Re: Unable to remove or modify VPC
Looks like a bug to me. Please open a bug in https://issues.apache.org/ On Tue, Apr 7, 2015 at 1:57 AM, Grayson Head gray...@graysonhead.net wrote: One of my coworkers has created a VPC that we are unable to modify or remove. The coworker said he was testing the site-to-site VPN functionality, and ended up having to create a seperate VPC instance to get it working. Now we are unable to remove this VPC instance using the web interface or the API. I suspect based on the log outputs that the site-to-site VPN is what is causing this problem, but the VPC shows that it doesn't have any site-to-site connections configured. The VPC still has one external IP address allocated to it, which I think was the one he was using as the VPN gateway. I am also unable to remove this IP address, it fails with an internal server error. The following is the management-server.log when attempting to release this IP address. 2015-04-06 13:18:42,427 INFO [o.a.c.f.j.i.AsyncJobMonitor] (API-Job-Executor-96:ctx-428fa98b job-6262) Add job-6262 into job monitoring 2015-04-06 13:18:42,427 DEBUG [o.a.c.f.j.i.AsyncJobManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262) Executing AsyncJobVO {id:6262, userId: 3, accountId: 3, instanceType: IpAddress, instanceId: 9, cmd: org.apache.cloudstack.api.command.user.address.DisassociateIPAddrCmd, cmdInfo: {response:json,id:3d2205a4-41e9-4cf7-9261-d1ae63ce863f,sessionkey:gSf69NNJJZ0SzrIEz1fwOQJpRTo\u003d,ctxDetails:{\com.cloud.network.IpAddress\:\3d2205a4-41e9-4cf7-9261-d1ae63ce863f\},cmdEventType:NET.IPRELEASE,ctxUserId:3,httpmethod:GET,_:1428351522388,uuid:3d2205a4-41e9-4cf7-9261-d1ae63ce863f,ctxAccountId:3,ctxStartEventId:7705}, cmdVersion: 0, status: IN_PROGRESS, processStatus: 0, resultCode: 0, result: null, initMsid: 345050016868, completeMsid: null, lastUpdated: null, lastPolled: null, created: null} 2015-04-06 13:18:42,427 DEBUG [c.c.a.ApiServlet] (catalina-exec-14:ctx-91e999f7 ctx-49efc96a) ===END=== 10.233.51.176 -- GET command=disassociateIpAddressresponse=jsonsessionkey=gSf69NNJJZ0SzrIEz1fwOQJpRTo%3Did=3d2205a4-41e9-4cf7-9261-d1ae63ce863f_=1428351522388 2015-04-06 13:18:42,451 DEBUG [c.c.n.IpAddressManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Revoking all Firewallrules as a part of public IP id=9 release... 2015-04-06 13:18:42,462 DEBUG [c.c.n.f.FirewallManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Releasing 0 firewall rules for ip id=9 2015-04-06 13:18:42,464 DEBUG [c.c.n.f.FirewallManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) There are no firewall rules to apply 2015-04-06 13:18:42,466 DEBUG [c.c.n.f.FirewallManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Successfully released firewall rules for ip id=9 and # of rules now = 0 2015-04-06 13:18:42,475 DEBUG [c.c.n.IpAddressManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Revoking all PortForwarding/StaticNat rules as a part of public IP id=9 release... 2015-04-06 13:18:42,477 DEBUG [c.c.n.r.RulesManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Releasing 0 port forwarding rules for ip id=9 2015-04-06 13:18:42,478 DEBUG [c.c.n.r.RulesManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Releasing 0 static nat rules for ip id=9 2015-04-06 13:18:42,480 DEBUG [c.c.n.r.RulesManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) There are no port forwarding rules to apply for ip id=9 2015-04-06 13:18:42,482 DEBUG [c.c.n.r.RulesManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) There are no static nat rules to apply for ip id=9 2015-04-06 13:18:42,483 DEBUG [c.c.n.r.RulesManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Source ip id=Ip[66.194.167.148-1] is not one to one nat 2015-04-06 13:18:42,487 DEBUG [c.c.n.r.RulesManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Successfully released rules for ip id=9 and # of rules now = 0 2015-04-06 13:18:42,487 DEBUG [c.c.n.IpAddressManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Revoking all LoadBalancing rules as a part of public IP id=9 release... 2015-04-06 13:18:42,488 DEBUG [c.c.n.l.LoadBalancingRulesManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Found 0 lb rules to cleanup 2015-04-06 13:18:42,488 DEBUG [c.c.n.IpAddressManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Cleaning up remote access vpns as a part of public IP id=9 release... 2015-04-06 13:18:42,523 ERROR [c.c.a.ApiAsyncJobDispatcher] (API-Job-Executor-96:ctx-428fa98b job-6262) Unexpected exception while executing org.apache.cloudstack.api.command.user.address.DisassociateIPAddrCmd java.lang.NullPointerException at com.cloud.network.NetworkModelImpl.getPhysicalNetworkId(NetworkModelImpl.java:1374) at
不能删除网络
大家好,我发现我的网络配置错了,就在面板里面删除网络,但是报错,请帮忙看下可以从哪里开始排除 [cid:_Foxmail.1@81785fd5-f64b-3d01-2470-700e85989501] [cid:_Foxmail.1@d99df21c-dd13-1190-3552-0d32dcec39c0] [cid:_Foxmail.1@cd307178-371b-d8fb-f236-c26f738ccce5] 张能钦
Cloudstack 4.5.1 and usage service
Hello, I recently installed Cloudstack 4.5.1 from jenkins. The operating system for management system is Centos 6.6 x64 Then, I also installed usage server and started the service. After that I found out that the service actually is down and can't be started. I checked out error log for usage server and there was plenty of exceptions. I haven't enabled any encryption, or other fancy stuff. Any ideas how to fix this ? java.lang.reflect.InvocationTargetException at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method) at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:57) at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:43) at java.lang.reflect.Method.invoke(Method.java:606) at org.apache.commons.daemon.support.DaemonLoader.start(DaemonLoader.java:243) Caused by: org.springframework.beans.factory.BeanCreationException: Error creating bean with name 'portForwardingUsageParser': Injection of autowired dependencies failed; nested exception is org.springframework.beans.factory.BeanCreationException: Could not autowire field: private com.cloud.usage.dao.UsageDao com.cloud.usage.parser.PortForwardingUsageParser._usageDao; nested exception is org.springframework.beans.factory.BeanCreationException: Error creating bean with name 'usageDaoImpl' defined in URL [jar:file:/usr/share/cloudstack-usage/lib/cloud-engine-schema-4.5.1-SNAPSHOT.jar!/com/cloud/usage/dao/UsageDaoImpl.class]: BeanPostProcessor before instantiation of bean failed; nested exception is net.sf.cglib.core.CodeGenerationException: java.lang.ExceptionInInitializerError--null at org.springframework.beans.factory.annotation.AutowiredAnnotationBeanPostProcessor.postProcessPropertyValues(AutowiredAnnotationBeanPostProcessor.java:288) at org.springframework.beans.factory.support.AbstractAutowireCapableBeanFactory.populateBean(AbstractAutowireCapableBeanFactory.java:1116) at org.springframework.beans.factory.support.AbstractAutowireCapableBeanFactory.doCreateBean(AbstractAutowireCapableBeanFactory.java:519) at org.springframework.beans.factory.support.AbstractAutowireCapableBeanFactory.createBean(AbstractAutowireCapableBeanFactory.java:458) at org.springframework.beans.factory.support.AbstractBeanFactory$1.getObject(AbstractBeanFactory.java:295) at org.springframework.beans.factory.support.DefaultSingletonBeanRegistry.getSingleton(DefaultSingletonBeanRegistry.java:223) at org.springframework.beans.factory.support.AbstractBeanFactory.doGetBean(AbstractBeanFactory.java:292) at org.springframework.beans.factory.support.AbstractBeanFactory.getBean(AbstractBeanFactory.java:194) at org.springframework.beans.factory.support.DefaultListableBeanFactory.preInstantiateSingletons(DefaultListableBeanFactory.java:628) at org.springframework.context.support.AbstractApplicationContext.finishBeanFactoryInitialization(AbstractApplicationContext.java:932) at org.springframework.context.support.AbstractApplicationContext.refresh(AbstractApplicationContext.java:479) at org.springframework.context.support.ClassPathXmlApplicationContext.init(ClassPathXmlApplicationContext.java:139) at org.springframework.context.support.ClassPathXmlApplicationContext.init(ClassPathXmlApplicationContext.java:83) at com.cloud.usage.UsageServer.start(UsageServer.java:58) ... 5 more Caused by: org.springframework.beans.factory.BeanCreationException: Could not autowire field: private com.cloud.usage.dao.UsageDao com.cloud.usage.parser.PortForwardingUsageParser._usageDao; nested exception is org.springframework.beans.factory.BeanCreationException: Error creating bean with name 'usageDaoImpl' defined in URL [jar:file:/usr/share/cloudstack-usage/lib/cloud-engine-schema-4.5.1-SNAPSHOT.jar!/com/cloud/usage/dao/UsageDaoImpl.class]: BeanPostProcessor before instantiation of bean failed; nested exception is net.sf.cglib.core.CodeGenerationException: java.lang.ExceptionInInitializerError--null at org.springframework.beans.factory.annotation.AutowiredAnnotationBeanPostProcessor$AutowiredFieldElement.inject(AutowiredAnnotationBeanPostProcessor.java:514) at org.springframework.beans.factory.annotation.InjectionMetadata.inject(InjectionMetadata.java:87) at org.springframework.beans.factory.annotation.AutowiredAnnotationBeanPostProcessor.postProcessPropertyValues(AutowiredAnnotationBeanPostProcessor.java:285) ... 18 more Caused by: org.springframework.beans.factory.BeanCreationException: Error creating bean with name 'usageDaoImpl' defined in URL [jar:file:/usr/share/cloudstack-usage/lib/cloud-engine-schema-4.5.1-SNAPSHOT.jar!/com/cloud/usage/dao/UsageDaoImpl.class]: BeanPostProcessor before instantiation of bean failed; nested exception is net.sf.cglib.core.CodeGenerationException: java.lang.ExceptionInInitializerError--null at
Re: ACS database on Galera/Percona XtraDB cluster
Andrija, I've run ACS on MariaDB+Galera at some point without any issues. I no longer run that setup, but it's not because of any problems. This is also a good read on the subject, some handy tips there: http://www.severalnines.com/blog/how-deploy-high-availability-cloudstackcloudplatform-mariadb-galera-cluster Lucian -- Sent from the Delta quadrant using Borg technology! Nux! www.nux.ro - Original Message - From: Andrija Panic andrija.pa...@gmail.com To: users@cloudstack.apache.org, d...@cloudstack.apache.org Sent: Tuesday, 7 April, 2015 09:39:48 Subject: ACS database on Galera/Percona XtraDB cluster Hi folks, wondering if anyone is running ACS databases on Galera cluster ? I see some MEMORY tables on my standalone installation, and the rest seems like InnoDB, so wondering if anyone can confirm this runs fine on Galera ? THanks, -- Andrija Panić
volume download link will not be deleted
Hi, we are using CS 4.3.0.2 and I think we found a bug. 1. Create a volume out of a snapshot 2. Extract (download) the volume via UI 3. Delete volume If you do this the garbage collector will not delete the symlink on secondary storage in /var/www/html/userdata/ If you do not delete the volume before the garbage collector time the symlink will be removed! Is this a known bug? Can somebody test this on CS 4.5.1? Thank you for your help! Mit freundlichen Grüßen / With kind regards, Swen Brüseke - proIO GmbH - Geschäftsführer: Swen Brüseke Sitz der Gesellschaft: Frankfurt am Main USt-IdNr. DE 267 075 918 Registergericht: Frankfurt am Main - HRB 86239 Diese E-Mail enthält vertrauliche und/oder rechtlich geschützte Informationen. Wenn Sie nicht der richtige Adressat sind oder diese E-Mail irrtümlich erhalten haben, informieren Sie bitte sofort den Absender und vernichten Sie diese Mail. Das unerlaubte Kopieren sowie die unbefugte Weitergabe dieser Mail sind nicht gestattet. This e-mail may contain confidential and/or privileged information. If you are not the intended recipient (or have received this e-mail in error) please notify the sender immediately and destroy this e-mail. Any unauthorized copying, disclosure or distribution of the material in this e-mail is strictly forbidden.
RE: problem creating instance from template
Anyone have clue on this ? /Sonali -Original Message- From: Sonali Jadhav [mailto:son...@servercentralen.se] Sent: Monday, April 6, 2015 5:18 PM To: users@cloudstack.apache.org Subject: RE: problem creating instance from template Hi Prashant, 1 - Yeha actually I noticed that, I am not able to create any new VMs from any other template. I just tried creating one Ubuntu instance , got this error in logs, 2015-04-06 13:12:25,300 ERROR [c.c.v.VmWorkJobDispatcher] (Work-Job-Executor-27:ctx-149fc40a job-2588/job-2589) Unable to complete AsyncJobVO {id:2589, userId: 2, accountId: 2, instanceType: null, instanceId: null, cmd: com.cloud.vm.VmWorkStart, cmdInfo: rO0ABXNyABhjb20uY2xvdWQudm0uVm1Xb3JrU3RhcnR9cMGsvxz73gIAC0oABGRjSWRMAAZhdm9pZHN0ADBMY29tL2Nsb3VkL2RlcGxveS9EZXBsb3ltZW50UGxhbm5lciRFeGNsdWRlTGlzdDtMAAljbHVzdGVySWR0ABBMamF2YS9sYW5nL0xvbmc7TAAGaG9zdElkcQB-AAJMAAtqb3VybmFsTmFtZXQAEkxqYXZhL2xhbmcvU3RyaW5nO0wAEXBoeXNpY2FsTmV0d29ya0lkcQB-AAJMAAdwbGFubmVycQB-AANMAAVwb2RJZHEAfgACTAAGcG9vbElkcQB-AAJMAAlyYXdQYXJhbXN0AA9MamF2YS91dGlsL01hcDtMAA1yZXNlcnZhdGlvbklkcQB-AAN4cgATY29tLmNsb3VkLnZtLlZtV29ya5-ZtlbwJWdrAgAESgAJYWNjb3VudElkSgAGdXNlcklkSgAEdm1JZEwAC2hhbmRsZXJOYW1lcQB-AAN4cAACAAIAQ3QAGVZpcnR1YWxNYWNoaW5lTWFuYWdlckltcGwAAXBzcgAOamF2YS5sYW5nLkxvbmc7i-SQzI8j3wIAAUoABXZhbHVleHIAEGphdmEubGFuZy5OdW1iZXKGrJUdC5TgiwIAAHhwAAFxAH4ACnBwcHEAfgAKcHNyABFqYXZhLnV0aWwuSGFzaE1hcAUH2sHDFmDRAwACRgAKbG9hZEZhY3RvckkACXRocmVzaG9sZHhwP0x3CBABdAAKVm1QYXNzd29yZHQAHHJPMEFCWFFBRG5OaGRtVmtYM0JoYzNOM2IzSmt4cA, cmdVersion: 0, status: IN_PROGRESS, processStatus: 0, resultCode: 0, result: null, initMsid: 59778234354585, completeMsid: null, lastUpdated: null, lastPolled: null, created: Mon Apr 06 13:12:13 CEST 2015}, job origin:2588 com.cloud.exception.InsufficientServerCapacityException: Unable to create a deployment for VM[User|i-2-67-VM]Scope=interface com.cloud.dc.DataCenter; id=1 at com.cloud.vm.VirtualMachineManagerImpl.orchestrateStart(VirtualMachineManagerImpl.java:947) at com.cloud.vm.VirtualMachineManagerImpl.orchestrateStart(VirtualMachineManagerImpl.java:5195) at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method) at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:57) at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:43) at java.lang.reflect.Method.invoke(Method.java:606) at com.cloud.vm.VmWorkJobHandlerProxy.handleVmWorkJob(VmWorkJobHandlerProxy.java:107) at com.cloud.vm.VirtualMachineManagerImpl.handleVmWorkJob(VirtualMachineManagerImpl.java:5340) at com.cloud.vm.VmWorkJobDispatcher.runJob(VmWorkJobDispatcher.java:102) at org.apache.cloudstack.framework.jobs.impl.AsyncJobManagerImpl$5.runInContext(AsyncJobManagerImpl.java:503) at org.apache.cloudstack.managed.context.ManagedContextRunnable$1.run(ManagedContextRunnable.java:49) at org.apache.cloudstack.managed.context.impl.DefaultManagedContext$1.call(DefaultManagedContext.java:56) at org.apache.cloudstack.managed.context.impl.DefaultManagedContext.callWithContext(DefaultManagedContext.java:103) at org.apache.cloudstack.managed.context.impl.DefaultManagedContext.runWithContext(DefaultManagedContext.java:53) at org.apache.cloudstack.managed.context.ManagedContextRunnable.run(ManagedContextRunnable.java:46) at org.apache.cloudstack.framework.jobs.impl.AsyncJobManagerImpl$5.run(AsyncJobManagerImpl.java:460) at java.util.concurrent.Executors$RunnableAdapter.call(Executors.java:471) at java.util.concurrent.FutureTask.run(FutureTask.java:262) at java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1145) at java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:615) at java.lang.Thread.run(Thread.java:744) 2015-04-06 13:12:25,302 DEBUG [o.a.c.f.j.i.AsyncJobManagerImpl] (Work-Job-Executor-27:ctx-149fc40a job-2588/job-2589) Complete async job-2589, jobStatus: FAILED, resultCode: 0, 2015-04-06 13:12:25,396 DEBUG [o.a.c.f.j.i.AsyncJobManagerImpl] (Work-Job-Executor-27:ctx-149fc40a job-2588/job-2589) Done executing com.cloud.vm.VmWorkStart for job-2589 2015-04-06 13:12:25,482 DEBUG [o.a.c.f.j.i.AsyncJobManagerImpl] (API-Job-Executor-9:ctx-5e6ac400 job-2588 ctx-0c8863ad) Sync job-2590 execution on object VmWorkJobQueue.67 2015-04-06 13:12:25,486 WARN [c.c.u.d.Merovingian2] (API-Job-Executor-9:ctx-5e6ac400 job-2588 ctx-0c8863ad) Was unable to find lock for the key vm_instance67 and thread id 1697914126 After some time this was 2nd exception about same instance, 2015-04-06 13:12:32,661 INFO [c.c.v.VirtualMachineManagerImpl] (Work-Job-Executor-29:ctx-467f37f1 job-2588/job-2590 ctx-4b4246ef) Unable to contact resource. com.cloud.exception.StorageUnavailableException: Resource [StoragePool:1] is unreachable: Unable
Re: volume download link will not be deleted
bug exists on 4.5.1 as well. Can you log it in jira? ~Rajani On Tue, Apr 7, 2015 at 5:50 PM, S. Brüseke - proIO GmbH s.brues...@proio.com wrote: Hi, we are using CS 4.3.0.2 and I think we found a bug. 1. Create a volume out of a snapshot 2. Extract (download) the volume via UI 3. Delete volume If you do this the garbage collector will not delete the symlink on secondary storage in /var/www/html/userdata/ If you do not delete the volume before the garbage collector time the symlink will be removed! Is this a known bug? Can somebody test this on CS 4.5.1? Thank you for your help! Mit freundlichen Grüßen / With kind regards, Swen Brüseke - proIO GmbH - Geschäftsführer: Swen Brüseke Sitz der Gesellschaft: Frankfurt am Main USt-IdNr. DE 267 075 918 Registergericht: Frankfurt am Main - HRB 86239 Diese E-Mail enthält vertrauliche und/oder rechtlich geschützte Informationen. Wenn Sie nicht der richtige Adressat sind oder diese E-Mail irrtümlich erhalten haben, informieren Sie bitte sofort den Absender und vernichten Sie diese Mail. Das unerlaubte Kopieren sowie die unbefugte Weitergabe dieser Mail sind nicht gestattet. This e-mail may contain confidential and/or privileged information. If you are not the intended recipient (or have received this e-mail in error) please notify the sender immediately and destroy this e-mail. Any unauthorized copying, disclosure or distribution of the material in this e-mail is strictly forbidden.
Re: 不能删除网络
看不到图片 hongtu_zang zanghongtu2...@gmail.com Beijing China 发件人: 张能钦 发送时间: 2015-04-07 17:50 收件人: users-cn 主题: 不能删除网络 大家好,我发现我的网络配置错了,就在面板里面删除网络,但是报错,请帮忙看下可以从哪里开始排除 张能钦
Re: problem creating instance from template
Hi Sonali, (*I may not be really asking something that you might already have tried out earlier during the troubleshooting of the issue). From the log snippets, it seems a missing VHD file(s) in your primary storage causing SR scan to get BACKEND_ERROR. You need to find that missing VHD file and delete the corresponding VDI file using xe command. Run xe sr-scan uuid= manually in xen server for your primary storage to make out a way to find missing VHD file. Let me know how this works. Thanks, Praveen On Tue, Apr 7, 2015 at 5:55 PM, Sonali Jadhav son...@servercentralen.se wrote: Anyone have clue on this ? /Sonali -Original Message- From: Sonali Jadhav [mailto:son...@servercentralen.se] Sent: Monday, April 6, 2015 5:18 PM To: users@cloudstack.apache.org Subject: RE: problem creating instance from template Hi Prashant, 1 - Yeha actually I noticed that, I am not able to create any new VMs from any other template. I just tried creating one Ubuntu instance , got this error in logs, 2015-04-06 13:12:25,300 ERROR [c.c.v.VmWorkJobDispatcher] (Work-Job-Executor-27:ctx-149fc40a job-2588/job-2589) Unable to complete AsyncJobVO {id:2589, userId: 2, accountId: 2, instanceType: null, instanceId: null, cmd: com.cloud.vm.VmWorkStart, cmdInfo: rO0ABXNyABhjb20uY2xvdWQudm0uVm1Xb3JrU3RhcnR9cMGsvxz73gIAC0oABGRjSWRMAAZhdm9pZHN0ADBMY29tL2Nsb3VkL2RlcGxveS9EZXBsb3ltZW50UGxhbm5lciRFeGNsdWRlTGlzdDtMAAljbHVzdGVySWR0ABBMamF2YS9sYW5nL0xvbmc7TAAGaG9zdElkcQB-AAJMAAtqb3VybmFsTmFtZXQAEkxqYXZhL2xhbmcvU3RyaW5nO0wAEXBoeXNpY2FsTmV0d29ya0lkcQB-AAJMAAdwbGFubmVycQB-AANMAAVwb2RJZHEAfgACTAAGcG9vbElkcQB-AAJMAAlyYXdQYXJhbXN0AA9MamF2YS91dGlsL01hcDtMAA1yZXNlcnZhdGlvbklkcQB-AAN4cgATY29tLmNsb3VkLnZtLlZtV29ya5-ZtlbwJWdrAgAESgAJYWNjb3VudElkSgAGdXNlcklkSgAEdm1JZEwAC2hhbmRsZXJOYW1lcQB-AAN4cAACAAIAQ3QAGVZpcnR1YWxNYWNoaW5lTWFuYWdlckltcGwAAXBzcgAOamF2YS5sYW5nLkxvbmc7i-SQzI8j3wIAAUoABXZhbHVleHIAEGphdmEubGFuZy5OdW1iZXKGrJUdC5TgiwIAAHhwAAFxAH4ACnBwcHEAfgAKcHNyABFqYXZhLnV0aWwuSGFzaE1hcAUH2sHDFmDRAwACRgAKbG9hZEZhY3RvckkACXRocmVzaG9sZHhwP0x3CBABdAAKVm1QYXNzd29yZHQAHHJPMEFCWFFBRG5OaGRtVmtYM0JoYzNOM2IzSmt4cA, cmdVersion: 0, status: IN_PROGRESS, processStatus: 0, resultCode: 0, result: null, initMsid: 59778234354585, completeMsid: null, lastUpdated: null, lastPolled: null, created: Mon Apr 06 13:12:13 CEST 2015}, job origin:2588 com.cloud.exception.InsufficientServerCapacityException: Unable to create a deployment for VM[User|i-2-67-VM]Scope=interface com.cloud.dc.DataCenter; id=1 at com.cloud.vm.VirtualMachineManagerImpl.orchestrateStart(VirtualMachineManagerImpl.java:947) at com.cloud.vm.VirtualMachineManagerImpl.orchestrateStart(VirtualMachineManagerImpl.java:5195) at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method) at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:57) at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:43) at java.lang.reflect.Method.invoke(Method.java:606) at com.cloud.vm.VmWorkJobHandlerProxy.handleVmWorkJob(VmWorkJobHandlerProxy.java:107) at com.cloud.vm.VirtualMachineManagerImpl.handleVmWorkJob(VirtualMachineManagerImpl.java:5340) at com.cloud.vm.VmWorkJobDispatcher.runJob(VmWorkJobDispatcher.java:102) at org.apache.cloudstack.framework.jobs.impl.AsyncJobManagerImpl$5.runInContext(AsyncJobManagerImpl.java:503) at org.apache.cloudstack.managed.context.ManagedContextRunnable$1.run(ManagedContextRunnable.java:49) at org.apache.cloudstack.managed.context.impl.DefaultManagedContext$1.call(DefaultManagedContext.java:56) at org.apache.cloudstack.managed.context.impl.DefaultManagedContext.callWithContext(DefaultManagedContext.java:103) at org.apache.cloudstack.managed.context.impl.DefaultManagedContext.runWithContext(DefaultManagedContext.java:53) at org.apache.cloudstack.managed.context.ManagedContextRunnable.run(ManagedContextRunnable.java:46) at org.apache.cloudstack.framework.jobs.impl.AsyncJobManagerImpl$5.run(AsyncJobManagerImpl.java:460) at java.util.concurrent.Executors$RunnableAdapter.call(Executors.java:471) at java.util.concurrent.FutureTask.run(FutureTask.java:262) at java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1145) at java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:615) at java.lang.Thread.run(Thread.java:744) 2015-04-06 13:12:25,302 DEBUG [o.a.c.f.j.i.AsyncJobManagerImpl] (Work-Job-Executor-27:ctx-149fc40a job-2588/job-2589) Complete async job-2589, jobStatus: FAILED, resultCode: 0, 2015-04-06 13:12:25,396 DEBUG [o.a.c.f.j.i.AsyncJobManagerImpl] (Work-Job-Executor-27:ctx-149fc40a job-2588/job-2589) Done executing com.cloud.vm.VmWorkStart for job-2589 2015-04-06 13:12:25,482 DEBUG
RE: Network performance issue
Hello, We had a similar issue that was resolved when we changed the FreeNAS default sharing behavior from sync to async by adding a new Sysctl with the following value, vfs.nfsd.async value to 1 -Original Message- From: Sam Ceylani [mailto:s...@mistercertified.com] Sent: Friday, April 03, 2015 1:19 AM To: users@cloudstack.apache.org Subject: Re: Network performance issue We use Freenas with ZFS also and it is notorious with NFS shares, we created a dataset and shared on NFS and disabled sync option for this dataset from ZFS, I forgot the command but it was something like zfs set sync=disabled /tank/dataset something like that, it will fix it. This has really nothing to do with cloudstack and xenserver which we use both... Thanks, Sam Ceylani, MBA Computer Engineer MisterCertified Inc. 301 W. Platt St. Suite 447, Tampa, FL 33606x-apple-data-detectors://0/0 P 813tel:813.264.6460.264.6460tel:813.264.6460 M 813tel:813.416.7867.416.7867tel:813.416.7867 F 800tel:800.553.9520.553.9520tel:800.553.9520 E sam.ceyl...@mistercertified.commailto:sam.ceyl...@mistercertified.com On Apr 2, 2015, at 1:13 PM, Pankaj Singh pank.sin9...@gmail.commailto:pank.sin9...@gmail.com wrote: Still no luck by disabling these flags. Would you please help us for this. Thanks Regards, PankaJ Singh On Thu, Apr 2, 2015 at 8:06 PM, Jeronimo Garcia garciaj...@gmail.commailto:garciaj...@gmail.com wrote: mm i had this problem before i think it was TCP offliading or RX/TX checksumming. I'd say play with ethtool and see if it makes any difference disabling this flags (or enabling them) Im on #cloudstack@freenode if you want to pop in. Thanks On Thu, Apr 2, 2015 at 3:12 PM, Pankaj Singh pank.sin9...@gmail.commailto:pank.sin9...@gmail.com wrote: We have two different network on two similar switches. One is our 192.168.1.0/24 and other is 192.168.2.0/24 network. Our switch capacity is 1000Mbps and so does our NIC cards on Host machines. On n/w 192.168.1.0/24, we are using xenserver 6.2 to deploy our Virtual machines and we can able to achieve persistent 75 to 80 MB/s speed while transferring (via scp) one 12GiB file from one VM to another VM on same Xenserver. We are using 192.168.2.0/24 network for our cloudstack setup. We have used following software with their version to establish out private cloud: Cloudstack = v4.4.2 Management Server On = Centos 6.4 x86_64 bit Xenserver as a hypervisor = v6.2 (similar configuration of machine as we have used in 192.168.1.0/24 n/w) FreeNAS as a Primary and Secondary Storage via NFS = v9.3 (filesystem is ZFS based) Virtual Machine OS = Centos 6.5 x86_64 bit We are using basic networking with its all default configurations but we are not able to achieve at least 60 to 65 MB/s of transferring speed. In cloud If we start scp from one machine to another machine then our transferring speed starts from 63 MB/s and then its keep falling till 20 to 25 MB/s. Would you please tell us that what we are missing here. Is ther any kind of global setting we need to configure so that at least we can achieve more than 50 MB/s transferring speed between two guest VM. Thanks and Regards PankaJ Singh
Re: Unable to remove or modify VPC
Sanjeev, I have opened a bug: https://issues.apache.org/jira/browse/CLOUDSTACK-8371 Thanks. On Tue, Apr 7, 2015 at 4:01 AM, Sanjeev N sanj...@apache.org wrote: Looks like a bug to me. Please open a bug in https://issues.apache.org/ On Tue, Apr 7, 2015 at 1:57 AM, Grayson Head gray...@graysonhead.net wrote: One of my coworkers has created a VPC that we are unable to modify or remove. The coworker said he was testing the site-to-site VPN functionality, and ended up having to create a seperate VPC instance to get it working. Now we are unable to remove this VPC instance using the web interface or the API. I suspect based on the log outputs that the site-to-site VPN is what is causing this problem, but the VPC shows that it doesn't have any site-to-site connections configured. The VPC still has one external IP address allocated to it, which I think was the one he was using as the VPN gateway. I am also unable to remove this IP address, it fails with an internal server error. The following is the management-server.log when attempting to release this IP address. 2015-04-06 13:18:42,427 INFO [o.a.c.f.j.i.AsyncJobMonitor] (API-Job-Executor-96:ctx-428fa98b job-6262) Add job-6262 into job monitoring 2015-04-06 13:18:42,427 DEBUG [o.a.c.f.j.i.AsyncJobManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262) Executing AsyncJobVO {id:6262, userId: 3, accountId: 3, instanceType: IpAddress, instanceId: 9, cmd: org.apache.cloudstack.api.command.user.address.DisassociateIPAddrCmd, cmdInfo: {response:json,id:3d2205a4-41e9-4cf7-9261-d1ae63ce863f,sessionkey:gSf69NNJJZ0SzrIEz1fwOQJpRTo\u003d,ctxDetails:{\com.cloud.network.IpAddress\:\3d2205a4-41e9-4cf7-9261-d1ae63ce863f\},cmdEventType:NET.IPRELEASE,ctxUserId:3,httpmethod:GET,_:1428351522388,uuid:3d2205a4-41e9-4cf7-9261-d1ae63ce863f,ctxAccountId:3,ctxStartEventId:7705}, cmdVersion: 0, status: IN_PROGRESS, processStatus: 0, resultCode: 0, result: null, initMsid: 345050016868, completeMsid: null, lastUpdated: null, lastPolled: null, created: null} 2015-04-06 13:18:42,427 DEBUG [c.c.a.ApiServlet] (catalina-exec-14:ctx-91e999f7 ctx-49efc96a) ===END=== 10.233.51.176 -- GET command=disassociateIpAddressresponse=jsonsessionkey=gSf69NNJJZ0SzrIEz1fwOQJpRTo%3Did=3d2205a4-41e9-4cf7-9261-d1ae63ce863f_=1428351522388 2015-04-06 13:18:42,451 DEBUG [c.c.n.IpAddressManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Revoking all Firewallrules as a part of public IP id=9 release... 2015-04-06 13:18:42,462 DEBUG [c.c.n.f.FirewallManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Releasing 0 firewall rules for ip id=9 2015-04-06 13:18:42,464 DEBUG [c.c.n.f.FirewallManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) There are no firewall rules to apply 2015-04-06 13:18:42,466 DEBUG [c.c.n.f.FirewallManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Successfully released firewall rules for ip id=9 and # of rules now = 0 2015-04-06 13:18:42,475 DEBUG [c.c.n.IpAddressManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Revoking all PortForwarding/StaticNat rules as a part of public IP id=9 release... 2015-04-06 13:18:42,477 DEBUG [c.c.n.r.RulesManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Releasing 0 port forwarding rules for ip id=9 2015-04-06 13:18:42,478 DEBUG [c.c.n.r.RulesManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Releasing 0 static nat rules for ip id=9 2015-04-06 13:18:42,480 DEBUG [c.c.n.r.RulesManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) There are no port forwarding rules to apply for ip id=9 2015-04-06 13:18:42,482 DEBUG [c.c.n.r.RulesManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) There are no static nat rules to apply for ip id=9 2015-04-06 13:18:42,483 DEBUG [c.c.n.r.RulesManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Source ip id=Ip[66.194.167.148-1] is not one to one nat 2015-04-06 13:18:42,487 DEBUG [c.c.n.r.RulesManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Successfully released rules for ip id=9 and # of rules now = 0 2015-04-06 13:18:42,487 DEBUG [c.c.n.IpAddressManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Revoking all LoadBalancing rules as a part of public IP id=9 release... 2015-04-06 13:18:42,488 DEBUG [c.c.n.l.LoadBalancingRulesManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Found 0 lb rules to cleanup 2015-04-06 13:18:42,488 DEBUG [c.c.n.IpAddressManagerImpl] (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Cleaning up remote access vpns as a part of public IP id=9 release... 2015-04-06 13:18:42,523 ERROR [c.c.a.ApiAsyncJobDispatcher] (API-Job-Executor-96:ctx-428fa98b job-6262) Unexpected exception while executing org.apache.cloudstack.api.command.user.address.DisassociateIPAddrCmd
AW: volume download link will not be deleted
Hi Rajani, here it is: https://issues.apache.org/jira/browse/CLOUDSTACK-8370 Mit freundlichen Grüßen / With kind regards, Swen Brüseke proIO GmbH Kleyerstr. 79 - 89 / Tor 13 D-60326 Frankfurt am Main Mail: s.brues...@proio.com Tel: +(49) (0) 69 739049-15 Fax: +(49) (0) 69 739049-25 Web: www.proio.com - Support - Mail: supp...@proio.com 24h: +(49) (0) 1805 522 855 Von: Rajani Karuturi [mailto:raj...@apache.org] Gesendet: Dienstag, 7. April 2015 16:20 An: users@cloudstack.apache.org; S. Brüseke - proIO GmbH Betreff: Re: volume download link will not be deleted bug exists on 4.5.1 as well. Can you log it in jira? ~Rajani On Tue, Apr 7, 2015 at 5:50 PM, S. Brüseke - proIO GmbH s.brues...@proio.com wrote: Hi, we are using CS 4.3.0.2 and I think we found a bug. 1. Create a volume out of a snapshot 2. Extract (download) the volume via UI 3. Delete volume If you do this the garbage collector will not delete the symlink on secondary storage in /var/www/html/userdata/ If you do not delete the volume before the garbage collector time the symlink will be removed! Is this a known bug? Can somebody test this on CS 4.5.1? Thank you for your help! Mit freundlichen Grüßen / With kind regards, Swen Brüseke - proIO GmbH - Geschäftsführer: Swen Brüseke Sitz der Gesellschaft: Frankfurt am Main USt-IdNr. DE 267 075 918 Registergericht: Frankfurt am Main - HRB 86239 Diese E-Mail enthält vertrauliche und/oder rechtlich geschützte Informationen. Wenn Sie nicht der richtige Adressat sind oder diese E-Mail irrtümlich erhalten haben, informieren Sie bitte sofort den Absender und vernichten Sie diese Mail. Das unerlaubte Kopieren sowie die unbefugte Weitergabe dieser Mail sind nicht gestattet. This e-mail may contain confidential and/or privileged information. If you are not the intended recipient (or have received this e-mail in error) please notify the sender immediately and destroy this e-mail. Any unauthorized copying, disclosure or distribution of the material in this e-mail is strictly forbidden. - proIO GmbH - Geschäftsführer: Swen Brüseke Sitz der Gesellschaft: Frankfurt am Main USt-IdNr. DE 267 075 918 Registergericht: Frankfurt am Main - HRB 86239 Diese E-Mail enthält vertrauliche und/oder rechtlich geschützte Informationen. Wenn Sie nicht der richtige Adressat sind oder diese E-Mail irrtümlich erhalten haben, informieren Sie bitte sofort den Absender und vernichten Sie diese Mail. Das unerlaubte Kopieren sowie die unbefugte Weitergabe dieser Mail sind nicht gestattet. This e-mail may contain confidential and/or privileged information. If you are not the intended recipient (or have received this e-mail in error) please notify the sender immediately and destroy this e-mail. Any unauthorized copying, disclosure or distribution of the material in this e-mail is strictly forbidden.
Re: Urgent : CloudStack xenserver 6.2 Cluster
Hello Fedi, please reset all the xenserver hosts to one common password in a xencluster. this is the easier solution to fix your problem. yes cloudstack will add all the hosts in the xen pool to the ACS Cluster when you add the management , *which is great so you dont have to add all the individual hosts one by one * if you want to reset the host password please cloudmonkey , *list hosts* * update hostpassword clusterid=ad3751ee-1437-436xx hostid=56168d32-1773-f password=x username=root* On Tue, Apr 7, 2015 at 12:39 PM, Fedi Ben Ali ben.ali.fe...@gmail.com wrote: Hello , On my deployement i have multiple xenservers pools, each host on these pools have his own password .when i add the pool master to cloudstack ,cloudstack adds automatically all the slave hosts but the log file is giving uanable to authentificate exeption. When i finish and trys to add VM's ,all the virtual routers created on the pool masters starts fine , but when cloudstack tryes to create it on one of the slaves i get this error Failed to authentication SSH user root on host So should i give all my pools host the same password to resolve this issue ?? thx
Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM
I did found this in log: 2015-04-07 18:00:45,163 WARN [c.c.k.KeystoreManagerImpl] (AgentConnectTaskPool-117:ctx-2a501782) Unable to build keystore for CPVMCertificate due to CertificateException 2015-04-07 18:00:45,163 ERROR [c.c.c.AgentHookBase] (AgentConnectTaskPool-117:ctx-2a501782) Could not find and construct a valid SSL certificate Any clues on this ? On 7 April 2015 at 19:01, Andrija Panic andrija.pa...@gmail.com wrote: ok, I'm on 4.3.2, so there is only UI field for cert, key and domainname so no field for i.e. password, as the key would have to been decrypted sometimes if it is encrypted. My possible problem - I see both old intermediate1 cert and the new intermediate1 cert in database, but only 1 ROOT CA (might have been - I used the same name so odl ROOT CA was overwriten) Main CERT and the key looks fine in database... On 7 April 2015 at 18:59, Erik Weber terbol...@gmail.com wrote: Your private key is decrypted, my issue was that it should've been encrypted. However, that could be 4.5 specific. You'll get an exception if you encounter the same. Erik Den tirsdag 7. april 2015 skrev Andrija Panic andrija.pa...@gmail.com følgende: Thx Erik, per my understanding, private key needs to be DEcrypted, and uploaded through UI... ? On 7 April 2015 at 18:48, Erik Weber terbol...@gmail.com javascript:; wrote: Also, take a backup first, then remove the realhostip occurence and set seq to 0 for your cert. Erik Den tirsdag 7. april 2015 skrev Erik Weber terbol...@gmail.com javascript:; følgende: Nothing in the logs? I had an issue where the private key wasn't being encrypted and had to fix it by encrypting manually. But I also had could not decrypt exceptions in the logs. Erik Den tirsdag 7. april 2015 skrev Andrija Panic andrija.pa...@gmail.com javascript:; javascript:_e(%7B%7D,'cvml','andrija.pa...@gmail.com javascript:;'); følgende: Hi guys, our SSL just expired, and I needed to upload new ROOT CA, Intemediata ROOT CA, and at the end SSL for sever and a private key. I uploaded new ROOT CA, and after CPVM rebooted, also uploaded Intermediate ROOT CA, via API, with URL encoded stuff - checked in database all seems OK. But after uploading new SSL and private key, destroyed CPVM and SSVM - my Console Proxy shows *.realiphost.com as the domain for the SSL wjen I access Any clues what I did wrong ? Should I have somehow removed first old ROOT CA and old Intermediate CA, and upload new ones ? Here is database content from cloud.keystore: http://snag.gy/LMA4h.jpg This means that for some reason, original realiphost.com SSL is now used inside CPVM... Any help greatly appreciated, since this is live system... Thanks, -- Andrija Panić -- Andrija Panić -- Andrija Panić -- Andrija Panić
Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM
Also, take a backup first, then remove the realhostip occurence and set seq to 0 for your cert. Erik Den tirsdag 7. april 2015 skrev Erik Weber terbol...@gmail.com følgende: Nothing in the logs? I had an issue where the private key wasn't being encrypted and had to fix it by encrypting manually. But I also had could not decrypt exceptions in the logs. Erik Den tirsdag 7. april 2015 skrev Andrija Panic andrija.pa...@gmail.com javascript:_e(%7B%7D,'cvml','andrija.pa...@gmail.com'); følgende: Hi guys, our SSL just expired, and I needed to upload new ROOT CA, Intemediata ROOT CA, and at the end SSL for sever and a private key. I uploaded new ROOT CA, and after CPVM rebooted, also uploaded Intermediate ROOT CA, via API, with URL encoded stuff - checked in database all seems OK. But after uploading new SSL and private key, destroyed CPVM and SSVM - my Console Proxy shows *.realiphost.com as the domain for the SSL wjen I access Any clues what I did wrong ? Should I have somehow removed first old ROOT CA and old Intermediate CA, and upload new ones ? Here is database content from cloud.keystore: http://snag.gy/LMA4h.jpg This means that for some reason, original realiphost.com SSL is now used inside CPVM... Any help greatly appreciated, since this is live system... Thanks, -- Andrija Panić
Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM
ok, I'm on 4.3.2, so there is only UI field for cert, key and domainname so no field for i.e. password, as the key would have to been decrypted sometimes if it is encrypted. My possible problem - I see both old intermediate1 cert and the new intermediate1 cert in database, but only 1 ROOT CA (might have been - I used the same name so odl ROOT CA was overwriten) Main CERT and the key looks fine in database... On 7 April 2015 at 18:59, Erik Weber terbol...@gmail.com wrote: Your private key is decrypted, my issue was that it should've been encrypted. However, that could be 4.5 specific. You'll get an exception if you encounter the same. Erik Den tirsdag 7. april 2015 skrev Andrija Panic andrija.pa...@gmail.com følgende: Thx Erik, per my understanding, private key needs to be DEcrypted, and uploaded through UI... ? On 7 April 2015 at 18:48, Erik Weber terbol...@gmail.com javascript:; wrote: Also, take a backup first, then remove the realhostip occurence and set seq to 0 for your cert. Erik Den tirsdag 7. april 2015 skrev Erik Weber terbol...@gmail.com javascript:; følgende: Nothing in the logs? I had an issue where the private key wasn't being encrypted and had to fix it by encrypting manually. But I also had could not decrypt exceptions in the logs. Erik Den tirsdag 7. april 2015 skrev Andrija Panic andrija.pa...@gmail.com javascript:; javascript:_e(%7B%7D,'cvml','andrija.pa...@gmail.com javascript:;'); følgende: Hi guys, our SSL just expired, and I needed to upload new ROOT CA, Intemediata ROOT CA, and at the end SSL for sever and a private key. I uploaded new ROOT CA, and after CPVM rebooted, also uploaded Intermediate ROOT CA, via API, with URL encoded stuff - checked in database all seems OK. But after uploading new SSL and private key, destroyed CPVM and SSVM - my Console Proxy shows *.realiphost.com as the domain for the SSL wjen I access Any clues what I did wrong ? Should I have somehow removed first old ROOT CA and old Intermediate CA, and upload new ones ? Here is database content from cloud.keystore: http://snag.gy/LMA4h.jpg This means that for some reason, original realiphost.com SSL is now used inside CPVM... Any help greatly appreciated, since this is live system... Thanks, -- Andrija Panić -- Andrija Panić -- Andrija Panić
Urgent : CloudStack xenserver 6.2 Cluster
Hello , On my deployement i have multiple xenservers pools, each host on these pools have his own password .when i add the pool master to cloudstack ,cloudstack adds automatically all the slave hosts but the log file is giving uanable to authentificate exeption. When i finish and trys to add VM's ,all the virtual routers created on the pool masters starts fine , but when cloudstack tryes to create it on one of the slaves i get this error Failed to authentication SSH user root on host So should i give all my pools host the same password to resolve this issue ?? thx
Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM
Nothing in the logs? I had an issue where the private key wasn't being encrypted and had to fix it by encrypting manually. But I also had could not decrypt exceptions in the logs. Erik Den tirsdag 7. april 2015 skrev Andrija Panic andrija.pa...@gmail.com følgende: Hi guys, our SSL just expired, and I needed to upload new ROOT CA, Intemediata ROOT CA, and at the end SSL for sever and a private key. I uploaded new ROOT CA, and after CPVM rebooted, also uploaded Intermediate ROOT CA, via API, with URL encoded stuff - checked in database all seems OK. But after uploading new SSL and private key, destroyed CPVM and SSVM - my Console Proxy shows *.realiphost.com as the domain for the SSL wjen I access Any clues what I did wrong ? Should I have somehow removed first old ROOT CA and old Intermediate CA, and upload new ones ? Here is database content from cloud.keystore: http://snag.gy/LMA4h.jpg This means that for some reason, original realiphost.com SSL is now used inside CPVM... Any help greatly appreciated, since this is live system... Thanks, -- Andrija Panić
Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM
Your private key is decrypted, my issue was that it should've been encrypted. However, that could be 4.5 specific. You'll get an exception if you encounter the same. Erik Den tirsdag 7. april 2015 skrev Andrija Panic andrija.pa...@gmail.com følgende: Thx Erik, per my understanding, private key needs to be DEcrypted, and uploaded through UI... ? On 7 April 2015 at 18:48, Erik Weber terbol...@gmail.com javascript:; wrote: Also, take a backup first, then remove the realhostip occurence and set seq to 0 for your cert. Erik Den tirsdag 7. april 2015 skrev Erik Weber terbol...@gmail.com javascript:; følgende: Nothing in the logs? I had an issue where the private key wasn't being encrypted and had to fix it by encrypting manually. But I also had could not decrypt exceptions in the logs. Erik Den tirsdag 7. april 2015 skrev Andrija Panic andrija.pa...@gmail.com javascript:; javascript:_e(%7B%7D,'cvml','andrija.pa...@gmail.com javascript:;'); følgende: Hi guys, our SSL just expired, and I needed to upload new ROOT CA, Intemediata ROOT CA, and at the end SSL for sever and a private key. I uploaded new ROOT CA, and after CPVM rebooted, also uploaded Intermediate ROOT CA, via API, with URL encoded stuff - checked in database all seems OK. But after uploading new SSL and private key, destroyed CPVM and SSVM - my Console Proxy shows *.realiphost.com as the domain for the SSL wjen I access Any clues what I did wrong ? Should I have somehow removed first old ROOT CA and old Intermediate CA, and upload new ones ? Here is database content from cloud.keystore: http://snag.gy/LMA4h.jpg This means that for some reason, original realiphost.com SSL is now used inside CPVM... Any help greatly appreciated, since this is live system... Thanks, -- Andrija Panić -- Andrija Panić
Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM
Thx Erik, per my understanding, private key needs to be DEcrypted, and uploaded through UI... ? On 7 April 2015 at 18:48, Erik Weber terbol...@gmail.com wrote: Also, take a backup first, then remove the realhostip occurence and set seq to 0 for your cert. Erik Den tirsdag 7. april 2015 skrev Erik Weber terbol...@gmail.com følgende: Nothing in the logs? I had an issue where the private key wasn't being encrypted and had to fix it by encrypting manually. But I also had could not decrypt exceptions in the logs. Erik Den tirsdag 7. april 2015 skrev Andrija Panic andrija.pa...@gmail.com javascript:_e(%7B%7D,'cvml','andrija.pa...@gmail.com'); følgende: Hi guys, our SSL just expired, and I needed to upload new ROOT CA, Intemediata ROOT CA, and at the end SSL for sever and a private key. I uploaded new ROOT CA, and after CPVM rebooted, also uploaded Intermediate ROOT CA, via API, with URL encoded stuff - checked in database all seems OK. But after uploading new SSL and private key, destroyed CPVM and SSVM - my Console Proxy shows *.realiphost.com as the domain for the SSL wjen I access Any clues what I did wrong ? Should I have somehow removed first old ROOT CA and old Intermediate CA, and upload new ones ? Here is database content from cloud.keystore: http://snag.gy/LMA4h.jpg This means that for some reason, original realiphost.com SSL is now used inside CPVM... Any help greatly appreciated, since this is live system... Thanks, -- Andrija Panić -- Andrija Panić
{HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM
Hi guys, our SSL just expired, and I needed to upload new ROOT CA, Intemediata ROOT CA, and at the end SSL for sever and a private key. I uploaded new ROOT CA, and after CPVM rebooted, also uploaded Intermediate ROOT CA, via API, with URL encoded stuff - checked in database all seems OK. But after uploading new SSL and private key, destroyed CPVM and SSVM - my Console Proxy shows *.realiphost.com as the domain for the SSL wjen I access Any clues what I did wrong ? Should I have somehow removed first old ROOT CA and old Intermediate CA, and upload new ones ? Here is database content from cloud.keystore: http://snag.gy/LMA4h.jpg This means that for some reason, original realiphost.com SSL is now used inside CPVM... Any help greatly appreciated, since this is live system... Thanks, -- Andrija Panić
Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM
I would try to delete the keystore table (after backup),then add the cert. Erik Den tirsdag 7. april 2015 skrev Andrija Panic andrija.pa...@gmail.com følgende: I did found this in log: 2015-04-07 18:00:45,163 WARN [c.c.k.KeystoreManagerImpl] (AgentConnectTaskPool-117:ctx-2a501782) Unable to build keystore for CPVMCertificate due to CertificateException 2015-04-07 18:00:45,163 ERROR [c.c.c.AgentHookBase] (AgentConnectTaskPool-117:ctx-2a501782) Could not find and construct a valid SSL certificate Any clues on this ? On 7 April 2015 at 19:01, Andrija Panic andrija.pa...@gmail.com javascript:; wrote: ok, I'm on 4.3.2, so there is only UI field for cert, key and domainname so no field for i.e. password, as the key would have to been decrypted sometimes if it is encrypted. My possible problem - I see both old intermediate1 cert and the new intermediate1 cert in database, but only 1 ROOT CA (might have been - I used the same name so odl ROOT CA was overwriten) Main CERT and the key looks fine in database... On 7 April 2015 at 18:59, Erik Weber terbol...@gmail.com javascript:; wrote: Your private key is decrypted, my issue was that it should've been encrypted. However, that could be 4.5 specific. You'll get an exception if you encounter the same. Erik Den tirsdag 7. april 2015 skrev Andrija Panic andrija.pa...@gmail.com javascript:; følgende: Thx Erik, per my understanding, private key needs to be DEcrypted, and uploaded through UI... ? On 7 April 2015 at 18:48, Erik Weber terbol...@gmail.com javascript:; javascript:; wrote: Also, take a backup first, then remove the realhostip occurence and set seq to 0 for your cert. Erik Den tirsdag 7. april 2015 skrev Erik Weber terbol...@gmail.com javascript:; javascript:; følgende: Nothing in the logs? I had an issue where the private key wasn't being encrypted and had to fix it by encrypting manually. But I also had could not decrypt exceptions in the logs. Erik Den tirsdag 7. april 2015 skrev Andrija Panic andrija.pa...@gmail.com javascript:; javascript:; javascript:_e(%7B%7D,'cvml','andrija.pa...@gmail.com javascript:; javascript:;'); følgende: Hi guys, our SSL just expired, and I needed to upload new ROOT CA, Intemediata ROOT CA, and at the end SSL for sever and a private key. I uploaded new ROOT CA, and after CPVM rebooted, also uploaded Intermediate ROOT CA, via API, with URL encoded stuff - checked in database all seems OK. But after uploading new SSL and private key, destroyed CPVM and SSVM - my Console Proxy shows *.realiphost.com as the domain for the SSL wjen I access Any clues what I did wrong ? Should I have somehow removed first old ROOT CA and old Intermediate CA, and upload new ones ? Here is database content from cloud.keystore: http://snag.gy/LMA4h.jpg This means that for some reason, original realiphost.com SSL is now used inside CPVM... Any help greatly appreciated, since this is live system... Thanks, -- Andrija Panić -- Andrija Panić -- Andrija Panić -- Andrija Panić
RE: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM
I see same sequence number for 2 intermediate certificates. does your certificate has multiple intermediate certificate or it has only one. The reason for getting realhost ip is . your certificate is not applied correctly that is reason it's still refer the old certificate. Regards sadhu -Original Message- From: Andrija Panic [mailto:andrija.pa...@gmail.com] Sent: 07 April 2015 22:56 To: users@cloudstack.apache.org Cc: d...@cloudstack.apache.org Subject: Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM Hi Lucian yes it is *.domain.com (from 4.3.1 onwards)... If you can check my attached image, keystore tableseems messed a little bit :) http://snag.gy/LMA4h.jpg On 7 April 2015 at 19:12, Nux! n...@li.nux.ro wrote: Can you check secstorage.ssl.cert.domain in global settings and see if it's the correct one? Should be *.blah.tld or whatever your domain is. HTH Lucian -- Sent from the Delta quadrant using Borg technology! Nux! www.nux.ro - Original Message - From: Andrija Panic andrija.pa...@gmail.com To: users@cloudstack.apache.org, d...@cloudstack.apache.org Sent: Tuesday, 7 April, 2015 17:42:35 Subject: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM Hi guys, our SSL just expired, and I needed to upload new ROOT CA, Intemediata ROOT CA, and at the end SSL for sever and a private key. I uploaded new ROOT CA, and after CPVM rebooted, also uploaded Intermediate ROOT CA, via API, with URL encoded stuff - checked in database all seems OK. But after uploading new SSL and private key, destroyed CPVM and SSVM - my Console Proxy shows *.realiphost.com as the domain for the SSL wjen I access Any clues what I did wrong ? Should I have somehow removed first old ROOT CA and old Intermediate CA, and upload new ones ? Here is database content from cloud.keystore: http://snag.gy/LMA4h.jpg This means that for some reason, original realiphost.com SSL is now used inside CPVM... Any help greatly appreciated, since this is live system... Thanks, -- Andrija Panić -- Andrija Panić
Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM
Thanks Suresh. 2 identical sequence numbers means: first occurence is OLD Intermediate CA(from 1 year ago), and the second occurence is the new one just uploaded (it happened I used different names) for ROOT CA - it happened I used the same name ROOT1 so the old one got overwriten with seq number 1 Do you expect I should delete the old Intermediate1 CA manually (and leave only the new one) ? Or am I expected to upload again ROOT/intermediate with exact same names and seq numbers ? Thanks On 7 April 2015 at 19:43, Suresh Sadhu suresh.sa...@citrix.com wrote: I see same sequence number for 2 intermediate certificates. does your certificate has multiple intermediate certificate or it has only one. The reason for getting realhost ip is . your certificate is not applied correctly that is reason it's still refer the old certificate. Regards sadhu -Original Message- From: Andrija Panic [mailto:andrija.pa...@gmail.com] Sent: 07 April 2015 22:56 To: users@cloudstack.apache.org Cc: d...@cloudstack.apache.org Subject: Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM Hi Lucian yes it is *.domain.com (from 4.3.1 onwards)... If you can check my attached image, keystore tableseems messed a little bit :) http://snag.gy/LMA4h.jpg On 7 April 2015 at 19:12, Nux! n...@li.nux.ro wrote: Can you check secstorage.ssl.cert.domain in global settings and see if it's the correct one? Should be *.blah.tld or whatever your domain is. HTH Lucian -- Sent from the Delta quadrant using Borg technology! Nux! www.nux.ro - Original Message - From: Andrija Panic andrija.pa...@gmail.com To: users@cloudstack.apache.org, d...@cloudstack.apache.org Sent: Tuesday, 7 April, 2015 17:42:35 Subject: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM Hi guys, our SSL just expired, and I needed to upload new ROOT CA, Intemediata ROOT CA, and at the end SSL for sever and a private key. I uploaded new ROOT CA, and after CPVM rebooted, also uploaded Intermediate ROOT CA, via API, with URL encoded stuff - checked in database all seems OK. But after uploading new SSL and private key, destroyed CPVM and SSVM - my Console Proxy shows *.realiphost.com as the domain for the SSL wjen I access Any clues what I did wrong ? Should I have somehow removed first old ROOT CA and old Intermediate CA, and upload new ones ? Here is database content from cloud.keystore: http://snag.gy/LMA4h.jpg This means that for some reason, original realiphost.com SSL is now used inside CPVM... Any help greatly appreciated, since this is live system... Thanks, -- Andrija Panić -- Andrija Panić -- Andrija Panić
Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM
Can you check secstorage.ssl.cert.domain in global settings and see if it's the correct one? Should be *.blah.tld or whatever your domain is. HTH Lucian -- Sent from the Delta quadrant using Borg technology! Nux! www.nux.ro - Original Message - From: Andrija Panic andrija.pa...@gmail.com To: users@cloudstack.apache.org, d...@cloudstack.apache.org Sent: Tuesday, 7 April, 2015 17:42:35 Subject: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM Hi guys, our SSL just expired, and I needed to upload new ROOT CA, Intemediata ROOT CA, and at the end SSL for sever and a private key. I uploaded new ROOT CA, and after CPVM rebooted, also uploaded Intermediate ROOT CA, via API, with URL encoded stuff - checked in database all seems OK. But after uploading new SSL and private key, destroyed CPVM and SSVM - my Console Proxy shows *.realiphost.com as the domain for the SSL wjen I access Any clues what I did wrong ? Should I have somehow removed first old ROOT CA and old Intermediate CA, and upload new ones ? Here is database content from cloud.keystore: http://snag.gy/LMA4h.jpg This means that for some reason, original realiphost.com SSL is now used inside CPVM... Any help greatly appreciated, since this is live system... Thanks, -- Andrija Panić
RE: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM
If you have taken backup of your table(keystore) before upload then you revert to previous state then upload the certificates again. Encode(url ecode) the root and intermediate keys while uploading through api Root - seq 1 Intermediate seq 2 And while uploading server certificate through UI don 't encode the keys ,enter only server certificate and private key(it should be PKCS#8 format) and domain name because you have already uploaded root and intermediate through API.( how to check certificate uploaded correctly or not on system vms ,just run the keytool -list on system vms --for syntax/description ref this blog it might useful to you : http://sadhusuresh.blogspot.in/2015/01/t-hings-you-should-consider-while.html) Regards Sadhu -Original Message- From: Andrija Panic [mailto:andrija.pa...@gmail.com] Sent: 07 April 2015 23:19 To: d...@cloudstack.apache.org Cc: users@cloudstack.apache.org Subject: Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM Thanks Suresh. 2 identical sequence numbers means: first occurence is OLD Intermediate CA(from 1 year ago), and the second occurence is the new one just uploaded (it happened I used different names) for ROOT CA - it happened I used the same name ROOT1 so the old one got overwriten with seq number 1 Do you expect I should delete the old Intermediate1 CA manually (and leave only the new one) ? Or am I expected to upload again ROOT/intermediate with exact same names and seq numbers ? Thanks On 7 April 2015 at 19:43, Suresh Sadhu suresh.sa...@citrix.com wrote: I see same sequence number for 2 intermediate certificates. does your certificate has multiple intermediate certificate or it has only one. The reason for getting realhost ip is . your certificate is not applied correctly that is reason it's still refer the old certificate. Regards sadhu -Original Message- From: Andrija Panic [mailto:andrija.pa...@gmail.com] Sent: 07 April 2015 22:56 To: users@cloudstack.apache.org Cc: d...@cloudstack.apache.org Subject: Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM Hi Lucian yes it is *.domain.com (from 4.3.1 onwards)... If you can check my attached image, keystore tableseems messed a little bit :) http://snag.gy/LMA4h.jpg On 7 April 2015 at 19:12, Nux! n...@li.nux.ro wrote: Can you check secstorage.ssl.cert.domain in global settings and see if it's the correct one? Should be *.blah.tld or whatever your domain is. HTH Lucian -- Sent from the Delta quadrant using Borg technology! Nux! www.nux.ro - Original Message - From: Andrija Panic andrija.pa...@gmail.com To: users@cloudstack.apache.org, d...@cloudstack.apache.org Sent: Tuesday, 7 April, 2015 17:42:35 Subject: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM Hi guys, our SSL just expired, and I needed to upload new ROOT CA, Intemediata ROOT CA, and at the end SSL for sever and a private key. I uploaded new ROOT CA, and after CPVM rebooted, also uploaded Intermediate ROOT CA, via API, with URL encoded stuff - checked in database all seems OK. But after uploading new SSL and private key, destroyed CPVM and SSVM - my Console Proxy shows *.realiphost.com as the domain for the SSL wjen I access Any clues what I did wrong ? Should I have somehow removed first old ROOT CA and old Intermediate CA, and upload new ones ? Here is database content from cloud.keystore: http://snag.gy/LMA4h.jpg This means that for some reason, original realiphost.com SSL is now used inside CPVM... Any help greatly appreciated, since this is live system... Thanks, -- Andrija Panić -- Andrija Panić -- Andrija Panić
Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM
Hi Lucian yes it is *.domain.com (from 4.3.1 onwards)... If you can check my attached image, keystore tableseems messed a little bit :) http://snag.gy/LMA4h.jpg On 7 April 2015 at 19:12, Nux! n...@li.nux.ro wrote: Can you check secstorage.ssl.cert.domain in global settings and see if it's the correct one? Should be *.blah.tld or whatever your domain is. HTH Lucian -- Sent from the Delta quadrant using Borg technology! Nux! www.nux.ro - Original Message - From: Andrija Panic andrija.pa...@gmail.com To: users@cloudstack.apache.org, d...@cloudstack.apache.org Sent: Tuesday, 7 April, 2015 17:42:35 Subject: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM Hi guys, our SSL just expired, and I needed to upload new ROOT CA, Intemediata ROOT CA, and at the end SSL for sever and a private key. I uploaded new ROOT CA, and after CPVM rebooted, also uploaded Intermediate ROOT CA, via API, with URL encoded stuff - checked in database all seems OK. But after uploading new SSL and private key, destroyed CPVM and SSVM - my Console Proxy shows *.realiphost.com as the domain for the SSL wjen I access Any clues what I did wrong ? Should I have somehow removed first old ROOT CA and old Intermediate CA, and upload new ones ? Here is database content from cloud.keystore: http://snag.gy/LMA4h.jpg This means that for some reason, original realiphost.com SSL is now used inside CPVM... Any help greatly appreciated, since this is live system... Thanks, -- Andrija Panić -- Andrija Panić
Re: Cloudstack 4.5.1 and usage service
This looks like https://issues.apache.org/jira/browse/CLOUDSTACK-7316 popping up again. On 07/04/15 22:13, Ronalds D wrote: Caused by: com.cloud.utils.exception.CloudRuntimeException: key File containing secret key not found in the classpath: at com.cloud.utils.crypt.EncryptionSecretKeyChecker.check(EncryptionSecretKeyChecker.java:84)
Re: How to migrate foreign VM to CloudStack
Hello Johnny, To do it properly you should convert all your VM's to templates ,add then add them to cloudstack and finally you create vm 'sfrom these templates. But if you wont an out of the box solution you should make changes on the source code , i've worked on such solution on xenserver and it was a long dificult mdifications so i recommand that you do it as i sayed above using the templates. 2015-04-07 1:02 GMT+01:00 zanghongtu2...@gmail.com zanghongtu2...@gmail.com : You can only modify the cloudstack soucecode and build a new version. hongtu_zang zanghongtu2...@gmail.com Beijing China 发件人: JohnnyZhao 发送时间: 2015-04-06 13:13 收件人: users-cn@cloudstack.apache.org 主题: How to migrate foreign VM to CloudStack Dear Sir: I have some questions about how to migrate foreign VM to cloudstack. If I have setup a cloudstack environment to manage one VMware vSphere Cluster with one vCenter and one KVM clusters, how to migrate the existing current VMs on vSphere Clusters into cloudstack? For example, I deploy new VM by vCenter, but CloudStack doesn't know it. How to migrate it into existing cloudstack environment? Thanks a lot! RegardsJohnny Zhao
Re: Urgent : CloudStack xenserver 6.2 Cluster
Hello prashants, I did it and thats worked perfictally. Thx. 2015-04-07 17:55 GMT+01:00 Prashant s opsrunb...@gmail.com: Hello Fedi, please reset all the xenserver hosts to one common password in a xencluster. this is the easier solution to fix your problem. yes cloudstack will add all the hosts in the xen pool to the ACS Cluster when you add the management , *which is great so you dont have to add all the individual hosts one by one * if you want to reset the host password please cloudmonkey , *list hosts* * update hostpassword clusterid=ad3751ee-1437-436xx hostid=56168d32-1773-f password=x username=root* On Tue, Apr 7, 2015 at 12:39 PM, Fedi Ben Ali ben.ali.fe...@gmail.com wrote: Hello , On my deployement i have multiple xenservers pools, each host on these pools have his own password .when i add the pool master to cloudstack ,cloudstack adds automatically all the slave hosts but the log file is giving uanable to authentificate exeption. When i finish and trys to add VM's ,all the virtual routers created on the pool masters starts fine , but when cloudstack tryes to create it on one of the slaves i get this error Failed to authentication SSH user root on host So should i give all my pools host the same password to resolve this issue ?? thx
回复: 求自动安装脚本
slywbomhfe 发件人: xiaoxiaobai...@163.com 发送时间: 2015-04-08 11:50 收件人: cs中文专家; cs中文组 主题: 求自动安装脚本 请问哪位大神有完整的cloudstack自动安装脚本,麻烦提供下,谢谢 xiaoxiaobai...@163.com
求自动安装脚本
请问哪位大神有完整的cloudstack自动安装脚本,麻烦提供下,谢谢 xiaoxiaobai...@163.com
Re: 求自动安装脚本
xiaoxiaobai_cs,您好! 为什么要自动安装脚本? 安装1个小时,调试1个月,脚本能节省多少时间? === 2015-04-08 11:49:30 您在来信中写道:=== 请问哪位大神有完整的cloudstack自动安装脚本,麻烦提供下,谢谢 xiaoxiaobai...@163.com = = = = = = = = = = = = = = = = = = = = 致 礼! 贝为标 beiweib...@163.com 2015-04-08