Re: Automatically initialize data-disk on Windows Server 2016 OS template

2017-08-15 Thread Cloud List
Dear all, Anyone who has created a Windows Server 2016 OS template on CloudStack can advise on what's the best way to auto-initialize the data-disk upon VM provisioning? Any advice is highly appreciated. Thank you. On Mon, Aug 14, 2017 at 1:32 PM, Cloud List wrote: > Dear all, > > I am usin

Re: Secondary storage is not secondary properly

2017-08-15 Thread Rodrigo Baldasso
Put the zone in maitenance mode, that will not auto create the ssvm's. - - - - - - - - - - - - - - - - - - - Rodrigo Baldasso - LHOST (51) 9 8419-9861 - - - - - - - - - - - - - - - - - - - On 15/08/2017 14:00:45, Asanka Gunasekara wrote: Hi Dag, restart did not work but updating the tables init

Re: Secondary storage is not secondary properly

2017-08-15 Thread Asanka Gunasekara
Hi Dag, restart did not work but updating the tables initiate the recreation of the system VMs. But it does not give me the chance to restart cloudstack server, as soon as destroy the VMs it starts the VM recreation. Is there a way to stop this behaviour Thanks and Regards Asanka On 15 August 20

Re: Fwd: Error on uploading a SSL Certificate with cloudmonkey

2017-08-15 Thread Daan Hoogland
H Dennis, I am off this week with bad Internet at least the first half of the week. I'll have a look when I can. In the meanwhile, could you find the matching log entry for that error and paste the cloudmonkey command here? Biligual auto correct use. Read at your own risico On 14 Aug 2017 3:52 p

Re: Creating a Network inside a vpc which isnt attached to the routervm

2017-08-15 Thread S. Reddit
Daniel, Dag very well explained the problem with VMware and Virtual Guest Tagging (VGT). I could add to that, if you'd use a Distributed Virtual Switch (DVS) you effectively can limit tags on a trunked connection to a Vmware Guest. So you would need to: (1) Use VMware DVS (Enterprise Plus Feature

Re: Creating a Network inside a vpc which isnt attached to the routervm

2017-08-15 Thread Dag Sonstebo
Hi Daniel, Yes you could do .1q at an interface level for the VR ( this is what we do with KVM networking ). However this brings you a couple of stumbling blocks: 1) For you to trunk VLANs to this interface it would need to be attached to a trunked vSwitch – which is currently all or nothing in

Re: Creating a Network inside a vpc which isnt attached to the routervm

2017-08-15 Thread daniel.herrmann
Hi Dag, you would need to do that with the Linux dot1q kernel module, yes. This way you can create virtual interfaces with VLAN tags and bind them to one NIC. We are routing and firewalling in software anyway, I do not see any considerable additional overhead here. Instead of “physical” NICs, w

Re: Creating a Network inside a vpc which isnt attached to the routervm

2017-08-15 Thread Dennis Meyer
There is the statement of a citrix employee: https://discussions.citrix.com/topic/389152-remove-the-limit-of-seven-nics/ 2017-08-15 14:56 GMT+02:00 Dennis Meyer : > Well, the other point is citrix is supporting more nics than seven if > using the CLI. > How does CloudStack speaks to XenServer, vi

Re: Creating a Network inside a vpc which isnt attached to the routervm

2017-08-15 Thread Dennis Meyer
Well, the other point is citrix is supporting more nics than seven if using the CLI. How does CloudStack speaks to XenServer, via the RPC API or CLI? That would be interesting because of the exception CloudStack throws if i try to add more than seven through the gui or api. 2017-08-15 14:34 GMT+02

Re: Creating a Network inside a vpc which isnt attached to the routervm

2017-08-15 Thread Dag Sonstebo
Hi Daniel, The mechanism for isolating L2 traffic is at the vSwitch level – there is no way to VLAN tag the at the NIC level for a VM in VMware. Your only other option is therefore to VLAN tag at the guest OS level which adds security issues + overhead, etc. Regards, Dag Sonstebo Cloud Archit

Re: Creating a Network inside a vpc which isnt attached to the routervm

2017-08-15 Thread daniel.herrmann
Hi Dag, thank you for your answer. As far as I know, the end user never has direct access to the virtual router. I am not talking about adding a VLAN tag at the user VM, only at the VPR, where the limit most likely comes into play when creating a number of tiers in a VPC. We could do both: nor

Re: Creating a Network inside a vpc which isnt attached to the routervm

2017-08-15 Thread Dag Sonstebo
Hi Daniel, In theory that could work – but keep in mind we are working in a multi-tenant environment, where guest isolation must be guaranteed, hence cannot ever be exposed to normal users. The isolation method must be abstracted from the end user VMs – otherwise you would have a potential secu

Re: IPMI out of management

2017-08-15 Thread victor
Hello Rohit, As mentioned in the following url, IPMI method will help to achieve HA with KVM hypervisor. https://cwiki.apache.org/confluence/display/CLOUDSTACK/KVM+HA+with+IPMI+Fencing = I have successfully implemented IPMI out of management with my 2 KVM hyper-visors successfully.

Re: Creating a Network inside a vpc which isnt attached to the routervm

2017-08-15 Thread daniel.herrmann
Hi, we are hitting the same limitation, except that we can use 10 NICs on VMware. The fact that we also use the Private Gateway functionality addes another NIC, besides the management and outside NIC which is present as well. I wonder that is the reason for one NIC per tier? Why not just use on

Re: Creating a Network inside a vpc which isnt attached to the routervm

2017-08-15 Thread Dag Sonstebo
Hi Dennis, Any tier or network which is accessible and part of a VPC requires an interface on the VPC Virtual Router. What you can however do is create separate shared networks and connect these as secondary networks to your VMs – these shared networks get their own VR. Regards, Dag Sonstebo C

Re: Secondary storage is not secondary properly

2017-08-15 Thread Asanka Gunasekara
Thank you Dag Best Regards Asanka On 15 August 2017 at 13:18, Dag Sonstebo wrote: > Hi Asanka, > > Maybe give you management server a reboot first of all. > > If this fails then yes we sometimes set status to stopped or destroyed in > the DB – you also need to set the removed date and last upd

Creating a Network inside a vpc which isnt attached to the routervm

2017-08-15 Thread Dennis Meyer
Hi, im using xenserver as hypervisor so im limited to 7 nic's / vm, so the router vm cant handle more than 7 nics which corresponds to 7 networks inside a vpc. I had created some networks for different drbd and corosync stuff, they dont need a gateway, dhcp and a router vm. How should a network of

Re: Secondary storage is not secondary properly

2017-08-15 Thread Dag Sonstebo
Hi Asanka, Maybe give you management server a reboot first of all. If this fails then yes we sometimes set status to stopped or destroyed in the DB – you also need to set the removed date and last update date. Regards, Dag Sonstebo Cloud Architect ShapeBlue On 15/08/2017, 07:07, "Asanka Gunase

Re: CS VLAN configuration in a Cisco 3560 switch

2017-08-15 Thread daniel.herrmann
Hi Luis, just to extend a little more: basically the configuration posted by Simon should work. Some more explanations. There are some important considerations: - All VLANs you want to use need to exist on the switch. That’s why they need to be created using the vlan 100-200 statement - The “s