Re: [ovirt-users] Could not get access to ACL tech driver 'ebiptables'

2016-11-18 Thread Kenneth Bingham
wonder if I add their Ethernet range to the pools of the gaining Manager... On Fri, Nov 18, 2016 at 9:35 PM Kenneth Bingham <w...@qrk.us> wrote: > I imported a guest from its iscsi storage domain and clicked the green UP > button, but the guest failed to start. This was the first tim

[ovirt-users] Could not get access to ACL tech driver 'ebiptables'

2016-11-18 Thread Kenneth Bingham
I imported a guest from its iscsi storage domain and clicked the green UP button, but the guest failed to start. This was the first time vdsm tried to create a temporary storage domain for a host other than hosted_engine. I'm using the same chap credential that was used with the same iscsi storage

Re: [ovirt-users] Upgrading oVirt 3.6 with existing HTTPS certificate signed by custom CA to oVirt 4

2016-11-05 Thread Kenneth Bingham
ithub to update the following page? > > http://www.ovirt.org/develop/release-management/features/infra/pki/ > > Best regards, > > > > > > > > > Best, > > > > Daniel > > > > > > > > From: <users-boun...@ovirt.org> on beha

Re: [ovirt-users] Upgrading oVirt 3.6 with existing HTTPS certificate signed by custom CA to oVirt 4

2016-10-27 Thread Kenneth Bingham
te key of ca.pem Please copy the private key of /etc/pki/ovirt-engine/ca.pem to /etc/pki/ovirt-engine/private/ca.pem and let me know if everything works On Thu, Oct 27, 2016 at 2:47 PM, Kenneth Bingham <w...@qrk.us> wrote: Thanks Ravi, that's helpful and I appreciate the precision and attenti

Re: [ovirt-users] Upgrading oVirt 3.6 with existing HTTPS certificate signed by custom CA to oVirt 4

2016-10-27 Thread Kenneth Bingham
ertificate.p12 /etc/pki/ovirt-engine/keys/apache.p12 > cp apache.cer /etc/pki/ovirt-engine/certs/apache.cer > cp apache.key.nopass /etc/pki/ovirt-engine/keys/apache.key.nopass > > Restart engine and httpd > === > service httpd restart > service ovirt-engine restart > > On Th

Re: [ovirt-users] Upgrading oVirt 3.6 with existing HTTPS certificate signed by custom CA to oVirt 4

2016-10-26 Thread Kenneth Bingham
I did install a server certificate from a private CA on the engine server for the oVirt 4 Manager GUI, but haven't figured out how to configure engine to trust the same CA which also issued the server certificate presented by vdsm. This is important for us because this is the same server

[ovirt-users] migrating via pivotting the storage domain between instances of Manager

2016-10-26 Thread Kenneth Bingham
Is it possible to "pivot" up or down guests from one instance of Manager to another instance of Manager by detaching the data storage domain from the source Manager's data center and attaching it to the destination Manager's data center? I tried this with a block type storage domain, but there are

Re: [ovirt-users] management interface

2016-07-31 Thread Kenneth Bingham
Fernando, That is the recommended approach, that ovirtmgmt bridge not also be used for VMs. This is for the sake of separation of privilege if I understand correctly, and there's no reason that VMs will not be able to communicate using that bridge. Whether or not you tag depends on your network's

Re: [ovirt-users] Safe to upgrade HE hosts from GUI?

2016-07-31 Thread Kenneth Bingham
<rgo...@redhat.com> wrote: > On 30 July 2016 at 02:48, Kenneth Bingham <w...@qrk.us> wrote: > >> Aw crap. I did exactly the same thing and this could explain a lot of the >> issues I've been pulling out my beard over. Every time I did 'hosted-engine >> --deplo

Re: [ovirt-users] master storage domain stuck in state "locked"

2016-07-31 Thread Kenneth Bingham
mode on a fresh install. On Sun, Jul 31, 2016 at 3:07 AM Roy Golan <rgo...@redhat.com> wrote: > On 31 July 2016 at 06:20, Kenneth Bingham <w...@qrk.us> wrote: > >> Correction: /data is the master, /engine is stuck in status "Locked", but >> is also the vo

Re: [ovirt-users] illegal host split-state

2016-07-31 Thread Kenneth Bingham
of the /engine storage domain succeeded this time and the hosted engine VM now appears in the "Virtual Machines" tab. It was always visible in 'virsh --readonly list'. On Sun, Jul 31, 2016 at 3:20 AM Roy Golan <rgo...@redhat.com> wrote: > On 31 July 2016 at 02:24, Kenneth Bingham

Re: [ovirt-users] HTML5 Console

2016-07-30 Thread Kenneth Bingham
I had the same problem until I imported the CA certificate from the engine as a trusted root (self-signed) authority in my browser. ENGINE:/etc/pki/ovirt-engine/ca.pem Further possibilities mentioned in here: https://access.redhat.com/solutions/718653 On Sat, Jul 30, 2016 at 11:12 PM Anantha

Re: [ovirt-users] master storage domain stuck in state "locked"

2016-07-30 Thread Kenneth Bingham
ltaneously. The volume is still locked. On Sat, Jul 30, 2016 at 5:24 PM Kenneth Bingham <w...@qrk.us> wrote: > Please help me determine whether this is a defect or user error. > > The master storage domain "hosted_storage" was automatically imported in > oVirt > ma

[ovirt-users] illegal host split-state

2016-07-30 Thread Kenneth Bingham
When I set local maintenance on the self-hosted engine hypervisor host through the manager GUI it becomes stuck in state "Preparing for maintenance". The hosted engine virtual guest is automatically migrated because the HA broker is successfully set to maintenance mode=local. The host returns to

[ovirt-users] master storage domain stuck in state "locked"

2016-07-30 Thread Kenneth Bingham
Please help me determine whether this is a defect or user error. The master storage domain "hosted_storage" was automatically imported in oVirt manager when I created another new storage domain "/data", a Gluster FS volume, immediately after doing 'hosted-engine --deploy' on the

Re: [ovirt-users] Safe to upgrade HE hosts from GUI?

2016-07-29 Thread Kenneth Bingham
Aw crap. I did exactly the same thing and this could explain a lot of the issues I've been pulling out my beard over. Every time I did 'hosted-engine --deploy' on the RHEV-M|NODE host I entered the FQDN of *that* host, not the first host, as the origin of the Gluster FS volume because at the time

[ovirt-users] made the mistake of configuring bond before 'hosted-engine --deploy'

2016-07-28 Thread Kenneth Bingham
Do you know of a way to force vdsmd to forget what it knows about the network configuration on the hypervisor host? If I synchronize or make any change through the engine the host drops off the network because of an invalid configuration pushed by some component of oVirt which creates bond1 with