Commit graph

41984 commits

Author SHA1 Message Date
0aa1e3725d maubot-stg: remove old deploymentconfig
Signed-off-by: Ryan Lerch <rlerch@redhat.com>
2024-10-22 16:12:25 +10:00
d490d6acc6 maubot-stg: fix wront dfeployment filename
Signed-off-by: Ryan Lerch <rlerch@redhat.com>
2024-10-22 15:59:00 +10:00
d8e2b9ca74 maubot-stg: try to use deployment over deploymentconfig
Signed-off-by: Ryan Lerch <rlerch@redhat.com>
2024-10-22 15:53:53 +10:00
Adam Piasecki
7d22991ac7 coreos-koji-tagger: Add Adam Piasecki to owners
reason: monitoring and development.
2024-10-21 13:48:42 +01:00
307060801c
communishift: marked projects not to be cleaned up by clean up script
Signed-off-by: David Kirwan <davidkirwanirl@gmail.com>
2024-10-21 08:11:33 +01:00
43aba64c0f
languages: compute stats for F40 2024-10-20 21:38:20 +02:00
Aurélien Bompard
e9158e857a
Bugzilla2fedmsg: prepare the caching configuration
Signed-off-by: Aurélien Bompard <aurelien@bompard.org>
2024-10-18 16:33:13 +02:00
Michal Konecny
2803a028a6 [ipsilon_stg] Change the group that has access to sysadmin-noc
We are currently not able to create a new group in ipa on staging. But to gain
access to @luhliarik to test https://pagure.io/fedora-infrastructure/issue/12092
let's use some existing group.

Signed-off-by: Michal Konecny <mkonecny@redhat.com>
2024-10-18 13:06:38 +02:00
Pavel Raiskup
a3b2904a2a logdetective02: birthday no more 2024-10-17 14:42:08 +02:00
Pavel Raiskup
549eaa2834 logdetective02: mount data volume 2024-10-17 14:40:50 +02:00
Pavel Raiskup
29a7d1a4f1 logdetective: add missing handlers 2024-10-17 08:41:36 +02:00
Pavel Raiskup
e12ee56865 logdetective: move the playbook to groups/ 2024-10-17 08:10:58 +02:00
Kevin Fenzi
474207466b people: increase quota for ngompa. ticket#12244
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2024-10-16 15:18:13 -07:00
Jakub Kadlcik
f674dc1b29 copr: define copr_rhsm_activation_key and copr_rhsm_org_id 2024-10-16 23:34:09 +02:00
Justin W. Flory (he/him)
83360f5c91 📧 roles(fasjson): Create jww@ email alias for @jflory7
This commit adds a new fedoraproject.org email alias for me, using my
new initials. The short story is that I am in the process of legally
changing my last name. Although the name change is still underway, I
want to prepare the infrastructure bits in advance so I can have a
graceful transition once the legal process is complete.

Signed-off-by: Justin W. Flory (he/him) <jwf@redhat.com>
2024-10-16 21:02:45 +00:00
Aurélien Bompard
33c98f7467
Allow appowners to create pods in MirrorManager
Ref: https://discussion.fedoraproject.org/t/openshift-permissions-for-appowners/133816

Signed-off-by: Aurélien Bompard <aurelien@bompard.org>
2024-10-16 12:22:27 +02:00
Michal Konecny
7c3e93ce27 [ipsilon_stg] Add shell and sudo access groups
This should help as solving access for @luhliarik to help resolve
https://pagure.io/fedora-infrastructure/issue/12092

Signed-off-by: Michal Konecny <mkonecny@redhat.com>
2024-10-16 10:08:01 +00:00
Michal Konecny
4cb4e55304 Update yamllint config to fix the CI errors
Recently we started seeing CI failing on fi-ansible-lint-diff job, this update
to yamllint config should fix that. See
https://ansible.readthedocs.io/projects/lint/rules/yaml/#yamllint-configuration
for more information about the default yamllint config.

Signed-off-by: Michal Konecny <mkonecny@redhat.com>
2024-10-16 11:33:41 +02:00
Kevin Fenzi
c01bff8ea1 We are in f41 final freeze
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2024-10-15 15:30:21 -07:00
Adam Williamson
95f385cf4d openqa: bump the load average threshold on p09 worker hosts
They seem to be hitting this nonsense cap, bump it.

Signed-off-by: Adam Williamson <awilliam@redhat.com>
2024-10-15 13:17:24 -07:00
Adam Williamson
cb026b4120 openqa/worker: kill stuck qemu processes daily
This is an awful hack to deal with
https://github.com/os-autoinst/os-autoinst/issues/2549 while we
try and fix it properly. This finds stuck qemu processes by
parsing the journal messages of the workers, and kills them.
workers stuck in the broken state should then recover on the
next checkin with the server. I tested this manually on all the
worker hosts and it...seemed to work, mostly. I'll keep an eye on
things after deploying it.

Signed-off-by: Adam Williamson <awilliam@redhat.com>
2024-10-15 13:13:42 -07:00
Kevin Fenzi
b288e65343 ocp4 sysadmin: update to drop folks not around anymore and add james
james is going to poke around getting ACS working in staging, so add him
here. Drop some folks who are not really around anymore.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2024-10-15 12:27:03 -07:00
Samyak Jain
3f3e05721a Fedora 41 is in final freeze
Signed-off-by: Samyak Jain <samyak.jn11@gmail.com>
2024-10-15 15:13:51 +00:00
Pavel Raiskup
f3cca61957 logdetective: cleanup playbook (lint) 2024-10-15 16:21:08 +02:00
Pavel Raiskup
2ac3166624 logdetective02 is an EC2 host 2024-10-15 16:14:15 +02:00
Pavel Raiskup
a2a79c3dc7 logdetective02: birthday 2024-10-15 13:56:17 +02:00
Pavel Raiskup
362f4b7b63 logdetective02: new box
https://lists.fedoraproject.org/archives/list/infrastructure@lists.fedoraproject.org/thread/4ZZQBIJ5XS7HSP44EXMD4OKGXDUPBV34/
2024-10-15 13:51:33 +02:00
e325a03d40
communishift: onboard communishift-commops-datanom project
Infra #12119

Signed-off-by: David Kirwan <davidkirwanirl@gmail.com>
2024-10-15 12:49:54 +01:00
Kevin Fenzi
495b448e1d serial-console: ttyS0/S1 are not valid on ppc64le
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2024-10-14 13:43:45 -07:00
Kevin Fenzi
c451d542c2 pagure: pagure has 24 cpus right now
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2024-10-14 12:55:45 -07:00
Kevin Fenzi
43fa9928d6 dns: adjust crypto policy to be idempotent
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2024-10-13 10:30:51 -07:00
Kevin Fenzi
a018c15c33 dns: all nameservers are rhel9 now
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2024-10-13 09:44:13 -07:00
Kevin Fenzi
2195560ccb koji_hub: enable trigger_new_repo for sidetags
This will cause new sidetags to do a newrepo on creation instead of
waiting for a request for them. It's not strictly needed, but it allows
older workflows that use wait-repo to continue to work.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2024-10-11 10:35:50 -07:00
Michal Konecny
f842d785d8 Revert "[ipa/server] Add KRA role to replicas as well"
This reverts commit 03f57303e2.
2024-10-11 18:00:55 +02:00
Michal Konecny
03f57303e2 [ipa/server] Add KRA role to replicas as well
This should prevent error during backup:

```
Error: Local roles CA do not match globally used roles CA, KRA. A backup done on this host would not be complete enough to restore a fully functional, identical cluster.
```

Signed-off-by: Michal Konecny <mkonecny@redhat.com>
2024-10-11 16:55:35 +02:00
Michal Konecny
0e12908828 [ipa/server] Improve confirmation message
Signed-off-by: Michal Konecny <mkonecny@redhat.com>
2024-10-11 16:01:05 +02:00
Michal Konecny
207ad8f313 [ipa/server] Make the removing replication agreement real
Signed-off-by: Michal Konecny <mkonecny@redhat.com>
2024-10-11 15:36:01 +02:00
Michal Konecny
89a2b057a9 [ipa/server] Let's check what is being executed first
Signed-off-by: Michal Konecny <mkonecny@redhat.com>
2024-10-11 14:59:54 +02:00
Michal Konecny
10dc944bbf [ipa/server] Retrieve admin ticket before removing agreement
Removing the replication agreement needs admin kerberos ticket. Let's obtain one
before removing the replication agreement.

Signed-off-by: Michal Konecny <mkonecny@redhat.com>
2024-10-11 14:12:20 +02:00
Michal Konecny
141c44fe5b [ipa/server] Remove the replication agreement before installing replica
The replica install will fail otherwise.

Signed-off-by: Michal Konecny <mkonecny@redhat.com>
2024-10-11 13:46:39 +02:00
Michal Konecny
7c296fed36 [ipa/server] Add missing tags and remove debug output
Signed-off-by: Michal Konecny <mkonecny@redhat.com>
2024-10-11 13:05:43 +02:00
Michal Konecny
ad52399ecf [ipa/server] Save the results to other hosts in run
Signed-off-by: Michal Konecny <mkonecny@redhat.com>
2024-10-11 12:56:51 +02:00
Michal Konecny
76c167eba6 [ipa/server] Remove the when condition from pause
It seems that the pause module skips every host if the first one is skipped by
when condition.

Signed-off-by: Michal Konecny <mkonecny@redhat.com>
2024-10-11 12:45:13 +02:00
Michal Konecny
f7a8e2ecb1 [ipa/server] Run the confirmation dialog for every machine
Signed-off-by: Michal Konecny <mkonecny@redhat.com>
2024-10-11 12:23:08 +02:00
Michal Konecny
3425914190 [ipa/server] Save the confirmation for other hosts
Signed-off-by: Michal Konecny <mkonecny@redhat.com>
2024-10-11 11:57:37 +02:00
Kevin Fenzi
30ab628cb6 koji_hub: do not try and remove repos on non default volumes
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2024-10-10 15:59:49 -07:00
Kevin Fenzi
9449e2dc3f koji_hub: do not send buildSRPMFromSCM to createrepo channel
Long ago we sent buildSRPMFromSCM tasks to createrepo channel because we
didn't want s390x (which wasn't in that channel) to do them. However,
with koji 1.35.x these tasks obey the noarch_arches tag value as to
which arch they run on. This means we would need to add s390x and
ppc64le to createrepo for them to always work.

So, instead lets drop this hub policy for buildSRPMFromSCM and then they
will just get default channel and obey noarch_arches as is expected.
If s390x proves too slow at these tasks, we can just remove it from
noarch_arches or come up with another plan.

newRepo distRepo in this policy was pointless, koji automatically does
these tasks with channel=createrepo, so no need to specify it here.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2024-10-10 15:59:49 -07:00
Adam Williamson
aaf3e97fe7 greenwave: gate updates on container build and aarch64 tests
We added tests of container building and a subset of container
and server tests on aarch64 a couple of months back. These have
now been running long enough it should be safe to add them to
the gating config (all pending updates should have had these
tests run against them if appropriate).

Signed-off-by: Adam Williamson <awilliam@redhat.com>
2024-10-10 14:21:05 -07:00
james02135
da83441a7b
Add el9 to PATHS
Signed-off-by: james02135 <james02135@hotmail.com>
2024-10-10 10:58:16 +01:00
Kevin Fenzi
8ff1e6d9f7 koji / production: upgrade config to 1.35
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2024-10-09 15:55:30 -07:00