Bug 1222591
| Summary: | SSH access to appliance hosted on RHEV-m 3.4 fails with default root credentials | |||
|---|---|---|---|---|
| Product: | Red Hat CloudForms Management Engine | Reporter: | bmorriso | |
| Component: | Appliance | Assignee: | Nick Carboni <ncarboni> | |
| Status: | CLOSED ERRATA | QA Contact: | Jan Krocil <jkrocil> | |
| Severity: | high | Docs Contact: | ||
| Priority: | high | |||
| Version: | 5.4.0 | CC: | abellott, adahms, akrzos, bmorriso, cpelland, dajohnso, jfrey, jhardy, jvlcek, michal.skrivanek, ncarboni, obarenbo | |
| Target Milestone: | GA | Keywords: | ZStream | |
| Target Release: | 5.5.0 | |||
| Hardware: | Unspecified | |||
| OS: | Unspecified | |||
| Whiteboard: | ||||
| Fixed In Version: | 5.5.0.1 | Doc Type: | Known Issue | |
| Doc Text: |
In Red Hat CloudForms 3.2 (CloudForms Management Engine 5.4) and above, the cloud-init function blocks SSH access for the root user to virtual machines hosted in Red Hat Enterprise Virtualization 3.4 environments. Note that this issue only occurs in Red Hat Enterprise Virtualization 3.4, and that cloud-init functions correctly for Red Hat Enterprise Virtualization 3.3 and Red Hat Enterprise Virtualization 3.5. This issue will be addressed in a future release.
|
Story Points: | --- | |
| Clone Of: | ||||
| : | 1257326 (view as bug list) | Environment: | ||
| Last Closed: | 2015-12-08 13:10:08 UTC | Type: | Bug | |
| Regression: | --- | Mount Type: | --- | |
| Documentation: | --- | CRM: | ||
| Verified Versions: | Category: | --- | ||
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | ||
| Cloudforms Team: | --- | Target Upstream Version: | ||
| Embargoed: | ||||
| Bug Depends On: | ||||
| Bug Blocks: | 1257326 | |||
|
Description
bmorriso
2015-05-18 14:58:24 UTC
I have an idea that might address this. I'm trying it and will post an update here by the end of the day. Upstream has the same bug for botvinnik rc3...https://github.com/ManageIQ/manageiq/issues/2936 There was a fix in 3.4...but no change in 3.5. Can anyone really confirm this is *not* happenning in 3.5? How is this appliance created/initialized? New commit detected on manageiq/master: https://github.com/ManageIQ/manageiq/commit/b3fa93547eacf70255d2d4149fa58de672eb990a commit b3fa93547eacf70255d2d4149fa58de672eb990a Author: Joe VLcek <jvlcek> AuthorDate: Tue May 19 14:27:40 2015 -0400 Commit: Joe VLcek <jvlcek> CommitDate: Tue May 19 14:58:04 2015 -0400 Revert "Enable ssh Password Authentication when using cloud-init" This should fix the problems in: https://github.com/ManageIQ/manageiq/issues/2936 https://bugzilla.redhat.com/show_bug.cgi?id=1222591 This reverts commit 5517dfa6fb1a548c34c12b4b1d5a043e21b9dc51. build/kickstarts/base.ks.erb | 3 --- 1 file changed, 3 deletions(-) New commit detected on manageiq/master: https://github.com/ManageIQ/manageiq/commit/d449ddb58a2b684a494aeac17f5d6cbeb330e63a commit d449ddb58a2b684a494aeac17f5d6cbeb330e63a Author: Joe VLcek <jvlcek> AuthorDate: Tue May 19 14:27:58 2015 -0400 Commit: Joe VLcek <jvlcek> CommitDate: Tue May 19 14:58:53 2015 -0400 Revert "Install cloud-init package on the centos appliance" This should fix the problems in: https://github.com/ManageIQ/manageiq/issues/2936 https://bugzilla.redhat.com/show_bug.cgi?id=1222591 This reverts commit e5cf1565330441000ddec3763f5cd239740f73e2. build/kickstarts/base.ks.erb | 2 -- 1 file changed, 2 deletions(-) New commit detected on cfme_productization/master: https://code.engineering.redhat.com/gerrit/gitweb?p=cfme_productization.git;a=commit;h=0b42d2f5820e33fa99371349e1f5db91d945459e commit 0b42d2f5820e33fa99371349e1f5db91d945459e Author: Joe VLcek <jvlcek> AuthorDate: Tue May 19 16:27:51 2015 -0400 Commit: Joe VLcek <jvlcek> CommitDate: Wed Jun 3 14:05:31 2015 -0400 Remove cloud-init from the images https://bugzilla.redhat.com/show_bug.cgi?id=1222591 manageiq/build/productization/kickstarts/base-rhevm.ks | 4 ---- manageiq/build/productization/kickstarts/base-rhos.ks | 4 ---- manageiq/build/productization/kickstarts/base-vsphere.ks | 4 ---- 3 files changed, 12 deletions(-) New commit detected on cfme_productization/master: https://code.engineering.redhat.com/gerrit/gitweb?p=cfme_productization.git;a=commit;h=4a638f305698c7ee12cc28aa75ba1cc3e85a1f00 commit 4a638f305698c7ee12cc28aa75ba1cc3e85a1f00 Merge: ee82ef4 0b42d2f Author: Joe Rafaniello <jrafanie> AuthorDate: Wed Jun 3 14:15:09 2015 -0400 Commit: Joe Rafaniello <jrafanie> CommitDate: Wed Jun 3 14:15:09 2015 -0400 Merge branch 'revert_cloud_init' into 'master' Remove cloud-init from the images https://bugzilla.redhat.com/show_bug.cgi?id=1222591 I did not use git revert because there were a bunch of commits for this. We tried multiple things. Making this new commit seemed cleaner. See merge request !49 manageiq/build/productization/kickstarts/base-rhevm.ks | 4 ---- manageiq/build/productization/kickstarts/base-rhos.ks | 4 ---- manageiq/build/productization/kickstarts/base-vsphere.ks | 4 ---- 3 files changed, 12 deletions(-) New commit detected on cfme_productization/5.4.z: https://code.engineering.redhat.com/gerrit/gitweb?p=cfme_productization.git;a=commit;h=eac562358fe343d5cae3630065ad4765069dfd34 commit eac562358fe343d5cae3630065ad4765069dfd34 Author: Joe VLcek <jvlcek> AuthorDate: Tue May 19 16:27:51 2015 -0400 Commit: Joe VLcek <jvlcek> CommitDate: Wed Jun 3 14:20:00 2015 -0400 Remove cloud-init from the images https://bugzilla.redhat.com/show_bug.cgi?id=1222591 manageiq/build/productization/kickstarts/base-rhevm.ks | 4 ---- manageiq/build/productization/kickstarts/base-rhos.ks | 4 ---- manageiq/build/productization/kickstarts/base-vsphere.ks | 4 ---- 3 files changed, 12 deletions(-) New commit detected on cfme_productization/5.4.z: https://code.engineering.redhat.com/gerrit/gitweb?p=cfme_productization.git;a=commit;h=c47423c0579217915a8f47ca9aed0371ba74e314 commit c47423c0579217915a8f47ca9aed0371ba74e314 Merge: f09a1a6 eac5623 Author: Joe Rafaniello <jrafanie> AuthorDate: Wed Jun 3 14:24:02 2015 -0400 Commit: Joe Rafaniello <jrafanie> CommitDate: Wed Jun 3 14:24:02 2015 -0400 Merge branch 'revert-cloud-init-5.4.z' into '5.4.z' Remove cloud-init from the images https://bugzilla.redhat.com/show_bug.cgi?id=1222591 From: http://gitlab.cloudforms.lab.eng.rdu2.redhat.com/cloudforms/cfme_productization/merge_requests/49 See merge request !57 manageiq/build/productization/kickstarts/base-rhevm.ks | 4 ---- manageiq/build/productization/kickstarts/base-rhos.ks | 4 ---- manageiq/build/productization/kickstarts/base-vsphere.ks | 4 ---- 3 files changed, 12 deletions(-) While testing this issue I uncovered a possibly more acceptable workaround. While creating the new appliance on RHEV 3.4 the root password can be added with the "Use Cloud-Init/Sysprep" checked in "Initial Run"->"Authentication". After adding the proper default password the system is accessible from both the console and ssh. verified upstream in master.20150917141102_8144675 I was able to SSH into the appliance using default root credentials Right, this is related to a RHEV issue that we are required to use the work around. I'll try to dig up the relevant BZ. It would be nice to see that fixed in a 3.4.z release Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHSA-2015:2551 Clarified versions in doc text. |