Commit graph

38055 commits

Author SHA1 Message Date
Kevin Fenzi
803ebd406a proxy13: search vpn then fedoraproject like all the other proxies
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-20 15:08:46 -07:00
Kevin Fenzi
57250588d3 proxies: disable systemd-oomd
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-20 12:29:27 -07:00
Kevin Fenzi
e63e667a33 Revert "koji / staging / sync: try and adjust to newer db schema"
This reverts commit 4d9a1b07d6.

The problem was a incomplete db dump, so we likely don't need this
change. It should work with a more complete db dump.
2022-09-20 11:36:22 -07:00
Pavel Raiskup
d9fd96d672 copr-be: don't run vm-delete with 'set -x'
Some sensitive env vars could be dumped to logs.
2022-09-20 19:33:07 +02:00
Kevin Fenzi
4d9a1b07d6 koji / staging / sync: try and adjust to newer db schema
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-20 10:09:23 -07:00
Pavel Raiskup
d923eb6877 copr-be: don't require additional helpers.py edits 2022-09-20 16:41:50 +02:00
Pavel Raiskup
99e373a3ea backend: libvirt-delete: allow searching volumes in other pools 2022-09-20 16:29:05 +02:00
Pavel Raiskup
f54c597aa7 backend: auto detect libvirt instances from other pools 2022-09-20 16:14:43 +02:00
Pavel Raiskup
8c3cd1895e Push to batcave to sync ansible.git 2022-09-20 15:04:17 +02:00
Pavel Raiskup
81e2c81b05 copr-be: provide OSUOSL credentials for the resalloc-openstack-list script 2022-09-20 14:59:44 +02:00
Pavel Raiskup
58b6f0c873 copr-be: automatically remove OSUOSL VMs
There's a new script in resalloc-openstack.rpm which is able to list the
existing set of VMs so we can easily remove them.
2022-09-20 14:40:16 +02:00
Kevin Fenzi
c4d83ca39e proxy01/10: increase disk to 100G
proxy01/10 get all the iad2 only traffic from the outside world,
including things like kojipkgs, oci-registry and the like. They need
larger space to keep all the logs from those.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-19 18:15:12 -07:00
Adam Williamson
9a92362fd4 Move openqa-x86-worker05 back to being a regular lab worker
We don't need it for diagnosing a kernel bug any more, so take it
out of the special 'onebox' setup.

Signed-off-by: Adam Williamson <awilliam@redhat.com>
2022-09-19 16:44:48 -07:00
Pedro Moura
aa41c68b7c added pam to multilib_whitelist - releng #11037
Signed-off-by: Pedro Moura <pmoura@redhat.com>
2022-09-19 23:30:53 +00:00
Kevin Fenzi
cf18a198f5 koschei: split stg and prod credentials
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-19 15:12:10 -07:00
Kevin Fenzi
dda41ab764 github2fedmsg: split out staging from prod credentials
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-19 15:04:17 -07:00
Kevin Fenzi
c207175516 mirrormanager: drop s3-mirror role
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-19 14:54:12 -07:00
Kevin Fenzi
bd4ab085bd koji / mirrormanager: split staging and prod db config
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-19 14:53:04 -07:00
Kevin Fenzi
1c1780c931 pagure / staging: set correct env
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-19 14:28:17 -07:00
Kevin Fenzi
bfaf5a59bf elections: seperate prod and stg passwords
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-19 14:11:50 -07:00
Kevin Fenzi
db3bec9cb4 fedocal: split out prod and stg db passwords
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-19 13:56:07 -07:00
Kevin Fenzi
f183f5262b pagure-stg01 / ipsilon*.stg: split db passwords from stg and prod
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-19 13:53:15 -07:00
Kevin Fenzi
f46a6c8f2a nuancier: split out prod and stg access/passwords.
Currently both prod and stg were using the same credentials. Move to
using different for each.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-19 13:06:26 -07:00
Kevin Fenzi
946e51e41c virthost: install collectd on all virthosts
This conditional was intended to not try and install this on rhel9, but
collectd is now available on rhel9. In addition it accidentially didn't
install it on all fedora virthosts. :(

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-19 12:53:35 -07:00
Jiri Kyjovsky
5c1422a811 copr: add nikromen 2022-09-19 14:07:40 +02:00
Jiri Kyjovsky
f41baf6f21 copr: configure list of root users just on one place 2022-09-19 14:07:37 +02:00
Kevin Fenzi
22fbdca02e Revert "Extend inactivity time to 600s"
This reverts commit c04e153372.
2022-09-16 10:17:35 -07:00
Kevin Fenzi
1503d6669d notifs-backend: try removing the template number here.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-16 09:05:05 -07:00
Kevin Fenzi
db66979838 notifs-backend: re-enable keytab
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-16 09:00:21 -07:00
Kevin Fenzi
34ae10d5fc nfs_servers: fix group name. It's sysadmin-noc not sysadmin_noc
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-15 14:20:40 -07:00
Kevin Fenzi
8a3fd5b2df storinator01: try adding it into a host group
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-15 13:24:28 -07:00
Kevin Fenzi
6eb7703fa6 nfs_servers: add some ipa groups to storinator01
We are adding copr folks here so they can benchmark things and see if
the storinator will help them for their storage needs.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-15 10:29:39 -07:00
Kevin Fenzi
6619741cdd buildvm-ppc64le-11: move back to p09-04
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-15 10:28:51 -07:00
Michal Konečný
3abf0d2526 [release-monitoring] Add configurable mapping links to config
Anitya is now supporting configurable links for distribution. Let's add those we
already know.

Signed-off-by: Michal Konečný <mkonecny@redhat.com>
2022-09-15 15:51:26 +02:00
Kevin Fenzi
6ce19b66af osbuildapi-update: only send errors once a day
Right now if a host errors out it can send a vast pile of these.
So, lets use nag-once to avoid floods.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-14 18:32:50 -07:00
Kevin Fenzi
c2cab48398 All php vars need to end with a ;
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-14 14:26:16 -07:00
Stephen Gallagher
c04e153372 Extend inactivity time to 600s
It seems that ppc64le and aarch64 are both quite slow during the
ELN Image install. The aarch64 is now finishing most of the time,
but the ppc64le build still times out.

Signed-off-by: Stephen Gallagher <sgallagh@redhat.com>
2022-09-14 20:56:46 +00:00
Kevin Fenzi
801bdf4450 wiki: up cookie lifetime to 10hours
Right now by default users are logged out after 1 hour of inactivity on
the wiki. This is anoying for people who do a number of edits during the
day. So, lets increase this timeout to 10 hours.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-14 13:54:43 -07:00
Kevin Fenzi
bd7e118855 mediawiki: try disabling loginattemptthrottle entirely
Sometimes folks are unable to login to the wiki because there have been
too many login attempts from the proxy they happen to be hitting the
wiki from. Lets just disable this throttle entirely, as brute force
won't work ever anyhow.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-14 12:50:13 -07:00
Kevin Fenzi
7763c3c6c3 koji_builder / runroot: set nspawn args on runroot builders to get ostree_installer working
The ostree_installer job needs additional capabilities over the normal
mock systemd-spawn ones. So, add that here and since the
ostree_installer jobs are all runroot jobs we can isolate it to just the
runroot builders.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-14 11:27:42 -07:00
Pavel Raiskup
896e8fd296 bkernel: mock+nspawn pesign config cleanup
It is better to keep the Mock's default for `nspawn_args`, and just
append to them (mock can change that configuration option dynamically).

Complements: b6669bc5f6
2022-09-14 18:20:33 +00:00
Frank Ch. Eigler
62fc6023fe ansible-playbook-check-diff.cron: impose a 24hour timeout on check-diff jobs 2022-09-14 18:18:40 +00:00
Frank Ch. Eigler
1225279614 ansible-playbook-check-diff: rewrite as find|xargs one-liner
Taking advantage of xargs's -P option to limit concurrency
while executing all the ansible-playbook --check jobs ensures
that batcave01 is not overstressed during these checks.
2022-09-14 18:18:40 +00:00
Michal Konečný
717feea0d3 Fix yaml linting errors
Signed-off-by: Michal Konečný <mkonecny@redhat.com>
2022-09-14 09:00:57 +00:00
Michal Konečný
6f49dc8c85 [pagure] Don't use conflicting topic permissions
The pagure.{{ env_suffix }} user is currently used for both pagure and dist-git,
which makes io.pagure.* and org.fedoraproject.* topics to conflict with each
other.

This will set the permissions for both in one place.

Signed-off-by: Michal Konečný <mkonecny@redhat.com>
2022-09-14 09:00:57 +00:00
1e5d0a07f4 Remove armhfp from modular variants
Signed-off-by: Tomas Hrcka <thrcka@redhat.com>
2022-09-13 10:42:44 +02:00
26371877bb Remove armhfp from modular updates
Signed-off-by: Tomas Hrcka <thrcka@redhat.com>
2022-09-13 09:58:50 +02:00
Kevin Fenzi
953dd93232 F37 beta: releng freeze is over
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-09-12 15:04:13 -07:00
306aff6f4f F37 beta
Signed-off-by: Tomas Hrcka <thrcka@redhat.com>
2022-09-12 17:21:54 +00:00
David Kirwan
0892ba8a48 communishift: fix filesystem permissions on efs storage mount
Signed-off-by: David Kirwan <dkirwan@redhat.com>
Signed-off-by: Lenka Segura <lsegura@redhat.com>
Signed-off-by: Patrik Polakovic <ppolakov@redhat.com>
2022-09-12 13:48:10 +01:00