Commit graph

32863 commits

Author SHA1 Message Date
Rick Elrod
7636206d12 nagios: nuke bastion02.iad2 from here for now
Signed-off-by: Rick Elrod <relrod@redhat.com>
2020-06-20 18:25:59 -05:00
Stephen Smoogen
c1cbba10e3 add another emag to the fire 2020-06-20 19:25:53 -04:00
Kevin Fenzi
73f8fe76ad proxies: drop vpn workaround for registries
The iad2 registries should be reachable now via the normal path, so we
can drop this workaround. Should make things faster too.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-06-20 13:16:09 -07:00
Kevin Fenzi
a92253601d openqa: drop openvpn role
In phx2 we used a vpn to openqa01 and all the proxies reached it on
that. In IAD2 that network is more isolated and cannot connect to the
vpn, so we just access it from the IAD2 proxies. If this turns out to be
a problem later we can adjust the RHIT firewall, re-enable vpn and
re-add it to all the proxies.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-06-20 12:25:30 -07:00
Kevin Fenzi
78154503fe datagrepper: try adding some more threads here to make datagrepper more responsive
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-06-20 12:24:22 -07:00
Kevin Fenzi
911e34e523 README.md: some whitespace change
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-06-20 12:01:48 -07:00
Kevin Fenzi
ded69ad757 releng: create pungi user in rabbitmq
also, clean up toml file some for things we don't need.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-06-20 11:56:28 -07:00
Kevin Fenzi
f8043f6c5a pagure01: For some reason workers started looking for db-pagure
I have no idea why they are, perhaps this is an upstream default?

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-06-20 11:56:28 -07:00
Stephen Smoogen
c374cbe2ef fix up more ips for dhcpd 2020-06-20 14:02:07 -04:00
Stephen Smoogen
952aef9959 put in dhcpd for cavium mgmt ports 2020-06-20 13:45:53 -04:00
Nils Philippsen
e0f1c7c024 Pagure: hotfix missing JS library
Related to:
- https://pagure.io/pagure/issue/4891
- https://pagure.io/pagure/pull-request/4892

Signed-off-by: Nils Philippsen <nils@redhat.com>
2020-06-20 16:43:44 +00:00
Stephen Smoogen
9767a916f7 DHCP rework Take mgmt interfaces from PHX2 and put them in IAD2. This
will allow systems to get their proper ips without crowding out the dhcp range.
2020-06-20 10:53:41 -04:00
Stephen Smoogen
d740976883 the platform option causes problems for EL6 and EL7 2020-06-20 08:36:10 -04:00
Kevin Fenzi
8a6a5840c7 bkernel01: also define dns so clevis works
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-06-19 15:26:14 -07:00
Kevin Fenzi
1ed99b4e05 bkernel01: set netmask so clevis role is happy
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-06-19 15:05:08 -07:00
Kevin Fenzi
c502144e62 clevis: adjust tasks to only run on the interface that exists
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-06-19 14:55:10 -07:00
Kevin Fenzi
157be3d342 clevis: fix template to handle eth0/eno1 cases
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-06-19 14:41:50 -07:00
Dusty Mabe
8a3e99aeff
robosignatory: coreos: only set key in config for staging
Upstream robosignatory was changed to auto-detect the key to use
for signing for Fedora CoreOS builds in the following PR:
https://pagure.io/robosignatory/pull-request/46#

Let's switch to only setting the key in the config for the staging
environment so that we can start using the auto-detection.

Signed-off-by: Dusty Mabe <dusty@dustymabe.com>
2020-06-19 17:01:04 -04:00
Stephen Smoogen
152b415410 allow proxy32 to get to infrastructure 2020-06-19 15:21:51 -04:00
Nick Bebout
849bcf0514 Create /srv/web 2020-06-19 12:42:56 -05:00
Nick Bebout
ceb7bf9f86 Merge branch 'master' of ssh://pagure.io/fedora-infra/ansible 2020-06-19 11:50:44 -05:00
Nick Bebout
44cedc6405 This should be iad2 not {{ datacenter }} 2020-06-19 11:50:27 -05:00
Stephen Smoogen
c08d6270c4 remove packages not needed for data-analysis on log01 2020-06-19 12:50:19 -04:00
Stephen Smoogen
9fbc9408a4 add sysadmin-analysis to log01 2020-06-19 12:44:37 -04:00
Nick Bebout
a8c00d2653 Remove special settings for proxy32 in inventory 2020-06-19 11:10:29 -05:00
Mark O'Brien
b48e4b0001 Merge branch 'master' of ssh://pagure.io/fedora-infra/ansible 2020-06-19 16:46:41 +01:00
Nick Bebout
cabb234b5d Revert "Try setting become and remote_user: fedora"
This reverts commit 636431bea0.
2020-06-19 10:46:10 -05:00
Nick Bebout
2f24cc8470 become->ansible_become 2020-06-19 10:44:55 -05:00
Mark O'Brien
7bca5ee31c [proxies] proxy32 run as fedora user 2020-06-19 16:44:16 +01:00
Nick Bebout
cdcc52f734 Try putting in inventory 2020-06-19 10:43:28 -05:00
Nick Bebout
636431bea0 Try setting become and remote_user: fedora 2020-06-19 10:40:20 -05:00
Mark O'Brien
93f07a0e0b [proxies] add proxy32 to cloud inventory as it is an aws host 2020-06-19 16:23:20 +01:00
Mark O'Brien
1fe3b5d37b [proxies] add proxy32 in frankfurt 2020-06-19 10:35:39 +01:00
Pavel Raiskup
6fbeb77fed copr-be: complement daae61472c 2020-06-19 10:01:03 +02:00
Pavel Raiskup
daae61472c copr-be: don't attempt to install mock from koji
We don't need it ATM, and currently it often fails for some reason
(perhaps related to Fedora outages):

TASK [install the latest mock and mock-core-configs from updates-testing] ******
Friday 19 June 2020  05:54:19 +0000 (0:01:07.155)       0:07:47.913 ***********
fatal: [52.90.206.190]: FAILED! => {"changed": false, "msg": "Failure
downloading
https://kojipkgs.fedoraproject.org/packages/mock/2.2/1.fc31/noarch/mock-2.2-1.fc31.noarch.rpm,
Connection failure: The read operation timed out", "results": []}
2020-06-19 08:44:43 +02:00
Pavel Raiskup
5ff7d1ef1c copr-be: more verbose vm-aws-new output
And ignore failures in signal handler.
2020-06-19 08:44:25 +02:00
Kevin Fenzi
f2a1a3f203 postgresql_server: make sure db-koji01 gets the right backup script.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-06-18 18:54:12 -07:00
Kevin Fenzi
384393c83d db-koji01: define dbs to backup
We want backups, enable them here.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-06-18 18:51:31 -07:00
Kevin Fenzi
5870df1ea8 koji_hub: switch mpm to one that works with h2.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-06-18 18:43:47 -07:00
Pierre-Yves Chibon
cb8e21127b bodhi/backend: port the new-updates-sync script to fedora-messaging
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2020-06-18 21:28:21 +00:00
Mohan Boddu
2ca39a0a3c Use eln* tags instead of eln or eln-rebuild
Signed-off-by: Mohan Boddu <mboddu@bhujji.com>
2020-06-18 17:01:44 -04:00
Kevin Fenzi
d4a6722e03 releng: fix key
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-06-18 13:39:25 -07:00
Mohan Boddu
3616bbe357 releng role: fix location of the cert files for fedora-messaging
Signed-off-by: Mohan Boddu <mboddu@bhujji.com>
2020-06-18 16:15:54 -04:00
Kevin Fenzi
620c19c3a0 releng: install fedora-messaging pki directory
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-06-18 12:49:51 -07:00
Kevin Fenzi
625c6636ac releng: install fedora-messaging also
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-06-18 12:37:20 -07:00
Kevin Fenzi
6409778e12 releng: fix tags
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-06-18 12:27:16 -07:00
Kevin Fenzi
c8286928f7 releng: add config.toml and certs for pungi fedora-messaging
This is needed on compose-rawhide01 at least to have pungi emit
fedora-messages about it's compose progress.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2020-06-18 12:22:32 -07:00
Mohan Boddu
ddc6fb16d6 Adding perms to tag secure-boot packages to eln tags
Signed-off-by: Mohan Boddu <mboddu@bhujji.com>
2020-06-18 18:00:19 +00:00
Stephen Smoogen
d058b29071 remove duplicate declarations of 10.6.0 zone.. just becuase you had 0 before does not mean you should have 2 afterwords 2020-06-18 13:58:55 -04:00
Stephen Smoogen
f2132cc28b update DNS to remove zones no longer in existance to RDU view and to add in 10.16.0 to IAD2 where it should have been in the first place. This should fix the unused DNS 2020-06-18 13:32:07 -04:00