| Posted | Nick | Remark | |
|---|---|---|---|
| #openstack-nova - 2020-03-25 | |||
| 22:05:06 | dansmith | ...because we don't have a way to tell those services about the upper mq like we do for the upper db | |
| 22:05:53 | melwitt | right. yeah, I do understand that. maybe I was thinking back to before we had alternate hosts and became able to reschedule without sharing a MQ | |
| 22:06:29 | dansmith | well, yeah, the alternate hosts thing was the only way we could reschedule without adding a similar upcall | |
| 22:06:34 | melwitt | and had tied that to the late affinity check in my head. I dunno | |
| 22:06:36 | dansmith | for the same reason | |
| 22:06:47 | dansmith | well, it's the same thing of course | |
| 22:07:08 | dansmith | it was just easier to solve that with pre-populating some alternates to chew through, whereas the affinity check is not so easy | |
| 22:07:11 | melwitt | oh ... guh | |
| 22:08:22 | openstackgerrit | Ghanshyam Mann proposed openstack/nova master: Introduce scope_types in os-instance-usage-audit-log https://review.opendev.org/715082 | |
| 22:20:45 | melwitt | dansmith: I think what confused me was that prior to alternate hosts, you needed to be able to access the scheduler's MQ to reschedule (right?) ... so an upcall to another MQ. and I didn't process that the late affinity check does not involve needing to upcall to another MQ to work, it only needs to upcall to the API DB | |
| 22:21:47 | dansmith | melwitt: yes, (re)schedule is an rpc call, whereas the affinity check is just a db operation | |
| 22:22:18 | melwitt | right, ok | |
| 22:37:41 | openstackgerrit | Ghanshyam Mann proposed openstack/nova master: Add new default roles in os-instance-usage-audit-log policies https://review.opendev.org/715085 | |
| 22:48:19 | openstackgerrit | Ghanshyam Mann proposed openstack/nova master: Pass the actual target in os-instance-usage-audit-log policy https://review.opendev.org/715089 | |
| 22:55:34 | openstackgerrit | Ghanshyam Mann proposed openstack/nova master: Add new default roles in os-instance-usage-audit-log policies https://review.opendev.org/715085 | |
| 22:56:52 | openstackgerrit | Ghanshyam Mann proposed openstack/nova master: Pass the actual target in os-instance-usage-audit-log policy https://review.opendev.org/715089 | |
| 23:18:31 | openstackgerrit | melanie witt proposed openstack/nova master: Add info about affinity requests to the troubleshooting doc https://review.opendev.org/715092 | |
| 23:18:52 | openstackgerrit | Merged openstack/nova master: libvirt: Use oslo.utils >= 4.1.0 to fetch format-specific image data https://review.opendev.org/710785 | |
| 23:19:00 | openstackgerrit | Merged openstack/nova master: remove DISTINCT ON SQL instruction that does nothing on MySQL https://review.opendev.org/705850 | |
| 23:20:14 | openstackgerrit | melanie witt proposed openstack/nova master: Add info about affinity requests to the troubleshooting doc https://review.opendev.org/715092 | |
| 23:49:00 | brinzhang_ | gmann: I would like we not only catch 4xx error, maybe be we also need get 500, so I would like to keep the exception name to populate the details if it is a non-nova exception | |
| 23:51:26 | brinzhang_ | gmann: for example: as a non-admin, iuf I created server failed because of NoValidHost(500), if I get this message, that I can try again, Otherwise I cannot get nothing useful message | |
| 23:51:39 | brinzhang_ | s/iuf/if | |
| #openstack-nova - 2020-03-26 | |||
| 00:02:54 | openstackgerrit | melanie witt proposed openstack/nova master: Add info about affinity requests to the troubleshooting doc https://review.opendev.org/715092 | |
| 00:09:28 | brinzhang_ | dansmith: I dont know what you would want to say, you mean we should use update method instead of patch method? We were disscussed in irc meetting, at the beginning I wanted to use `PUT /servers/{server_id}/os-volume_attachments/{volume_id}` to implement this feature, but more people dont agree. | |
| 00:09:35 | brinzhang_ | dansmith: Firstly, we need admin_or_owner role to execute this, but the PUT swap volume API default role is administrative. | |
| 00:09:44 | brinzhang_ | dansmith: Secondly, we should make the `volumeId` to optional in the request body, that change is to big, and many limits and changes will be add this PUT swap volume API. | |
| 00:09:48 | brinzhang_ | dansmith: From talked in the irc meetting before freeze blueprint for Ussuri, we reached a letter of agreement and adopted the alternative scheme[1] of seen-k-mooney to achieve this function. | |
| 00:09:54 | brinzhang_ | [1] https://review.opendev.org/#/c/580336/32/specs/ussuri/approved/destroy-instance-with-datavolume.rst@51 | |
| 00:10:50 | brinzhang_ | dansmith: I know you didn't participate in the irc discussion at the time, but I don't understand why we can't use the PATCH API? | |
| 00:56:37 | alex_xu | sean-k-mooney: I guess we are missing a patch for evacuate | |
| 01:44:04 | brinzhang_ | alex_xu, sean-k-mooney: I think in the libvirt we are lost the accel_info after evacuate, https://review.opendev.org/#/c/631245/62/nova/virt/libvirt/driver.py@5781 | |
| 01:45:32 | brinzhang_ | alex_xu, sean-k-mooney: when we have an evecuate a server, maybe we need try to get the accelerators info for by instance.uuid, rirht? | |
| 03:15:29 | sean-k-mooney | alex_xu: we are not planning to have all ops supported initally so evac can be added later if we block it in the final patch | |
| 03:15:44 | sean-k-mooney | but it would be good to add it sooner rather then later | |
| 06:08:56 | openstackgerrit | Luyao Zhong proposed openstack/nova master: support live migration with vpmems https://review.opendev.org/687856 | |
| 06:08:57 | openstackgerrit | Luyao Zhong proposed openstack/nova master: Track orphan instances and error migrations in resource tracker https://review.opendev.org/714653 | |
| 08:01:28 | gibi | good morning nova | |
| 08:03:48 | brinzhang_ | gibi: good morning ^^ | |
| 08:05:18 | gibi | o/ | |
| 08:05:29 | brinzhang_ | gibi: pls add this PATCH API for implement bp/destroy-instance-with-datavolume to today's agenda, I replied dansmith's comments inline, and above in irc | |
| 08:06:17 | gibi | brinzhang_: OK. Will you be able to participate or I could you update me shortly what the disagreemen is about? | |
| 08:06:33 | gibi | s/I// | |
| 08:06:39 | brinzhang_ | gibi: he seems dont want I use PATCH API to do this, but I dont want to have a change. | |
| 08:07:27 | brinzhang_ | gibi: it's too later for mee, I am not able to participate | |
| 08:07:59 | gibi | brinzhang_: OK thanks. I will raise it to find a way forward | |
| 08:09:06 | brinzhang_ | I think this PATCH reched in the irc meeting, without good reason, I hope it will not stop it from moving forward. | |
| 08:10:09 | brinzhang_ | gibi: you can see the irc log above, at 8:09:27-8:10:50 | |
| 08:10:10 | gibi | I have to, and I will, read back on the disagreement | |
| 08:10:21 | brinzhang_ | gibi: thanks ^^ | |
| 08:13:29 | brinzhang_ | gibi: for bp/action-event-fault-details https://review.opendev.org/#/c/694430/, gmann agreed to add the new policy, but he want we limit it in 4xx error code, I think we also need expose 500 (novalid host exception) to the non-admin if we changed the default policy | |
| 08:13:54 | brinzhang_ | gibi: you can review https://review.opendev.org/#/c/694430/, thanks | |
| 08:19:01 | gibi | brinzhang_: I will | |
| 09:56:45 | gibi | gmann, brinzhang_: responeded in https://review.opendev.org/#/c/694430/ | |
| 10:14:32 | brinzhang_ | gibi: thanks, the new policy mainly facilitates us to expose the 'details' information to non-admin. We can change it by modifying the default policy check_str. This has been agreed with gmann. Last night at 15:00 UTC in openstac-nova channel discussion . | |
| 10:14:44 | openstackgerrit | Marcin Juszkiewicz proposed openstack/nova master: Add default cpu model for AArch64 https://review.opendev.org/709494 | |
| 10:15:23 | hrw | kashyap: took your comments and applied | |
| 10:15:42 | kashyap | hrw: Hiya; will look | |
| 10:15:46 | kashyap | Thanks! | |
| 10:16:10 | gibi | brinzhang_: yeah I'd like to have the new policy to control the exposure of the 'details' field | |
| 10:16:26 | brinzhang_ | if we re-using the BASE_POLICY_NAME% 'events' policy, we will difficult to distinguish whether 'traceback' or 'details' expose to non-admin | |
| 10:16:35 | brinzhang_ | gibi: yeah, thanks | |
| 10:17:11 | brinzhang_ | gibi: now gmann want we shuold just catch 4xx error to populate the 'details' | |
| 10:18:09 | brinzhang_ | gibi: But I think we also need 500 error, that the non-admin can have a try as soon as possible | |
| 10:18:18 | luyao | stephenfin: Hi, I have addressed alex_xu's comments. :) https://review.opendev.org/#/c/687856 | |
| 10:18:47 | gibi | yeah, I want to expose information, including NoValidHost, but I don't want to collect every possible error to whitelist them. | |
| 10:18:59 | brinzhang_ | as you said in commnets, information leakage is inevitable. Since the administrator chooses to modify the default policy, he will accept the change. | |
| 10:19:09 | gibi | brinzhang_: exactly | |
| 10:19:50 | brinzhang_ | gibi: yeah, we are same, wait for gmann check, he has -1 on the patch | |
| 10:20:02 | hrw | kashyap: turns out that we need that patch to get kolla-ansible CI running ;( | |
| 10:22:53 | nightmare_unreal | hey how can i create fake cells and create instance in them for functional test. I am looking at nova/tests/functional/test_nova_manage.py | |
| 10:24:28 | luyao | lyarwood: about vpmem cleanup during live migration, we can check migration_context but not adding a new flag to migrate_data obj, you can look at https://review.opendev.org/#/c/687856/20/nova/compute/manager.py@8197 | |
| 10:24:58 | kashyap | hrw: "That patch" is the above default CPU model thing? | |
| 10:26:24 | kashyap | hrw: Looks good to me; FWIW; once Zuul blesses it, then it can go through | |
| 10:27:49 | gibi | brinzhang_: responed in the PATCH API discussion in the review and added the topic for the nova meeting accordingly | |
| 10:28:01 | hrw | kashyap: yep | |
| 10:28:23 | hrw | kashyap: or I am going to lose my sanity (as usual when touching nova/libvirt/qemu at once) | |
| 10:28:47 | brinzhang_ | gibi: thanks, I will see after dinner ^^ | |
| 10:29:12 | gibi | brinzhang_: ack, have a nice dinner | |
| 10:29:47 | nightmare_unreal | nvm found it | |
| 10:49:46 | openstackgerrit | Merged openstack/nova master: Add Cyborg device profile groups to request spec. https://review.opendev.org/631243 | |
| 11:11:29 | openstackgerrit | jayaditya gupta proposed openstack/nova master: Support for nova-manage placement heal_allocations --cell https://review.opendev.org/714459 | |
| 11:33:47 | openstackgerrit | Lee Yarwood proposed openstack/nova master: workarounds: Add option to disable native LUKSv1 decryption by QEMU https://review.opendev.org/708030 | |
| 11:33:48 | openstackgerrit | Lee Yarwood proposed openstack/nova master: workarounds: Connect RBD volumes to the compute host as block devices https://review.opendev.org/708029 | |
| 11:47:47 | lyarwood | stephenfin: https://review.opendev.org/#/c/714956/ - would you mind hitting this? | |
| 11:47:56 | stephenfin | sure | |
| 11:48:15 | lyarwood | luyao: ack sorry swamped with downstream things, I'll get back to that review today | |
| 11:49:27 | luyao | lyarwood: thanks :) | |
| 12:07:33 | openstackgerrit | Lee Yarwood proposed openstack/nova master: libvirt: Break up get_disk_mapping within blockinfo https://review.opendev.org/714962 | |
| 12:09:06 | hrw | kashyap: zuul gave +1 for https://review.opendev.org/#/c/709494/ - bumping to +2+w? | |
| 12:12:22 | kashyap | hrw: I am a mere mortal, can't +2 :) | |
| 12:12:35 | kashyap | gibi: ^ Mind having a gander at hrw's completed patch? | |
| 12:12:51 | gibi | kashyap, hrw: sure I will try | |
| 12:13:14 | kashyap | gibi: At its core, it is setting a sensible default CPU model for AArch64 VMs | |
| 12:13:35 | kashyap | gibi: We arrived at the sensible default (CPU model 'max') after consulting the QEMU AArch64 maintainers. | |
| 12:14:15 | sean-k-mooney | kashyap: you could argue that min would be a better sensible default for live migration but max is overall a better default | |
| 12:14:30 | sean-k-mooney | so ya it makes sense even if its not the safest default | |
| 12:14:30 | gibi | kashyap: ack. thanks for bringing in the experts on that | |
| 12:14:32 | kashyap | "min"? There's no such thing as "min" | |
| 12:15:01 | sean-k-mooney | isnt there. there was an alternitive to max we were considering | |