Ovirt Node (iso) - OK to enable Centos-BaseOS/Centos-Appstream repos ?
by morgan cox
Hi.
I have installed Ovirt nodes via the ovirt-node iso (centos8 based) - on a fresh install the standard CentOS repos are disabled (the ovirt 4-4 repo is enabled)
As part of our company hardening we need to install a few packages from the Centos repos.
Can I enable the CentOS-Linux-AppStream.repo + CentOS-Linux-BaseOS.repo repos or will this cause issues when we update the node ?
Thanks
3 years
Problem to create provider
by miguel.garcia@toshibagcs.com
We have a problem to create the first provider in the ovirt cluster by following next steps:
Go to Administration - Provider - click Add
Filled up fields for new provider with next information:
Name: ovirt-provider-ovn
Type: External Network Provider
Network Plugin: oVirt Network Provider for OVN
Provider URL: https://ovirthostname:9696
Uncheck Read-only
Check Request authentication
username : admin@internal
Protocol HTTPS
Hostname ovirthostname
API port: 35357
Click Test
Result:
Test Failed (unknow error)
Log file:
2021-03-23 15:23:50,986-04 ERROR [org.ovirt.engine.core.bll.provider.network.openstack.ExternalNetworkProviderProxy] (default task-118) [501852ef-cd76-40d0-8ef3-6b0826b3c0dd] Failed to communicate with external provider 'ovirt-provider-ovn' due to error 'ConnectException: Connection refused (Connection refused)' [org.ovirt.engine.core.utils.servlet.ServletUtils] (default t2021-03-23 15:23:50,986-04 ERROR [org.ovirt.engine.core.bll.GetProviderCertificateChainQuery] (default task-118) [501852ef-cd76-40d0-8ef3-6b0826b3c0dd] Error in encoding certificate: EngineException: Connection refused (Connection refused) (Failed with error PROVIDER_FAILURE and code 5050)
I think I would expect to ask the certificate to complete connection but does not ask for certificate at all.
Any idea how to solve this?
3 years
VDSM command failed:Received fatal alert certificate_expire
by fmendoza@red.com.sv
Recently Ovirt sent certificate expiration messages. And it does not let me manage the server VMs, I have looked for information about this and I can not find something that is clear. The version of Ovirt that I own is 3.6.3.4-1.el7.cents. I have at least 4 operational VMs of vital importance.
Thanks for the support
3 years
websockify + ovirt
by Pascal D
Hi,
I am trying to get the spice-web-client working with ovirt. One area where I am having difficulties is authentication.Looking at remote-viewer on linux I am able to see that the minimum fields to have a successful spice connection are the following:
[virt-viewer]
type=spice
host=70.xxx.176.xxx
port=5914
password=WQJQWCo+s8tK
tls-port=5915
tls-ciphers=DEFAULT
host-subject=O=xxxx.com,CN=d1c1v5.xxx.net
ca=-----BEGIN CERTIFICATE-----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\nMA4GA1UdDwEB/wQEAwIBBjANBgkqhkiG9w0BAQsFAAOCA
QEAoC8Nx/s4Uafgc3iyzxbLPb/chQ8U\n7+lULXTq+ZLOuMDdu6UKt7qKZpJZK8ZhjFh/1yVOnpzm7Np+oP7TQlOUkup8X4HsfAwrCgNK1IT1\nETdbdMYD8HYFjxz/0xbnMkJAHfPEh1vtqplw3YhVgiAZfZfT8HzVY/xGkjurvxSyVjBSbn+4uao1\n6W9URt2rWTHn+XxoT+j+cx8vv1WKsynlMBtUjCFy8eR7ZDngRcM/9iRkRCGHJvWJmi1CRrQeE5RZ\nvBH0zE64J3cOJj4BSlN3wOYWiRq28XLB9epDDyZaRpnsqLCOq/+/LscM7iPW1acdCoCu68nJUwTQ\nh1Jh7vQjCQ==\n-----END CERTIFICATE-----\n
with this I can successfully connect to a vm. Now I would like to do the same from spice-web-client but websockify doesn't give me a tls-port. How to could I implement this? Is there a wrapper that exists that I can pass to websockify to do the authentication on the port + 1 (it seems it is always the next port)
Thanks in advance for your help
3 years
VM listed as unmanaged external
by miguel.garcia@toshibagcs.com
We have a vm that got renamed with prefix "external-*" and in the status of resources for this vm are as unmanaged.
Is there a way to turn it back to manage vm and rollback how it was before?
3 years
supervdsm failing during network_caps
by Alan G
Hi,
I have issues with one host where supervdsm is failing in network_caps.
I see the following trace in the log.
MainProcess|jsonrpc/1::ERROR::2020-01-06 03:01:05,558::supervdsm_server::100::SuperVdsm.ServerCallback::(wrapper) Error in network_caps
Traceback (most recent call last):
File "/usr/lib/python2.7/site-packages/vdsm/supervdsm_server.py", line 98, in wrapper
res = func(*args, **kwargs)
File "/usr/lib/python2.7/site-packages/vdsm/network/api.py", line 56, in network_caps
return netswitch.configurator.netcaps(compatibility=30600)
File "/usr/lib/python2.7/site-packages/vdsm/network/netswitch/configurator.py", line 317, in netcaps
net_caps = netinfo(compatibility=compatibility)
File "/usr/lib/python2.7/site-packages/vdsm/network/netswitch/configurator.py", line 325, in netinfo
_netinfo = netinfo_get(vdsmnets, compatibility)
File "/usr/lib/python2.7/site-packages/vdsm/network/netinfo/cache.py", line 150, in get
return _stringify_mtus(_get(vdsmnets))
File "/usr/lib/python2.7/site-packages/vdsm/network/netinfo/cache.py", line 59, in _get
ipaddrs = getIpAddrs()
File "/usr/lib/python2.7/site-packages/vdsm/network/netinfo/addresses.py", line 72, in getIpAddrs
for addr in nl_addr.iter_addrs():
File "/usr/lib/python2.7/site-packages/vdsm/network/netlink/addr.py", line 33, in iter_addrs
with _nl_addr_cache(sock) as addr_cache:
File "/usr/lib64/python2.7/contextlib.py", line 17, in __enter__
return self.gen.next()
File "/usr/lib/python2.7/site-packages/vdsm/network/netlink/__init__.py", line 92, in _cache_manager
cache = cache_allocator(sock)
File "/usr/lib/python2.7/site-packages/vdsm/network/netlink/libnl.py", line 469, in rtnl_addr_alloc_cache
raise IOError(-err, nl_geterror(err))
IOError: [Errno 16] Message sequence number mismatch
A restart of supervdsm will resolve the issue for a period, maybe 24 hours, then it will occur again. So I'm thinking it's resource exhaustion or a leak of some kind?
Running 4.2.8.2 with VDSM at 4.20.46.
I've had a look through the bugzilla and can't find an exact match, closest was this one https://bugzilla.redhat.com/show_bug.cgi?id=1666123 which seems to be a RHV only fix.
Thanks,
Alan
3 years
Exporting ovirt vm's to esxi
by karunamandava@gmail.com
Hi Everyone,
Is there any way to export Ovirt vm's to ESXi server. Please help me out on this.
Thanks in Advance.
3 years
The best HCI config with 8Nodes and 2 sites?
by Arman Khalatyan
Hello everybody,
I would like to deploy HCI with our 2 buildings each with 8 compute nodes.
Each host has a mirrored OS disks and 1 slot for the SSD. So I will use SSD
for the glusterfs.
my question is what is the best type of the glusterfs volume?
I can leave with 8way mirror but what happened if the connection between
buildings will go down?
where will my ovirt-engine start?
3 years
One host 4.4.5 upgade failed
by ozmen62@hotmail.com
Hi,
We have 2 hosts, upgarded to 4.4.5.
Engine and one of the hosts was successfull
But, of of the hosts stucked and doesnt upgrade.
successful one has these kernels
# vmlinuz-4.18.0-240.1.1.el8_3.x86_64
# vmlinuz-4.18.0-240.15.1.el8_3.x86_64
Unsuccessful one has;
# vmlinuz-4.18.0-193.28.1.el8_2.x86_64
# vmlinuz-4.18.0-240.1.1.el8_3.x86_64
Unsuccessful one has "/usr/share/ovirt-node-ng-image-update/" directory and image but we dont make it upgrade
This is the some part of the log file from engine;
FAILED! => {"changed": true, "cmd": ["vdsm-tool", "configure", "--force"], "delta": "0:00:10.773484", "end": "2021-03-23 09:00:08.285785", "msg": "non-zero return code", "rc": 1, "start": "2021-03-23 08:59:57.512301", "stderr": "Error: ServiceOperationError: _systemctlStop failed\nb'Job for vdsmd.service canceled.\\n' ", "stderr_lines": ["Error: ServiceOperationError: _systemctlStop failed", "b'Job for vdsmd.service canceled.\\n' "], "stdout": "\nChecking configuration status...\n\nlibvirt is already configured for vdsm\nSUCCESS: ssl configured to true. No conflicts\nsanlock is configured for vdsm\nlvm is configured for vdsm\nCurrent revision of multipath.conf detected, preserving\nabrt is already configured for vdsm\nManaged volume database is already configured", "stdout_lines": ["", "Checking configuration status...", "", "libvirt is already configured for vdsm", "SUCCESS: ssl configured to true. No conflicts", "sanlock is configured for vdsm", "lvm is configured for vdsm", "Cur
rent revision of multipath.conf detected, preserving", "abrt is already configured for vdsm", "Managed volume database is already configured"]}
when we triggered the dnf update/upgrade it says "there is no upgrade" both engine web page and cli
Is there any suggestion for upgrading the host, it's stucked on "NonOperational" mode
3 years