Re: [ovirt-users] USB support?
You can use hostusb vdsm hook: http://wiki.ovirt.org/VDSM-Hooks/hostusb 26.06.2014 21:37, Demeter Tibor пишет: Hi, Is there any possibility for using the host's usb ports for a guest? I need to migrate a physical windows based machine that using usb tokens. Thanks in advance. Tibor ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
[ovirt-users] [ACTION REQUIRED] unresolved deps for ovirt-optimizer-ui
package: ovirt-optimizer-ui-0.1-1.fc19.noarch from ovirt-3.5-beta-sanity unresolved deps: ovirt-optimizer-webadmin-portal = 0:3.4 -- Sandro Bonazzola Better technology. Faster innovation. Powered by community collaboration. See how it works at redhat.com ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] Mask the CPU model
On 27 Jun 2014, at 06:06, Punit Dambiwal wrote: Hi, I don't want to faking a CPU model.my main concern is to create the homogeneous environment,so the guest can be migrate between hosts with diffrent CPU (If i can change the CPU model with the custom name). Then you just want to set the CPU model in Cluster…that's it Thanks, michal On Thu, Jun 26, 2014 at 7:48 PM, Michal Skrivanek michal.skriva...@redhat.com wrote: On Jun 26, 2014, at 13:42 , Sven Kieske s.kie...@mittwald.de wrote: Am 26.06.2014 13:28, schrieb Michal Skrivanek: On Jun 26, 2014, at 13:18 , Dan Kenigsberg dan...@redhat.com wrote: On Wed, Jun 25, 2014 at 11:19:17AM +, Sven Kieske wrote: Am 25.06.2014 11:43, schrieb Punit Dambiwal: Hi Sven, Please let me know which VDSM hook can be used for the same,is there any hook available for the same... ?? I don't know any hook that does this, it should be relatively simple, though. Maybe someone else can assist, CC'ing Dan: Do you know of a hook that manipulates the emulated CPU model? Within the Vdsm code tree, only faqemu does that (and it only drops, causing qemu to do its best). You can build on top of faqemu to set to your favorite guest cpu. However, I think that Engine was once capable of setting a specific cpuType - is it still possible without hacking its DB, Arik? I'm not sure what do you actually mean hide what from whom? the guest sees particular CPU, there's nothing like Virtual xyz, it either sees flags matching e.g. Nehalem or not. You can select different CPU at the cluster level if you wish, and that's what the guest will see, regardless what your host has faqemu is changing the configured CPU type to fully emulated CPU…I don't think you meant that... I guess he refers to the cpu_model mentioned here: http://docs.openstack.org/trunk/config-reference/content/list-of-compute-config-options.html yes, that's what we have at cluster level and there is an RFE for per-VM level But I still do not see the benefit of faking a certain cpu model. there is no faking, it is always real for the guest. so yes, you can make it look(and actually perform) less capable so you can migrate across heterogenous hosts; or make it less capable just if you wish so, but that's it. Thanks, michal -- Mit freundlichen Grüßen / Regards Sven Kieske Systemadministrator Mittwald CM Service GmbH Co. KG Königsberger Straße 6 32339 Espelkamp T: +49-5772-293-100 F: +49-5772-293-333 https://www.mittwald.de Geschäftsführer: Robert Meyer St.Nr.: 331/5721/1033, USt-IdNr.: DE814773217, HRA 6640, AG Bad Oeynhausen Komplementärin: Robert Meyer Verwaltungs GmbH, HRB 13260, AG Bad Oeynhausen ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] Mask the CPU model
Just put the CPU Model in the Cluster in ovirt. You can't put any host in a cluster which doesn't comply to it's cpu model, thus allowing migration within that cluster. HTH Am 27.06.2014 06:06, schrieb Punit Dambiwal: Hi, I don't want to faking a CPU model.my main concern is to create the homogeneous environment,so the guest can be migrate between hosts with diffrent CPU (If i can change the CPU model with the custom name). -- Mit freundlichen Grüßen / Regards Sven Kieske Systemadministrator Mittwald CM Service GmbH Co. KG Königsberger Straße 6 32339 Espelkamp T: +49-5772-293-100 F: +49-5772-293-333 https://www.mittwald.de Geschäftsführer: Robert Meyer St.Nr.: 331/5721/1033, USt-IdNr.: DE814773217, HRA 6640, AG Bad Oeynhausen Komplementärin: Robert Meyer Verwaltungs GmbH, HRB 13260, AG Bad Oeynhausen ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
[ovirt-users] [QE][ACTION REQUIRED] postponing beta release due to basic sanity test failure
Hi, while performing basic sanity test on 3.5.0 beta candidate I've seen the following bugs: Bug 1113882 - [ ERROR ] Failed to execute stage 'Closing up': [ERROR]::oVirt sdk is disconnected from the server. Bug 1113891 - storage domains are listed twice Bug 1113898 - New Virtual Machine dialog drop down list are all empty Bug 1113898 make impossible to create a new VM, so basic sanity test failed. We need to postpone beta release until this one is fixed. repoclosure test failed on F19: http://lists.ovirt.org/pipermail/users/2014-June/025475.html Since candidate beta build failed sanity test, I'm going to rebuild engine from master and repeat sanity test on the new build. -- Sandro Bonazzola Better technology. Faster innovation. Powered by community collaboration. See how it works at redhat.com ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] [ovirt-devel] Stats for oVirt Downloads: Jan-May 2014
On Thu, Jun 26, 2014 at 11:37:54PM -0400, Brian Proffitt wrote: Downloads of the Engine RPM file, it was determined, would be indicative of actual oVirt installs. The allinone RPMs were not analyzed at this time, since installing this RPM is a choice made during the installation process itself. Tracking the Engine Reports and dwh RPMs was done to determine the popularity of these two tools and to ensure their numbers were comparable. To count downloads, data was gathered each month that listed the total downloads of every file, a number derived from the total hits each file had, minus any 206 hits, which indicated incomplete downloads. Key files for Engine, Engine Reports, and Engine dwh were identified and the data filtered to include counts for each one of the files, in whatever version released. Tracking of Live and Node RPMs was already set up within the awstats reporting, and was taken directly from awstats in each month. If there is any part of this methodology that is in error, feedback is very much appreciated. You should know that since we now have a mirrorlist (which in terms of hit count is already in the top 3) the number could be much lower than the actual RPM downloads. I'd be interested how much traffic is served by mirrors. ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
[ovirt-users] Disk's locked of VM
Hello all, Does anyone know how I can check if a VM's disk are indeed locked or not. The engine tell's me they are locked but this is now already 16 day's and counting. I already restarted every server involved but to no avail. I can not remove, change or start the VM as long as the disks are locked. Can I give a command to check the status of this machine in the CLI enviroment or after connecting to the database and checking a table (Realy don't know how to do this). Kind regards. ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] CPU Flags
On Thu, Jun 26, 2014 at 06:49:00PM -0400, Maurice James wrote: Is it possible to pass the vmx extension to a guest? Yes, but you need nested kvm support in the host (which is not available in stock el6), and to install the nestedvt hook. More about it in http://community.redhat.com/blog/2013/08/testing-ovirt-3-3-with-nested-kvm/ Is that what the vhost custom property is for? Nope, that's to turn off a certain type of vNIC optimization that used to be detrimental to certain guests. ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] Spam Misreporting network activity
On Thu, Jun 26, 2014 at 10:26:27PM -0400, Maurice James wrote: My setup is reporting that one of the NICs in a bond pair is receiving 770Mbps even though I shut it off (ifconfig em2 down). I refreshed the page several times. I even restarted the engine just in case it was a caching issue. I thought that it was a caching issue because rx is always at 770Mbps and tx is always at 350Mbps. I put the node into maintenance mode because it was constantly showing 77% network utilization My troubleshooting steps were Put the node into maintenance mode Migrate all VMs to another host Restart network services on the host Restart the ovirt-engine Restart the interface Logging into the engine via Firefox and Chrome yields the exact same results even with em2 in a down state Could you log into the relevant host and run vdsClient -s 0 getVdsStats to see what Vdsm reports to Engine? Could you do cat /sys/class/net/em2/statistics/?x_bytes sleep 10 \ cat /sys/class/net/em2/statistics/?x_bytes to see what the kernel reports to Vdsm? ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] network issue with vm
On 06/26/14 17:20, Tiemen Ruiten wrote: Hello, I set up an oVirt cluster and created my first VM. However I can not seem to get any network connectivity going. The VM is set up to receive an IP address via DHCP. I can see the DHCP request come in on the DHCP-server, but subsequently, the offer is lost somewhere. Even when I configure a fixed IP, I can not ping any host but the VM itself and the IP in the same VLAN on the hypervisor. My network settings are in the attachment (output of sudo vdsClient -s localhost getVdsCaps caps.txt on the hypervisor). Is there something I should configure on the switch maybe (it's a Cisco 3560G)? ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users Anyone? I've tried setting the bond to a different mode (5, balance-tlb), but no luck. -- Tiemen Ruiten Systems Engineer RD Media ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
[ovirt-users] Host not restarting through manager
Hi, I have two UCS server,both are configured for power management, but when i put host to maintenance and restart it by selecting power managementrestart on the OVirt Manager it shows as rebooting but the host is not really rebooting,i had the same issue with HP servers ILO2. What should i do to make it work Also under Hostpower managementtest is failing with Test Failed, Failed: You have to enter plug number Please use '-h' for usage Thanks for any help ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] [ovirt-devel] Host not restarting through manager
well if the power management test does not work, it can't work, right? which fencing module do you use? (ipmi,ilo, etc) you first need to get power management working, before useing it ;) Am 27.06.2014 10:45, schrieb mad Engineer: Also under Hostpower managementtest is failing with Test Failed, Failed: You have to enter plug number Please use '-h' for usage -- Mit freundlichen Grüßen / Regards Sven Kieske Systemadministrator Mittwald CM Service GmbH Co. KG Königsberger Straße 6 32339 Espelkamp T: +49-5772-293-100 F: +49-5772-293-333 https://www.mittwald.de Geschäftsführer: Robert Meyer St.Nr.: 331/5721/1033, USt-IdNr.: DE814773217, HRA 6640, AG Bad Oeynhausen Komplementärin: Robert Meyer Verwaltungs GmbH, HRB 13260, AG Bad Oeynhausen ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] Ip spoofing
Hi Dan, Still the sameVM can spoof the ip address...attached is the VM domain xml file On Thu, Jun 26, 2014 at 5:30 PM, Punit Dambiwal hypu...@gmail.com wrote: Hi Sven, I already give the sudo user permission to VDSM user... Yes..after VDSM restart i can see this hook in host tabI will test it again and udpate you guys if still not solve On Thu, Jun 26, 2014 at 4:03 PM, Antoni Segura Puimedon asegu...@redhat.com wrote: - Original Message - From: Sven Kieske s.kie...@mittwald.de To: users@ovirt.org Sent: Thursday, June 26, 2014 9:12:31 AM Subject: Re: [ovirt-users] Ip spoofing Well this is strange, and this should not be the reason but can you attach a .py ending to the file names (maybe vdsm performs some strange checks)? We do not ;-) your permissions look good. the only other thing I can think of are selinux restrictions, can you check them with: #this gives you the actual used selinux security level: getenforce That could be it :this gives you the selinux attributes for the folder: ls -lZ /usr/libexec/vdsm/hooks/before_device_create I first thought it might be related to vdsms sudoers rights but a plain python script should be executed without modification to the sudoers config. HTH Am 26.06.2014 06:22, schrieb Punit Dambiwal: Hi Dan, The permission looks ok... [root@gfs1 ~]# su - vdsm -s /bin/bash -bash-4.1$ ls -l /usr/libexec/vdsm/hooks/before_device_create total 8 -rwxr-xr-x. 1 root root 1702 Jun 10 05:25 50_macspoof -rwxr-xr-x. 1 root root 2490 Jun 23 17:47 50_noipspoof -bash-4.1$ exit logout [root@gfs1 ~]# But the strange thing is noipspoof hook not display in the host hooks windows -- Mit freundlichen Grüßen / Regards Sven Kieske Systemadministrator Mittwald CM Service GmbH Co. KG Königsberger Straße 6 32339 Espelkamp T: +49-5772-293-100 F: +49-5772-293-333 https://www.mittwald.de Geschäftsführer: Robert Meyer St.Nr.: 331/5721/1033, USt-IdNr.: DE814773217, HRA 6640, AG Bad Oeynhausen Komplementärin: Robert Meyer Verwaltungs GmbH, HRB 13260, AG Bad Oeynhausen ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users [root@gfs1 ~]# virsh -r dumpxml vm11 domain type='kvm' id='23' namevm11/name uuid2cb5db55-5d20-4cd6-8a5b-d25654a1bfec/uuid memory unit='KiB'1048576/memory currentMemory unit='KiB'1048576/currentMemory memtune min_guarantee unit='KiB'1048576/min_guarantee /memtune vcpu placement='static' current='1'160/vcpu cputune shares1020/shares /cputune sysinfo type='smbios' system entry name='manufacturer'oVirt/entry entry name='product'oVirt Node/entry entry name='version'6-5.el6.centos.11.1/entry entry name='serial'44454C4C-3500-104B-8051-B6C04F504E31/entry entry name='uuid'2cb5db55-5d20-4cd6-8a5b-d25654a1bfec/entry /system /sysinfo os type arch='x86_64' machine='rhel6.5.0'hvm/type boot dev='hd'/ smbios mode='sysinfo'/ /os features acpi/ /features cpu mode='custom' match='exact' model fallback='allow'Nehalem/model topology sockets='160' cores='1' threads='1'/ /cpu clock offset='variable' adjustment='0' basis='utc' timer name='rtc' tickpolicy='catchup'/ /clock on_poweroffdestroy/on_poweroff on_rebootrestart/on_reboot on_crashdestroy/on_crash devices emulator/usr/libexec/qemu-kvm/emulator disk type='file' device='cdrom' driver name='qemu' type='raw'/ source startupPolicy='optional'/ target dev='hdc' bus='ide'/ readonly/ serial/serial alias name='ide0-1-0'/ address type='drive' controller='0' bus='1' target='0' unit='0'/ /disk disk type='file' device='cdrom' driver name='qemu' type='raw'/ source file='/var/run/vdsm/payload/2cb5db55-5d20-4cd6-8a5b-d25654a1bfec.960e223e38b6c8931f2a8f1c2277e7f0.img' startupPolicy='optional'/ target dev='hdd' bus='ide'/ readonly/ serial/serial alias name='ide0-1-1'/ address type='drive' controller='0' bus='1' target='0' unit='1'/ /disk disk type='file' device='disk' snapshot='no' driver name='qemu' type='raw' cache='none' error_policy='stop' io='threads'/ source file='/rhev/data-center/mnt/glusterSD/117.18.79.174:_vol2/e9180a4c-74e3-496a-b472-baa3c50d2cd2/images/ed8978ba-9c92-4b8a-b93f-3d66a9c0e7c9/fbc0a9a0-a92b-42e7-b80d-c4f645054a40' seclabel model='selinux' relabel='no'/ /source target dev='vda' bus='virtio'/ serialed8978ba-9c92-4b8a-b93f-3d66a9c0e7c9/serial alias name='virtio-disk0'/ address type='pci' domain='0x' bus='0x00' slot='0x05' function='0x0'/ /disk controller type='usb'
Re: [ovirt-users] Mask the CPU model
Hi All, Noif i set the CPU model in the cluster is intel nehalam...then the cluster doesn't allow me to add sendy bridge CPU hosts What about if i will use the Intel CPU with AMD CPU (Mix Match)?? On Fri, Jun 27, 2014 at 3:05 PM, Sven Kieske s.kie...@mittwald.de wrote: Just put the CPU Model in the Cluster in ovirt. You can't put any host in a cluster which doesn't comply to it's cpu model, thus allowing migration within that cluster. HTH Am 27.06.2014 06:06, schrieb Punit Dambiwal: Hi, I don't want to faking a CPU model.my main concern is to create the homogeneous environment,so the guest can be migrate between hosts with diffrent CPU (If i can change the CPU model with the custom name). -- Mit freundlichen Grüßen / Regards Sven Kieske Systemadministrator Mittwald CM Service GmbH Co. KG Königsberger Straße 6 32339 Espelkamp T: +49-5772-293-100 F: +49-5772-293-333 https://www.mittwald.de Geschäftsführer: Robert Meyer St.Nr.: 331/5721/1033, USt-IdNr.: DE814773217, HRA 6640, AG Bad Oeynhausen Komplementärin: Robert Meyer Verwaltungs GmbH, HRB 13260, AG Bad Oeynhausen ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] network issue with vm
- Original Message - From: Tiemen Ruiten t.rui...@rdmedia.com To: users@ovirt.org Sent: Friday, June 27, 2014 10:43:03 AM Subject: Re: [ovirt-users] network issue with vm On 06/26/14 17:20, Tiemen Ruiten wrote: Hello, I set up an oVirt cluster and created my first VM. However I can not seem to get any network connectivity going. The VM is set up to receive an IP address via DHCP. I can see the DHCP request come in on the DHCP-server, but subsequently, the offer is lost somewhere. Even when I configure a fixed IP, I can not ping any host but the VM itself and the IP in the same VLAN on the hypervisor. My network settings are in the attachment (output of sudo vdsClient -s localhost getVdsCaps caps.txt on the hypervisor). Is there something I should configure on the switch maybe (it's a Cisco 3560G)? bonding mode 4 which is the most natural choice, requires configuration of the switch ports for lacp. ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users Anyone? I've tried setting the bond to a different mode (5, balance-tlb), but no luck. -- Tiemen Ruiten Systems Engineer RD Media ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
[ovirt-users] name of virtual machine and hostname
Good morning, I would like to ask you an information. After I have installed ovirt, I have created a pool of vm with name like centos-?? (from 1 to 20) and then ovirt generated 20 vm with name centos-1, centos-2, centos-3 etc. etc. The problem is when the vm starts the hostname is not the same of the vm name in ovirt but is the same name of the template. Is it possible to make sure that the name of vm and the hostname is identical? Best regard Nicola Gentile ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] Ip spoofing
- Original Message - From: Punit Dambiwal hypu...@gmail.com To: Antoni Segura Puimedon asegu...@redhat.com, Dan Kenigsberg dan...@redhat.com Cc: Sven Kieske s.kie...@mittwald.de, users@ovirt.org Sent: Friday, June 27, 2014 11:07:56 AM Subject: Re: [ovirt-users] Ip spoofing Hi Dan, Still the sameVM can spoof the ip address...attached is the VM domain xml file Did you try to disable SELinux with setenforce 0 to see if the problem is one of secure contexts? On Thu, Jun 26, 2014 at 5:30 PM, Punit Dambiwal hypu...@gmail.com wrote: Hi Sven, I already give the sudo user permission to VDSM user... Yes..after VDSM restart i can see this hook in host tabI will test it again and udpate you guys if still not solve On Thu, Jun 26, 2014 at 4:03 PM, Antoni Segura Puimedon asegu...@redhat.com wrote: - Original Message - From: Sven Kieske s.kie...@mittwald.de To: users@ovirt.org Sent: Thursday, June 26, 2014 9:12:31 AM Subject: Re: [ovirt-users] Ip spoofing Well this is strange, and this should not be the reason but can you attach a .py ending to the file names (maybe vdsm performs some strange checks)? We do not ;-) your permissions look good. the only other thing I can think of are selinux restrictions, can you check them with: #this gives you the actual used selinux security level: getenforce That could be it :this gives you the selinux attributes for the folder: ls -lZ /usr/libexec/vdsm/hooks/before_device_create I first thought it might be related to vdsms sudoers rights but a plain python script should be executed without modification to the sudoers config. HTH Am 26.06.2014 06:22, schrieb Punit Dambiwal: Hi Dan, The permission looks ok... [root@gfs1 ~]# su - vdsm -s /bin/bash -bash-4.1$ ls -l /usr/libexec/vdsm/hooks/before_device_create total 8 -rwxr-xr-x. 1 root root 1702 Jun 10 05:25 50_macspoof -rwxr-xr-x. 1 root root 2490 Jun 23 17:47 50_noipspoof -bash-4.1$ exit logout [root@gfs1 ~]# But the strange thing is noipspoof hook not display in the host hooks windows -- Mit freundlichen Grüßen / Regards Sven Kieske Systemadministrator Mittwald CM Service GmbH Co. KG Königsberger Straße 6 32339 Espelkamp T: +49-5772-293-100 F: +49-5772-293-333 https://www.mittwald.de Geschäftsführer: Robert Meyer St.Nr.: 331/5721/1033, USt-IdNr.: DE814773217, HRA 6640, AG Bad Oeynhausen Komplementärin: Robert Meyer Verwaltungs GmbH, HRB 13260, AG Bad Oeynhausen ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] name of virtual machine and hostname
- Original Message - From: nicola gentile nicola.gentile...@gmail.com To: Users@ovirt.org Sent: Friday, June 27, 2014 11:16:51 AM Subject: [ovirt-users] name of virtual machine and hostname Good morning, I would like to ask you an information. After I have installed ovirt, I have created a pool of vm with name like centos-?? (from 1 to 20) and then ovirt generated 20 vm with name centos-1, centos-2, centos-3 etc. etc. The problem is when the vm starts the hostname is not the same of the vm name in ovirt but is the same name of the template. Is it possible to make sure that the name of vm and the hostname is identical? I guess that the way to go about it would be to use the cloudinit integration. I've not tried it myself, but: http://www.ovirt.org/Features/Cloud-Init_Integration states that setting the hostname was one of the planned features when the integration was designed. Best regard Nicola Gentile ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] Ip spoofing
On Fri, Jun 27, 2014 at 05:07:56PM +0800, Punit Dambiwal wrote: Hi Dan, Still the sameVM can spoof the ip address...attached is the VM domain xml file snip yep, the hook script did not come into action. interface type='bridge' mac address='00:1a:4a:81:80:01'/ source bridge='private'/ target dev='vnet0'/ model type='virtio'/ filterref filter='vdsm-no-mac-spoofing'/ link state='up'/ alias name='net0'/ address type='pci' domain='0x' bus='0x00' slot='0x03' function='0x0'/ /interface and I am still at the dark regarding what could cause that. Would you repeat the following line, as root and as vdsm user? $ cd /usr/share/vdsm; python -c 'import hooks;print hooks._scriptsPerDir(before_device_create)' ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] Ip spoofing
Hi Dan, Please find the below :- [root@gfs1 ~]# su - vdsm -s /bin/bash -bash-4.1$ cd /usr/share/vdsm; python -c 'import hooks;print hooks._scriptsPerDir(before_device_create)' ['/usr/libexec/vdsm/hooks/before_device_create/50_noipspoof'] -bash-4.1$ Antoni @ selinux already in the permissive modedo you want me to disable it ?? [root@gfs1 ~]# sestatus | grep -i mode Current mode: permissive Mode from config file: permissive [root@gfs1 ~]# On Fri, Jun 27, 2014 at 5:31 PM, Dan Kenigsberg dan...@redhat.com wrote: On Fri, Jun 27, 2014 at 05:07:56PM +0800, Punit Dambiwal wrote: Hi Dan, Still the sameVM can spoof the ip address...attached is the VM domain xml file snip yep, the hook script did not come into action. interface type='bridge' mac address='00:1a:4a:81:80:01'/ source bridge='private'/ target dev='vnet0'/ model type='virtio'/ filterref filter='vdsm-no-mac-spoofing'/ link state='up'/ alias name='net0'/ address type='pci' domain='0x' bus='0x00' slot='0x03' function='0x0'/ /interface and I am still at the dark regarding what could cause that. Would you repeat the following line, as root and as vdsm user? $ cd /usr/share/vdsm; python -c 'import hooks;print hooks._scriptsPerDir(before_device_create)' ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] Ip spoofing
Well I doubt this is a solution to this, anyway, if you want to check if it's a permission error due to not correctly configured selinux you could do: grep avc /var/log/auditd/auditd.log and configure your selinux correctly, no need to disable it. But I doubt that the VM can spoof the ip address you can configure it, sure, but you should not be able to access anything outside of the vm. another way to set this up, is, to configure the filter vdsm-no-mac-spoofing for each vm and to configure your network to not allow any other ip-packages from the given mac, and assign well known macs to each vm. you can also add vlans and proper subnetting to the mix to make it more secure. Am 27.06.2014 11:16, schrieb Antoni Segura Puimedon: Did you try to disable SELinux with setenforce 0 to see if the problem is one of secure contexts? -- Mit freundlichen Grüßen / Regards Sven Kieske Systemadministrator Mittwald CM Service GmbH Co. KG Königsberger Straße 6 32339 Espelkamp T: +49-5772-293-100 F: +49-5772-293-333 https://www.mittwald.de Geschäftsführer: Robert Meyer St.Nr.: 331/5721/1033, USt-IdNr.: DE814773217, HRA 6640, AG Bad Oeynhausen Komplementärin: Robert Meyer Verwaltungs GmbH, HRB 13260, AG Bad Oeynhausen ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] name of virtual machine and hostname
yes this works, if you do not need more functionality than cloud init can provide (I must write some patches for it, when I got the time..) Am 27.06.2014 11:18, schrieb Antoni Segura Puimedon: I guess that the way to go about it would be to use the cloudinit integration. I've not tried it myself, but: http://www.ovirt.org/Features/Cloud-Init_Integration states that setting the hostname was one of the planned features when the integration was designed. -- Mit freundlichen Grüßen / Regards Sven Kieske Systemadministrator Mittwald CM Service GmbH Co. KG Königsberger Straße 6 32339 Espelkamp T: +49-5772-293-100 F: +49-5772-293-333 https://www.mittwald.de Geschäftsführer: Robert Meyer St.Nr.: 331/5721/1033, USt-IdNr.: DE814773217, HRA 6640, AG Bad Oeynhausen Komplementärin: Robert Meyer Verwaltungs GmbH, HRB 13260, AG Bad Oeynhausen ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] Is this kind of VM replication possible using oVirt Schedular
Hi Gilad/Martin, Thanks for the reply. Let me explain the scenario in details:- Each Host would have local filesystems and can be integrated with oVirt as POSIX filesystems storage. Assume each server can run maximum 6 VMs simultaneously(due to memory/CPU constraints) and we have configured 5 hosts (Node1, Node2Node5). In the beginning the 5 hosts are being configured in the oVirt engine and there is no VM. Now I create the first VM named VM1 and place it in Node1, from this point oVirt Schedular would decide which other host it would put the replica on. This replica VM1 will be in passive state in another host (Node 2 as per diagram). The same procedure would apply on the other created VMs as well. The role of the oVirt scheduler would be to optimize the placement of VMs in such a way that we can maximize the number of VMs availability in case of host(s) failure. Also it should replicate the delta updates to corresponding passive VMs. As per the scenario in a perfect condition 4 VMs are running in each host providing scope for running 2 extra VMs(maximum 6)in case of other host failures.The underlying local storage have kept 4 extra VMs (QCOW2 disks and config files) from different hosts in addition to the 4 VM disk files for the running VMs. Due to some reason Node2 and Node4 have failed, now the replicated passive VMs for the failed nodes will be started on the remaining nodes. In this case most of the VMs were able to start in different node except VM7 and VM14 as those VMs don't have replicas available in the other running nodes. The maximum availability of the VMs can be calculated using the following formula:- *Total No. of VMs running after node failure = ((Total No. of Nodes) - (No. of failed Nodes)) * (Max. No. of VMs that can run per Node)* The HA VM reservation is an excellent feature no doubt, but I think its only applicable if you have a shared storage underlying(NFS,SAN,Gluster etc..).(Correct me if I'm wrong) And yes GlusterFS does have distributed replicated feature which can replicate VM data in multiple bricks, but in GlusterFS you have to map the replicated bricks during creation and the data can only be replicated between the two (or multiple based on your replication numbers) bricks only. The advantage of this feature would be that you can add standalone nodes(odd/even numbers) in oVirt ecosystem and schedular can place VMs in such a balanced and optimized mode so that maximum number of VMs remain available after N nodes failure from M number of nodes(where MN) Please put your valuable thoughts regarding the same. Request you to let me know if you need any further clarifications from my side. Thanks Kausik On Thu, Jun 26, 2014 at 6:23 PM, Gilad Chaplik gchap...@redhat.com wrote: Hi Kausik, If I understand correctly your question, we do support this flow. In case of failure we migrate highly available VMs to other hosts, but note that there could be a connectivity problem between engine an node, and node can still communicate with the storage, so to avoid that (split brain) you need to have PM configured for that node, or manually confirm that the host has rebooted. We even added a feature lately (3.4's HA reservation [1]) that indicates whether your HA VMs have enough resources in cluster in case of a node failure. Thanks, Gilad. [1] http://www.ovirt.org/Features/HA_VM_reservation - Original Message - From: kausik pal kausikpa...@gmail.com To: users@ovirt.org Sent: Tuesday, June 24, 2014 8:06:10 PM Subject: [ovirt-users] Is this kind of VM replication possible using oVirtSchedular Hi All, PFA the two diagrams describing placement of the VMs during normal condition and condition after two node failure in 5 node set up (Each Node can host up to 6 VMs due to memory constraints). My question is whether this kind of VM replication as shown in the attached diagram is possible utilizing oVirt schedular. The benefits of this kind of replication would be following :- 1. Any number of Hosts/Nodes can participate (Odd/Even) in the infrastructure. 2. We can add any number (odd/even) number of Nodes to re-balance the VM placement. 3. After node failures the Maximum number of VMs that can run on the remaining nodes can be calculated with the following formula:- Total No. of VMs running after node failure = ((Total No. of Nodes) - (No. of failed Nodes)) * (Max. No. of VMs that can run per Node) The attached table gives a rough calculation on maximum number VMs that can run after node failures. Please let me know if you need any further information from my side. Thanks Kausik ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] Mask the CPU model
On 27 Jun 2014, at 11:10, Punit Dambiwal wrote: Hi All, Noif i set the CPU model in the cluster is intel nehalam...then the cluster doesn't allow me to add sendy bridge CPU hosts…. what do you mean, it doesn't allow you to add a host with a real physical SandyBridge CPU? that would be a bug What about if i will use the Intel CPU with AMD CPU (Mix Match)?? AMD CPU models are not a subset of Intel models, so it won't work. (how do you expect this to work in real environment?) On Fri, Jun 27, 2014 at 3:05 PM, Sven Kieske s.kie...@mittwald.de wrote: Just put the CPU Model in the Cluster in ovirt. You can't put any host in a cluster which doesn't comply to it's cpu model, thus allowing migration within that cluster. HTH Am 27.06.2014 06:06, schrieb Punit Dambiwal: Hi, I don't want to faking a CPU model.my main concern is to create the homogeneous environment,so the guest can be migrate between hosts with diffrent CPU (If i can change the CPU model with the custom name). -- Mit freundlichen Grüßen / Regards Sven Kieske Systemadministrator Mittwald CM Service GmbH Co. KG Königsberger Straße 6 32339 Espelkamp T: +49-5772-293-100 F: +49-5772-293-333 https://www.mittwald.de Geschäftsführer: Robert Meyer St.Nr.: 331/5721/1033, USt-IdNr.: DE814773217, HRA 6640, AG Bad Oeynhausen Komplementärin: Robert Meyer Verwaltungs GmbH, HRB 13260, AG Bad Oeynhausen ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] Mask the CPU model
Hi Michal, That means if i have the nehalam CPU Hypervisior...still i can create cluster with sendybridgeand can join this cluster with nehalam based hypervisior ?? On Fri, Jun 27, 2014 at 5:54 PM, Michal Skrivanek michal.skriva...@redhat.com wrote: On 27 Jun 2014, at 11:10, Punit Dambiwal wrote: Hi All, Noif i set the CPU model in the cluster is intel nehalam...then the cluster doesn't allow me to add sendy bridge CPU hosts…. what do you mean, it doesn't allow you to add a host with a real physical SandyBridge CPU? that would be a bug What about if i will use the Intel CPU with AMD CPU (Mix Match)?? AMD CPU models are not a subset of Intel models, so it won't work. (how do you expect this to work in real environment?) On Fri, Jun 27, 2014 at 3:05 PM, Sven Kieske s.kie...@mittwald.de wrote: Just put the CPU Model in the Cluster in ovirt. You can't put any host in a cluster which doesn't comply to it's cpu model, thus allowing migration within that cluster. HTH Am 27.06.2014 06:06, schrieb Punit Dambiwal: Hi, I don't want to faking a CPU model.my main concern is to create the homogeneous environment,so the guest can be migrate between hosts with diffrent CPU (If i can change the CPU model with the custom name). -- Mit freundlichen Grüßen / Regards Sven Kieske Systemadministrator Mittwald CM Service GmbH Co. KG Königsberger Straße 6 32339 Espelkamp T: +49-5772-293-100 F: +49-5772-293-333 https://www.mittwald.de Geschäftsführer: Robert Meyer St.Nr.: 331/5721/1033, USt-IdNr.: DE814773217, HRA 6640, AG Bad Oeynhausen Komplementärin: Robert Meyer Verwaltungs GmbH, HRB 13260, AG Bad Oeynhausen ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] ISO_DOMAIN issue
did you restart ovirt-engine service? On 06/25/2014 05:54 AM, Koen Vanoppen wrote: Ok, thanx. Now when I try to remove the connection I get this: [oVirt shell (connec...@vega.brusselsairport.aero mailto:connec...@vega.brusselsairport.aero)]# remove storageconnection 91fca941-d9f3-496c-908f-92d31bce6a64 == ERROR === status: 404 reason: Not Found detail: Entity not found: null 2014-06-24 15:53 GMT+02:00 Dafna Ron d...@redhat.com mailto:d...@redhat.com: the destroy should clean the db only and any cleanup on the storage/hosts side should be done manually by the user. cleaning the iso domain from the vms would be a nice addition if not done today - can you please open a bug on this? Please check if your hosts have old mount to the iso side and umount it. restart of vdsm service on the hosts and engine service should clean any leftovers after that. if not, please file a bug since old connection should be clean from the db. Dafna On 06/24/2014 01:53 PM, Sven Kieske wrote: well as far as I know you should put any domain first into maintenance, then detach from all DCs and then remove it. by force destroying you get what you now have: old connections which are dead and log spam. So I assume it would be safe to delete the connection to this storage domain, but ymmv. Am 24.06.2014 14 tel:24.06.2014%2014:45, schrieb Koen Vanoppen: By destroying it in ovirt management interface... -- Dafna Ron -- Dafna Ron ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] Ip spoofing
Hi, I found below messages in the audit log :- [root@gfs1 ~]# grep avc /var/log/audit/audit.log type=AVC msg=audit(1403834461.442:266685): avc: denied { read } for pid=27958 comm=logrotate name=core dev=dm-0 ino=789758 scontext=system_u:system_r:log rotate_t:s0-s0:c0.c1023 tcontext=system_u:object_r:virt_cache_t:s0 tclass=dir type=AVC msg=audit(1403835901.532:266865): avc: denied { read } for pid=29746 comm=xz name=online dev=sysfs ino=23 scontext=system_u:system_r:logrotate_t :s0-s0:c0.c1023 tcontext=system_u:object_r:sysfs_t:s0 tclass=file type=AVC msg=audit(1403836508.226:266868): avc: denied { signal } for pid=353 7 comm=sanlock-helper scontext=unconfined_u:system_r:sanlock_t:s0-s0:c0.c1023 tcontext=unconfined_u:system_r:virtd_t:s0-s0:c0.c1023 tclass=process type=AVC msg=audit(1403838061.918:266965): avc: denied { read } for pid=32528 comm=logrotate name=core dev=dm-0 ino=789758 scontext=system_u:system_r:log rotate_t:s0-s0:c0.c1023 tcontext=system_u:object_r:virt_cache_t:s0 tclass=dir type=AVC msg=audit(1403841661.051:267604): avc: denied { read } for pid=3256 comm=logrotate name=core dev=dm-0 ino=789758 scontext=system_u:system_r:logr otate_t:s0-s0:c0.c1023 tcontext=system_u:object_r:virt_cache_t:s0 tclass=dir type=AVC msg=audit(1403841661.053:267605): avc: denied { read } for pid=3257 comm=xz name=online dev=sysfs ino=23 scontext=system_u:system_r:logrotate_t: s0-s0:c0.c1023 tcontext=system_u:object_r:sysfs_t:s0 tclass=file type=AVC msg=audit(1403845261.394:271326): avc: denied { read } for pid=6791 comm=logrotate name=core dev=dm-0 ino=789758 scontext=system_u:system_r:logr otate_t:s0-s0:c0.c1023 tcontext=system_u:object_r:virt_cache_t:s0 tclass=dir type=AVC msg=audit(1403848861.538:271797): avc: denied { read } for pid=9269 comm=logrotate name=core dev=dm-0 ino=789758 scontext=system_u:system_r:logr otate_t:s0-s0:c0.c1023 tcontext=system_u:object_r:virt_cache_t:s0 tclass=dir type=AVC msg=audit(1403852461.654:272828): avc: denied { read } for pid=1 comm=logrotate name=core dev=dm-0 ino=789758 scontext=system_u:system_r:log rotate_t:s0-s0:c0.c1023 tcontext=system_u:object_r:virt_cache_t:s0 tclass=dir type=AVC msg=audit(1403852998.237:272831): avc: denied { signal } for pid=353 7 comm=sanlock-helper scontext=unconfined_u:system_r:sanlock_t:s0-s0:c0.c1023 tcontext=unconfined_u:system_r:virtd_t:s0-s0:c0.c1023 tclass=process type=AVC msg=audit(1403856061.898:273118): avc: denied { read } for pid=16215 comm=logrotate name=core dev=dm-0 ino=789758 scontext=system_u:system_r:log rotate_t:s0-s0:c0.c1023 tcontext=system_u:object_r:virt_cache_t:s0 tclass=dir type=AVC msg=audit(1403859661.098:273934): avc: denied { read } for pid=19991 comm=logrotate name=core dev=dm-0 ino=789758 scontext=system_u:system_r:log rotate_t:s0-s0:c0.c1023 tcontext=system_u:object_r:virt_cache_t:s0 tclass=dir type=AVC msg=audit(1403863261.394:276053): avc: denied { read } for pid=24345 comm=logrotate name=core dev=dm-0 ino=789758 scontext=system_u:system_r:log rotate_t:s0-s0:c0.c1023 tcontext=system_u:object_r:virt_cache_t:s0 tclass=dir [root@gfs1 ~]# On Fri, Jun 27, 2014 at 5:35 PM, Sven Kieske s.kie...@mittwald.de wrote: Well I doubt this is a solution to this, anyway, if you want to check if it's a permission error due to not correctly configured selinux you could do: grep avc /var/log/auditd/auditd.log and configure your selinux correctly, no need to disable it. But I doubt that the VM can spoof the ip address you can configure it, sure, but you should not be able to access anything outside of the vm. another way to set this up, is, to configure the filter vdsm-no-mac-spoofing for each vm and to configure your network to not allow any other ip-packages from the given mac, and assign well known macs to each vm. you can also add vlans and proper subnetting to the mix to make it more secure. Am 27.06.2014 11:16, schrieb Antoni Segura Puimedon: Did you try to disable SELinux with setenforce 0 to see if the problem is one of secure contexts? -- Mit freundlichen Grüßen / Regards Sven Kieske Systemadministrator Mittwald CM Service GmbH Co. KG Königsberger Straße 6 32339 Espelkamp T: +49-5772-293-100 F: +49-5772-293-333 https://www.mittwald.de Geschäftsführer: Robert Meyer St.Nr.: 331/5721/1033, USt-IdNr.: DE814773217, HRA 6640, AG Bad Oeynhausen Komplementärin: Robert Meyer Verwaltungs GmbH, HRB 13260, AG
Re: [ovirt-users] Ip spoofing
Well selinux is not your problem as you run it in permissive mode, this means selinux violations will get logged but not be forbidden. -- Mit freundlichen Grüßen / Regards Sven Kieske Systemadministrator Mittwald CM Service GmbH Co. KG Königsberger Straße 6 32339 Espelkamp T: +49-5772-293-100 F: +49-5772-293-333 https://www.mittwald.de Geschäftsführer: Robert Meyer St.Nr.: 331/5721/1033, USt-IdNr.: DE814773217, HRA 6640, AG Bad Oeynhausen Komplementärin: Robert Meyer Verwaltungs GmbH, HRB 13260, AG Bad Oeynhausen ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] Mask the CPU model
On 27 Jun 2014, at 12:00, Punit Dambiwal wrote: Hi Michal, That means if i have the nehalam CPU Hypervisior...still i can create cluster with sendybridgeand can join this cluster with nehalam based hypervisior ?? yes, exactly Thanks, michal On Fri, Jun 27, 2014 at 5:54 PM, Michal Skrivanek michal.skriva...@redhat.com wrote: On 27 Jun 2014, at 11:10, Punit Dambiwal wrote: Hi All, Noif i set the CPU model in the cluster is intel nehalam...then the cluster doesn't allow me to add sendy bridge CPU hosts…. what do you mean, it doesn't allow you to add a host with a real physical SandyBridge CPU? that would be a bug What about if i will use the Intel CPU with AMD CPU (Mix Match)?? AMD CPU models are not a subset of Intel models, so it won't work. (how do you expect this to work in real environment?) On Fri, Jun 27, 2014 at 3:05 PM, Sven Kieske s.kie...@mittwald.de wrote: Just put the CPU Model in the Cluster in ovirt. You can't put any host in a cluster which doesn't comply to it's cpu model, thus allowing migration within that cluster. HTH Am 27.06.2014 06:06, schrieb Punit Dambiwal: Hi, I don't want to faking a CPU model.my main concern is to create the homogeneous environment,so the guest can be migrate between hosts with diffrent CPU (If i can change the CPU model with the custom name). -- Mit freundlichen Grüßen / Regards Sven Kieske Systemadministrator Mittwald CM Service GmbH Co. KG Königsberger Straße 6 32339 Espelkamp T: +49-5772-293-100 F: +49-5772-293-333 https://www.mittwald.de Geschäftsführer: Robert Meyer St.Nr.: 331/5721/1033, USt-IdNr.: DE814773217, HRA 6640, AG Bad Oeynhausen Komplementärin: Robert Meyer Verwaltungs GmbH, HRB 13260, AG Bad Oeynhausen ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] Convert vmware vm
Il 27/06/2014 07:41, Koen Vanoppen ha scritto: II created this document for the company where I work. Maybe it is userfull for you too: Migrate from VMWare to oVirt 1.On VmWare: a.Export the VM to ovf format. There is a smb/nfs share on virt-v2v you can use as storage. i.NFS: Virtv2v.:/media/Storage ii.SMB: virtv2v. share: virtv2v 2.with virtv2v a.Log in on the virt-v2v vm. b.Locate and Extract the ovf file with tar –xvf c.Convert the extracted vmdk file to raw disk format with the following command: vboxmanage clonehd --format RAW VMNAME.vmdk NewVMName.raw d.Convert the created RAW file to a qemu2 img: qemu-img convert -f raw VM-Name.raw -O qcow2 VMName.qcow2 e.Run the vm in virsh: virt-install --connect qemu:///system --ram 1024 -n griffu -r 2048 --os-type=linux --os-variant=rhel6 --disk path=/media/Storage/VMName.qcow2,device=disk,format=qcow2 --vcpus=2 --vnc --noautoconsole –import f.Take a xml dump of the VM and copy the result in a new file VMName.xml virsh dumpxml VMName g.Now let’s move the vm to ovirt. Make sure the nfs is attached to the TestDev Datacenter. virt-v2v -i libvirtxml -ic qemu+ssh://FQDN-Hypervisor /system -o rhev -os FQDN-NFS-exportdomainserver:/media/NfsProgress -n ovirtmgmt VMName.xml Can you create a page on oVirt Wiki? I think it may be useful to have this there too. Thanks! 2014-06-24 15:19 GMT+02:00 Massimo Mad mad196...@gmail.com mailto:mad196...@gmail.com: Hello, I downloaded an image .vmdk from a repository and wanted to import it into my oVirt infrastructure. Is it possible? If it is possible how? Thanks, Massimo ___ Users mailing list Users@ovirt.org mailto:Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users -- Sandro Bonazzola Better technology. Faster innovation. Powered by community collaboration. See how it works at redhat.com ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] Ip spoofing
On Fri, Jun 27, 2014 at 05:36:49PM +0800, Punit Dambiwal wrote: Hi Dan, Please find the below :- [root@gfs1 ~]# su - vdsm -s /bin/bash -bash-4.1$ cd /usr/share/vdsm; python -c 'import hooks;print hooks._scriptsPerDir(before_device_create)' ['/usr/libexec/vdsm/hooks/before_device_create/50_noipspoof'] -bash-4.1$ very odd. could you try again and attach a fresh log of the vmCreate flow? Maybe you could add a sys.stderr.write('%s' % os.environ) line in the main() function of the script just to see if it's ever called? ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
[ovirt-users] Call for Papers in Two Weeks: Linux.conf.au
Conference: Linux.conf.au Information: Each year open source geeks from across the globe gather in Australia or New Zealand to meet their fellow technologists, share the latest ideas and innovations, and spend a week discussing and collaborating on open source projects. The conference is well known for the speakers and delegates depth of talent, and its focus on technical linux content. Possible topics: Virtualization, oVirt, KVM, libvirt, RDO, OpenStack, Foreman Date: January 12-15, 2015 Location: Auckland, New Zealand Website: http://lca2015.linux.org.au/ Call for Papers Deadline: July 13, 2014 Call for Papers URL: http://lca2015.linux.org.au/cfp Contact me for more information and assistance with presentations. -- Brian Proffitt oVirt Community Manager Project Atomic Community Lead Open Source and Standards, Red Hat - http://community.redhat.com Phone: +1 574 383 9BKP IRC: bkp @ OFTC ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
[ovirt-users] Call for Papers Deadline in Two Weeks: LinuxCon/CloudOpen Europe
Conference: LinuxCon Europe Information: LinuxCon is the only event covering all matters Linux - offering collaboration and education for everyone in the ecosystem from developers and maintainers to sys admins and architects to business executives and community members. Date: August 20-22, 2014 Location: Dusseldorf, Germany Website: http://events.linuxfoundation.org/events/linuxcon-europe Call for Papers Deadline: July 11, 2014 Call for Papers URL: http://events.linuxfoundation.org/events/linuxcon-europe/program/cfp Conference: CloudOpen Europe Information: CloudOpen is the only conference offering collaboration and education for all matters of open source cloud, from CloudStack to KVM to Xen, Hadoop, Gluster, OpenStack and more. Date: August 20-22, 2014 Location: Dusseldorf, Germany Website: http://events.linuxfoundation.org/events/cloudopen-europe Call for Papers Deadline: July 11, 2014 Call for Papers URL: http://events.linuxfoundation.org/events/cloudopen-europe/program/cfp -- Brian Proffitt - oVirt Community Manager Open Source and Standards, Red Hat - http://community.redhat.com Phone: +1 574 383 9BKP IRC: bkp @ OFTC ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
[ovirt-users] Spam Re: CPU Flags
Is there anything else that I need to do beside installing those vdsm hooks? I ask because you said that its not available in stock el6 - Original Message - From: Dan Kenigsberg dan...@redhat.com To: Maurice James mja...@media-node.com Cc: users users@ovirt.org Sent: Friday, June 27, 2014 4:27:50 AM Subject: Re: [ovirt-users] CPU Flags On Thu, Jun 26, 2014 at 06:49:00PM -0400, Maurice James wrote: Is it possible to pass the vmx extension to a guest? Yes, but you need nested kvm support in the host (which is not available in stock el6), and to install the nestedvt hook. More about it in http://community.redhat.com/blog/2013/08/testing-ovirt-3-3-with-nested-kvm/ Is that what the vhost custom property is for? Nope, that's to turn off a certain type of vNIC optimization that used to be detrimental to certain guests. ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
[ovirt-users] Spam Re: Spam Misreporting network activity
Looks like it cleared up after I restarted the engine and vdsm - Original Message - From: Dan Kenigsberg dan...@redhat.com To: Maurice James mja...@media-node.com Cc: users users@ovirt.org Sent: Friday, June 27, 2014 4:33:43 AM Subject: Re: [ovirt-users] Spam Misreporting network activity On Thu, Jun 26, 2014 at 10:26:27PM -0400, Maurice James wrote: My setup is reporting that one of the NICs in a bond pair is receiving 770Mbps even though I shut it off (ifconfig em2 down). I refreshed the page several times. I even restarted the engine just in case it was a caching issue. I thought that it was a caching issue because rx is always at 770Mbps and tx is always at 350Mbps. I put the node into maintenance mode because it was constantly showing 77% network utilization My troubleshooting steps were Put the node into maintenance mode Migrate all VMs to another host Restart network services on the host Restart the ovirt-engine Restart the interface Logging into the engine via Firefox and Chrome yields the exact same results even with em2 in a down state Could you log into the relevant host and run vdsClient -s 0 getVdsStats to see what Vdsm reports to Engine? Could you do cat /sys/class/net/em2/statistics/?x_bytes sleep 10 \ cat /sys/class/net/em2/statistics/?x_bytes to see what the kernel reports to Vdsm? ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] Convert vmware vm
I just did that at: http://www.ovirt.org/Vm_migration_from_vmware feel free to make this pretty, it's more or less just a raw dump of the mail. Am 27.06.2014 13:40, schrieb Sandro Bonazzola: Can you create a page on oVirt Wiki? I think it may be useful to have this there too. Thanks! -- Mit freundlichen Grüßen / Regards Sven Kieske Systemadministrator Mittwald CM Service GmbH Co. KG Königsberger Straße 6 32339 Espelkamp T: +49-5772-293-100 F: +49-5772-293-333 https://www.mittwald.de Geschäftsführer: Robert Meyer St.Nr.: 331/5721/1033, USt-IdNr.: DE814773217, HRA 6640, AG Bad Oeynhausen Komplementärin: Robert Meyer Verwaltungs GmbH, HRB 13260, AG Bad Oeynhausen ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] Spam Re: CPU Flags
well on el6 this won't work, due to missing support of passing on the nested-vt flag, you could run a newer libvirt/kvm version on your el6 installation, if you really want/need this, but I would not encourage you to do so. Am 27.06.2014 14:14, schrieb Maurice James: Is there anything else that I need to do beside installing those vdsm hooks? I ask because you said that its not available in stock el6 -- Mit freundlichen Grüßen / Regards Sven Kieske Systemadministrator Mittwald CM Service GmbH Co. KG Königsberger Straße 6 32339 Espelkamp T: +49-5772-293-100 F: +49-5772-293-333 https://www.mittwald.de Geschäftsführer: Robert Meyer St.Nr.: 331/5721/1033, USt-IdNr.: DE814773217, HRA 6640, AG Bad Oeynhausen Komplementärin: Robert Meyer Verwaltungs GmbH, HRB 13260, AG Bad Oeynhausen ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
[ovirt-users] Spam Re: Spam Cluster Polcies
Can anyone shed any light for me? - Original Message - From: Maurice James mja...@media-node.com To: users users@ovirt.org Sent: Thursday, June 26, 2014 6:20:23 PM Subject: [ovirt-users] Spam Cluster Polcies Can someone explain the cluster policies to me? The explanation at http://www.ovirt.org/Features/Even_VM_Count_Distribution is not quite clicking for me. * HighVMSCount - Maximum VM limit. Exceeding it qualifies the host as overloaded. ( Understood ) * MigrationThreshold - defines a buffer before we start migrating VMs from the host ( Not quite grasping. If my High limit is 5 does this mean that it will only begin to move VMs when the count reaches 10? ) * SPMVMCountGrace - defines how many slots for VMs should be reserved on SPM hosts (the SPM host should have less load than others, so this variable defines how many VM less it should have) ( Does this mean that if I have a host with only 3 VMs the SPM will 3 VMs minus the SpmWmGrace? Or is this HighVmCount minus SpmVmGrace count?) ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] network issue with vm
On 06/27/14 11:16, Antoni Segura Puimedon wrote: - Original Message - From: Tiemen Ruiten t.rui...@rdmedia.com To: users@ovirt.org Sent: Friday, June 27, 2014 10:43:03 AM Subject: Re: [ovirt-users] network issue with vm On 06/26/14 17:20, Tiemen Ruiten wrote: Hello, I set up an oVirt cluster and created my first VM. However I can not seem to get any network connectivity going. The VM is set up to receive an IP address via DHCP. I can see the DHCP request come in on the DHCP-server, but subsequently, the offer is lost somewhere. Even when I configure a fixed IP, I can not ping any host but the VM itself and the IP in the same VLAN on the hypervisor. My network settings are in the attachment (output of sudo vdsClient -s localhost getVdsCaps caps.txt on the hypervisor). Is there something I should configure on the switch maybe (it's a Cisco 3560G)? bonding mode 4 which is the most natural choice, requires configuration of the switch ports for lacp. Why is it the most natural choice? On http://www.gluster.org/community/documentation/index.php/Network_Configuration_Techniques mode 6 is recommended. My storage domain is type GlusterFS. Mode 6 is not an option in the oVirt interface though. Anyway, since the traffic seems to go out from the VM interface, through the hypervisor bridge+bond and the switch and arrives at the DHCP-server, could this really be an issue with LACP? What else can I try? -- Tiemen Ruiten Systems Engineer RD Media ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] [ovirt-devel] Stats for oVirt Downloads: Jan-May 2014
I am still in process of parsing out the mirror downloads, and would appreciate any insights you might have to accomplish this. BKP - Original Message - From: Ewoud Kohl van Wijngaarden ewoud+ov...@kohlvanwijngaarden.nl To: Brian Proffitt bprof...@redhat.com Cc: users users@ovirt.org, de...@ovirt.org, OSAS o...@redhat.com Sent: Friday, June 27, 2014 3:54:24 AM Subject: Re: [ovirt-devel] Stats for oVirt Downloads: Jan-May 2014 On Thu, Jun 26, 2014 at 11:37:54PM -0400, Brian Proffitt wrote: Downloads of the Engine RPM file, it was determined, would be indicative of actual oVirt installs. The allinone RPMs were not analyzed at this time, since installing this RPM is a choice made during the installation process itself. Tracking the Engine Reports and dwh RPMs was done to determine the popularity of these two tools and to ensure their numbers were comparable. To count downloads, data was gathered each month that listed the total downloads of every file, a number derived from the total hits each file had, minus any 206 hits, which indicated incomplete downloads. Key files for Engine, Engine Reports, and Engine dwh were identified and the data filtered to include counts for each one of the files, in whatever version released. Tracking of Live and Node RPMs was already set up within the awstats reporting, and was taken directly from awstats in each month. If there is any part of this methodology that is in error, feedback is very much appreciated. You should know that since we now have a mirrorlist (which in terms of hit count is already in the top 3) the number could be much lower than the actual RPM downloads. I'd be interested how much traffic is served by mirrors. ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] network issue with vm
Hi Tiemen, have you checked for general network setup issues? Sorry, can only guess here. To check oVirt I suggest to create another VM with a DHCP server. Example: I recently had quite the same problem - it turned out the DHCP server used the wrong gateway. Vlans where configured routed in the switch; thus the DHCP requests reached the server while the offers were not send back via the same gateway. Daniel On Fr, 2014-06-27 at 17:37 +0200, Tiemen Ruiten wrote: On 06/27/14 11:16, Antoni Segura Puimedon wrote: - Original Message - From: Tiemen Ruiten t.rui...@rdmedia.com To: users@ovirt.org Sent: Friday, June 27, 2014 10:43:03 AM Subject: Re: [ovirt-users] network issue with vm On 06/26/14 17:20, Tiemen Ruiten wrote: Hello, I set up an oVirt cluster and created my first VM. However I can not seem to get any network connectivity going. The VM is set up to receive an IP address via DHCP. I can see the DHCP request come in on the DHCP-server, but subsequently, the offer is lost somewhere. Even when I configure a fixed IP, I can not ping any host but the VM itself and the IP in the same VLAN on the hypervisor. My network settings are in the attachment (output of sudo vdsClient -s localhost getVdsCaps caps.txt on the hypervisor). Is there something I should configure on the switch maybe (it's a Cisco 3560G)? bonding mode 4 which is the most natural choice, requires configuration of the switch ports for lacp. Why is it the most natural choice? On http://www.gluster.org/community/documentation/index.php/Network_Configuration_Techniques mode 6 is recommended. My storage domain is type GlusterFS. Mode 6 is not an option in the oVirt interface though. Anyway, since the traffic seems to go out from the VM interface, through the hypervisor bridge+bond and the switch and arrives at the DHCP-server, could this really be an issue with LACP? What else can I try? -- Daniel Helgenberger m box bewegtbild GmbH P: +49/30/2408781-22 F: +49/30/2408781-10 ACKERSTR. 19 D-10115 BERLIN www.m-box.de www.monkeymen.tv Geschäftsführer: Martin Retschitzegger / Michaela Göllner Handeslregister: Amtsgericht Charlottenburg / HRB 112767 smime.p7s Description: S/MIME cryptographic signature ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
[ovirt-users] Node down,but ovirt still shows VM as up
Hi, I am using Cisco UCS C200 M2 as Host running Centos 6.5 and KVM, Power Management not working properly,hence even with Node down Ovirt shows VM as still up,with uptime of VM increasing(on the manager) if i continue and save the changes its causing problems: 1. HA is not working ( Node status changed to Non responsive but VM status still up!! 2. Restart of Host gives wrong information-it shows host as rebooting but actually nothing is happening to Host!! While configuring power management: On ovirtmanager edited Power management and chose cisco_ucs with proper authentication to CIMC,but when clicked on test,it shows *Test Failed, Failed: You have to enter plug number Please use '-h' for usage * What is this plug,i couldn't find anything in CIMC This can be the reason for failure of HA and restart Can someone please help me fix this Thanks ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] Spam Re: CPU Flags
On 06/27/2014 09:14 AM, Maurice James wrote: Is there anything else that I need to do beside installing those vdsm hooks? I ask because you said that its not available in stock el6 You need to check if nested KVM support is enabled on your machine cat /sys/module/kvm_intel/parameters/nested If the answer is N: echo options kvm-intel nested=1 /etc/modprobe.d/kvm-intel.conf Then reboot. This and vdsm-hook-nestedvt package should be enough. - Original Message - From: Dan Kenigsberg dan...@redhat.com To: Maurice James mja...@media-node.com Cc: users users@ovirt.org Sent: Friday, June 27, 2014 4:27:50 AM Subject: Re: [ovirt-users] CPU Flags On Thu, Jun 26, 2014 at 06:49:00PM -0400, Maurice James wrote: Is it possible to pass the vmx extension to a guest? Yes, but you need nested kvm support in the host (which is not available in stock el6), and to install the nestedvt hook. More about it in http://community.redhat.com/blog/2013/08/testing-ovirt-3-3-with-nested-kvm/ Is that what the vhost custom property is for? Nope, that's to turn off a certain type of vNIC optimization that used to be detrimental to certain guests. ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
[ovirt-users] Slides / Demo info to do a presentation to a small group.
I remember reading someone was working on putting together a kinda starter kit for doing a presentation on oVirt. Can someone point me at those resources. I recent joined a maker (hacker) space in my area and part of what they do is workshops on different thing I would like to do a workshop on oVirt. This will be a small group anywhere from 5 to 25 people so not a large number. Thanks Robert ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] Convert vmware vm
Hello, But it's in the roadmap a gui converter v2v, or better, insert a menu in the manager where i can import several type of vm like .ovf or .vmk Thanks, Massimo 2014-06-27 13:40 GMT+02:00 Sandro Bonazzola sbona...@redhat.com: Il 27/06/2014 07:41, Koen Vanoppen ha scritto: II created this document for the company where I work. Maybe it is userfull for you too: Migrate from VMWare to oVirt 1.On VmWare: a.Export the VM to ovf format. There is a smb/nfs share on virt-v2v you can use as storage. i.NFS: Virtv2v.:/media/Storage ii.SMB: virtv2v. share: virtv2v 2.with virtv2v a.Log in on the virt-v2v vm. b.Locate and Extract the ovf file with tar –xvf c.Convert the extracted vmdk file to raw disk format with the following command: vboxmanage clonehd --format RAW VMNAME.vmdk NewVMName.raw d.Convert the created RAW file to a qemu2 img: qemu-img convert -f raw VM-Name.raw -O qcow2 VMName.qcow2 e.Run the vm in virsh: virt-install --connect qemu:///system --ram 1024 -n griffu -r 2048 --os-type=linux --os-variant=rhel6 --disk path=/media/Storage/VMName.qcow2,device=disk,format=qcow2 --vcpus=2 --vnc --noautoconsole –import f.Take a xml dump of the VM and copy the result in a new file VMName.xml virsh dumpxml VMName g.Now let’s move the vm to ovirt. Make sure the nfs is attached to the TestDev Datacenter. virt-v2v -i libvirtxml -ic qemu+ssh://FQDN-Hypervisor /system -o rhev -os FQDN-NFS-exportdomainserver:/media/NfsProgress -n ovirtmgmt VMName.xml Can you create a page on oVirt Wiki? I think it may be useful to have this there too. Thanks! 2014-06-24 15:19 GMT+02:00 Massimo Mad mad196...@gmail.com mailto: mad196...@gmail.com: Hello, I downloaded an image .vmdk from a repository and wanted to import it into my oVirt infrastructure. Is it possible? If it is possible how? Thanks, Massimo ___ Users mailing list Users@ovirt.org mailto:Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users -- Sandro Bonazzola Better technology. Faster innovation. Powered by community collaboration. See how it works at redhat.com ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
Re: [ovirt-users] Slides / Demo info to do a presentation to a small group.
Hello Robert, On 06/27/2014 03:00 PM, Robert Middleswarth wrote: I remember reading someone was working on putting together a kinda starter kit for doing a presentation on oVirt. Can someone point me at those resources. I recent joined a maker (hacker) space in my area and part of what they do is workshops on different thing I would like to do a workshop on oVirt. This will be a small group anywhere from 5 to 25 people so not a large number. We have shared the slides from last FISL (2014) here: http://www.ovirt.org/OVirt_Slide_Decks Some topics includes: - oVirt Overview - oVirt Community Status - oVirt Installation Process - oVirt 3.4 New Features - V2V - Migrating virtual machines to oVirt and others. I hope it helps. -- Cheers Douglas ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
[ovirt-users] Spam Re: Spam Re: Spam Re: Spam Misreporting network activity
More info from vdsClient -s 0 getVdsStats ksmCpu = 0 ksmPages = 64 ksmState = False memAvailable = 26894 memCommitted = 4161 memFree = 27540 memShared = 750366 memUsed = '86' momStatus = 'active' netConfigDirty = 'False' - Original Message - From: Maurice James mja...@media-node.com To: Dan Kenigsberg dan...@redhat.com Cc: users users@ovirt.org Sent: Friday, June 27, 2014 3:35:33 PM Subject: [ovirt-users] Spam Re: Spam Re: Spam Misreporting network activity Looks like I spoke too soon. I think there is a caching problem. I attached a screen shot so that you can see what I mean. The memory is no where near 86% utilization. I logged in from different host and different browsers to make sure that it wasnt a browser issue. - Original Message - From: Maurice James mja...@media-node.com To: Dan Kenigsberg dan...@redhat.com Cc: users users@ovirt.org Sent: Friday, June 27, 2014 8:25:02 AM Subject: [ovirt-users] Spam Re: Spam Misreporting network activity Looks like it cleared up after I restarted the engine and vdsm - Original Message - From: Dan Kenigsberg dan...@redhat.com To: Maurice James mja...@media-node.com Cc: users users@ovirt.org Sent: Friday, June 27, 2014 4:33:43 AM Subject: Re: [ovirt-users] Spam Misreporting network activity On Thu, Jun 26, 2014 at 10:26:27PM -0400, Maurice James wrote: My setup is reporting that one of the NICs in a bond pair is receiving 770Mbps even though I shut it off (ifconfig em2 down). I refreshed the page several times. I even restarted the engine just in case it was a caching issue. I thought that it was a caching issue because rx is always at 770Mbps and tx is always at 350Mbps. I put the node into maintenance mode because it was constantly showing 77% network utilization My troubleshooting steps were Put the node into maintenance mode Migrate all VMs to another host Restart network services on the host Restart the ovirt-engine Restart the interface Logging into the engine via Firefox and Chrome yields the exact same results even with em2 in a down state Could you log into the relevant host and run vdsClient -s 0 getVdsStats to see what Vdsm reports to Engine? Could you do cat /sys/class/net/em2/statistics/?x_bytes sleep 10 \ cat /sys/class/net/em2/statistics/?x_bytes to see what the kernel reports to Vdsm? ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users
[ovirt-users] Tune HA timing,is it possible
Hi, Is it possible to tune time required to reboot VM in case of host failures. in our test we powered off one of the Host. Manager was still showing both Guest and Host as UP for around 5 minutes and after that it took another 4-5 minutes to start VM. Is there any tunable parameter that can be modified to bring down the time required to recognize Host failures. Thanks ___ Users mailing list Users@ovirt.org http://lists.ovirt.org/mailman/listinfo/users