Bug 1632745
| Summary: | OVN metadata agent fails when using TLS Everywhere | |||
|---|---|---|---|---|
| Product: | Red Hat OpenStack | Reporter: | Gregory Charot <gcharot> | |
| Component: | openstack-tripleo-heat-templates | Assignee: | Daniel Alvarez Sanchez <dalvarez> | |
| Status: | CLOSED ERRATA | QA Contact: | Roman Safronov <rsafrono> | |
| Severity: | medium | Docs Contact: | ||
| Priority: | medium | |||
| Version: | 13.0 (Queens) | CC: | dalvarez, ekuris, mburns, mschuppe, nchandek, rmeillon, tfreger | |
| Target Milestone: | zstream | Keywords: | Triaged, ZStream | |
| Target Release: | 13.0 (Queens) | |||
| Hardware: | Unspecified | |||
| OS: | Unspecified | |||
| Whiteboard: | ||||
| Fixed In Version: | openstack-tripleo-heat-templates-8.0.7-29.el7ost | Doc Type: | If docs needed, set a value | |
| Doc Text: | Story Points: | --- | ||
| Clone Of: | ||||
| : | 1666617 (view as bug list) | Environment: | ||
| Last Closed: | 2019-03-14 13:54:51 UTC | Type: | Bug | |
| Regression: | --- | Mount Type: | --- | |
| Documentation: | --- | CRM: | ||
| Verified Versions: | Category: | --- | ||
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | ||
| Cloudforms Team: | --- | Target Upstream Version: | ||
| Embargoed: | ||||
| Bug Depends On: | ||||
| Bug Blocks: | 1666617 | |||
|
Description
Gregory Charot
2018-09-25 12:28:56 UTC
Patch sent to THT master. Once merged, I'll backport it to stable/queens and handle it D/S. Patches posted d/s, awaiting reviews for both 14 and 13. Once merged I'll build the packages Verified on 2019-02-25.2/RH7-RHOS-13.0/ with TLS Everywhere enabled. Link to the verified build: https://rhos-qe-jenkins.rhev-ci-vms.eng.rdu2.redhat.com/view/DFG/view/network/view/networking-ovn/job/DFG-network-networking-ovn-13_director-rhel-virthost-3cont_2comp_1ipa-ipv4-geneve-tls/14/ Verified that instances are able to retrieve data from metadata service. Verified also after moving nova_metadata_ip to another controller host. Verified also after shutting down and restarting instances and creating new instances after moving the ip. Verified with cirros and rhel images. Verified that traffic between metadata agent and nova uses TLS. Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2019:0448 |