[ovirt-users] Can ISO Domain be shared across multiple data centers? Ovirt 3.5, 3.6? Does not appear so

2015-10-30 Thread Liam Curtis
Hello All,

Tried setting up NFS ISO domain which works on one host/local datacenter. I
do not want to have to have multiple copies of iso files on all hosts. If I
try to import pre-existing ISO domain, I either get an error that storage
path exists or the dialog just does nothing.

Does not appear possible. Any tricks or workarounds?
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] It is possible to use vdsClient / virsh to start VMs in the event that engine is down?

2015-10-30 Thread Liam Curtis
Thank you Jiri!

I had tried this, but your post made me think of googling
/etc/libvirt/passwd.db a bit more and discovered the sasldblistusers2 -f
/etc/libvirt/passwd.db command which showed me 2 users including
r...@localbox...when I entered that user it worked. Still cannot start
turned-off vms this way, but its furtehr than I got.

Thanks again.



On Fri, Oct 30, 2015 at 1:29 PM, Jiri Belka  wrote:

> > I do not see a way to start vm's in the event that an engine is down. I
> see
> > vdsClient -s 0 destroy works to shut them down.
>
> Yes, engine is SPOF. They invented hosted engine solution which pretends
> to bringe HA for engine but...
>
> I have no idea why it does not use JBoss based features like clustering.
>
> > Also, is it still possible to use non-read-only virsh commands? i tried
> using
> > saslpasswd2 to create an account, but that did not seem to work.
>
> You are doing something wrong then. Auth for virsh works ok, you just
> have to know how libvirt works with that sasl :)
>
> # grep ^sasldb /etc/sasl2/libvirt.conf
> sasldb_path: /etc/libvirt/passwd.db
>
> # saslpasswd2 -c -a libvirt testovic
> ...
> # strings /etc/libvirt/passwd.db | grep ^testovic
> testovic
>
> j.
>



-- 

*Liam Curtis*
Manager of Systems EngineeringDatto, Inc.(203) 529-4949 x228
www.datto.com


Join the conversation! [image: Facebook]
 [image:
Twitter]  [image: LinkedIn]
 [image: Blog RSS]
 [image: YouTube]
 [image: Google Plus Page]

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Domain ordering in the user portal login form

2015-10-30 Thread Alon Bar-Lev
Hi,
I do not think there is a specific default but alphabetic sort().
Regards,
Alon

- Original Message -
> From: "Jiri Belka" 
> To: "Cristian Mammoli" 
> Cc: "users" 
> Sent: Saturday, October 31, 2015 2:24:24 AM
> Subject: Re: [ovirt-users] Domain ordering in the user portal login form
> 
> > I have 3.6, what file should I modify in
> > 
> > /etc/ovirt-engine/extensions.d/?
> 
> See how it works here
> https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Virtualization/3.5/html-single/Administration_Guide/index.html#sect-Directory_Users
> 
> j.
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
> 
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Domain ordering in the user portal login form

2015-10-30 Thread Jiri Belka
> I have 3.6, what file should I modify in
> 
> /etc/ovirt-engine/extensions.d/?

See how it works here
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Virtualization/3.5/html-single/Administration_Guide/index.html#sect-Directory_Users

j.___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] RHEV and RHS integration

2015-10-30 Thread Dan Kenigsberg
On Thu, Oct 22, 2015 at 02:18:10AM +, BYUNGSUK KIM (byungkim) wrote:
> 
> 
> Hi,
> 
> We are trying to integration RHEV and RHS with oVirt. But we have just 1G 
> network between RHEV host and RHS volumes.
> 
> So I think there is bottle lack on network area.  Can we optimize this 
> environment to solve this proble?
> 
> Please Let us know your experience.

Which kind of integration did you have in mind? What is the motivation
of mixing RHEV and oVirt? Which kind performance issues do you see, with
how many VMs and how many IOPS are are produced by each?

It is hard to provide smart suggestion without more details.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] VNC keyboard layout

2015-10-30 Thread Jonas Israelsson

Hi

Using 3.6 and VNC or noVNC with the swedish keyboard layout is far from 
optimal.
To be frank it's almost useless since vital characters such as - (minus) 
and | (pipe) can't be typed.

Furthermore many other characters are mapped to wrong the keys.

Can this be tweaked ? I'm more than willing to help out with both 
tweaking and testing.


I have an old 3.4 installation running, while that keyboard layout is by 
no mean perfect, it's miles better than 3.6




___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] Contribute with Ovirt

2015-10-30 Thread Somansh Arora
Hi All,

I am a Linux Admin from India aged 24, working for a reputed company
handling their Linux, AIX and HPUX server from last 2 years. I would like
to give some of my time now contributing to some of the open projects. I
liked ovirt.

Please let me know if i could be of any help in any ways around. Help from
anyone in your team responding to me is appreciated.

-- 
Thanks & Regards

Somansh Arora
+91- 9582671964
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Change host using php api

2015-10-30 Thread Jiri Belka
> I would like to change the host of a vm using the api call. I tried it by
> using the following xml but didn't work
> 
> 
> 
> 
> 
> 
> compute11
> 
> 
> 
> 
> 
> 
> Could you please check it ?

Check what? '...didn't work' is too broad description.
Share more info.

j.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] ovirt 3.6 and self hosted engine: clarification on datacenter input

2015-10-30 Thread wodel youchi
Hi,

just adding some info,
I have the same problem, no VM engine on webui (nfs4 as storage).
and when adding the hosted_storage, the VM engine crashes entirely, but I
think it's much more than that, I think the whole DC goes down.

One time I had two VMs started plus the VM engine (global maintenance was
activated), I did an update on the VM engine, then I tried to import the
the hosted_storage, as always the VM engine went down, but also the two
other VMs.



2015-10-29 22:09 GMT+01:00 Joop :

> On 28-10-2015 17:00, Gianluca Cecchi wrote:
>
> On Wed, Oct 28, 2015 at 4:10 PM, Simone Tiraboschi < 
> stira...@redhat.com> wrote:
>
>>
>>
>> It's not a regression cause the hosted-engine storage domain wasn't
>> neither visible in 3.5.
>> Once again, also if you see it in the engine you cannot use it for
>> anything apart from the engine VM itself, you still have to add another
>> storage domain for regular VMs.
>>
>>
>
> understood. But I'm also not able to connect to the sh engine VM itself
> via spice, so in case of problems with the engine, you are not able to
> connect to it via web admin (that is ok), but I don't see any way to
> understand its state to be able to debug/resolve problems...
>
> Are there any command line commands to run to see status of sh engine VM?
>
> Joop, are you able to access your sh engine console? Is it vnc or spice?
>
>
> I'll have time to try coming weekend/next week and let you know how it
> goes.
>
> Joop
>
>
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
>
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] Unable to add secondary hosted engine hosts with ovirt3.5.5

2015-10-30 Thread Jorgens, Bruce
Ovirt users,

I have ovirt 3.5.5 with a hosted engine setup with the host node and engine 
node running CentOS 7.1 with a shared NFS storage domain.
I initially attempted to 2 additional hosted engine nodes using CentOS 7.1 with 
the 'hosted-engine -deploy' command.
Both nodes failed to add when the answer file was unable to be retrieved from 
the first host.

[root@bml-24 ~]# hosted-engine --deploy
[ INFO  ] Stage: Initializing
[ INFO  ] Generating a temporary VNC password.
[ INFO  ] Stage: Environment setup
  Continuing will configure this host for serving as hypervisor and 
create a VM where you have to install oVirt Engine afterwards.
  Are you sure you want to continue? (Yes, No)[Yes]:
  Configuration files: []
  Log file: 
/var/log/ovirt-hosted-engine-setup/ovirt-hosted-engine-setup-20151030113943-c18yxd.log
  Version: otopi-1.3.2 (otopi-1.3.2-1.el7.centos)
[ INFO  ] Hardware supports virtualization
[ INFO  ] Bridge ovirtmgmt already created
[ INFO  ] Stage: Environment packages setup
[ INFO  ] Stage: Programs detection
[ INFO  ] Stage: Environment setup
[ INFO  ] Stage: Environment customization

  --== STORAGE CONFIGURATION ==--

  During customization use CTRL-D to abort.
  Please specify the storage you would like to use (iscsi, nfs3, 
nfs4)[nfs3]:
  Please specify the full shared storage connection path to use 
(example: host:/path): cantap01b.ciena.com:/vol/sta_fast/ovirt35/hosted_engine
  The specified storage location already contains a data domain. Is 
this an additional host setup (Yes, No)[Yes]?
[ INFO  ] Installing on additional host
  Please specify the Host ID [Must be integer, default: 2]: 4
  Local storage datacenter name is an internal name and currently will 
not be shown in engine's admin UI.
  Please enter local datacenter name [hosted_datacenter]:

  --== SYSTEM CONFIGURATION ==--

[WARNING] A configuration file must be supplied to deploy Hosted Engine on an 
additional host.
  The answer file may be fetched from the first host using scp.
  If you do not want to download it automatically you can abort the 
setup answering no to the following question.
  Do you want to scp the answer file from the first host? (Yes, 
No)[Yes]:
  Please provide the FQDN or IP of the first host: 
ovirt.ca.stalab.ciena.com
  Enter 'root' user password for host ovirt.ca.stalab.ciena.com:
[ ERROR ] Failed to execute stage 'Environment customization': [Errno 2] No 
such file
[ INFO  ] Stage: Clean up
[ INFO  ] Generating answer file 
'/var/lib/ovirt-hosted-engine-setup/answers/answers-20151030114103.conf'
[ INFO  ] Stage: Pre-termination
[ INFO  ] Stage: Termination

I was able to add the additional hosts using the ovirt GUI and am able to use 
them for running VMs.

I tried running 'hosted-engine -deploy' on each host again and get the same 
error as before.

Checking the logfile referenced above, I don't see that the download filename 
listed.
I do see a couples of stack traces that might be useful.

I also found this defect in the release notes for ovirt-3.5.5 which claims to 
be resolved.
Bug 1271272 - [HE] Failed 
to deploy additional host using NFS

I was careful when installing ovirt 3.5.5 to ensure that I used the baseurl 
instead of the mirrors as it looked like the mirrors were behind.

[root@bml-24 ~]# cat /etc/yum.repos.d/ovirt-3.5.repo
[ovirt-3.5]
name=Latest oVirt 3.5 Release
baseurl=http://resources.ovirt.org/pub/ovirt-3.5/rpm/el$releasever/
#mirrorlist=http://resources.ovirt.org/pub/yum-repo/mirrorlist-ovirt-3.5-el$releasever
enabled=1
skip_if_unavailable=1
gpgcheck=1
gpgkey=file:///etc/pki/rpm-gpg/RPM-GPG-ovirt-3.5

I see that there is another repo file for ovirt as well that I didn't modify.
Could my issue be caused by not picking up the latest versions from these 
mirrors?

[root@bml-24 ~]# cat /etc/yum.repos.d/ovirt-3.5-dependencies.repo
[ovirt-3.5-epel]
name=Extra Packages for Enterprise Linux 7 - $basearch
#baseurl=http://download.fedoraproject.org/pub/epel/7/$basearch
mirrorlist=https://mirrors.fedoraproject.org/metalink?repo=epel-7=$basearch
failovermethod=priority
enabled=1
includepkgs=epel-release,python-uinput,puppet,python-lockfile,python-cpopen,python-ordereddict,python-pthreading,python-inotify,python-argparse,novnc,python-ply,python-kitchen,python-daemon,python-websockify,livecd-tools,spice-html5,mom,python-IPy,python-ioprocess,ioprocess,python-paramiko,python-crypto,python-cheetah,python-ecdsa,python-markdown,rubygem-rgen,ovirt-guest-agent,userspace-rcu,protobuf-java
gpgcheck=1
gpgkey=https://dl.fedoraproject.org/pub/epel/RPM-GPG-KEY-EPEL-7

[ovirt-3.5-glusterfs-epel]
name=GlusterFS is a clustered file-system capable of scaling to several 
petabytes.
baseurl=http://download.gluster.org/pub/gluster/glusterfs/LATEST/EPEL.repo/epel-$releasever/$basearch/
enabled=1

Re: [ovirt-users] Domain ordering in the user portal login form

2015-10-30 Thread Cristian Mammoli

I have 3.6, what file should I modify in

/etc/ovirt-engine/extensions.d/?


Ty
Il 30/10/2015 18:09, Jiri Belka ha scritto:

From: "Cristian Mammoli" 
To: "users" 
Sent: Tuesday, October 27, 2015 10:20:10 AM
Subject: [ovirt-users] Domain ordering in the user portal login form

Hi, is there a way to set the default domain in the user portal drop
down menu?

Thanks

Generally it is alphabetically sorted. But if you use recent
oVirt (what is your version, quite important info) you can
define "name" of this domain profile.

In 3.6 check /etc/ovirt-engine/extensions.d/ dir.

j.


--
Mammoli Cristian
System administrator
T. +39 0731 22911
Via Brodolini 6 | 60035 Jesi (an)

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] ovirt-engine-extension-aaa-ldap and sysprep domain join

2015-10-30 Thread Cristian Mammoli

It works fine, but it kills SSO as user...

Poking in the windows logs I see a failed login as:

myu...@mydomain.tld-authz !!

Il 27/10/2015 11:51, Shahar Havivi ha scritto:

On 27.10.15 05:25, Alon Bar-Lev wrote:

yes, you should probably only customize: $JoinDomain$, $DomainAdminPassword$, 
$DomainAdmin$
maybe, not sure: $JoinDomain$, $MachineObjectOU$
the rest should be the same as any other.

Please make sure that the file is the full sysprep file such as you can find
in /packaging/conf/sysprep/sysprep.w7 which is a windows 7 sysprep file.
You can leave the variables such as $OrgName$ which will be replaces (exept
from the variables that Alon mentioned which where the original problem).


- Original Message -

From: "Cristian Mammoli" 
To: "Shahar Havivi" , "Alon Bar-Lev" 
Cc: "users" 
Sent: Tuesday, October 27, 2015 11:19:02 AM
Subject: Re: [ovirt-users] ovirt-engine-extension-aaa-ldap and sysprep domain 
join

So just pasting there the contents of a modified
/usr/share/ovirt-engine/conf/sysprep/sysprep.w7x64 (for example) should
work right?

The variables like '![CDATA[$OrgName$' will be replaced?

Il 26/10/2015 12:43, Shahar Havivi ha scritto:

On 26.10.15 06:23, Alon Bar-Lev wrote:

Hi,
The usage of the engine-manage-domain user to anything else but ldap
searches is something that is unexpected and insecure.
As a solution, you may either paste a modified sysprep file into the pool
at UI or set up a different osinfo profile with modified sysprep file,
this modified sysprep file can contain the credentials of the user that
is being used for joining the domain.
CCing Shahar which may assist farther.

Hi,
You can paste a modified sysprep file to "new Pool"->"Initial run"->"Custom
Script"
As Alon mentioned.

--
Mammoli Cristian
System administrator
T. +39 0731 22911
Via Brodolini 6 | 60035 Jesi (an)




--
Mammoli Cristian
System administrator
T. +39 0731 22911
Via Brodolini 6 | 60035 Jesi (an)

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] ovirt-engine-extension-aaa-ldap and sysprep domain join

2015-10-30 Thread Alon Bar-Lev

What do you mean?
Maybe the password delegation into the virtual machine?
If engine does not know the password, it cannot delegate it to virtual machine.
Solution is described here[1], so far no resources were allocated.

[1] http://www.ovirt.org/Features/SSO

- Original Message -
> From: "Cristian Mammoli" 
> To: "Shahar Havivi" , "Alon Bar-Lev" 
> Cc: "users" 
> Sent: Friday, October 30, 2015 9:33:02 PM
> Subject: Re: [ovirt-users] ovirt-engine-extension-aaa-ldap and sysprep domain 
> join
> 
> It works fine, but it kills SSO as user...
> 
> Poking in the windows logs I see a failed login as:
> 
> myu...@mydomain.tld-authz !!
> 
> Il 27/10/2015 11:51, Shahar Havivi ha scritto:
> > On 27.10.15 05:25, Alon Bar-Lev wrote:
> >> yes, you should probably only customize: $JoinDomain$,
> >> $DomainAdminPassword$, $DomainAdmin$
> >> maybe, not sure: $JoinDomain$, $MachineObjectOU$
> >> the rest should be the same as any other.
> > Please make sure that the file is the full sysprep file such as you can
> > find
> > in /packaging/conf/sysprep/sysprep.w7 which is a windows 7 sysprep file.
> > You can leave the variables such as $OrgName$ which will be replaces (exept
> > from the variables that Alon mentioned which where the original problem).
> >
> >> - Original Message -
> >>> From: "Cristian Mammoli" 
> >>> To: "Shahar Havivi" , "Alon Bar-Lev"
> >>> 
> >>> Cc: "users" 
> >>> Sent: Tuesday, October 27, 2015 11:19:02 AM
> >>> Subject: Re: [ovirt-users] ovirt-engine-extension-aaa-ldap and sysprep
> >>> domain join
> >>>
> >>> So just pasting there the contents of a modified
> >>> /usr/share/ovirt-engine/conf/sysprep/sysprep.w7x64 (for example) should
> >>> work right?
> >>>
> >>> The variables like '![CDATA[$OrgName$' will be replaced?
> >>>
> >>> Il 26/10/2015 12:43, Shahar Havivi ha scritto:
>  On 26.10.15 06:23, Alon Bar-Lev wrote:
> > Hi,
> > The usage of the engine-manage-domain user to anything else but ldap
> > searches is something that is unexpected and insecure.
> > As a solution, you may either paste a modified sysprep file into the
> > pool
> > at UI or set up a different osinfo profile with modified sysprep file,
> > this modified sysprep file can contain the credentials of the user that
> > is being used for joining the domain.
> > CCing Shahar which may assist farther.
>  Hi,
>  You can paste a modified sysprep file to "new Pool"->"Initial
>  run"->"Custom
>  Script"
>  As Alon mentioned.
> >>> --
> >>> Mammoli Cristian
> >>> System administrator
> >>> T. +39 0731 22911
> >>> Via Brodolini 6 | 60035 Jesi (an)
> >>>
> >>>
> 
> --
> Mammoli Cristian
> System administrator
> T. +39 0731 22911
> Via Brodolini 6 | 60035 Jesi (an)
> 
> 
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Unable to boot from CD ROM using api

2015-10-30 Thread Jiri Belka
> We are using ovirt 3.5 version and trying to change the boot device to CD ROM
> and boot from it using the ovirt api. I am able to change the boot order but
> i am unable to boot the vm from the CDROM using api. But i am able to do the
> same from the ovirt panel. The following are the steps that i follow
> 
> 1. Shut down the vm
> 2. Attach the iso image
> 3. Start the vm in run once mode using api with the following xml
> 
> " "
> 
> Could you please check if any issues with this ? Also, I am able to view the
> attached image from the ovirt panel.

And output from curl/wget (whatever you use) does show what?

j.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] ipv6 in guests not worknig

2015-10-30 Thread Jiri Belka
> [root@dipovirt01 ~]# cat /etc/sysctl.d/ipv6.conf
> net.ipv6.conf.all.forwarding = 1
> net.ipv6.conf.default.forwarding = 1

imo the above is only needed for "routing", not bridging.

any news?

j.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Domain ordering in the user portal login form

2015-10-30 Thread Jiri Belka
> From: "Cristian Mammoli" 
> To: "users" 
> Sent: Tuesday, October 27, 2015 10:20:10 AM
> Subject: [ovirt-users] Domain ordering in the user portal login form
> 
> Hi, is there a way to set the default domain in the user portal drop
> down menu?
> 
> Thanks

Generally it is alphabetically sorted. But if you use recent
oVirt (what is your version, quite important info) you can
define "name" of this domain profile.

In 3.6 check /etc/ovirt-engine/extensions.d/ dir.

j.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Keep on loading while importing a vm

2015-10-30 Thread Jiri Belka
> While importing a vm from vmware in the Ovirt3.6 its keep on loading and
> nothing comes up ,can someone help me in that ?

Via v2v tool? If so check http://libguestfs.org/virt-v2v.1.html
for contacts.

j.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Ovirt Guest VM network | vnet to id

2015-10-30 Thread Jiri Belka
> I have an query regarding guest VM network name...in the host every VM
> network has the name of vnet0,vnet1 etc...is there any way to change to them
> from vnet to interface id ??

I understand your point but in "cloud"(-like) environments there's no
use for explicit hardcoded names.

You better use different approach:

- use engine's restapi and query for VM network and than for its underlying
  hosts/netifaces
- use libvirt directly

I would go with the former as you already use oVirt.

See http://www.ovirt.org/REST-Api or
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Virtualization/3.5/html/Technical_Guide/chap-REST_API_Quick_Start_Example.html

Have fun.

j.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Ovirt and Shorewall

2015-10-30 Thread Jiri Belka
> From: "Johan Vermeulen" 
> To: "users" 
> Sent: Wednesday, October 28, 2015 4:13:49 PM
> Subject: [ovirt-users] Ovirt and Shorewall

> Hello All,

> I'm still experimenting with Ovirt-setup.
> Because Centos/Rhel7 now have Firewalld, and because I still have some
> Centos6
> machines with Iptables, I was kinda hoping to use Shorewall on both.

> Is there any support/documentation for this in the Ovirt-world?

On RHEL 7, ovirt 3.6 puts vdsm ("hypervisor" host) firewall rules
as xml file into firewalld directory.

It is open-source, check engine-setup source and maybe you can propose
diffs for another fw frontend support.

j.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Problem starting up new VM created from a template.

2015-10-30 Thread Jiri Belka
> Hello,
> 
> I'm having troubles with a new VM created from a template. I did run sysprep
> in the windows 2008R2 machine before creating a template from it. I have
> already used this template multiple times and even this time it initially
> started up just fine but not a second time.
> 
> This is what I see that is troublesome in the vdsm.log file when I try to
> start up the VM.
> 
> Thread-105499::ERROR::2015-10-28
> 10:45:31,899::vm::2344::vm.Vm::(_startUnderlyingVm)
> vmId=`20dfe9dc-74c7-46c0-9708-19200de8e958`::The vm start process failed
> Traceback (most recent call last):
> File "/usr/share/vdsm/virt/vm.py", line 2284, in _startUnderlyingVm
> self._run()
> File "/usr/share/vdsm/virt/vm.py", line 3279, in _run
> self.preparePaths(devices[DISK_DEVICES])
> File "/usr/share/vdsm/virt/vm.py", line 2366, in preparePaths
> drive['path'] = self.cif.prepareVolumePath(drive, self.id )
> File "/usr/share/vdsm/clientIF.py", line 309, in prepareVolumePath
> vmId, device, params['vmPayload'])
> File "/usr/share/vdsm/clientIF.py", line 353, in
> _prepareVolumePathFromPayload
> return func(vmId, payload['file'], payload.get('volId'))
> File "/usr/share/vdsm/supervdsm.py", line 50, in __call__
> return callMethod()
> File "/usr/share/vdsm/supervdsm.py", line 48, in 
> **kwargs)
> File "", line 2, in mkFloppyFs
> File "/usr/lib64/python2.6/multiprocessing/managers.py", line 740, in
> _callmethod
> raise convert_to_error(kind, result)
> OSError: [Errno 5] could not create floppy file: code 1, out mkfs.msdos 3.0.9
> (31 Jan 2010)
> 
> err mkfs.msdos: unable to create
> /var/run/vdsm/payload/20dfe9dc-74c7-46c0-9708-19200de8e958.b490e14021f685d85d57d325b7f66520.img
> 
> Thread-105499::DEBUG::2015-10-28
> 10:45:31,901::vm::2799::vm.Vm::(setDownStatus)
> vmId=`20dfe9dc-74c7-46c0-9708-19200de8e958`::Changed state to Down: [Errno
> 5] could not create floppy file: code 1, out mkfs.msdos 3.0.9 (31 Jan 2010)
> 
> err mkfs.msdos: unable to create
> /var/run/vdsm/payload/20dfe9dc-74c7-46c0-9708-19200de8e958.b490e14021f685d85d57d325b7f66520.img
> (code=1)
> Thread-90::DEBUG::2015-10-28
> 10:45:32,271::libvirtconnection::143::root::(wrapper) Unknown libvirterror:
> ecode: 80 edom: 20 level: 2 message: metadata not found: Requested metadata
> element is not present
> JsonRpc (StompReactor)::DEBUG::2015-10-28
> 10:45:34,264::stompReactor::98::Broker.StompAdapter::(handle_frame) Handling
> message 
> JsonRpcServer::DEBUG::2015-10-28
> 10:45:34,265::__init__::530::jsonrpc.JsonRpcServer::(serve_requests) Waiting
> for request
> Thread-105501::DEBUG::2015-10-28
> 10:45:34,271::stompReactor::163::yajsonrpc.StompServer::(send) Sending
> response

Selinux or ownership on that path?

j.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] It is possible to use vdsClient / virsh to start VMs in the event that engine is down?

2015-10-30 Thread Jiri Belka
> I do not see a way to start vm's in the event that an engine is down. I see
> vdsClient -s 0 destroy works to shut them down.

Yes, engine is SPOF. They invented hosted engine solution which pretends
to bringe HA for engine but...

I have no idea why it does not use JBoss based features like clustering.

> Also, is it still possible to use non-read-only virsh commands? i tried using
> saslpasswd2 to create an account, but that did not seem to work.

You are doing something wrong then. Auth for virsh works ok, you just
have to know how libvirt works with that sasl :)

# grep ^sasldb /etc/sasl2/libvirt.conf 
sasldb_path: /etc/libvirt/passwd.db

# saslpasswd2 -c -a libvirt testovic
...
# strings /etc/libvirt/passwd.db | grep ^testovic
testovic

j.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] ovirt-shell login problems

2015-10-30 Thread Jiri Belka
> i'm trying to connect to the engine using ovirt-shell, but i get [SSL:
> UNKNOWN_PROTOCOL] unknown protocol (_ssl.c:590).
> Here is the command i use:
> ovirt-shell -c --url " https://192.168.0.101:80/ovirt-engine/api " --user
> "admin@internal" -A ovirt_ca.pem
> 
> And the debugging mode with -d doesn't provide any additional output.
> The CA cert file have i grabbed using the method mentioned at [1] using wget
> -O ${CA_FILE}
> http://${OVIRT}/ovirt-engine/services/pki-resource?resource=ca-certificate=X509-PEM-CA

Try to use /etc/pki/ovirt-engine/ca.pem from engine host. Does it work?

j.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] poor graphic performances with spice

2015-10-30 Thread Jiri Belka
> From: "Nathanaƫl Blanchet" 
> To: users@ovirt.org
> Sent: Wednesday, October 28, 2015 5:06:54 PM
> Subject: [ovirt-users] poor graphic performances with spice
> 
> Hello,
> 
> I'm studying a possibility to use ovirt as a vdi solution with centos or
> fedora guests. But using spice is awfull and graphics are very slow (in
> particulary videos). Qxl drivers are installed and spice-vdagent works
> as expected on the guest side.
> However, it is amazing to see that glxgears benchmarks are good...
> I wonder how it is possible to adopt such a vdi solution when the user
> experience is so bad.
> I may miss something and may need recommandations of experimented vdi
> users :)
> Thank you for your help.

It's open-source. Your diffs are welcome.

All right, how do you define slow? What is your actual setup/components
and their versions?

j.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Installation failed

2015-10-30 Thread Jiri Belka
> Trying to add a node to our setup, but since today I'm getting an error when
> adding. It looks like starting vdsm-network failed to start, due to this
> error:

> Oct 26 16:46:59 hv01.ovirt.gs.cloud.lan python[27521]: DIGEST-MD5
> parse_server_challenge()
> Oct 26 16:46:59 hv01.ovirt.gs.cloud.lan python[27521]: DIGEST-MD5
> ask_user_info()
> Oct 26 16:46:59 hv01.ovirt.gs.cloud.lan python[27521]: DIGEST-MD5
> make_client_response()
> Oct 26 16:46:59 hv01.ovirt.gs.cloud.lan python[27521]: DIGEST-MD5 client step
> 3
> Oct 26 16:46:59 hv01.ovirt.gs.cloud.lan python[27521]: DIGEST-MD5 client mech
> dispose
> Oct 26 16:46:59 hv01.ovirt.gs.cloud.lan python[27521]: DIGEST-MD5 common mech
> dispose
> Oct 26 16:46:59 hv01.ovirt.gs.cloud.lan vdsm-tool[27521]: libvirt: error : no
> connection driver available for qemu:///system
> Oct 26 16:46:59 hv01.ovirt.gs.cloud.lan systemd[1]: vdsm-network.service:
> control process exited, code=exited status=1
> Oct 26 16:46:59 hv01.ovirt.gs.cloud.lan systemd[1]: Failed to start Virtual
> Desktop Server Manager network restoration.
> Oct 26 16:46:59 hv01.ovirt.gs.cloud.lan systemd[1]: Unit vdsm-network.service
> entered failed state.

I would uninstall vsdm*, libvirt*, qemu*, remove all config remnants and
install it again and re-add host into engine.

j.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] ovirt-shell login problems

2015-10-30 Thread Raz Tamir
You ae trying to login to https with protocol 80 which is http.
Just try http://...
Hope that helps
On Oct 28, 2015 18:38, "Susinthiran Sithamparanathan" 
wrote:

> Hi,
> i'm trying to connect to the engine using ovirt-shell, but i get  [SSL:
> UNKNOWN_PROTOCOL] unknown protocol (_ssl.c:590).
> Here is the command i use:
> ovirt-shell -c --url "https://192.168.0.101:80/ovirt-engine/api; --user
> "admin@internal"  -A ovirt_ca.pem
>
> And the debugging mode with -d doesn't provide any additional output.
> The CA cert file have i grabbed using the method mentioned at [1] using
> wget -O ${CA_FILE} http://
> ${OVIRT}/ovirt-engine/services/pki-resource?resource=ca-certificate=X509-PEM-CA
>
>
> Any idea how i can get access? Thanks!
>
>
>
> [1] http://www.ovirt.org/How_to_Connect_to_SPICE_Console_Without_Portal
>
> --
> Susinthiran Sithamparanathan
>
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
>
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] ovirt-shell login problems

2015-10-30 Thread Raz Tamir
Sorry, port 80 used by http
On Oct 30, 2015 19:57, "Raz Tamir"  wrote:

> You ae trying to login to https with protocol 80 which is http.
> Just try http://...
> Hope that helps
> On Oct 28, 2015 18:38, "Susinthiran Sithamparanathan" 
> wrote:
>
>> Hi,
>> i'm trying to connect to the engine using ovirt-shell, but i get  [SSL:
>> UNKNOWN_PROTOCOL] unknown protocol (_ssl.c:590).
>> Here is the command i use:
>> ovirt-shell -c --url "https://192.168.0.101:80/ovirt-engine/api; --user
>> "admin@internal"  -A ovirt_ca.pem
>>
>> And the debugging mode with -d doesn't provide any additional output.
>> The CA cert file have i grabbed using the method mentioned at [1] using
>> wget -O ${CA_FILE} http://
>> ${OVIRT}/ovirt-engine/services/pki-resource?resource=ca-certificate=X509-PEM-CA
>>
>>
>> Any idea how i can get access? Thanks!
>>
>>
>>
>> [1] http://www.ovirt.org/How_to_Connect_to_SPICE_Console_Without_Portal
>>
>> --
>> Susinthiran Sithamparanathan
>>
>> ___
>> Users mailing list
>> Users@ovirt.org
>> http://lists.ovirt.org/mailman/listinfo/users
>>
>>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] guest agent opensuse

2015-10-30 Thread Jonas Israelsson

For information.

Just installed the opensuse guest agent from factory --> 
http://download.opensuse.org/repositories/home:/evilissimo/openSUSE_Factory/


Seem to work just fine with next upcoming opensuse relase: leap (42.1)


___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] ovirt-engine-extension-aaa-ldap and sysprep domain join

2015-10-30 Thread Cristian Mammoli

As long as I user engine-manage-domains SSO with spice client worked fine:
User logins in the user portal, clicks on a vm and get logged in the 
windows vm


With ovirt-engine-extension-aaa-ldap, configured with 
ovirt-engine-extension-aaa-ldap-setup, the SSO didn't work. The vm says 
I tried t login with an invalid username or password.


After enabling audit logs in the vm I see that the spice clients tries 
to login as


user@domain-authz

I changed "ovirt.engine.extension.name" from "domain-authz" to "domain" in
"/etc/ovirt-engine/extensions.d/domain.net-authz.properties"

and "ovirt.engine.aaa.authn.authz.plugin" from "domain-authz" to "domain" in
"/etc/ovirt-engine/extensions.d/domain-authn.properties"

And now SSO works fine

Is it the correct way to go??

Il 30/10/2015 20:37, Alon Bar-Lev ha scritto:

What do you mean?
Maybe the password delegation into the virtual machine?
If engine does not know the password, it cannot delegate it to virtual machine.
Solution is described here[1], so far no resources were allocated.

[1] http://www.ovirt.org/Features/SSO

- Original Message -

From: "Cristian Mammoli" 
To: "Shahar Havivi" , "Alon Bar-Lev" 
Cc: "users" 
Sent: Friday, October 30, 2015 9:33:02 PM
Subject: Re: [ovirt-users] ovirt-engine-extension-aaa-ldap and sysprep domain 
join

It works fine, but it kills SSO as user...

Poking in the windows logs I see a failed login as:

myu...@mydomain.tld-authz !!

Il 27/10/2015 11:51, Shahar Havivi ha scritto:

On 27.10.15 05:25, Alon Bar-Lev wrote:

yes, you should probably only customize: $JoinDomain$,
$DomainAdminPassword$, $DomainAdmin$
maybe, not sure: $JoinDomain$, $MachineObjectOU$
the rest should be the same as any other.

Please make sure that the file is the full sysprep file such as you can
find
in /packaging/conf/sysprep/sysprep.w7 which is a windows 7 sysprep file.
You can leave the variables such as $OrgName$ which will be replaces (exept
from the variables that Alon mentioned which where the original problem).


- Original Message -

From: "Cristian Mammoli" 
To: "Shahar Havivi" , "Alon Bar-Lev"

Cc: "users" 
Sent: Tuesday, October 27, 2015 11:19:02 AM
Subject: Re: [ovirt-users] ovirt-engine-extension-aaa-ldap and sysprep
domain join

So just pasting there the contents of a modified
/usr/share/ovirt-engine/conf/sysprep/sysprep.w7x64 (for example) should
work right?

The variables like '![CDATA[$OrgName$' will be replaced?

Il 26/10/2015 12:43, Shahar Havivi ha scritto:

On 26.10.15 06:23, Alon Bar-Lev wrote:

Hi,
The usage of the engine-manage-domain user to anything else but ldap
searches is something that is unexpected and insecure.
As a solution, you may either paste a modified sysprep file into the
pool
at UI or set up a different osinfo profile with modified sysprep file,
this modified sysprep file can contain the credentials of the user that
is being used for joining the domain.
CCing Shahar which may assist farther.

Hi,
You can paste a modified sysprep file to "new Pool"->"Initial
run"->"Custom
Script"
As Alon mentioned.

--
Mammoli Cristian
System administrator
T. +39 0731 22911
Via Brodolini 6 | 60035 Jesi (an)



--
Mammoli Cristian
System administrator
T. +39 0731 22911
Via Brodolini 6 | 60035 Jesi (an)




--
Mammoli Cristian
System administrator
T. +39 0731 22911
Via Brodolini 6 | 60035 Jesi (an)

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] ovirt-engine-extension-aaa-ldap and sysprep domain join

2015-10-30 Thread Alon Bar-Lev


- Original Message -
> From: "Cristian Mammoli" 
> To: "Alon Bar-Lev" 
> Cc: "Shahar Havivi" , "users" 
> Sent: Friday, October 30, 2015 9:48:04 PM
> Subject: Re: [ovirt-users] ovirt-engine-extension-aaa-ldap and sysprep domain 
> join
> 
> As long as I user engine-manage-domains SSO with spice client worked fine:
> User logins in the user portal, clicks on a vm and get logged in the
> windows vm
> 
> With ovirt-engine-extension-aaa-ldap, configured with
> ovirt-engine-extension-aaa-ldap-setup, the SSO didn't work. The vm says
> I tried t login with an invalid username or password.
> 
> After enabling audit logs in the vm I see that the spice clients tries
> to login as
> 
> user@domain-authz
> 
> I changed "ovirt.engine.extension.name" from "domain-authz" to "domain" in
> "/etc/ovirt-engine/extensions.d/domain.net-authz.properties"
> 
> and "ovirt.engine.aaa.authn.authz.plugin" from "domain-authz" to "domain" in
> "/etc/ovirt-engine/extensions.d/domain-authn.properties"
> 
> And now SSO works fine
> 
> Is it the correct way to go??

Oh... I did not understand this is what you are trying to do.
Yes, this is [1].
There are lots of invalid assumptions in the product, one of them is that the 
profile name within the ovirt application matches the domain name of the VM.

[1] https://bugzilla.redhat.com/show_bug.cgi?id=1133137#c7

> 
> Il 30/10/2015 20:37, Alon Bar-Lev ha scritto:
> > What do you mean?
> > Maybe the password delegation into the virtual machine?
> > If engine does not know the password, it cannot delegate it to virtual
> > machine.
> > Solution is described here[1], so far no resources were allocated.
> >
> > [1] http://www.ovirt.org/Features/SSO
> >
> > - Original Message -
> >> From: "Cristian Mammoli" 
> >> To: "Shahar Havivi" , "Alon Bar-Lev"
> >> 
> >> Cc: "users" 
> >> Sent: Friday, October 30, 2015 9:33:02 PM
> >> Subject: Re: [ovirt-users] ovirt-engine-extension-aaa-ldap and sysprep
> >> domain join
> >>
> >> It works fine, but it kills SSO as user...
> >>
> >> Poking in the windows logs I see a failed login as:
> >>
> >> myu...@mydomain.tld-authz !!
> >>
> >> Il 27/10/2015 11:51, Shahar Havivi ha scritto:
> >>> On 27.10.15 05:25, Alon Bar-Lev wrote:
>  yes, you should probably only customize: $JoinDomain$,
>  $DomainAdminPassword$, $DomainAdmin$
>  maybe, not sure: $JoinDomain$, $MachineObjectOU$
>  the rest should be the same as any other.
> >>> Please make sure that the file is the full sysprep file such as you can
> >>> find
> >>> in /packaging/conf/sysprep/sysprep.w7 which is a windows 7 sysprep file.
> >>> You can leave the variables such as $OrgName$ which will be replaces
> >>> (exept
> >>> from the variables that Alon mentioned which where the original problem).
> >>>
>  - Original Message -
> > From: "Cristian Mammoli" 
> > To: "Shahar Havivi" , "Alon Bar-Lev"
> > 
> > Cc: "users" 
> > Sent: Tuesday, October 27, 2015 11:19:02 AM
> > Subject: Re: [ovirt-users] ovirt-engine-extension-aaa-ldap and sysprep
> > domain join
> >
> > So just pasting there the contents of a modified
> > /usr/share/ovirt-engine/conf/sysprep/sysprep.w7x64 (for example) should
> > work right?
> >
> > The variables like '![CDATA[$OrgName$' will be replaced?
> >
> > Il 26/10/2015 12:43, Shahar Havivi ha scritto:
> >> On 26.10.15 06:23, Alon Bar-Lev wrote:
> >>> Hi,
> >>> The usage of the engine-manage-domain user to anything else but ldap
> >>> searches is something that is unexpected and insecure.
> >>> As a solution, you may either paste a modified sysprep file into the
> >>> pool
> >>> at UI or set up a different osinfo profile with modified sysprep
> >>> file,
> >>> this modified sysprep file can contain the credentials of the user
> >>> that
> >>> is being used for joining the domain.
> >>> CCing Shahar which may assist farther.
> >> Hi,
> >> You can paste a modified sysprep file to "new Pool"->"Initial
> >> run"->"Custom
> >> Script"
> >> As Alon mentioned.
> > --
> > Mammoli Cristian
> > System administrator
> > T. +39 0731 22911
> > Via Brodolini 6 | 60035 Jesi (an)
> >
> >
> >> --
> >> Mammoli Cristian
> >> System administrator
> >> T. +39 0731 22911
> >> Via Brodolini 6 | 60035 Jesi (an)
> >>
> >>
> 
> --
> Mammoli Cristian
> System administrator
> T. +39 0731 22911
> Via Brodolini 6 | 60035 Jesi (an)
> 
> 
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users