel|away has joined #openstack-infra04:18
*** jamesmcarthur has quit IRC04:22
*** ricolin has joined #openstack-infra04:26
*** ykarel|away is now known as ykarel04:27
*** hongbin has quit IRC04:33
*** janki has joined #openstack-infra04:37
openstackgerritMerged openstack/project-config master: openafs-client : update kdc servers  https://review.opendev.org/65750405:14
*** e0ne has joined #openstack-infra05:22
*** ricolin has quit IRC05:24
openstackgerritMerged zuul/zuul master: Tiny cleanup in change panel js  https://review.opendev.org/65558905:28
*** ijw has joined #openstack-infra05:29
*** ijw_ has joined #openstack-infra05:31
*** ijw_ has quit IRC05:33
*** ijw has quit IRC05:34
*** ijw has joined #openstack-infra05:35
*** Weifan has joined #openstack-infra05:47
*** Weifan has quit IRC05:47
openstackgerritMerged openstack/diskimage-builder master: Only enable dbus-daemon for fedora-29 and below  https://review.opendev.org/65712605:47
*** Weifan has joined #openstack-infra05:48
*** Weifan has quit IRC05:52
*** ijw_ has joined #openstack-infra05:53
openstackgerritIan Wienand proposed openstack/diskimage-builder master: [wip] test pre-intsall of systemd  https://review.opendev.org/65753005:55
*** e0ne has quit IRC05:56
*** ijw has quit IRC05:56
*** rkukura has joined #openstack-infra05:57
*** kopecmartin|off is now known as kopecmartin06:01
*** lpetrut has joined #openstack-infra06:07
*** pcaruana has joined #openstack-infra06:21
*** pgaxatte has joined #openstack-infra06:24
*** gthiemonge has joined #openstack-infra06:31
*** jbadiapa has joined #openstack-infra06:33
*** shardy has joined #openstack-infra06:35
*** slaweq has joined #openstack-infra06:36
*** e0ne has joined #openstack-infra06:46
*** rpittau|afk is now known as rpittau06:47
*** jtomasek has joined #openstack-infra06:50
*** dciabrin has joined #openstack-infra06:52
*** e0ne has quit IRC06:53
*** armax has quit IRC07:03
*** ginopc has joined #openstack-infra07:04
*** yboaron_ has joined #openstack-infra07:05
openstackgerritTristan Cacqueray proposed zuul/zuul master: Separate out executor concerns from AnsibleJob  https://review.opendev.org/64864307:09
openstackgerritTristan Cacqueray proposed zuul/zuul master: runner: implement prep-workspace  https://review.opendev.org/60708207:09
openstackgerritTristan Cacqueray proposed zuul/zuul master: runner: add configuration schema  https://review.opendev.org/64067207:09
openstackgerritTristan Cacqueray proposed zuul/zuul master: runner: add prepare-workspace command line interface  https://review.opendev.org/64477007:09
openstackgerritTristan Cacqueray proposed zuul/zuul master: runner: add execute sub-command  https://review.opendev.org/63094407:09
openstackgerritTristan Cacqueray proposed zuul/zuul master: runner: add job parameters listing  https://review.opendev.org/64479507:09
openstackgerritTristan Cacqueray proposed zuul/zuul master: web: add depends-on support to the freeze job API  https://review.opendev.org/63902207:09
openstackgerritTristan Cacqueray proposed zuul/zuul master: runner: add support for depends-on  https://review.opendev.org/63206407:09
*** tosky has joined #openstack-infra07:16
*** ccamacho has joined #openstack-infra07:23
*** tesseract has joined #openstack-infra07:26
*** rcernin has quit IRC07:27
*** jpich has joined #openstack-infra07:29
*** hwoarang has quit IRC07:32
*** hwoarang has joined #openstack-infra07:34
*** oyrogerg has quit IRC07:39
*** ramishra_ has joined #openstack-infra07:39
openstackgerritFabien Boucher proposed zuul/zuul master: A reporter for Elasticsearch with the capability to index build and buildset results in an index.  https://review.opendev.org/64492707:41
*** ramishra has quit IRC07:42
*** amoralej|off is now known as amoralej07:46
*** kjackal has joined #openstack-infra07:50
openstackgerritFabien Boucher proposed zuul/zuul master: A reporter for Elasticsearch with the capability to index build and buildset results in an index.  https://review.opendev.org/64492707:56
openstackgerritTristan Cacqueray proposed zuul/zuul master: Separate out executor concerns from AnsibleJob  https://review.opendev.org/64864307:56
*** jpena|off is now known as jpena08:00
*** trident has quit IRC08:01
*** trident has joined #openstack-infra08:02
*** ccamacho has quit IRC08:03
*** quiquell has quit IRC08:04
*** lucasagomes has joined #openstack-infra08:04
*** quiquell has joined #openstack-infra08:05
*** rossella_s has joined #openstack-infra08:06
*** ctr has joined #openstack-infra08:10
*** ykarel is now known as ykarel|lunch08:17
*** ctr has left #openstack-infra08:23
*** tkajinam has quit IRC08:35
*** pkopec has joined #openstack-infra08:38
*** priteau has joined #openstack-infra08:44
*** cmoura has quit IRC08:45
*** ralonsoh has joined #openstack-infra08:48
*** ykarel|lunch is now known as ykarel08:52
ianwpabelanger: released with those f29 fixes.  i think it makes sense somewhat that f29 introduced enablement there, and possibly systemd isn't setup at the point we're install dbus.  https://review.opendev.org/#/c/657530/ shows that systemd brings in dbus anyway, so i don't know how to break that circular dependency09:01
openstackgerritMerged openstack/diskimage-builder master: Document the various global filesystem options  https://review.opendev.org/65625509:03
*** ykarel_ has joined #openstack-infra09:17
*** ykarel has quit IRC09:18
pabelangerianw: thanks, I'll test out today09:21
*** electrofelix has joined #openstack-infra09:21
openstackgerritWenqing Gu proposed opendev/glean master: Sync when writing the file  https://review.opendev.org/65223809:25
openstackgerritMonty Taylor proposed opendev/system-config master: Split the base playbook into services  https://review.opendev.org/65687109:41
mordredpabelanger: I feel as if we're both up a smidge early09:41
pabelangermordred: IKR09:46
*** jaosorior has joined #openstack-infra09:48
*** ykarel__ has joined #openstack-infra09:56
*** ykarel__ is now known as ykarel09:56
openstackgerritMonty Taylor proposed opendev/system-config master: Split the base playbook into services  https://review.opendev.org/65687109:56
*** ykarel_ has quit IRC09:57
*** zbr has joined #openstack-infra10:04
*** kjackal has quit IRC10:06
*** yumapath has joined #openstack-infra10:07
yumapath15:31] <yumapath> hi folks am running zuul v3 and it was working system , couple of weeks back it stopped working and from logs we figured out that review.openstack.org has moved to review.opendev.org and we made necessary changes to the system [15:32] <yumapath> after doing the changes we are seeing the following errors [15:32] <yumapath> openstack/networking-cisco - undefined (undefined)  Zuul encountered an error while10:07
yumapathdev/devstack.  The error was:    [Errno -2] Name or service not known [15:32] <yumapath> and zuul scheduler is nto starting [15:32] <yumapath> May 07 09:03:26 cinder-zuulv3 zuul-scheduler[10921]: Traceback (most recent call last): May 07 09:03:26 cinder-zuulv3 zuul-scheduler[10921]:   File "/usr/local/lib/python3.6/dist-packages/zuul/driver/gerrit/gerrit May 07 09:03:26 cinder-zuulv3 zuul-scheduler[10921]:     key_filename10:07
pabelangeryumapath: there was a large migration of git repos to opendev a few weeks ago, so you are likely seeing breakage of where the repos now live.10:08
pabelangerso, you might want to update to https://opendev.org/x/networking-cisco10:08
pabelangerthis is also because redirects don't work via git://10:09
pabelangerwhich zuul uses when I lasted looked10:09
mordredpabelanger, yumapath: almost - zuul should be using ssh to connect to gerrit, but gerrit doesn't do redirects10:10
mordredalso - there is no more git://10:10
pabelangerah10:10
yumapath@pabelanger and @mordred i have updated the url to opendev.org10:12
yumapaththe x factor for cinder for example is still openstack/cinder10:12
yumapatheven for that it is failing10:12
yumapathzuul scheduler is failing to start10:13
yumapathwiht the following error10:13
pabelangeryumapath: can you pastebin the error that you get from scheduler-debug.log10:13
yumapathok sure10:13
openstackgerritMerged openstack/diskimage-builder master: Allow specification of filesystem journal size  https://review.opendev.org/63336810:14
openstackgerritMerged openstack/diskimage-builder master: Support defining the free space in the image  https://review.opendev.org/65512710:14
yumapathhttp://paste.openstack.org/show/750855/10:15
yumapath@pabelanger http://paste.openstack.org/show/750855/10:15
yumapaththat is the error10:15
*** ijw_ has quit IRC10:17
yumapath@mordred what does it mean to say there is no more git://10:17
yumapathwhat is the equivalent i should be using instead of git:// as base protocol10:17
yumapathhttps??10:17
mordredyumapath: there is no git:// protocol support in opendev anymore ... https:// should be used instead10:17
yumapatheverywhere10:17
yumapathok10:17
*** ijw has joined #openstack-infra10:17
yumapathi just checked10:18
yumapatham already using https10:18
yumapatheverywhere10:18
mordredgood!10:18
*** pcaruana has quit IRC10:19
yumapathand not using git10:19
mordredthat error from your paste looks like it can't connect to gerrit - is it possible there is a typo when you switched to review.opendev.org in your config files?10:19
*** kjackal has joined #openstack-infra10:19
pabelangeryah10:19
yumapath[gerrit] port = 29418 server = https://review.opendev.org sshkey = /var/lib/zuul/.ssh/id_rsa10:20
yumapaththis is what i have in my zuul.conf10:20
yumapatham able to manually connect to review.opendev.org10:20
pabelangeryumapath: I think you need to drop https10:20
pabelangerserver = review.opendev.org10:21
yumapathoh10:21
pabelangerthen setup password10:21
mordredyeah10:21
pabelangerthat will then use https to connect10:21
yumapathwhat password should i setup10:21
pabelangeryou get that from gerrit10:21
mordredpabelanger: it'll use ssh ... but you're right10:21
mordredjust drop the https:// ...10:21
pabelangerhttps://review.opendev.org/#/settings/http-password10:21
yumapathok10:21
mordredyou've got an ssh key and port defined correctly there10:22
*** bhavikdbavishi has quit IRC10:22
yumapathok10:22
yumapathand where do i put this password10:22
mordredyou don't need one10:22
*** ijw has quit IRC10:22
mordredyou've got an ssh key10:22
yumapathok sure10:22
yumapathi ll just drop the https:10:22
yumapathand restart sevices and check10:22
mordredyeah - give that a try10:22
mordred++10:22
pabelangerYah, password in connection just means zuul will use https, so it can post comments on reviews10:23
yumapathok10:23
yumapathi get the point10:23
yumapathand i will be using ssh10:23
yumapathas i have given gerrit keys10:24
yumapath2019-05-07 10:30:35,941 INFO zuul.ConfigLoader: Loading configuration from /etc/zuul/main.yaml 2019-05-07 10:30:47,152 ERROR zuul.GerritConnection: Cannot get references from openstack/networking-cisco 2019-05-07 10:30:48,161 ERROR zuul.GerritConnection: Cannot get references from openstack-dev/devstack 2019-05-07 10:30:49,186 ERROR zuul.GerritConnection: Cannot get references from openstack-infra/devstack-gate 2019-05-0710:26
yumapaththat error went away10:26
yumapathnow seeing this error10:26
yumapathmeans these repos have moved out to someother locaton ?10:26
mordredyes - openstack-dev/devstack is now openstack/devstack - openstack-infra/devstack-gate is now openstack/devstack-gate10:29
mordredyou can check the new locations by going to, for instance, https://opendev.org/openstack-infra/devstack-gate - and seeing where it redirects you to10:29
yumapaththanks much mordred and pabelanger10:33
yumapathi will take it forward10:33
pabelanger++10:34
mordredcool - good luck!10:34
*** udesale has quit IRC10:42
*** udesale has joined #openstack-infra10:42
openstackgerritMonty Taylor proposed opendev/system-config master: Split the base playbook into services  https://review.opendev.org/65687110:47
openstackgerritWenqing Gu proposed opendev/glean master: Sync when writing the file  https://review.opendev.org/65223810:50
openstackgerritTristan Cacqueray proposed zuul/zuul master: web: honor job dependencies in trigger modal  https://review.opendev.org/65756710:51
*** pcaruana has joined #openstack-infra10:55
*** panda is now known as panda|lunch10:56
*** ijw has joined #openstack-infra10:57
*** jpena is now known as jpena|lunch11:01
*** amoralej is now known as amoralej|lunch11:02
*** ijw has quit IRC11:05
*** priteau has quit IRC11:11
*** ykarel is now known as ykarel|afk11:13
*** rpittau has quit IRC11:14
*** rpittau has joined #openstack-infra11:17
*** yamamoto has quit IRC11:18
*** Lucas_Gray has joined #openstack-infra11:22
pabelangerianw: okay, fedora-29 build properly with 2.22.0 release11:29
pabelangerbooting now11:29
pabelangerianw: and glean python3 works11:35
pabelangerianw: thanks for release !11:36
pabelangernow on to fedora-3011:36
ianwpabelanger: nice!  i'll check in the morning :)11:37
ianwshould have some time to work on it too11:38
pabelanger++11:39
*** yumapath has quit IRC11:46
openstackgerritMonty Taylor proposed opendev/system-config master: Split the base playbook into services  https://review.opendev.org/65687111:47
*** ykarel|afk is now known as ykarel11:48
*** yamamoto has joined #openstack-infra11:49
*** lyarwood has quit IRC11:51
*** yamamoto has quit IRC11:53
*** yamamoto has joined #openstack-infra11:53
*** yamamoto has quit IRC11:54
*** yamamoto has joined #openstack-infra11:54
*** yamamoto has quit IRC11:54
*** bhavikdbavishi has joined #openstack-infra11:55
*** yamamoto has joined #openstack-infra11:56
*** jpena|lunch is now known as jpena12:00
mordredcorvus: ^^ I think that's close - I think we're still going to hit a timeout on gitea though - since it's creating all of the repos in project-config12:02
*** jamesmcarthur has joined #openstack-infra12:02
mordred(and we know that's less that optimal efficiency-wise)12:02
*** mriedem has joined #openstack-infra12:05
openstackgerritPaul Belanger proposed openstack/diskimage-builder master: Use fedora-release-common for fedora 30+  https://review.opendev.org/65690512:08
*** larainema has quit IRC12:12
openstackgerritMerged opendev/irc-meetings master: Removing unused meeting time for the Public Cloud WG.  https://review.opendev.org/65699312:13
*** amoralej|lunch is now known as amoralej12:18
*** nicolasbock has joined #openstack-infra12:20
*** rh-jlabarre has joined #openstack-infra12:21
*** rlandy has joined #openstack-infra12:25
*** jamesmcarthur has quit IRC12:28
*** rfolco|ruck is now known as rfolco|dentist12:29
*** rh-jlabarre has quit IRC12:30
*** rh-jlabarre has joined #openstack-infra12:30
openstackgerritTristan Cacqueray proposed zuul/zuul master: Separate out executor concerns from AnsibleJob  https://review.opendev.org/64864312:31
*** jcoufal has joined #openstack-infra12:32
mordredianw: http://logs.openstack.org/71/656871/15/check/system-config-run-letsencrypt/cee06b7/job-output.txt.gz#_2019-05-07_11_59_54_55553812:39
mordredianw: running letsencrypt playbooks in system-config test job seems to point to there being something missing from the ansible12:39
*** aaronsheffield has joined #openstack-infra12:45
*** quiquell has quit IRC12:54
*** yamamoto has quit IRC12:57
*** yamamoto has joined #openstack-infra12:58
*** jcoufal has quit IRC13:03
*** yamamoto has quit IRC13:03
openstackgerritThomas Bechtold proposed opendev/irc-meetings master: rpm-packaging: Move meeting time  https://review.opendev.org/65759613:07
*** lseki has joined #openstack-infra13:09
*** ijw has joined #openstack-infra13:18
*** rfarr has joined #openstack-infra13:19
*** Goneri has joined #openstack-infra13:22
*** bhavikdbavishi has quit IRC13:22
*** ekultails has joined #openstack-infra13:22
*** ijw has quit IRC13:23
*** bobh has joined #openstack-infra13:25
*** bobh has quit IRC13:25
*** panda|lunch is now known as panda13:25
clarkbmordred: LE in testing talks to LEs test servers then we pretend and use a lpcal self signed cert13:30
clarkbmordred: there is a flag to do that and I think we have to supply the self signed cert too13:31
*** yamamoto has joined #openstack-infra13:32
*** rkukura has quit IRC13:35
*** e0ne has joined #openstack-infra13:36
*** yamamoto has quit IRC13:37
*** e0ne has quit IRC13:39
*** lpetrut has quit IRC13:40
*** jaosorior has quit IRC13:49
*** quiquell has joined #openstack-infra13:50
*** quiquell is now known as quiquell|bbl13:50
*** ijw has joined #openstack-infra13:53
*** yboaron_ has quit IRC13:58
*** rosmaita has joined #openstack-infra13:58
mordredclarkb: in this case we're missing either rndc.conf or rndc.key13:58
mordredclarkb: and I don't see anywhere in our ansible that installs one of those13:59
corvusmordred: \o/  i left some questions on the patch -- the first one (about puppet on trusty) i'm really confused about and might be more of an irc question.13:59
mordredclarkb: also - unrelated, but related to the run-base job ... I was right about timeouts - so next step is that I'm going to rewrite the gitea repo creation stuff as a single python module14:00
mordredcorvus: let me go read them14:00
corvusmordred: re gitea: cool -- i agree that's the best end state.  i was wondering if we could defer that by omitting the puppet playbook from the gitea job temporarily, but maybe it's better to just go ahead and write the module; we need it anyway.14:01
corvusmordred: i'm kind of thrilled that the test is failing because it's so realistic :)14:01
*** ccamacho has joined #openstack-infra14:06
mordredcorvus: responded on the change - although, I like the idea of deferring the rewrite and skipping the playbook for now14:06
mordredjust because this change is already pretty big14:07
mordredand yes - it is thrilling that it's so real :)14:07
mordredI like the concept of running this with our actual data - since it provides motivation to make the system work more better'14:08
corvusmordred: thx.  your hunch is enough to satisfy my curiosity about the puppet stuff14:08
mordred\o/14:08
corvusi'm stumped by the rndc thing14:09
mordredcorvus: I had to add a package install already for the dns stack14:09
mordredcorvus: which makes me think we're just missing something in ansible that got put in place some other way or something14:10
mordredbut also - yes - stumped14:10
clarkbmordred: ah that is going yo be for the acme zone hosting in bind14:11
corvusoh i don't see the master-nameserver role running14:12
corvusmordred: i think i got it; i'll leave comments14:13
*** lucasagomes is now known as lucas-brb14:14
*** jistr is now known as jistr|call14:14
mordredcorvus: yes! I thnik I also have it based on you saying that14:14
mordredbut look forward to your comments14:14
*** janki has quit IRC14:14
corvusmordred: done14:15
mordredcorvus: do we also need to put adns-letsencrypt.opendev.org into the adns group in gate-groups?14:15
corvushrm, i'm assuming the host matching was working from before14:16
openstackgerritMerged openstack/diskimage-builder master: Use fedora-release-common for fedora 30+  https://review.opendev.org/65690514:16
corvusmordred:   adns: adns*.open*.org14:16
corvusso i think it matches the prod group14:16
mordredah - ok, cool14:17
corvus(not entirely sure why that wasn't just called "adns01.opendev.org" but we can try that later i guess)14:17
mordredyeah14:17
openstackgerritMonty Taylor proposed opendev/system-config master: Split the base playbook into services  https://review.opendev.org/65687114:17
mordredcorvus: in a perfect world, that's going to be green14:18
*** ekultails has quit IRC14:18
corvusmordred: fingers crossed!14:18
*** pcaruana has quit IRC14:19
*** rfolco|dentist is now known as rfolco|ruck14:20
*** jistr|call is now known as jistr14:23
*** tdasilva has joined #openstack-infra14:26
*** apetrich has quit IRC14:29
*** ekultails has joined #openstack-infra14:37
*** armax has joined #openstack-infra14:37
*** pcaruana has joined #openstack-infra14:38
*** apetrich has joined #openstack-infra14:38
*** efried is now known as efried_pto14:39
*** ykarel is now known as ykarel|away14:39
mordredcorvus: blast. gitea failed. investigating14:39
openstackgerritMonty Taylor proposed opendev/system-config master: Split the base playbook into services  https://review.opendev.org/65687114:41
mordredthat one was easy14:41
corvusmordred: exciting!14:42
mordredcorvus: does this: http://logs.openstack.org/71/656871/17/check/system-config-run-gitea/aa90dac/job-output.txt.gz#_2019-05-07_14_51_29_402430 speak to you about what might be wrong there?15:01
mordredcorvus: (before I dig in further)15:02
*** bhavikdbavishi has joined #openstack-infra15:02
*** tosky has quit IRC15:06
*** kjackal has quit IRC15:06
corvusmordred: not immediately, no15:08
*** rfolco|ruck is now known as rfolco|lunch15:08
mordredcorvus: kk. I'll figure it out15:10
*** chandankumar is now known as raukadah15:10
*** imacdonn has quit IRC15:11
*** imacdonn has joined #openstack-infra15:11
*** pcaruana has quit IRC15:16
*** ccamacho has quit IRC15:16
rajinirmmedvede: Tthe ciwatch is not showing any results http://ciwatch.mmedvede.net/project?project=cinder&time=7+days , used to work until last week. Any idea?15:18
*** ykarel_ has joined #openstack-infra15:18
*** hamzy has quit IRC15:20
*** ykarel|away has quit IRC15:21
*** rfolco|lunch is now known as rfolco|ruck|free15:22
*** rfolco|ruck|free is now known as rfolco|ruck15:22
corvusmordred: i think i grok -- we're not running the gitea role15:23
corvusi think that's because of the interaction with gerrit via remote_puppet_git15:24
*** jamesmcarthur has joined #openstack-infra15:24
corvusmordred: so maybe we add the remote_puppet_git playbook to that job?15:24
*** ykarel_ has quit IRC15:25
corvusmordred: oh, derp, that's the thing you just removed15:26
corvusso we need that in order for gitea to be installed, but it also runs project creation which takes too long15:27
corvusso we either need to write that python module, or else make a temporary "install gitea" playbook15:28
corvusor, really, i guess we could just stick the install gitea step into the test playbook15:28
*** ijw has quit IRC15:28
*** rkukura has joined #openstack-infra15:35
*** michael-beaver has joined #openstack-infra15:36
*** rkukura has quit IRC15:36
aspiershogepodge, AJaeger, ttx: I only just discovered https://opendev.org/osf/four-opens/ via google. Presumably the intention to publish it online at some point?15:39
*** lucas-brb is now known as lucasagomes15:39
ttxyeah, it's been a bit slow recently as we switched to summit prep15:40
dirkwho here can help me understand why the tarballs.openstack.org  service tarballs are no longer getting updated?15:40
dirkdid we discontinue this service? or is it merely broken?15:41
*** pgaxatte has quit IRC15:42
clarkbdirk: zuul creates all of those tarballs so likely it is due to failing zuul jobs15:43
dirkright, can you point me where those jobs are?15:43
clarkbdirk on the zuul status site there is a builds tab which we can use to lookup those builds a d woro from there15:43
clarkbI think if you search tarball you may get them15:44
dirkno hit on "tarball"15:44
dirkah, on jobs tab15:45
clarkbpossibly that they arent running if not showing up in the builds tab15:45
*** bobh has joined #openstack-infra15:45
dirkyep, no runs15:45
dirkok, why did we lose those jobs?15:46
dirkhttp://zuul.openstack.org/builds?job_name=publish-openstack-python-branch-tarball&project=openstack%2Fcinder&branch=stable%2Frocky15:46
dirklast run jan 2215:46
dirkbut there were merges to rocky afterwards15:46
*** hamzy has joined #openstack-infra15:48
*** Lucas_Gray has quit IRC15:49
*** bhavikdbavishi has quit IRC15:50
*** rpittau is now known as rpittau|afk15:51
clarkbI wonder if it got caught in the split between xenial for rocky and older and bionic for train and newer15:51
clarkbmaybe that resulted in no valid job for older branches? do stein tarballs and or master get published?15:52
dirkmaster works15:54
dirkstein as well15:54
dirkso only older than stein15:54
clarkbI suspect the node split then.15:55
*** gyee has joined #openstack-infra15:55
fungilikely they inherit from a job with a branch matcher, and tags don't match any branch15:56
clarkbthese are the per commit post jobs though15:56
clarkbthey should work with branch matchers15:56
fungioh, the branch tip tarballs?15:57
fungijanuary 22 seems too early to have been the xenial->bionic transition15:57
clarkbya15:57
mordredcorvus: oh derp. and thanks - that makes total sense15:58
clarkbthere may not have been rocky commits after jan 22 and before the switch?15:58
fungipossible15:58
fungihrm, nova's rocky tarball was last updated may 515:59
fungiso it's not all projects impacted by this15:59
mordredcorvus: I'm going to do the "put it in the test playbook" for now15:59
*** e0ne has joined #openstack-infra16:02
openstackgerritMonty Taylor proposed opendev/system-config master: Split the base playbook into services  https://review.opendev.org/65687116:04
fungidirk: clarkb: http://zuul.opendev.org/t/openstack/builds?project=openstack%2Fcinder&branch=stable%2Frocky&pipeline=post16:04
mordredcorvus: this is a fun refactoring isn't it?16:04
fungithere have been *no* post pipeline jobs for cinder since january 2216:04
fungii wonder if that coincides with when we rolled in the zuul fix to disallow running jobs with secrets from other non-config projects?16:05
clarkboh! is this the thing where they need to stop running the loci job?16:05
fungiis this the loci image build?16:05
clarkbyup16:05
fungiyeah16:05
clarkbI think this is that16:05
fungispecifically, maybe they missed backporting that removal to stable/rocky16:05
openstackgerritAdam Spiers proposed opendev/storyboard master: Clarify the rationale for StoryBoard's unique design  https://review.opendev.org/65763316:11
*** jamesmcarthur has quit IRC16:15
*** manjeets__ is now known as manjeets16:21
fungiclarkb: dirk: confirmed, looks like https://review.opendev.org/636979 fixed it in master (before stable/stein was created) but nobody backported it to earlier cinder branches16:22
smcginnisOn it16:22
fungiso publish-loci-cinder is included in stable/ocata through stable/rocky still16:23
fungidirk: did you happen to spot a similar problem with any other projects?16:24
dirkfungi: so there was a security fix that silently made the job not run anymore instead of running with a big fat error?16:24
smcginnisI had seen several other projects that had this issue with loci jobs, but the ones I knew about were able to fix it. At least in master.16:24
fungidirk: more specifically, there was a security fix which prevents that configuration from being valid for the post pipeline, but there's nowhere convenient to report that in gerrit since this is something which runs after changes merge16:24
*** whoami-rajat has quit IRC16:25
fungibasically zuul is unable to determine which jobs to run in the post pipeline for those branches because they include a request to run a job which is not available to that project16:27
*** nicolasbock has quit IRC16:29
*** nicolasbock has joined #openstack-infra16:29
dirkhmm16:30
dirkI guess a FAILURE with "no actual run happened due to error XXX" entry in the job listing search above would be great16:30
dirkI can see more publish-loci* references. so all of them need to be removed?16:30
*** ginopc has quit IRC16:32
dirksmcginnis: thanks!16:34
dirksmcginnis: can you ping and bribe cores for a few more +2s?16:34
smcginnis:)16:35
smcginnisI'll see if I can round some up.16:35
*** jtomasek has quit IRC16:40
*** jpich has quit IRC16:41
fungidirk: zuul does log the configuration failure to its service log... i'm not sure how we'd go about logging a failure to decide what jobs to run in the dashboard... maybe it would be relevant to the buildsets table? this is what the exception it's raising looks like http://paste.openstack.org/show/750882/16:41
dirkfungi: yep, that exception is a billion times more useful to know than no information nothing about the builds not running ;)16:42
dirkimho this would be just a FAILURE build actually with this error. but I can understand that its difficult to build a link to a log that way..16:42
*** whoami-rajat has joined #openstack-infra16:43
fungii agree, the challenge is in deciding where is a useful place to expose it... the failure condition isn't specific to the builds table16:43
fungithere is no "build" because it couldn't decide which builds to create16:43
*** lucasagomes has quit IRC16:44
dirkah, ok. I begin to understand16:44
*** lucasagomes has joined #openstack-infra16:45
dirkfungi: can you find similar exceptions elsewhere? my attempts at grepping only turn up cinder16:45
*** e0ne has quit IRC16:45
fungidirk: aha! http://zuul.opendev.org/t/openstack/buildsets?pipeline=post&project=openstack%2Fcinder&branch=stable%2Frocky16:46
fungiit does indicate a config error there16:46
dirkcool!16:47
fungithe exceptions are in the zuul scheduler's service log, not in any job logs, which is why i used paste.o.o to show what it contains16:47
dirkhttp://zuul.opendev.org/t/openstack/buildsets?pipeline=post&result=CONFIG_ERROR16:47
dirklooks like bgpvpn is the next one on the list16:47
fungiif you drop the pipeline filter you can see some similar config errors in periodic jobs too16:48
dirkunfortunately there is no detail on the error16:53
dirkfungi: can you lookup why networking-bgpvpn fails? there is no loci job defined there..16:53
fungidirk: all those seem to be for stable/ocata16:55
fungimost recent is from a month ago so may be past the end of our scheduler log retention, but i'll see what i can find16:55
openstackgerritBrian Haley proposed openstack/project-config master: Fix stats for neutron grafana page  https://review.opendev.org/65764616:56
fungiyeah, it failed when https://review.opendev.org/646566 merged on 2019-04-10 so we may have something16:57
*** kjackal has joined #openstack-infra16:59
fungidirk: Exception: Unable to modify final job <Job publish-openstack-sphinx-docs branches: None source: opendev/base-jobs/zuul.yaml@master#112> attribute required_projects={'git.openstack.org/openstack/horizon': <zuul.model.JobProject object at 0x7f0aa0460a58>, 'git.openstack.org/openstack/networking-bagpipe': <zuul.model.JobProject object at 0x7f0aa0460da0>,17:00
fungi'git.openstack.org/openstack/networking-odl': <zuul.model.JobProject object at 0x7f0aa04606a0>} with variant <Job publish-openstack-sphinx-docs branches: None source: openstack/networking-bgpvpn/.zuul.yaml@stable/ocata#47>17:00
fungiso likely openstack/networking-bgpvpn is trying to define a variant of publish-openstack-sphinx-docs on its stable/ocata branch17:01
*** armax has quit IRC17:02
dirkright, looks liek that17:03
*** Weifan has joined #openstack-infra17:10
*** jpena is now known as jpena|off17:10
anteaya`/msg clarkb I missed the meeting before summit, I'm reading the notes now17:11
anteayaopps17:11
anteayathat space17:11
anteayaI was half and half on posting in channel, guess I'll keep going17:11
*** quiquell|bbl is now known as quiquell17:11
anteayaso clarkb the question is about survey.o.o cert17:11
anteayayou mentioned riding off into the sunset17:12
anteayado you mean that you will renew the cert for two years and then no longer?17:12
*** udesale has quit IRC17:13
fungithat would be get a survey.openstack.org cert but also plan to make that a redirect to survey.opendev.org and only have a valid cert for the former for a couple years for backward-compatibility17:13
fungisurvey.opendev.org can get letsencrypt certs with little effort17:13
anteayaah, thank you17:14
*** bobh has quit IRC17:14
*** armax has joined #openstack-infra17:18
fungibasically the openstack.org domain is hard for us to deal with since we don't have the ability currently to host it in the same infrastructure as the opendev.org or zuul-ci.org domains17:18
*** kjackal has quit IRC17:19
anteayathat makes sense17:21
anteayaglad the new domains offer more expidited solutions17:21
anteayawhoops, expedited17:22
openstackgerritMatt Riedemann proposed openstack/os-loganalyze master: Add watcher to filter list  https://review.opendev.org/65765217:26
*** raissa has joined #openstack-infra17:31
openstackgerritLogan V proposed openstack/diskimage-builder master: Use megabyte granularity for image extra space  https://review.opendev.org/65765417:34
*** Weifan has quit IRC17:35
*** Weifan has joined #openstack-infra17:36
openstackgerritMerged zuul/zuul master: Use user.html_url for github reporter messages  https://review.opendev.org/65518817:38
*** Weifan has quit IRC17:40
*** bobh has joined #openstack-infra17:42
openstackgerritMerged zuul/zuul master: Add release-zuul-python to post pipeline  https://review.opendev.org/65547417:43
*** kopecmartin is now known as kopecmartin|off17:46
*** electrofelix has quit IRC17:47
*** lucasagomes has quit IRC17:50
*** armax has quit IRC17:51
openstackgerritDavid Shrewsbury proposed zuul/zuul-preview master: Partial code refactor for unit testing  https://review.opendev.org/64366617:53
openstackgerritDavid Shrewsbury proposed zuul/zuul-preview master: Add unit testing framework and sample test.  https://review.opendev.org/64424717:53
openstackgerritDavid Shrewsbury proposed zuul/zuul-preview master: Finish refactor  https://review.opendev.org/64460917:53
*** ykarel has joined #openstack-infra17:54
smcginnisclarkb: Just a pointer, this was related to that direct message I sent late last week: http://lists.openstack.org/pipermail/openstack-discuss/2019-May/005950.html17:55
clarkbsmcginnis: ah ya I don't think the gpus we have access to support virtualization, they are directly passed through17:56
clarkband they are served by VMs not baremetal. But mnaser can respond and clarify all of that17:56
clarkbmnaser: ^ if you get a chance can you take a look at that email thread and respond with details on the vexxhost gpu flavor you've exposed to nodepool?17:56
*** kjackal has joined #openstack-infra17:56
smcginnisOK, cool. We would most likely have the same constraints trying to do something in OpenLab, so it probably makes sense to figure out if there is anything we can do here since it's for Nova.17:57
openstackgerritMichael Johnson proposed openstack/project-config master: Create 'Backport-Candidate' for Octavia repos  https://review.opendev.org/65765717:57
*** ykarel is now known as ykarel|away17:57
clarkbsmcginnis: fwiw I wish these requests came with actual needs rather than solutions (eg test nova vgpu support not we need cards with vgpu)17:57
clarkbit helps a lot to understand the use cases as there may be more than one solution available17:58
smcginnisTrue17:58
*** ralonsoh has quit IRC18:00
clarkbWe are about an hour from the infra meeting. I'm still trying to catch up on life after being away for far too long, but I'll be there and will do my best to run a meeting :)18:02
*** Weifan has joined #openstack-infra18:04
*** kjackal has quit IRC18:05
clarkbShrews: memory on the nodepool nodes looks good. I think we need longer term data to declare things fixed, but at least we havne't regressed or obviously not fixed it :)18:05
Shrewsclarkb: yeah, i don't think we've run nearly long enough to make an evaluation, except for maybe "things haven't yet gone boom"18:06
Shrewsmaybe after a week18:06
*** mattw4 has joined #openstack-infra18:06
*** quiquell is now known as quiquell|off18:08
*** ijw has joined #openstack-infra18:08
Shrewsclarkb: how do we get rid of the nb04 entry in cacti? I can't find it anywhere in system-config18:09
Shrewsmaybe it requires a restart....18:09
clarkbShrews: I believe we have to manually edit the database. We have a script that enrolls new hosts but nothing that checks the diff to remove old ones18:09
Shrewsoh18:10
clarkbwe need to remove the git0* servers too (as well as delete them entirely)18:10
*** armax has joined #openstack-infra18:12
fungiyeah, we haven't auto-removed old hosts for a couple of reasons:18:13
fungiit's sometimes useful to look at the resource utilization of an old host we no longer have18:14
*** ijw has quit IRC18:14
fungiit's helpful in the case of server replacements to avoid blowing away history we intend to resume updating with a new server18:14
*** ijw has joined #openstack-infra18:14
fungi(though we don't do much of the latter any longer, so those cases are even moreso covered by the former point)18:15
*** ijw has quit IRC18:15
*** ijw has joined #openstack-infra18:16
openstackgerritMichael Johnson proposed openstack/project-config master: Create 'Backport-Candidate' for Octavia repos  https://review.opendev.org/65765718:16
*** ijw has quit IRC18:17
*** ijw has joined #openstack-infra18:17
*** armax has quit IRC18:17
*** ijw has quit IRC18:19
*** ijw has joined #openstack-infra18:20
openstackgerritPaul Belanger proposed zuul/nodepool master: Add release-zuul-python to post pipeline  https://review.opendev.org/65765818:21
*** hwoarang has quit IRC18:24
*** hwoarang has joined #openstack-infra18:26
*** Goneri has quit IRC18:33
*** Weifan has quit IRC18:44
*** ykarel|away has quit IRC18:45
*** zbr is now known as zbr|pto18:45
*** hwoarang has quit IRC18:47
*** hwoarang has joined #openstack-infra18:49
*** bobh has quit IRC18:55
*** Weifan has joined #openstack-infra19:05
*** Weifan has quit IRC19:10
*** Weifan has joined #openstack-infra19:10
*** tesseract has quit IRC19:10
*** rkukura has joined #openstack-infra19:11
*** raissa has quit IRC19:12
*** yamamoto has joined #openstack-infra19:13
*** Weifan has quit IRC19:18
*** Goneri has joined #openstack-infra19:23
tdasilvamordred, corvus: what's the url to be used with encrypt_secret.py?19:27
*** jamesmcarthur has joined #openstack-infra19:27
corvustdasilva: https://zuul.openstack.org/19:28
corvustdasilva: or https://zuul.opendev.org/  --tenant=openstack19:28
fungitdasilva: we've got an openstack-specific example at https://docs.openstack.org/infra/manual/zuulv3.html#secret-variables19:30
*** Goneri has quit IRC19:30
tdasilvafungi: thanks!! that was very helpful... I had project just as `swift` as opposed to `openstack/swift`19:31
tdasilvaone thing I noticed about this is that a single project could only then have one secret associated with it, right? I can't associate a secret with a given third-party tool19:32
fungiprojects can define any many different named secrets as they like... am i misunderstanding the question?19:33
*** jamesmcarthur has quit IRC19:34
mordredtdasilva: yes, that is correct19:34
*** jamesmcarthur has joined #openstack-infra19:34
*** kjackal has joined #openstack-infra19:34
mordredwe've had some discussions about the broader use-case of "a collection of projects that would like to define a secret once and use it across their repos (and only their repos)" - I don't believe we have gotten all the way to solid answer/design yet though19:35
openstackgerritMerged openstack/diskimage-builder master: openssh-server: harden sshd config  https://review.opendev.org/65389019:35
*** jamesmcarthur has quit IRC19:35
fungimordred: that sounds like the reverse of the question asked19:36
*** jamesmcarthur has joined #openstack-infra19:36
tdasilvaright, so from the example fungi provided: `tools/encrypt_secret.py --infile file_with_secret \19:36
tdasilva  --tenant openstack https://zuul.openstack.org openstack/kolla`19:36
fungia single project can have many secrets associated with it, but a secret can't be used by jobs for other projects than the project in which it's defined (unless it's in a global config project)19:36
tdasilvafor example: that secret is tied to kolla, not to kolla's docker hub account19:36
mordredtdasilva: yes, that is correct19:37
mordredfungi: I agree with you19:37
tdasilvaoh, so there's no id to the secret19:37
fungii'm not sure what that means19:37
mordredwell - there's a name for the secret, but zuul prevents it from being used outside of the project in which it was defined19:38
fungiif what you're asking is how to make the kolla dockerhub credentials usable by jobs in multiple repositories, you need to encrypt it as a secret for each repository individually. but the openstack/kolla project can have jobs which make use of secrets for dockerhub and npm, for example19:38
mordredthis is so that devs from nova can't define a job uses swift's dockerhub secret to upload stuff19:39
tdasilvafungi: I understand now, it's just that zuul itself doesn't keep a mapping of which secret is for which service. It just has N secrets stored for swift, it's up to me to know which secret to which for which third-party tool19:40
fungiyeah, usually you name each secret with something memorable19:40
fungilike npm-credentials or dockerhub-key or something19:41
tdasilvagot it! thanks19:42
*** jamesmcarthur has quit IRC19:42
*** Weifan has joined #openstack-infra19:42
fungitdasilva: an example in the wild: https://opendev.org/recordsansible/ara-web/src/branch/master/.zuul.yaml#L4019:42
fungithat one has a lengthy name, but you get the idea19:43
*** Goneri has joined #openstack-infra19:43
*** Weifan has quit IRC19:45
tdasilvafungi: yep, understood now. Here's our patch: https://review.opendev.org/#/c/657046/5/.zuul.yaml19:46
*** yamamoto has quit IRC19:47
ianwinfra-root: could i get one more eye on https://review.opendev.org/#/c/651053/ which removes the old linaro-cn1 cloud19:53
clarkbianw: done!@19:53
clarkbfungi: not right now because reasons. But I'll try to sync up with you on the groups removals before thursday so that we can make sure we've done all the necessary data backups first19:54
fungisounds good, though you should see them in the list of trove and nova snapshots in rackspace dfw19:54
clarkbk19:54
fungii did them before the summit19:55
fungimaybe a week before?19:55
openstackgerritIan Wienand proposed opendev/system-config master: Remove graphite.openstack.org  https://review.opendev.org/65110419:55
fungiand now to find a very late lunch which by this point is more like early dinner19:57
mordredclarkb: https://review.opendev.org/#/c/657275/19:58
mordredfungi: ^^ (you too, mr TC face)19:58
mordredclarkb: oh - should I also pull the osf/ repos out in that patch?19:58
clarkbosf repos would be openstackid and friends?20:00
mordredclarkb: yeah - and osf/groups and osf/groups-static-pages20:02
mordredclarkb: I can do that as a follow up if you wanna look at them20:04
openstackgerritIan Wienand proposed opendev/system-config master: Avoid testinfra 3.0.0  https://review.opendev.org/65730820:04
mordredclarkb: oh - and jjb20:04
ianw^ testinfra 3.0.1 released but probably worth keeping a note for posterity20:05
ianwpabelanger: want to have a look at https://review.opendev.org/#/c/656912/ to add a environment variable to not run syncs under "timeout" before we start a manual sync for f30 mirror?20:07
clarkbmordred: ya maybe in a followup so we doont mix together different sets20:07
mordredclarkb: kk20:08
pabelangerianw: looking20:08
mordredclarkb: what are we thinking about the repos that are in openstack-infra in governance, but which we did not decide to put in opendev/ and are still in openstack/ ?20:09
mordredclarkb: just leave them alone for now?20:09
pabelangerianw: +220:10
*** smarcet has joined #openstack-infra20:10
clarkbmordred: ya I thibk those get uncoupled if/when opendev becomes more independent20:11
mordredclarkb: cool. that makes sense20:11
mordredclarkb: https://review.opendev.org/657676 Remove osf and jjb projects from Infrastructure20:12
clarkbmordred: ianw cool I've gotten through the changes above really quick20:20
clarkband now I have to pop out for a bit again.20:20
ianwmordred: not sure if saw my mention of https://review.opendev.org/#/c/656908/ to fix up tox siblings with projects that don't have metadata in setup.cfg ... testinfra is one such project :)20:23
openstackgerritMerged opendev/system-config master: Remove linaro-cn1 region  https://review.opendev.org/65105320:23
mordredianw: yes! I just forgot to leave a vote :)20:23
ianwmordred: thanks :)  testinfra upstream were receptive to us running CI against them (added with https://review.opendev.org/#/c/657461/) ...20:26
ianwi'll keep an eye as to how this plays out with splitting up base playbooks20:26
ianwit might be good to just get that going for now anyway, to help avoid breakages to the status quo20:27
*** hamzy has quit IRC20:27
*** diablo_rojo has joined #openstack-infra20:32
openstackgerritMerged opendev/system-config master: Avoid testinfra 3.0.0  https://review.opendev.org/65730820:33
*** slaweq has quit IRC20:36
*** slaweq has joined #openstack-infra20:42
openstackgerritJames E. Blair proposed opendev/system-config master: Install os_client_config on bridge  https://review.opendev.org/65768520:46
corvusmordred, clarkb: ^ i think that's the issue that's keeping k8s-on-openstack from running on bridge20:46
corvusmind if i run that manually?20:47
mordredcorvus: wfm20:47
*** slaweq has quit IRC20:55
*** kjackal has quit IRC21:04
*** slaweq has joined #openstack-infra21:13
*** diablo_rojo has quit IRC21:15
clarkbgitea seems unhappy21:17
clarkbI cant hit the backends directly either21:18
* clarkb finds ssh keys21:19
*** mattmceuen has joined #openstack-infra21:19
clarkbsyslog complains about kubelet21:21
corvusi can hit the backends directly21:21
clarkbdid the streams get crossed?21:21
corvushrm21:21
corvusmaybe unblocking the k8s cluster had a side effect21:21
clarkbcorvus: there is nothing listening on port 3000 on gitea01.opendev.org21:22
corvusoh sorry, i can ssh in21:22
fungisame for gitea0221:22
clarkbit appears to be repeateldy trying to run kubelet21:23
fungijust ssh and smtp listening globally21:23
clarkbthere are no docker containers under docker ps -a21:23
fungimaybe garbage collection gone awry?21:23
clarkbI think kubernetes deployment gone awry21:24
fungino, that would be the images21:24
fungiso yeag21:24
clarkbhttps://review.opendev.org/#/c/656880/ is still unmerged21:24
corvusyes but i applied in manually21:24
corvusoh sorry that was the docker one21:24
corvusthe k8s_on_openstack playbook was running21:25
corvusi killed it21:25
fungi657685 is what got applied manually, right21:25
*** slaweq has quit IRC21:25
corvusin the hopes that later hosts may be unaffected21:25
*** nicolasbock has quit IRC21:25
*** nicolasbock has joined #openstack-infra21:25
corvusfor some reason gitea06 is still working21:26
corvusclarkb: do you want to remove all others from the lb?21:26
clarkbgitea06 is the broken node not in the lb21:26
corvusoh21:26
corvushrm21:26
fungiright, we meant to remember to look into replacing 06 this week21:26
clarkbin theory if we docker compose up on gitea01 it should bring all the containers back up again21:28
clarkband the data is bind mounted off the host21:28
corvusi will do that21:28
clarkbwe may also need to stop whatever k8s things are trying to run there as they are what I suspect nuke docker21:29
corvusERROR: for giteadocker_mariadb_1  Cannot start service mariadb: invalid header field value "oci runtime error: container_linux.go:247: starting container process caused \"process_linux.go:359: container init caused \\\"rootfs_linux.go:53: mounting \\\\\\\"cgroup\\\\\\\" to rootfs \\\\\\\"/var/lib/docker/aufs/mnt/e61d27b8f390a48c66121e6b3010bc7521e3621597cfde55046899317264a2c4\\\\\\\" at21:29
corvus\\\\\\\"/sys/fs/cgroup\\\\\\\" caused \\\\\\\"no subsystem for mount\\\\\\\"\\\"\"\n"21:29
corvusi will try removing recently added packages21:31
corvusand reinstalling docker21:31
*** sshnaidm has joined #openstack-infra21:31
clarkbdocker --version reports docker 1.12.6 which is old(er)21:31
clarkbya ++ I think we want to reinstall from the upstream repo21:31
corvuscan someone work on stopping run_all.sh21:32
corvusso we can safely remove the k8s playbook from it?21:32
fungion it21:32
*** sshnaidm is now known as sshnaidm|pto21:32
clarkblooks like we'll need to stop the running plays and then remove it from cron21:32
corvusi'm starting to suspect this ran on every host21:33
fungi#status log commented out run_all.sh in crontab of bridge.o.o21:34
clarkbfungi: did you also stop the running process(es)?21:34
fungii've also manually killed the runningscript21:34
fungiyes21:34
fungithere are also some ansible-playbook processes owned by root on bridge.o.o21:35
fungishould those be killed or is that one of us?21:35
clarkbit isn't me21:35
*** Weifan has joined #openstack-infra21:36
mordredit isn't me21:36
fungii killed the parent, was over 10 minutes old21:36
fungiso almost certainly not one of us21:36
*** mriedem has quit IRC21:36
clarkbis it ansible-playbook -v /opt/k8s-on-openstack/site.yaml that we suspect caused the problem21:37
mordredprobably21:37
mordredyup. there's a hosts: all21:38
corvusMay 07 21:38:41 gitea01 systemd[1]: docker.socket: Failed with result 'service-start-limit-hit'.21:39
corvusanyone know how to deal with that?21:39
mordredno - but I'll start googling21:39
clarkbthat means we failed to start the unit multiple times so systemd gave up21:39
clarkbprobably need to look at journalctl output21:39
corvusfeel free to do anything on gitea01 to get docker started21:39
corvusi believe i have uninstalled/reinstalled things appropriately there21:40
clarkbMay 07 21:37:58 gitea01 dockerd[1567]: Error starting daemon: error initializing graphdriver: /var/lib/docker contains several valid graphdrivers: aufs, overlay2; Please cleanup or explicitly choose storage driver (-s <DRIVER>)21:40
corvusoh actually21:40
corvusdo we run from distro or upstream docker?21:40
clarkbupstream21:40
*** rh-jlabarre has quit IRC21:40
corvusthen let me redo that21:40
mordredcorvus: while you're installing/uninstalling21:41
mordreduninstall kubelet kubeadm kubectl kuberenetes-cni21:42
*** Goneri has quit IRC21:42
corvusmordred: i already did21:43
mordredkk21:43
corvusrunning docker-compose up21:43
mordredgitea06 has overlay2 in /var/lib/docker - so I'm guessing it's overlay2 we want and not aufs21:43
clarkbthat sounds right iirc aufs is deprecated in favor of $newer things21:44
corvusseems happier now21:45
clarkbcorvus: was it just the reinstall that you did to make it happier?21:45
fungii only know of aufs as the (ancient) apple unix file server21:45
corvusyeah21:45
fungiahh, advanced unification filesystem21:45
*** Weifan has quit IRC21:46
*** mattw4 has quit IRC21:46
mordredshould we split up the remaining hosts?21:46
corvus1 sec21:46
mordredkk21:46
corvusdoes https://gitea01.opendev.org:3000/ look good?21:46
clarkbI'm checking it now21:46
clarkbI can browse zuul/zuul21:47
clarkbit has the 3.8.1 tag from today21:47
corvusthis is my repair procedure: http://paste.openstack.org/show/750896/21:47
corvusdoes that look good?21:47
corvusthere may be some amount of "systemctl something docker" between lines 5 and 721:48
*** Goneri has joined #openstack-infra21:48
corvusthat's unclear due to the hiccup21:48
clarkbcorvus: I think we may want to keep socat (or at least it doesn't hurt to have)21:48
clarkbotherwise ya I think that looks about right21:48
corvuswell, it was installed for this21:48
clarkbah ok.21:48
corvusthis is the list of installed or upgraded packages: http://paste.openstack.org/show/750897/21:49
mordredyes - that looks good to me21:49
clarkb(we'll also need to do the same on gitea-lb01.opendev.org I suspect and then similar to all the other hosts but without the docker compose up)21:49
corvusok, i'll take 2-3, clarkb you do 4-5, mordred you do 7-821:50
*** cfriesen has joined #openstack-infra21:50
mordredcorvus: on it21:50
clarkbk21:50
cfriesenis opendev.org down?21:50
clarkbcfriesen: yes21:50
*** mattw4 has joined #openstack-infra21:50
cfriesenkay.  I'm not nuts. :)21:50
corvusthat did not work for me21:51
corvussystemd failed to start it21:51
mordredyeah. same here21:52
clarkbthird21:52
mordredwow. -- The start-up result is RESULT.21:52
mordredroot@gitea07:~# docker --version21:53
mordredDocker version 18.09.6, build 481bc7721:53
mordredthat's what we're expecting, yes?21:53
corvushrm21:53
corvusoh i see it21:53
corvussorry21:53
mordredthank god21:53
clarkbI get the same error I pasted above21:53
corvushttp://paste.openstack.org/show/750898/21:54
corvusi botched the rm's at the top21:54
clarkbk rerunning with new paste commands21:54
corvusapt-get --purge remove docker-ce docker-ce-cli docker-engine containerd.io ebtables ethtool socat21:54
corvusand that's the remove command if you already ran it before21:55
corvusand i still get the same error21:55
mordredme too21:56
corvusoh you know what21:56
corvuswhen i installed the wrong version of docker and removed it, it removed /var/lib/docker21:56
mordredand that didn't delete the volumes?21:56
clarkbI don't think we use actual volumes21:57
*** ijw has quit IRC21:57
clarkbwe use bind mounts21:57
corvusi believe that's the case yeah21:57
corvusto be conservative, we could try just moving it out of the way21:57
*** ijw has joined #openstack-infra21:57
mordredok - in fact21:57
mordredjust move aufs out of the way21:57
mordred I just tried that and it worked21:58
mordredcommands coming21:58
clarkbfwiw there are no aufs layers in my aufs dir21:58
corvusi think we should move the whole dir out of the way21:58
clarkb(further evidence it is not the thing we want)21:58
mordredhttp://paste.openstack.org/show/750899/21:58
mordredthis is what I ran21:58
mordredand it worked for me21:58
mordredbut I can also move the whole dir21:58
*** Goneri has quit IRC21:58
*** mcornea has joined #openstack-infra21:58
mordred(you're gonna need to umount the aufs regardless I believe)21:59
corvuslet's do that: umount /var/lib/docker/aufs; mv /var/lib/docker /var/lib/docker-old21:59
mordred++21:59
clarkbk trying that now22:00
corvusthen run: apt-get install docker-ce22:00
corvusto make dpkg happy22:00
clarkbdoing the apt-get remove, then umount + mv, then reinstall22:00
corvusor that, yeah22:00
mordredhttps://gitea07.opendev.org:3000/explore/repos22:01
mordredI'm going to move to 822:01
corvusit will take a moment or two for gitea to start, btw.22:01
mordredyeah22:01
corvus7 lgtm22:01
*** cfriesen has left #openstack-infra22:02
*** rfarr_ has joined #openstack-infra22:03
clarkb05 is on its way up (waiting on images to pull)22:03
mordredwhich is the correct docker version?22:03
clarkbDocker version 18.09.6, build 481bc77 is what I have22:03
mordredok. cool.22:03
mordred8 is pulling and starting22:04
corvus02 and 03 are up  running total: [123...7.]22:04
clarkbI'll start on 04 in a moment when 05 lgtm22:04
mordredk. 8 should be up22:04
clarkbcorvus: you want ot do gitea-lb01 ?22:04
corvusclarkb: yes22:05
mordredI can't hit 822:05
mordredhttps://gitea08.opendev.org:3000/22:05
mordredam I just typing wrong?22:05
clarkbmordred: it takes a while for it to come up22:05
mordredkk22:05
corvusmordred: give it time; check the logs22:05
*** rfarr has quit IRC22:05
corvus2019/05/07 22:01:36 [I] Git Version: 2.20.122:05
corvus2019/05/07 22:03:25 [I] Run Mode: Production22:05
corvusit can sit between those 2 lines for a while22:06
mordredok. yes - I'm between them22:06
mordredbtw - jhesketh wins the prize for best new tibit22:06
mordreddocker-compose logs --tail=100 -f22:06
mordredthanks jhesketh ^^ !22:06
clarkb04 is pulling images now and should be on its way up soon22:07
mordred8 is up22:07
*** smarcet has quit IRC22:07
mordredprobably need to do insecure docker registry22:07
mordredsince it dockers22:07
mordredand zuul-preview22:08
corvushaproxy is up and so is https://opendev.org/22:08
mordredcorvus: I'll do zuul-proxy22:08
corvusi think 4 is the only one outstanding22:08
clarkbmordred: ya then we'll need to cleanup all the things22:09
corvusi'll look at insecure-registry22:09
corvusftr, this is the final effective procedure: http://paste.openstack.org/show/750900/22:10
mordredbtw - I can't ssh to zp01.opendev.org by hostname22:10
clarkbnon docker hosts will only need the first 4 lines right?22:11
corvusmordred: i think i messed up the dns for that22:11
* mattmceuen thanks guys!22:11
*** slaweq has joined #openstack-infra22:11
mordredzuul-preview should be done22:12
corvusmattmceuen: sorry for the outage22:12
corvusregistry is done22:13
clarkbshould we maybe use ansible for the cleanup of non docker hosts ?22:13
corvusprobably -- but first -- are we concerned at all about the other packages that got upgraded?22:14
corvuslibc... glib...22:14
corvussystemd22:14
clarkbcorvus: I believe those would get updated by unattended upgrades22:14
mordredwhere did they get pulled in from?22:14
*** eernst has joined #openstack-infra22:14
mordreddid we get a systemd from the k8s repo? or just from ubuntu22:14
mordred?22:14
*** eernst has quit IRC22:15
corvusoh.. hrm.  maybe it was just a regular upgrade from ubuntu that happened to get pulled in...22:15
corvuslet's see if we can find out22:15
mordredyeah. dpkg shows an ubuntu version22:15
clarkbI'm looking at ubuntu package search to see when those updated22:15
mordredii  systemd           237-3ubuntu10.15 amd64        system and service manager22:15
mordredii  libc6:amd64                    2.27-3ubuntu122:15
corvusokay, that's probably sane then.  so yeah, i think we can just do lines 1-422:16
mordred++22:16
*** eernst has joined #openstack-infra22:16
corvusmordred: want to construct an ansible command to run that on all hosts except the ones we just did?22:16
mordredprobably just do hosts: all;!zp01;! ...22:16
mordredyeah - lemme get a host string real quick22:16
clarkbmordred: what host is taht from? ii  systemd                               237-3ubuntu10.21                  amd64        system and service manager is what I get from gitea04 which is bionic and matches ubuntu's package list for that22:16
corvusk, i'll preparet to double check it22:17
*** rfarr__ has joined #openstack-infra22:17
mordredclarkb: it was zp0122:17
clarkbbut I concur what I am looking at on gitea04 for systemd seems fine compared to ubuntu package listings22:17
mordredcorvus, clarkb: - hosts: 'all:!zp01*:!gitea*:insecure*'22:19
mordredhow does that look?22:19
*** sshnaidm|pto has quit IRC22:19
clarkbmordred: we should cross check against the emergency group too maybe?22:19
*** rfarr_ has quit IRC22:19
clarkbthough I guess the earlier all that installed all the k8s won't have respected that either22:19
corvusnothings disabled right now22:20
mordredyeah to both22:20
corvusmordred: lgtm22:20
mordredethtool socat22:20
clarkbya lgtm too22:20
mordredare those dangerous to blank-slate remote?22:21
mordredremove?22:21
clarkbmordred: we need socat on the zuul executors22:21
mordredanyway - on bridge - /root/fix-issues.yaml22:21
clarkbI'm somewhat inclined to just leave socat in place (it is a useful tool and shouldn't hrut if we have it on things)22:21
mordredmaybe let's leave socat out of this list - and do a different one if we want22:21
corvusyeah, leaving socat wfm22:21
clarkbI don't expect ethtool is used by any of our software22:21
*** rfarr__ has quit IRC22:21
mordredebtables?22:21
corvusalso should be ok to remove i think22:22
clarkbmordred: we don't ebtables as far as I know22:22
mordredkk - check /root/fix-issues.yaml22:22
clarkbmaybe remove that one on a test node first though to make sure it doesn't interact with iptables?22:22
corvuswell it didn't earlier22:23
corvuson the gitea hosts22:23
mordredgood point22:23
mordredhttp://paste.openstack.org/show/750901/ <-- in case anyone is following along without root to bridge22:23
clarkbconfirmed that iptables -L -n shows our expected ruleset on gitea0422:23
*** slaweq has quit IRC22:24
corvusthose last 4 were via "apt-get autoremove", so at least on the gitea hosts, they were dangling packages22:24
clarkbmordred: that playbook lgtm.22:24
corvusplaybook lgtm22:24
mordredcorvus: should I maybe put in an apt-get autoremove -y ?22:25
corvusmordred: meh, i don't think so22:25
clarkbmordred: that will trigger kernel removals which is slow22:25
mordredgood point22:25
clarkbI think for now lets not do that so that we converge on happy state quicker22:25
mordredI'm going to start a screen session22:25
corvusi made that command by doing a remove on all the packages except the last 4, then an autoremove22:25
corvusthen squashed the 4 things the autoremove did into the command i gave you22:25
mordredoh - or, I guess I reconnected to a screen session22:25
*** mcornea has left #openstack-infra22:26
mordredwhat -f value do we think? 20? 40 since it's a simple playbook?22:26
corvuswe've used 50 for simple things on lots of hosts22:26
mordredk. maybe let's do it with --limit=review-dev01.openstack.org just to double-check ourselves?22:27
corvusk22:27
clarkbwfm22:27
clarkblooks like it didn't get as far as review-dev01?22:27
corvushrm, is there a way to tell apt-get remove to not fail on removing uninstalled packages?22:28
clarkbfungi: ^ you know all the apt magic22:28
funginot that i'm aware of but checking22:28
fungiyou could mark them as automatically installed and then call apt autoremove22:29
mordredcorvus: maybe we just failed_when: false on the task?22:30
corvusmordred: but i don't think it removes anything22:30
mordredoh - right22:30
corvusi guess we could string a bunch of commands together with |22:30
corvuser, with ||22:30
clarkband end with || true22:31
corvusit's a very docker solution to a very docker problem22:31
mordredhahaha22:31
mordredwait - my brain isn't processing the right incantation here22:32
mordredif kubelet isn't installed, then things didnt' get that far, right?22:33
fungicould filter the list of installed packages by the list of undesired packages and then call apt remove on that, i suppose22:33
corvusmordred: oooh... i see... that's what clarkb meant earlier22:34
corvusmordred: i guess so?22:34
clarkbmordred: ya my guess is that we'll either have all packages present or none22:34
mordredhow about just type kubelet && apt-get remove22:34
corvuswfm22:34
clarkbya that seems to work on elasticsearch0222:34
clarkbyou can use that as a test node as it seems to have been kubed22:34
mordredthat did not make review-dev happy22:35
corvusoh22:35
corvusi think the issue is *docker*22:35
mordredoh. because different package names22:35
corvusi don't think it was installed on hosts that didn't have it22:35
mordredyeah22:35
corvusdocker-engine is the only "docker" package on review-dev22:36
* clarkb is not following, but expects yall understand22:36
corvusso i think you can drop those first 222:36
clarkbah22:36
*** mattmceuen has left #openstack-infra22:36
corvusclarkb: "docker-ce" was us all along, not the borg kube22:36
mordredtype kubelet && apt-get --purge remove -y kubernetes-cni cri-tools kubectl kubelet kubeadm22:36
mordredso that?22:36
corvusno22:36
corvusmordred: what did you remove?22:37
corvusmordred: just remove docker-ce and docker-ce-cli from the list22:37
mordredoh - so you're saying just take docker-ce and docker-ce-cli out22:37
mordredgotit22:37
mordredtype kubelet && apt-get --purge remove -y docker-engine kubernetes-cni cri-tools kubectl kubelet kubeadm containerd.io ebtables ethtool22:37
mordredthat22:37
corvusyes, but 1 sec22:37
mordredkk22:37
corvuswe may want to add aufs-tools and cgroupfs-mount to the list22:38
corvusi see those as having been installed on review-dev0122:38
mordredk22:39
clarkbI bet those we actually want on the docker hosts so weren't in the autoremove list22:39
mordredlet's try review-dev again22:39
corvusya22:39
corvusi don't see an error there22:39
mordreddoes apt-get remove return 100 on removing packages?22:40
clarkbdecimal 100 on error says the man page22:40
mordredE: Unable to locate package containerd.io", "E: Couldn't find any package by glob 'containerd.io'22:41
mordredso I think that goes along with docker-ce22:41
corvuscontainerd.io was not installed22:41
corvusagreed22:41
clarkbmakes sense, containerd is relatively new and the docker that was installed is a bit old22:42
clarkblikely predates containerd22:42
mordredE: Held packages were changed and -y was used without --allow-change-held-packages."]22:42
mordredk8s-on-openstack puts in some holds (not sure why this didn't matter on gitea hosts though)22:42
corvusdid you use -y on the gitea hosts?22:43
mordredoh! wait22:43
clarkbI didn't use -y22:43
mordredubuntu-server is getting pulled in22:43
mordredThe following packages will be REMOVED:\n  aufs-tools* cgroupfs-mount* cri-tools* docker-engine* ebtables* ethtool*\n  kubeadm* kubectl* kubelet* kubernetes-cni* ubuntu-server*\nThe following held packages will be changed:\n  docker-engine kubeadm kubectl kubelet kubernetes-cni22:43
*** panda has quit IRC22:44
corvushow is that happening?22:44
mordredethtool22:44
clarkbethtool is ya that22:45
corvusok lets keep ethtool i guess :)22:45
clarkbwfm22:45
mordredy'all ok with adding --allow-change-held-packages ?22:45
corvusi reckon22:45
mordredreview-dev seems happy22:46
corvuscool22:46
mordredshall I try elasticsearch02 for confirmation?22:46
corvus++22:46
*** panda has joined #openstack-infra22:46
clarkbI have a before dpkg -l as well22:46
mordredk that worked22:46
fungiit's getting less and less clear to me what happened and what's being cleaned up... did we install docker packages from the wrong place and they dragged in a bunch of dependencies we're now in need of uninstalling?22:47
corvusi'm ready when clarkb is22:47
mordredhttp://paste.openstack.org/show/750903/22:47
clarkbhttp://paste.openstack.org/show/750902/ is the diff from es02 dpkg -l22:47
corvusfungi: we installed *k8s* everywhere22:47
clarkbcorvus: mordred ^ maybe double check that delta22:47
fungiahh22:47
clarkbcorvus: mordred but ya it lgtm I think we are about as ready as we'll be to proceed22:47
mordredyeah. that list looks good22:47
clarkbfungi: the playbook to install k8s used host: all22:48
clarkbcorvus: mordred oh wiat22:48
mordredyeah?22:48
clarkbcorvus: mordred the actual k8s clusters are in our inventory too22:48
clarkbwe'll likely break them if we run with the current !s22:48
fungiwe only need to uninstall the explicitly installed packages though, right? the dependencies would all have been marked as automatically installed and so autoremove should be able to remove them once the others are removed22:48
mordredwhich actual k8s clusters?22:48
clarkbmordred: the gitea one and the nodepool one22:48
mordredthe nodepool one is a magnum one, so that should be fine22:49
mordredright?22:49
corvusthe nodepool one shouldn't be in the inventory, but the gitea one is22:49
clarkbfungi: yes, except that will take forever to run beacuse kernels will be removed too22:49
corvus(though, killing it wouldn't be the end of the world)22:49
clarkbfungi: but we could do that if you think it is prudent to be cautious22:49
fungigot it22:49
funginah, this is fine22:49
fungii forget about all the cruft kernels hanging around22:49
mordredopendev-k8s* would be that cluster22:50
corvusmordred: agreed22:50
mordredok. playbook updated to skip that cluster22:50
corvusmordred: current rev lgtm22:50
mordredone last chance to abort ...22:50
clarkbI can't think of anything else at this point22:51
corvusi say go22:51
*** hwoarang has quit IRC22:51
clarkbthe ones that are failing are mirror nodes? I wonder if we just have to clean those out of inventory22:51
mordredsorry - the exclusion line was wrong - left off the !22:52
clarkbmordred: did we accidently remove docker again in places we should not have?22:52
mordredshould we put an || echo "no kubelet found" at the end?22:53
mordredclarkb: no - I dont' think so - we probably could have kept it running22:53
corvusdocker is still running on registry22:53
clarkband opdnev.org is still up22:54
clarkb(I guess it is docker-ce that would break our docker nodes but we remove docker-something)22:54
clarkbso likely still good22:54
*** pkopec has quit IRC22:54
mordredif type kubelet ; then apt-get --purge remove -y --allow-change-held-pac22:54
mordredkages docker-engine kubernetes-cni cri-tools kubectl kubelet kubeadm ebtables aufs-tools cgroupfs-mount ; fi22:55
mordredhow's that as a way to not get as much red?22:55
corvuslooks good in principle assuming the bash is right22:55
clarkbmaybe check it on a node first just to confirm the bash but ya lgtm22:55
mordredno errors on elasticsearch02 at least22:56
*** Weifan has joined #openstack-infra22:56
mordredwell - shall we go again?22:57
*** jamesmcarthur has joined #openstack-infra22:57
corvus++22:57
clarkbya gonna have to get through them at some point22:57
*** threestrands has joined #openstack-infra23:00
mordredcorvus: so - while we're waiting on that - there's a thing about k8s-on-openstack that should be noted ... which is that it's designed for site.yml to be run when the cwd is the k8s-on-openstack repo ... doing so causes ansible-playbook to pick up the ansible.cfg from that directory when it runs, and that sets inventory = /dev/null23:00
*** hwoarang has joined #openstack-infra23:00
*** tkajinam has joined #openstack-infra23:00
mordredwell, it finished before I finished typing that23:00
clarkbmordred: its done fwiw23:00
*** threestrands has quit IRC23:00
clarkbmaybe skim over the list and double check there aren't any that failed that we expect to succeed?23:01
*** threestrands has joined #openstack-infra23:01
clarkbthe unreachables I saw are expected to be unreachable (and at least one has a change up to remove it from inventory, the graphite.o.o host)23:01
mordredyeah - the list looks fine to me23:01
corvusdo we have a change up to either remove the playbook or fix the invocation?23:02
clarkbcorvus: I don't think we have that yet23:02
mordredlet's just remove it23:03
*** bobh has joined #openstack-infra23:03
mordredwe should rework it when we coem back to it anyway23:03
corvusi'll propose changes23:04
mordredkk23:04
clarkband maybe double check the other k8s playbooks are group restricted?23:04
mordredthere are no other k8s playbooks - it's just that one23:04
clarkbtimeout -k 2m 120m ansible-playbook -f 50 ${ANSIBLE_PLAYBOOKS}/bootstrap-k8s-nodes.yaml23:04
clarkbis the other one I see23:04
mordredoh - hrm23:05
mordredah 0 yeah - that one is group restricted - but we can also ditch it23:05
openstackgerritJames E. Blair proposed opendev/system-config master: Invoke run_k8s_ansible from its directory  https://review.opendev.org/65770323:06
*** rcernin has joined #openstack-infra23:06
openstackgerritJames E. Blair proposed opendev/system-config master: Stop running gitea k8s cluster playbooks  https://review.opendev.org/65770423:06
corvusclarkb, mordred: proposed as 2 changes so that we don't forget about the fix23:06
clarkbmaybe flip the order?23:06
clarkb(so that we merge the removal first?23:06
corvusi did that order so that a revert of "stop running" gets us the right playbooks23:07
corvuser, right scripts i guess23:07
mordred++23:07
mordredI think it's fine if we just land both before we turn cron back on23:07
clarkbI have approved both23:07
*** dciabrin has quit IRC23:08
*** dciabrin has joined #openstack-infra23:08
*** threestrands has quit IRC23:08
*** slaweq has joined #openstack-infra23:11
*** smarcet has joined #openstack-infra23:12
clarkbI'm going to double check that gitea06 is not in the lb pool23:14
clarkbit is not, so the change to make that config update took hold23:14
clarkb(this is a good thing)23:15
mordredyay23:15
* mordred has a scheduled thing in 15 mintues - are we back together enough that folks are comfortable with me stepping away?23:15
clarkbyes I think we can leave the cron disabled for a bit and deal with that tomorrow maybe?23:16
clarkbother than t hat I think we should be recovered)23:16
mordred++ to leaving the cron disabled until people have enough brainpellets to reenable it23:16
*** yamamoto has joined #openstack-infra23:17
*** sarob has joined #openstack-infra23:18
clarkbhow about #status log Ansible cron disabled on bridge until we remove the k8s management from run_all.sh. This is necessary to keep k8s installations from breaking standalone docker usage.23:21
clarkband maybe #status notice If your jobs failed due to connectivity issues to opendev.org they can be rechecked now. Services have been restored at that domain23:21
*** bobh has quit IRC23:21
mordredclarkb: ++23:21
clarkb#status log Ansible cron disabled on bridge until we remove the k8s management from run_all.sh. This is necessary to keep k8s installations from breaking standalone docker usage.23:22
clarkbstatusbot is out at lunch?23:22
clarkb2019-05-03 22:44:05,311 DEBUG irc.client: _dispatcher: join is the last thing logged by it. I will restart it23:22
*** openstackstatus has joined #openstack-infra23:24
*** ChanServ sets mode: +v openstackstatus23:24
fungiand it's back23:24
clarkb#status log Ansible cron disabled on bridge until we remove the k8s management from run_all.sh. This is necessary to keep k8s installations from breaking standalone docker usage.23:24
openstackstatusclarkb: finished logging23:24
*** slaweq has quit IRC23:24
clarkb#status notice If your jobs failed due to connectivity issues to opendev.org they can be rechecked now. Services have been restored at that domain.23:24
openstackstatusclarkb: sending notice23:24
*** rlandy is now known as rlandy|brb23:25
-openstackstatus- NOTICE: If your jobs failed due to connectivity issues to opendev.org they can be rechecked now. Services have been restored at that domain.23:26
*** jamesmcarthur has quit IRC23:27
*** Weifan has quit IRC23:28
openstackstatusclarkb: finished sending notice23:28
clarkbthank you statusbot23:28
*** eernst has quit IRC23:34
*** Goneri has joined #openstack-infra23:34
*** lseki has quit IRC23:40
*** guimaluf has joined #openstack-infra23:43
*** Weifan has joined #openstack-infra23:44
openstackgerritMerged opendev/system-config master: Add mirroring for Stein packages  https://review.opendev.org/65568623:48
clarkbI had to recheck the first of our fix changes23:48
clarkbpuppet apply for xenial timed out23:49
clarkbI've seen that happen if ruby gems are slow to download things23:49
clarkband with that I'm gonna figure out dinner23:49
*** sarob has quit IRC23:51
*** whoami-rajat has quit IRC23:55
*** mattw4 has quit IRC23:56
ianwcorvus/clarkb: thanks, i responded to the few comments in the LE restart stuff with https://review.opendev.org/#/c/652801/23:59

Generated by irclog2html.py 2.15.3 by Marius Gedminas - find it at mg.pov.lt!