Bug 1156342 - memcached port 11211 is not opened by default on controllers in HA environments.
Summary: memcached port 11211 is not opened by default on controllers in HA environments.
Alias: None
Product: Red Hat OpenStack
Classification: Red Hat
Component: openstack-foreman-installer
Version: Foreman (RHEL 6)
Hardware: x86_64
OS: Linux
Target Milestone: z2
: Installer
Assignee: Jason Guiditta
QA Contact: Alexander Chuzhoy
Depends On:
TreeView+ depends on / blocked
Reported: 2014-10-24 09:09 UTC by Lee Yarwood
Modified: 2018-12-09 18:58 UTC (History)
7 users (show)

Fixed In Version: openstack-foreman-installer-2.0.32-1.el6ost
Doc Type: Bug Fix
Doc Text:
With this update, the memcached port (11211) is now open by default on controllers in HA environments. This helps avoid any authentication errors or other similar issues that can severely affect access speed to the dashboard.
Clone Of:
Last Closed: 2014-11-04 17:04:04 UTC
Target Upstream Version:

Attachments (Terms of Use)

System ID Priority Status Summary Last Updated
Red Hat Product Errata RHBA-2014:1800 normal SHIPPED_LIVE Red Hat Enterprise Linux OpenStack Platform Installer Bug Fix Advisory 2014-11-04 22:00:19 UTC

Description Lee Yarwood 2014-10-24 09:09:19 UTC
Description of problem:
memcached port 11211 is not opened by default on controllers in HA environments.

This in turn leads to vnc proxy token authentication errors, slow horizon access times etc.

Version-Release number of selected component (if applicable):
# egrep '(osp-installer|puppet)' installed-rpms
openstack-puppet-modules-2014.1-21.8.el6ost.noarch          Mon Oct 13 16:26:35 2014
puppet-3.6.2-1.1.el6.noarch                                 Mon Oct 13 16:26:42 2014
puppet-server-3.6.2-1.1.el6.noarch                          Mon Oct 13 15:40:08 2014
rhel-osp-installer-0.3.6-1.el6ost.noarch                    Mon Oct 13 16:27:09 2014

How reproducible:

Steps to Reproduce:
1. Deploy multiple HA controllers.

Actual results:
Port 11211 is not opened by default.

Expected results:
Port 11211 is opened by default.

Additional info:

Comment 3 Jason Guiditta 2014-10-27 16:01:16 UTC
firewall rule added, undergoing testing now:


Comment 6 Alexander Chuzhoy 2014-10-28 15:55:59 UTC

On all controllers get the following:
iptables -L -n|grep 11211
ACCEPT     tcp  --              multiport dports 11211 /* 010 memcached incoming */

Comment 8 Mike Burns 2014-10-30 00:26:34 UTC
ack on doc text

Comment 10 errata-xmlrpc 2014-11-04 17:04:04 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.


Note You need to log in before you can comment on or make changes to this bug.