Earlier  
Posted Nick Remark
#openstack-nova - 2021-03-08
16:00:37 sean-k-mooney claudiub: we will see ill try an play with it after code feeze, are you ok waiting until after that.
16:01:19 sean-k-mooney if this is backporaable it can be backported after FF anyway
16:02:22 claudiub sure. As I've said, we tried this in Train, and we seem to be more stable now when it comes to live-migrations.
16:14:30 melwitt sean-k-mooney: no, not planning to talk about cascading deletes. that would require removing soft-deletion which from past attempts would be very involved and I don't have the bandwidth to get into it. it would also change behaviors like being able to view the instance action list of a deleted instance, there's also a literal soft delete instance API that we'd have to decide what to do with, and so on. I think it would likely need a
16:14:30 melwitt deprecation cycle(s) to get rid of because of the changes in behavior if we were to make soft deletion no longer possible
16:15:41 sean-k-mooney melwitt: ack cool
16:17:23 lemko kashyap, nope, I'm not using nested virtualizaiton
16:34:36 melwitt sean-k-mooney, gibi: the bug downstream will happen even if we don't purge at the same time as archive. the issue is only with archive. archive moves a record to the shadow table, so it deletes it from the main table and inserts it in the shadow table. we use the word "purge" to refer to deleting things from the shadow tables i.e. 'nova-manage db purge'
16:35:12 gibi melwitt: thanks
16:42:45 openstackgerrit Balazs Gibizer proposed openstack/nova stable/train: Warn when starting services with older than N-1 computes https://review.opendev.org/c/openstack/nova/+/779293
16:42:46 openstackgerrit Balazs Gibizer proposed openstack/nova stable/train: Add upgrade check about old computes https://review.opendev.org/c/openstack/nova/+/779294
16:58:51 sean-k-mooney bauzas: https://review.opendev.org/c/openstack/nova/+/773792 is the pci port numa policy patch. it nit a volume detach issue thats unrelated so just recheked it there a while ago
17:06:47 openstackgerrit Stephen Finucane proposed openstack/nova master: libvirt: Add tests for insecure UEFI configuration https://review.opendev.org/c/openstack/nova/+/777367
17:06:48 openstackgerrit Stephen Finucane proposed openstack/nova master: libvirt: Stop passing around virt_type, caps https://review.opendev.org/c/openstack/nova/+/775689
17:06:48 openstackgerrit Stephen Finucane proposed openstack/nova master: libvirt: Add missing type hints https://review.opendev.org/c/openstack/nova/+/775688
17:06:49 openstackgerrit Stephen Finucane proposed openstack/nova master: trivial: Clarify purpose of 'Host.supports_*' properties https://review.opendev.org/c/openstack/nova/+/778739
17:06:49 openstackgerrit Stephen Finucane proposed openstack/nova master: hardware: Start parsing 'os_secure_boot' https://review.opendev.org/c/openstack/nova/+/682628
17:06:50 openstackgerrit Stephen Finucane proposed openstack/nova master: compute: Report COMPUTE_SECURITY_UEFI_SECURE_BOOT https://review.opendev.org/c/openstack/nova/+/776679
17:06:50 openstackgerrit Stephen Finucane proposed openstack/nova master: scheduler: Translate secure boot requests to trait https://review.opendev.org/c/openstack/nova/+/776680
17:06:51 openstackgerrit Stephen Finucane proposed openstack/nova master: libvirt: Wire up 'os_secure_boot' property https://review.opendev.org/c/openstack/nova/+/776681
17:06:51 openstackgerrit Stephen Finucane proposed openstack/nova master: libvirt: Report secure boot support to scheduler https://review.opendev.org/c/openstack/nova/+/775690
17:06:52 openstackgerrit Stephen Finucane proposed openstack/nova master: tests: Add functional tests for UEFI, secure boot https://review.opendev.org/c/openstack/nova/+/776682
17:06:52 openstackgerrit Stephen Finucane proposed openstack/nova master: tests: Remove duplicated 'start_compute' helper https://review.opendev.org/c/openstack/nova/+/776683
17:06:53 openstackgerrit Stephen Finucane proposed openstack/nova master: docs: Document UEFI secure boot feature https://review.opendev.org/c/openstack/nova/+/776684
17:06:53 openstackgerrit Stephen Finucane proposed openstack/nova master: libvirt: Add parsing of firmware metadata files https://review.opendev.org/c/openstack/nova/+/779302
17:06:54 openstackgerrit Stephen Finucane proposed openstack/nova master: libvirt: Move some host arch checks to guest checks https://review.opendev.org/c/openstack/nova/+/779303
17:06:54 openstackgerrit Stephen Finucane proposed openstack/nova master: libvirt: Use firmware metadata files to configure instance https://review.opendev.org/c/openstack/nova/+/779304
17:07:33 stephenfin Phew
17:13:20 lyarwood stephenfin: I'll hit that again in the morning
17:13:36 lyarwood or maybe later tonight if I get time
18:30:22 openstackgerrit Stephen Finucane proposed openstack/nova master: libvirt: Enable 'vmcoreinfo' feature by default https://review.opendev.org/c/openstack/nova/+/752912
18:30:23 openstackgerrit Stephen Finucane proposed openstack/nova master: WIP: libvirt: Make vmcoreinfo dependent on feature flag https://review.opendev.org/c/openstack/nova/+/779342
18:35:48 stephenfin artom: ^
18:36:10 stephenfin tl;dr: I will take the feature flag approach but not now. Too many test failures, too little time
18:36:18 artom stephenfin, \o/
18:36:27 artom Fair
18:36:57 stephenfin (as noted in the patch itself, the secure boot series should clear up most of those failures since I've significantly improved the FakeLibvirtFixture)
18:38:09 artom It's always the tests...
18:38:42 artom And we'll have re-implemented libvirt in Python, only for qemu and kvm
19:36:54 artom gibi, still active?
19:40:27 artom I guess not, but I think I'm confident enough in my thinking that I'll go ahead
19:40:43 artom Replied in review, in any case
19:49:53 sean-k-mooney stephenfin: replied on the port policy spec. bauzas suggested i check for the extenion to be extra safe so dont really want to remove it unless he is ok with it
20:19:29 openstackgerrit Artom Lifshitz proposed openstack/nova master: pci manager: replace node_id parameter with compute_node https://review.opendev.org/c/openstack/nova/+/778747
20:19:30 openstackgerrit Artom Lifshitz proposed openstack/nova master: pci: track host NUMA topology in stats https://review.opendev.org/c/openstack/nova/+/774149
20:19:30 openstackgerrit Artom Lifshitz proposed openstack/nova master: pci: implement the 'socket' NUMA affinity policy https://review.opendev.org/c/openstack/nova/+/772779
20:57:20 melwitt lyarwood: fyi https://review.opendev.org/c/openstack/nova/+/777218 and https://review.opendev.org/c/openstack/nova/+/777219 are ready for review on stable/ussuri. there are two more patches under them (sorry!) that I included bc (1) it's a bug fix I had forgotten to backport and (2) they eliminate merge conflicts
21:30:31 openstackgerrit sean mooney proposed openstack/nova master: add constants for vnic type vdpa https://review.opendev.org/c/openstack/nova/+/770474
21:30:31 openstackgerrit sean mooney proposed openstack/nova master: add vdpa nodedev parsing and interface config gen https://review.opendev.org/c/openstack/nova/+/770532
21:30:32 openstackgerrit sean mooney proposed openstack/nova master: extend pci dev_type for vdpa https://review.opendev.org/c/openstack/nova/+/777481
21:30:33 openstackgerrit sean mooney proposed openstack/nova master: add vdpa device detection https://review.opendev.org/c/openstack/nova/+/770533
21:30:34 openstackgerrit sean mooney proposed openstack/nova master: add hw:mlock extra spec https://review.opendev.org/c/openstack/nova/+/778347
21:30:35 openstackgerrit sean mooney proposed openstack/nova master: add vdpa vnic to pci request mapping and filtering. https://review.opendev.org/c/openstack/nova/+/778350
21:32:34 openstackgerrit sean mooney proposed openstack/nova master: add hw:mlock extra spec https://review.opendev.org/c/openstack/nova/+/778347
21:32:34 openstackgerrit sean mooney proposed openstack/nova master: add vdpa nodedev parsing and interface config gen https://review.opendev.org/c/openstack/nova/+/770532
21:32:35 openstackgerrit sean mooney proposed openstack/nova master: extend pci dev_type for vdpa https://review.opendev.org/c/openstack/nova/+/777481
21:32:35 openstackgerrit sean mooney proposed openstack/nova master: add vdpa device detection https://review.opendev.org/c/openstack/nova/+/770533
21:32:36 openstackgerrit sean mooney proposed openstack/nova master: add vdpa vnic to pci request mapping and filtering. https://review.opendev.org/c/openstack/nova/+/778350
21:49:17 openstackgerrit Ghanshyam proposed openstack/nova master: Change default policy for GET '/os-hypervisors' API https://review.opendev.org/c/openstack/nova/+/765798
21:51:38 openstackgerrit Ghanshyam proposed openstack/nova master: Change default policy for GET '/os-hypervisors' API https://review.opendev.org/c/openstack/nova/+/765798
22:19:39 openstackgerrit Merged openstack/nova master: libvirt: Add tests for insecure UEFI configuration https://review.opendev.org/c/openstack/nova/+/777367
23:05:15 openstackgerrit sean mooney proposed openstack/nova master: Support per port numa policies with SR-IOV https://review.opendev.org/c/openstack/nova/+/773792
23:05:51 openstackgerrit sean mooney proposed openstack/nova master: Support per port numa policies with SR-IOV https://review.opendev.org/c/openstack/nova/+/773792
#openstack-nova - 2021-03-09
01:17:59 yonglihe gibi: thanks raise the VIC TYPE concerns, I tested by wire that in local repo. I try to verify Rodolfo's patch today: https://review.opendev.org/c/openstack/neutron/+/779292
01:31:11 gmann stephenfin: gibi updated the policy patch for modernize-os-hypervisors-api BP https://review.opendev.org/c/openstack/nova/+/765798/5
08:52:40 yonglihe gibi: alex_xu:, F.Y.I I've talke with ralonsoh and slaweq, that neutron patch is likely merged today: https://review.opendev.org/c/openstack/neutron/+/779292
09:01:11 lyarwood melwitt: ack np looking
09:04:19 lyarwood elod: https://review.opendev.org/c/openstack/nova/+/777217/ - I think you forgot to vote on this?
09:20:34 elod lyarwood: wow. apparently. thx. :S
09:20:56 lyarwood elod: np I've done that lots with the new UI
09:22:15 elod yeah, let's blame that o:) I don't know how i missed to vote :S sorry :S
09:48:41 stephenfin oh, no Gerrit bot?
09:48:56 stephenfin trivial fix to address some issues coming down the pipeline with setuptools here https://review.opendev.org/c/openstack/nova/+/779449
09:52:22 jrosser could i get some help with this when debugging why i can't rescue boot-from-volume images https://opendev.org/openstack/nova/src/branch/master/nova/api/openstack/compute/rescue.py#L60
09:53:32 jrosser if i print req.api_version_request i get "API Version Request Major: 2, Minor: 1"
09:53:54 jrosser that seems always going to fail if passed to api_version_request.is_supported(req, '2.87')
09:55:08 stephenfin jrosser: How are you making the request/
09:57:12 jrosser stephenfin: either through horizon or `openstack server rescue --image 14600a9b-a240-4210-8a32-cea43d0499ac 4f2b0a96-7b6b-4d01-bb75-1248574e71d6`
09:57:32 stephenfin you need to request API microversion 2.87, as that code would suggest
09:57:44 stephenfin openstack --os-compute-api-version 2.87 server rescue ...
09:57:49 stephenfin should do the trick
09:58:00 stephenfin OSC currently defaults to 2.1. We're working on fixing that
09:58:16 stephenfin I don't know how to do the equivalent in Horizon
09:58:22 jrosser ooooohhhh - well thats explains it!
09:59:24 jrosser perhaps that warrants a docs fix here https://docs.openstack.org/nova/latest/user/rescue.html
09:59:47 stephenfin Yes, good point
09:59:58 stephenfin lyarwood: Maybe if you have time in the next few weeks? ^
10:11:14 jawad_axd Hi folks, how luks password is generated for instance booted from encrypted volume? Barbican is used in environment. I can grab luks password like “virsh secret-get-value SECRET-UUID | —base64 —decode” when instance is running on compute node. How can I generate this password on my own? Use case is: if instance is backed up outside somewhere and needs to boot standalone, thus needs luks passwor
10:11:14 jawad_axd d.Any comments on this?Thanks
10:15:06 jrosser jawad_axd: there was a thread on the mailing list about this recently http://lists.openstack.org/pipermail/openstack-discuss/2021-February/020374.html
10:17:29 jawad_axd @jrosser I missed that one. I look into it. Thanks
10:21:53 lyarwood stephenfin: sorry was afk, reading
10:23:30 lyarwood huh how did I miss that
10:32:02 lyarwood stephenfin: https://review.opendev.org/c/openstack/nova/+/779479
10:32:17 lyarwood jawad_axd: hey sorry reading
10:33:20 lyarwood jawad_axd: yeah that post on the ML spells out how to grab the passphrase from the key manager, it's awful I know but thanks to design choices made before my time :/
10:34:22 lyarwood jawad_axd: http://lists.openstack.org/pipermail/openstack-discuss/2021-February/020421.html specifically lists the steps
10:42:00 jawad_axd @lyarwood Thanks. Apparently, it requires volume to to be mapped. I am wondering if there is an easy way to decrypt/decode it from barbican cli, when encrypted volume exists in environment and is in in AVAILABLE state.a
10:44:35 lyarwood jawad_axd: No, you can't stream/decode an unmapped encrypted volume.
10:45:03 lyarwood jawad_axd: unlike Glance, Cinder doesn't send actual volume data via the API

Earlier   Later