Re: Unable to remove or modify VPC

2015-04-07 Thread Sanjeev N
Looks like a bug to me. Please open a bug in https://issues.apache.org/

On Tue, Apr 7, 2015 at 1:57 AM, Grayson Head gray...@graysonhead.net
wrote:

 One of my coworkers has created a VPC that we are unable to modify or
 remove.

 The coworker said he was testing the site-to-site VPN functionality,
 and ended up having to  create a seperate VPC instance to get it
 working. Now we are unable to remove this VPC instance using the web
 interface or the API. I suspect based on the log outputs that the
 site-to-site VPN is what is causing this problem, but the VPC shows
 that it doesn't have any site-to-site connections configured.

 The VPC still has one external IP address allocated to it, which I
 think was the one he was using as the VPN gateway. I am also unable to
 remove this IP address, it fails with an internal server error. The
 following is the management-server.log when attempting to release this
 IP address.

 2015-04-06 13:18:42,427 INFO  [o.a.c.f.j.i.AsyncJobMonitor]
 (API-Job-Executor-96:ctx-428fa98b job-6262) Add job-6262 into job
 monitoring
 2015-04-06 13:18:42,427 DEBUG [o.a.c.f.j.i.AsyncJobManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262) Executing AsyncJobVO
 {id:6262, userId: 3, accountId: 3, instanceType: IpAddress,
 instanceId: 9, cmd:
 org.apache.cloudstack.api.command.user.address.DisassociateIPAddrCmd,
 cmdInfo:
 {response:json,id:3d2205a4-41e9-4cf7-9261-d1ae63ce863f,sessionkey:gSf69NNJJZ0SzrIEz1fwOQJpRTo\u003d,ctxDetails:{\com.cloud.network.IpAddress\:\3d2205a4-41e9-4cf7-9261-d1ae63ce863f\},cmdEventType:NET.IPRELEASE,ctxUserId:3,httpmethod:GET,_:1428351522388,uuid:3d2205a4-41e9-4cf7-9261-d1ae63ce863f,ctxAccountId:3,ctxStartEventId:7705},
 cmdVersion: 0, status: IN_PROGRESS, processStatus: 0, resultCode: 0,
 result: null, initMsid: 345050016868, completeMsid: null, lastUpdated:
 null, lastPolled: null, created: null}
 2015-04-06 13:18:42,427 DEBUG [c.c.a.ApiServlet]
 (catalina-exec-14:ctx-91e999f7 ctx-49efc96a) ===END===  10.233.51.176
 -- GET
 command=disassociateIpAddressresponse=jsonsessionkey=gSf69NNJJZ0SzrIEz1fwOQJpRTo%3Did=3d2205a4-41e9-4cf7-9261-d1ae63ce863f_=1428351522388
 2015-04-06 13:18:42,451 DEBUG [c.c.n.IpAddressManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Revoking all
 Firewallrules as a part of public IP id=9 release...
 2015-04-06 13:18:42,462 DEBUG [c.c.n.f.FirewallManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Releasing 0
 firewall rules for ip id=9
 2015-04-06 13:18:42,464 DEBUG [c.c.n.f.FirewallManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) There are no
 firewall rules to apply
 2015-04-06 13:18:42,466 DEBUG [c.c.n.f.FirewallManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Successfully
 released firewall rules for ip id=9 and # of rules now = 0
 2015-04-06 13:18:42,475 DEBUG [c.c.n.IpAddressManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Revoking all
 PortForwarding/StaticNat rules as a part of public IP id=9 release...
 2015-04-06 13:18:42,477 DEBUG [c.c.n.r.RulesManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Releasing 0
 port forwarding rules for ip id=9
 2015-04-06 13:18:42,478 DEBUG [c.c.n.r.RulesManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Releasing 0
 static nat rules for ip id=9
 2015-04-06 13:18:42,480 DEBUG [c.c.n.r.RulesManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) There are no
 port forwarding rules to apply for ip id=9
 2015-04-06 13:18:42,482 DEBUG [c.c.n.r.RulesManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) There are no
 static nat rules to apply for ip id=9
 2015-04-06 13:18:42,483 DEBUG [c.c.n.r.RulesManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Source ip
 id=Ip[66.194.167.148-1] is not one to one nat
 2015-04-06 13:18:42,487 DEBUG [c.c.n.r.RulesManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Successfully
 released rules for ip id=9 and # of rules now = 0
 2015-04-06 13:18:42,487 DEBUG [c.c.n.IpAddressManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Revoking all
 LoadBalancing rules as a part of public IP id=9 release...
 2015-04-06 13:18:42,488 DEBUG [c.c.n.l.LoadBalancingRulesManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Found 0 lb
 rules to cleanup
 2015-04-06 13:18:42,488 DEBUG [c.c.n.IpAddressManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Cleaning up
 remote access vpns as a part of public IP id=9 release...
 2015-04-06 13:18:42,523 ERROR [c.c.a.ApiAsyncJobDispatcher]
 (API-Job-Executor-96:ctx-428fa98b job-6262) Unexpected exception while
 executing
 org.apache.cloudstack.api.command.user.address.DisassociateIPAddrCmd
 java.lang.NullPointerException
 at
 com.cloud.network.NetworkModelImpl.getPhysicalNetworkId(NetworkModelImpl.java:1374)
 at
 

不能删除网络

2015-04-07 Thread 张能钦
大家好,我发现我的网络配置错了,就在面板里面删除网络,但是报错,请帮忙看下可以从哪里开始排除
[cid:_Foxmail.1@81785fd5-f64b-3d01-2470-700e85989501]
[cid:_Foxmail.1@d99df21c-dd13-1190-3552-0d32dcec39c0]



[cid:_Foxmail.1@cd307178-371b-d8fb-f236-c26f738ccce5]




张能钦



Cloudstack 4.5.1 and usage service

2015-04-07 Thread Ronalds D
Hello,
I recently installed Cloudstack 4.5.1 from jenkins.
The operating system for management system is Centos 6.6 x64
Then, I also installed usage server and started the service. After that I
found out that the service actually is down and can't be started. I checked
out error log for usage server and there was plenty of exceptions. I
haven't enabled any encryption, or other fancy stuff.
Any ideas how to fix this ?



java.lang.reflect.InvocationTargetException
at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method)
at
sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:57)
at
sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:43)
at java.lang.reflect.Method.invoke(Method.java:606)
at
org.apache.commons.daemon.support.DaemonLoader.start(DaemonLoader.java:243)
Caused by: org.springframework.beans.factory.BeanCreationException: Error
creating bean with name 'portForwardingUsageParser': Injection of autowired
dependencies failed; nested exception is
org.springframework.beans.factory.BeanCreationException: Could not autowire
field: private com.cloud.usage.dao.UsageDao
com.cloud.usage.parser.PortForwardingUsageParser._usageDao; nested
exception is org.springframework.beans.factory.BeanCreationException: Error
creating bean with name 'usageDaoImpl' defined in URL
[jar:file:/usr/share/cloudstack-usage/lib/cloud-engine-schema-4.5.1-SNAPSHOT.jar!/com/cloud/usage/dao/UsageDaoImpl.class]:
BeanPostProcessor before instantiation of bean failed; nested exception is
net.sf.cglib.core.CodeGenerationException:
java.lang.ExceptionInInitializerError--null
at
org.springframework.beans.factory.annotation.AutowiredAnnotationBeanPostProcessor.postProcessPropertyValues(AutowiredAnnotationBeanPostProcessor.java:288)
at
org.springframework.beans.factory.support.AbstractAutowireCapableBeanFactory.populateBean(AbstractAutowireCapableBeanFactory.java:1116)
at
org.springframework.beans.factory.support.AbstractAutowireCapableBeanFactory.doCreateBean(AbstractAutowireCapableBeanFactory.java:519)
at
org.springframework.beans.factory.support.AbstractAutowireCapableBeanFactory.createBean(AbstractAutowireCapableBeanFactory.java:458)
at
org.springframework.beans.factory.support.AbstractBeanFactory$1.getObject(AbstractBeanFactory.java:295)
at
org.springframework.beans.factory.support.DefaultSingletonBeanRegistry.getSingleton(DefaultSingletonBeanRegistry.java:223)
at
org.springframework.beans.factory.support.AbstractBeanFactory.doGetBean(AbstractBeanFactory.java:292)
at
org.springframework.beans.factory.support.AbstractBeanFactory.getBean(AbstractBeanFactory.java:194)
at
org.springframework.beans.factory.support.DefaultListableBeanFactory.preInstantiateSingletons(DefaultListableBeanFactory.java:628)
at
org.springframework.context.support.AbstractApplicationContext.finishBeanFactoryInitialization(AbstractApplicationContext.java:932)
at
org.springframework.context.support.AbstractApplicationContext.refresh(AbstractApplicationContext.java:479)
at
org.springframework.context.support.ClassPathXmlApplicationContext.init(ClassPathXmlApplicationContext.java:139)
at
org.springframework.context.support.ClassPathXmlApplicationContext.init(ClassPathXmlApplicationContext.java:83)
at com.cloud.usage.UsageServer.start(UsageServer.java:58)
... 5 more
Caused by: org.springframework.beans.factory.BeanCreationException: Could
not autowire field: private com.cloud.usage.dao.UsageDao
com.cloud.usage.parser.PortForwardingUsageParser._usageDao; nested
exception is org.springframework.beans.factory.BeanCreationException: Error
creating bean with name 'usageDaoImpl' defined in URL
[jar:file:/usr/share/cloudstack-usage/lib/cloud-engine-schema-4.5.1-SNAPSHOT.jar!/com/cloud/usage/dao/UsageDaoImpl.class]:
BeanPostProcessor before instantiation of bean failed; nested exception is
net.sf.cglib.core.CodeGenerationException:
java.lang.ExceptionInInitializerError--null
at
org.springframework.beans.factory.annotation.AutowiredAnnotationBeanPostProcessor$AutowiredFieldElement.inject(AutowiredAnnotationBeanPostProcessor.java:514)
at
org.springframework.beans.factory.annotation.InjectionMetadata.inject(InjectionMetadata.java:87)
at
org.springframework.beans.factory.annotation.AutowiredAnnotationBeanPostProcessor.postProcessPropertyValues(AutowiredAnnotationBeanPostProcessor.java:285)
... 18 more
Caused by: org.springframework.beans.factory.BeanCreationException: Error
creating bean with name 'usageDaoImpl' defined in URL
[jar:file:/usr/share/cloudstack-usage/lib/cloud-engine-schema-4.5.1-SNAPSHOT.jar!/com/cloud/usage/dao/UsageDaoImpl.class]:
BeanPostProcessor before instantiation of bean failed; nested exception is
net.sf.cglib.core.CodeGenerationException:
java.lang.ExceptionInInitializerError--null
at

Re: ACS database on Galera/Percona XtraDB cluster

2015-04-07 Thread Nux!
Andrija,

I've run ACS on MariaDB+Galera at some point without any issues. I no longer 
run that setup, but it's not because of any problems.

This is also a good read on the subject, some handy tips there:
http://www.severalnines.com/blog/how-deploy-high-availability-cloudstackcloudplatform-mariadb-galera-cluster


Lucian

--
Sent from the Delta quadrant using Borg technology!

Nux!
www.nux.ro

- Original Message -
 From: Andrija Panic andrija.pa...@gmail.com
 To: users@cloudstack.apache.org, d...@cloudstack.apache.org
 Sent: Tuesday, 7 April, 2015 09:39:48
 Subject: ACS database on Galera/Percona XtraDB cluster

 Hi folks,
 
 wondering if anyone is running ACS databases on Galera cluster ?
 
 I see some MEMORY tables on my standalone installation, and the rest seems
 like InnoDB, so wondering if anyone can confirm this runs fine on Galera ?
 
 THanks,
 
 --
 
 Andrija Panić


volume download link will not be deleted

2015-04-07 Thread S . Brüseke - proIO GmbH
Hi,

we are using CS 4.3.0.2 and I think we found a bug.

1. Create a volume out of a snapshot
2. Extract (download) the volume via UI
3. Delete volume

If you do this the garbage collector will not delete the symlink on secondary 
storage in /var/www/html/userdata/
If you do not delete the volume before the garbage collector time the symlink 
will be removed!

Is this a known bug?
Can somebody test this on CS 4.5.1?

Thank you for your help!

Mit freundlichen Grüßen / With kind regards,

Swen Brüseke



- proIO GmbH -
Geschäftsführer: Swen Brüseke
Sitz der Gesellschaft: Frankfurt am Main

USt-IdNr. DE 267 075 918
Registergericht: Frankfurt am Main - HRB 86239

Diese E-Mail enthält vertrauliche und/oder rechtlich geschützte Informationen. 
Wenn Sie nicht der richtige Adressat sind oder diese E-Mail irrtümlich erhalten 
haben, 
informieren Sie bitte sofort den Absender und vernichten Sie diese Mail. 
Das unerlaubte Kopieren sowie die unbefugte Weitergabe dieser Mail sind nicht 
gestattet. 

This e-mail may contain confidential and/or privileged information. 
If you are not the intended recipient (or have received this e-mail in error) 
please notify 
the sender immediately and destroy this e-mail.  
Any unauthorized copying, disclosure or distribution of the material in this 
e-mail is strictly forbidden. 




RE: problem creating instance from template

2015-04-07 Thread Sonali Jadhav
Anyone have clue on this ?

/Sonali

-Original Message-
From: Sonali Jadhav [mailto:son...@servercentralen.se] 
Sent: Monday, April 6, 2015 5:18 PM
To: users@cloudstack.apache.org
Subject: RE: problem creating instance from template

Hi Prashant,

1 - Yeha actually I noticed that, I am not able to create any new VMs from any 
other template. 

I just tried creating one Ubuntu instance , got this error in logs,

2015-04-06 13:12:25,300 ERROR [c.c.v.VmWorkJobDispatcher] 
(Work-Job-Executor-27:ctx-149fc40a job-2588/job-2589) Unable to complete 
AsyncJobVO {id:2589, userId: 2, accountId: 2, instanceType: null, instanceId: 
null, cmd: com.cloud.vm.VmWorkStart, cmdInfo: 
rO0ABXNyABhjb20uY2xvdWQudm0uVm1Xb3JrU3RhcnR9cMGsvxz73gIAC0oABGRjSWRMAAZhdm9pZHN0ADBMY29tL2Nsb3VkL2RlcGxveS9EZXBsb3ltZW50UGxhbm5lciRFeGNsdWRlTGlzdDtMAAljbHVzdGVySWR0ABBMamF2YS9sYW5nL0xvbmc7TAAGaG9zdElkcQB-AAJMAAtqb3VybmFsTmFtZXQAEkxqYXZhL2xhbmcvU3RyaW5nO0wAEXBoeXNpY2FsTmV0d29ya0lkcQB-AAJMAAdwbGFubmVycQB-AANMAAVwb2RJZHEAfgACTAAGcG9vbElkcQB-AAJMAAlyYXdQYXJhbXN0AA9MamF2YS91dGlsL01hcDtMAA1yZXNlcnZhdGlvbklkcQB-AAN4cgATY29tLmNsb3VkLnZtLlZtV29ya5-ZtlbwJWdrAgAESgAJYWNjb3VudElkSgAGdXNlcklkSgAEdm1JZEwAC2hhbmRsZXJOYW1lcQB-AAN4cAACAAIAQ3QAGVZpcnR1YWxNYWNoaW5lTWFuYWdlckltcGwAAXBzcgAOamF2YS5sYW5nLkxvbmc7i-SQzI8j3wIAAUoABXZhbHVleHIAEGphdmEubGFuZy5OdW1iZXKGrJUdC5TgiwIAAHhwAAFxAH4ACnBwcHEAfgAKcHNyABFqYXZhLnV0aWwuSGFzaE1hcAUH2sHDFmDRAwACRgAKbG9hZEZhY3RvckkACXRocmVzaG9sZHhwP0x3CBABdAAKVm1QYXNzd29yZHQAHHJPMEFCWFFBRG5OaGRtVmtYM0JoYzNOM2IzSmt4cA,
 cmdVersion: 0, status: IN_PROGRESS, processStatus: 0, resultCode: 0, result: 
null, initMsid: 59778234354585, completeMsid: null, lastUpdated: null, 
lastPolled: null, created: Mon Apr 06 13:12:13 CEST 2015}, job origin:2588
com.cloud.exception.InsufficientServerCapacityException: Unable to create a 
deployment for VM[User|i-2-67-VM]Scope=interface com.cloud.dc.DataCenter; id=1
at 
com.cloud.vm.VirtualMachineManagerImpl.orchestrateStart(VirtualMachineManagerImpl.java:947)
at 
com.cloud.vm.VirtualMachineManagerImpl.orchestrateStart(VirtualMachineManagerImpl.java:5195)
at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method)
at 
sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:57)
at 
sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:43)
at java.lang.reflect.Method.invoke(Method.java:606)
at 
com.cloud.vm.VmWorkJobHandlerProxy.handleVmWorkJob(VmWorkJobHandlerProxy.java:107)
at 
com.cloud.vm.VirtualMachineManagerImpl.handleVmWorkJob(VirtualMachineManagerImpl.java:5340)
at com.cloud.vm.VmWorkJobDispatcher.runJob(VmWorkJobDispatcher.java:102)
at 
org.apache.cloudstack.framework.jobs.impl.AsyncJobManagerImpl$5.runInContext(AsyncJobManagerImpl.java:503)
at 
org.apache.cloudstack.managed.context.ManagedContextRunnable$1.run(ManagedContextRunnable.java:49)
at 
org.apache.cloudstack.managed.context.impl.DefaultManagedContext$1.call(DefaultManagedContext.java:56)
at 
org.apache.cloudstack.managed.context.impl.DefaultManagedContext.callWithContext(DefaultManagedContext.java:103)
at 
org.apache.cloudstack.managed.context.impl.DefaultManagedContext.runWithContext(DefaultManagedContext.java:53)
at 
org.apache.cloudstack.managed.context.ManagedContextRunnable.run(ManagedContextRunnable.java:46)
at 
org.apache.cloudstack.framework.jobs.impl.AsyncJobManagerImpl$5.run(AsyncJobManagerImpl.java:460)
at 
java.util.concurrent.Executors$RunnableAdapter.call(Executors.java:471)
at java.util.concurrent.FutureTask.run(FutureTask.java:262)
at 
java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1145)
at 
java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:615)
at java.lang.Thread.run(Thread.java:744)
2015-04-06 13:12:25,302 DEBUG [o.a.c.f.j.i.AsyncJobManagerImpl] 
(Work-Job-Executor-27:ctx-149fc40a job-2588/job-2589) Complete async job-2589, 
jobStatus: FAILED, resultCode: 0, 
2015-04-06 13:12:25,396 DEBUG [o.a.c.f.j.i.AsyncJobManagerImpl] 
(Work-Job-Executor-27:ctx-149fc40a job-2588/job-2589) Done executing 
com.cloud.vm.VmWorkStart for job-2589
2015-04-06 13:12:25,482 DEBUG [o.a.c.f.j.i.AsyncJobManagerImpl] 
(API-Job-Executor-9:ctx-5e6ac400 job-2588 ctx-0c8863ad) Sync job-2590 execution 
on object VmWorkJobQueue.67
2015-04-06 13:12:25,486 WARN  [c.c.u.d.Merovingian2] 
(API-Job-Executor-9:ctx-5e6ac400 job-2588 ctx-0c8863ad) Was unable to find lock 
for the key vm_instance67 and thread id 1697914126


After some time this was 2nd exception about same instance,


2015-04-06 13:12:32,661 INFO  [c.c.v.VirtualMachineManagerImpl] 
(Work-Job-Executor-29:ctx-467f37f1 job-2588/job-2590 ctx-4b4246ef) Unable to 
contact resource.
com.cloud.exception.StorageUnavailableException: Resource [StoragePool:1] is 
unreachable: Unable 

Re: volume download link will not be deleted

2015-04-07 Thread Rajani Karuturi
bug exists on 4.5.1 as well. Can you log it in jira?


~Rajani

On Tue, Apr 7, 2015 at 5:50 PM, S. Brüseke - proIO GmbH 
s.brues...@proio.com wrote:

 Hi,

 we are using CS 4.3.0.2 and I think we found a bug.

 1. Create a volume out of a snapshot
 2. Extract (download) the volume via UI
 3. Delete volume

 If you do this the garbage collector will not delete the symlink on
 secondary storage in /var/www/html/userdata/
 If you do not delete the volume before the garbage collector time the
 symlink will be removed!

 Is this a known bug?
 Can somebody test this on CS 4.5.1?

 Thank you for your help!

 Mit freundlichen Grüßen / With kind regards,

 Swen Brüseke



 - proIO GmbH -
 Geschäftsführer: Swen Brüseke
 Sitz der Gesellschaft: Frankfurt am Main

 USt-IdNr. DE 267 075 918
 Registergericht: Frankfurt am Main - HRB 86239

 Diese E-Mail enthält vertrauliche und/oder rechtlich geschützte
 Informationen.
 Wenn Sie nicht der richtige Adressat sind oder diese E-Mail irrtümlich
 erhalten haben,
 informieren Sie bitte sofort den Absender und vernichten Sie diese Mail.
 Das unerlaubte Kopieren sowie die unbefugte Weitergabe dieser Mail sind
 nicht gestattet.

 This e-mail may contain confidential and/or privileged information.
 If you are not the intended recipient (or have received this e-mail in
 error) please notify
 the sender immediately and destroy this e-mail.
 Any unauthorized copying, disclosure or distribution of the material in
 this e-mail is strictly forbidden.





Re: 不能删除网络

2015-04-07 Thread zanghongtu2...@gmail.com
看不到图片



hongtu_zang
zanghongtu2...@gmail.com 
Beijing China
 
发件人: 张能钦
发送时间: 2015-04-07 17:50
收件人: users-cn
主题: 不能删除网络
大家好,我发现我的网络配置错了,就在面板里面删除网络,但是报错,请帮忙看下可以从哪里开始排除








张能钦
 


Re: problem creating instance from template

2015-04-07 Thread Praveen B
Hi Sonali,

(*I may not be really asking something that you might already have tried
out earlier during the troubleshooting of the issue).

From the log snippets, it seems a missing VHD file(s) in your primary
storage causing SR scan to get BACKEND_ERROR.
You need to find that missing VHD file and delete the corresponding VDI
file using xe command.

Run xe sr-scan uuid= manually in xen server for your primary storage
to make out a way to find missing VHD file.

Let me know how this works.

Thanks,
Praveen

On Tue, Apr 7, 2015 at 5:55 PM, Sonali Jadhav son...@servercentralen.se
wrote:

 Anyone have clue on this ?

 /Sonali

 -Original Message-
 From: Sonali Jadhav [mailto:son...@servercentralen.se]
 Sent: Monday, April 6, 2015 5:18 PM
 To: users@cloudstack.apache.org
 Subject: RE: problem creating instance from template

 Hi Prashant,

 1 - Yeha actually I noticed that, I am not able to create any new VMs from
 any other template.

 I just tried creating one Ubuntu instance , got this error in logs,

 2015-04-06 13:12:25,300 ERROR [c.c.v.VmWorkJobDispatcher]
 (Work-Job-Executor-27:ctx-149fc40a job-2588/job-2589) Unable to complete
 AsyncJobVO {id:2589, userId: 2, accountId: 2, instanceType: null,
 instanceId: null, cmd: com.cloud.vm.VmWorkStart, cmdInfo:
 rO0ABXNyABhjb20uY2xvdWQudm0uVm1Xb3JrU3RhcnR9cMGsvxz73gIAC0oABGRjSWRMAAZhdm9pZHN0ADBMY29tL2Nsb3VkL2RlcGxveS9EZXBsb3ltZW50UGxhbm5lciRFeGNsdWRlTGlzdDtMAAljbHVzdGVySWR0ABBMamF2YS9sYW5nL0xvbmc7TAAGaG9zdElkcQB-AAJMAAtqb3VybmFsTmFtZXQAEkxqYXZhL2xhbmcvU3RyaW5nO0wAEXBoeXNpY2FsTmV0d29ya0lkcQB-AAJMAAdwbGFubmVycQB-AANMAAVwb2RJZHEAfgACTAAGcG9vbElkcQB-AAJMAAlyYXdQYXJhbXN0AA9MamF2YS91dGlsL01hcDtMAA1yZXNlcnZhdGlvbklkcQB-AAN4cgATY29tLmNsb3VkLnZtLlZtV29ya5-ZtlbwJWdrAgAESgAJYWNjb3VudElkSgAGdXNlcklkSgAEdm1JZEwAC2hhbmRsZXJOYW1lcQB-AAN4cAACAAIAQ3QAGVZpcnR1YWxNYWNoaW5lTWFuYWdlckltcGwAAXBzcgAOamF2YS5sYW5nLkxvbmc7i-SQzI8j3wIAAUoABXZhbHVleHIAEGphdmEubGFuZy5OdW1iZXKGrJUdC5TgiwIAAHhwAAFxAH4ACnBwcHEAfgAKcHNyABFqYXZhLnV0aWwuSGFzaE1hcAUH2sHDFmDRAwACRgAKbG9hZEZhY3RvckkACXRocmVzaG9sZHhwP0x3CBABdAAKVm1QYXNzd29yZHQAHHJPMEFCWFFBRG5OaGRtVmtYM0JoYzNOM2IzSmt4cA,
 cmdVersion: 0, status: IN_PROGRESS, processStatus: 0, resultCode: 0,
 result: null, initMsid: 59778234354585, completeMsid: null, lastUpdated:
 null, lastPolled: null, created: Mon Apr 06 13:12:13 CEST 2015}, job
 origin:2588
 com.cloud.exception.InsufficientServerCapacityException: Unable to create
 a deployment for VM[User|i-2-67-VM]Scope=interface com.cloud.dc.DataCenter;
 id=1
 at
 com.cloud.vm.VirtualMachineManagerImpl.orchestrateStart(VirtualMachineManagerImpl.java:947)
 at
 com.cloud.vm.VirtualMachineManagerImpl.orchestrateStart(VirtualMachineManagerImpl.java:5195)
 at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method)
 at
 sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:57)
 at
 sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:43)
 at java.lang.reflect.Method.invoke(Method.java:606)
 at
 com.cloud.vm.VmWorkJobHandlerProxy.handleVmWorkJob(VmWorkJobHandlerProxy.java:107)
 at
 com.cloud.vm.VirtualMachineManagerImpl.handleVmWorkJob(VirtualMachineManagerImpl.java:5340)
 at
 com.cloud.vm.VmWorkJobDispatcher.runJob(VmWorkJobDispatcher.java:102)
 at
 org.apache.cloudstack.framework.jobs.impl.AsyncJobManagerImpl$5.runInContext(AsyncJobManagerImpl.java:503)
 at
 org.apache.cloudstack.managed.context.ManagedContextRunnable$1.run(ManagedContextRunnable.java:49)
 at
 org.apache.cloudstack.managed.context.impl.DefaultManagedContext$1.call(DefaultManagedContext.java:56)
 at
 org.apache.cloudstack.managed.context.impl.DefaultManagedContext.callWithContext(DefaultManagedContext.java:103)
 at
 org.apache.cloudstack.managed.context.impl.DefaultManagedContext.runWithContext(DefaultManagedContext.java:53)
 at
 org.apache.cloudstack.managed.context.ManagedContextRunnable.run(ManagedContextRunnable.java:46)
 at
 org.apache.cloudstack.framework.jobs.impl.AsyncJobManagerImpl$5.run(AsyncJobManagerImpl.java:460)
 at
 java.util.concurrent.Executors$RunnableAdapter.call(Executors.java:471)
 at java.util.concurrent.FutureTask.run(FutureTask.java:262)
 at
 java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1145)
 at
 java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:615)
 at java.lang.Thread.run(Thread.java:744)
 2015-04-06 13:12:25,302 DEBUG [o.a.c.f.j.i.AsyncJobManagerImpl]
 (Work-Job-Executor-27:ctx-149fc40a job-2588/job-2589) Complete async
 job-2589, jobStatus: FAILED, resultCode: 0,
 2015-04-06 13:12:25,396 DEBUG [o.a.c.f.j.i.AsyncJobManagerImpl]
 (Work-Job-Executor-27:ctx-149fc40a job-2588/job-2589) Done executing
 com.cloud.vm.VmWorkStart for job-2589
 2015-04-06 13:12:25,482 DEBUG 

RE: Network performance issue

2015-04-07 Thread Amin Samir
Hello,

We had a similar issue that was resolved when we changed the FreeNAS default
sharing behavior from sync to async by adding a new Sysctl with the
following value, 

vfs.nfsd.async   value to 1

-Original Message-
From: Sam Ceylani [mailto:s...@mistercertified.com] 
Sent: Friday, April 03, 2015 1:19 AM
To: users@cloudstack.apache.org
Subject: Re: Network performance issue

We use Freenas with ZFS also and it is notorious with NFS shares, we created
a dataset and shared on NFS and disabled sync option for this dataset from
ZFS, I forgot the command but it was something like zfs set sync=disabled
/tank/dataset something like that, it will fix it. This has really nothing
to do with cloudstack and xenserver which we use both...


Thanks,

Sam Ceylani, MBA
Computer Engineer
MisterCertified Inc.

301 W. Platt St. Suite 447, Tampa, FL 33606x-apple-data-detectors://0/0
P 813tel:813.264.6460.264.6460tel:813.264.6460 M
813tel:813.416.7867.416.7867tel:813.416.7867
F 800tel:800.553.9520.553.9520tel:800.553.9520 E
sam.ceyl...@mistercertified.commailto:sam.ceyl...@mistercertified.com

On Apr 2, 2015, at 1:13 PM, Pankaj Singh
pank.sin9...@gmail.commailto:pank.sin9...@gmail.com wrote:

Still no luck by disabling these flags.
Would you please help us for this.

Thanks  Regards,
PankaJ Singh


On Thu, Apr 2, 2015 at 8:06 PM, Jeronimo Garcia
garciaj...@gmail.commailto:garciaj...@gmail.com
wrote:

mm i had this problem before 
i think it was TCP offliading or RX/TX checksumming.
I'd say play with ethtool and see if it makes any difference disabling this
flags (or enabling them) Im on #cloudstack@freenode if you want to pop in.

Thanks

On Thu, Apr 2, 2015 at 3:12 PM, Pankaj Singh
pank.sin9...@gmail.commailto:pank.sin9...@gmail.com
wrote:

We have two different network on two similar switches. One is our
192.168.1.0/24 and other is 192.168.2.0/24 network.
Our switch capacity is 1000Mbps and so does our NIC cards on Host machines.

On n/w 192.168.1.0/24, we are using xenserver 6.2 to deploy our Virtual
machines and we can able to achieve persistent 75 to 80 MB/s speed while
transferring (via scp) one 12GiB file from one VM to another VM on same
Xenserver.

We are using 192.168.2.0/24 network for our cloudstack setup.
We have used following software with their version to establish out private
cloud:


Cloudstack = v4.4.2
Management Server On = Centos 6.4 x86_64 bit Xenserver as a hypervisor =
v6.2 (similar configuration of machine as we have used in 192.168.1.0/24
n/w) FreeNAS as a Primary and Secondary Storage via NFS = v9.3 (filesystem
is ZFS  based) Virtual Machine OS = Centos 6.5 x86_64 bit

We are using basic networking with its all default configurations but we are
not able to achieve at least 60 to 65 MB/s of transferring speed.

In cloud If we start scp from one machine to another machine then our
transferring speed starts from 63 MB/s and then its keep falling till 20 to
25 MB/s.

Would you please tell us that what we are missing here. Is ther any kind of
global setting we need to configure so that at least we can achieve more
than 50 MB/s transferring speed between two guest VM.


Thanks and Regards
PankaJ Singh





Re: Unable to remove or modify VPC

2015-04-07 Thread Grayson Head
Sanjeev,

I have opened a bug: https://issues.apache.org/jira/browse/CLOUDSTACK-8371


Thanks.

On Tue, Apr 7, 2015 at 4:01 AM, Sanjeev N sanj...@apache.org wrote:
 Looks like a bug to me. Please open a bug in https://issues.apache.org/

 On Tue, Apr 7, 2015 at 1:57 AM, Grayson Head gray...@graysonhead.net
 wrote:

 One of my coworkers has created a VPC that we are unable to modify or
 remove.

 The coworker said he was testing the site-to-site VPN functionality,
 and ended up having to  create a seperate VPC instance to get it
 working. Now we are unable to remove this VPC instance using the web
 interface or the API. I suspect based on the log outputs that the
 site-to-site VPN is what is causing this problem, but the VPC shows
 that it doesn't have any site-to-site connections configured.

 The VPC still has one external IP address allocated to it, which I
 think was the one he was using as the VPN gateway. I am also unable to
 remove this IP address, it fails with an internal server error. The
 following is the management-server.log when attempting to release this
 IP address.

 2015-04-06 13:18:42,427 INFO  [o.a.c.f.j.i.AsyncJobMonitor]
 (API-Job-Executor-96:ctx-428fa98b job-6262) Add job-6262 into job
 monitoring
 2015-04-06 13:18:42,427 DEBUG [o.a.c.f.j.i.AsyncJobManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262) Executing AsyncJobVO
 {id:6262, userId: 3, accountId: 3, instanceType: IpAddress,
 instanceId: 9, cmd:
 org.apache.cloudstack.api.command.user.address.DisassociateIPAddrCmd,
 cmdInfo:
 {response:json,id:3d2205a4-41e9-4cf7-9261-d1ae63ce863f,sessionkey:gSf69NNJJZ0SzrIEz1fwOQJpRTo\u003d,ctxDetails:{\com.cloud.network.IpAddress\:\3d2205a4-41e9-4cf7-9261-d1ae63ce863f\},cmdEventType:NET.IPRELEASE,ctxUserId:3,httpmethod:GET,_:1428351522388,uuid:3d2205a4-41e9-4cf7-9261-d1ae63ce863f,ctxAccountId:3,ctxStartEventId:7705},
 cmdVersion: 0, status: IN_PROGRESS, processStatus: 0, resultCode: 0,
 result: null, initMsid: 345050016868, completeMsid: null, lastUpdated:
 null, lastPolled: null, created: null}
 2015-04-06 13:18:42,427 DEBUG [c.c.a.ApiServlet]
 (catalina-exec-14:ctx-91e999f7 ctx-49efc96a) ===END===  10.233.51.176
 -- GET
 command=disassociateIpAddressresponse=jsonsessionkey=gSf69NNJJZ0SzrIEz1fwOQJpRTo%3Did=3d2205a4-41e9-4cf7-9261-d1ae63ce863f_=1428351522388
 2015-04-06 13:18:42,451 DEBUG [c.c.n.IpAddressManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Revoking all
 Firewallrules as a part of public IP id=9 release...
 2015-04-06 13:18:42,462 DEBUG [c.c.n.f.FirewallManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Releasing 0
 firewall rules for ip id=9
 2015-04-06 13:18:42,464 DEBUG [c.c.n.f.FirewallManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) There are no
 firewall rules to apply
 2015-04-06 13:18:42,466 DEBUG [c.c.n.f.FirewallManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Successfully
 released firewall rules for ip id=9 and # of rules now = 0
 2015-04-06 13:18:42,475 DEBUG [c.c.n.IpAddressManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Revoking all
 PortForwarding/StaticNat rules as a part of public IP id=9 release...
 2015-04-06 13:18:42,477 DEBUG [c.c.n.r.RulesManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Releasing 0
 port forwarding rules for ip id=9
 2015-04-06 13:18:42,478 DEBUG [c.c.n.r.RulesManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Releasing 0
 static nat rules for ip id=9
 2015-04-06 13:18:42,480 DEBUG [c.c.n.r.RulesManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) There are no
 port forwarding rules to apply for ip id=9
 2015-04-06 13:18:42,482 DEBUG [c.c.n.r.RulesManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) There are no
 static nat rules to apply for ip id=9
 2015-04-06 13:18:42,483 DEBUG [c.c.n.r.RulesManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Source ip
 id=Ip[66.194.167.148-1] is not one to one nat
 2015-04-06 13:18:42,487 DEBUG [c.c.n.r.RulesManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Successfully
 released rules for ip id=9 and # of rules now = 0
 2015-04-06 13:18:42,487 DEBUG [c.c.n.IpAddressManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Revoking all
 LoadBalancing rules as a part of public IP id=9 release...
 2015-04-06 13:18:42,488 DEBUG [c.c.n.l.LoadBalancingRulesManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Found 0 lb
 rules to cleanup
 2015-04-06 13:18:42,488 DEBUG [c.c.n.IpAddressManagerImpl]
 (API-Job-Executor-96:ctx-428fa98b job-6262 ctx-bbf8738d) Cleaning up
 remote access vpns as a part of public IP id=9 release...
 2015-04-06 13:18:42,523 ERROR [c.c.a.ApiAsyncJobDispatcher]
 (API-Job-Executor-96:ctx-428fa98b job-6262) Unexpected exception while
 executing
 org.apache.cloudstack.api.command.user.address.DisassociateIPAddrCmd
 

AW: volume download link will not be deleted

2015-04-07 Thread S . Brüseke - proIO GmbH
Hi Rajani,
 
here it is: https://issues.apache.org/jira/browse/CLOUDSTACK-8370
 
Mit freundlichen Grüßen / With kind regards,
 
Swen Brüseke
 
 
proIO GmbH   
Kleyerstr. 79 - 89 / Tor 13   
D-60326 Frankfurt am Main 
 
Mail: s.brues...@proio.com
Tel:  +(49) (0) 69 739049-15
Fax:  +(49) (0) 69 739049-25  
Web:  www.proio.com
 
- Support -
Mail: supp...@proio.com
24h:  +(49) (0) 1805 522 855
 
Von: Rajani Karuturi [mailto:raj...@apache.org] 
Gesendet: Dienstag, 7. April 2015 16:20
An: users@cloudstack.apache.org; S. Brüseke - proIO GmbH
Betreff: Re: volume download link will not be deleted
 
bug exists on 4.5.1 as well. Can you log it in jira?

~Rajani
 
On Tue, Apr 7, 2015 at 5:50 PM, S. Brüseke - proIO GmbH s.brues...@proio.com 
wrote:
Hi,

we are using CS 4.3.0.2 and I think we found a bug.

1. Create a volume out of a snapshot
2. Extract (download) the volume via UI
3. Delete volume

If you do this the garbage collector will not delete the symlink on secondary 
storage in /var/www/html/userdata/
If you do not delete the volume before the garbage collector time the symlink 
will be removed!

Is this a known bug?
Can somebody test this on CS 4.5.1?

Thank you for your help!

Mit freundlichen Grüßen / With kind regards,

Swen Brüseke



- proIO GmbH -
Geschäftsführer: Swen Brüseke
Sitz der Gesellschaft: Frankfurt am Main

USt-IdNr. DE 267 075 918
Registergericht: Frankfurt am Main - HRB 86239

Diese E-Mail enthält vertrauliche und/oder rechtlich geschützte Informationen.
Wenn Sie nicht der richtige Adressat sind oder diese E-Mail irrtümlich erhalten 
haben,
informieren Sie bitte sofort den Absender und vernichten Sie diese Mail.
Das unerlaubte Kopieren sowie die unbefugte Weitergabe dieser Mail sind nicht 
gestattet.

This e-mail may contain confidential and/or privileged information.
If you are not the intended recipient (or have received this e-mail in error) 
please notify
the sender immediately and destroy this e-mail.
Any unauthorized copying, disclosure or distribution of the material in this 
e-mail is strictly forbidden.


- proIO GmbH -
Geschäftsführer: Swen Brüseke
Sitz der Gesellschaft: Frankfurt am Main

USt-IdNr. DE 267 075 918
Registergericht: Frankfurt am Main - HRB 86239

Diese E-Mail enthält vertrauliche und/oder rechtlich geschützte Informationen. 
Wenn Sie nicht der richtige Adressat sind oder diese E-Mail irrtümlich erhalten 
haben, 
informieren Sie bitte sofort den Absender und vernichten Sie diese Mail. 
Das unerlaubte Kopieren sowie die unbefugte Weitergabe dieser Mail sind nicht 
gestattet. 

This e-mail may contain confidential and/or privileged information. 
If you are not the intended recipient (or have received this e-mail in error) 
please notify 
the sender immediately and destroy this e-mail.  
Any unauthorized copying, disclosure or distribution of the material in this 
e-mail is strictly forbidden. 



Re: Urgent : CloudStack xenserver 6.2 Cluster

2015-04-07 Thread Prashant s
Hello Fedi,

please reset all the xenserver hosts to one common password in a
xencluster. this is the easier solution to fix your problem.

yes cloudstack will add all the hosts in the xen pool to the ACS Cluster
when you add the management , *which is great so you dont have to add all
the individual hosts one by one   *

if you want to reset the host password please cloudmonkey ,

 *list hosts*

* update hostpassword clusterid=ad3751ee-1437-436xx
hostid=56168d32-1773-f  password=x  username=root*


On Tue, Apr 7, 2015 at 12:39 PM, Fedi Ben Ali ben.ali.fe...@gmail.com
wrote:

 Hello ,

 On my deployement i have multiple xenservers pools, each host on these
 pools have his own password .when i add the pool master to cloudstack
 ,cloudstack adds automatically all the slave hosts but the log file is
 giving uanable to authentificate exeption.


 When i finish and trys to add VM's ,all the virtual routers created on the
 pool masters starts fine , but when cloudstack tryes to create it on one of
 the slaves i get this error

  Failed to authentication SSH user root on host 

 So should i give all my pools host the same password to resolve this issue
 ??



 thx



Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM

2015-04-07 Thread Andrija Panic
I did found this in log:

2015-04-07 18:00:45,163 WARN  [c.c.k.KeystoreManagerImpl]
(AgentConnectTaskPool-117:ctx-2a501782) Unable to build keystore for
CPVMCertificate due to CertificateException
2015-04-07 18:00:45,163 ERROR [c.c.c.AgentHookBase]
(AgentConnectTaskPool-117:ctx-2a501782) Could not find and construct a
valid SSL certificate

Any clues on this ?

On 7 April 2015 at 19:01, Andrija Panic andrija.pa...@gmail.com wrote:

 ok, I'm on 4.3.2, so there is only UI field for cert, key and
 domainname so no field for i.e. password, as the key would have to been
 decrypted sometimes if it is encrypted.

 My possible problem - I see both old intermediate1 cert and the new
 intermediate1 cert in database, but only 1 ROOT CA (might have been - I
 used the same name so odl ROOT CA was overwriten)

 Main CERT and the key looks fine in database...


 On 7 April 2015 at 18:59, Erik Weber terbol...@gmail.com wrote:

 Your private key is decrypted, my issue was that it should've been
 encrypted.

 However, that could be 4.5 specific. You'll get an exception if you
 encounter the same.


 Erik

 Den tirsdag 7. april 2015 skrev Andrija Panic andrija.pa...@gmail.com
 følgende:

  Thx Erik,
 
  per my understanding, private key needs to be DEcrypted, and uploaded
  through UI... ?
 
  On 7 April 2015 at 18:48, Erik Weber terbol...@gmail.com
 javascript:;
  wrote:
 
   Also, take a backup first, then remove the realhostip occurence and
 set
  seq
   to 0 for your cert.
  
   Erik
  
   Den tirsdag 7. april 2015 skrev Erik Weber terbol...@gmail.com
  javascript:; følgende:
  
Nothing in the logs?
   
I had an issue where the private key wasn't being encrypted and had
 to
   fix
it by encrypting manually. But I also had could not decrypt
 exceptions
  in
the logs.
   
Erik
   
Den tirsdag 7. april 2015 skrev Andrija Panic 
 andrija.pa...@gmail.com
  javascript:;
javascript:_e(%7B%7D,'cvml','andrija.pa...@gmail.com
 javascript:;');
  følgende:
   
Hi guys,
   
our SSL just expired, and I needed to upload new ROOT CA,
 Intemediata
   ROOT
CA, and at the end SSL for sever and a private key.
   
I uploaded new ROOT CA, and after CPVM rebooted, also uploaded
Intermediate
ROOT CA, via API, with URL encoded stuff - checked in database all
  seems
OK.
   
But after uploading new SSL and private key, destroyed CPVM and
 SSVM -
   my
Console Proxy shows *.realiphost.com as the domain for the SSL
 wjen I
access
   
Any clues what I did wrong ?
Should I have somehow removed first old ROOT CA and old
 Intermediate
  CA,
and upload new ones ?
   
Here is database content from cloud.keystore:
http://snag.gy/LMA4h.jpg
   
This means that for some reason, original realiphost.com SSL is
 now
   used
inside CPVM...
   
Any help greatly appreciated, since this is live system...
   
Thanks,
   
   
   
--
   
Andrija Panić
   
   
  
 
 
 
  --
 
  Andrija Panić
 




 --

 Andrija Panić




-- 

Andrija Panić


Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM

2015-04-07 Thread Erik Weber
Also, take a backup first, then remove the realhostip occurence and set seq
to 0 for your cert.

Erik

Den tirsdag 7. april 2015 skrev Erik Weber terbol...@gmail.com følgende:

 Nothing in the logs?

 I had an issue where the private key wasn't being encrypted and had to fix
 it by encrypting manually. But I also had could not decrypt exceptions in
 the logs.

 Erik

 Den tirsdag 7. april 2015 skrev Andrija Panic andrija.pa...@gmail.com
 javascript:_e(%7B%7D,'cvml','andrija.pa...@gmail.com'); følgende:

 Hi guys,

 our SSL just expired, and I needed to upload new ROOT CA, Intemediata ROOT
 CA, and at the end SSL for sever and a private key.

 I uploaded new ROOT CA, and after CPVM rebooted, also uploaded
 Intermediate
 ROOT CA, via API, with URL encoded stuff - checked in database all seems
 OK.

 But after uploading new SSL and private key, destroyed CPVM and SSVM - my
 Console Proxy shows *.realiphost.com as the domain for the SSL wjen I
 access

 Any clues what I did wrong ?
 Should I have somehow removed first old ROOT CA and old Intermediate CA,
 and upload new ones ?

 Here is database content from cloud.keystore:
 http://snag.gy/LMA4h.jpg

 This means that for some reason, original realiphost.com SSL is now used
 inside CPVM...

 Any help greatly appreciated, since this is live system...

 Thanks,



 --

 Andrija Panić




Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM

2015-04-07 Thread Andrija Panic
ok, I'm on 4.3.2, so there is only UI field for cert, key and
domainname so no field for i.e. password, as the key would have to been
decrypted sometimes if it is encrypted.

My possible problem - I see both old intermediate1 cert and the new
intermediate1 cert in database, but only 1 ROOT CA (might have been - I
used the same name so odl ROOT CA was overwriten)

Main CERT and the key looks fine in database...


On 7 April 2015 at 18:59, Erik Weber terbol...@gmail.com wrote:

 Your private key is decrypted, my issue was that it should've been
 encrypted.

 However, that could be 4.5 specific. You'll get an exception if you
 encounter the same.


 Erik

 Den tirsdag 7. april 2015 skrev Andrija Panic andrija.pa...@gmail.com
 følgende:

  Thx Erik,
 
  per my understanding, private key needs to be DEcrypted, and uploaded
  through UI... ?
 
  On 7 April 2015 at 18:48, Erik Weber terbol...@gmail.com
 javascript:;
  wrote:
 
   Also, take a backup first, then remove the realhostip occurence and set
  seq
   to 0 for your cert.
  
   Erik
  
   Den tirsdag 7. april 2015 skrev Erik Weber terbol...@gmail.com
  javascript:; følgende:
  
Nothing in the logs?
   
I had an issue where the private key wasn't being encrypted and had
 to
   fix
it by encrypting manually. But I also had could not decrypt
 exceptions
  in
the logs.
   
Erik
   
Den tirsdag 7. april 2015 skrev Andrija Panic 
 andrija.pa...@gmail.com
  javascript:;
javascript:_e(%7B%7D,'cvml','andrija.pa...@gmail.com
 javascript:;');
  følgende:
   
Hi guys,
   
our SSL just expired, and I needed to upload new ROOT CA,
 Intemediata
   ROOT
CA, and at the end SSL for sever and a private key.
   
I uploaded new ROOT CA, and after CPVM rebooted, also uploaded
Intermediate
ROOT CA, via API, with URL encoded stuff - checked in database all
  seems
OK.
   
But after uploading new SSL and private key, destroyed CPVM and
 SSVM -
   my
Console Proxy shows *.realiphost.com as the domain for the SSL
 wjen I
access
   
Any clues what I did wrong ?
Should I have somehow removed first old ROOT CA and old Intermediate
  CA,
and upload new ones ?
   
Here is database content from cloud.keystore:
http://snag.gy/LMA4h.jpg
   
This means that for some reason, original realiphost.com SSL is now
   used
inside CPVM...
   
Any help greatly appreciated, since this is live system...
   
Thanks,
   
   
   
--
   
Andrija Panić
   
   
  
 
 
 
  --
 
  Andrija Panić
 




-- 

Andrija Panić


Urgent : CloudStack xenserver 6.2 Cluster

2015-04-07 Thread Fedi Ben Ali
Hello ,

On my deployement i have multiple xenservers pools, each host on these
pools have his own password .when i add the pool master to cloudstack
,cloudstack adds automatically all the slave hosts but the log file is
giving uanable to authentificate exeption.


When i finish and trys to add VM's ,all the virtual routers created on the
pool masters starts fine , but when cloudstack tryes to create it on one of
the slaves i get this error

 Failed to authentication SSH user root on host 

So should i give all my pools host the same password to resolve this issue
??



thx


Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM

2015-04-07 Thread Erik Weber
Nothing in the logs?

I had an issue where the private key wasn't being encrypted and had to fix
it by encrypting manually. But I also had could not decrypt exceptions in
the logs.

Erik

Den tirsdag 7. april 2015 skrev Andrija Panic andrija.pa...@gmail.com
følgende:

 Hi guys,

 our SSL just expired, and I needed to upload new ROOT CA, Intemediata ROOT
 CA, and at the end SSL for sever and a private key.

 I uploaded new ROOT CA, and after CPVM rebooted, also uploaded Intermediate
 ROOT CA, via API, with URL encoded stuff - checked in database all seems
 OK.

 But after uploading new SSL and private key, destroyed CPVM and SSVM - my
 Console Proxy shows *.realiphost.com as the domain for the SSL wjen I
 access

 Any clues what I did wrong ?
 Should I have somehow removed first old ROOT CA and old Intermediate CA,
 and upload new ones ?

 Here is database content from cloud.keystore:
 http://snag.gy/LMA4h.jpg

 This means that for some reason, original realiphost.com SSL is now used
 inside CPVM...

 Any help greatly appreciated, since this is live system...

 Thanks,



 --

 Andrija Panić



Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM

2015-04-07 Thread Erik Weber
Your private key is decrypted, my issue was that it should've been
encrypted.

However, that could be 4.5 specific. You'll get an exception if you
encounter the same.


Erik

Den tirsdag 7. april 2015 skrev Andrija Panic andrija.pa...@gmail.com
følgende:

 Thx Erik,

 per my understanding, private key needs to be DEcrypted, and uploaded
 through UI... ?

 On 7 April 2015 at 18:48, Erik Weber terbol...@gmail.com javascript:;
 wrote:

  Also, take a backup first, then remove the realhostip occurence and set
 seq
  to 0 for your cert.
 
  Erik
 
  Den tirsdag 7. april 2015 skrev Erik Weber terbol...@gmail.com
 javascript:; følgende:
 
   Nothing in the logs?
  
   I had an issue where the private key wasn't being encrypted and had to
  fix
   it by encrypting manually. But I also had could not decrypt exceptions
 in
   the logs.
  
   Erik
  
   Den tirsdag 7. april 2015 skrev Andrija Panic andrija.pa...@gmail.com
 javascript:;
   javascript:_e(%7B%7D,'cvml','andrija.pa...@gmail.com javascript:;');
 følgende:
  
   Hi guys,
  
   our SSL just expired, and I needed to upload new ROOT CA, Intemediata
  ROOT
   CA, and at the end SSL for sever and a private key.
  
   I uploaded new ROOT CA, and after CPVM rebooted, also uploaded
   Intermediate
   ROOT CA, via API, with URL encoded stuff - checked in database all
 seems
   OK.
  
   But after uploading new SSL and private key, destroyed CPVM and SSVM -
  my
   Console Proxy shows *.realiphost.com as the domain for the SSL wjen I
   access
  
   Any clues what I did wrong ?
   Should I have somehow removed first old ROOT CA and old Intermediate
 CA,
   and upload new ones ?
  
   Here is database content from cloud.keystore:
   http://snag.gy/LMA4h.jpg
  
   This means that for some reason, original realiphost.com SSL is now
  used
   inside CPVM...
  
   Any help greatly appreciated, since this is live system...
  
   Thanks,
  
  
  
   --
  
   Andrija Panić
  
  
 



 --

 Andrija Panić



Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM

2015-04-07 Thread Andrija Panic
Thx Erik,

per my understanding, private key needs to be DEcrypted, and uploaded
through UI... ?

On 7 April 2015 at 18:48, Erik Weber terbol...@gmail.com wrote:

 Also, take a backup first, then remove the realhostip occurence and set seq
 to 0 for your cert.

 Erik

 Den tirsdag 7. april 2015 skrev Erik Weber terbol...@gmail.com følgende:

  Nothing in the logs?
 
  I had an issue where the private key wasn't being encrypted and had to
 fix
  it by encrypting manually. But I also had could not decrypt exceptions in
  the logs.
 
  Erik
 
  Den tirsdag 7. april 2015 skrev Andrija Panic andrija.pa...@gmail.com
  javascript:_e(%7B%7D,'cvml','andrija.pa...@gmail.com'); følgende:
 
  Hi guys,
 
  our SSL just expired, and I needed to upload new ROOT CA, Intemediata
 ROOT
  CA, and at the end SSL for sever and a private key.
 
  I uploaded new ROOT CA, and after CPVM rebooted, also uploaded
  Intermediate
  ROOT CA, via API, with URL encoded stuff - checked in database all seems
  OK.
 
  But after uploading new SSL and private key, destroyed CPVM and SSVM -
 my
  Console Proxy shows *.realiphost.com as the domain for the SSL wjen I
  access
 
  Any clues what I did wrong ?
  Should I have somehow removed first old ROOT CA and old Intermediate CA,
  and upload new ones ?
 
  Here is database content from cloud.keystore:
  http://snag.gy/LMA4h.jpg
 
  This means that for some reason, original realiphost.com SSL is now
 used
  inside CPVM...
 
  Any help greatly appreciated, since this is live system...
 
  Thanks,
 
 
 
  --
 
  Andrija Panić
 
 




-- 

Andrija Panić


{HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM

2015-04-07 Thread Andrija Panic
Hi guys,

our SSL just expired, and I needed to upload new ROOT CA, Intemediata ROOT
CA, and at the end SSL for sever and a private key.

I uploaded new ROOT CA, and after CPVM rebooted, also uploaded Intermediate
ROOT CA, via API, with URL encoded stuff - checked in database all seems OK.

But after uploading new SSL and private key, destroyed CPVM and SSVM - my
Console Proxy shows *.realiphost.com as the domain for the SSL wjen I
access

Any clues what I did wrong ?
Should I have somehow removed first old ROOT CA and old Intermediate CA,
and upload new ones ?

Here is database content from cloud.keystore:
http://snag.gy/LMA4h.jpg

This means that for some reason, original realiphost.com SSL is now used
inside CPVM...

Any help greatly appreciated, since this is live system...

Thanks,



-- 

Andrija Panić


Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM

2015-04-07 Thread Erik Weber
I would try to delete the keystore table (after backup),then add the
cert.

Erik

Den tirsdag 7. april 2015 skrev Andrija Panic andrija.pa...@gmail.com
følgende:

 I did found this in log:

 2015-04-07 18:00:45,163 WARN  [c.c.k.KeystoreManagerImpl]
 (AgentConnectTaskPool-117:ctx-2a501782) Unable to build keystore for
 CPVMCertificate due to CertificateException
 2015-04-07 18:00:45,163 ERROR [c.c.c.AgentHookBase]
 (AgentConnectTaskPool-117:ctx-2a501782) Could not find and construct a
 valid SSL certificate

 Any clues on this ?

 On 7 April 2015 at 19:01, Andrija Panic andrija.pa...@gmail.com
 javascript:; wrote:

  ok, I'm on 4.3.2, so there is only UI field for cert, key and
  domainname so no field for i.e. password, as the key would have to
 been
  decrypted sometimes if it is encrypted.
 
  My possible problem - I see both old intermediate1 cert and the new
  intermediate1 cert in database, but only 1 ROOT CA (might have been - I
  used the same name so odl ROOT CA was overwriten)
 
  Main CERT and the key looks fine in database...
 
 
  On 7 April 2015 at 18:59, Erik Weber terbol...@gmail.com javascript:;
 wrote:
 
  Your private key is decrypted, my issue was that it should've been
  encrypted.
 
  However, that could be 4.5 specific. You'll get an exception if you
  encounter the same.
 
 
  Erik
 
  Den tirsdag 7. april 2015 skrev Andrija Panic andrija.pa...@gmail.com
 javascript:;
  følgende:
 
   Thx Erik,
  
   per my understanding, private key needs to be DEcrypted, and uploaded
   through UI... ?
  
   On 7 April 2015 at 18:48, Erik Weber terbol...@gmail.com
 javascript:;
  javascript:;
   wrote:
  
Also, take a backup first, then remove the realhostip occurence and
  set
   seq
to 0 for your cert.
   
Erik
   
Den tirsdag 7. april 2015 skrev Erik Weber terbol...@gmail.com
 javascript:;
   javascript:; følgende:
   
 Nothing in the logs?

 I had an issue where the private key wasn't being encrypted and
 had
  to
fix
 it by encrypting manually. But I also had could not decrypt
  exceptions
   in
 the logs.

 Erik

 Den tirsdag 7. april 2015 skrev Andrija Panic 
  andrija.pa...@gmail.com javascript:;
   javascript:;
 javascript:_e(%7B%7D,'cvml','andrija.pa...@gmail.com
 javascript:;
  javascript:;');
   følgende:

 Hi guys,

 our SSL just expired, and I needed to upload new ROOT CA,
  Intemediata
ROOT
 CA, and at the end SSL for sever and a private key.

 I uploaded new ROOT CA, and after CPVM rebooted, also uploaded
 Intermediate
 ROOT CA, via API, with URL encoded stuff - checked in database
 all
   seems
 OK.

 But after uploading new SSL and private key, destroyed CPVM and
  SSVM -
my
 Console Proxy shows *.realiphost.com as the domain for the SSL
  wjen I
 access

 Any clues what I did wrong ?
 Should I have somehow removed first old ROOT CA and old
  Intermediate
   CA,
 and upload new ones ?

 Here is database content from cloud.keystore:
 http://snag.gy/LMA4h.jpg

 This means that for some reason, original realiphost.com SSL is
  now
used
 inside CPVM...

 Any help greatly appreciated, since this is live system...

 Thanks,



 --

 Andrija Panić


   
  
  
  
   --
  
   Andrija Panić
  
 
 
 
 
  --
 
  Andrija Panić
 



 --

 Andrija Panić



RE: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM

2015-04-07 Thread Suresh Sadhu
I see same sequence number for 2 intermediate certificates. does your 
certificate has multiple  intermediate certificate or it has only one.

The reason for getting realhost ip is . your certificate is not applied 
correctly  that is reason it's still refer the old certificate.


Regards
sadhu

-Original Message-
From: Andrija Panic [mailto:andrija.pa...@gmail.com] 
Sent: 07 April 2015 22:56
To: users@cloudstack.apache.org
Cc: d...@cloudstack.apache.org
Subject: Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM

Hi Lucian

yes it is *.domain.com (from 4.3.1 onwards)...

If you can check my attached image, keystore tableseems messed a little bit
:)
http://snag.gy/LMA4h.jpg


On 7 April 2015 at 19:12, Nux! n...@li.nux.ro wrote:

 Can you check secstorage.ssl.cert.domain in global settings and see if 
 it's the correct one?
 Should be *.blah.tld or whatever your domain is.


 HTH
 Lucian

 --
 Sent from the Delta quadrant using Borg technology!

 Nux!
 www.nux.ro

 - Original Message -
  From: Andrija Panic andrija.pa...@gmail.com
  To: users@cloudstack.apache.org, d...@cloudstack.apache.org
  Sent: Tuesday, 7 April, 2015 17:42:35
  Subject: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM

  Hi guys,
 
  our SSL just expired, and I needed to upload new ROOT CA, 
  Intemediata
 ROOT
  CA, and at the end SSL for sever and a private key.
 
  I uploaded new ROOT CA, and after CPVM rebooted, also uploaded
 Intermediate
  ROOT CA, via API, with URL encoded stuff - checked in database all 
  seems
 OK.
 
  But after uploading new SSL and private key, destroyed CPVM and SSVM 
  - my Console Proxy shows *.realiphost.com as the domain for the SSL 
  wjen I access
 
  Any clues what I did wrong ?
  Should I have somehow removed first old ROOT CA and old Intermediate 
  CA, and upload new ones ?
 
  Here is database content from cloud.keystore:
  http://snag.gy/LMA4h.jpg
 
  This means that for some reason, original realiphost.com SSL is now 
  used inside CPVM...
 
  Any help greatly appreciated, since this is live system...
 
  Thanks,
 
 
 
  --
 
  Andrija Panić




-- 

Andrija Panić


Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM

2015-04-07 Thread Andrija Panic
Thanks Suresh.

2 identical sequence numbers means:  first occurence is OLD Intermediate
CA(from 1 year ago), and the second occurence is the new one just uploaded
(it happened I used different names)

for ROOT CA - it happened I used the same name ROOT1 so the old one got
overwriten with seq number 1

Do you expect I should delete the old Intermediate1 CA manually (and leave
only the new one) ?
Or am I expected to upload again ROOT/intermediate with exact same names
and seq numbers ?

Thanks

On 7 April 2015 at 19:43, Suresh Sadhu suresh.sa...@citrix.com wrote:

 I see same sequence number for 2 intermediate certificates. does your
 certificate has multiple  intermediate certificate or it has only one.

 The reason for getting realhost ip is . your certificate is not applied
 correctly  that is reason it's still refer the old certificate.


 Regards
 sadhu

 -Original Message-
 From: Andrija Panic [mailto:andrija.pa...@gmail.com]
 Sent: 07 April 2015 22:56
 To: users@cloudstack.apache.org
 Cc: d...@cloudstack.apache.org
 Subject: Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM

 Hi Lucian

 yes it is *.domain.com (from 4.3.1 onwards)...

 If you can check my attached image, keystore tableseems messed a little bit
 :)
 http://snag.gy/LMA4h.jpg


 On 7 April 2015 at 19:12, Nux! n...@li.nux.ro wrote:

  Can you check secstorage.ssl.cert.domain in global settings and see if
  it's the correct one?
  Should be *.blah.tld or whatever your domain is.
 
 
  HTH
  Lucian
 
  --
  Sent from the Delta quadrant using Borg technology!
 
  Nux!
  www.nux.ro
 
  - Original Message -
   From: Andrija Panic andrija.pa...@gmail.com
   To: users@cloudstack.apache.org, d...@cloudstack.apache.org
   Sent: Tuesday, 7 April, 2015 17:42:35
   Subject: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM
 
   Hi guys,
  
   our SSL just expired, and I needed to upload new ROOT CA,
   Intemediata
  ROOT
   CA, and at the end SSL for sever and a private key.
  
   I uploaded new ROOT CA, and after CPVM rebooted, also uploaded
  Intermediate
   ROOT CA, via API, with URL encoded stuff - checked in database all
   seems
  OK.
  
   But after uploading new SSL and private key, destroyed CPVM and SSVM
   - my Console Proxy shows *.realiphost.com as the domain for the SSL
   wjen I access
  
   Any clues what I did wrong ?
   Should I have somehow removed first old ROOT CA and old Intermediate
   CA, and upload new ones ?
  
   Here is database content from cloud.keystore:
   http://snag.gy/LMA4h.jpg
  
   This means that for some reason, original realiphost.com SSL is now
   used inside CPVM...
  
   Any help greatly appreciated, since this is live system...
  
   Thanks,
  
  
  
   --
  
   Andrija Panić
 



 --

 Andrija Panić




-- 

Andrija Panić


Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM

2015-04-07 Thread Nux!
Can you check secstorage.ssl.cert.domain in global settings and see if it's the 
correct one?
Should be *.blah.tld or whatever your domain is.


HTH
Lucian

--
Sent from the Delta quadrant using Borg technology!

Nux!
www.nux.ro

- Original Message -
 From: Andrija Panic andrija.pa...@gmail.com
 To: users@cloudstack.apache.org, d...@cloudstack.apache.org
 Sent: Tuesday, 7 April, 2015 17:42:35
 Subject: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM

 Hi guys,
 
 our SSL just expired, and I needed to upload new ROOT CA, Intemediata ROOT
 CA, and at the end SSL for sever and a private key.
 
 I uploaded new ROOT CA, and after CPVM rebooted, also uploaded Intermediate
 ROOT CA, via API, with URL encoded stuff - checked in database all seems OK.
 
 But after uploading new SSL and private key, destroyed CPVM and SSVM - my
 Console Proxy shows *.realiphost.com as the domain for the SSL wjen I
 access
 
 Any clues what I did wrong ?
 Should I have somehow removed first old ROOT CA and old Intermediate CA,
 and upload new ones ?
 
 Here is database content from cloud.keystore:
 http://snag.gy/LMA4h.jpg
 
 This means that for some reason, original realiphost.com SSL is now used
 inside CPVM...
 
 Any help greatly appreciated, since this is live system...
 
 Thanks,
 
 
 
 --
 
 Andrija Panić


RE: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM

2015-04-07 Thread Suresh Sadhu
 If you have taken backup of  your  table(keystore) before upload then you 
revert to previous state then upload the certificates again.

Encode(url ecode) the  root and intermediate keys while uploading through api
Root - seq 1 
Intermediate  seq 2

 And while uploading server certificate  through UI  don 't  encode the keys  
,enter only  server certificate and private key(it should be PKCS#8 format) and 
domain name  because you have already uploaded root and intermediate through 
API.( how to check certificate uploaded correctly or not on system vms ,just 
run the keytool  -list on system vms --for syntax/description   ref this blog 
it might useful to you : 
http://sadhusuresh.blogspot.in/2015/01/t-hings-you-should-consider-while.html)

Regards
Sadhu


-Original Message-
From: Andrija Panic [mailto:andrija.pa...@gmail.com] 
Sent: 07 April 2015 23:19
To: d...@cloudstack.apache.org
Cc: users@cloudstack.apache.org
Subject: Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM

Thanks Suresh.

2 identical sequence numbers means:  first occurence is OLD Intermediate 
CA(from 1 year ago), and the second occurence is the new one just uploaded (it 
happened I used different names)

for ROOT CA - it happened I used the same name ROOT1 so the old one got 
overwriten with seq number 1

Do you expect I should delete the old Intermediate1 CA manually (and leave only 
the new one) ?
Or am I expected to upload again ROOT/intermediate with exact same names and 
seq numbers ?

Thanks

On 7 April 2015 at 19:43, Suresh Sadhu suresh.sa...@citrix.com wrote:

 I see same sequence number for 2 intermediate certificates. does your 
 certificate has multiple  intermediate certificate or it has only one.

 The reason for getting realhost ip is . your certificate is not 
 applied correctly  that is reason it's still refer the old certificate.


 Regards
 sadhu

 -Original Message-
 From: Andrija Panic [mailto:andrija.pa...@gmail.com]
 Sent: 07 April 2015 22:56
 To: users@cloudstack.apache.org
 Cc: d...@cloudstack.apache.org
 Subject: Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM

 Hi Lucian

 yes it is *.domain.com (from 4.3.1 onwards)...

 If you can check my attached image, keystore tableseems messed a 
 little bit
 :)
 http://snag.gy/LMA4h.jpg


 On 7 April 2015 at 19:12, Nux! n...@li.nux.ro wrote:

  Can you check secstorage.ssl.cert.domain in global settings and see 
  if it's the correct one?
  Should be *.blah.tld or whatever your domain is.
 
 
  HTH
  Lucian
 
  --
  Sent from the Delta quadrant using Borg technology!
 
  Nux!
  www.nux.ro
 
  - Original Message -
   From: Andrija Panic andrija.pa...@gmail.com
   To: users@cloudstack.apache.org, d...@cloudstack.apache.org
   Sent: Tuesday, 7 April, 2015 17:42:35
   Subject: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM
 
   Hi guys,
  
   our SSL just expired, and I needed to upload new ROOT CA, 
   Intemediata
  ROOT
   CA, and at the end SSL for sever and a private key.
  
   I uploaded new ROOT CA, and after CPVM rebooted, also uploaded
  Intermediate
   ROOT CA, via API, with URL encoded stuff - checked in database all 
   seems
  OK.
  
   But after uploading new SSL and private key, destroyed CPVM and 
   SSVM
   - my Console Proxy shows *.realiphost.com as the domain for the 
   SSL wjen I access
  
   Any clues what I did wrong ?
   Should I have somehow removed first old ROOT CA and old 
   Intermediate CA, and upload new ones ?
  
   Here is database content from cloud.keystore:
   http://snag.gy/LMA4h.jpg
  
   This means that for some reason, original realiphost.com SSL is 
   now used inside CPVM...
  
   Any help greatly appreciated, since this is live system...
  
   Thanks,
  
  
  
   --
  
   Andrija Panić
 



 --

 Andrija Panić




-- 

Andrija Panić


Re: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM

2015-04-07 Thread Andrija Panic
Hi Lucian

yes it is *.domain.com (from 4.3.1 onwards)...

If you can check my attached image, keystore tableseems messed a little bit
:)
http://snag.gy/LMA4h.jpg


On 7 April 2015 at 19:12, Nux! n...@li.nux.ro wrote:

 Can you check secstorage.ssl.cert.domain in global settings and see if
 it's the correct one?
 Should be *.blah.tld or whatever your domain is.


 HTH
 Lucian

 --
 Sent from the Delta quadrant using Borg technology!

 Nux!
 www.nux.ro

 - Original Message -
  From: Andrija Panic andrija.pa...@gmail.com
  To: users@cloudstack.apache.org, d...@cloudstack.apache.org
  Sent: Tuesday, 7 April, 2015 17:42:35
  Subject: {HELP-NEEDED] Replace Root CA etc, for CPVM and SSVM

  Hi guys,
 
  our SSL just expired, and I needed to upload new ROOT CA, Intemediata
 ROOT
  CA, and at the end SSL for sever and a private key.
 
  I uploaded new ROOT CA, and after CPVM rebooted, also uploaded
 Intermediate
  ROOT CA, via API, with URL encoded stuff - checked in database all seems
 OK.
 
  But after uploading new SSL and private key, destroyed CPVM and SSVM - my
  Console Proxy shows *.realiphost.com as the domain for the SSL wjen I
  access
 
  Any clues what I did wrong ?
  Should I have somehow removed first old ROOT CA and old Intermediate CA,
  and upload new ones ?
 
  Here is database content from cloud.keystore:
  http://snag.gy/LMA4h.jpg
 
  This means that for some reason, original realiphost.com SSL is now used
  inside CPVM...
 
  Any help greatly appreciated, since this is live system...
 
  Thanks,
 
 
 
  --
 
  Andrija Panić




-- 

Andrija Panić


Re: Cloudstack 4.5.1 and usage service

2015-04-07 Thread Guy Lowe
This looks like https://issues.apache.org/jira/browse/CLOUDSTACK-7316 
popping up again.


On 07/04/15 22:13, Ronalds D wrote:

Caused by: com.cloud.utils.exception.CloudRuntimeException: key File
containing secret key not found in the classpath:
 at
com.cloud.utils.crypt.EncryptionSecretKeyChecker.check(EncryptionSecretKeyChecker.java:84)


Re: How to migrate foreign VM to CloudStack

2015-04-07 Thread Fedi Ben Ali
Hello Johnny,

To do it properly you should convert all your VM's to templates ,add then
add them to cloudstack and finally you create vm 'sfrom these templates.

But if you wont an out of the box solution you should  make changes on the
source code , i've worked on such solution on xenserver and it was a long
dificult mdifications so i recommand that you do it as i sayed above using
the templates.



2015-04-07 1:02 GMT+01:00 zanghongtu2...@gmail.com zanghongtu2...@gmail.com
:

 You can only modify the cloudstack soucecode and build a new version.



 hongtu_zang
 zanghongtu2...@gmail.com
 Beijing China

 发件人: JohnnyZhao
 发送时间: 2015-04-06 13:13
 收件人: users-cn@cloudstack.apache.org
 主题: How to migrate foreign VM to CloudStack
 Dear Sir:
 I have some questions about how to migrate foreign VM to cloudstack. If I
 have setup a cloudstack environment to manage one VMware vSphere Cluster
 with one vCenter and one KVM clusters, how to migrate the existing current
 VMs on vSphere Clusters into cloudstack? For example, I deploy new VM by
 vCenter, but CloudStack doesn't know it. How to migrate it into existing
 cloudstack environment? Thanks a lot!
 RegardsJohnny Zhao



Re: Urgent : CloudStack xenserver 6.2 Cluster

2015-04-07 Thread Fedi Ben Ali
Hello prashants,

I did it and thats worked perfictally.

Thx.

2015-04-07 17:55 GMT+01:00 Prashant s opsrunb...@gmail.com:

 Hello Fedi,

 please reset all the xenserver hosts to one common password in a
 xencluster. this is the easier solution to fix your problem.

 yes cloudstack will add all the hosts in the xen pool to the ACS Cluster
 when you add the management , *which is great so you dont have to add all
 the individual hosts one by one   *

 if you want to reset the host password please cloudmonkey ,

  *list hosts*

 * update hostpassword clusterid=ad3751ee-1437-436xx
 hostid=56168d32-1773-f  password=x  username=root*


 On Tue, Apr 7, 2015 at 12:39 PM, Fedi Ben Ali ben.ali.fe...@gmail.com
 wrote:

  Hello ,
 
  On my deployement i have multiple xenservers pools, each host on these
  pools have his own password .when i add the pool master to cloudstack
  ,cloudstack adds automatically all the slave hosts but the log file is
  giving uanable to authentificate exeption.
 
 
  When i finish and trys to add VM's ,all the virtual routers created on
 the
  pool masters starts fine , but when cloudstack tryes to create it on one
 of
  the slaves i get this error
 
   Failed to authentication SSH user root on host 
 
  So should i give all my pools host the same password to resolve this
 issue
  ??
 
 
 
  thx
 



回复: 求自动安装脚本

2015-04-07 Thread slywbomhfe





slywbomhfe

发件人: xiaoxiaobai...@163.com
发送时间: 2015-04-08 11:50
收件人: cs中文专家; cs中文组
主题: 求自动安装脚本

请问哪位大神有完整的cloudstack自动安装脚本,麻烦提供下,谢谢 


xiaoxiaobai...@163.com

求自动安装脚本

2015-04-07 Thread xiaoxiaobai...@163.com

请问哪位大神有完整的cloudstack自动安装脚本,麻烦提供下,谢谢 


xiaoxiaobai...@163.com


Re: 求自动安装脚本

2015-04-07 Thread 贝为标
xiaoxiaobai_cs,您好!

为什么要自动安装脚本?
安装1个小时,调试1个月,脚本能节省多少时间?

=== 2015-04-08 11:49:30 您在来信中写道:===


请问哪位大神有完整的cloudstack自动安装脚本,麻烦提供下,谢谢 


xiaoxiaobai...@163.com

= = = = = = = = = = = = = = = = = = = =


致
礼!
 
 
贝为标
beiweib...@163.com
  2015-04-08