Format: 1.8 Date: Sun, 13 Oct 2024 00:00:51 +0200 Source: openstack-cluster-installer Binary: openstack-cluster-installer openstack-cluster-installer-agent openstack-cluster-installer-cli openstack-cluster-installer-common openstack-cluster-installer-live-image-builder openstack-cluster-installer-openstack-ci openstack-cluster-installer-poc openstack-cluster-installer-utils puppet-module-oci Architecture: all Version: 43.0.0 Distribution: sid Urgency: medium Maintainer: Debian OpenStack Changed-By: Thomas Goirand Description: openstack-cluster-installer - automatic PXE and puppet-master installer for OpenStack openstack-cluster-installer-agent - automatic PXE and puppet-master installer for OpenStack - agent openstack-cluster-installer-cli - automatic PXE and puppet-master installer for OpenStack - API cli openstack-cluster-installer-common - automatic PXE and puppet-master installer for OpenStack - agent openstack-cluster-installer-live-image-builder - automatic PXE and puppet-master installer for OpenStack - live im openstack-cluster-installer-openstack-ci - automatic PXE and puppet-master installer for OpenStack - PoC openstack-cluster-installer-poc - automatic PXE and puppet-master installer for OpenStack - PoC openstack-cluster-installer-utils - automatic PXE and puppet-master installer for OpenStack - utils puppet-module-oci - automatic PXE and puppet-master installer for OpenStack - puppet Changes: openstack-cluster-installer (43.0.0) unstable; urgency=medium . [ Thomas Goirand ] * [d1a359a] Add --haproxy-custom-url option to ocicli. * [e45d4d7] Merge branch 'ceph-az' into debian/caracal * [d1fa666] Fix fetching ceph_osbpo_release * [e5c3047] report.php: fix typo. * [1870467] Fix pinning of Ceph packages. * [dbfb144] Add an lldp switchname matcher to select network cards in a network definition. * [505fb4d] Enable http to https redirection on haproxy level for openstack API See merge request openstack-team/debian/openstack-cluster-installer!55 * [58308cf] Fix d/copyright. . [ Philippe SERAPHIN ] * [5c3f671] In oci-hdd-maint, test if drive mounted before change owner . [ Thomas Goirand ] * [25bab47] caracal: fix keystone roles creation. * [6ecfbf8] oci-hdd-maint: implement wait_until_mounted correctly. * [f84cd5d] oci-poc-ci: cosmetic print fix * [d1d8913] oci-agent: allow using storcli64, not only storcli_x64. * [b7dbb25] Fix syntax. * [98defe8] oci-agent: always report physical disks if MegaRAID is seen. * [55fec1e] hardware_profile.php: fix enclosure number when using storcli to setup raid0 or raid1. * [4789c8c] caracal: use the new cert_file and key_file parameters of nova::migration::libvirt instead of setting it up in libvirtd_config * [07b4e93] compute.pp: provision /etc/openstack/puppet/admin-clouds.yaml if using extrenal keystone. * [56444ad] compute.pp: configure the CEPH_X backend depending on the compute AZ. * [b87cc9f] caracal: volume.pp must use the new parameters max_over_subscription_ratio and reserved_percentage of cinder::backend::iscsi . [ Axel Jacquet ] * [5fbbc0e] some fixes for galera role . [ Thomas Goirand ] * [6efe0ee] oci-agent: fix reporting firmware version twice. * [bc8b6dd] merge-on-all-branches: Retry pull / push as Salsa is being annoying. * [92b8641] Make the SQL role work * [52f265c] The beginning of a sqlmsg role (not tested yet). * [4b83e74] ocicli machine-wipe: Wipe 4GB instead of 1000 MB. * [f67fb88] oci-block-device-udev-sorting: also support "ProLiant DL385 Gen10 Plus v2" * [8a9a805] controller.pp: fix galera backend members. * [2b772dd] oci-poc-setup: nit: fix echo to suggest oci-poc-install-cluster-bgp instead of -full. * [ed2c9d9] slave_actions.php: Fix setting-up first_sql_machine_id (missing break in switch/case). * [1f5d202] Start of implementing ceph_use_cephadm_to_deploy * [2ce2d40] sqlmsg role: fix ENC and sql.pp. * [7baa59b] Set messaging vip with role messaging. * [e425b6f] ceph multiple-az: correctly pass params to get_cluster_password() * [b3c9a1c] messaging node to use the sqlmsg IP for db connections. * [042760e] Fix num of HDD for swiftproxy in PoC . [ Axel Jacquet ] * [b823160] Add possibility to Blacklist Swift account and S3 account independently with custom map, return 503 custom message . [ Thomas Goirand ] * [963d3ea] swiftproxy.pp: Do not double-set container-replicator/node_timeout * [ab1f471] messaging.pp: do not depend on galera class if there's an sqlmsg role in the cluster. * [456e5b6] controller.pp and messaging.pp: with sql role, wait for db to be populated before services. * [1224016] oci-wait-for-remote-sql: missing $ when fetching --db-name. * [8358398] create designatedb on sql node, and properly schedule the API VIP before services. . [ Simeon Gourlin ] * [aad2138] Setting default Neutron firewall driver to _openvswitch_ from Caracal * [6e53cd5] Setting default Neutron firewall driver to _openvswitch_ from Caracal in controller and compute also . [ Thomas Goirand ] * [96845c6] tempest.pp: support setup with Caracal version of puppet-module-tempest. * [ee2faf9] Always transmit designate pass to sql node. * [45aa8b3] untested (yet): Add firewalling to SQL nodes. * [60eee4f] Fix sql nodes firewalling. * [68dc12f] Handle cephadm keys. . [ Philippe Seraphin ] * [60ec6df] Change detection for all card type on R740xd . [ Thomas Goirand ] * [e8b2748] openstack-cluster-installer-agent: report blkctrl firmware version using storcli (instead of megacli) if available. * [4ecf3ca] Implement: ocicli password-{list,show,set} * [3550155] Implements IPMI management using fixed DHCP per port. * [237b74c] ocicli: implement machine-activate-ipmi-over-lan for both HPE and Dell server types in a better, nicer, unified way. * [504bbf4] hardware_profile.php: reset $raid_megacli_cfg_opt before calculating each drive cmd line. * [4cccc6a] src/inc/hardware_profile.php: Fixup clearing all JBOD disk before apply. * [c5791ea] SQL and MSGSQL nodes: mount /var/lib/mysql with the 2nd data disk * [65c8268] oci-first-boot: Fix mounting mysql folder in the data disk sql/sqlmsg nodes. * [1f259f5] Fix save and display of ssh keys. * [7a01cfa] oci-block-device-udev-sorting: more for ProLiant DL365 Gen11 * [a1cb869] ocicli: also display password type "openstackkey" * [74b62bd] Also handle ocicli password-set with type openstackkey. * [8271fb7] Also transmit ceph_use_cephadm_to_deploy to billmon / billosd. * [cdcf952] ocicli machine-show: order block devices by LENGTH(name),name (that's nicer, so 2 is before 11). * [f9e4847] ocicli password-set: use mysqli_real_escape_string() instead of safe_pass(). * [fd68441] enc.pp: do not fetch Ceph passwords for controllers if we're in ceph_use_cephadm_to_deploy mode. * [d1d6462] oci-block-device-udev-sorting: handle DL365 Gen11 2x VD disks. * [b170d94] messaging.pp: handles ceph_use_cephadm_to_deploy option. * [3ab4315] nova-scheduler: set host_subset_size to 3 to avoid all VMs to be poped on the same compute when doing "server create" in bulk. * [08d3b85] api.php: removed remaining debug echo cause command passwor-set to not return 0. * [8ff8e09] Fix keystone access as admin from compute to be able to list and set volume types. * [aaf8417] Fix default value of cpu_allocation_ratio from 16 to 2 and ram_allocation_ratio from 1.5 to 1. * [ba1c0e5] Manage /etc/oci/self-signed-api-cert with puppet depending on cluster flag. * [15f4b60] Explicitly set images_type so we use RBD for Nova in Xena and up. * [02dc758] openstack-cluster-installer-bodi-hook-script: Increase puppet main/top_level_facts_soft_limit from default 512 to 2048 when installing hosts. * [586ecb6] Fix ceph_az, without using variables.json (this has to be done by hand on the enc.pp). * [71aa6ed] slave_actions.php: fix sql request when not using multi az See merge request openstack-team/debian/openstack-cluster-installer!57 * [873cee5] octavia-certs: use semicolon instead of period for chown See merge request openstack-team/debian/openstack-cluster-installer!56 * [1e17ce2] oci-block-device-udev-sorting: More work on "ProLiant DL365 Gen11" * [61d4349] Fix missing esac. * [02e64d4] Fixup again "ProLiant DL365 Gen11" bootorder detection. * [b0a51b2] auto_racking.php: better handling of comment errors, like non-parseable auto-racking.json and no match with LLDP info. * [d2729d5] controller.pp: Remove AvailabilityZoneFilter from filter list, as it's been removed from Xena and up. * [0eb3a01] Add support for cloudkitty storage V2. * [31709e1] re-enable glance-api SSL if >= caracal, fix cloudkitty storage_version/backend double params. * [b9602bc] messaging.pp: fix storage_backend / storage_version param twice when calling ::cloudkitty class. * [4307c79] Fix variables.json to not include comas in description. * [5a6dfaf] horizon: from Caracal and up, use django.core.cache.backends.memcached.PyMemcacheCache as BACKEND driver. * [49ba402] messaging.pp: Fix ::cloudkitty::keystone::authtoken username if using region-postfixed usernames. * [12d25ae] Add CPU flags fact, and activate SEV if a compute supports it. * [b56a149] oci-block-device-udev-sorting: fix support for drive orders in hydra-f * [8bd9a7b] Update apt.infomaniak.ch GPG key. * [db9f011] Fix another instance of the apt.infomaniak.ch key. * [407942b] Another instance of the key. * [c6fa65f] ipmi_cmds.php: fix ocicli machine-ipmi-adopt not fetching the ipmi username correctly. . [ Mathias Heyraud ] * [d64646e] oci-sorting update gigabyte sdb . [ Thomas Goirand ] * [d876370] oci-hdd-maint: support dataforge hydra-f * [5164cae] nova: support default_schedule_zone . [ Olivier Chaze ] * [5368bd5] Mounting the DB on additional disks . [ Thomas Goirand ] * [c49b836] Add contrib/update-admin-project-id. . [ Simeon Gourlin ] * [1e1cefd] Adding cinder az variables to compute . [ Thomas Goirand ] * [c045677] Revert "Adding cinder az variables to compute" This reverts commit 1e1cefd254fda8e144a519431466e26b6b394ccc. * [70c6d25] Also handle storage_availability_zone for cinder on a compute node. * [7a97dcc] controller.pp: set correct region_name for all stuff in Octavia, so it can handle multi-region. * [8a1f69f] oci-puppet: unset all OpenStack env vars before running puppet. . [ Simeon Gourlin ] * [199fcf3] Moving cinder_default_storage_availability_zone from cluster config to machine config . [ Thomas Goirand ] * [7a5e824] swiftproxy.pp: Support setting barbican_endpoint in /etc/swift/keymaster.conf, needed for multi-region. * [e9b1def] chmod update-admin-project-id * [43fb621] Add automation to install and configure dkms with auto-signing of kernel modules. * [d824a5b] Document secure-boot support. * [d854e7c] Merge branch 'feature/wipefs' into 'debian/caracal' Use wipefs instead of dd to wipe partition signatures form drives See merge request openstack-team/debian/openstack-cluster-installer!58 * [473e055] Run drive_full_checker as root. * [9dd4b23] Also run drive_full_checker as root in proxy nodes. * [d2a457a] oci-system-serial: Make "OpenStack Nova" (ie: OpenStack VMs) report a shorter serial number. * [76a6f94] Fix dhcp_domain description in variables.json * [8156b08] Support setting hw_machine_type in Nova. * [b18380d] controller.pp: give the service role to all service users. * [cec643f] compute: add CPU model check skip options . [ Simeon Gourlin ] * [0d622fc] Revert Ceph different backend name for multiple clusters . [ Thomas Goirand ] * [77b9557] Add set fib_multipath_hash_policy to 1 with sysctl. * [e372c6a] controller.pp: allow setting-up Keystone without rabbit. * [fe40020] controller.pp: only use the "roles =>" param when available in puppet-openstack. * [a9e1baf] controller.pp: schedule haproxy before horizon, as apache may otherwise temporarily bind on port 80 which clashes with haproxy. * [aadbaef] controller.pp: fix setting-up Octavia before Bobcat. * [e02262c] compute.pp: before yoga, provision /etc/keystone/puppet.conf instead of openstacklib::clouds. * [246a9c7] tempest.pp: correctly install /etc/keystone/puppet.conf if xena or lower. * [030513d] Disable glance_v1 API in tempest. * [05103a0] tempest.pp: Fix keystone credentials and URL. * [e35d646] tempest.pp: before Bobcat, write /root/openrc so that tempest_flavor_id_setter knows how to authenticate. * [4f59bb9] tempest.pp: add region_name in /root/openrc and /root/oci-openrc * [9f9a547] Do not run test_volume_from_snapshot_cascade_delete * [b0eec46] controller.pp: schedule apache after haproxy. * [5eb92c3] validate_password(): accept equal sign. . [ Simeon Gourlin ] * [8991e63] Adding memcache_use_advanced_pool to neutron-api . [ Thomas Goirand ] * [5ac77eb] controller.pp: Fixup swift_store_region in glance setup, in the swift extrenal case. * [10c90f8] messaging.pp: Fixup [ociadmin_authtoken]/password in the case of external keystone. * [bbce6b5] cloudkitty storage v2: set storage_elasticsearch/use_datastream to true. * [099dd05] Add comment for calling ::cloudkitty::storage. * [f6b3eca] Fix detecting serial number in the case of an OpenStack VM. * [38c4ea8] Restart haproxy between controllers puppet run at first boot. * [bf0048b] Also attempt restarting mariadb server in oci-first-boot script in sql / sqlmsg roles. * [7af2c66] oci-poc-provision-image: Insert the password "password" into the test image. * [4e2c036] OCI PoC: Really run oci-poc-provision-network-cl3 on cluster3 * [856711d] tempest.pp: also set region name for identity and image. . [ Axel Jacquet ] * [bf27377] add blacklist test in poc-test list: test not maintened: neutron_tempest_plugin group * [5bf352b] add blacklist test in poc-test list: Tests passed with bigger timeout, 10 secod is to small * [e4b4521] add blacklist test in poc-test: neutron_plugin: Doesn't work without SNI : https://api:443/v2.0/networks\? doesn't start with https://api:443/network * [53590d6] add blacklist test in poc-test: neutron_plugin: Doesn't work without SNI : https://api:443/v2.0/networks\? doesn't start with https://api:443/network * [e9c7059] add blacklist test in poc-test: neutron_plugin: Doesn't work without SNI : https://api:443/v2.0/networks\? doesn't start with https://api:443/network again * [6ca3d06] add blacklist test in poc-test: neutron_plugin: Doesn't work without SNI : https://api:443/v2.0/networks\? doesn't start with https://api:443/network again . [ Thomas Goirand ] * [baed889] Also apply neutron dnsmasq_dns_servers parameter on controllers with network subrole See merge request openstack-team/debian/openstack-cluster-installer!59 * [da49907] Don't attempt to upgrade python3-pypowervm package, which was removed in bookworm See merge request openstack-team/debian/openstack-cluster-installer!61 * [fd0e5b2] Also display monitoring password type. * [279c460] oci-poc-save & restore: now understand multiple clusters, messaging, sql and sqlmsg nodes, and restart galera clusters accordingly. * [2b6c8c9] oci-poc-save: understand multiple clusters when turning off Galera. * [a5f6992] pupppet-master service is now puppetserver See merge request openstack-team/debian/openstack-cluster-installer!60 * [c31050e] oci-poc: setup the correct debian image name in openstack-cluster-installer.conf depending on debian release. * [0f20165] oci-poc-provision: correctly provision network on cl3. * [43704bc] poc-bin/oci-poc-provision: Provision flavors in cl3. . [ Axel Jacquet ] * [4f1d530] add blacklist test in poc-test: neutron_plugin: work with relaod of dhclient oinside vm like upstream recent tests * [37b3ec3] add blacklist test in poc-test: image_test: upload works but code try to checko store=swift with store metadate of image = swift,file * [77e1eae] add blacklist test in poc-test: neutron: We not use qos extension for floating, test skipped is buggy method skip_if_no_extension_enabled_in_l3_agents need reason arg * [54a6438] add blacklist test in poc-test: neutron: We not use qos extension for floating, test skipped is buggy method skip_if_no_extension_enabled_in_l3_agents need reason arg * [72246b2] add blacklist test in poc-test: compute:work with fixed_network_name different of floating_ip network -> cant create port on it * [97e2a1d] add blacklist test in poc-test: compute:work with fixed_network_name different of floating_ip network -> cant create port on it * [28b7972] add blacklist test in poc-test: compute:work with fixed_network_name different of floating_ip network -> cant create port on it . [ Olivier Chaze ] * [991c4c2] Enabling port_forwarding * [12ffa52] Enabling port_forwarding . [ Axel Jacquet ] * [eb7b882] add blacklist test in poc-test: cinder:Encrypted volume not supported yet * [c284dbe] add blacklist test in poc-test: neutron:Tests passed with bigger timeout, 10 secod is to small , test is really long on Poc * [4d76392] add blacklist test in poc-test: neutron:route bgb announce wait for 1 route but have more i our setup but route are annonced * [44cf8cd] add blacklist test in poc-test: neutron:advertise route cant match expected value in our setup * [9c98576] add blacklist test in poc-test: neutron: try to test external connectivity real test, proxy ssh on public ip to priv ip but we don't use real public ip on our setup . [ Thomas Goirand ] * [74dffcd] controller.pp: also enable port_forwarding if network nodes are the controllers. * [7c2adfd] New command oci-run-command-on-nodes See merge request openstack-team/debian/openstack-cluster-installer!64 . [ Axel Jacquet ] * [a09dba1] add blacklist test in poc-test: neutron: security group tests with to small timeout , 10seconde, works with highter * [5d41fb1] add blacklist test in poc-test: neutron: missing package in image for test, nc cmd . [ Simeon Gourlin ] * [14300b5] In multi-ceph az setup, add all keys to libvirt on all computes to allow cross-az attach in nova . [ Axel Jacquet ] * [ba772e2] add blacklist test in poc-test: volume: Work with check file in /etc and not in /tmp witch is rm after vms deletion --> need patch upstream * [5e59c0d] add blacklist test in poc-test: cinder old test: non determistic tests, random fail or succces * [2e53d0b] add blacklist test in poc-test: compute: Tiemout reached when snap is at 50%, works with increased value * [6adc8a9] add blacklist test in poc-test: compute: Tiemout reached for backup, works with increased value * [ec6b93d] add blacklist test in poc-test: compute: Timeout during upload image of shelving reached, shelve works fine * [4932961] Merge branch 'feat/vip6-support' into 'debian/caracal' feat: add virtual ipv6 address support and allow customization of nova host_subset_size See merge request openstack-team/debian/openstack-cluster-installer!65 * [8ecf9a3] add blacklist test in poc-test: compute: Timeout during shelving reachede . [ Simeon Gourlin ] * [eb36a0c] Merge branch 'fix/multi-az-cinder' into 'debian/caracal' fix: configure all availability_zones on all storage nodes See merge request openstack-team/debian/openstack-cluster-installer!66 . [ Thomas Goirand ] * [41252a1] Fix description for new v6 API cluster attributes. . [ Axel Jacquet ] * [8a75bfa] add option to set pci ports for vms: default 16: issue upstream https://review.opendev.org/c/openstack/nova/+/545034 . [ Simeon Gourlin ] * [07299ba] Don't create a default volume type in Ceph config . [ Thomas Goirand ] * [7c7f5a5] Correctly setup of Heat's trustee for when >= Yoga. * [e7cf4c6] oci-agent/oci-agent-report-status: Do not install racadm if server isn't from Dell. * [424ba18] swiftproxy_haproxy.pp: listen on both v4 and v6. * [4c3bb66] swiftproxy_haproxy.pp: listen on both v4 and v6 take 2. * [b310641] Add region_name when calling the main '::heat' class, so that region_name_for_services is automatically set. * [ebbf1ab] Merge branch 'feat/glance-http-proxy' into 'debian/caracal' Feat/glance http proxy See merge request openstack-team/debian/openstack-cluster-installer!67 * [382c0bb] Octavia: Set controller_worker/user_data_config_drive to true. * [0faae8b] controller.pp: provision /etc/oci/monitoring_openstack_api_region with the region_name in it. * [791b941] controller.pp: - Syntax error when setting controller_worker/user_data_config_drive for Octavia. - missing region_name for heat. * [582bf31] Swift auto mount block devices toggle See merge request openstack-team/debian/openstack-cluster-installer!68 . [ Simeon Gourlin ] * [69a42b9] Adding ResellerAdmin role to ceilometer to query Swift . [ Thomas Goirand ] * [30b73fc] Make puppet-module-rally as recommends rather than depends. * [f2c91ae] Move puppet-module-puppetlabs-cron-core, puppet-module-puppetlabs-mount-core to recommends. * [619d506] controller.pp: add /etc/oci/monitoring_pass_rabbitmq * [e73e531] Adding cinder region in nova properly * [5b0431d] Adding cookie for Horizon and multi-region * [2053ef3] Disable AODH debug logs * [2598756] Add the possibility to redirect /horizon to a custom redirection URL. * [f14f696] Do not set default_nameserver_{1,2} when calling '::horizon' before Victoria (the patch isn't there in the puppet module). * [9685f99] No limitreqbody in horizon before Victoria. * [ae192c1] Tweak glance proxy only if glance is installed. * [5483dc5] swiftproxy.pp: ::swift::proxy::symlink only appears in Victoria * [f2a6687] swiftproxy.pp: compat with train. * [2b3eab0] Add bookworm-dalmatian to etc/openstack-cluster-installer/pubkey.gpg * [b6854ad] Switch to Dalmatian. . [ Bertrand Lanson ] * [f87d764] fix: typo in heat trustee config . [ Thomas Goirand ] * [cbc62fe] src/variables.json: tabs instead of spaces. * [1155cdc] controller.pp: trustee/user_domain_name set twice. * [e80e805] regression fix: Whitelist compute + volume nodes in the controller iptables port 3306. * [8949b53] controller.pp: Configure Nova's max_instances_per_host which by default is set to a low "50". . [ Simeon Gourlin ] * [9859ee6] Fix messaging monitoring keystone url with extenal_keystone . [ Thomas Goirand ] * [7bf3936] Promote puppet-module-puppetlabs-cron-core and puppet-module-puppetlabs-mount-core as depends (from recommends). * [7d48a40] Also set default volume type when using OSDs on compute nodes See merge request openstack-team/debian/openstack-cluster-installer!70 * [2541251] controller_iptables.pp: allow access to rabbitmq. . [ Jim Scadden ] * [88134cb] Added support for ovs-bridge interfaces on nodes without a vm-net interface . [ Thomas Goirand ] * [3d595ef] cp .csr optional * [354d953] src/variables.json: Use swiftstore, not swiftobject as role. * [b58077c] messaging.pp: correctly set region_name for gnocchi authtoken. * [584adf2] Merge branch 'fix/haproxy-ipv6-listener' into 'debian/dalmatian' fix: enable ipv6 listener on haproxy if ipv6 vip is enabled See merge request openstack-team/debian/openstack-cluster-installer!72 * [8636033] oci-first-boot: check if /lib/systemd/system/mariadb.service exists before attempting to restart mysql. * [fe56ff2] sysctl.pp: Add net.ipv6.ip_nonlocal_bind, needed for the OpenStack API over v6. * [288ad6f] Fix syntax error. * [a293c1e] Merge branch 'fix/libvirt-restart-issue' into 'debian/dalmatian' fix: libvirtd restarting every 30 minutes on compute nodes See merge request openstack-team/debian/openstack-cluster-installer!73 * [5fd59eb] Fixed versioned_writes and symlink pipeline stuff. * [6f4d683] Add a unic key in the passwd table. * [046e21e] Do not call swift::proxy::versioned_writes twice. * [bf5c03c] Promote puppet-module-rally as depens: as it is otherwise breaking CI. * [e731fc8] Use Glance without UWSGI, and do re-encryption with haproxy. * [49385fb] Fix glancecrypt backend path for glance.pem * [d3d81e7] Configure apache until end before attempting to configure haproxy, so they don't step on each-other's foot, both binding on port 80. * [7b4623e] Do not schedule haproxy before apache. * [6e756d1] Sleep 1 sec instead of 2 when spawning oci-poc-vms. * [e54e044] Better scheduling of controllers. * [8174fc1] Unfuck the puppet scheduling for all-in-one controllers. * [8f50f93] Dalmatian tempest blacklist. * [5050e73] Edit README.md for the PoC. * [d41c3ee] More doc for the PoC. * [d597bba] Document MY_IP in ikvswitch.conf. * [8d3ee1d] Document using an HTTP proxy for the PoC. * [3ef3b6b] Document host ssh to VMs in the PoC. * [121287a] Fix using chrony puppet module 3.x on bullseye. * [dd967fe] Always re-encrypt glance. * [1a2a73e] oci-cluster-upgrade-openstack-release: Do not attempt keystone upgrade if external. * [5dd8094] cluster-upgrade: check if components are present before doing upgrades. * [3de95a5] controller.pp: Fix heat::trustee for yoga and up, and cloudkitty coordination url too. * [eb0073f] Check the location of the VIP before upgrade. It *must* be on the controller where drains are performed. * [840eabc] exclude.conf: blacklist 5 more tests explaining why. * [3b7b877] PoC: reduce reserved memory and disk. * [6b26075] controller.pp Calling ::cloudkitty::storage before ::cloudkitty * [7c317fe] Also displaying passwords of type messaging. * [d73c111] Do not use transport_url = '', but undef instead. * [7d77219] controller.pp: remove enabled_certificate_plugins when calling ::barbican::api. What we do is the default in Victoria, and it's remove later on, so removing the param is the easiest way. * [2015bb5] Get controller.pp to work with Dalmatian. * [0bb066f] Removed amqp_sasl_mechanisms = 'PLAIN' everywhere: we're using rabbit/kombu, not amqp. * [784ba6b] compute.pp: Fix the cpu_models param of ::nova::compute::libvirt for Dalmatian. * [79ded48] swiftproxy and swiftstore: do not define config_file_path, as we're using the default, and in Dalmatian and up this param is gone. * [a65eeb8] PoC: Since it's often breaking, try multiple times to spam VMs with oci-poc-vms start * [5642f2c] PoC: Switch back to sleep 2s (and not 1) when spawning VMs. * [e50da15] Handle failure to spawn VMs. * [c405938] oci-fixup-compute-node: do not attempt to read /etc/nova/secret.xml, as this is handled in puppet. * [ef3d942] puppet.conf: increaste runtimeout to 2h instead of 1. * [f573828] Fix secret.xml with puppet and Dalmatian, using epp instead of erb. * [6ff69a9] Make tempest work with Dalmatian. Checksums-Sha1: 9642a34e4ca66f0c84ccd821b01b780377c06a6c 48936 openstack-cluster-installer-agent_43.0.0_all.deb 90b5b36ebca8a6472842a9f489b3abba565653c2 65680 openstack-cluster-installer-cli_43.0.0_all.deb fb17f12b94de5995c2a09fe532d46dac813a6624 51432 openstack-cluster-installer-common_43.0.0_all.deb b2ab2d480dc0887864b0bba2f4b9e398934fe267 55108 openstack-cluster-installer-live-image-builder_43.0.0_all.deb 5f18853d0b5b10874dcfecd4c5d3b9762011eb81 43840 openstack-cluster-installer-openstack-ci_43.0.0_all.deb 5ec8502d2ed000fd179f3e03566a58fa81c9737a 73192 openstack-cluster-installer-poc_43.0.0_all.deb ca890d5de82cb63d254b1e3caee96b7b262ff496 60608 openstack-cluster-installer-utils_43.0.0_all.deb 16e19c4e6514ca4b7819333774ccef1f7f55947a 259176 openstack-cluster-installer_43.0.0_all.deb f648d249d4da1135ba96316863189d1a60d08741 8360 openstack-cluster-installer_43.0.0_arm64.buildinfo 61b6779b0d412b66e985ae9f35e54705d911f076 116376 puppet-module-oci_43.0.0_all.deb Checksums-Sha256: ab1d72e7c474dd63027e09b5b96da20b07067f5febb82351018978555fa4d3ab 48936 openstack-cluster-installer-agent_43.0.0_all.deb 29ed14c4b177f3cfa6fc272e5b31d6774ba296bc1fd96f873e5bf0c0d24ffcf3 65680 openstack-cluster-installer-cli_43.0.0_all.deb 9cf1c07bd4f0a832775054cbfebb085782430e827a9b007d6b6f7ffa623e528b 51432 openstack-cluster-installer-common_43.0.0_all.deb 7c82d9defc77a2c0b14c2570a75554f37e172ac8da3a05a8fa3ecc03a5521d09 55108 openstack-cluster-installer-live-image-builder_43.0.0_all.deb c9a30f81f4408ecd1b2aa9bc643fa65bb21e333d7297070eea39210b941e8081 43840 openstack-cluster-installer-openstack-ci_43.0.0_all.deb ba3606b9f13cae2c5dfa9d5f430a68e8fb002f2ef2c2c1f7289f3e55b92faaf0 73192 openstack-cluster-installer-poc_43.0.0_all.deb b280ec3696521307715c2aea6863d7d70e96792ab59e5c21c510d1c7c42c2ff6 60608 openstack-cluster-installer-utils_43.0.0_all.deb a2e41c6415fa44e2127f219f6aa5e081d8a96b975c0292c5d8e8fc17e16e9205 259176 openstack-cluster-installer_43.0.0_all.deb ce49a24821029ec4bf778aa6db13a3d6f3bc8a9cd2db24ce27bd6aa66d53041f 8360 openstack-cluster-installer_43.0.0_arm64.buildinfo be7db2a30a9058b69a44e9c9704c517ad961f5612fb10cf6b125f8b9bd326103 116376 puppet-module-oci_43.0.0_all.deb Files: da247f63f2753ad574e5ff0cf48197d3 48936 net optional openstack-cluster-installer-agent_43.0.0_all.deb ecc65f947817971ad51be9282e5f9649 65680 net optional openstack-cluster-installer-cli_43.0.0_all.deb ee7d92b8686e18510eca3ee740343648 51432 net optional openstack-cluster-installer-common_43.0.0_all.deb e127a4c25588e147af36a5843cd89490 55108 net optional openstack-cluster-installer-live-image-builder_43.0.0_all.deb 548a2217165bccf3fb05c0574b5c3a68 43840 net optional openstack-cluster-installer-openstack-ci_43.0.0_all.deb 638858410288e498ba711bacd429fbe0 73192 net optional openstack-cluster-installer-poc_43.0.0_all.deb 96696f928c0dd1d8f613b121b16fc315 60608 net optional openstack-cluster-installer-utils_43.0.0_all.deb 8bdaca8e568a8b3e787027f577d62ac9 259176 net optional openstack-cluster-installer_43.0.0_all.deb 9f075c03e50abd18d37b34757f44a892 8360 net optional openstack-cluster-installer_43.0.0_arm64.buildinfo fdf65df605ef1796e35a99f6a53e32f7 116376 net optional puppet-module-oci_43.0.0_all.deb