[ovirt-users] Re: ovirt-websocket-proxy errors when trying noVNC

2020-05-28 Thread Strahil Nikolov via Users
Hi Louis,

can you install a fresh browser and try to open the Engine's web interface.
Do you see a certificate  warning or it just opens.
I'm asking for a fresh browser because some browsers can accept certificates 
that while the other apps  on the system do not accept (certificate is  not in 
the windows cert store).

Also,  how did you configure the noVNC ?

Best Regards,
Strahil Nikolov

На 28 май 2020 г. 19:17:09 GMT+03:00, Louis Bohm  написа:
>Do not have Ncat on my windows vm but I can telnet to port 6100 on the
>engine from both my windows vm and my MAC.
>
>Louis
>-<<—->>-
>Louis Bohm
>louisb...@gmail.com
>
>
>
>
>> On May 28, 2020, at 12:03 PM, Strahil Nikolov 
>wrote:
>> 
>> Are you in the same network segment as the Engine ?
>> Maybe there  is a firewall preventing you to reach port 6100/tcp .
>> What is the output from ncat  -v engine-FQDN 6100
>> 
>> Best Regards,
>> Strahil Nikolov
>> 
>> На 27 май 2020 г. 18:48:31 GMT+03:00, Louis Bohm > написа:
>>> I am running MAC OS X but I was able to import the CA Cert and I can
>>> see it in my Keychain.  However, when I try to bring up the console
>I
>>> get:
>>> Can't connect to websocket proxy server
>>> wss://lfg-kvm.corp.lfg.com:6100 .
>Please check that:
>>> websocket proxy service is running,
>>> firewalls are properly set,
>>> websocket proxy certificate is trusted by your browser. Default CA
>>> certificate
>>>
>>.
>>> 
>>> 
>>> Louis
>>> -<<—->>-
>>> Louis Bohm
>>> louisb...@gmail.com 
>>> 
>>>
>>
>>>
>>
>>> 
 On May 27, 2020, at 11:01 AM, Scott Dickerson >
>>> wrote:
 
 
 On Wed, May 27, 2020 at 7:42 AM Louis Bohm 
>>> >> wrote:
 OS: Oracle Linux 7.8 (unbreakable kernel)
 Using Oracle Linux Virtualization Manager: Software
>>> Version:4.3.6.6-1.0.9.el7
 
 Since I am running all of it on one physical machine I opted to
>>> install the ovirt-engine using the accept defaults option.
 
 When I try to start a noVNC console I see this in the messages
>file:
 May 26 16:49:12 lfg-kvm saslpasswd2: Could not find keytab file:
>>> /etc/qemu/krb5.tab: No such file or directory
 May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from
>>> sasldb: BDB0073 DB_NOTFOUND: No matching key/data pair found
 May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from
>>> sasldb: BDB0073 DB_NOTFOUND: No matching key/data pair found
 May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from
>>> sasldb: BDB0073 DB_NOTFOUND: No matching key/data pair found
 May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from
>>> sasldb: BDB0073 DB_NOTFOUND: No matching key/data pair found
 May 26 16:49:14 lfg-kvm journal: 2020-05-26 16:49:14,704-0400
>>> ovirt-websocket-proxy: INFO msg:824 handler exception: [SSL:
>>> SSLV3_ALERT_CERTIFICATE_UNKNOWN] sslv3 alert certificate unknown
>>> (_ssl.c:618)
 May 26 16:49:14 lfg-kvm ovirt-websocket-proxy.py:
>>> ovirt-websocket-proxy[14582] INFO msg:824 handler exception: [SSL:
>>> SSLV3_ALERT_CERTIFICATE_UNKNOWN] sslv3 alert certificate unknown
>>> (_ssl.c:618)
 
 I have checked the following:
 [root@lfg-kvm ~]#  engine-config -g WebSocketProxy
 WebSocketProxy: lfg-kvm.corp.lfg.com:6100
>
>>> > version: general
 [root@lfg-kvm ~]# engine-config -g SpiceProxyDefault
 SpiceProxyDefault: http://lfg-kvm.corp.lfg.com:6100
>
>>> > version: general
 
 This is a brand new install.
 
 I also am unable to get a VNC console up and running.  I have tried
>>> with an Ubuntu VM running on my MAC where I installed virt-manager. 
>>> The viewer comes up for a second says it cannot connect and then
>>> shutsdown.
 
 
 If you're only using noVNC, then you need to make sure you import
>the
>>> CA Cert and trust it in your browser.  There is no way to
>interactively
>>> accept the self-signed cert from the engine when noVNC co

[ovirt-users] Re: Issues deploying 4.4 with HE on new EPYC hosts

2020-05-28 Thread Lucia Jelinkova
When you look into the detail of external-HostedEngineLocal, Genral tab,
what is its Origin?

On Thu, May 28, 2020 at 11:53 PM Gianluca Cecchi 
wrote:

> On Thu, May 28, 2020 at 3:09 PM Gianluca Cecchi 
> wrote:
>
> [snip]
>
>>
>>
>> for the cluster type in the mean time I was able to change it to "Intel
>> Cascadelake Server Family" from web admin gui and now I have to try
>> these steps and see if engine starts automatically without manual operations
>>
>> 1) set global maintenance
>> 2) shutdown engine
>> 3) exit maintenance
>> 4) see if the engine vm starts without the cpu flag
>>
>>
> I confirm that point 4) was successful and engine vm was able to
> autostart, after changing cluster type.
> I'm also able to connect to its console from web admin gui
>
> The command line generated now is:
>
> qemu 29450 1 43 23:38 ?00:03:09 /usr/libexec/qemu-kvm
> -name guest=HostedEngine,debug-threads=on -S -object
> secret,id=masterKey0,format=raw,file=/var/lib/libvirt/qemu/domain-10-HostedEngine/master-key.aes
> -machine pc-q35-rhel8.1.0,accel=kvm,usb=off,dump-guest-core=off -cpu
> Cascadelake-Server,hle=off,rtm=off,arch-capabilities=on -m
> size=16777216k,slots=16,maxmem=67108864k -overcommit mem-lock=off -smp
> 2,maxcpus=32,sockets=16,cores=2,threads=1 -object iothread,id=iothread1
> -numa node,nodeid=0,cpus=0-31,mem=16384 -uuid
> b572d924-b278-41c7-a9da-52c4f590aac1 -smbios
> type=1,manufacturer=oVirt,product=RHEL,version=8-1.1911.0.9.el8,serial=d584e962-5461-4fa5-affa-db413e17590c,uuid=b572d924-b278-41c7-a9da-52c4f590aac1,family=oVirt
> -no-user-config -nodefaults -device sga -chardev
> socket,id=charmonitor,fd=40,server,nowait -mon
> chardev=charmonitor,id=monitor,mode=control -rtc
> base=2020-05-28T21:38:21,driftfix=slew -global
> kvm-pit.lost_tick_policy=delay -no-hpet -no-reboot -global
> ICH9-LPC.disable_s3=1 -global ICH9-LPC.disable_s4=1 -boot strict=on -device
> pcie-root-port,port=0x10,chassis=1,id=pci.1,bus=pcie.0,multifunction=on,addr=0x2
> -device pcie-root-port,port=0x11,chassis=2,id=pci.2,bus=pcie.0,addr=0x2.0x1
> -device pcie-root-port,port=0x12,chassis=3,id=pci.3,bus=pcie.0,addr=0x2.0x2
> -device pcie-root-port,port=0x13,chassis=4,id=pci.4,bus=pcie.0,addr=0x2.0x3
> -device pcie-root-port,port=0x14,chassis=5,id=pci.5,bus=pcie.0,addr=0x2.0x4
> -device pcie-root-port,port=0x15,chassis=6,id=pci.6,bus=pcie.0,addr=0x2.0x5
> -device pcie-root-port,port=0x16,chassis=7,id=pci.7,bus=pcie.0,addr=0x2.0x6
> -device pcie-root-port,port=0x17,chassis=8,id=pci.8,bus=pcie.0,addr=0x2.0x7
> -device
> pcie-root-port,port=0x18,chassis=9,id=pci.9,bus=pcie.0,multifunction=on,addr=0x3
> -device
> pcie-root-port,port=0x19,chassis=10,id=pci.10,bus=pcie.0,addr=0x3.0x1
> -device
> pcie-root-port,port=0x1a,chassis=11,id=pci.11,bus=pcie.0,addr=0x3.0x2
> -device
> pcie-root-port,port=0x1b,chassis=12,id=pci.12,bus=pcie.0,addr=0x3.0x3
> -device
> pcie-root-port,port=0x1c,chassis=13,id=pci.13,bus=pcie.0,addr=0x3.0x4
> -device
> pcie-root-port,port=0x1d,chassis=14,id=pci.14,bus=pcie.0,addr=0x3.0x5
> -device
> pcie-root-port,port=0x1e,chassis=15,id=pci.15,bus=pcie.0,addr=0x3.0x6
> -device
> pcie-root-port,port=0x1f,chassis=16,id=pci.16,bus=pcie.0,addr=0x3.0x7
> -device pcie-root-port,port=0x20,chassis=17,id=pci.17,bus=pcie.0,addr=0x4
> -device pcie-pci-bridge,id=pci.18,bus=pci.1,addr=0x0 -device
> qemu-xhci,p2=8,p3=8,id=ua-b630a65c-8156-4542-b8e8-98b4d2c48f67,bus=pci.4,addr=0x0
> -device
> virtio-scsi-pci,iothread=iothread1,id=ua-b7696ce2-fd8c-4856-8c38-197fc520271b,bus=pci.5,addr=0x0
> -device
> virtio-serial-pci,id=ua-608f9599-30b2-4ee6-a0d3-d5fb588583ad,max_ports=16,bus=pci.3,addr=0x0
> -drive if=none,id=drive-ua-fa671f6c-dc42-4c59-a66d-ccfa3d5d422b,readonly=on
> -device
> ide-cd,bus=ide.2,drive=drive-ua-fa671f6c-dc42-4c59-a66d-ccfa3d5d422b,id=ua-fa671f6c-dc42-4c59-a66d-ccfa3d5d422b,werror=report,rerror=report
> -drive
> file=/var/run/vdsm/storage/3df8f6d4-d572-4d2b-9ab2-8abc456a396f/df02bff9-2c4b-4e14-a0a3-591a84ccaed9/bf435645-2999-4fb2-8d0e-5becab5cf389,format=raw,if=none,id=drive-ua-df02bff9-2c4b-4e14-a0a3-591a84ccaed9,cache=none,aio=threads
> -device
> virtio-blk-pci,iothread=iothread1,scsi=off,bus=pci.6,addr=0x0,drive=drive-ua-df02bff9-2c4b-4e14-a0a3-591a84ccaed9,id=ua-df02bff9-2c4b-4e14-a0a3-591a84ccaed9,bootindex=1,write-cache=on,serial=df02bff9-2c4b-4e14-a0a3-591a84ccaed9,werror=stop,rerror=stop
> -netdev
> tap,fds=43:44,id=hostua-b29ca99f-a53e-4de7-8655-b65ef4ba5dc4,vhost=on,vhostfds=45:46
> -device
> virtio-net-pci,mq=on,vectors=6,host_mtu=1500,netdev=hostua-b29ca99f-a53e-4de7-8655-b65ef4ba5dc4,id=ua-b29ca99f-a53e-4de7-8655-b65ef4ba5dc4,mac=00:16:3e:0a:96:80,bus=pci.2,addr=0x0
> -chardev socket,id=charserial0,fd=47,server,nowait -device
> isa-serial,chardev=charserial0,id=serial0 -chardev
> socket,id=charchannel0,fd=48,server,nowait -device
> virtserialport,bus=ua-608f9599-30b2-4ee6-a0d3-d5fb588583ad.0,nr=1,chardev=charchannel0,id=channel0,name=ovirt-guest-agent.0
> -chardev socket,id=charchannel1,fd

[ovirt-users] Re: oVirt 4.4 install fails

2020-05-28 Thread Me
Thanks Michael.

I am further on, the engine is running an now at stage 4 Storage.
I have a new FC lun with 2 paths on the install node, recently attached
with no partitions, when I select Storage Type Fiber Channel and press
Discover, I see two disks.

ID: 3600c0ff00019eb74f1efa95e0100
Size (GiB): 93.00
Description: XX SAN
Status: used
Number of Paths: 2

ID: SAMSUNG_MZ7KM960HAHP-0E005_XXX
Size (GiB): 751.00
Description: ATA SAMSUNG MZ7KM960
Status: used
Number of Paths: 1

Both have a warning icon next to them and neither can be selected,
obviously I want to select LUN on the SAN, but can't.

On the install node in storage, I see the following.

Drive
Model
XX SAN
Firmware Version
xxx
Serial Number
00c0ff19eb74f1efa95e0100
World Wide Name
0x600c0ff00019eb74f1efa95e0100
Capacity
93.1 GiB, 100 GB, 6401664 bytes
Device File
/dev/mapper/3600c0ff00019eb74f1efa95e0100
Multipathed Devices
/dev/sdc /dev/sdd

How do I proceed?

M

On Thu, 2020-05-28 at 15:12 -0500, Michael Thomas wrote:
> On 5/28/20 2:48 PM, Me wrote:
> > Hi All
> > 
> > Not sure where to start, but here goes.
> > 
> [...]
> > Issue 2, I use FF 72.0.2 on Linux x64 to connect by
> > https://hostname:9090 to the web interface, but I can't enter login
> > details as the boxes (everything) are disabled There is no warning
> > like "we don't like your choice of browser", but the screen is a not
> > very accessible dark grey on darker grey (a poor choice in what I
> > thought were more enlightened times) so this maybe the case. I have
> > disabled all security add-ons in FF, makes no difference.
> 
> I ran into this one today as well.  I found that the mouse would not 
> work on any of the text boxes or buttons using FF, but I could use  
> to navigate through the screen and enter the username/password.
> 
> --Mike
> ___
> Users mailing list -- users@ovirt.org
> To unsubscribe send an email to users-le...@ovirt.org
> Privacy Statement: https://www.ovirt.org/privacy-policy.html
> oVirt Code of Conduct: 
> https://www.ovirt.org/community/about/community-guidelines/
> List Archives: 
> https://lists.ovirt.org/archives/list/users@ovirt.org/message/HLM3C4HJAJ66F4CGT7PKKPYFLBEWYGLF/


___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/JUBRKZOVPXPBCMNRPTAYQRLABTBU4U3L/


[ovirt-users] Re: PKIX path error

2020-05-28 Thread Stack Korora
On 2020-05-28 16:07, Strahil Nikolov wrote:
> Can you check 
> https://www.ovirt.org/documentation/admin-guide/appe-oVirt_and_SSL.html  just 
>  in case you  missed  a  step ?
>
> Best  Regards,
> Strahil  Nikolov

Greetings,

Thanks for replying.

I was going to argue a bit since the way my certs come are in different
formats so my commands are a bit different then the directions. But I
went through step by step. Got to the end, and the internal
authentication was working with the right SSL cert! My LDAP
authentication was missing though...it looks correct.

So I redid all the steps for adding LDAP. At the end of the
ovirt-engine-extension-aaa-ldap-setup script, I can test accounts and
search so I know that is correct. My cert is in the right .jks file.
Still nothing I do shows anything but internal.

So I scrapped the changes and started over. Round three on a fresh
reboot (just in case I missed a service) with the SSL certs and
configuring LDAP. SSL works, internal works, ldap doesn't show up as a
drop-down option for the profile.

Grr...Reboot just in case I missed a service again...nope. SSL and
internal work, ldap still not shown in the profile. Tried a different
browser, same thing. Double Grr...

Any suggestions on where I might be going wrong?

Thanks!



___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/A4BKWITWPNPYYVLDVRN4XOSDTN4LPNB3/


[ovirt-users] Re: Issues deploying 4.4 with HE on new EPYC hosts

2020-05-28 Thread Gianluca Cecchi
On Thu, May 28, 2020 at 3:09 PM Gianluca Cecchi 
wrote:

[snip]

>
>
> for the cluster type in the mean time I was able to change it to "Intel
> Cascadelake Server Family" from web admin gui and now I have to try these
> steps and see if engine starts automatically without manual operations
>
> 1) set global maintenance
> 2) shutdown engine
> 3) exit maintenance
> 4) see if the engine vm starts without the cpu flag
>
>
I confirm that point 4) was successful and engine vm was able to autostart,
after changing cluster type.
I'm also able to connect to its console from web admin gui

The command line generated now is:

qemu 29450 1 43 23:38 ?00:03:09 /usr/libexec/qemu-kvm -name
guest=HostedEngine,debug-threads=on -S -object
secret,id=masterKey0,format=raw,file=/var/lib/libvirt/qemu/domain-10-HostedEngine/master-key.aes
-machine pc-q35-rhel8.1.0,accel=kvm,usb=off,dump-guest-core=off -cpu
Cascadelake-Server,hle=off,rtm=off,arch-capabilities=on -m
size=16777216k,slots=16,maxmem=67108864k -overcommit mem-lock=off -smp
2,maxcpus=32,sockets=16,cores=2,threads=1 -object iothread,id=iothread1
-numa node,nodeid=0,cpus=0-31,mem=16384 -uuid
b572d924-b278-41c7-a9da-52c4f590aac1 -smbios
type=1,manufacturer=oVirt,product=RHEL,version=8-1.1911.0.9.el8,serial=d584e962-5461-4fa5-affa-db413e17590c,uuid=b572d924-b278-41c7-a9da-52c4f590aac1,family=oVirt
-no-user-config -nodefaults -device sga -chardev
socket,id=charmonitor,fd=40,server,nowait -mon
chardev=charmonitor,id=monitor,mode=control -rtc
base=2020-05-28T21:38:21,driftfix=slew -global
kvm-pit.lost_tick_policy=delay -no-hpet -no-reboot -global
ICH9-LPC.disable_s3=1 -global ICH9-LPC.disable_s4=1 -boot strict=on -device
pcie-root-port,port=0x10,chassis=1,id=pci.1,bus=pcie.0,multifunction=on,addr=0x2
-device pcie-root-port,port=0x11,chassis=2,id=pci.2,bus=pcie.0,addr=0x2.0x1
-device pcie-root-port,port=0x12,chassis=3,id=pci.3,bus=pcie.0,addr=0x2.0x2
-device pcie-root-port,port=0x13,chassis=4,id=pci.4,bus=pcie.0,addr=0x2.0x3
-device pcie-root-port,port=0x14,chassis=5,id=pci.5,bus=pcie.0,addr=0x2.0x4
-device pcie-root-port,port=0x15,chassis=6,id=pci.6,bus=pcie.0,addr=0x2.0x5
-device pcie-root-port,port=0x16,chassis=7,id=pci.7,bus=pcie.0,addr=0x2.0x6
-device pcie-root-port,port=0x17,chassis=8,id=pci.8,bus=pcie.0,addr=0x2.0x7
-device
pcie-root-port,port=0x18,chassis=9,id=pci.9,bus=pcie.0,multifunction=on,addr=0x3
-device
pcie-root-port,port=0x19,chassis=10,id=pci.10,bus=pcie.0,addr=0x3.0x1
-device
pcie-root-port,port=0x1a,chassis=11,id=pci.11,bus=pcie.0,addr=0x3.0x2
-device
pcie-root-port,port=0x1b,chassis=12,id=pci.12,bus=pcie.0,addr=0x3.0x3
-device
pcie-root-port,port=0x1c,chassis=13,id=pci.13,bus=pcie.0,addr=0x3.0x4
-device
pcie-root-port,port=0x1d,chassis=14,id=pci.14,bus=pcie.0,addr=0x3.0x5
-device
pcie-root-port,port=0x1e,chassis=15,id=pci.15,bus=pcie.0,addr=0x3.0x6
-device
pcie-root-port,port=0x1f,chassis=16,id=pci.16,bus=pcie.0,addr=0x3.0x7
-device pcie-root-port,port=0x20,chassis=17,id=pci.17,bus=pcie.0,addr=0x4
-device pcie-pci-bridge,id=pci.18,bus=pci.1,addr=0x0 -device
qemu-xhci,p2=8,p3=8,id=ua-b630a65c-8156-4542-b8e8-98b4d2c48f67,bus=pci.4,addr=0x0
-device
virtio-scsi-pci,iothread=iothread1,id=ua-b7696ce2-fd8c-4856-8c38-197fc520271b,bus=pci.5,addr=0x0
-device
virtio-serial-pci,id=ua-608f9599-30b2-4ee6-a0d3-d5fb588583ad,max_ports=16,bus=pci.3,addr=0x0
-drive if=none,id=drive-ua-fa671f6c-dc42-4c59-a66d-ccfa3d5d422b,readonly=on
-device
ide-cd,bus=ide.2,drive=drive-ua-fa671f6c-dc42-4c59-a66d-ccfa3d5d422b,id=ua-fa671f6c-dc42-4c59-a66d-ccfa3d5d422b,werror=report,rerror=report
-drive
file=/var/run/vdsm/storage/3df8f6d4-d572-4d2b-9ab2-8abc456a396f/df02bff9-2c4b-4e14-a0a3-591a84ccaed9/bf435645-2999-4fb2-8d0e-5becab5cf389,format=raw,if=none,id=drive-ua-df02bff9-2c4b-4e14-a0a3-591a84ccaed9,cache=none,aio=threads
-device
virtio-blk-pci,iothread=iothread1,scsi=off,bus=pci.6,addr=0x0,drive=drive-ua-df02bff9-2c4b-4e14-a0a3-591a84ccaed9,id=ua-df02bff9-2c4b-4e14-a0a3-591a84ccaed9,bootindex=1,write-cache=on,serial=df02bff9-2c4b-4e14-a0a3-591a84ccaed9,werror=stop,rerror=stop
-netdev
tap,fds=43:44,id=hostua-b29ca99f-a53e-4de7-8655-b65ef4ba5dc4,vhost=on,vhostfds=45:46
-device
virtio-net-pci,mq=on,vectors=6,host_mtu=1500,netdev=hostua-b29ca99f-a53e-4de7-8655-b65ef4ba5dc4,id=ua-b29ca99f-a53e-4de7-8655-b65ef4ba5dc4,mac=00:16:3e:0a:96:80,bus=pci.2,addr=0x0
-chardev socket,id=charserial0,fd=47,server,nowait -device
isa-serial,chardev=charserial0,id=serial0 -chardev
socket,id=charchannel0,fd=48,server,nowait -device
virtserialport,bus=ua-608f9599-30b2-4ee6-a0d3-d5fb588583ad.0,nr=1,chardev=charchannel0,id=channel0,name=ovirt-guest-agent.0
-chardev socket,id=charchannel1,fd=49,server,nowait -device
virtserialport,bus=ua-608f9599-30b2-4ee6-a0d3-d5fb588583ad.0,nr=2,chardev=charchannel1,id=channel1,name=org.qemu.guest_agent.0
-chardev spicevmc,id=charchannel2,name=vdagent -device
virtserialport,bus=ua-608f9599-30b2-4ee6-a0d3-d5fb588583ad.0,nr=3,chardev=charchannel2,id=channel2,n

[ovirt-users] Re: oVirt 4.4 and installer problem on Dell M620

2020-05-28 Thread Gianluca Cecchi
On Thu, May 28, 2020 at 7:12 PM Strahil Nikolov 
wrote:

> Have you tried  installing in text mode ?
>
>
In theory it switched to it, but nothing was seen on screen, that remained
solid black for minutes.
I retried removing the "quiet" word from kernel boot line and adding
"inst.xdriver=vesa" and correctly switched to text mode.

Gianluca
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/KYU3TCTRE7OVR6W4BE33MGO4AT2B7OJS/


[ovirt-users] Re: oVirt 4.4 install fails

2020-05-28 Thread Michael Thomas

On 5/28/20 2:48 PM, Me wrote:

Hi All

Not sure where to start, but here goes.


[...]

Issue 2, I use FF 72.0.2 on Linux x64 to connect by
https://hostname:9090 to the web interface, but I can't enter login
details as the boxes (everything) are disabled There is no warning
like "we don't like your choice of browser", but the screen is a not
very accessible dark grey on darker grey (a poor choice in what I
thought were more enlightened times) so this maybe the case. I have
disabled all security add-ons in FF, makes no difference.


I ran into this one today as well.  I found that the mouse would not 
work on any of the text boxes or buttons using FF, but I could use  
to navigate through the screen and enter the username/password.


--Mike
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/HLM3C4HJAJ66F4CGT7PKKPYFLBEWYGLF/


[ovirt-users] oVirt 4.4 install fails

2020-05-28 Thread Me
Hi All

Not sure where to start, but here goes.

I'm not totally new to oVirt, I used RHEV V3.x in production for several
years, it was a breeze to setup.

Installing 4.4 on to a host with local SSD and FC for storage.

Issue 1, having selected the SSD for install which has failed 4.4 beta
on it (several times), I reclaim the space and after a few minutes of
not being able to enter a root password on the next install screen, it
fails as it can't delete the data on the SSD! Yes, really tried this
several times, choosing the recover option and getting a prompt,
fdisk /dev/sda delete the two partitions created by oVirt and I can
install. This was the case with the beta I tried a few weeks ago too.

Having reconfigured the switch attached the the host as a dumb 10GBE
port as the enterprise OS installer still doesn't appear to support
anything more advanced like teaming and VLANS, I have the initial
install on the single SSD and a network connection.

Issue 2, I use FF 72.0.2 on Linux x64 to connect by
https://hostname:9090 to the web interface, but I can't enter login
details as the boxes (everything) are disabled There is no warning
like "we don't like your choice of browser", but the screen is a not
very accessible dark grey on darker grey (a poor choice in what I
thought were more enlightened times) so this maybe the case. I have
disabled all security add-ons in FF, makes no difference.

Any suggestions?

M

 





___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/HPMNMKCEFJRSSU57UGLSIJQ5WLYZTPJ7/


[ovirt-users] Re: oVirt 4.4 and installer problem on Dell M620

2020-05-28 Thread Strahil Nikolov via Users
Have you tried  installing in text mode ?

На 28 май 2020 г. 18:53:05 GMT+03:00, Gianluca Cecchi 
 написа:
>Hello,
>I'm trying to install what in subject but it seems the graphical part
>fails...
>In fact the console remains black and if I switch  witch Ctrl+Alt+ F1 I
>see
>this screen
>
>https://drive.google.com/file/d/1mt9ipxNLpe1xadbkXsU-Avh_GnFafNek/view?usp=sharing
>
>Anyone tried on this kind of hardware? Can I try to give any particular
>boot option?
>Thanks,
>Gianluca
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/ET5WPY62YPGJ4CXI3DW2XK4QS5ZELXJW/


[ovirt-users] Re: oVirt4.4 HCI single host mortal combat

2020-05-28 Thread Jiří Sléžka
On 5/27/20 11:19 AM, Jiří Sléžka wrote:
> Hi,
> 
> I am still fighting with oVirt 4.4 installation in HCI single host
> configuration. Seems to be hard fighter... ;-)
> 
> It looks like there is no 4.4 HCI single host installation guide so I am
> using compilation of this sources
> 
> * https://www.ovirt.org/download/
> *
> https://www.ovirt.org/documentation/gluster-hyperconverged/chap-Single_node_hyperconverged.html
> 
> I did
> 
> * clean minimal install of CentOS 8.1
> * setup networks (I am using vlans on bond for internal traffic)
> 
> dnf update -y
> dnf install https://resources.ovirt.org/pub/yum-repo/ovirt-release44.rpm
> 
> dnf install cockpit cockpit-ovirt-dashboard vdsm-gluster
> ovirt-engine-appliance glusterfs-server gluster-ansible-roles
> 
> systemctl enable --now cockpit.socket
> firewall-cmd --add-service=cockpit
> firewall-cmd --add-service=cockpit --permanent
> 
> ssh-keygen
> ssh-copy-id root@10.0.4.11
> ssh root@10.0.4.11
> 
> (10.0.4.11 is local address on vlan which I would like use as storage
> network)
> 
> I would like to run gluster-ansible-roles from command line but I am not
> sure how exactly do it right way so I am going the cockpit way and the
> gluster part works like expected.
> 
> Next Boss is HE install
> 
> Round 1, Fight!
> 
> The hosted engine wizzard ends with missing ca-cert.pem (unfortunately I
> close the window and cannot find that log anymore). But it looks to me
> like problem mentioned in
> https://lists.ovirt.org/archives/list/users@ovirt.org/message/4PUIES2JGAFHJY6BJG5MQY4URRE3STKS/
> 
> I have switched to command line...
> 
> Round 2, Fight!
> 
> ovirt-hosted-engine-cleanup
> 
> ovirt-hosted-engine-setup
> 
> [ ERROR ] fatal: [localhost]: FAILED! => {"changed": false, "msg": "The
> host has been set in non_operational status, deployment errors:   code
> 505: Host ovirt-hci01.stud.slu.cz installation failed. Failed to
> configure management network on the host.,code 9000: Failed to
> verify Power Management configuration for Host ovirt-hci01.stud.slu.cz.,
>   fix accordingly and re-deploy."}
> 
> /var/log/ovirt-hosted-engine-setup/ovirt-hosted-engine-setup-20200526210340-h7waks.log
> 
> interesting thing is the vm looks like running in some way
> 
> ps aux | grep kvm
> qemu 26790 58.2  6.6 6927972 3295760 ? Sl   21:28  12:40
> /usr/libexec/qemu-kvm -name guest=HostedEngineLocal,debug-threads=on -S
> -object
> secret,id=masterKey0,format=raw,file=/var/lib/libvirt/qemu/domain-1-HostedEngineLocal/master-key.aes
> -machine pc-q35-rhel8.1.0,accel=kvm,usb=off,dump-guest-core=off -cpu
> Nehalem-IBRS,vme=on,ss=on,x2apic=on,tsc...
> ...
> 
> but
> 
> hosted-engine --vm-status
> It seems like a previous attempt to deploy hosted-engine failed or it's
> still in progress. Please clean it up before trying again
> 
> hosted-engine --check-deployed
> The hosted engine has not been deployed
> 
> ok...
> 
> Round 3, Fight!
> 
> ovirt-hosted-engine-cleanup
> 
> ovirt-hosted-engine-setup --config-append=/root/answers-20200526214934.conf
> 
> [ ERROR ] fatal: [localhost]: FAILED! => {"changed": true, "cmd":
> ["virt-install", "-n", "HostedEngineLocal", "--os-variant", "rhel8.0",
> "--virt-type", "kvm", "--memory", "4096", "--vcpus", "2", "--network",
> "network=default,mac=00:16:3e:7a:ce:77,model=virtio", "--disk",
> "/var/tmp/localvmc7szuw4y/images/6c7c4d4b-9c11-485d-98e0-466a09888515/c16b87ac-f9d4-491d-a972-7dc333a324a0",
> "--import", "--disk",
> "path=/var/tmp/localvmc7szuw4y/seed.iso,device=cdrom",
> "--noautoconsole", "--rng", "/dev/random", "--graphics", "vnc",
> "--video", "vga", "--sound", "none", "--controller", "usb,model=none",
> "--memballoon", "none", "--boot", "hd,menu=off", "--clock",
> "kvmclock_present=yes"], "delta": "0:00:04.419991", "end": "2020-05-26
> 22:27:20.730780", "msg": "non-zero return code", "rc": 1, "start":
> "2020-05-26 22:27:16.310789", "stderr": "ERRORinternal error:
> process exited while connecting to monitor: 2020-05-26T20:27:19.254675Z
> qemu-kvm: -object
> tls-creds-x509,id=vnc-tls-creds0,dir=/etc/pki/vdsm/libvirt-vnc,endpoint=server,verify-peer=no:
> Unable to access credentials /etc/pki/vdsm/libvirt-vnc/ca-cert.pem: No
> such file or directory\nDomain installation does not appear to have been
> successful.\nIf it was, you can restart your domain by running:\n  virsh
> --connect qemu:///system start HostedEngineLocal\notherwise, please
> restart your installation.", "stderr_lines": ["ERRORinternal error:
> process exited while connecting to monitor: 2020-05-26T20:27:19.254675Z
> qemu-kvm: -object
> tls-creds-x509,id=vnc-tls-creds0,dir=/etc/pki/vdsm/libvirt-vnc,endpoint=server,verify-peer=no:
> Unable to access credentials /etc/pki/vdsm/libvirt-vnc/ca-cert.pem: No
> such file or directory", "Domain installation does not appear to have
> been successful.", "If it was, you can restart your domain by running:",
> "  virsh --connect qemu:///system start HostedEngineLocal", "otherwise,
> please restart your installation."

[ovirt-users] oVirt 4.3.9 Standalone Engine local DB install documentation

2020-05-28 Thread msantoro--- via Users
Hello,

I am new to oVirt and installing our first dev deployment.  The 4.4 
documentation is RHEL 8.1 specific (i.e. "yum module "), and I cannot 
seem to easily find similar install documentation for the Standalone local DB 
case for 4.3.x.  I am using RHEL 7.x for the time being.  Can someone point me 
to install docs 4.3.x?

Thanks,
Marc
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/M665BM5LJVJAC6G2J3PNY5RNIH5LXLMK/


[ovirt-users] Re: ovirt-websocket-proxy errors when trying noVNC

2020-05-28 Thread Louis Bohm
Do not have Ncat on my windows vm but I can telnet to port 6100 on the engine 
from both my windows vm and my MAC.

Louis
-<<—->>-
Louis Bohm
louisb...@gmail.com

 

 


> On May 28, 2020, at 12:03 PM, Strahil Nikolov  wrote:
> 
> Are you in the same network segment as the Engine ?
> Maybe there  is a firewall preventing you to reach port 6100/tcp .
> What is the output from ncat  -v engine-FQDN 6100
> 
> Best Regards,
> Strahil Nikolov
> 
> На 27 май 2020 г. 18:48:31 GMT+03:00, Louis Bohm  > написа:
>> I am running MAC OS X but I was able to import the CA Cert and I can
>> see it in my Keychain.  However, when I try to bring up the console I
>> get:
>> Can't connect to websocket proxy server
>> wss://lfg-kvm.corp.lfg.com:6100 . Please 
>> check that:
>> websocket proxy service is running,
>> firewalls are properly set,
>> websocket proxy certificate is trusted by your browser. Default CA
>> certificate
>> >  
>> >.
>> 
>> 
>> Louis
>> -<<—->>-
>> Louis Bohm
>> louisb...@gmail.com 
>> 
>> >  
>> >
>> >  
>> >
>> 
>>> On May 27, 2020, at 11:01 AM, Scott Dickerson >> >
>> wrote:
>>> 
>>> 
>>> On Wed, May 27, 2020 at 7:42 AM Louis Bohm >> 
>> >> wrote:
>>> OS: Oracle Linux 7.8 (unbreakable kernel)
>>> Using Oracle Linux Virtualization Manager: Software
>> Version:4.3.6.6-1.0.9.el7
>>> 
>>> Since I am running all of it on one physical machine I opted to
>> install the ovirt-engine using the accept defaults option.
>>> 
>>> When I try to start a noVNC console I see this in the messages file:
>>> May 26 16:49:12 lfg-kvm saslpasswd2: Could not find keytab file:
>> /etc/qemu/krb5.tab: No such file or directory
>>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from
>> sasldb: BDB0073 DB_NOTFOUND: No matching key/data pair found
>>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from
>> sasldb: BDB0073 DB_NOTFOUND: No matching key/data pair found
>>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from
>> sasldb: BDB0073 DB_NOTFOUND: No matching key/data pair found
>>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from
>> sasldb: BDB0073 DB_NOTFOUND: No matching key/data pair found
>>> May 26 16:49:14 lfg-kvm journal: 2020-05-26 16:49:14,704-0400
>> ovirt-websocket-proxy: INFO msg:824 handler exception: [SSL:
>> SSLV3_ALERT_CERTIFICATE_UNKNOWN] sslv3 alert certificate unknown
>> (_ssl.c:618)
>>> May 26 16:49:14 lfg-kvm ovirt-websocket-proxy.py:
>> ovirt-websocket-proxy[14582] INFO msg:824 handler exception: [SSL:
>> SSLV3_ALERT_CERTIFICATE_UNKNOWN] sslv3 alert certificate unknown
>> (_ssl.c:618)
>>> 
>>> I have checked the following:
>>> [root@lfg-kvm ~]#  engine-config -g WebSocketProxy
>>> WebSocketProxy: lfg-kvm.corp.lfg.com:6100 
>>> 
>> > 
>> version: general
>>> [root@lfg-kvm ~]# engine-config -g SpiceProxyDefault
>>> SpiceProxyDefault: http://lfg-kvm.corp.lfg.com:6100 
>>> 
>> > 
>> version: general
>>> 
>>> This is a brand new install.
>>> 
>>> I also am unable to get a VNC console up and running.  I have tried
>> with an Ubuntu VM running on my MAC where I installed virt-manager. 
>> The viewer comes up for a second says it cannot connect and then
>> shutsdown.
>>> 
>>> 
>>> If you're only using noVNC, then you need to make sure you import the
>> CA Cert and trust it in your browser.  There is no way to interactively
>> accept the self-signed cert from the engine when noVNC connects via the
>> websocket proxy.
>>> 
>>> Anyone have any clue?
>>> -<<—->>-
>>> Louis Bohm
>>> louisb...@gmail.com  
>>> >
>>> 
>> >  
>> >
>> >  
>> 

[ovirt-users] Re: AutoStart VMs (was Re: Re: oVirt 4.4.0 Release is now generally available)

2020-05-28 Thread Strahil Nikolov via Users
Hi Derek,

I also  don't like  Python  (and I prefer Salt  instead of Ansible), but 
Ansible is the wiser option /personal opinion/ .
My reasons  - API change , so your  code will eventually will die.
With Ansible -  a  lot  of people use it and there  is a  high  chance that  
some updates the Ansible module that  will do the job even after the API 
changes.

Also,  Ansible is declarative ,  while  python will need more  effort.

Best  Regards,
Strahil Nikolov

На 28 май 2020 г. 4:59:16 GMT+03:00, Derek Atkins  написа:
>Hi,
>
>On Wed, May 27, 2020 5:38 pm, Gianluca Cecchi wrote:
>[snip]
>> But you hated Python, didn't you? ;-)
>
>I do.  Can't stand it.  Doesn't mean I can't read it and/or write it,
>but
>I have to hold my nose doing it.  Syntactic white space?  Eww.  But
>Python
>is already installed and used and, apparently, supported..  And when I
>looked at the examples I found that 90% of what I needed to do was
>already
>implemented, so it turned out to be much easier than expected.
>
>> I downloaded your files, even if I'm far from knowing python
>
>It's pretty much a direct translation of my bash script around
>ovirt-shell.  It does have one feature that the old code didn't, which
>is
>the ability to wait for ovirt to declare that a vm is actually "up".
>
>> try the ansible playbook that gives you more flexibility in my
>opinion
>
>I've never even installed ansible, let alone tried to use it.  I don't
>need flexibility, I need the job to get done.  But I'll take a look
>when I
>get the chance.  Thanks!
>
>> Gianluca
>
>-derek
>
>PS: you (meaning whomever is "in charge" is welcome to add my script(s)
>to
>the examples repo if you feel other people would benefit from seeing it
>there.
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/FUFNIKLAPLPLBGHSSZNMYYBMSVENWXQL/


[ovirt-users] Re: Engine expands CPU and memory

2020-05-28 Thread Strahil Nikolov via Users
Have you tried  to edit the HostedEngine VM in the  UI  ?

Best  Regards,
Strahil Nikolov

На 28 май 2020 г. 4:48:34 GMT+03:00, xil...@126.com написа:
>Hi, everyone. When I use the ovirt cluster, there are multiple virtual
>machines in the cluster.Engine controller shows excessive CPU load
>during administration, I would like to ask if there is a way to extend
>engine controller CPU and memory online, I would be very grateful.thank
>you
>___
>Users mailing list -- users@ovirt.org
>To unsubscribe send an email to users-le...@ovirt.org
>Privacy Statement: https://www.ovirt.org/privacy-policy.html
>oVirt Code of Conduct:
>https://www.ovirt.org/community/about/community-guidelines/
>List Archives:
>https://lists.ovirt.org/archives/list/users@ovirt.org/message/4AVO5RT5DOSJSI4WIULFCTQ5UITW62U3/
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/K6BI64MCFYKFSJFE47WIVM4WQ2WPNGV3/


[ovirt-users] Re: PKIX path error

2020-05-28 Thread Strahil Nikolov via Users
Can you check 
https://www.ovirt.org/documentation/admin-guide/appe-oVirt_and_SSL.html  just  
in case you  missed  a  step ?

Best  Regards,
Strahil  Nikolov

На 27 май 2020 г. 23:10:53 GMT+03:00, Stack Korora  
написа:
>Greetings,
>I have a running oVirt install that's been working for almost 2 years.
>I'm building a _completely_ new install. I mention it because it is
>useful for me to compare configurations when I run into issues like
>this
>one.
>
>Right now there are three physical hosts:
>1x management where I run the engine and db
>2x hypervisor nodes.
>
>I had it up and installed and running smooth this morning on
>4.3.9.4-1.el7 on Scientific Linux 7.8 (fully patched).
>
>I copied over our 3rd party certs from the running system and restarted
>httpd. Perfect. SSL is running!
>/etc/pki/ovirt-engine/apache-ca.pem
>/etc/pki/ovirt-engine/certs/apache.cer
>/etc/pki/ovirt-engine/keys/apache.key.nopass
>
>Next I used ovirt-engine-extension-aaa-ldap-setup to point to our ldap
>server. I did the login and search test and both passed on the command
>line! Horray!
>
>Then I went to the web interface...
>
>sun.security.validator.ValidatorException: PKIX path building failed:
>sun.security.provider.certpath.SunCertPathBuilderException: unable to
>find valid certification path to requested target
>
>I'm digging through logs and I don't see anything close to this error
>except nearly the identical message in engine.log.
>
>ERROR [org.ovirt.engine.core.aaa.servlet.SslPostLoginServlet] (default
>task-2) [] server_error: sun.security.validator.ValidatorException:
>PKIX
>path building failed:
>sun.security.provider.certpath.SunCertPathBuilderException: unable to
>find valid certification path to requested target
>
>I can't log in via the web at all, I only get that message (so I can't
>even test out the local admin). The aaa ldap configuration it generated
>is darn near perfectly identical (just a name change). The certs are
>the
>same. Even when I look in the keystore, the sha1 hashes are the same
>between the two environments!
>
>After over an hour poking at this, I'm completely stumped.
>
>Can someone please give me a pointer on what I should try next?
>
>Thanks!
>~Stack~
>___
>Users mailing list -- users@ovirt.org
>To unsubscribe send an email to users-le...@ovirt.org
>Privacy Statement: https://www.ovirt.org/privacy-policy.html
>oVirt Code of Conduct:
>https://www.ovirt.org/community/about/community-guidelines/
>List Archives:
>https://lists.ovirt.org/archives/list/users@ovirt.org/message/YOR3ATLII3LYIBEYVOKTEE4RIYZGJR76/
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/23P3SRYRF2JXPLMSRRR3H5EED4427DCG/


[ovirt-users] Re: ovirt-websocket-proxy errors when trying noVNC

2020-05-28 Thread Strahil Nikolov via Users
Are you in the same network segment as the Engine ?
Maybe there  is a firewall preventing you to reach port 6100/tcp .
What is the output from ncat  -v engine-FQDN 6100

Best Regards,
Strahil Nikolov

На 27 май 2020 г. 18:48:31 GMT+03:00, Louis Bohm  написа:
>I am running MAC OS X but I was able to import the CA Cert and I can
>see it in my Keychain.  However, when I try to bring up the console I
>get:
>Can't connect to websocket proxy server
>wss://lfg-kvm.corp.lfg.com:6100. Please check that:
>websocket proxy service is running,
>firewalls are properly set,
>websocket proxy certificate is trusted by your browser. Default CA
>certificate
>.
>
>
>Louis
>-<<—->>-
>Louis Bohm
>louisb...@gmail.com
>
>
>
>
>> On May 27, 2020, at 11:01 AM, Scott Dickerson 
>wrote:
>> 
>> 
>> On Wed, May 27, 2020 at 7:42 AM Louis Bohm > wrote:
>> OS: Oracle Linux 7.8 (unbreakable kernel)
>> Using Oracle Linux Virtualization Manager: Software
>Version:4.3.6.6-1.0.9.el7
>> 
>> Since I am running all of it on one physical machine I opted to
>install the ovirt-engine using the accept defaults option.
>> 
>> When I try to start a noVNC console I see this in the messages file:
>> May 26 16:49:12 lfg-kvm saslpasswd2: Could not find keytab file:
>/etc/qemu/krb5.tab: No such file or directory
>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from
>sasldb: BDB0073 DB_NOTFOUND: No matching key/data pair found
>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from
>sasldb: BDB0073 DB_NOTFOUND: No matching key/data pair found
>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from
>sasldb: BDB0073 DB_NOTFOUND: No matching key/data pair found
>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from
>sasldb: BDB0073 DB_NOTFOUND: No matching key/data pair found
>> May 26 16:49:14 lfg-kvm journal: 2020-05-26 16:49:14,704-0400
>ovirt-websocket-proxy: INFO msg:824 handler exception: [SSL:
>SSLV3_ALERT_CERTIFICATE_UNKNOWN] sslv3 alert certificate unknown
>(_ssl.c:618)
>> May 26 16:49:14 lfg-kvm ovirt-websocket-proxy.py:
>ovirt-websocket-proxy[14582] INFO msg:824 handler exception: [SSL:
>SSLV3_ALERT_CERTIFICATE_UNKNOWN] sslv3 alert certificate unknown
>(_ssl.c:618)
>> 
>> I have checked the following:
>> [root@lfg-kvm ~]#  engine-config -g WebSocketProxy
>> WebSocketProxy: lfg-kvm.corp.lfg.com:6100
> version: general
>> [root@lfg-kvm ~]# engine-config -g SpiceProxyDefault
>> SpiceProxyDefault: http://lfg-kvm.corp.lfg.com:6100
> version: general
>> 
>> This is a brand new install.
>> 
>> I also am unable to get a VNC console up and running.  I have tried
>with an Ubuntu VM running on my MAC where I installed virt-manager. 
>The viewer comes up for a second says it cannot connect and then
>shutsdown.
>> 
>> 
>> If you're only using noVNC, then you need to make sure you import the
>CA Cert and trust it in your browser.  There is no way to interactively
>accept the self-signed cert from the engine when noVNC connects via the
>websocket proxy.
>>  
>> Anyone have any clue?
>> -<<—->>-
>> Louis Bohm
>> louisb...@gmail.com 
>> 
>
>
>> ___
>> Users mailing list -- users@ovirt.org 
>> To unsubscribe send an email to users-le...@ovirt.org
>
>> Privacy Statement: https://www.ovirt.org/privacy-policy.html
>
>> oVirt Code of Conduct:
>https://www.ovirt.org/community/about/community-guidelines/
>
>> List Archives:
>https://lists.ovirt.org/archives/list/users@ovirt.org/message/U66GSTI4QJSGPM6LUVF2WC2UW5JQCNCX/
>
>> 
>> 
>> -- 
>> Scott Dickerson
>> Senior Software Engineer
>> RHV-M Engineering - UX Team
>> Red Hat, Inc
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/TUCHAHFZYDPWKRUEV64XFWTTGBPOHUBO/


[ovirt-users] Re: oVirt not using local GlusterFS bricks

2020-05-28 Thread Strahil Nikolov via Users
If you don't have  pending heals  constantly  - the FUSE clients are  using  
all 3  bricks.

What is your storage  domain mount  options  ?

My guess is that if you set a host in maintenance (and mark it to stop the 
gluster) and then start gluster (you can also run gluster volume start with the 
force option) and activate the host - it will fix everything.

Why do  you think that ovirt1/3  use  only ovirt2  for storage ?

I  am using the following bash function (you can add it to .bashrc and source 
.bashrc)  to find if any client is disconnected. You  will need to run it on 
all gluster nodes:

gluster-check-connection(){
VOLUME=$(gluster volume list | grep -v gluster_shared_storage )
for i in $VOLUME
do
VOLUME_PATH=$(echo $i | sed 's/_/__/')
grep -i connected 
/rhev/data-center/mnt/glusterSD/gluster1\:_$VOLUME_PATH/.meta/graphs/active/${i}-client-*/private
done
}

Here  is a sample output (you should see similar:

[root@ovirt1 ~]# gluster-check-connection
/rhev/data-center/mnt/glusterSD/gluster1:_data/.meta/graphs/active/data-client-0/private:connected
 = 1
/rhev/data-center/mnt/glusterSD/gluster1:_data/.meta/graphs/active/data-client-1/private:connected
 = 1
/rhev/data-center/mnt/glusterSD/gluster1:_data/.meta/graphs/active/data-client-2/private:connected
 = 1

/rhev/data-center/mnt/glusterSD/gluster1:_engine/.meta/graphs/active/engine-client-0/private:connected
 = 1
/rhev/data-center/mnt/glusterSD/gluster1:_engine/.meta/graphs/active/engine-client-1/private:connected
 = 1
/rhev/data-center/mnt/glusterSD/gluster1:_engine/.meta/graphs/active/engine-client-2/private:connected
 = 1


Best  Regards,
Strahil Nikolov

На 27 май 2020 г. 17:45:36 GMT+03:00, Randall Wood  
написа:
>I have a three node oVirt 4.3.7 cluster that is using GlusterFS as the
>underlying storage (each oVirt node is a GlusterFS node). The nodes are
>named ovirt1, ovirt2, and ovirt3. This has been working wonderfully
>until last week when ovirt2 crashed (it is *old* hardware; this was not
>entirely unexpected).
>
>Now I have this situation: all three oVirt nodes are acting as if the
>GlusterFS volumes only exist on ovirt2. The bricks on all three nodes
>appear to be in sync.
>
>I *think* this began happening after I restarted ovirt2 (once hard, and
>once soft) and then restarted glusterd (and only glusterd) on ovirt1
>and ovirt3 after `gluster-eventsapi status` on those two nodes showed
>inconsistent results (this had been used with success before).
>
>How can I make the oVirt nodes read and write from their local bricks?
>___
>Users mailing list -- users@ovirt.org
>To unsubscribe send an email to users-le...@ovirt.org
>Privacy Statement: https://www.ovirt.org/privacy-policy.html
>oVirt Code of Conduct:
>https://www.ovirt.org/community/about/community-guidelines/
>List Archives:
>https://lists.ovirt.org/archives/list/users@ovirt.org/message/KXTXBLHRUGQR7TLCJZF3QEI6AO4RJU24/
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/PGS5KKMSOW4X2ZPH72QYG6JQTEVKB2NG/


[ovirt-users] oVirt 4.4 and installer problem on Dell M620

2020-05-28 Thread Gianluca Cecchi
Hello,
I'm trying to install what in subject but it seems the graphical part
fails...
In fact the console remains black and if I switch  witch Ctrl+Alt+ F1 I see
this screen

https://drive.google.com/file/d/1mt9ipxNLpe1xadbkXsU-Avh_GnFafNek/view?usp=sharing

Anyone tried on this kind of hardware? Can I try to give any particular
boot option?
Thanks,
Gianluca
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/DJNRAOSATC77S6NLBBGCZEPZOIGKIN4P/


[ovirt-users] Re: Tasks stuck waiting on another after failed storage migration (yet not visible on SPM)

2020-05-28 Thread Strahil Nikolov via Users
I used  to have a similar issue and when I live migrated  (from 1  host to 
another)  it  automatically completed.

Best Regards,
Strahil Nikolov

На 27 май 2020 г. 17:39:36 GMT+03:00, Benny Zlotnik  
написа:
>Sorry, by overloaded I meant in terms of I/O, because this is an
>active layer merge, the active layer
>(aabf3788-8e47-4f8b-84ad-a7eb311659fa) is merged into the base image
>(a78c7505-a949-43f3-b3d0-9d17bdb41af5), before the VM switches to use
>it as the active layer. So if there is constantly additional data
>written to the current active layer, vdsm may have trouble finishing
>the synchronization
>
>
>On Wed, May 27, 2020 at 4:55 PM David Sekne 
>wrote:
>>
>> Hello,
>>
>> Yes, no problem. XML is attached (I ommited the hostname and IP).
>>
>> Server is quite big (8 CPU / 32 Gb RAM / 1 Tb disk) yet not
>overloaded. We have multiple servers with the same specs with no
>issues.
>>
>> Regards,
>>
>> On Wed, May 27, 2020 at 2:28 PM Benny Zlotnik 
>wrote:
>>>
>>> Can you share the VM's xml?
>>> Can be obtained with `virsh -r dumpxml `
>>> Is the VM overloaded? I suspect it has trouble converging
>>>
>>> taskcleaner only cleans up the database, I don't think it will help
>here
>>>
>___
>Users mailing list -- users@ovirt.org
>To unsubscribe send an email to users-le...@ovirt.org
>Privacy Statement: https://www.ovirt.org/privacy-policy.html
>oVirt Code of Conduct:
>https://www.ovirt.org/community/about/community-guidelines/
>List Archives:
>https://lists.ovirt.org/archives/list/users@ovirt.org/message/HX4QZDIKXH7ETWPDNI3SKZ535WHBXE2V/
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/6X5PAZG7RC4KEQZJIRKHXMBK7256Q2C7/


[ovirt-users] Re: Issues deploying 4.4 with HE on new EPYC hosts

2020-05-28 Thread Mark R
I should have also mentioned that I found an existing report for the issue I'm 
having on RedHat's Bugzilla:  
https://bugzilla.redhat.com/show_bug.cgi?id=1783180

Mark
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/IDIH7L3QLX6TPER6IY2KTUSMWGVIGP6W/


[ovirt-users] Re: Issues deploying 4.4 with HE on new EPYC hosts

2020-05-28 Thread Mark R
Oof, I butchered his last name, but the quote I found was this:

"Details: Tom Lendacky from AMD writes[4] -- "The idea behind
'virt-ssbd' was to provide an architectural method for a guest to do
SSBD when 'amd-ssbd' isn't present.  The 'amd-ssbd' feature will use
SPEC_CTRL which is intended to not be intercepted and will be fast.
The use of 'virt-ssbd' will always be intercepted and therefore will
not be as fast.  So a guest should be presented with 'amd-ssbd', if
available, in preference to 'virt-ssbd'.

It seems for these EPYC CPUs with qemu on 8.1, virt-ssbd isn't an option 
anymore and it has to be amd-ssbd for the VM to work?
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/I6ZZ53I6HC7HIULXO4XKMLSJH4RYFH2S/


[ovirt-users] Re: Issues deploying 4.4 with HE on new EPYC hosts

2020-05-28 Thread Mark R
Hi Lucia,

>>> the cluster is set to use the
secure variant of the CPU type but your host does not support all the
necessary flags.

For my deployments the system is auto-detecting and using the 'Secure AMD EPYC' 
CPU type.  Note that the HostedEngineLocal VM does run with 'amd-ssbd' and 
works fine (amd-ssbd is supposed to be faster/preferred over virt-ssbd 
according to another thread I found with a comment from Tom Landsky at AMD). So 
the CPUs can definitely run in a a secure configuration, they just need the 
'amd-ssbd' flag instead of 'virt-ssbd'.  I don't know why the local HE VM runs 
with the correct flag, but then the final one does not... If I can figure that 
out I'll be much further along towards a resolution.

Thanks!
Mark
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/KYQLKVPQINZ4JRFE3JGJTGGQV5GTPTVF/


[ovirt-users] Re: oVirt 4.4 pending VM changes on HostedEngine VM

2020-05-28 Thread Radoslav Milanov

Thanks

FYI my install is on  SandyBridge hosts and cpu type is correctly 
detected as Intel SandyBridge. So the issue happens on SandyBrisdge as 
well as IvyBridge.



On 28.5.2020 г. 02:55 ч., Lucia Jelinkova wrote:

Hi,

it is a bug and it is discussed here: 
https://bugzilla.redhat.com/show_bug.cgi?id=1830872


Note that it is a UI issue and it does not affect the system. 
Unfortunately, there is no workaround I know of.


Lucia

On Wed, May 27, 2020 at 2:45 PM Radoslav Milanov 
mailto:radoslav.mila...@gmail.com>> wrote:


Hello

I'm not sure how but I've got pending changes on the HostedEngine
VM on
a 3 node 4.4 cluster and those changes are never applied. Is there
a way
to cancel pending VM changes in general ?

Thanks.
___
Users mailing list -- users@ovirt.org 
To unsubscribe send an email to users-le...@ovirt.org

Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct:
https://www.ovirt.org/community/about/community-guidelines/
List Archives:

https://lists.ovirt.org/archives/list/users@ovirt.org/message/CRD2NENSLVGYENCKZFFAY2E3CDKG7B2L/

___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/B4U6BTLWRAHILE72VXJEFRCHK5P36PNT/


[ovirt-users] Adding extra parameters to qemu-kvm

2020-05-28 Thread Sakari Poussa
Hi,

Before I dive in too deeply to vdsm-hook-qemucmdline I'd like to know if it
is the correct solution to my needs.

I want to add the following (type of) parameters to VM startup

-object 
memory-backend-file,id=mem1,share=on,mem-path=/dev/dax0.0,size=$PMEM_SIZE,align=2M
\-device nvdimm,id=nvdimm1,memdev=mem1,label-size=128k \

Is the vdsm-hook-qemucmdline the correct tool? Can I use (add the params)
it also from the ansible playbook (via ovirt roles) somehow?

Thanks, Sakari
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/YN63MTHEZ3T4WAE6SV76FHZLDSS6BIVZ/


[ovirt-users] Re: Issues deploying 4.4 with HE on new EPYC hosts

2020-05-28 Thread Gianluca Cecchi
On Thu, May 28, 2020 at 3:01 PM Lucia Jelinkova  wrote:

> It is really strange, the host should not even be in UP state if it does
> not comply with the cluster cpu type settings.
>
> Would you mind sharing the engine.log?
>
> And if that's not much of a trouble, could you have a look into the
> database?
>
> select cpu_flags from vds_dynamic;
> select name, cpu_name, cpu_flags, cpu_verb from cluster;
>
> Thanks,
>
> Lucia
>

engine.log.gz here:
https://drive.google.com/file/d/1fclwgYhFUU1qgFodv4V_sQauIvmMvSS2/view?usp=sharing


cpu_flags |
mce,xsavec,sep,fma,rtm,xgetbv1,arat,lm,mpx,tsc,avx512vl,avx512f,ssbd,avx,vpid,pdpe1gb,cpuid,vme,tsc_deadline_timer,avx2,mca,clwb,tsc_adjust,lahf_lm,ibrs,pcid,erms,x2apic,skip-l1dfl-vmentry,de,sse4_2,msr,syscall,invpcid,clflushopt,pat,sse4_1,avx512_vnni,hypervisor,fsgsbase,nopl,xsaveopt,vmx,md-clear,ibpb,pae,md_clear,pse36,pclmulqdq,avx512dq,movbe,hle,adx,rep_good,3dnowprefetch,bmi1,bmi2,avx512bw,umip,mtrr,pni,xsave,pse,vnmi,fxsr,aes,popcnt,rdtscp,rdseed,sse2,avx512cd,cx8,smap,nx,invpcid_single,arch-capabilities,arch_perfmon,ibrs-all,rdrand,abm,tsc_known_freq,mds-no,apic,rdctl-no,cmov,stibp,smep,mmx,constant_tsc,pge,pku,ss,ospke,clflush,tpr_shadow,cx16,ssse3,ept,xtopology,ht,arch_capabilities,flexpriority,fpu,f16c,sse,ibrs_enhanced,model_kvm64,model_Skylake-Server,model_core2duo,model_Opteron_G2,model_Skylake-Server-IBRS,model_Broadwell,model_Haswell,model_kvm32,model_IvyBridge-IBRS,model_Cascadelake-Server,model_Nehalem-IBRS,model_Broadwell-IBRS,model_qemu64,model_qemu32,model_Haswell-noTSX,model_Nehalem,model_pentium,model_SandyBridge,model_IvyBridge,model_Westmere-IBRS,model_Haswell-IBRS,model_Westmere,model_Broadwell-noTSX,model_Skylake-Client-IBRS,model_pentium3,model_coreduo,model_486,model_Skylake-Client,model_Haswell-noTSX-IBRS,model_Broadwell-noTSX-IBRS,model_Conroe,model_n270,model_pentium2,model_SandyBridge-IBRS,model_Penryn,model_Opteron_G1

for the cluster type in the mean time I was able to change it to "Intel
Cascadelake Server Family" from web admin gui and now I have to try these
steps and see if engine starts automatically without manual operations

1) set global maintenance
2) shutdown engine
3) exit maintenance
4) see if the engine vm starts without the cpu flag

so the query returns now:

engine=# select name, cpu_name, cpu_flags, cpu_verb from cluster;
-[ RECORD 1 ]--
name  | Default
cpu_name  | Intel Cascadelake Server Family
cpu_flags | vmx,model_Cascadelake-Server
cpu_verb  | Cascadelake-Server,-hle,-rtm,+arch-capabilities


Gianluca
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/5S6YEVII6XNPEGM6J57QAQVSHP6YZXN2/


[ovirt-users] Current Architecture of oVirt and Quality Assurance measures

2020-05-28 Thread Juergen Novak
I am currently evaluating oVirt for the usage in big companies as base 
system for edge computing applications.


I already tried to find a current architecture overview regarding the 
oVirt modules -- particularly ovirt-node-ng and imgbased. But I did not 
manage to find any. There is some architecture documentation, but marked 
as outdated and many links go to 404.


So I would ask, if somebody could provide any current architecture 
overview (no user documentation), particularly of the node module(s).


An other question I have, is which quality measures are used in development?

* Tools used (for Unit-Tests, Component-Tests, Integration-Tests)
* Are there any statistics about test coverage?

Any assistance would be appreciated.

Best Regards
/juergen

___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives:


[ovirt-users] Re: Issues deploying 4.4 with HE on new EPYC hosts

2020-05-28 Thread Lucia Jelinkova
It is really strange, the host should not even be in UP state if it does
not comply with the cluster cpu type settings.

Would you mind sharing the engine.log?

And if that's not much of a trouble, could you have a look into the
database?

select cpu_flags from vds_dynamic;
select name, cpu_name, cpu_flags, cpu_verb from cluster;

Thanks,

Lucia

On Thu, May 28, 2020 at 12:10 PM Gianluca Cecchi 
wrote:

>
> Il Gio 28 Mag 2020, 11:59 Lucia Jelinkova  ha
> scritto:
>
>
>> The cluster should be set to Intel Cascadelake Server Family. I am not
>> familiar with the HE setup process - have you specified the cluster CPU
>> type manually or is it auto-assigned?
>>
>> Lucia
>>
>
>
> Autoassigned. In fact in another thread I asked if possible to get option
> to choose during hosted engine wizard...
>
>
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/GFDPRZ5NHFS2PNFABVVQ5XDUUZRREXAU/


[ovirt-users] oVirt 4.4 gluster single host vm paused due to unknown storage error

2020-05-28 Thread Gianluca Cecchi
Hello,
in environment in subject, I downloaded from glance repository the CentOS 8
image
CentOS 8 Generic Cloud Image v20200113.3 for x86_64 (5e35c84)
and imported as a template.
I created a vm based on it (I got the message: "In order to create a VM
from a template with a different chipset, device configuration will be
changed. This may affect functionality of the guest software. Are you sure
you want to proceed?")
When running "dnf update", during I/O of packages updates the VM went into
pause.


VM c8desktop started on Host novirt2.example.net 5/28/201:29:04 PM
VM c8desktop has been paused. 5/28/201:41:52 PM
VM c8desktop has been paused due to unknown storage error. 5/28/201:41:52 PM
VM c8desktop has recovered from paused back to up. 5/28/201:43:50 PM

In messages of (nested) host I see:

May 28 13:28:06 novirt2 systemd-machined[1497]: New machine
qemu-7-c8desktop.
May 28 13:28:06 novirt2 systemd[1]: Started Virtual Machine
qemu-7-c8desktop.
May 28 13:28:06 novirt2 kvm[57798]: 2 guests now active
May 28 13:28:07 novirt2 journal[13368]: Guest agent is not responding: QEMU
guest agent is not connected
May 28 13:28:12 novirt2 journal[13368]: Guest agent is not responding: QEMU
guest agent is not connected
May 28 13:28:17 novirt2 journal[13368]: Guest agent is not responding: QEMU
guest agent is not connected
May 28 13:28:22 novirt2 journal[13368]: Guest agent is not responding: QEMU
guest agent is not connected
May 28 13:28:27 novirt2 journal[13368]: Guest agent is not responding: QEMU
guest agent is not connected
May 28 13:28:32 novirt2 journal[13368]: Guest agent is not responding: QEMU
guest agent is not connected
May 28 13:28:37 novirt2 journal[13368]: Domain id=7 name='c8desktop'
uuid=63e27cb5-087d-435e-bf61-3fe25e3319d
6 is tainted: custom-ga-command
May 28 13:28:37 novirt2 journal[26984]: Cannot open log file:
'/var/log/libvirt/qemu/c8desktop.log': Device o
r resource busy
May 28 13:28:37 novirt2 journal[13368]: Cannot open log file:
'/var/log/libvirt/qemu/c8desktop.log': Device o
r resource busy
May 28 13:28:37 novirt2 journal[13368]: Unable to open domainlog
May 28 13:30:00 novirt2 systemd[1]: Starting system activity accounting
tool...
May 28 13:30:00 novirt2 systemd[1]: Started system activity accounting tool.
May 28 13:37:21 novirt2 python3[62512]: detected unhandled Python exception
in '/usr/lib/python3.6/site-packages/vdsm/gluster/gfapi.py'
May 28 13:37:21 novirt2 abrt-server[62514]: Deleting problem directory
Python3-2020-05-28-13:37:21-62512 (dup of Python3-2020-05-28-10:32:57-29697)
May 28 13:37:21 novirt2 dbus-daemon[1502]: [system] Activating service
name='org.freedesktop.problems' requested by ':1.3111' (uid=0 pid=62522
comm="/usr/libexec/platform-python /usr/bin/abrt-action-"
label="system_u:system_r:abrt_t:s0-s0:c0.c1023") (using servicehelper)
May 28 13:37:21 novirt2 dbus-daemon[1502]: [system] Successfully activated
service 'org.freedesktop.problems'
May 28 13:37:21 novirt2 abrt-server[62514]: /bin/sh:
reporter-systemd-journal: command not found
May 28 13:37:21 novirt2 python3[62550]: detected unhandled Python exception
in '/usr/lib/python3.6/site-packages/vdsm/gluster/gfapi.py'
May 28 13:37:21 novirt2 abrt-server[62552]: Not saving repeating crash in
'/usr/lib/python3.6/site-packages/vdsm/gluster/gfapi.py'
May 28 13:37:22 novirt2 python3[62578]: detected unhandled Python exception
in '/usr/lib/python3.6/site-packages/vdsm/gluster/gfapi.py'
May 28 13:37:22 novirt2 abrt-server[62584]: Not saving repeating crash in
'/usr/lib/python3.6/site-packages/vdsm/gluster/gfapi.py'
May 28 13:40:00 novirt2 systemd[1]: Starting system activity accounting
tool...
May 28 13:40:00 novirt2 systemd[1]: Started system activity accounting tool.

On the related gluster volume log where vm disk is I have:

[2020-05-28 11:41:33.892074] W [MSGID: 114031]
[client-rpc-fops_v2.c:679:client4_0_writev_cbk] 0-vmstore-client-0: remote
operation failed [Invalid argument]
[2020-05-28 11:41:33.892140] W [fuse-bridge.c:2925:fuse_writev_cbk]
0-glusterfs-fuse: 348168: WRITE => -1
gfid=35ae86e8-0ccd-48b8-9ef2-6ca9a108ccf9 fd=0x7fd1d800cf38 (Invalid
argument)
[2020-05-28 11:41:33.902984] I [MSGID: 133022]
[shard.c:3693:shard_delete_shards] 0-vmstore-shard: Deleted shards of
gfid=35ae86e8-0ccd-48b8-9ef2-6ca9a108ccf9 from backend
[2020-05-28 11:41:52.434362] E [MSGID: 133010]
[shard.c:2339:shard_common_lookup_shards_cbk] 0-vmstore-shard: Lookup on
shard 6 failed. Base file gfid = 3e12e7fe-6a77-41b8-932a-d4f50c41ac00 [No
such file or directory]
[2020-05-28 11:41:52.434423] W [fuse-bridge.c:2925:fuse_writev_cbk]
0-glusterfs-fuse: 353565: WRITE => -1
gfid=3e12e7fe-6a77-41b8-932a-d4f50c41ac00 fd=0x7fd208093fb8 (No such file
or directory)
[2020-05-28 11:46:34.095697] W [MSGID: 114031]
[client-rpc-fops_v2.c:679:client4_0_writev_cbk] 0-vmstore-client-0: remote
operation failed [Invalid argument]
[2020-05-28 11:46:34.095758] W [fuse-bridge.c:2925:fuse_writev_cbk]
0-glusterfs-fuse: 384006: WRITE => -1
gfid=7b804a1a-1734-4bec-b8f4-9ba

[ovirt-users] Re: ovirt-websocket-proxy errors when trying noVNC

2020-05-28 Thread Louis Bohm
On my Windows 10 VM I imported the CA to the Machine, FF and Chrome.  I tried 
FF, Chrome and Edge.  All of them still say that the cert is not valid when I 
go to the site.  All of them say that they are unable to contact the server at 
port 6100.  However, I have verified that port 6100 is open using telnet from 
both my MAC and Windows VM.

So no clue what’s wrong?  Is there one specific logfile I should be looking at 
to see what the error is?

Louis
-<<—->>-
Louis Bohm
louisb...@gmail.com

 

 


> On May 28, 2020, at 7:24 AM, Jayme  wrote:
> 
> Here is the bug report: 
> https://bugzilla.redhat.com/show_bug.cgi?id=1832210 
> 
> 
> On Thu, May 28, 2020 at 8:23 AM Jayme  > wrote:
> If it’s the issue I’m thinking of it’s because Apple Mojave started rejecting 
> carts that have a validity date shorter than a certain period of time which 
> ovirt ca does not follow. I posted another message on this group about it a 
> little while ago and I think a bug report was made. 
> 
> The only way I can get novnc to work in Mac is by using Firefox and making 
> sure the ca is imported and trusted by Firefox. I cannot get it to work with 
> safari or chrome. 
> 
> On Thu, May 28, 2020 at 8:08 AM Louis Bohm  > wrote:
> So as I said before I added the CA cert to my MAC (and I can see it in the 
> MAC’s Keychain).  But its still not working.  For humor I will try adding the 
> CA to my Windows VM and see if that produces a different result.
> 
> Louis
> -<<—->>-
> Louis Bohm
> louisb...@gmail.com 
> 
>  
> 
>  
> 
> 
>> On May 27, 2020, at 11:01 AM, Scott Dickerson > > wrote:
>> 
> 
>> 
>> On Wed, May 27, 2020 at 7:42 AM Louis Bohm > > wrote:
>> OS: Oracle Linux 7.8 (unbreakable kernel)
>> Using Oracle Linux Virtualization Manager: Software Version:4.3.6.6-1.0.9.el7
>> 
>> Since I am running all of it on one physical machine I opted to install the 
>> ovirt-engine using the accept defaults option.
>> 
>> When I try to start a noVNC console I see this in the messages file:
>> May 26 16:49:12 lfg-kvm saslpasswd2: Could not find keytab file: 
>> /etc/qemu/krb5.tab: No such file or directory
>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from sasldb: 
>> BDB0073 DB_NOTFOUND: No matching key/data pair found
>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from sasldb: 
>> BDB0073 DB_NOTFOUND: No matching key/data pair found
>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from sasldb: 
>> BDB0073 DB_NOTFOUND: No matching key/data pair found
>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from sasldb: 
>> BDB0073 DB_NOTFOUND: No matching key/data pair found
>> May 26 16:49:14 lfg-kvm journal: 2020-05-26 16:49:14,704-0400 
>> ovirt-websocket-proxy: INFO msg:824 handler exception: [SSL: 
>> SSLV3_ALERT_CERTIFICATE_UNKNOWN] sslv3 alert certificate unknown (_ssl.c:618)
>> May 26 16:49:14 lfg-kvm ovirt-websocket-proxy.py: 
>> ovirt-websocket-proxy[14582] INFO msg:824 handler exception: [SSL: 
>> SSLV3_ALERT_CERTIFICATE_UNKNOWN] sslv3 alert certificate unknown (_ssl.c:618)
>> 
>> I have checked the following:
>> [root@lfg-kvm ~]#  engine-config -g WebSocketProxy
>> WebSocketProxy: lfg-kvm.corp.lfg.com:6100 
>>  version: general
>> [root@lfg-kvm ~]# engine-config -g SpiceProxyDefault
>> SpiceProxyDefault: http://lfg-kvm.corp.lfg.com:6100 
>>  version: general
>> 
>> This is a brand new install.
>> 
>> I also am unable to get a VNC console up and running.  I have tried with an 
>> Ubuntu VM running on my MAC where I installed virt-manager.  The viewer 
>> comes up for a second says it cannot connect and then shutsdown.
>> 
>> 
>> If you're only using noVNC, then you need to make sure you import the CA 
>> Cert and trust it in your browser.  There is no way to interactively accept 
>> the self-signed cert from the engine when noVNC connects via the websocket 
>> proxy.
>>  
>> Anyone have any clue?
>> -<<—->>-
>> Louis Bohm
>> louisb...@gmail.com 
>>  
>> 
>>  
>> 
>> ___
>> Users mailing list -- users@ovirt.org 
>> To unsubscribe send an email to users-le...@ovirt.org 
>> 
>> Privacy Statement: https://www.ov

[ovirt-users] Re: ovirt-websocket-proxy errors when trying noVNC

2020-05-28 Thread Louis Bohm
Odd.  I normally have issues like that with FF and Chrome but Safari does work 
for me in those cases.  Anyway, I pulled up my Windows 10 VM on my MAC and 
tried Chrome there after importing the CA.  Still same result.  So I think its 
something else.

Louis
-<<—->>-
Louis Bohm
louisb...@gmail.com

 

 


> On May 28, 2020, at 7:23 AM, Jayme  wrote:
> 
> If it’s the issue I’m thinking of it’s because Apple Mojave started rejecting 
> carts that have a validity date shorter than a certain period of time which 
> ovirt ca does not follow. I posted another message on this group about it a 
> little while ago and I think a bug report was made. 
> 
> The only way I can get novnc to work in Mac is by using Firefox and making 
> sure the ca is imported and trusted by Firefox. I cannot get it to work with 
> safari or chrome. 
> 
> On Thu, May 28, 2020 at 8:08 AM Louis Bohm  > wrote:
> So as I said before I added the CA cert to my MAC (and I can see it in the 
> MAC’s Keychain).  But its still not working.  For humor I will try adding the 
> CA to my Windows VM and see if that produces a different result.
> 
> Louis
> -<<—->>-
> Louis Bohm
> louisb...@gmail.com 
> 
>  
> 
>  
> 
> 
>> On May 27, 2020, at 11:01 AM, Scott Dickerson > > wrote:
>> 
> 
>> 
>> On Wed, May 27, 2020 at 7:42 AM Louis Bohm > > wrote:
>> OS: Oracle Linux 7.8 (unbreakable kernel)
>> Using Oracle Linux Virtualization Manager: Software Version:4.3.6.6-1.0.9.el7
>> 
>> Since I am running all of it on one physical machine I opted to install the 
>> ovirt-engine using the accept defaults option.
>> 
>> When I try to start a noVNC console I see this in the messages file:
>> May 26 16:49:12 lfg-kvm saslpasswd2: Could not find keytab file: 
>> /etc/qemu/krb5.tab: No such file or directory
>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from sasldb: 
>> BDB0073 DB_NOTFOUND: No matching key/data pair found
>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from sasldb: 
>> BDB0073 DB_NOTFOUND: No matching key/data pair found
>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from sasldb: 
>> BDB0073 DB_NOTFOUND: No matching key/data pair found
>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from sasldb: 
>> BDB0073 DB_NOTFOUND: No matching key/data pair found
>> May 26 16:49:14 lfg-kvm journal: 2020-05-26 16:49:14,704-0400 
>> ovirt-websocket-proxy: INFO msg:824 handler exception: [SSL: 
>> SSLV3_ALERT_CERTIFICATE_UNKNOWN] sslv3 alert certificate unknown (_ssl.c:618)
>> May 26 16:49:14 lfg-kvm ovirt-websocket-proxy.py: 
>> ovirt-websocket-proxy[14582] INFO msg:824 handler exception: [SSL: 
>> SSLV3_ALERT_CERTIFICATE_UNKNOWN] sslv3 alert certificate unknown (_ssl.c:618)
>> 
>> I have checked the following:
>> [root@lfg-kvm ~]#  engine-config -g WebSocketProxy
>> WebSocketProxy: lfg-kvm.corp.lfg.com:6100 
>>  version: general
>> [root@lfg-kvm ~]# engine-config -g SpiceProxyDefault
>> SpiceProxyDefault: http://lfg-kvm.corp.lfg.com:6100 
>>  version: general
>> 
>> This is a brand new install.
>> 
>> I also am unable to get a VNC console up and running.  I have tried with an 
>> Ubuntu VM running on my MAC where I installed virt-manager.  The viewer 
>> comes up for a second says it cannot connect and then shutsdown.
>> 
>> 
>> If you're only using noVNC, then you need to make sure you import the CA 
>> Cert and trust it in your browser.  There is no way to interactively accept 
>> the self-signed cert from the engine when noVNC connects via the websocket 
>> proxy.
>>  
>> Anyone have any clue?
>> -<<—->>-
>> Louis Bohm
>> louisb...@gmail.com 
>>  
>> 
>>  
>> 
>> ___
>> Users mailing list -- users@ovirt.org 
>> To unsubscribe send an email to users-le...@ovirt.org 
>> 
>> Privacy Statement: https://www.ovirt.org/privacy-policy.html 
>> 
>> oVirt Code of Conduct: 
>> https://www.ovirt.org/community/about/community-guidelines/ 
>> 
>> List Archives: 
>> https://lists.ovirt.org/archives/list/users@ovirt.org/message/U66GSTI4QJSGPM6LUVF2WC2UW5JQCNCX/
>>  
>> 

[ovirt-users] Re: ovirt-websocket-proxy errors when trying noVNC

2020-05-28 Thread Jayme
Here is the bug report:
https://bugzilla.redhat.com/show_bug.cgi?id=1832210

On Thu, May 28, 2020 at 8:23 AM Jayme  wrote:

> If it’s the issue I’m thinking of it’s because Apple Mojave started
> rejecting carts that have a validity date shorter than a certain period of
> time which ovirt ca does not follow. I posted another message on this group
> about it a little while ago and I think a bug report was made.
>
> The only way I can get novnc to work in Mac is by using Firefox and making
> sure the ca is imported and trusted by Firefox. I cannot get it to work
> with safari or chrome.
>
> On Thu, May 28, 2020 at 8:08 AM Louis Bohm  wrote:
>
>> So as I said before I added the CA cert to my MAC (and I can see it in
>> the MAC’s Keychain).  But its still not working.  For humor I will try
>> adding the CA to my Windows VM and see if that produces a different result.
>>
>> Louis
>> -<<—->>-
>> Louis Bohm
>> louisb...@gmail.com
>>
>>
>> 
>>
>> 
>>
>> On May 27, 2020, at 11:01 AM, Scott Dickerson 
>> wrote:
>>
>>
>> On Wed, May 27, 2020 at 7:42 AM Louis Bohm  wrote:
>>
>>> OS: Oracle Linux 7.8 (unbreakable kernel)
>>> Using Oracle Linux Virtualization Manager: Software
>>> Version:4.3.6.6-1.0.9.el7
>>>
>>> Since I am running all of it on one physical machine I opted to install
>>> the ovirt-engine using the accept defaults option.
>>>
>>> When I try to start a noVNC console I see this in the messages file:
>>>
>>> May 26 16:49:12 lfg-kvm saslpasswd2: Could not find keytab file:
>>> /etc/qemu/krb5.tab: No such file or directory
>>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from sasldb:
>>> BDB0073 DB_NOTFOUND: No matching key/data pair found
>>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from sasldb:
>>> BDB0073 DB_NOTFOUND: No matching key/data pair found
>>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from sasldb:
>>> BDB0073 DB_NOTFOUND: No matching key/data pair found
>>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from sasldb:
>>> BDB0073 DB_NOTFOUND: No matching key/data pair found
>>> May 26 16:49:14 lfg-kvm journal: 2020-05-26 16:49:14,704-0400
>>> ovirt-websocket-proxy: INFO msg:824 handler exception: [SSL:
>>> SSLV3_ALERT_CERTIFICATE_UNKNOWN] sslv3 alert certificate unknown
>>> (_ssl.c:618)
>>> May 26 16:49:14 lfg-kvm ovirt-websocket-proxy.py:
>>> ovirt-websocket-proxy[14582] INFO msg:824 handler exception: [SSL:
>>> SSLV3_ALERT_CERTIFICATE_UNKNOWN] sslv3 alert certificate unknown
>>> (_ssl.c:618)
>>>
>>>
>>> I have checked the following:
>>>
>>> [root@lfg-kvm ~]#  engine-config -g WebSocketProxy
>>> WebSocketProxy: lfg-kvm.corp.lfg.com:6100 version: general
>>> [root@lfg-kvm ~]# engine-config -g SpiceProxyDefault
>>> SpiceProxyDefault: http://lfg-kvm.corp.lfg.com:6100 version: general
>>>
>>>
>>> This is a brand new install.
>>>
>>> I also am unable to get a VNC console up and running.  I have tried with
>>> an Ubuntu VM running on my MAC where I installed virt-manager.  The viewer
>>> comes up for a second says it cannot connect and then shutsdown.
>>>
>>>
>> If you're only using noVNC, then you need to make sure you import the CA
>> Cert and trust it in your browser.  There is no way to interactively accept
>> the self-signed cert from the engine when noVNC connects via the websocket
>> proxy.
>>
>>
>>> Anyone have any clue?
>>> -<<—->>-
>>> Louis Bohm
>>> louisb...@gmail.com
>>>
>>> 
>>>
>>> 
>>>
>>> ___
>>> Users mailing list -- users@ovirt.org
>>> To unsubscribe send an email to users-le...@ovirt.org
>>> Privacy Statement: https://www.ovirt.org/privacy-policy.html
>>> oVirt Code of Conduct:
>>> https://www.ovirt.org/community/about/community-guidelines/
>>> List Archives:
>>> https://lists.ovirt.org/archives/list/users@ovirt.org/message/U66GSTI4QJSGPM6LUVF2WC2UW5JQCNCX/
>>>
>>
>>
>> --
>> Scott Dickerson
>> Senior Software Engineer
>> RHV-M Engineering - UX Team
>> Red Hat, Inc
>>
>>
>> ___
>> Users mailing list -- users@ovirt.org
>> To unsubscribe send an email to users-le...@ovirt.org
>> Privacy Statement: https://www.ovirt.org/privacy-policy.html
>> oVirt Code of Conduct:
>> https://www.ovirt.org/community/about/community-guidelines/
>> List Archives:
>> https://lists.ovirt.org/archives/list/users@ovirt.org/message/WLZEDVEV5E4XTEM4Y6M4W3VJ4ODSISUS/
>>
>
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community

[ovirt-users] Re: ovirt-websocket-proxy errors when trying noVNC

2020-05-28 Thread Jayme
If it’s the issue I’m thinking of it’s because Apple Mojave started
rejecting carts that have a validity date shorter than a certain period of
time which ovirt ca does not follow. I posted another message on this group
about it a little while ago and I think a bug report was made.

The only way I can get novnc to work in Mac is by using Firefox and making
sure the ca is imported and trusted by Firefox. I cannot get it to work
with safari or chrome.

On Thu, May 28, 2020 at 8:08 AM Louis Bohm  wrote:

> So as I said before I added the CA cert to my MAC (and I can see it in the
> MAC’s Keychain).  But its still not working.  For humor I will try adding
> the CA to my Windows VM and see if that produces a different result.
>
> Louis
> -<<—->>-
> Louis Bohm
> louisb...@gmail.com
>
>
> 
>
> 
>
> On May 27, 2020, at 11:01 AM, Scott Dickerson  wrote:
>
>
> On Wed, May 27, 2020 at 7:42 AM Louis Bohm  wrote:
>
>> OS: Oracle Linux 7.8 (unbreakable kernel)
>> Using Oracle Linux Virtualization Manager: Software
>> Version:4.3.6.6-1.0.9.el7
>>
>> Since I am running all of it on one physical machine I opted to install
>> the ovirt-engine using the accept defaults option.
>>
>> When I try to start a noVNC console I see this in the messages file:
>>
>> May 26 16:49:12 lfg-kvm saslpasswd2: Could not find keytab file:
>> /etc/qemu/krb5.tab: No such file or directory
>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from sasldb:
>> BDB0073 DB_NOTFOUND: No matching key/data pair found
>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from sasldb:
>> BDB0073 DB_NOTFOUND: No matching key/data pair found
>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from sasldb:
>> BDB0073 DB_NOTFOUND: No matching key/data pair found
>> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from sasldb:
>> BDB0073 DB_NOTFOUND: No matching key/data pair found
>> May 26 16:49:14 lfg-kvm journal: 2020-05-26 16:49:14,704-0400
>> ovirt-websocket-proxy: INFO msg:824 handler exception: [SSL:
>> SSLV3_ALERT_CERTIFICATE_UNKNOWN] sslv3 alert certificate unknown
>> (_ssl.c:618)
>> May 26 16:49:14 lfg-kvm ovirt-websocket-proxy.py:
>> ovirt-websocket-proxy[14582] INFO msg:824 handler exception: [SSL:
>> SSLV3_ALERT_CERTIFICATE_UNKNOWN] sslv3 alert certificate unknown
>> (_ssl.c:618)
>>
>>
>> I have checked the following:
>>
>> [root@lfg-kvm ~]#  engine-config -g WebSocketProxy
>> WebSocketProxy: lfg-kvm.corp.lfg.com:6100 version: general
>> [root@lfg-kvm ~]# engine-config -g SpiceProxyDefault
>> SpiceProxyDefault: http://lfg-kvm.corp.lfg.com:6100 version: general
>>
>>
>> This is a brand new install.
>>
>> I also am unable to get a VNC console up and running.  I have tried with
>> an Ubuntu VM running on my MAC where I installed virt-manager.  The viewer
>> comes up for a second says it cannot connect and then shutsdown.
>>
>>
> If you're only using noVNC, then you need to make sure you import the CA
> Cert and trust it in your browser.  There is no way to interactively accept
> the self-signed cert from the engine when noVNC connects via the websocket
> proxy.
>
>
>> Anyone have any clue?
>> -<<—->>-
>> Louis Bohm
>> louisb...@gmail.com
>>
>> 
>>
>> 
>>
>> ___
>> Users mailing list -- users@ovirt.org
>> To unsubscribe send an email to users-le...@ovirt.org
>> Privacy Statement: https://www.ovirt.org/privacy-policy.html
>> oVirt Code of Conduct:
>> https://www.ovirt.org/community/about/community-guidelines/
>> List Archives:
>> https://lists.ovirt.org/archives/list/users@ovirt.org/message/U66GSTI4QJSGPM6LUVF2WC2UW5JQCNCX/
>>
>
>
> --
> Scott Dickerson
> Senior Software Engineer
> RHV-M Engineering - UX Team
> Red Hat, Inc
>
>
> ___
> Users mailing list -- users@ovirt.org
> To unsubscribe send an email to users-le...@ovirt.org
> Privacy Statement: https://www.ovirt.org/privacy-policy.html
> oVirt Code of Conduct:
> https://www.ovirt.org/community/about/community-guidelines/
> List Archives:
> https://lists.ovirt.org/archives/list/users@ovirt.org/message/WLZEDVEV5E4XTEM4Y6M4W3VJ4ODSISUS/
>
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/F5PGDWYJM7IUAP67KGSHNKU377QEI3Q4/


[ovirt-users] Re: ovirt-websocket-proxy errors when trying noVNC

2020-05-28 Thread Louis Bohm
So as I said before I added the CA cert to my MAC (and I can see it in the 
MAC’s Keychain).  But its still not working.  For humor I will try adding the 
CA to my Windows VM and see if that produces a different result.

Louis
-<<—->>-
Louis Bohm
louisb...@gmail.com

 

 


> On May 27, 2020, at 11:01 AM, Scott Dickerson  wrote:
> 
> 
> On Wed, May 27, 2020 at 7:42 AM Louis Bohm  > wrote:
> OS: Oracle Linux 7.8 (unbreakable kernel)
> Using Oracle Linux Virtualization Manager: Software Version:4.3.6.6-1.0.9.el7
> 
> Since I am running all of it on one physical machine I opted to install the 
> ovirt-engine using the accept defaults option.
> 
> When I try to start a noVNC console I see this in the messages file:
> May 26 16:49:12 lfg-kvm saslpasswd2: Could not find keytab file: 
> /etc/qemu/krb5.tab: No such file or directory
> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from sasldb: 
> BDB0073 DB_NOTFOUND: No matching key/data pair found
> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from sasldb: 
> BDB0073 DB_NOTFOUND: No matching key/data pair found
> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from sasldb: 
> BDB0073 DB_NOTFOUND: No matching key/data pair found
> May 26 16:49:12 lfg-kvm saslpasswd2: error deleting entry from sasldb: 
> BDB0073 DB_NOTFOUND: No matching key/data pair found
> May 26 16:49:14 lfg-kvm journal: 2020-05-26 16:49:14,704-0400 
> ovirt-websocket-proxy: INFO msg:824 handler exception: [SSL: 
> SSLV3_ALERT_CERTIFICATE_UNKNOWN] sslv3 alert certificate unknown (_ssl.c:618)
> May 26 16:49:14 lfg-kvm ovirt-websocket-proxy.py: 
> ovirt-websocket-proxy[14582] INFO msg:824 handler exception: [SSL: 
> SSLV3_ALERT_CERTIFICATE_UNKNOWN] sslv3 alert certificate unknown (_ssl.c:618)
> 
> I have checked the following:
> [root@lfg-kvm ~]#  engine-config -g WebSocketProxy
> WebSocketProxy: lfg-kvm.corp.lfg.com:6100  
> version: general
> [root@lfg-kvm ~]# engine-config -g SpiceProxyDefault
> SpiceProxyDefault: http://lfg-kvm.corp.lfg.com:6100 
>  version: general
> 
> This is a brand new install.
> 
> I also am unable to get a VNC console up and running.  I have tried with an 
> Ubuntu VM running on my MAC where I installed virt-manager.  The viewer comes 
> up for a second says it cannot connect and then shutsdown.
> 
> 
> If you're only using noVNC, then you need to make sure you import the CA Cert 
> and trust it in your browser.  There is no way to interactively accept the 
> self-signed cert from the engine when noVNC connects via the websocket proxy.
>  
> Anyone have any clue?
> -<<—->>-
> Louis Bohm
> louisb...@gmail.com 
>  
> 
>  
> 
> ___
> Users mailing list -- users@ovirt.org 
> To unsubscribe send an email to users-le...@ovirt.org 
> 
> Privacy Statement: https://www.ovirt.org/privacy-policy.html 
> 
> oVirt Code of Conduct: 
> https://www.ovirt.org/community/about/community-guidelines/ 
> 
> List Archives: 
> https://lists.ovirt.org/archives/list/users@ovirt.org/message/U66GSTI4QJSGPM6LUVF2WC2UW5JQCNCX/
>  
> 
> 
> 
> -- 
> Scott Dickerson
> Senior Software Engineer
> RHV-M Engineering - UX Team
> Red Hat, Inc

___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/WLZEDVEV5E4XTEM4Y6M4W3VJ4ODSISUS/


[ovirt-users] Re: Issues deploying 4.4 with HE on new EPYC hosts

2020-05-28 Thread Gianluca Cecchi
Il Gio 28 Mag 2020, 11:59 Lucia Jelinkova  ha scritto:


> The cluster should be set to Intel Cascadelake Server Family. I am not
> familiar with the HE setup process - have you specified the cluster CPU
> type manually or is it auto-assigned?
>
> Lucia
>


Autoassigned. In fact in another thread I asked if possible to get option
to choose during hosted engine wizard...
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/BSNZA2XLNIMO6KMYD7DP2E7ADCWRVJD6/


[ovirt-users] Re: Issues deploying 4.4 with HE on new EPYC hosts

2020-05-28 Thread Simone Tiraboschi
On Thu, May 28, 2020 at 12:02 PM Lucia Jelinkova 
wrote:

> I think you have the same problem as Mark - the cluster is set to use the
> secure variant of the CPU type but your host does not support all the
> necessary flags.
>
> Intel Cascadelake Server Family - the VM is run with
> Cascadelake-Server,-hle,-rtm,+arch-capabilities
> Secure Intel Cascadelake Server Family - the VM is run with
> Cascadelake-Server,+md-clear,+mds-no,-hle,-rtm,+tsx-ctrl,+arch-capabilities
>
> The cluster should be set to Intel Cascadelake Server Family. I am not
> familiar with the HE setup process - have you specified the cluster CPU
> type manually or is it auto-assigned?
>

No, the user is not allowed to force a specific CPU type for the cluster:
hosted-engine-setup process will simply register the first host into the
Default cluster and the engine will detect the CPU type and configure the
cluster according to the detected CPU.
I tend to think that this is a bug in the code that chooses the CPU
type for the cluster according to what the host reports.


>
> Lucia
>
> On Thu, May 28, 2020 at 11:32 AM Gianluca Cecchi <
> gianluca.cec...@gmail.com> wrote:
>
>> On Thu, May 28, 2020 at 11:00 AM Gianluca Cecchi <
>> gianluca.cec...@gmail.com> wrote:
>>
>>>
>>>
>>> any input to solve and at least try some features of 4.4 on this hw env?
>>>
>>> Thanks,
>>> Gianluca
>>>
>>>
>> it seems I was able to have it recognized this way:
>>
>> strip these lines from he.xml
>>
>> > 1
>> > unsupported configuration: unknown CPU
>> feature: tsx-ctrl
>> > 1
>> 13a17
>> > > type="float">1590653346.0201075
>> 246a251,264
>> > > passwdValidTo='1970-01-01T00:00:01'>
>> >   
>> > 
>> > > passwdValidTo='1970-01-01T00:00:01'>
>> >   
>> >   
>> >   
>> >   
>> >   
>> >   
>> >   
>> >   
>> >   
>> > 
>>
>> I have to understand what to use for graphics but it is not important at
>> the moment
>> After failure of deployment the link to the engine storage domain under
>> /var/run/vdsm/storage/3df8f6d4-d572-4d2b-9ab2-8abc456a396f/ has been
>> deleted.
>> So I go there and create it:
>>
>> [root@novirt2 ~]# cd
>> /var/run/vdsm/storage/3df8f6d4-d572-4d2b-9ab2-8abc456a396f/
>>
>> [root@novirt2 ~]# ln -s
>> /rhev/data-center/mnt/glusterSD/novirt2st.storage.local\:_engine/3df8f6d4-d572-4d2b-9ab2-8abc456a396f/images/df02bff9-2c4b-4e14-a0a3-591a84ccaed9
>> df02bff9-2c4b-4e14-a0a3-591a84ccaed9
>>
>> Start VM
>> [root@novirt2 ~]# virsh -c
>> qemu:///system?authfile=/etc/ovirt-hosted-engine/virsh_auth.conf create
>> he.xml
>> Domain HostedEngine created from he.xml
>>
>> Access its webadmin gui and now all is as expected, with only one engine
>> vm...
>> Volumes for data and vmstore are there, but not the storage domains, but
>> I can create them without problems
>>
>> Also if I exit the global maintenance the state passes from
>> ReinitializeFSM to EngineUp
>>
>> [root@novirt2 ~]# hosted-engine --vm-status
>>
>>
>> --== Host novirt2.example.net (id: 1) status ==--
>>
>> Host ID: 1
>> Host timestamp : 38553
>> Score  : 3400
>> Engine status  : {"vm": "up", "health": "good",
>> "detail": "Up"}
>> Hostname   : novirt2.example.net
>> Local maintenance  : False
>> stopped: False
>> crc32  : 5a3b40e1
>> conf_on_shared_storage : True
>> local_conf_timestamp   : 38553
>> Status up-to-date  : True
>> Extra metadata (valid at timestamp):
>> metadata_parse_version=1
>> metadata_feature_version=1
>> timestamp=38553 (Thu May 28 11:30:51 2020)
>> host-id=1
>> score=3400
>> vm_conf_refresh_time=38553 (Thu May 28 11:30:51 2020)
>> conf_on_shared_storage=True
>> maintenance=False
>> state=EngineUp
>> stopped=False
>> [root@novirt2 ~]#
>>
>> Now go to test further functionalities.
>>
>>
>> Gianluca
>>
> ___
> Users mailing list -- users@ovirt.org
> To unsubscribe send an email to users-le...@ovirt.org
> Privacy Statement: https://www.ovirt.org/privacy-policy.html
> oVirt Code of Conduct:
> https://www.ovirt.org/community/about/community-guidelines/
> List Archives:
> https://lists.ovirt.org/archives/list/users@ovirt.org/message/5OC6B4AF52T4T4NRWEPPNFO6MJKOE2L4/
>
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/KMXYC5H2SFP4TSXVVVYKGC4YU55CI53L/


[ovirt-users] Re: Issues deploying 4.4 with HE on new EPYC hosts

2020-05-28 Thread Lucia Jelinkova
I think you have the same problem as Mark - the cluster is set to use the
secure variant of the CPU type but your host does not support all the
necessary flags.

Intel Cascadelake Server Family - the VM is run with
Cascadelake-Server,-hle,-rtm,+arch-capabilities
Secure Intel Cascadelake Server Family - the VM is run with
Cascadelake-Server,+md-clear,+mds-no,-hle,-rtm,+tsx-ctrl,+arch-capabilities

The cluster should be set to Intel Cascadelake Server Family. I am not
familiar with the HE setup process - have you specified the cluster CPU
type manually or is it auto-assigned?

Lucia

On Thu, May 28, 2020 at 11:32 AM Gianluca Cecchi 
wrote:

> On Thu, May 28, 2020 at 11:00 AM Gianluca Cecchi <
> gianluca.cec...@gmail.com> wrote:
>
>>
>>
>> any input to solve and at least try some features of 4.4 on this hw env?
>>
>> Thanks,
>> Gianluca
>>
>>
> it seems I was able to have it recognized this way:
>
> strip these lines from he.xml
>
> > 1
> > unsupported configuration: unknown CPU
> feature: tsx-ctrl
> > 1
> 13a17
> >  type="float">1590653346.0201075
> 246a251,264
> >  passwdValidTo='1970-01-01T00:00:01'>
> >   
> > 
> >  passwdValidTo='1970-01-01T00:00:01'>
> >   
> >   
> >   
> >   
> >   
> >   
> >   
> >   
> >   
> > 
>
> I have to understand what to use for graphics but it is not important at
> the moment
> After failure of deployment the link to the engine storage domain under
> /var/run/vdsm/storage/3df8f6d4-d572-4d2b-9ab2-8abc456a396f/ has been
> deleted.
> So I go there and create it:
>
> [root@novirt2 ~]# cd
> /var/run/vdsm/storage/3df8f6d4-d572-4d2b-9ab2-8abc456a396f/
>
> [root@novirt2 ~]# ln -s
> /rhev/data-center/mnt/glusterSD/novirt2st.storage.local\:_engine/3df8f6d4-d572-4d2b-9ab2-8abc456a396f/images/df02bff9-2c4b-4e14-a0a3-591a84ccaed9
> df02bff9-2c4b-4e14-a0a3-591a84ccaed9
>
> Start VM
> [root@novirt2 ~]# virsh -c
> qemu:///system?authfile=/etc/ovirt-hosted-engine/virsh_auth.conf create
> he.xml
> Domain HostedEngine created from he.xml
>
> Access its webadmin gui and now all is as expected, with only one engine
> vm...
> Volumes for data and vmstore are there, but not the storage domains, but I
> can create them without problems
>
> Also if I exit the global maintenance the state passes from
> ReinitializeFSM to EngineUp
>
> [root@novirt2 ~]# hosted-engine --vm-status
>
>
> --== Host novirt2.example.net (id: 1) status ==--
>
> Host ID: 1
> Host timestamp : 38553
> Score  : 3400
> Engine status  : {"vm": "up", "health": "good",
> "detail": "Up"}
> Hostname   : novirt2.example.net
> Local maintenance  : False
> stopped: False
> crc32  : 5a3b40e1
> conf_on_shared_storage : True
> local_conf_timestamp   : 38553
> Status up-to-date  : True
> Extra metadata (valid at timestamp):
> metadata_parse_version=1
> metadata_feature_version=1
> timestamp=38553 (Thu May 28 11:30:51 2020)
> host-id=1
> score=3400
> vm_conf_refresh_time=38553 (Thu May 28 11:30:51 2020)
> conf_on_shared_storage=True
> maintenance=False
> state=EngineUp
> stopped=False
> [root@novirt2 ~]#
>
> Now go to test further functionalities.
>
>
> Gianluca
>
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/5OC6B4AF52T4T4NRWEPPNFO6MJKOE2L4/


[ovirt-users] Re: oVirt 4.4 HE on Copy local VM disk to shared storage (NFS) failing

2020-05-28 Thread Gianluca Cecchi
On Thu, May 28, 2020 at 1:29 AM Anton Gonzalez  wrote:

> I wonder if this is something that needs QEMU 4.2 as the release notes
> specifically mention handling of TSX for x86 as seen here:
> https://wiki.qemu.org/ChangeLog/4.2#x86. Looks like QEMU 4.1.0 is in use
> in oVirt 4.4.0.
>
>
See my latest comments on this thread below:
https://lists.ovirt.org/archives/list/users@ovirt.org/thread/KZHDCDE6JYADDMFSZD6AXYBP6SPV4TGA/
I was able to reach state with hosted engine up and gluster storage domains
active.
HIH testing,
Gianluca
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/YX6HCDYFLV5DTWPIZKXREZIGOAUUPJLI/


[ovirt-users] Re: Issues deploying 4.4 with HE on new EPYC hosts

2020-05-28 Thread Gianluca Cecchi
On Thu, May 28, 2020 at 11:00 AM Gianluca Cecchi 
wrote:

>
>
> any input to solve and at least try some features of 4.4 on this hw env?
>
> Thanks,
> Gianluca
>
>
it seems I was able to have it recognized this way:

strip these lines from he.xml

> 1
> unsupported configuration: unknown CPU feature:
tsx-ctrl
> 1
13a17
> 1590653346.0201075
246a251,264
> 
>   
> 
> 
>   
>   
>   
>   
>   
>   
>   
>   
>   
> 

I have to understand what to use for graphics but it is not important at
the moment
After failure of deployment the link to the engine storage domain under
/var/run/vdsm/storage/3df8f6d4-d572-4d2b-9ab2-8abc456a396f/ has been
deleted.
So I go there and create it:

[root@novirt2 ~]# cd
/var/run/vdsm/storage/3df8f6d4-d572-4d2b-9ab2-8abc456a396f/

[root@novirt2 ~]# ln -s
/rhev/data-center/mnt/glusterSD/novirt2st.storage.local\:_engine/3df8f6d4-d572-4d2b-9ab2-8abc456a396f/images/df02bff9-2c4b-4e14-a0a3-591a84ccaed9
df02bff9-2c4b-4e14-a0a3-591a84ccaed9

Start VM
[root@novirt2 ~]# virsh -c
qemu:///system?authfile=/etc/ovirt-hosted-engine/virsh_auth.conf create
he.xml
Domain HostedEngine created from he.xml

Access its webadmin gui and now all is as expected, with only one engine
vm...
Volumes for data and vmstore are there, but not the storage domains, but I
can create them without problems

Also if I exit the global maintenance the state passes from ReinitializeFSM
to EngineUp

[root@novirt2 ~]# hosted-engine --vm-status


--== Host novirt2.example.net (id: 1) status ==--

Host ID: 1
Host timestamp : 38553
Score  : 3400
Engine status  : {"vm": "up", "health": "good",
"detail": "Up"}
Hostname   : novirt2.example.net
Local maintenance  : False
stopped: False
crc32  : 5a3b40e1
conf_on_shared_storage : True
local_conf_timestamp   : 38553
Status up-to-date  : True
Extra metadata (valid at timestamp):
metadata_parse_version=1
metadata_feature_version=1
timestamp=38553 (Thu May 28 11:30:51 2020)
host-id=1
score=3400
vm_conf_refresh_time=38553 (Thu May 28 11:30:51 2020)
conf_on_shared_storage=True
maintenance=False
state=EngineUp
stopped=False
[root@novirt2 ~]#

Now go to test further functionalities.


Gianluca
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/JADLNHDOUYG5K7JVCZRSOUFC7LPN7FZO/


[ovirt-users] Re: Issues deploying 4.4 with HE on new EPYC hosts

2020-05-28 Thread Gianluca Cecchi
On Thu, May 28, 2020 at 10:22 AM Lucia Jelinkova 
wrote:

> This might help:
> https://lists.ovirt.org/pipermail/users/2017-January/079157.html
>
> On Thu, May 28, 2020 at 10:17 AM Gianluca Cecchi <
> gianluca.cec...@gmail.com> wrote:
>
>>
>>
>> On Wed, May 27, 2020 at 4:13 PM Mark R 
>> wrote:
>>
>>> Replying to my own post here, I've verified that it's currently not
>>> possible to do a greenfield deploy of oVirt 4.4.0 w/ hosted engine on EPYC
>>> CPUs due to the system setting a requirement of 'virt-ssbd' for the final
>>> HE definition after the move to shared storage. The local HE runs perfectly
>>> through the setup process because it correctly uses 'amd-ssbd' but
>>> unfortunately that doesn't stick after the disks are moved.
>>>
>>> You can work around it via 'virsh -r dumpxml HostedEngine >
>>> /tmp/he.xml', then editing that file to simply change 'virt-ssbd' to
>>> 'amd-ssbd'. Start it via 'virsh create /tmp/he.xml' and now it runs fine.
>>> You can get into the admin interface and if you want to run something hacky
>>> could at this point change the cluster CPU type from 'Secure AMD EPYC' to
>>> just 'AMD EPYC', take everything down and bring it back up cleanly...
>>> hosted engine will now work because the requirement for virt-ssbd (not
>>> available on EPYC when using CentOS 8.1 or presumably RHEL 8, amd-ssbd is
>>> needed) is gone.
>>>
>>>
>> I would like to test it during final stage of deployment, but the "virsh
>> create" command requires a password.
>>
>> [root@novirt2 log]# virsh create /tmp/he.xml
>> Please enter your authentication name:
>>
>> I don't remember how to setup a user so that I can run it on oVirt host..
>> any input?
>>
>> Just for my testing lab in 4.4. obviously...
>> Thans,
>> Gianluca
>>
>>
Thanks Lucia, in the mean time I found another e-mail reporting the same
credentials stored in that file (that are static and not randomly
generated..).

Unfortunately the strategy works to have the hosted engine vm started, but
it seems it is not recognized...

So I'm in the case of being during single host HCI deployment and in the
final stage with the unsupported tsx-ctrl cpu flag, see this thread tto:
https://lists.ovirt.org/archives/list/users@ovirt.org/thread/5LBCJGWTVRVTEWC5VSDQ2OINQ3OHKQ7K/

Strange that in
/var/log/ovirt-hosted-engine-setup/ovirt-hosted-engine-setup-ansible-create_target_vm-202042810039-c8h9k9.log
I have this

2020-05-28 10:01:16,234+0200 DEBUG var changed: host "localhost" var
"server_cpu_dict" type "" value: "{
"AMD EPYC": "EPYC",
"AMD Opteron G4": "Opteron_G4",
"AMD Opteron G5": "Opteron_G5",
"IBM POWER8": "POWER8",
"IBM POWER9": "POWER9",
"IBM z114, z196": "z196-base",
"IBM z13s, z13": "z13-base",
"IBM z14": "z14-base",
"IBM zBC12, zEC12": "zEC12-base",
"Intel Broadwell Family": "Broadwell-noTSX",
"Intel Cascadelake Server Family":
"Cascadelake-Server,-hle,-rtm,+arch-capabilities",
"Intel Haswell Family": "Haswell-noTSX",
"Intel IvyBridge Family": "IvyBridge",
"Intel Nehalem Family": "Nehalem",
"Intel SandyBridge Family": "SandyBridge",
"Intel Skylake Client Family": "Skylake-Client,-hle,-rtm",
"Intel Skylake Server Family": "Skylake-Server,-hle,-rtm",
"Intel Westmere Family": "Westmere",
"Secure AMD EPYC": "EPYC,+ibpb,+virt-ssbd",
"Secure Intel Broadwell Family":
"Broadwell-noTSX,+spec-ctrl,+ssbd,+md-clear",
"Secure Intel Cascadelake Server Family":
"Cascadelake-Server,+md-clear,+mds-no,-hle,-rtm,+tsx-ctrl,+arch-capabilities",
"Secure Intel Haswell Family":
"Haswell-noTSX,+spec-ctrl,+ssbd,+md-clear",
"Secure Intel IvyBridge Family":
"IvyBridge,+pcid,+spec-ctrl,+ssbd,+md-clear",
"Secure Intel Nehalem Family": "Nehalem,+spec-ctrl,+ssbd,+md-clear",
"Secure Intel SandyBridge Family":
"SandyBridge,+pcid,+spec-ctrl,+ssbd,+md-clear",
"Secure Intel Skylake Client Family":
"Skylake-Client,+spec-ctrl,+ssbd,+md-clear,-hle,-rtm",
"Secure Intel Skylake Server Family":
"Skylake-Server,+spec-ctrl,+ssbd,+md-clear,-hle,-rtm",
"Secure Intel Westmere Family":
"Westmere,+pcid,+spec-ctrl,+ssbd,+md-clear"
}"

and the tsx-ctrl flag is there.

but when during deployment it starts the final engine vm after copying the
local one to gluster storage, it gets:

May 28 10:06:59 novirt2 journal[13368]: unsupported configuration: unknown
CPU feature: tsx-ctrl

The VM is started and then stopped and so on, so I try some times the dump
command

virsh -r dumpxml HostedEngine > /tmp/he.xml

until I catch it
then I edit the file and remove the line with the tsx-ctrl flag and start
the vm

[root@novirt2 log]# virsh create /tmp/he.xml
Please enter your authentication name: vdsm@ovirt
Please enter your password:
Domain HostedEngine created from /tmp/he.xml

So far so good the engine vm starts and it is reachable on its final
hostname and engine service started and accessible web admin gui, but it is
not recognized by the host

The qemu-kvm command is this one:

qemu 20826  

[ovirt-users] Re: Issues deploying 4.4 with HE on new EPYC hosts

2020-05-28 Thread Lucia Jelinkova
This might help:
https://lists.ovirt.org/pipermail/users/2017-January/079157.html

On Thu, May 28, 2020 at 10:17 AM Gianluca Cecchi 
wrote:

>
>
> On Wed, May 27, 2020 at 4:13 PM Mark R  wrote:
>
>> Replying to my own post here, I've verified that it's currently not
>> possible to do a greenfield deploy of oVirt 4.4.0 w/ hosted engine on EPYC
>> CPUs due to the system setting a requirement of 'virt-ssbd' for the final
>> HE definition after the move to shared storage. The local HE runs perfectly
>> through the setup process because it correctly uses 'amd-ssbd' but
>> unfortunately that doesn't stick after the disks are moved.
>>
>> You can work around it via 'virsh -r dumpxml HostedEngine > /tmp/he.xml',
>> then editing that file to simply change 'virt-ssbd' to 'amd-ssbd'. Start it
>> via 'virsh create /tmp/he.xml' and now it runs fine. You can get into the
>> admin interface and if you want to run something hacky could at this point
>> change the cluster CPU type from 'Secure AMD EPYC' to just 'AMD EPYC', take
>> everything down and bring it back up cleanly... hosted engine will now work
>> because the requirement for virt-ssbd (not available on EPYC when using
>> CentOS 8.1 or presumably RHEL 8, amd-ssbd is needed) is gone.
>>
>>
> I would like to test it during final stage of deployment, but the "virsh
> create" command requires a password.
>
> [root@novirt2 log]# virsh create /tmp/he.xml
> Please enter your authentication name:
>
> I don't remember how to setup a user so that I can run it on oVirt host..
> any input?
>
> Just for my testing lab in 4.4. obviously...
> Thans,
> Gianluca
> ___
> Users mailing list -- users@ovirt.org
> To unsubscribe send an email to users-le...@ovirt.org
> Privacy Statement: https://www.ovirt.org/privacy-policy.html
> oVirt Code of Conduct:
> https://www.ovirt.org/community/about/community-guidelines/
> List Archives:
> https://lists.ovirt.org/archives/list/users@ovirt.org/message/BOOXPB5BR73D6MY2C6VFFY2TJUK2VVFL/
>
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/6GCGLS7HH6F5UVDD4BXFS4PZPJQBVV3S/


[ovirt-users] Re: Issues deploying 4.4 with HE on new EPYC hosts

2020-05-28 Thread Gianluca Cecchi
On Wed, May 27, 2020 at 4:13 PM Mark R  wrote:

> Replying to my own post here, I've verified that it's currently not
> possible to do a greenfield deploy of oVirt 4.4.0 w/ hosted engine on EPYC
> CPUs due to the system setting a requirement of 'virt-ssbd' for the final
> HE definition after the move to shared storage. The local HE runs perfectly
> through the setup process because it correctly uses 'amd-ssbd' but
> unfortunately that doesn't stick after the disks are moved.
>
> You can work around it via 'virsh -r dumpxml HostedEngine > /tmp/he.xml',
> then editing that file to simply change 'virt-ssbd' to 'amd-ssbd'. Start it
> via 'virsh create /tmp/he.xml' and now it runs fine. You can get into the
> admin interface and if you want to run something hacky could at this point
> change the cluster CPU type from 'Secure AMD EPYC' to just 'AMD EPYC', take
> everything down and bring it back up cleanly... hosted engine will now work
> because the requirement for virt-ssbd (not available on EPYC when using
> CentOS 8.1 or presumably RHEL 8, amd-ssbd is needed) is gone.
>
>
I would like to test it during final stage of deployment, but the "virsh
create" command requires a password.

[root@novirt2 log]# virsh create /tmp/he.xml
Please enter your authentication name:

I don't remember how to setup a user so that I can run it on oVirt host..
any input?

Just for my testing lab in 4.4. obviously...
Thans,
Gianluca
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/BOOXPB5BR73D6MY2C6VFFY2TJUK2VVFL/


[ovirt-users] Re: Issues deploying 4.4 with HE on new EPYC hosts

2020-05-28 Thread Lucia Jelinkova
Hi,

The cluster CPU type should be set to AMD EPYC, because your system does
not support Secure AMD EPYC type (it requires the virt-ssbd). Did you by
any chance specify the Secure variant during HE setup?

Lucia

On Wed, May 27, 2020 at 4:13 PM Mark R  wrote:

> Replying to my own post here, I've verified that it's currently not
> possible to do a greenfield deploy of oVirt 4.4.0 w/ hosted engine on EPYC
> CPUs due to the system setting a requirement of 'virt-ssbd' for the final
> HE definition after the move to shared storage. The local HE runs perfectly
> through the setup process because it correctly uses 'amd-ssbd' but
> unfortunately that doesn't stick after the disks are moved.
>
> You can work around it via 'virsh -r dumpxml HostedEngine > /tmp/he.xml',
> then editing that file to simply change 'virt-ssbd' to 'amd-ssbd'. Start it
> via 'virsh create /tmp/he.xml' and now it runs fine. You can get into the
> admin interface and if you want to run something hacky could at this point
> change the cluster CPU type from 'Secure AMD EPYC' to just 'AMD EPYC', take
> everything down and bring it back up cleanly... hosted engine will now work
> because the requirement for virt-ssbd (not available on EPYC when using
> CentOS 8.1 or presumably RHEL 8, amd-ssbd is needed) is gone.
> ___
> Users mailing list -- users@ovirt.org
> To unsubscribe send an email to users-le...@ovirt.org
> Privacy Statement: https://www.ovirt.org/privacy-policy.html
> oVirt Code of Conduct:
> https://www.ovirt.org/community/about/community-guidelines/
> List Archives:
> https://lists.ovirt.org/archives/list/users@ovirt.org/message/VFZT6QCQLEDHCRL75LL4TJWOLV7F43GG/
>
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/PBQBNKL42UG7JIY43HNWHK3VSDAT32UL/