13:00:01 #startmeeting kolla 13:00:01 Meeting started Wed Jul 26 13:00:01 2023 UTC and is due to finish in 60 minutes. The chair is mnasiadka. Information about MeetBot at http://wiki.debian.org/MeetBot. 13:00:01 Useful Commands: #action #agreed #help #info #idea #link #topic #startvote. 13:00:01 The meeting name has been set to 'kolla' 13:00:02 #topic rollcall 13:00:04 o/ 13:00:09 \o/ 13:00:25 \o 13:00:32 \o 13:00:43 o/ 13:00:46 o/ 13:01:06 \o 13:01:10 o/ 13:01:14 \o/ 13:02:51 #topic agenda 13:02:51 * Review action items from the last meeting 13:02:51 * CI status 13:02:51 * Release tasks 13:02:51 * Regular stable releases (first meeting in a month) 13:02:52 * Current cycle planning 13:02:52 * Additional agenda (from whiteboard) 13:02:54 * Open discussion 13:03:05 well, not action items from last meeting 13:03:08 #topic CI status 13:03:36 I've been off for the last three weeks - whiteboard says Kolla xena/wallaby is RED 13:04:08 wallaby is heading for EOL so probably not an issue 13:04:09 wallaby EOL 13:04:13 yeap 13:04:25 we also agreed for xena to be EOL, but maybe let's first wait for wallaby to be marked EOL 13:04:44 outdated info for xena? needs check 13:04:47 all the rest of the whiteboard says CI is green otherwise 13:04:59 would be nice if the person marking something as RED would write why ;-) 13:05:10 #topic Release tasks 13:05:32 it's R-10 13:06:21 nothing to do 13:06:27 #topic Current cycle planning 13:06:34 let's check status of some features 13:06:36 ihalomi: Podman? 13:06:54 i've approved https://review.opendev.org/c/openstack/kolla/+/888335 without second +2 because of gate blocker ... 13:07:00 so maybe xena red to xena green ? 13:07:25 mnasiadka: working only one test failing for unknown reasons 13:07:40 I assume the rocky9 one 13:07:41 ihalomi link ? 13:07:41 https://storage.bhs.cloud.ovh.net/v1/AUTH_dcaab5e32b234d56b626f72581e3644c/zuul_opendev_logs_bfc/799229/77/check/kolla-ansible-rocky9-podman/bfc1625/primary/logs/ansible/deploy-prechecks 13:07:46 i think the problem is in image since it was working and started failing without change 13:07:55 https://zuul.opendev.org/t/openstack/build/bfc1625b4e0f4788be21f3bf5454ba4d 13:08:18 well, maybe it's some newer podman version 13:08:32 do we need to pin to older or something similar? 13:10:01 idk i couldnt build that image on my own so i dont know the reason of failure but podman-py should be frozen not sure about podman 13:10:48 bbezak: probably we should spawn some test environment to help ihalomi 13:11:22 ok, I'll have a look into that next week 13:11:49 makes sense mnasiadka 13:13:30 ok then 13:13:39 kevko: you did have a look in Let's Encrypt patches, right? 13:14:40 mattcrees: how is the "changing default to RMQ HA mode" going? 13:15:08 mnasiadka: yep, rewritten a lot ...but for now it is HA and working like a charm ... 13:15:26 kevko: nice, then now we need some reviewers 13:15:44 i can review it :D 13:15:50 anyone signing up for reviewing Let's Encrypt patch? 13:15:51 RMQ patch still needs more work to automate out the manual steps. I'm working on it, but slowly as other things have taken priority 13:16:14 kevko: if you rewrote a lot - then probably add yourself as a co-author :) 13:17:20 Michal Nasiadka proposed openstack/kayobe master: Fix firewalld configuration for monitoring hosts https://review.opendev.org/c/openstack/kayobe/+/883263 13:17:43 ok then, no reviewers, will try to chase some people :) 13:18:54 I'm back from vacation and ready to review) 13:19:09 ok, let's move on 13:19:11 #topic Additional agenda (from whiteboard) 13:19:29 failing podman test - this has been raised in previous topic 13:19:36 frickler - octavia jobboard 13:19:44 #link https://review.opendev.org/c/openstack/kolla/+/888587 13:19:51 #link https://review.opendev.org/c/openstack/kolla-ansible/+/888588 13:20:20 frickler: I asked a question in the first patch, although it's merged ;-) 13:20:28 kevko already reviewed, need to update the second one 13:21:08 mnasiadka: this is not a new feature, but not sure whether we'd want to backport, either 13:22:57 ok, so let's not backport for now, unless somebody really needs that 13:23:07 reviewed the k-a one 13:25:21 ok then 13:25:24 thx, will check those things with christian 13:25:32 #topic Open discussion 13:25:42 Anybody? 13:25:48 what I missed to add to the agenda is bookworm 13:27:03 I think hrw is not here, and probably he knows latest status 13:27:06 #link https://review.opendev.org/c/openstack/kolla/+/886088 13:27:26 Michal Nasiadka proposed openstack/kolla master: rabbitmq: bump version to 3.12 https://review.opendev.org/c/openstack/kolla/+/887225 13:27:30 I added some fixes in k-a and now it seems to work in CI at least 13:27:45 nice 13:27:58 should we bump rmq now? 13:28:38 what version of 3.12.x is this now? 13:29:18 why in bookworm erlang is installed from debian and not from ppa ? 13:29:31 doesn't exist for bookworm ? 13:29:49 it didn't exist when the patch was created at least 13:29:58 also the version in debian looked recent enough 13:29:59 frickler: 3.12.2 13:30:21 3.12.2 sounds ok-ish 13:32:26 there are still some months before the release 13:32:44 Upgrading to Erlang 26 and RabbitMQ 3.12 at the Same Time 13:32:44 When upgrading from 3.11.x on Erlang 25 to 3.12.x on Erlang 26, 13:32:44 the cluster must be on at least version 3.11.17 for a safe upgrade of quorum queues. 13:33:01 in theory we don't do quorum queues yet, but there might be users with such 13:33:08 should we put in a precheck? 13:33:28 yes 13:33:35 A precheck for tht sounds good, yes 13:34:27 Ok, I'll work on it (and updating the feature flags) 13:35:13 And need to have a look in Ansible bump (so we don't start running and screaming just before the release because something stops working) 13:35:56 Unless anyone has anything else - I'll end the meeting for today 13:36:41 i would like to just again ask anyone to review letsencrypt as for now i have a time to rework 13:37:07 I'll try to find somebody from SHPC, we need that feature as well. 13:37:20 thanks 13:37:25 kevko please repeat links 13:37:40 and i have one question regarding CADF 13:37:49 (and will have a look in the code, but we also need some testing on a real env) 13:38:22 i have master deployed with lets encrypt if anyone wants to connect i can put ssh key there 13:38:46 I'll remember that ;-) 13:39:11 kevko: what about CADF? Keystone CADF? 13:39:32 kevko I can help next week if it is not too late 13:39:36 we are using this in our downstream repositories 13:39:37 https://docs.openstack.org/keystonemiddleware/pike/audit.html 13:40:10 what is needed is add https://github.com/sapcc/openstack-audit-middleware to openstack images 13:40:36 and amend kolla-ansible to support custom api-paste files 13:41:47 we use that middleware, too, so +1 to adding it 13:42:06 sure, makes sense to make lifes easier 13:42:23 (we don't use that, but who knows what future brings) ;) 13:42:30 so i will prepare patches and i will ask you for review then ... 13:42:51 well, we are not using it for all customers ...but for some yes ... 13:46:40 great, nice addition 13:46:55 ok, I guess it's enough for today 13:47:00 thanks for coming! 13:47:02 #endmeeting