Re: [Gluster-infra] Download.gluster.org 27 April 2016 postmortem

2016-04-28 Thread Amye Scavarda
On Thu, Apr 28, 2016 at 12:55 AM, Niels de Vos  wrote:

> On Wed, Apr 27, 2016 at 01:54:10PM -0700, Amye Scavarda wrote:
> > On Wed, Apr 27, 2016 at 10:24 AM, Mike Hulsman  wrote:
> >
> > >
> > > Quoting Kaushal M :
> > >
> > > On Wed, Apr 27, 2016 at 5:21 PM, Michael Scherer 
> > >> wrote:
> > >>
> > >>> Le mercredi 27 avril 2016 à 14:39 +0300, Eyal Edri a écrit :
> > >>>
> >  Excellent post-mortem!
> > 
> >  Do you think its worth adding mirrors to gluster repos like oVirt is
> >  doing?
> >  [1]
> > 
> >  [1]
> > 
> http://ovirt-infra-docs.readthedocs.org/en/latest/General/Mirror.html
> > 
> > >>>
> > >>> That could be a solution.
> > >>>
> > >>> But we have the ressources to host a mirror ourself in the DC, it
> just
> > >>> need a ip address, and a migration of servers (which is taking a
> awful
> > >>> lot of time to happen :/ ).
> > >>>
> > >>> One issue we would have with a mirror is on the download stats.
> > >>>
> > >>> This and the need to have a mirrorlist, not sure how that's done on
> > >>> dnf/yum side theses days.
> > >>>
> > >>>
> > >> Someone recently offered to mirror download.gluster.org (I need to
> dig
> > >> archives to find out who exactly). Didn't we take up their offer?
> > >>
> > > I offered to mirror gluster to ftp.nluug.nl
> > > We already mirror Ovirt for a while, and are happy to setup a mirror
> for
> > > gluster.
> > > Our bandwidth is 10Gb, and we are located in Amsterdam, the
> netherlands.
> > > I am happy to setup a mirror.
> > >
> > > Mike Hulsman
> > >
> > >
> > >>
> > >>> --
> > >>> Michael Scherer
> > >>> Sysadmin, Community Infrastructure and Platform, OSAS
> > >>>
> > >>>
> > I've reached out to our metrics team to see what happens to our download
> > metrics if we have a mirror, as being able to have accurate project
> metrics
> > is pretty important.
> >
> > I'll let you know what solution they come up with and we'll move forward
> > from there.
>
> We already provide Gluster RPMs in many different distributions. For all
> I know, we do not have access to statistics from most of them. Just to
> list the ones that I can think of immediately: Fedora, CentOS Storage
> SIG, Debian, Ubuntu LaunchPad, Arch, NetBSD port, FreeBSD port.
>
> And then there are several cloud providers with their own caching
> proxies and internal mirrors...
>
> How accurate could our download statistics be?
>
> Niels
>

This isn't a question about RPMs, this is about what we're providing
directly from download.gluster.org.

However, if we can get apache logs from the mirror connected to Bitergia's
dashboards, that will work, they don't have a problem with adding in
another apache log.
- amye

-- 
Amye Scavarda | a...@redhat.com | Gluster Community Lead
___
Infra mailing list
Infra@ovirt.org
http://lists.ovirt.org/mailman/listinfo/infra


Re: [Gluster-infra] Download.gluster.org 27 April 2016 postmortem

2016-04-28 Thread Niels de Vos
On Wed, Apr 27, 2016 at 01:54:10PM -0700, Amye Scavarda wrote:
> On Wed, Apr 27, 2016 at 10:24 AM, Mike Hulsman  wrote:
> 
> >
> > Quoting Kaushal M :
> >
> > On Wed, Apr 27, 2016 at 5:21 PM, Michael Scherer 
> >> wrote:
> >>
> >>> Le mercredi 27 avril 2016 à 14:39 +0300, Eyal Edri a écrit :
> >>>
>  Excellent post-mortem!
> 
>  Do you think its worth adding mirrors to gluster repos like oVirt is
>  doing?
>  [1]
> 
>  [1]
>  http://ovirt-infra-docs.readthedocs.org/en/latest/General/Mirror.html
> 
> >>>
> >>> That could be a solution.
> >>>
> >>> But we have the ressources to host a mirror ourself in the DC, it just
> >>> need a ip address, and a migration of servers (which is taking a awful
> >>> lot of time to happen :/ ).
> >>>
> >>> One issue we would have with a mirror is on the download stats.
> >>>
> >>> This and the need to have a mirrorlist, not sure how that's done on
> >>> dnf/yum side theses days.
> >>>
> >>>
> >> Someone recently offered to mirror download.gluster.org (I need to dig
> >> archives to find out who exactly). Didn't we take up their offer?
> >>
> > I offered to mirror gluster to ftp.nluug.nl
> > We already mirror Ovirt for a while, and are happy to setup a mirror for
> > gluster.
> > Our bandwidth is 10Gb, and we are located in Amsterdam, the netherlands.
> > I am happy to setup a mirror.
> >
> > Mike Hulsman
> >
> >
> >>
> >>> --
> >>> Michael Scherer
> >>> Sysadmin, Community Infrastructure and Platform, OSAS
> >>>
> >>>
> I've reached out to our metrics team to see what happens to our download
> metrics if we have a mirror, as being able to have accurate project metrics
> is pretty important.
> 
> I'll let you know what solution they come up with and we'll move forward
> from there.

We already provide Gluster RPMs in many different distributions. For all
I know, we do not have access to statistics from most of them. Just to
list the ones that I can think of immediately: Fedora, CentOS Storage
SIG, Debian, Ubuntu LaunchPad, Arch, NetBSD port, FreeBSD port.

And then there are several cloud providers with their own caching
proxies and internal mirrors...

How accurate could our download statistics be?

Niels


signature.asc
Description: PGP signature
___
Infra mailing list
Infra@ovirt.org
http://lists.ovirt.org/mailman/listinfo/infra


Re: [Gluster-infra] Download.gluster.org 27 April 2016 postmortem

2016-04-27 Thread Amye Scavarda
On Wed, Apr 27, 2016 at 10:24 AM, Mike Hulsman  wrote:

>
> Quoting Kaushal M :
>
> On Wed, Apr 27, 2016 at 5:21 PM, Michael Scherer 
>> wrote:
>>
>>> Le mercredi 27 avril 2016 à 14:39 +0300, Eyal Edri a écrit :
>>>
 Excellent post-mortem!

 Do you think its worth adding mirrors to gluster repos like oVirt is
 doing?
 [1]

 [1]
 http://ovirt-infra-docs.readthedocs.org/en/latest/General/Mirror.html

>>>
>>> That could be a solution.
>>>
>>> But we have the ressources to host a mirror ourself in the DC, it just
>>> need a ip address, and a migration of servers (which is taking a awful
>>> lot of time to happen :/ ).
>>>
>>> One issue we would have with a mirror is on the download stats.
>>>
>>> This and the need to have a mirrorlist, not sure how that's done on
>>> dnf/yum side theses days.
>>>
>>>
>> Someone recently offered to mirror download.gluster.org (I need to dig
>> archives to find out who exactly). Didn't we take up their offer?
>>
> I offered to mirror gluster to ftp.nluug.nl
> We already mirror Ovirt for a while, and are happy to setup a mirror for
> gluster.
> Our bandwidth is 10Gb, and we are located in Amsterdam, the netherlands.
> I am happy to setup a mirror.
>
> Mike Hulsman
>
>
>>
>>> --
>>> Michael Scherer
>>> Sysadmin, Community Infrastructure and Platform, OSAS
>>>
>>>
I've reached out to our metrics team to see what happens to our download
metrics if we have a mirror, as being able to have accurate project metrics
is pretty important.

I'll let you know what solution they come up with and we'll move forward
from there.

- amye

-- 
Amye Scavarda | a...@redhat.com | Gluster Community Lead
___
Infra mailing list
Infra@ovirt.org
http://lists.ovirt.org/mailman/listinfo/infra


Re: Download.gluster.org 27 April 2016 postmortem

2016-04-27 Thread Michael Scherer
Le mercredi 27 avril 2016 à 14:39 +0300, Eyal Edri a écrit :
> Excellent post-mortem!
> 
> Do you think its worth adding mirrors to gluster repos like oVirt is doing?
> [1]
> 
> [1] http://ovirt-infra-docs.readthedocs.org/en/latest/General/Mirror.html

That could be a solution. 

But we have the ressources to host a mirror ourself in the DC, it just
need a ip address, and a migration of servers (which is taking a awful
lot of time to happen :/ ).

One issue we would have with a mirror is on the download stats. 

This and the need to have a mirrorlist, not sure how that's done on
dnf/yum side theses days.


-- 
Michael Scherer
Sysadmin, Community Infrastructure and Platform, OSAS




signature.asc
Description: This is a digitally signed message part
___
Infra mailing list
Infra@ovirt.org
http://lists.ovirt.org/mailman/listinfo/infra


Re: Download.gluster.org 27 April 2016 postmortem

2016-04-27 Thread Eyal Edri
Excellent post-mortem!

Do you think its worth adding mirrors to gluster repos like oVirt is doing?
[1]

[1] http://ovirt-infra-docs.readthedocs.org/en/latest/General/Mirror.html

On Wed, Apr 27, 2016 at 1:56 PM, Michael Scherer 
wrote:

> Hi,
>
> as promised, here is the post-mortem of the incident, if you would like
> to see more information, or any remarks, please do not hesitate, since
> that's the first attempt at it we do.
>
> I modelled it based on the example of
> http://shop.oreilly.com/product/0636920041528.do, as that the book I am
> reading at the moment (Appendix D). We will formalize that later.
>
>
>
> Download.gluster.org was not serving file
> Date: 2016-04-27
> Participating people:
>  - misc
>
> Summary:
>
> Download.gluster.org http server was showing error 403 for all url,
> which did impact ovirt jenkins jobs, and users using the repository,
> among others. The server is used to distribute gluster rpms.
>
> Impact:
> - ovirt CI jobs got blocked
> - user couldn't install gluster
>
> Root cause:
> the underlying block device on rackspace was down for a undiagnosed
> reason, triggering xfs error on the server and thus 403 on the http
> level.
>
> the root cause of the block device error is for still unknown, no error
> have been seen on the rackspace status page for this DC. A ticket was
> opened with rackspace to see what was going on (160427-iad-814), a
> follow up of this post-mortem will be done if the ticket say something
> more than "shit happens".
>
> Resolution:
>
> The whole server was rebooted, and upon reboot, the block device came
> back.
>
> Lessons learned:
> - what went well:
>   - people notified the admin quickly on irc and on gluster-infra
>
> - when we were lucky
>   - the server and block device came back immediately
>   - it failed during business hours of EMEA with misc being on irc (just
> arrived at the office)
>
>
> - what went bad
>   - we do not have proper HA for the service
>   - we do not have automated monitoring for it
>   - the setup is using 2 blocks device of 120G in lvm, thus making it
> twice as risky to fail
>
> Timeline (in UTC)
> - 05:39 first error message in the log about XFS error
> - 08:41 misc is pinged on irc
> - 08:56 misc ack and diagnose the issue
> - 09:00 the server and service is back to normal
> - 09:00 first mail about the problem hit gluster-infra
>
>
> Potential improvement to make:
> - add monitoring on gluster side
> - use the centos sig repo on ovirt side
> - add more sysadmin for gluster
> - add a redundant service for that
>   - a 2nd download server with a shared gluster backend
> - migrate the storage to a proper setup with 1 single block device,
> rather than 2.
>
>
> --
> Michael Scherer
> Sysadmin, Community Infrastructure and Platform, OSAS
>
>
>
> ___
> Infra mailing list
> Infra@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/infra
>
>


-- 
Eyal Edri
Associate Manager
RHEV DevOps
EMEA ENG Virtualization R
Red Hat Israel

phone: +972-9-7692018
irc: eedri (on #tlv #rhev-dev #rhev-integ)
___
Infra mailing list
Infra@ovirt.org
http://lists.ovirt.org/mailman/listinfo/infra


Download.gluster.org 27 April 2016 postmortem

2016-04-27 Thread Michael Scherer
Hi,

as promised, here is the post-mortem of the incident, if you would like
to see more information, or any remarks, please do not hesitate, since
that's the first attempt at it we do.

I modelled it based on the example of
http://shop.oreilly.com/product/0636920041528.do, as that the book I am
reading at the moment (Appendix D). We will formalize that later.



Download.gluster.org was not serving file
Date: 2016-04-27
Participating people:
 - misc

Summary:

Download.gluster.org http server was showing error 403 for all url,
which did impact ovirt jenkins jobs, and users using the repository,
among others. The server is used to distribute gluster rpms.

Impact:
- ovirt CI jobs got blocked
- user couldn't install gluster

Root cause:
the underlying block device on rackspace was down for a undiagnosed
reason, triggering xfs error on the server and thus 403 on the http
level.

the root cause of the block device error is for still unknown, no error
have been seen on the rackspace status page for this DC. A ticket was
opened with rackspace to see what was going on (160427-iad-814), a
follow up of this post-mortem will be done if the ticket say something
more than "shit happens".

Resolution:

The whole server was rebooted, and upon reboot, the block device came
back.

Lessons learned:
- what went well:
  - people notified the admin quickly on irc and on gluster-infra

- when we were lucky
  - the server and block device came back immediately
  - it failed during business hours of EMEA with misc being on irc (just
arrived at the office)


- what went bad
  - we do not have proper HA for the service
  - we do not have automated monitoring for it
  - the setup is using 2 blocks device of 120G in lvm, thus making it
twice as risky to fail

Timeline (in UTC)
- 05:39 first error message in the log about XFS error
- 08:41 misc is pinged on irc
- 08:56 misc ack and diagnose the issue
- 09:00 the server and service is back to normal
- 09:00 first mail about the problem hit gluster-infra
 

Potential improvement to make:
- add monitoring on gluster side
- use the centos sig repo on ovirt side
- add more sysadmin for gluster
- add a redundant service for that
  - a 2nd download server with a shared gluster backend
- migrate the storage to a proper setup with 1 single block device,
rather than 2.


-- 
Michael Scherer
Sysadmin, Community Infrastructure and Platform, OSAS




signature.asc
Description: This is a digitally signed message part
___
Infra mailing list
Infra@ovirt.org
http://lists.ovirt.org/mailman/listinfo/infra