Re: [ClusterLabs] PCS security vulnerability

2024-06-12 Thread Ondrej Mular
package shipped with RHEL includes some bundled rubygems, including rack. Upgrading the rack rubygem and rebuilding the PCS package were necessary to resolve the CVEs in that specific scenario. Regards, Ondrej On Tue, 11 Jun 2024 at 15:18, S Sathish S wrote: > > Hi Tomas/Team, > >

Re: [ClusterLabs] cluster okey but errors when tried to move resource - ?

2023-06-09 Thread Ondrej Mular
. I guess `crm_resource --move --master` creates a location constraint with `role="Promoted"` and doesn't take into account the currently used schema. However, I'm unable to test this theory as I don't have any testing environment available at the moment. Ondrej On Fri, 9 Jun 2023 at 0

Re: [ClusterLabs] VirtualDomain - unable to migrate

2022-01-05 Thread Ondrej Mular
On Tue, 4 Jan 2022 at 16:20, Ken Gaillot wrote: > > On Wed, 2021-12-29 at 17:28 +, lejeczek via Users wrote: > > Hi guys > > > > I'm having problems with cluster on new CentOS Stream 9 and > > I'd be glad if you can share your thoughts. > > > > -> $ pcs resource move c8kubermaster2 swir > >

Re: [ClusterLabs] Q: rulke-based operation pause/freeze?

2020-03-05 Thread Ondrej
aker/doc/en-US/Pacemaker/1.1/html/Pacemaker_Explained/s-resource-options.html#_resource_meta_attributes To determine _when_ this state should be enabled and disabled would be a different story. -- Ondrej Famera ___ Manage your subscription: https://lists

Re: [ClusterLabs] Finding attributes of a past resource agent invocation

2020-03-03 Thread Ondrej
iable passed to it. If you can reproduce the same issue you can try to dump all variables to file when validation fails (take inspiration from function 'dump_env()' of Dummy resource). So if you wanna check what attributes were set around the time of deletion have a look at /var/lib/pacemak

Re: [ClusterLabs] Coming in Pacemaker 2.0.4: shutdown locks

2020-02-25 Thread Ondrej
m_simulate'. Will there be some indication why the resources are not moving like 'blocked-shutdown-lock' or they will just appear as not moving (Stopped)? Will this look differently from situation where for example the resource is just not allowed by constraint to run on other nodes? Thanks for heads up -- Ond

Re: [ClusterLabs] 2 node clusters - ipmi fencing

2020-02-21 Thread Ondrej
node that will be using them you can use constraints to move fence devices to opposite node. -- Ondrej Famera ___ Manage your subscription: https://lists.clusterlabs.org/mailman/listinfo/users ClusterLabs home: https://www.clusterlabs.org/

Re: [ClusterLabs] 2 node clusters - ipmi fencing

2020-02-20 Thread Ondrej
ered a good practice. Important to understand is that you configure where the cluster will run 'monitor' check of IPMI device. That means you will be monitoring readiness of node1 to use node2 IPMI device and readiness of node2 to use node1 IPMI device. -- Ondrej Famera __

Re: [ClusterLabs] How to unfence without reboot (fence_mpath)

2020-02-17 Thread Ondrej
Hello Strahil, On 2/17/20 3:39 PM, Strahil Nikolov wrote: Hello Ondrej, thanks for your reply. I really appreciate that. I have picked fence_multipath as I'm preparing for my EX436 and I can't know what agent will be useful on the exam. Also ,according to https://access.redhat.com/solutions

Re: [ClusterLabs] How to unfence without reboot (fence_mpath)

2020-02-16 Thread Ondrej
ding the failures. Thank for answering my question. Best Regards, Strahil Nikolov -- Ondrej Famera ___ Manage your subscription: https://lists.clusterlabs.org/mailman/listinfo/users ClusterLabs home: https://www.clusterlabs.org/

[ClusterLabs] When does pacemaker call 'restart'/'force-reload' operations on LSB resource?

2019-12-03 Thread Ondrej
ature' as suggested by LSB specification below. However I would like to verify that this works as expected. http://refspecs.linuxfoundation.org/LSB_5.0.0/LSB-Core-generic/LSB-Core-generic/iniscrptact.html -- Ondrej ___ Manage your subscription: https://lists.clusterlabs.org/mailman/listinfo/users ClusterLabs home: https://www.clusterlabs.org/

Re: [ClusterLabs] Feedback wanted: Node reaction to fabric fencing

2019-07-24 Thread Ondrej
to 'stop'. -- Ondrej ___ Manage your subscription: https://lists.clusterlabs.org/mailman/listinfo/users ClusterLabs home: https://www.clusterlabs.org/

[ClusterLabs] up-to-date Gentoo ebuilds of pacemaker-2/corosync-3/pcs-0-10

2019-06-16 Thread Ondrej
? :) Thanks for any info -- Ondrej ___ Manage your subscription: https://lists.clusterlabs.org/mailman/listinfo/users ClusterLabs home: https://www.clusterlabs.org/

Re: [ClusterLabs] Issue in fence_ilo4 with IPv6 ILO IPs

2019-04-08 Thread Ondrej
glad that mystery is resolved. -- Ondrej On Fri, Apr 5, 2019 at 2:23 PM Rohit Saini mailto:rohitsaini111.fo...@gmail.com>> wrote: Hi Ondrej, Finally found some lead on this.. We started tcpdump on my machine to understand the IPMI traffic. Attaching the capture for your refe

Re: [ClusterLabs] Issue in fence_ilo4 with IPv6 ILO IPs

2019-04-03 Thread Ondrej
On 4/3/19 6:10 PM, Rohit Saini wrote: Hi Ondrej, Please find my reply below: 1. *Stonith configuration:* [root@orana ~]# pcs config  Resource: fence-uc-orana (class=stonith type=fence_ilo4)   Attributes: delay=0 ipaddr=fd00:1061:37:9002:: lanplus=1 login=xyz passwd=xyz pcmk_host_list=orana

Re: [ClusterLabs] Issues with DB2 HADR Resource Agent

2018-03-04 Thread Ondrej Famera
On 02/19/2018 11:25 PM, Dileep V Nair wrote: > Hello Ondrej, > > I am still having issues with my DB2 HADR on Pacemaker. When I do a > db2_kill on Primary for testing, initially it does a restart of DB2 on > the same node. But if I let it run for some days and then try the same

Re: [ClusterLabs] Issues with DB2 HADR Resource Agent

2018-02-11 Thread Ondrej Famera
On 02/01/2018 07:24 PM, Dileep V Nair wrote: > Thanks Ondrej for the response. I have set the PEER_WINDOWto 1000 which > I guess is a reasonable value. What I am noticing is it does not wait > for the PEER_WINDOW. Before that itself the DB goes into a > REMOTE_CATCHUP_PENDING state a

Re: [ClusterLabs] Issues with DB2 HADR Resource Agent

2018-02-01 Thread Ondrej Famera
EER_WINDOW which gives a bit more safety. (the table in link above also explains how much safer it is) Instead of changing the resource agent I would rather suggest checking the PEER_WINDOW and HADR_TIMEOUT variables in DB2. They determine how long it is possible to do takeover 'by

[ClusterLabs] Ansible modules for basic operation with pacemaker cluster with 'pcs'

2017-02-16 Thread Ondrej Famera
hit any any issues feel free to open issue on Github. -- Ondrej Faměra ___ Users mailing list: Users@clusterlabs.org http://lists.clusterlabs.org/mailman/listinfo/users Project Home: http://www.clusterlabs.org Getting started: http://www.clusterlabs.org