Re: [foreman-users] FreeIpa principals cannot contain foreman-proxy* as username, undashed works

2017-12-19 Thread Matt
Hi Alexander, I know what is in the manual but it seems even for the DNS proxy the case. What I mean is that foreman-whatever does not work at all, which is not in the manual. I want to have that cleared out and hoped someone knows. Thanks! Matt Op maandag 18 december 2017 20:20:43 UTC+1

[foreman-users] FreeIpa principals cannot contain foreman-proxy* as username, undashed works

2017-12-18 Thread Matt
Hi Guys, I have found out, also earlier, that any username on FreeIPA as proxy principal cannot start or contain foreman-proxy. foremanproxy works also foremanrealmproxy works, but foreman-relam-proxy doesn't. Is this known ? Thanks, Matt -- You received this message because you

Re: [foreman-users] Re: Web interface SSL Cert

2017-12-13 Thread Matt Cahill
correction cat intermediate.pem > foreman_ssl_ca.pem cat digicert_root_ca.crt >> foreman_ssl_ca.pem On 14 December 2017 at 17:22, Matt Cahill <cahillena...@gmail.com> wrote: > Hi David, > > for us it's just simply a plain text PEM encoded certificate file like so: &g

Re: [foreman-users] Re: Web interface SSL Cert

2017-12-13 Thread Matt Cahill
intermediate.pem > foreman_ssl_ca.pem cat digicert_root_ca.crt > foreman_ssl_ca.pem cheers Matt On 14 December 2017 at 07:39, David Childs <da...@thetemplateblog.com> wrote: > Hi Matt > > Concatenating their intermediate and the root CA into one pem and >> referencing tha

[foreman-users] Re: puppet agent upgrade on deployed hosts

2017-09-26 Thread Matt Cahill
Check out this puppet module https://forge.puppet.com/puppetlabs/puppet_agent and these docs https://docs.puppet.com/puppet/4.10/upgrade_major_agent.html https://docs.puppet.com/puppet/5.2/upgrade_major_agent.html On Wednesday, 27 September 2017 02:07:55 UTC+13, Jorick Astrego wrote: > > Hi,

Re: [foreman-users] Re: Foreman with Puppet in a wildcard domain leads to nodes mistaken identity

2017-09-26 Thread Matt Cahill
Ah, thanks for the clarification Greg, sorry about that. -- You received this message because you are subscribed to the Google Groups "Foreman users" group. To unsubscribe from this group and stop receiving emails from it, send an email to foreman-users+unsubscr...@googlegroups.com. To post to

[foreman-users] Re: Puppet querying Foreman

2017-08-09 Thread Matt Shields
'x-pack': } exec { 'install license': command => 'curl -XPUT http://localhost:9200/_xpack/license -d @/etc/elasticsearch/license .json ; sleep 5; /etc/init.d/kibana restart', onlyif => '/etc/elasticsearch/checklicense.sh', provider => 'shell', require => [File['/e

[foreman-users] Puppet querying Foreman

2017-08-08 Thread Matt Shields
I'm trying to get a list of hostnames to populate an array from the Foreman function. We have servers that are dedicated to clients and non-production. We use naming {clientid}-{server_type}. So for example, test1-search001, test1-search002, test2-search001, test2-search003,

Re: [foreman-users] Adding hosts w/o adding required fields

2017-08-08 Thread Matt Shields
So there is no way to disable required fields? Or customize it in any way? On Tuesday, August 8, 2017 at 3:08:50 AM UTC-4, ohad wrote: > > > > On Mon, Aug 7, 2017 at 9:06 PM, Matt Shields <ma...@mattshields.org > > wrote: > >> I'm new to Foreman, but a longtime

[foreman-users] Adding hosts w/o adding required fields

2017-08-08 Thread Matt Shields
everything in AWS, we won't be doing the bare metal provisioning stuff. So how can I add hosts without the required fields? Matt -- You received this message because you are subscribed to the Google Groups "Foreman users" group. To unsubscribe from this group and stop receiving e

[foreman-users] Re: Web interface SSL Cert

2017-07-11 Thread Matt Cahill
rivate/puppet.example.key' \ --foreman-websockets-ssl-cert '/etc/pki/tls/certs/puppet.example.crt' cheers Matt -- You received this message because you are subscribed to the Google Groups "Foreman users" group. To unsubscribe from this group and stop receiving emails from it, send an email

[foreman-users] foreman hashicorp vault smart proxy plugin - used with puppet ?

2017-05-17 Thread Matt Darcy
(or an alternative) use puppet to auth against vault. thanks, Matt -- You received this message because you are subscribed to the Google Groups "Foreman users" group. To unsubscribe from this group and stop receiving emails from it, send an email to foreman-users+unsubscr...@googlegroups.co

[foreman-users] Foreman 1.15 - ISC DHCP issues, duplicate addresses and overwrites

2017-05-14 Thread Matt Darcy
I've hit a problem with a clean foreman 1.15 install. I've used the same installer settings as a working 1.13 and 1.14 box as this is just a test system. The system is a current patched CentOS 7.3 host, The installer options for the DHCP config are as follows.

[foreman-users] How does Foreman import a subnet via the smart proxy.

2017-05-12 Thread Matt Darcy
onf or take it in from the foreman installer options. understanding this may assist with working through why my 1.15 install is offering new host with IP's that are already defined in the dhcp lease file. thanks, Matt -- You received this message because you are subscribed to the Google

[foreman-users] Comments in Yaml textboxes

2017-05-03 Thread Matt .
Hi guys, Is there a way to add comments in yaml textboxes ? # comment seems to be vanished after submit. Some solution would be nice. Thanks! Matt -- You received this message because you are subscribed to the Google Groups "Foreman users" group. To unsubscribe from this grou

[foreman-users] YAML field are messedup after submitting or resubmitting a host

2017-05-02 Thread Matt .
When I resubmit settings on my host all my yaml field are messedup with /r/n/n/n/n/n/ etc. This happens on 1.14.2 How to avoid this odd behaviour ? -- You received this message because you are subscribed to the Google Groups "Foreman users" group. To unsubscribe from this group and stop

Re: [foreman-users] @host variable does not work in if-statement

2017-04-26 Thread Matt
Yes I found that finally and also .name is possible instead of .to_s. Why is this ? Op woensdag 26 april 2017 09:08:17 UTC+2 schreef Dominic Cleal: > > On 25/04/17 22:05, Matt . wrote: > > On a provisioning template the following does not work: > > > > <% if @h

Re: [foreman-users] Re: PXELinux BIOS reboot loop on Ubuntu 16.04

2017-04-20 Thread Matt
man do not have an option to redeploy templates I believe, that > would be useful feature. > > LZ > > On Wed, Apr 19, 2017 at 10:56 AM, Matt <yamaka...@gmail.com > > wrote: > > It could be, but I'm not able to find where to set it. I have checked > all >

Re: [foreman-users] Re: PXELinux BIOS reboot loop on Ubuntu 16.04

2017-04-19 Thread Matt
and use the same PXE loader. Op woensdag 19 april 2017 10:45:40 UTC+2 schreef Lukas Zapletal: > > You just said that the alternative loading works, that's the fix I > believe. Set it as the default loader for all systems. > > LZ > > On Tue, Apr 18, 2017 at 10:18 PM, Matt

Re: [foreman-users] Re: PXELinux BIOS reboot loop on Ubuntu 16.04

2017-04-18 Thread Matt
Hi Lukas, Yes happened on new provisioned VM's on oVirt 4.1 lately, this with Ubuntu, CentOS and so on are fine. Is there a temporary fix while we try to figure it out what the best way is ? Cheers, Matt Op dinsdag 18 april 2017 13:44:37 UTC+2 schreef Lukas Zapletal: > > Just a

[foreman-users] Re: PXELinux BIOS reboot loop on Ubuntu 16.04

2017-04-17 Thread Matt
attachement added. -- You received this message because you are subscribed to the Google Groups "Foreman users" group. To unsubscribe from this group and stop receiving emails from it, send an email to foreman-users+unsubscr...@googlegroups.com. To post to this group, send email to

[foreman-users] PXELinux BIOS reboot loop on Ubuntu 16.04

2017-04-17 Thread Matt
When I have build a successfull host it gets the PXE Menu showed in the attachment. This menu with the first option selected gets into a reboot loop: Chanload into bootloader on the first disk When I manually switch to: Chanload into bootloader on the first disk - alternative the

Re: [foreman-users] dhcpd.conf and Subnets=> Subnet not found

2017-04-07 Thread Matt
. Cheers, Matt Op vrijdag 7 april 2017 14:26:30 UTC+2 schreef Lukas Zapletal: > > Looks like I misinformed you, the puppet module does support multiple > subnets: > > https://forge.puppet.com/theforeman/dhcp > > I think the limitation is the installer? Someone help me, I

Re: [foreman-users] dhcpd.conf and Subnets=> Subnet not found

2017-04-07 Thread Matt
on the allowed subnets, will become allright, I have seom idea about it. Thanks for the update! Cheers, Matt Op vrijdag 7 april 2017 10:42:01 UTC+2 schreef Lukas Zapletal: > > Adding multiple subnets support in our puppet module is long term goal > and highly requested feature, feel fre

Re: [foreman-users] dhcpd.conf and Subnets=> Subnet not found

2017-04-06 Thread Matt
foreman_proxy module. Thanks, Matt Op donderdag 6 april 2017 13:32:16 UTC+2 schreef Lukas Zapletal: > > Every single subnet you create in Foreman needs to be manually created > in dhcpd.conf. I recommend to turn off DHCP management in the > installer (puppet) so it won't overwrite y

[foreman-users] dhcpd.conf and Subnets=> Subnet not found

2017-04-05 Thread Matt
to the leasesfile using omapi, but it fails on "Subnet not Found". What is the correct way now ? Cheers, Matt -- You received this message because you are subscribed to the Google Groups "Foreman users" group. To unsubscribe from this group and stop receiving emails fr

Re: [foreman-users] Proxy cannot download initrd images when using mirrors without $arch variables

2017-04-05 Thread Matt
ue, Apr 4, 2017 at 10:54 PM, Matt <yamaka...@gmail.com > > wrote: > > Hi guys, > > > > Because I have some complex kickstart templates and I think it's nicer > to > > use plain mirror URL's in the media I use now > http://mirror.foo.bar/centos > >

[foreman-users] Re: Foreman MariaDB Galera Support?

2017-04-02 Thread Matt
I would like to know as well as I'm still running PgSQL locally and want to move that to one of my MySQL clusters running Percona. As far as I know it should not be any problem, have you tested it already ? Thanks, Matt Op zondag 2 april 2017 15:40:30 UTC+2 schreef Lang, Jason: > > H

[foreman-users] Manage DHCP through foreman-proxy module or foreman-dhcp ?

2017-04-02 Thread Matt
the foreman-dhcp module when dhcp_managed => true Is there some format example available maybe ? Thanks, Matt -- You received this message because you are subscribed to the Google Groups "Foreman users" group. To unsubscribe from this group and stop receiving emails from it,

[foreman-users] Add proxy twice under different DNS name

2017-04-02 Thread Matt
Is it possible to add a proxy twice under a seperate dns name ? The reason why I ask this is because it's easier to split a combined proxy later on and you don't need to change the dropdowns. But my concern is, how is a single proxy handled by requests ? Is this a request per service or just

[foreman-users] Re: Usage of plain @mediapath in templates

2017-03-30 Thread Matt
Fixed by using the @hosts parameters and some tweaks with them. Op donderdag 30 maart 2017 18:21:11 UTC+2 schreef Matt: > > Hi guys, > > Is it possible to use the @mediapath plain without the url --url= ? > > Can we use some other variable for it ? > > Thanks, >

Re: [foreman-users] Re: Integration itop with foreman

2017-03-30 Thread Matt
Check the documentation. Op donderdag 30 maart 2017 19:44:53 UTC+2 schreef Wim Van den Borre: > > do you know which api calls? :) > > Op 30 mrt. 2017 19:42 schreef "Matt" <yamaka...@gmail.com >: > >> Wim, >> >> Ticketing is quite OK indeed. >&g

Re: [foreman-users] Re: Integration itop with foreman

2017-03-30 Thread Matt
Wim, Ticketing is quite OK indeed. Sorry I was misreading. I think you can simply do some API calls. Cheers, Matt Op donderdag 30 maart 2017 19:02:27 UTC+2 schreef Wim Van den Borre: > > matt, > > tx but we use itop as a ticketting system which works great. as a cmdb it > has

[foreman-users] Usage of plain @mediapath in templates

2017-03-30 Thread Matt
Hi guys, Is it possible to use the @mediapath plain without the url --url= ? Can we use some other variable for it ? Thanks, Matt -- You received this message because you are subscribed to the Google Groups "Foreman users" group. To unsubscribe from this group and stop receiving e

[foreman-users] Usage of pain @mediapath in template

2017-03-30 Thread Matt
Hi guys, Is it posssible to use the @mediapath plain without the url --url= ? Can we use some other variable for it ? Thanks, Matt -- You received this message because you are subscribed to the Google Groups "Foreman users" group. To unsubscribe from this group and stop receiv

[foreman-users] Re: Integration itop with foreman

2017-03-30 Thread Matt
Hi, I have investigated iTop and it has a lot of issues I get the feeling and the administrating is too much. Facter is also able to get all you ask for, have you looked into that already as it does it by default on hosts in Foreman. Cheers, Matt Op donderdag 30 maart 2017 17:34:45 UTC+2

[foreman-users] Using the @mediaurl as plain in templates

2017-03-30 Thread Matt
Hi guys, Is it posssible to use the @mediaurl plain without the url --url= ? Can we use some other variable for it ? Thanks, Matt -- You received this message because you are subscribed to the Google Groups "Foreman users" group. To unsubscribe from this group and stop receiving e

[foreman-users] Unable to remove hosts with lots if nics and removed proxies

2017-03-17 Thread Matt
Hi, I'm trying to remove some hosts where the CA has been changed from and which als have a lot of (virtual bridges) nics.. due this the webgui times out. Removing times out and hammer is not able to do as well: host update --managed false --id 284 Could not update the host: Interfaces

Re: [foreman-users] Re: REALM > Insufficient 'add' privilege to the 'userPassword' attribute

2017-03-07 Thread Matt
Any update on this ? Op dinsdag 28 februari 2017 23:50:31 UTC+1 schreef Matt: > > Yes I did, the same machine is also doing DHCP fine with it. > > Op dinsdag 28 februari 2017 12:04:06 UTC+1 schreef Daniel Lobato: >> >> Have you copied the keytab to the proxy as the manua

Re: [foreman-users] Re: REALM > Insufficient 'add' privilege to the 'userPassword' attribute

2017-02-28 Thread Matt
Yes I did, the same machine is also doing DHCP fine with it. Op dinsdag 28 februari 2017 12:04:06 UTC+1 schreef Daniel Lobato: > > Have you copied the keytab to the proxy as the manual mentions? > > https://www.theforeman.org/manuals/1.14/index.html#4.3.8Realm > > Best,

[foreman-users] Re: REALM > Insufficient 'add' privilege to the 'userPassword' attribute

2017-02-27 Thread Matt
Hi, (i didn't recieve your reply in my mailbox so that is why I respond later) Both things you mentioned are done, so I'm kinda lost how to debug futher. Thanks, Matt Op zaterdag 25 februari 2017 19:55:20 UTC+1 schreef Mario Gamboa: > > did you first join the satellite to the f

[foreman-users] REALM > Insufficient 'add' privilege to the 'userPassword' attribute

2017-02-24 Thread Matt .
, so what could be wrong ? Thanks, Matt -- You received this message because you are subscribed to the Google Groups "Foreman users" group. To unsubscribe from this group and stop receiving emails from it, send an email to foreman-users+unsubscr...@googlegroups.com. To post to this g

[foreman-users] Ubuntu 16.04 reboots on boot after successfull build

2017-02-01 Thread Matt .
are welcome. Thanks! Matt -- You received this message because you are subscribed to the Google Groups "Foreman users" group. To unsubscribe from this group and stop receiving emails from it, send an email to foreman-users+unsubscr...@googlegroups.com. To post to this group, send email

[foreman-users] Limit Passenger Memory size

2017-01-26 Thread Matt .
Passenger 1673.5 MB /usr/bin/java Thanks, Matt -- You received this message because you are subscribed to the Google Groups "Foreman users" group. To unsubscribe from this group and stop receiving emails from it, send an email to foreman-users+unsubscr...@googlegroups.co

[foreman-users] Remove host from DB when UI fails

2017-01-25 Thread Matt .
Referring to the following Bug: http://projects.theforeman.org/issues/18195 I wonder if there is a way to remove the host without the GUI as the GUI times out. Would be nice to have some workaround. Thanks! Matt -- You received this message because you are subscribed to the Google Groups

Re: [foreman-users] Cannot import Modules/Classes on 1.12 with Puppet 4

2016-10-18 Thread Matt
s a valid environment)? > > Also this is interesting: > > On 17 October 2016 at 09:40, Matt <yamaka...@gmail.com > > wrote: > > ... I saw that my agents were not able to find the classes on a run ... > > To me that says Puppet can't find your classes either. Since

[foreman-users] Re: Officially Unofficial Foreman 1.13 on EL6 Now Available

2016-10-17 Thread Matt
Good work from the Red Hat Devs again! Good teamwork guys! Cheers, Matt Op dinsdag 18 oktober 2016 00:10:28 UTC+2 schreef Eric Helms: > > All, > > Given that Foreman has officially dropped EL6 support for 1.13, we are > providing a set of EL6 builds for existing Forema

Re: [foreman-users] Cannot import Modules/Classes on 1.12 with Puppet 4

2016-10-17 Thread Matt
Hi Greg, I wasn't sure about them, here they are: # tree /etc/puppetlabs/code/environments -d -L 3 /etc/puppetlabs/code/environments ├── common │ ├── accounts │ │ ├── files │ │ ├── lib │ │ ├── manifests │ │ ├── spec │ │ └── templates │ ├── apache │ │ ├── files │ │

[foreman-users] Cannot import Modules/Classes on 1.12 with Puppet 4

2016-10-16 Thread Matt
Hi All, I have a strange issue with the puppetclasses which don't want to be imported into the environments with puppet 4 My modules are in /etc/puppetlabs/code/environments/common which normally imported them in all available environments which they don't. As this is an upgrade/migration the

[foreman-users] Re: Puppet not able to communicate with Foreman, No catalog and report possible

2016-10-15 Thread Matt
It seem that I can run puppet agent -t --debug on my foremanserver with the CA of my public (3rdparty) cert in the webserver.conf I'm still not able to run it on the agents tho. Op zaterdag 15 oktober 2016 13:12:12 UTC+2 schreef Matt: > > OK I was able to fix the reports using the fol

[foreman-users] Re: Puppet not able to communicate with Foreman, No catalog and report possible

2016-10-15 Thread Matt
in the logs, no errors or so. Op zaterdag 15 oktober 2016 12:38:02 UTC+2 schreef Matt: > > Hi All, > > I'm having is strange issue on a setup where I have splitted my CA from my > foreman/master server and also replaced the webgui certs using the docs > with signed ones from a

[foreman-users] Puppet not able to communicate with Foreman, No catalog and report possible

2016-10-15 Thread Matt
Hi All, I'm having is strange issue on a setup where I have splitted my CA from my foreman/master server and also replaced the webgui certs using the docs with signed ones from a public CA. When I do a puppet run on a client, there are no errors but there is also no catalog picked up and no

[foreman-users] SmartProxy certificate when CA is not on Foreman Server

2016-10-13 Thread Matt
Hi Guys, I'm wondering what todo with the CA/certificate for the proxies (in GUI) on the Foreman server when the CA is external from the Foreman server. Has anyone an idea how to accomplish an SSL connection that way ? Thanks, Matt -- You received this message because you are subscribed