Re: [ovirt-users] Hosted engine Single Sign-On to VM with freeIPA not working

2016-03-19 Thread Ondra Machacek

Hi Paul,

ok, thanks for info, then there is an issue in pam configuration, most 
probably.
There is open issue for it on rhel7, please try read this comment[1] if 
it helps to you.


Ondra

[1] https://bugzilla.redhat.com/show_bug.cgi?id=1316135#c3

On 03/17/2016 06:07 PM, Paul wrote:

Hi Ondra,

Thanks for your reply, unfortunately this does not resolve the issue.
I had already seen this bug and tried it without the -authz appendix(maybe
should have mentioned that).
I also (may be wrongfully) assumed that the
"ovirt-engine-extension-aaa-ldap-setup" would not have this issue/bug.

Anyways, I changed it (again) to the DOMAIN without '-authz' by changing:
/etc/ovirt-engine/extensions.d/DOMAIN-authz.properties =>
ovirt.engine.extension.name =  DOMAIN
/etc/ovirt-engine/extensions.d/DOMAIN-authn.properties =>
ovirt.engine.aaa.authn.authz.plugin = DOMAIN
Systemctl restart ovirt-engine

By the way: login with IPA users doesn't work anymore, you have to log in
with admin internal account and remove your IPA users and add them back to
make them work again.

But still get the error:
pam_sss(gdm-ovirtcred:auth): received for user test6: 17 (Failure setting
user credentials)

Any suggestions?


-Original Message-
From: Ondra Machacek [mailto:omach...@redhat.com]
Sent: donderdag 17 maart 2016 16:58
To: Paul ; users@ovirt.org
Subject: Re: [ovirt-users] Hosted engine Single Sign-On to VM with freeIPA
not working

Hi,

your authz name should match kerberos name.
So please change your authz name from 'DOMAIN-authz' to 'DOMAIN'

Please see this bz[1] for more detail.

Ondra

[1] https://bugzilla.redhat.com/show_bug.cgi?id=1133137#c7

On 03/17/2016 04:22 PM, Paul wrote:

Hi,

I am having an issue with getting SSO to work when a standard
user(UserRole) logs in to the UserPortal.

The user has permission to use only this VM, so after login the
console is automatically opened for that VM.

Problem is that it doesn't login on the VM system with the provided
credentials. Manual login at the console works without any issues.

HBAC-rule check on IPA shows access is granted. Client has SELINUX in
permissive mode and a disabled firewalld.

On the client side I do see some PAM related errors in the logs (see
details below). Extensive Google search on error 17 "Failure setting
user credentials" didn't show helpful information :-(

AFAIK this is did a pretty standard set-up, all working with RH-family
products. I would expect others to encounter this issue as well.

If someone knows any solution or has some directions to fix this it
would be greatly appreciated.

Thanks,

Paul

--

System setup: I have 3 systems

The connection between the Engine and IPA is working fine. (I can log
in with IPA users etc.) Connection is made according to this document:
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Virtu
alization/3.6/html-single/Administration_Guide/index.html#sect-Configu
ring_an_External_LDAP_Provider

Configuration of the client is done according to this document:
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Virtu
alization/3.6/html/Virtual_Machine_Management_Guide/chap-Additional_Co
nfiguration.html#sect-Configuring_Single_Sign-On_for_Virtual_Machines

--- Hosted Engine:

[root@engine ~]# cat /etc/redhat-release

CentOS Linux release 7.2.1511 (Core)

[root@engine ~]# uname -a

Linux engine.DOMAIN.COM 3.10.0-327.10.1.el7.x86_64 #1 SMP Tue Feb 16
17:03:50 UTC 2016 x86_64 x86_64 x86_64 GNU/Linux

[root@engine ~]# rpm -qa | grep ovirt

ovirt-vmconsole-1.0.0-1.el7.centos.noarch

ovirt-engine-restapi-3.6.2.6-1.el7.centos.noarch

ovirt-setup-lib-1.0.1-1.el7.centos.noarch

ovirt-engine-setup-plugin-ovirt-engine-common-3.6.3.4-1.el7.centos.noa
rch

ovirt-engine-setup-3.6.3.4-1.el7.centos.noarch

ovirt-image-uploader-3.6.0-1.el7.centos.noarch

ovirt-engine-extension-aaa-jdbc-1.0.5-1.el7.noarch

ovirt-host-deploy-1.4.1-1.el7.centos.noarch

ovirt-engine-extension-aaa-ldap-setup-1.1.2-1.el7.centos.noarch

ovirt-engine-wildfly-overlay-8.0.4-1.el7.noarch

ovirt-engine-wildfly-8.2.1-1.el7.x86_64

ovirt-vmconsole-proxy-1.0.0-1.el7.centos.noarch

ovirt-engine-tools-3.6.2.6-1.el7.centos.noarch

ovirt-engine-dbscripts-3.6.2.6-1.el7.centos.noarch

ovirt-engine-backend-3.6.2.6-1.el7.centos.noarch

ovirt-engine-3.6.2.6-1.el7.centos.noarch

ovirt-engine-extension-aaa-ldap-1.1.2-1.el7.centos.noarch

ovirt-engine-setup-base-3.6.3.4-1.el7.centos.noarch

ovirt-engine-setup-plugin-ovirt-engine-3.6.3.4-1.el7.centos.noarch

ovirt-engine-setup-plugin-websocket-proxy-3.6.3.4-1.el7.centos.noarch

ovirt-engine-vmconsole-proxy-helper-3.6.3.4-1.el7.centos.noarch

ovirt-engine-cli-3.6.2.0-1.el7.centos.noarch

ovirt-host-deploy-java-1.4.1-1.el7.centos.noarch

ovirt-engine-userportal-3.6.2.6-1.el7.centos.noarch

ovirt-engine-webadmin-portal-3.6.2.6-1.el7.centos.noarch

ovirt-guest-agent-common-1.0.11-1.el7.noarch

ovirt-release36-003-1.noarch


Re: [ovirt-users] question mark on VM ( DB status 8 )

2016-03-19 Thread Eli Mesika
- Original Message -

> From: p...@email.cz
> To: "users" < users@ovirt.org >
> Sent: Thursday, March 17, 2016 9:27:11 AM
> Subject: [ovirt-users] question mark on VM ( DB status 8 )

> Hello,
> during backup VM hanged with question mark in ovirt and status 8 in DB,
> snapshot file ( for backup )is locked.
> How to clean snapshot locking a wake up this VM from "unknow" state ???
Try using the unlock_entity.sh utility (run with --help for usage) 

> regs.
> pavel

> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Howto Backup and Restore on new Server

2016-03-19 Thread Taste-Of-IT

Hello Yaniv,

ah ok understand. Export Domain will in Version X not longer supportet. 
Do you have any link to this information?

thx

Am 2016-03-17 14:48, schrieb Yaniv Dary:

As removing it in the future for replacement flows.

Yaniv Dary
Technical Product Manager
Red Hat Israel Ltd.
34 Jerusalem Road
Building A, 4th floor
Ra'anana, Israel 4350109

Tel : +972 (9) 7692306
 8272306
Email: yd...@redhat.com
IRC : ydary

On Tue, Mar 15, 2016 at 2:11 PM, Taste-Of-IT 
wrote:


Hello Yaniv,

that was ironical, or? Deprecating like deny or refuse?

Am 2016-03-15 12:16, schrieb Yaniv Dary:

Since we will be deprecating export domain to import storage domain
in
the future, I would use it.
It should be a much better experience with less downtime. 

Yaniv Dary
Technical Product Manager
Red Hat Israel Ltd.
34 Jerusalem Road
Building A, 4th floor
Ra'anana, Israel 4350109

Tel : +972 (9) 7692306 [1]
 8272306
Email: yd...@redhat.com
IRC : ydary

On Tue, Mar 15, 2016 at 1:03 PM, Taste-Of-IT

wrote:

Hello Yaniv,

thanks for your hint. Seems a good idea. Meanwhile i created a
export domain, with the path to a mountpoint and exported the VMs.
Next is to reinstall the server and import VMs. What is in your
point of view the better solution or where are the pros and contrs?

thx

Am 2016-03-15 11:58, schrieb Yaniv Dary:

You can move the VM to a new storage domain and use import storage
domain feature to move VMs from one oVirt to another.

Yaniv Dary
Technical Product Manager
Red Hat Israel Ltd.
34 Jerusalem Road
Building A, 4th floor
Ra'anana, Israel 4350109

Tel : +972 (9) 7692306 [1]
 8272306
Email: yd...@redhat.com
IRC : ydary

On Mon, Mar 14, 2016 at 5:38 PM, Taste-Of-IT

wrote:

Hello,
i want to backup a view VMs, delete the old Server, install on same
Hardware a new one and restore the VMs. I use oVirt as All-in-One.
What is the best Way? Can i simply copy the full snapshot to an
external usb-disk, or should i use a external backup domain for
that.? And Restore simply copy the snapshot backup to the VM Domain
or use the same backup domain to import the VMs?

Thx
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users [2] [2] [1]

Links:
--
[1] http://lists.ovirt.org/mailman/listinfo/users [2] [2]

Links:
--
[1] tel:%2B972%20%289%29%207692306
[2] http://lists.ovirt.org/mailman/listinfo/users [2]




Links:
--
[1] tel:%2B972%20%289%29%207692306
[2] http://lists.ovirt.org/mailman/listinfo/users

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] [ovirt-devel] Coming (Very) Soon - New ovirt.org Website & Deprecated Wiki

2016-03-19 Thread Jakub Niedermertl


- Original Message -
> From: "Daniel Erez" 
> To: "Mikey Ariel" 
> Cc: in...@ovirt.org, users@ovirt.org, de...@ovirt.org
> Sent: Monday, February 22, 2016 5:20:31 PM
> Subject: Re: [ovirt-users] [ovirt-devel] Coming (Very) Soon - New ovirt.org   
> Website &   Deprecated Wiki
> 
> 
> 
> - Original Message -
> > From: "Mikey Ariel" 
> > To: users@ovirt.org, de...@ovirt.org, in...@ovirt.org
> > Sent: Thursday, February 18, 2016 1:42:56 PM
> > Subject: [ovirt-devel] Coming (Very) Soon - New ovirt.org Website &
> > Deprecated Wiki
> > 
> > -BEGIN PGP SIGNED MESSAGE-
> > Hash: SHA256
> > 
> > In the past months we've been working on upgrading the oVirt project
> > infrastructure, to better support the community contributions.
> > 
> > One of the main platforms for our user documentation, release
> > management content, and community content has been the MediaWiki site
> > that you all know as ovirt.org. Most of us are familiar with the wiki
> > site format, with all its advantages and disadvantages.
> > 
> > After several years of serving the community, I'm happy to announce
> > that we are very near to completing a full upgrade of the website
> > infrastructure from a wiki site to a static site, source-controlled on
> > GitHub and authored in Markdown.
> > 
> > This email is the pre-launch announcement, as we are reaching the
> > final stages of the migration, and there are a few actions that might
> > affect your work on website content in the meantime.
> > 
> > Why migrate the website
> > ===
> > 
> > As mentioned, wiki sites provide an open and flexible content editing
> > platform. Unfortunately, as the site grows the content becomes quite
> > difficult to manage and curate, resulting in lots of obsolete,
> > outdated, and incorrect information.
> > 
> > By moving to a source-controlled repository and implementing GitHub's
> > contribution workflow, we strive to ease the work of maintaining an
> > up-to-date content site, employ a peer-review process for changes, and
> > standardize the authoring markup language to lower the contribution
> > barrier.
> > 
> > The Middleman framework (Ruby-based static site generator) was chosen
> > based on observing successful implementation of other open-source
> > community websites, such as OpenStack RDO, Project Atomic, and Gluster.
> > 
> > What we did so far
> > ==
> > 
> > When we started the migration, our Web design team exported all of the
> > wiki content from the old website and converted it to MD files. They
> > also set up the website config flow, auto-deploy, and upgraded the
> > look-and-feel of the website.
> > 
> > We then initiated a content review effort as well as a UX review for
> > the new website in a smaller forum, which caught most of the critical
> > issues with the new website and helped us get the new format to a
> > place where we can release the website in a near-GA/public-beta format.
> > 
> > Yesterday (Wednesday Feb 17) we exported the website one more time and
> > currently we're running a diff on all the files that changed since the
> > initial export was done, to make sure we grab all the updates and the
> > latest content before we launch the new website.
> > 
> > What is about to happen
> > ===
> > 
> > Today we are initiating a **wiki freeze**, which means the old
> > MediaWiki site will become read-only. This is to ensure that all of
> 
> Where's the old MediaWiki site? (seems the old URL redirects to the new one).

http://old.ovirt.org/Home

> 
> > our diff scripts reflect the most current state of the content on the
> > website, and that we don't lose any content in the transition.
> > 
> > Barring any unexpected blockers, we will port the ovirt.org domain to
> > point to the new website and open the new website for contributions on
> > **Monday February 22** or earlier.
> > 
> > What do you need to do right now
> > 
> > 
> > If you have any wiki pages that you're actively editing, please don't
> > save them to the old MediaWiki site, and hold onto your pending
> > changes until we send the happy launch email.
> > 
> > We will also include instructions on how to contribute/edit/add
> > content to the new website, but in general the workflow will be
> > aligned with the standard GitHub best practices
> > (clone-edit-commit-pullrequest), so you can utilize all of the git
> > commands that you already know or work directly within the GitHub web
> > editor.
> > 
> > 
> > I'd like to thank all of the people who were involved with this
> > migration so far, ovirt.org is a big website with lots of content and
> > it was no small task to upgrade it.
> > 
> > Please feel free to ping me on- or off-list if you have any questions
> > about the next steps, and expect a happy launch email soon!
> > 
> > Cheers,
> > Mikey
> > 
> > 
> > - --
> > Mikey Ariel
> > 

[ovirt-users] Install Hosted Engine NFS4 Mount Failure

2016-03-19 Thread Taste-Of-IT

Hello,
i want to install Self-Hosted-Engine with Data and ISO Domain on NFS4 
Share on local Server / Hypervisor. NFS is correct configure, while i 
can mount from client and host itself. At the point in installation 
setup i have to enter the path hostname:/export i got this error:Error 
while mounting specified storage path: mount.nfs: mount system call 
failed


in setup log i can see:
ovirt_hosted_engine_setup.storage.nfs plugin.execute:941

Any Idea?
thx
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] Where to add NFS Data Storage

2016-03-19 Thread Taste-Of-IT

Hello,
i want to install self-hosted-engine with nfs storage on host and engine 
uses this storage. i tried it but i dont know where to add the nfs 
storage for data.  i first setup nfs server which is working, then added 
the nfs export dir in host setup installation, than install engine and 
dont add storage there. if i now want to add on system tab under storage 
new data storage this nfs export i got the message, that the storage is 
in use by another domain. What is the right way to use local nfs storage 
for engine?


thx
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] centos 7.1 and up & ixgbe

2016-03-19 Thread Piotr Kliczewski
Johan,

It there is temporary networking issue and you still want engine not to
fence the host you can
increase heartbeat interval in the engine configuration. It would tell
engine to wait longer
before assuming that the host is not responding.

Please provide the logs so we can understand why there is communication
issue in the first
place.

Thanks,
Piotr

On Thu, Mar 17, 2016 at 12:52 PM, Nir Soffer  wrote:

> On Thu, Mar 17, 2016 at 10:49 AM, Johan Kooijman 
> wrote:
> > Hi all,
> >
> > Since we upgraded to the latest ovirt node running 7.2, we're seeing that
> > nodes become unavailable after a while. It's running fine, with a couple
> of
> > VM's on it, untill it becomes non responsive. At that moment it doesn't
> even
> > respond to ICMP. It'll come back by itself after a while, but oVirt
> fences
> > the machine before that time and restarts VM's elsewhere.
> >
> > Engine tells me this message:
> >
> > VDSM host09 command failed: Message timeout which can be caused by
> > communication issues
> >
> > Is anyone else experiencing these issues with ixgbe drivers? I'm running
> on
> > Intel X540-AT2 cards.
>
> We will need engine and vdsm logs to understand this issue.
>
> Can you file a bug and attach ful logs?
>
> Nir
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Diagnosing Migration Error

2016-03-19 Thread Nir Soffer
On Fri, Mar 18, 2016 at 9:37 PM, Nir Soffer  wrote:
> On Fri, Mar 18, 2016 at 9:27 PM, Nir Soffer  wrote:
>> On Fri, Mar 18, 2016 at 7:59 PM, Charles Tassell  
>> wrote:
>>> Hi Martin,
>>>
>>>   Thanks, I checked that log and found the error " AttributeError:
>>> 'SourceThread' object has no attribute '_destServer'" which from what I see
>>> from my googling was supposedly fixed...  I'm running
>>> vdsm-4.17.23-0.el7.centos.noarch which I believe is the latest.  The full
>>> error is:
>>>
>>> Thread-2789::DEBUG::2016-03-18
>>> 14:47:04,200::blockSD::422::Storage.Misc.excCmd::(getReadDelay)
>>> /usr/bin/taskset --cpu-list 0-23 /usr/bin/dd
>>> if=/dev/383a1e7d-8b86-4a50-8bc3-e4374c57a3e5/metadata iflag=direct
>>> of=/dev/null bs=4096 count=1 (cwd None)
>>> Thread-2789::DEBUG::2016-03-18
>>> 14:47:04,211::blockSD::422::Storage.Misc.excCmd::(getReadDelay) SUCCESS:
>>>  = '1+0 records in\n1+0 records out\n4096 bytes (4.1 kB) copied,
>>> 0.000377289 s, 10.9 MB/s\n';  = 0
>>> mailbox.SPMMonitor::DEBUG::2016-03-18
>>> 14:47:04,999::storage_mailbox::735::Storage.Misc.excCmd::(_checkForMail)
>>> /usr/bin/taskset --cpu-list 0-23 dd
>>> if=/rhev/data-center/0001-0001-0001-0001-02e9/mastersd/dom_md/inbox
>>> iflag=direct,fullblock count=1 bs=1024000 (cwd None)
>>> mailbox.SPMMonitor::DEBUG::2016-03-18
>>> 14:47:05,015::storage_mailbox::735::Storage.Misc.excCmd::(_checkForMail)
>>> SUCCESS:  = '1+0 records in\n1+0 records out\n1024000 bytes (1.0 MB)
>>> copied, 0.0057206 s, 179 MB/s\n';  = 0
>>> jsonrpc.Executor/0::DEBUG::2016-03-18
>>> 14:47:06,551::__init__::503::jsonrpc.JsonRpcServer::(_serveRequest) Calling
>>> 'VM.migrate' in bridge with {u'params': {u'tunneled': u'false',
>>> u'autoConverge': u'false', u'src': u'ovirt-01.virt.roblib.upei.ca', u'dst':
>>> u'ovirt-02.virt.roblib.upei.ca:54321', u'vmId':
>>> u'2be4938e-f4a3-4322-bae3-8a9628b81835', u'abortOnError': u'true',
>>> u'compressed': u'false', u'method': u'online'}, u'vmID':
>>> u'2be4938e-f4a3-4322-bae3-8a9628b81835'}
>>> jsonrpc.Executor/0::DEBUG::2016-03-18 14:47:06,552::API::546::vds::(migrate)
>>> {u'tunneled': u'false', u'autoConverge': u'false', u'src':
>>> u'ovirt-01.virt.roblib.upei.ca', u'dst':
>>> u'ovirt-02.virt.roblib.upei.ca:54321', u'vmId':
>>> u'2be4938e-f4a3-4322-bae3-8a9628b81835', u'abortOnError': u'true',
>>> u'compressed': u'false', u'method': u'online'}
>>> jsonrpc.Executor/0::DEBUG::2016-03-18
>>> 14:47:06,555::__init__::206::jsonrpc.Notification::(emit) Sending event
>>> {"params": {"2be4938e-f4a3-4322-bae3-8a9628b81835": {"status": "Migration
>>> Source"}, "notify_time": 4311153220}, "jsonrpc": "2.0", "method":
>>> "|virt|VM_status|2be4938e-f4a3-4322-bae3-8a9628b81835"}
>>> jsonrpc.Executor/0::DEBUG::2016-03-18
>>> 14:47:06,555::__init__::533::jsonrpc.JsonRpcServer::(_serveRequest) Return
>>> 'VM.migrate' in bridge with True
>>> Thread-41096::ERROR::2016-03-18
>>> 14:47:06,559::migration::208::virt.vm::(_recover)
>>> vmId=`2be4938e-f4a3-4322-bae3-8a9628b81835`::[Errno -2] Name or service not
>>> known
>>> Thread-41096::ERROR::2016-03-18
>>> 14:47:06,559::migration::213::virt.vm::(_recover)
>>> vmId=`2be4938e-f4a3-4322-bae3-8a9628b81835`::Failed to destroy remote VM
>>> Traceback (most recent call last):
>>>   File "/usr/share/vdsm/virt/migration.py", line 211, in _recover
>>> self._destServer.destroy(self._vm.id)
>>> AttributeError: 'SourceThread' object has no attribute '_destServer'
>>> Thread-41096::DEBUG::2016-03-18
>>> 14:47:06,560::__init__::206::jsonrpc.Notification::(emit) Sending event
>>> {"params": {"2be4938e-f4a3-4322-bae3-8a9628b81835": {"status": "Migration
>>> Source"}, "notify_time": 4311153220}, "jsonrpc": "2.0", "method":
>>> "|virt|VM_status|2be4938e-f4a3-4322-bae3-8a9628b81835"}
>>> Thread-41096::ERROR::2016-03-18 14:47:06,560::migration::309::virt.vm::(run)
>>> vmId=`2be4938e-f4a3-4322-bae3-8a9628b81835`::Failed to migrate
>>> Traceback (most recent call last):
>>>   File "/usr/share/vdsm/virt/migration.py", line 278, in run
>>> self._setupVdsConnection()
>>>   File "/usr/share/vdsm/virt/migration.py", line 143, in _setupVdsConnection
>>> client = self._createClient(port)
>>>   File "/usr/share/vdsm/virt/migration.py", line 130, in _createClient
>>> self.remoteHost, int(port), sslctx)
>>>   File "/usr/lib/python2.7/site-packages/vdsm/utils.py", line 1269, in
>>> create_connected_socket
>>> sock.connect((host, port))
>>>   File "/usr/lib64/python2.7/site-packages/M2Crypto/SSL/Connection.py", line
>>> 181, in connect
>>> self.socket.connect(addr)
>>>   File "/usr/lib64/python2.7/socket.py", line 224, in meth
>>> return getattr(self._sock,name)(*args)
>>> gaierror: [Errno -2] Name or service not known
>>
>> This looks like a bug in the current code (looking in 4.0 development code).
>
> Correction, this is fixed in 4.0, but broken in latest 3.6 (v4.17.24).
>
> This issue was fixed in 

Re: [ovirt-users] Howto Backup and Restore on new Server

2016-03-19 Thread Taste-Of-IT

Hi Yaniv,
nice one - created today from you :). So there is no finaly decision to 
do so?

Regards

Am 2016-03-17 15:39, schrieb Yaniv Dary:

https://bugzilla.redhat.com/show_bug.cgi?id=1318626 [3]

Yaniv Dary
Technical Product Manager
Red Hat Israel Ltd.
34 Jerusalem Road
Building A, 4th floor
Ra'anana, Israel 4350109

Tel : +972 (9) 7692306
 8272306
Email: yd...@redhat.com
IRC : ydary

On Thu, Mar 17, 2016 at 3:55 PM, Taste-Of-IT 
wrote:


Hello Yaniv,

ah ok understand. Export Domain will in Version X not longer
supportet. Do you have any link to this information?
thx

Am 2016-03-17 14:48, schrieb Yaniv Dary:

As removing it in the future for replacement flows.

Yaniv Dary
Technical Product Manager
Red Hat Israel Ltd.
34 Jerusalem Road
Building A, 4th floor
Ra'anana, Israel 4350109

Tel : +972 (9) 7692306 [1]
 8272306
Email: yd...@redhat.com
IRC : ydary

On Tue, Mar 15, 2016 at 2:11 PM, Taste-Of-IT

wrote:

Hello Yaniv,

that was ironical, or? Deprecating like deny or refuse?

Am 2016-03-15 12:16, schrieb Yaniv Dary:

Since we will be deprecating export domain to import storage domain
in
the future, I would use it.
It should be a much better experience with less downtime. 

Yaniv Dary
Technical Product Manager
Red Hat Israel Ltd.
34 Jerusalem Road
Building A, 4th floor
Ra'anana, Israel 4350109

Tel : +972 (9) 7692306 [1]
 8272306
Email: yd...@redhat.com
IRC : ydary

On Tue, Mar 15, 2016 at 1:03 PM, Taste-Of-IT

wrote:

Hello Yaniv,

thanks for your hint. Seems a good idea. Meanwhile i created a
export domain, with the path to a mountpoint and exported the VMs.
Next is to reinstall the server and import VMs. What is in your
point of view the better solution or where are the pros and contrs?

thx

Am 2016-03-15 11:58, schrieb Yaniv Dary:

You can move the VM to a new storage domain and use import storage
domain feature to move VMs from one oVirt to another.

Yaniv Dary
Technical Product Manager
Red Hat Israel Ltd.
34 Jerusalem Road
Building A, 4th floor
Ra'anana, Israel 4350109

Tel : +972 (9) 7692306 [1]
 8272306
Email: yd...@redhat.com
IRC : ydary

On Mon, Mar 14, 2016 at 5:38 PM, Taste-Of-IT

wrote:

Hello,
i want to backup a view VMs, delete the old Server, install on same
Hardware a new one and restore the VMs. I use oVirt as All-in-One.
What is the best Way? Can i simply copy the full snapshot to an
external usb-disk, or should i use a external backup domain for
that.? And Restore simply copy the snapshot backup to the VM Domain
or use the same backup domain to import the VMs?

Thx
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users [2] [2] [2] [1]

Links:
--
[1] http://lists.ovirt.org/mailman/listinfo/users [2] [2] [2]

Links:
--
[1] tel:%2B972%20%289%29%207692306
[2] http://lists.ovirt.org/mailman/listinfo/users [2] [2]

Links:
--
[1] tel:%2B972%20%289%29%207692306
[2] http://lists.ovirt.org/mailman/listinfo/users [2]


 ___
 Users mailing list
 Users@ovirt.org
 http://lists.ovirt.org/mailman/listinfo/users [2]



Links:
--
[1] tel:%2B972%20%289%29%207692306
[2] http://lists.ovirt.org/mailman/listinfo/users
[3] https://bugzilla.redhat.com/show_bug.cgi?id=1318626

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] 3.6.3 : Disable Networkmanager?

2016-03-19 Thread Nicolas Ecarnot

Le 17/03/2016 09:22, Edward Haas a écrit :

On Thu, Mar 17, 2016 at 9:23 AM, Nicolas Ecarnot  wrote:

Le 17/03/2016 07:32, Edward Haas a écrit :


Hello Nicolas,

Please let us know which docs you refer to.



http://community.redhat.com/blog/2014/11/up-and-running-with-ovirt-3-5-part-two/


Engine by itself should work fine with NM.



I'm installing my 5th 3.6.3 oVirt DC this month, and I'm still witnessing
that when keeping NM_CONTROLLED=yes in my
/etc/sysconfig/network-script/ifcfg-blahblahblah files, the network setup
doesn't resist a reboot (we're using bonding + vlan, and it all goes well
with NO networkmanager).


Do you refer to the Host/s (which run the hypervisor with the VM/s) or
the Engine?


I'm witnessing these issues on the hosts.

I also tried to use nmtui, but no method made it until I switched back 
to using vim and disable nm in the ifcfg-* files.
Then, oVirt made a good work understanding, managing, and syncing these 
files (bond + vlan).


No big issue then, but I'd like to be sure. I'm about to add a cf-engine 
promise to disable NetworkManager on the hosts.


--
Nicolas ECARNOT
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] 3.6.3 : Disable Networkmanager?

2016-03-19 Thread Edward Haas
On Thu, Mar 17, 2016 at 9:23 AM, Nicolas Ecarnot  wrote:
> Le 17/03/2016 07:32, Edward Haas a écrit :
>>
>> Hello Nicolas,
>>
>> Please let us know which docs you refer to.
>
>
> http://community.redhat.com/blog/2014/11/up-and-running-with-ovirt-3-5-part-two/
>
>> Engine by itself should work fine with NM.
>
>
> I'm installing my 5th 3.6.3 oVirt DC this month, and I'm still witnessing
> that when keeping NM_CONTROLLED=yes in my
> /etc/sysconfig/network-script/ifcfg-blahblahblah files, the network setup
> doesn't resist a reboot (we're using bonding + vlan, and it all goes well
> with NO networkmanager).

Do you refer to the Host/s (which run the hypervisor with the VM/s) or
the Engine?

If you refer to the Engine, if setting there bonding and vlans
manually (using ifcfg files?), it may collide with NM in certain
cases, but that is a general issue, not related to Engine
specifically.
You could define the bonds and vlans using NM (nmcli).

>
>
>>
>> The only exception is when you try to run on the same host VDSM (which
>> is not recommended).
>>
>> Thanks,
>> Edy.
>>
>> On Tue, Mar 15, 2016 at 4:44 PM, Nicolas Ecarnot 
>> wrote:
>>>
>>> Hello,
>>>
>>> Several docs are contradictory about NetworkManager on the engine.
>>> Do we have to disable it in 3.6.3? (we're using CentOS 7.2)
>>>
>>> Thank you.
>>>
>>> --
>>> Nicolas ECARNOT
>>> ___
>>> Users mailing list
>>> Users@ovirt.org
>>> http://lists.ovirt.org/mailman/listinfo/users
>
>
>
> --
> Nicolas ECARNOT
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Howto Backup and Restore on new Server

2016-03-19 Thread Yaniv Dary
It's been in discussion for a while. This should happen for 4.x.

Yaniv Dary
Technical Product Manager
Red Hat Israel Ltd.
34 Jerusalem Road
Building A, 4th floor
Ra'anana, Israel 4350109

Tel : +972 (9) 7692306
8272306
Email: yd...@redhat.com
IRC : ydary


On Thu, Mar 17, 2016 at 5:00 PM, Taste-Of-IT  wrote:

> Hi Yaniv,
> nice one - created today from you :). So there is no finaly decision to do
> so?
> Regards
>
> Am 2016-03-17 15:39, schrieb Yaniv Dary:
>
>> https://bugzilla.redhat.com/show_bug.cgi?id=1318626 [3]
>>
>> Yaniv Dary
>> Technical Product Manager
>> Red Hat Israel Ltd.
>> 34 Jerusalem Road
>> Building A, 4th floor
>> Ra'anana, Israel 4350109
>>
>> Tel : +972 (9) 7692306
>>  8272306
>> Email: yd...@redhat.com
>> IRC : ydary
>>
>> On Thu, Mar 17, 2016 at 3:55 PM, Taste-Of-IT 
>> wrote:
>>
>> Hello Yaniv,
>>>
>>> ah ok understand. Export Domain will in Version X not longer
>>> supportet. Do you have any link to this information?
>>> thx
>>>
>>> Am 2016-03-17 14:48, schrieb Yaniv Dary:
>>>
>>> As removing it in the future for replacement flows.
>>>
>>> Yaniv Dary
>>> Technical Product Manager
>>> Red Hat Israel Ltd.
>>> 34 Jerusalem Road
>>> Building A, 4th floor
>>> Ra'anana, Israel 4350109
>>>
>>> Tel : +972 (9) 7692306 [1]
>>>  8272306
>>> Email: yd...@redhat.com
>>> IRC : ydary
>>>
>>> On Tue, Mar 15, 2016 at 2:11 PM, Taste-Of-IT
>>> 
>>> wrote:
>>>
>>> Hello Yaniv,
>>>
>>> that was ironical, or? Deprecating like deny or refuse?
>>>
>>> Am 2016-03-15 12:16, schrieb Yaniv Dary:
>>>
>>> Since we will be deprecating export domain to import storage domain
>>> in
>>> the future, I would use it.
>>> It should be a much better experience with less downtime.
>>>
>>> Yaniv Dary
>>> Technical Product Manager
>>> Red Hat Israel Ltd.
>>> 34 Jerusalem Road
>>> Building A, 4th floor
>>> Ra'anana, Israel 4350109
>>>
>>> Tel : +972 (9) 7692306 [1]
>>>  8272306
>>> Email: yd...@redhat.com
>>> IRC : ydary
>>>
>>> On Tue, Mar 15, 2016 at 1:03 PM, Taste-Of-IT
>>> 
>>> wrote:
>>>
>>> Hello Yaniv,
>>>
>>> thanks for your hint. Seems a good idea. Meanwhile i created a
>>> export domain, with the path to a mountpoint and exported the VMs.
>>> Next is to reinstall the server and import VMs. What is in your
>>> point of view the better solution or where are the pros and contrs?
>>>
>>> thx
>>>
>>> Am 2016-03-15 11:58, schrieb Yaniv Dary:
>>>
>>> You can move the VM to a new storage domain and use import storage
>>> domain feature to move VMs from one oVirt to another.
>>>
>>> Yaniv Dary
>>> Technical Product Manager
>>> Red Hat Israel Ltd.
>>> 34 Jerusalem Road
>>> Building A, 4th floor
>>> Ra'anana, Israel 4350109
>>>
>>> Tel : +972 (9) 7692306 [1]
>>>  8272306
>>> Email: yd...@redhat.com
>>> IRC : ydary
>>>
>>> On Mon, Mar 14, 2016 at 5:38 PM, Taste-Of-IT
>>> 
>>> wrote:
>>>
>>> Hello,
>>> i want to backup a view VMs, delete the old Server, install on same
>>> Hardware a new one and restore the VMs. I use oVirt as All-in-One.
>>> What is the best Way? Can i simply copy the full snapshot to an
>>> external usb-disk, or should i use a external backup domain for
>>> that.? And Restore simply copy the snapshot backup to the VM Domain
>>> or use the same backup domain to import the VMs?
>>>
>>> Thx
>>> ___
>>> Users mailing list
>>> Users@ovirt.org
>>> http://lists.ovirt.org/mailman/listinfo/users [2] [2] [2] [1]
>>>
>>> Links:
>>> --
>>> [1] http://lists.ovirt.org/mailman/listinfo/users [2] [2] [2]
>>>
>>> Links:
>>> --
>>> [1] tel:%2B972%20%289%29%207692306
>>> [2] http://lists.ovirt.org/mailman/listinfo/users [2] [2]
>>>
>>> Links:
>>> --
>>> [1] tel:%2B972%20%289%29%207692306
>>> [2] http://lists.ovirt.org/mailman/listinfo/users [2]
>>>
>>
>>  ___
>>  Users mailing list
>>  Users@ovirt.org
>>  http://lists.ovirt.org/mailman/listinfo/users [2]
>>
>>
>>
>> Links:
>> --
>> [1] tel:%2B972%20%289%29%207692306
>> [2] http://lists.ovirt.org/mailman/listinfo/users
>> [3] https://bugzilla.redhat.com/show_bug.cgi?id=1318626
>>
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] How do I start an VM in a different 3.6 cluster

2016-03-19 Thread Bond, Darryl
I re-ran the Reports server engine-setup again and the second cluster appeared 
after that in the reports interface.


The second cluster has 4 hosts and about 30 VMs running fine. It is a different 
CPU architecture than the Default cluster (Sandy Bridge vs Nehalam) though.


Just to elaborate: If a VM is created in either cluster, the only option in the 
cluster pulldown is the cluster it was created in.

So there is no option on which cluster to run a VM in. It can only be migrated 
to another cluster while it is running.


Darryl



From: Yaniv Dary 
Sent: Friday, 18 March 2016 4:29 AM
To: Bond, Darryl
Cc: Alexander Wels; users@ovirt.org
Subject: Re: [ovirt-users] How do I start an VM in a different 3.6 cluster

The reports will only show clusters with hosts\vms. Depends on what the report 
is about.


Yaniv Dary
Technical Product Manager
Red Hat Israel Ltd.
34 Jerusalem Road
Building A, 4th floor
Ra'anana, Israel 4350109

Tel : +972 (9) 7692306
8272306
Email: yd...@redhat.com
IRC : ydary

On Thu, Mar 17, 2016 at 7:39 AM, Bond, Darryl 
> wrote:
There is definitely something amiss with my 2 clusters.
I set up the Reports engine before adding the second cluster. The reports 
engine does not show any of the second cluster hosts.

All Cluster pull down menus in the Reports only show the first cluster.

Darryl



From: users-boun...@ovirt.org 
> on behalf of Bond, 
Darryl >
Sent: Wednesday, 16 March 2016 8:03 AM
To: Alexander Wels; users@ovirt.org
Subject: Re: [ovirt-users] How do I start an VM in a different 3.6 cluster

Sounds logical, that is what I thought.
Except my VM's only have one cluster to choose from, even though there are 2 
clusters with running machines in both.
I have no idea how to tell if a cluster is 'UP' they certainly work fine in 
themselves.

Darryl

From: Alexander Wels >
Sent: Tuesday, 15 March 2016 10:11 PM
To: users@ovirt.org
Cc: Raz Tamir; Bond, Darryl
Subject: Re: [ovirt-users] How do I start an VM in a different 3.6 cluster

On Tuesday, March 15, 2016 01:43:38 PM Raz Tamir wrote:
> You can 'Run Once' and on the left side panel 'Host'.
> There you can pick the desired host
>
>

If you click edit on the VM, the top right will have a drop down, where you
can select the cluster to run the VM in. The target cluster must be UP for
this to be an option in the drop down. Example here [1]

Alexander

[1] http://imgur.com/TCcDabV

>
> Thanks,
> Raz Tamir
> Red Hat Israel
>
> On Tue, Mar 15, 2016 at 11:44 AM, Bond, Darryl 
> > wrote:
> > Hmmm, So, for example,  the VM is listed in one cluster. How do I start it
> > in the another cluster. There is no option to start it anywhere in
> > particular only 'Run' it.
> >
> > After starting, it can then be migrated to another cluster subject to some
> > warnings.
> >
> >
> > How do I run it on a host in another cluster except by migrating it while
> > running. You cannot 'migrate' a stopped VM.
> >
> >
> > When editing a VM there appears to be an option to choose another cluster
> > but as I mentioned there is only one choice, the cluster it is currently
> > in??
> >
> >
> > Darryl
> >
> > 
> > From: Raz Tamir >
> > Sent: Tuesday, 15 March 2016 4:56 PM
> > To: Bond, Darryl
> > Cc: users@ovirt.org
> > Subject: Re: [ovirt-users] How do I start an VM in a different 3.6 cluster
> >
> >
> > Hi,
> > I hope I understand your question correctly.
> > A VM run on a host and host exist in a cluster which means that if you
> > want to make sure your VM is "running" in a specific cluster you need to
> > run it on a host that exist in that cluster.
> > Is that answering your question?
> >
> > Thanks,
> > Raz Tamir
> > Red Hat Isreal
> >
> > On Mar 15, 2016 05:47, "Bond, Darryl" 
> >  > db...@nrggos.com.au>> wrote:
> > I have 2 clusters in one Data Centre , 1xNehalem and 1xSandyBridge I can
> > live migrate from Nehalem to SandyBridge.
> >
> >
> > I cannot change a cluster location for a stopped VM or choose which
> > cluster to Run in.
> >
> > The Cluster pulldown menu for the VM implies that it should be possible
> > but there is only one choice, the cluster the VM last ran in.
> >
> >
> > I can find nothing in the documentation etc.
> >
> >
> > Thanks in advance.
> >
> >
> > Darryl
> >
> >
> > 
> >
> > The contents of this electronic message and any attachments are intended
> 

[ovirt-users] Vms owner

2016-03-19 Thread Budur Nagaraju
HI

Is there any API to check that  what are all the vms deployed by a user ?

Thanks,
Nagaraju
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] MOM crashes ovirt-guest-agent

2016-03-19 Thread Andreas Trawöger
Hi Martin,

Whats extremely prone to errors is the way the guest agent checks the active 
user in GuestAgentLinux2.py line 325:

users = os.popen('/usr/bin/users').read().split()

This creates a new subprocess every time it is executed and if that doesn't 
work for whatever reason the ovirt guest agent crashes instantly.

But I probably should make that suggestions on the devel list.

Regards


Von: Martin Sivak 
Gesendet: Freitag, 18. März 2016 14:44
An: Andreas Trawöger
Cc: oVirt Userlist
Betreff: Re: [ovirt-users] MOM crashes ovirt-guest-agent

Hi,

it is not really a bug. You should give the VM more memory if you
expect that it will need it that fast. The ballooning mechanism has
its disadvantages and this is one of those. We do not react fast
enough when such a fast allocation happens.

There is really not much we can do from the mom / guest agent side. We
could slowly increase the available memory when the guest agent dies
(pretty easy to implement) and we might inform the system that a guest
agent is an important process (if that is even possible) so OOM killer
will avoid it. But that would not help with Cannot allocate memory
error as even the OOM killer takes time before it reacts.

Using low guaranteed memory values with ballooning for critical VMs is
probably not the best idea.

Regards

--
Martin Sivak
msi...@redhat.com
SLA / oVirt

On Fri, Mar 18, 2016 at 1:00 PM, Andreas Trawöger
 wrote:
> Hi,
>
>
> I'm trying to track down why my Foreman Centos7 VM continuously crashes with
> out of Memory errors on my ovirt-3.6 hosts and what seems to happen is the
> following:
>
>
> 1. The Foreman VM only uses 1GB at the beginning and MOM over time reduces
> the memory size from 8GB Ram to the defined minimum of 2GB
>
>
> mom.log:
> 2016-03-18 12:25:42,669 - mom.Controllers.Balloon - INFO - Ballooning
> guest:qvie-foreman from 2210584 to 2100054
>
>
> 2. When the VM needs RAM very quickly like if you do an 'cp /dev/zero
> /run/zero' the ovirt guest agent crashes with an out of memory error.
>
>
> ovirt-guest-agent.log:
>
> Traceback (most recent call last):
>   File "/usr/share/ovirt-guest-agent/OVirtAgentLogic.py", line 239, in
> doWork
> self.sendUserInfo()
>   File "/usr/share/ovirt-guest-agent/OVirtAgentLogic.py", line 355, in
> sendUserInfo
> cur_user = self.dr.getActiveUser()
>   File "/usr/share/ovirt-guest-agent/GuestAgentLinux2.py", line 325, in
> getActiveUser
> users = os.popen('/usr/bin/users').read().split()
> OSError: [Errno 12] Cannot allocate memory
>
> 3. Resulting in an MOM warning that it can't get any memory stats from the
> VM. Leaving the memory size at its minimum size:.
>
>
> mom.log:
>
> mom.Collectors.GuestMemory - WARNING - getVmMemoryStats() error: The
> ovirt-guest-agent is not active
>
>
> Any chances to prevent that from happening? Or is this a bug in MOM /
> ovirt-guest-agent that should be fixed?
>
>
> Greetings
>
> Andreas
>
>
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Howto Backup and Restore on new Server

2016-03-19 Thread Yaniv Dary
https://bugzilla.redhat.com/show_bug.cgi?id=1318626

Yaniv Dary
Technical Product Manager
Red Hat Israel Ltd.
34 Jerusalem Road
Building A, 4th floor
Ra'anana, Israel 4350109

Tel : +972 (9) 7692306
8272306
Email: yd...@redhat.com
IRC : ydary


On Thu, Mar 17, 2016 at 3:55 PM, Taste-Of-IT  wrote:

> Hello Yaniv,
>
> ah ok understand. Export Domain will in Version X not longer supportet. Do
> you have any link to this information?
> thx
>
>
> Am 2016-03-17 14:48, schrieb Yaniv Dary:
>
>> As removing it in the future for replacement flows.
>>
>> Yaniv Dary
>> Technical Product Manager
>> Red Hat Israel Ltd.
>> 34 Jerusalem Road
>> Building A, 4th floor
>> Ra'anana, Israel 4350109
>>
>> Tel : +972 (9) 7692306
>>  8272306
>> Email: yd...@redhat.com
>> IRC : ydary
>>
>> On Tue, Mar 15, 2016 at 2:11 PM, Taste-Of-IT 
>> wrote:
>>
>> Hello Yaniv,
>>>
>>> that was ironical, or? Deprecating like deny or refuse?
>>>
>>> Am 2016-03-15 12:16, schrieb Yaniv Dary:
>>>
>>> Since we will be deprecating export domain to import storage domain
>>> in
>>> the future, I would use it.
>>> It should be a much better experience with less downtime.
>>>
>>> Yaniv Dary
>>> Technical Product Manager
>>> Red Hat Israel Ltd.
>>> 34 Jerusalem Road
>>> Building A, 4th floor
>>> Ra'anana, Israel 4350109
>>>
>>> Tel : +972 (9) 7692306 [1]
>>>  8272306
>>> Email: yd...@redhat.com
>>> IRC : ydary
>>>
>>> On Tue, Mar 15, 2016 at 1:03 PM, Taste-Of-IT
>>> 
>>> wrote:
>>>
>>> Hello Yaniv,
>>>
>>> thanks for your hint. Seems a good idea. Meanwhile i created a
>>> export domain, with the path to a mountpoint and exported the VMs.
>>> Next is to reinstall the server and import VMs. What is in your
>>> point of view the better solution or where are the pros and contrs?
>>>
>>> thx
>>>
>>> Am 2016-03-15 11:58, schrieb Yaniv Dary:
>>>
>>> You can move the VM to a new storage domain and use import storage
>>> domain feature to move VMs from one oVirt to another.
>>>
>>> Yaniv Dary
>>> Technical Product Manager
>>> Red Hat Israel Ltd.
>>> 34 Jerusalem Road
>>> Building A, 4th floor
>>> Ra'anana, Israel 4350109
>>>
>>> Tel : +972 (9) 7692306 [1]
>>>  8272306
>>> Email: yd...@redhat.com
>>> IRC : ydary
>>>
>>> On Mon, Mar 14, 2016 at 5:38 PM, Taste-Of-IT
>>> 
>>> wrote:
>>>
>>> Hello,
>>> i want to backup a view VMs, delete the old Server, install on same
>>> Hardware a new one and restore the VMs. I use oVirt as All-in-One.
>>> What is the best Way? Can i simply copy the full snapshot to an
>>> external usb-disk, or should i use a external backup domain for
>>> that.? And Restore simply copy the snapshot backup to the VM Domain
>>> or use the same backup domain to import the VMs?
>>>
>>> Thx
>>> ___
>>> Users mailing list
>>> Users@ovirt.org
>>> http://lists.ovirt.org/mailman/listinfo/users [2] [2] [1]
>>>
>>> Links:
>>> --
>>> [1] http://lists.ovirt.org/mailman/listinfo/users [2] [2]
>>>
>>> Links:
>>> --
>>> [1] tel:%2B972%20%289%29%207692306
>>> [2] http://lists.ovirt.org/mailman/listinfo/users [2]
>>>
>>
>>
>>
>> Links:
>> --
>> [1] tel:%2B972%20%289%29%207692306
>> [2] http://lists.ovirt.org/mailman/listinfo/users
>>
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Install Hosted Engine NFS4 Mount Failure

2016-03-19 Thread Taste-Of-IT

Hello,

i could solve it by my self. In etc/resolve.conf was "search localhost 
mydomain.com". i removed localhost and the install goes on.

Greatings

Am 2016-03-18 12:12, schrieb Taste-Of-IT:

Hello,
i want to install Self-Hosted-Engine with Data and ISO Domain on NFS4
Share on local Server / Hypervisor. NFS is correct configure, while i
can mount from client and host itself. At the point in installation
setup i have to enter the path hostname:/export i got this error:Error
while mounting specified storage path: mount.nfs: mount system call
failed

in setup log i can see:
ovirt_hosted_engine_setup.storage.nfs plugin.execute:941

Any Idea?
thx
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Hosted engine Single Sign-On to VM with freeIPA not working

2016-03-19 Thread Paul
Hi Ondra,

Thanks for your reply, unfortunately this does not resolve the issue.
I had already seen this bug and tried it without the -authz appendix(maybe
should have mentioned that).
I also (may be wrongfully) assumed that the
"ovirt-engine-extension-aaa-ldap-setup" would not have this issue/bug.

Anyways, I changed it (again) to the DOMAIN without '-authz' by changing:
/etc/ovirt-engine/extensions.d/DOMAIN-authz.properties =>
ovirt.engine.extension.name =  DOMAIN 
/etc/ovirt-engine/extensions.d/DOMAIN-authn.properties =>
ovirt.engine.aaa.authn.authz.plugin = DOMAIN
Systemctl restart ovirt-engine

By the way: login with IPA users doesn't work anymore, you have to log in
with admin internal account and remove your IPA users and add them back to
make them work again.

But still get the error:
pam_sss(gdm-ovirtcred:auth): received for user test6: 17 (Failure setting
user credentials)

Any suggestions?


-Original Message-
From: Ondra Machacek [mailto:omach...@redhat.com] 
Sent: donderdag 17 maart 2016 16:58
To: Paul ; users@ovirt.org
Subject: Re: [ovirt-users] Hosted engine Single Sign-On to VM with freeIPA
not working

Hi,

your authz name should match kerberos name.
So please change your authz name from 'DOMAIN-authz' to 'DOMAIN'

Please see this bz[1] for more detail.

Ondra

[1] https://bugzilla.redhat.com/show_bug.cgi?id=1133137#c7

On 03/17/2016 04:22 PM, Paul wrote:
> Hi,
>
> I am having an issue with getting SSO to work when a standard
> user(UserRole) logs in to the UserPortal.
>
> The user has permission to use only this VM, so after login the 
> console is automatically opened for that VM.
>
> Problem is that it doesn't login on the VM system with the provided 
> credentials. Manual login at the console works without any issues.
>
> HBAC-rule check on IPA shows access is granted. Client has SELINUX in 
> permissive mode and a disabled firewalld.
>
> On the client side I do see some PAM related errors in the logs (see 
> details below). Extensive Google search on error 17 "Failure setting 
> user credentials" didn't show helpful information :-(
>
> AFAIK this is did a pretty standard set-up, all working with RH-family 
> products. I would expect others to encounter this issue as well.
>
> If someone knows any solution or has some directions to fix this it 
> would be greatly appreciated.
>
> Thanks,
>
> Paul
>
> --
>
> System setup: I have 3 systems
>
> The connection between the Engine and IPA is working fine. (I can log 
> in with IPA users etc.) Connection is made according to this document:
> https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Virtu
> alization/3.6/html-single/Administration_Guide/index.html#sect-Configu
> ring_an_External_LDAP_Provider
>
> Configuration of the client is done according to this document:
> https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Virtu
> alization/3.6/html/Virtual_Machine_Management_Guide/chap-Additional_Co
> nfiguration.html#sect-Configuring_Single_Sign-On_for_Virtual_Machines
>
> --- Hosted Engine:
>
> [root@engine ~]# cat /etc/redhat-release
>
> CentOS Linux release 7.2.1511 (Core)
>
> [root@engine ~]# uname -a
>
> Linux engine.DOMAIN.COM 3.10.0-327.10.1.el7.x86_64 #1 SMP Tue Feb 16
> 17:03:50 UTC 2016 x86_64 x86_64 x86_64 GNU/Linux
>
> [root@engine ~]# rpm -qa | grep ovirt
>
> ovirt-vmconsole-1.0.0-1.el7.centos.noarch
>
> ovirt-engine-restapi-3.6.2.6-1.el7.centos.noarch
>
> ovirt-setup-lib-1.0.1-1.el7.centos.noarch
>
> ovirt-engine-setup-plugin-ovirt-engine-common-3.6.3.4-1.el7.centos.noa
> rch
>
> ovirt-engine-setup-3.6.3.4-1.el7.centos.noarch
>
> ovirt-image-uploader-3.6.0-1.el7.centos.noarch
>
> ovirt-engine-extension-aaa-jdbc-1.0.5-1.el7.noarch
>
> ovirt-host-deploy-1.4.1-1.el7.centos.noarch
>
> ovirt-engine-extension-aaa-ldap-setup-1.1.2-1.el7.centos.noarch
>
> ovirt-engine-wildfly-overlay-8.0.4-1.el7.noarch
>
> ovirt-engine-wildfly-8.2.1-1.el7.x86_64
>
> ovirt-vmconsole-proxy-1.0.0-1.el7.centos.noarch
>
> ovirt-engine-tools-3.6.2.6-1.el7.centos.noarch
>
> ovirt-engine-dbscripts-3.6.2.6-1.el7.centos.noarch
>
> ovirt-engine-backend-3.6.2.6-1.el7.centos.noarch
>
> ovirt-engine-3.6.2.6-1.el7.centos.noarch
>
> ovirt-engine-extension-aaa-ldap-1.1.2-1.el7.centos.noarch
>
> ovirt-engine-setup-base-3.6.3.4-1.el7.centos.noarch
>
> ovirt-engine-setup-plugin-ovirt-engine-3.6.3.4-1.el7.centos.noarch
>
> ovirt-engine-setup-plugin-websocket-proxy-3.6.3.4-1.el7.centos.noarch
>
> ovirt-engine-vmconsole-proxy-helper-3.6.3.4-1.el7.centos.noarch
>
> ovirt-engine-cli-3.6.2.0-1.el7.centos.noarch
>
> ovirt-host-deploy-java-1.4.1-1.el7.centos.noarch
>
> ovirt-engine-userportal-3.6.2.6-1.el7.centos.noarch
>
> ovirt-engine-webadmin-portal-3.6.2.6-1.el7.centos.noarch
>
> ovirt-guest-agent-common-1.0.11-1.el7.noarch
>
> ovirt-release36-003-1.noarch
>
> ovirt-iso-uploader-3.6.0-1.el7.centos.noarch
>
> ovirt-engine-lib-3.6.3.4-1.el7.centos.noarch
>
> 

[ovirt-users] [ANN] oVirt 3.6.4 First Release Candidate is now available for testing

2016-03-19 Thread Sandro Bonazzola
The oVirt Project is pleased to announce the availability of the First
Release Candidate of oVirt 3.6.4 for testing, as of March 16th, 2016

This release is available now for:
* Fedora 22
* Red Hat Enterprise Linux 6.7
* CentOS Linux 6.7 (or similar)
* Red Hat Enterprise Linux 7.2 or later
* CentOS Linux (or similar) 7.2 or later

This release supports Hypervisor Hosts running:
* Red Hat Enterprise Linux 7.2 or later
* CentOS Linux (or similar) 7.2 or later
* Fedora 22

This release is also available with experimental support for:
* Debian 8.3 Jessie

This release candidate includes the following updated packages:

   - ovirt-engine


   - vdsm


   - ovirt-hosted-engine-ha


   - ovirt-hosted-engine-setup


See the release notes [1] for installation / upgrade instructions and a
list of new features and bugs fixed.

Notes:
* A new oVirt Live ISO is already available [2].
* Mirrors[3] might need up to one day to synchronize.

Additional Resources:
* Read more about the oVirt 3.6.3 release highlights:
http://www.ovirt.org/release/3.6.4/
* Get more oVirt Project updates on Twitter: https://twitter.com/ovirt
* Check out the latest project news on the oVirt blog:
http://www.ovirt.org/blog/

[1] http://www.ovirt.org/release/3.6.4/
[2] http://resources.ovirt.org/pub/ovirt-3.6-pre/iso/
[3] http://www.ovirt.org/Repository_mirrors#Current_mirrors


-- 
Sandro Bonazzola
Better technology. Faster innovation. Powered by community collaboration.
See how it works at redhat.com
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] centos 7.1 and up & ixgbe

2016-03-19 Thread Bloemen , Jurriën
Hi Johan,

Could you check if you see the following in you dmesg or message log file?

[1123306.014288] [ cut here ]
[1123306.014302] WARNING: at net/core/dev.c:2189 
skb_warn_bad_offload+0xcd/0xda()
[1123306.014306] : caps=(0x00024849, 0x) len=330 
data_len=276 gso_size=276 gso_type=1 ip_summed=1
[1123306.014308] Modules linked in: vhost_net macvtap macvlan ip6table_filter 
ip6_tables iptable_filter ip_tables ebt_arp ebtable_nat ebtables tun 
scsi_transport_iscsi iTCO_wdt iTCO_vendor_support dm_service_time 
intel_powerclamp coretemp intel_rapl kvm_intel kvm crct10dif_pclmul 
crc32_pclmul ghash_clmulni_intel cryptd pcspkr sb_edac edac_core i2c_i801 
lpc_ich mfd_core mei_me mei wmi ioatdma shpchp ipmi_devintf ipmi_si 
ipmi_msghandler acpi_power_meter acpi_pad 8021q garp mrp bridge stp llc bonding 
dm_multipath xfs libcrc32c sd_mod crc_t10dif crct10dif_common ast syscopyarea 
sysfillrect sysimgblt drm_kms_helper ttm crc32c_intel igb drm ahci ixgbe 
i2c_algo_bit libahci libata mdio i2c_core ptp megaraid_sas pps_core dca 
dm_mirror dm_region_hash dm_log dm_mod
[1123306.014360] CPU: 30 PID: 0 Comm: swapper/30 Tainted: GW   
--   3.10.0-229.1.2.el7.x86_64 #1
[1123306.014362] Hardware name: Supermicro SYS-2028TP-HC1TR/X10DRT-PT, BIOS 1.1 
08/03/2015
[1123306.014364]  881fffc439a8 5326fb90ad1041ea 881fffc43960 
81604afa
[1123306.014371]  881fffc43998 8106e34b 881fcebb0500 
881fce88c000
[1123306.014376]  0001 0001 881fcebb0500 
881fffc43a00
[1123306.014381] Call Trace:
[1123306.014383][] dump_stack+0x19/0x1b
[1123306.014396]  [] warn_slowpath_common+0x6b/0xb0
[1123306.014399]  [] warn_slowpath_fmt+0x5c/0x80
[1123306.014405]  [] ? ___ratelimit+0x93/0x100
[1123306.014409]  [] skb_warn_bad_offload+0xcd/0xda
[1123306.014425]  [] __skb_gso_segment+0x79/0xb0
[1123306.014429]  [] dev_hard_start_xmit+0x1a2/0x580
[1123306.014438]  [] ? deliver_clone+0x50/0x50 [bridge]
[1123306.014443]  [] sch_direct_xmit+0xee/0x1c0
[1123306.014447]  [] dev_queue_xmit+0x1f8/0x4a0
[1123306.014453]  [] br_dev_queue_push_xmit+0x7b/0xc0 [bridge]
[1123306.014458]  [] br_forward_finish+0x22/0x60 [bridge]
[1123306.014464]  [] __br_forward+0x80/0xf0 [bridge]
[1123306.014469]  [] br_forward+0x8b/0xa0 [bridge]
[1123306.014476]  [] br_handle_frame_finish+0x175/0x410 
[bridge]
[1123306.014481]  [] br_handle_frame+0x175/0x260 [bridge]
[1123306.014485]  [] __netif_receive_skb_core+0x282/0x870
[1123306.014490]  [] ? read_tsc+0x9/0x10
[1123306.014493]  [] __netif_receive_skb+0x18/0x60
[1123306.014497]  [] netif_receive_skb+0x40/0xd0
[1123306.014500]  [] napi_gro_receive+0x80/0xb0
[1123306.014512]  [] ixgbe_clean_rx_irq+0x7ac/0xb30 [ixgbe]
[1123306.014519]  [] ixgbe_poll+0x4bb/0x930 [ixgbe]
[1123306.014524]  [] net_rx_action+0x152/0x240
[1123306.014528]  [] __do_softirq+0xf7/0x290
[1123306.014533]  [] call_softirq+0x1c/0x30
[1123306.014539]  [] do_softirq+0x55/0x90
[1123306.014543]  [] irq_exit+0x115/0x120
[1123306.014546]  [] do_IRQ+0x58/0xf0
[1123306.014551]  [] common_interrupt+0x6d/0x6d
[1123306.014553][] ? cpuidle_enter_state+0x52/0xc0
[1123306.014561]  [] ? cpuidle_enter_state+0x48/0xc0
[1123306.014565]  [] cpuidle_idle_call+0xc5/0x200
[1123306.014569]  [] arch_cpu_idle+0xe/0x30
[1123306.014574]  [] cpu_startup_entry+0xf5/0x290
[1123306.014580]  [] start_secondary+0x1ba/0x230
[1123306.014582] ---[ end trace 4d5a1bc838e1fcc0 ]---

If so, then could you try the following:

ethtool -K  lro off

Do this for all the 10G intel nics and check if the problems still exists


Kind regards,

Jurriën Bloemen

On 17-03-16 09:49, Johan Kooijman wrote:
Hi all,

Since we upgraded to the latest ovirt node running 7.2, we're seeing that nodes 
become unavailable after a while. It's running fine, with a couple of VM's on 
it, untill it becomes non responsive. At that moment it doesn't even respond to 
ICMP. It'll come back by itself after a while, but oVirt fences the machine 
before that time and restarts VM's elsewhere.

Engine tells me this message:

VDSM host09 command failed: Message timeout which can be caused by 
communication issues

Is anyone else experiencing these issues with ixgbe drivers? I'm running on 
Intel X540-AT2 cards.

--
Met vriendelijke groeten / With kind regards,
Johan Kooijman



___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


This message (including any attachments) may contain information that is 
privileged or confidential. If you are not the intended recipient, please 
notify the sender and delete this email immediately from your systems and 
destroy all copies of it. You may not, directly or indirectly, use, disclose, 
distribute, print or copy this email or any part of it if you are not the 
intended recipient
___
Users mailing list
Users@ovirt.org

Re: [ovirt-users] MOM crashes ovirt-guest-agent

2016-03-19 Thread Martin Sivak
Hi,

it is not really a bug. You should give the VM more memory if you
expect that it will need it that fast. The ballooning mechanism has
its disadvantages and this is one of those. We do not react fast
enough when such a fast allocation happens.

There is really not much we can do from the mom / guest agent side. We
could slowly increase the available memory when the guest agent dies
(pretty easy to implement) and we might inform the system that a guest
agent is an important process (if that is even possible) so OOM killer
will avoid it. But that would not help with Cannot allocate memory
error as even the OOM killer takes time before it reacts.

Using low guaranteed memory values with ballooning for critical VMs is
probably not the best idea.

Regards

--
Martin Sivak
msi...@redhat.com
SLA / oVirt

On Fri, Mar 18, 2016 at 1:00 PM, Andreas Trawöger
 wrote:
> Hi,
>
>
> I'm trying to track down why my Foreman Centos7 VM continuously crashes with
> out of Memory errors on my ovirt-3.6 hosts and what seems to happen is the
> following:
>
>
> 1. The Foreman VM only uses 1GB at the beginning and MOM over time reduces
> the memory size from 8GB Ram to the defined minimum of 2GB
>
>
> mom.log:
> 2016-03-18 12:25:42,669 - mom.Controllers.Balloon - INFO - Ballooning
> guest:qvie-foreman from 2210584 to 2100054
>
>
> 2. When the VM needs RAM very quickly like if you do an 'cp /dev/zero
> /run/zero' the ovirt guest agent crashes with an out of memory error.
>
>
> ovirt-guest-agent.log:
>
> Traceback (most recent call last):
>   File "/usr/share/ovirt-guest-agent/OVirtAgentLogic.py", line 239, in
> doWork
> self.sendUserInfo()
>   File "/usr/share/ovirt-guest-agent/OVirtAgentLogic.py", line 355, in
> sendUserInfo
> cur_user = self.dr.getActiveUser()
>   File "/usr/share/ovirt-guest-agent/GuestAgentLinux2.py", line 325, in
> getActiveUser
> users = os.popen('/usr/bin/users').read().split()
> OSError: [Errno 12] Cannot allocate memory
>
> 3. Resulting in an MOM warning that it can't get any memory stats from the
> VM. Leaving the memory size at its minimum size:.
>
>
> mom.log:
>
> mom.Collectors.GuestMemory - WARNING - getVmMemoryStats() error: The
> ovirt-guest-agent is not active
>
>
> Any chances to prevent that from happening? Or is this a bug in MOM /
> ovirt-guest-agent that should be fixed?
>
>
> Greetings
>
> Andreas
>
>
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] oVirt - rescan new copied disks to storage

2016-03-19 Thread Nir Soffer
On Thu, Mar 17, 2016 at 4:37 PM, p...@email.cz  wrote:
> Hello,
> how can I put a copy of VM disks ( outside ovirt envir. copy ) to ovirt
> inventory ?? ( available  for " attach disk"  option visibility  )

Do you mean how to import existing vm disk into ovirt?

You can use v2v (in ovirt-3.6) to import vms directly from vmware, or
ova created by vmware.

If you need to import qcow or raw disk, it is not automated yet, we
are working on it for 4.0.

Maybe Shahar can add more info what available today and what are the workarounds
to import disks in 3.6.

In 4.0 you will be able to upload disks directly using http,
see http://www.ovirt.org/develop/release-management/features/image-upload/

Nir
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] centos 7.1 and up & ixgbe

2016-03-19 Thread Nir Soffer
On Thu, Mar 17, 2016 at 10:49 AM, Johan Kooijman  wrote:
> Hi all,
>
> Since we upgraded to the latest ovirt node running 7.2, we're seeing that
> nodes become unavailable after a while. It's running fine, with a couple of
> VM's on it, untill it becomes non responsive. At that moment it doesn't even
> respond to ICMP. It'll come back by itself after a while, but oVirt fences
> the machine before that time and restarts VM's elsewhere.
>
> Engine tells me this message:
>
> VDSM host09 command failed: Message timeout which can be caused by
> communication issues
>
> Is anyone else experiencing these issues with ixgbe drivers? I'm running on
> Intel X540-AT2 cards.

We will need engine and vdsm logs to understand this issue.

Can you file a bug and attach ful logs?

Nir
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] question mark on VM ( DB status 8 )

2016-03-19 Thread p...@email.cz

I used that, but lock active in a few seconds again.
And oVirt do not update any VM's status

Pa.

On 17.3.2016 10:26, Eli Mesika wrote:





*From: *p...@email.cz 
*To: *"users" >
*Sent: *Thursday, March 17, 2016 9:27:11 AM
*Subject: *[ovirt-users] question mark on VM ( DB status 8 )

Hello,
during backup VM hanged with question mark in ovirt and status 8
in DB, snapshot file ( for backup )is locked.
How to clean snapshot locking a wake up this VM from "unknow"
state ???


Try using the unlock_entity.sh utility (run with --help for usage)



regs.
pavel

___
Users mailing list
Users@ovirt.org 
http://lists.ovirt.org/mailman/listinfo/users




___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Unable to move disk on (non-)stateless machine

2016-03-19 Thread nicolas

El 2016-03-18 08:06, Tomas Jelinek escribió:

- Original Message -

From: nico...@devels.es
To: users@ovirt.org
Sent: Wednesday, March 16, 2016 7:14:22 PM
Subject: [ovirt-users] Unable to move disk on (non-)stateless machine

Hi,

We're running oVirt 3.6.3.4-1. We have 2 storage domains of the same
kind (both iSCSI). We're moving some of the disks from one to other,
preferably without shutting down the machine. When moving a disk with
the VM started, the following error is thrown:

 Error while executing action: Cannot move Virtual Machine Disk. 
The

VM is running as Stateless. Please try again when VM is not running as
Stateless.

This machine is inside a VM pool based on a template that is not
stateless, nor is the VM pool, nor the VM itself.

In [1]: template = api.templates.get(name='templatename')
In [2]: template.get_stateless()
Out[2]: False

In [3]: vm = api.vms.get(name='vmname')
In [4]: vm.get_stateless()
Out[4]: False

Additionally, in the General tab of the VM Pool:

 Is Stateless:false

If nothing is stateless, why is the error shown?


The VMs in a pool are always stateless.
There is an RFE [1] making the pools stateful, but not yet implemented.

But the reporting is not correct, we should not report they are
stateless if they are not.
Can you please open a bug for this?


Sure. Done: https://bugzilla.redhat.com/show_bug.cgi?id=1318955

Regards.


Thank you!

[1]: https://bugzilla.redhat.com/show_bug.cgi?id=1234394



Thanks.

Nicolás
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] NFS firewall rule

2016-03-19 Thread Bill James
How do I make it that when ever I add or reinstall a hardware node that 
oVirt creates a rule for NFS, port 2049?


I have to either add it manually after ovirt removes it, or just tell 
ovirt not to touch firewall rules.

Our ISO domain is not hosted by the ovirt-engine, fyi.


ovirt-engine-3.6.3.4-1.el7.centos.noarch

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] MOM crashes ovirt-guest-agent

2016-03-19 Thread Martin Sivak
> Whats extremely prone to errors is the way the guest agent checks the active 
> user in GuestAgentLinux2.py line 325:
>
> users = os.popen('/usr/bin/users').read().split()

That is something we could probably improve. The maintainer is Vinzenz Feenstra.

Martin


On Fri, Mar 18, 2016 at 3:13 PM, Andreas Trawöger
 wrote:
> Hi Martin,
>
> Whats extremely prone to errors is the way the guest agent checks the active 
> user in GuestAgentLinux2.py line 325:
>
> users = os.popen('/usr/bin/users').read().split()
>
> This creates a new subprocess every time it is executed and if that doesn't 
> work for whatever reason the ovirt guest agent crashes instantly.
>
> But I probably should make that suggestions on the devel list.
>
> Regards
>
> 
> Von: Martin Sivak 
> Gesendet: Freitag, 18. März 2016 14:44
> An: Andreas Trawöger
> Cc: oVirt Userlist
> Betreff: Re: [ovirt-users] MOM crashes ovirt-guest-agent
>
> Hi,
>
> it is not really a bug. You should give the VM more memory if you
> expect that it will need it that fast. The ballooning mechanism has
> its disadvantages and this is one of those. We do not react fast
> enough when such a fast allocation happens.
>
> There is really not much we can do from the mom / guest agent side. We
> could slowly increase the available memory when the guest agent dies
> (pretty easy to implement) and we might inform the system that a guest
> agent is an important process (if that is even possible) so OOM killer
> will avoid it. But that would not help with Cannot allocate memory
> error as even the OOM killer takes time before it reacts.
>
> Using low guaranteed memory values with ballooning for critical VMs is
> probably not the best idea.
>
> Regards
>
> --
> Martin Sivak
> msi...@redhat.com
> SLA / oVirt
>
> On Fri, Mar 18, 2016 at 1:00 PM, Andreas Trawöger
>  wrote:
>> Hi,
>>
>>
>> I'm trying to track down why my Foreman Centos7 VM continuously crashes with
>> out of Memory errors on my ovirt-3.6 hosts and what seems to happen is the
>> following:
>>
>>
>> 1. The Foreman VM only uses 1GB at the beginning and MOM over time reduces
>> the memory size from 8GB Ram to the defined minimum of 2GB
>>
>>
>> mom.log:
>> 2016-03-18 12:25:42,669 - mom.Controllers.Balloon - INFO - Ballooning
>> guest:qvie-foreman from 2210584 to 2100054
>>
>>
>> 2. When the VM needs RAM very quickly like if you do an 'cp /dev/zero
>> /run/zero' the ovirt guest agent crashes with an out of memory error.
>>
>>
>> ovirt-guest-agent.log:
>>
>> Traceback (most recent call last):
>>   File "/usr/share/ovirt-guest-agent/OVirtAgentLogic.py", line 239, in
>> doWork
>> self.sendUserInfo()
>>   File "/usr/share/ovirt-guest-agent/OVirtAgentLogic.py", line 355, in
>> sendUserInfo
>> cur_user = self.dr.getActiveUser()
>>   File "/usr/share/ovirt-guest-agent/GuestAgentLinux2.py", line 325, in
>> getActiveUser
>> users = os.popen('/usr/bin/users').read().split()
>> OSError: [Errno 12] Cannot allocate memory
>>
>> 3. Resulting in an MOM warning that it can't get any memory stats from the
>> VM. Leaving the memory size at its minimum size:.
>>
>>
>> mom.log:
>>
>> mom.Collectors.GuestMemory - WARNING - getVmMemoryStats() error: The
>> ovirt-guest-agent is not active
>>
>>
>> Any chances to prevent that from happening? Or is this a bug in MOM /
>> ovirt-guest-agent that should be fixed?
>>
>>
>> Greetings
>>
>> Andreas
>>
>>
>> ___
>> Users mailing list
>> Users@ovirt.org
>> http://lists.ovirt.org/mailman/listinfo/users
>>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] Windows 2012 R2 VM on OVIRT

2016-03-19 Thread Bill Michelon
Hi, I have set up a Windows 2012 R2 vm in OVIRT.  I have tried using e1000 and 
virtio drivers for network connection.  I am able to establish a connection, 
however, cannot access internet.  Despite the fact the connection shows 
Internet, received and sent bytes seem very low.

Has anyone seen this issue and can help?

Thank you.


Bill Michelon
Global IT & Logistics Manager
Accertify, Inc.





"This message and any attachments may contain confidential information. If you
have received this  message in error, any use or distribution is prohibited. 
Please notify us by reply e-mail if you have mistakenly received this message,
and immediately and permanently delete it and any attachments. Thank you."___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] How do I start an VM in a different 3.6 cluster

2016-03-19 Thread Bond, Darryl
I actually hadn't gone back to the oVirt manager after running engine-setup on 
the Reports server, just checked that it was available in Reports.

I just looked back in the Engine management GUI and both clusters are now an 
option. Something about running engine-setup on the reports server fixed it???


Now I can choose which cluster to run in :)


Darryl



From: Yaniv Dary 
Sent: Friday, 18 March 2016 4:29 AM
To: Bond, Darryl
Cc: Alexander Wels; users@ovirt.org
Subject: Re: [ovirt-users] How do I start an VM in a different 3.6 cluster

The reports will only show clusters with hosts\vms. Depends on what the report 
is about.


Yaniv Dary
Technical Product Manager
Red Hat Israel Ltd.
34 Jerusalem Road
Building A, 4th floor
Ra'anana, Israel 4350109

Tel : +972 (9) 7692306
8272306
Email: yd...@redhat.com
IRC : ydary

On Thu, Mar 17, 2016 at 7:39 AM, Bond, Darryl 
> wrote:
There is definitely something amiss with my 2 clusters.
I set up the Reports engine before adding the second cluster. The reports 
engine does not show any of the second cluster hosts.

All Cluster pull down menus in the Reports only show the first cluster.

Darryl



From: users-boun...@ovirt.org 
> on behalf of Bond, 
Darryl >
Sent: Wednesday, 16 March 2016 8:03 AM
To: Alexander Wels; users@ovirt.org
Subject: Re: [ovirt-users] How do I start an VM in a different 3.6 cluster

Sounds logical, that is what I thought.
Except my VM's only have one cluster to choose from, even though there are 2 
clusters with running machines in both.
I have no idea how to tell if a cluster is 'UP' they certainly work fine in 
themselves.

Darryl

From: Alexander Wels >
Sent: Tuesday, 15 March 2016 10:11 PM
To: users@ovirt.org
Cc: Raz Tamir; Bond, Darryl
Subject: Re: [ovirt-users] How do I start an VM in a different 3.6 cluster

On Tuesday, March 15, 2016 01:43:38 PM Raz Tamir wrote:
> You can 'Run Once' and on the left side panel 'Host'.
> There you can pick the desired host
>
>

If you click edit on the VM, the top right will have a drop down, where you
can select the cluster to run the VM in. The target cluster must be UP for
this to be an option in the drop down. Example here [1]

Alexander

[1] http://imgur.com/TCcDabV

>
> Thanks,
> Raz Tamir
> Red Hat Israel
>
> On Tue, Mar 15, 2016 at 11:44 AM, Bond, Darryl 
> > wrote:
> > Hmmm, So, for example,  the VM is listed in one cluster. How do I start it
> > in the another cluster. There is no option to start it anywhere in
> > particular only 'Run' it.
> >
> > After starting, it can then be migrated to another cluster subject to some
> > warnings.
> >
> >
> > How do I run it on a host in another cluster except by migrating it while
> > running. You cannot 'migrate' a stopped VM.
> >
> >
> > When editing a VM there appears to be an option to choose another cluster
> > but as I mentioned there is only one choice, the cluster it is currently
> > in??
> >
> >
> > Darryl
> >
> > 
> > From: Raz Tamir >
> > Sent: Tuesday, 15 March 2016 4:56 PM
> > To: Bond, Darryl
> > Cc: users@ovirt.org
> > Subject: Re: [ovirt-users] How do I start an VM in a different 3.6 cluster
> >
> >
> > Hi,
> > I hope I understand your question correctly.
> > A VM run on a host and host exist in a cluster which means that if you
> > want to make sure your VM is "running" in a specific cluster you need to
> > run it on a host that exist in that cluster.
> > Is that answering your question?
> >
> > Thanks,
> > Raz Tamir
> > Red Hat Isreal
> >
> > On Mar 15, 2016 05:47, "Bond, Darryl" 
> >  > db...@nrggos.com.au>> wrote:
> > I have 2 clusters in one Data Centre , 1xNehalem and 1xSandyBridge I can
> > live migrate from Nehalem to SandyBridge.
> >
> >
> > I cannot change a cluster location for a stopped VM or choose which
> > cluster to Run in.
> >
> > The Cluster pulldown menu for the VM implies that it should be possible
> > but there is only one choice, the cluster the VM last ran in.
> >
> >
> > I can find nothing in the documentation etc.
> >
> >
> > Thanks in advance.
> >
> >
> > Darryl
> >
> >
> > 
> >
> > The contents of this electronic message and any attachments are intended
> > only for the addressee and may contain legally privileged, personal,
> > sensitive or confidential information. If you are not the intended
> > addressee, and have received this 

Re: [ovirt-users] Vms owner

2016-03-19 Thread Oved Ourfali
Hi Budur,

If you look at
/ovirt-engine/api/roles

You'll see a list of roles.
The role which is equivalent to the "VM owner" is UserVmManager, and you
can see that its ID is "def6----def6".

Then, if you go to /ovirt-engine/api/users/user-id/permissions you'll get
all the permissions granted to this user, and there you can look for this
permission.
Whenever it exists, with combination of a VM, it will mean that this user
is the UserVmManager of this VM.
It doesn't mean he created it, but that he was granted this permission.

Hope that is what you were looking for.

Regards,
Oved

On Thu, Mar 17, 2016 at 7:31 AM, Budur Nagaraju  wrote:

> HI
>
> Is there any API to check that  what are all the vms deployed by a user ?
>
> Thanks,
> Nagaraju
>
>
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
>
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] How do I start an VM in a different 3.6 cluster

2016-03-19 Thread Bond, Darryl
There is definitely something amiss with my 2 clusters.
I set up the Reports engine before adding the second cluster. The reports 
engine does not show any of the second cluster hosts.

All Cluster pull down menus in the Reports only show the first cluster.

Darryl



From: users-boun...@ovirt.org  on behalf of Bond, 
Darryl 
Sent: Wednesday, 16 March 2016 8:03 AM
To: Alexander Wels; users@ovirt.org
Subject: Re: [ovirt-users] How do I start an VM in a different 3.6 cluster

Sounds logical, that is what I thought.
Except my VM's only have one cluster to choose from, even though there are 2 
clusters with running machines in both.
I have no idea how to tell if a cluster is 'UP' they certainly work fine in 
themselves.

Darryl

From: Alexander Wels 
Sent: Tuesday, 15 March 2016 10:11 PM
To: users@ovirt.org
Cc: Raz Tamir; Bond, Darryl
Subject: Re: [ovirt-users] How do I start an VM in a different 3.6 cluster

On Tuesday, March 15, 2016 01:43:38 PM Raz Tamir wrote:
> You can 'Run Once' and on the left side panel 'Host'.
> There you can pick the desired host
>
>

If you click edit on the VM, the top right will have a drop down, where you
can select the cluster to run the VM in. The target cluster must be UP for
this to be an option in the drop down. Example here [1]

Alexander

[1] http://imgur.com/TCcDabV

>
> Thanks,
> Raz Tamir
> Red Hat Israel
>
> On Tue, Mar 15, 2016 at 11:44 AM, Bond, Darryl  wrote:
> > Hmmm, So, for example,  the VM is listed in one cluster. How do I start it
> > in the another cluster. There is no option to start it anywhere in
> > particular only 'Run' it.
> >
> > After starting, it can then be migrated to another cluster subject to some
> > warnings.
> >
> >
> > How do I run it on a host in another cluster except by migrating it while
> > running. You cannot 'migrate' a stopped VM.
> >
> >
> > When editing a VM there appears to be an option to choose another cluster
> > but as I mentioned there is only one choice, the cluster it is currently
> > in??
> >
> >
> > Darryl
> >
> > 
> > From: Raz Tamir 
> > Sent: Tuesday, 15 March 2016 4:56 PM
> > To: Bond, Darryl
> > Cc: users@ovirt.org
> > Subject: Re: [ovirt-users] How do I start an VM in a different 3.6 cluster
> >
> >
> > Hi,
> > I hope I understand your question correctly.
> > A VM run on a host and host exist in a cluster which means that if you
> > want to make sure your VM is "running" in a specific cluster you need to
> > run it on a host that exist in that cluster.
> > Is that answering your question?
> >
> > Thanks,
> > Raz Tamir
> > Red Hat Isreal
> >
> > On Mar 15, 2016 05:47, "Bond, Darryl"  db...@nrggos.com.au>> wrote:
> > I have 2 clusters in one Data Centre , 1xNehalem and 1xSandyBridge I can
> > live migrate from Nehalem to SandyBridge.
> >
> >
> > I cannot change a cluster location for a stopped VM or choose which
> > cluster to Run in.
> >
> > The Cluster pulldown menu for the VM implies that it should be possible
> > but there is only one choice, the cluster the VM last ran in.
> >
> >
> > I can find nothing in the documentation etc.
> >
> >
> > Thanks in advance.
> >
> >
> > Darryl
> >
> >
> > 
> >
> > The contents of this electronic message and any attachments are intended
> > only for the addressee and may contain legally privileged, personal,
> > sensitive or confidential information. If you are not the intended
> > addressee, and have received this email, any transmission, distribution,
> > downloading, printing or photocopying of the contents of this message or
> > attachments is strictly prohibited. Any legal privilege or confidentiality
> > attached to this message and attachments is not waived, lost or destroyed
> > by reason of delivery to any person other than intended addressee. If you
> > have received this message and are not the intended addressee you should
> > notify the sender by return email and destroy all copies of the message
> > and
> > any attachments. Unless expressly attributed, the views expressed in this
> > email do not necessarily represent the views of the company.
> > ___
> > Users mailing list
> > Users@ovirt.org
> > http://lists.ovirt.org/mailman/listinfo/users




The contents of this electronic message and any attachments are intended only 
for the addressee and may contain legally privileged, personal, sensitive or 
confidential information. If you are not the intended addressee, and have 
received this email, any transmission, distribution, downloading, printing or 
photocopying of the contents of this message or attachments is strictly 
prohibited. Any legal privilege or confidentiality attached to this message and 

Re: [ovirt-users] question mark on VM ( DB status 8 )

2016-03-19 Thread Nir Soffer
On Thu, Mar 17, 2016 at 11:35 AM, p...@email.cz  wrote:
> I used that, but lock active in a few seconds again.
> And oVirt do not update any VM's status

Unlocking entities is ok when you know that the operation that took
the lock is finished
or failed. This is a workaround for buggy operations leaving disks in
locked state, not
a normal way to use the system.

We first must understand what is the flow that caused the snapshot to
be locked, and
why it remain locked.

Please describe in detail the operations in the engine side, and
provide engine and vdsm
logs showing this timeframe.

Nir

>
> Pa.
>
>
> On 17.3.2016 10:26, Eli Mesika wrote:
>
>
>
> 
>
> From: p...@email.cz
> To: "users" 
> Sent: Thursday, March 17, 2016 9:27:11 AM
> Subject: [ovirt-users] question mark on VM ( DB status 8 )
>
> Hello,
> during backup

What do you mean by "backup"? Can you describe how do you backup the vm?

> VM hanged with question mark in ovirt and status 8 in DB,
> snapshot file ( for backup )is locked.
> How to clean snapshot locking a wake up this VM from "unknow" state ???
>
>
> Try using the unlock_entity.sh utility (run with --help for usage)
>
>
>
> regs.
> pavel
>
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
>
>
>
>
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Hosted engine Single Sign-On to VM with freeIPA not working

2016-03-19 Thread Ondra Machacek

Hi,

your authz name should match kerberos name.
So please change your authz name from 'DOMAIN-authz' to 'DOMAIN'

Please see this bz[1] for more detail.

Ondra

[1] https://bugzilla.redhat.com/show_bug.cgi?id=1133137#c7

On 03/17/2016 04:22 PM, Paul wrote:

Hi,

I am having an issue with getting SSO to work when a standard
user(UserRole) logs in to the UserPortal.

The user has permission to use only this VM, so after login the console
is automatically opened for that VM.

Problem is that it doesn't login on the VM system with the provided
credentials. Manual login at the console works without any issues.

HBAC-rule check on IPA shows access is granted. Client has SELINUX in
permissive mode and a disabled firewalld.

On the client side I do see some PAM related errors in the logs (see
details below). Extensive Google search on error 17 "Failure setting
user credentials" didn't show helpful information :-(

AFAIK this is did a pretty standard set-up, all working with RH-family
products. I would expect others to encounter this issue as well.

If someone knows any solution or has some directions to fix this it
would be greatly appreciated.

Thanks,

Paul

--

System setup: I have 3 systems

The connection between the Engine and IPA is working fine. (I can log in
with IPA users etc.) Connection is made according to this document:
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Virtualization/3.6/html-single/Administration_Guide/index.html#sect-Configuring_an_External_LDAP_Provider

Configuration of the client is done according to this document:
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Virtualization/3.6/html/Virtual_Machine_Management_Guide/chap-Additional_Configuration.html#sect-Configuring_Single_Sign-On_for_Virtual_Machines

--- Hosted Engine:

[root@engine ~]# cat /etc/redhat-release

CentOS Linux release 7.2.1511 (Core)

[root@engine ~]# uname -a

Linux engine.DOMAIN.COM 3.10.0-327.10.1.el7.x86_64 #1 SMP Tue Feb 16
17:03:50 UTC 2016 x86_64 x86_64 x86_64 GNU/Linux

[root@engine ~]# rpm -qa | grep ovirt

ovirt-vmconsole-1.0.0-1.el7.centos.noarch

ovirt-engine-restapi-3.6.2.6-1.el7.centos.noarch

ovirt-setup-lib-1.0.1-1.el7.centos.noarch

ovirt-engine-setup-plugin-ovirt-engine-common-3.6.3.4-1.el7.centos.noarch

ovirt-engine-setup-3.6.3.4-1.el7.centos.noarch

ovirt-image-uploader-3.6.0-1.el7.centos.noarch

ovirt-engine-extension-aaa-jdbc-1.0.5-1.el7.noarch

ovirt-host-deploy-1.4.1-1.el7.centos.noarch

ovirt-engine-extension-aaa-ldap-setup-1.1.2-1.el7.centos.noarch

ovirt-engine-wildfly-overlay-8.0.4-1.el7.noarch

ovirt-engine-wildfly-8.2.1-1.el7.x86_64

ovirt-vmconsole-proxy-1.0.0-1.el7.centos.noarch

ovirt-engine-tools-3.6.2.6-1.el7.centos.noarch

ovirt-engine-dbscripts-3.6.2.6-1.el7.centos.noarch

ovirt-engine-backend-3.6.2.6-1.el7.centos.noarch

ovirt-engine-3.6.2.6-1.el7.centos.noarch

ovirt-engine-extension-aaa-ldap-1.1.2-1.el7.centos.noarch

ovirt-engine-setup-base-3.6.3.4-1.el7.centos.noarch

ovirt-engine-setup-plugin-ovirt-engine-3.6.3.4-1.el7.centos.noarch

ovirt-engine-setup-plugin-websocket-proxy-3.6.3.4-1.el7.centos.noarch

ovirt-engine-vmconsole-proxy-helper-3.6.3.4-1.el7.centos.noarch

ovirt-engine-cli-3.6.2.0-1.el7.centos.noarch

ovirt-host-deploy-java-1.4.1-1.el7.centos.noarch

ovirt-engine-userportal-3.6.2.6-1.el7.centos.noarch

ovirt-engine-webadmin-portal-3.6.2.6-1.el7.centos.noarch

ovirt-guest-agent-common-1.0.11-1.el7.noarch

ovirt-release36-003-1.noarch

ovirt-iso-uploader-3.6.0-1.el7.centos.noarch

ovirt-engine-lib-3.6.3.4-1.el7.centos.noarch

ovirt-engine-sdk-python-3.6.3.0-1.el7.centos.noarch

ovirt-engine-setup-plugin-vmconsole-proxy-helper-3.6.3.4-1.el7.centos.noarch

ovirt-engine-websocket-proxy-3.6.3.4-1.el7.centos.noarch

ovirt-log-collector-3.6.1-1.el7.centos.noarch

ovirt-engine-extensions-api-impl-3.6.3.4-1.el7.centos.noarch

--- FreeIPA:

[root@ipa01 ~]# cat /etc/redhat-release

CentOS Linux release 7.2.1511 (Core)

[root@ipa01 ~]#  uname -a

Linux ipa01.DOMAIN.COM 3.10.0-327.10.1.el7.x86_64 #1 SMP Tue Feb 16
17:03:50 UTC 2016 x86_64 x86_64 x86_64 GNU/Linux

[root@ipa01 ~]# rpm -qa | grep ipa

ipa-python-4.2.0-15.el7_2.6.x86_64

ipa-client-4.2.0-15.el7_2.6.x86_64

python-libipa_hbac-1.13.0-40.el7_2.1.x86_64

python-iniparse-0.4-9.el7.noarch

libipa_hbac-1.13.0-40.el7_2.1.x86_64

sssd-ipa-1.13.0-40.el7_2.1.x86_64

ipa-admintools-4.2.0-15.el7_2.6.x86_64

ipa-server-4.2.0-15.el7_2.6.x86_64

ipa-server-dns-4.2.0-15.el7_2.6.x86_64

--- Client:

[root@test06 ~]# cat /etc/redhat-release

CentOS Linux release 7.2.1511 (Core)

[root@test06 ~]# uname -a

Linux test06.DOMAIN.COM 3.10.0-327.10.1.el7.x86_64 #1 SMP Tue Feb 16
17:03:50 UTC 2016 x86_64 x86_64 x86_64 GNU/Linux

[root@test06 ~]# rpm -qa | grep ipa

python-libipa_hbac-1.13.0-40.el7_2.1.x86_64

python-iniparse-0.4-9.el7.noarch

sssd-ipa-1.13.0-40.el7_2.1.x86_64

ipa-client-4.2.0-15.0.1.el7.centos.6.x86_64


Re: [ovirt-users] centos 7.1 and up & ixgbe

2016-03-19 Thread Jeff Spahr
I had the same issue, and I also have a support case open.  They referenced
https://bugzilla.redhat.com/show_bug.cgi?id=1288237 which is private.  I
didn't have any success getting that bugzilla changed to public.  We
couldn't keep waiting for the issue to be fixed so we replaced the NICs
with Broadcom/Qlogic that we knew had no issues in other hosts.

On Thu, Mar 17, 2016 at 11:27 AM, Sigbjorn Lie  wrote:

> Hi,
>
> Is this on CentOS/RHEL 7.2?
>
> Log in as root as see if you can see any messages from ixgbe about "tx
> queue hung" in dmesg. I
> currently have an open support case for RHEL7.2 and the ixgbe driver,
> where there is a driver
> issue causing the network adapter to reset continuously when there are
> network traffic.
>
>
> Regards,
> Siggi
>
>
>
> On Thu, March 17, 2016 12:52, Nir Soffer wrote:
> > On Thu, Mar 17, 2016 at 10:49 AM, Johan Kooijman 
> wrote:
> >
> >> Hi all,
> >>
> >>
> >> Since we upgraded to the latest ovirt node running 7.2, we're seeing
> that
> >> nodes become unavailable after a while. It's running fine, with a
> couple of VM's on it, untill it
> >> becomes non responsive. At that moment it doesn't even respond to ICMP.
> It'll come back by
> >> itself after a while, but oVirt fences the machine before that time and
> restarts VM's elsewhere.
> >>
> >>
> >> Engine tells me this message:
> >>
> >>
> >> VDSM host09 command failed: Message timeout which can be caused by
> >> communication issues
> >>
> >> Is anyone else experiencing these issues with ixgbe drivers? I'm
> running on
> >> Intel X540-AT2 cards.
> >>
> >
> > We will need engine and vdsm logs to understand this issue.
> >
> >
> > Can you file a bug and attach ful logs?
> >
> >
> > Nir
> > ___
> > Users mailing list
> > Users@ovirt.org
> > http://lists.ovirt.org/mailman/listinfo/users
> >
> >
>
>
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] hosted engine vm nic

2016-03-19 Thread qinglong.d...@horebdata.cn
Hi:
In 3.5, I can add a nic for the hosted engine vm by following these 
steps:

- Created the network in the UI
- hosted-engine --set-maintenance --mode=global
- edited /etc/ovirt-hosted-engine/vm.conf; duplicated the existing network 
line, changing the macAddr, network, deviceId, and slot (changed on all 
hosted-engine nodes)
- hosted-engine --vm-shutdown
- hosted-engine --vm-start
- hosted-engine --set-maintenance --mode=none

But in 3.6 I cannot find the conf file. How Can I add a nic for hosted 
engine vm?



___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] User with extended tab in User Panel?

2016-03-19 Thread Ondra Machacek

It's bug[1], should be fixed in 3.6.5.

[1] https://bugzilla.redhat.com/show_bug.cgi?id=1316849

On 03/19/2016 09:11 AM, James Michels wrote:

Sorry, there was an another one: UserProfileEditor on (System) which
someone mistakenly granted probably, but removing it makes no
difference, user still sees the Expanded tab. There are no groups in
this system. In short, these permissions are inherited from Everyone:

UserTemplateBasedVm
CpuProfileOperator
VnicProfileUser

And these are granted explicitly on objects:

UserRole (on a VM Pool)
UserRole (on a VM of the VM Pool)


2016-03-19 7:22 GMT+00:00 Oved Ourfali >:

As far as I remember you're right.
Are you sure these are the only permissions? Maybe something
inherited from a group?
I can check the code next week to make sure nothing has changed.

On Mar 18, 2016 23:10, "James Michels"
> wrote:

Hi,

This is oVirt 3.6.3.4, and I have a user with the following
permissions.

Role | Object | Inherited permission
UserTemplateBasedVm | Small (VM Template) | Everyone
UserTemplateBasedVm | Medium (VM Template) | Everyone
UserTemplateBasedVm | Large (VM Template) | Everyone
UserTemplateBasedVm | XLarge (VM Template) | Everyone
UserTemplateBasedVm | ubuntu-14 (VM Template) | Everyone
UserTemplateBasedVm | centos-7 (VM Template) | Everyone
CpuProfileOperator | Default (CpuProfile) | Everyone
VnicProfileUser | LAN1 (Vnic Profile) | Everyone
VnicProfileUser | LAN2 (Vnic Profile) | Everyone
UserRole | instance (VM Pool) |
UserRole | instance-6 (VM) |

This user can see the Extended tab when logged in to the User
panel. However AFAIK only PowerUserRole grants access to that
tab. Which permission(s) is allowing the user to see the tab?

Thanks

James

___
Users mailing list
Users@ovirt.org 
http://lists.ovirt.org/mailman/listinfo/users




___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Diagnosing Migration Error

2016-03-19 Thread Charles Tassell

Hi Martin,

  Thanks, I checked that log and found the error " AttributeError: 
'SourceThread' object has no attribute '_destServer'" which from what I 
see from my googling was supposedly fixed...  I'm running 
vdsm-4.17.23-0.el7.centos.noarch which I believe is the latest.  The 
full error is:


Thread-2789::DEBUG::2016-03-18 
14:47:04,200::blockSD::422::Storage.Misc.excCmd::(getReadDelay) 
/usr/bin/taskset --cpu-list 0-23 /usr/bin/dd 
if=/dev/383a1e7d-8b86-4a50-8bc3-e4374c57a3e5/metadata iflag=direct 
of=/dev/null bs=4096 count=1 (cwd None)
Thread-2789::DEBUG::2016-03-18 
14:47:04,211::blockSD::422::Storage.Misc.excCmd::(getReadDelay) SUCCESS: 
 = '1+0 records in\n1+0 records out\n4096 bytes (4.1 kB) copied, 
0.000377289 s, 10.9 MB/s\n';  = 0
mailbox.SPMMonitor::DEBUG::2016-03-18 
14:47:04,999::storage_mailbox::735::Storage.Misc.excCmd::(_checkForMail) 
/usr/bin/taskset --cpu-list 0-23 dd 
if=/rhev/data-center/0001-0001-0001-0001-02e9/mastersd/dom_md/inbox 
iflag=direct,fullblock count=1 bs=1024000 (cwd None)
mailbox.SPMMonitor::DEBUG::2016-03-18 
14:47:05,015::storage_mailbox::735::Storage.Misc.excCmd::(_checkForMail) 
SUCCESS:  = '1+0 records in\n1+0 records out\n1024000 bytes (1.0 
MB) copied, 0.0057206 s, 179 MB/s\n';  = 0
jsonrpc.Executor/0::DEBUG::2016-03-18 
14:47:06,551::__init__::503::jsonrpc.JsonRpcServer::(_serveRequest) 
Calling 'VM.migrate' in bridge with {u'params': {u'tunneled': u'false', 
u'autoConverge': u'false', u'src': u'ovirt-01.virt.roblib.upei.ca', 
u'dst': u'ovirt-02.virt.roblib.upei.ca:54321', u'vmId': 
u'2be4938e-f4a3-4322-bae3-8a9628b81835', u'abortOnError': u'true', 
u'compressed': u'false', u'method': u'online'}, u'vmID': 
u'2be4938e-f4a3-4322-bae3-8a9628b81835'}
jsonrpc.Executor/0::DEBUG::2016-03-18 
14:47:06,552::API::546::vds::(migrate) {u'tunneled': u'false', 
u'autoConverge': u'false', u'src': u'ovirt-01.virt.roblib.upei.ca', 
u'dst': u'ovirt-02.virt.roblib.upei.ca:54321', u'vmId': 
u'2be4938e-f4a3-4322-bae3-8a9628b81835', u'abortOnError': u'true', 
u'compressed': u'false', u'method': u'online'}
jsonrpc.Executor/0::DEBUG::2016-03-18 
14:47:06,555::__init__::206::jsonrpc.Notification::(emit) Sending event 
{"params": {"2be4938e-f4a3-4322-bae3-8a9628b81835": {"status": 
"Migration Source"}, "notify_time": 4311153220}, "jsonrpc": "2.0", 
"method": "|virt|VM_status|2be4938e-f4a3-4322-bae3-8a9628b81835"}
jsonrpc.Executor/0::DEBUG::2016-03-18 
14:47:06,555::__init__::533::jsonrpc.JsonRpcServer::(_serveRequest) 
Return 'VM.migrate' in bridge with True
Thread-41096::ERROR::2016-03-18 
14:47:06,559::migration::208::virt.vm::(_recover) 
vmId=`2be4938e-f4a3-4322-bae3-8a9628b81835`::[Errno -2] Name or service 
not known
Thread-41096::ERROR::2016-03-18 
14:47:06,559::migration::213::virt.vm::(_recover) 
vmId=`2be4938e-f4a3-4322-bae3-8a9628b81835`::Failed to destroy remote VM

Traceback (most recent call last):
  File "/usr/share/vdsm/virt/migration.py", line 211, in _recover
self._destServer.destroy(self._vm.id)
AttributeError: 'SourceThread' object has no attribute '_destServer'
Thread-41096::DEBUG::2016-03-18 
14:47:06,560::__init__::206::jsonrpc.Notification::(emit) Sending event 
{"params": {"2be4938e-f4a3-4322-bae3-8a9628b81835": {"status": 
"Migration Source"}, "notify_time": 4311153220}, "jsonrpc": "2.0", 
"method": "|virt|VM_status|2be4938e-f4a3-4322-bae3-8a9628b81835"}
Thread-41096::ERROR::2016-03-18 
14:47:06,560::migration::309::virt.vm::(run) 
vmId=`2be4938e-f4a3-4322-bae3-8a9628b81835`::Failed to migrate

Traceback (most recent call last):
  File "/usr/share/vdsm/virt/migration.py", line 278, in run
self._setupVdsConnection()
  File "/usr/share/vdsm/virt/migration.py", line 143, in 
_setupVdsConnection

client = self._createClient(port)
  File "/usr/share/vdsm/virt/migration.py", line 130, in _createClient
self.remoteHost, int(port), sslctx)
  File "/usr/lib/python2.7/site-packages/vdsm/utils.py", line 1269, in 
create_connected_socket

sock.connect((host, port))
  File "/usr/lib64/python2.7/site-packages/M2Crypto/SSL/Connection.py", 
line 181, in connect

self.socket.connect(addr)
  File "/usr/lib64/python2.7/socket.py", line 224, in meth
return getattr(self._sock,name)(*args)
gaierror: [Errno -2] Name or service not known

On 16-03-18 01:22 PM, Martin Sivak wrote:

Hi Charles,

you can probably get much more detailed explanation from the vdsm and
libvirt logs from the two hosts. Take a look at
/var/log/vdsm/vdsm.log.

Best regards

Martin Sivak
SLA / oVirt


On Fri, Mar 18, 2016 at 3:37 PM, Charles Tassell  wrote:

Hello,

   I'm trying to test migrating a VM from one host to another and it's
failing, but with no apparent error message.  I took a look at the server
logs (which I've copied below) but there doesn't seem to be anything in here
that would help track down the problem.  Should I be looking somewhere
besides engine.log on the hosted engine? This is the latest version of oVirt

Re: [ovirt-users] multiple NICs VLAN ID conflict

2016-03-19 Thread Bill James
I  tried based on this url: (based on 
https://github.com/oVirt/vdsm/blob/master/vdsm_hooks/extra_ipv4_addrs/extra_ipv4_addrs.py_)

It seems to work ok, but the ovirt gui says the network is out of sync.
So I can't add any more networks to that interface.  :-(

If I try detaching the "custom" network I get an error:
So obviously I'm missing something.

2016-03-16 17:09:17,948 WARN 
[org.ovirt.engine.core.vdsbroker.vdsbroker.HostSetupNetworksVDSCommand] 
(default task-49) [77dc0af6] Unexpected return value: StatusForXmlRpc 
[code=-32603, message=Internal JSON-RPC error.]
2016-03-16 17:09:17,948 ERROR 
[org.ovirt.engine.core.vdsbroker.vdsbroker.HostSetupNetworksVDSCommand] 
(default task-49) [77dc0af6] Failed in 'HostSetupNetworksVDS' method
2016-03-16 17:09:17,962 ERROR 
[org.ovirt.engine.core.dal.dbbroker.auditloghandling.AuditLogDirector] 
(default task-49) [77dc0af6] Correlation ID: null, Call Stack: null, 
Custom Event ID: -1, Message: VDSM ovirt2.test.j2noc.com command failed: 
Internal JSON-RPC error.
2016-03-16 17:09:17,962 ERROR 
[org.ovirt.engine.core.vdsbroker.vdsbroker.HostSetupNetworksVDSCommand] 
(default task-49) [77dc0af6] Error: VDSGenericException: 
VDSErrorException: Failed to HostSetupNetworksVDS, error = Internal 
JSON-RPC error., code = -32603
2016-03-16 17:09:17,962 ERROR 
[org.ovirt.engine.core.vdsbroker.vdsbroker.HostSetupNetworksVDSCommand] 
(default task-49) [77dc0af6] Exception: 
org.ovirt.engine.core.vdsbroker.vdsbroker.VDSErrorException: 
VDSGenericException: VDSErrorException: Failed to HostSetupNetworksVDS, 
error = Internal JSON-RPC error., code = -32603
at 
org.ovirt.engine.core.vdsbroker.vdsbroker.VdsBrokerCommand.createDefaultConcreteException(VdsBrokerCommand.java:75) 
[vdsbroker.jar:]
at 
org.ovirt.engine.core.vdsbroker.vdsbroker.BrokerCommandBase.createException(BrokerCommandBase.java:211) 
[vdsbroker.jar:]

...
2016-03-16 17:09:17,973 ERROR 
[org.ovirt.engine.core.vdsbroker.vdsbroker.HostSetupNetworksVDSCommand] 
(default task-49) [77dc0af6] Command 
'HostSetupNetworksVDSCommand(HostName = ovirt2.test.j2noc.com, 
HostSetupNetworksVdsCommandParameters:{runAsync='true', 
hostId='7cd16015-609f-47ce-9ea2-d9c1e83769e0', 
vds='Host[ovirt2.test.j2noc.com,7cd16015-609f-47ce-9ea2-d9c1e83769e0]', 
rollbackOnFailure='true', conectivityTimeout='120', 
hostNetworkQosSupported='true', networks='[]', 
removedNetworks='[V10_dev]', bonds='[]', removedBonds='[]'})' execution 
failed: VDSGenericException: VDSErrorException: Failed to 
HostSetupNetworksVDS, error = Internal JSON-RPC error., code = -32603
2016-03-16 17:09:17,973 ERROR 
[org.ovirt.engine.core.bll.network.host.HostSetupNetworksCommand] 
(default task-49) [77dc0af6] Command 
'org.ovirt.engine.core.bll.network.host.HostSetupNetworksCommand' 
failed: EngineException: 
org.ovirt.engine.core.vdsbroker.vdsbroker.VDSErrorException: 
VDSGenericException: VDSErrorException: Failed to HostSetupNetworksVDS, 
error = Internal JSON-RPC error., code = -32603 (Failed with error 
unexpected and code 16)





My hook script, please excuse the poor scripting since this is my first 
python script.



#!/usr/bin/env python
"""
Tweak an interface defintion so that it uses an alternate port group.
It applies on a per vnic basis, it gets triggered and used by event:
* before_network_setup

This hook can be used to  allow multiple NICs with same VLAN ID
in case they are used on multiple hardware NICs.
From: 
http://lists.ovirt.org/pipermail/users/2014-November/029227.html

"""


import os
import hooking
import sys
import traceback
import xml.dom



HOOK_NAME = 'extnet_pg'

target = open("/tmp/fake_vlan.out",'w')

def main():
setup_nets_config = hooking.read_json()
for network, attrs in setup_nets_config['request']['networks'].items():
target.write("bbb for in fake: %s, %s\n" % (network,attrs))
if 'vlan' in attrs:
target.write("bbb custom in fake\n")
#_process_network(network, attrs)
vlanid = int(attrs['vlan'])
target.write("bbb fake vlanid= %s\n" % vlanid)
if vlanid > 900:
newid = vlanid - 900
attrs['vlan'] = newid
target.write("bbb fake newid= %s\n" % newid)
hooking.write_json(setup_nets_config)


def _process_network(network, attrs):
""" Changes vlan id if > 900 """
vlanid = int(attrs['vlan'])
#vlanid = int(filter(str.isdigit, port_group))
target.write("bbb fake vlanid= %s\n" % vlanid)
if vlanid > 900:
newid = vlanid - 900
attrs['vlan'] = newid
target.write("bbb fake newid= %s\n" % newid)
hooking.write_json(setup_nets_config)


def test():
print "do some test here"

if __name__ == '__main__':
try:
if '--test' in sys.argv:
test()
else:
main()
except:
hooking.exit_hook('extnet 

[ovirt-users] engine-setup error

2016-03-19 Thread qinglong.d...@horebdata.cn
Hi,
I wanted to install webSocket proxy on another host, but I got an error 
when setting up engine.

[root@proxy ~]# engine-setup 
[ INFO  ] Stage: Initializing
[ INFO  ] Stage: Environment setup
  Configuration files: 
['/etc/ovirt-engine-setup.conf.d/10-packaging-jboss.conf', 
'/etc/ovirt-engine-setup.conf.d/10-packaging.conf']
  Log file: 
/var/log/ovirt-engine/setup/ovirt-engine-setup-20160318103658-88xphu.log
  Version: otopi-1.4.1 (otopi-1.4.1-1.el6)
[ INFO  ] Stage: Environment packages setup
[ INFO  ] Yum Downloading: ovirt-3.6-epel/primary_db 1.9 M(32%)
[ INFO  ] Yum Downloading: virtio-win-stable/primary_db (0%)
[ INFO  ] Stage: Programs detection
[ INFO  ] Stage: Environment setup
[ INFO  ] Stage: Environment customization
 
  --== PRODUCT OPTIONS ==--
 
  Configure Engine on this host (Yes, No) [Yes]: no
  Configure VM Console Proxy on this host (Yes, No) [Yes]: 
  Configure WebSocket Proxy on this host (Yes, No) [Yes]: 
 
  --== PACKAGES ==--
 
[ INFO  ] Checking for product updates...
[ INFO  ] No product updates found
 
  --== ALL IN ONE CONFIGURATION ==--
 
 
  --== NETWORK CONFIGURATION ==--
 
  Host fully qualified DNS name of this server [proxy.horebdata.cn]: 
[WARNING] Failed to resolve proxy.horebdata.cn using DNS, it can be resolved 
only locally
  Setup can automatically configure the firewall on this system.
  Note: automatic configuration of the firewall may overwrite current 
settings.
  Do you want Setup to configure the firewall? (Yes, No) [Yes]: 
[ INFO  ] iptables will be configured as firewall manager.
  Host fully qualified DNS name of the engine server 
[proxy.horebdata.cn]: engine.horebdata.cn
[WARNING] Failed to resolve engine.horebdata.cn using DNS, it can be resolved 
only locally
[WARNING] Failed to resolve engine.horebdata.cn using DNS, it can be resolved 
only locally
 
  --== DATABASE CONFIGURATION ==--
 
 
  --== OVIRT ENGINE CONFIGURATION ==--
 
 
  --== STORAGE CONFIGURATION ==--
 
  Default SAN wipe after delete (Yes, No) [No]: 
 
  --== PKI CONFIGURATION ==--
 
  Setup will need to do some actions on the remote engine server. 
Either automatically, using ssh as root to access it, or you will be prompted 
to manually perform each such action.
  Please choose one of the following:
  1 - Access remote engine server using ssh as root
  2 - Perform each action manually, use files to copy content around
  (1, 2) [1]: 1
  ssh port on remote engine server [22]: 
  root password on remote engine server engine.horebdata.cn: 
[ INFO  ] Signing the WebSocket Proxy certificate on the engine server
[ INFO  ] WebSocket Proxy certificate signed successfully
 
  --== APACHE CONFIGURATION ==--
 
 
  --== SYSTEM CONFIGURATION ==--
 
 
  --== MISC CONFIGURATION ==--
 
 
  --== END OF CONFIGURATION ==--
 
[ INFO  ] Stage: Setup validation
  Generated iptables rules are different from current ones.
  Do you want to review them? (Yes, No) [No]: 
 
  --== CONFIGURATION PREVIEW ==--
 
  Default SAN wipe after delete   : False
  Firewall manager: iptables
  Update Firewall : True
  Host FQDN   : proxy.horebdata.cn
  Engine installation : False
  Configure VMConsole Proxy   : True
  Engine Host FQDN: engine.horebdata.cn
  Configure WebSocket Proxy   : True
 
  Please confirm installation settings (OK, Cancel) [OK]: 
[ INFO  ] Stage: Transaction setup
[ INFO  ] Stopping engine service
[ INFO  ] Stopping ovirt-fence-kdump-listener service
[ INFO  ] Stopping websocket-proxy service
[ INFO  ] Stage: Misc configuration
[ INFO  ] Stage: Package installation
[ INFO  ] Stage: Misc configuration
[ ERROR ] Failed to execute stage 'Misc configuration': 'NoneType' object has 
no attribute 'execute'
[ INFO  ] Yum Performing yum transaction rollback
[ INFO  ] Stage: Clean up
  Log file is located at 
/var/log/ovirt-engine/setup/ovirt-engine-setup-20160318103658-88xphu.log
[ INFO  ] Generating answer file 
'/var/lib/ovirt-engine/setup/answers/20160318103900-setup.conf'
[ INFO  ] Stage: Pre-termination
[ INFO  ] Stage: Termination
[ ERROR ] Execution of setup failed




___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] 3.6.3 : Disable Networkmanager?

2016-03-19 Thread Edward Haas
On Thu, Mar 17, 2016 at 10:41 AM, Nicolas Ecarnot  wrote:
> Le 17/03/2016 09:22, Edward Haas a écrit :
>>
>> On Thu, Mar 17, 2016 at 9:23 AM, Nicolas Ecarnot 
>> wrote:
>>>
>>> Le 17/03/2016 07:32, Edward Haas a écrit :


 Hello Nicolas,

 Please let us know which docs you refer to.
>>>
>>>
>>>
>>>
>>> http://community.redhat.com/blog/2014/11/up-and-running-with-ovirt-3-5-part-two/
>>>
 Engine by itself should work fine with NM.
>>>
>>>
>>>
>>> I'm installing my 5th 3.6.3 oVirt DC this month, and I'm still witnessing
>>> that when keeping NM_CONTROLLED=yes in my
>>> /etc/sysconfig/network-script/ifcfg-blahblahblah files, the network setup
>>> doesn't resist a reboot (we're using bonding + vlan, and it all goes well
>>> with NO networkmanager).
>>
>>
>> Do you refer to the Host/s (which run the hypervisor with the VM/s) or
>> the Engine?
>
>
> I'm witnessing these issues on the hosts.
>
> I also tried to use nmtui, but no method made it until I switched back to
> using vim and disable nm in the ifcfg-* files.
> Then, oVirt made a good work understanding, managing, and syncing these
> files (bond + vlan).
>
> No big issue then, but I'd like to be sure. I'm about to add a cf-engine
> promise to disable NetworkManager on the hosts.
>
> --
> Nicolas ECARNOT

On the hosts we do not support NM at the moment. When you add a host
through Engine, it is supposed to disable NM on the host.
The problem with NM on the host is that it can take ownership of
devices from VDSM in specific scenarios.

There are plans to address this issue and allow NM to run in parallel,
but that is for the long run.

There should not be such a limitation on the Engine side.

Thanks,
Edy.
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] engine-setup error

2016-03-19 Thread Simone Tiraboschi
On Fri, Mar 18, 2016 at 3:54 AM, qinglong.d...@horebdata.cn <
qinglong.d...@horebdata.cn> wrote:

> Hi,
> I wanted to install webSocket proxy on another host, but I got an
> error when setting up engine.
>
>
It's just that you installed all the engine rpms also on the additional
host where you are not going to deploy the engine.
Please run
 yum remove ovirt-engine-setup-plugin-ovirt-engine
before trying again; it's enough to avoid hitting it and it's also a good
idea since you don't need al the engine on the additional websocket proxy
host.

I opened a bug to properly fix it:
https://bugzilla.redhat.com/1318986

Thanks for the report.


> [root@proxy ~]# engine-setup
> [ INFO  ] Stage: Initializing
> [ INFO  ] Stage: Environment setup
>
>   Configuration files: 
> ['/etc/ovirt-engine-setup.conf.d/10-packaging-jboss.conf', 
> '/etc/ovirt-engine-setup.conf.d/10-packaging.conf']
>
>   Log file: 
> /var/log/ovirt-engine/setup/ovirt-engine-setup-20160318103658-88xphu.log
>   Version: otopi-1.4.1 (otopi-1.4.1-1.el6)
> [ INFO  ] Stage: Environment packages setup
> [ INFO  ] Yum Downloading: ovirt-3.6-epel/primary_db 1.9 M(32%)
> [ INFO  ] Yum Downloading: virtio-win-stable/primary_db (0%)
> [ INFO  ] Stage: Programs detection
> [ INFO  ] Stage: Environment setup
> [ INFO  ] Stage: Environment customization
>
>   --== PRODUCT OPTIONS ==--
>
>   Configure Engine on this host (Yes, No) [Yes]: no
>   Configure VM Console Proxy on this host (Yes, No) [Yes]:
>   Configure WebSocket Proxy on this host (Yes, No) [Yes]:
>
>   --== PACKAGES ==--
>
> [ INFO  ] Checking for product updates...
> [ INFO  ] No product updates found
>
>   --== ALL IN ONE CONFIGURATION ==--
>
>
>   --== NETWORK CONFIGURATION ==--
>
>   Host fully qualified DNS name of this server [proxy.horebdata.cn
> ]:
> [WARNING] Failed to resolve proxy.horebdata.cn
>  using DNS, it can be resolved only locally
>   Setup can automatically configure the firewall on this system.
>
>   Note: automatic configuration of the firewall may overwrite current 
> settings.
>   Do you want Setup to configure the firewall? (Yes, No) [Yes]:
> [ INFO  ] iptables will be configured as firewall manager.
>   Host fully qualified DNS name of the engine server [
> proxy.horebdata.cn]: engine.horebdata.cn
> [WARNING] Failed to resolve engine.horebdata.cn
>  using DNS, it can be resolved only locally
> [WARNING] Failed to resolve engine.horebdata.cn
>  using DNS, it can be resolved only locally
>
>   --== DATABASE CONFIGURATION ==--
>
>
>   --== OVIRT ENGINE CONFIGURATION ==--
>
>
>   --== STORAGE CONFIGURATION ==--
>
>   Default SAN wipe after delete (Yes, No) [No]:
>
>   --== PKI CONFIGURATION ==--
>
>
>   Setup will need to do some actions on the remote engine server. 
> Either automatically, using ssh as root to access it, or you will be prompted 
> to manually perform each such action.
>   Please choose one of the following:
>   1 - Access remote engine server using ssh as root
>
>   2 - Perform each action manually, use files to copy content around
>   (1, 2) [1]: 1
>   ssh port on remote engine server [22]:
>   root password on remote engine server engine.horebdata.cn:
> [ INFO  ] Signing the WebSocket Proxy certificate on the engine server
> [ INFO  ] WebSocket Proxy certificate signed successfully
>
>   --== APACHE CONFIGURATION ==--
>
>
>   --== SYSTEM CONFIGURATION ==--
>
>
>   --== MISC CONFIGURATION ==--
>
>
>   --== END OF CONFIGURATION ==--
>
> [ INFO  ] Stage: Setup validation
>   Generated iptables rules are different from current ones.
>   Do you want to review them? (Yes, No) [No]:
>
>   --== CONFIGURATION PREVIEW ==--
>
>   Default SAN wipe after delete   : False
>   Firewall manager: iptables
>   Update Firewall : True
>   Host FQDN   : proxy.horebdata.cn
>   Engine installation : False
>   Configure VMConsole Proxy   : True
>   Engine Host FQDN: engine.horebdata.cn
>   Configure WebSocket Proxy   : True
>
>   Please confirm installation settings (OK, Cancel) [OK]:
> [ INFO  ] Stage: Transaction setup
> [ INFO  ] Stopping engine service
> [ INFO  ] Stopping ovirt-fence-kdump-listener service
> [ INFO  ] Stopping websocket-proxy service
> [ INFO  ] Stage: Misc configuration
> [ INFO  ] Stage: Package installation
> [ INFO  ] Stage: Misc configuration
>
> [ ERROR ] Failed to execute stage 'Misc configuration': 'NoneType' object has 
> no attribute 'execute'
> [ INFO  ] Yum Performing yum transaction rollback
> [ INFO  ] Stage: Clean up
>
>   Log file is 

[ovirt-users] Hosted engine Single Sign-On to VM with freeIPA not working

2016-03-19 Thread Paul
Hi,

 

I am having an issue with getting SSO to work when a standard user(UserRole)
logs in to the UserPortal.

The user has permission to use only this VM, so after login the console is
automatically opened for that VM.

Problem is that it doesn't login on the VM system with the provided
credentials. Manual login at the console works without any issues. 

HBAC-rule check on IPA shows access is granted. Client has SELINUX in
permissive mode and a disabled firewalld. 

 

On the client side I do see some PAM related errors in the logs (see details
below). Extensive Google search on error 17 "Failure setting user
credentials" didn't show helpful information :-(

 

AFAIK this is did a pretty standard set-up, all working with RH-family
products. I would expect others to encounter this issue as well. 

If someone knows any solution or has some directions to fix this it would be
greatly appreciated.

 

Thanks,

 

Paul

 

--

System setup: I have 3 systems 

 

The connection between the Engine and IPA is working fine. (I can log in
with IPA users etc.) Connection is made according to this document:
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Virtualizat
ion/3.6/html-single/Administration_Guide/index.html#sect-Configuring_an_Exte
rnal_LDAP_Provider

 

Configuration of the client is done according to this document:
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Virtualizat
ion/3.6/html/Virtual_Machine_Management_Guide/chap-Additional_Configuration.
html#sect-Configuring_Single_Sign-On_for_Virtual_Machines

 

--- Hosted Engine:

[root@engine ~]# cat /etc/redhat-release

CentOS Linux release 7.2.1511 (Core)

[root@engine ~]# uname -a

Linux engine.DOMAIN.COM 3.10.0-327.10.1.el7.x86_64 #1 SMP Tue Feb 16
17:03:50 UTC 2016 x86_64 x86_64 x86_64 GNU/Linux

[root@engine ~]# rpm -qa | grep ovirt

ovirt-vmconsole-1.0.0-1.el7.centos.noarch

ovirt-engine-restapi-3.6.2.6-1.el7.centos.noarch

ovirt-setup-lib-1.0.1-1.el7.centos.noarch

ovirt-engine-setup-plugin-ovirt-engine-common-3.6.3.4-1.el7.centos.noarch

ovirt-engine-setup-3.6.3.4-1.el7.centos.noarch

ovirt-image-uploader-3.6.0-1.el7.centos.noarch

ovirt-engine-extension-aaa-jdbc-1.0.5-1.el7.noarch

ovirt-host-deploy-1.4.1-1.el7.centos.noarch

ovirt-engine-extension-aaa-ldap-setup-1.1.2-1.el7.centos.noarch

ovirt-engine-wildfly-overlay-8.0.4-1.el7.noarch

ovirt-engine-wildfly-8.2.1-1.el7.x86_64

ovirt-vmconsole-proxy-1.0.0-1.el7.centos.noarch

ovirt-engine-tools-3.6.2.6-1.el7.centos.noarch

ovirt-engine-dbscripts-3.6.2.6-1.el7.centos.noarch

ovirt-engine-backend-3.6.2.6-1.el7.centos.noarch

ovirt-engine-3.6.2.6-1.el7.centos.noarch

ovirt-engine-extension-aaa-ldap-1.1.2-1.el7.centos.noarch

ovirt-engine-setup-base-3.6.3.4-1.el7.centos.noarch

ovirt-engine-setup-plugin-ovirt-engine-3.6.3.4-1.el7.centos.noarch

ovirt-engine-setup-plugin-websocket-proxy-3.6.3.4-1.el7.centos.noarch

ovirt-engine-vmconsole-proxy-helper-3.6.3.4-1.el7.centos.noarch

ovirt-engine-cli-3.6.2.0-1.el7.centos.noarch

ovirt-host-deploy-java-1.4.1-1.el7.centos.noarch

ovirt-engine-userportal-3.6.2.6-1.el7.centos.noarch

ovirt-engine-webadmin-portal-3.6.2.6-1.el7.centos.noarch

ovirt-guest-agent-common-1.0.11-1.el7.noarch

ovirt-release36-003-1.noarch

ovirt-iso-uploader-3.6.0-1.el7.centos.noarch

ovirt-engine-lib-3.6.3.4-1.el7.centos.noarch

ovirt-engine-sdk-python-3.6.3.0-1.el7.centos.noarch

ovirt-engine-setup-plugin-vmconsole-proxy-helper-3.6.3.4-1.el7.centos.noarch

ovirt-engine-websocket-proxy-3.6.3.4-1.el7.centos.noarch

ovirt-log-collector-3.6.1-1.el7.centos.noarch

ovirt-engine-extensions-api-impl-3.6.3.4-1.el7.centos.noarch

 

--- FreeIPA:

[root@ipa01 ~]# cat /etc/redhat-release

CentOS Linux release 7.2.1511 (Core) 

[root@ipa01 ~]#  uname -a

Linux ipa01.DOMAIN.COM 3.10.0-327.10.1.el7.x86_64 #1 SMP Tue Feb 16 17:03:50
UTC 2016 x86_64 x86_64 x86_64 GNU/Linux

[root@ipa01 ~]# rpm -qa | grep ipa

ipa-python-4.2.0-15.el7_2.6.x86_64

ipa-client-4.2.0-15.el7_2.6.x86_64

python-libipa_hbac-1.13.0-40.el7_2.1.x86_64

python-iniparse-0.4-9.el7.noarch

libipa_hbac-1.13.0-40.el7_2.1.x86_64

sssd-ipa-1.13.0-40.el7_2.1.x86_64

ipa-admintools-4.2.0-15.el7_2.6.x86_64

ipa-server-4.2.0-15.el7_2.6.x86_64

ipa-server-dns-4.2.0-15.el7_2.6.x86_64

 

--- Client:

[root@test06 ~]# cat /etc/redhat-release

CentOS Linux release 7.2.1511 (Core) 

[root@test06 ~]# uname -a

Linux test06.DOMAIN.COM 3.10.0-327.10.1.el7.x86_64 #1 SMP Tue Feb 16
17:03:50 UTC 2016 x86_64 x86_64 x86_64 GNU/Linux

[root@test06 ~]# rpm -qa | grep ipa

python-libipa_hbac-1.13.0-40.el7_2.1.x86_64

python-iniparse-0.4-9.el7.noarch

sssd-ipa-1.13.0-40.el7_2.1.x86_64

ipa-client-4.2.0-15.0.1.el7.centos.6.x86_64

libipa_hbac-1.13.0-40.el7_2.1.x86_64

ipa-python-4.2.0-15.0.1.el7.centos.6.x86_64

device-mapper-multipath-0.4.9-85.el7.x86_64

device-mapper-multipath-libs-0.4.9-85.el7.x86_64

[root@test06 ~]# rpm -qa | grep guest-agent


[ovirt-users] MOM crashes ovirt-guest-agent

2016-03-19 Thread Andreas Trawöger
Hi,


I'm trying to track down why my Foreman Centos7 VM continuously crashes with 
out of Memory errors on my ovirt-3.6 hosts and what seems to happen is the 
following:


1. The Foreman VM only uses 1GB at the beginning and MOM over time reduces the 
memory size from 8GB Ram to the defined minimum of 2GB


mom.log:
2016-03-18 12:25:42,669 - mom.Controllers.Balloon - INFO - Ballooning 
guest:qvie-foreman from 2210584 to 2100054


2. When the VM needs RAM very quickly like if you do an 'cp /dev/zero 
/run/zero' the ovirt guest agent crashes with an out of memory error.


ovirt-guest-agent.log:

Traceback (most recent call last):
  File "/usr/share/ovirt-guest-agent/OVirtAgentLogic.py", line 239, in doWork
self.sendUserInfo()
  File "/usr/share/ovirt-guest-agent/OVirtAgentLogic.py", line 355, in 
sendUserInfo
cur_user = self.dr.getActiveUser()
  File "/usr/share/ovirt-guest-agent/GuestAgentLinux2.py", line 325, in 
getActiveUser
users = os.popen('/usr/bin/users').read().split()
OSError: [Errno 12] Cannot allocate memory

3. Resulting in an MOM warning that it can't get any memory stats from the VM. 
Leaving the memory size at its minimum size:.


mom.log:

mom.Collectors.GuestMemory - WARNING - getVmMemoryStats() error: The 
ovirt-guest-agent is not active


Any chances to prevent that from happening? Or is this a bug in MOM / 
ovirt-guest-agent that should be fixed?


Greetings

Andreas

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] Trouble configuring ISO domain on oVirt 3.5

2016-03-19 Thread Hal Martin
Hello everyone,

Please excuse me if this question has been asked before, I've searched
the mailing list archives and can't find someone having the same
problem as I am.

I have a new oVirt installation that I'm trying to configure, and I
cannot get the ISO domain I configured during engine-setup to show in
the UI at all.

Installation layout:
# Engine
CentOS 7 - oVirt Engine 3.5 (VM on different, non-oVirt cluster)
# Nodes
de-fra-p-hv05 - oVirt Node 3.5
de-fra-p-hv06 - oVirt Node 3.5

I installed and configured the engine, but the node that runs the
engine is a VM, and will not be running VMs itself. I intend to use it
only as a management node (in the VMWare world this would be analogous
to the vCenter server). I don't want to run hosted engine because that
requires me to install Fedora/CentOS on the blades. I would much
rather have the engine live on a different cluster and just run oVirt
node on the blades.

I am able to install the nodes successfully, and configure them from
within the engine UI.

I am using an iSCSI SAN for VM storage. As per the Quick Setup guide,
I have configured my iSCSI network on the nodes and created an iSCSI
storage domain for VMs.

Where I am utterly stuck is the creation of the ISO domain:
http://www.ovirt.org/documentation/quickstart/quickstart-guide/#Attach_an_ISO_domain

Since the server running oVirt engine is not participating in the
cluster, it doesn't appear in my data center. This might be my
problem, but I'm not sure.

Here's a summary of the data center I have configured thus far:
System
|- Data Centers
 |- Default
  |- Storage
   |- sanQA
  |- Networks
   |- ovirtmgmt
   |- hpmsa
   |- vmnet128
  |- Clusters
   |- QA
|- Hosts
 |- de-fra-p-hv05
 |- de-fra-p-hv06

I have edited the ACL on the server running oVirt engine to allow rw
access on /var/lib/exports/iso to nodes de-fra-p-hv05 and
de-fra-p-hv06.
$ cat /etc/exports.d/ovirt-engine-iso-domain.exports
/var/lib/exports/iso de-fra-p-ove01.domain.xyz(rw)
/var/lib/exports/iso 172.20.102.215(rw)
/var/lib/exports/iso 172.20.102.216(rw)

When I try to import an ISO domain in the Data Center -> Storage tab,
I get the following error:
"Error while executing action: Cannot add Storage Connection. Storage
connection already exists."
Attached is the engine log from attempting to import the ISO domain.

I don't have any ISO domain visible in the Storage tab of my data
center. Since I cannot see the ISO domain in the UI, I cannot create
new virtual machines on my cluster.

Please help me understand what I've done wrong.

I've also attached a screenshot of the management interface. As you
can see, I've configured an iSCSI domain. I see no button in the UI to
"Attach ISO"

http://www.ovirt.org/documentation/quickstart/quickstart-guide/#Attach_an_ISO_domain

Thank you,
Hal
2016-03-18 17:12:25,820 INFO  [org.ovirt.engine.core.bll.storage.AddStorageServerConnectionCommand] (ajp--127.0.0.1-8702-2) [522afbf9] Lock Acquired to object EngineLock [exclusiveLocks= key: de-fra-p-ove01.domain.xyz:/var/lib/exports/iso value: STORAGE_CONNECTION
, sharedLocks= ]
2016-03-18 17:12:25,852 WARN  [org.ovirt.engine.core.bll.storage.AddStorageServerConnectionCommand] (ajp--127.0.0.1-8702-2) [522afbf9] CanDoAction of action AddStorageServerConnection failed for user admin@internal. Reasons: VAR__ACTION__ADD,VAR__TYPE__STORAGE__CONNECTION,ACTION_TYPE_FAILED_STORAGE_CONNECTION_ALREADY_EXISTS
2016-03-18 17:12:25,855 INFO  [org.ovirt.engine.core.bll.storage.AddStorageServerConnectionCommand] (ajp--127.0.0.1-8702-2) [522afbf9] Lock freed to object EngineLock [exclusiveLocks= key: de-fra-p-ove01.domain.xyz:/var/lib/exports/iso value: STORAGE_CONNECTION
, sharedLocks= ]
2016-03-18 17:12:26,061 INFO  [org.ovirt.engine.core.bll.storage.DisconnectStorageServerConnectionCommand] (ajp--127.0.0.1-8702-2) [567f0a97] Running command: DisconnectStorageServerConnectionCommand internal: false. Entities affected :  ID: aaa0----123456789aaa Type: SystemAction group CREATE_STORAGE_DOMAIN with role type ADMIN
2016-03-18 17:12:26,093 INFO  [org.ovirt.engine.core.vdsbroker.vdsbroker.DisconnectStorageServerVDSCommand] (ajp--127.0.0.1-8702-2) [567f0a97] START, DisconnectStorageServerVDSCommand(HostName = de-fra-p-hv05.domain.xyz, HostId = ada83204-779c-4543-939d-20bb0195ea52, storagePoolId = ----, storageType = NFS, connectionList = [{ id: null, connection: de-fra-p-ove01.domain.xyz:/var/lib/exports/iso, iqn: null, vfsType: null, mountOptions: null, nfsVersion: null, nfsRetrans: null, nfsTimeo: null };]), log id: 66fd37a7
2016-03-18 17:12:26,347 INFO  [org.ovirt.engine.core.vdsbroker.vdsbroker.DisconnectStorageServerVDSCommand] (ajp--127.0.0.1-8702-2) [567f0a97] FINISH, DisconnectStorageServerVDSCommand, return: {----=477}, log id: 66fd37a7___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Diagnosing Migration Error

2016-03-19 Thread Martin Sivak
Hi Charles,

you can probably get much more detailed explanation from the vdsm and
libvirt logs from the two hosts. Take a look at
/var/log/vdsm/vdsm.log.

Best regards

Martin Sivak
SLA / oVirt


On Fri, Mar 18, 2016 at 3:37 PM, Charles Tassell  wrote:
> Hello,
>
>   I'm trying to test migrating a VM from one host to another and it's
> failing, but with no apparent error message.  I took a look at the server
> logs (which I've copied below) but there doesn't seem to be anything in here
> that would help track down the problem.  Should I be looking somewhere
> besides engine.log on the hosted engine? This is the latest version of oVirt
> (3.6.3.4-1.el7.centos) that I just upgraded this morning.  The VM has an ISO
> attached over NFS storage and the disk image is on fiber channel.
>
> 2016-03-18 14:31:18,913 INFO
> [org.ovirt.engine.core.bll.MigrateVmToServerCommand] (default task-25)
> [549545f2] Lock Acquired to object
> 'EngineLock:{exclusiveLocks='[2be4938e-f4a3-4322-bae3-8a9628b81835= ACTION_TYPE_FAILED_VM_IS_BEING_MIGRATED$VmName cdTest02>]',
> sharedLocks='null'}'
> 2016-03-18 14:31:19,131 INFO
> [org.ovirt.engine.core.bll.MigrateVmToServerCommand]
> (org.ovirt.thread.pool-8-thread-45) [549545f2] Running command:
> MigrateVmToServerCommand internal: false. Entities affected :  ID:
> 2be4938e-f4a3-4322-bae3-8a9628b81835 Type: VMAction group MIGRATE_VM with
> role type USER
> 2016-03-18 14:31:19,186 INFO
> [org.ovirt.engine.core.vdsbroker.MigrateVDSCommand]
> (org.ovirt.thread.pool-8-thread-45) [549545f2] START, MigrateVDSCommand(
> MigrateVDSCommandParameters:{runAsync='true',
> hostId='cbfd733b-8ced-487d-8754-a2217ce1210f',
> vmId='2be4938e-f4a3-4322-bae3-8a9628b81835',
> srcHost='ovirt-01.virt.roblib.upei.ca',
> dstVdsId='1200a78f-6d05-4e5e-9ef7-6798cf741310',
> dstHost='ovirt-02.virt.roblib.upei.ca:54321', migrationMethod='ONLINE',
> tunnelMigration='false', migrationDowntime='0', autoConverge='false',
> migrateCompressed='false', consoleAddress='null'}), log id: 8f303ba
> 2016-03-18 14:31:19,188 INFO
> [org.ovirt.engine.core.vdsbroker.vdsbroker.MigrateBrokerVDSCommand]
> (org.ovirt.thread.pool-8-thread-45) [549545f2] START,
> MigrateBrokerVDSCommand(HostName = oVirt-01,
> MigrateVDSCommandParameters:{runAsync='true',
> hostId='cbfd733b-8ced-487d-8754-a2217ce1210f',
> vmId='2be4938e-f4a3-4322-bae3-8a9628b81835',
> srcHost='ovirt-01.virt.roblib.upei.ca',
> dstVdsId='1200a78f-6d05-4e5e-9ef7-6798cf741310',
> dstHost='ovirt-02.virt.roblib.upei.ca:54321', migrationMethod='ONLINE',
> tunnelMigration='false', migrationDowntime='0', autoConverge='false',
> migrateCompressed='false', consoleAddress='null'}), log id: 792d7e9e
> 2016-03-18 14:31:19,455 INFO
> [org.ovirt.engine.core.vdsbroker.vdsbroker.MigrateBrokerVDSCommand]
> (org.ovirt.thread.pool-8-thread-45) [549545f2] FINISH,
> MigrateBrokerVDSCommand, log id: 792d7e9e
> 2016-03-18 14:31:19,470 INFO
> [org.ovirt.engine.core.vdsbroker.MigrateVDSCommand]
> (org.ovirt.thread.pool-8-thread-45) [549545f2] FINISH, MigrateVDSCommand,
> return: MigratingFrom, log id: 8f303ba
> 2016-03-18 14:31:19,498 INFO
> [org.ovirt.engine.core.dal.dbbroker.auditloghandling.AuditLogDirector]
> (org.ovirt.thread.pool-8-thread-45) [549545f2] Correlation ID: 549545f2, Job
> ID: 3f97f737-d32a-4ffa-b213-122dcd3ca048, Call Stack: null, Custom Event ID:
> -1, Message: Migration started (VM: cdTest02, Source: oVirt-01, Destination:
> oVirt-02, User: admin@internal).
> 2016-03-18 14:31:28,055 INFO [org.ovirt.engine.core.vdsbroker.VmAnalyzer]
> (DefaultQuartzScheduler_Worker-39) [] VM
> '2be4938e-f4a3-4322-bae3-8a9628b81835'(cdTest02) moved from 'MigratingFrom'
> --> 'Up'
> 2016-03-18 14:31:28,055 INFO [org.ovirt.engine.core.vdsbroker.VmAnalyzer]
> (DefaultQuartzScheduler_Worker-39) [] Adding VM
> '2be4938e-f4a3-4322-bae3-8a9628b81835' to re-run list
> 2016-03-18 14:31:28,114 ERROR
> [org.ovirt.engine.core.vdsbroker.VmsMonitoring]
> (DefaultQuartzScheduler_Worker-39) [] Rerun VM
> '2be4938e-f4a3-4322-bae3-8a9628b81835'. Called from VDS 'oVirt-01'
> 2016-03-18 14:31:28,202 INFO
> [org.ovirt.engine.core.vdsbroker.vdsbroker.MigrateStatusVDSCommand]
> (org.ovirt.thread.pool-8-thread-46) [] START,
> MigrateStatusVDSCommand(HostName = oVirt-01,
> MigrateStatusVDSCommandParameters:{runAsync='true',
> hostId='cbfd733b-8ced-487d-8754-a2217ce1210f',
> vmId='2be4938e-f4a3-4322-bae3-8a9628b81835'}), log id: 618baaa6
> 2016-03-18 14:31:29,209 INFO
> [org.ovirt.engine.core.vdsbroker.vdsbroker.MigrateStatusVDSCommand]
> (org.ovirt.thread.pool-8-thread-46) [] FINISH, MigrateStatusVDSCommand, log
> id: 618baaa6
> 2016-03-18 14:31:29,250 ERROR
> [org.ovirt.engine.core.dal.dbbroker.auditloghandling.AuditLogDirector]
> (org.ovirt.thread.pool-8-thread-46) [] Correlation ID: 549545f2, Job ID:
> 3f97f737-d32a-4ffa-b213-122dcd3ca048, Call Stack: null, Custom Event ID: -1,
> Message: Migration failed  (VM: cdTest02, Source: oVirt-01, Destination:
> oVirt-02).
> 2016-03-18 

[ovirt-users] oVirt - rescan new copied disks to storage

2016-03-19 Thread p...@email.cz

Hello,
how can I put a copy of VM disks ( outside ovirt envir. copy ) to ovirt 
inventory ?? ( available  for " attach disk"  option visibility  )


regs.
Pavel
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] Storage Diversity Options oVirt 3.6

2016-03-19 Thread Clint Boggio
Greetings all, and Happy Friday;

I'm running oVirt 3.6 management engine that is currently overseeing 4
compute nodes, attached to iSCSI storage over Infiniband. The compute
nodes have 8 hot-swap hard drive slots, with each only having 2 slots
occupied in a hardware RAID array level one for the hypervisor to live
on.

Would it be possible for me to set up each compute node with a second
array in the remaining 6 hot-swap slots, and utilize that new space for
a nice fault tolerant GlusterFS storage array ?

1. Would the system allow me to add the Gluster storage to the existing
datacenter/cluster that is currently using iSCSI ?

2. Would I be able to configure all aspects of the Gluster
environment(except the hardware RAID array)through the GUI ?

3. What hardware RAID level would be optimal for  this configuration ?
(RHEV documentation says RAID 6 is "Mandatory")

4. Will the system support live migration between storage domains ?

I'm reading through the gluster documentation now to get a better
understanding of it's inner workings. Is there a good source for Gluster
on oVirt that i can reference as well ?

___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] multiple NICs VLAN ID conflict

2016-03-19 Thread Edward Haas
On Thu, Mar 17, 2016 at 2:14 AM, Bill James  wrote:
> I  tried based on this url: (based on
> https://github.com/oVirt/vdsm/blob/master/vdsm_hooks/extra_ipv4_addrs/extra_ipv4_addrs.py_)
> It seems to work ok, but the ovirt gui says the network is out of sync.
> So I can't add any more networks to that interface.  :-(

That's because you need to fake it back as well, otherwise Engine
complains that what it requested is not what exists.
So you need another two hooks: after_get_caps and after_get_stats
Please look at these two:
https://github.com/oVirt/vdsm/blob/master/vdsm_hooks/ovs/ovs_after_get_caps.py
https://github.com/oVirt/vdsm/blob/master/vdsm_hooks/ovs/ovs_after_get_stats.py

To see what you need to change, issue the two reports on your host:
# vdsClient -s 0 getVdsCaps
# vdsClient -s 0 getVdsStats

>
> If I try detaching the "custom" network I get an error:
> So obviously I'm missing something.

Please send us vdsm logs: vdsm.log and supervdsm.log

>
> 2016-03-16 17:09:17,948 WARN
> [org.ovirt.engine.core.vdsbroker.vdsbroker.HostSetupNetworksVDSCommand]
> (default task-49) [77dc0af6] Unexpected return value: StatusForXmlRpc
> [code=-32603, message=Internal JSON-RPC error.]
> 2016-03-16 17:09:17,948 ERROR
> [org.ovirt.engine.core.vdsbroker.vdsbroker.HostSetupNetworksVDSCommand]
> (default task-49) [77dc0af6] Failed in 'HostSetupNetworksVDS' method
> 2016-03-16 17:09:17,962 ERROR
> [org.ovirt.engine.core.dal.dbbroker.auditloghandling.AuditLogDirector]
> (default task-49) [77dc0af6] Correlation ID: null, Call Stack: null, Custom
> Event ID: -1, Message: VDSM ovirt2.test.j2noc.com command failed: Internal
> JSON-RPC error.
> 2016-03-16 17:09:17,962 ERROR
> [org.ovirt.engine.core.vdsbroker.vdsbroker.HostSetupNetworksVDSCommand]
> (default task-49) [77dc0af6] Error: VDSGenericException: VDSErrorException:
> Failed to HostSetupNetworksVDS, error = Internal JSON-RPC error., code =
> -32603
> 2016-03-16 17:09:17,962 ERROR
> [org.ovirt.engine.core.vdsbroker.vdsbroker.HostSetupNetworksVDSCommand]
> (default task-49) [77dc0af6] Exception:
> org.ovirt.engine.core.vdsbroker.vdsbroker.VDSErrorException:
> VDSGenericException: VDSErrorException: Failed to HostSetupNetworksVDS,
> error = Internal JSON-RPC error., code = -32603
> at
> org.ovirt.engine.core.vdsbroker.vdsbroker.VdsBrokerCommand.createDefaultConcreteException(VdsBrokerCommand.java:75)
> [vdsbroker.jar:]
> at
> org.ovirt.engine.core.vdsbroker.vdsbroker.BrokerCommandBase.createException(BrokerCommandBase.java:211)
> [vdsbroker.jar:]
> ...
> 2016-03-16 17:09:17,973 ERROR
> [org.ovirt.engine.core.vdsbroker.vdsbroker.HostSetupNetworksVDSCommand]
> (default task-49) [77dc0af6] Command 'HostSetupNetworksVDSCommand(HostName =
> ovirt2.test.j2noc.com,
> HostSetupNetworksVdsCommandParameters:{runAsync='true',
> hostId='7cd16015-609f-47ce-9ea2-d9c1e83769e0',
> vds='Host[ovirt2.test.j2noc.com,7cd16015-609f-47ce-9ea2-d9c1e83769e0]',
> rollbackOnFailure='true', conectivityTimeout='120',
> hostNetworkQosSupported='true', networks='[]', removedNetworks='[V10_dev]',
> bonds='[]', removedBonds='[]'})' execution failed: VDSGenericException:
> VDSErrorException: Failed to HostSetupNetworksVDS, error = Internal JSON-RPC
> error., code = -32603
> 2016-03-16 17:09:17,973 ERROR
> [org.ovirt.engine.core.bll.network.host.HostSetupNetworksCommand] (default
> task-49) [77dc0af6] Command
> 'org.ovirt.engine.core.bll.network.host.HostSetupNetworksCommand' failed:
> EngineException:
> org.ovirt.engine.core.vdsbroker.vdsbroker.VDSErrorException:
> VDSGenericException: VDSErrorException: Failed to HostSetupNetworksVDS,
> error = Internal JSON-RPC error., code = -32603 (Failed with error
> unexpected and code 16)
>
>
>
>
> My hook script, please excuse the poor scripting since this is my first
> python script.

I would suggest posting a patch on gerrit (https://gerrit.ovirt.org),
check http://www.ovirt.org/develop/dev-process/working-with-gerrit/

>
>
> #!/usr/bin/env python
> """
> Tweak an interface defintion so that it uses an alternate port group.
> It applies on a per vnic basis, it gets triggered and used by event:
> * before_network_setup
>
> This hook can be used to  allow multiple NICs with same VLAN ID
> in case they are used on multiple hardware NICs.
> From:
> http://lists.ovirt.org/pipermail/users/2014-November/029227.html
> """
>
>
> import os
> import hooking
> import sys
> import traceback
> import xml.dom
>
>
>
> HOOK_NAME = 'extnet_pg'
>
> target = open("/tmp/fake_vlan.out",'w')
>
> def main():
> setup_nets_config = hooking.read_json()
> for network, attrs in setup_nets_config['request']['networks'].items():
> target.write("bbb for in fake: %s, %s\n" % (network,attrs))
> if 'vlan' in attrs:
> target.write("bbb custom in fake\n")
> #_process_network(network, attrs)
> vlanid = int(attrs['vlan'])
> target.write("bbb fake vlanid= %s\n" 

[ovirt-users] centos 7.1 and up & ixgbe

2016-03-19 Thread Johan Kooijman
Hi all,

Since we upgraded to the latest ovirt node running 7.2, we're seeing that
nodes become unavailable after a while. It's running fine, with a couple of
VM's on it, untill it becomes non responsive. At that moment it doesn't
even respond to ICMP. It'll come back by itself after a while, but oVirt
fences the machine before that time and restarts VM's elsewhere.

Engine tells me this message:

VDSM host09 command failed: Message timeout which can be caused by
communication issues

Is anyone else experiencing these issues with ixgbe drivers? I'm running on
Intel X540-AT2 cards.

-- 
Met vriendelijke groeten / With kind regards,
Johan Kooijman
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] How do I start an VM in a different 3.6 cluster

2016-03-19 Thread Yaniv Dary
The reports will only show clusters with hosts\vms. Depends on what the
report is about.

Yaniv Dary
Technical Product Manager
Red Hat Israel Ltd.
34 Jerusalem Road
Building A, 4th floor
Ra'anana, Israel 4350109

Tel : +972 (9) 7692306
8272306
Email: yd...@redhat.com
IRC : ydary


On Thu, Mar 17, 2016 at 7:39 AM, Bond, Darryl  wrote:

> There is definitely something amiss with my 2 clusters.
> I set up the Reports engine before adding the second cluster. The reports
> engine does not show any of the second cluster hosts.
>
> All Cluster pull down menus in the Reports only show the first cluster.
>
> Darryl
>
>
> 
> From: users-boun...@ovirt.org  on behalf of
> Bond, Darryl 
> Sent: Wednesday, 16 March 2016 8:03 AM
> To: Alexander Wels; users@ovirt.org
> Subject: Re: [ovirt-users] How do I start an VM in a different 3.6 cluster
>
> Sounds logical, that is what I thought.
> Except my VM's only have one cluster to choose from, even though there are
> 2 clusters with running machines in both.
> I have no idea how to tell if a cluster is 'UP' they certainly work fine
> in themselves.
>
> Darryl
> 
> From: Alexander Wels 
> Sent: Tuesday, 15 March 2016 10:11 PM
> To: users@ovirt.org
> Cc: Raz Tamir; Bond, Darryl
> Subject: Re: [ovirt-users] How do I start an VM in a different 3.6 cluster
>
> On Tuesday, March 15, 2016 01:43:38 PM Raz Tamir wrote:
> > You can 'Run Once' and on the left side panel 'Host'.
> > There you can pick the desired host
> >
> >
>
> If you click edit on the VM, the top right will have a drop down, where you
> can select the cluster to run the VM in. The target cluster must be UP for
> this to be an option in the drop down. Example here [1]
>
> Alexander
>
> [1] http://imgur.com/TCcDabV
>
> >
> > Thanks,
> > Raz Tamir
> > Red Hat Israel
> >
> > On Tue, Mar 15, 2016 at 11:44 AM, Bond, Darryl 
> wrote:
> > > Hmmm, So, for example,  the VM is listed in one cluster. How do I
> start it
> > > in the another cluster. There is no option to start it anywhere in
> > > particular only 'Run' it.
> > >
> > > After starting, it can then be migrated to another cluster subject to
> some
> > > warnings.
> > >
> > >
> > > How do I run it on a host in another cluster except by migrating it
> while
> > > running. You cannot 'migrate' a stopped VM.
> > >
> > >
> > > When editing a VM there appears to be an option to choose another
> cluster
> > > but as I mentioned there is only one choice, the cluster it is
> currently
> > > in??
> > >
> > >
> > > Darryl
> > >
> > > 
> > > From: Raz Tamir 
> > > Sent: Tuesday, 15 March 2016 4:56 PM
> > > To: Bond, Darryl
> > > Cc: users@ovirt.org
> > > Subject: Re: [ovirt-users] How do I start an VM in a different 3.6
> cluster
> > >
> > >
> > > Hi,
> > > I hope I understand your question correctly.
> > > A VM run on a host and host exist in a cluster which means that if you
> > > want to make sure your VM is "running" in a specific cluster you need
> to
> > > run it on a host that exist in that cluster.
> > > Is that answering your question?
> > >
> > > Thanks,
> > > Raz Tamir
> > > Red Hat Isreal
> > >
> > > On Mar 15, 2016 05:47, "Bond, Darryl"  > db...@nrggos.com.au>> wrote:
> > > I have 2 clusters in one Data Centre , 1xNehalem and 1xSandyBridge I
> can
> > > live migrate from Nehalem to SandyBridge.
> > >
> > >
> > > I cannot change a cluster location for a stopped VM or choose which
> > > cluster to Run in.
> > >
> > > The Cluster pulldown menu for the VM implies that it should be possible
> > > but there is only one choice, the cluster the VM last ran in.
> > >
> > >
> > > I can find nothing in the documentation etc.
> > >
> > >
> > > Thanks in advance.
> > >
> > >
> > > Darryl
> > >
> > >
> > > 
> > >
> > > The contents of this electronic message and any attachments are
> intended
> > > only for the addressee and may contain legally privileged, personal,
> > > sensitive or confidential information. If you are not the intended
> > > addressee, and have received this email, any transmission,
> distribution,
> > > downloading, printing or photocopying of the contents of this message
> or
> > > attachments is strictly prohibited. Any legal privilege or
> confidentiality
> > > attached to this message and attachments is not waived, lost or
> destroyed
> > > by reason of delivery to any person other than intended addressee. If
> you
> > > have received this message and are not the intended addressee you
> should
> > > notify the sender by return email and destroy all copies of the message
> > > and
> > > any attachments. Unless expressly attributed, the views expressed in
> this
> > > email do not necessarily represent the views of the company.
> > > 

[ovirt-users] User with extended tab in User Panel?

2016-03-19 Thread James Michels
Hi,

This is oVirt 3.6.3.4, and I have a user with the following permissions.

Role | Object | Inherited permission
UserTemplateBasedVm | Small (VM Template) | Everyone
UserTemplateBasedVm | Medium (VM Template) | Everyone
UserTemplateBasedVm | Large (VM Template) | Everyone
UserTemplateBasedVm | XLarge (VM Template) | Everyone
UserTemplateBasedVm | ubuntu-14 (VM Template) | Everyone
UserTemplateBasedVm | centos-7 (VM Template) | Everyone
CpuProfileOperator | Default (CpuProfile) | Everyone
VnicProfileUser | LAN1 (Vnic Profile) | Everyone
VnicProfileUser | LAN2 (Vnic Profile) | Everyone
UserRole | instance (VM Pool) |
UserRole | instance-6 (VM) |

This user can see the Extended tab when logged in to the User panel.
However AFAIK only PowerUserRole grants access to that tab. Which
permission(s) is allowing the user to see the tab?

Thanks

James
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] User with extended tab in User Panel?

2016-03-19 Thread James Michels
Sorry, there was an another one: UserProfileEditor on (System) which
someone mistakenly granted probably, but removing it makes no difference,
user still sees the Expanded tab. There are no groups in this system. In
short, these permissions are inherited from Everyone:

UserTemplateBasedVm
CpuProfileOperator
VnicProfileUser

And these are granted explicitly on objects:

UserRole (on a VM Pool)
UserRole (on a VM of the VM Pool)


2016-03-19 7:22 GMT+00:00 Oved Ourfali :

> As far as I remember you're right.
> Are you sure these are the only permissions? Maybe something inherited
> from a group?
> I can check the code next week to make sure nothing has changed.
> On Mar 18, 2016 23:10, "James Michels" 
> wrote:
>
>> Hi,
>>
>> This is oVirt 3.6.3.4, and I have a user with the following permissions.
>>
>> Role | Object | Inherited permission
>> UserTemplateBasedVm | Small (VM Template) | Everyone
>> UserTemplateBasedVm | Medium (VM Template) | Everyone
>> UserTemplateBasedVm | Large (VM Template) | Everyone
>> UserTemplateBasedVm | XLarge (VM Template) | Everyone
>> UserTemplateBasedVm | ubuntu-14 (VM Template) | Everyone
>> UserTemplateBasedVm | centos-7 (VM Template) | Everyone
>> CpuProfileOperator | Default (CpuProfile) | Everyone
>> VnicProfileUser | LAN1 (Vnic Profile) | Everyone
>> VnicProfileUser | LAN2 (Vnic Profile) | Everyone
>> UserRole | instance (VM Pool) |
>> UserRole | instance-6 (VM) |
>>
>> This user can see the Extended tab when logged in to the User panel.
>> However AFAIK only PowerUserRole grants access to that tab. Which
>> permission(s) is allowing the user to see the tab?
>>
>> Thanks
>>
>> James
>>
>> ___
>> Users mailing list
>> Users@ovirt.org
>> http://lists.ovirt.org/mailman/listinfo/users
>>
>>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] centos 7.1 and up & ixgbe

2016-03-19 Thread Sigbjorn Lie
Hi,

Is this on CentOS/RHEL 7.2?

Log in as root as see if you can see any messages from ixgbe about "tx queue 
hung" in dmesg. I
currently have an open support case for RHEL7.2 and the ixgbe driver, where 
there is a driver
issue causing the network adapter to reset continuously when there are network 
traffic.


Regards,
Siggi



On Thu, March 17, 2016 12:52, Nir Soffer wrote:
> On Thu, Mar 17, 2016 at 10:49 AM, Johan Kooijman  
> wrote:
>
>> Hi all,
>>
>>
>> Since we upgraded to the latest ovirt node running 7.2, we're seeing that
>> nodes become unavailable after a while. It's running fine, with a couple of 
>> VM's on it, untill it
>> becomes non responsive. At that moment it doesn't even respond to ICMP. 
>> It'll come back by
>> itself after a while, but oVirt fences the machine before that time and 
>> restarts VM's elsewhere.
>>
>>
>> Engine tells me this message:
>>
>>
>> VDSM host09 command failed: Message timeout which can be caused by
>> communication issues
>>
>> Is anyone else experiencing these issues with ixgbe drivers? I'm running on
>> Intel X540-AT2 cards.
>>
>
> We will need engine and vdsm logs to understand this issue.
>
>
> Can you file a bug and attach ful logs?
>
>
> Nir
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
>
>


___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Dumb question: exclamation mark next to VM?

2016-03-19 Thread Greg Sheremeta
[ https://bugzilla.redhat.com/show_bug.cgi?id=1305539 ] was a duplicate of
[ https://bugzilla.redhat.com/show_bug.cgi?id=1304729 ]

In any case, fix posted. Currently targeted for 3.6.

Thanks for reporting.

Best wishes,
Greg


On Mon, Feb 8, 2016 at 9:36 AM, Greg Sheremeta  wrote:

> I've opened [ https://bugzilla.redhat.com/show_bug.cgi?id=1305539 ] to
> track this issue.
>
> Thanks for reporting it!
>
> Best wishes,
> Greg
>
> On Fri, Feb 5, 2016 at 9:11 PM, Darrell Budic 
> wrote:
>
>> After upgrading to 3.6.2, I’ve got a couple that are doing this to (No
>> actual tooltip for the exclamation point). One windows, two linux, funny
>> thing is they are all down at the moment and still have this warning…
>>
>>   -Darrell
>>
>> > On Feb 5, 2016, at 4:58 PM, Chris Adams  wrote:
>> >
>> > Once upon a time, Joe DiTommasso  said:
>> >> If you mouse over the exclamation mark, you should get a tooltip that
>> tells
>> >> you what it's complaining about. I've got it on pretty much all my VMs,
>> >> it's an issue with the timezone for me.
>> >
>> > I get nothing for the exclamation mark.  I go straight from the "Up" tip
>> > to the "Server" tip.  The ! is in the first column with the status icon
>> > (if you widen the columns it stay next to the up arror).
>> >
>> > --
>> > Chris Adams 
>> > ___
>> > Users mailing list
>> > Users@ovirt.org
>> > http://lists.ovirt.org/mailman/listinfo/users
>>
>> ___
>> Users mailing list
>> Users@ovirt.org
>> http://lists.ovirt.org/mailman/listinfo/users
>>
>
>
>
> --
> Greg Sheremeta, MBA
> Red Hat, Inc.
> Sr. Software Engineer
> gsher...@redhat.com
> 919-741-4016
>



-- 
Greg Sheremeta, MBA
Red Hat, Inc.
Sr. Software Engineer
gsher...@redhat.com
919-741-4016
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] [Reminder]: Today - First oVirt community meetup in Boston MA area

2016-03-19 Thread Douglas Landgraf
Join us for an evening of knowledge-sharing, networking, and Q
about the oVirt open-source project.

All skill levels are welcome! In this first meetup we will introduce
oVirt, show a live demo, and answer any questions you might have about
the technology and the community.

The meetup will be hosted at the Red Hat office in Westford, drinks and
snacks will be provided. Please RSVP to the event so that we can make
sure everyone will be comfortable.

Looking forward to seeing you there!
http://www.meetup.com/Boston-oVirt-Community/


-- 
Cheers
Douglas
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] 3.6.3 : Disable Networkmanager?

2016-03-19 Thread Nicolas Ecarnot

Le 17/03/2016 09:57, Edward Haas a écrit :

 When you add a host
through Engine, it is supposed to disable NM on the host.


So far, this sounds to me totally adequate.

--
Nicolas ECARNOT
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] Diagnosing Migration Error

2016-03-19 Thread Nir Soffer
On Fri, Mar 18, 2016 at 7:59 PM, Charles Tassell  wrote:
> Hi Martin,
>
>   Thanks, I checked that log and found the error " AttributeError:
> 'SourceThread' object has no attribute '_destServer'" which from what I see
> from my googling was supposedly fixed...  I'm running
> vdsm-4.17.23-0.el7.centos.noarch which I believe is the latest.  The full
> error is:
>
> Thread-2789::DEBUG::2016-03-18
> 14:47:04,200::blockSD::422::Storage.Misc.excCmd::(getReadDelay)
> /usr/bin/taskset --cpu-list 0-23 /usr/bin/dd
> if=/dev/383a1e7d-8b86-4a50-8bc3-e4374c57a3e5/metadata iflag=direct
> of=/dev/null bs=4096 count=1 (cwd None)
> Thread-2789::DEBUG::2016-03-18
> 14:47:04,211::blockSD::422::Storage.Misc.excCmd::(getReadDelay) SUCCESS:
>  = '1+0 records in\n1+0 records out\n4096 bytes (4.1 kB) copied,
> 0.000377289 s, 10.9 MB/s\n';  = 0
> mailbox.SPMMonitor::DEBUG::2016-03-18
> 14:47:04,999::storage_mailbox::735::Storage.Misc.excCmd::(_checkForMail)
> /usr/bin/taskset --cpu-list 0-23 dd
> if=/rhev/data-center/0001-0001-0001-0001-02e9/mastersd/dom_md/inbox
> iflag=direct,fullblock count=1 bs=1024000 (cwd None)
> mailbox.SPMMonitor::DEBUG::2016-03-18
> 14:47:05,015::storage_mailbox::735::Storage.Misc.excCmd::(_checkForMail)
> SUCCESS:  = '1+0 records in\n1+0 records out\n1024000 bytes (1.0 MB)
> copied, 0.0057206 s, 179 MB/s\n';  = 0
> jsonrpc.Executor/0::DEBUG::2016-03-18
> 14:47:06,551::__init__::503::jsonrpc.JsonRpcServer::(_serveRequest) Calling
> 'VM.migrate' in bridge with {u'params': {u'tunneled': u'false',
> u'autoConverge': u'false', u'src': u'ovirt-01.virt.roblib.upei.ca', u'dst':
> u'ovirt-02.virt.roblib.upei.ca:54321', u'vmId':
> u'2be4938e-f4a3-4322-bae3-8a9628b81835', u'abortOnError': u'true',
> u'compressed': u'false', u'method': u'online'}, u'vmID':
> u'2be4938e-f4a3-4322-bae3-8a9628b81835'}
> jsonrpc.Executor/0::DEBUG::2016-03-18 14:47:06,552::API::546::vds::(migrate)
> {u'tunneled': u'false', u'autoConverge': u'false', u'src':
> u'ovirt-01.virt.roblib.upei.ca', u'dst':
> u'ovirt-02.virt.roblib.upei.ca:54321', u'vmId':
> u'2be4938e-f4a3-4322-bae3-8a9628b81835', u'abortOnError': u'true',
> u'compressed': u'false', u'method': u'online'}
> jsonrpc.Executor/0::DEBUG::2016-03-18
> 14:47:06,555::__init__::206::jsonrpc.Notification::(emit) Sending event
> {"params": {"2be4938e-f4a3-4322-bae3-8a9628b81835": {"status": "Migration
> Source"}, "notify_time": 4311153220}, "jsonrpc": "2.0", "method":
> "|virt|VM_status|2be4938e-f4a3-4322-bae3-8a9628b81835"}
> jsonrpc.Executor/0::DEBUG::2016-03-18
> 14:47:06,555::__init__::533::jsonrpc.JsonRpcServer::(_serveRequest) Return
> 'VM.migrate' in bridge with True
> Thread-41096::ERROR::2016-03-18
> 14:47:06,559::migration::208::virt.vm::(_recover)
> vmId=`2be4938e-f4a3-4322-bae3-8a9628b81835`::[Errno -2] Name or service not
> known
> Thread-41096::ERROR::2016-03-18
> 14:47:06,559::migration::213::virt.vm::(_recover)
> vmId=`2be4938e-f4a3-4322-bae3-8a9628b81835`::Failed to destroy remote VM
> Traceback (most recent call last):
>   File "/usr/share/vdsm/virt/migration.py", line 211, in _recover
> self._destServer.destroy(self._vm.id)
> AttributeError: 'SourceThread' object has no attribute '_destServer'
> Thread-41096::DEBUG::2016-03-18
> 14:47:06,560::__init__::206::jsonrpc.Notification::(emit) Sending event
> {"params": {"2be4938e-f4a3-4322-bae3-8a9628b81835": {"status": "Migration
> Source"}, "notify_time": 4311153220}, "jsonrpc": "2.0", "method":
> "|virt|VM_status|2be4938e-f4a3-4322-bae3-8a9628b81835"}
> Thread-41096::ERROR::2016-03-18 14:47:06,560::migration::309::virt.vm::(run)
> vmId=`2be4938e-f4a3-4322-bae3-8a9628b81835`::Failed to migrate
> Traceback (most recent call last):
>   File "/usr/share/vdsm/virt/migration.py", line 278, in run
> self._setupVdsConnection()
>   File "/usr/share/vdsm/virt/migration.py", line 143, in _setupVdsConnection
> client = self._createClient(port)
>   File "/usr/share/vdsm/virt/migration.py", line 130, in _createClient
> self.remoteHost, int(port), sslctx)
>   File "/usr/lib/python2.7/site-packages/vdsm/utils.py", line 1269, in
> create_connected_socket
> sock.connect((host, port))
>   File "/usr/lib64/python2.7/site-packages/M2Crypto/SSL/Connection.py", line
> 181, in connect
> self.socket.connect(addr)
>   File "/usr/lib64/python2.7/socket.py", line 224, in meth
> return getattr(self._sock,name)(*args)
> gaierror: [Errno -2] Name or service not known

This looks like a bug in the current code (looking in 4.0 development code).

1. We try to connect to the remote host:
2. Connectioin fails with DNS resolving error
3. self._destServer is not initialized becuase of 2
4. Code in _recover fail when access self._destServer

We should fix the initialization to avoid this error, but it will fix
your issue, which is
DNS error.

Maybe the address of the destination vm is wrong, or you have DNS issues in your
environment?

Adding Francesco.

Nir

>
>
> On 16-03-18 01:22 PM, Martin 

Re: [ovirt-users] Can't remove snapshot

2016-03-19 Thread Nathanaël Blanchet

Hello,

I can create snapshot when no one exists but I'm not able to remove it 
after.
It concerns many of my vms, and when stopping them, they can't boot 
anymore because of the illegal status of the disks, this leads me in a 
critical situation


VM fedora23 is down with error. Exit message: Unable to get volume size 
for domain 5ef8572c-0ab5-4491-994a-e4c30230a525 volume 
e5969faa-97ea-41df-809b-cc62161ab1bc


As far as I didn't initiate any live merge, am I concerned by this bug 
https://bugzilla.redhat.com/show_bug.cgi?id=1306741?

I'm running 3.6.2, will upgrade to 3.6.3 solve this issue?

2016-03-18 18:26:57,652 ERROR 
[org.ovirt.engine.core.bll.RemoveSnapshotCommand] 
(org.ovirt.thread.pool-8-thread-39) [a1e222d] Ending command 
'org.ovirt.engine.core.bll.RemoveSnapshotCommand' with failure.
2016-03-18 18:26:57,663 ERROR 
[org.ovirt.engine.core.bll.RemoveSnapshotCommand] 
(org.ovirt.thread.pool-8-thread-39) [a1e222d] Could not delete image 
'46e9ecc8-e168-4f4d-926c-e769f5df1f2c' from snapshot 
'88fcf167-4302-405e-825f-ad7e0e9f6564'
2016-03-18 18:26:57,678 WARN 
[org.ovirt.engine.core.dal.dbbroker.auditloghandling.AuditLogDirector] 
(org.ovirt.thread.pool-8-thread-39) [a1e222d] Correlation ID: a1e222d, 
Job ID: 00d3e364-7e47-4022-82ff-f772cd79d4a1, Call Stack: null, Custom 
Event ID: -1, Message: Due to partial snapshot removal, Snapshot 'test' 
of VM 'fedora23' now contains only the following disks: 'fedora23_Disk1'.
2016-03-18 18:26:57,695 ERROR 
[org.ovirt.engine.core.bll.RemoveSnapshotSingleDiskCommand] 
(org.ovirt.thread.pool-8-thread-39) [724e99fd] Ending command 
'org.ovirt.engine.core.bll.RemoveSnapshotSingleDiskCommand' with failure.
2016-03-18 18:26:57,708 ERROR 
[org.ovirt.engine.core.dal.dbbroker.auditloghandlin


Thank you for your help.

Le 23/02/2016 19:51, Greg Padgett a écrit :

On 02/22/2016 07:10 AM, Marcelo Leandro wrote:

Hello,

The bug with snapshot  it will be fixed in ovirt 3.6.3?

thanks.



Hi Marcelo,

Yes, the bug below (bug 1301709) is now targeted to 3.6.3.

Thanks,
Greg


2016-02-18 11:34 GMT-03:00 Adam Litke :

On 18/02/16 10:37 +0100, Rik Theys wrote:


Hi,

On 02/17/2016 05:29 PM, Adam Litke wrote:


On 17/02/16 11:14 -0500, Greg Padgett wrote:


On 02/17/2016 03:42 AM, Rik Theys wrote:


Hi,

On 02/16/2016 10:52 PM, Greg Padgett wrote:


On 02/16/2016 08:50 AM, Rik Theys wrote:


  From the above I conclude that the disk with id that ends with


Similar to what I wrote to Marcelo above in the thread, I'd 
recommend
running the "VM disk info gathering tool" attached to [1].  
It's the
best way to ensure the merge was completed and determine which 
image

is
the "bad" one that is no longer in use by any volume chains.



I've ran the disk info gathering tool and this outputs (for the
affected
VM):

VM lena
 Disk b2390535-744f-4c02-bdc8-5a897226554b
(sd:a7ba2db3-517c-408a-8b27-ea45989d6416)
 Volumes:
 24d78600-22f4-44f7-987b-fbd866736249

The id of the volume is the ID of the snapshot that is marked
"illegal".
So the "bad" image would be the dc39 one, which according to the 
UI is

in use by the "Active VM" snapshot. Can this make sense?



It looks accurate.  Live merges are "backwards" merges, so the merge
would have pushed data from the volume associated with "Active VM"
into the volume associated with the snapshot you're trying to 
remove.


Upon completion, we "pivot" so that the VM uses that older 
volume, and

we update the engine database to reflect this (basically we
re-associate that older volume with, in your case, "Active VM").

In your case, it seems the pivot operation was done, but the 
database
wasn't updated to reflect it.  Given snapshot/image associations 
e.g.:


  VM Name  Snapshot Name  Volume
  ---  -  --
  My-VMActive VM  123-abc
  My-VMMy-Snapshot789-def

My-VM in your case is actually running on volume 789-def.  If you 
run

the db fixup script and supply ("My-VM", "My-Snapshot", "123-abc")
(note the volume is the newer, "bad" one), then it will switch the
volume association for you and remove the invalid entries.

Of course, I'd shut down the VM, and back up the db beforehand.



I've executed the sql script and it seems to have worked. Thanks!


"Active VM" should now be unused; it previously (pre-merge) was the
data written since the snapshot was taken.  Normally the larger 
actual

size might be from qcow format overhead.  If your listing above is
complete (ie one volume for the vm), then I'm not sure why the base
volume would have a larger actual size than virtual size.

Adam, Nir--any thoughts on this?



There is a bug which has caused inflation of the snapshot volumes 
when

performing a live merge.  We are submitting fixes for 3.5, 3.6, and
master right at this moment.



Which bug number is assigned to this bug? Will upgrading to a release
with a fix reduce the disk usage again?



See https://bugzilla.redhat.com/show_bug.cgi?id=1301709 for the bug.
It's about 

Re: [ovirt-users] User with extended tab in User Panel?

2016-03-19 Thread Oved Ourfali
As far as I remember you're right.
Are you sure these are the only permissions? Maybe something inherited from
a group?
I can check the code next week to make sure nothing has changed.
On Mar 18, 2016 23:10, "James Michels" 
wrote:

> Hi,
>
> This is oVirt 3.6.3.4, and I have a user with the following permissions.
>
> Role | Object | Inherited permission
> UserTemplateBasedVm | Small (VM Template) | Everyone
> UserTemplateBasedVm | Medium (VM Template) | Everyone
> UserTemplateBasedVm | Large (VM Template) | Everyone
> UserTemplateBasedVm | XLarge (VM Template) | Everyone
> UserTemplateBasedVm | ubuntu-14 (VM Template) | Everyone
> UserTemplateBasedVm | centos-7 (VM Template) | Everyone
> CpuProfileOperator | Default (CpuProfile) | Everyone
> VnicProfileUser | LAN1 (Vnic Profile) | Everyone
> VnicProfileUser | LAN2 (Vnic Profile) | Everyone
> UserRole | instance (VM Pool) |
> UserRole | instance-6 (VM) |
>
> This user can see the Extended tab when logged in to the User panel.
> However AFAIK only PowerUserRole grants access to that tab. Which
> permission(s) is allowing the user to see the tab?
>
> Thanks
>
> James
>
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
>
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


Re: [ovirt-users] [hosted-engine] Setup broke host's network

2016-03-19 Thread Simone Tiraboschi
On Thu, Mar 17, 2016 at 11:34 AM, Wee Sritippho  wrote:

> Hi,
>
> I setup the host's network while installing CentOS 7 (GUI), so the network
> configuration is like this:
>
> eno1 --> bond0_slave1 --\
>  |--> bond0
> eno2 --> bond0_slave2 --/
>
> After I disabled NetworkManager and ran 'hosted-engine --deploy', the
> setup stuck at this line:
>
> [ INFO  ] Configuring the management bridge
>
> Then the ssh connection is lost. I accessed the console and found this
> line after the line above:
>
> [ ERROR ] Failed to execute stage 'Misc configuration': Connection to
> storage server failed
>

Hi Wee,
from the log it seams that the network configuration worked as expected.
Your issue was different: 'Connection to storage server failed' simply
means that your host lost its connection with the storage server in the
middle of the deployment.

>From the logs I saw that you tried to deploy on GlusterFS using the host
where you are deploying hosted-engine host also for gluster: this setup is
called hyper-converged but it's currently not supported, please wait for
the next major release to deploy in this scenario.

In the mean time you can deploy hosted-engine pointing it to a gluster
volume on other external hosts or with another storage type.



>
> And the network is kinda break. I have to 1. delete MASTER=bond0 and
> SLAVE=yes line in ifcfg-eno{1,2} config files 2. re-config ifcfg-bond0 to
> get static IP 3. turnoff and delete ovirtmgmt bridge 4. restart the network
> in order to make it live again.
>
> Did this network configuration really break the setup or it was something
> else?  If the network configuration is the cause, how can I proceed to
> install oVirt hosted-engine?
>
> I attached the answer file, installation log, vdsm.log and supervdsm.log
> with this email.
>
> Environment:
> - CentOS Linux release 7.2.1511 (Core)
> - ovirt-release36-003-1.noarch
> - ovirt-hosted-engine-setup-1.3.3.4-1.el7.centos.noarch
> - vdsm-4.17.23-1.el7.noarch
>
> Thank you,
> Wee
>
>
> ---
> ซอฟต์แวร์ Avast แอนตี้ไวรัสตรวจสอบหาไวรัสจากอีเมลนี้แล้ว
> https://www.avast.com/antivirus
>
> ___
> Users mailing list
> Users@ovirt.org
> http://lists.ovirt.org/mailman/listinfo/users
>
>
___
Users mailing list
Users@ovirt.org
http://lists.ovirt.org/mailman/listinfo/users


[ovirt-users] Diagnosing Migration Error

2016-03-19 Thread Charles Tassell

Hello,

  I'm trying to test migrating a VM from one host to another and it's 
failing, but with no apparent error message.  I took a look at the 
server logs (which I've copied below) but there doesn't seem to be 
anything in here that would help track down the problem.  Should I be 
looking somewhere besides engine.log on the hosted engine? This is the 
latest version of oVirt (3.6.3.4-1.el7.centos) that I just upgraded this 
morning.  The VM has an ISO attached over NFS storage and the disk image 
is on fiber channel.


2016-03-18 14:31:18,913 INFO 
[org.ovirt.engine.core.bll.MigrateVmToServerCommand] (default task-25) 
[549545f2] Lock Acquired to object 
'EngineLock:{exclusiveLocks='[2be4938e-f4a3-4322-bae3-8a9628b81835=]', 
sharedLocks='null'}'
2016-03-18 14:31:19,131 INFO 
[org.ovirt.engine.core.bll.MigrateVmToServerCommand] 
(org.ovirt.thread.pool-8-thread-45) [549545f2] Running command: 
MigrateVmToServerCommand internal: false. Entities affected :  ID: 
2be4938e-f4a3-4322-bae3-8a9628b81835 Type: VMAction group MIGRATE_VM 
with role type USER
2016-03-18 14:31:19,186 INFO 
[org.ovirt.engine.core.vdsbroker.MigrateVDSCommand] 
(org.ovirt.thread.pool-8-thread-45) [549545f2] START, MigrateVDSCommand( 
MigrateVDSCommandParameters:{runAsync='true', 
hostId='cbfd733b-8ced-487d-8754-a2217ce1210f', 
vmId='2be4938e-f4a3-4322-bae3-8a9628b81835', 
srcHost='ovirt-01.virt.roblib.upei.ca', 
dstVdsId='1200a78f-6d05-4e5e-9ef7-6798cf741310', 
dstHost='ovirt-02.virt.roblib.upei.ca:54321', migrationMethod='ONLINE', 
tunnelMigration='false', migrationDowntime='0', autoConverge='false', 
migrateCompressed='false', consoleAddress='null'}), log id: 8f303ba
2016-03-18 14:31:19,188 INFO 
[org.ovirt.engine.core.vdsbroker.vdsbroker.MigrateBrokerVDSCommand] 
(org.ovirt.thread.pool-8-thread-45) [549545f2] START, 
MigrateBrokerVDSCommand(HostName = oVirt-01, 
MigrateVDSCommandParameters:{runAsync='true', 
hostId='cbfd733b-8ced-487d-8754-a2217ce1210f', 
vmId='2be4938e-f4a3-4322-bae3-8a9628b81835', 
srcHost='ovirt-01.virt.roblib.upei.ca', 
dstVdsId='1200a78f-6d05-4e5e-9ef7-6798cf741310', 
dstHost='ovirt-02.virt.roblib.upei.ca:54321', migrationMethod='ONLINE', 
tunnelMigration='false', migrationDowntime='0', autoConverge='false', 
migrateCompressed='false', consoleAddress='null'}), log id: 792d7e9e
2016-03-18 14:31:19,455 INFO 
[org.ovirt.engine.core.vdsbroker.vdsbroker.MigrateBrokerVDSCommand] 
(org.ovirt.thread.pool-8-thread-45) [549545f2] FINISH, 
MigrateBrokerVDSCommand, log id: 792d7e9e
2016-03-18 14:31:19,470 INFO 
[org.ovirt.engine.core.vdsbroker.MigrateVDSCommand] 
(org.ovirt.thread.pool-8-thread-45) [549545f2] FINISH, 
MigrateVDSCommand, return: MigratingFrom, log id: 8f303ba
2016-03-18 14:31:19,498 INFO 
[org.ovirt.engine.core.dal.dbbroker.auditloghandling.AuditLogDirector] 
(org.ovirt.thread.pool-8-thread-45) [549545f2] Correlation ID: 549545f2, 
Job ID: 3f97f737-d32a-4ffa-b213-122dcd3ca048, Call Stack: null, Custom 
Event ID: -1, Message: Migration started (VM: cdTest02, Source: 
oVirt-01, Destination: oVirt-02, User: admin@internal).
2016-03-18 14:31:28,055 INFO 
[org.ovirt.engine.core.vdsbroker.VmAnalyzer] 
(DefaultQuartzScheduler_Worker-39) [] VM 
'2be4938e-f4a3-4322-bae3-8a9628b81835'(cdTest02) moved from 
'MigratingFrom' --> 'Up'
2016-03-18 14:31:28,055 INFO 
[org.ovirt.engine.core.vdsbroker.VmAnalyzer] 
(DefaultQuartzScheduler_Worker-39) [] Adding VM 
'2be4938e-f4a3-4322-bae3-8a9628b81835' to re-run list
2016-03-18 14:31:28,114 ERROR 
[org.ovirt.engine.core.vdsbroker.VmsMonitoring] 
(DefaultQuartzScheduler_Worker-39) [] Rerun VM 
'2be4938e-f4a3-4322-bae3-8a9628b81835'. Called from VDS 'oVirt-01'
2016-03-18 14:31:28,202 INFO 
[org.ovirt.engine.core.vdsbroker.vdsbroker.MigrateStatusVDSCommand] 
(org.ovirt.thread.pool-8-thread-46) [] START, 
MigrateStatusVDSCommand(HostName = oVirt-01, 
MigrateStatusVDSCommandParameters:{runAsync='true', 
hostId='cbfd733b-8ced-487d-8754-a2217ce1210f', 
vmId='2be4938e-f4a3-4322-bae3-8a9628b81835'}), log id: 618baaa6
2016-03-18 14:31:29,209 INFO 
[org.ovirt.engine.core.vdsbroker.vdsbroker.MigrateStatusVDSCommand] 
(org.ovirt.thread.pool-8-thread-46) [] FINISH, MigrateStatusVDSCommand, 
log id: 618baaa6
2016-03-18 14:31:29,250 ERROR 
[org.ovirt.engine.core.dal.dbbroker.auditloghandling.AuditLogDirector] 
(org.ovirt.thread.pool-8-thread-46) [] Correlation ID: 549545f2, Job ID: 
3f97f737-d32a-4ffa-b213-122dcd3ca048, Call Stack: null, Custom Event ID: 
-1, Message: Migration failed  (VM: cdTest02, Source: oVirt-01, 
Destination: oVirt-02).
2016-03-18 14:31:29,262 INFO 
[org.ovirt.engine.core.bll.MigrateVmToServerCommand] 
(org.ovirt.thread.pool-8-thread-46) [] Lock freed to object 
'EngineLock:{exclusiveLocks='[2be4938e-f4a3-4322-bae3-8a9628b81835=]', 
sharedLocks='null'}'

___
Users mailing list
Users@ovirt.org