Re: [ovirt-users] vdsm ssl errors

2016-10-11 Thread Gianluca Cecchi
Il 09/Ott/2016 09:51, "Oved Ourfali"  ha scritto:
>
> Fixed in "Bug 1371515 - Exception on GetUserProfileQuery (unknown cause)
: "The column name user_portal_vm_auto_login was not found in this
ResultSet".
> Please upgrade to latest 4.0.
>

Hello, updated to 4.0.4, I don't see the message about resultSet. But I
continue to see the SSL errors, it doesn't change much.

All seems running: 3 VMs included the Hosted Engine.

Here the vdsm.log in gzip format:

https://drive.google.com/file/d/0BwoPbcrMv8mvdDFFOEhTQ3o1ZXM/view?usp=sharing

[root@ovirt01 vdsm]# systemctl status vdsmd
● vdsmd.service - Virtual Desktop Server Manager
   Loaded: loaded (/etc/systemd/system/vdsmd.service; enabled; vendor
preset: enabled)
   Active: active (running) since Tue 2016-10-11 23:59:02 CEST; 17min ago
  Process: 19335 ExecStopPost=/usr/libexec/vdsm/vdsmd_init_common.sh
--post-stop (code=exited, status=0/SUCCESS)
  Process: 19338 ExecStartPre=/usr/libexec/vdsm/vdsmd_init_common.sh
--pre-start (code=exited, status=0/SUCCESS)
 Main PID: 19421 (vdsm)
   CGroup: /system.slice/vdsmd.service
   ├─19421 /usr/bin/python /usr/share/vdsm/vdsm
   ├─19539 /usr/libexec/ioprocess --read-pipe-fd 69 --write-pipe-fd
67 --max-threads 10 --max-queued-requests 10
   ├─19599 /usr/libexec/ioprocess --read-pipe-fd 98 --write-pipe-fd
97 --max-threads 10 --max-queued-requests 10
   ├─19621 /usr/libexec/ioprocess --read-pipe-fd 109
--write-pipe-fd 108 --max-threads 10 --max-queued-requests 10
   ├─23421 /usr/libexec/ioprocess --read-pipe-fd 44 --write-pipe-fd
43 --max-threads 10 --max-queued-requests 10
   ├─23432 /usr/libexec/ioprocess --read-pipe-fd 52 --write-pipe-fd
51 --max-threads 10 --max-queued-requests 10
   ├─23440 /usr/libexec/ioprocess --read-pipe-fd 59 --write-pipe-fd
57 --max-threads 10 --max-queued-requests 10
   ├─23448 /usr/libexec/ioprocess --read-pipe-fd 71 --write-pipe-fd
69 --max-threads 10 --max-queued-requests 10
   ├─23457 /usr/libexec/ioprocess --read-pipe-fd 85 --write-pipe-fd
83 --max-threads 10 --max-queued-requests 10
   └─23629 /usr/libexec/ioprocess --read-pipe-fd 117
--write-pipe-fd 116 --max-threads 10 --max-queued-requests 10

Oct 12 00:15:44 ovirt01.mydomain vdsm[19421]: vdsm vds.dispatcher ERROR SSL
error during reading data: unexpected eof
Oct 12 00:15:46 ovirt01.mydomain vdsm[19421]: vdsm vds.dispatcher ERROR SSL
error during reading data: unexpected eof
Oct 12 00:15:49 ovirt01.mydomain vdsm[19421]: vdsm vds.dispatcher ERROR SSL
error during reading data: unexpected eof
Oct 12 00:15:51 ovirt01.mydomain vdsm[19421]: vdsm vds.dispatcher ERROR SSL
error during reading data: unexpected eof
Oct 12 00:16:03 ovirt01.mydomain vdsm[19421]: vdsm vds.dispatcher ERROR SSL
error during reading data: unexpected eof
Oct 12 00:16:07 ovirt01.mydomain vdsm[19421]: vdsm vds.dispatcher ERROR SSL
error during reading data: unexpected eof
Oct 12 00:16:07 ovirt01.mydomain vdsm[19421]: vdsm vds.dispatcher ERROR SSL
error during reading data: unexpected eof
Oct 12 00:16:10 ovirt01.mydomain vdsm[19421]: vdsm vds.dispatcher ERROR SSL
error during reading data: unexpected eof
Oct 12 00:16:12 ovirt01.mydomain vdsm[19421]: vdsm vds.dispatcher ERROR SSL
error during reading data: unexpected eof
Oct 12 00:16:14 ovirt01.mydomain vdsm[19421]: vdsm vds.dispatcher ERROR SSL
error during reading data: unexpected eof


It seems that the "unexpected eof" errors I see in vdsm.log are always
after an RPC call that apparently completes ok, such as

jsonrpc.Executor/1::INFO::2016-10-12
00:16:38,513::__init__::513::jsonrpc.JsonRpcServer::(_serveRequest) RPC
call Host.getHardwareInfo succeeded in 0.00 seconds
JsonRpc (StompReactor)::ERROR::2016-10-12
00:16:38,514::betterAsyncore::113::vds.dispatcher::(recv) SSL error during
reading data: unexpected eof
Reactor thread::INFO::2016-10-12
00:16:38,734::protocoldetector::72::ProtocolDetector.AcceptorImpl::(handle_accept)
Accepting connection from 127.0.0.1:59686

or

jsonrpc.Executor/7::INFO::2016-10-12
00:16:36,277::__init__::513::jsonrpc.JsonRpcServer::(_serveRequest) RPC
call Volume.getInfo succeeded in 0.00 seconds
JsonRpc (StompReactor)::ERROR::2016-10-12
00:16:36,283::betterAsyncore::113::vds.dispatcher::(recv) SSL error during
reading data: unexpected eof
Reactor thread::INFO::2016-10-12
00:16:36,298::protocoldetector::72::ProtocolDetector.AcceptorImpl::(handle_accept)
Accepting connection from 127.0.0.1:59676

Thanks,

Gianluca
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Unable to get HE up after update

2016-10-11 Thread Susinthiran Sithamparanathan
On Tue, Oct 11, 2016 at 9:42 AM, Simone Tiraboschi 
wrote:

>
> No, the issue is definitively there but I was trying to identify the root
> cause.
>
Yes, hopefully we'll pretty soon.

>
>
>> I've uploaded engine-setup logs to https://my.owndrive.com/index.
>> php/s/3Dcyho9bqo7oZs8 in the folder engine-setup and you'll see many.
>>
>
> You uploaded ovirt-hosted-engine-setup logs from the host while now we
> need engine-setup logs from the engine VM.
>
You can find the logs under engine-vm https://my.owndrive.com/index.
php/s/3Dcyho9bqo7oZs8. I've uploaded the other logs from the engine VM in
case those could be useful in our debugging purpose.





-- 

Susinthiran Sithamparanathan (who forgot to send to the list + Yedidyah
hence this email)
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Outreachy Hopeful

2016-10-11 Thread Yaniv Kaul
On Tue, Oct 11, 2016 at 5:38 PM, JonathanPosada <
jonathanpos...@protonmail.com> wrote:

> Hi all,
>
> My name is Jonathan Posada and I am a senior CS student at Cornell
> University. For more about my background see my Linkedin here (
> https://www.linkedin.com/in/jonathan-posada-166aba96).
>
> I'm interested in learning more about the cloud and topics such as
> containers and VMs which brought me to oVirt. In particular I'd like to
> take on the Python testing project found here (https://www.ovirt.org/
> community/activities/outreachy/) under 'Some Ideas'. With the deadline to
> apply fast approaching, I'd like to get started with my first contribution
> to the project. How should I get started?
>
> Jonathan
> Sent with ProtonMail  Secure Email.
>
>
>
Hi and welcome.
I'm very happy to hear about your interest in ovirt-system-tests and Lago -
both are small, but interesting projects, with great challenge - how do you
make tests stable, comprehensive and fast (run-time wise, but also
conservative on memory, CPU and disk resources usage)? We aim to run them
on a system with 8GB of RAM, to run under 30 minutes and of course - to
cover as much features as can be.
I would suggest starting by simply setting up the environment and running
the tests. You should find the instructions in both the source code as well
as http://lago.readthedocs.io/en/latest/README.html .
You'd also need to set up oVirt Gerrit as well as GitHub account. I would
think it's also mandatory that you familiarize yourself with oVirt itself.
The next step would be, I reckon, is slowly add tests to the suites. I'm
right now in the midst of converting the tests from oVirt APIv3 to oVirt
APIv4 - see [1] and I strive to do it gradually and with supporting both at
the same time, without wasting too much additional time. This is an ongoing
effort and you are welcome to join it. Other areas that can benefit are
storage-related tests, network and virt.

If you are looking into Lago, one of the major tasks is looking into the
feasibility and cons and pros of converting it to use either vagrant or
Ansible. I'm not sure this is a high priority right now, but an interesting
project nonetheless.

Good luck and enjoy!

Y.
[1] https://gerrit.ovirt.org/#/c/65285/

___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
>
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] Storage Domain High Latency

2016-10-11 Thread Alan Griffiths
Hi,

One of my hosts is periodically reporting high latency to a storage domain
(FC). There is almost no load on the SAN so the issue must be either fault,
mis-configuration or internal ovirt issue.

Can anyone enlighten me on how ovirt/vdsm goes about calculating the
storage latency? As I'm struggling to find anything in the logs.

Thanks,

Alan
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] ovirt-shell show vm doesn't show all vm properties

2016-10-11 Thread Nathanaël Blanchet

It works like a charm thanks


Le 11/10/2016 à 17:58, Juan Hernández a écrit :

On 10/11/2016 03:47 PM, Nathanaël Blanchet wrote:

Hi,

since ovirt 4.0, I can't use "--all_content" combined with "show vm"
anymore. The option si still available with the key tab, but when
applying, ovirt-shell complains : option "--all_content" is not supported.

I wrote some script using the console-enabled  option, how can I
retrieve this now?


This is a bug in the CLI, I opened the following BZ to track it:

   The "--all_content true" option isn't accepted
   https://bugzilla.redhat.com/1383735

It will be fixed by this patch:

   cli: Base should be None when there is no base
   https://gerrit.ovirt.org/65371

That will hopefully be included in release 4.0.6 of the oVirt project.


Le 22/04/2016 à 11:39, Juan Hernández a écrit :

On 04/22/2016 10:14 AM, Nathanaël Blanchet wrote:

Hi all,

I'd like to find any vms with some defined properties like
(console-enabled or serial_number-policy for example) with ovirt-shell
-E "show vm name", but I can't find all information that I can get with
edit vm popupin the UI.
I belevied these kind of properties were unvailable because the flag was
by default to false, but after updating the flag to true, it is still
not visible. Does it exist an extended way to get those feature with
ovirt-shell?
Thank you.


The console information isn't reported by default because it requires an
additional query to the database, which is expensive, and not useful in
general. You can enable these expensive items using the "all_content"
parameter:

$ ovirt-shell "show vm name --all_content true"

The serial number properties are only present if there is one serial
number policy enabled.





--
Nathanaël Blanchet

Supervision réseau
Pôle Infrastrutures Informatiques
227 avenue Professeur-Jean-Louis-Viala
34193 MONTPELLIER CEDEX 5   
Tél. 33 (0)4 67 54 84 55
Fax  33 (0)4 67 54 84 14
blanc...@abes.fr

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] ovirt-shell show vm doesn't show all vm properties

2016-10-11 Thread Juan Hernández
On 10/11/2016 03:47 PM, Nathanaël Blanchet wrote:
> Hi,
> 
> since ovirt 4.0, I can't use "--all_content" combined with "show vm" 
> anymore. The option si still available with the key tab, but when 
> applying, ovirt-shell complains : option "--all_content" is not supported.
> 
> I wrote some script using the console-enabled  option, how can I 
> retrieve this now?
> 

This is a bug in the CLI, I opened the following BZ to track it:

  The "--all_content true" option isn't accepted
  https://bugzilla.redhat.com/1383735

It will be fixed by this patch:

  cli: Base should be None when there is no base
  https://gerrit.ovirt.org/65371

That will hopefully be included in release 4.0.6 of the oVirt project.

> 
> Le 22/04/2016 à 11:39, Juan Hernández a écrit :
>> On 04/22/2016 10:14 AM, Nathanaël Blanchet wrote:
>>> Hi all,
>>>
>>> I'd like to find any vms with some defined properties like
>>> (console-enabled or serial_number-policy for example) with ovirt-shell
>>> -E "show vm name", but I can't find all information that I can get with
>>> edit vm popupin the UI.
>>> I belevied these kind of properties were unvailable because the flag was
>>> by default to false, but after updating the flag to true, it is still
>>> not visible. Does it exist an extended way to get those feature with
>>> ovirt-shell?
>>> Thank you.
>>>
>> The console information isn't reported by default because it requires an
>> additional query to the database, which is expensive, and not useful in
>> general. You can enable these expensive items using the "all_content"
>> parameter:
>>
>>$ ovirt-shell "show vm name --all_content true"
>>
>> The serial number properties are only present if there is one serial
>> number policy enabled.
>>
> 


-- 
Dirección Comercial: C/Jose Bardasano Baos, 9, Edif. Gorbea 3, planta
3ºD, 28016 Madrid, Spain
Inscrita en el Reg. Mercantil de Madrid – C.I.F. B82657941 - Red Hat S.L.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] oVirt AD integration problems

2016-10-11 Thread cmc
Hi Ondra,



>
> Not really. aaa-ldap by default uses just simple bind, no gssapi.
> If you have any problems with certificate I would suggest you to check if
> you are using the correct one, correctly. More info for it can be
> found here:
>
>
> https://gerrit.ovirt.org/gitweb?p=ovirt-engine-extension-aaa
> -ldap.git;a=blob;f=README;h=1f4381e4f0d22acdda63c56a84863f
> cb0f72bc3a;hb=HEAD#l397
>
>

I've run the following tests in that README you posted above, and all
worked fine:

ovirt-engine-extensions-tool aaa login-user --profile=mydomain.com
--user-name=myuser
ovirt-engine-extensions-tool aaa search --extension-name=mydomain.com-authz
--entity=principal --entity-name=myuser
LDAPTLS_REQCERT=never ldapsearch -ZZ -H ldap://ad.mydomain.com -x -D
"CN=myuser,CN=Users,DC=mydomain,DC=com" -W -b "dc=mydomain,dc=com"

I thought I wouldn't need to import any certificate from AD - is that a
requirement?

Do I need to set up Apache separately to use LDAP auth? The service
principals exist in the krb5.keytab, but I don't if that is only if you are
using SSO.

Thanks,

Cam

___

> Users mailing list
>> Users@ovirt.org
>> http://lists.ovirt.org/mailman/listinfo/users
>>
>>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] Outreachy Hopeful

2016-10-11 Thread JonathanPosada
Hi all,

My name is Jonathan Posada and I am a senior CS student at Cornell University. 
For more about my background see my Linkedin here 
(https://www.linkedin.com/in/jonathan-posada-166aba96).

I'm interested in learning more about the cloud and topics such as containers 
and VMs which brought me to oVirt. In particular I'd like to take on the Python 
testing project found here 
(https://www.ovirt.org/community/activities/outreachy/) under 'Some Ideas'. 
With the deadline to apply fast approaching, I'd like to get started with my 
first contribution to the project. How should I get started?



Jonathan
Sent with [ProtonMail](https://protonmail.com) Secure Email.___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] can't import vm from KVM host

2016-10-11 Thread Michal Skrivanek

> On 11 Oct 2016, at 16:01, Tomáš Golembiovský  wrote:
> 
> Hi,
> 
> On Mon, 10 Oct 2016 12:21:47 +0200 (CEST)
> Nelson Lameiras  wrote:
> 
>> hello michal,
>> 
>> Yes, both paths are correct and working on the source host since the VM 
>> starts and works correctly on source host. Nevertheless I have checked with 
>> fdisk and mount to assure that these devices are indeed reachable.
>> 
>> Please understand that my setup is the following:
>> source host : KVM (hosting the VM to migrate)
>> target host : oVirt 4.0.4 (patched)
>> 
>> The error "no storage vol with matching path '/dev/sdc'" is returned by the 
>> target host script /usr/lib/python2.7/site-packages/vdsm/v2v.py.
>> This almost seems normal since the device /dev/sdc is not mounted on target 
>> host (where script is running) but only on source host.
>> 
>> Can this be the source of the error ?
> 
> To me this looks more like a bug in the engine, not in VDSM.
> 
> The exception in the VDSM log is OK and it is not fatal. It is actually
> to be expected for block devices. VDSM is trying to find out the size of
> the disk, but the way it does that is tailored for volumes in storage
> pool. But the block device is not a volume in a storage pool and that is
> why libvirt complains. We can potentially skip the check for block
> devices to avoid error in the log, or provide some other logic of
> getting the size.
> 
> 
> But the real problem is this error in engine.log:
> 
>> 2016-09-29 14:13:48,637 ERROR 
>> [org.ovirt.engine.core.bll.GetVmsFromExternalProviderQuery] (default 
>> task-30) [] Exception: org.ovirt.engine.core.common.errors.EngineException: 
>> EngineException: java.lang.NumberFormatException: null (Failed with error 
>> ENGINE and code 5001)
> 
> We don't send the size (or rather send null value) for the disk and
> engine does not like that. I assume engine does not really consider all
> the optional VM properties as optional.

is it really optional in schema?
even if it is, indeed it’s wrong:)

the best would be to handle it on v2v.py side first to avoid libvirt err, but i 
don’t know if we can get that info via libvirt in any other way:/

> 
> 
> 
>Tomas
> 
> -- 
> Tomáš Golembiovský 

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] can't import vm from KVM host

2016-10-11 Thread Tomáš Golembiovský
Hi,

On Mon, 10 Oct 2016 12:21:47 +0200 (CEST)
Nelson Lameiras  wrote:

> hello michal,
> 
> Yes, both paths are correct and working on the source host since the VM 
> starts and works correctly on source host. Nevertheless I have checked with 
> fdisk and mount to assure that these devices are indeed reachable.
> 
> Please understand that my setup is the following:
> source host : KVM (hosting the VM to migrate)
> target host : oVirt 4.0.4 (patched)
> 
> The error "no storage vol with matching path '/dev/sdc'" is returned by the 
> target host script /usr/lib/python2.7/site-packages/vdsm/v2v.py.
> This almost seems normal since the device /dev/sdc is not mounted on target 
> host (where script is running) but only on source host.
> 
> Can this be the source of the error ?

To me this looks more like a bug in the engine, not in VDSM.

The exception in the VDSM log is OK and it is not fatal. It is actually
to be expected for block devices. VDSM is trying to find out the size of
the disk, but the way it does that is tailored for volumes in storage
pool. But the block device is not a volume in a storage pool and that is
why libvirt complains. We can potentially skip the check for block
devices to avoid error in the log, or provide some other logic of
getting the size.


But the real problem is this error in engine.log:

> 2016-09-29 14:13:48,637 ERROR 
> [org.ovirt.engine.core.bll.GetVmsFromExternalProviderQuery] (default task-30) 
> [] Exception: org.ovirt.engine.core.common.errors.EngineException: 
> EngineException: java.lang.NumberFormatException: null (Failed with error 
> ENGINE and code 5001)

We don't send the size (or rather send null value) for the disk and
engine does not like that. I assume engine does not really consider all
the optional VM properties as optional.



Tomas

-- 
Tomáš Golembiovský 
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] ovirt-shell show vm doesn't show all vm properties

2016-10-11 Thread Nathanaël Blanchet

Hi,

since ovirt 4.0, I can't use "--all_content" combined with "show vm" 
anymore. The option si still available with the key tab, but when 
applying, ovirt-shell complains : option "--all_content" is not supported.


I wrote some script using the console-enabled  option, how can I 
retrieve this now?



Le 22/04/2016 à 11:39, Juan Hernández a écrit :

On 04/22/2016 10:14 AM, Nathanaël Blanchet wrote:

Hi all,

I'd like to find any vms with some defined properties like
(console-enabled or serial_number-policy for example) with ovirt-shell
-E "show vm name", but I can't find all information that I can get with
edit vm popupin the UI.
I belevied these kind of properties were unvailable because the flag was
by default to false, but after updating the flag to true, it is still
not visible. Does it exist an extended way to get those feature with
ovirt-shell?
Thank you.


The console information isn't reported by default because it requires an
additional query to the database, which is expensive, and not useful in
general. You can enable these expensive items using the "all_content"
parameter:

   $ ovirt-shell "show vm name --all_content true"

The serial number properties are only present if there is one serial
number policy enabled.



--
Nathanaël Blanchet

Supervision réseau
Pôle Infrastrutures Informatiques
227 avenue Professeur-Jean-Louis-Viala
34193 MONTPELLIER CEDEX 5   
Tél. 33 (0)4 67 54 84 55
Fax  33 (0)4 67 54 84 14
blanc...@abes.fr

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Replace Engine Self-Signed Certificate

2016-10-11 Thread Alan Griffiths
Thanks, it's working now.

On 10 October 2016 at 20:32, Rogério Ceni Coelho <
rogeriocenicoe...@gmail.com> wrote:

> Take a look. Documentation imcomplete.
>
> https://bugzilla.redhat.com/show_bug.cgi?id=1336838
>
>
>
> Em seg, 10 de out de 2016 às 12:17, Alan Griffiths <
> apgriffith...@gmail.com> escreveu:
>
>> Hi,
>>
>> I'm trying to replace the self-signed certificate in the engine.
>>
>> I updated the four files listed here
>>
>> http://www.ovirt.org/develop/release-management/features/infra/pki/
>>
>> But on restarting Apache and logging in I get the following error,
>> "sun.security.validator.ValidatorException: PKIX path building failed:
>> sun.security.provider.certpath.SunCertPathBuilderException: unable to
>> find valid certification path to requested target"
>>
>> What am I missing?
>>
>> Thanks,
>>
>> Alan
>>
>>
>> ___
>> Users mailing list
>> Users@ovirt.org
>> http://lists.ovirt.org/mailman/listinfo/users
>>
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] HA not working when killing one node

2016-10-11 Thread Felip Moll
Thank you very much, this is exactly the same case than me.

With 'echo c >/proc/sysrq-trigger' it worked as expected.

Let's see how the bug resolution evolves.

Regards,
Felip M


--
Felip Moll Marquès
Computer Science Engineer
E-Mail - lip...@gmail.com
WebPage - http://lipix.ciutadella.es


2016-10-11 11:37 GMT+02:00 Simone Tiraboschi :
>
>
> On Tue, Oct 11, 2016 at 11:28 AM, Felip Moll  wrote:
>>
>> Hello,
>>
>> I have latest version of ovirt 4 installed on a Centos 7, 2 hypervisor
>> nodes (rdkvm[1-2]) and 1 ovirt-engine node (rdhead1).
>>
>> GlusterFS is setup with 2 bricks on both rdkvm1 and rdkvm2.
>>
>> I have some vm's running on the infraestructure. I have HA enabled and
>> ipmi is working.
>>
>> I manually poweroff force one node. Then I expect that VM's running on
>> that node are started in the remaining node because of the HA setting.
>> What happens is that ovirt starts the powered off node but not the
>> vm's that remain shutted down.
>>
>> Is it the correct behaviour? How can I make that vm's are auto-started
>> if they were running before hypervisor kill?
>>
>
> No, but it's a know issue:
> https://bugzilla.redhat.com/show_bug.cgi?id=1341106
>
> The issue is that if you properly shut down the host, for some reason also
> the VMs there will be properly shutdown (or at least we are detecting it
> like that) and so the HA mechanism will not restart them thinking that it
> was a voluntary shutdown triggered by the user.
> It should properly work if you simply disconnect the network from the test
> host: the host should be fenced and the HA VM restarted somewhere else.
>
> Please see also:
> http://lists.ovirt.org/pipermail/users/2016-September/042736.html
>
>>
>>
>> Regards,
>> Felip M
>>
>> --
>> Felip Moll Marquès
>> Computer Science Engineer
>> E-Mail - lip...@gmail.com
>> WebPage - http://lipix.ciutadella.es
>> ___
>> Users mailing list
>> Users@ovirt.org
>> http://lists.ovirt.org/mailman/listinfo/users
>
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] HA not working when killing one node

2016-10-11 Thread Simone Tiraboschi
On Tue, Oct 11, 2016 at 11:28 AM, Felip Moll  wrote:

> Hello,
>
> I have latest version of ovirt 4 installed on a Centos 7, 2 hypervisor
> nodes (rdkvm[1-2]) and 1 ovirt-engine node (rdhead1).
>
> GlusterFS is setup with 2 bricks on both rdkvm1 and rdkvm2.
>
> I have some vm's running on the infraestructure. I have HA enabled and
> ipmi is working.
>
> I manually poweroff force one node. Then I expect that VM's running on
> that node are started in the remaining node because of the HA setting.
> What happens is that ovirt starts the powered off node but not the
> vm's that remain shutted down.
>
> Is it the correct behaviour? How can I make that vm's are auto-started
> if they were running before hypervisor kill?
>
>
No, but it's a know issue:
https://bugzilla.redhat.com/show_bug.cgi?id=1341106

The issue is that if you properly shut down the host, for some reason also
the VMs there will be properly shutdown (or at least we are detecting it
like that) and so the HA mechanism will not restart them thinking that it
was a voluntary shutdown triggered by the user.
It should properly work if you simply disconnect the network from the test
host: the host should be fenced and the HA VM restarted somewhere else.

Please see also:
http://lists.ovirt.org/pipermail/users/2016-September/042736.html


>
> Regards,
> Felip M
>
> --
> Felip Moll Marquès
> Computer Science Engineer
> E-Mail - lip...@gmail.com
> WebPage - http://lipix.ciutadella.es
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] HA not working when killing one node

2016-10-11 Thread Felip Moll
Hello,

I have latest version of ovirt 4 installed on a Centos 7, 2 hypervisor
nodes (rdkvm[1-2]) and 1 ovirt-engine node (rdhead1).

GlusterFS is setup with 2 bricks on both rdkvm1 and rdkvm2.

I have some vm's running on the infraestructure. I have HA enabled and
ipmi is working.

I manually poweroff force one node. Then I expect that VM's running on
that node are started in the remaining node because of the HA setting.
What happens is that ovirt starts the powered off node but not the
vm's that remain shutted down.

Is it the correct behaviour? How can I make that vm's are auto-started
if they were running before hypervisor kill?


Regards,
Felip M

--
Felip Moll Marquès
Computer Science Engineer
E-Mail - lip...@gmail.com
WebPage - http://lipix.ciutadella.es
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] can't import vm from KVM host

2016-10-11 Thread Michal Skrivanek

> On 10 Oct 2016, at 12:21, Nelson Lameiras  
> wrote:
> 
> hello michal,
> 
> Yes, both paths are correct and working on the source host since the VM 
> starts and works correctly on source host. Nevertheless I have checked with 
> fdisk and mount to assure that these devices are indeed reachable.
> 
> Please understand that my setup is the following:
> source host : KVM (hosting the VM to migrate)
> target host : oVirt 4.0.4 (patched)
> 
> The error "no storage vol with matching path '/dev/sdc'" is returned by the 
> target host script /usr/lib/python2.7/site-packages/vdsm/v2v.py.

> This almost seems normal since the device /dev/sdc is not mounted on target 
> host (where script is running) but only on source host.

it should “call” the source one to get the data. You should see that error on 
the source host. As far as I can see from that short log you pasted it asks for 
the right device..I’m just not sure it’s the right host - can you confirm you 
see that "no storage vol with matching path '/dev/sdc’” on the source host? 
Might need to enable libvirt debug logs to see a bit more 
(http://wiki.libvirt.org/page/DebugLogs)

Thanks,
michal

> 
> Can this be the source of the error ?
> 
> cordialement, regards, 
> Nelson LAMEIRAS 
> 
> Lyra Network 
> Service Projets et Processus 
> Tel : +33 (0) 5 32 09 09 70 
> 109 rue de l’innovation 
> 31670 Labège - France 
> www.lyra-network.com
> 
> - Original Message -
> From: "Michal Skrivanek" 
> To: "Nelson Lameiras" 
> Cc: "Shahar Havivi" , users@ovirt.org
> Sent: Friday, October 7, 2016 3:50:44 PM
> Subject: Re: [ovirt-users] can't import vm from KVM host
> 
>> On 7 Oct 2016, at 09:42, Nelson Lameiras  
>> wrote:
>> 
>> hello,
>> 
>> any news on this issue ?
> 
> Hi, Shahar is out on vacation for few weeks
> 
>> can I do anything to help ?
> 
> hm...looking at the error, can you please confirm those paths 
> ('/dev/mapper/vg_00-lv_sys’, /dev/sdc) are mounted/correct on the source host?
> Seems like the patch works and adds those disks all right, but further 
> queries fails indicating those disks are not reachable.
> 
> Thanks,
> michal
> 
>> 
>> cordialement, regards, 
>> Nelson LAMEIRAS 
>> 
>> Lyra Network 
>> Service Projets et Processus 
>> Tel : +33 (0) 5 32 09 09 70 
>> 109 rue de l’innovation 
>> 31670 Labège - France 
>> www.lyra-network.com
>> 
>> - Original Message -
>> From: "Shahar Havivi" 
>> To: "Nelson Lameiras" 
>> Cc: users@ovirt.org
>> Sent: Thursday, September 29, 2016 2:31:42 PM
>> Subject: Re: [ovirt-users] can't import vm from KVM host
>> 
>> On 29.09.16 14:22, Nelson Lameiras wrote:
>>> Shahar,
>>> 
>>> I took the liberty to try to patch our test setup with the fix I took from 
>>> https://gerrit.ovirt.org/#/c/64272/4/ (lib/vdsm/v2v.py)
>>> I restarted vdsm afterwards
>>> 
>>> Result :
>>> In the GUI import page, now when clicking on "load" button (just before 
>>> guetting the list of vm to import on source), an error occurs : "Failed to 
>>> communicate with the external provider, see log for additional details."
>>> 
>>> Error on engine log :
>>> 
>>> "
>>> 2016-09-29 14:13:48,637 ERROR 
>>> [org.ovirt.engine.core.vdsbroker.vdsbroker.GetVmsFromExternalProviderVDSCommand]
>>>  (default task-30) [] Failed in 'GetVmsFromExternalProviderVDS' method, for 
>>> vds: 'virtintelan01.lbg.office.lyra'; host: 
>>> 'virtintelan01.lbg.office.lyra': null
>>> 2016-09-29 14:13:48,637 ERROR 
>>> [org.ovirt.engine.core.vdsbroker.vdsbroker.GetVmsFromExternalProviderVDSCommand]
>>>  (default task-30) [] Command 
>>> 'GetVmsFromExternalProviderVDSCommand(HostName = 
>>> virtintelan01.lbg.office.lyra, 
>>> GetVmsFromExternalProviderParameters:{runAsync='true', 
>>> hostId='20b59a24-0098-461a-b4a3-7d6213b96c52', 
>>> url='qemu+ssh://root@192.168.210.140/system', username='null', 
>>> originType='KVM'})' execution failed: null
>>> 2016-09-29 14:13:48,637 INFO  
>>> [org.ovirt.engine.core.vdsbroker.vdsbroker.GetVmsFromExternalProviderVDSCommand]
>>>  (default task-30) [] FINISH, GetVmsFromExternalProviderVDSCommand, log id: 
>>> 6e062276
>>> 2016-09-29 14:13:48,637 ERROR 
>>> [org.ovirt.engine.core.bll.GetVmsFromExternalProviderQuery] (default 
>>> task-30) [] Query 'GetVmsFromExternalProviderQuery' failed: 
>>> EngineException: java.lang.NumberFormatException: null (Failed with error 
>>> ENGINE and code 5001)
>>> 2016-09-29 14:13:48,637 ERROR 
>>> [org.ovirt.engine.core.bll.GetVmsFromExternalProviderQuery] (default 
>>> task-30) [] Exception: org.ovirt.engine.core.common.errors.EngineException: 
>>> EngineException: java.lang.NumberFormatException: null (Failed with error 
>>> ENGINE and code 5001)
>>>   at 
>>> org.ovirt.engine.core.bll.VdsHandler.handleVdsResult(VdsHandler.java:114) 
>>> [bll.jar:]
>>>   at 
>>> 

Re: [ovirt-users] unsupported configuration: Unable to find security driver for model selinux

2016-10-11 Thread Michal Skrivanek

> On 11 Oct 2016, at 08:49, Николаев Алексей  
> wrote:
> 
> Hi community!
>  
> I have 4 hosts: 2 old servers and 2 new servers
> I have this error trying to migrate VM from new host to old one.
>  
> Oct 11 09:25:05 node69-06 journal: unsupported configuration: Unable to find 
> security driver for model selinux
> Oct 11 09:25:05 node69-06 journal: vdsm vm.Vm ERROR 
> vmId=`a9473a99-32c6-4548-8b85-dafe4ce8f94f`::unsupported configuration: 
> Unable to find security driver for model selinux
> Oct 11 09:25:05 node69-06 journal: vdsm vm.Vm ERROR 
> vmId=`a9473a99-32c6-4548-8b85-dafe4ce8f94f`::Failed to migrate#012Traceback 
> (most recent call last):#012  File "/usr/share/vdsm/virt/migration.py", line 
> 246, in run#012self._startUnderlyingMigration(time.time())#012  File 
> "/usr/share/vdsm/virt/migration.py", line 335, in 
> _startUnderlyingMigration#012None, maxBandwidth)#012  File 
> "/usr/share/vdsm/virt/vm.py", line 703, in f#012ret = attr(*args, 
> **kwargs)#012  File 
> "/usr/lib/python2.7/site-packages/vdsm/libvirtconnection.py", line 119, in 
> wrapper#012ret = f(*args, **kwargs)#012  File 
> "/usr/lib64/python2.7/site-packages/libvirt.py", line 1825, in 
> migrateToURI2#012if ret == -1: raise libvirtError 
> ('virDomainMigrateToURI2() failed', dom=self)#012libvirtError: unsupported 
> configuration: Unable to find security driver for model selinux
>  
> Migration from OLD host to another OLD host have not any problems.
> Migration from NEW host to another NEW host have not any problems.
> Migration from OLD host to NEW host have not any problems.
>  
> Migration is not work only from NEW to OLD.

You likely have different SELinux status on each host. Make sure it’s enabled 
on both sides (or disabled on both, but that’s discouraged)

Thanks,
michal

>  
> oVirt Engine Version: 3.5.6.2-1.el6
>  
> All hosts:
> OS Version: RHEL - 7 - 2.1511.el7.centos.2.10
> Kernel Version: 3.10.0 - 327.36.1.el7.x86_64
> KVM Version: 2.3.0 - 29.1.el7
> LIBVIRT Version: libvirt-1.2.17-13.el7_2.5
> VDSM Version: vdsm-4.16.30-0.el7.centos
>  
> Any ideas? Thx.
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Unable to get HE up after update

2016-10-11 Thread Simone Tiraboschi
On Mon, Oct 10, 2016 at 9:22 PM, Susinthiran Sithamparanathan <
chesu...@gmail.com> wrote:

> On Mon, Oct 10, 2016 at 11:40 AM, Simone Tiraboschi 
> wrote:
>
>>
>> OK, the issue on the host is just here:
>> MainThread::DEBUG::2016-10-10 11:18:34,169::brokerlink::282::
>> ovirt_hosted_engine_ha.lib.brokerlink.BrokerLink::(_communicate) Full
>> response: success {"reason": "failed liveliness check", "health": "bad",
>> "vm": "up", "detail": "up"}
>> MainThread::DEBUG::2016-10-10 11:18:34,169::brokerlink::255::
>> ovirt_hosted_engine_ha.lib.brokerlink.BrokerLink::(_checked_communicate)
>> Successful response from socket
>> MainThread::DEBUG::2016-10-10 11:18:34,170::brokerlink::151::
>> ovirt_hosted_engine_ha.lib.brokerlink.BrokerLink::(get_monitor_status)
>> Success, status {"reason": "failed liveliness check", "health": "bad",
>> "vm": "up", "detail": "up"}
>>
>> the engine VM goes up but the engine no and so after a certain amount of
>> time it tries again with a reboot.
>> We should definitively add a more explicit log entry there!
>>
>> Now the point is just why your engine is not starting.
>>
> Perhaps you ignored https://paste.fedoraproject.org/447579/14760912/? It
> seems the reason it doesn't start is due to some missing SSL/TLS certs
> inside the VM. Or do you think the problem is still somewhere else?
>

No, the issue is definitively there but I was trying to identify the root
cause.


> I've uploaded engine-setup logs to https://my.owndrive.com/index.
> php/s/3Dcyho9bqo7oZs8 in the folder engine-setup and you'll see many.
>

You uploaded ovirt-hosted-engine-setup logs from the host while now we need
engine-setup logs from the engine VM.


> I did desperately try to get up the HE when it failed after upgrade by
> trying to manually setup a new HE which failed (couple of times IIRC). So
> that might have caused couple of additional logs files in there.
>
>
> --
>
> Susinthiran Sithamparanathan
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] unsupported configuration: Unable to find security driver for model selinux

2016-10-11 Thread Николаев Алексей
Hi community! I have 4 hosts: 2 old servers and 2 new serversI have this error trying to migrate VM from new host to old one. Oct 11 09:25:05 node69-06 journal: unsupported configuration: Unable to find security driver for model selinuxOct 11 09:25:05 node69-06 journal: vdsm vm.Vm ERROR vmId=`a9473a99-32c6-4548-8b85-dafe4ce8f94f`::unsupported configuration: Unable to find security driver for model selinuxOct 11 09:25:05 node69-06 journal: vdsm vm.Vm ERROR vmId=`a9473a99-32c6-4548-8b85-dafe4ce8f94f`::Failed to migrate#012Traceback (most recent call last):#012  File "/usr/share/vdsm/virt/migration.py", line 246, in run#012    self._startUnderlyingMigration(time.time())#012  File "/usr/share/vdsm/virt/migration.py", line 335, in _startUnderlyingMigration#012    None, maxBandwidth)#012  File "/usr/share/vdsm/virt/vm.py", line 703, in f#012    ret = attr(*args, **kwargs)#012  File "/usr/lib/python2.7/site-packages/vdsm/libvirtconnection.py", line 119, in wrapper#012    ret = f(*args, **kwargs)#012  File "/usr/lib64/python2.7/site-packages/libvirt.py", line 1825, in migrateToURI2#012    if ret == -1: raise libvirtError ('virDomainMigrateToURI2() failed', dom=self)#012libvirtError: unsupported configuration: Unable to find security driver for model selinux Migration from OLD host to another OLD host have not any problems.Migration from NEW host to another NEW host have not any problems.Migration from OLD host to NEW host have not any problems. Migration is not work only from NEW to OLD. oVirt Engine Version: 3.5.6.2-1.el6 All hosts:OS Version: RHEL - 7 - 2.1511.el7.centos.2.10Kernel Version: 3.10.0 - 327.36.1.el7.x86_64KVM Version: 2.3.0 - 29.1.el7LIBVIRT Version: libvirt-1.2.17-13.el7_2.5VDSM Version: vdsm-4.16.30-0.el7.centos Any ideas? Thx.___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users