[ovirt-users] 20+ Fresh Installs Failing in 20+ days [newbie & frustrated]

2020-10-11 Thread info
I have no idea if it is Hardware or Software. It crashed every time after it
starts with the storage setup

 

Error in ovirt-hosted-engine-setup-ansilble-setup-final_clean [FAILED]
DESTROYED LOCAL STORAGE-POOL

 

HTTPS --- "certificate invalid"

 

The system is very unstable and impossible to do anything remotely ONLY
accessible on local terminal.

 

This is my hardware 

SuperMicro X11SSF-M

Intel Xeon E3-1230

16 GB ECC RAM

2 x 1 TB Micron 1300 SSD

Key Features

X11SSM-F specifications

Single socket H4 (LGA 1151) supports IntelR XeonR processor E3-1200 v6/v5,
IntelR 7th/6th Gen. CoreT i3 series,

IntelR CeleronR and IntelR PentiumR

IntelR C236 chipset

Up to 64GB Unbuffered ECC UDIMM DDR4 2400MHz; 4 DIMM slots

Expansion slots:

1 PCI-E 3.0 x8 (in x16),

1 PCI-E 3.0 x8,

2 PCI-E 3.0 x4 (in x8)

Dual GbE LAN with IntelR i210-AT

8 SATA3 (6Gbps) via C236;

RAID 0, 1, 5, 10

I/O: 1 VGA, 2 COM, 2 SuperDOM, and TPM header

5 USB 3.0 (2 rear, 2 via header(s), 1 Type A), 6 USB 2.0 (2 rear, 4 via
header(s))

Integrated IPMI 2.0 and KVM with Dedicated LAN

 

Yours Sincerely,

 

Henni 

 

___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/J25ZA7AHLUPOGUQORS5IY6FHPHS6SVGI/


[ovirt-users] Re: oVirt 4.4 - HA Proxy Fencing

2020-10-11 Thread Strahil Nikolov via Users
Well there are a lot of Red Hat solutions about that one.

You will need a user in ovirt that will be used to restart the VMs.
In my case , I called it 'fencerdrbd' and it has beed granted 'UserRole' 
permissions on the systems in the pacemaker cluster.


Here is my stonith device , but keep in mind that I added the engine's CA to 
the VMs so I use 'ssl_secure=1':


[root@drbd1 ~]# pcs stonith show ovirt_FENCE
 Resource: ovirt_FENCE (class=stonith type=fence_rhevm)
  Attributes: ipaddr=engine.localdomain login=fencerdrbd@internal 
passwd= 
pcmk_host_map=drbd1.localdomain:drbd1;drbd2.localdomain:drbd2;drbd3.localdomain:drbd3
 power_wait=5 ssl=1 ssl_secure=1
  Operations: monitor interval=86400s (ovirt_FENCE-monitor-interval-86400s)

The VMs hostname to VM name mapping is done via pcmk_host_map option.

Keep in mind that due to VM live migration , it is nice to have a token and 
consensus increased.Mines are 1 for token and 12000 for consensus (3 VM 
cluster) , in your case (2 node) 8000 would be OK.

If you use the 'admin@internal' user - you need to use '--disable-http-filter' :
# pcs stonith update fence_device disable_http_filter=1

Extra info can be found at: https://access.redhat.com/solutions/3093891

Best Regards,
Strahil Nikolov





В неделя, 11 октомври 2020 г., 18:41:25 Гринуич+3, Jeremey Wise 
 написа: 






I have a pair of nodes which service DNS / NTP / FTP / AD /Kerberos / IPLB etc..

ns01, ns02

These two "infrastructure VMs have HA Proxy and pacemaker and I have set to 
have "HA" within ovirt and node affinity.

But.. within HAProxy, the nodes use to be able to call the STONITH function of 
KVM to reset a node if / as needed.

Fence Device: "stonith:fence_virsh"
But with oVirt this function no longer works.

For VMs and other applications which need STONITH functions, how would this be 
done with oVirt.

I would assume the call would be to oVirt-Engine now, but not seeing 
documentation on HA-Proxy / Pacemaker to use oVirt.

Can someone point me in the right direction?


-- 
penguinpages
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/B4KLZLPAIZMUMUEIUOSPLEI23UAGZVJM/
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/46FACPOSPGBIRDHQC67WZQA3O2CFYESN/


[ovirt-users] Re: Gluster volume not responding

2020-10-11 Thread Strahil Nikolov via Users
Hi Simon,

Usually it is the network, but you need real-world data. I would open screen 
sessions and run ping continiously . Something like this:

while true; do echo -n "$(date) "; timeout -s 9 1 ping -c 1 ovirt2 | grep 
icmp_seq; sleep 1; done | tee -a /tmp/icmp_log

Are all systems in the same network ?
What about dns resolution - do you have entries in /etc/hosts ?


Best Regards,
Strahil Nikolov


В неделя, 11 октомври 2020 г., 11:54:47 Гринуич+3, Simon Scott 
 написа: 







Thanks Strahil.




I have found between 1 & 4 Gluster peer rpc-clnt-ping timer expired messages in 
the rhev-data-center-mnt-glusterSD-hostname-strg:_pltfm_data01.log on the 
storage network IP. Of the 6 Hosts only 1 does not have these timeouts.




Fencing has been disabled but can you identify which logs are key to 
identifying the cause please.




It's a bonded (bond1) 10GB ovirt-mgmt logical network and Prod VM VLAN 
interface AND a bonded (bond2) 10GB Gluster storage network. 

Dropped packets are seen incrementing in the vdsm.log but neither ethtool -S or 
kernel logs are showing dropped packets. I am wondering if they are being 
dropped due to the ring buffers being small.




Kind Regards




Shimme





 
From: Strahil Nikolov 
Sent: Thursday 8 October 2020 20:40
To: users@ovirt.org ; Simon Scott 
Subject: Re: [ovirt-users] Gluster volume not responding 
 



>Every Monday and Wednesday morning there are gluster connectivity timeouts 
>>but all checks of the network and network configs are ok.

Based on this one I make the following conclusions:
1. Issue is reoccuring
2. You most probably have a network issue

Have you checked the following:
- are there any ping timeouts between fuse clients and gluster nodes
- Have you tried to disable fencing and check the logs after the issue reoccurs
- Are you sharing Blackup and Prod networks ? Is it possible some backup/other 
production load in your environment to "black-out" your oVirt ?
- Have you check the gluster cluster's logs for anything meaningful ?

Best Regards,
Strahil Nikolov



___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/U527TGUQR6RV7Z426NWMO3K4OXQJABCM/
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/VXYVXMBCPU5UCTQVVHWQ3PLL2RHCJJ7G/


[ovirt-users] oVirt 4.4 - HA Proxy Fencing

2020-10-11 Thread Jeremey Wise
I have a pair of nodes which service DNS / NTP / FTP / AD /Kerberos / IPLB
etc..

ns01, ns02

These two "infrastructure VMs have HA Proxy and pacemaker and I have set to
have "HA" within ovirt and node affinity.

But.. within HAProxy, the nodes use to be able to call the STONITH function
of KVM to reset a node if / as needed.

Fence Device: "stonith:fence_virsh"
But with oVirt this function no longer works.

For VMs and other applications which need STONITH functions, how would this
be done with oVirt.

I would assume the call would be to oVirt-Engine now, but not seeing
documentation on HA-Proxy / Pacemaker to use oVirt.

Can someone point me in the right direction?


-- 
penguinpages
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/B4KLZLPAIZMUMUEIUOSPLEI23UAGZVJM/


[ovirt-users] Fencing with oVirt 4.4 apc master switch

2020-10-11 Thread Jeremey Wise
I use to have hand built CentOS+KVM + Gluster.

Moved to HCI oVirt controlled system and so far, been very happy with
stability and quality.

One feature that was working in old "hand build" version was fencing.

I have an old APC master switch AP9606.  I use to have and use it for
master switch functions of nodes but sense replacement with oVirt it has
not worked.   Here are setup notes and symptoms

IP: 172.16.100.2
Username: apc
Password: 
Port 8 (it is an eight port unit)
Slot:  


Error:
Test failed: WARNING:root:Parse error: Ignoring option 'agent' because it
does not have value ERROR:root:Unable to connect/login to fencing device
2020-10-11 11:28:50,885 ERROR: Unable to connect/login to fencing device


Questions:
1) Has anyone setup this with oVirt such that it uses apc master switch
2) Where is oVirt putting these logs / running this service.  I assumed
oVirt engine running the services and so tried to find details and logs
here.



-- 
penguinpages
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/GBD7MUJKXDZE56TYUCBJNDE7TWS7CHTZ/


[ovirt-users] Re: ovirt broker how to modify network_test dns ip address?

2020-10-11 Thread Yedidyah Bar David
On Thu, Sep 24, 2020 at 6:11 PM wodel youchi  wrote:
>
> Hi,
>
> How to modify the ip address of the DNS server used by ovirt-broker for 
> testing?

AFAICT it simply runs 'dig' against your local machine conf - usually
/etc/resolv.conf .

Best regards,
-- 
Didi
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/4RNBP2DUADXNYCRIJR7HVA36BROMCSZX/


[ovirt-users] Nodes with a version and others with anothers

2020-10-11 Thread Julio Cesar Bustamante
Hi everyone is it recommendable to have nodes with ovirt host with a
version and others nodes with another version?

for example 5 nodes with this description
Versión SO -:
RHEL - 7 - 6.1810.2.el7.centos
Descripción de SO:
CentOS Linux 7 (Core)
Versión del kernel:
3.10.0 - 957.10.1.el7.x86_64
Versión KVM:
2.12.0 - 18.el7_6.3.1
Versión LIBVIRT:
libvirt-4.5.0-10.el7_6.6
Versión VDSM:
vdsm-4.20.46-1.el7
Versión de SPICE:
0.14.0 - 6.el7_6.1
Versión GlusterFS:
[N. D.]
Versión CEPH:
librbd1-10.2.5-4.el7

And a node with ths

Versión SO -:
RHEL - 7 - 5.1804.5.el7.centos
Descripción de SO:
oVirt Node 4.2.7.1
Versión del kernel:
3.10.0 - 862.14.4.el7.x86_64
Versión KVM:
2.10.0 - 21.el7_5.7.1
Versión LIBVIRT:
libvirt-3.9.0-14.el7_5.8
Versión VDSM:
vdsm-4.20.43-1.el7
Versión de SPICE:
0.14.0 - 2.el7_5.5
Versión GlusterFS:
glusterfs-3.12.15-1.el7
Versión CEPH:
librbd1-0.94.5-2.el7
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/KSTFNI22CRZIH5VZQDS4EOVKYQGTQTF5/


[ovirt-users] Imageio Daemon not listening on port 54323

2020-10-11 Thread tim-nospam--- via Users
Hello.

After an upgrade I am not able to upload images anymore via the ovirt ui. When 
testing the connection, I always get the error message "Connection to 
ovirt-imageio-proxy service has failed. Make sure the service is installed, 
configured, and ovirt-engine certificate is registered as a valid CA in the 
browser.".

I found out that the imageio daemon doesn't listen on port 54323 anymore, so 
the browser can not connect to it. The daemon is configured to listen on port 
54323 though:

# cat /etc/ovirt-imageio/conf.d/50-engine.conf
[...]
[remote]
port = 54323
[...]

The imageio daemon has been started successfully on the engine host as well as 
on the other hosts.

I am currently stuck, what should I do next?
The ovirt version I am using is 4.4. There is one machine running the ovirt 
engine and there are 2 additional hosts. The OS on the machines is Centos 8.

Thank you,
Tim
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/GWIVRHYHNGUVJNSQTYCDQBOG6VFXCZPB/


[ovirt-users] Re: Gluster volume not responding

2020-10-11 Thread Simon Scott
Thanks Strahil.

I have found between 1 & 4 Gluster peer rpc-clnt-ping timer expired messages in 
the rhev-data-center-mnt-glusterSD-hostname-strg:_pltfm_data01.log on the 
storage network IP. Of the 6 Hosts only 1 does not have these timeouts.

Fencing has been disabled but can you identify which logs are key to 
identifying the cause please.

It's a bonded (bond1) 10GB ovirt-mgmt logical network and Prod VM VLAN 
interface AND a bonded (bond2) 10GB Gluster storage network.
Dropped packets are seen incrementing in the vdsm.log but neither ethtool -S or 
kernel logs are showing dropped packets. I am wondering if they are being 
dropped due to the ring buffers being small.

Kind Regards

Shimme


From: Strahil Nikolov 
Sent: Thursday 8 October 2020 20:40
To: users@ovirt.org ; Simon Scott 
Subject: Re: [ovirt-users] Gluster volume not responding

>Every Monday and Wednesday morning there are gluster connectivity timeouts 
>>but all checks of the network and network configs are ok.

Based on this one I make the following conclusions:
1. Issue is reoccuring
2. You most probably have a network issue

Have you checked the following:
- are there any ping timeouts between fuse clients and gluster nodes
- Have you tried to disable fencing and check the logs after the issue reoccurs
- Are you sharing Blackup and Prod networks ? Is it possible some backup/other 
production load in your environment to "black-out" your oVirt ?
- Have you check the gluster cluster's logs for anything meaningful ?

Best Regards,
Strahil Nikolov
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/U527TGUQR6RV7Z426NWMO3K4OXQJABCM/


[ovirt-users] Re: too many glitches while moving storage domain

2020-10-11 Thread Strahil Nikolov via Users
Hi Jiri,

I already opened an Feature request 
https://bugzilla.redhat.com/show_bug.cgi?id=1881457 that is about something 
similar.

Can you check if your case was similar and update the request ?

Best Regards,
Strahil Nikolov






В събота, 10 октомври 2020 г., 23:48:01 Гринуич+3, Jiří Sléžka 
 написа: 





Hi,

today I started one not so common operation and I would like to share my
(not so good) experience.

I have 4 old Opteron G3 hosts which creates 1 DC with 1 cluster with 4.2
compatibility. Then I got 2 newer Intel based hosts which creates
separate DC and cluster. I use one shared FC storage with few LUNs for
all the stuff. Intel cluster is selfhosted with oVirt 4.4.2 where I
migrated original standalone oVirt 4.3.10 manager.

So I have 2 DCs, one with 4.2 and one with 4.4 compatibility.

Now the funny part... I had 2 LUNs connected to old 4.2 DC. My intention
was detach one of them and attach it to the new DC.

first pain was that some of vms had ther disks on both LUNs. It is
indicated late in the process and without hint which vms they are. So I
had to activate LUN in old DC and tried to find that vms (search string
in vms tab "Storage = one and Storage = two" seems not working). Ok, it
took two or three rounds... then, also late in the process there was
problem that one vm had previewed snapshot so another round with
activation of LUN in old DC... Then I was able detach and import LUN to
new DC. Nice, but with warning that LUN has 4.2 compatibility which will
be converted to 4.4 and there is no way back to connect it to old DC...
It is logical but very scary if something went wrong... but it did not
in my case :-)

LUN is connected in new DC. Now I had to import vms. Most vms were
imported ok but two of them were based on template wich resides on other
LUN. It was not indicated during detaching! It looks like I cannot move
template from storage to storage other way than through Export storage
(which I don't have at this moment) or through OVA export for which I
have not enough free storage space on hosts. Its a trap! :-) Btw. there
is no check for free space while starting export to OVA (template uses
preallocated disk). Exporting task still runs but there is no free space
at the host... and probably no way to cancel it from manager :-(

Ok, I had most of the vms imported. Last really strange thing is that I
lost one vm during import. It is not listed in VirtualMachines nor in VM
import tab on starage nor in Disk tab... that vm was an Aruba migration
tool and was imported from OVN image.

In fact there are two disks in Disk import tab, one of them has no
Alias/description and was created today around time I started work on
this migration. The second one has alias "vmdisk1" and is few months
older but I have no idea if it is the lost vm...

Sorry for long story, TL;DR version could be: There are glitches in some
(not so common) workflows...

Cheers,

Jiri

___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/3RSL5Y2BDX2OWYXHVWJXZV4C2XA5VMBX/
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/IWZ7RKOVHONTWB7M32RWX6TCFXN34X3A/


[ovirt-users] Re: How to make oVirt + GlusterFS bulletproof

2020-10-11 Thread Strahil Nikolov via Users
Hi Jaroslaw,

That point was from someone else. I don't think that gluster has a such weak 
point. The only weak point I have seen is the infrastructure it relies ontop 
and of course the built-in limitations it has.

You need to verify the following:
- mount options are important . Using 'nobarrier' but without radi-controller 
protection is devastating. Also I use the following option when using gluster + 
selinux in enforcing mode:
 
context=system_u:object_r:glusterd_brick_t:s0 - it tells the kernel what is the 
selinux context on all files/dirs in the gluster brick and this reduces I/O 
requests to the bricks

My mount options are:
noatime,nodiratime,inode64,nouuid,context="system_u:object_r:glusterd_brick_t:s0"

- Next is your FS - if you use HW raid controller , you need to specify the 
sunit= and swidth= for the 'mkfs.xfs' (and don't forget the '-i size=512')
This tells the XFS about the hardware beneath

- If you use thin LVM , you need to be sure that your '_tmeta' LV of the 
Thinpool LV is not over a VDO device as it doesn't dedupe quite good
I'm using VDO in 'emulate512' as my 'PHY-SEC' is 4096 and oVirt doesn't like it 
:) . You can check yours via 'lsblk -t'.

- Configure and tune your VDO. I think that 1 VDO = 1 Fast disk (NVMe/SSD) as 
I'm not very good in tuning VDO. If you need dedupe - check RedHat's 
documentation about the indexing as the defaults are not optimal.

- Next is the disk scheduler. In case you use NVMe - the linux kernel is taking 
care of it , but for SSDs and large HW arrays - you can enable the multiqueue 
and switch to 'none' via UDEV rules.Of course , testing is needed for every 
prod environment :)
Also consider using noop/none I/O scheduler in the VMs as you don't want to 
reorder I/O requests on VM level , just to do it on Host level.

- You can set your CPU to avoid switching to lower C states -> that adds extra 
latency for the host/VM processes

- Transparent Huge Pages can be a real problem , especially with large VMs. 
oVirt 4.4.x now should support native Huge and Gumbo pages which will reduce 
the stress over the OS.

- vm.swappiness, vm.dirty_background , vm.dirty_*** settings. You can check 
what RH gluster storage is using the ones in the redhat-storage-server rpms: in 
ftp://ftp.redhat.com/redhat/linux/enterprise/7Server/en/RHS/SRPMS/

They control the behaviour of the system when to start flushing memory to disk 
and when to block any process until all memory is flushed.


Best Regards,
Strahil Nikolov








В събота, 10 октомври 2020 г., 18:18:55 Гринуич+3, Jarosław Prokopowski 
 написа: 





Thanks Strahil 
The data center is remote so I will definitely ask the lab guys to ensure the 
switch is connected to battery supported power socket. 
So the gluster's weak point is actually the switch in the network? Can it have 
difficulty finding out which version of data is correct after the switch was 
off for some time?

___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/VFP2FX2YRAPOH3FPS6MBUYD6KXD55VIA/
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/5G53IXHEF2IPVSGYXATOD6NN5IDAB2YE/


[ovirt-users] Re: Latest ManagedBlockDevice documentation

2020-10-11 Thread Yedidyah Bar David
On Wed, Sep 30, 2020 at 4:43 PM Benny Zlotnik  wrote:
>
> Not sure about this, adding +Yedidyah Bar David
>
> On Wed, Sep 30, 2020 at 3:04 PM Michael Thomas  wrote:
> >
> > I hadn't installed the necessary packages when the engine was first
> > installed.
> >
> > However, running 'engine-setup --reconfigure-optional-components'
> > doesn't work at the moment because (by design) my engine does not have a
> > network route outside of the cluster.  It fails with:
> >
> > [ INFO  ] DNF Errors during downloading metadata for repository 'AppStream':
> > - Curl error (7): Couldn't connect to server for
> > http://mirrorlist.centos.org/?release=8=x86_64=AppStream=$infra
> > [Failed to connect to mirrorlist.centos.org port 80: Network is unreachable]
> > [ ERROR ] DNF Failed to download metadata for repo 'AppStream': Cannot
> > prepare internal mirrorlist: Curl error (7): Couldn't connect to server
> > for
> > http://mirrorlist.centos.org/?release=8=x86_64=AppStream=$infra
> > [Failed to connect to mirrorlist.centos.org port 80: Network is unreachable]
> >
> >
> > I have a proxy set in the engine's /etc/dnf/dnf.conf, but it doesn't
> > seem to be obeyed when running engine-setup.  Is there another way that
> > I can get engine-setup to use a proxy?

I am not sure, it's been a long time since I tried that.

Feel free to file a bug.

You can also try setting env var 'http_proxy' for engine-setup, e.g.:

http_proxy=MY_PROXY_URL engine-setup --reconfigure-optional-components

Alternatively, you can also add '--offline' to engine-setup cmd, and then it
won't do any package management (not try to update, check for updates, etc.).

Best regards,

[1] https://bugzilla.redhat.com/show_bug.cgi?id=1392312

> >
> > --Mike
> >
> >
> > On 9/30/20 2:19 AM, Benny Zlotnik wrote:
> > > When you ran `engine-setup` did you enable cinderlib preview (it will
> > > not be enabled by default)?
> > > It should handle the creation of the database automatically, if you
> > > didn't you can enable it by running:
> > > `engine-setup --reconfigure-optional-components`
> > >
> > >
> > > On Wed, Sep 30, 2020 at 1:58 AM Michael Thomas  wrote:
> > >>
> > >> Hi Benny,
> > >>
> > >> Thanks for the confirmation.  I've installed openstack-ussuri and ceph
> > >> Octopus.  Then I tried using these instructions, as well as the deep
> > >> dive that Eyal has posted at https://www.youtube.com/watch?v=F3JttBkjsX8.
> > >>
> > >> I've done this a couple of times, and each time the engine fails when I
> > >> try to add the new managed block storage domain.  The error on the
> > >> screen indicates that it can't connect to the cinder database.  The
> > >> error in the engine log is:
> > >>
> > >> 2020-09-29 17:02:11,859-05 WARN
> > >> [org.ovirt.engine.core.bll.storage.domain.AddManagedBlockStorageDomainCommand]
> > >> (default task-2) [d519088c-7956-4078-b5cf-156e5b3f1e59] Validation of
> > >> action 'AddManagedBlockStorageDomain' failed for user
> > >> admin@internal-authz. Reasons:
> > >> VAR__TYPE__STORAGE__DOMAIN,VAR__ACTION__ADD,ACTION_TYPE_FAILED_CINDERLIB_DATA_BASE_REQUIRED,ACTION_TYPE_FAILED_CINDERLIB_DATA_BASE_REQUIRED
> > >>
> > >> I had created the db on the engine with this command:
> > >>
> > >> su - postgres -c "psql -d template1 -c \"create database cinder owner
> > >> engine template template0 encoding 'UTF8' lc_collate 'en_US.UTF-8'
> > >> lc_ctype 'en_US.UTF-8';\""
> > >>
> > >> ...and added the following to the end of /var/lib/pgsql/data/pg_hba.conf:
> > >>
> > >>   hostcinder  engine  ::0/0   md5
> > >>   hostcinder  engine  0.0.0.0/0   md5
> > >>
> > >> Is there anywhere else I should look to find out what may have gone 
> > >> wrong?
> > >>
> > >> --Mike
> > >>
> > >> On 9/29/20 3:34 PM, Benny Zlotnik wrote:
> > >>> The feature is currently in tech preview, but it's being worked on.
> > >>> The feature page is outdated,  but I believe this is what most users
> > >>> in the mailing list were using. We held off on updating it because the
> > >>> installation instructions have been a moving target, but it is more
> > >>> stable now and I will update it soon.
> > >>>
> > >>> Specifically speaking, the openstack version should be updated to
> > >>> train (it is likely ussuri works fine too, but I haven't tried it) and
> > >>> cinderlib has an RPM now (python3-cinderlib)[1], so it can be
> > >>> installed instead of using pip, same goes for os-brick. The rest of
> > >>> the information is valid.
> > >>>
> > >>>
> > >>> [1] 
> > >>> http://mirror.centos.org/centos/8/cloud/x86_64/openstack-ussuri/Packages/p/
> > >>>
> > >>> On Tue, Sep 29, 2020 at 10:37 PM Michael Thomas  
> > >>> wrote:
> > 
> >  I'm looking for the latest documentation for setting up a Managed Block
> >  Device storage domain so that I can move some of my VM images to ceph 
> >  rbd.
> > 
> >  I found this:
> > 
> >