weird issue with etcd

2016-06-10 Thread Julio Saura
hello i have an origin 3.1 installation working cool so far today one of my etcd nodes ( 1 of 2 ) crashed and i started having problems.. i noticed on one of my master nodes that it was not able to connect to second etcd server and that the etcd server was not able to promote as leader.. un

Re: weird issue with etcd

2016-06-14 Thread Julio Saura
t;sdod...@redhat.com> escribió: > > Can you verify the connection information etcdClientInfo section in > /etc/origin/master/master-config.yaml is correct? > > On Mon, Jun 13, 2016 at 11:56 AM, Julio Saura <jsa...@hiberus.com> wrote: >> hello >> >> yes.. i have a

Re: weird issue with etcd

2016-06-13 Thread Julio Saura
a load balancer in > between your masters and etcd? > > On Fri, Jun 10, 2016 at 5:55 AM, Julio Saura <jsa...@hiberus.com> wrote: >> hello >> >> i have an origin 3.1 installation working cool so far >> >> today one of my etcd nodes ( 1 of 2 ) crashed and i st

Re: weird issue with etcd

2016-06-21 Thread Julio Saura
: etcd member https://:2379 has no leader i rebooted the etcd server and my master is not able to use other one still able to connect from both masters using telnet to the etcd port .. any clue? this is weird. > El 14 jun 2016, a las 9:28, Julio Saura <jsa...@hiberus.com>

Re: weird issue with etcd

2016-06-21 Thread Julio Saura
gt; > Did you verify connectivity over the peering port as well (2380)? > > On Jun 21, 2016 7:17 AM, "Julio Saura" <jsa...@hiberus.com > <mailto:jsa...@hiberus.com>> wrote: > hello > > same problem > > jun 21 13:11:03 openshift-master01 atomic-openshift-

Re: weird issue with etcd

2016-06-21 Thread Julio Saura
openshift-balancer02, can each of those hosts > connect to each other on port 2380? They will connect directly to each > other for clustering purposes, then the masters will connect to each > of the etcd hosts on port 2379 for client connectivity. > > -- > Scott > > On Tue, Ju

Re: weird issue with etcd

2016-06-21 Thread Julio Saura
hello yes, they are synced with and internal NTP server .. gonna try ectdctl thanks! > El 21 jun 2016, a las 15:20, Jason DeTiberus <jdeti...@redhat.com> escribió: > > On Tue, Jun 21, 2016 at 7:28 AM, Julio Saura <jsa...@hiberus.com > <mailto:jsa...@hib

Re: weird issue with etcd

2016-06-21 Thread Julio Saura
check the health of member bf80ee3a26e8772c on https://:2379: Get https://:2379/health: dial tcp :2379: i/o timeout member bf80ee3a26e8772c is unreachable: [https://:2379] are all unreachable the "main etcd" is halted right now Thanks! > El 21 jun 2016, a las 17:4

Re: weird issue with etcd

2016-06-21 Thread Julio Saura
regarding the certs, i used ansible to install origin so i guess ansible should have done it right … > El 21 jun 2016, a las 15:29, Julio Saura <jsa...@hiberus.com> escribió: > > hello > > yes, they are synced with and internal NTP server .. > > gonna try ectdctl

Re: Problem in Replication controller

2016-03-22 Thread Julio Saura
ntroller (which is acting on your > behalf) can create a pod that runs that way. The service account is > what is delegated. > >> On Mar 1, 2016, at 9:37 AM, Julio Saura <jsa...@hiberus.com> wrote: >> >> hello >> >> thanks for answering >

Re: 503 service unavailable

2016-03-02 Thread Julio Saura
seems your router is running on default namespace, your pods are also running on namespace default? > El 3 mar 2016, a las 7:58, Dean Peterson escribió: > > I did do an "oc edit scc privileged" and made sure this was at the end: > > users: > -

Re: 503 service unavailable

2016-03-03 Thread Julio Saura
ubernetes.io/serviceaccount/token>) seems to work if I use it > with oc login but not with the curl command - so it feels a bit odd. Any > ideas what's amiss here? > > Thanks, > > Ram// > > > > On Wed, Mar 2, 2016 at 11:56 PM, Dean Peterson <peterson.d...

Problem in Replication controller

2016-03-01 Thread Julio Saura
Hello i have a working open shift running and maybe is my misunderstanding but i have a problem with RC so, i have an own docker image for my app, my entry point in my docker file creates some directories that are needed for my app to work and starts a jboss,, so far so good the image is

Re: Imported image-stream in list of builder images

2016-03-09 Thread Julio Saura
i think you should have a tag the image with “builder” to see it on the list > El 9 mar 2016, a las 10:45, Lorenz Vanthillo > escribió: > > I create an image stream by pushing an image to my openshift registry. But I > don't like the behaviour that every

Re: Openshift failing to start on second master potential HAProxy issue

2016-05-24 Thread Julio Saura
hello just if it helps i have just deployed a new installation like this and i can confirm using one master as de LB does not work .. you have to deploy de LB on other machine rather than master .. i used a small VM on my environment as a dedicated load balancer for master and worked

Re: Problem deploying origin on centOS 7.2 and ansible 2.0.2 ( epel 7-6 )

2016-05-20 Thread Julio Saura
hub.com/openshift/openshift-ansible/pull/1924 > > Ansible 1.9 installed this automatically whereas ansible 2.0 doesn't. > > -- > Scott > > On Fri, May 20, 2016 at 10:30 AM, Julio Saura <jsa...@hiberus.com> wrote: >> hello >> >> i have been deploying a

Re: haproxy logs

2017-02-20 Thread Julio Saura
hello any clue please? thanks > El 17 feb 2017, a las 10:04, Julio Saura <jsa...@hiberus.com> escribió: > > Hello > > i need to enable haproxy access logs on my openshift routers.. > > i followed the guide and enabled a syslog server on my net .. > > after

Re: haproxy logs

2017-02-23 Thread Julio Saura
LOG_LEVEL: debug but nothing is sent .. Julio Saura Alejandre Responsable Servicios Gestionados hiberus TRAVEL Tel.: + 34 902 87 73 92 Ext. 659 Parque Empresarial PLAZA Edificio EXPOINNOVACIÓN C/. Bari 25 Duplicado, Escalera 1, Planta 2ª. 50197 Zaragoza www.hiberus.

Re: upgrading haproxy version on origin 1.2

2017-02-09 Thread Julio Saura
mail o teléfono, te abstengas de realizar copias del mensaje o remitirlo o entregarlo a terceras personas y procedas a devolverlo a su emisor y/o destruirlo de inmediato. > El 9 feb 2017, a las 10:00, Julio Saura <jsa...@hiberus.com> escribió: > > Hello > > > is there

Re: upgrading haproxy version on origin 1.2

2017-02-09 Thread Julio Saura
: > > Hi. > > On Thu, 09 Feb 2017 10:21:28 +0100 Julio Saura <jsa...@hiberus.com> > wrote >> nah no luck >> just pulled latest image and run it on a local docker engine >> [I have no name!@f9de398a0238 conf]$ /usr/sbin/haproxy -version >> HA-Proxy version

upgrading haproxy version on origin 1.2

2017-02-09 Thread Julio Saura
Hello is there any way yo just update haproxy version for routers without a full openshift upgrade? currently origin 1.2 is using openshift/origin-haproxy-router:v1.2.1 image .. but we are facing a weird bug due to haproxy version ( 1.5.8 ) and i would love to upgrade it to al least 1.6.x

Re: upgrading haproxy version on origin 1.2

2017-02-09 Thread Julio Saura
ll need to > add. > > https://gitlab.com/aleks001/haproxy > > Hth > > --- > Aleksandar Lazic - ME2Digital e. U. > https://me2digital.online/ > > > On Thu, 09 Feb 2017 10:04:44 +0100 Julio Saura <jsa...@hiberus.com> > wrote >> o

haproxy logs

2017-02-17 Thread Julio Saura
Hello i need to enable haproxy access logs on my openshift routers.. i followed the guide and enabled a syslog server on my net .. after adding env variables on my router dc for poiting to my syslog server i don’t see any packet sent to my syslog server ( tcpdump on my syslog servers shows no

multiple master multiple etcd

2016-09-07 Thread Julio Saura
Hello i am about building a new cluster with 2 masters and 3 etcd servers por HA .. my doubt is that i think i read somewhere in doc it is not recommended to have the external etcd servers in the same nodes than masters are running is this true? what is the best approach? 2 masters in native

open shift env variables with slash characters

2016-09-09 Thread Julio Saura
Hello just to be sure .. i need to pass some env variables containing @ and / characters so far i did always scape them for example { "name”:"URL", "value”:”http:\/\/www.example.com\/uri" }, this is the right way ? i am having problems recovering this variable on

Re: open shift env variables with slash characters

2016-09-12 Thread Julio Saura
wrong? shell processes are able to read values but app inside jboss no.. best regards thanks again. > El 12 sept 2016, a las 11:04, Julio Saura <jsa...@hiberus.com> escribió: > > do i need to do something to make the env variables i pass on son when > creating the RC to all

Re: open shift env variables with slash characters

2016-09-12 Thread Julio Saura
process, and so code finds em as null Best regards > El 9 sept 2016, a las 17:49, Julio Saura <jsa...@hiberus.com> escribió: > >> >> El 9 sept 2016, a las 17:47, Aleksandar Kostadinov <akost...@redhat.com> >> escribió: >> >> Julio Saura wrote on

Re: open shift env variables with slash characters

2016-09-12 Thread Julio Saura
do i need to do something to make the env variables i pass on son when creating the RC to all users? or shall i do it manually dumping them into /etc/profile or user bash_profile file prior launching jboss? thanks > El 12 sept 2016, a las 10:45, Julio Saura <jsa...@hiberus.com > &l

Re: open shift env variables with slash characters

2016-09-12 Thread Julio Saura
ok seems solved i had to put export for each env variable java did not recognize on /etc/profile file in the docker OS.. i did put that on my entry point script before starting jboss process and solved thanks all! best regards > El 12 sept 2016, a las 12:14, Julio Saura <jsa...@hiber

Re: ansible origin playbook errata?

2016-10-06 Thread Julio Saura
i have moved to branch release-1.2 but still the same error :/ > El 6 oct 2016, a las 12:07, Julio Saura <jsa...@hiberus.com> escribió: > > hello > > thanks for the input > > after typing in my ansible file the version i get this error > > fatal: [openshif

Re: ansible origin playbook errata?

2016-10-06 Thread Julio Saura
starting from > a clean environment. > > -- > Scott > > On Thu, Oct 6, 2016 at 7:16 AM, Julio Saura <jsa...@hiberus.com> wrote: >> i have moved to branch release-1.2 but still the same error :/ >> >> >>> El 6 oct 2016, a las 12:07, Julio Saura

Re: docker version doubt

2016-09-20 Thread Julio Saura
worked out pretty well for us. > > On Tue, Sep 20, 2016 at 3:50 AM, Julio Saura <jsa...@hiberus.com > <mailto:jsa...@hiberus.com>> wrote: > Hello > > i am installing a new brand open shift origin cluster with centos 7. > > after installing docker engine ( from centos

docker version doubt

2016-09-20 Thread Julio Saura
Hello i am installing a new brand open shift origin cluster with centos 7. after installing docker engine ( from centos repo ) i check the version and i am concerned about the result docker --version Docker version 1.10.3, build cb079f6-unsupported unsupported¿? is this normal? thanks

pod disk size

2016-11-17 Thread Julio Saura
Hello i have noticed all my pods are started with 10 gb disk .. and i don’t know why, the problem is that i need more disk per pod, how do i increase the size of de pod disk? i don’t find any doc regarding this issue. i have tried to mount a host mount on my pod just to get a jmap out of the

Re: pod disk size

2016-11-17 Thread Julio Saura
an pulled my image again > El 17 nov 2016, a las 12:52, Julio Saura <jsa...@hiberus.com> escribió: > > hello > > yes, that was the point i needed . > > applied and working ;) > > thanks! > > i was looking for an openshift flag/option instead of directly docker

Re: upgrading haproxy version on origin 1.2

2017-03-03 Thread Julio Saura
thank you!!! Julio Saura Alejandre Responsable Servicios Gestionados hiberus TRAVEL Tel.: + 34 902 87 73 92 Ext. 659 Parque Empresarial PLAZA Edificio EXPOINNOVACIÓN C/. Bari 25 Duplicado, Escalera 1, Planta 2ª. 50197 Zaragoza www.hiberus.com <http://www.hiberus.com/> Crecemos contigo

Re: origin 1.2 bad certificate

2017-06-13 Thread Julio Saura
T10:26:28.833756573Z","ttl":-1128220,"modifiedIndex":20547532,"createdIndex":18120566} looks that what is expired is the key on the etcd BBDD.. how can i solve this? best regards > El 13 jun 2017, a las 13:46, Julio Saura <jsa...@hiberus.com> escr

Re: origin 1.2 bad certificate

2017-06-13 Thread Julio Saura
:2379/v2/keys/openshift.io/leases/controllers?prevExist=false: remote error: bad certificate Julio Saura Alejandre Responsable Servicios Gestionados hiberus TRAVEL Tel.: + 34 902 87 73 92 Ext. 659 Parque Empresarial PLAZA Edificio EXPOINNOVACIÓN C/. Bari 25 Duplicado, Escalera 1, Planta 2ª. 50197

origin 1.2 bad certificate

2017-06-13 Thread Julio Saura
Hello i have a problem in a 1.2.0 cluster with etcd ca and certificates, mainly they did expire i followed the doc regarding this and after update my openshift-ansible i got the needed playbook after running em i see etcd certs and ca are updated on my nodes, and dumping them with openssl

Re: origin 1.2 bad certificate

2017-06-13 Thread Julio Saura
generating them any clue ? best regards > El 13 jun 2017, a las 13:53, Julio Saura <jsa...@hiberus.com> escribió: > > more info > > i managed to connect with curl to the etcd server and queried about > controller keys > > {"action":"get","

service account for rest api

2017-10-19 Thread Julio Saura
Hello i am trying to create a sa for accessing rest api with token .. i have followed the doc steps creating the account, applying admin role to that account and getting the token trying to access replicacioncontroller info with bearer in curl, i can auth into but i get i have no permission

Re: service account for rest api

2017-10-20 Thread Julio Saura
> Happy that it works for you now. me too :) thanks all for the support. > > Regards, > > Frédéric > > > On Fri, Oct 20, 2017 at 9:40 AM, Julio Saura <jsa...@hiberus.com > <mailto:jsa...@hiberus.com>> wrote: > python problem solved too > &

Re: service account for rest api

2017-10-19 Thread Julio Saura
t;", "reason": "Forbidden", "details": { "kind": "replicationcontrollers" }, "code": 403 } > El 19 oct 2017, a las 16:55, Frederic Giloux <fgil...@redhat.com> escribió: > > Hi Julio, > > Coul

Re: service account for rest api

2017-10-19 Thread Julio Saura
cer_ip:8443/api/v1/namespaces/project1/replicationcontrollers> > —insecure is not project1 really i change the project name when i write the email sorry Julio Saura Alejandre Responsable Servicios Gestionados hiberus TRAVEL Tel.: + 34 902 87 73 92 Ext. 659 Parque Empresarial PLAZA Edificio EXPOINNOVACI

Re: service account for rest api

2017-10-19 Thread Julio Saura
umm that works … weird Julio Saura Alejandre Responsable Servicios Gestionados hiberus TRAVEL Tel.: + 34 902 87 73 92 Ext. 659 Parque Empresarial PLAZA Edificio EXPOINNOVACIÓN C/. Bari 25 Duplicado, Escalera 1, Planta 2ª. 50197 Zaragoza www.hiberus.com <http://www.hiberus.com/> Crecemos c

Re: service account for rest api

2017-10-20 Thread Julio Saura
tried no luck :( Julio Saura Alejandre Responsable Servicios Gestionados hiberus TRAVEL Tel.: + 34 902 87 73 92 Ext. 659 Parque Empresarial PLAZA Edificio EXPOINNOVACIÓN C/. Bari 25 Duplicado, Escalera 1, Planta 2ª. 50197 Zaragoza www.hiberus.com <http://www.hiberus.com/> Crecemos contigo

Re: service account for rest api

2017-10-20 Thread Julio Saura
python problem solved too all working view role was the key :/ > El 20 oct 2017, a las 9:27, Julio Saura <jsa...@hiberus.com> escribió: > > problem solved > > i do not know why but giving user role view instead of admin make the trick .. > > :/ > > n

Re: service account for rest api

2017-10-20 Thread Julio Saura
a...@hiberus.com> escribió: > > Yikes !! > > I will check tomorrow > > Ty! > > El 19 oct 2017, a las 18:16, Cesar Wong <cew...@redhat.com > <mailto:cew...@redhat.com>> escribió: > >> >> Julio, >> >> Depending on your ver

Re: service account for rest api

2017-10-20 Thread Julio Saura
t; escribió: > > Very good. The issue is with your curl. Next step run the same command with > --loglevel=8 and check the queries that are sent to the API server. > > Regards, > > Frédéric > > On 19 Oct 2017 18:11, "Julio Saura" <jsa...@hiberu

Re: service account for rest api

2017-10-20 Thread Julio Saura
which is made by the OC client to > the API server. You can then check whether it differs from your curl. > > Regards, > > Frédéric > > On Fri, Oct 20, 2017 at 8:30 AM, Julio Saura <jsa...@hiberus.com > <mailto:jsa...@hiberus.com>> wrote: > headers look ok in

error on scaling up cluster

2018-02-23 Thread Julio Saura
Hello i have been scaling up or oc origin cluster without any problem so far, but now i get this weird error when running de scale playbook running version oc v3.6.0+c4dd4cf kubernetes v1.6.1+5115d708d7 ansible-playbook -i /etc/ansible/hosts

Re: error on scaling up cluster

2018-02-23 Thread Julio Saura
solved sorry just copying ca-bundle.crt to ca.crt did the trick :/ > El 23 feb 2018, a las 11:31, Julio Saura <jsa...@hiberus.com> escribió: > > Hello > > i have been scaling up or oc origin cluster without any problem so far, but > now i get this weird error when r