Note: This bug is displayed in read-only format because the product is no longer active in Red Hat Bugzilla.

Bug 2234485

Summary: [hackfest] The ssh-key-rotation ansible script broke connectivity to the controller and compute nodes
Product: Red Hat OpenStack Reporter: camorris@redhat.co <camorris>
Component: tripleo-ansibleAssignee: Andre <afariasa>
Status: CLOSED DUPLICATE QA Contact: Joe H. Rahme <jhakimra>
Severity: high Docs Contact:
Priority: high    
Version: 17.1 (Wallaby)CC: afariasa, ccamacho, dwilde, jjoyce, jmarti, jpretori, jschluet, millevy, slinaber, tvignaud
Target Milestone: z2Keywords: Triaged
Target Release: 17.1   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2023-11-07 13:00:07 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description camorris@redhat.co 2023-08-24 15:32:47 UTC
Description of problem:
ansible-playbook -i ~/overcloud-deploy/overcloud/tripleo-ansible-inventory.yaml /usr/share/ansible/tripleo-playbooks/ssh_key_rotation.yaml --extra-vars "keep_old_key_authorized_keys=true backup_folder_path=/home/stack/backup"

Version-Release number of selected component (if applicable):
17.1

How reproducible:
Unsure, but once it happens it stays broken

Steps to Reproduce:
1. ansible-playbook -i ~/overcloud-deploy/overcloud/tripleo-ansible-inventory.yaml /usr/share/ansible/tripleo-playbooks/ssh_key_rotation.yaml --extra-vars "keep_old_key_authorized_keys=true backup_folder_path=/home/stack/backup"



Actual results:
Connectivity to compute nodes and controller node was broken, even with the keys in the backup folder

Expected results:
SSH Keep working

Additional info:
I think maybe one mistake I did is that the first time I ran this, the folder /home/stack/backup did not exist (I thought Ansible would create it for me). Maybe it didn't and that's why we got stuck with the backup keys not working at all

Comment 1 Takashi Kajinami 2023-08-29 12:41:50 UTC
Carl,

Do you agree we can merge this into https://bugzilla.redhat.com/show_bug.cgi?id=2234492 and look into the problem in that bug
or do you want any additional points being looked into in this separate bug ?

Comment 2 camorris@redhat.co 2023-09-12 17:13:42 UTC
Hi Takashi,

I think we can merge both bugzillas. I don't remember why we raised both of them during the hackfest.

Comment 7 MilanaLevy 2023-11-07 13:00:07 UTC

*** This bug has been marked as a duplicate of bug 2234492 ***

Comment 9 Red Hat Bugzilla 2024-03-22 04:25:05 UTC
The needinfo request[s] on this closed bug have been removed as they have been unresolved for 120 days