management cluster error on cloudstack-management startup

2019-07-26 Thread Richard Persaud
alhost¶
99 db.usage.autoReconnectForPools=true¶
100 db.usage.secondsBeforeRetryMaster=3600¶
101 db.cloud.secondsBeforeRetryMaster=3600¶


Regards,

Richard Persaud
Sys Spec, Info Security Del, Sys Spec, Info Security Del | Macy's, Inc.
5985 State Bridge Rd. | Johns Creek, GA 30097
Office: 678-474-2357

[Make Life Shine Brighter]



vm console not working - unable to resolve dns name

2019-07-24 Thread Richard Persaud
Hi,

After upgrading to 4.11.3, I am not able to connect to the console of my VMs 
from a web browser. I get a DNS error – can’t resolve a-b-c-d.domain.name
I can SSH directly into the VM.
This did work prior.
Any ideas of where to start troubleshooting?
I am using dnsmasq
Regards,

Richard Persaud



cannot delete Isolated network - stuck in implementing

2019-07-23 Thread Richard Persaud
) Remove job-9508 
from job monitoring
2019-07-23 09:57:45,684 DEBUG [c.c.a.ApiServlet] (qtp858242339-27:ctx-5b150636) 
(logid:984e014d) ===START===  10.254.0.245 -- GET  
command=queryAsyncJobResult=ddc449a7-139e-47dc-b8b0-a40b4c48aa0b=json&_=1563890267108
2019-07-23 09:57:45,687 DEBUG [c.c.a.ApiServer] (qtp858242339-27:ctx-5b150636 
ctx-400b4b76) (logid:984e014d) CIDRs from which account 
'Acct[5bbcd7f0-1c71-41d7-aa0a-dadba14a95b2-cyberRangeAdmins]' is allowed to 
perform API calls: 10.0.0.0/8,172.17.0.0/16
2019-07-23 09:57:45,704 DEBUG [c.c.a.ApiServlet] (qtp858242339-27:ctx-5b150636 
ctx-400b4b76) (logid:984e014d) ===END===  10.254.0.245 -- GET  
command=queryAsyncJobResult=ddc449a7-139e-47dc-b8b0-a40b4c48aa0b=json&_=1563890267108
2019-07-23 09:57:46,589 DEBUG [c.c.s.StatsCollector] 
(StatsCollector-4:ctx-59711cc0) (logid:eaf0772b) HostStatsCollector is 
running...
2019-07-23 09:57:46,646 DEBUG [c.c.a.t.Request] (StatsCollector-4:ctx-59711cc0) 
(logid:eaf0772b) Seq 30-8580483190047638641: Received:  { Ans: , MgmtId: 
124125138146572, via: 30(ma000crnd01), Ver: v1, Flags: 10, { GetHostStatsAnswer 
} }
2019-07-23 09:57:46,693 DEBUG [c.c.a.t.Request] (StatsCollector-4:ctx-59711cc0) 
(logid:eaf0772b) Seq 37-8320118836590281758: Received:  { Ans: , MgmtId: 
124125138146572, via: 37(ma000crnd02), Ver: v1, Flags: 10, { GetHostStatsAnswer 
} }
2019-07-23 09:57:46,741 DEBUG [c.c.a.t.Request] (StatsCollector-4:ctx-59711cc0) 
(logid:eaf0772b) Seq 38-6989586621679010834: Received:  { Ans: , MgmtId: 
124125138146572, via: 38(ma000crnd03), Ver: v1, Flags: 10, { GetHostStatsAnswer 
} }
2019-07-23 09:57:46,779 INFO  [o.a.c.f.j.i.AsyncJobManagerImpl] 
(AsyncJobMgr-Heartbeat-1:ctx-4e2d6ac2) (logid:e77b05ae) Begin cleanup expired 
async-jobs
2019-07-23 09:57:46,783 INFO  [o.a.c.f.j.i.AsyncJobManagerImpl] 
(AsyncJobMgr-Heartbeat-1:ctx-4e2d6ac2) (logid:e77b05ae) End cleanup expired 
async-jobs
2019-07-23 09:57:46,789 DEBUG [c.c.a.t.Request] (StatsCollector-4:ctx-59711cc0) 
(logid:eaf0772b) Seq 39-5896900762088245182: Received:  { Ans: , MgmtId: 
124125138146572, via: 39(ma000crnd04), Ver: v1, Flags: 10, { GetHostStatsAnswer 
} }
2019-07-23 09:57:46,833 DEBUG [c.c.a.t.Request] (StatsCollector-4:ctx-59711cc0) 
(logid:eaf0772b) Seq 40-6762999265426932762: Received:  { Ans: , MgmtId: 
124125138146572, via: 40(ma000crnd05), Ver: v1, Flags: 10, { GetHostStatsAnswer 
} }
2019-07-23 09:57:46,877 DEBUG [c.c.a.t.Request] (StatsCollector-4:ctx-59711cc0) 
(logid:eaf0772b) Seq 41-3187141161294758951: Received:  { Ans: , MgmtId: 
124125138146572, via: 41(ma000crnd06), Ver: v1, Flags: 10, { GetHostStatsAnswer 
} }
2019-07-23 09:57:46,921 DEBUG [c.c.a.t.Request] (StatsCollector-4:ctx-59711cc0) 
(logid:eaf0772b) Seq 42-4258716397632226305: Received:  { Ans: , MgmtId: 
124125138146572, via: 42(ma000crnd07), Ver: v1, Flags: 10, { GetHostStatsAnswer 
} }
2019-07-23 09:57:46,965 DEBUG [c.c.a.t.Request] (StatsCollector-4:ctx-59711cc0) 
(logid:eaf0772b) Seq 43-7035185567906137098: Received:  { Ans: , MgmtId: 
124125138146572, via: 43(ma000crnd08), Ver: v1, Flags: 10, { GetHostStatsAnswer 
} }

Regards,

Richard Persaud



cloudstack container service (CCS)

2019-07-08 Thread Richard Persaud
I am attempting to install the container service (ShapeBlue) on 4.11 running on 
Ubuntu 16.04 LTS.

I am following this guide 
http://downloads.shapeblue.com/ccs/1.0/Installation_and_Administration_Guide.pdf

Everything seemingly installs OK.

However, when launching a cluster, it is "stuck" in the starting state. The 
instances show up and in a running state. The CCS dashboard section only shows 
"Container cluster setup is under progress, please check again in few minutes."

I don't see anything out of the ordinary in the management logs, but not sure 
what I should be looking for.

Any ideas on where to start troubleshooting?

Regards,

Richard Persaud



RE: enable saml2 in cloudmonkey

2019-06-25 Thread Richard Persaud
I figured it out -it's the authorize command

authorize samlsso enable=true userid=

Regards,

Richard Persaud
Sys Spec, Info Security Del, Sys Spec, Info Security Del | Macy's, Inc.
5985 State Bridge Rd. | Johns Creek, GA 30097
Office: 678-474-2357

 

-Original Message-
From: Richard Persaud  
Sent: Tuesday, June 25, 2019 2:17 PM
To: users@cloudstack.apache.org
Subject: enable saml2 in cloudmonkey 

⚠ EXT MSG:

How do I enable saml2/sso authentication for a user via cloudmonkey?

Regards,

Richard Persaud

* This is an EXTERNAL EMAIL. Stop and think before clicking a link or opening 
attachments.


enable saml2 in cloudmonkey

2019-06-25 Thread Richard Persaud
How do I enable saml2/sso authentication for a user via cloudmonkey?

Regards,

Richard Persaud



RE: issue with system vm template not downloading

2019-05-10 Thread Richard Persaud
Hi Andrija,

Advanced zone.

I ran the ssvm-check.sh and I did correct some NFS errors. Now, ssvm-check.sh 
runs without any issues.

The situation seems to have worsened – now I am unable to deploy any VM:

http://www.filedropper.com/cs-mgmt-log2

I am getting an insufficient capacity error, but this is a new environment, so 
no guest VMs or guest Networks are created.

Regards,

Richard Persaud

From: Andrija Panic 
Sent: Friday, May 10, 2019 2:00 PM
To: users 
Cc: /usr/local/cloud/systemvm/ssvm-check...@gmail.com
Subject: Re: issue with system vm template not downloading

⚠ EXT MSG:

Hi Richard,

Can you also, beside logs, try/confirm the following:

- are you running a Basic zone ?
- since systemVM tempate should be pre-seeded with a script, perhaps you
are having issues with the SSVM itself and/or downloading default CentOS
template? If so please execute from inside SSVM the following script and
provide results  : 
/usr/local/cloud/systemvm/ssvm-check.sh<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tcvLi7L1U3OSE3O1ivOUNJRKspXsjLUUSrJTAGqMTQwVqoFAI6zDuI>
 and send us the
output.


Regards,
Andrija

On Fri, May 10, 2019, 17:52 Paul Angus 
mailto:paul.an...@shapeblue.com>> wrote:

> Richard,
>
> Could you post (using 
> pastebin.com<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tcvSCwuSU3KzNNLzs9V0lEqyleyMtRRKslMASoxNDBWqgUAgOAOqA>
>  or similar) a large chunk of your
> management server logs around the time of this error please.
> I would think that we need some context to the message.  'Storage host'
> usually refers to the SSVM itself, a timeout waiting for a response
> _suggests_ that the SSVM has been deployed, but isn't 'checking-in'.  Much
> more of the log information would probably help, whatever the problem.
>
> Also...
> I can kinda see what you're trying to achieve with NFS on all of the hosts
> - but I agree with Ivan, I think that you'll soon regret it.
>
>
> Regards
>
> Paul Angus
>
> paul.an...@shapeblue.com<mailto:paul.an...@shapeblue.com>
> www.shapeblue.com<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tcvLy_XK85ILEhNyilN1UvOz1XSUSrKV7Iy1FEqyUwBqjM0MFaqBQDf4BCe>
> Amadeus House, Floral Street, London  WC2E 9DPUK
> @shapeblue
>
>
>
>
> -Original Message-
> From: Ivan Kudryavtsev 
> mailto:kudryavtsev...@bw-sw.com>>
> Sent: 10 May 2019 16:28
> To: users mailto:users@cloudstack.apache.org>>
> Subject: Re: issue with system vm template not downloading
>
> Richard,
>
> 1. About bridges, just check traffic goes correctly between HV hosts and
> SS. All your hosts should be able to mount SS.
> 2. About your HV/Storage topology.
>
> 1st. Cloudstack doesn't balance the storages. While the first chosen
> storage is capable to deploy the image, it will be used. You will not able
> to balance volumes between them.
> 2nd. Every HV will mount every storage. If HV fails (which is probably
> happen more frequently than storage) it will cause __all the__ hosts will
> meet the problem with the NFS share and kick reboot, so, all your cloud
> will reboot.
> Frankly, it's the worst topology possible. What I recommend is to switch
> either to Ceph or Gluster if you want shared storage, split all the hosts
> to separate clusters or use LOCAL STORAGE instead of NFS storage, so your
> VMS will use local storage. Later if you wish to move VMs between hosts,
> you can do it manually.
>
> Best wishes
>
>
>
>
>
> пт, 10 мая 2019 г. в 20:14, Richard Persaud 
> mailto:richard.pers...@macys.com>>:
>
> > Hi Ivan,
> >
> > Thanks for the info.
> >
> > Will you clarify what I should be looking for in my bridge set up?
> > It's fairly standard other then setting the MTU to 9000.
> >
> > The host/storage devices are using hardware RAID5. And all hypervisors
> > are capable of mounting any of the NFS shares.
> >
> > Will you give me some detail on what you mean when you say using
> > native RAID is a bad idea? Why is that and what is the recommended way
> to set up?
> >
> > Thanks in advance
> >
> >
> > Regards,
> > Richard Persaud
> > Sys Spec, Info Security Del | Macy's, Inc.
> > 5985 State Bridge Rd. | Johns Creek, GA 30097
> > Office: 678-474-2357
> > https://macyspartners.com/PublishingImages/MakeLifeShineBrighter.png
> >
> > 
> > From: Ivan Kudryavtsev 
> > mailto:kudryavtsev...@bw-sw.com>>
> > Sent: Thursday, May 9, 2019 21:57
> > To: users
> > Subject: Re: issue with system vm template not downloading
> >
> > ⚠ EXT MSG:
> >
> > Richard, the most probable problem is with bridge devices. Management
&

RE: issue with system vm template not downloading

2019-05-10 Thread Richard Persaud
Here’s the mgmt log

http://www.filedropper.com/cs-mgmt-log


Regards,

Richard Persaud

From: Paul Angus 
Sent: Friday, May 10, 2019 11:52 AM
To: users@cloudstack.apache.org
Subject: RE: issue with system vm template not downloading

⚠ EXT MSG:

Richard,

Could you post (using 
pastebin.com<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tcvSCwuSU3KzNNLzs9V0lEqyleyMtRRKslMASoxNDBWqgUAgOAOqA>
 or similar) a large chunk of your management server logs around the time of 
this error please.
I would think that we need some context to the message.  'Storage host' usually 
refers to the SSVM itself, a timeout waiting for a response _suggests_ that the 
SSVM has been deployed, but isn't 'checking-in'.  Much more of the log 
information would probably help, whatever the problem.

Also...
I can kinda see what you're trying to achieve with NFS on all of the hosts - 
but I agree with Ivan, I think that you'll soon regret it.


Regards

Paul Angus

paul.an...@shapeblue.com<mailto:paul.an...@shapeblue.com>
www.shapeblue.com<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tcvLy_XK85ILEhNyilN1UvOz1XSUSrKV7Iy1FEqyUwBqjM0MFaqBQDf4BCe>
Amadeus House, Floral Street, London  WC2E 9DPUK
@shapeblue




-Original Message-
From: Ivan Kudryavtsev 
mailto:kudryavtsev...@bw-sw.com>>
Sent: 10 May 2019 16:28
To: users mailto:users@cloudstack.apache.org>>
Subject: Re: issue with system vm template not downloading

Richard,

1. About bridges, just check traffic goes correctly between HV hosts and SS. 
All your hosts should be able to mount SS.
2. About your HV/Storage topology.

1st. Cloudstack doesn't balance the storages. While the first chosen storage is 
capable to deploy the image, it will be used. You will not able to balance 
volumes between them.
2nd. Every HV will mount every storage. If HV fails (which is probably happen 
more frequently than storage) it will cause __all the__ hosts will meet the 
problem with the NFS share and kick reboot, so, all your cloud will reboot.
Frankly, it's the worst topology possible. What I recommend is to switch either 
to Ceph or Gluster if you want shared storage, split all the hosts to separate 
clusters or use LOCAL STORAGE instead of NFS storage, so your VMS will use 
local storage. Later if you wish to move VMs between hosts, you can do it 
manually.

Best wishes





пт, 10 мая 2019 г. в 20:14, Richard Persaud 
mailto:richard.pers...@macys.com>>:

> Hi Ivan,
>
> Thanks for the info.
>
> Will you clarify what I should be looking for in my bridge set up?
> It's fairly standard other then setting the MTU to 9000.
>
> The host/storage devices are using hardware RAID5. And all hypervisors
> are capable of mounting any of the NFS shares.
>
> Will you give me some detail on what you mean when you say using
> native RAID is a bad idea? Why is that and what is the recommended way to set 
> up?
>
> Thanks in advance
>
>
> Regards,
> Richard Persaud
> Sys Spec, Info Security Del | Macy's, Inc.
> 5985 State Bridge Rd. | Johns Creek, GA 30097
> Office: 678-474-2357
> https://macyspartners.com/PublishingImages/MakeLifeShineBrighter.png
>
> 
> From: Ivan Kudryavtsev 
> mailto:kudryavtsev...@bw-sw.com>>
> Sent: Thursday, May 9, 2019 21:57
> To: users
> Subject: Re: issue with system vm template not downloading
>
> ⚠ EXT MSG:
>
> Richard, the most probable problem is with bridge devices. Management
> server doesn't care about systemvm. The only unit which cares - ssvm
> and hypervisor. Also, if you are using naive RAID/NFS within one
> cluster when any HV can mount any storage (mesh) it's extremely bad
> idea. You will get s lot of reboots if any of node meets outage. If
> you have DRBD or Gluster, then, it's fine.
>
> пт, 10 мая 2019 г., 6:32 Richard Persaud 
> mailto:richard.pers...@macys.com>
> <mailto:richard.pers...@macys.com<mailto:richard.pers...@macys.com>>>:
>
> > Hello,
> >
> > Our setup:
> > 4.11 on Ubuntu 16.04 LTS. One management server, eight
> > compute/storage hosts (dual function).
> > NFS for storage.
> > No firewall in between the mgmt server and the hosts.
> > Management and storage traffic run over the same VLAN (same network).
> >
> > We are having an issue with the system vm template not downloading.
> > We have seen this issue on multiple occasions
> >
> > "Timeout waiting for response from storage host"
> >
> > It does not give any further information.
> >
> > The management server can successfully contact and mount the NFS
> > shares from all the compute/storage hosts.
> >
> > How can I determine which storage host is timing out? Why is it
> > ti

Re: issue with system vm template not downloading

2019-05-10 Thread Richard Persaud
Hi Ivan,

Thanks for the info.

Will you clarify what I should be looking for in my bridge set up? It's fairly 
standard other then setting the MTU to 9000.

The host/storage devices are using hardware RAID5. And all hypervisors are 
capable of mounting any of the NFS shares.

Will you give me some detail on what you mean when you say using native RAID is 
a bad idea? Why is that and what is the recommended way to set up?

Thanks in advance


Regards,
Richard Persaud
Sys Spec, Info Security Del | Macy's, Inc.
5985 State Bridge Rd. | Johns Creek, GA 30097
Office: 678-474-2357
https://macyspartners.com/PublishingImages/MakeLifeShineBrighter.png


From: Ivan Kudryavtsev 
Sent: Thursday, May 9, 2019 21:57
To: users
Subject: Re: issue with system vm template not downloading

⚠ EXT MSG:

Richard, the most probable problem is with bridge devices. Management
server doesn't care about systemvm. The only unit which cares - ssvm and
hypervisor. Also, if you are using naive RAID/NFS within one cluster when
any HV can mount any storage (mesh) it's extremely bad idea. You will get s
lot of reboots if any of node meets outage. If you have DRBD or Gluster,
then, it's fine.

пт, 10 мая 2019 г., 6:32 Richard Persaud 
mailto:richard.pers...@macys.com>>:

> Hello,
>
> Our setup:
> 4.11 on Ubuntu 16.04 LTS. One management server, eight compute/storage
> hosts (dual function).
> NFS for storage.
> No firewall in between the mgmt server and the hosts.
> Management and storage traffic run over the same VLAN (same network).
>
> We are having an issue with the system vm template not downloading.
> We have seen this issue on multiple occasions
>
> "Timeout waiting for response from storage host"
>
> It does not give any further information.
>
> The management server can successfully contact and mount the NFS shares
> from all the compute/storage hosts.
>
> How can I determine which storage host is timing out? Why is it timing out?
>
> Regards,
>
> Richard Persaud
>

* This is an EXTERNAL EMAIL. Stop and think before clicking a link or opening 
attachments.


issue with system vm template not downloading

2019-05-09 Thread Richard Persaud
Hello,

Our setup:
4.11 on Ubuntu 16.04 LTS. One management server, eight compute/storage hosts 
(dual function).
NFS for storage.
No firewall in between the mgmt server and the hosts.
Management and storage traffic run over the same VLAN (same network).

We are having an issue with the system vm template not downloading.
We have seen this issue on multiple occasions

"Timeout waiting for response from storage host"

It does not give any further information.

The management server can successfully contact and mount the NFS shares from 
all the compute/storage hosts.

How can I determine which storage host is timing out? Why is it timing out?

Regards,

Richard Persaud


cloudshell for individual users

2019-03-19 Thread Richard Persaud
Hello,

How can I enable a "cloudshell" instance for each account/user so they are able 
to manage their VPCs via the CLI? It would be great to offer a cloudMonkey 
cloudshell instance - similar to how Azure and GCP offer CLI options.

Regards,

Richard Persaud



RE: connection refused errors on 4.11.2

2019-02-14 Thread Richard Persaud
HI Ivan,

This is specifically with the SystemVM template .. all the other templates are 
fine.

It will show downloaded in the GUI, and after some time, I will start to get 
these connection refused errors and the SystemVM template will show as “timeout 
waiting for host”. Around the same time,  the console proxy becomes 
unresponsive.

Currently, both console and storage proxies are functioning, and SystemVM 
template shows as Timeout waiting for response from storage host.

It would be helpful if I could figure out which storage host(s) are causing the 
message.


Regards,

Richard Persaud

From: Ivan Kudryavtsev 
Sent: Thursday, February 14, 2019 3:54 PM
To: users 
Subject: Re: connection refused errors on 4.11.2

⚠ EXT MSG:

Richard, probably the error is with bridge mess. Check you have you bridges
configured right and they matches to cloudstack networking labels for
configured network topology...

May be I misunderstood you and it worked before, but stopped occasionally?

чт, 14 февр. 2019 г., 15:46 Richard Persaud 
richard.pers...@macys.com<mailto:richard.pers...@macys.com>:

> Hello,
>
> (4.11.2 on Ubuntu 16.04)
>
> I am at my wits end trying to figure what these connection refused errors
> are
>
>
>   *   The secstorage.allowed.internal.sites global option is set to blank
> (had it set to a /8, /16, /24 and /32s to no avail.)
>   *   All the storage/compute devices are using NFS and they can all
> communicate with each other and the management server.
>   *   There are no firewalls in between the devices and IPTABLES and UFW
> are all turned off.
>   *   I have properly followed the documentation and installed the system
> template.
>   *   *It is interesting to note that the "downloadPath" of
> /mnt/SecStorage does not exist.
>  *   I have created that path in case it may help, but has not stopped
> the error messages.
>
> Any advice you can give is greatly appreciated!
>
> 2019-02-14 13:35:11,462 DEBUG [c.c.a.t.Request]
> (AgentManager-Handler-5:null) (logid:) Seq 20-8098879504895705293:
> Processing:  { Ans: , MgmtId: 2483719209125, via: 20, Ver: v1, Flags: 10,
> [{"com.cloud.agent.api.storage.DownloadAnswer":{"jobId":"e0393396-44bc-44cd-ab93-f7b4b197ac39","downloadPct":0,"errorString":"Connection
> refused (Connection
> refused)","downloadStatus":"DOWNLOAD_ERROR","downloadPath":"/mnt/SecStorage/e6ed90a3-a377-3c18-8edf-54299f3a0fc5/template/tmpl/2/218/dnld9124079927637432602tmp_","installPath":"template/tmpl/2/218","templateSize":0,"templatePhySicalSize":0,"checkSum":"bd43d41e01c2a46b3cb23eb9139dce4b","result":true,"details":"Connection
> refused (Connection refused)","wait":0}}] }
> 2019-02-14 13:35:11,464 DEBUG [c.c.a.t.Request]
> (AgentManager-Handler-11:null) (logid:) Seq 20-8098879504895705294:
> Processing:  { Ans: , MgmtId: 2483719209125, via: 20, Ver: v1, Flags: 10,
> [{"com.cloud.agent.api.storage.DownloadAnswer":{"jobId":"ea138e2a-1397-43f2-b37e-c9f684f0b3f8","downloadPct":0,"errorString":"Connection
> refused (Connection
> refused)","downloadStatus":"DOWNLOAD_ERROR","downloadPath":"/mnt/SecStorage/e6ed90a3-a377-3c18-8edf-54299f3a0fc5/template/tmpl/2/220/dnld1123458749647429711tmp_","installPath":"template/tmpl/2/220","templateSize":0,"templatePhySicalSize":0,"checkSum":"e8adeebcd8076702593469e33cc2d092","result":true,"details":"Connection
> refused (Connection refused)","wait":0}}] }
> 2019-02-14 13:35:11,464 DEBUG [c.c.a.t.Request]
> (AgentManager-Handler-3:null) (logid:) Seq 20-8098879504895705295:
> Processing:  { Ans: , MgmtId: 2483719209125, via: 20, Ver: v1, Flags: 10,
> [{"com.cloud.agent.api.storage.DownloadAnswer":{"jobId":"5383b89f-8aa9-4d00-a26c-a75578315a21","downloadPct":0,"errorString":"Connection
> refused (Connection
> refused)","downloadStatus":"DOWNLOAD_ERROR","downloadPath":"/mnt/SecStorage/e6ed90a3-a377-3c18-8edf-54299f3a0fc5/template/tmpl/2/225/dnld6929327839521639367tmp_","installPath":"template/tmpl/2/225","templateSize":0,"templatePhySicalSize":0,"checkSum":"3ea70993c35c5e60c73eb6c820ba1823","result":true,"details":"Connection
> refused (Connection refused)","wait":0}}] }
> 2019-02-14 13:35:11,464 DEBUG [c.c.a.t.Request]
> (AgentManager-Handler-7:null) (logid:) Seq 20-8098879504895705296:
> Processing:  { Ans: ,

connection refused errors on 4.11.2

2019-02-14 Thread Richard Persaud
: null | clusterId:: null | message:: Failed to 
register template: 4966ab19-40d6-432c-b48f-d8cdc0e615c5 with error: Connection 
refused (Connection refused)
2019-02-14 13:35:13,128 ERROR [o.a.c.s.i.BaseImageStoreDriverImpl] 
(RemoteHostEndPoint-10:ctx-0c7137b7) (logid:3020f1b0) Failed to register 
template: 4966ab19-40d6-432c-b48f-d8cdc0e615c5 with error: Connection refused 
(Connection refused)
2019-02-14 13:35:13,863 DEBUG [c.c.a.t.Request] (AgentManager-Handler-2:null) 
(logid:) Seq 20-8098879504895705306: Processing:  { Ans: , MgmtId: 
2483719209125, via: 20, Ver: v1, Flags: 10, 
[{"com.cloud.agent.api.storage.DownloadAnswer":{"jobId":"9956a015-8595-4856-888c-40941bdaff9b","downloadPct":0,"errorString":"Connection
 refused (Connection 
refused)","downloadStatus":"DOWNLOAD_ERROR","downloadPath":"/mnt/SecStorage/f996a601-23fb-3094-9441-d5bcfa2f5665/template/tmpl/2/240/dnld7849250216735073717tmp_","installPath":"template/tmpl/2/240","templateSize":0,"templatePhySicalSize":0,"checkSum":"f430da8fa59d2f5f4262518e3c177246","result":true,"details":"Connection
 refused (Connection refused)","wait":0}}] }
2019-02-14 13:35:13,871 WARN  [o.a.c.alerts] 
(RemoteHostEndPoint-10:ctx-90e5729e) (logid:9707aa4d) AlertType:: 28 | 
dataCenterId:: 1 | podId:: null | clusterId:: null | message:: Failed to 
register template: 11d68dd6-2fcc-4ef1-8590-2b35eff53107 with error: Connection 
refused (Connection refused)
2019-02-14 13:35:13,873 ERROR [o.a.c.s.i.BaseImageStoreDriverImpl] 
(RemoteHostEndPoint-10:ctx-90e5729e) (logid:9707aa4d) Failed to register 
template: 11d68dd6-2fcc-4ef1-8590-2b35eff53107 with error: Connection refused 
(Connection refused)
2019-02-14 13:35:14,331 DEBUG [c.c.a.t.Request] (AgentManager-Handler-9:null) 
(logid:) Seq 20-8098879504895705307: Processing:  { Ans: , MgmtId: 
2483719209125, via: 20, Ver: v1, Flags: 10, 
[{"com.cloud.agent.api.storage.DownloadAnswer":{"jobId":"71ab1317-7cc9-45a4-95e1-a6b379322653","downloadPct":0,"errorString":"Connection
 refused (Connection 
refused)","downloadStatus":"DOWNLOAD_ERROR","downloadPath":"/mnt/SecStorage/f996a601-23fb-3094-9441-d5bcfa2f5665/template/tmpl/2/220/dnld3854667379606705488tmp_","installPath":"template/tmpl/2/220","templateSize":0,"templatePhySicalSize":0,"checkSum":"e8adeebcd8076702593469e33cc2d092","result":true,"details":"Connection
 refused (Connection refused)","wait":0}}] }
2019-02-14 13:35:14,345 WARN  [o.a.c.alerts] 
(RemoteHostEndPoint-10:ctx-274370ac) (logid:3d40819f) AlertType:: 28 | 
dataCenterId:: 1 | podId:: null | clusterId:: null | message:: Failed to 
register template: deb86e43-faf1-4f90-9748-9de2bb891b7c with error: Connection 
refused (Connection refused)
2019-02-14 13:35:14,349 ERROR [o.a.c.s.i.BaseImageStoreDriverImpl] 
(RemoteHostEndPoint-10:ctx-274370ac) (logid:3d40819f) Failed to register 
template: deb86e43-faf1-4f90-9748-9de2bb891b7c with error: Connection refused 
(Connection refused)
2019-02-14 13:35:14,843 DEBUG [c.c.a.t.Request] (AgentManager-Handler-14:null) 
(logid:) Seq 20-8098879504895705309: Processing:  { Ans: , MgmtId: 
2483719209125, via: 20, Ver: v1, Flags: 10, 
[{"com.cloud.agent.api.storage.DownloadAnswer":{"jobId":"ff1ec495-9335-49cb-9233-a75563c36ddb","downloadPct":0,"errorString":"Connection
 refused (Connection 
refused)","downloadStatus":"DOWNLOAD_ERROR","downloadPath":"/mnt/SecStorage/f996a601-23fb-3094-9441-d5bcfa2f5665/template/tmpl/2/225/dnld5195764572410923347tmp_","installPath":"template/tmpl/2/225","templateSize":0,"templatePhySicalSize":0,"checkSum":"3ea70993c35c5e60c73eb6c820ba1823","result":true,"details":"Connection
 refused (Connection refused)","wait":0}}] }
2019-02-14 13:35:14,856 WARN  [o.a.c.alerts] 
(RemoteHostEndPoint-10:ctx-ec077375) (logid:4070ef7c) AlertType:: 28 | 
dataCenterId:: 1 | podId:: null | clusterId:: null | message:: Failed to 
register template: 3e68858a-181f-45ea-a0c5-76f2c8a2ae3b with error: Connection 
refused (Connection refused)
2019-02-14 13:35:14,860 ERROR [o.a.c.s.i.BaseImageStoreDriverImpl] 
(RemoteHostEndPoint-10:ctx-ec077375) (logid:4070ef7c) Failed to register 
template: 3e68858a-181f-45ea-a0c5-76f2c8a2ae3b with error: Connection refused 
(Connection refused)
2019-02-14 13:35:15,395 DEBUG [c.c.a.t.Request] (AgentManager-Handler-10:null) 
(logid:) Seq 20-8098879504895705310: Processing:  { Ans: , MgmtId: 
2483719209125, via: 20, Ver: v1, Flags: 10, 
[{"com.cloud.agent.api.storage.DownloadAnswer":{"jobId":"762a05de-4446-4be3-a067-db38f15d1efc","downloadPct":0,"errorString":"Connection
 refused (Connection 
refused)","downloadStatus":"DOWNLOAD_ERROR","downloadPath":"/mnt/SecStorage/f996a601-23fb-3094-9441-d5bcfa2f5665/template/tmpl/2/218/dnld4735629757371259430tmp_","installPath":"template/tmpl/2/218","templateSize":0,"templatePhySicalSize":0,"checkSum":"bd43d41e01c2a46b3cb23eb9139dce4b","result":true,"details":"Connection
 refused (Connection refused)","wait":0}}] }
2019-02-14 13:35:15,410 WARN  [o.a.c.alerts] 
(RemoteHostEndPoint-10:ctx-10a4b859) (logid:69b24ca2) AlertType:: 28 | 
dataCenterId:: 1 | podId:: null | clusterId:: null | message:: Failed to 
register template: 5091226e-c70a-4364-ac52-2862e5dc332f with error: Connection 
refused (Connection refused)
2019-02-14 13:35:15,415 ERROR [o.a.c.s.i.BaseImageStoreDriverImpl] 
(RemoteHostEndPoint-10:ctx-10a4b859) (logid:69b24ca2) Failed to register 
template: 5091226e-c70a-4364-ac52-2862e5dc332f with error: Connection refused 
(Connection refused)
2019-02-14 13:35:16,923 DEBUG [c.c.a.t.Request] (AgentManager-Handler-5:null) 
(logid:) Seq 20-8098879504895705312: Processing:  { Ans: , MgmtId: 
2483719209125, via: 20, Ver: v1, Flags: 10, 
[{"com.cloud.agent.api.storage.DownloadAnswer":{"jobId":"dd8e405a-5635-420f-ad41-2e5f4424e66a","downloadPct":0,"errorString":"Connection
 refused (Connection 
refused)","downloadStatus":"DOWNLOAD_ERROR","downloadPath":"/mnt/SecStorage/f996a601-23fb-3094-9441-d5bcfa2f5665/template/tmpl/2/224/dnld8148253864458480039tmp_","installPath":"template/tmpl/2/224","templateSize":0,"templatePhySicalSize":0,"checkSum":"e8264fa4c417216f4304079bd94f895e","result":true,"details":"Connection
 refused (Connection refused)","wait":0}}] }
2019-02-14 13:35:16,940 WARN  [o.a.c.alerts] 
(RemoteHostEndPoint-10:ctx-163cfb70) (logid:aae95657) AlertType:: 28 | 
dataCenterId:: 1 | podId:: null | clusterId:: null | message:: Failed to 
register template: d6183ed8-189b-4f6a-bab8-1c0f73183bc7 with error: Connection 
refused (Connection refused)

Regards,

Richard Persaud


RE: KVM - configuring libvirtd for use...

2019-02-12 Thread Richard Persaud
Hi David,

On Ubuntu 16.04 I modified /etc/libvirt/libvirtd.conf:

echo 'listen_tls=0' >> /etc/libvirt/libvirtd.conf
echo 'listen_tcp=1' >> /etc/libvirt/libvirtd.conf
echo 'tcp_port = "16509"' >> /etc/libvirt/libvirtd.conf
echo 'mdns_adv = 0' >> /etc/libvirt/libvirtd.conf
echo 'auth_tcp = "none"' >> /etc/libvirt/libvirtd.conf
systemctl restart libvirt

I also had to modify /etc/default/libvirt-bin to get the “secure 
communications” working properly

sed -i -e 's/.*libvirtd_opts.*/libvirtd_opts="-l"/' /etc/default/libvirt-bin


Here is link to some documentation that may help:

http://docs.cloudstack.apache.org/en/4.11.2.0/installguide/hypervisor/kvm.html#install-and-configure-libvirt

Regards,

Richard Persaud


From: David Merrill 
Sent: Monday, February 11, 2019 10:50 PM
To: users@cloudstack.apache.org
Subject: KVM - configuring libvirtd for use...

⚠ EXT MSG:

Hi All,

I’m having a go with this:


  *   
https://rohityadav.cloud/blog/cloudstack-kvm/<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSkottLXL8rPyCypTExJLNNLzskvTdFPyslP1wczi0sSk7N1s8ty9ZV0lIrylawMdZRKMlOAmg0NjJVqAdjVGLE>

I’m running into a funny problem w/libvirtd on KVM where edits I make to


  *   /etc/libvirt/libvirtd.conf

revert to default values. Specifically “listen_tcp” gets set *back* to 0 after 
I’ve set it to 1 and restarted the libvrtd service. I end up in a place where 
I’ve arranged things to be able to add the KVM host but find that I can’t 
because libvirtd is now not listening on tcp port 16509.

I might be out of scope asking here (maybe it’s more of a Ubuntu/KVM/libvrtd 
thing (it’s bizarre, *something* is changing that conf file - I’m just not sure 
what it is yet and/or I’ve made some assumption out here on the bleeding edge 
of Ubuntu 18.04 & the latest ACS), but I’ve searched a bit and haven’t found a 
good line on someone else having this problem. Has anyone run into this before?

Thanks,
David

David Merrill
Senior Systems Engineer,
Managed and Private/Hybrid Cloud Services
OTELCO
92 Oak Street, Portland ME 04101
office 207.772.5678
www.otelco.com<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tcvLy_Xyy9JzUnO10vOz1XSUSrKV7Iy1FEqyUwBKjI0MFaqBQClHA9r><http://www.otelco.com<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tcvLy_Xyy9JzUnO10vOz1XSUSrKV7Iy1FEqyUwBKjI0MFaqBQClHA9r>>/business/managed-services

Confidentiality Message
The information contained in this e-mail transmission may be confidential and 
legally privileged. If you are not the intended recipient, you are notified 
that any dissemination, distribution, copying or other use of this information, 
including attachments, is prohibited. If you received this message in error, 
please call me at 207.772.5678 so this error can be 
corrected.


* This is an EXTERNAL EMAIL. Stop and think before clicking a link or opening 
attachments.


RE: SystemVM template - timeout waiting for response from storage host

2019-01-16 Thread Richard Persaud
Sorry for the late response.

Yes, I did seed it.
Yes, my KVM host can access Secondary storage.
Yes my mgmt can access all of my Secondary storage devices.
I have 1 management, and 8 storage/compute devices. All on the same subnet and 
all can “see” each other.

Concerning the error, how can I figure out which storage host is causing the 
time out error?


Regards,

Richard Persaud

From: Andrija Panic 
Sent: Friday, December 28, 2018 3:53 PM
To: users 
Subject: Re: SystemVM template - timeout waiting for response from storage host

⚠ EXT MSG:

Hi,

did you preseed the systemVM template as in the guide ?
i.e.
 /usr/share/cloudstack-common/scripts/storage/secondary/cloud-install-sys-tmplt
-m /mnt/secondary -u systemvm-kvm-4.11.2 -h kvm -s
 -F

After starting the Management server (after you have preseeded the systemVM
template previously...), CloudStack should recognize systemVM template as
fully downloaded on Secondary Storage NFS and mark it as Ready and 100%
downloaded.

Can your KVM host access Secondary Storage NFS (mount it) ?
Can you Management server access Secondary Storage NFS ?

Cheers

On Fri, 28 Dec 2018 at 21:09, Richard Persaud 
mailto:richard.pers...@macys.com>>
wrote:

> Hello,
>
> I am running 4.11.2.0
>
> I am constantly getting an error on my SystemVM Template (KVM) that it is
> not in a ready state due to "Timeout waiting for response from storage
> host".
> If I reboot all the host machines, the SystemVM template is OK for a
> while. Then after some time it will enter the error state.
>
> The infrastructure looks fine, everything is up and seemingly working. I
> can connect to all of the NFS storage hosts without issue.
>
> Any ideas?
>
> Regards,
>


--

Andrija Panić

* This is an EXTERNAL EMAIL. Stop and think before clicking a link or opening 
attachments.


SystemVM template - timeout waiting for response from storage host

2018-12-28 Thread Richard Persaud
Hello,

I am running 4.11.2.0

I am constantly getting an error on my SystemVM Template (KVM) that it is not 
in a ready state due to "Timeout waiting for response from storage host".
If I reboot all the host machines, the SystemVM template is OK for a while. 
Then after some time it will enter the error state.

The infrastructure looks fine, everything is up and seemingly working. I can 
connect to all of the NFS storage hosts without issue.

Any ideas?

Regards,


RE: secure hosts communications

2018-11-26 Thread Richard Persaud
Thank you, Rohit.

I am using 4.11.1 with a full KVM environment. They are showing unsecure with 
strictness set to true.

What configuration needs to be adjusted to have the KVM hosts show secure?

Regards,

Richard Persaud

From: Rohit Yadav 
Sent: Saturday, November 24, 2018 2:02 PM
To: users@cloudstack.apache.org
Subject: Re: secure hosts communications

⚠ EXT MSG:

Richard,


Starting 4.11, agent and management servers will use an in-built CA framework 
to secured hosts. Only in case of KVM hosts you may see an insecure state, 
otherwise all KVM hosts (agents) and SSVM/CPVM agents will by default in Up 
state will be secured. There is an auth strictness setting that should be true.



- Rohit

<https://cloudstack.apache.org>




From: Richard Persaud 
mailto:richard.pers...@macys.com>>
Sent: Saturday, November 24, 2018 4:21:24 AM
To: users@cloudstack.apache.org<mailto:users@cloudstack.apache.org>
Subject: secure hosts communications

Hello,

Is there straight-forward to enable secure communications between the 
management and the hosts?

I have looked at many documentations but am still unable to get the hosts to 
show a "secure" state.

Regards,

Richard Persaud


rohit.ya...@shapeblue.com<mailto:rohit.ya...@shapeblue.com>
www.shapeblue.com<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tcvLy_XK85ILEhNyilN1UvOz1XSUSrKV7Iy1FEqyUwBqjM0MFaqBQDf4BCe>
Amadeus House, Floral Street, London  WC2E 9DPUK
@shapeblue




* This is an EXTERNAL EMAIL. Stop and think before clicking a link or opening 
attachments.


secure hosts communications

2018-11-23 Thread Richard Persaud
Hello,

Is there straight-forward to enable secure communications between the 
management and the hosts?

I have looked at many documentations but am still unable to get the hosts to 
show a "secure" state.

Regards,

Richard Persaud



enable cloudStack SSL

2018-11-21 Thread Richard Persaud
Hello,

How can I enable SSL on cloudStack 4.11.1?

I have looked over the documentation located at:
http://docs.cloudstack.apache.org/en/4.11.1.0/installguide/optional_installation.html?highlight=ssl
http://tomcat.apache.org/tomcat-6.0-doc/ssl-howto.html

Those refer to Tomcat configuration files that do not seem to exist on my 
installation like the Tomcat server.xml file. In fact, I do not see a Tomcat 
directory on my server at all.
My installation is on Ubuntu 16.04 LTS via the ShapeBlue repository.

I tried modifying server.properties but that did not work.

Any suggestion on how to get SSL working?

Thank you in advance!

Regards,

Rich Persaud



RE: 1 click deploy VPC network

2018-11-21 Thread Richard Persaud
I will check out Terraform. Thanks for the suggestions!

Regards,

From: David Merrill 
Sent: Tuesday, November 20, 2018 2:35 PM
To: users@cloudstack.apache.org
Subject: Re: 1 click deploy VPC network

⚠ EXT MSG:

Yes terraform could be ideal (doesn't get you 1-click from w/in CloudStack, but 
gives you control of what gets set up 'per user').

David Merrill
Senior Systems Engineer,
Managed and Private/Hybrid Cloud Services
OTELCO
92 Oak Street, Portland ME 04101
office 207.772.5678 
www.otelco.com<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tcvLy_Xyy9JzUnO10vOz1XSUSrKV7Iy1FEqyUwBKjI0MFaqBQClHA9r>
 
<http://www.otelco.com<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tcvLy_Xyy9JzUnO10vOz1XSUSrKV7Iy1FEqyUwBKjI0MFaqBQClHA9r>>/business/managed-services



Confidentiality Message
The information contained in this e-mail transmission may be confidential and 
legally privileged. If you are not the intended recipient, you are notified 
that any dissemination, distribution, copying or other use of this information, 
including attachments, is prohibited. If you received this message in error, 
please call me at 207.772.5678  so this error can be 
corrected.


On 11/20/18, 2:30 PM, "Nicolas Bouige" 
mailto:n.bou...@dimsi.fr>> wrote:

Hi Richard,

Why don't try with Terraform ?
You can provide same terraform file for all of your student.
Just need to automate (or not) the users creation with api key/secret key 
if you plan to use specific ID for each student.
Or create a bunch of user like User01, User02...and reuse them for the next 
classroom.

Best regards,
N.B

-Message d'origine-
De : Ivan Kudryavtsev 
[mailto:kudryavtsev...@bw-sw.com<mailto:kudryavtsev...@bw-sw.com>]
Envoyé : mardi 20 novembre 2018 19:55
À : users mailto:users@cloudstack.apache.org>>
Objet : Re: 1 click deploy VPC network

Hello, Richard.

Well, there are two options:
1. Extend frontend with a plugin which will do everything you need.
2. Implement callback app which will be bound to account 1st login or 
registration and automatically creates everything you need.

Anyway, the customization is required. If you decide to go with the second 
option, you may contact me directly as we have implemented CS self-registration 
service which can do everything you need:

https://bitworks.software/en/products/cloudstack-self-registration-service/<https://isolate.menlosecurity.com/0/eJwNzDEOgzAMBdC7eAZcxJbbpIlpLSKM7J8yIO5e1je8i7o3SvQFjkjMb8VpvsUUtuLMLiw7H261FwSXZr0GctnGkLaOLh8NeIba_oj_tAjTQG6U5oGg9ann10L3H-rIJNM>



вт, 20 нояб. 2018 г. в 13:47, Richard Persaud 
mailto:richard.pers...@macys.com>>:

> Hello,
>
> We plan on using cloudStack for classroom style deployments, where
> each user will get the same setup but in different VPCs.
>
> How can I set up cloudStack so when a user logs into their account,
> there is a 1 click deploy template (VPC, tiers and VMs)?
>
> Regards,
> Richard Persaud
> Sys Spec, Info Security Del | Macy's, Inc.
> 5985 State Bridge Rd. | Johns Creek, GA 30097
> Office: 678-474-2357
> https://macyspartners.com/PublishingImages/MakeLifeShineBrighter.png
>


--
With best regards, Ivan Kudryavtsev
Bitworks LLC
Cell RU: +7-923-414-1515
Cell USA: +1-201-257-1512
WWW: 
http://bitworks.software/<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tdPyiwpzy_KLtYrzk8rKU8sStVX0lEqyleyMtRRKslMASo0NDBWqgUA-M8RIg>
 
<http://bw-sw.com/<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tdPKtctLtdLzs_VV9JRKspXsjLUUSrJTAEqMDQwVqoFAFJWDXE>>



* This is an EXTERNAL EMAIL. Stop and think before clicking a link or opening 
attachments.


1 click deploy VPC network

2018-11-20 Thread Richard Persaud
Hello,

We plan on using cloudStack for classroom style deployments, where each user 
will get the same setup but in different VPCs.

How can I set up cloudStack so when a user logs into their account, there is a 
1 click deploy template (VPC, tiers and VMs)?

Regards,
Richard Persaud
Sys Spec, Info Security Del | Macy's, Inc.
5985 State Bridge Rd. | Johns Creek, GA 30097
Office: 678-474-2357
https://macyspartners.com/PublishingImages/MakeLifeShineBrighter.png


MAAS and Cloudstack

2018-09-19 Thread Richard Persaud
Hello,

Is there any additional documentation on how to use Cloudstack with MAAS 
baremetal provisioning service?

I have only found this:
https://cwiki.apache.org/intermediates/pdfexport-20180410-100418-0207-158541/CLOUDSTACK-MaaSIntegrationforBaremetalProvisioninginCloudstack-100418-0207-158542.pdf



Regards,

Richard Persaud