Bugzilla will be upgraded to version 5.0. The upgrade date is tentatively scheduled for 2 December 2018, pending final testing and feedback.
Bug 1240833 - overcloud heat instance_user is set to heat-admin
overcloud heat instance_user is set to heat-admin
Status: CLOSED ERRATA
Product: Red Hat OpenStack
Classification: Red Hat
Component: openstack-puppet-modules (Show other bugs)
7.0 (Kilo)
Unspecified Unspecified
high Severity unspecified
: ga
: 7.0 (Kilo)
Assigned To: Ivan Chavero
Amit Ugol
: Triaged
Depends On:
Blocks: 1240449
  Show dependency treegraph
 
Reported: 2015-07-07 17:22 EDT by Mike Burns
Modified: 2015-08-05 09:29 EDT (History)
12 users (show)

See Also:
Fixed In Version: openstack-puppet-modules-2015.1.8-5.el7ost
Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: 1240449
Environment:
Last Closed: 2015-08-05 09:29:06 EDT
Type: Bug
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---


Attachments (Terms of Use)


External Trackers
Tracker ID Priority Status Summary Last Updated
OpenStack gerrit 197147 None None None Never
Red Hat Product Errata RHEA-2015:1548 normal SHIPPED_LIVE Red Hat Enterprise Linux OpenStack Platform Enhancement Advisory 2015-08-05 13:07:06 EDT

  None (edit)
Description Mike Burns 2015-07-07 17:22:48 EDT
+++ This bug was initially created as a clone of Bug #1240449 +++

In the overcloud heat, heat.conf instance_user is set to heat-admin.

The consequence of this is that SSHing into heat created guest VMs will require the user 'heat-admin'. I predict that this will result in user confusion as to how to SSH into their VMs since they will be attempting default usernames (centos, cloud-user etc) or the documented heat default user (ec2-user)

Upstream, instance_user is deprecated and will be removed in Liberty, meaning image default usernames would be used to SSH into VMs (centos, cloud-user etc).

Overcloud heat should have instance_user set to <empty> now so that default usernames are used. Since heat-admin will cause user confusion, and upstream behaviour will change, I'd like this to be considered a blocker for GA.

Having instance_user set to heat-admin on the undercloud heat *is* appropriate, since we document how operators should ssh into their overcloud nodes.


--- Additional comment from Steve Baker on 2015-07-06 23:29:24 EDT ---

Upstream puppet-heat patch: https://review.openstack.org/#/c/197147
Upstream tripleo-heat-templates patch: https://review.openstack.org/#/c/198947/
Comment 2 Ivan Chavero 2015-07-07 20:16:08 EDT
Upstream patch looks good
Comment 3 Ivan Chavero 2015-07-09 04:16:31 EDT
can i have pm_ack please
Comment 8 Amit Ugol 2015-07-21 11:11:25 EDT
Value is empty now.
Comment 10 errata-xmlrpc 2015-08-05 09:29:06 EDT
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHEA-2015:1548

Note You need to log in before you can comment on or make changes to this bug.