management cluster error on cloudstack-management startup
alhost¶ 99 db.usage.autoReconnectForPools=true¶ 100 db.usage.secondsBeforeRetryMaster=3600¶ 101 db.cloud.secondsBeforeRetryMaster=3600¶ Regards, Richard Persaud Sys Spec, Info Security Del, Sys Spec, Info Security Del | Macy's, Inc. 5985 State Bridge Rd. | Johns Creek, GA 30097 Office: 678-474-2357 [Make Life Shine Brighter]
vm console not working - unable to resolve dns name
Hi, After upgrading to 4.11.3, I am not able to connect to the console of my VMs from a web browser. I get a DNS error – can’t resolve a-b-c-d.domain.name I can SSH directly into the VM. This did work prior. Any ideas of where to start troubleshooting? I am using dnsmasq Regards, Richard Persaud
cannot delete Isolated network - stuck in implementing
) Remove job-9508 from job monitoring 2019-07-23 09:57:45,684 DEBUG [c.c.a.ApiServlet] (qtp858242339-27:ctx-5b150636) (logid:984e014d) ===START=== 10.254.0.245 -- GET command=queryAsyncJobResult=ddc449a7-139e-47dc-b8b0-a40b4c48aa0b=json&_=1563890267108 2019-07-23 09:57:45,687 DEBUG [c.c.a.ApiServer] (qtp858242339-27:ctx-5b150636 ctx-400b4b76) (logid:984e014d) CIDRs from which account 'Acct[5bbcd7f0-1c71-41d7-aa0a-dadba14a95b2-cyberRangeAdmins]' is allowed to perform API calls: 10.0.0.0/8,172.17.0.0/16 2019-07-23 09:57:45,704 DEBUG [c.c.a.ApiServlet] (qtp858242339-27:ctx-5b150636 ctx-400b4b76) (logid:984e014d) ===END=== 10.254.0.245 -- GET command=queryAsyncJobResult=ddc449a7-139e-47dc-b8b0-a40b4c48aa0b=json&_=1563890267108 2019-07-23 09:57:46,589 DEBUG [c.c.s.StatsCollector] (StatsCollector-4:ctx-59711cc0) (logid:eaf0772b) HostStatsCollector is running... 2019-07-23 09:57:46,646 DEBUG [c.c.a.t.Request] (StatsCollector-4:ctx-59711cc0) (logid:eaf0772b) Seq 30-8580483190047638641: Received: { Ans: , MgmtId: 124125138146572, via: 30(ma000crnd01), Ver: v1, Flags: 10, { GetHostStatsAnswer } } 2019-07-23 09:57:46,693 DEBUG [c.c.a.t.Request] (StatsCollector-4:ctx-59711cc0) (logid:eaf0772b) Seq 37-8320118836590281758: Received: { Ans: , MgmtId: 124125138146572, via: 37(ma000crnd02), Ver: v1, Flags: 10, { GetHostStatsAnswer } } 2019-07-23 09:57:46,741 DEBUG [c.c.a.t.Request] (StatsCollector-4:ctx-59711cc0) (logid:eaf0772b) Seq 38-6989586621679010834: Received: { Ans: , MgmtId: 124125138146572, via: 38(ma000crnd03), Ver: v1, Flags: 10, { GetHostStatsAnswer } } 2019-07-23 09:57:46,779 INFO [o.a.c.f.j.i.AsyncJobManagerImpl] (AsyncJobMgr-Heartbeat-1:ctx-4e2d6ac2) (logid:e77b05ae) Begin cleanup expired async-jobs 2019-07-23 09:57:46,783 INFO [o.a.c.f.j.i.AsyncJobManagerImpl] (AsyncJobMgr-Heartbeat-1:ctx-4e2d6ac2) (logid:e77b05ae) End cleanup expired async-jobs 2019-07-23 09:57:46,789 DEBUG [c.c.a.t.Request] (StatsCollector-4:ctx-59711cc0) (logid:eaf0772b) Seq 39-5896900762088245182: Received: { Ans: , MgmtId: 124125138146572, via: 39(ma000crnd04), Ver: v1, Flags: 10, { GetHostStatsAnswer } } 2019-07-23 09:57:46,833 DEBUG [c.c.a.t.Request] (StatsCollector-4:ctx-59711cc0) (logid:eaf0772b) Seq 40-6762999265426932762: Received: { Ans: , MgmtId: 124125138146572, via: 40(ma000crnd05), Ver: v1, Flags: 10, { GetHostStatsAnswer } } 2019-07-23 09:57:46,877 DEBUG [c.c.a.t.Request] (StatsCollector-4:ctx-59711cc0) (logid:eaf0772b) Seq 41-3187141161294758951: Received: { Ans: , MgmtId: 124125138146572, via: 41(ma000crnd06), Ver: v1, Flags: 10, { GetHostStatsAnswer } } 2019-07-23 09:57:46,921 DEBUG [c.c.a.t.Request] (StatsCollector-4:ctx-59711cc0) (logid:eaf0772b) Seq 42-4258716397632226305: Received: { Ans: , MgmtId: 124125138146572, via: 42(ma000crnd07), Ver: v1, Flags: 10, { GetHostStatsAnswer } } 2019-07-23 09:57:46,965 DEBUG [c.c.a.t.Request] (StatsCollector-4:ctx-59711cc0) (logid:eaf0772b) Seq 43-7035185567906137098: Received: { Ans: , MgmtId: 124125138146572, via: 43(ma000crnd08), Ver: v1, Flags: 10, { GetHostStatsAnswer } } Regards, Richard Persaud
cloudstack container service (CCS)
I am attempting to install the container service (ShapeBlue) on 4.11 running on Ubuntu 16.04 LTS. I am following this guide http://downloads.shapeblue.com/ccs/1.0/Installation_and_Administration_Guide.pdf Everything seemingly installs OK. However, when launching a cluster, it is "stuck" in the starting state. The instances show up and in a running state. The CCS dashboard section only shows "Container cluster setup is under progress, please check again in few minutes." I don't see anything out of the ordinary in the management logs, but not sure what I should be looking for. Any ideas on where to start troubleshooting? Regards, Richard Persaud
RE: enable saml2 in cloudmonkey
I figured it out -it's the authorize command authorize samlsso enable=true userid= Regards, Richard Persaud Sys Spec, Info Security Del, Sys Spec, Info Security Del | Macy's, Inc. 5985 State Bridge Rd. | Johns Creek, GA 30097 Office: 678-474-2357 -Original Message- From: Richard Persaud Sent: Tuesday, June 25, 2019 2:17 PM To: users@cloudstack.apache.org Subject: enable saml2 in cloudmonkey ⚠ EXT MSG: How do I enable saml2/sso authentication for a user via cloudmonkey? Regards, Richard Persaud * This is an EXTERNAL EMAIL. Stop and think before clicking a link or opening attachments.
enable saml2 in cloudmonkey
How do I enable saml2/sso authentication for a user via cloudmonkey? Regards, Richard Persaud
RE: issue with system vm template not downloading
Hi Andrija, Advanced zone. I ran the ssvm-check.sh and I did correct some NFS errors. Now, ssvm-check.sh runs without any issues. The situation seems to have worsened – now I am unable to deploy any VM: http://www.filedropper.com/cs-mgmt-log2 I am getting an insufficient capacity error, but this is a new environment, so no guest VMs or guest Networks are created. Regards, Richard Persaud From: Andrija Panic Sent: Friday, May 10, 2019 2:00 PM To: users Cc: /usr/local/cloud/systemvm/ssvm-check...@gmail.com Subject: Re: issue with system vm template not downloading ⚠ EXT MSG: Hi Richard, Can you also, beside logs, try/confirm the following: - are you running a Basic zone ? - since systemVM tempate should be pre-seeded with a script, perhaps you are having issues with the SSVM itself and/or downloading default CentOS template? If so please execute from inside SSVM the following script and provide results : /usr/local/cloud/systemvm/ssvm-check.sh<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tcvLi7L1U3OSE3O1ivOUNJRKspXsjLUUSrJTAGqMTQwVqoFAI6zDuI> and send us the output. Regards, Andrija On Fri, May 10, 2019, 17:52 Paul Angus mailto:paul.an...@shapeblue.com>> wrote: > Richard, > > Could you post (using > pastebin.com<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tcvSCwuSU3KzNNLzs9V0lEqyleyMtRRKslMASoxNDBWqgUAgOAOqA> > or similar) a large chunk of your > management server logs around the time of this error please. > I would think that we need some context to the message. 'Storage host' > usually refers to the SSVM itself, a timeout waiting for a response > _suggests_ that the SSVM has been deployed, but isn't 'checking-in'. Much > more of the log information would probably help, whatever the problem. > > Also... > I can kinda see what you're trying to achieve with NFS on all of the hosts > - but I agree with Ivan, I think that you'll soon regret it. > > > Regards > > Paul Angus > > paul.an...@shapeblue.com<mailto:paul.an...@shapeblue.com> > www.shapeblue.com<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tcvLy_XK85ILEhNyilN1UvOz1XSUSrKV7Iy1FEqyUwBqjM0MFaqBQDf4BCe> > Amadeus House, Floral Street, London WC2E 9DPUK > @shapeblue > > > > > -Original Message- > From: Ivan Kudryavtsev > mailto:kudryavtsev...@bw-sw.com>> > Sent: 10 May 2019 16:28 > To: users mailto:users@cloudstack.apache.org>> > Subject: Re: issue with system vm template not downloading > > Richard, > > 1. About bridges, just check traffic goes correctly between HV hosts and > SS. All your hosts should be able to mount SS. > 2. About your HV/Storage topology. > > 1st. Cloudstack doesn't balance the storages. While the first chosen > storage is capable to deploy the image, it will be used. You will not able > to balance volumes between them. > 2nd. Every HV will mount every storage. If HV fails (which is probably > happen more frequently than storage) it will cause __all the__ hosts will > meet the problem with the NFS share and kick reboot, so, all your cloud > will reboot. > Frankly, it's the worst topology possible. What I recommend is to switch > either to Ceph or Gluster if you want shared storage, split all the hosts > to separate clusters or use LOCAL STORAGE instead of NFS storage, so your > VMS will use local storage. Later if you wish to move VMs between hosts, > you can do it manually. > > Best wishes > > > > > > пт, 10 мая 2019 г. в 20:14, Richard Persaud > mailto:richard.pers...@macys.com>>: > > > Hi Ivan, > > > > Thanks for the info. > > > > Will you clarify what I should be looking for in my bridge set up? > > It's fairly standard other then setting the MTU to 9000. > > > > The host/storage devices are using hardware RAID5. And all hypervisors > > are capable of mounting any of the NFS shares. > > > > Will you give me some detail on what you mean when you say using > > native RAID is a bad idea? Why is that and what is the recommended way > to set up? > > > > Thanks in advance > > > > > > Regards, > > Richard Persaud > > Sys Spec, Info Security Del | Macy's, Inc. > > 5985 State Bridge Rd. | Johns Creek, GA 30097 > > Office: 678-474-2357 > > https://macyspartners.com/PublishingImages/MakeLifeShineBrighter.png > > > > > > From: Ivan Kudryavtsev > > mailto:kudryavtsev...@bw-sw.com>> > > Sent: Thursday, May 9, 2019 21:57 > > To: users > > Subject: Re: issue with system vm template not downloading > > > > ⚠ EXT MSG: > > > > Richard, the most probable problem is with bridge devices. Management &
RE: issue with system vm template not downloading
Here’s the mgmt log http://www.filedropper.com/cs-mgmt-log Regards, Richard Persaud From: Paul Angus Sent: Friday, May 10, 2019 11:52 AM To: users@cloudstack.apache.org Subject: RE: issue with system vm template not downloading ⚠ EXT MSG: Richard, Could you post (using pastebin.com<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tcvSCwuSU3KzNNLzs9V0lEqyleyMtRRKslMASoxNDBWqgUAgOAOqA> or similar) a large chunk of your management server logs around the time of this error please. I would think that we need some context to the message. 'Storage host' usually refers to the SSVM itself, a timeout waiting for a response _suggests_ that the SSVM has been deployed, but isn't 'checking-in'. Much more of the log information would probably help, whatever the problem. Also... I can kinda see what you're trying to achieve with NFS on all of the hosts - but I agree with Ivan, I think that you'll soon regret it. Regards Paul Angus paul.an...@shapeblue.com<mailto:paul.an...@shapeblue.com> www.shapeblue.com<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tcvLy_XK85ILEhNyilN1UvOz1XSUSrKV7Iy1FEqyUwBqjM0MFaqBQDf4BCe> Amadeus House, Floral Street, London WC2E 9DPUK @shapeblue -Original Message- From: Ivan Kudryavtsev mailto:kudryavtsev...@bw-sw.com>> Sent: 10 May 2019 16:28 To: users mailto:users@cloudstack.apache.org>> Subject: Re: issue with system vm template not downloading Richard, 1. About bridges, just check traffic goes correctly between HV hosts and SS. All your hosts should be able to mount SS. 2. About your HV/Storage topology. 1st. Cloudstack doesn't balance the storages. While the first chosen storage is capable to deploy the image, it will be used. You will not able to balance volumes between them. 2nd. Every HV will mount every storage. If HV fails (which is probably happen more frequently than storage) it will cause __all the__ hosts will meet the problem with the NFS share and kick reboot, so, all your cloud will reboot. Frankly, it's the worst topology possible. What I recommend is to switch either to Ceph or Gluster if you want shared storage, split all the hosts to separate clusters or use LOCAL STORAGE instead of NFS storage, so your VMS will use local storage. Later if you wish to move VMs between hosts, you can do it manually. Best wishes пт, 10 мая 2019 г. в 20:14, Richard Persaud mailto:richard.pers...@macys.com>>: > Hi Ivan, > > Thanks for the info. > > Will you clarify what I should be looking for in my bridge set up? > It's fairly standard other then setting the MTU to 9000. > > The host/storage devices are using hardware RAID5. And all hypervisors > are capable of mounting any of the NFS shares. > > Will you give me some detail on what you mean when you say using > native RAID is a bad idea? Why is that and what is the recommended way to set > up? > > Thanks in advance > > > Regards, > Richard Persaud > Sys Spec, Info Security Del | Macy's, Inc. > 5985 State Bridge Rd. | Johns Creek, GA 30097 > Office: 678-474-2357 > https://macyspartners.com/PublishingImages/MakeLifeShineBrighter.png > > > From: Ivan Kudryavtsev > mailto:kudryavtsev...@bw-sw.com>> > Sent: Thursday, May 9, 2019 21:57 > To: users > Subject: Re: issue with system vm template not downloading > > ⚠ EXT MSG: > > Richard, the most probable problem is with bridge devices. Management > server doesn't care about systemvm. The only unit which cares - ssvm > and hypervisor. Also, if you are using naive RAID/NFS within one > cluster when any HV can mount any storage (mesh) it's extremely bad > idea. You will get s lot of reboots if any of node meets outage. If > you have DRBD or Gluster, then, it's fine. > > пт, 10 мая 2019 г., 6:32 Richard Persaud > mailto:richard.pers...@macys.com> > <mailto:richard.pers...@macys.com<mailto:richard.pers...@macys.com>>>: > > > Hello, > > > > Our setup: > > 4.11 on Ubuntu 16.04 LTS. One management server, eight > > compute/storage hosts (dual function). > > NFS for storage. > > No firewall in between the mgmt server and the hosts. > > Management and storage traffic run over the same VLAN (same network). > > > > We are having an issue with the system vm template not downloading. > > We have seen this issue on multiple occasions > > > > "Timeout waiting for response from storage host" > > > > It does not give any further information. > > > > The management server can successfully contact and mount the NFS > > shares from all the compute/storage hosts. > > > > How can I determine which storage host is timing out? Why is it > > ti
Re: issue with system vm template not downloading
Hi Ivan, Thanks for the info. Will you clarify what I should be looking for in my bridge set up? It's fairly standard other then setting the MTU to 9000. The host/storage devices are using hardware RAID5. And all hypervisors are capable of mounting any of the NFS shares. Will you give me some detail on what you mean when you say using native RAID is a bad idea? Why is that and what is the recommended way to set up? Thanks in advance Regards, Richard Persaud Sys Spec, Info Security Del | Macy's, Inc. 5985 State Bridge Rd. | Johns Creek, GA 30097 Office: 678-474-2357 https://macyspartners.com/PublishingImages/MakeLifeShineBrighter.png From: Ivan Kudryavtsev Sent: Thursday, May 9, 2019 21:57 To: users Subject: Re: issue with system vm template not downloading ⚠ EXT MSG: Richard, the most probable problem is with bridge devices. Management server doesn't care about systemvm. The only unit which cares - ssvm and hypervisor. Also, if you are using naive RAID/NFS within one cluster when any HV can mount any storage (mesh) it's extremely bad idea. You will get s lot of reboots if any of node meets outage. If you have DRBD or Gluster, then, it's fine. пт, 10 мая 2019 г., 6:32 Richard Persaud mailto:richard.pers...@macys.com>>: > Hello, > > Our setup: > 4.11 on Ubuntu 16.04 LTS. One management server, eight compute/storage > hosts (dual function). > NFS for storage. > No firewall in between the mgmt server and the hosts. > Management and storage traffic run over the same VLAN (same network). > > We are having an issue with the system vm template not downloading. > We have seen this issue on multiple occasions > > "Timeout waiting for response from storage host" > > It does not give any further information. > > The management server can successfully contact and mount the NFS shares > from all the compute/storage hosts. > > How can I determine which storage host is timing out? Why is it timing out? > > Regards, > > Richard Persaud > * This is an EXTERNAL EMAIL. Stop and think before clicking a link or opening attachments.
issue with system vm template not downloading
Hello, Our setup: 4.11 on Ubuntu 16.04 LTS. One management server, eight compute/storage hosts (dual function). NFS for storage. No firewall in between the mgmt server and the hosts. Management and storage traffic run over the same VLAN (same network). We are having an issue with the system vm template not downloading. We have seen this issue on multiple occasions "Timeout waiting for response from storage host" It does not give any further information. The management server can successfully contact and mount the NFS shares from all the compute/storage hosts. How can I determine which storage host is timing out? Why is it timing out? Regards, Richard Persaud
cloudshell for individual users
Hello, How can I enable a "cloudshell" instance for each account/user so they are able to manage their VPCs via the CLI? It would be great to offer a cloudMonkey cloudshell instance - similar to how Azure and GCP offer CLI options. Regards, Richard Persaud
RE: connection refused errors on 4.11.2
HI Ivan, This is specifically with the SystemVM template .. all the other templates are fine. It will show downloaded in the GUI, and after some time, I will start to get these connection refused errors and the SystemVM template will show as “timeout waiting for host”. Around the same time, the console proxy becomes unresponsive. Currently, both console and storage proxies are functioning, and SystemVM template shows as Timeout waiting for response from storage host. It would be helpful if I could figure out which storage host(s) are causing the message. Regards, Richard Persaud From: Ivan Kudryavtsev Sent: Thursday, February 14, 2019 3:54 PM To: users Subject: Re: connection refused errors on 4.11.2 ⚠ EXT MSG: Richard, probably the error is with bridge mess. Check you have you bridges configured right and they matches to cloudstack networking labels for configured network topology... May be I misunderstood you and it worked before, but stopped occasionally? чт, 14 февр. 2019 г., 15:46 Richard Persaud richard.pers...@macys.com<mailto:richard.pers...@macys.com>: > Hello, > > (4.11.2 on Ubuntu 16.04) > > I am at my wits end trying to figure what these connection refused errors > are > > > * The secstorage.allowed.internal.sites global option is set to blank > (had it set to a /8, /16, /24 and /32s to no avail.) > * All the storage/compute devices are using NFS and they can all > communicate with each other and the management server. > * There are no firewalls in between the devices and IPTABLES and UFW > are all turned off. > * I have properly followed the documentation and installed the system > template. > * *It is interesting to note that the "downloadPath" of > /mnt/SecStorage does not exist. > * I have created that path in case it may help, but has not stopped > the error messages. > > Any advice you can give is greatly appreciated! > > 2019-02-14 13:35:11,462 DEBUG [c.c.a.t.Request] > (AgentManager-Handler-5:null) (logid:) Seq 20-8098879504895705293: > Processing: { Ans: , MgmtId: 2483719209125, via: 20, Ver: v1, Flags: 10, > [{"com.cloud.agent.api.storage.DownloadAnswer":{"jobId":"e0393396-44bc-44cd-ab93-f7b4b197ac39","downloadPct":0,"errorString":"Connection > refused (Connection > refused)","downloadStatus":"DOWNLOAD_ERROR","downloadPath":"/mnt/SecStorage/e6ed90a3-a377-3c18-8edf-54299f3a0fc5/template/tmpl/2/218/dnld9124079927637432602tmp_","installPath":"template/tmpl/2/218","templateSize":0,"templatePhySicalSize":0,"checkSum":"bd43d41e01c2a46b3cb23eb9139dce4b","result":true,"details":"Connection > refused (Connection refused)","wait":0}}] } > 2019-02-14 13:35:11,464 DEBUG [c.c.a.t.Request] > (AgentManager-Handler-11:null) (logid:) Seq 20-8098879504895705294: > Processing: { Ans: , MgmtId: 2483719209125, via: 20, Ver: v1, Flags: 10, > [{"com.cloud.agent.api.storage.DownloadAnswer":{"jobId":"ea138e2a-1397-43f2-b37e-c9f684f0b3f8","downloadPct":0,"errorString":"Connection > refused (Connection > refused)","downloadStatus":"DOWNLOAD_ERROR","downloadPath":"/mnt/SecStorage/e6ed90a3-a377-3c18-8edf-54299f3a0fc5/template/tmpl/2/220/dnld1123458749647429711tmp_","installPath":"template/tmpl/2/220","templateSize":0,"templatePhySicalSize":0,"checkSum":"e8adeebcd8076702593469e33cc2d092","result":true,"details":"Connection > refused (Connection refused)","wait":0}}] } > 2019-02-14 13:35:11,464 DEBUG [c.c.a.t.Request] > (AgentManager-Handler-3:null) (logid:) Seq 20-8098879504895705295: > Processing: { Ans: , MgmtId: 2483719209125, via: 20, Ver: v1, Flags: 10, > [{"com.cloud.agent.api.storage.DownloadAnswer":{"jobId":"5383b89f-8aa9-4d00-a26c-a75578315a21","downloadPct":0,"errorString":"Connection > refused (Connection > refused)","downloadStatus":"DOWNLOAD_ERROR","downloadPath":"/mnt/SecStorage/e6ed90a3-a377-3c18-8edf-54299f3a0fc5/template/tmpl/2/225/dnld6929327839521639367tmp_","installPath":"template/tmpl/2/225","templateSize":0,"templatePhySicalSize":0,"checkSum":"3ea70993c35c5e60c73eb6c820ba1823","result":true,"details":"Connection > refused (Connection refused)","wait":0}}] } > 2019-02-14 13:35:11,464 DEBUG [c.c.a.t.Request] > (AgentManager-Handler-7:null) (logid:) Seq 20-8098879504895705296: > Processing: { Ans: ,
connection refused errors on 4.11.2
: null | clusterId:: null | message:: Failed to register template: 4966ab19-40d6-432c-b48f-d8cdc0e615c5 with error: Connection refused (Connection refused) 2019-02-14 13:35:13,128 ERROR [o.a.c.s.i.BaseImageStoreDriverImpl] (RemoteHostEndPoint-10:ctx-0c7137b7) (logid:3020f1b0) Failed to register template: 4966ab19-40d6-432c-b48f-d8cdc0e615c5 with error: Connection refused (Connection refused) 2019-02-14 13:35:13,863 DEBUG [c.c.a.t.Request] (AgentManager-Handler-2:null) (logid:) Seq 20-8098879504895705306: Processing: { Ans: , MgmtId: 2483719209125, via: 20, Ver: v1, Flags: 10, [{"com.cloud.agent.api.storage.DownloadAnswer":{"jobId":"9956a015-8595-4856-888c-40941bdaff9b","downloadPct":0,"errorString":"Connection refused (Connection refused)","downloadStatus":"DOWNLOAD_ERROR","downloadPath":"/mnt/SecStorage/f996a601-23fb-3094-9441-d5bcfa2f5665/template/tmpl/2/240/dnld7849250216735073717tmp_","installPath":"template/tmpl/2/240","templateSize":0,"templatePhySicalSize":0,"checkSum":"f430da8fa59d2f5f4262518e3c177246","result":true,"details":"Connection refused (Connection refused)","wait":0}}] } 2019-02-14 13:35:13,871 WARN [o.a.c.alerts] (RemoteHostEndPoint-10:ctx-90e5729e) (logid:9707aa4d) AlertType:: 28 | dataCenterId:: 1 | podId:: null | clusterId:: null | message:: Failed to register template: 11d68dd6-2fcc-4ef1-8590-2b35eff53107 with error: Connection refused (Connection refused) 2019-02-14 13:35:13,873 ERROR [o.a.c.s.i.BaseImageStoreDriverImpl] (RemoteHostEndPoint-10:ctx-90e5729e) (logid:9707aa4d) Failed to register template: 11d68dd6-2fcc-4ef1-8590-2b35eff53107 with error: Connection refused (Connection refused) 2019-02-14 13:35:14,331 DEBUG [c.c.a.t.Request] (AgentManager-Handler-9:null) (logid:) Seq 20-8098879504895705307: Processing: { Ans: , MgmtId: 2483719209125, via: 20, Ver: v1, Flags: 10, [{"com.cloud.agent.api.storage.DownloadAnswer":{"jobId":"71ab1317-7cc9-45a4-95e1-a6b379322653","downloadPct":0,"errorString":"Connection refused (Connection refused)","downloadStatus":"DOWNLOAD_ERROR","downloadPath":"/mnt/SecStorage/f996a601-23fb-3094-9441-d5bcfa2f5665/template/tmpl/2/220/dnld3854667379606705488tmp_","installPath":"template/tmpl/2/220","templateSize":0,"templatePhySicalSize":0,"checkSum":"e8adeebcd8076702593469e33cc2d092","result":true,"details":"Connection refused (Connection refused)","wait":0}}] } 2019-02-14 13:35:14,345 WARN [o.a.c.alerts] (RemoteHostEndPoint-10:ctx-274370ac) (logid:3d40819f) AlertType:: 28 | dataCenterId:: 1 | podId:: null | clusterId:: null | message:: Failed to register template: deb86e43-faf1-4f90-9748-9de2bb891b7c with error: Connection refused (Connection refused) 2019-02-14 13:35:14,349 ERROR [o.a.c.s.i.BaseImageStoreDriverImpl] (RemoteHostEndPoint-10:ctx-274370ac) (logid:3d40819f) Failed to register template: deb86e43-faf1-4f90-9748-9de2bb891b7c with error: Connection refused (Connection refused) 2019-02-14 13:35:14,843 DEBUG [c.c.a.t.Request] (AgentManager-Handler-14:null) (logid:) Seq 20-8098879504895705309: Processing: { Ans: , MgmtId: 2483719209125, via: 20, Ver: v1, Flags: 10, [{"com.cloud.agent.api.storage.DownloadAnswer":{"jobId":"ff1ec495-9335-49cb-9233-a75563c36ddb","downloadPct":0,"errorString":"Connection refused (Connection refused)","downloadStatus":"DOWNLOAD_ERROR","downloadPath":"/mnt/SecStorage/f996a601-23fb-3094-9441-d5bcfa2f5665/template/tmpl/2/225/dnld5195764572410923347tmp_","installPath":"template/tmpl/2/225","templateSize":0,"templatePhySicalSize":0,"checkSum":"3ea70993c35c5e60c73eb6c820ba1823","result":true,"details":"Connection refused (Connection refused)","wait":0}}] } 2019-02-14 13:35:14,856 WARN [o.a.c.alerts] (RemoteHostEndPoint-10:ctx-ec077375) (logid:4070ef7c) AlertType:: 28 | dataCenterId:: 1 | podId:: null | clusterId:: null | message:: Failed to register template: 3e68858a-181f-45ea-a0c5-76f2c8a2ae3b with error: Connection refused (Connection refused) 2019-02-14 13:35:14,860 ERROR [o.a.c.s.i.BaseImageStoreDriverImpl] (RemoteHostEndPoint-10:ctx-ec077375) (logid:4070ef7c) Failed to register template: 3e68858a-181f-45ea-a0c5-76f2c8a2ae3b with error: Connection refused (Connection refused) 2019-02-14 13:35:15,395 DEBUG [c.c.a.t.Request] (AgentManager-Handler-10:null) (logid:) Seq 20-8098879504895705310: Processing: { Ans: , MgmtId: 2483719209125, via: 20, Ver: v1, Flags: 10, [{"com.cloud.agent.api.storage.DownloadAnswer":{"jobId":"762a05de-4446-4be3-a067-db38f15d1efc","downloadPct":0,"errorString":"Connection refused (Connection refused)","downloadStatus":"DOWNLOAD_ERROR","downloadPath":"/mnt/SecStorage/f996a601-23fb-3094-9441-d5bcfa2f5665/template/tmpl/2/218/dnld4735629757371259430tmp_","installPath":"template/tmpl/2/218","templateSize":0,"templatePhySicalSize":0,"checkSum":"bd43d41e01c2a46b3cb23eb9139dce4b","result":true,"details":"Connection refused (Connection refused)","wait":0}}] } 2019-02-14 13:35:15,410 WARN [o.a.c.alerts] (RemoteHostEndPoint-10:ctx-10a4b859) (logid:69b24ca2) AlertType:: 28 | dataCenterId:: 1 | podId:: null | clusterId:: null | message:: Failed to register template: 5091226e-c70a-4364-ac52-2862e5dc332f with error: Connection refused (Connection refused) 2019-02-14 13:35:15,415 ERROR [o.a.c.s.i.BaseImageStoreDriverImpl] (RemoteHostEndPoint-10:ctx-10a4b859) (logid:69b24ca2) Failed to register template: 5091226e-c70a-4364-ac52-2862e5dc332f with error: Connection refused (Connection refused) 2019-02-14 13:35:16,923 DEBUG [c.c.a.t.Request] (AgentManager-Handler-5:null) (logid:) Seq 20-8098879504895705312: Processing: { Ans: , MgmtId: 2483719209125, via: 20, Ver: v1, Flags: 10, [{"com.cloud.agent.api.storage.DownloadAnswer":{"jobId":"dd8e405a-5635-420f-ad41-2e5f4424e66a","downloadPct":0,"errorString":"Connection refused (Connection refused)","downloadStatus":"DOWNLOAD_ERROR","downloadPath":"/mnt/SecStorage/f996a601-23fb-3094-9441-d5bcfa2f5665/template/tmpl/2/224/dnld8148253864458480039tmp_","installPath":"template/tmpl/2/224","templateSize":0,"templatePhySicalSize":0,"checkSum":"e8264fa4c417216f4304079bd94f895e","result":true,"details":"Connection refused (Connection refused)","wait":0}}] } 2019-02-14 13:35:16,940 WARN [o.a.c.alerts] (RemoteHostEndPoint-10:ctx-163cfb70) (logid:aae95657) AlertType:: 28 | dataCenterId:: 1 | podId:: null | clusterId:: null | message:: Failed to register template: d6183ed8-189b-4f6a-bab8-1c0f73183bc7 with error: Connection refused (Connection refused) Regards, Richard Persaud
RE: KVM - configuring libvirtd for use...
Hi David, On Ubuntu 16.04 I modified /etc/libvirt/libvirtd.conf: echo 'listen_tls=0' >> /etc/libvirt/libvirtd.conf echo 'listen_tcp=1' >> /etc/libvirt/libvirtd.conf echo 'tcp_port = "16509"' >> /etc/libvirt/libvirtd.conf echo 'mdns_adv = 0' >> /etc/libvirt/libvirtd.conf echo 'auth_tcp = "none"' >> /etc/libvirt/libvirtd.conf systemctl restart libvirt I also had to modify /etc/default/libvirt-bin to get the “secure communications” working properly sed -i -e 's/.*libvirtd_opts.*/libvirtd_opts="-l"/' /etc/default/libvirt-bin Here is link to some documentation that may help: http://docs.cloudstack.apache.org/en/4.11.2.0/installguide/hypervisor/kvm.html#install-and-configure-libvirt Regards, Richard Persaud From: David Merrill Sent: Monday, February 11, 2019 10:50 PM To: users@cloudstack.apache.org Subject: KVM - configuring libvirtd for use... ⚠ EXT MSG: Hi All, I’m having a go with this: * https://rohityadav.cloud/blog/cloudstack-kvm/<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSkottLXL8rPyCypTExJLNNLzskvTdFPyslP1wczi0sSk7N1s8ty9ZV0lIrylawMdZRKMlOAmg0NjJVqAdjVGLE> I’m running into a funny problem w/libvirtd on KVM where edits I make to * /etc/libvirt/libvirtd.conf revert to default values. Specifically “listen_tcp” gets set *back* to 0 after I’ve set it to 1 and restarted the libvrtd service. I end up in a place where I’ve arranged things to be able to add the KVM host but find that I can’t because libvirtd is now not listening on tcp port 16509. I might be out of scope asking here (maybe it’s more of a Ubuntu/KVM/libvrtd thing (it’s bizarre, *something* is changing that conf file - I’m just not sure what it is yet and/or I’ve made some assumption out here on the bleeding edge of Ubuntu 18.04 & the latest ACS), but I’ve searched a bit and haven’t found a good line on someone else having this problem. Has anyone run into this before? Thanks, David David Merrill Senior Systems Engineer, Managed and Private/Hybrid Cloud Services OTELCO 92 Oak Street, Portland ME 04101 office 207.772.5678 www.otelco.com<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tcvLy_Xyy9JzUnO10vOz1XSUSrKV7Iy1FEqyUwBKjI0MFaqBQClHA9r><http://www.otelco.com<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tcvLy_Xyy9JzUnO10vOz1XSUSrKV7Iy1FEqyUwBKjI0MFaqBQClHA9r>>/business/managed-services Confidentiality Message The information contained in this e-mail transmission may be confidential and legally privileged. If you are not the intended recipient, you are notified that any dissemination, distribution, copying or other use of this information, including attachments, is prohibited. If you received this message in error, please call me at 207.772.5678 so this error can be corrected. * This is an EXTERNAL EMAIL. Stop and think before clicking a link or opening attachments.
RE: SystemVM template - timeout waiting for response from storage host
Sorry for the late response. Yes, I did seed it. Yes, my KVM host can access Secondary storage. Yes my mgmt can access all of my Secondary storage devices. I have 1 management, and 8 storage/compute devices. All on the same subnet and all can “see” each other. Concerning the error, how can I figure out which storage host is causing the time out error? Regards, Richard Persaud From: Andrija Panic Sent: Friday, December 28, 2018 3:53 PM To: users Subject: Re: SystemVM template - timeout waiting for response from storage host ⚠ EXT MSG: Hi, did you preseed the systemVM template as in the guide ? i.e. /usr/share/cloudstack-common/scripts/storage/secondary/cloud-install-sys-tmplt -m /mnt/secondary -u systemvm-kvm-4.11.2 -h kvm -s -F After starting the Management server (after you have preseeded the systemVM template previously...), CloudStack should recognize systemVM template as fully downloaded on Secondary Storage NFS and mark it as Ready and 100% downloaded. Can your KVM host access Secondary Storage NFS (mount it) ? Can you Management server access Secondary Storage NFS ? Cheers On Fri, 28 Dec 2018 at 21:09, Richard Persaud mailto:richard.pers...@macys.com>> wrote: > Hello, > > I am running 4.11.2.0 > > I am constantly getting an error on my SystemVM Template (KVM) that it is > not in a ready state due to "Timeout waiting for response from storage > host". > If I reboot all the host machines, the SystemVM template is OK for a > while. Then after some time it will enter the error state. > > The infrastructure looks fine, everything is up and seemingly working. I > can connect to all of the NFS storage hosts without issue. > > Any ideas? > > Regards, > -- Andrija Panić * This is an EXTERNAL EMAIL. Stop and think before clicking a link or opening attachments.
SystemVM template - timeout waiting for response from storage host
Hello, I am running 4.11.2.0 I am constantly getting an error on my SystemVM Template (KVM) that it is not in a ready state due to "Timeout waiting for response from storage host". If I reboot all the host machines, the SystemVM template is OK for a while. Then after some time it will enter the error state. The infrastructure looks fine, everything is up and seemingly working. I can connect to all of the NFS storage hosts without issue. Any ideas? Regards,
RE: secure hosts communications
Thank you, Rohit. I am using 4.11.1 with a full KVM environment. They are showing unsecure with strictness set to true. What configuration needs to be adjusted to have the KVM hosts show secure? Regards, Richard Persaud From: Rohit Yadav Sent: Saturday, November 24, 2018 2:02 PM To: users@cloudstack.apache.org Subject: Re: secure hosts communications ⚠ EXT MSG: Richard, Starting 4.11, agent and management servers will use an in-built CA framework to secured hosts. Only in case of KVM hosts you may see an insecure state, otherwise all KVM hosts (agents) and SSVM/CPVM agents will by default in Up state will be secured. There is an auth strictness setting that should be true. - Rohit <https://cloudstack.apache.org> From: Richard Persaud mailto:richard.pers...@macys.com>> Sent: Saturday, November 24, 2018 4:21:24 AM To: users@cloudstack.apache.org<mailto:users@cloudstack.apache.org> Subject: secure hosts communications Hello, Is there straight-forward to enable secure communications between the management and the hosts? I have looked at many documentations but am still unable to get the hosts to show a "secure" state. Regards, Richard Persaud rohit.ya...@shapeblue.com<mailto:rohit.ya...@shapeblue.com> www.shapeblue.com<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tcvLy_XK85ILEhNyilN1UvOz1XSUSrKV7Iy1FEqyUwBqjM0MFaqBQDf4BCe> Amadeus House, Floral Street, London WC2E 9DPUK @shapeblue * This is an EXTERNAL EMAIL. Stop and think before clicking a link or opening attachments.
secure hosts communications
Hello, Is there straight-forward to enable secure communications between the management and the hosts? I have looked at many documentations but am still unable to get the hosts to show a "secure" state. Regards, Richard Persaud
enable cloudStack SSL
Hello, How can I enable SSL on cloudStack 4.11.1? I have looked over the documentation located at: http://docs.cloudstack.apache.org/en/4.11.1.0/installguide/optional_installation.html?highlight=ssl http://tomcat.apache.org/tomcat-6.0-doc/ssl-howto.html Those refer to Tomcat configuration files that do not seem to exist on my installation like the Tomcat server.xml file. In fact, I do not see a Tomcat directory on my server at all. My installation is on Ubuntu 16.04 LTS via the ShapeBlue repository. I tried modifying server.properties but that did not work. Any suggestion on how to get SSL working? Thank you in advance! Regards, Rich Persaud
RE: 1 click deploy VPC network
I will check out Terraform. Thanks for the suggestions! Regards, From: David Merrill Sent: Tuesday, November 20, 2018 2:35 PM To: users@cloudstack.apache.org Subject: Re: 1 click deploy VPC network ⚠ EXT MSG: Yes terraform could be ideal (doesn't get you 1-click from w/in CloudStack, but gives you control of what gets set up 'per user'). David Merrill Senior Systems Engineer, Managed and Private/Hybrid Cloud Services OTELCO 92 Oak Street, Portland ME 04101 office 207.772.5678 www.otelco.com<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tcvLy_Xyy9JzUnO10vOz1XSUSrKV7Iy1FEqyUwBKjI0MFaqBQClHA9r> <http://www.otelco.com<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tcvLy_Xyy9JzUnO10vOz1XSUSrKV7Iy1FEqyUwBKjI0MFaqBQClHA9r>>/business/managed-services Confidentiality Message The information contained in this e-mail transmission may be confidential and legally privileged. If you are not the intended recipient, you are notified that any dissemination, distribution, copying or other use of this information, including attachments, is prohibited. If you received this message in error, please call me at 207.772.5678 so this error can be corrected. On 11/20/18, 2:30 PM, "Nicolas Bouige" mailto:n.bou...@dimsi.fr>> wrote: Hi Richard, Why don't try with Terraform ? You can provide same terraform file for all of your student. Just need to automate (or not) the users creation with api key/secret key if you plan to use specific ID for each student. Or create a bunch of user like User01, User02...and reuse them for the next classroom. Best regards, N.B -Message d'origine- De : Ivan Kudryavtsev [mailto:kudryavtsev...@bw-sw.com<mailto:kudryavtsev...@bw-sw.com>] Envoyé : mardi 20 novembre 2018 19:55 À : users mailto:users@cloudstack.apache.org>> Objet : Re: 1 click deploy VPC network Hello, Richard. Well, there are two options: 1. Extend frontend with a plugin which will do everything you need. 2. Implement callback app which will be bound to account 1st login or registration and automatically creates everything you need. Anyway, the customization is required. If you decide to go with the second option, you may contact me directly as we have implemented CS self-registration service which can do everything you need: https://bitworks.software/en/products/cloudstack-self-registration-service/<https://isolate.menlosecurity.com/0/eJwNzDEOgzAMBdC7eAZcxJbbpIlpLSKM7J8yIO5e1je8i7o3SvQFjkjMb8VpvsUUtuLMLiw7H261FwSXZr0GctnGkLaOLh8NeIba_oj_tAjTQG6U5oGg9ann10L3H-rIJNM> вт, 20 нояб. 2018 г. в 13:47, Richard Persaud mailto:richard.pers...@macys.com>>: > Hello, > > We plan on using cloudStack for classroom style deployments, where > each user will get the same setup but in different VPCs. > > How can I set up cloudStack so when a user logs into their account, > there is a 1 click deploy template (VPC, tiers and VMs)? > > Regards, > Richard Persaud > Sys Spec, Info Security Del | Macy's, Inc. > 5985 State Bridge Rd. | Johns Creek, GA 30097 > Office: 678-474-2357 > https://macyspartners.com/PublishingImages/MakeLifeShineBrighter.png > -- With best regards, Ivan Kudryavtsev Bitworks LLC Cell RU: +7-923-414-1515 Cell USA: +1-201-257-1512 WWW: http://bitworks.software/<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tdPyiwpzy_KLtYrzk8rKU8sStVX0lEqyleyMtRRKslMASo0NDBWqgUA-M8RIg> <http://bw-sw.com/<https://isolate.menlosecurity.com/0/eJyrViotylGyUsooKSmw0tdPKtctLtdLzs_VV9JRKspXsjLUUSrJTAEqMDQwVqoFAFJWDXE>> * This is an EXTERNAL EMAIL. Stop and think before clicking a link or opening attachments.
1 click deploy VPC network
Hello, We plan on using cloudStack for classroom style deployments, where each user will get the same setup but in different VPCs. How can I set up cloudStack so when a user logs into their account, there is a 1 click deploy template (VPC, tiers and VMs)? Regards, Richard Persaud Sys Spec, Info Security Del | Macy's, Inc. 5985 State Bridge Rd. | Johns Creek, GA 30097 Office: 678-474-2357 https://macyspartners.com/PublishingImages/MakeLifeShineBrighter.png
MAAS and Cloudstack
Hello, Is there any additional documentation on how to use Cloudstack with MAAS baremetal provisioning service? I have only found this: https://cwiki.apache.org/intermediates/pdfexport-20180410-100418-0207-158541/CLOUDSTACK-MaaSIntegrationforBaremetalProvisioninginCloudstack-100418-0207-158542.pdf Regards, Richard Persaud