Commit Graph

3429 Commits

Author SHA1 Message Date
Zuul
bb6a00f116 Merge "Don't use jq in rally containers" 2020-08-12 01:00:43 +00:00
Zuul
385103227b Merge "feat(tls): added mariadb certs to placement and nova-metadata" 2020-08-11 23:44:01 +00:00
Zuul
299c3403af Merge "Add tls support to glance test pod" 2020-08-11 23:44:00 +00:00
Zuul
7eaff57c7c Merge "Make glance nginx.sh POSIX compatible" 2020-08-11 23:43:59 +00:00
Zuul
eb3d5e08f1 Merge "Add missing parameter to tls job" 2020-08-11 23:42:43 +00:00
Andrii Ostapenko
08ea8ec314 feat(tls): added mariadb certs to placement and nova-metadata
Change-Id: I9a26d3db41e745a35209d531ec707734dd33659d
Signed-off-by: Andrii Ostapenko <andrii.ostapenko@att.com>
2020-08-11 15:39:23 -05:00
Zuul
b0de771314 Merge "Remove delete port commands in ovs agent init" 2020-08-11 20:23:31 +00:00
Andrii Ostapenko
2895760204 Don't use jq in rally containers
jq is not a part of xrally-openstack container, so using something worse
for the same instead of producing an extra image.

Change-Id: I0f22488fcb9f0247e6279e6754393f22b2dd0251
Signed-off-by: Andrii Ostapenko <andrii.ostapenko@att.com>
2020-08-11 14:03:22 -05:00
Andrii Ostapenko
f40d07060a Add tls support to glance test pod
Change-Id: I1ca01dd52d78a7eacc348439808bb12a65ce4680
Signed-off-by: Andrii Ostapenko <andrii.ostapenko@att.com>
2020-08-11 16:06:56 +00:00
Zuul
031c54cc04 Merge "Fix Indentation for Apparmor in cinder-volume Cron Job" 2020-08-11 08:52:10 +00:00
rajesh.kudaka
d2deb2b2dc Remove delete port commands in ovs agent init
This commit removes 'del-port' commands in neutron ovs
agent init script. Since, 'add-bond' command allows
modification of the existing options, the commands
being removed are not required. This also allows to
avoid disruptions in ovs caused by deleting ports on
restart.

Change-Id: I7201b87da7b20e1ca8efedf5d86a23123ccfa150
2020-08-11 08:26:44 +00:00
Andrii Ostapenko
0a1fa6c7b0 Make glance nginx.sh POSIX compatible
'function' keyword is a bash extension and not recognizable by sh.

Change-Id: I96205e337a28e12f3e3d06ca99e5f04e0f9a38f4
Signed-off-by: Andrii Ostapenko <andrii.ostapenko@att.com>
2020-08-11 01:30:09 -05:00
Andrii Ostapenko
676c72a52d Add missing parameter to tls job
Change-Id: Iaec6c51c647a9e522346222464ab71ff73fb5083
Signed-off-by: Andrii Ostapenko <andrii.ostapenko@att.com>
2020-08-10 23:04:10 -05:00
diwakar thyagaraj
f0d3ad522b Fix Indentation for Apparmor in cinder-volume Cron Job
Change-Id: Ib0b0cfb46300eeb451b462bc37781e850361d63b
Signed-off-by: diwakar thyagaraj <diwakar.chitoor.thyagaraj@att.com>
2020-08-11 02:16:59 +00:00
Chinasubbareddy Mallavarapu
ab10fde533 [CEPH] update ceph installation script to skip loopback device creation
This is to update installation script to enable option to skip the
loopback device creation as this gives flexibility to use exisitng
block devices for ceph.

Change-Id: I2e05cfa627dad5d32e882af3ba82bcde21e2ad70
2020-08-10 17:20:44 -05:00
Zuul
7d4208a1f3 Merge "fix tempest conf" 2020-08-08 02:24:46 +00:00
Zuul
59d0bfaef1 Merge "remove tempest deprecated config" 2020-08-08 02:24:44 +00:00
Zuul
e52ccb14c5 Merge "Switch from 32GB to 16GB nodes for jobs requiring more ram" 2020-08-08 02:24:43 +00:00
Zuul
ed0a62bfc4 Merge "Adds apparmor profile to Placement pods" 2020-08-07 23:45:14 +00:00
Andrii Ostapenko
d996fde657 Switch from 32GB to 16GB nodes for jobs requiring more ram
Also use osh-infra-gate-runner for tls job instead of non-existent
osh-gate-runner.

Change-Id: I3c1105422307fda5b014fc17bcdfe24999ce97eb
Signed-off-by: Andrii Ostapenko <andrii.ostapenko@att.com>
2020-08-07 18:39:36 -05:00
Hemachandra Reddy
610159a4fd Adds apparmor profile to Placement pods
Change-Id: I075ec8351faa44b3d133b4bc1182213bd6527588
2020-08-07 19:49:10 +00:00
terrysong
8c846a06d5 remove tempest deprecated config
dns_servers in openstack-helm/temepst/values.yaml is deprecated,
this config option is no longer used anywhere,
so it can be removed.

Change-Id: Ic1a83fbc7a25716fd082f4896355ce1014c4134d
2020-08-07 19:31:27 +00:00
Zuul
4f1e1329ad Merge "Do no recreate fernet tokens on setup" 2020-08-07 19:21:17 +00:00
Zuul
8c3988682a Merge "Add Application Armor to cinder-Job" 2020-08-07 16:34:18 +00:00
Zuul
c1365308e6 Merge "Parallelize helm test run for compute-kit" 2020-08-07 14:50:12 +00:00
Zuul
795d8722dd Merge "Parallelize osh-gate-runner for gate jobs" 2020-08-07 05:08:10 +00:00
diwakar thyagaraj
a892707f41 Add Application Armor to cinder-Job
Change-Id: Icab982b9168381a7795719a6348a5d1c85b71453
Signed-off-by: diwakar thyagaraj <diwakar.chitoor.thyagaraj@att.com>
2020-08-06 18:40:52 +00:00
Zuul
b6365afc93 Merge "Add missing security context to Nova pods/containers" 2020-08-06 05:39:50 +00:00
Zuul
a88833d27f Merge "Add missing security context to Keystone pods/containers" 2020-08-06 05:39:49 +00:00
Andrii Ostapenko
f3ed377cbc Parallelize helm test run for compute-kit
Depends-On: https://review.opendev.org/742499
Change-Id: Iebc74280f5fd6302723caa325603645a2f9755dc
Signed-off-by: Andrii Ostapenko <andrii.ostapenko@att.com>
2020-08-06 00:51:29 +00:00
Andrii Ostapenko
fa0b3d3ebe Parallelize osh-gate-runner for gate jobs
Depends-On: https://review.opendev.org/739659
Change-Id: I925773d9e93ec3cc90fbd14cffa7c8d8738ce8d5
Signed-off-by: Andrii Ostapenko <andrii.ostapenko@att.com>
2020-08-06 00:51:23 +00:00
PrateekDodda
27dac1d2c1 Add missing security context to Nova pods/containers
This updates the Nova chart to include the pod
security context on the pod template.

This also adds the container security context to set
readOnlyRootFilesystem flag to true

Change-Id: I10b12db8019beb42005764430711694a61c8d17b
2020-08-05 20:07:15 +00:00
Gupta, Sangeet (sg774j)
2c031b882b feat(tls): added mariadb certs to nova-placement
This patchset add maraibd certs to the nova-placement for it
to connect securley with mariadb.

Change-Id: Icece0c108cb8bacfaae187d183afa56a8cdfc492
2020-08-05 19:18:27 +00:00
PrateekDodda
fc5712909e Add missing security context to Keystone pods/containers
This updates the Keystone chart to include the pod
security context on the pod template.

This also adds the container security context to set
readOnlyRootFilesystem flag to true

Change-Id: I0e00571d4060cca914d1bdb4f36e736fa8501130
2020-08-05 13:37:33 -05:00
Zuul
f1f8261851 Merge "tls(feat): glance tls overrides" 2020-08-05 18:23:58 +00:00
Gupta, Sangeet (sg774j)
93508f6e16 tls(feat): glance tls overrides
Added paramater to pass ca cert to glance store

Change-Id: I410d5a18dc5a30de5b84f8eada4b051b28adae5a
2020-08-05 15:50:33 +00:00
Tin Lam
7956310ead fix(horizon and neutron): adds tls to test pod
This patch set puts in the missing certificates to the test-pod.
It also corrects the path of sriov_agent.ini file

Change-Id: Ice2124f92a36d545726243fff60db25fbb2ea9c0
2020-08-04 20:56:26 +00:00
Zuul
fa91a256e1 Merge "Revert "Remove ctl socket ownership"" 2020-08-03 20:53:39 +00:00
Zuul
0b79db10a9 Merge "fix(tls): mounts missing secret" 2020-08-03 20:37:18 +00:00
Zuul
300bc18949 Merge "Correct limits and os-availability-zone's policy setting" 2020-08-03 20:14:35 +00:00
Tin Lam
945d0828c7 fix(tls): mounts missing secret
This patch set adds the missing secret mount for nova-service-cleaner.

Change-Id: Ide9be4875c22bfd2a65a42ac8c0a6c6682f49f4d
Signed-off-by: Tin Lam <tin@irrational.io>
2020-08-03 16:38:37 +00:00
Gupta, Sangeet (sg774j)
b7667a5507 neutron: pass rps server .ini for enabled plugins
This patch set passes .ini config file to the rpc-server
for the enabled plugins.

Change-Id: I3d84fd67367c68d38541c6f8b5a38ab8a906d454
2020-08-03 15:07:13 +00:00
Kudaka Poorna Rajesh
c3fe19f259 Revert "Remove ctl socket ownership"
OVS_CTL file is required by other parts of the init
script.

This reverts commit a9693843d7.

Change-Id: Ia11dc18e0b13d5fe01918a4c7febb82b19303527
2020-08-03 15:05:38 +00:00
OpenStack Proposal Bot
35f6ea99f1 Imported Translations from Zanata
For more information about this automatic import see:
https://docs.openstack.org/i18n/latest/reviewing-translation-import.html

Change-Id: I70917fa161cbf2fe0734310b69a0336e779c7298
2020-08-03 09:29:25 +00:00
Shuicheng Lin
67eefcf381 Correct limits and os-availability-zone's policy setting
In nova latest code, limits and os-availability-zone have been
updated to could be listed as any user by below patches:
limits: 4d37ffc111ae8bb43bd33fe995bc3686b065131b
os-availability-zone: b8c2de86ed46caf7768027e82519c2418989c36b
And target project id is set to {}. So user cannot be matched as
"owner", and lead to API access failure.
Update policy to be the same as latest nova code to avoid the error.

Change-Id: I3621be0fa42388180a7ac3e4bc7f7683a0c15b68
Signed-off-by: Shuicheng Lin <shuicheng.lin@intel.com>
2020-08-03 13:48:58 +08:00
Zuul
dffc936932 Merge "Update xrally version to 2.0.0" 2020-08-01 22:50:24 +00:00
Gage Hugo
44882d60e2 Update xrally version to 2.0.0
This change updates the xrally image from 1.3.0 to 2.0.0
in order to better match the current versions of openstack
we are running in the gate.

Change-Id: I3f417a20e0f6d34b9e7ed569207a3df90c6ddfd2
2020-07-31 20:00:24 +00:00
Gupta, Sangeet (sg774j)
dd62dacdef feat(tls): add database certificate to cinder-pai
Change-Id: Ifab2eb8c345ce8ea110dbab044a2675f011e1ef3
2020-07-30 22:52:27 +00:00
Zuul
848c443f35 Merge "feat(tls): Add CA cert to glance storage init" 2020-07-30 17:04:03 +00:00
Zuul
6f32a7636f Merge "fix(registry): corrects glance registry ingress" 2020-07-30 15:20:46 +00:00