Note: This bug is displayed in read-only format because the product is no longer active in Red Hat Bugzilla.

Bug 2203785

Summary: Collectd sensubility stops working after overcloud node was rebooted.
Product: Red Hat OpenStack Reporter: Leonid Natapov <lnatapov>
Component: openstack-tripleo-heat-templatesAssignee: Martin Magr <mmagr>
Status: CLOSED ERRATA QA Contact: myadla
Severity: high Docs Contact: mgeary <mgeary>
Priority: high    
Version: 17.1 (Wallaby)CC: jamsmith, jschluet, kgilliga, lmadsen, mariel, mburns, mmagr, mrunge, pgrist, prgutier, rheslop
Target Milestone: z2Keywords: Triaged
Target Release: 17.1   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: openstack-tripleo-heat-templates-14.3.1-17.1.20230630005113.ca47fc0.el9ost Doc Type: Bug Fix
Doc Text:
This update fixes a permission issue that caused collectd sensubility to stop working after you rebooted a baremetal node. + Now collectd sensubility continues working after you reboot a baremetal node.
Story Points: ---
Clone Of:
: 2203787 (view as bug list) Environment:
Last Closed: 2024-01-16 14:32:20 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On:    
Bug Blocks: 2203787    

Description Leonid Natapov 2023-05-15 08:56:03 UTC
Collectd sensubility stops working after overcloud node was rebooted.

It happens because while deploying overcloud we are setting collectd user to be able to run /run/podman and apparently setfacl does not survive reboot.


After rebooting overcloud node I am getting following messages in sensubility log file:

podman machine init` and `podman machine start` to manage a new Linux VM\\n

Error: unable to connect to Podman socket: Get \\\"http://d/v4.4.1/libpod/_ping\\\": dial unix ///run/podman/podman.sock: connect: permission denied\\n\\n\",\"status\":\"1\"}}}"},"startsAt":"2023-05-15T04:01:11Z"}}]
[DEBUG] Sent message ACKed. [id: 136]
[DEBUG] Requesting execution of check. [check: check-container-health]
[DEBUG] Executed check script. [output: Failed to list containers:

Comment 2 Leonid Natapov 2023-05-15 09:00:09 UTC
The work around is after rebooting overcloud node manually run a following command:

sudo podman exec -it collectd setfacl -R -m u:collectd:rwx /run/podman

Comment 6 Matthias Runge 2023-07-18 10:04:34 UTC
This is a high severity/priority issue and it is already modified.
Moving back to z1.

Comment 28 Leonid Natapov 2023-11-29 02:58:24 UTC
Verified 
openstack-tripleo-heat-templates-14.3.1-17.1.20231103010823.el9ost.noarch

Comment 40 errata-xmlrpc 2024-01-16 14:32:20 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory (Red Hat OpenStack Platform 17.1.2 bug fix and enhancement advisory), and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHBA-2024:0209