Bug 1237329 - Overcloud: HA: Pacemaker and ironic fighting for control causing fencing to fail when rebooting/powering off the node.
Summary: Overcloud: HA: Pacemaker and ironic fighting for control causing fencing to f...
Alias: None
Product: Red Hat OpenStack
Classification: Red Hat
Component: rhosp-director
Version: Director
Hardware: Unspecified
OS: Unspecified
Target Milestone: ga
: Director
Assignee: Lucas Alvares Gomes
QA Contact: Leonid Natapov
Depends On:
TreeView+ depends on / blocked
Reported: 2015-06-30 20:05 UTC by Leonid Natapov
Modified: 2015-08-05 13:57 UTC (History)
11 users (show)

Fixed In Version: instack-undercloud-2.1.2-14
Doc Type: Bug Fix
Doc Text:
Pacemaker and ironic fought for control over power management, which caused issues with fencing. This fix sets force_power_state_during_sync=False in /etc/ironic/ironic.conf by default. This stops ironic automatically restoring the power state of the node during its synchronization. Pacemaker can now successfully fence the node.
Clone Of:
Last Closed: 2015-08-05 13:57:56 UTC
Target Upstream Version:

Attachments (Terms of Use)

System ID Priority Status Summary Last Updated
Gerrithub.io 238337 None None None Never
Red Hat Product Errata RHEA-2015:1549 normal SHIPPED_LIVE Red Hat Enterprise Linux OpenStack Platform director Release 2015-08-05 17:49:10 UTC

Description Leonid Natapov 2015-06-30 20:05:40 UTC
Overcloud: HA: Pacemaker and ironic fighting for control causing fencing to fail when using ironic to power off  the node.

pacemaker is trying to turn the node off (or on) using fencing while ironic is trying to return the node to correct state.

We have to  configure Ironic to *not* try to restore the node to a correct power state and let the pacemaker do the job.

Comment 2 Leonid Natapov 2015-07-01 13:20:27 UTC
The work around:
1.on the instack node edit /etc/ironic/ironic.conf file
2.Uncomment force_power_state_during_sync and set it to false.
3.restart openstack-ironic-conductor service.

Comment 3 chris alfonso 2015-07-01 17:23:47 UTC
Lucas, can you make sure you default to having the force_power_state_during_sync to false and make sure there are docs describing how to turn it on if needed?

Comment 4 Lucas Alvares Gomes 2015-07-02 13:01:30 UTC
@Chris, will do!

@Leonid, that's not a workaround, that's the right way to do. Ironic by default will try to make sure that the machines are in sync with the database state. But we made it configurable for this kinda of situations.

Comment 5 Lucas Alvares Gomes 2015-07-02 14:04:48 UTC
Btw, we don't have any fencing agent for Ironic in Peacemaker right?

If Peacemaker used the Ironic interface to power on and off the nodes it's fencing this problem wouldn't happen.

Comment 6 James Slagle 2015-07-02 16:44:15 UTC
Lucas, a question on the gerrithub review about the use of tabs there. If that needs to be fixed, can you update the patch?

once it's in shape, please submit to code.engineering as well.

Comment 8 James Slagle 2015-07-07 11:08:00 UTC
upstream and downstream patches merged

Comment 10 Leonid Natapov 2015-07-20 14:33:55 UTC
ironic.conf includes force_power_state_during_sync=False


Comment 12 errata-xmlrpc 2015-08-05 13:57:56 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.


Note You need to log in before you can comment on or make changes to this bug.