[ovirt-users] Re: Keycloak SSO integration

2024-04-06 Thread luc . lalonde
People must not be using Keycloak (Redhat SSO).Anyone have experience 
integrating LDAP users in Ovirt? 
The documentation on the Ovirt site is very scant on the subject.For the 
moment I'm only able to use admin@ovirt.
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/RBS664Q6VQB7IRXWM55RURJRDEOB4A5O/


[ovirt-users] Re: Moving from CentOS8 to CentOS9 based OvirtNodes NG

2024-04-06 Thread luc . lalonde
I have QLA2692 HBA's that are no longer maintained...   In the RHEL 
documentation it says that support may be removed in 'future' versions of RHEL. 
 
In my EL8 cluster I have this type of message:

[3.290628] qla2xxx [:84:00.0]-00fb:5: QLogic QLE2562 - PCI-Express Dual 
Channel 8Gb Fibre Channel HBA.
[3.290634] qla2xxx [:84:00.0]-00fc:5: ISP2532: PCIe (5.0GT/s x8) @ 
:84:00.0 hdma+ host#=5 fw=8.07.00 (90d5).
[3.290712] Warning: Deprecated Hardware is detected: qla2xxx:1077:2532 @ 
:84:00.1 will not be maintained in a future major release and may be 
disabled

I'm hoping that they still work when I upgrade to EL9.   Otherwise, I'll have 
to buy new HBA.
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/ZI6UJ5EACL52RPTAMCFSPIRBVRBAV5CM/


[ovirt-users] Re: Keycloak SSO integration

2024-04-06 Thread luc . lalonde
Unfortunately, I chose the 'Keycloak' option during the setup instead.   So 
using using ovirt-engine-extension-aaa-ldap-setup is not an option.

In the documentation, they say that 'ovirt-engine-extension-aaa-ldap-setup' is 
being deprecated...  I regret not using it anyway.   Documentation is missing 
on how to configure Keycloak (RedHat SSO).

Thank You.
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/5XU43ZJ3Y2F3NRPHCEEIFP3PZMGRDVS7/


[ovirt-users] Re: Keycloak SSO integration

2024-04-06 Thread Nathanaël Blanchet via Users
Le samedi 06 avril 2024 à 11:34 +, 
luc.lalo...@polymtl.ca a écrit :
People must not be using Keycloak (Redhat SSO).Anyone have experience 
integrating LDAP users in Ovirt?
sure, please install the 
ovirt-engine-extension-aaa-ldap-setup-1.4.6-1.el9.noarch and execute 
ovirt-engine-extension-aaa-ldap-setup.

If you already used to authenticate with aaa on el8 engine, you can simply 
rsync these directories to the new el9 engine:

rsync -av /etc/ovirt-engine/extensions.d/-auth* 
new_engine_fqdn:/etc/ovirt-engine/extensions.d/
rsync -av /etc/ovirt-engine/aaa/.properties 
new_engine_fqdn:/etc/ovirt-engine/aaa/

The documentation on the Ovirt site is very scant on the subject.For the 
moment I'm only able to use admin@ovirt.
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to 
users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/RBS664Q6VQB7IRXWM55RURJRDEOB4A5O/


--

Nathanaël Blanchet

Administrateur Systèmes et Réseaux
Service Informatique et REseau (SIRE)
Département des systèmes d'information
227 avenue Professeur-Jean-Louis-Viala
34193 MONTPELLIER CEDEX 5
Tél. 33 (0)4 67 54 84 55
Fax  33 (0)4 67 54 84 14
blanc...@abes.fr

___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/HTD3ZWQLVYE5XBHFE6MSVVKO7HKVMHL4/


[ovirt-users] Re: Abnormal behavior on the reinstalled host

2024-04-06 Thread Ricardo OT
Hello again,
Thanks for your help. I have upgrade all host but not resolve my errors.

- Can't direct migrate VM to reinstaled host. In no case can I migrate VMs from 
nodes 50 and 52 to the full reinstalled node 51. To move MV to this node 51 I 
have to power cycle it. Once VM is running I can move it to nodes 50 or 52 but 
it cannot return to this node 51.

- Can't use NOVNC Console on node51.

- To put the node in UP from Maintenance, I have to reinstall the host and 
deselect reboot.
If I try to activate it directly it gives me this error:
   "Cannot activate Host. Host has no unique id."

- Another error is that node 51 cannot host the hosted-engine even though I set 
it as engine as deploy.

Does anyone have any idea why?
thank you.
Please I'm very frustrated.

3 nodes cluster hosted engine over glusterfs
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/SWMADVMGU7BBJ3ZDTBB4MDQVZNJ4TULC/


[ovirt-users] Re: Keycloak SSO integration

2024-04-06 Thread Jonas
While I haven't configured it myself (someone else in my Team did the 
integration and we are using another Keycloak instance, not LDAP) and 
therefore don't know all details, I think you should be able to 
configure another IdP in the Keycloak administration interface 
(https:///ovirt-engine-auth/admin). LDAP should be 
available under "User Federation".


On 06.04.24 14:23, luc.lalo...@polymtl.ca wrote:

Unfortunately, I chose the 'Keycloak' option during the setup instead.   So 
using using ovirt-engine-extension-aaa-ldap-setup is not an option.

In the documentation, they say that 'ovirt-engine-extension-aaa-ldap-setup' is 
being deprecated...  I regret not using it anyway.   Documentation is missing 
on how to configure Keycloak (RedHat SSO).

Thank You.
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/5XU43ZJ3Y2F3NRPHCEEIFP3PZMGRDVS7/

___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/P5SDPIR6EJT6HWIWBUVS57JBLA3AMXOJ/