Commit graph

576 commits

Author SHA1 Message Date
Adrian Reber
aab02f904b Revert "Original mm2_crawler which needs to be hotfixed"
This reverts commit 3bc0652081.
2015-06-08 08:44:36 +00:00
Adrian Reber
7cfe45d7d8 Revert "Added hotfix to not disable always up2date categories."
This reverts commit 4fd68994e1.
2015-06-08 08:43:48 +00:00
Till Maas
2b17c84397 sigul bridge: Do not ask for NSS password
Setting the empty NSS password makes the bridge not ask for a password
on startup.
2015-06-05 10:07:22 +02:00
Kevin Fenzi
19e340961f Exclude 22_Alpha and 22_Beta from download-ib02. It's full. 2015-05-16 02:09:31 +00:00
Pierre-Yves Chibon
dd72721bc7 Rename the EL7-beta builder on jenkins to EL7 2015-05-11 09:12:59 +02:00
Adrian Reber
4fd68994e1 Added hotfix to not disable always up2date categories. 2015-05-08 20:14:00 +00:00
Adrian Reber
3bc0652081 Original mm2_crawler which needs to be hotfixed 2015-05-08 20:04:52 +00:00
Aurélien Bompard
18bccd797f Update the mailman role for Mailman 3 2015-04-29 16:10:26 +00:00
Kevin Fenzi
a2d555b068 Add secondary koji configs for secondary sigul bridge. 2015-04-28 16:20:37 +00:00
Miroslav Suchý
35ab9867e2 this seems to work 2015-04-27 22:21:06 +00:00
Miroslav Suchý
e751dd0ebe install firewall and metering agent 2015-04-27 21:46:29 +00:00
Kevin Fenzi
7157da1221 More sigul adjustments for secondary 2015-04-27 19:50:21 +00:00
Miroslav Suchý
36befd56a7 load correct ssh key 2015-04-27 13:31:43 +00:00
Miroslav Suchý
61c4e314f0 Revert "allow fed-cloud09 to log to itself"
This reverts commit 653353ea4b.
2015-04-27 09:56:59 +00:00
Miroslav Suchý
653353ea4b allow fed-cloud09 to log to itself
so packstack can configure swift. And unify the ssh key deployment
2015-04-27 09:50:45 +00:00
Mikolaj Izdebski
a974762d13 Add Koschei stg/prod hosts
- koschei-specific setup tasks are moved to a new koschei role
- cloud dev instance is made to use koschei role
- stg and prod instances are added to inventory
- koschei host group is introduced
2015-04-24 16:35:48 +00:00
Pierre-Yves Chibon
1285e4eccd Fix the IP of the EL7 builder 2015-04-23 17:07:02 +02:00
Miroslav Suchý
35b2a9f5f0 obey the ssl recomendations
from https://mozilla.github.io/server-side-tls/ssl-config-generator/
This will requires:
Oldest compatible clients : Firefox 27, Chrome 22, IE 11, Opera 14, Safari 7, Android 4.4, Java 8
2015-04-22 12:35:38 +00:00
Miroslav Suchý
88050c8e83 let packastack install swift only on fed-clou09
we will install it on compute nodes manually
2015-04-20 09:46:51 +00:00
Miroslav Suchý
5707d8b1f2 configure swift on all nodes 2015-04-15 14:17:52 +00:00
Miroslav Suchý
5b85fa8158 set StrictHostKeyChecking to no, because nova login non-interactively 2015-04-14 17:37:16 +00:00
Miroslav Suchý
e11c176ce7 deploy ssh keys of nova user - take 2 2015-04-14 17:05:32 +00:00
Miroslav Suchý
49d8c3d27e create 100GB swift storage in vg_server 2015-04-14 09:37:28 +00:00
Miroslav Suchý
0ac74dd66b put fed-cloud09.pem to public git, just key is secret 2015-03-31 09:33:01 +00:00
Peter Robinson
a7f7d1bf8e yumrepos: make the aarch64 yum repos support generic for all secondary architectures 2015-03-24 23:00:54 +00:00
4f88b28df2 yumrepos: bring over arm03 exclusion to primary 2015-03-24 23:00:03 +00:00
b43a3f8a49 yumrepos: ARMv7 is identical to x86 now it's primary so there's no reason to treat it differently 2015-03-24 22:45:44 +00:00
Peter Robinson
b6ddb9feb3 yumrepos: add support for aarch64 repos 2015-03-24 22:12:02 +00:00
Mikolaj Izdebski
d8176192b4 Update Koschei playbook
See https://fedorahosted.org/fedora-infrastructure/ticket/4690

This commit introduces the followith enhancements:
- add koschei tag
- yum-install koschei package
- add extra fedorapeople repo
- enable and start Koschei services
- install Koschei config file
- restart services on config update
- install Koji certificates
- avoid explicitly cleaning yum metadata
- add alembic DB migration
2015-03-19 13:55:06 +00:00
Kevin Fenzi
c54f4a0151 Add fedora-admin pub key 2015-03-17 15:27:11 +00:00
Aurélien Bompard
9594724b74 Allow sudo commands to postgres to run without a tty 2015-03-13 15:03:06 +00:00
Kevin Fenzi
a424b52e2e Fix vnc on new cloud 2015-03-07 17:30:13 +00:00
Miroslav Suchý
348f2b070e move non-ssl swift to 7080
so it does not confilect with novncproxy
2015-03-06 12:57:43 +00:00
Miroslav Suchý
dc156003af move all openstack services to SSL 2015-03-05 14:24:08 +00:00
Miroslav Suchý
35ee8445ec move cinder to ssl 2015-03-05 11:24:58 +00:00
Miroslav Suchý
1552cde456 add haproxy.conf which I missed in 8af53bd 2015-03-04 15:42:19 +00:00
Kevin Fenzi
d934cf11ef Fold in new private cloud work from today. Gets things pretty working. 2015-02-28 03:15:15 +00:00
Kevin Fenzi
b71337cc71 Just fold this into template so it doesn't change every run 2015-02-23 16:05:07 +00:00
Miroslav Suchý
65d9be09f2 resolve fed-cloudXX to internal IP
because external IP is not routable
2015-02-19 13:40:13 +00:00
Miroslav Suchý
9da061b5a5 add private ip of compute nodes to controller hosts file 2015-02-19 10:30:00 +00:00
Miroslav Suchý
6f4fdddc23 this should not be needed
because I already specified CONFIG_NEUTRON_OVS_TUNNEL_IF
2015-02-18 14:30:40 +00:00
Miroslav Suchý
8a65d46b7d fix doc url 2015-02-17 15:09:11 +00:00
Miroslav Suchý
323c6401ab update fed09-ssh-key.pub 2015-02-17 12:13:53 +00:00
87ac99bb7a GNOME Backups: bugzilla-web has been decommissioned, remove it from daily backups rotation 2015-02-09 16:21:19 +00:00
Kevin Fenzi
23a095336e Add hosts entry for cloud to get 2fa working hopefully. 2015-02-02 15:21:29 +00:00
Miroslav Suchý
109441bdcf update ssh pub key 2015-02-02 13:38:13 +00:00
Miroslav Suchý
c1d43488f8 give up with rabbitmq ans ssl
when I configured both server and OS for ssl, I get:
2015-02-02 12:32:26.475 15074 ERROR neutron.openstack.common.rpc.common [-] AMQP server on 209.132.184.9:5671 is unreachable: [Errno 1] _ssl.c:504: error:1409442E:SSL routines:SSL3_READ_BYTES:tlsv1 alert protocol version. Trying again in 19 seconds
I simply give up
2015-02-02 12:54:15 +00:00
Kevin Fenzi
a5d5bfff7f Try and make proxies not replace files twice and also fix el7 python hash hotfix. 2015-02-02 00:39:49 +00:00
Kevin Fenzi
c5bc520135 Move this file to the right place 2015-01-31 00:23:41 +00:00
Miroslav Suchý
c12de0e17f use httpd ssl certs for AMWP too 2015-01-30 10:47:24 +00:00