[ovirt-users] Re: Support for Shared SAS storage

2020-08-07 Thread Vinícius Ferrão via Users
Really??

Treat it as FC??

Thats new for me.


On 8 Aug 2020, at 00:35, Jeff Bailey 
mailto:bai...@cs.kent.edu>> wrote:


I haven't tried with 4.4 but shared SAS works just fine with 4.3 (and has for 
many, many years).  You simply treat it as Fibre Channel.  If your LUNs aren't 
showing up I'd make sure they're being claimed as multipath devices.  You want 
them to be.  After that, just make sure they're sufficiently wiped so they 
don't look like they're in use.


On 8/7/2020 10:49 PM, Lao Dh via Users wrote:
Wow. That's sound bad. Then what storage type you choose at last (with your SAS 
connected storage)? VMware vSphere support DAS. Red Hat should do something.

2020年8月8日土曜日 4:06:34 GMT+8、Vinícius Ferrão via Users 
が書いたメール:


No, there’s no support for direct attached shared SAS storage on oVirt/RHV.

Fibre Channel is a different thing that oVirt/RHV supports.

> On 7 Aug 2020, at 08:52, hkexdong--- via Users 
> mailto:users@ovirt.org>> wrote:
>
> Hello Vinícius,
> Do you able to connect the SAS external storage?
> Now I've the problem during host engine setup. Select Fibre Channel and end 
> up show "No LUNS found".
> ___
> Users mailing list -- users@ovirt.org
> To unsubscribe send an email to 
> users-le...@ovirt.org
> Privacy Statement: https://www.ovirt.org/privacy-policy.html
> oVirt Code of Conduct: 
> https://www.ovirt.org/community/about/community-guidelines/
> List Archives: 
> https://lists.ovirt.org/archives/list/users@ovirt.org/message/RDPLKGIRN5ZGIEPWGOKMGNFZNMCEN5RC/


___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to 
users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives:
https://lists.ovirt.org/archives/list/users@ovirt.org/message/2CLI3YSYU7BPI62YANJXZV7RIQFOXXED/




___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to 
users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/WOBHQDCBZZK5WKRAUNHP5CGFYY3HQYYU/


___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to 
users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/UY52JRY5EMQJTMKG3POE2YXSFGL7P55S/

___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/275GTMI6XQKR52U32WPESHA4BPSAHWZF/


[ovirt-users] Re: Support for Shared SAS storage

2020-08-07 Thread Jeff Bailey
I haven't tried with 4.4 but shared SAS works just fine with 4.3 (and 
has for many, many years).  You simply treat it as Fibre Channel.  If 
your LUNs aren't showing up I'd make sure they're being claimed as 
multipath devices.  You want them to be.  After that, just make sure 
they're sufficiently wiped so they don't look like they're in use.



On 8/7/2020 10:49 PM, Lao Dh via Users wrote:
Wow. That's sound bad. Then what storage type you choose at last (with 
your SAS connected storage)? VMware vSphere support DAS. Red Hat 
should do something.


2020年8月8日土曜日 4:06:34 GMT+8、Vinícius Ferrão via Users 
が書いたメール:



No, there’s no support for direct attached shared SAS storage on 
oVirt/RHV.


Fibre Channel is a different thing that oVirt/RHV supports.

> On 7 Aug 2020, at 08:52, hkexdong--- via Users > wrote:

>
> Hello Vinícius,
> Do you able to connect the SAS external storage?
> Now I've the problem during host engine setup. Select Fibre Channel 
and end up show "No LUNS found".

> ___
> Users mailing list -- users@ovirt.org 
> To unsubscribe send an email to users-le...@ovirt.org 


> Privacy Statement: https://www.ovirt.org/privacy-policy.html
> oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
> List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/RDPLKGIRN5ZGIEPWGOKMGNFZNMCEN5RC/ 




___
Users mailing list -- users@ovirt.org 
To unsubscribe send an email to users-le...@ovirt.org 


Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/

List Archives:
https://lists.ovirt.org/archives/list/users@ovirt.org/message/2CLI3YSYU7BPI62YANJXZV7RIQFOXXED/ 




___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/WOBHQDCBZZK5WKRAUNHP5CGFYY3HQYYU/
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/UY52JRY5EMQJTMKG3POE2YXSFGL7P55S/


[ovirt-users] Re: oVirt Node 4.1.1 Hosted Engine Deployment Fibre Channel No LUNS found

2020-08-07 Thread Lao Dh via Users
 NFS utilize the network adapter, am I right? The LAN port max speed on the 
storage is just 100Mb/s. That's too slow for hosting VMs.
Regards,Jeremy

2020年8月8日土曜日 2:15:08 GMT+8、Strahil Nikolov via Users 
が書いたメール:  
 
 Do  you have the option for POSIX compliant FS ?
If not,  I guess the simplest way is to setup NFS export that to be used for 
the engine.

Best  Regards,
Strahil Nikolov

На 7 август 2020 г. 15:59:55 GMT+03:00, Lao Dh via Users  
написа:
>Hello Strahil,I follow the guide in "Installing oVirt as a self-hosted
>engine using the Cockpit web interface". Only 1 host and 1 SAS storage.
>Host and storage are direct attached. CentOS 8 was installed in host
>local disk.Only 1 SAS cable connected. So I think shouldn't be the
>issue of Multipath.
>
>Regards,Jeremy
>
>
>
>
>
>2020年8月7日金曜日 20:37:47 GMT+8、Strahil Nikolov
>が書いたメール:  
> 
> Are you using the single-node wizard  ?
>
>Best Regards,
>Strahil Nikolov
>
>На 7 август 2020 г. 11:34:52 GMT+03:00, hkexdong--- via Users
> написа:
>>I've an external RAID subsystem connect to the host by SAS cable
>>(SFF-8644).
>>I follow the instructions of the RAID card manufacture. Include the
>>driver during host installation. And I can see the created RAID
>volumes
>>(LUNs) available in "Installation Destination". Although I choose to
>>install the engine in host local disk.
>>The installation success and I proceed to hosted engine deployment by
>>Cockpit. And now I stuck at part 4 Storage.
>>I believe "Storage Type" select "Fibre Channel" is correct even I'm
>not
>>using fibre cable. As NFS and iSCSI are utilize network.
>>I confirm there are 2 RAID volume (LUN0 & LUN1) created in the
>external
>>RAID subsystem. Why oVirt cannot discover them. What could be wrong :(
>>___
>>Users mailing list -- users@ovirt.org
>>To unsubscribe send an email to users-le...@ovirt.org
>>Privacy Statement: https://www.ovirt.org/privacy-policy.html
>>oVirt Code of Conduct:
>>https://www.ovirt.org/community/about/community-guidelines/
>>List Archives:
>>https://lists.ovirt.org/archives/list/users@ovirt.org/message/IIMW6VBS4JBL5WJFTS7AWDS5ENQDB63Y/
> 
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/5WYU5SRXKGYDTTLA5WOMYZQULXP4OGLN/
  ___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/TITOLTY5YV5BRN63ZUVRM22YJ2MSKZXF/


[ovirt-users] Re: Support for Shared SAS storage

2020-08-07 Thread Lao Dh via Users
 Wow. That's sound bad. Then what storage type you choose at last (with your 
SAS connected storage)? VMware vSphere support DAS. Red Hat should do something.

2020年8月8日土曜日 4:06:34 GMT+8、Vinícius Ferrão via Users 
が書いたメール:  
 
 No, there’s no support for direct attached shared SAS storage on oVirt/RHV.

Fibre Channel is a different thing that oVirt/RHV supports.

> On 7 Aug 2020, at 08:52, hkexdong--- via Users  wrote:
> 
> Hello Vinícius,
> Do you able to connect the SAS external storage?
> Now I've the problem during host engine setup. Select Fibre Channel and end 
> up show "No LUNS found".
> ___
> Users mailing list -- users@ovirt.org
> To unsubscribe send an email to users-le...@ovirt.org
> Privacy Statement: https://www.ovirt.org/privacy-policy.html
> oVirt Code of Conduct: 
> https://www.ovirt.org/community/about/community-guidelines/
> List Archives: 
> https://lists.ovirt.org/archives/list/users@ovirt.org/message/RDPLKGIRN5ZGIEPWGOKMGNFZNMCEN5RC/

___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/2CLI3YSYU7BPI62YANJXZV7RIQFOXXED/
  ___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/WOBHQDCBZZK5WKRAUNHP5CGFYY3HQYYU/


[ovirt-users] Re: Support for Shared SAS storage

2020-08-07 Thread Vinícius Ferrão via Users
No, there’s no support for direct attached shared SAS storage on oVirt/RHV.

Fibre Channel is a different thing that oVirt/RHV supports.

> On 7 Aug 2020, at 08:52, hkexdong--- via Users  wrote:
> 
> Hello Vinícius,
> Do you able to connect the SAS external storage?
> Now I've the problem during host engine setup. Select Fibre Channel and end 
> up show "No LUNS found".
> ___
> Users mailing list -- users@ovirt.org
> To unsubscribe send an email to users-le...@ovirt.org
> Privacy Statement: https://www.ovirt.org/privacy-policy.html
> oVirt Code of Conduct: 
> https://www.ovirt.org/community/about/community-guidelines/
> List Archives: 
> https://lists.ovirt.org/archives/list/users@ovirt.org/message/RDPLKGIRN5ZGIEPWGOKMGNFZNMCEN5RC/

___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/2CLI3YSYU7BPI62YANJXZV7RIQFOXXED/


[ovirt-users] Re: oVirt Node 4.1.1 Hosted Engine Deployment Fibre Channel No LUNS found

2020-08-07 Thread Strahil Nikolov via Users
Do  you have the option for POSIX compliant FS ?
If not,  I guess the simplest way is to setup NFS export that to be used for 
the engine.

Best  Regards,
Strahil Nikolov

На 7 август 2020 г. 15:59:55 GMT+03:00, Lao Dh via Users  
написа:
>Hello Strahil,I follow the guide in "Installing oVirt as a self-hosted
>engine using the Cockpit web interface". Only 1 host and 1 SAS storage.
>Host and storage are direct attached. CentOS 8 was installed in host
>local disk.Only 1 SAS cable connected. So I think shouldn't be the
>issue of Multipath.
>
>Regards,Jeremy
>
>
>
>
>
>2020年8月7日金曜日 20:37:47 GMT+8、Strahil Nikolov
>が書いたメール:  
> 
> Are you using the single-node wizard  ?
>
>Best Regards,
>Strahil Nikolov
>
>На 7 август 2020 г. 11:34:52 GMT+03:00, hkexdong--- via Users
> написа:
>>I've an external RAID subsystem connect to the host by SAS cable
>>(SFF-8644).
>>I follow the instructions of the RAID card manufacture. Include the
>>driver during host installation. And I can see the created RAID
>volumes
>>(LUNs) available in "Installation Destination". Although I choose to
>>install the engine in host local disk.
>>The installation success and I proceed to hosted engine deployment by
>>Cockpit. And now I stuck at part 4 Storage.
>>I believe "Storage Type" select "Fibre Channel" is correct even I'm
>not
>>using fibre cable. As NFS and iSCSI are utilize network.
>>I confirm there are 2 RAID volume (LUN0 & LUN1) created in the
>external
>>RAID subsystem. Why oVirt cannot discover them. What could be wrong :(
>>___
>>Users mailing list -- users@ovirt.org
>>To unsubscribe send an email to users-le...@ovirt.org
>>Privacy Statement: https://www.ovirt.org/privacy-policy.html
>>oVirt Code of Conduct:
>>https://www.ovirt.org/community/about/community-guidelines/
>>List Archives:
>>https://lists.ovirt.org/archives/list/users@ovirt.org/message/IIMW6VBS4JBL5WJFTS7AWDS5ENQDB63Y/
> 
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/5WYU5SRXKGYDTTLA5WOMYZQULXP4OGLN/


[ovirt-users] Re: oVirt node 4.4.1 deploy FQDN not reachable

2020-08-07 Thread Roberto Nunin
Il giorno ven 7 ago 2020 alle ore 12:59 Roberto Nunin 
ha scritto:

> Hi all
>
> I have an issue while trying to deploy hyperconverged solution on three
> ovirt node boxes.
> ISO used is ovirt-node-ng-installer-4.4.1-2020072310.el8.iso.
>
> When from cockpit I choose gluster deployment, I have a form where I can
> insert both gluster fqdn names and public fqdn names (that is what I need,
> due to distinct network cards & networks)
>
> If I insert right names, that are resolved by nodes, I receive, anyway,
> FQDN is not reachable below Host1 entries.
>
> As already stated, these names are certainly resolved by DNS used.
> Any hints about ?
>
>
Using ovirt-node-ng-installer-4.4.2-2020080612.el8.iso (4.4.2 RC2) the same
issue do not happen.


-- 
Roberto Nunin
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/PFBLFLDWWZKL5ENPW6B6JXLOEQ7UT6LK/


[ovirt-users] Re: Why OVA imports failed (the other reason...)

2020-08-07 Thread thomas
Here is the explanation, I think:
root 12319 12313 15 16:59 pts/000:00:56 qemu-img convert -O qcow2 
/dev/loop0 
/rhev/data-center/mnt/glusterSD/192.168.0.91:_vmstore/9d1b8774-c5dc-46a8-bfa2-6a6db5851195/images/3be7c1bb-377c-4d5e-b4f6-1a6574b8a52b/845cdd93-def8-4d84-9a08-f8c991f89fe3

This is where the image is entering from the OVA source and gets written on the 
Gluster.

I consistently chose one of the computer cluster nodes, because they have the 
bigger CPUs and it also happened to have the OVA file locally, so the network 
wouldn't have to carry source and sink traffic...

But unless I use one of the nodes that actually have bricks in the Gluster, I 
get this strange silent failure.

First thing I did notice is that during the import dialog, more details about 
the engines are actually visible (disk and network details), before I actually 
launch the import, although Cockpit doesn't seem to care.

I then theorized, that the compute nodes won't actually mount the Gluster file 
system on /rhev, so the target would be missing... but they do in fact...

I'll not go into further details but take away this lesson:

"If you want to import an OVA files to a Gluster farm, you must use a node 
which is part of the gluster to do the import on."

Ah, yes, the import succeeded and oVirt immediately chose the nicely bigger 
Xeon-D node to run the VM...

Now I just need to find out how to twiddle OVA export files from oVirt to make 
them digestable for VMware and VirtualBox...
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/QVN6BMIYATKZF6K3EO7HU5FRJD4LBIA2/


[ovirt-users] Re: ovirt4.4 and ldap auth with starttls

2020-08-07 Thread Martin Perina
Hi,

legacy ciphers and protocols are disabled on EL8 by default, for more
information please take a look at crypto-policies:

https://access.redhat.com/articles/3666211
https://access.redhat.com/articles/3642912

So in theory if you switch to LEGACY crypto-policy on ovirt-engine machine,
you could be able to use TLSv1, but we have never tested it and we highly
recommend to use only TLSv1.2 or newer.

Regards,
Martin


On Fri, Aug 7, 2020 at 2:11 PM Jiří Sléžka  wrote:

> Hello,
>
> better start new thread...
>
> it looks like tls1.0 is not supported anymore in
> ovirt-engine-extension-aaa-ldap
>
> I just migrated engine from 4.3 to 4.4 and cannot use my ldap profile
> because
>
> server_error: The connection reader was unable to successfully complete
> TLS negotiation: SSLHandshakeException(The server selected protocol
> version TLS10 is not accepted by client preferences [TLS12]),
> ldapSDKVersion=4.0.14, revision=c0fb784eebf9d36a67c736d0428fb3577f2e25bb
>
> but when I try to force tls 1.0 by setting
>
> ...
> pool.default.ssl.startTLS = true
> pool.default.ssl.startTLSProtocol = TLSv1
> ...
>
> I got
>
> server_error: The connection reader was unable to successfully complete
> TLS negotiation: SSLHandshakeException(No appropriate protocol (protocol
> is disabled or cipher suites are inappropriate)), ldapSDKVersion=4.0.14,
> revision=c0fb784eebf9d36a67c736d0428fb3577f2e25bb
>
> I can't switch to something better on server side, is it possible to
> allow weak ciphers/protocols on client side?
>
> Thanks in advance,
>
> Jiri
>
>
> ___
> Users mailing list -- users@ovirt.org
> To unsubscribe send an email to users-le...@ovirt.org
> Privacy Statement: https://www.ovirt.org/privacy-policy.html
> oVirt Code of Conduct:
> https://www.ovirt.org/community/about/community-guidelines/
> List Archives:
> https://lists.ovirt.org/archives/list/users@ovirt.org/message/CBVIAEO3R4BQNJ5453O2D5NJH7FQ7YGR/
>


-- 
Martin Perina
Manager, Software Engineering
Red Hat Czech s.r.o.
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/IOMG3R7W3RTGWNEIDRYEVHSWLUGCFZMJ/


[ovirt-users] Why OVA imports failed (the other reason...)

2020-08-07 Thread thomas
Empty disks from exports that went wrong didn't help. But that's fixed now, 
even if I can't fully validate the OVA exports on VMware and VirtualBox.

The export/import target for the *.ova files is an SSD hosted xfs file system 
on a pure compute Xeon D oVirt node, exported and automounted to the 3nHCI 
cluster, also all SSD but J5005 Atoms.

As I import the OVA file, I chose the Xeon-D as the import node and the *local 
path* on that host for the import. Cockpit checks the OVA file, detects the 
machine inside, lets me select and chose it for import, potentially overriding 
some parameters, lets me choose the target storage volume, sets up the job... 
and then fails, rather siliently and with very little in terms of error 
reporting ("connection closed") is the best I got.

Now that same process worked just fine on a single node HCI cluster (also J5005 
Atom), which had me a bit stunned at first, but gave a hint as to the cause: 
Parts of the input job, most likely an qemu-img job, isn't run via the machine 
you selected in the first step and unless the path is global (e.g. external 
NFS), it fails.

If someone from the oVirt team could check and validate or disprove this 
theory, that could be documented and/or added as a check to avoid people 
falling into the same trap.

While I was testing this using a global automount path, my cluster failed me 
(creating and deleting VMs a bit too quickly?) and I had to struggle for a 
while to have it recover.

While those transient ailures are truly frightening, oVirt's ability to recover 
from these scenarios is quite simply awsome.
I guess it's really mostly miscommunication and not real failures and oVirt has 
lots of logic to rectify that.
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/4QJ4KEOMBBF5KV3LMPEXTGHHV67ZL2LG/


[ovirt-users] Re: Has anyone ever had success importing an OVA VM exported from oVirt to VirtualBox or VMware? On Windows?

2020-08-07 Thread thomas
Not yet, because I was fighting a nasty outage, evidently created from 
importing, starting and deleting images too quickly for my Atoms + Xeon-D based 
test farm...

But it's on the list :-)

Ciao, Thomas
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/RFQAKKYS6LP3TYEEVOGY7BWIZ5URKHCZ/


[ovirt-users] Re: PATCH method not allowed in imageio

2020-08-07 Thread Nir Soffer
On Fri, Aug 7, 2020, 15:52 Łukasz Kołaciński 
wrote:

> Hello,
> Thank you for previous answers. I don't have problems with checkpoints
> anymore.
>
> I am trying to send PATCH request to imageio but it seems like I don't
> have write access. In the documentation I saw that it must be a RAW format.
> I think I am missing something else.
>
> OPTIONS Request:
> {
> "features": [
> "extents"
> ],
> "max_readers": 8,
> "max_writers": 8
> }
> Allow: OPTIONS,GET
>
> PATCH Request:
> *You are not allowed to access this resource: Ticket
> 485493df-b07a-495c-8aa3-824aad45b4ab forbids write*
>
> I created transfer using java sdk:
> ImageTransfer imageTransfer =
> connection.getImageTransfersSvc().addForDisk().imageTransfer(
> imageTransfer()
> .direction(direction)
>

Is this a backup? You cannot write to disks during backup.

.disk(disk)
> .backup(backup)
> .inactivityTimeout(120)
> .format(DiskFormat.RAW))
> .send().imageTransfer();
>

Can you explain what are you trying to do?


> It's similar to python examples.
>
> Best Regards
>
> Łukasz Kołaciński
>
> Junior Java Developer
>
> e-mail: l.kolacin...@storware.eu
> 
>
>
>
>
> *[image: STORWARE]* 
>
>
>
> *ul. Leszno 8/44 01-192 Warszawa www.storware.eu
> *
>
> *[image: facebook]* 
>
> *[image: twitter]* 
>
> *[image: linkedin]* 
>
> *[image: Storware_Stopka_09]*
> 
>
>
>
> *Storware Spółka z o.o. nr wpisu do ewidencji KRS dla M.St. Warszawa
> 000510131* *, NIP 5213672602.** Wiadomość ta jest przeznaczona jedynie
> dla osoby lub podmiotu, który jest jej adresatem i może zawierać poufne
> i/lub uprzywilejowane informacje. Zakazane jest jakiekolwiek przeglądanie,
> przesyłanie, rozpowszechnianie lub inne wykorzystanie tych informacji lub
> podjęcie jakichkolwiek działań odnośnie tych informacji przez osoby lub
> podmioty inne niż zamierzony adresat. Jeżeli Państwo otrzymali przez
> pomyłkę tę informację prosimy o poinformowanie o tym nadawcy i usunięcie
> tej wiadomości z wszelkich komputerów. **This message is intended only
> for the person or entity to which it is addressed and may contain
> confidential and/or privileged material. Any review, retransmission,
> dissemination or other use of, or taking of any action in reliance upon,
> this information by persons or entities other than the intended recipient
> is prohibited. If you have received this message in error, please contact
> the sender and remove the material from all of your computer systems.*
>
>
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/LJOZQKHMSBLVRNTJKOJMWU5ADF6YURYZ/


[ovirt-users] Re: oVirt Node 4.1.1 Hosted Engine Deployment Fibre Channel No LUNS found

2020-08-07 Thread Lao Dh via Users
 Hello Strahil,I follow the guide in "Installing oVirt as a self-hosted engine 
using the Cockpit web interface". Only 1 host and 1 SAS storage. Host and 
storage are direct attached. CentOS 8 was installed in host local disk.Only 1 
SAS cable connected. So I think shouldn't be the issue of Multipath.

Regards,Jeremy





2020年8月7日金曜日 20:37:47 GMT+8、Strahil Nikolov が書いたメール: 
 
 
 Are you using the single-node wizard  ?

Best Regards,
Strahil Nikolov

На 7 август 2020 г. 11:34:52 GMT+03:00, hkexdong--- via Users  
написа:
>I've an external RAID subsystem connect to the host by SAS cable
>(SFF-8644).
>I follow the instructions of the RAID card manufacture. Include the
>driver during host installation. And I can see the created RAID volumes
>(LUNs) available in "Installation Destination". Although I choose to
>install the engine in host local disk.
>The installation success and I proceed to hosted engine deployment by
>Cockpit. And now I stuck at part 4 Storage.
>I believe "Storage Type" select "Fibre Channel" is correct even I'm not
>using fibre cable. As NFS and iSCSI are utilize network.
>I confirm there are 2 RAID volume (LUN0 & LUN1) created in the external
>RAID subsystem. Why oVirt cannot discover them. What could be wrong :(
>___
>Users mailing list -- users@ovirt.org
>To unsubscribe send an email to users-le...@ovirt.org
>Privacy Statement: https://www.ovirt.org/privacy-policy.html
>oVirt Code of Conduct:
>https://www.ovirt.org/community/about/community-guidelines/
>List Archives:
>https://lists.ovirt.org/archives/list/users@ovirt.org/message/IIMW6VBS4JBL5WJFTS7AWDS5ENQDB63Y/
>  ___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/KVSZ7BGMGKLYAQSSAEXJB5GOZRNYVBQ4/


[ovirt-users] Re: oVirt Node 4.1.1 Hosted Engine Deployment Fibre Channel No LUNS found

2020-08-07 Thread Strahil Nikolov via Users
Are you using the single-node wizard  ?

Best Regards,
Strahil Nikolov

На 7 август 2020 г. 11:34:52 GMT+03:00, hkexdong--- via Users  
написа:
>I've an external RAID subsystem connect to the host by SAS cable
>(SFF-8644).
>I follow the instructions of the RAID card manufacture. Include the
>driver during host installation. And I can see the created RAID volumes
>(LUNs) available in "Installation Destination". Although I choose to
>install the engine in host local disk.
>The installation success and I proceed to hosted engine deployment by
>Cockpit. And now I stuck at part 4 Storage.
>I believe "Storage Type" select "Fibre Channel" is correct even I'm not
>using fibre cable. As NFS and iSCSI are utilize network.
>I confirm there are 2 RAID volume (LUN0 & LUN1) created in the external
>RAID subsystem. Why oVirt cannot discover them. What could be wrong :(
>___
>Users mailing list -- users@ovirt.org
>To unsubscribe send an email to users-le...@ovirt.org
>Privacy Statement: https://www.ovirt.org/privacy-policy.html
>oVirt Code of Conduct:
>https://www.ovirt.org/community/about/community-guidelines/
>List Archives:
>https://lists.ovirt.org/archives/list/users@ovirt.org/message/IIMW6VBS4JBL5WJFTS7AWDS5ENQDB63Y/
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/REXL3ZWSQXABBO5ALG6CTYJHEHSY4RFD/


[ovirt-users] ovirt4.4 and ldap auth with starttls

2020-08-07 Thread Jiří Sléžka
Hello,

better start new thread...

it looks like tls1.0 is not supported anymore in
ovirt-engine-extension-aaa-ldap

I just migrated engine from 4.3 to 4.4 and cannot use my ldap profile
because

server_error: The connection reader was unable to successfully complete
TLS negotiation: SSLHandshakeException(The server selected protocol
version TLS10 is not accepted by client preferences [TLS12]),
ldapSDKVersion=4.0.14, revision=c0fb784eebf9d36a67c736d0428fb3577f2e25bb

but when I try to force tls 1.0 by setting

...
pool.default.ssl.startTLS = true
pool.default.ssl.startTLSProtocol = TLSv1
...

I got

server_error: The connection reader was unable to successfully complete
TLS negotiation: SSLHandshakeException(No appropriate protocol (protocol
is disabled or cipher suites are inappropriate)), ldapSDKVersion=4.0.14,
revision=c0fb784eebf9d36a67c736d0428fb3577f2e25bb

I can't switch to something better on server side, is it possible to
allow weak ciphers/protocols on client side?

Thanks in advance,

Jiri




smime.p7s
Description: S/MIME Cryptographic Signature
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/CBVIAEO3R4BQNJ5453O2D5NJH7FQ7YGR/


[ovirt-users] Re: Support for Shared SAS storage

2020-08-07 Thread hkexdong--- via Users
Hello Vinícius,
Do you able to connect the SAS external storage?
Now I've the problem during host engine setup. Select Fibre Channel and end up 
show "No LUNS found".
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/RDPLKGIRN5ZGIEPWGOKMGNFZNMCEN5RC/


[ovirt-users] Re: Deploy host engine error: The task includes an option with an undefined variable

2020-08-07 Thread Sandro Bonazzola
Can you please open a bug about this?

Il giorno mer 10 giu 2020 alle ore 20:21 Angel R. Gonzalez <
angel.gonza...@uam.es> ha scritto:

> Hello!
> Thanks for your answers.
>
> First, I try to modify 01_create_target_hosted_engine_vm.yml file with
> the below code, and Redeploy. The process don't run. I've typed the code
> again with carefully, and the result is same. I've eliminated the code
> and Redeploy start again until find the error.
>
> After this, I've checked the mails with subject: Issues deploying
> 4.4.with HE on new EPYC hosts, and I think that is a problem with AMD
> processors.
>
> The scenario:
> serverlabs-engine -> 8x Intel(R) Xeon(R) CPU E5410 @ 2.33GHz. This node
> execute wizard Hosted engine
> serverlabs-node2 -> 8x Intel(R) Xeon(R) CPU E31230 @ 3.20GHz. This node
> has configured glusterfs storage
> Both CentOS-8.1.1911-x86_64 ISO LIVE DVD
> kernel 4.18.0-147.8.1.el8_1.x86_64 #1 SMP Thu Apr 9 13:49:54 UTC 2020
> x86_64 x86_64 x86_64 GNU/Linux
>
> # rpm -q qemu-kvm libvirt
> qemu-kvm-4.1.0-23.el8.1.x86_64
> libvirt-5.6.0-10.el8.x86_64
>
> The process running in host node (serverlabs-engine) in storage phase
> deployment:
>
> qemu  8455 1 52 17:46 ?00:31:09 /usr/libexec/qemu-kvm
> -name guest=HostedEngineLocal,debug-threads=on -S -object
> secret,id=masterKey0,format=raw,file=/var/lib/libvirt/qemu/domain-1-HostedEngineLocal/master-key.aes
>
> -machine pc-q35-rhel8.1.0,accel=kvm,usb=off,dump-guest-core=off -cpu
> Penryn,vme=on,ss=on,x2apic=on,tsc-deadline=on,hypervisor=on,arat=on,tsc-adjust=on,arch-capabilities=on,skip-l1dfl-vmentry=on,kvmclock=on
>
> -m 8192 -overcommit mem-lock=off -smp 4,sockets=4,cores=1,threads=1
> -uuid 4af397d7-4c81-4044-934f-90138288e09a -no-user-config -nodefaults
> -chardev socket,id=charmonitor,fd=37,server,nowait -mon
> chardev=charmonitor,id=monitor,mode=control -rtc base=utc -no-shutdown
> -global ICH9-LPC.disable_s3=1 -global ICH9-LPC.disable_s4=1 -boot
> menu=off,strict=on -device
> pcie-root-port,port=0x10,chassis=1,id=pci.1,bus=pcie.0,multifunction=on,addr=0x2
>
> -device
> pcie-root-port,port=0x11,chassis=2,id=pci.2,bus=pcie.0,addr=0x2.0x1
> -device
> pcie-root-port,port=0x12,chassis=3,id=pci.3,bus=pcie.0,addr=0x2.0x2
> -device
> pcie-root-port,port=0x13,chassis=4,id=pci.4,bus=pcie.0,addr=0x2.0x3
> -device
> pcie-root-port,port=0x14,chassis=5,id=pci.5,bus=pcie.0,addr=0x2.0x4
> -device virtio-serial-pci,id=virtio-serial0,bus=pci.2,addr=0x0 -drive
> file=/var/tmp/localvmaodqdyv8/images/6c7c4d4b-9c11-485d-98e0-466a09888515/c16b87ac-f9d4-491d-a972-7dc333a324a0,format=qcow2,if=none,id=drive-virtio-disk0
>
> -device
> virtio-blk-pci,scsi=off,bus=pci.3,addr=0x0,drive=drive-virtio-disk0,id=virtio-disk0,bootindex=1
>
> -drive
> file=/var/tmp/localvmaodqdyv8/seed.iso,format=raw,if=none,id=drive-sata0-0-0,readonly=on
>
> -device ide-cd,bus=ide.0,drive=drive-sata0-0-0,id=sata0-0-0 -netdev
> tap,fd=39,id=hostnet0,vhost=on,vhostfd=40 -device
> virtio-net-pci,netdev=hostnet0,id=net0,mac=00:16:3e:5a:57:25,bus=pci.1,addr=0x0
>
> -chardev pty,id=charserial0 -device
> isa-serial,chardev=charserial0,id=serial0 -chardev
> socket,id=charchannel0,fd=41,server,nowait -device
> virtserialport,bus=virtio-serial0.0,nr=1,chardev=charchannel0,id=channel0,name=org.qemu.guest_agent.0
>
> -vnc 127.0.0.1:0 -device VGA,id=video0,vgamem_mb=16,bus=pcie.0,addr=0x1
> -object rng-random,id=objrng0,filename=/dev/random -device
> virtio-rng-pci,rng=objrng0,id=rng0,bus=pci.4,addr=0x0 -sandbox
> on,obsolete=deny,elevateprivileges=deny,spawn=deny,resourcecontrol=deny
> -msg timestamp=on
>
>
>
> Finally, I've searched server_cpu_list and server_cpu_dist from
> ovirt-hosted-engine-setup-ansible-create_target_vm-2020510182419-vkgvze.log
>
> file:
>
>
> 2020-06-10 18:24:22,516+0200 DEBUG var changed: host "localhost" var
> "he_graphics_device" type " 'ansible.parsing.yaml.objects.AnsibleUnicode'>" value: ""vnc""
> 2020-06-10 18:24:22,516+0200 DEBUG var changed: host "localhost" var
> "he_vm_name" type " 'ansible.parsing.yaml.objects.AnsibleUnicode'>" value: ""HostedEngine""
> 2020-06-10 18:24:22,516+0200 DEBUG var changed: host "localhost" var
> "he_host_name" type " 'ansible.parsing.yaml.objects.AnsibleUnicode'>" value:
> ""serverlabs-engine""
> 2020-06-10 18:24:22,517+0200 DEBUG var changed: host "localhost" var
> "he_console_type" type " 'ansible.parsing.yaml.objects.AnsibleUnicode'>" value: ""vnc""
> 2020-06-10 18:24:22,517+0200 DEBUG var changed: host "localhost" var
> "he_cpu_type" type " 'ansible.parsing.yaml.objects.AnsibleUnicode'>" value: ""model_Penryn""
> 2020-06-10 18:24:22,517+0200 DEBUG var changed: host "localhost" var
> "he_smtp_server" type " 'ansible.parsing.yaml.objects.AnsibleUnicode'>" value: ""localhost""
> 
> 
> .
> 2020-06-10 18:24:26,064+0200 DEBUG var changed: host "localhost" var
> "ansible_mounts" type "" value: "[
>  {
>  "block_available": 43397299,
>  "block_size": 4096,
>  "block_total": 51343866,
>  

[ovirt-users] oVirt node 4.4.1 deploy FQDN not reachable

2020-08-07 Thread Roberto Nunin
Hi all

I have an issue while trying to deploy hyperconverged solution on three
ovirt node boxes.
ISO used is ovirt-node-ng-installer-4.4.1-2020072310.el8.iso.

When from cockpit I choose gluster deployment, I have a form where I can
insert both gluster fqdn names and public fqdn names (that is what I need,
due to distinct network cards & networks)

If I insert right names, that are resolved by nodes, I receive, anyway,
FQDN is not reachable below Host1 entries.

As already stated, these names are certainly resolved by DNS used.
Any hints about ?

-- 
Roberto Nunin
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/GI5S22M3PZHJB22IXKSZ6ZAC6U33HGP7/


[ovirt-users] Re: migrating standalone engine to selfhosted and upgrade from 4.3 to 4.4 in one step

2020-08-07 Thread Jiří Sléžka
On 8/7/20 9:50 AM, Jiří Sléžka wrote:
> On 8/5/20 2:07 PM, Jiří Sléžka wrote:
>> On 8/3/20 11:12 AM, Jiří Sléžka wrote:
>>> Hello,
>>>
>>> I have 4 host cluster managed with standalone engine in version 4.3 and
>>> I would like to migrate this standalone engine to 4.4 as hosted engine.
>>>
>>> I have two new hosts which I would like to use as base for new HE
>>> cluster. (new hosts are Intel based, old ones are AMD Opteron based -
>>> new cluster will have 4.4 compatibility, old one have to stay at 4.2
>>> compatibility level).
>>>
>>> I red this
>>>
>>> https://www.ovirt.org/documentation/migrating_from_a_standalone_manager_to_a_self-hosted_engine/
>>>
>>> but the question is: Can I migrate and upgrade in one step? Have anybody
>>> did that already? If it is not possible what is a suggested approach?
>>
>> I just tried it. It looks like it could work at least until installation
>> process want to login into engine. It looks like it does not use valid
>> login name nor password.
>>
>> [ INFO  ] TASK [ovirt.hosted_engine_setup : Expose engine VM webui over
>> a local port via ssh port forwarding]
>> [ INFO  ] changed: [localhost]
>> [ INFO  ] TASK [ovirt.hosted_engine_setup : Evaluate temporary bootstrap
>> engine URL]
>> [ INFO  ] ok: [localhost]
>> [ INFO  ] The bootstrap engine is temporary accessible over
>> https://ovirt05.net.slu.cz:6900/ovirt-engine/
>> [ INFO  ] TASK [ovirt.hosted_engine_setup : Detect VLAN ID]
>> [ INFO  ] changed: [localhost]
>> [ INFO  ] TASK [ovirt.hosted_engine_setup : Set Engine public key as
>> authorized key without validating the TLS/SSL certificates]
>> [ INFO  ] changed: [localhost]
>> [ INFO  ] TASK [ovirt.hosted_engine_setup : include_tasks]
>> [ INFO  ] ok: [localhost]
>> [ INFO  ] TASK [ovirt.hosted_engine_setup : Obtain SSO token using
>> username/password credentials]
>> [ INFO  ] ok: [localhost]
>> [ INFO  ] TASK [ovirt.hosted_engine_setup : Ensure that the target
>> datacenter is present]
>> [ ERROR ] ovirtsdk4.AuthError: Error during SSO authentication
>> access_denied : Cannot authenticate user 'None@N/A': No valid profile
>> found in credentials..
>> [ ERROR ] fatal: [localhost]: FAILED! => {"changed": false, "msg":
>> "Error during SSO authentication access_denied : Cannot authenticate
>> user 'None@N/A': No valid profile found in credentials.."}
>>
>> I tried to login to https://ovirt05.net.slu.cz:6900/ovirt-engine/ and it
>> probably accept username admin@internal and new password entered during
>> hosted engine deploy but then it display error "The provided
>> authorization grant for the auth code has expired."
>>
>> Maybe it is related to this bug (and custom 3rd party Apache certificate)
>>
>> https://bugzilla.redhat.com/show_bug.cgi?id=1715767
>>
>> in my case it looks like on engine vm in file
>>
>> /etc/pki/ovirt-engine/apache-ca.pem
>>
>> is original certificate from backup which is for ovirt.slu.cz fqdn. For
>> new hosted engine I use new fqdn ovirt.net.slu.cz. Should I change
>> ovirt.slu.cz record to point to new ip address (it have to be one from
>> ovirtmgmt subnet) and then try restore? Documentation is not much clear
>> in this particular subject.
> 
> well, I will answer myself
> 
> * setting fqdn is not probably important at this time, self hosted
> engine is prepared with modified /etc/hosts
> 
> * main problem was that I am using 3rd party certificate for long time
> so I didn't mention this documentation section
> 
> https://ovirt.org/documentation/administration_guide/#Replacing_the_Manager_CA_Certificate
> 
> especially section 14 which describe how to configure engine-backup to
> backup also custom CA certificate. But this part is badly formatted as
> described in
> 
> https://bugzilla.redhat.com/show_bug.cgi?id=1859505
> 
> relevant BZ is also https://bugzilla.redhat.com/show_bug.cgi?id=1841203
> which point me to the right direction

just for record.

I had to change dns record for fqdn during deploy process - after HE vm
was copied to shared storage (FC in my case) and before or during "
Check engine VM health"

...
[ INFO  ] TASK [ovirt.hosted_engine_setup : Start ovirt-ha-agent service
on the host]
[ INFO  ] changed: [localhost]
[ INFO  ] TASK [ovirt.hosted_engine_setup : Exit HE maintenance mode]
[ INFO  ] changed: [localhost]
[ INFO  ] TASK [ovirt.hosted_engine_setup : Check engine VM health]
[ INFO  ] changed: [localhost]
[ INFO  ] TASK [ovirt.hosted_engine_setup : Get target engine VM address]
[ INFO  ] changed: [localhost]
[ INFO  ] TASK [ovirt.hosted_engine_setup : Reconfigure OVN central address]
[ INFO  ] changed: [localhost]
[ INFO  ] TASK [ovirt.hosted_engine_setup : include_tasks]
[ INFO  ] ok: [localhost]
[ INFO  ] TASK [ovirt.hosted_engine_setup : Obtain SSO token using
username/password credentials]
[ INFO  ] ok: [localhost]
[ INFO  ] TASK [ovirt.hosted_engine_setup : Check for the local
bootstrap VM]
...

now I am able to login with admin@local credentials and see original vms
and hosts running and accessible.


[ovirt-users] Re: Unassigned hosts

2020-08-07 Thread Nardus Geldenhuys
Hi Artur

Hope you are well, please see below, this after I restarted the engine:

host:
[root@ovirt-aa-1-21:~]↥ # tcpdump -i ovirtmgmt -c 1000 -nnvvS dst
ovirt-engine-aa-1-01
tcpdump: listening on ovirtmgmt, link-type EN10MB (Ethernet), capture size
262144 bytes
2020-08-07 12:09:32.553543 ARP, Ethernet (len 6), IPv4 (len 4), Reply
172.140.220.111 is-at 00:25:b5:04:00:25, length 28
2020-08-07 12:10:05.584594 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF],
proto TCP (6), length 60)
172.140.220.111.54321 > 172.140.220.23.56202: Flags [S.], cksum 0x5cd5
(incorrect -> 0xc8ca), seq 4036072905, ack 3265413231, win 28960, options
[mss 1460,sackOK,TS val 3039504636 ecr 341411251,nop,wscale 7], length 0
2020-08-07 12:10:10.589276 ARP, Ethernet (len 6), IPv4 (len 4), Reply
172.140.220.111 is-at 00:25:b5:04:00:25, length 28
2020-08-07 12:10:15.596230 IP (tos 0x0, ttl 64, id 48438, offset 0, flags
[DF], proto TCP (6), length 52)
172.140.220.111.54321 > 172.140.220.23.56202: Flags [F.], cksum 0x5ccd
(incorrect -> 0x40b8), seq 4036072906, ack 3265413231, win 227, options
[nop,nop,TS val 3039514647 ecr 341411251], length 0
2020-08-07 12:10:20.596429 ARP, Ethernet (len 6), IPv4 (len 4), Request
who-has 172.140.220.23 tell 172.140.220.111, length 28
2020-08-07 12:10:20.663699 IP (tos 0x0, ttl 64, id 64726, offset 0, flags
[DF], proto TCP (6), length 40)
172.140.220.111.54321 > 172.140.220.23.56202: Flags [R], cksum 0x1d20
(correct), seq 4036072907, win 0, length 0

engine
[root@ovirt-engine-aa-1-01 ~]# tcpdump -i eth0 -c 1000 -nnvvS src
ovirt-aa-1-21
tcpdump: listening on eth0, link-type EN10MB (Ethernet), capture size
262144 bytes
2020-08-07 12:09:31.891242 IP (tos 0x0, ttl 64, id 0, offset 0, flags [DF],
proto TCP (6), length 60)
172.140.220.111.54321 > 172.140.220.23.56202: Flags [S.], cksum 0xc8ca
(correct), seq 4036072905, ack 3265413231, win 28960, options [mss
1460,sackOK,TS val 3039504636 ecr 341411251,nop,wscale 7], length 0
2020-08-07 12:09:36.895502 ARP, Ethernet (len 6), IPv4 (len 4), Reply
172.140.220.111 is-at 00:25:b5:04:00:25, length 42
2020-08-07 12:09:41.901981 IP (tos 0x0, ttl 64, id 48438, offset 0, flags
[DF], proto TCP (6), length 52)
172.140.220.111.54321 > 172.140.220.23.56202: Flags [F.], cksum 0x40b8
(correct), seq 4036072906, ack 3265413231, win 227, options [nop,nop,TS val
3039514647 ecr 341411251], length 0
2020-08-07 12:09:46.901681 ARP, Ethernet (len 6), IPv4 (len 4), Request
who-has 172.140.220.23 tell 172.140.220.111, length 42
2020-08-07 12:09:46.968911 IP (tos 0x0, ttl 64, id 64726, offset 0, flags
[DF], proto TCP (6), length 40)
172.140.220.111.54321 > 172.140.220.23.56202: Flags [R], cksum 0x1d20
(correct), seq 4036072907, win 0, length 0

Regards

Nar

On Fri, 7 Aug 2020 at 11:54, Artur Socha  wrote:

> Hi Nardus,
> There is one more thing to be checked.
>
> 1) could you check if there are any packets sent from the affected host to
> the engine?
> on host:
> # outgoing traffic
>  sudo  tcpdump -i  -c 1000 -nnvvS dst
> 
>
> 2) same the other way round. Check if there are packets received on engine
> side from affected host
> on engine:
> # incoming traffic
> sudo  tcpdump -i  -c 1000 -nnvvS src
> 
>
> Artur
>
>
> On Thu, Aug 6, 2020 at 4:51 PM Artur Socha  wrote:
>
>> Thanks Nardus,
>> After a quick look I found what I was suspecting - there are way too many
>> threads in Blocked state. I don't know yet the reason but this is very
>> helpful. I'll let you know about the findings/investigation. Meanwhile, you
>> may try restarting the engine as (a very brute and ugly) workaround).
>> You may try to setup slightly bigger thread pool - may save you some time
>> until the next hiccup. However, please be aware that this may come with the
>> cost in memory usage and higher cpu usage (due to increased context
>> switching)
>> Here are some docs:
>>
>> # Specify the thread pool size for jboss managed scheduled executor service 
>> used by commands to periodically execute
>> # methods. It is generally not necessary to increase the number of threads 
>> in this thread pool. To change the value
>> # permanently create a conf file 99-engine-scheduled-thread-pool.conf in 
>> /etc/ovirt-engine/engine.conf.d/
>> ENGINE_SCHEDULED_THREAD_POOL_SIZE=100
>>
>>
>> A.
>>
>>
>> On Thu, Aug 6, 2020 at 4:19 PM Nardus Geldenhuys 
>> wrote:
>>
>>> Hi Artur
>>>
>>> Please find attached, also let me know if I need to rerun. They 5 min
>>> apart
>>>
>>> [root@engine-aa-1-01 ovirt-engine]#  ps -ef | grep jboss | grep -v grep
>>> | awk '{ print $2 }'
>>> 27390
>>> [root@engine-aa-1-01 ovirt-engine]# jstack -F 27390 >
>>> your_engine_thread_dump_1.txt
>>> [root@engine-aa-1-01 ovirt-engine]# jstack -F 27390 >
>>> your_engine_thread_dump_2.txt
>>> [root@engine-aa-1-01 ovirt-engine]# jstack -F 27390 >
>>> your_engine_thread_dump_3.txt
>>>
>>> Regards
>>>
>>> Nar
>>>
>>> On Thu, 6 Aug 2020 at 15:55, Artur Socha  wrote:
>>>
 Sure thing.
 On engine host please find  jboss 

[ovirt-users] Re: Unassigned hosts

2020-08-07 Thread Artur Socha
Hi Nardus,
There is one more thing to be checked.

1) could you check if there are any packets sent from the affected host to
the engine?
on host:
# outgoing traffic
 sudo  tcpdump -i  -c 1000 -nnvvS dst


2) same the other way round. Check if there are packets received on engine
side from affected host
on engine:
# incoming traffic
sudo  tcpdump -i  -c 1000 -nnvvS src


Artur


On Thu, Aug 6, 2020 at 4:51 PM Artur Socha  wrote:

> Thanks Nardus,
> After a quick look I found what I was suspecting - there are way too many
> threads in Blocked state. I don't know yet the reason but this is very
> helpful. I'll let you know about the findings/investigation. Meanwhile, you
> may try restarting the engine as (a very brute and ugly) workaround).
> You may try to setup slightly bigger thread pool - may save you some time
> until the next hiccup. However, please be aware that this may come with the
> cost in memory usage and higher cpu usage (due to increased context
> switching)
> Here are some docs:
>
> # Specify the thread pool size for jboss managed scheduled executor service 
> used by commands to periodically execute
> # methods. It is generally not necessary to increase the number of threads in 
> this thread pool. To change the value
> # permanently create a conf file 99-engine-scheduled-thread-pool.conf in 
> /etc/ovirt-engine/engine.conf.d/
> ENGINE_SCHEDULED_THREAD_POOL_SIZE=100
>
>
> A.
>
>
> On Thu, Aug 6, 2020 at 4:19 PM Nardus Geldenhuys 
> wrote:
>
>> Hi Artur
>>
>> Please find attached, also let me know if I need to rerun. They 5 min
>> apart
>>
>> [root@engine-aa-1-01 ovirt-engine]#  ps -ef | grep jboss | grep -v grep
>> | awk '{ print $2 }'
>> 27390
>> [root@engine-aa-1-01 ovirt-engine]# jstack -F 27390 >
>> your_engine_thread_dump_1.txt
>> [root@engine-aa-1-01 ovirt-engine]# jstack -F 27390 >
>> your_engine_thread_dump_2.txt
>> [root@engine-aa-1-01 ovirt-engine]# jstack -F 27390 >
>> your_engine_thread_dump_3.txt
>>
>> Regards
>>
>> Nar
>>
>> On Thu, 6 Aug 2020 at 15:55, Artur Socha  wrote:
>>
>>> Sure thing.
>>> On engine host please find  jboss pid. You can use this command:
>>>
>>>  ps -ef | grep jboss | grep -v grep | awk '{ print $2 }'
>>>
>>> or jps tool from jdk. Sample output on my dev environment is:
>>>
>>> ± % jps
>>>!2860
>>> 64853 jboss-modules.jar
>>> 196217 Jps
>>>
>>> Then use jstack from jdk:
>>> jstack   > your_engine_thread_dump.txt
>>> 2 or 3 dumps taken in approximately 5 minutes intervals would be even
>>> more useful.
>>>
>>> Here you can find even more options
>>> https://www.baeldung.com/java-thread-dump
>>>
>>> Artur
>>>
>>> On Thu, Aug 6, 2020 at 3:15 PM Nardus Geldenhuys 
>>> wrote:
>>>
 Hi

 Can create thread dump, please send details on howto.

 Regards

 Nardus

 On Thu, 6 Aug 2020 at 14:17, Artur Socha  wrote:

> Hi Nardus,
> You might have hit an issue I have been hunting for some time ( [1]
> and  [2] ).
> [1] could not be properly resolved because at a time was not able to
> recreate an issue on dev setup.
> I suspect [2] is related.
>
> Would you be able to prepare a thread dump from your engine instance?
> Additionally, please check for potential libvirt errors/warnings.
> Can you also paste the output of:
> sudo yum list installed | grep vdsm
> sudo yum list installed | grep ovirt-engine
> sudo yum list installed | grep libvirt
>
> Usually, according to previous reports, restarting the engine helps to
> restore connectivity with hosts ... at least for some time.
>
> [1] https://bugzilla.redhat.com/show_bug.cgi?id=1845152
> [2] https://bugzilla.redhat.com/show_bug.cgi?id=1846338
>
> regards,
> Artur
>
>
>
> On Thu, Aug 6, 2020 at 8:01 AM Nardus Geldenhuys 
> wrote:
>
>> Also see this in engine:
>>
>> Aug 6, 2020, 7:37:17 AM
>> VDSM someserver command Get Host Capabilities failed: Message timeout
>> which can be caused by communication issues
>>
>> On Thu, 6 Aug 2020 at 07:09, Strahil Nikolov 
>> wrote:
>>
>>> Can you fheck for errors on the affected host. Most probably you
>>> need the vdsm logs.
>>>
>>> Best Regards,
>>> Strahil Nikolov
>>>
>>> На 6 август 2020 г. 7:40:23 GMT+03:00, Nardus Geldenhuys <
>>> nard...@gmail.com> написа:
>>> >Hi Strahil
>>> >
>>> >Hope you are well. I get the following error when I tried to confirm
>>> >reboot:
>>> >
>>> >Error while executing action: Cannot confirm 'Host has been
>>> rebooted'
>>> >Host.
>>> >Valid Host statuses are "Non operational", "Maintenance" or
>>> >"Connecting".
>>> >
>>> >And I can't put it in maintenance, only option is "restart" or
>>> "stop".
>>> >
>>> >Regards
>>> >
>>> >Nar
>>> >
>>> >On Thu, 6 Aug 2020 at 06:16, Strahil Nikolov >> >

[ovirt-users] Re: [ovirt-devel] Error during deployment of self hosted engine oVirt 4.4

2020-08-07 Thread Michal Skrivanek


> On 6 Aug 2020, at 00:41, i iordanov  wrote:
> 
> Hi Michal,
> 
> I dug down enough to see that I could alter the option that specifies the 
> supported CPUs in the database. What would have helped me is a diff of what 
> was removed. Ultimately, I didn't have enough time to dig for the diff, but 
> if you know where it can be found it may be of use for other people that need 
> to use a Penryn based server.

Hi,
the diff is right there, the option value for 4.2 cluster still has it. so you 
just need that piece (penryn definition) to copy into the 4.4 entry(i 
think the numbers are then duplicated, but it shouldn’t really matter, cpu name 
is the "key”)

Thanks,
michal

> 
> I was able to swap two systems at my place and get a Nehalem one to use with 
> oVirt, but if I get a chance I may try to revert to the older one since it's 
> a bit more convenient for me to use. I would certainly try updating the DB if 
> I could get the diff where you guys removed the line from the DB seed files.
> 
> Cheers and thanks!
> iordan
> 
> On Tue, Aug 4, 2020 at 4:46 AM Michal Skrivanek  > wrote:
> 
> 
>> On 4 Aug 2020, at 06:10, i iordanov > > wrote:
>> 
>> It seems the issue stems from cpu type being empty.
>> 
>> 'cpu': {'architecture': 'undefined', 'type': ''}
>> 
>> 2020-08-03 23:31:39,888-0400 DEBUG 
>> otopi.ovirt_hosted_engine_setup.ansible_utils 
>> ansible_utils._process_output:103 cluster_facts: {'changed': False, 
>> 'ansible_facts': {'ovirt_clusters': [{'href': 
>> '/ovirt-engine/api/clusters/0eb77d38-d5fe-11ea-8808-00163e42a94a', 
>> 'comment': '', 'description': 'The default server cluster', 'id': 
>> '0eb77d38-d5fe-11ea-8808-00163e42a94a', 'name': 'Default', 
>> 'affinity_groups': [], 'ballooning_enabled': True, 'bios_type': 
>> 'cluster_default', 'cpu': {'architecture': 'undefined', 'type': ''}, 
>> 'cpu_profiles': [], 'data_center': {'href': 
>> '/ovirt-engine/api/datacenters/0ea3b60e-d5fe-11ea-a87c-00163e42a94a', 'id': 
>> '0ea3b60e-d5fe-11ea-a87c-00163e42a94a'}, 'enabled_features': [], 
>> 'error_handling': {'on_error': 'migrate'}, 'external_network_providers': [], 
>> 'fencing_policy': {'enabled': True, 'skip_if_connectivity_broken': 
>> {'enabled': False, 'threshold': 50}, 'skip_if_gluster_bricks_up': False, 
>> 'skip_if_gluster_quorum_not_met': False, 'skip_if_sd_active': {'enabled': 
>> False}}, 'firewall_type': 'firewalld', 'gluster_hooks': [], 
>> 'gluster_service': False, 'gluster_volumes': [], 'ha_reservation': False, 
>> 'ksm': {'enabled': True, 'merge_across_nodes': True}, 
>> 'log_max_memory_used_threshold': 95, 'log_max_memory_used_threshold_type': 
>> 'percentage', 'mac_pool': {'href': 
>> '/ovirt-engine/api/macpools/58ca604b-017d-0374-0220-014e', 'id': 
>> '58ca604b-017d-0374-0220-014e'}, 'memory_policy': {'over_commit': 
>> {'percent': 100}, 'transparent_huge_pages': {'enabled': True}}, 'migration': 
>> {'auto_converge': 'inherit', 'bandwidth': {'assignment_method': 'auto'}, 
>> 'compressed': 'inherit', 'encrypted': 'inherit', 'policy': {'id': 
>> '80554327-0569-496b-bdeb-fcbbf52b827b'}}, 'network_filters': [], 'networks': 
>> [], 'permissions': [], 'required_rng_sources': ['urandom'], 
>> 'scheduling_policy': {'href': 
>> '/ovirt-engine/api/schedulingpolicies/b4ed2332-a7ac-4d5f-9596-99a439cb2812', 
>> 'id': 'b4ed2332-a7ac-4d5f-9596-99a439cb2812'}, 'switch_type': 'legacy', 
>> 'threads_as_cores': False, 'trusted_service': False, 'tunnel_migration': 
>> False, 'version': {'major': 4, 'minor': 4}, 'virt_service': True, 
>> 'vnc_encryption': False}]}, 'deprecations': [{'msg': "The 
>> 'ovirt_cluster_facts' module has been renamed to 'ovirt_cluster_info', and 
>> the renamed one no longer returns ansible_facts", 'version': '2.13'}], 
>> 'failed': False}
>> 
>> Perhaps this Penryn series CPU is too old for this oVirt installation...
> 
> Yes, we dropped Penryn from supported CPU list i 4.3. You could probably stil 
> make it run but it would need messing with engine’s db, adding back Nehalem 
> entry to ServerCPUList(e.g. from 4.2 cluster version line) and resume the 
> deployment somehow.
> 
>> 
>> iordan
>> 
>> On Mon, Aug 3, 2020 at 11:54 PM i iordanov > > wrote:
>> Hi guys,
>> 
>> I am trying to install oVirt 4.4 for testing of the aSPICE and Opaque 
>> Android clients and tried to follow this slightly outdated doc:
>> 
>> https://www.ovirt.org/documentation/installing_ovirt_as_a_self-hosted_engine_using_the_command_line/#Installing_the_self-hosted_engine_deployment_host_SHE_cli_deploy
>>  
>> 
>> 
>> to deploy an all-in-one self-hosted engine using the command-line.
>> 
>> I started with a clean CentOS 8 installation, set up an NFS server and 
>> tested that mounts work from the local host and other hosts, opened 

[ovirt-users] oVirt Node 4.1.1 Hosted Engine Deployment Fibre Channel No LUNS found

2020-08-07 Thread hkexdong--- via Users
I've an external RAID subsystem connect to the host by SAS cable (SFF-8644).
I follow the instructions of the RAID card manufacture. Include the driver 
during host installation. And I can see the created RAID volumes (LUNs) 
available in "Installation Destination". Although I choose to install the 
engine in host local disk.
The installation success and I proceed to hosted engine deployment by Cockpit. 
And now I stuck at part 4 Storage.
I believe "Storage Type" select "Fibre Channel" is correct even I'm not using 
fibre cable. As NFS and iSCSI are utilize network.
I confirm there are 2 RAID volume (LUN0 & LUN1) created in the external RAID 
subsystem. Why oVirt cannot discover them. What could be wrong :(
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/IIMW6VBS4JBL5WJFTS7AWDS5ENQDB63Y/


[ovirt-users] Re: migrating standalone engine to selfhosted and upgrade from 4.3 to 4.4 in one step

2020-08-07 Thread Jiří Sléžka
On 8/5/20 2:07 PM, Jiří Sléžka wrote:
> On 8/3/20 11:12 AM, Jiří Sléžka wrote:
>> Hello,
>>
>> I have 4 host cluster managed with standalone engine in version 4.3 and
>> I would like to migrate this standalone engine to 4.4 as hosted engine.
>>
>> I have two new hosts which I would like to use as base for new HE
>> cluster. (new hosts are Intel based, old ones are AMD Opteron based -
>> new cluster will have 4.4 compatibility, old one have to stay at 4.2
>> compatibility level).
>>
>> I red this
>>
>> https://www.ovirt.org/documentation/migrating_from_a_standalone_manager_to_a_self-hosted_engine/
>>
>> but the question is: Can I migrate and upgrade in one step? Have anybody
>> did that already? If it is not possible what is a suggested approach?
> 
> I just tried it. It looks like it could work at least until installation
> process want to login into engine. It looks like it does not use valid
> login name nor password.
> 
> [ INFO  ] TASK [ovirt.hosted_engine_setup : Expose engine VM webui over
> a local port via ssh port forwarding]
> [ INFO  ] changed: [localhost]
> [ INFO  ] TASK [ovirt.hosted_engine_setup : Evaluate temporary bootstrap
> engine URL]
> [ INFO  ] ok: [localhost]
> [ INFO  ] The bootstrap engine is temporary accessible over
> https://ovirt05.net.slu.cz:6900/ovirt-engine/
> [ INFO  ] TASK [ovirt.hosted_engine_setup : Detect VLAN ID]
> [ INFO  ] changed: [localhost]
> [ INFO  ] TASK [ovirt.hosted_engine_setup : Set Engine public key as
> authorized key without validating the TLS/SSL certificates]
> [ INFO  ] changed: [localhost]
> [ INFO  ] TASK [ovirt.hosted_engine_setup : include_tasks]
> [ INFO  ] ok: [localhost]
> [ INFO  ] TASK [ovirt.hosted_engine_setup : Obtain SSO token using
> username/password credentials]
> [ INFO  ] ok: [localhost]
> [ INFO  ] TASK [ovirt.hosted_engine_setup : Ensure that the target
> datacenter is present]
> [ ERROR ] ovirtsdk4.AuthError: Error during SSO authentication
> access_denied : Cannot authenticate user 'None@N/A': No valid profile
> found in credentials..
> [ ERROR ] fatal: [localhost]: FAILED! => {"changed": false, "msg":
> "Error during SSO authentication access_denied : Cannot authenticate
> user 'None@N/A': No valid profile found in credentials.."}
> 
> I tried to login to https://ovirt05.net.slu.cz:6900/ovirt-engine/ and it
> probably accept username admin@internal and new password entered during
> hosted engine deploy but then it display error "The provided
> authorization grant for the auth code has expired."
> 
> Maybe it is related to this bug (and custom 3rd party Apache certificate)
> 
> https://bugzilla.redhat.com/show_bug.cgi?id=1715767
> 
> in my case it looks like on engine vm in file
> 
> /etc/pki/ovirt-engine/apache-ca.pem
> 
> is original certificate from backup which is for ovirt.slu.cz fqdn. For
> new hosted engine I use new fqdn ovirt.net.slu.cz. Should I change
> ovirt.slu.cz record to point to new ip address (it have to be one from
> ovirtmgmt subnet) and then try restore? Documentation is not much clear
> in this particular subject.

well, I will answer myself

* setting fqdn is not probably important at this time, self hosted
engine is prepared with modified /etc/hosts

* main problem was that I am using 3rd party certificate for long time
so I didn't mention this documentation section

https://ovirt.org/documentation/administration_guide/#Replacing_the_Manager_CA_Certificate

especially section 14 which describe how to configure engine-backup to
backup also custom CA certificate. But this part is badly formatted as
described in

https://bugzilla.redhat.com/show_bug.cgi?id=1859505

relevant BZ is also https://bugzilla.redhat.com/show_bug.cgi?id=1841203
which point me to the right direction

Cheers,

Jiri



> 
> Cheers,
> 
> Jiri
> 
>>
>> Thanks for help
>>
>> Jiri
>>
>>
>> ___
>> Users mailing list -- users@ovirt.org
>> To unsubscribe send an email to users-le...@ovirt.org
>> Privacy Statement: https://www.ovirt.org/privacy-policy.html
>> oVirt Code of Conduct: 
>> https://www.ovirt.org/community/about/community-guidelines/
>> List Archives: 
>> https://lists.ovirt.org/archives/list/users@ovirt.org/message/YH4J7GG7WLOLUFIADZPL6JOPDETJ23CZ/
>>
> 
> 
> 
> ___
> Users mailing list -- users@ovirt.org
> To unsubscribe send an email to users-le...@ovirt.org
> Privacy Statement: https://www.ovirt.org/privacy-policy.html
> oVirt Code of Conduct: 
> https://www.ovirt.org/community/about/community-guidelines/
> List Archives: 
> https://lists.ovirt.org/archives/list/users@ovirt.org/message/SWKF5CF3UHVRDE2NA2R3EW3S6642S2HA/
> 




smime.p7s
Description: S/MIME Cryptographic Signature
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 

[ovirt-users] Re: oVirt 4.4.1 HCI single server deployment failed nested-kvm

2020-08-07 Thread xilazz
Hello, I also met the same problem, have you solved your problem?
I wonder if it's the configuration of the network card.
___
Users mailing list -- users@ovirt.org
To unsubscribe send an email to users-le...@ovirt.org
Privacy Statement: https://www.ovirt.org/privacy-policy.html
oVirt Code of Conduct: 
https://www.ovirt.org/community/about/community-guidelines/
List Archives: 
https://lists.ovirt.org/archives/list/users@ovirt.org/message/FNMYQKVJIQ7HQYIAWDL74GJMTAQ2RPOA/