Bug 1456406 - credential validation request performed by default zone rather than selected zone.
Summary: credential validation request performed by default zone rather than selected ...
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Red Hat CloudForms Management Engine
Classification: Red Hat
Component: Appliance
Version: 5.7.0
Hardware: Unspecified
OS: Unspecified
high
medium
Target Milestone: GA
: 5.9.0
Assignee: Jillian Tullo
QA Contact: Alex Newman
URL:
Whiteboard: distributed:zone
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2017-05-29 10:40 UTC by Neha Chugh
Modified: 2021-06-10 20:42 UTC (History)
11 users (show)

Fixed In Version: 5.9.0.1
Doc Type: If docs needed, set a value
Doc Text:
Clone Of:
Environment:
Last Closed: 2018-03-01 13:12:59 UTC
Category: ---
Cloudforms Team: ---
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Bugzilla 1455955 0 high CLOSED web service and UI worker enabled, connection made to RHV-M API 2021-06-10 12:22:24 UTC
Red Hat Product Errata RHSA-2018:0380 0 normal SHIPPED_LIVE Moderate: Red Hat CloudForms security, bug fix, and enhancement update 2018-03-01 18:37:12 UTC

Internal Links: 1455955

Description Neha Chugh 2017-05-29 10:40:51 UTC
Description of problem:
credential validation request performed by default zone rather than selected zone.

Version-Release number of selected component (if applicable):
5.7.1

How reproducible:
Always

Steps to Reproduce:
1. deploy openstack
2. deploy cloudforms (several appliances)
3. put openstack in one cloudforms zone
4. Try to add provider with openstack zone, the credential validation request performed by default UI zone rather than the Openstack zone.

Actual results:

It throws connection refused exception as the request performed by UI zone which doesnot have network connectivity to provider.

Expected results:
Credential validation should be performed by the selected provider zone.

Additional info:

As a workaround, when UI role is enabled for provider zone, it is able to perform the validation request from selected zone.

Architecture:

default zone : 2 appliances

roles enabled: utomate,database_operations,ems_metrics_coordinator,ems_metrics_processor,git_owner,reporting,scheduler,user_interface,web_services,websocket

provider zone: 2 appliances

roles enabled : provider operation & management roles. UI disabled due to security requirements.

standalone CFME database appliances cluster configured in HA

Comment 3 Jillian Tullo 2017-07-05 17:08:16 UTC
PR (which also links to the several other PRs to resolve this): https://github.com/ManageIQ/manageiq-ui-classic/pull/1580

Comment 5 Jillian Tullo 2017-08-03 18:11:55 UTC
Hey Marianne. No they have not been - it's still being worked on.

Comment 11 errata-xmlrpc 2018-03-01 13:12:59 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHSA-2018:0380


Note You need to log in before you can comment on or make changes to this bug.