[ovirt-users] Change default "Physical Memory Guaranteed" value

2017-04-26 Thread Karli Sjöberg
Yo!

Is there a way to easily change this value?

I have checked engine-config, files under "/etc/ovirt-engine/config"
and "/usr/share/ovirt-engine/conf" and couldn´t find anything after a
quick glanse. I just want to lower it from 1024 MB to 512.

TIA
/K
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Graphics are turned upside down when install QXL in Windows

2017-03-07 Thread Karli Sjöberg
On Tue, 2017-03-07 at 09:16 +, Pavel Gashev wrote:
> The issue with Spice HTML5 is as old as native client for MacOS(X).
> Both are not maintained well.
> 
> The fix for Spice HTML5 is the following
> https://lists.freedesktop.org/archives/spice-devel/2013-
> March/012798.html

Cool! I´ll test and report back!

/K

> 
> 
> -Original Message-
> From: <users-boun...@ovirt.org> on behalf of Karli Sjöberg  b...@slu.se>
> Reply-To: Karli Sjöberg <karli.sjob...@slu.se>
> Date: Tuesday, 7 March 2017 at 11:34
> To: "users@ovirt.org" <users@ovirt.org>, "yk...@redhat.com" <ykaul@re
> dhat.com>
> Subject: Re: [ovirt-users] Graphics are turned upside down when
> install QXL in Windows
> 
> On Tue, 2017-03-07 at 08:30 +, Yaniv Kaul wrote:
> > Known issue with the Spice HTML5. We should drop it, it's not being
> > very well maintained.
> > Y.
> 
> That´s a real shame, IMO it´s awesome to not have a native client
> that
> you have to maintain for every platform. I think it works great, and
> being platform independent is super!
> 
> /K
> 
> > 
> > On Tue, Mar 7, 2017 at 9:43 AM Karli Sjöberg <karli.sjob...@slu.se>
> > wrote:
> > > Heya!
> > > 
> > > Just thought that I´d report something hilarious:)
> > > 
> > > After installing the QXL driver in Windows 7 and 2008R2, in the
> > > SPICE
> > > HTML5 browser client, all of the graphics are turned 180 degrees.
> > > It´s
> > > not that the entire screen is flipped either, but all of the
> > > individual
> > > elements are. E.g. the trashcan that should be in the top right
> > > corner
> > > is now located in the bottom right, flipped upside down with the
> > > text
> > > "above" it and text also flipped. Opening an explorer windows
> > > still
> > > has
> > > the location and search bar at the top, with location bar first
> > > and
> > > search bar to the right, as it should be, but with the graphics
> > > turned
> > > upside down, plus that the text is still printed from left to
> > > right,
> > > but upside down. And the "favorites" pane is still located to the
> > > left
> > > but listed from bottom the top, Windows has never looked this
> > > funny:)
> > > 
> > > A picture says a thousand words. Behold!
> > > http://imgur.com/a/32P12
> > > 
> > > The native client displays as it should.
> > > 
> > > Just letting you know.
> > > 
> > > /K
> > > ___
> > > Users mailing list
> > > Users@ovirt.org
> > > http://lists.ovirt.org/mailman/listinfo/users
> > > 
> 
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
> 
> 
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Graphics are turned upside down when install QXL in Windows

2017-03-07 Thread Karli Sjöberg
On Tue, 2017-03-07 at 08:56 +, Yaniv Kaul wrote:
> 
> 
> On Tue, Mar 7, 2017 at 10:34 AM Karli Sjöberg <karli.sjob...@slu.se>
> wrote:
> > On Tue, 2017-03-07 at 08:30 +, Yaniv Kaul wrote:
> > > Known issue with the Spice HTML5. We should drop it, it's not
> > being
> > > very well maintained.
> > > Y.
> > 
> > That´s a real shame, IMO it´s awesome to not have a native client
> > that
> > you have to maintain for every platform. I think it works great,
> > and
> > being platform independent is super!
> 
> I agree. I think if you could send a patch to fix this and maintain
> the client, that'd be awesome ;-)

Nice try Y, I would if I could:)

What I meant is that if resources was diverted from maintaining several
native clients to one browser client, that could be a win, having less
to maintain.

> (There might have been fixes to this issue - I know people tried, but
> I'm not up-to-date wrt the latest status of that client).
> Y.

This test was with oVirt 4.1.0.

/K

> 
>  
> > /K
> > 
> > >
> > > On Tue, Mar 7, 2017 at 9:43 AM Karli Sjöberg <karli.sjoberg@slu.s
> > e>
> > > wrote:
> > > > Heya!
> > > >
> > > > Just thought that I´d report something hilarious:)
> > > >
> > > > After installing the QXL driver in Windows 7 and 2008R2, in the
> > > > SPICE
> > > > HTML5 browser client, all of the graphics are turned 180
> > degrees.
> > > > It´s
> > > > not that the entire screen is flipped either, but all of the
> > > > individual
> > > > elements are. E.g. the trashcan that should be in the top right
> > > > corner
> > > > is now located in the bottom right, flipped upside down with
> > the
> > > > text
> > > > "above" it and text also flipped. Opening an explorer windows
> > still
> > > > has
> > > > the location and search bar at the top, with location bar first
> > and
> > > > search bar to the right, as it should be, but with the graphics
> > > > turned
> > > > upside down, plus that the text is still printed from left to
> > > > right,
> > > > but upside down. And the "favorites" pane is still located to
> > the
> > > > left
> > > > but listed from bottom the top, Windows has never looked this
> > > > funny:)
> > > >
> > > > A picture says a thousand words. Behold!
> > > > http://imgur.com/a/32P12
> > > >
> > > > The native client displays as it should.
> > > >
> > > > Just letting you know.
> > > >
> > > > /K
> > > > ___
> > > > Users mailing list
> > > > Users@ovirt.org
> > > > http://lists.ovirt.org/mailman/listinfo/users
> > > > 
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Graphics are turned upside down when install QXL in Windows

2017-03-07 Thread Karli Sjöberg
On Tue, 2017-03-07 at 08:30 +, Yaniv Kaul wrote:
> Known issue with the Spice HTML5. We should drop it, it's not being
> very well maintained.
> Y.

That´s a real shame, IMO it´s awesome to not have a native client that
you have to maintain for every platform. I think it works great, and
being platform independent is super!

/K

> 
> On Tue, Mar 7, 2017 at 9:43 AM Karli Sjöberg <karli.sjob...@slu.se>
> wrote:
> > Heya!
> > 
> > Just thought that I´d report something hilarious:)
> > 
> > After installing the QXL driver in Windows 7 and 2008R2, in the
> > SPICE
> > HTML5 browser client, all of the graphics are turned 180 degrees.
> > It´s
> > not that the entire screen is flipped either, but all of the
> > individual
> > elements are. E.g. the trashcan that should be in the top right
> > corner
> > is now located in the bottom right, flipped upside down with the
> > text
> > "above" it and text also flipped. Opening an explorer windows still
> > has
> > the location and search bar at the top, with location bar first and
> > search bar to the right, as it should be, but with the graphics
> > turned
> > upside down, plus that the text is still printed from left to
> > right,
> > but upside down. And the "favorites" pane is still located to the
> > left
> > but listed from bottom the top, Windows has never looked this
> > funny:)
> > 
> > A picture says a thousand words. Behold!
> > http://imgur.com/a/32P12
> > 
> > The native client displays as it should.
> > 
> > Just letting you know.
> > 
> > /K
> > ___
> > Users mailing list
> > Users@ovirt.org
> > http://lists.ovirt.org/mailman/listinfo/users
> > 
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] Graphics are turned upside down when install QXL in Windows

2017-03-06 Thread Karli Sjöberg
Heya!

Just thought that I´d report something hilarious:)

After installing the QXL driver in Windows 7 and 2008R2, in the SPICE
HTML5 browser client, all of the graphics are turned 180 degrees. It´s
not that the entire screen is flipped either, but all of the individual
elements are. E.g. the trashcan that should be in the top right corner
is now located in the bottom right, flipped upside down with the text
"above" it and text also flipped. Opening an explorer windows still has
the location and search bar at the top, with location bar first and
search bar to the right, as it should be, but with the graphics turned
upside down, plus that the text is still printed from left to right,
but upside down. And the "favorites" pane is still located to the left
but listed from bottom the top, Windows has never looked this funny:)

A picture says a thousand words. Behold!
http://imgur.com/a/32P12

The native client displays as it should.

Just letting you know.

/K
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Disable guest agent not installed warning

2017-02-23 Thread Karli Sjöberg

Den 23 feb. 2017 9:46 em skrev Misak Khachatryan <kmi...@gmail.com>:
>
> Sorry for duplicate posts, messed up between accounts.
>
> The problem is that it's not a FreeBSD Machine, it's FreeBSD based
> Juniper Virtual Router Reflector image, which i cannot modify by any
> way. It's proprietary product, only part of it is FreeBSD (mostly
> kernel and base environment).
>
> Best regards,
> Misak Khachatryan

Then the problem really is that it's a proprietary appliance and not FreeBSD. 
Are there _any_ appliances that supports installing the guest agent, even 
RH-based ones?

/K
>
>
> On Thu, Feb 23, 2017 at 9:48 PM, Karli Sjöberg <karli.sjob...@slu.se> wrote:
> >
> > Den 23 feb. 2017 6:10 em skrev Nir Soffer <nsof...@redhat.com>:
> >>
> >> On Thu, Feb 23, 2017 at 6:47 PM, Karli Sjöberg <karli.sjob...@slu.se>
> >> wrote:
> >> >
> >> > Den 23 feb. 2017 4:09 em skrev Nir Soffer <nsof...@redhat.com>:
> >> >>
> >> >> On Thu, Feb 23, 2017 at 4:38 PM, Karli Sjöberg <karli.sjob...@slu.se>
> >> >> wrote:
> >> >> > On Thu, 2017-02-23 at 13:46 +, Misak Khachatryan wrote:
> >> >> >> Hi there. Anybody knows how to suppress guest agent not installed
> >> >> >> warning for VM? I have one VM based on FreeBSD, where i can't
> >> >> >> install
> >> >> >> it and the warning is just annoying.
> >> >>
> >> >> I learned today that HA does not work properly if guest agent is not
> >> >> installed,
> >> >> so you should be careful about the warning.
> >> >>
> >> >> Nir
> >> >
> >> > Uhm, what makes you say that exactly? I've been running oVirt since god
> >> > knows how long now, faced countless of times where HA worked perfectly
> >> > fine.
> >> > If this is a new "feature", you have my sincerest thumbs down on that
> >> > one:)
> >>
> >> If the vm is terminated on the host, we will treat that as normal
> >> termination
> >> (e.g. poweroff within the vm), and will not start the vm on another host.
> >>
> >> You probably do not notice this since nobody is killing your vms.
> >>
> >> Nir
> >
> > So a 'kill -9' or qemu bug, huh? Good to know, but I consider it a small
> > risk.
> >
> > BTW Misak, you should be able to get the guest agent running in FreeBSD 11,
> > since they added VirtIO serial now, haven't tried it myself, a bit
> > preoccupied at the moment.
> >
> > /K
> >
> >
> > ___
> > Users mailing list
> > Users@ovirt.org
> > http://lists.ovirt.org/mailman/listinfo/users
> >
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Disable guest agent not installed warning

2017-02-23 Thread Karli Sjöberg

Den 23 feb. 2017 6:10 em skrev Nir Soffer <nsof...@redhat.com>:
>
> On Thu, Feb 23, 2017 at 6:47 PM, Karli Sjöberg <karli.sjob...@slu.se> wrote:
> >
> > Den 23 feb. 2017 4:09 em skrev Nir Soffer <nsof...@redhat.com>:
> >>
> >> On Thu, Feb 23, 2017 at 4:38 PM, Karli Sjöberg <karli.sjob...@slu.se>
> >> wrote:
> >> > On Thu, 2017-02-23 at 13:46 +, Misak Khachatryan wrote:
> >> >> Hi there. Anybody knows how to suppress guest agent not installed
> >> >> warning for VM? I have one VM based on FreeBSD, where i can't install
> >> >> it and the warning is just annoying.
> >>
> >> I learned today that HA does not work properly if guest agent is not
> >> installed,
> >> so you should be careful about the warning.
> >>
> >> Nir
> >
> > Uhm, what makes you say that exactly? I've been running oVirt since god
> > knows how long now, faced countless of times where HA worked perfectly fine.
> > If this is a new "feature", you have my sincerest thumbs down on that one:)
>
> If the vm is terminated on the host, we will treat that as normal termination
> (e.g. poweroff within the vm), and will not start the vm on another host.
>
> You probably do not notice this since nobody is killing your vms.
>
> Nir

So a 'kill -9' or qemu bug, huh? Good to know, but I consider it a small risk.

BTW Misak, you should be able to get the guest agent running in FreeBSD 11, 
since they added VirtIO serial now, haven't tried it myself, a bit preoccupied 
at the moment.

/K
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Disable guest agent not installed warning

2017-02-23 Thread Karli Sjöberg

Den 23 feb. 2017 4:09 em skrev Nir Soffer <nsof...@redhat.com>:
>
> On Thu, Feb 23, 2017 at 4:38 PM, Karli Sjöberg <karli.sjob...@slu.se> wrote:
> > On Thu, 2017-02-23 at 13:46 +, Misak Khachatryan wrote:
> >> Hi there. Anybody knows how to suppress guest agent not installed
> >> warning for VM? I have one VM based on FreeBSD, where i can't install
> >> it and the warning is just annoying.
>
> I learned today that HA does not work properly if guest agent is not 
> installed,
> so you should be careful about the warning.
>
> Nir

Uhm, what makes you say that exactly? I've been running oVirt since god knows 
how long now, faced countless of times where HA worked perfectly fine. If this 
is a new "feature", you have my sincerest thumbs down on that one:)

/K
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Disable guest agent not installed warning

2017-02-23 Thread Karli Sjöberg
On Thu, 2017-02-23 at 13:46 +, Misak Khachatryan wrote:
> Hi there. Anybody knows how to suppress guest agent not installed
> warning for VM? I have one VM based on FreeBSD, where i can't install
> it and the warning is just annoying.

+1 :)

/K

> 
> Best regards,
> Misak Khachatryan,
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Best setup for nfs domain and 1gbs adapters on hosts

2017-02-23 Thread Karli Sjöberg
On Thu, 2017-02-23 at 12:47 +, Karli Sjöberg wrote:
> On Thu, 2017-02-23 at 11:14 +, Yaniv Kaul wrote:
> > 
> > 
> > On Thu, Feb 23, 2017 at 1:11 PM Gianluca Cecchi <gianluca.cecchi@gm
> > ai
> > l.com> wrote:
> > > On Sat, Feb 18, 2017 at 1:35 PM, Karli Sjöberg <karli.sjoberg@slu
> > > .s
> > > e> wrote:
> > > > > 
> > > > > Thanks for your answer, K!
> > > > > So you mean to make a unique bond composed by all 4 network
> > > > 
> > > > adapters and put all the networks on it, comprised ovirtmgmt
> > > > and
> > > > such, through clans?
> > > > > How do you configure 802.3ad on 4 adapters? How many switches
> > > > 
> > > > do you have to connect to, from these 4 adapters? Or do you use
> > > > round robin bonding (but I presume it is not supported in court
> > > > this bond)?
> > > > > Thanks!
> > > > 
> > > > Well, in our case, we have two clustered switches from C-
> > > > company
> > > > so two NICs in each. And then, yeah, different VLANs for every
> > > > network on top of the same bond. Works like a charm:)
> > > > /K
> > > > 
> > > 
> > > Hello K,
> > > coming back to the question, I have only 1 VLAN dedicated to
> > > Netapp
> > > NFS infrastructure and I can't manage to add another.
> > > Can I manage to use anyway 802.3ad on 4 adapters using any
> > > particular option for this bonding mode at oVirt and switch
> > > side? 
> > > I think that at network side we have 4 x 3130 clustered Cisco
> > > switches so in theory I can use this bonding mode.
> > > I don't know if I can configure more than one IP on the same lan
> > > inside one Netapp svm to configure more that one NFS share.
> > > And if 802.3ad mode would assure to use 2 different network
> > > adapters when pointing to 2 different ips on the same network for
> > > the shares
> > > 
> > 
> > And multiple mount points, hence multiple SDs? They might, or might
> > not use the same physical NIC.
> > Y.
> 
> In my experience, they will use the same NIC. You need, at least, two
> addresses in different subnets for 802.3ad to load balance between
> the
> interfaces.
> 
> /K

P.S. The only thing I can say for sure is that proper load balancing
will occur with separate VLAN interfaces and addresses in different
subnets. That much I know, because that´s how we did it:)

Just using addresses in different subnets may work too, I just don´t
know. Please try and post your results:)

/K

> 
> >  
> > > And I have to configure parameters for bonding in oVirt too, in
> > > case I have to set any particular one..
> > >  
> > > Thanks again,
> > > Gianluca
> > > ___
> > > Users mailing list
> > > Users@ovirt.org
> > > http://lists.ovirt.org/mailman/listinfo/users
> > > 
> 
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Best setup for nfs domain and 1gbs adapters on hosts

2017-02-23 Thread Karli Sjöberg
On Thu, 2017-02-23 at 11:14 +, Yaniv Kaul wrote:
> 
> 
> On Thu, Feb 23, 2017 at 1:11 PM Gianluca Cecchi <gianluca.cecchi@gmai
> l.com> wrote:
> > On Sat, Feb 18, 2017 at 1:35 PM, Karli Sjöberg <karli.sjoberg@slu.s
> > e> wrote:
> > > >
> > > > Thanks for your answer, K!
> > > > So you mean to make a unique bond composed by all 4 network
> > > adapters and put all the networks on it, comprised ovirtmgmt and
> > > such, through clans?
> > > > How do you configure 802.3ad on 4 adapters? How many switches
> > > do you have to connect to, from these 4 adapters? Or do you use
> > > round robin bonding (but I presume it is not supported in court
> > > this bond)?
> > > > Thanks!
> > > Well, in our case, we have two clustered switches from C-company
> > > so two NICs in each. And then, yeah, different VLANs for every
> > > network on top of the same bond. Works like a charm:)
> > > /K
> > > 
> > 
> > Hello K,
> > coming back to the question, I have only 1 VLAN dedicated to Netapp
> > NFS infrastructure and I can't manage to add another.
> > Can I manage to use anyway 802.3ad on 4 adapters using any
> > particular option for this bonding mode at oVirt and switch side? 
> > I think that at network side we have 4 x 3130 clustered Cisco
> > switches so in theory I can use this bonding mode.
> > I don't know if I can configure more than one IP on the same lan
> > inside one Netapp svm to configure more that one NFS share.
> > And if 802.3ad mode would assure to use 2 different network
> > adapters when pointing to 2 different ips on the same network for
> > the shares
> > 
> 
> And multiple mount points, hence multiple SDs? They might, or might
> not use the same physical NIC.
> Y.

In my experience, they will use the same NIC. You need, at least, two
addresses in different subnets for 802.3ad to load balance between the
interfaces.

/K

>  
> > And I have to configure parameters for bonding in oVirt too, in
> > case I have to set any particular one..
> >  
> > Thanks again,
> > Gianluca
> > ___
> > Users mailing list
> > Users@ovirt.org
> > http://lists.ovirt.org/mailman/listinfo/users
> > 
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Best setup for nfs domain and 1gbs adapters on hosts

2017-02-18 Thread Karli Sjöberg

Den 18 feb. 2017 8:56 fm skrev Gianluca Cecchi <gianluca.cec...@gmail.com>:
>
>
>
> On Feb 17, 2017 7:22 PM, "Karli Sjöberg" <karli.sjob...@slu.se> wrote:
>>
>>
>>
>> Den 17 feb. 2017 6:30 em skrev Gianluca Cecchi <gianluca.cec...@gmail.com>:
>>>
>>> Hello,
>>> I'm going to setup an environment where I will have 2 hosts and each with 2 
>>> adapters to connect to storage domain(s). This will be a test environment, 
>>> not a production one.
>>> The storage domain(s) will be NFS, provided by a Netapp system.
>>> The hosts have 4 x 1Gb/s adapters and I think to use 2 for ovirtmgmt and 
>>> VMs (through bonding and VLANs) and to dedicate the other 2 adapters to the 
>>> NFS domain connectivity.
>>> What would be the best setup to have both HA on the connection and also 
>>> using the whole 2Gb/s in normal load scenario?
>>> Is it better to make more storage domains (and more svm on Netapp side) or 
>>> only one?
>>> What would be the suitable bonding mode to put on adapters? I normally use 
>>> 802.3ad provided by the switches, but I'm not sure if in this configuration 
>>> I can use both the network adapters for the overall load of the different 
>>> VMs that I would have in place...
>>>
>>> Thanks in advance for every suggestion,
>>>
>>> Gianluca
>>
>>
>> Hey G!
>>
>> If it was me doing this, I would make one 4x1Gb/s 802.3ad bond on filer and 
>> hosts to KISS. Then, if bandwidth is of concern, I would set up two VLANs 
>> for storage interfaces with addresses on separate subnets (10.0.0.1 and 
>> 10.0.1.1 on filer. 10.0.0.(2,3) and 10.0.1.(2,3) on hosts) and then on the 
>> filer set up only two NFS exports where you try to as evenly as possible 
>> provision your VMs. This way the network load would evenly spread over all 
>> interfaces for simplest config and best fault tolerance, while keeping 
>> storage traffic at max 2Gb/s. You only need one SVM with several addresses 
>> to achieve this. We have our VMWare environment set up similar to this 
>> towards our NetApp. We also have our oVirt environment set up like this, but 
>> towards a different NFS storage, with great success.
>>
>> /K
>
>
> Thanks for your answer, K!
> So you mean to make a unique bond composed by all 4 network adapters and put 
> all the networks on it, comprised ovirtmgmt and such, through clans?
> How do you configure 802.3ad on 4 adapters? How many switches do you have to 
> connect to, from these 4 adapters? Or do you use round robin bonding (but I 
> presume it is not supported in court this bond)?
> Thanks!

Well, in our case, we have two clustered switches from C-company so two NICs in 
each. And then, yeah, different VLANs for every network on top of the same 
bond. Works like a charm:)

/K
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Best setup for nfs domain and 1gbs adapters on hosts

2017-02-17 Thread Karli Sjöberg


Den 17 feb. 2017 6:30 em skrev Gianluca Cecchi :
Hello,
I'm going to setup an environment where I will have 2 hosts and each with 2 
adapters to connect to storage domain(s). This will be a test environment, not 
a production one.
The storage domain(s) will be NFS, provided by a Netapp system.
The hosts have 4 x 1Gb/s adapters and I think to use 2 for ovirtmgmt and VMs 
(through bonding and VLANs) and to dedicate the other 2 adapters to the NFS 
domain connectivity.
What would be the best setup to have both HA on the connection and also using 
the whole 2Gb/s in normal load scenario?
Is it better to make more storage domains (and more svm on Netapp side) or only 
one?
What would be the suitable bonding mode to put on adapters? I normally use 
802.3ad provided by the switches, but I'm not sure if in this configuration I 
can use both the network adapters for the overall load of the different VMs 
that I would have in place...

Thanks in advance for every suggestion,

Gianluca

Hey G!

If it was me doing this, I would make one 4x1Gb/s 802.3ad bond on filer and 
hosts to KISS. Then, if bandwidth is of concern, I would set up two VLANs for 
storage interfaces with addresses on separate subnets (10.0.0.1 and 10.0.1.1 on 
filer. 10.0.0.(2,3) and 10.0.1.(2,3) on hosts) and then on the filer set up 
only two NFS exports where you try to as evenly as possible provision your VMs. 
This way the network load would evenly spread over all interfaces for simplest 
config and best fault tolerance, while keeping storage traffic at max 2Gb/s. 
You only need one SVM with several addresses to achieve this. We have our 
VMWare environment set up similar to this towards our NetApp. We also have our 
oVirt environment set up like this, but towards a different NFS storage, with 
great success.

/K
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] VMs are not running/booting on one host

2017-02-15 Thread Karli Sjöberg

Den 15 feb. 2017 9:06 em skrev Peter Hudec :
>
> Hi,
>
> so theproblem is little bit different. When I wait for a long time, the
> VM boots ;(

Does the VM have VirtIO serial console activated? I had the same problem and 
removing that fixed it.

/K

>
> But ... /see the log/. I'm invetigating the reason.
> The difference between the dipovirt0{1,2} and the dipovirt03 isthe
> installation time. The first 2 was migrated last week, the last one
> yesterday. There some newer packages, but nothing related to KVM.
>
> [  292.429622] INFO: rcu_sched self-detected stall on CPU { 0}  (t=72280
> jiffies g=393 c=392 q=35)
> [  292.430294] sending NMI to all CPUs:
> [  292.430305] NMI backtrace for cpu 0
> [  292.430309] CPU: 0 PID: 0 Comm: swapper/0 Not tainted 3.16.0-4-amd64
> #1 Debian 3.16.39-1
> [  292.430311] Hardware name: oVirt oVirt Node, BIOS 0.5.1 01/01/2011
> [  292.430313] task: 8181a460 ti: 8180 task.ti:
> 8180
> [  292.430315] RIP: 0010:[]  []
> native_write_msr_safe+0x6/0x10
> [  292.430323] RSP: 0018:88001fc03e08  EFLAGS: 0046
> [  292.430325] RAX: 0400 RBX:  RCX:
> 0830
> [  292.430326] RDX:  RSI: 0400 RDI:
> 0830
> [  292.430327] RBP: 818e2a80 R08: 818e2a80 R09:
> 01e8
> [  292.430329] R10:  R11: 88001fc03b96 R12:
> 
> [  292.430330] R13: a0ea R14: 0002 R15:
> 0008
> [  292.430335] FS:  () GS:88001fc0()
> knlGS:
> [  292.430337] CS:  0010 DS:  ES:  CR0: 8005003b
> [  292.430339] CR2: 01801000 CR3: 1c6de000 CR4:
> 06f0
> [  292.430343] Stack:
> [  292.430344]  8104b30d 0002 0082
> 88001fc0d6a0
> [  292.430347]  81853800  818e2fe0
> 0023
> [  292.430349]  81853800 81047d63 88001fc0d6a0
> 810c73fa
> [  292.430352] Call Trace:
> [  292.430354]  
>
> [  292.430360]  [] ? __x2apic_send_IPI_mask+0xad/0xe0
> [  292.430365]  [] ?
> arch_trigger_all_cpu_backtrace+0xc3/0x140
> [  292.430369]  [] ? rcu_check_callbacks+0x42a/0x670
> [  292.430373]  [] ? account_process_tick+0xde/0x180
> [  292.430376]  [] ? tick_sched_handle.isra.16+0x60/0x60
> [  292.430381]  [] ? update_process_times+0x40/0x70
> [  292.430404]  [] ? tick_sched_handle.isra.16+0x20/0x60
> [  292.430407]  [] ? tick_sched_timer+0x3c/0x60
> [  292.430410]  [] ? __run_hrtimer+0x67/0x210
> [  292.430412]  [] ? hrtimer_interrupt+0xe9/0x220
> [  292.430416]  [] ? smp_apic_timer_interrupt+0x3b/0x50
> [  292.430420]  [] ? apic_timer_interrupt+0x6d/0x80
> [  292.430422]  
>
> [  292.430425]  [] ? sched_clock_local+0x15/0x80
> [  292.430428]  [] ? mwait_idle+0xa0/0xa0
> [  292.430431]  [] ? native_safe_halt+0x2/0x10
> [  292.430434]  [] ? default_idle+0x19/0xd0
> [  292.430437]  [] ? cpu_startup_entry+0x374/0x470
> [  292.430440]  [] ? start_kernel+0x497/0x4a2
> [  292.430442]  [] ? set_init_arg+0x4e/0x4e
> [  292.430445]  [] ? early_idt_handler_array+0x120/0x120
> [  292.430447]  [] ? x86_64_start_kernel+0x14d/0x15c
> [  292.430448] Code: c2 48 89 d0 c3 89 f9 0f 32 31 c9 48 c1 e2 20 89 c0
> 89 0e 48 09 c2 48 89 d0 c3 66 66 2e 0f 1f 84 00 00 00 00 00 89 f0 89 f9
> 0f 30 <31> c0 c3 0f 1f 80 00 00 00 00 89 f9 0f 33 48 c1 e2 20 89 c0 48
> [  292.430579] Clocksource tsc unstable (delta = -289118137838 ns)
>
>
> On 15/02/2017 20:39, Peter Hudec wrote:
> > Hi,
> >
> > I did already, but not find any suspicious, see attached logs and the
> > spice screenshot.
> >
> > Actually the VM is booting, but is stacked in some  bad state.
> > When migrating, the migration is sucessfull, but the vm is not acessible
> > /even on network/
> >
> > Right now I found one VM, which is working well.
> >
> > In logs look for diplci01 at 2017-02-15 20:23:00,420, the VM ID is
> > 7ddf349b-fb9a-44f4-9e88-73e84625a44e
> >
> >thanks
> >Peter
> >
> > On 15/02/2017 19:40, Nir Soffer wrote:
> >> On Wed, Feb 15, 2017 at 8:11 PM, Peter Hudec  wrote:
> >>> Hi,
> >>>
> >>> I'm preparing to migrate from 3.5 to 3.6
> >>> The first step is the CentOS6 -> CentOS7 for hosts.
> >>>
> >>> setup:
> >>>   - 3x hosts /dipovitrt01, dipovirt02, dipovirt03/
> >>>   - 1x hosted engine /on all 3 hosts/
> >>>
> >>> The upgrade of the first 2 hosts was OK, all VM are running OK.
> >>> When I upgraded the 3rd host /dipovirt03/, some  VMs are not able to run
> >>> on the or boot on this host. I tried  to full reinstall the host, but
> >>> wth the same result.
> >>>
> >>> In case of migration the VMm will stop running in a while.
> >>> In case of booting the VM will not boot, I see the 'Loading kernel ...'
> >>>
> >>> Almost all VMS are Debian 8 with guest tools, some Centos 6/7
> >>>
> >>> The hosts were OK with CentOS6.
> >>>
> >>>
> >>> Where 

Re: [ovirt-users] oVirt Engine 4.1 fails on specifying interface for ovirtmgmt

2017-02-05 Thread Karli Sjöberg

Den 5 feb. 2017 9:30 fm skrev Michael Burman <mbur...@redhat.com>:
>
> Hi
>
> Karil, it is seems like you didn't configured the vlan device eno1.1 properly 
> before you run hosted-engine --deploy.
> How did you configured it?
> If the vlan device was properly configured then you should have seen 
> something like :
> Please indicate a nic to set ovirtmgmt bridge on: (eno1, eno1.1) [eno1]:

No that wasn't the problem, the network was fine, since I was connected to it 
over SSH:)

What was wrong was that I already had a bridge called 'Public' on that 
interface and the deploy couldn't handle that. Maybe RFE material... I just 
removed the bridge and deployed again, and then I could specify 'eno1.1'. I am 
bummed over the fact that I couldn't create the ovirtmgmt bridge before the 
deploy, it just bombed, apparently by design:
https://bugzilla.redhat.com/show_bug.cgi?id=1317125

I know how to configure it correctly, and if I don't, I won't blame you for my 
mistakes!

Other than that I have had no problems deploying 4.1 hosted engine. Really nice 
new dashboard and I love the new import from KVM feature, which I used to empty 
my old environment before reinstalling as the second hosted engine host.

Great job everyone! It works great!

/K

>
> Regards,
>
> On Sun, Feb 5, 2017 at 9:03 AM, Yedidyah Bar David <d...@redhat.com> wrote:
>>
>> On Fri, Feb 3, 2017 at 3:19 PM, Karli Sjöberg <karli.sjob...@slu.se> wrote:
>> > Heya!
>> >
>> > I´m trying to complete 'hosted-engine --deploy' but I´m stuck at:
>> > Please indicate a nic to set ovirtmgmt bridge on: (eno1) [eno1]: eno1.1
>> > [ ERROR ] Invalid value
>>
>> This should generally work. Is the vlan interface configured, before you
>> run deploy?
>>
>> Please share both runs' logs. Thanks.
>>
>> Adding Simone.
>>
>> >
>> > As you can see it´s a vlan-tagged interface. If I type in just 'eno1',
>> > the setup continues but fails obviously since it´s the wrong network.
>> >
>> > Any pointers?
>> >
>> > /K
>> > ___
>> > Users mailing list
>> > Users@ovirt.org
>> > http://lists.ovirt.org/mailman/listinfo/users
>>
>>
>>
>> --
>> Didi
>> ___
>> Users mailing list
>> Users@ovirt.org
>> http://lists.ovirt.org/mailman/listinfo/users
>
>
>
>
> --
> Michael Burman
> RedHat Israel, RHV-M Network QE
>
> Mobile: 054-5355725
> IRC: mburman
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] oVirt Engine 4.1 fails on specifying interface for ovirtmgmt

2017-02-03 Thread Karli Sjöberg
Heya!

I´m trying to complete 'hosted-engine --deploy' but I´m stuck at:
Please indicate a nic to set ovirtmgmt bridge on: (eno1) [eno1]: eno1.1
[ ERROR ] Invalid value

As you can see it´s a vlan-tagged interface. If I type in just 'eno1',
the setup continues but fails obviously since it´s the wrong network.

Any pointers?

/K
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] 4.0 x 4.1

2017-01-24 Thread Karli Sjöberg
On Tue, 2017-01-24 at 11:06 +, Pavel Gashev wrote:
> I'd like to apologize for 'ugly' word. From my own personal
> experience 4.0.5 had some bugs which spoiled my impression from 4.0.
> Fortunately most of them are fixed in 4.0.6. 

I should really not throwing stone in glass houses here, since we´re
still running 3.6 (I know, I know), but...

If everyone thought like that, no one would have tested and gotten
those bugs fixed in 4.0.6 either, see what I´m saying?

So if people hadn´t tested and bug-reported those things, your
impression of 4.0.6 would probably have been just as bad.

Just my two cents.

/K

> 
> -Original Message-
> From:  on behalf of Pavel Gashev  s.com>
> Date: Tuesday 24 January 2017 at 13:38
> To: Fernando Frediani , "us...@ovirt.or
> g" 
> Subject: Re: [ovirt-users] 4.0 x 4.1
> 
> I started with oVirt 3.6. It became stable since 3.6.7 just when 4.0
> is released. Also I use 4.0. The previous 4.0.5 was ugly, 4.0.6 can
> be considered more or less stable, and 4.1 is going to be released
> soon. Thus, I’d start with 4.0 and upgrade to 4.1 when 4.2 is
> released.
> 
> -Original Message-
> From:  on behalf of Fernando Frediani  ndo.fredi...@upx.com.br>
> Date: Monday 23 January 2017 at 22:36
> To: "users@ovirt.org" 
> Subject: [ovirt-users] 4.0 x 4.1
> 
> I am deploying a oVirt environment which will not get production
> data 
> immediately.
> 
> Obviously I would rather use 4.1 RC due the many changes and fixes 
> present. Later when 4.1 becomes stable then upgrade to it.
> Does anyone see any problem in doing that way or would it be more 
> advisable to start with 4.0.6 and upgrade to 4.1 stable when time
> comes ?
> 
> My concern are the issue people related they had when upgrading from
> one 
> major version to another in the past.
> 
> Thanks
> 
> Fernando
> 
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
> 
> 
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
> 
> 
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] NAS for oVirt

2016-12-24 Thread Karli Sjöberg

Den 23 dec. 2016 23:49 skrev "rightkicktech.gmail.com" 
:
>
> Hi Mikhail,
>
> Thank you for your suggestion.
> Have you had any performance issues with freenas? It has been mentioned on 
> some blogs that freenas might have performance issues. Not sure why.

I can't say for sure either since the statement is too unspecific. Like saying 
that "CentOS might have performance issues", it's too vague. Though what I'd 
guess is that since ZFS honors syncs over NFS, write performance is affected. 
Either you turn sync off (epic bad) or add a SSD that you use as log disk which 
makes the performance problem go away, plus mitigates a lot of the 
fragmentation that would otherwise build with time. Remember to configure the 
disks as RAID10, or striped mirrors in ZFS-speak, when using it for VM workload 
for maximum IOPS.

We have been using a FreeBSD machine with ZFS serving NFS to our oVirt 
environment for more than five years without larger issues.

Merry Christmas!

/K

> A clean Centos with NFS sounds ok also. What do you do if you need snapshots 
> of data? Lvm snapshots?
>
> Alex
>
> On December 23, 2016 5:08:42 PM EET, "Краснобаев Михаил"  wrote:
>>
>> Hi,
>>
>> it mainly depends on the budget. I can give you some advice from my own 
>> experience:
>>
>> SMB systems from QNAP or any other vendor don't cope well with the load that 
>> OVirt generates (simultaneous access), because they are usually built on 
>> slow drives.
>> Using 15K drives helps a bit. I have a Centos machine that is used only as a 
>> file storage (NFS, 4x15K drives in raid5).
>>
>> I would suggest trying to built a Freenas machine on NL-SAS drives + SSD 
>> cache. In my opinion it would the most cost efficient decision.
>>
>> Best regards,
>>
>> MIkhail
>>
>> 23.12.2016, 15:53, "rightkicktech.gmail.com" :
>>>
>>> Hi all,
>>>
>>> I am thinking to setup an environment with oVirt and centralized storage 
>>> using a NAS that supports NFS and iSCSI.
>>>
>>> The setup will be used to host approx 20 VMs. The VMs wi ll be running 
>>> critical services and not for testing. I have seen several from QNAP, 
>>> iXsystems (freenas mini), ...
>>> What NAS would you recommend for this setup?
>>>
>>> Thanx,
>>> Alex
>>> --
>>> Sent from my Android device with K-9 Mail. Please excuse my brevity.,
>>>
>>> ___
>>> Users mailing list
>>> Users@ovirt.org
>>> http://lists.ovirt.org/mailman/listinfo/users
>>
>>
>>
>> --
>> С уважением, Краснобаев Михаил.
>>
>>
>
>
> --
> Sent from my Android device with K-9 Mail. Please excuse my brevity.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] oVirt SDK v4 backwards compatibility

2016-11-07 Thread Karli Sjöberg
On Tue, 2016-11-08 at 02:20 -0500, Tomas Jelinek wrote:
> 
> - Original Message -
> > From: "Rafael Martins" <rmart...@redhat.com>
> > To: "Karli Sjöberg" <karli.sjob...@slu.se>
> > Cc: users@ovirt.org
> > Sent: Monday, November 7, 2016 7:06:33 PM
> > Subject: Re: [ovirt-users] oVirt SDK v4 backwards compatibility
> > 
> > - Original Message -
> > > From: "Karli Sjöberg" <karli.sjob...@slu.se>
> > > To: "Rafael Martins" <rmart...@redhat.com>
> > > Cc: users@ovirt.org
> > > Sent: Monday, November 7, 2016 6:13:33 PM
> > > Subject: Re: [ovirt-users] oVirt SDK v4 backwards compatibility
> > > 
> > > 
> > > Den 7 nov. 2016 15:53 skrev Rafael Martins <rmart...@redhat.com>:
> > > > 
> > > > - Original Message -
> > > > > From: "Karli Sjöberg" <karli.sjob...@slu.se>
> > > > > To: users@ovirt.org
> > > > > Sent: Monday, November 7, 2016 3:06:10 PM
> > > > > Subject: [ovirt-users] oVirt SDK v4 backwards compatibility
> > > > > 
> > > > > Heya!
> > > > > 
> > > > > Quick question, if I have on my computer installed a newer
> > > > > version
> > > > > Python SDK than what´s installed on the engine (4.0.3 locally
> > > > > and 3.6.X
> > > > > in engine), is it possible to connect?
> > > > 
> > > > It is not possible, but you can still install the RPM for the
> > > > version 3
> > > > of
> > > > the SDK. Please note that the code of the SDK versions is not
> > > > compatible.
> > > 
> > > Ok, as I thought. But how does others handle that, like moVirt
> > > e.g? Is
> > > there
> > > a best-practice for backwards compatibility?
> 
> moVirt is not using the SDKs, it is talking to API directly. But the
> general rule for the clients 
> (moVirt but also ManageIQ) works like this:
> - check the version of the API right at the beginning
> - according to the found version use either the new or the old api

Ah, I see. OK, that answers my question pretty clearly, correct me if
I'm wrong; for anyone who wishes to write something in python, you 
have two SDK's installed (or, talk to the API directly) and check the
API version to determine which SDK you should use?

Is there a standard ("correct") way of checking the API version?

/K

> 
> > 
> > Right now if you use the old SDK you should be able to "talk" with
> > both 3.6
> > and 4.0, because 4.0 api provides backward compatibility with 3.6.
> > But I'm
> > not sure if you can rely on this. Juan may have more details for
> > you.
> > 
> > Thanks,
> > Rafael
> > 
> > > /K
> > > 
> > > > 
> > > > > TIA
> > > > > Karli Sjöberg
> > > > > ___
> > > > > Users mailing list
> > > > > Users@ovirt.org
> > > > > http://lists.ovirt.org/mailman/listinfo/users
> > > > > 
> > 
> > ___
> > Users mailing list
> > Users@ovirt.org
> > http://lists.ovirt.org/mailman/listinfo/users
> > 
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] oVirt SDK v4 backwards compatibility

2016-11-07 Thread Karli Sjöberg

Den 7 nov. 2016 15:53 skrev Rafael Martins <rmart...@redhat.com>:
>
> - Original Message -
> > From: "Karli Sjöberg" <karli.sjob...@slu.se>
> > To: users@ovirt.org
> > Sent: Monday, November 7, 2016 3:06:10 PM
> > Subject: [ovirt-users] oVirt SDK v4 backwards compatibility
> >
> > Heya!
> >
> > Quick question, if I have on my computer installed a newer version
> > Python SDK than what´s installed on the engine (4.0.3 locally and 3.6.X
> > in engine), is it possible to connect?
>
> It is not possible, but you can still install the RPM for the version 3 of 
> the SDK. Please note that the code of the SDK versions is not compatible.

Ok, as I thought. But how does others handle that, like moVirt e.g? Is there a 
best-practice for backwards compatibility?

/K

>
> > TIA
> > Karli Sjöberg
> > ___
> > Users mailing list
> > Users@ovirt.org
> > http://lists.ovirt.org/mailman/listinfo/users
> >
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] oVirt SDK v4 backwards compatibility

2016-11-07 Thread Karli Sjöberg
Heya!

Quick question, if I have on my computer installed a newer version
Python SDK than what´s installed on the engine (4.0.3 locally and 3.6.X
in engine), is it possible to connect?

TIA
Karli Sjöberg
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Active Directory domain authorization in oVirt Hosted Engine guest OS

2016-10-19 Thread Karli Sjöberg
On Wed, 2016-10-19 at 13:48 +0300, aleksey.maksi...@it-kb.ru wrote:
> Hello oVirt guru`s!
> 
> I'm sorry for possible offtopic, but I do not know where to seek
> help.
> 
> I want to set up Active Directory domain authorization in oVirt
> Hosted Engine guest OS.
> 
> For this I use SSSD as described here: 
> https://blog.it-kb.ru/2016/10/15/join-debian-gnu-linux-8-6-to-active-
> directory-domain-with-sssd-and-realmd-for-authentication-and-
> configure-ad-domain-security-group-authorization-for-sudo-and-ssh-
> with-putty-sso/

I used this[*] that worked for me (at least on Ubuntu) yesterday.
Adjust accordingly for CentOS.

/K

[*] https://help.ubuntu.com/lts/serverguide/sssd-ad.html

> 
> I attached the computer to the domain using the realm utility.
> It looks nice.
> 
> [root@KOM-OVIRT1 ~]# realm list
> ad.holding.com
>   type: kerberos
>   realm-name: AD.HOLDING.COM
>   domain-name: ad.holding.com
>   configured: kerberos-member
>   server-software: active-directory
>   client-software: sssd
>   required-package: oddjob
>   required-package: oddjob-mkhomedir
>   required-package: sssd
>   required-package: adcli
>   required-package: samba-common
>   login-formats: %u...@ad.holding.com
>   login-policy: allow-permitted-logins
>   permitted-logins:
>   permitted-groups: kom-srv-linux-adm...@ad.holding.com
> 
> However, getent does not return information about domain accounts:
> 
> [root@KOM-OVIRT1 ~]# getent passwd alek...@ad.holding.com
> [root@KOM-OVIRT1 ~]# 
> 
> getent for local accounts work:
> 
> [root@KOM-OVIRT1 ~]# getent passwd root
> root:x:0:0:root:/root:/bin/bash
> 
> oVirt Hosted Engine guest OS has some tricky authorization settings?
> Can you help me?
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
> 
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] oVirt AD integration problems

2016-10-14 Thread Karli Sjöberg

Den 14 okt. 2016 4:30 em skrev cmc :
>
> Hi Ondra,
>
> It manages to authenticate, but appends the domain again once I'm logged in, 
> for instance, if I log in as user 'cam', it will log me in,
> and display the login name in the top right corner as 
> 'c...@domain.com@domain.com' (this shows up in the log as well: it shows me
> logging in as c...@domain.com, but then returns an error as user  
> c...@domain.com@domain.com is not authorized). My thought was
> that something done earlier when I was playing around with sssd, kerberos and 
> AD is doing this, though I have removed these packages
> and run authconfig to remove sssd. Any ideas?

Can't say why, but it's the same for us. It's unsightly, kindly put.

/K

>
> Cheers,
>
> Cam
>
> On Thu, Oct 13, 2016 at 2:04 PM, cmc  wrote:
>>
>> Hi Ondra,
>>
>> That is good to know that we don't need Kerberos - it complicates things a 
>> lot.
>>
>> I think the errors might be the options I'd selected during the setup. I was 
>> thrown a bit that
>> it passed all the internal tests provided by the setup script, but failed on 
>> the web GUI. When
>> I've seen 'unspecified GSS failure' and 'peer not authenticated' it's 
>> usually been due to
>> Kerberos (though admittedly these are just generic errors). So I tried the 
>> Redhat guide for SSO at:
>>
>> https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Virtualization/3.6/html/Administration_Guide/Configuring_LDAP_and_Kerberos_for_Single_Sign-on.html
>>
>> which uses Kerberos (in ovirt-sso.conf) I had to remove the symlink to the 
>> Apache
>> config it says to create, as it results in internal server errors in Apache. 
>> It uses an SPN for
>> Apache in the keytab.
>>
>> Now that you've confirmed that it can actually work without any need for the 
>> Kerberos stuff,
>> I will start afresh from a clean setup and apply what I've learnt during 
>> this process.
>>
>> I'll try it out and let you know either way.
>>
>> Many thanks for all the help!
>>
>> Kind regards,
>>
>> Cam
>>
>>
>>>
>>> Yes, you really do not need anything kerberos related to securely bind
>>> to AD via LDAP simple bind over TLS/SSL. This is really strange to me
>>> what errors you are getting, but you probably configured apache (or
>>> something else?) to require keytab, but you don't have to, and you can
>>> remove that configuration.
>>>

 Thanks,

 Cam




 Thanks,

 Cam

 ___

 Users mailing list
 Users@ovirt.org 
 >
 http://lists.ovirt.org/mailman/listinfo/users
 
 >



>>
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] documentation change suggestion / question

2016-10-09 Thread Karli Sjöberg

Den 8 okt. 2016 19:15 skrev Charles Kozler :
>
> Googling "ovirt windows agent" this is the first link that pops up: 
> http://www.ovirt.org/documentation/internal/guest-agent/guest-agent-for-windows/
>
> This doc seems non-intuitive and over complicated
>
> Specifically, the RedHat documentation that is 4 links below is simple as 
> "install this package and mount the iso": 
> https://community.redhat.com/blog/2015/05/how-to-install-and-use-ovirts-windows-guest-tools/
>
> The former was updated as early as June of this year
>
> 1.) The RedHat document worked for me so I dont think oVirt 4.x cant use the 
> same
> 2.) Why have separate areas of documentation that are so different from each 
> other? This has caused me issues in the past whereby I found RH docs that 
> were much more clear and concise

That's because all oVirt documentation is community driven. This specific page 
was written by a guy I happen to know quite well (I wrote it):)

This was written back when there was no easy to install package, where you had 
to do that by hand, and if you want to, you still can, the method still works. 
But I agree that if there's an easier way today, I think we should go with that 
first and keep this compiling method as the fallback.

> 3.) Is there anyone who might want to merge RH docs with oVirt docs where the 
> RH docs are better than oVirt?

Hoping someone @RH can answer this, because I don't know if I'm allowed to do 
that?

/K

>
> Thanks so much for providing such a great product! I just feel sometimes the 
> docs are a little more developer-centric whereas the RedHat docs are more 
> easily readable
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] R: moVirt 1.6 released!

2016-09-24 Thread Karli Sjöberg

Den 23 sep 2016 10:08 em skrev NUNIN Roberto :
>
> > >
> > > >Also tested that aSPICE works, which is >awesome! Keep up the great
> > > work!
> > >
> > > Interesting: did you have used aSpice to act as a console viewer ?
> > > Could you share basics ?
> >
> > Very basic:) Just install aSPICE from $app_store and then, in moVirt, click 
> > the
> > "three dots" in the top right corner and choose "Console". I had to accept 
> > our
> > certificate and for some reason the first time I tried it, it didn´t work, 
> > but I tried
> > again and BOOM!:)
> >
> > /K
>
> Tested it, but I wasn't able to have the console until bVNC free installation
> Message was: check if you have aSpice or bVNC installed.
> Looks strange, considering that setup isn't a nightmare!

Well, that depends on the console settings on the VM. Do you have a VM with 
SPICE console configured?

/K

>
> Thanks
>
>
> 
>
> Questo messaggio e' indirizzato esclusivamente al destinatario indicato e 
> potrebbe contenere informazioni confidenziali, riservate o proprietarie. 
> Qualora la presente venisse ricevuta per errore, si prega di segnalarlo 
> immediatamente al mittente, cancellando l'originale e ogni sua copia e 
> distruggendo eventuali copie cartacee. Ogni altro uso e' strettamente 
> proibito e potrebbe essere fonte di violazione di legge.
>
> This message is for the designated recipient only and may contain privileged, 
> proprietary, or otherwise private information. If you have received it in 
> error, please notify the sender immediately, deleting the original and all 
> copies and destroying any hard copies. Any other use is strictly prohibited 
> and may be unlawful.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] moVirt 1.6 released!

2016-09-22 Thread Karli Sjöberg
On tor, 2016-09-22 at 05:26 +, NUNIN Roberto wrote:
> 
> >Also tested that aSPICE works, which is >awesome! Keep up the great
> work!
> 
> Interesting: did you have used aSpice to act as a console viewer ? 
> Could you share basics ?

Very basic:) Just install aSPICE from $app_store and then, in moVirt,
click the "three dots" in the top right corner and choose "Console". I
had to accept our certificate and for some reason the first time I
tried it, it didn´t work, but I tried again and BOOM!:)

/K

> 
> TIA
> 
> Roberto
> 
> 
> Questo messaggio e' indirizzato esclusivamente al destinatario
> indicato e potrebbe contenere informazioni confidenziali, riservate o
> proprietarie. Qualora la presente venisse ricevuta per errore, si
> prega di segnalarlo immediatamente al mittente, cancellando
> l'originale e ogni sua copia e distruggendo eventuali copie cartacee.
> Ogni altro uso e' strettamente proibito e potrebbe essere fonte di
> violazione di legge.
> 
> This message is for the designated recipient only and may contain
> privileged, proprietary, or otherwise private information. If you
> have received it in error, please notify the sender immediately,
> deleting the original and all copies and destroying any hard  copies.
> Any other use is strictly prohibited and may be unlawful.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] moVirt 1.6 released!

2016-09-21 Thread Karli Sjöberg

Den 21 sep 2016 11:38 skrev Tomas Jelinek :
>
> Dear all,
>
> a new release of moVirt (Android client for oVirt) 1.6 has just been released!
>
> The main aim of this version was to move fully to the 4.0 API (changelog: 
> [1]).
>
> If you have it already installed on your device, stay tuned and it will 
> arrive soon.
> If you don't, you can either install it from google play store [2] or from 
> direct link [3].
>
> Please share any feedback!

Hi!

Works like a charm with our 3.6 engine! Just confusing that I had to swipe down 
(refresh) to get a listing of VM's and such, I thought it did that by itself? 
That is, if I open up the app and do nothing, just wait, the list stays empty 
regardless of how long I waited. I started to think there was something wrong 
and began to troubleshoot, first the app-settings (address, login, password) 
and then from the engine before I realized I had to swipe down to see 
anything:) Is that by design or a bug?

Also tested that aSPICE works, which is awesome! Keep up the great work!

/K

> Tomas
>
> [1]: https://github.com/matobet/movirt#v16
> [2]: https://play.google.com/store/apps/details?id=org.ovirt.mobile.movirt
> [3]: 
> https://github.com/matobet/moVirt/blob/master/moVirt/moVirt-release.apk?raw=true
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] BSD Guests + oVirt

2016-09-09 Thread Karli Sjöberg

Den 9 sep 2016 15:33 skrev Alexandr Krivulya :
>
> 09.09.2016 09:37, Vinzenz Feenstra пишет:

 >> ovirt-guest-tools doesn't support freebsd from what I can find.

>> This is correct, this is due to the fact that we don’t have, or at least we 
>> haven’t had, virtio-serial drivers which we need for the communication with 
>> the guest os
>>
>>
>>
> I think tihis is not correct, virtio-serial drivers are supported on latest 
> FreeBSD. See my old post:
>
> http://lists.ovirt.org/pipermail/users/2015-May/033069.html
>
>

It's correct as far as 10.3 goes, which is what OP asked. VirtIO-serial is 
first introduced in FreeBSD-11.

/K
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Infrastructure Engineers / System Administrator Appreciation Day

2016-07-29 Thread Karli Sjöberg

Den 29 jul 2016 3:30 em skrev Sandro Bonazzola :
>
> Hi,
> I'd like to thank all Infrastructure Engineers / System Administrator[1] 
> working on the oVirt project infrastructure and whish them stable OSs and 
> reliable hardware :-)
> http://sysadminday.com/
>
> Thanks to all Infrastructure Engineers / System Administrator using oVirt, 
> helping users, opening bugs and making oVirt a better community.

Thanks! And if anyone would like to buy me a Tesla out of sheer appreciation, 
I'd definitely consider it:)

/K

>
> [1] http://sysadminday.com/
>
>
> -- 
> Sandro Bonazzola
> Better technology. Faster innovation. Powered by community collaboration.
> See how it works at redhat.com
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] remote-viewer on OSX

2016-07-27 Thread Karli Sjöberg

Den 27 jul 2016 11:48 fm skrev Gianluca Cecchi :
>
> Hello,
> I'm going to provide access to ovirt VMs to people who are using OSX
> At this moment I don't have access to any OSX environment to crosscheck, but 
> is still that complex/intricate?

As far as I know, no more work has been done on this front.

/K

> http://www.ovirt.org/documentation/admin-guide/virt/spice-remote-viewer-on-os-x/
>
> Thanks,
> Gianluca
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] ovirt 3.6.6 and gluster 3.7.13

2016-07-21 Thread Karli Sjöberg

Den 21 jul 2016 8:39 em skrev Scott <romra...@gmail.com>:
>
> CentOS 7 for me as well, using the zfsonlinux.org packages.

Ok, so whatever problems there may be in those packages, at least you have them 
in common. That can also be a comfort:)

/K

>
> On Thu, Jul 21, 2016 at 1:26 PM David Gossage <dgoss...@carouselchecks.com> 
> wrote:
>>
>> On Thu, Jul 21, 2016 at 1:24 PM, Karli Sjöberg <karli.sjob...@slu.se> wrote:
>>>
>>>
>>> Den 21 jul 2016 7:54 em skrev David Gossage <dgoss...@carouselchecks.com>:
>>> >
>>> > On Thu, Jul 21, 2016 at 11:47 AM, Scott <romra...@gmail.com> wrote:
>>> >>
>>> >> Hi David,
>>> >>
>>> >> My backend storage is ZFS.
>>> >>
>>> >> I thought about moving from FUSE to NFS mounts for my Gluster volumes to 
>>> >> help test.  But since I use hosted engine this would be a real pain.  
>>> >> Its difficult to modify the storage domain type/path in the 
>>> >> hosted-engine.conf.  And I don't want to go through the process of 
>>> >> re-deploying hosted engine.
>>> >>
>>> >
>>> > I found this
>>> >
>>> > https://bugzilla.redhat.com/show_bug.cgi?id=1347553
>>> >
>>> > Not sure if related.
>>> >
>>> > But I also have zfs backend, another user in gluster mailing list had 
>>> > issues and used zfs backend although she used proxmox and got it working 
>>> > by changing disk to writeback cache I think it was.
>>>
>>> David and Scott,
>>>
>>> just out of curiousity, what is the OS under ZFS?
>>
>> Centos 7
>>
>>>
>>> /K
>>>
>>> >
>>> > I also use hosted engine, but I run my gluster volume for HE actually on 
>>> > a LVM separate from zfs on xfs and if i recall it did not have the issues 
>>> > my gluster on zfs did.  I'm wondering now if the issue was zfs settings.
>>> >
>>> > Hopefully should have a test machone up soon I can play around with more.
>>> >
>>> >> Scott
>>> >>
>>> >> On Thu, Jul 21, 2016 at 11:36 AM David Gossage 
>>> >> <dgoss...@carouselchecks.com> wrote:
>>> >>>
>>> >>> What back end storage do you run gluster on?  xfs/zfs/ext4 etc?
>>> >>>
>>> >>> David Gossage
>>> >>> Carousel Checks Inc. | System Administrator
>>> >>> Office 708.613.2284
>>> >>>
>>> >>> On Thu, Jul 21, 2016 at 8:18 AM, Scott <romra...@gmail.com> wrote:
>>> >>>>
>>> >>>> I get similar problems with oVirt 4.0.1 and hosted engine.  After 
>>> >>>> upgrading all my hosts to Gluster 3.7.13 (client and server), I get 
>>> >>>> the following:
>>> >>>>
>>> >>>> $ sudo hosted-engine --set-maintenance --mode=none
>>> >>>> Traceback (most recent call last):
>>> >>>>   File "/usr/lib64/python2.7/runpy.py", line 162, in 
>>> >>>> _run_module_as_main
>>> >>>> "__main__", fname, loader, pkg_name)
>>> >>>>   File "/usr/lib64/python2.7/runpy.py", line 72, in _run_code
>>> >>>> exec code in run_globals
>>> >>>>   File 
>>> >>>> "/usr/lib/python2.7/site-packages/ovirt_hosted_engine_setup/set_maintenance.py",
>>> >>>>  line 73, in 
>>> >>>> if not maintenance.set_mode(sys.argv[1]):
>>> >>>>   File 
>>> >>>> "/usr/lib/python2.7/site-packages/ovirt_hosted_engine_setup/set_maintenance.py",
>>> >>>>  line 61, in set_mode
>>> >>>> value=m_global,
>>> >>>>   File 
>>> >>>> "/usr/lib/python2.7/site-packages/ovirt_hosted_engine_ha/client/client.py",
>>> >>>>  line 259, in set_maintenance_mode
>>> >>>> str(value))
>>> >>>>   File 
>>> >>>> "/usr/lib/python2.7/site-packages/ovirt_hosted_engine_ha/client/client.py",
>>> >>>>  line 204, in set_global_md_flag
>>> >>>> all_stats = broker.get_stats_from_storage(service)
>>> >>>>   File 
>>> >>>> "/usr/lib/p

Re: [ovirt-users] ovirt 3.6.6 and gluster 3.7.13

2016-07-21 Thread Karli Sjöberg

Den 21 jul 2016 7:54 em skrev David Gossage :
>
> On Thu, Jul 21, 2016 at 11:47 AM, Scott  wrote:
>>
>> Hi David,
>>
>> My backend storage is ZFS.
>>
>> I thought about moving from FUSE to NFS mounts for my Gluster volumes to 
>> help test.  But since I use hosted engine this would be a real pain.  Its 
>> difficult to modify the storage domain type/path in the hosted-engine.conf.  
>> And I don't want to go through the process of re-deploying hosted engine.
>>
>
> I found this
>
> https://bugzilla.redhat.com/show_bug.cgi?id=1347553
>
> Not sure if related.
>
> But I also have zfs backend, another user in gluster mailing list had issues 
> and used zfs backend although she used proxmox and got it working by changing 
> disk to writeback cache I think it was.

David and Scott,

just out of curiousity, what is the OS under ZFS?

/K

>
> I also use hosted engine, but I run my gluster volume for HE actually on a 
> LVM separate from zfs on xfs and if i recall it did not have the issues my 
> gluster on zfs did.  I'm wondering now if the issue was zfs settings.
>
> Hopefully should have a test machone up soon I can play around with more.
>
>> Scott
>>
>> On Thu, Jul 21, 2016 at 11:36 AM David Gossage  
>> wrote:
>>>
>>> What back end storage do you run gluster on?  xfs/zfs/ext4 etc?
>>>
>>> David Gossage
>>> Carousel Checks Inc. | System Administrator
>>> Office 708.613.2284
>>>
>>> On Thu, Jul 21, 2016 at 8:18 AM, Scott  wrote:

 I get similar problems with oVirt 4.0.1 and hosted engine.  After 
 upgrading all my hosts to Gluster 3.7.13 (client and server), I get the 
 following:

 $ sudo hosted-engine --set-maintenance --mode=none
 Traceback (most recent call last):
   File "/usr/lib64/python2.7/runpy.py", line 162, in _run_module_as_main
 "__main__", fname, loader, pkg_name)
   File "/usr/lib64/python2.7/runpy.py", line 72, in _run_code
 exec code in run_globals
   File 
 "/usr/lib/python2.7/site-packages/ovirt_hosted_engine_setup/set_maintenance.py",
  line 73, in 
 if not maintenance.set_mode(sys.argv[1]):
   File 
 "/usr/lib/python2.7/site-packages/ovirt_hosted_engine_setup/set_maintenance.py",
  line 61, in set_mode
 value=m_global,
   File 
 "/usr/lib/python2.7/site-packages/ovirt_hosted_engine_ha/client/client.py",
  line 259, in set_maintenance_mode
 str(value))
   File 
 "/usr/lib/python2.7/site-packages/ovirt_hosted_engine_ha/client/client.py",
  line 204, in set_global_md_flag
 all_stats = broker.get_stats_from_storage(service)
   File 
 "/usr/lib/python2.7/site-packages/ovirt_hosted_engine_ha/lib/brokerlink.py",
  line 232, in get_stats_from_storage
 result = self._checked_communicate(request)
   File 
 "/usr/lib/python2.7/site-packages/ovirt_hosted_engine_ha/lib/brokerlink.py",
  line 260, in _checked_communicate
 .format(message or response))
 ovirt_hosted_engine_ha.lib.exceptions.RequestError: Request failed: failed 
 to read metadata: [Errno 1] Operation not permitted

 If I only upgrade one host, then things will continue to work but my nodes 
 are constantly healing shards.  My logs are also flooded with:

 [2016-07-21 13:15:14.137734] W [fuse-bridge.c:2227:fuse_readv_cbk] 
 0-glusterfs-fuse: 274714: READ => -1 gfid=4
 41f2789-f6b1-4918-a280-1b9905a11429 fd=0x7f19bc0041d0 (Operation not 
 permitted)
 The message "W [MSGID: 114031] 
 [client-rpc-fops.c:3050:client3_3_readv_cbk] 0-data-client-0: remote 
 operation failed [Operation not permitted]" repeated 6 times between 
 [2016-07-21 13:13:24.134985] and [2016-07-21 13:15:04.132226]
 The message "W [MSGID: 114031] 
 [client-rpc-fops.c:3050:client3_3_readv_cbk] 0-data-client-1: remote 
 operation failed [Operation not permitted]" repeated 8 times between 
 [2016-07-21 13:13:34.133116] and [2016-07-21 13:15:14.137178]
 The message "W [MSGID: 114031] 
 [client-rpc-fops.c:3050:client3_3_readv_cbk] 0-data-client-2: remote 
 operation failed [Operation not permitted]" repeated 7 times between 
 [2016-07-21 13:13:24.135071] and [2016-07-21 13:15:14.137666]
 [2016-07-21 13:15:24.134647] W [MSGID: 114031] 
 [client-rpc-fops.c:3050:client3_3_readv_cbk] 0-data-client-0: remote 
 operation failed [Operation not permitted]
 [2016-07-21 13:15:24.134764] W [MSGID: 114031] 
 [client-rpc-fops.c:3050:client3_3_readv_cbk] 0-data-client-2: remote 
 operation failed [Operation not permitted]
 [2016-07-21 13:15:24.134793] W [fuse-bridge.c:2227:fuse_readv_cbk] 
 0-glusterfs-fuse: 274741: READ => -1 
 gfid=441f2789-f6b1-4918-a280-1b9905a11429 fd=0x7f19bc0038f4 (Operation not 
 permitted)
 [2016-07-21 13:15:34.135413] W [fuse-bridge.c:2227:fuse_readv_cbk] 
 

Re: [ovirt-users] Slowness in the deploying a vm from template

2016-07-14 Thread Karli Sjöberg

Den 14 jul 2016 20:31 skrev Budur Nagaraju :
>
> HI
>
> When a deploy a vm from template its takes 10-15 Minutes to get deployed , is 
> it a known one or any settings do i need to do ?

Yeah, that's 'cause you're _cloning_ the new VM. What you want is to thin 
provision it, goes faster than a speeding bullet:)

/K

> am using oVirt3.5 version.
>
> Thanks,
> Nagaraju
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Is it possible to disable qxl video?

2016-07-11 Thread Karli Sjöberg

Den 11 jul 2016 11:37 fm skrev Arman Khalatyan :
>
> I just testing several GPUs with pci-passthrough: GTX630, Tesla 2050 and 
> FX5800.
> None of them I got running with opengl/direct rendering inside the virtual 
> machine.
> I was thinking something to do with qxl driver, but after blacklisting it in 
> the VMs kernel nothing was changed.
> The VMs Xorg claiming always no display found even if I configure it with 
> headless option: nvidia-xconfig -a --use-display-device=None 
> --virtual=1280x1024
> But with nvidia-smi I can see the GPU status, and I can run all cuda tests 
> where opengl/X11 is not involved.
> My test system is CentOS 7 with ovirt 4.
> BTW If I clone VM which was not running, to real host on bare metal, 
> everything is running as expecting.

Don't remember If this was mentioned but have you tried doing the same thing 
but with virt-manager on a standalone host, just to rule out oVirt from the 
equation?

/K
>
>
>
>
>
>
>
> ***
>
>  Dr. Arman Khalatyan  eScience -SuperComputing
>  Leibniz-Institut für Astrophysik Potsdam (AIP)
>  An der Sternwarte 16, 14482 Potsdam, Germany
>
> ***
>
> On Mon, Jul 11, 2016 at 9:06 AM, Martin Polednik  wrote:
>>
>> On 08/07/16 11:29 +0200, Michal Skrivanek wrote:
>>>
>>>
 On 06 Jul 2016, at 14:06, Francesco Romani  wrote:


 From: "Arman Khalatyan" 
 To: "users" 
 Sent: Monday, July 4, 2016 11:52:24 AM
 Subject: [ovirt-users] Is it possible to disable qxl video?


 Hi,
 I am doing PCI Passthrough for GPUs.
 Is it possible somehow to disable/remove default video qxl?
 thanks,
 Arman,.
 Hi,

 The 4.0 Vdsm allows you to run a headless VM, meaning a VM without graphic 
 device/frontend.
 Not sure Engine allows you that however.
>>>
>>>
>>> no it doesn’t
>>
>>
>> Even if engine allowed that, it may not be the correct solution.
>>
>> Running headless with PCI passthrough is considered primary VGA
>> passthrough[1]. Using primary VGA passthrough without OVMF could cause
>> (will cause) quite a bit of headaches.
>>
>> If you really want to try that, I assume using before_vm_start hook to
>> remove the video device should be enough.
>>
>> [1] http://wiki.xenproject.org/wiki/Xen_VGA_Passthrough - it's
>> possible to read about primary and secondary passthrough between the
>> lines
>>
>>> However, if QXL is the problem (why is that so?) then you can switch to 
>>> VGA(or CIRRUS if this is still 3.6)
>>>
 I'm afraid you will need to write a Vdsm hook.

 There could be simpler solutions depending on the Engine

 Bests,

 --
 Francesco Romani
 RedHat Engineering Virtualization R & D
 Phone: 8261328
 IRC: fromani
 ___
 Users mailing list
 Users@ovirt.org 
 http://lists.ovirt.org/mailman/listinfo/users 
 
>>
>>
>>> ___
>>> Users mailing list
>>> Users@ovirt.org
>>> http://lists.ovirt.org/mailman/listinfo/users
>>
>>
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] How to automate the ovirt host deployment?

2016-05-30 Thread Karli Sjöberg

Den 30 maj 2016 22:22 skrev Arman Khalatyan <arm2...@gmail.com>:
>
> Sorry for the previous empty email.
>
> I was testing foreman plugins for ovirt deploy. They are some how broken. The 
> foreman-install --enable-ovirt-provisioning-plugin breaks the foreman 
> installation. I need to dig deeper:(

Don't know what distribution you're using but setting all up manually showed me 
that Foreman needs to be at at least 11 for the plugin to work. Otherwise it 
behaved in the same way for me; all fine and well until the provision plugin 
was installed and then *sadface* :)

Get Foreman up to version 11 and you'll be fine, is my guess.

/K
>
> Am 28.05.2016 4:07 nachm. schrieb "Yaniv Kaul" <yk...@redhat.com>:
>>
>> >
>
> >
> >
> > On Sat, May 28, 2016 at 12:50 PM, Arman Khalatyan <arm2...@gmail.com> wrote:
>>
>> >>
>
> >> Thank you for the hint. I will try next week.
> >> Foreman looks quite complex:)
> >
> >
> > I think this is an excellent suggestion - Foreman, while may take a while 
> > to set up, will also be extremely useful to provision and manage not only 
> > hosts, but VMs later on!
> >
>>
>> >> I would prefer simple Python script with 4 lines: add, install, setup 
>> >> networks and activate.
>
>
> >
> >
> > You can look at ovirt-system-tests , the testing suite for oVirt, on Python 
> > code for the above.
> > Y.
> >
>>
>>
> >>
> >> Am 27.05.2016 6:51 nachm. schrieb "Karli Sjöberg" <karli.sjob...@slu.se>:
>>
>> >>>
>
> >>>
> >>> Den 27 maj 2016 18:41 skrev Arman Khalatyan <arm2...@gmail.com>:
> >>> >
> >>> > Hi, I am looking some method to automate the host deployments in a 
> >>> > cluster environment.
> >>> > Assuming we have 20 nodes with centos 7 eth0/eth1 configured. Is it 
> >>> > possible to automate installation with ovirt-sdk?
> >>> > Are there some examples  ?
> >>>
> >>> You could do that, or look into full life cycle management with The 
> >>> Foreman.
> >>>
> >>> /K
> >>>
> >>> >
> >>> > Thanks,
> >>> > Arman.
> >>
> >>
> >> ___
> >> Users mailing list
> >> Users@ovirt.org
> >> http://lists.ovirt.org/mailman/listinfo/users
> >>
> >
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] How to automate the ovirt host deployment?

2016-05-28 Thread Karli Sjöberg

Den 28 maj 2016 11:50 skrev Arman Khalatyan <arm2...@gmail.com>:
>
> Thank you for the hint. I will try next week.
> Foreman looks quite complex:)

Well, yeah, it takes a while to get into. But once you're there, you'll notice 
there's a lot of stuff already been done for deploying new hosts[*], as well as 
boatloads more to make your life a lot easier! If anything, just for the 
"documentation" you get for using it that you don't have to write afterwards:)

/K

[*]: http://youtu.be/gozX891kYAY

>
> I would prefer simple Python script with 4 lines: add, install, setup 
> networks and activate.
>
> Am 27.05.2016 6:51 nachm. schrieb "Karli Sjöberg" <karli.sjob...@slu.se>:
>>
>>
>> Den 27 maj 2016 18:41 skrev Arman Khalatyan <arm2...@gmail.com>:
>> >
>> > Hi, I am looking some method to automate the host deployments in a cluster 
>> > environment.
>> > Assuming we have 20 nodes with centos 7 eth0/eth1 configured. Is it 
>> > possible to automate installation with ovirt-sdk?
>> > Are there some examples  ?
>>
>> You could do that, or look into full life cycle management with The Foreman.
>>
>> /K
>>
>> >
>> > Thanks,
>> > Arman.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] How to automate the ovirt host deployment?

2016-05-27 Thread Karli Sjöberg

Den 27 maj 2016 18:41 skrev Arman Khalatyan :
>
> Hi, I am looking some method to automate the host deployments in a cluster 
> environment.
> Assuming we have 20 nodes with centos 7 eth0/eth1 configured. Is it possible 
> to automate installation with ovirt-sdk?
> Are there some examples  ?

You could do that, or look into full life cycle management with The Foreman.

/K

>
> Thanks,
> Arman.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] moVirt 1.4 RC1 (Android client for oVirt)

2016-05-25 Thread Karli Sjöberg
On ons, 2016-05-25 at 07:50 -0400, Tomas Jelinek wrote:
> Hey All,
> 
> the first RC of moVirt 1.4 has been released! 
> 
> It can be downloaded only using direct link[1] - the play store will
> be upgraded after considered stable.
> 
> The most important feature of this release was to enhance the
> dashboard so it will look similar to the one coming to oVirt 4.0.
> Screenshot attached.
> 
> Other changes:
> - Added new dashboard functionality (virtual/physical consumption,
> clickable cpu/memory consumption)
> - Better UI (dashboard, adding/editing triggers)
> - Better sorting in lists
> - Memory units are now displayed correctly
> - Fixed crashing bugs when looking at hosted engine
> 
> Would you like to help/contribute?
> Sure, for example you can:
> - give feedback on the new dashboard (the one from the attachment)
> - download RC [1], test it and report bugs
> - patches are also welcome :)
> 
> have a nice day,
> Tomas
> 
> [1]: https://github.com/matobet/moVirt/blob/master/moVirt/moVirt-rele
> ase.apk?raw=true
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users

Works for me™ :)

/K
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] 100% memory usage on desktop environments

2016-05-18 Thread Karli Sjöberg

Den 18 maj 2016 7:48 em skrev Nicolás <nico...@devels.es>:
>
>
>
> El 18/05/16 a las 18:11, Karli Sjöberg escribió:
>>
>>
>> Den 18 maj 2016 7:03 em skrev Nicolás <nico...@devels.es>:
>> >
>> > Hi Karli,
>> >
>> > El 18/05/16 a las 16:59, Karli Sjöberg escribió:
>> >>
>> >>
>> >> Den 18 maj 2016 5:49 em skrev Nicolás <nico...@devels.es>:
>> >> >
>> >> > Hi,
>> >> >
>> >> > Probably not an oVirt issue, but maybe someone can help. I've deployed a
>> >> > pretty basic VM (ubuntu 14.04 server, 4GB RAM, 4 CPUs, 15GB storage).
>> >>
>> >> Just spitballing here: 14.04 only? Tried 16.04, or any other OS for that 
>> >> matter? For now, it sounds more guest related rather than oVirt.
>> >>
>> >> /K
>> >
>> >
>> > I tried a vanilla centos-7.1 as well and the same happens. I'm of the same 
>> > opinion that this is more a guest related issue, it's just I'd like to 
>> > find out why this only happens with QXL and not with CIRRUS.
>> >
>> > Thanks.
>>
>> Very interesting. Are your hosts all of the same architecture(family)?
>>
>> /K
>
>
> Actually we have a nice mixture of manufacturers. We run 7 hosts, paired 
> 4-2-1 in relation to architecture. All of them have the same resources, 
> though (CPUs + RAM). In this case, I can't test the VM on different hosts 
> because we've separated one of them (one of the "4") on a standalone oVirt 
> datacenter as we're making tests on it, but I remember this has already 
> happened to me in the past (I didn't have the time to debug it at that time, 
> though).

And it doesn't happen with a similar VM in the other datacenter, on the same 
hardware?

/K

>
>> >
>> >> > Each time I install an additional desktop environment (Gnome, KDE,
>> >> > whatever...), CPU usage rises to 100% all time to the extreme that
>> >> > interacting with the machine becomes impossible (maybe a mouse movement
>> >> > is propagated 3 minutes later or so...).
>> >> >
>> >> > To debug this, I installed LXDE, which is a lightweight desktop
>> >> > environment based on Xorg. I could see there is an Xorg process
>> >> > consuming one of the CPUs and the machine stops responding as far as the
>> >> > desktop environment goes. I have not changed anything in the
>> >> > configuration file.
>> >> >
>> >> > I could also see this only happens when QXL is chosen as the display
>> >> > driver. When CIRRUS is chosen, everything works smoothly and CPU is
>> >> > ~100% idle. The downside is that we want to use SPICE and CIRRUS won't
>> >> > allow it.
>> >> >
>> >> > Why does this happen? Is this an OS-side driver issue? Any hint how can
>> >> > it be fixed?
>> >> >
>> >> > Thanks.
>> >> >
>> >> > Nicolás
>> >> > ___
>> >> > Users mailing list
>> >> > Users@ovirt.org
>> >> > http://lists.ovirt.org/mailman/listinfo/users
>> >
>> >
>
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] 100% memory usage on desktop environments

2016-05-18 Thread Karli Sjöberg

Den 18 maj 2016 7:03 em skrev Nicolás <nico...@devels.es>:
>
> Hi Karli,
>
> El 18/05/16 a las 16:59, Karli Sjöberg escribió:
>>
>>
>> Den 18 maj 2016 5:49 em skrev Nicolás <nico...@devels.es>:
>> >
>> > Hi,
>> >
>> > Probably not an oVirt issue, but maybe someone can help. I've deployed a
>> > pretty basic VM (ubuntu 14.04 server, 4GB RAM, 4 CPUs, 15GB storage).
>>
>> Just spitballing here: 14.04 only? Tried 16.04, or any other OS for that 
>> matter? For now, it sounds more guest related rather than oVirt.
>>
>> /K
>
>
> I tried a vanilla centos-7.1 as well and the same happens. I'm of the same 
> opinion that this is more a guest related issue, it's just I'd like to find 
> out why this only happens with QXL and not with CIRRUS.
>
> Thanks.

Very interesting. Are your hosts all of the same architecture(family)?

/K

>
>> > Each time I install an additional desktop environment (Gnome, KDE,
>> > whatever...), CPU usage rises to 100% all time to the extreme that
>> > interacting with the machine becomes impossible (maybe a mouse movement
>> > is propagated 3 minutes later or so...).
>> >
>> > To debug this, I installed LXDE, which is a lightweight desktop
>> > environment based on Xorg. I could see there is an Xorg process
>> > consuming one of the CPUs and the machine stops responding as far as the
>> > desktop environment goes. I have not changed anything in the
>> > configuration file.
>> >
>> > I could also see this only happens when QXL is chosen as the display
>> > driver. When CIRRUS is chosen, everything works smoothly and CPU is
>> > ~100% idle. The downside is that we want to use SPICE and CIRRUS won't
>> > allow it.
>> >
>> > Why does this happen? Is this an OS-side driver issue? Any hint how can
>> > it be fixed?
>> >
>> > Thanks.
>> >
>> > Nicolás
>> > ___
>> > Users mailing list
>> > Users@ovirt.org
>> > http://lists.ovirt.org/mailman/listinfo/users
>
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] 100% memory usage on desktop environments

2016-05-18 Thread Karli Sjöberg

Den 18 maj 2016 5:49 em skrev Nicolás :
>
> Hi,
>
> Probably not an oVirt issue, but maybe someone can help. I've deployed a
> pretty basic VM (ubuntu 14.04 server, 4GB RAM, 4 CPUs, 15GB storage).

Just spitballing here: 14.04 only? Tried 16.04, or any other OS for that 
matter? For now, it sounds more guest related rather than oVirt.

/K

> Each time I install an additional desktop environment (Gnome, KDE,
> whatever...), CPU usage rises to 100% all time to the extreme that
> interacting with the machine becomes impossible (maybe a mouse movement
> is propagated 3 minutes later or so...).
>
> To debug this, I installed LXDE, which is a lightweight desktop
> environment based on Xorg. I could see there is an Xorg process
> consuming one of the CPUs and the machine stops responding as far as the
> desktop environment goes. I have not changed anything in the
> configuration file.
>
> I could also see this only happens when QXL is chosen as the display
> driver. When CIRRUS is chosen, everything works smoothly and CPU is
> ~100% idle. The downside is that we want to use SPICE and CIRRUS won't
> allow it.
>
> Why does this happen? Is this an OS-side driver issue? Any hint how can
> it be fixed?
>
> Thanks.
>
> Nicolás
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Cannot add new users via api after AAA migration

2016-04-18 Thread Karli Sjöberg
On Mon, 2016-04-18 at 15:53 +0200, Ondra Machacek wrote:
> On 04/18/2016 12:37 PM, Karli Sjöberg wrote:
> > 
> > Hi!
> > 
> > A little background:
> > https://www.mail-archive.com/users@ovirt.org/msg31815.html
> > 
> > Trying to add new user from webadmin gives:
> > 2016-04-18 12:19:14,448
> > INFO  [org.ovirt.engine.core.bll.aaa.AddUserCommand] (default task-
> > 10) [53227bd6] Running command: AddUserCommand internal: false.
> > Entities affected :  ID: aaa0----123456789aaa Type:
> > SystemAction group MANIPULATE_USERS with role type ADMIN
> > 2016-04-18 12:19:14,466
> > INFO  [org.ovirt.engine.core.dal.dbbroker.auditloghandling.AuditLog
> > Director] (default task-10) [53227bd6] Correlation ID: 53227bd6,
> > Call Stack: null, Custom Event ID: -1, Message: User 'Firstname.Las
> > tn...@foo.bar' was added successfully to the system.
> > 
> > The user is then found as 'firstname.lastn...@foo.bar@baz.foo.bar'
> > under Users tab. Also possible to find user with api:
> > https://engine-address.foo.bar/ovirt-engine/api/users?search=Firstn
> > ame
> > ...
> > firstname.lastn...@foo.bar@baz.foo.bar
> > ...
> > 
> > But removing the user and trying to add it again with e.g. Python
> > fails:
> > 
> > status: 404
> > reason: Not Found
> > detail: Entity not found: adu...@baz.foo.bar:: username=Firstname.L
> > astn...@foo.bar
> > 
> > The code, previously working with the now deprecated engine-manage-
> > domains, except PRINCIPAL_NAME was just SAM_ACCOUNT_NAME without
> > SUFFIX:
> > 
> > DOMAIN_NAME = 'baz.foo.bar'
> > SUFFIX = '@foo.bar'
> > 
> > try:
> >  domain = api.domains.get(name='%s' % (DOMAIN_NAME))
> >  userparams = params.User()
> >  userparams.set_user_name('%s%s' % (PRINCIPAL_NAME,SUFFIX))
> >  userparams.set_domain(domain)
> Please set ^ here also:
> 
> userparams.set_principal('%s%s' % (PRINCIPAL_NAME,SUFFIX))
> 
> in principal you should set proper UPN of user.

Yeah, that was the ticket. Thanks!

/K

> 
> > 
> >  api.users.add(userparams)
> > except Exception as e:
> >  print e
> > 
> > Also tried with SUFFIX = '@foo@baz.foo.bar', as that´s what the
> > user is called after creation, fails as well.
> > 
> > Am I "holding it wrong" or is this a bug?
> > 
> > /K
> > ___
> > Users mailing list
> > Users@ovirt.org
> > http://lists.ovirt.org/mailman/listinfo/users
> > 
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] Cannot add new users via api after AAA migration

2016-04-18 Thread Karli Sjöberg
Hi!

A little background:
https://www.mail-archive.com/users@ovirt.org/msg31815.html

Trying to add new user from webadmin gives:
2016-04-18 12:19:14,448 INFO  [org.ovirt.engine.core.bll.aaa.AddUserCommand] 
(default task-10) [53227bd6] Running command: AddUserCommand internal: false. 
Entities affected :  ID: aaa0----123456789aaa Type: 
SystemAction group MANIPULATE_USERS with role type ADMIN
2016-04-18 12:19:14,466 INFO  
[org.ovirt.engine.core.dal.dbbroker.auditloghandling.AuditLogDirector] (default 
task-10) [53227bd6] Correlation ID: 53227bd6, Call Stack: null, Custom Event 
ID: -1, Message: User 'firstname.lastn...@foo.bar' was added successfully to 
the system.

The user is then found as 'firstname.lastn...@foo.bar@baz.foo.bar'
under Users tab. Also possible to find user with api:
https://engine-address.foo.bar/ovirt-engine/api/users?search=Firstname
...
firstname.lastn...@foo.bar@baz.foo.bar
...

But removing the user and trying to add it again with e.g. Python
fails:

status: 404
reason: Not Found
detail: Entity not found: adu...@baz.foo.bar:: 
username=firstname.lastn...@foo.bar

The code, previously working with the now deprecated engine-manage-
domains, except PRINCIPAL_NAME was just SAM_ACCOUNT_NAME without
SUFFIX:

DOMAIN_NAME = 'baz.foo.bar'
SUFFIX = '@foo.bar'

try:
domain = api.domains.get(name='%s' % (DOMAIN_NAME))
userparams = params.User()
userparams.set_user_name('%s%s' % (PRINCIPAL_NAME,SUFFIX))
userparams.set_domain(domain)
api.users.add(userparams)
except Exception as e:
print e

Also tried with SUFFIX = '@foo@baz.foo.bar', as that´s what the
user is called after creation, fails as well.

Am I "holding it wrong" or is this a bug?

/K
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] how to come back to the list of available vms in serial console

2016-04-08 Thread Karli Sjöberg
On Fri, 2016-04-08 at 10:09 +0200, Nathanaël Blanchet wrote:
> Hello,
> 
> I can sucessfully connect to the serial console prompt, then I
> choose 
> the vm to login in.
> When logout of this vm, I'm stuck on the login banner of this vm, and
> I 
> didn't find any way to come back to the menu, or any other way
> rather 
> from closing the terminal tab to exit.

Serial console, isn´t that usually CTRL+] ?

/K

> Is there a way to do this?
> Thank you.
> 
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] oVirt 3.6 AAA LDAP cannot not log in when end of UPN is different from domain base

2016-03-28 Thread Karli Sjöberg

Den 28 mars 2016 7:39 em skrev Ondra Machacek <omach...@redhat.com>:
>
> On 03/27/2016 11:40 AM, Karli Sjöberg wrote:
> >
> >> On 26 Mar 2016, at 21:32, Ondra Machacek <omach...@redhat.com> wrote:
> >>
> >> On 03/26/2016 02:09 PM, Karli Sjöberg wrote:
> >>>
> >>>> On 26 Mar 2016, at 13:49, Karli Sjöberg <karli.sjob...@slu.se
> >>>> <mailto:karli.sjob...@slu.se>> wrote:
> >>>>
> >>>>
> >>>>> On 26 Mar 2016, at 11:35, Ondra Machacek <omach...@redhat.com
> >>>>> <mailto:omach...@redhat.com>> wrote:
> >>>>>
> >>>>> For me it's working completelly fine:
> >>>>>
> >>>>> ...
> >>>>> config.mapUser.type = regex
> >>>>> config.mapUser.regex.pattern = ^(?[^@]*)$
> >>>>> config.mapUser.regex.replacement = ${user}@DOMAINX.com
> >>>>> <http://domainx.com/>
> >>>>> config.mapUser.regex.mustMatch = false
> >>>>> ...
> >>>>>
> >>>>> $ ovirt-engine-extensions-tool aaa login-user
> >>>>> --password=pass:password --user-name=user@DOMAINY --profile=ad
> >>>>>
> >>>>> INFOAPI: -->Mapping.InvokeCommands.MAP_USER profile='ad'
> >>>>> user='user@DOMAINY'
> >>>>> INFOAPI: <--Mapping.InvokeCommands.MAP_USER profile='ad'
> >>>>> user='user@DOMAINY'
> >>>>>
> >>>>> $ ovirt-engine-extensions-tool aaa login-user
> >>>>> --password=pass:password --user-name=user --profile=ad
> >>>>>
> >>>>> INFOAPI: -->Mapping.InvokeCommands.MAP_USER profile='ad' user='user'
> >>>>> INFOAPI: <--Mapping.InvokeCommands.MAP_USER profile='ad'
> >>>>> user='u...@domainx.com <mailto:user='u...@domainx.com>'
> >>>>>
> >>>>> As you can see it's correctly mapped.
> >>>>>
> >>>>> Please check once again the regex is correct, if it still won't work,
> >>>>> please send log output again.
> >>>>
> >>>> /etc/ovirt-engine/extensions.d/mapping-suffix.properties:
> >>>> ovirt.engine.extension.name = mapping-suffix
> >>>> ovirt.engine.extension.bindings.method = jbossmodule
> >>>> ovirt.engine.extension.binding.jbossmodule.module =
> >>>> org.ovirt.engine-extensions.aaa.misc
> >>>> ovirt.engine.extension.binding.jbossmodule.class
> >>>> = org.ovirt.engineextensions.aaa.misc.mapping.MappingExtension
> >>>> ovirt.engine.extension.provides =
> >>>> org.ovirt.engine.api.extensions.aaa.Mapping
> >>>> config.mapUser.type = regex
> >>>> config.mapUser.regex.pattern = ^(?[^@]*)$
> >>>> config.mapUser.regex.replacement = ${user}@foo.bar
> >>>> config.mapUser.regex.mustMatch = false
> >>>>
> >>>> # ovirt-engine-extensions-tool --log-level=FINEST aaa login-user
> >>>> --profile=baz.foo.bar-new --user-name=u...@baz.foo.bar
> >>>> <mailto:user-name=u...@baz.foo.bar>
> >>>> # grep Mapping.InvokeCommands.MAP_USER login.log
> >>>> 2016-03-26 13:27:40 INFOAPI: -->Mapping.InvokeCommands.MAP_USER
> >>>> user='u...@baz.foo.bar <mailto:user='u...@baz.foo.bar>'
> >>>> 2016-03-26 13:27:40 INFOAPI: <--Mapping.InvokeCommands.MAP_USER
> >>>> user='u...@baz.foo.bar <mailto:user='u...@baz.foo.bar>'
> >>>>
> >>>> And here is the log:
> >>>> https://dropoff.slu.se/index.php/s/SK9T8vOUO7yB3PM/download
> >>>>
> >>>> /K
> >>>
> >>> Eureka! I changed ‘vars.user’ in ‘baz.foo.bar-new.properties’ from one
> >>> with suffix ‘@baz.foo.bar’ to mine that has a ‘@foo.bar’ ending and now
> >>> it works, for some reason. Very strange, but anyway... How do I go about
> >>> changing from UPN to samAccountName, if I´d want that instead?
> >>
> >> Well, we support only UPN, because sam support only 15characters in 
> >> username.
> >
> > OK, thank you. From here comes the really daunting part, which is to go 
> > through all the VMs, check their permissions, add same user(s) from the new 
> > provider and delete the old. Probably going to start a new thread for doing 
> > that with Python, but I´ll cross that

Re: [ovirt-users] oVirt 3.6 AAA LDAP cannot not log in when end of UPN is different from domain base

2016-03-27 Thread Karli Sjöberg

> On 26 Mar 2016, at 21:32, Ondra Machacek <omach...@redhat.com> wrote:
> 
> On 03/26/2016 02:09 PM, Karli Sjöberg wrote:
>> 
>>> On 26 Mar 2016, at 13:49, Karli Sjöberg <karli.sjob...@slu.se
>>> <mailto:karli.sjob...@slu.se>> wrote:
>>> 
>>> 
>>>> On 26 Mar 2016, at 11:35, Ondra Machacek <omach...@redhat.com
>>>> <mailto:omach...@redhat.com>> wrote:
>>>> 
>>>> For me it's working completelly fine:
>>>> 
>>>> ...
>>>> config.mapUser.type = regex
>>>> config.mapUser.regex.pattern = ^(?[^@]*)$
>>>> config.mapUser.regex.replacement = ${user}@DOMAINX.com
>>>> <http://domainx.com/>
>>>> config.mapUser.regex.mustMatch = false
>>>> ...
>>>> 
>>>> $ ovirt-engine-extensions-tool aaa login-user
>>>> --password=pass:password --user-name=user@DOMAINY --profile=ad
>>>> 
>>>> INFOAPI: -->Mapping.InvokeCommands.MAP_USER profile='ad'
>>>> user='user@DOMAINY'
>>>> INFOAPI: <--Mapping.InvokeCommands.MAP_USER profile='ad'
>>>> user='user@DOMAINY'
>>>> 
>>>> $ ovirt-engine-extensions-tool aaa login-user
>>>> --password=pass:password --user-name=user --profile=ad
>>>> 
>>>> INFOAPI: -->Mapping.InvokeCommands.MAP_USER profile='ad' user='user'
>>>> INFOAPI: <--Mapping.InvokeCommands.MAP_USER profile='ad'
>>>> user='u...@domainx.com <mailto:user='u...@domainx.com>'
>>>> 
>>>> As you can see it's correctly mapped.
>>>> 
>>>> Please check once again the regex is correct, if it still won't work,
>>>> please send log output again.
>>> 
>>> /etc/ovirt-engine/extensions.d/mapping-suffix.properties:
>>> ovirt.engine.extension.name = mapping-suffix
>>> ovirt.engine.extension.bindings.method = jbossmodule
>>> ovirt.engine.extension.binding.jbossmodule.module =
>>> org.ovirt.engine-extensions.aaa.misc
>>> ovirt.engine.extension.binding.jbossmodule.class
>>> = org.ovirt.engineextensions.aaa.misc.mapping.MappingExtension
>>> ovirt.engine.extension.provides =
>>> org.ovirt.engine.api.extensions.aaa.Mapping
>>> config.mapUser.type = regex
>>> config.mapUser.regex.pattern = ^(?[^@]*)$
>>> config.mapUser.regex.replacement = ${user}@foo.bar
>>> config.mapUser.regex.mustMatch = false
>>> 
>>> # ovirt-engine-extensions-tool --log-level=FINEST aaa login-user
>>> --profile=baz.foo.bar-new --user-name=u...@baz.foo.bar
>>> <mailto:user-name=u...@baz.foo.bar>
>>> # grep Mapping.InvokeCommands.MAP_USER login.log
>>> 2016-03-26 13:27:40 INFOAPI: -->Mapping.InvokeCommands.MAP_USER
>>> user='u...@baz.foo.bar <mailto:user='u...@baz.foo.bar>'
>>> 2016-03-26 13:27:40 INFOAPI: <--Mapping.InvokeCommands.MAP_USER
>>> user='u...@baz.foo.bar <mailto:user='u...@baz.foo.bar>'
>>> 
>>> And here is the log:
>>> https://dropoff.slu.se/index.php/s/SK9T8vOUO7yB3PM/download
>>> 
>>> /K
>> 
>> Eureka! I changed ‘vars.user’ in ‘baz.foo.bar-new.properties’ from one
>> with suffix ‘@baz.foo.bar’ to mine that has a ‘@foo.bar’ ending and now
>> it works, for some reason. Very strange, but anyway... How do I go about
>> changing from UPN to samAccountName, if I´d want that instead?
> 
> Well, we support only UPN, because sam support only 15characters in username.

OK, thank you. From here comes the really daunting part, which is to go through 
all the VMs, check their permissions, add same user(s) from the new provider 
and delete the old. Probably going to start a new thread for doing that with 
Python, but I´ll cross that bridge when I get to it, this was only a virtual 
test environment for going from 3.4 to 3.6.

/K

> 
>> 
>> /K
>> 
>>> 
>>>> 
>>>> On 03/26/2016 10:07 AM, Karli Sjöberg wrote:
>>>>> What the heck, my message disappeares! Trying again.
>>>>> 
>>>>> Ok, so it's mapping now but the only thing working is:
>>>>> config.mapUser.regex.pattern = u...@baz.foo.bar
>>>>> <mailto:u...@baz.foo.bar>
>>>>> config.mapUser.regex.replacement = u...@foo.bar <mailto:u...@foo.bar>
>>>>> 
>>>>> And that isn't very useful. Please advice!
>>>>> 
>>>>> /K
>>>>> 
>>>>> On 03/25/2016 12:26 AM, Karli Sjöberg wrote:
>>>>&g

Re: [ovirt-users] oVirt 3.6 AAA LDAP cannot not log in when end of UPN is different from domain base

2016-03-26 Thread Karli Sjöberg

On 26 Mar 2016, at 13:49, Karli Sjöberg 
<karli.sjob...@slu.se<mailto:karli.sjob...@slu.se>> wrote:


On 26 Mar 2016, at 11:35, Ondra Machacek 
<omach...@redhat.com<mailto:omach...@redhat.com>> wrote:

For me it's working completelly fine:

...
config.mapUser.type = regex
config.mapUser.regex.pattern = ^(?[^@]*)$
config.mapUser.regex.replacement = ${user}@DOMAINX.com<http://domainx.com/>
config.mapUser.regex.mustMatch = false
...

$ ovirt-engine-extensions-tool aaa login-user --password=pass:password 
--user-name=user@DOMAINY --profile=ad

INFOAPI: -->Mapping.InvokeCommands.MAP_USER profile='ad' user='user@DOMAINY'
INFOAPI: <--Mapping.InvokeCommands.MAP_USER profile='ad' user='user@DOMAINY'

$ ovirt-engine-extensions-tool aaa login-user --password=pass:password 
--user-name=user --profile=ad

INFOAPI: -->Mapping.InvokeCommands.MAP_USER profile='ad' user='user'
INFOAPI: <--Mapping.InvokeCommands.MAP_USER profile='ad' 
user='u...@domainx.com<mailto:user='u...@domainx.com>'

As you can see it's correctly mapped.

Please check once again the regex is correct, if it still won't work, please 
send log output again.

/etc/ovirt-engine/extensions.d/mapping-suffix.properties:
ovirt.engine.extension.name = mapping-suffix
ovirt.engine.extension.bindings.method = jbossmodule
ovirt.engine.extension.binding.jbossmodule.module = 
org.ovirt.engine-extensions.aaa.misc
ovirt.engine.extension.binding.jbossmodule.class = 
org.ovirt.engineextensions.aaa.misc.mapping.MappingExtension
ovirt.engine.extension.provides = org.ovirt.engine.api.extensions.aaa.Mapping
config.mapUser.type = regex
config.mapUser.regex.pattern = ^(?[^@]*)$
config.mapUser.regex.replacement = ${user}@foo.bar
config.mapUser.regex.mustMatch = false

# ovirt-engine-extensions-tool --log-level=FINEST aaa login-user 
--profile=baz.foo.bar-new 
--user-name=u...@baz.foo.bar<mailto:user-name=u...@baz.foo.bar>
# grep Mapping.InvokeCommands.MAP_USER login.log
2016-03-26 13:27:40 INFOAPI: -->Mapping.InvokeCommands.MAP_USER 
user='u...@baz.foo.bar<mailto:user='u...@baz.foo.bar>'
2016-03-26 13:27:40 INFOAPI: <--Mapping.InvokeCommands.MAP_USER 
user='u...@baz.foo.bar<mailto:user='u...@baz.foo.bar>'

And here is the log:
https://dropoff.slu.se/index.php/s/SK9T8vOUO7yB3PM/download

/K

Eureka! I changed ‘vars.user’ in ‘baz.foo.bar-new.properties’ from one with 
suffix ‘@baz.foo.bar’ to mine that has a ‘@foo.bar’ ending and now it works, 
for some reason. Very strange, but anyway... How do I go about changing from 
UPN to samAccountName, if I´d want that instead?

/K



On 03/26/2016 10:07 AM, Karli Sjöberg wrote:
What the heck, my message disappeares! Trying again.

Ok, so it's mapping now but the only thing working is:
config.mapUser.regex.pattern = u...@baz.foo.bar<mailto:u...@baz.foo.bar>
config.mapUser.regex.replacement = u...@foo.bar<mailto:u...@foo.bar>

And that isn't very useful. Please advice!

/K

On 03/25/2016 12:26 AM, Karli Sjöberg wrote:

Den 25 mars 2016 12:10 fm skrev Karli Sjöberg 
<karli.sjob...@slu.se<mailto:karli.sjob...@slu.se>>:
 >
 >
 > Den 24 mars 2016 11:26 em skrev Ondra Machacek 
 > <omach...@redhat.com<mailto:omach...@redhat.com>>:
 > >
 > > On 03/24/2016 11:14 PM, Karli Sjöberg wrote:
 > > >
 > > > Den 24 mars 2016 7:26 em skrev Ondra Machacek 
 > > > <omach...@redhat.com<mailto:omach...@redhat.com>>:
 > > >  >
 > > >  > On 03/24/2016 06:16 PM, Karli Sjöberg wrote:
 > > >  > > Hi!
 > > >  > >
 > > >  > >
 > > >  > > Starting new thread instead of jacking someone else´s.
 > > >  > >
 > > >  > >
 > > >  > > Managed to migrate from old 'engine-manage-domains' auth to
 > > > aaa-ldap using:
 > > >  > >
 > > >  > > #| ovirt-engine-kerbldap-migration-tool --domain baz.foo.bar
--cacert
 > > >  > > /tmp/ca.crt --apply
 > > >  > > |
 > > >  > >
 > > >  > >
 > > >  > > All OK, no errors, but cannot log in:
 > > >  > >
 > > >  > > # ovirt-engine-extensions-tool aaa login-user
--profile=baz.foo.bar-new
 > > >  > > --user-name=user:
 > > >  >
 > > >  > If you want to login with user with different upn suffix, then
just
 > > >  > append that suffix
 > > >  >
 > > >  > $ ovirt-engine-extensions-tool aaa login-user
--profile=baz.foo.bar-new
 > > >  > --user-name=u...@foo.bar<mailto:user-name=u...@foo.bar>
 > > >
 > > > OK, some progress, that works!
 > > >
 > > >  >
 > > >  > If you have more suffixes and want to have some as default you
can use
 &g

Re: [ovirt-users] oVirt 3.6 AAA LDAP cannot not log in when end of UPN is different from domain base

2016-03-26 Thread Karli Sjöberg

On 26 Mar 2016, at 11:35, Ondra Machacek 
<omach...@redhat.com<mailto:omach...@redhat.com>> wrote:

For me it's working completelly fine:

...
config.mapUser.type = regex
config.mapUser.regex.pattern = ^(?[^@]*)$
config.mapUser.regex.replacement = ${user}@DOMAINX.com<http://DOMAINX.com>
config.mapUser.regex.mustMatch = false
...

$ ovirt-engine-extensions-tool aaa login-user --password=pass:password 
--user-name=user@DOMAINY --profile=ad

INFOAPI: -->Mapping.InvokeCommands.MAP_USER profile='ad' user='user@DOMAINY'
INFOAPI: <--Mapping.InvokeCommands.MAP_USER profile='ad' user='user@DOMAINY'

$ ovirt-engine-extensions-tool aaa login-user --password=pass:password 
--user-name=user --profile=ad

INFOAPI: -->Mapping.InvokeCommands.MAP_USER profile='ad' user='user'
INFOAPI: <--Mapping.InvokeCommands.MAP_USER profile='ad' 
user='u...@domainx.com<mailto:user='u...@domainx.com>'

As you can see it's correctly mapped.

Please check once again the regex is correct, if it still won't work, please 
send log output again.

/etc/ovirt-engine/extensions.d/mapping-suffix.properties:
ovirt.engine.extension.name = mapping-suffix
ovirt.engine.extension.bindings.method = jbossmodule
ovirt.engine.extension.binding.jbossmodule.module = 
org.ovirt.engine-extensions.aaa.misc
ovirt.engine.extension.binding.jbossmodule.class = 
org.ovirt.engineextensions.aaa.misc.mapping.MappingExtension
ovirt.engine.extension.provides = org.ovirt.engine.api.extensions.aaa.Mapping
config.mapUser.type = regex
config.mapUser.regex.pattern = ^(?[^@]*)$
config.mapUser.regex.replacement = ${user}@foo.bar
config.mapUser.regex.mustMatch = false

# ovirt-engine-extensions-tool --log-level=FINEST aaa login-user 
--profile=baz.foo.bar-new 
--user-name=u...@baz.foo.bar<mailto:user-name=u...@baz.foo.bar>
# grep Mapping.InvokeCommands.MAP_USER login.log
2016-03-26 13:27:40 INFOAPI: -->Mapping.InvokeCommands.MAP_USER 
user='u...@baz.foo.bar'
2016-03-26 13:27:40 INFOAPI: <--Mapping.InvokeCommands.MAP_USER 
user='u...@baz.foo.bar'

And here is the log:
https://dropoff.slu.se/index.php/s/SK9T8vOUO7yB3PM/download

/K


On 03/26/2016 10:07 AM, Karli Sjöberg wrote:
What the heck, my message disappeares! Trying again.

Ok, so it's mapping now but the only thing working is:
config.mapUser.regex.pattern = u...@baz.foo.bar<mailto:u...@baz.foo.bar>
config.mapUser.regex.replacement = u...@foo.bar<mailto:u...@foo.bar>

And that isn't very useful. Please advice!

/K

On 03/25/2016 12:26 AM, Karli Sjöberg wrote:

Den 25 mars 2016 12:10 fm skrev Karli Sjöberg 
<karli.sjob...@slu.se<mailto:karli.sjob...@slu.se>>:
 >
 >
 > Den 24 mars 2016 11:26 em skrev Ondra Machacek 
 > <omach...@redhat.com<mailto:omach...@redhat.com>>:
 > >
 > > On 03/24/2016 11:14 PM, Karli Sjöberg wrote:
 > > >
 > > > Den 24 mars 2016 7:26 em skrev Ondra Machacek 
 > > > <omach...@redhat.com<mailto:omach...@redhat.com>>:
 > > >  >
 > > >  > On 03/24/2016 06:16 PM, Karli Sjöberg wrote:
 > > >  > > Hi!
 > > >  > >
 > > >  > >
 > > >  > > Starting new thread instead of jacking someone else´s.
 > > >  > >
 > > >  > >
 > > >  > > Managed to migrate from old 'engine-manage-domains' auth to
 > > > aaa-ldap using:
 > > >  > >
 > > >  > > #| ovirt-engine-kerbldap-migration-tool --domain baz.foo.bar
--cacert
 > > >  > > /tmp/ca.crt --apply
 > > >  > > |
 > > >  > >
 > > >  > >
 > > >  > > All OK, no errors, but cannot log in:
 > > >  > >
 > > >  > > # ovirt-engine-extensions-tool aaa login-user
--profile=baz.foo.bar-new
 > > >  > > --user-name=user:
 > > >  >
 > > >  > If you want to login with user with different upn suffix, then
just
 > > >  > append that suffix
 > > >  >
 > > >  > $ ovirt-engine-extensions-tool aaa login-user
--profile=baz.foo.bar-new
 > > >  > --user-name=u...@foo.bar<mailto:user-name=u...@foo.bar>
 > > >
 > > > OK, some progress, that works!
 > > >
 > > >  >
 > > >  > If you have more suffixes and want to have some as default you
can use
 > > >  > following approach:
 > > >  >
 > > >  > 1) install ovirt-engine-extension-aaa-misc
 > > >  >
 > > >  > 2) create new mapping extension like this:
 > > >  > /etc/ovirt-engine/extensions.d/mapping-suffix.properties
 > > >  >
 > > >  > ovirt.engine.extension.name = mapping-suffix
 > > >  > ovirt.engine.extension.bindings.method = jbossmodule
 > > >  > ovirt.en

Re: [ovirt-users] oVirt 3.6 AAA LDAP cannot not log in when end of UPN is different from domain base

2016-03-26 Thread Karli Sjöberg
What the heck, my message disappeares! Trying again.

Ok, so it's mapping now but the only thing working is:
config.mapUser.regex.pattern = u...@baz.foo.bar
config.mapUser.regex.replacement = u...@foo.bar

And that isn't very useful. Please advice!

/K

On 03/25/2016 12:26 AM, Karli Sjöberg wrote:
>
> Den 25 mars 2016 12:10 fm skrev Karli Sjöberg <karli.sjob...@slu.se>:
>  >
>  >
>  > Den 24 mars 2016 11:26 em skrev Ondra Machacek <omach...@redhat.com>:
>  > >
>  > > On 03/24/2016 11:14 PM, Karli Sjöberg wrote:
>  > > >
>  > > > Den 24 mars 2016 7:26 em skrev Ondra Machacek <omach...@redhat.com>:
>  > > >  >
>  > > >  > On 03/24/2016 06:16 PM, Karli Sjöberg wrote:
>  > > >  > > Hi!
>  > > >  > >
>  > > >  > >
>  > > >  > > Starting new thread instead of jacking someone else´s.
>  > > >  > >
>  > > >  > >
>  > > >  > > Managed to migrate from old 'engine-manage-domains' auth to
>  > > > aaa-ldap using:
>  > > >  > >
>  > > >  > > #| ovirt-engine-kerbldap-migration-tool --domain baz.foo.bar
> --cacert
>  > > >  > > /tmp/ca.crt --apply
>  > > >  > > |
>  > > >  > >
>  > > >  > >
>  > > >  > > All OK, no errors, but cannot log in:
>  > > >  > >
>  > > >  > > # ovirt-engine-extensions-tool aaa login-user
> --profile=baz.foo.bar-new
>  > > >  > > --user-name=user:
>  > > >  >
>  > > >  > If you want to login with user with different upn suffix, then
> just
>  > > >  > append that suffix
>  > > >  >
>  > > >  > $ ovirt-engine-extensions-tool aaa login-user
> --profile=baz.foo.bar-new
>  > > >  > --user-name=u...@foo.bar
>  > > >
>  > > > OK, some progress, that works!
>  > > >
>  > > >  >
>  > > >  > If you have more suffixes and want to have some as default you
> can use
>  > > >  > following approach:
>  > > >  >
>  > > >  > 1) install ovirt-engine-extension-aaa-misc
>  > > >  >
>  > > >  > 2) create new mapping extension like this:
>  > > >  > /etc/ovirt-engine/extensions.d/mapping-suffix.properties
>  > > >  >
>  > > >  > ovirt.engine.extension.name = mapping-suffix
>  > > >  > ovirt.engine.extension.bindings.method = jbossmodule
>  > > >  > ovirt.engine.extension.binding.jbossmodule.module =
>  > > >  > org.ovirt.engine-extensions.aaa.misc
>  > > >  > ovirt.engine.extension.binding.jbossmodule.class =
>  > > >  > org.ovirt.engineextensions.aaa.misc.mapping.MappingExtension
>  > > >  > ovirt.engine.extension.provides =
>  > > >  > org.ovirt.engine.api.extensions.aaa.Mapping
>  > > >  > config.mapUser.type = regex
>  > > >  > config.mapUser.pattern = ^(?[^@]*)$
>  > > >
>  > > > Is that supposed to really say '' or should it be changed to a
>  > > > real user name? Either way, it doesn't work, I tried it all.
>  > >
>  > > '?' is just a named group in that regex so you can later use
> it in
>  > > 'config.mapUser.replacement'  option. It should take everything until
>  > > first '@'.
>  > >
>  > > >
>  > > >  > config.mapUser.replacement = ${user}@foo.bar
>  > > >  > config.mapUser.mustMatch = false
>  > > >  >
>  > > >  > 3) select a mapping plugin in authn configuration:
>  > > >  >
>  > > >  > ovirt.engine.aaa.authn.mapping.plugin = mapping-suffix
>  > > >  >
>  > > >  > With above configuration in use, your user 'user' witll be
> mapped to
>  > > >  > user 'u...@foo.bar'
>  > > >  > and users 'u...@anotherdomain.foo.bar' will remain
>  > > >  > 'u...@anotherdomain.foo.bar'.
>  > > >
>  > > > This however does not, it doesn't replace the suffix as it's supposed
>  > > > to. I tried with many different types of the 'mapUser.pattern' but it
>  > > > simply won't change it, even if I type in '= ^u...@baz.foo.bar$', the
>  > > > error is the same:(
>  > >
>  > > Hmm, hard to say what's wrong, try to run:
>  > > $ ovirt-engine-extensions-tool --log-level=FINEST aaa login-user
>  > > --profile=baz.foo.bar

Re: [ovirt-users] oVirt 3.6 AAA LDAP cannot not log in when end of UPN is different from domain base

2016-03-26 Thread Karli Sjöberg

Den 25 mars 2016 9:32 em skrev Ondra Machacek <omach...@redhat.com>:
>
> On 03/25/2016 12:26 AM, Karli Sjöberg wrote:
> >

On 03/25/2016 12:26 AM, Karli Sjöberg wrote:
>
> Den 25 mars 2016 12:10 fm skrev Karli Sjöberg <karli.sjob...@slu.se>:
>  >
>  >
>  > Den 24 mars 2016 11:26 em skrev Ondra Machacek <omach...@redhat.com>:
>  > >
>  > > On 03/24/2016 11:14 PM, Karli Sjöberg wrote:
>  > > >
>  > > > Den 24 mars 2016 7:26 em skrev Ondra Machacek <omach...@redhat.com>:
>  > > >  >
>  > > >  > On 03/24/2016 06:16 PM, Karli Sjöberg wrote:
>  > > >  > > Hi!
>  > > >  > >
>  > > >  > >
>  > > >  > > Starting new thread instead of jacking someone else´s.
>  > > >  > >
>  > > >  > >
>  > > >  > > Managed to migrate from old 'engine-manage-domains' auth to
>  > > > aaa-ldap using:
>  > > >  > >
>  > > >  > > #| ovirt-engine-kerbldap-migration-tool --domain baz.foo.bar
> --cacert
>  > > >  > > /tmp/ca.crt --apply
>  > > >  > > |
>  > > >  > >
>  > > >  > >
>  > > >  > > All OK, no errors, but cannot log in:
>  > > >  > >
>  > > >  > > # ovirt-engine-extensions-tool aaa login-user
> --profile=baz.foo.bar-new
>  > > >  > > --user-name=user:
>  > > >  >
>  > > >  > If you want to login with user with different upn suffix, then
> just
>  > > >  > append that suffix
>  > > >  >
>  > > >  > $ ovirt-engine-extensions-tool aaa login-user
> --profile=baz.foo.bar-new
>  > > >  > --user-name=u...@foo.bar
>  > > >
>  > > > OK, some progress, that works!
>  > > >
>  > > >  >
>  > > >  > If you have more suffixes and want to have some as default you
> can use
>  > > >  > following approach:
>  > > >  >
>  > > >  > 1) install ovirt-engine-extension-aaa-misc
>  > > >  >
>  > > >  > 2) create new mapping extension like this:
>  > > >  > /etc/ovirt-engine/extensions.d/mapping-suffix.properties
>  > > >  >
>  > > >  > ovirt.engine.extension.name = mapping-suffix
>  > > >  > ovirt.engine.extension.bindings.method = jbossmodule
>  > > >  > ovirt.engine.extension.binding.jbossmodule.module =
>  > > >  > org.ovirt.engine-extensions.aaa.misc
>  > > >  > ovirt.engine.extension.binding.jbossmodule.class =
>  > > >  > org.ovirt.engineextensions.aaa.misc.mapping.MappingExtension
>  > > >  > ovirt.engine.extension.provides =
>  > > >  > org.ovirt.engine.api.extensions.aaa.Mapping
>  > > >  > config.mapUser.type = regex
>  > > >  > config.mapUser.pattern = ^(?[^@]*)$
>  > > >
>  > > > Is that supposed to really say '' or should it be changed to a
>  > > > real user name? Either way, it doesn't work, I tried it all.
>  > >
>  > > '?' is just a named group in that regex so you can later use
> it in
>  > > 'config.mapUser.replacement'  option. It should take everything until
>  > > first '@'.
>  > >
>  > > >
>  > > >  > config.mapUser.replacement = ${user}@foo.bar
>  > > >  > config.mapUser.mustMatch = false
>  > > >  >
>  > > >  > 3) select a mapping plugin in authn configuration:
>  > > >  >
>  > > >  > ovirt.engine.aaa.authn.mapping.plugin = mapping-suffix
>  > > >  >
>  > > >  > With above configuration in use, your user 'user' witll be
> mapped to
>  > > >  > user 'u...@foo.bar'
>  > > >  > and users 'u...@anotherdomain.foo.bar' will remain
>  > > >  > 'u...@anotherdomain.foo.bar'.
>  > > >
>  > > > This however does not, it doesn't replace the suffix as it's supposed
>  > > > to. I tried with many different types of the 'mapUser.pattern' but it
>  > > > simply won't change it, even if I type in '= ^u...@baz.foo.bar$', the
>  > > > error is the same:(
>  > >
>  > > Hmm, hard to say what's wrong, try to run:
>  > > $ ovirt-engine-extensions-tool --log-level=FINEST aaa login-user
>  > > --profile=baz.foo.bar-new --user-name=user
>  > >
>  > > and search for a mapping part in log.
>  >
>  > Wow what 

Re: [ovirt-users] oVirt 3.6 AAA LDAP cannot not log in when end of UPN is different from domain base

2016-03-24 Thread Karli Sjöberg

Den 25 mars 2016 12:10 fm skrev Karli Sjöberg <karli.sjob...@slu.se>:
>
>
> Den 24 mars 2016 11:26 em skrev Ondra Machacek <omach...@redhat.com>:
> >
> > On 03/24/2016 11:14 PM, Karli Sjöberg wrote:
> > >
> > > Den 24 mars 2016 7:26 em skrev Ondra Machacek <omach...@redhat.com>:
> > >  >
> > >  > On 03/24/2016 06:16 PM, Karli Sjöberg wrote:
> > >  > > Hi!
> > >  > >
> > >  > >
> > >  > > Starting new thread instead of jacking someone else´s.
> > >  > >
> > >  > >
> > >  > > Managed to migrate from old 'engine-manage-domains' auth to
> > > aaa-ldap using:
> > >  > >
> > >  > > #| ovirt-engine-kerbldap-migration-tool --domain baz.foo.bar --cacert
> > >  > > /tmp/ca.crt --apply
> > >  > > |
> > >  > >
> > >  > >
> > >  > > All OK, no errors, but cannot log in:
> > >  > >
> > >  > > # ovirt-engine-extensions-tool aaa login-user 
> > > --profile=baz.foo.bar-new
> > >  > > --user-name=user:
> > >  >
> > >  > If you want to login with user with different upn suffix, then just
> > >  > append that suffix
> > >  >
> > >  > $ ovirt-engine-extensions-tool aaa login-user --profile=baz.foo.bar-new
> > >  > --user-name=u...@foo.bar
> > >
> > > OK, some progress, that works!
> > >
> > >  >
> > >  > If you have more suffixes and want to have some as default you can use
> > >  > following approach:
> > >  >
> > >  > 1) install ovirt-engine-extension-aaa-misc
> > >  >
> > >  > 2) create new mapping extension like this:
> > >  > /etc/ovirt-engine/extensions.d/mapping-suffix.properties
> > >  >
> > >  > ovirt.engine.extension.name = mapping-suffix
> > >  > ovirt.engine.extension.bindings.method = jbossmodule
> > >  > ovirt.engine.extension.binding.jbossmodule.module =
> > >  > org.ovirt.engine-extensions.aaa.misc
> > >  > ovirt.engine.extension.binding.jbossmodule.class =
> > >  > org.ovirt.engineextensions.aaa.misc.mapping.MappingExtension
> > >  > ovirt.engine.extension.provides =
> > >  > org.ovirt.engine.api.extensions.aaa.Mapping
> > >  > config.mapUser.type = regex
> > >  > config.mapUser.pattern = ^(?[^@]*)$
> > >
> > > Is that supposed to really say '' or should it be changed to a
> > > real user name? Either way, it doesn't work, I tried it all.
> >
> > '?' is just a named group in that regex so you can later use it in
> > 'config.mapUser.replacement'  option. It should take everything until
> > first '@'.
> >
> > >
> > >  > config.mapUser.replacement = ${user}@foo.bar
> > >  > config.mapUser.mustMatch = false
> > >  >
> > >  > 3) select a mapping plugin in authn configuration:
> > >  >
> > >  > ovirt.engine.aaa.authn.mapping.plugin = mapping-suffix
> > >  >
> > >  > With above configuration in use, your user 'user' witll be mapped to
> > >  > user 'u...@foo.bar'
> > >  > and users 'u...@anotherdomain.foo.bar' will remain
> > >  > 'u...@anotherdomain.foo.bar'.
> > >
> > > This however does not, it doesn't replace the suffix as it's supposed
> > > to. I tried with many different types of the 'mapUser.pattern' but it
> > > simply won't change it, even if I type in '= ^u...@baz.foo.bar$', the
> > > error is the same:(
> >
> > Hmm, hard to say what's wrong, try to run:
> > $ ovirt-engine-extensions-tool --log-level=FINEST aaa login-user
> > --profile=baz.foo.bar-new --user-name=user
> >
> > and search for a mapping part in log.
>
> Wow what a mouthfull:) Can you make anything out of it?
>
> https://dropoff.slu.se/index.php/s/EMe2NPmOfsWCNTv/download
>
> /K

Just noticed after logging in to webadmin as "u...@foo.bar" (which worked btw, 
so good there) that the "User Name" in Users main tab looks really odd:
u...@foo.bar@baz.foo.bar-new-authz

/K

>
> >
> > >
> > > /K
> > >
> > >  >
> > >  > >
> > >  > > API: <--Authn.InvokeCommands.AUTHENTICATE_CREDENTIALS result=SUCCESS
> > >  > >
> > >  > >
> > >  > > but:
> > >  > >
> > >  > > API: -->Authz.InvokeCommands.FETCH_PRINCIPAL_RECORD
> > >  > > principal='u...@baz.foo.bar'
> > >  > > SEVERE  Cannot resolve principal 'u...@baz.foo.bar'
> > >  > >
> > >  > >
> > >  > > So it fails.
> > >  > >
> > >  > >
> > >  > > # ldapsearch -x -H ldap://baz.foo.bar -D u...@foo.bar -W -b
> > >  > > DC=baz,DC=foo,DC=bar -s sub "(samAccountName=user)" 
> > > userPrincipalName |
> > >  > > grep 'userPrincipalName:'
> > >  > >
> > >  > > userPrincipalName: u...@foo.bar
> > >  > >
> > >  > >
> > >  > > |How do you configure AAA with base 'DC=baz,DC=foo,DC=bar' when
> > >  > > userPrincipalName ends only on '@foo.bar'?
> > >  > >
> > >  > > /K
> > >  > > |
> > >  > >
> > >  > >
> > >  > >
> > >  > >
> > >  > > ___
> > >  > > Users mailing list
> > >  > > Users@ovirt.org
> > >  > > http://lists.ovirt.org/mailman/listinfo/users
> > >  > >
> > >
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] oVirt 3.6 AAA LDAP cannot not log in when end of UPN is different from domain base

2016-03-24 Thread Karli Sjöberg

Den 24 mars 2016 11:26 em skrev Ondra Machacek <omach...@redhat.com>:
>
> On 03/24/2016 11:14 PM, Karli Sjöberg wrote:
> >
> > Den 24 mars 2016 7:26 em skrev Ondra Machacek <omach...@redhat.com>:
> >  >
> >  > On 03/24/2016 06:16 PM, Karli Sjöberg wrote:
> >  > > Hi!
> >  > >
> >  > >
> >  > > Starting new thread instead of jacking someone else´s.
> >  > >
> >  > >
> >  > > Managed to migrate from old 'engine-manage-domains' auth to
> > aaa-ldap using:
> >  > >
> >  > > #| ovirt-engine-kerbldap-migration-tool --domain baz.foo.bar --cacert
> >  > > /tmp/ca.crt --apply
> >  > > |
> >  > >
> >  > >
> >  > > All OK, no errors, but cannot log in:
> >  > >
> >  > > # ovirt-engine-extensions-tool aaa login-user --profile=baz.foo.bar-new
> >  > > --user-name=user:
> >  >
> >  > If you want to login with user with different upn suffix, then just
> >  > append that suffix
> >  >
> >  > $ ovirt-engine-extensions-tool aaa login-user --profile=baz.foo.bar-new
> >  > --user-name=u...@foo.bar
> >
> > OK, some progress, that works!
> >
> >  >
> >  > If you have more suffixes and want to have some as default you can use
> >  > following approach:
> >  >
> >  > 1) install ovirt-engine-extension-aaa-misc
> >  >
> >  > 2) create new mapping extension like this:
> >  > /etc/ovirt-engine/extensions.d/mapping-suffix.properties
> >  >
> >  > ovirt.engine.extension.name = mapping-suffix
> >  > ovirt.engine.extension.bindings.method = jbossmodule
> >  > ovirt.engine.extension.binding.jbossmodule.module =
> >  > org.ovirt.engine-extensions.aaa.misc
> >  > ovirt.engine.extension.binding.jbossmodule.class =
> >  > org.ovirt.engineextensions.aaa.misc.mapping.MappingExtension
> >  > ovirt.engine.extension.provides =
> >  > org.ovirt.engine.api.extensions.aaa.Mapping
> >  > config.mapUser.type = regex
> >  > config.mapUser.pattern = ^(?[^@]*)$
> >
> > Is that supposed to really say '' or should it be changed to a
> > real user name? Either way, it doesn't work, I tried it all.
>
> '?' is just a named group in that regex so you can later use it in
> 'config.mapUser.replacement'  option. It should take everything until
> first '@'.
>
> >
> >  > config.mapUser.replacement = ${user}@foo.bar
> >  > config.mapUser.mustMatch = false
> >  >
> >  > 3) select a mapping plugin in authn configuration:
> >  >
> >  > ovirt.engine.aaa.authn.mapping.plugin = mapping-suffix
> >  >
> >  > With above configuration in use, your user 'user' witll be mapped to
> >  > user 'u...@foo.bar'
> >  > and users 'u...@anotherdomain.foo.bar' will remain
> >  > 'u...@anotherdomain.foo.bar'.
> >
> > This however does not, it doesn't replace the suffix as it's supposed
> > to. I tried with many different types of the 'mapUser.pattern' but it
> > simply won't change it, even if I type in '= ^u...@baz.foo.bar$', the
> > error is the same:(
>
> Hmm, hard to say what's wrong, try to run:
> $ ovirt-engine-extensions-tool --log-level=FINEST aaa login-user
> --profile=baz.foo.bar-new --user-name=user
>
> and search for a mapping part in log.

Wow what a mouthfull:) Can you make anything out of it?

https://dropoff.slu.se/index.php/s/EMe2NPmOfsWCNTv/download

/K

>
> >
> > /K
> >
> >  >
> >  > >
> >  > > API: <--Authn.InvokeCommands.AUTHENTICATE_CREDENTIALS result=SUCCESS
> >  > >
> >  > >
> >  > > but:
> >  > >
> >  > > API: -->Authz.InvokeCommands.FETCH_PRINCIPAL_RECORD
> >  > > principal='u...@baz.foo.bar'
> >  > > SEVERE  Cannot resolve principal 'u...@baz.foo.bar'
> >  > >
> >  > >
> >  > > So it fails.
> >  > >
> >  > >
> >  > > # ldapsearch -x -H ldap://baz.foo.bar -D u...@foo.bar -W -b
> >  > > DC=baz,DC=foo,DC=bar -s sub "(samAccountName=user)" userPrincipalName |
> >  > > grep 'userPrincipalName:'
> >  > >
> >  > > userPrincipalName: u...@foo.bar
> >  > >
> >  > >
> >  > > |How do you configure AAA with base 'DC=baz,DC=foo,DC=bar' when
> >  > > userPrincipalName ends only on '@foo.bar'?
> >  > >
> >  > > /K
> >  > > |
> >  > >
> >  > >
> >  > >
> >  > >
> >  > > ___
> >  > > Users mailing list
> >  > > Users@ovirt.org
> >  > > http://lists.ovirt.org/mailman/listinfo/users
> >  > >
> >
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] oVirt 3.6 AAA LDAP cannot not log in when end of UPN is different from domain base

2016-03-24 Thread Karli Sjöberg

Den 24 mars 2016 7:26 em skrev Ondra Machacek <omach...@redhat.com>:
>
> On 03/24/2016 06:16 PM, Karli Sjöberg wrote:
> > Hi!
> >
> >
> > Starting new thread instead of jacking someone else´s.
> >
> >
> > Managed to migrate from old 'engine-manage-domains' auth to aaa-ldap using:
> >
> > #| ovirt-engine-kerbldap-migration-tool --domain baz.foo.bar --cacert
> > /tmp/ca.crt --apply
> > |
> >
> >
> > All OK, no errors, but cannot log in:
> >
> > # ovirt-engine-extensions-tool aaa login-user --profile=baz.foo.bar-new
> > --user-name=user:
>
> If you want to login with user with different upn suffix, then just
> append that suffix
>
> $ ovirt-engine-extensions-tool aaa login-user --profile=baz.foo.bar-new
> --user-name=u...@foo.bar

OK, some progress, that works!

>
> If you have more suffixes and want to have some as default you can use
> following approach:
>
> 1) install ovirt-engine-extension-aaa-misc
>
> 2) create new mapping extension like this:
> /etc/ovirt-engine/extensions.d/mapping-suffix.properties
>
> ovirt.engine.extension.name = mapping-suffix
> ovirt.engine.extension.bindings.method = jbossmodule
> ovirt.engine.extension.binding.jbossmodule.module =
> org.ovirt.engine-extensions.aaa.misc
> ovirt.engine.extension.binding.jbossmodule.class =
> org.ovirt.engineextensions.aaa.misc.mapping.MappingExtension
> ovirt.engine.extension.provides =
> org.ovirt.engine.api.extensions.aaa.Mapping
> config.mapUser.type = regex
> config.mapUser.pattern = ^(?[^@]*)$

Is that supposed to really say '' or should it be changed to a real user 
name? Either way, it doesn't work, I tried it all.

> config.mapUser.replacement = ${user}@foo.bar
> config.mapUser.mustMatch = false
>
> 3) select a mapping plugin in authn configuration:
>
> ovirt.engine.aaa.authn.mapping.plugin = mapping-suffix
>
> With above configuration in use, your user 'user' witll be mapped to
> user 'u...@foo.bar'
> and users 'u...@anotherdomain.foo.bar' will remain
> 'u...@anotherdomain.foo.bar'.

This however does not, it doesn't replace the suffix as it's supposed to. I 
tried with many different types of the 'mapUser.pattern' but it simply won't 
change it, even if I type in '= ^u...@baz.foo.bar$', the error is the same:(

/K

>
> >
> > API: <--Authn.InvokeCommands.AUTHENTICATE_CREDENTIALS result=SUCCESS
> >
> >
> > but:
> >
> > API: -->Authz.InvokeCommands.FETCH_PRINCIPAL_RECORD
> > principal='u...@baz.foo.bar'
> > SEVERE  Cannot resolve principal 'u...@baz.foo.bar'
> >
> >
> > So it fails.
> >
> >
> > # ldapsearch -x -H ldap://baz.foo.bar -D u...@foo.bar -W -b
> > DC=baz,DC=foo,DC=bar -s sub "(samAccountName=user)" userPrincipalName |
> > grep 'userPrincipalName:'
> >
> > userPrincipalName: u...@foo.bar
> >
> >
> > |How do you configure AAA with base 'DC=baz,DC=foo,DC=bar' when
> > userPrincipalName ends only on '@foo.bar'?
> >
> > /K
> > |
> >
> >
> >
> >
> > ___
> > Users mailing list
> > Users@ovirt.org
> > http://lists.ovirt.org/mailman/listinfo/users
> >
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] oVirt 3.6 AAA LDAP cannot not log in when end of UPN is different from domain base

2016-03-24 Thread Karli Sjöberg
Hi!


Starting new thread instead of jacking someone else´s.


Managed to migrate from old 'engine-manage-domains' auth to aaa-ldap using:

# ovirt-engine-kerbldap-migration-tool --domain baz.foo.bar --cacert 
/tmp/ca.crt --apply


All OK, no errors, but cannot log in:

# ovirt-engine-extensions-tool aaa login-user --profile=baz.foo.bar-new 
--user-name=user:

API: <--Authn.InvokeCommands.AUTHENTICATE_CREDENTIALS result=SUCCESS


but:

API: -->Authz.InvokeCommands.FETCH_PRINCIPAL_RECORD principal='u...@baz.foo.bar'
SEVERE  Cannot resolve principal 'u...@baz.foo.bar'


So it fails.


# ldapsearch -x -H ldap://baz.foo.bar -D u...@foo.bar -W -b 
DC=baz,DC=foo,DC=bar -s sub "(samAccountName=user)" userPrincipalName | grep 
'userPrincipalName:'

userPrincipalName: u...@foo.bar


How do you configure AAA with base 'DC=baz,DC=foo,DC=bar' when 
userPrincipalName ends only on '@foo.bar'?

/K

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Active Directory (LDAP) user auth is slow

2016-03-24 Thread Karli Sjöberg
Sorry about the thread-breakage, OWA...

Från: Ondra Machacek <omach...@redhat.com>
Skickat: den 24 mars 2016 15:08
Till: Karli Sjöberg
Kopia: Martin Perina; Will Dennis; users
Ämne: Re: [ovirt-users] Active Directory (LDAP) user auth is slow

On 03/24/2016 03:02 PM, Karli Sjöberg wrote:
>
> Den 24 mars 2016 13:49 skrev Ondra Machacek <omach...@redhat.com>:
>  >
>  > Hi,
>  >
>  > if you remove user, then also permissions of that user to vms will be
>  > removed.
>  > And yes, you will have to add all those permissions back to users from
>  > new profile.
>  >
>  > But, you can try migration tool[1], to migrate all users to new AAA
> profile.
>  > If you have any problem with it, you can ask.
>
> Ehm, how do you install it? (el6)

yum install -y
https://github.com/machacekondra/ovirt-engine-kerbldap-migration/releases/download/ovirt-engine-kerbldap-migration-1.0.4/ovirt-engine-kerbldap-migration-1.0.4-1.el6ev.noarch.rpm

That worked, plus the migration, but can´t log in since our domain is called 
like 'baz.foo.bar' but our users´s userPrincipalName are just 'u...@foo.bar'. 
How do you configure that with aaa?

/K

>
> /K
>
>  >
>  > Ondra
>  >
>  > [1]
>  >
> https://github.com/machacekondra/ovirt-engine-kerbldap-migration/blob/master/README.md
>  >
>  > On 03/24/2016 01:06 PM, Will Dennis wrote:
>  > > In the RHEV Admin Guide that Martin mentioned, it says:
>  > >
>  > > "Log in to the Administration Portal, and remove all users and
> groups related to the old profile. Users defined in the removed domain
> will no longer be able to authenticate with the Red Hat Enterprise
> Virtualization Manager. The entries for the affected users will remain
> defined in the Red Hat Enterprise Virtualization Manager until they are
> explicitly removed from the Administration Portal.”
>  > >
>  > > I have some VMs running under some AD domain users; if I remove the
> users from the system as above, will I need to remove them from the VM
> permissions, or is that cleaned up as well? And I guess I’ll need to
> manually re-add the perms back after the new directory config is in
> place? Please advise.
>  > >
>  > > Thanks,
>  > > Will
>  > >
>  > > On Mar 21, 2016, at 4:29 AM, Martin Perina
> <mper...@redhat.com<mailto:mper...@redhat.com>> wrote:
>  > >
>  > >
>  > >
>  > > On Mon, Mar 21, 2016 at 8:20 AM, Yedidyah Bar David
> <d...@redhat.com<mailto:d...@redhat.com>> wrote:
>  > > On Mon, Mar 21, 2016 at 4:47 AM, Will Dennis
> <wden...@nec-labs.com<mailto:wden...@nec-labs.com>> wrote:
>  > >> Hi all,
>  > >>
>  > >> I have enabled Active Directory authentication for the users in
> oVirt (via engine-manage-domains command using --provider=ad) and,
> although it works, it takes about ~50 sec’s to process a login. I have
> other OSS software that utilizes AD auth, and there is no such lag when
> processing logins, so I’m guessing it’s a problem with the oVirt
> implementation… Any way to debug why the auth process is taking so long?
>  > >
>  > > This is an old, unmaintained component. You should use the new
> aaa-ldap one.
>  > > Search the list archives for "aaa-ldap" and/or read the README file
> in the
>  > > sources [1]. Best,
>  > >
>  > > [1]
> https://gerrit.ovirt.org/gitweb?p=ovirt-engine-extension-aaa-ldap.git;a=blob;f=README
>  > >
>  > > ​You could also take a look at RHEV 3.6 Administration Guide,
> chapter 13 Users and Roles [2]
>  > > where you can find detailed steps for common configurations.
>  > >
>  > > Martin Perina
>  > >
>  > > [2]
> https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Virtualization/3.6/html/Administration_Guide/chap-Users_and_Roles.html
>  > > ​
>  > >
>  > >
>  > >>
>  > >> Will
>  > >> ___
>  > >> Users mailing list
>  > >> Users@ovirt.org<mailto:Users@ovirt.org>
>  > >> http://lists.ovirt.org/mailman/listinfo/users
>  > >
>  > >
>  > >
>  > > --
>  > > Didi
>  > > ___
>  > > Users mailing list
>  > > Users@ovirt.org<mailto:Users@ovirt.org>
>  > > http://lists.ovirt.org/mailman/listinfo/users
>  > >
>  > >
>  > > ___
>  > > Users mailing list
>  > > Users@ovirt.org
>  > > http://lists.ovirt.org/mailman/listinfo/users
>  > >
>  > ___
>  > Users mailing list
>  > Users@ovirt.org
>  > http://lists.ovirt.org/mailman/listinfo/users
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Active Directory (LDAP) user auth is slow

2016-03-24 Thread Karli Sjöberg

Den 24 mars 2016 3:06 em skrev Ondra Machacek <omach...@redhat.com>:
>
> On 03/24/2016 03:02 PM, Karli Sjöberg wrote:
> >
> > Den 24 mars 2016 13:49 skrev Ondra Machacek <omach...@redhat.com>:
> >  >
> >  > Hi,
> >  >
> >  > if you remove user, then also permissions of that user to vms will be
> >  > removed.
> >  > And yes, you will have to add all those permissions back to users from
> >  > new profile.
> >  >
> >  > But, you can try migration tool[1], to migrate all users to new AAA
> > profile.
> >  > If you have any problem with it, you can ask.
> >
> > Ehm, how do you install it? (el6)
>
> yum install -y
> https://github.com/machacekondra/ovirt-engine-kerbldap-migration/releases/download/ovirt-engine-kerbldap-migration-1.0.4/ovirt-engine-kerbldap-migration-1.0.4-1.el6ev.noarch.rpm

Awesome, thanks!

/K

>
> >
> > /K
> >
> >  >
> >  > Ondra
> >  >
> >  > [1]
> >  >
> > https://github.com/machacekondra/ovirt-engine-kerbldap-migration/blob/master/README.md
> >  >
> >  > On 03/24/2016 01:06 PM, Will Dennis wrote:
> >  > > In the RHEV Admin Guide that Martin mentioned, it says:
> >  > >
> >  > > "Log in to the Administration Portal, and remove all users and
> > groups related to the old profile. Users defined in the removed domain
> > will no longer be able to authenticate with the Red Hat Enterprise
> > Virtualization Manager. The entries for the affected users will remain
> > defined in the Red Hat Enterprise Virtualization Manager until they are
> > explicitly removed from the Administration Portal.”
> >  > >
> >  > > I have some VMs running under some AD domain users; if I remove the
> > users from the system as above, will I need to remove them from the VM
> > permissions, or is that cleaned up as well? And I guess I’ll need to
> > manually re-add the perms back after the new directory config is in
> > place? Please advise.
> >  > >
> >  > > Thanks,
> >  > > Will
> >  > >
> >  > > On Mar 21, 2016, at 4:29 AM, Martin Perina
> > <mper...@redhat.com<mailto:mper...@redhat.com>> wrote:
> >  > >
> >  > >
> >  > >
> >  > > On Mon, Mar 21, 2016 at 8:20 AM, Yedidyah Bar David
> > <d...@redhat.com<mailto:d...@redhat.com>> wrote:
> >  > > On Mon, Mar 21, 2016 at 4:47 AM, Will Dennis
> > <wden...@nec-labs.com<mailto:wden...@nec-labs.com>> wrote:
> >  > >> Hi all,
> >  > >>
> >  > >> I have enabled Active Directory authentication for the users in
> > oVirt (via engine-manage-domains command using --provider=ad) and,
> > although it works, it takes about ~50 sec’s to process a login. I have
> > other OSS software that utilizes AD auth, and there is no such lag when
> > processing logins, so I’m guessing it’s a problem with the oVirt
> > implementation… Any way to debug why the auth process is taking so long?
> >  > >
> >  > > This is an old, unmaintained component. You should use the new
> > aaa-ldap one.
> >  > > Search the list archives for "aaa-ldap" and/or read the README file
> > in the
> >  > > sources [1]. Best,
> >  > >
> >  > > [1]
> > https://gerrit.ovirt.org/gitweb?p=ovirt-engine-extension-aaa-ldap.git;a=blob;f=README
> >  > >
> >  > > ​You could also take a look at RHEV 3.6 Administration Guide,
> > chapter 13 Users and Roles [2]
> >  > > where you can find detailed steps for common configurations.
> >  > >
> >  > > Martin Perina
> >  > >
> >  > > [2]
> > https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Virtualization/3.6/html/Administration_Guide/chap-Users_and_Roles.html
> >  > > ​
> >  > >
> >  > >
> >  > >>
> >  > >> Will
> >  > >> ___
> >  > >> Users mailing list
> >  > >> Users@ovirt.org<mailto:Users@ovirt.org>
> >  > >> http://lists.ovirt.org/mailman/listinfo/users
> >  > >
> >  > >
> >  > >
> >  > > --
> >  > > Didi
> >  > > ___
> >  > > Users mailing list
> >  > > Users@ovirt.org<mailto:Users@ovirt.org>
> >  > > http://lists.ovirt.org/mailman/listinfo/users
> >  > >
> >  > >
> >  > > ___
> >  > > Users mailing list
> >  > > Users@ovirt.org
> >  > > http://lists.ovirt.org/mailman/listinfo/users
> >  > >
> >  > ___
> >  > Users mailing list
> >  > Users@ovirt.org
> >  > http://lists.ovirt.org/mailman/listinfo/users
> >
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Active Directory (LDAP) user auth is slow

2016-03-24 Thread Karli Sjöberg

Den 24 mars 2016 13:49 skrev Ondra Machacek :
>
> Hi,
>
> if you remove user, then also permissions of that user to vms will be
> removed.
> And yes, you will have to add all those permissions back to users from
> new profile.
>
> But, you can try migration tool[1], to migrate all users to new AAA profile.
> If you have any problem with it, you can ask.

Ehm, how do you install it? (el6)

/K

>
> Ondra
>
> [1]
> https://github.com/machacekondra/ovirt-engine-kerbldap-migration/blob/master/README.md
>
> On 03/24/2016 01:06 PM, Will Dennis wrote:
> > In the RHEV Admin Guide that Martin mentioned, it says:
> >
> > "Log in to the Administration Portal, and remove all users and groups 
> > related to the old profile. Users defined in the removed domain will no 
> > longer be able to authenticate with the Red Hat Enterprise Virtualization 
> > Manager. The entries for the affected users will remain defined in the Red 
> > Hat Enterprise Virtualization Manager until they are explicitly removed 
> > from the Administration Portal.”
> >
> > I have some VMs running under some AD domain users; if I remove the users 
> > from the system as above, will I need to remove them from the VM 
> > permissions, or is that cleaned up as well? And I guess I’ll need to 
> > manually re-add the perms back after the new directory config is in place? 
> > Please advise.
> >
> > Thanks,
> > Will
> >
> > On Mar 21, 2016, at 4:29 AM, Martin Perina 
> > > wrote:
> >
> >
> >
> > On Mon, Mar 21, 2016 at 8:20 AM, Yedidyah Bar David 
> > > wrote:
> > On Mon, Mar 21, 2016 at 4:47 AM, Will Dennis 
> > > wrote:
> >> Hi all,
> >>
> >> I have enabled Active Directory authentication for the users in oVirt (via 
> >> engine-manage-domains command using --provider=ad) and, although it works, 
> >> it takes about ~50 sec’s to process a login. I have other OSS software 
> >> that utilizes AD auth, and there is no such lag when processing logins, so 
> >> I’m guessing it’s a problem with the oVirt implementation… Any way to 
> >> debug why the auth process is taking so long?
> >
> > This is an old, unmaintained component. You should use the new aaa-ldap one.
> > Search the list archives for "aaa-ldap" and/or read the README file in the
> > sources [1]. Best,
> >
> > [1] 
> > https://gerrit.ovirt.org/gitweb?p=ovirt-engine-extension-aaa-ldap.git;a=blob;f=README
> >
> > ​You could also take a look at RHEV 3.6 Administration Guide, chapter 13 
> > Users and Roles [2]
> > where you can find detailed steps for common configurations.
> >
> > Martin Perina
> >
> > [2] 
> > https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Virtualization/3.6/html/Administration_Guide/chap-Users_and_Roles.html
> > ​
> >
> >
> >>
> >> Will
> >> ___
> >> Users mailing list
> >> Users@ovirt.org
> >> http://lists.ovirt.org/mailman/listinfo/users
> >
> >
> >
> > --
> > Didi
> > ___
> > Users mailing list
> > Users@ovirt.org
> > http://lists.ovirt.org/mailman/listinfo/users
> >
> >
> > ___
> > Users mailing list
> > Users@ovirt.org
> > http://lists.ovirt.org/mailman/listinfo/users
> >
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Python API question

2016-01-16 Thread Karli Sjöberg

Hi Colin,


I´ve also noticed that behaviour, you need to redefine the variable in the loop 
as well, seems that "snap == 'locked'" forever otherwise:


snap = api.vms.get(name=VM_NAME).snapshots.list()[-1]
while (snap.get_snapshot_status() == 'locked'):
   print "Waiting for snapshot creation to finish (status is %s)" % 
snap.get_snapshot_status()
   snap = api.vms.get(name=VM_NAME).snapshots.list()[-1] while 
(snap.get_snapshot_status() == 'locked'):
   time.sleep(1)

/K


Från: users-boun...@ovirt.org  för Colin Coe 

Skickat: den 16 januari 2016 06:07
Till: Juan Hernández
Kopia: Users@ovirt.org
Ämne: Re: [ovirt-users] Python API question

Hi again all

I've just noticed that the snapshot status appears not to update.

Consider the code below:
---
api.vms.get(VM_NAME).snapshots.add(params.Snapshot(description=SNAPSHOT_NAME, 
vm=api.vms.get(VM_NAME), persist_memorystate=True))

# Wait for snapshot to finish
snap = api.vms.get(name=VM_NAME).snapshots.list()[-1]
while (snap.get_snapshot_status() == 'locked'):
   print "Waiting for snapshot creation to finish (status is %s)" % 
snap.get_snapshot_status()
---

What I find is that even though the WebUI reports the snapshot is created, 
snap.get_snapshot_status() still reports 'locked'.

I'm using RHEV 3.5.7 with RHEL-H 7.1 hosts with vdsm-4.16.30-1.el7ev.x86_64.

Am I misunderstanding how this works or have I found a bug?

Thanks

On Fri, Jan 15, 2016 at 6:04 PM, Juan Hernández 
> wrote:
On 01/15/2016 05:23 AM, Colin Coe wrote:
> Hi all
>
> I've written a Python script to take nightly snapshots of VMs which are
> kept for x days.  After x days the snapshot is deleted.
>
> I can't work out how to wait for the snapshot deletion to complete.  I
> know how to do it for creating the snapshot but I've not been able to
> get it right for the deletion.
>
>
> api.vms.get(VM_NAME).snapshots.add(params.Snapshot(description=SNAPSHOT_NAME,
> vm=api.vms.get(VM_NAME), persist_memorystate=True))
>   while api.vms.get(VM_NAME).status.state == 'image_locked':
>   sleep(1)
>
> Any ideas?
>
> Thanks
>
> CC
>
>

The more reliable way to wait till the snapshot is effectively deleted
is just to try to get it, and finish when the result is "None":

  snapshot.delete()

  while vm.snapshots.get(id=snapshot.get_id()) is not None:
sleep(1)

Alternatively you can use the return of the delete operation. It returns
an "Action" object, that contains a reference to the job that was
started to delete the snapshot. The XML representation looks like this:

  


  complete

  

As you can see that contains a link to the job. With the Python SDK you
can use it as follows:

  # Get the id of the job:
  action = snapshot.delete()
  job_id = action.get_job().get_id()

  # Wait till the job is finished:
  while api.jobs.get(id=job_id).get_status().get_state() != 'FINISHED':
time.sleep(1)

This is less reliable, because actions may or may not return a job, and
that depends on how the action is implemented in the engine, and there
is no backwards compatibility guarantee for that. A minor change in the
engine may result in the job not being returned.

So my suggestion is to use the simple loop to check if the snapshot exists.

--
Dirección Comercial: C/Jose Bardasano Baos, 9, Edif. Gorbea 3, planta
3ºD, 28016 Madrid, Spain
Inscrita en el Reg. Mercantil de Madrid - C.I.F. B82657941 - Red Hat S.L.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Python API question

2016-01-16 Thread Karli Sjöberg
Noticed that the code I wrote turned out a little wonky with a really misplaced 
"while" after the "snap" variable but I hope you understand what I was trying 
to get at.


#copy-paste fail :)


/K



Från: users-boun...@ovirt.org <users-boun...@ovirt.org> för Karli Sjöberg 
<karli.sjob...@slu.se>
Skickat: den 16 januari 2016 10:13
Till: Colin Coe; Juan Hernández
Kopia: Users@ovirt.org
Ämne: Re: [ovirt-users] Python API question



Hi Colin,


I´ve also noticed that behaviour, you need to redefine the variable in the loop 
as well, seems that "snap == 'locked'" forever otherwise:


snap = api.vms.get(name=VM_NAME).snapshots.list()[-1]
while (snap.get_snapshot_status() == 'locked'):
   print "Waiting for snapshot creation to finish (status is %s)" % 
snap.get_snapshot_status()
   snap = api.vms.get(name=VM_NAME).snapshots.list()[-1] while 
(snap.get_snapshot_status() == 'locked'):
   time.sleep(1)

/K


Från: users-boun...@ovirt.org <users-boun...@ovirt.org> för Colin Coe 
<colin@gmail.com>
Skickat: den 16 januari 2016 06:07
Till: Juan Hernández
Kopia: Users@ovirt.org
Ämne: Re: [ovirt-users] Python API question

Hi again all

I've just noticed that the snapshot status appears not to update.

Consider the code below:
---
api.vms.get(VM_NAME).snapshots.add(params.Snapshot(description=SNAPSHOT_NAME, 
vm=api.vms.get(VM_NAME), persist_memorystate=True))

# Wait for snapshot to finish
snap = api.vms.get(name=VM_NAME).snapshots.list()[-1]
while (snap.get_snapshot_status() == 'locked'):
   print "Waiting for snapshot creation to finish (status is %s)" % 
snap.get_snapshot_status()
---

What I find is that even though the WebUI reports the snapshot is created, 
snap.get_snapshot_status() still reports 'locked'.

I'm using RHEV 3.5.7 with RHEL-H 7.1 hosts with vdsm-4.16.30-1.el7ev.x86_64.

Am I misunderstanding how this works or have I found a bug?

Thanks

On Fri, Jan 15, 2016 at 6:04 PM, Juan Hernández 
<jhern...@redhat.com<mailto:jhern...@redhat.com>> wrote:
On 01/15/2016 05:23 AM, Colin Coe wrote:
> Hi all
>
> I've written a Python script to take nightly snapshots of VMs which are
> kept for x days.  After x days the snapshot is deleted.
>
> I can't work out how to wait for the snapshot deletion to complete.  I
> know how to do it for creating the snapshot but I've not been able to
> get it right for the deletion.
>
>
> api.vms.get(VM_NAME).snapshots.add(params.Snapshot(description=SNAPSHOT_NAME,
> vm=api.vms.get(VM_NAME), persist_memorystate=True))
>   while api.vms.get(VM_NAME).status.state == 'image_locked':
>   sleep(1)
>
> Any ideas?
>
> Thanks
>
> CC
>
>

The more reliable way to wait till the snapshot is effectively deleted
is just to try to get it, and finish when the result is "None":

  snapshot.delete()

  while vm.snapshots.get(id=snapshot.get_id()) is not None:
sleep(1)

Alternatively you can use the return of the delete operation. It returns
an "Action" object, that contains a reference to the job that was
started to delete the snapshot. The XML representation looks like this:

  


  complete

  

As you can see that contains a link to the job. With the Python SDK you
can use it as follows:

  # Get the id of the job:
  action = snapshot.delete()
  job_id = action.get_job().get_id()

  # Wait till the job is finished:
  while api.jobs.get(id=job_id).get_status().get_state() != 'FINISHED':
time.sleep(1)

This is less reliable, because actions may or may not return a job, and
that depends on how the action is implemented in the engine, and there
is no backwards compatibility guarantee for that. A minor change in the
engine may result in the job not being returned.

So my suggestion is to use the simple loop to check if the snapshot exists.

--
Dirección Comercial: C/Jose Bardasano Baos, 9, Edif. Gorbea 3, planta
3ºD, 28016 Madrid, Spain
Inscrita en el Reg. Mercantil de Madrid - C.I.F. B82657941 - Red Hat S.L.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Python API question

2016-01-14 Thread Karli Sjöberg
fre 2016-01-15 klockan 12:23 +0800 skrev Colin Coe:
> Hi all
> 
> 
> I've written a Python script to take nightly snapshots of VMs which
> are kept for x days.  After x days the snapshot is deleted.
> 
> 
> I can't work out how to wait for the snapshot deletion to complete.  I
> know how to do it for creating the snapshot but I've not been able to
> get it right for the deletion.
> 
> 
> 
> api.vms.get(VM_NAME).snapshots.add(params.Snapshot(description=SNAPSHOT_NAME, 
> vm=api.vms.get(VM_NAME), persist_memorystate=True))
>   while api.vms.get(VM_NAME).status.state == 'image_locked':
>   sleep(1)
> 
> 
> Any ideas?

We take a snapshot just after a VM creation, just to have a point of
origin to roll back to in case of total f-up:) Looks like this:

while api.vms.get(VM_NAME).snapshots.list()[1].get_snapshot_status() ==
'locked':

In our case, we only have one snapshot at that time though, since the VM
has just been created. Your code would have to be more complex to find
the most recent one, I´d think.

HTH

/K
> 
> 
> Thanks
> 
> 
> CC
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] host status "Non Operational" - how to diagnose & fix?

2016-01-02 Thread Karli Sjöberg

Den 3 jan. 2016 2:43 fm skrev Will Dennis :
>
> The ‘ovirtmgmt’ network has been & is still placed on a working NIC 
> (enp12s0f0)… It’s just that now, oVirt somehow doesn’t *think* it’s working…

Here's something I wrote a long time ago now, for those times when 
auto-gui-config fluff just won't do:

http://www.ovirt.org/Bonding_VLAN_Bridge

/K
>
> http://s1096.photobucket.com/user/willdennis/media/setup-networks.png.html
>
> However, as I showed you in the ‘ip link show up’ output, it is indeed up and 
> working.
>
>
>
>
> On Jan 2, 2016, at 8:00 PM, Roy Golan 
> > wrote:
>
>
>
> On Sun, Jan 3, 2016 at 2:46 AM, Will Dennis 
> > wrote:
> I have had one of my hosts go into the state “Non Operational” after I 
> rebooted it… I also noticed that in the oVirt webadmin UI, the NIC that’s 
> used in the ‘ovirtmgmt’ network is showing “down”, but in Linux the NIC is 
> operational and up, as is the ‘ovirtmgmt’ bridge…
>
>
> Hosts tab -> Network Interfaces subtab -> click "Setup networks" and make 
> sure "ovirtmgmt" is placed on a working nic.
>
> make sure
> [root@ovirt-node-02 ~]# ip link sh up
> 1: lo:  mtu 65536 qdisc noqueue state UNKNOWN mode 
> DEFAULT
> link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00
> 2: bond0:  mtu 1500 qdisc noqueue 
> state DOWN mode DEFAULT
> link/ether 00:15:17:7b:e9:b0 brd ff:ff:ff:ff:ff:ff
> 3: enp4s0f0:  mtu 1500 qdisc 
> pfifo_fast master bond0 state DOWN mode DEFAULT qlen 1000
> link/ether 00:15:17:7b:e9:b0 brd ff:ff:ff:ff:ff:ff
> 4: enp4s0f1:  mtu 1500 qdisc 
> pfifo_fast master bond0 state DOWN mode DEFAULT qlen 1000
> link/ether 00:15:17:7b:e9:b0 brd ff:ff:ff:ff:ff:ff
> 5: enp12s0f0:  mtu 1500 qdisc pfifo_fast 
> master ovirtmgmt state UP mode DEFAULT qlen 1000
> link/ether 00:21:85:35:08:4c brd ff:ff:ff:ff:ff:ff
> 7: ovirtmgmt:  mtu 1500 qdisc noqueue state 
> UP mode DEFAULT
> link/ether 00:21:85:35:08:4c brd ff:ff:ff:ff:ff:ff
>
> What should I take a look at first?
>
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
>
>
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] Merry Christmas!

2015-12-24 Thread Karli Sjöberg
And a happy new year, from Sweden!

/K
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Delete disk references without deleting the disk

2015-11-23 Thread Karli Sjöberg
mån 2015-11-23 klockan 08:56 +0100 skrev Johan Kooijman:
> Hi Nir,
> 
> 
> I wonder if it can be made any more efficient, I think this method is
> clear enough. The only thing not clear to me was that while deleting
> the storage domain, it doesn't touch it's contents.

Perhaps another wording? "Delete" vs. "Remove"?

/K
> 
> On Sun, Nov 22, 2015 at 9:00 PM, Nir Soffer 
> wrote:
> On Sun, Nov 22, 2015 at 6:14 PM, Johan Kooijman
>  wrote:
> > Hi all,
> >
> > I have about 100 old VM's in my cluster. They're powered
> down, ready for
> > deletion. What I want to do is delete the VM's including
> disks without
> > actually deleting the disk images from the storage array
> itself. Is that
> > possible?
> 
> Select the vm, click "remove", in the confirmation dialog,
> uncheck the
> "Delete disks"
> checkbox, confirm.
> 
> > At the end I want to be able to delete the storage domain
> (which
> > then should not hold any data, as far as ovirt is
> concerned).
> 
> Ovirt deleted the vms, but is keeping the disks, so the
> storage domain
> does hold all
> the disks.
> 
> >
> > Reason for this: it's a ZFS pool with dedup enabled,
> deleting the images one
> > by one will kill the array with 100% iowa for some time.
> 
> So what do you need is to destroy the storage domain, which
> will
> remove all the entities
> associated with it, but will keep  the storage without any
> change.
> 
> Do this:
> 1. Select the storage tab
> 2. select the domain
> 3. In the data center sub tab, click "maintenance"
> 4. When domain is in maintenance, click "detach"
> 5. Right click the domain and choose "destroy"
> 
> This will remove the storage domain from engine database,
> leaving
> the contents of the domain.
> 
> You can now delete the contents using favorite system tools.
> 
> Now, if we want to add support for this in ovirt, how would
> you delete
> the entire domain in a more efficient way?
> 
> Nir
> 
> 
> 
> 
> -- 
> Met vriendelijke groeten / With kind regards,
> Johan Kooijman
> 
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Python: Clone snapshot into VM

2015-09-17 Thread Karli Sjöberg
tor 2015-09-17 klockan 21:24 +0200 skrev gregor:
> Hi,
> 
> thanks, the tool is ready and online on github.

Looks really cool. Good job! What do you think of making the backing up
into a loop and fetching VMs from a list? My thinking is that you
usually have more than one VM you´d want to back up, so something like
this maybe:

def getVMsFromList(VMS_LIST):
try:
print 'Getting list of VMs from file \"%s\".' % (VMS_LIST)
fo = open(VMS_LIST)
output = []
for line in fo:
strippedline = line.strip('\r\n')
output.append(strippedline)
fo.close()
return output
except Exception as e:
print 'Exception in getting list of VMs:\n%s' % str(e)
exit(1)

And then you can loop:
for LIST_VM_NAME in getVMsFromList('VMs.list'):


Or to have the list of VMs in the config and then:
config = Config(config_file, debug)
VMS_LIST = vms_list
for LIST_VM_NAME in getVMsFromList(VMS_LIST):


/K

> 
> https://github.com/wefixit-AT/oVirtBackup
> 
> cheers
> gregor
> 
> On 2015-09-16 15:11, Amador Pahim wrote:
> > On 09/15/2015 11:57 AM, gregor wrote:
> >> Hi,
> >>
> >> I write currently a little backup tool in Python which use the following
> >> workflow:
> >> - create a snapshot -> works
> >> - clone snapshot into VM -> help needed
> > 
> > snapshot =
> > params.Snapshot(id=api.vms.get('my_vm01').snapshots.list(description='my_vm_snap_01')[0].id)
> > 
> > 
> > snapshots = params.Snapshots(snapshot=[snapshot])
> > 
> > api.vms.add(params.VM(name='new_vm', memory=2524971008,
> > cluster=api.clusters.get("Default"), snapshots=snapshots))
> > 
> >> - delete the snapshot -> works
> >> - export VM to NFS share -> works
> >> - delete cloned VM -> TODO
> >>
> >> Is it possible to clone a snapshot into a VM like from the web-interface?
> >>
> >> The above workflow is a little bit resource expensive but it will when
> >> it is finished make Online-Full-backups of VM's.
> >>
> >> cheers
> >> gregor
> >> ___
> >> Users mailing list
> >> Users@ovirt.org
> >> http://lists.ovirt.org/mailman/listinfo/users
> > 
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] strange iscsi issue

2015-09-08 Thread Karli Sjöberg
tis 2015-09-08 klockan 06:59 +0200 skrev Demeter Tibor:
> Hi,
> Thank you for your reply.
> I'm sorry but I don't think so. This storage is fast, because it is a SSD 
> based storage, and I can read/write to it with fast performance.
> I know, in virtual environment the I/O always slowest than on physical, but 
> here I have a very large difference. 
> Also, I use ext4 FS.

My suggestion would be to use a filesystem benchmarking tool like bonnie
++ to first test the performance locally on the storage server and then
redo the same test inside of a virtual machine. Also make sure the VM is
using VirtIO disk (either block or SCSI) for best performance. I have
tested speeds over 1Gb/s with bonded 1Gb NICS so I know it should work
in theory as well as practice.

Oh, and for the record. IO doesn´t have to be bound by the speed of
storage, if the host caches in RAM before sending it over the wire. But
that in my opinion is dangerous and as far as I know, it´s not actived
in oVirt, please correct me if I´m wrong.

/K

> 
> Thanks
> 
> Tibor
> 
> 
> - 2015. szept.. 8., 0:40, Alex McWhirter alexmcwhir...@triadic.us írta:
> 
> > Unless you're using a caching filesystem like zfs, then you're going to be
> > limited by how fast your storage back end can actually right to disk. Unless
> > you have a quite large storage back end, 10gbe is probably faster than your
> > disks can read and write.
> > 
> > On Sep 7, 2015 4:26 PM, Demeter Tibor  wrote:
> >>
> >> Hi All,
> >>
> >> I have to create a test environment for testing purposes, because we need 
> >> to
> >> testing our new 10gbe infrastructure.
> >> One server that have a 10gbe nic - this is the vdsm host and ovirt portal.
> >> One server that have a 10gbe nic - this is the storage.
> >>
> >> Its connected to each other throught a dlink 10gbe switch.
> >>
> >> Everything good and nice, the server can connect to storage, I can make 
> >> and run
> >> VMs, but the storage performance from inside VM seems to be 1Gb/sec only.
> >> I did try the iperf command for testing connections beetwen servers, and 
> >> it was
> >> 9.40 GB/sec. I have try to use hdparm -tT /dev/mapper/iscsidevice and also 
> >> it
> >> was 400-450 MB/sec. I've got same result on storage server.
> >>
> >> So:
> >>
> >> - hdparm test on local storage ~ 400 mb/sec
> >> - hdparm test on ovirt node server through attached iscsi device ~ 400 
> >> Mb/sec
> >> - hdparm test from inside vm on local virtual disk - 93-102 Mb /sec
> >>
> >> The question is : Why?
> >>
> >> ps. I Have only one ovirtmgmt device, so there are no other networks. The 
> >> router
> >> is only 1gbe/sec, but i've tested and the traffic does not going through  
> >> this.
> >>
> >> Thanks in advance,
> >>
> >> Regards,
> > > Tibor
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] IOPS per VM

2015-07-23 Thread Karli Sjöberg

Den 23 jul 2015 9:53 em skrev Johan Kooijman m...@johankooijman.com:

 My bad - should've mentioned we're running on NFS, iotop doesn't show that.

So run it on the NFS server to see what file is most demanding?

/K


 On Thu, Jul 23, 2015 at 9:14 PM, Chris Adams c...@cmadams.net wrote:

 Once upon a time, Johan Kooijman m...@johankooijman.com said:
  We're having some storage issues at the moment, some piece of our ovirt
  setup is eating up all available write IOPS.
  Is there a way of finding out which VM it may be? It's not CPU and/or
  network related it seems, because all VM's look good from the interface.

 Try running iotop from the shell on the host.
 --
 Chris Adams c...@cmadams.net
 ___
 Users mailing list
 Users@ovirt.org
 http://lists.ovirt.org/mailman/listinfo/users




 --
 Met vriendelijke groeten / With kind regards,
 Johan Kooijman
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] IOPS per VM

2015-07-23 Thread Karli Sjöberg
Forgot reply all...

Den 23 jul 2015 10:13 em skrev Johan Kooijman m...@johankooijman.com:

 iotop on NFS servers tells me it's NFS what's taking the load :)

What server is it?

/K


 On Thu, Jul 23, 2015 at 10:11 PM, Karli Sjöberg karli.sjob...@slu.se wrote:


 Den 23 jul 2015 9:53 em skrev Johan Kooijman m...@johankooijman.com:
 
  My bad - should've mentioned we're running on NFS, iotop doesn't show that.

 So run it on the NFS server to see what file is most demanding?

 /K

 
  On Thu, Jul 23, 2015 at 9:14 PM, Chris Adams c...@cmadams.net wrote:
 
  Once upon a time, Johan Kooijman m...@johankooijman.com said:
   We're having some storage issues at the moment, some piece of our ovirt
   setup is eating up all available write IOPS.
   Is there a way of finding out which VM it may be? It's not CPU and/or
   network related it seems, because all VM's look good from the interface.
 
  Try running iotop from the shell on the host.
  --
  Chris Adams c...@cmadams.net
  ___
  Users mailing list
  Users@ovirt.org
  http://lists.ovirt.org/mailman/listinfo/users
 
 
 
 
  --
  Met vriendelijke groeten / With kind regards,
  Johan Kooijman




 --
 Met vriendelijke groeten / With kind regards,
 Johan Kooijman
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] IOPS per VM

2015-07-23 Thread Karli Sjöberg

Den 23 jul 2015 11:03 em skrev Johan Kooijman m...@johankooijman.com:

 It's a Zetavault server, ZFS on Linux.

Ah, too bad. If it were Solaris/derivative or FreeBSD you could have used 
DTrace for that... I don't think that's available in linux.

/K


 On Thu, Jul 23, 2015 at 11:00 PM, Karli Sjöberg karli.sjob...@slu.se wrote:

 Forgot reply all...

 Den 23 jul 2015 10:13 em skrev Johan Kooijman m...@johankooijman.com:
 
  iotop on NFS servers tells me it's NFS what's taking the load :)

 What server is it?

 /K

 
  On Thu, Jul 23, 2015 at 10:11 PM, Karli Sjöberg karli.sjob...@slu.se 
  wrote:
 
 
  Den 23 jul 2015 9:53 em skrev Johan Kooijman m...@johankooijman.com:
  
   My bad - should've mentioned we're running on NFS, iotop doesn't show 
   that.
 
  So run it on the NFS server to see what file is most demanding?
 
  /K
 
  
   On Thu, Jul 23, 2015 at 9:14 PM, Chris Adams c...@cmadams.net wrote:
  
   Once upon a time, Johan Kooijman m...@johankooijman.com said:
We're having some storage issues at the moment, some piece of our 
ovirt
setup is eating up all available write IOPS.
Is there a way of finding out which VM it may be? It's not CPU and/or
network related it seems, because all VM's look good from the 
interface.
  
   Try running iotop from the shell on the host.
   --
   Chris Adams c...@cmadams.net
   ___
   Users mailing list
   Users@ovirt.org
   http://lists.ovirt.org/mailman/listinfo/users
  
  
  
  
   --
   Met vriendelijke groeten / With kind regards,
   Johan Kooijman
 
 
 
 
  --
  Met vriendelijke groeten / With kind regards,
  Johan Kooijman




 --
 Met vriendelijke groeten / With kind regards,
 Johan Kooijman
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] windows guest tools install

2015-06-17 Thread Karli Sjöberg
ons 2015-06-17 klockan 06:04 + skrev Patrick Russell:
 Hi all,
 
 We’ve got a large migration in progress for a windows (2k3, 2k8, and 2k12) 
 environment from vmware to ovirt. Does anyone have any suggestions for an 
 unattended ovirt-tools install? Our windows team has pretty much shot down 
 installing python on their VM’s. Are there any flags we can pass to the 
 installer to just accept the defaults? Any other suggestions?
 
 Thanks,
 Patrick
 
 ___
 Users mailing list
 Users@ovirt.org
 http://lists.ovirt.org/mailman/listinfo/users

If you have built the .exe, you don´t need to install Python on the rest
of the machines, just the VC runtime:
http://lists.ovirt.org/pipermail/users/2014-December/029705.html

/K
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Help with a vdsm hook script script?

2015-06-12 Thread Karli Sjöberg
fre 2015-06-12 klockan 06:34 + skrev Paul Jansen:
 I have not coded much python, but I'm having a go at trying to get a
 vdsm hook script working.
 
 
 What it is supposed to do is look for a controller of model
 'virtio-scsi' in the domxml and change the model to 'ich9-ahci'.

Haven´t looked at the code, but I have a silly question. Are you sure
the VM is configured with virtio-scsi and not virtio-blk? Could be one
of those d'oh! moments...

/K

 
 I've named the script '50_change_scsi_controller' and have placed it
 in '/usr/libexec/vdsm/hooks/before_vm_start' on the one (and only)
 host in the cluster where I'm doing this testing.  I've set the perms
 to 755.
 I've also added the custom property to my engine like so:
 engine-config -s UserDefinedVMProperties='change_scsi_controller=.*'
 --cver=3.5
 I've restarted the ovirt-engine like so 'service ovirt-engine
 restart' , and can now see the custom property in the GUI config for a
 powered off VM that is set to boot up into my cluster.  I've put a
 string into the 'change_scsi_controller' property and booted up the
 VM.
 The scsi controller model is not changed from 'virtio-scsi' to
 'ich9-ahci'
 
  
 On the host when I look at '/var/log/vdsm/vdsm.log' I can see tha tthe
 hook is getting called, but I'm not sure what I need to look at here
 specifically?  Can anyone assist and possibly tell me what is wrong
 here? Is it an issue with my python hook script?
 
 
 I'm wanting to test an EL5 based install with a scsi disk, and EL5
 does not support virtio-scsi.
 
 I should also mention that I know there are issues with migrating VMs
 that use the ich9-ahci sata controller and I don't plan to use this
 long term.  If I do need this functionality I'll likely set up some
 Fedora hosts in another cluster and use one of the other scsi
 controller types instead - ie: 'lsi53c810', 'lsi53c895a', 'megasas',
 'pvscsi'.
 
 
 Here's the hook script code:
 
 
 
 
 #!/usr/bin/python
  
 import os
 import hooking
  
 def main():
  
 if hooking.tobool(os.environ.get('change_scsi_controller')):
 newscsiadapter = hooking.read_json()
 domxml = hooking.read_domxml()
 
 for controller in domxml.getElementsByTagName('controller'):
 filterValue = controller.getAttribute('model')
 if filterValue == 'virtio-scsi':
 filterValue.setAttribute('model','ich9-ahci')
 
 hooking.write_domxml(domxml)
 
 
 if __name__ == '__main__':
 main()
 
 
 ___
 Users mailing list
 Users@ovirt.org
 http://lists.ovirt.org/mailman/listinfo/users

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] [Users] Compiling ovirt-guest-agent on FreeBSD

2015-06-11 Thread Karli Sjöberg

Den 11 jun 2015 4:42 em skrev Vinzenz Feenstra vfeen...@redhat.com:

 On 05/27/2015 10:39 AM, Alexandr Krivulya wrote:
  02.02.2015 12:57, Karli Sjöberg пишет:
  On Sat, 2015-01-31 at 23:54 +0200, Alexandr Krivulya wrote:
  19.08.2013 13:21, Karli Sjöberg пишет:
 
  mån 2013-08-19 klockan 12:11 +0200 skrev Vinzenz Feenstra:
  On 08/19/2013 10:01 AM, Karli Sjöberg wrote:
 
  mån 2013-08-19 klockan 09:53 +0200 skrev Michal Skrivanek:
  On Aug 19, 2013, at 09:41 , Karli Sjöberg karli.sjob...@slu.se 
  wrote:
 
  Hi!
 
  As part of a template I´m preparing, I´m wondering how to compile 
  the agent with just the basics included. I´ve tried running like:
 
  OPTIONS='
  --without-gdm-plugin --without-gdm2-plugin  --without-kdm-plugin 
  --without-pam-ovirt-cred
  --with-gdm-plugin=no --with-gdm2-plugin=no --with-kdm-plugin=no 
  --with-pam-ovirt-cred=no
  --disable-gdm-plugin --disable-gdm2-plugin --disable-kdm-plugin 
  --disable-pam-ovirt-cred
  --enable-gdm-plugin=no --enable-gdm2-plugin=no 
  --enable-kdm-plugin=no --enablepam-ovirt-cred-=no'
 
  # ./configure ${OPTIONS}
 
  Regardless of how I try, it just responds:
  configure: WARNING: unrecognized options: ${OPTIONS}
 
  I took the package from the official oVirt.org repo, src file:
  ovirt-guest-agent-1.0.6.tar.bz2
 
  What am I doing wrong?
  Hi
  the parameters are gdm, kdm and sso, set them to no
  I don´t get it, it doesn´t seem to care:
 
  # ./configure --without-gdm
  # ./configure --with-gdm=no
  # ./configure --enable-gdm=no
  # ./configure --disable-gdm
  # ./configure --without-gdm --with-gdm=no --enable-gdm=no
  --disable-gdm
  configure: WARNING: unrecognized options: --without-gdm,
  --with-gdm, --enable-gdm, --disable-gdm
  this feature of disabling it was introduced to ovirt-guest-agent
  in 1.0.8
 
  Try this one:
  http://evilissimo.fedorapeople.org/releases/ovirt-guest-agent/1.0.8/ovirt-guest-agent-1.0.8.1.tar.bz2
 
  ./configure --without-sso --prefix=/usr
  You know what, sorry about the noise, because it seems as if
  virtio-serial isn´t even available on FreeBSD, so it´s moot
  anyway... Should probably have looked that up before even getting
  started;)
 
  But besides the fact that it won´t work until that´s sorted, I can
  at least say that it configured, compiled and installed OK using
  René´s suggestion, cloning from git and building from there.
  Hello!
  Now when virtio_console(4) driver available in CURRENT does anyone
  works on porting ovirt-guest-agent to FreeBSD?
  plain text document attachment (ATT1)
  ___
  Users mailing list
  Users@ovirt.org
  http://lists.ovirt.org/mailman/listinfo/users
  I haven´t tested anything since last time but good to know someone doing
  something:) I can imagine the guest agent would need some tweeking to
  get it running as well:
 
  http://lists.freebsd.org/pipermail/freebsd-emulation/2013-April/010569.html
  The VirtIO spec is written with mostly Linux in mind and usually takes
  varying amounts of extra effort to adapt to FreeBSD.
 
 
  I have successfully build and run guest agent on FreeBSD-Current. It
  provides a few information (for example fqdn and logged users) into
  admin portal, but all other requires rewriting GuestAgentLinux2.py or
  implementing it as separate module. I have no experience in python and
  programming itself, but implementing some simple features may be quiet
  easy. Can anyone help with it?
 Sorry for the late reply, now I didn't notice that the drivers are now
 available, I will be looking into supporting FreeBSD for the guest agent
 then.

Here's an excellent place to start:)
https://www.freebsd.org/doc/en_US.ISO8859-1/books/porters-handbook/

/K


 Thanks for the heads up :-)
  ___
  Users mailing list
  Users@ovirt.org
  http://lists.ovirt.org/mailman/listinfo/users


 --
 Regards,

 Vinzenz Feenstra | Senior Software Engineer
 RedHat Engineering Virtualization R  D
 Phone: +420 532 294 625
 IRC: vfeenstr or evilissimo

 Better technology. Faster innovation. Powered by community collaboration.
 See how it works at redhat.com

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] storage issue's with oVirt 3.5.1 + Nexenta NFS

2015-04-22 Thread Karli Sjöberg
On Wed, 2015-04-22 at 11:54 +0200, Maikel vd Mosselaar wrote:
 Yes we are aware of that, problem is it's running production so not very 
 easy to change the pool.
 
 On 04/22/2015 11:48 AM, InterNetX - Juergen Gotteswinter wrote:
  i expect that you are aware of the fact that you only get the write
  performance of a single disk in that configuration? i whould drop that
  pool configuration, drop the spare drives and go for a mirror pool.

^ What he said:)

That, or if you have more space to add another 2 disks and use them plus
the spare drives to add a second raidz(1|2|3) vdev.

What drives do you use for data, log and cache?

/K

 
  Am 22.04.2015 um 11:39 schrieb Maikel vd Mosselaar:
 pool: z2pool
state: ONLINE
scan: scrub canceled on Sun Apr 12 16:33:38 2015
  config:
 
   NAME   STATE READ WRITE CKSUM
   z2pool ONLINE   0 0 0
 raidz1-0 ONLINE   0 0 0
   c0t5000C5004172A87Bd0  ONLINE   0 0 0
   c0t5000C50041A59027d0  ONLINE   0 0 0
   c0t5000C50041A592AFd0  ONLINE   0 0 0
   c0t5000C50041A660D7d0  ONLINE   0 0 0
   c0t5000C50041A69223d0  ONLINE   0 0 0
   c0t5000C50041A6ADF3d0  ONLINE   0 0 0
   logs
 c0t5001517BB2845595d0ONLINE   0 0 0
   cache
 c0t5001517BB2847892d0ONLINE   0 0 0
   spares
 c0t5000C50041A6B737d0AVAIL
 c0t5000C50041AC3F07d0AVAIL
 c0t5000C50041AD48DBd0AVAIL
 c0t5000C50041ADD727d0AVAIL
 
  errors: No known data errors
 
 
  On 04/22/2015 11:17 AM, Karli Sjöberg wrote:
  On Wed, 2015-04-22 at 11:12 +0200, Maikel vd Mosselaar wrote:
  Our pool is configured as Z1 with ZIL (normal SSD), the sync parameter
  is on the default setting (standard) so sync is on.
  # zpool status ?
 
  /K
 
  When the issue happens oVirt event viewer shows indeed latency warnings.
  Not always but most of the time this will be followed by an i/o storage
  error linked to random VMs and they will be paused when that happens.
 
  All the nodes use mode 4 bonding. The interfaces on the nodes don't show
  any drops or errors, i checked 2 of the VMs that got paused the last
  time it happened they have dropped packets on their interfaces.
 
  We don't have a subscription with nexenta (anymore).
 
  On 04/21/2015 04:41 PM, InterNetX - Juergen Gotteswinter wrote:
  Am 21.04.2015 um 16:19 schrieb Maikel vd Mosselaar:
  Hi Juergen,
 
  The load on the nodes rises far over 200 during the event. Load on
  the
  nexenta stays normal and nothing strange in the logging.
  ZFS + NFS could be still the root of this. Your Pool Configuration is
  RaidzX or Mirror, with or without ZIL? The sync Parameter of your ZFS
  Subvolume which gets exported is kept default on standard ?
 
  http://christopher-technicalmusings.blogspot.de/2010/09/zfs-and-nfs-performance-with-zil.html
 
 
  Since Ovirt acts very sensible about Storage Latency (throws VM into
  unresponsive or unknown state) it might be worth a try to do zfs set
  sync=disabled pool/volume to see if this changes things. But be aware
  that this makes the NFS Export vuln. against dataloss in case of
  powerloss etc, comparable to async NFS in Linux.
 
  If disabling the sync setting helps, and you dont use a seperate ZIL
  Flash Drive yet - this whould be very likely help to get rid of this.
 
  Also, if you run a subscribed Version of Nexenta it might be helpful to
  involve them.
 
  Do you see any messages about high latency in the Ovirt Events Panel?
 
  For our storage interfaces on our nodes we use bonding in mode 4
  (802.3ad) 2x 1Gb. The nexenta has 4x 1Gb bond in mode 4 also.
  This should be fine, as long as no Node uses Mode0 / Round Robin which
  whould lead to out of order TCP Packets. The Interfaces themself dont
  show any Drops or Errors - on the VM Hosts as well as on the Switch
  itself?
 
  Jumbo Frames?
 
  Kind regards,
 
  Maikel
 
 
  On 04/21/2015 02:51 PM, InterNetX - Juergen Gotteswinter wrote:
  Hi,
 
  how about Load, Latency, strange dmesg messages on the Nexenta ?
  You are
  using bonded Gbit Networking? If yes, which mode?
 
  Cheers,
 
  Juergen
 
  Am 20.04.2015 um 14:25 schrieb Maikel vd Mosselaar:
  Hi,
 
  We are running ovirt 3.5.1 with 3 nodes and seperate engine.
 
  All on CentOS 6.6:
  3 x nodes
  1 x engine
 
  1 x storage nexenta with NFS
 
  For multiple weeks we are experiencing issues of our nodes that
  cannot
  access the storage at random moments (atleast thats what the nodes
  think).
 
  When the nodes are complaining about a unavailable storage then
  the load
  rises up to +200 on all three nodes, this causes that all running
  VMs
  are unaccessible. During this process oVirt event viewer shows
  some i/o
  storage

Re: [ovirt-users] storage issue's with oVirt 3.5.1 + Nexenta NFS

2015-04-22 Thread Karli Sjöberg
On Wed, 2015-04-22 at 11:12 +0200, Maikel vd Mosselaar wrote:
 Our pool is configured as Z1 with ZIL (normal SSD), the sync parameter 
 is on the default setting (standard) so sync is on.

# zpool status ?

/K

 
 When the issue happens oVirt event viewer shows indeed latency warnings. 
 Not always but most of the time this will be followed by an i/o storage 
 error linked to random VMs and they will be paused when that happens.
 
 All the nodes use mode 4 bonding. The interfaces on the nodes don't show 
 any drops or errors, i checked 2 of the VMs that got paused the last 
 time it happened they have dropped packets on their interfaces.
 
 We don't have a subscription with nexenta (anymore).
 
 On 04/21/2015 04:41 PM, InterNetX - Juergen Gotteswinter wrote:
  Am 21.04.2015 um 16:19 schrieb Maikel vd Mosselaar:
  Hi Juergen,
 
  The load on the nodes rises far over 200 during the event. Load on the
  nexenta stays normal and nothing strange in the logging.
  ZFS + NFS could be still the root of this. Your Pool Configuration is
  RaidzX or Mirror, with or without ZIL? The sync Parameter of your ZFS
  Subvolume which gets exported is kept default on standard ?
 
  http://christopher-technicalmusings.blogspot.de/2010/09/zfs-and-nfs-performance-with-zil.html
 
  Since Ovirt acts very sensible about Storage Latency (throws VM into
  unresponsive or unknown state) it might be worth a try to do zfs set
  sync=disabled pool/volume to see if this changes things. But be aware
  that this makes the NFS Export vuln. against dataloss in case of
  powerloss etc, comparable to async NFS in Linux.
 
  If disabling the sync setting helps, and you dont use a seperate ZIL
  Flash Drive yet - this whould be very likely help to get rid of this.
 
  Also, if you run a subscribed Version of Nexenta it might be helpful to
  involve them.
 
  Do you see any messages about high latency in the Ovirt Events Panel?
 
  For our storage interfaces on our nodes we use bonding in mode 4
  (802.3ad) 2x 1Gb. The nexenta has 4x 1Gb bond in mode 4 also.
  This should be fine, as long as no Node uses Mode0 / Round Robin which
  whould lead to out of order TCP Packets. The Interfaces themself dont
  show any Drops or Errors - on the VM Hosts as well as on the Switch itself?
 
  Jumbo Frames?
 
  Kind regards,
 
  Maikel
 
 
  On 04/21/2015 02:51 PM, InterNetX - Juergen Gotteswinter wrote:
  Hi,
 
  how about Load, Latency, strange dmesg messages on the Nexenta ? You are
  using bonded Gbit Networking? If yes, which mode?
 
  Cheers,
 
  Juergen
 
  Am 20.04.2015 um 14:25 schrieb Maikel vd Mosselaar:
  Hi,
 
  We are running ovirt 3.5.1 with 3 nodes and seperate engine.
 
  All on CentOS 6.6:
  3 x nodes
  1 x engine
 
  1 x storage nexenta with NFS
 
  For multiple weeks we are experiencing issues of our nodes that cannot
  access the storage at random moments (atleast thats what the nodes
  think).
 
  When the nodes are complaining about a unavailable storage then the load
  rises up to +200 on all three nodes, this causes that all running VMs
  are unaccessible. During this process oVirt event viewer shows some i/o
  storage error messages, when this happens random VMs get paused and will
  not be resumed anymore (this almost happens every time but not all the
  VMs get paused).
 
  During the event we tested the accessibility from the nodes to the
  storage and it looks like it is working normal, at least we can do a
  normal
  ls on the storage without any delay of showing the contents.
 
  We tried multiple things that we thought it causes this issue but
  nothing worked so far.
  * rebooting storage / nodes / engine.
  * disabling offsite rsync backups.
  * moved the biggest VMs with highest load to different platform outside
  of oVirt.
  * checked the wsize and rsize on the nfs mounts, storage and nodes are
  correct according to the NFS troubleshooting page on ovirt.org.
 
  The environment is running in production so we are not free to test
  everything.
 
  I can provide log files if needed.
 
  Kind Regards,
 
  Maikel
 
 
  ___
  Users mailing list
  Users@ovirt.org
  http://lists.ovirt.org/mailman/listinfo/users
  ___
  Users mailing list
  Users@ovirt.org
  http://lists.ovirt.org/mailman/listinfo/users
 
 ___
 Users mailing list
 Users@ovirt.org
 http://lists.ovirt.org/mailman/listinfo/users

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] ovirt-guest-agent issue on rhel5.5

2015-02-12 Thread Karli Sjöberg
On Thu, 2015-02-12 at 11:37 +0100, Vinzenz Feenstra wrote:
 On 02/12/2015 09:21 AM, John Michael Mercado wrote:
 
  Oh, that's sad. What if i upgrade RHEL5.5 to 5.11 using yum update
  will that solved the problem?, or i just need to install a fresh
  RHEL5.11 OS?

Ahm, is 5.11  5.5? Or am I missing something?

/K

 
 Upgrade and reboot would solve the issue for you.
 
  
  On Mon, Feb 9, 2015 at 10:46 PM, Vinzenz Feenstra
  vfeen...@redhat.com wrote:
  Hi,
  
  I see now that you have reported that you're using RHEL 5.5
  unfortunately I have to tell you that the absolute minimum
  supported RHEL5 is RHEL 5.6 which comes with the kernel
  2.6.18-238 version which includes the required virtio
  drivers.
  
  Any prior RHEL5 kernel version won't work.
  
  Sorry. 
  
  
  On 02/09/2015 10:32 AM, Vinzenz Feenstra wrote:
  
   On 02/09/2015 09:46 AM, John Michael Mercado wrote:
   
Hi Vinzenz, 


Sorry for the late reply. The hosts(nodes) is running
VDSM. I tried to install ovirt-guest-agent and also
tried rhevm-guest-agent
but i still encountered the problem.
   
   This seems to be strange and I have to say that I haven't
   encountered this issue so far.
   
   Can you please run the following commands and paste the
   output:
   
   # ls -lh /dev/virtio-ports/
   # ls -lh /dev/vport*
   
   
   Thanks
   


Thanks

On Thu, Jan 29, 2015 at 11:22 PM, Vinzenz Feenstra
vfeen...@redhat.com wrote:
Hi,

@Yaniv
The guest agent is supposed to be working on
RHEL5

@John:
Are you running the guest agent on a RHEVM VM?
This is usually an error that occurs when trying
to run on a machine which is not controlled
through VDSM which controls the required virtio
channel.

Regards, 


On 01/29/2015 03:25 PM, Lev Veyde wrote:

 Hi Yaniv,
 
 
 
 I'm not sure the latest version of RHEV/oVirt
 GA will work on RHEL 5.
 
 But it's better to speak with the maintainer -
 Vinzenz Feenstra.
 
 
 
 Thanks in advance,
 Lev Veyde.
 
 
 
 
 __
 From: Yaniv Dary yd...@redhat.com
 To: John Michael Mercado
 jm.mercad...@gmail.com, Lev Veyde
 lve...@redhat.com
 Sent: Thursday, January 29, 2015 3:59:57 PM
 Subject: Re: [ovirt-users] ovirt-guest-agent
 issue on rhel5.5
 
 
 I'm pretty sure guest agent doesn't work on
 RHEL5, Lev?
 
 On 01/27/2015 04:32 AM, John Michael Mercado
 wrote:
 
 Hi All,
 
 
 I need your help. Anyone who encounter
 the below error and have the solution?
 Can you help me how to fix this?
 
 
 MainThread::INFO::2015-01-27
 
  10:22:53,247::ovirt-guest-agent::57::root::Starting oVirt guest agent
 MainThread::ERROR::2015-01-27
 
  10:22:53,248::ovirt-guest-agent::138::root::Unhandled exception in oVirt 
  guest agent!
 Traceback (most recent call last):
   File
 
  /usr/share/ovirt-guest-agent/ovirt-guest-agent.py, line 132, in ?
 agent.run(daemon, pidfile)
   File
 
  /usr/share/ovirt-guest-agent/ovirt-guest-agent.py, line 63, in run
 self.agent = LinuxVdsAgent(config)
   File
 
  

Re: [ovirt-users] ovirt-guest-agent issue on rhel5.5

2015-02-12 Thread Karli Sjöberg
On Thu, 2015-02-12 at 11:58 +0100, Vinzenz Feenstra wrote:
 On 02/12/2015 11:42 AM, Karli Sjöberg wrote:
  On Thu, 2015-02-12 at 11:37 +0100, Vinzenz Feenstra wrote:
  On 02/12/2015 09:21 AM, John Michael Mercado wrote:
 
  Oh, that's sad. What if i upgrade RHEL5.5 to 5.11 using yum update
  will that solved the problem?, or i just need to install a fresh
  RHEL5.11 OS?
  Ahm, is 5.11  5.5? Or am I missing something?
 I guess you misunderstand the fact that he wanted to know if he can just 
 update the VM or if he has to reinstall it.
 And yes 5.11  5.5

No I understood the question, I was just stupid enough to read 5.11 and
somehow thought it was like 5.1.1, like 5.1(1) :) Of course 11 is
greater than 5 :)

/K

 
  /K
 
  Upgrade and reboot would solve the issue for you.
 
  On Mon, Feb 9, 2015 at 10:46 PM, Vinzenz Feenstra
  vfeen...@redhat.com wrote:
   Hi,
   
   I see now that you have reported that you're using RHEL 5.5
   unfortunately I have to tell you that the absolute minimum
   supported RHEL5 is RHEL 5.6 which comes with the kernel
   2.6.18-238 version which includes the required virtio
   drivers.
   
   Any prior RHEL5 kernel version won't work.
   
   Sorry.
   
   
   On 02/09/2015 10:32 AM, Vinzenz Feenstra wrote:
   
On 02/09/2015 09:46 AM, John Michael Mercado wrote:
   
 Hi Vinzenz,


 Sorry for the late reply. The hosts(nodes) is running
 VDSM. I tried to install ovirt-guest-agent and also
 tried rhevm-guest-agent
 but i still encountered the problem.
   
This seems to be strange and I have to say that I haven't
encountered this issue so far.
   
Can you please run the following commands and paste the
output:
   
# ls -lh /dev/virtio-ports/
# ls -lh /dev/vport*
   
   
Thanks
   


 Thanks

 On Thu, Jan 29, 2015 at 11:22 PM, Vinzenz Feenstra
 vfeen...@redhat.com wrote:
 Hi,

 @Yaniv
 The guest agent is supposed to be working on
 RHEL5

 @John:
 Are you running the guest agent on a RHEVM VM?
 This is usually an error that occurs when trying
 to run on a machine which is not controlled
 through VDSM which controls the required virtio
 channel.

 Regards,


 On 01/29/2015 03:25 PM, Lev Veyde wrote:

  Hi Yaniv,
 
 
 
  I'm not sure the latest version of RHEV/oVirt
  GA will work on RHEL 5.
 
  But it's better to speak with the maintainer -
  Vinzenz Feenstra.
 
 
 
  Thanks in advance,
  Lev Veyde.
 
 
 
 
  __
  From: Yaniv Dary yd...@redhat.com
  To: John Michael Mercado
  jm.mercad...@gmail.com, Lev Veyde
  lve...@redhat.com
  Sent: Thursday, January 29, 2015 3:59:57 PM
  Subject: Re: [ovirt-users] ovirt-guest-agent
  issue on rhel5.5
 
 
  I'm pretty sure guest agent doesn't work on
  RHEL5, Lev?
 
  On 01/27/2015 04:32 AM, John Michael Mercado
  wrote:
 
  Hi All,
 
 
  I need your help. Anyone who encounter
  the below error and have the solution?
  Can you help me how to fix this?
 
 
  MainThread::INFO::2015-01-27
  
  10:22:53,247::ovirt-guest-agent::57::root::Starting oVirt guest agent
  MainThread::ERROR::2015-01-27
  
  10:22:53,248::ovirt-guest-agent::138::root::Unhandled exception in oVirt 
  guest agent!
  Traceback (most recent call last):
File

Re: [ovirt-users] Problem adding disk to VM

2015-02-03 Thread Karli Sjöberg
On Tue, 2015-02-03 at 10:40 +0100, Juan Jose wrote:
 Hello everybody,
 
 
 Here I attach an Add disk option screenshot to show that the disk is
 not added when I clieck OK button, nothing happen, the virtual disk
 is not added and no error is showed.
 
 
 Any suggestion,

And not just a browser caching issue? If you logout of the engine and
clear all browser caches and shut the browser down, open it back up and
log back into the engine, the disk(s) still aren´t there?

/K

 
 
 Juanjo
 
 
 On Mon, Feb 2, 2015 at 4:59 PM, Juan Jose jj197...@gmail.com wrote:
 Hello everybody,
 
 
 I have oVirt Engine Version: 3.5.0.1-1.el6 in my installation
 and when I create a new VM and try to add a virtual disk, the
 engine does not add the virtual disk when I press OK button.
 Any message is generated in engine.log file.
 
 
 Is it a bug or any can give me some light about this issue?
 
 
 Many thanks in advanced,
 
 Juanjo.
 
 
 
 plain text document attachment (ATT1)
 ___
 Users mailing list
 Users@ovirt.org
 http://lists.ovirt.org/mailman/listinfo/users

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] [Users] Compiling ovirt-guest-agent on FreeBSD

2015-02-02 Thread Karli Sjöberg
On Sat, 2015-01-31 at 23:54 +0200, Alexandr Krivulya wrote:
 19.08.2013 13:21, Karli Sjöberg пишет:
 
  mån 2013-08-19 klockan 12:11 +0200 skrev Vinzenz Feenstra: 
   On 08/19/2013 10:01 AM, Karli Sjöberg wrote:
   
mån 2013-08-19 klockan 09:53 +0200 skrev Michal Skrivanek: 
 On Aug 19, 2013, at 09:41 , Karli Sjöberg karli.sjob...@slu.se 
 wrote:
 
  Hi!
  
  As part of a template I´m preparing, I´m wondering how to compile 
  the agent with just the basics included. I´ve tried running like:
  
  OPTIONS='
  --without-gdm-plugin --without-gdm2-plugin  --without-kdm-plugin 
  --without-pam-ovirt-cred
  --with-gdm-plugin=no --with-gdm2-plugin=no --with-kdm-plugin=no 
  --with-pam-ovirt-cred=no
  --disable-gdm-plugin --disable-gdm2-plugin --disable-kdm-plugin 
  --disable-pam-ovirt-cred
  --enable-gdm-plugin=no --enable-gdm2-plugin=no 
  --enable-kdm-plugin=no --enablepam-ovirt-cred-=no'
  
  # ./configure ${OPTIONS}
  
  Regardless of how I try, it just responds:
  configure: WARNING: unrecognized options: ${OPTIONS}
  
  I took the package from the official oVirt.org repo, src file:
  ovirt-guest-agent-1.0.6.tar.bz2
  
  What am I doing wrong?
 
 Hi
 the parameters are gdm, kdm and sso, set them to no

I don´t get it, it doesn´t seem to care:

# ./configure --without-gdm
# ./configure --with-gdm=no
# ./configure --enable-gdm=no
# ./configure --disable-gdm
# ./configure --without-gdm --with-gdm=no --enable-gdm=no
--disable-gdm
configure: WARNING: unrecognized options: --without-gdm,
--with-gdm, --enable-gdm, --disable-gdm
   this feature of disabling it was introduced to ovirt-guest-agent
   in 1.0.8
   
   Try this one:
   http://evilissimo.fedorapeople.org/releases/ovirt-guest-agent/1.0.8/ovirt-guest-agent-1.0.8.1.tar.bz2
   
   ./configure --without-sso --prefix=/usr
  
  You know what, sorry about the noise, because it seems as if
  virtio-serial isn´t even available on FreeBSD, so it´s moot
  anyway... Should probably have looked that up before even getting
  started;)
  
  But besides the fact that it won´t work until that´s sorted, I can
  at least say that it configured, compiled and installed OK using
  René´s suggestion, cloning from git and building from there.
 
 Hello!
 Now when virtio_console(4) driver available in CURRENT does anyone
 works on porting ovirt-guest-agent to FreeBSD?
 plain text document attachment (ATT1)
 ___
 Users mailing list
 Users@ovirt.org
 http://lists.ovirt.org/mailman/listinfo/users

I haven´t tested anything since last time but good to know someone doing
something:) I can imagine the guest agent would need some tweeking to
get it running as well:

http://lists.freebsd.org/pipermail/freebsd-emulation/2013-April/010569.html
The VirtIO spec is written with mostly Linux in mind and usually takes
varying amounts of extra effort to adapt to FreeBSD.

/K


___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Foreman intergration

2015-02-02 Thread Karli Sjöberg
To all:

If anyone´s interested, I wrote down the process of setting up a Foreman
server from source with FreeBSD as the operating system:
https://forums.freebsd.org/threads/puppet-and-foreman-on-top-of-apache-passenger.50201/

On Fri, 2015-01-30 at 08:25 -0500, Oved Ourfali wrote:
 Not at the moment. Foreman isn't aware that the host is used as a hypervisor 
 in ovirt. Currently foreman allows to create foreman hosts in top of ovirt 
 (you can use compute resources in foreman to do that), and from the ovirt 
 side it allows you to add a new host taken from wither an existing foreman 
 host, or to bare metal provision one. In the future we plan to allow adding 
 vms through ovirt that will also be also added automatically to foreman, 
 which will allow to assign this VM to some host group in foreman, which then 
 will install different packaged, and set up stuff according to the host group 
 definition. 
 
 Details on the current integration is available at
 
 http://www.ovirt.org/Features/ForemanIntegration

Thanks for the link!

/K

 
 Oved
 On Jan 30, 2015 2:32 PM, Karli Sjöberg wrote:   Hey all!   One thing I am 
 keen on exploring is the Foreman/oVirt integration. I  have a vision were 
 that could be used to, as a first step, manage the  updating/patching of the 
 Hosts in our datacenter, and if that turns out  successful, remove our 
 current Puppet Dashboard as ENC in our main  Puppet Master and trade it in 
 for The Foreman.   The flow I imagined was to have Foreman tell oVirt 
 engine to set a Host  in Maintenance, update all packages and reboot it, 
 then when it´s back,  put it back to Active and move on to the next Host.  
  Is that something that´s been worked on?   /K  
 ___  Users mailing list  
 Users@ovirt.org  http://lists.ovirt.org/mailman/listinfo/users

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] [Users] A mobile monitoring application for oVirt

2015-02-02 Thread Karli Sjöberg
On Mon, 2015-02-02 at 09:23 +0100, Gianluca Cecchi wrote:
 On Mon, Feb 2, 2015 at 9:10 AM, Tomas Jelinek tjeli...@redhat.com
 wrote:
 
 
 
 Thank you! From the XML it seems that the size of the memory
 is bigger than the size of integer - and we are trying to
 parse it to int and it fails.
 
 @Sphoorti - could you please check if it is indeed this
 problem and provide a patch if yes?
 
 
  that is the id of c7server that causes movirt to terminate
 when trying to
  connect to it
 
 
 
 https://drive.google.com/file/d/0BwoPbcrMv8mvbmJsTFlrN2l5R00/view?usp=sharing
 
  Gianluca
 
 
 Ok, I'll test the patch when available.
 In the mean time I registered same incorrect behavior after:
 - updating my engine and y host to latest CentOS 6.6 + patches
 - updating the 3.5.0 infra to latest 3.5.1
 - using an ldap user instead of admin@internal
 
 
 BTW: what are the permissions requirements for a user on a vm in
 general to be able to see it and its status in movirt?
 
 
 One note on usability:
 using the smartphone (Samsung S2 has 4.3 display) I noticed that if I
 connect to a VM, then the notification part related to it seems
 somehow small in the bottom part of the display.
 It would be nice to have a sort of ability to enlarge or dim it, so
 that one could concentrate on vm events or vm status details depending
 on his/her needs...
 
 
 Gianluca
 
 
 
 
 
 
 
 

Similarly, coming with feedback about the app as such, I noticed that I
was constantly logging out of the engine, even after shutting the app
down, and even going through Settings - Apps - Show cached processes,
and killing it, I was still logging out over and over again until I
restarted the phone. Perhaps a button to manually connect/disconnect
would be in order?

/K

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] Foreman intergration

2015-01-30 Thread Karli Sjöberg
Hey all!

One thing I am keen on exploring is the Foreman/oVirt integration. I
have a vision were that could be used to, as a first step, manage the
updating/patching of the Hosts in our datacenter, and if that turns out
successful, remove our current Puppet Dashboard as ENC in our main
Puppet Master and trade it in for The Foreman.

The flow I imagined was to have Foreman tell oVirt engine to set a Host
in Maintenance, update all packages and reboot it, then when it´s back,
put it back to Active and move on to the next Host.

Is that something that´s been worked on?

/K
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] [Users] A mobile monitoring application for oVirt

2015-01-29 Thread Karli Sjöberg
On Thu, 2015-01-29 at 11:07 +, Karli Sjöberg wrote:
 On Thu, 2015-01-29 at 06:01 -0500, Tomas Jelinek wrote:
  
  - Original Message -
   From: Karli Sjöberg karli.sjob...@slu.se
   To: Gianluca Cecchi gianluca.cec...@gmail.com
   Cc: users users@ovirt.org
   Sent: Thursday, January 29, 2015 11:45:02 AM
   Subject: Re: [ovirt-users] [Users] A mobile monitoring application for 
   oVirt
   
   On Wed, 2015-01-28 at 19:07 +0100, Gianluca Cecchi wrote:

Il 03/apr/2014 16:37 Martin Betak mbe...@redhat.com ha scritto:

 This is still under heavy development, but first usable version can
be found at [1]

[Snip]

 feature requests and general feedback are very welcome. You can file
any issues directly at [2].

[Snip]

 [1] https://github.com/matobet/moVirt/blob/master/moVirt/moVirt.apk
 [2] https://github.com/matobet/moVirt/issues


Hello
Are the above links yet the right ones to use for apk download/install
and issue tracking in case I want to test movirt?
Thanks
Gianluca

plain text document attachment (ATT1)
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users
   
   BTW, just curious, what about Lollipop? Does it work with the same app
   or must it be specifically built for the new version?
  
  It should, but no one have tested it so far. Do you have a device with 
  Lollipop? It would be so awesome if you could test it!
 
 Yup, sure thing:) I´ll report back once I´ve tested.

No, I spoke too soon, 'the attachment was removed'. Can you upload it
somewhere and paste the link?

/K

 
 /K
 
  
   
   /K
   
   
   ___
   Users mailing list
   Users@ovirt.org
   http://lists.ovirt.org/mailman/listinfo/users
   
 
 ___
 Users mailing list
 Users@ovirt.org
 http://lists.ovirt.org/mailman/listinfo/users

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] [Users] A mobile monitoring application for oVirt

2015-01-29 Thread Karli Sjöberg
On Thu, 2015-01-29 at 06:01 -0500, Tomas Jelinek wrote:
 
 - Original Message -
  From: Karli Sjöberg karli.sjob...@slu.se
  To: Gianluca Cecchi gianluca.cec...@gmail.com
  Cc: users users@ovirt.org
  Sent: Thursday, January 29, 2015 11:45:02 AM
  Subject: Re: [ovirt-users] [Users] A mobile monitoring application for oVirt
  
  On Wed, 2015-01-28 at 19:07 +0100, Gianluca Cecchi wrote:
   
   Il 03/apr/2014 16:37 Martin Betak mbe...@redhat.com ha scritto:
   
This is still under heavy development, but first usable version can
   be found at [1]
   
   [Snip]
   
feature requests and general feedback are very welcome. You can file
   any issues directly at [2].
   
   [Snip]
   
[1] https://github.com/matobet/moVirt/blob/master/moVirt/moVirt.apk
[2] https://github.com/matobet/moVirt/issues
   
   
   Hello
   Are the above links yet the right ones to use for apk download/install
   and issue tracking in case I want to test movirt?
   Thanks
   Gianluca
   
   plain text document attachment (ATT1)
   ___
   Users mailing list
   Users@ovirt.org
   http://lists.ovirt.org/mailman/listinfo/users
  
  BTW, just curious, what about Lollipop? Does it work with the same app
  or must it be specifically built for the new version?
 
 It should, but no one have tested it so far. Do you have a device with 
 Lollipop? It would be so awesome if you could test it!

Yup, sure thing:) I´ll report back once I´ve tested.

/K

 
  
  /K
  
  
  ___
  Users mailing list
  Users@ovirt.org
  http://lists.ovirt.org/mailman/listinfo/users
  

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] [Users] A mobile monitoring application for oVirt

2015-01-29 Thread Karli Sjöberg
On Wed, 2015-01-28 at 19:07 +0100, Gianluca Cecchi wrote:
 
 Il 03/apr/2014 16:37 Martin Betak mbe...@redhat.com ha scritto:
 
  This is still under heavy development, but first usable version can
 be found at [1]
 
 [Snip]
 
  feature requests and general feedback are very welcome. You can file
 any issues directly at [2].
 
 [Snip]
 
  [1] https://github.com/matobet/moVirt/blob/master/moVirt/moVirt.apk
  [2] https://github.com/matobet/moVirt/issues
 
 
 Hello
 Are the above links yet the right ones to use for apk download/install
 and issue tracking in case I want to test movirt?
 Thanks
 Gianluca
 
 plain text document attachment (ATT1)
 ___
 Users mailing list
 Users@ovirt.org
 http://lists.ovirt.org/mailman/listinfo/users

BTW, just curious, what about Lollipop? Does it work with the same app
or must it be specifically built for the new version?

/K


___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] GlusterFS Centos 7 unable to mount NFS on gluster members

2015-01-12 Thread Karli Sjöberg
On Mon, 2015-01-12 at 20:03 -0700, Donny Davis wrote:
 Here is a quick rundown of the system, and the problem.
 
  
 
 All hosts on centOS 7 fully up to date
 
 GlusterFS is running on 6 servers, 3x2 distribute/replicate. 
 
 CTDB is running on all hosts
 
 I am unable to mount via nfs the exported volume on any of the gluster
 server members.
 
  
 
 I am able to mount, read, write, umount from any server that is not a
 gluster member. 
 
  
 
 Topology – all are hostnames that are resolvable 
 
 Gluster Members
 
 Node1
 
 Node2
 
 Node3
 
 Node4
 
 Node5
 
 Node6
 
  
 
 CTDB Virtual IP/Hostname
 
 SharedNFS
 
  
 
 Test Machine
 
 Test1
 
  
 
 Gluster Volumes
 
 Engine
 
 Data
 
  
 
 I am trying to bring up hosted-engine using nfs using the gluster
 members
 
 I run hosted-engine –deploy
 
 Nfsv3
 
  
 
 Host:/path sharednfs:/engine
 
 Error while mounting specified storage path: mount.nfs: an incorrect
 mount option was specified
 
  
 
 Ok well lets try that without using the hosted-engine script
 
  
 
 Mount –v –t nfs –o vers=3 sharednfs:/engine /tmp
 
 mount.nfs: timeout set for Mon Jan 12 22:00:08 2015
 
 mount.nfs: trying text-based options
 'vers=3,lock=Flase,addr=192.168.0.240
 
 mount.nfs: prog 13, trying vers=3, prot=6
 
 mount.nfs: trying 192.168.0.240 prog 13 vers 3 prot TCP port 2049
 
 mount.nfs: prog 15, trying vers=3, prot=17
 
 mount.nfs: portmap query retrying: RPC: Program not registered
 
 mount.nfs: prog 15, trying vers=3, prot=6
 
 mount.nfs: trying 192.168.0.240 prog 15 vers 3 prot TCP port 38465
 
 mount.nfs: mount(2): Invalid argument
 
 mount.nfs: an incorrect mount option was specified
 
  
 
  
 
 [root@node4 ~]# systemctl status rpcbind
 
 rpcbind.service - RPC bind service
 
Loaded: loaded (/usr/lib/systemd/system/rpcbind.service; enabled)
 
Active: active (running) since Mon 2015-01-12 20:01:13 EST; 1h
 57min ago
 
   Process: 1349 ExecStart=/sbin/rpcbind -w ${RPCBIND_ARGS}
 (code=exited, status=0/SUCCESS)
 
 Main PID: 1353 (rpcbind)
 
CGroup: /system.slice/rpcbind.service
 
└─1353 /sbin/rpcbind -w
 
  
 
 Jan 12 20:01:13 node4 systemd[1]: Starting RPC bind service...
 
 Jan 12 20:01:13 node4 systemd[1]: Started RPC bind service.
 
 Jan 12 21:19:22 node4 systemd[1]: Started RPC bind service.
 
  
 
  
 
 Ummm… this makes no sense…. 
 
 [root@test1 ~]# mount -v -o vers=3 -t nfs 192.168.0.240:/engine /tmp
 
 mount.nfs: timeout set for Mon Jan 12 20:02:58 2015
 
 mount.nfs: trying text-based options 'vers=3,addr=192.168.0.240
 
 mount.nfs: prog 13, trying vers=3, prot=6
 
 mount.nfs: trying 192.168.0.240 prog 13 vers 3 prot TCP port 2049
 
 mount.nfs: prog 15, trying vers=3, prot=17
 
 mount.nfs: portmap query retrying: RPC: Program not registered
 
 mount.nfs: prog 15, trying vers=3, prot=6
 
 mount.nfs: trying 192.168.0.240 prog 15 vers 3 prot TCP port 38465
 
 192.168.0.240:/engine on /tmp type nfs (rw,vers=3)
 
  
 
  
 
  
 
 On the test machine mounts the nfs share with no problems. I have
 confirmed this does not work on a single machine that is part of the
 gluster.  And any other machine is able to mount the exact same share,
 with the exact same parameters… on the exact same OS….
 
  
 
 I am at a loss

iptables? Can you ping 'sharednfs'? SSH in on it? 

/K

 
  
 
 Donny D
 
  
 
 
 plain text document attachment (ATT1)
 ___
 Users mailing list
 Users@ovirt.org
 http://lists.ovirt.org/mailman/listinfo/users



-- 

Med Vänliga Hälsningar

---
Karli Sjöberg
Swedish University of Agricultural Sciences Box 7079 (Visiting Address
Kronåsvägen 8)
S-750 07 Uppsala, Sweden
Phone:  +46-(0)18-67 15 66
karli.sjob...@slu.se
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] Merry Christmas!

2014-12-24 Thread Karli Sjöberg
And a Open New Year! :)

/K
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] NFS

2014-12-16 Thread Karli Sjöberg
On Tue, 2014-12-16 at 09:00 +0100, Koen Vanoppen wrote:
 Dear all,
 
 
 We recently added 2 hypervisors to the domain on ovirt, but for some
 reason they can't connect to the nfs share:
 When I manually try to mount the nfs-share ([root@ovirthyp01dev ~]#
 mount -vvv -t nfs -o vers=3,tcp
 progress:/media/NfsProgress 
 /rhev/data-center/mnt/progress.brusselsairport.aero\:_media_NfsProgress/)
 :
 mount: external mount: argv[3] = -v
 mount: external mount: argv[4] = -o
 mount: external mount: argv[5] = rw,vers=3,tcp
 mount.nfs: timeout set for Tue Dec 16 08:56:47 2014
 mount.nfs: trying text-based options 'vers=3,tcp,addr=10.110.56.20'
 mount.nfs: prog 13, trying vers=3, prot=6
 mount.nfs: portmap query failed: RPC: Program not registered
 mount.nfs: requested NFS version or transport protocol is not
 supported
 
 
 From vdsm.log:
 Thread-277::ERROR::2014-12-16
 08:46:32,504::storageServer::211::Storage.StorageServer.MountConnection::(connect)
  Mount failed: (32, ';mount.nfs: requested NFS version or transport protocol 
 is not supported\n')
 Traceback (most recent call last):
   File /usr/share/vdsm/storage/storageServer.py, line 209, in
 connect
 self._mount.mount(self.options, self._vfsType)
   File /usr/share/vdsm/storage/mount.py, line 223, in mount
 return self._runcmd(cmd, timeout)
   File /usr/share/vdsm/storage/mount.py, line 239, in _runcmd
 raise MountError(rc, ;.join((out, err)))
 MountError: (32, ';mount.nfs: requested NFS version or transport
 protocol is not supported\n')
 Thread-277::ERROR::2014-12-16
 08:46:32,508::hsm::2433::Storage.HSM::(connectStorageServer) Could not
 connect to storageServer
 Traceback (most recent call last):
   File /usr/share/vdsm/storage/hsm.py, line 2430, in
 connectStorageServer
 conObj.connect()
   File /usr/share/vdsm/storage/storageServer.py, line 328, in
 connect
 return self._mountCon.connect()
   File /usr/share/vdsm/storage/storageServer.py, line 217, in
 connect
 raise e
 MountError: (32, ';mount.nfs: requested NFS version or transport
 protocol is not supported\n')
 
 
 Any ideas? The rest (4 others) didn't have any problems...
 
 
 plain text document attachment (ATT1)
 ___
 Users mailing list
 Users@ovirt.org
 http://lists.ovirt.org/mailman/listinfo/users

# yum install -y nfs-utils

?



-- 

Med Vänliga Hälsningar

---
Karli Sjöberg
Swedish University of Agricultural Sciences Box 7079 (Visiting Address
Kronåsvägen 8)
S-750 07 Uppsala, Sweden
Phone:  +46-(0)18-67 15 66
karli.sjob...@slu.se
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] NFS

2014-12-16 Thread Karli Sjöberg
On Tue, 2014-12-16 at 09:30 +0100, Koen Vanoppen wrote:
 Already installed... :-) and the service nfs and rpcbind are running

Just checking:) Tried restarting the server? SELinux? Firewall?

/K

 
 
 2014-12-16 9:07 GMT+01:00 Karli Sjöberg karli.sjob...@slu.se:
 On Tue, 2014-12-16 at 09:00 +0100, Koen Vanoppen wrote:
  Dear all,
 
 
  We recently added 2 hypervisors to the domain on ovirt, but
 for some
  reason they can't connect to the nfs share:
  When I manually try to mount the nfs-share
 ([root@ovirthyp01dev ~]#
  mount -vvv -t nfs -o vers=3,tcp
 
 progress:/media/NfsProgress 
 /rhev/data-center/mnt/progress.brusselsairport.aero\:_media_NfsProgress/)
  :
  mount: external mount: argv[3] = -v
  mount: external mount: argv[4] = -o
  mount: external mount: argv[5] = rw,vers=3,tcp
  mount.nfs: timeout set for Tue Dec 16 08:56:47 2014
  mount.nfs: trying text-based options
 'vers=3,tcp,addr=10.110.56.20'
  mount.nfs: prog 13, trying vers=3, prot=6
  mount.nfs: portmap query failed: RPC: Program not registered
  mount.nfs: requested NFS version or transport protocol is
 not
  supported
 
 
  From vdsm.log:
  Thread-277::ERROR::2014-12-16
 
 
 08:46:32,504::storageServer::211::Storage.StorageServer.MountConnection::(connect)
  Mount failed: (32, ';mount.nfs: requested NFS version or transport protocol 
 is not supported\n')
  Traceback (most recent call last):
File /usr/share/vdsm/storage/storageServer.py, line 209,
 in
  connect
  self._mount.mount(self.options, self._vfsType)
File /usr/share/vdsm/storage/mount.py, line 223, in
 mount
  return self._runcmd(cmd, timeout)
File /usr/share/vdsm/storage/mount.py, line 239, in
 _runcmd
  raise MountError(rc, ;.join((out, err)))
  MountError: (32, ';mount.nfs: requested NFS version or
 transport
  protocol is not supported\n')
  Thread-277::ERROR::2014-12-16
  08:46:32,508::hsm::2433::Storage.HSM::(connectStorageServer)
 Could not
  connect to storageServer
  Traceback (most recent call last):
File /usr/share/vdsm/storage/hsm.py, line 2430, in
  connectStorageServer
  conObj.connect()
File /usr/share/vdsm/storage/storageServer.py, line 328,
 in
  connect
  return self._mountCon.connect()
File /usr/share/vdsm/storage/storageServer.py, line 217,
 in
  connect
  raise e
  MountError: (32, ';mount.nfs: requested NFS version or
 transport
  protocol is not supported\n')
 
 
  Any ideas? The rest (4 others) didn't have any problems...
 
 
 
  plain text document attachment (ATT1)
  ___
  Users mailing list
  Users@ovirt.org
  http://lists.ovirt.org/mailman/listinfo/users
 
 # yum install -y nfs-utils
 
 ?
 
 
 
 --
 
 Med Vänliga Hälsningar
 
 
 ---
 Karli Sjöberg
 Swedish University of Agricultural Sciences Box 7079 (Visiting
 Address
 Kronåsvägen 8)
 S-750 07 Uppsala, Sweden
 Phone:  +46-(0)18-67 15 66
 karli.sjob...@slu.se
 plain text document attachment (ATT1)
 ___
 Users mailing list
 Users@ovirt.org
 http://lists.ovirt.org/mailman/listinfo/users



-- 

Med Vänliga Hälsningar

---
Karli Sjöberg
Swedish University of Agricultural Sciences Box 7079 (Visiting Address
Kronåsvägen 8)
S-750 07 Uppsala, Sweden
Phone:  +46-(0)18-67 15 66
karli.sjob...@slu.se
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] how to rename disk alias on python sdk

2014-12-11 Thread Karli Sjöberg
On Thu, 2014-12-11 at 11:29 +0100, Amedeo Salvati wrote:
 Hello all,
 
 I want to rename a disk alias using python sdk, but I cannot find an
 update method for object returned from api.disks.get (like cdrom, vm,
 datacenter objects).
 
 Simplified code is:
 
 d1 = api.disks.get(id=7408f728-97e5-4b10-beb7-d9a70083797e)
 d1.get_alias()
 'FSBOVRHEL66TMP-1412_Disk1'   -- OLD alias
 d1.set_alias('PIPPO_Disk1')
 d1.get_alias()
 'PIPPO_Disk1' -- NEW alias
 
 but after that I cannot find a method like d1.update() to commit
 changes of disk object, what I miss?
 
 Best regards
 Amedeo Salvati
 plain text document attachment (ATT1)
 ___
 Users mailing list
 Users@ovirt.org
 http://lists.ovirt.org/mailman/listinfo/users

This is how we do it:

DISK_NAME = '%s_Disk1' % (VM_NAME)
try:
vm = api.vms.get(VM_NAME)
vmdisk = vm.disks.list()[0]
vmdisk.alias = '%s' % (DISK_NAME)
vmdisk.update()
except Exception as e:
raise(e)


-- 

Med Vänliga Hälsningar

---
Karli Sjöberg
Swedish University of Agricultural Sciences Box 7079 (Visiting Address
Kronåsvägen 8)
S-750 07 Uppsala, Sweden
Phone:  +46-(0)18-67 15 66
karli.sjob...@slu.se
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] ovirt-guest-agent on windows : what Python env. needed?

2014-12-04 Thread Karli Sjöberg
On Wed, 2014-12-03 at 07:44 -0500, Lev Veyde wrote:
 Hi Nicolas,
 
 If the agent is compiled with py2exe (and as you got .exe files it means it 
 was compiled with py2exe) then the executables are self contained, and you 
 don't need to install Python separately in each VM.
 
 All you need is to download and install VC runtime, which you can download 
 from here:
 http://www.microsoft.com/en-us/download/details.aspx?id=5582
 
 That should resolve the issue.
 
 BTW, we have oVirt WGT (Windows Guest Tools) RPM, with ISO which contains the 
 installer that will install the oVirt Guest Agent (including VC Runtime), as 
 well as drivers etc. automatically for you.
 
 Thanks in advance,
 Lev Veyde.
 
 - Original Message -
 From: Sandro Bonazzola sbona...@redhat.com
 To: Lev Veyde lve...@redhat.com
 Sent: Wednesday, December 3, 2014 1:49:00 PM
 Subject: Fwd: [ovirt-users] ovirt-guest-agent on windows : what Python env. 
 needed?
 
 
 
 
   Messaggio Inoltrato 
 Oggetto: [ovirt-users] ovirt-guest-agent on windows : what Python env. needed?
 Data: Wed, 03 Dec 2014 11:49:06 +0100
 Mittente: Nicolas Ecarnot nico...@ecarnot.net
 Organizzazione: Si peu...
 A: Users@ovirt.org Users@ovirt.org
 
 Hello,
 
 I read the following page :
 http://www.ovirt.org/OVirt_Guest_Agent_For_Windows
 and applied it on a server, and it ran very well.
 
 I obtained the two executables, copied them into program files
 according to the doc, along with the .ini as stated here :
 https://www.mail-archive.com/users@ovirt.org/msg18561.html
 
 - the -install, the start, and the enabling went fine
 - rebooting the server runs OK too, and the agent is seen by oVirt
 
 What I don't understand is the following sentence of
 https://github.com/oVirt/ovirt-guest-agent/blob/master/ovirt-guest-agent/README-windows.txt
 
 Optionally install py2exe if you want to build an executable file which
 doesn't require Python installation for running
 
 As I don't know python at all, I thought this was building some sort of
 self-executable binary that I could copy-paste into another VM, and do
 the same install/enable/run.
 
 And WITHOUT installing any Python environnement.
 
 I'm sorry for such a weak question, but if this is not the case, does
 that mean I have to install a Pyhton env on each of my windows VMs?
 
 BTW, I tried to copy-paste the programfiles/guestagent... into another
 server, and when running the install, it gives a message
 [in french, :(  ]
 L'application n'a pas pu démarrer car sa configuration côte-à-côte est
 incorrecte.
 That could be translated by :
 The application could not start because its side-by-side (?) config is
 incorrect.
 
 PS : Time is not anymore at launching windows_vs_linux war, but I just
 installed the guest agent on 17 _linux_ VMs in 3 minutes...
 

Haven´t tried what Lev said, using the new ISO, but as the person who
wrote the wiki page, yes, you need to install _either_ python or, as Lev
said, the VC runtime for the exe's to work on each guest.

In practice though you create a template with this installed _one_ time,
then spawn the rest of your VM's from that. But e.g. converting lots of
VM's that came from another virtualization platform you´d need the VC
runtime (or python) and exe's installed in each VM for the guest agent
to work.

Do you know there´s a third-party package manager for windows called
Chocolatey, kind of like yum for Windows? That together with Puppet
(or plain-old SCCM) makes Windows management lots easier.

/K


-- 

Med Vänliga Hälsningar

---
Karli Sjöberg
Swedish University of Agricultural Sciences Box 7079 (Visiting Address
Kronåsvägen 8)
S-750 07 Uppsala, Sweden
Phone:  +46-(0)18-67 15 66
karli.sjob...@slu.se
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Balloon driver unavailable

2014-11-11 Thread Karli Sjöberg
On Wed, 2014-11-12 at 08:35 +0100, Demeter Tibor wrote:
 Hi,
 
 
 I have a lot of centos 6 based vms and I have install ovirt guest
 agent for those vms. 
 But two vm always say The balloon driver on xxxvm on hostX is
 requested but unavailable
 I did check the virtio_balloon module are loaded on vms.
 
 
 Anybody can me help?
 
 
 Thanks in advance
 
 
 Tibor

I see that too, but only on Windows 2008 R2 guests... No one else ever
said anything about it, so I thought it was just me:)



-- 

Med Vänliga Hälsningar

---
Karli Sjöberg
Swedish University of Agricultural Sciences Box 7079 (Visiting Address
Kronåsvägen 8)
S-750 07 Uppsala, Sweden
Phone:  +46-(0)18-67 15 66
karli.sjob...@slu.se
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Fwd: Are there some general strategyhow to Iscsi strorage domain?

2014-10-23 Thread Karli Sjöberg
On Thu, 2014-10-23 at 10:11 +0200, Arman Khalatyan wrote:
 
 -- Forwarded message --
 From: Arman Khalatyan arm2...@gmail.com
 Date: Thu, Oct 23, 2014 at 10:11 AM
 Subject: Re: [ovirt-users] Are there some general strategyhow to Iscsi
 strorage domain?
 To: Trey Dockendorf treyd...@gmail.com
 
 
 Thank you Trey for sharing your setup.
 
 I have also one test system with zvol exported with iscsi over 10G.
 Unfortunately the difference in performance of zfs over raid
 controller is huge, particularly where VM running mysql. I did not try
 HBAs yet, I have only LSI/Adaptec/Areca RaidControllers they dont have
 IT mode. Maybe that can be the reason.
 
 For sure always one need to find the sweet edge between performance
 and reliability.
 
 Just for comparison with yours I get on random IO:
 zvol/16Disks/Raid2/tgtd/iscsi/10G- on VM multiple rsync -
 ~100-150MB/s, Same HW but disks with Areca RAID6 -  650MB/s stable
 even more in some cases.

Did you have separate log devices attached to the pool?

The pool´s name was '16Disks'. Did you have 16 disks in one radiz2 vdev?

/K

 
 The best performance I got on FDR iser- 
 80% of bare metal performance: 1500MB/s but ovirt goes mad claiming
 that Network and Disk devices are saturated. My VM goes time by time
 to paused state.
  It is due to that the Ovirt treating all ib devices as 10Gbit
 cards(in terms of speed).:(   
 
 
 
 
 
 
 On Thu, Oct 23, 2014 at 8:30 AM, Trey Dockendorf treyd...@gmail.com
 wrote:
 Not sure if it's a solution for you, but ZFS.  My domains are
 all ZFS (using ZFS on Linux in EL6.5) and my backup server
 receives incremental snapshots from primary storage which
 includes both NFS exports and iSCSI.  ZFS makes creating block
 devices for iSCSI very easy, and they are included in snapshot
 replication.  The replication is not HA but disaster recovery
 and off site.
 
 I've hit 300MB/s using ZFS send over IPoIB on my DDR fabric,
 which isn't amazing but not terrible for an old DDR fabric.
 
 ZFS is probably not an easy solution as requires rebuilding
 your storage, but maybe for future use or other readers it
 will give some useful ideas.
 
 - Trey
 
 On Oct 22, 2014 11:56 AM, Arman Khalatyan
 arm2...@gmail.com wrote:
 
 Hi,
 I have 2x40TB domains each are exported with
 iser/iscsi with ib and 10Gb interfaces.
 
 For sure they are RAID6 storage little bit save on
 failure. 
 But I was wondered if any way to backup those domains.
 particularly master one.
 
 
 I was thinking somehow DRBD based replication, with
 lvm snapshots etc. But it looks like overkill.
 
 Will be nice somehow to deploy replicated/HA Master
 domain with ability to backp on tapes as well.
 
 
 Any ideas are welcome.
 
 Thanks,
 
 Arman.
 
 
 
 ___
 Users mailing list
 Users@ovirt.org
 http://lists.ovirt.org/mailman/listinfo/users
 
 
 
 
 



-- 

Med Vänliga Hälsningar

---
Karli Sjöberg
Swedish University of Agricultural Sciences Box 7079 (Visiting Address
Kronåsvägen 8)
S-750 07 Uppsala, Sweden
Phone:  +46-(0)18-67 15 66
karli.sjob...@slu.se
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Fwd: Are there some general strategyhow to Iscsi strorage domain?

2014-10-23 Thread Karli Sjöberg
On Thu, 2014-10-23 at 11:09 +0200, Arman Khalatyan wrote:
 yes + 1xssd cache
 
 
 NAMESTATE READ
 WRITE CKSUM
 tankONLINE   0
 0 0
   raidz2-0  ONLINE   0
 0 0
 scsi-35000cca22be96bed  ONLINE   0
 0 0
 scsi-35000cca22bc5a20e  ONLINE   0
 0 0
 scsi-35000cca22bc515ee  ONLINE   0
 0 0
 ata-Hitachi_HUS724030ALE640_PK2A31PAG9VJXW  ONLINE   0
 0 0
 scsi-35000cca22bc1f9cf  ONLINE   0
 0 0
 scsi-35000cca22be68899  ONLINE   0
 0 0
 scsi-35000cca22bc58e1b  ONLINE   0
 0 0
 scsi-35000cca22bc4dc6b  ONLINE   0
 0 0
 scsi-35000cca22bc394ee  ONLINE   0
 0 0
 scsi-35000cca22bc10d97  ONLINE   0
 0 0
 scsi-35000cca22bc605d1  ONLINE   0
 0 0
 scsi-35000cca22bc412bf  ONLINE   0
 0 0
 scsi-35000cca22bc3f9ad  ONLINE   0
 0 0
 scsi-35000cca22bc53004  ONLINE   0
 0 0
 scsi-35000cca22bc5b8e2  ONLINE   0
 0 0
 scsi-35000cca22bc3beb3  ONLINE   0
 0 0
 cache
   sdc   ONLINE   0
 0 0

OK, two things:

1) Redo the pool layout into 2x8 disk radiz2
2) Add two really fast SSD's as mirrored log devices, like a pair of
200GB Intel DC S3700 e.g.

Do this and it may provide even better performance than the HW RAID.

But that depends on the specs of the rest of the HW; CPU and RAM mostly,
can never have enough RAM with ZFS;)

/K

 
 
 
 On Thu, Oct 23, 2014 at 10:57 AM, Karli Sjöberg karli.sjob...@slu.se
 wrote:
 On Thu, 2014-10-23 at 10:11 +0200, Arman Khalatyan wrote:
 
  -- Forwarded message --
  From: Arman Khalatyan arm2...@gmail.com
  Date: Thu, Oct 23, 2014 at 10:11 AM
  Subject: Re: [ovirt-users] Are there some general
 strategyhow to Iscsi
  strorage domain?
  To: Trey Dockendorf treyd...@gmail.com
 
 
  Thank you Trey for sharing your setup.
 
  I have also one test system with zvol exported with iscsi
 over 10G.
  Unfortunately the difference in performance of zfs over raid
  controller is huge, particularly where VM running mysql. I
 did not try
  HBAs yet, I have only LSI/Adaptec/Areca RaidControllers they
 dont have
  IT mode. Maybe that can be the reason.
 
  For sure always one need to find the sweet edge between
 performance
  and reliability.
 
  Just for comparison with yours I get on random IO:
  zvol/16Disks/Raid2/tgtd/iscsi/10G- on VM multiple rsync -
  ~100-150MB/s, Same HW but disks with Areca RAID6 -  650MB/s
 stable
  even more in some cases.
 
 Did you have separate log devices attached to the pool?
 
 The pool´s name was '16Disks'. Did you have 16 disks in one
 radiz2 vdev?
 
 /K
 
 
  The best performance I got on FDR iser-
  80% of bare metal performance: 1500MB/s but ovirt goes mad
 claiming
  that Network and Disk devices are saturated. My VM goes time
 by time
  to paused state.
   It is due to that the Ovirt treating all ib devices as
 10Gbit
  cards(in terms of speed).:(
 
 
 
 
 
 
  On Thu, Oct 23, 2014 at 8:30 AM, Trey Dockendorf
 treyd...@gmail.com
  wrote:
  Not sure if it's a solution for you, but ZFS.  My
 domains are
  all ZFS (using ZFS on Linux in EL6.5) and my backup
 server
  receives incremental snapshots from primary storage
 which
  includes both NFS exports and iSCSI.  ZFS makes
 creating block
  devices for iSCSI very easy, and they are included
 in snapshot
  replication.  The replication is not HA but disaster
 recovery
  and off site.
 
  I've hit 300MB/s using ZFS send over IPoIB on my DDR
 fabric,
  which isn't amazing but not terrible for an old DDR
 fabric.
 
  ZFS is probably not an easy solution as requires
 rebuilding

Re: [ovirt-users] overt viewer on mac osx

2014-09-24 Thread Karli Sjöberg
Bill, remember to keep users list when replying.

On Wed, 2014-09-24 at 10:16 +, Bill Dossett wrote:
 ahhh… thanks!  2 minutes was the problem… I tried associating .vv
 files with the RemoteView application, but that doesn’t work, just
 brings up the remote viewer app as though it hadn’t been given a
 console.vv file to configure it… any other way of doing this other
 than going to a terminal and starting it? 

Right, it´s been explained to me in the past:
http://lists.ovirt.org/pipermail/users/2014-January/019963.html

@Christophe

Has there been any updates to this? A newer version perhaps?

/K

 
 
 Thanks again!
 
 Bill Dossett
 Virtualisation Architect
 Pitney Bowes – Tech Central
 6 Hercules Way, 600 Leavesden Park
 Watford, WD25 7GS
 Phone (+44) (0)1923 279353 | VOIP: 54739353
 Mobile (+44) (0)7775 908612
 bill.doss...@pb.com
 www.pb.com
  
 In Engineering? Raise a ticket via Remedy Anywhere [HERE] takes less
 than a minute
  
 ManageIQ User Guide available [HERE]
  
 Check out the ManageIQ Blog for recent enhancements and
 information [HERE]
 
 On Sep 24, 2014, at 10:58 AM, Karli Sjöberg karli.sjob...@slu.se
 wrote:
 
  On Wed, 2014-09-24 at 09:28 +, Bill Dossett wrote:
   Hi Karli, 
   
   
   I am on oVirt Engine Version 3.4.3-1.el6   is that what you mean?
  
  Yepp, that´s what I meant. Well, it´s working for us, though we´re
  still
  running 3.4.1 so that may have changed in later releases?
  
  FYI, the authentication that remote-viewer is referring to is the
  ticket (random gibberish - not the engine password) that
  ovirt-engine generates every time you press for console. That ticket
  has
  a 2 min timeout, so if you download a console.vv and wait more than
  that, the ticket will experired, and you´d have to download a new
  file
  for the authentication to work. Makes sense?
  
  /K
  
   
   
   thanks
   
   Bill Dossett
   Virtualisation Architect
   Pitney Bowes – Tech Central
   6 Hercules Way, 600 Leavesden Park
   Watford, WD25 7GS
   Phone (+44) (0)1923 279353 | VOIP: 54739353
   Mobile (+44) (0)7775 908612
   bill.doss...@pb.com
   www.pb.com
   
   In Engineering? Raise a ticket via Remedy Anywhere [HERE] takes
   less
   than a minute
   
   ManageIQ User Guide available [HERE]
   
   Check out the ManageIQ Blog for recent enhancements and
   information [HERE]
   
   On Sep 24, 2014, at 10:11 AM, Karli Sjöberg karli.sjob...@slu.se
   wrote:
   
On Wed, 2014-09-24 at 09:07 +, Bill Dossett wrote:
 Hi, 
 
 
 I got pretty excited when I found out there was a girt-viewer
 for
 mac…  if this would work, it means I could manange my ovirt
 stack
 from
 my mac without having to login to my windows VDI.
 
 
 I have downloaded and installed per the instructions - and
 then
 downloaded the console.vv file and run the command line to
 start
 the
 viewer with the console.vv - the first time it popped up and
 then
 said
 that spice needed authentication… tried my virt-engine
 password
 that
 didn’t work, hit cancel and it shut down.  Tried it again and
 now
 it
 just says it can’t determine the connection type from uri and
 I
 have
 to quit.
 
 
 I am running OSX 10.9.4 and apparently this has only been
 tested
 on
 10.9.1… hoping there is a fix to make this work, or am I doing
 something wrong?  The command I am using is
 
 
 /Applications/RemoteViewer.app/Contents/MacOS/RemoteViewer
 Downloads/console.vv
 
 and the console.vv is indeed in the Downloads dir off my home
 dir.
 
 
 Thanks
 
 
 
 Bill Dossett
 Virtualisation Architect
 Pitney Bowes – Tech Central
 6 Hercules Way, 600 Leavesden Park
 Watford, WD25 7GS
 Phone (+44) (0)1923 279353 | VOIP: 54739353
 Mobile (+44) (0)7775 908612
 bill.doss...@pb.com
 www.pb.com
 
 In Engineering? Raise a ticket via Remedy Anywhere [HERE]
 takes
 less
 than a minute
 
 ManageIQ User Guide available [HERE]
 
 Check out the ManageIQ Blog for recent enhancements and
 information [HERE]
 
 
 

Hey Bill!

What oVirt version are you on?



-- 

Med Vänliga Hälsningar

---
Karli Sjöberg
Swedish University of Agricultural Sciences Box 7079 (Visiting
Address
Kronåsvägen 8)
S-750 07 Uppsala, Sweden
Phone:  +46-(0)18-67 15 66
karli.sjob...@slu.se
   
   
   
   
   __
   
  
  
  
  -- 
  
  Med Vänliga Hälsningar
  
  ---
  Karli Sjöberg
  Swedish University of Agricultural Sciences Box 7079 (Visiting
  Address
  Kronåsvägen 8)
  S-750 07 Uppsala, Sweden
  Phone:  +46-(0

Re: [ovirt-users] Question on network and boding I think!

2014-09-10 Thread Karli Sjöberg
On Wed, 2014-09-10 at 10:23 +, Bill Dossett wrote:
 Hi – I am a complete newb at Ovirt, but have setup my Ovirt manager
 and a host and connected them together.
 
  
 
 I am basically looking to replicate in my lab with Ovirt what a simple
 VMware installation is doing.
 
  
 
 I would like a single network or in vmware terms a vswitch, with two
 network cards in the node, both connected to trunked ports so that I
 can create port groups with different vlans, one for management, and
 one for VMs and possibly a DMZ vlan.
 
  
 
 I have tried bonding the network interfaces, but there is also a
 bridge option and I don’t know what that does.  I have read the ovirt
 docs on bonded interfaces and they are a little bit terse to actually
 get me started on this.
 
  
 
 If there is a better guide, or simple explanation to get me over this
 hurdle I would appreciate it.  Sorry for all the vmware terms as well,
 but I have worked with vmware for many years and it’s the only virtual
 environment I know really well – but with their pricing models, I
 really need to start looking around now! 
 
  
 
 Thanks very much!
 
  
 
 Bill Dossett
 
 Virtualisation Architect
 
 
 Pitney Bowes – Tech Central
 
 6 Hercules Way, 600 Leavesden Park
 
 Watford, WD25 7GS
 
 
 Phone(+44) (0)1923 279353 | VOIP: 54739353
 
 Mobile(+44) (0)7775 908612
 
 
 bill.doss...@pb.com
 
 www.pb.com 
 
  
 
 In Engineering?Raise a ticket via Remedy Anywhere [HERE]takes less
 than a minute
 
 
 
  
 
 ManageIQ User Guide available [HERE]
 
  
 
 Check out the ManageIQ Blog for recent enhancements and information
 [HERE]
 
  
 
  
 
 
 
 
 __
 
Hi Bill,

have you read this?

http://www.ovirt.org/Bonding_VLAN_Bridge


-- 

Med Vänliga Hälsningar

---
Karli Sjöberg
Swedish University of Agricultural Sciences Box 7079 (Visiting Address
Kronåsvägen 8)
S-750 07 Uppsala, Sweden
Phone:  +46-(0)18-67 15 66
karli.sjob...@slu.se
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] VM Deployment By Template

2014-08-27 Thread Karli Sjöberg

 
  Thanks,
  Punit
 
 
  On Mon, Aug 25, 2014 at
 5:42 PM, Punit Dambiwal
   hypu...@gmail.com
 mailto:hypu...@gmail.com
 mailto:hypu...@gmail.com
 mailto:hypu...@gmail.com
 
  mailto:hypu...@gmail.com
 mailto:hypu...@gmail.com
 
 mailto:hypu...@gmail.com
 mailto:hypu...@gmail.com wrote:
  Hi All,
 
  I have some questions
 regarding the VM deployment
  through OS
   template...
 
  1. I have imported centos
 template from openstack
  glance (the
   actual size of the template is
 16GB but used is
 1GB)...now my
   question is if i deploy the new
 VM with this
 template,the
  process
   will copy the whole 16GB or just
 1 GB to create
 the new VM ??
 
  2. I find disk size can not
 modify at the
 time of VM
   provisioning,is there any way to
 modify the VM
 disk size ??
 
  Thanks,
  Punit
 


 
 
 
 
 
 
 
 
 
 



-- 

Med Vänliga Hälsningar

---
Karli Sjöberg
Swedish University of Agricultural Sciences Box 7079 (Visiting Address
Kronåsvägen 8)
S-750 07 Uppsala, Sweden
Phone:  +46-(0)18-67 15 66
karli.sjob...@slu.se
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Storage Domain used space strangeness

2014-07-15 Thread Karli Sjöberg

Den 15 jul 2014 22:28 skrev Colby Westerburg cwesterb...@gmail.com:

 [root@jmini08 ~]# zfs list -t snapshot
 no datasets available

 [root@jmini07 ~]# df -h
 FilesystemSize  Used Avail Use% Mounted on
 10.6.2.34:/data   914G   51G  864G   6% 
 /rhev/data-center/mnt/10.6.2.34:_data

 [root@jmini08 ~]# ifconfig | grep inet addr
   inet addr:10.6.2.34  Bcast:10.6.15.255  Mask:255.255.240.0

 --
 Colby Westerburg
 cwesterb...@gmail.com

OK, so everyone at least agrees that 50GB seems to be used. From the storage, 
run:
# du -hs /data

/K


 On July 15, 2014 at 2:43:57 PM, Karli Sjöberg (karli.sjob...@slu.se) wrote:


 Den 15 jul 2014 21:31 skrev urthmover urthmo...@gmail.com:
 
  It might be a result of running the zfs filesystem on the disks that the 
  storage domain is using.  Any guidance is greatly appreciated.

 Snapshots?
 # zfs list -t snapshot

 What does the hosts that are mouting think? If you log into one of them and 
 run:
 # df -h

 /K

 
  [root@jmini08 ~]# mount | grep data-pool
  data-pool on /data type zfs (rw,xattr)
 
  [root@jmini08 ~]# df -h /data
  Filesystem  Size  Used Avail Use% Mounted on
  data-pool   914G   51G  864G   6% /data
 
  [root@jmini08 ~]# du -h /data
  17K /data/54ba461d-fbec-422e-9300-2f51640e5b2a/images
  2.1M /data/54ba461d-fbec-422e-9300-2f51640e5b2a/dom_md
  2.1M /data/54ba461d-fbec-422e-9300-2f51640e5b2a
  2.2M /data
 
  [root@jmini08 ~]# zpool status
pool: data-pool
   state: ONLINE
scan: none requested
  config:
 
  NAMESTATE READ WRITE CKSUM
  data-pool   ONLINE   0 0 0
   mirror-0  ONLINE   0 0 0
 sda ONLINE   0 0 0
 sdb ONLINE   0 0 0
 
  errors: No known data errors
 
  --
  urthmover
 
  On July 15, 2014 at 12:29:12 PM, urthmover (urthmo...@gmail.com) wrote:
 
  All,
  I have a storage domain that reports having 863G free.  The Total Space 
  is 913G.  Currently, there are no virtual machines using this storage 
  domain.  When I ssh into the host there is 2.2M on the top level of that 
  mount according to du.  How do I account for and reclaim the mysterious 
  space usage?
 
  --
  urthmover
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] fileserver as a guest oVirt

2014-07-13 Thread Karli Sjöberg

Den 12 jul 2014 22:49 skrev Niklas Fondberg nik...@vireone.com:



 On 12 jul 2014, at 16:57, Karli Sjöberg karli.sjob...@slu.se wrote:


 Den 12 jul 2014 15:45 skrev Niklas Fondberg nik...@vireone.com:
 
  Hi,
 
  I’m new to oVirt but I must say I am impressed!
  I am running it on a HP DL380 with an external SAS chassi.
  Linux dist is Centos 6.5 and oVirt is 3.4 running all-in-one (for now 
  until we need to have a second host).
 
  Our company (www.vireone.com) deals with system architecture for many 
  telco and media operators and is now setting up a small own datacenter for 
  our internal tests as well as our IT infrastructure.
  We are in the process of installing Zentyal for the SMB purposes on a 
  guest and it would be great to have that guest also serving a fs path 
  directory with NFS + SMB (which is semi crippled on the host after oVirt 
  installation with version 3 et.c.).
 
  Does anyone have an idea of how I can through oVirt (seen several 
  solutions using virsh and kvm) letting my Zentyal Ubuntu guest have access 
  to a host mount point or if necessary (second best) a seperate partition?
 
  Best regards
  Niklas
 

 Why not just give the guest a thin provision virtual hard drive and expand 
 it on a demand basis?

 /K

 Thanks for the advise but this would not suite us I'm afraid. It would be 
 difficult wrt incremental backups as well as host machine file-routines.



Well, going by Occam's raizor; the simplest answer is usually correct. Can't 
really tell what you mean by file-routines but backups would be well served by 
snapshots (can't get more incremental than that) and disaster recovery could be 
as easy as a rsync from inside the guest to a remote machine.

The biggest pros here is the ease of being able to setup an export domain, 
attach, export the VM, detach domain, and then attach and import to a real 
setup when the AIO starts feeling crowded later on. Thinking ahead is never a 
bad thing, no?

/K
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] fileserver as a guest oVirt

2014-07-13 Thread Karli Sjöberg

Den 13 jul 2014 17:47 skrev Niklas Fondberg nik...@vireone.com:



 From: Karli Sjöberg karli.sjob...@slu.se
 Date: Sunday 13 July 2014 14:51
 To: Niklas Fondberg nik...@vireone.com
 Cc: users@ovirt.org users@ovirt.org, Karli Sjöberg karli.sjob...@slu.se
 Subject: Re: [ovirt-users] fileserver as a guest oVirt


 Den 12 jul 2014 22:49 skrev Niklas Fondberg nik...@vireone.com:
 
 
 
  On 12 jul 2014, at 16:57, Karli Sjöberg karli.sjob...@slu.se wrote:
 
 
  Den 12 jul 2014 15:45 skrev Niklas Fondberg nik...@vireone.com:
  
   Hi,
  
   I’m new to oVirt but I must say I am impressed!
   I am running it on a HP DL380 with an external SAS chassi.
   Linux dist is Centos 6.5 and oVirt is 3.4 running all-in-one (for now 
   until we need to have a second host).
  
   Our company (www.vireone.com) deals with system architecture for many 
   telco and media operators and is now setting up a small own datacenter 
   for our internal tests as well as our IT infrastructure.
   We are in the process of installing Zentyal for the SMB purposes on a 
   guest and it would be great to have that guest also serving a fs path 
   directory with NFS + SMB (which is semi crippled on the host after 
   oVirt installation with version 3 et.c.).
  
   Does anyone have an idea of how I can through oVirt (seen several 
   solutions using virsh and kvm) letting my Zentyal Ubuntu guest have 
   access to a host mount point or if necessary (second best) a seperate 
   partition?
  
   Best regards
   Niklas
  
 
  Why not just give the guest a thin provision virtual hard drive and 
  expand it on a demand basis?
 
  /K
 
  Thanks for the advise but this would not suite us I'm afraid. It would be 
  difficult wrt incremental backups as well as host machine file-routines.
 
 

 Well, going by Occam's raizor; the simplest answer is usually correct. Can't 
 really tell what you mean by file-routines but backups would be well served 
 by snapshots (can't get more incremental than that) and disaster recovery 
 could be as easy as a rsync from inside the guest to a remote machine.

 The biggest pros here is the ease of being able to setup an export domain, 
 attach, export the VM, detach domain, and then attach and import to a real 
 setup when the AIO starts feeling crowded later on. Thinking ahead is never 
 a bad thing, no?

 /K

 Thanks for your suggestions!
 The thing also is that the performance will be very bad if we have the 25TB 
 SAS array shared for our purposes (lots of media streaming) using a virtual 
 disk.

Not that I'm trying to force my view of the world on you, but I get the feeling 
that you haven't really done any benchmarking to be able to come to any such 
conslusions. My advice would be to install bonnie++ in both Host and Guest 
and compare results. You'll perhaps be surprised just how good a virtual hard 
drive can be. And remember, it only needs to be able to handle what's coming 
over the network, so the network is the bottleneck here, not the disks.

/K

 What I am after (after more reading) is support for virtio-9p-pci 
 (http://www.linux-kvm.org/page/9p_virtio) using oVirt. Alternative is the 
 Direct LUN hook (http://www.ovirt.org/VDSM-Hooks/directlun, if I can figure 
 out how to work with hooks…)
 Any chance anybody has an answer for these questions?

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Live Migration / Snapshots- CentOS 6.5

2014-07-06 Thread Karli Sjöberg

Den 6 jul 2014 08:17 skrev Brad Bendy brad.be...@gmail.com:

 Is normal behavior a outage when a snapshot occurs? Ive got the rhev
 builds installed but when I take a snap im getting well over two
 minutes of downtime, on a VM with zero usage.

That behavior is expected, engine pauses the VM during snapshot to ensure 
consistency. Not as sure about the timeframe though; two mins for a idle VM? 
When I snap, it's a matter if seconds, but that might be your Gluster spooking. 
We use a traditional NFS server. Why not set that up and benchmark the 
difference?

/K

 The VM goes into pause
 state then, I guess the snapshot is a copy of the entire VM? I have
 not got a second host up with those rhev build to see the behavior
 when disk migrating

 Thanks

 On Sat, Jul 5, 2014 at 7:51 AM, Brad Bendy brad.be...@gmail.com wrote:
  There we go, sorry about that! Ill give these a test then. Thanks for the 
  help
 
  On Sat, Jul 5, 2014 at 7:39 AM, Karli Sjöberg karli.sjob...@slu.se wrote:
 
  Den 5 jul 2014 16:22 skrev Brad Bendy brad.be...@gmail.com:
 
 
 
  Haha, yeah never have been a Fedora fan, and nothing has changed. Is
  the only big feature im missing out on is snapshots? From what I can
  tell, and in my testing, everything else seems to work. Was deploying
  GlusterFS but without the live migration to another host that is
  somewhat defeated.
 
  VM live migration works, live _disk_ migration does not.
 
  Only way to get that is with RHEL really then?
 
  No, as I earlier pointed out, there is a place you can get the packages you
  need for CentOS:
  http://jenkins.ovirt.org/view/All/job/qemu-kvm-rhev_create-rpms_el6/lastStableBuild/
 
  You'll have to download- and force install them over the already installed
  versions of those packages on all Hosts and then it'll work.
 
  Though, next time there are updates, yum will update from the standard 
  repos
  and it just stops working again until you repeat the procedure.
 
  /K
 
 
  On Sat, Jul 5, 2014 at 7:05 AM, Karli Sjöberg karli.sjob...@slu.se
  wrote:
  
   Den 5 jul 2014 15:57 skrev Brad Bendy brad.be...@gmail.com:
  
  
  
   If I use Fedora will everything work? I had numerous issues, IIRC I
   could not even get the ovirtmgmt switch to install and a few other
   things. What version of Fedora do you recommend then?
  
   None:) We switched long ago to CentOS and have never looked back, even
   with
   these issues. Not worth the headache that is Fedora.
  
   /K
  
   Ill do another
   install and give that a whirl again.
  
   Thanks!
  
   On Fri, Jul 4, 2014 at 10:33 PM, Karli Sjöberg karli.sjob...@slu.se
   wrote:
   
Den 5 jul 2014 07:04 skrev Brad Bendy brad.be...@gmail.com:
   
Hi,
   
Ive seeing conflicting info with what version of qemu rpms are
needed
to do live migration under CentOS. It appears the stock ones will
not
work and the RHEV ones are required. All the mailing list post I see
are from 3-4 months ago, so not sure.
   
Im getting VDSGenericException: VDSErrorException: Failed to
SnapshotVDS, error = Snapshot failed, code = 48 (Failed with error
SNAPSHOT_FAILED and code 48)
   
I also saw this thread:
http://comments.gmane.org/gmane.linux.centos.general/138593
   
Ive been having issues getting those to install, but before I spent
to
much more time I wanted to really see if I was on the right track.
   
Is there a better OS choice? I first started trying with Fedora 19
and
20 and has major issues, went to CentOS 6.5 and this is the first
and
only issue so far ive ran into.
   
Thanks!
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users
   
Well, going with Fedora would at least get you the snapshots working,
if
I remember correctly, but that's not something you run in production.
As you
said, major issues.
   
For CentOS, you need special versions of certain packages, since
RedHat wants you to pay for RHEV, they have chosen to cripple the
standard
packages so those features won't work:
http://lists.ovirt.org/pipermail/devel/2014-June/007735.html
   
And here you can find the packages you need:
   
   
http://jenkins.ovirt.org/view/All/job/qemu-kvm-rhev_create-rpms_el6/lastStableBuild/
   
/K
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Live Migration / Snapshots- CentOS 6.5

2014-07-05 Thread Karli Sjöberg

Den 5 jul 2014 15:57 skrev Brad Bendy brad.be...@gmail.com:

 If I use Fedora will everything work? I had numerous issues, IIRC I
 could not even get the ovirtmgmt switch to install and a few other
 things. What version of Fedora do you recommend then?

None:) We switched long ago to CentOS and have never looked back, even with 
these issues. Not worth the headache that is Fedora.

/K

 Ill do another
 install and give that a whirl again.

 Thanks!

 On Fri, Jul 4, 2014 at 10:33 PM, Karli Sjöberg karli.sjob...@slu.se wrote:
 
  Den 5 jul 2014 07:04 skrev Brad Bendy brad.be...@gmail.com:
 
  Hi,
 
  Ive seeing conflicting info with what version of qemu rpms are needed
  to do live migration under CentOS. It appears the stock ones will not
  work and the RHEV ones are required. All the mailing list post I see
  are from 3-4 months ago, so not sure.
 
  Im getting VDSGenericException: VDSErrorException: Failed to
  SnapshotVDS, error = Snapshot failed, code = 48 (Failed with error
  SNAPSHOT_FAILED and code 48)
 
  I also saw this thread:
  http://comments.gmane.org/gmane.linux.centos.general/138593
 
  Ive been having issues getting those to install, but before I spent to
  much more time I wanted to really see if I was on the right track.
 
  Is there a better OS choice? I first started trying with Fedora 19 and
  20 and has major issues, went to CentOS 6.5 and this is the first and
  only issue so far ive ran into.
 
  Thanks!
  ___
  Users mailing list
  Users@ovirt.org
  http://lists.ovirt.org/mailman/listinfo/users
 
  Well, going with Fedora would at least get you the snapshots working, if I 
  remember correctly, but that's not something you run in production. As you 
  said, major issues.
 
  For CentOS, you need special versions of certain packages, since RedHat 
  wants you to pay for RHEV, they have chosen to cripple the standard 
  packages so those features won't work:
  http://lists.ovirt.org/pipermail/devel/2014-June/007735.html
 
  And here you can find the packages you need:
  http://jenkins.ovirt.org/view/All/job/qemu-kvm-rhev_create-rpms_el6/lastStableBuild/
 
  /K
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


<    1   2   3   4   5   >