Mark O Brien
1047fcdd33
vmhost: moved all vms from vmhost01.stg
...
Signed-off-by: Mark O Brien <markobri@redhat.com >
2022-02-15 22:57:36 +00:00
Mark O Brien
dd811b24f4
sysadmin-fedimg can access fedimg server
...
Signed-off-by: Mark O Brien <markobri@redhat.com >
2022-02-15 11:54:22 +00:00
Mark O Brien
2b4014f5b5
os-control: change host for stg vm
...
Signed-off-by: Mark O Brien <markobri@redhat.com >
2022-02-14 22:03:26 +00:00
Kevin Fenzi
93cf7c27db
virt-install / ppc64le: drop the features thing for now
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com >
2022-02-12 18:05:21 -08:00
Kevin Fenzi
3cebeb87bf
virt-install / ppc64le: it is --features not --feature
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com >
2022-02-12 17:58:46 -08:00
Kevin Fenzi
31322fc693
buildvm_ppc64le: add virt feature back in
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com >
2022-02-12 16:34:21 -08:00
Kevin Fenzi
7ad036fea5
buildvm-a32: adjust install to use new variables, drop highmemory thing
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com >
2022-02-10 13:20:42 -08:00
Kevin Fenzi
aea666faa7
proxies / stg: move them to f35
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com >
2022-02-10 12:54:10 -08:00
Pavel Raiskup
eda6b34fa7
copr-fe-dev: create cert also for the aws hostname variant
2022-02-10 16:26:30 +01:00
Pavel Raiskup
7753abb7cd
copr-fe-dev: Let's Encrypt both stg.f.o and cloud.f.o addresses
2022-02-10 16:24:59 +01:00
Silvie Chlupova
e1bd5ad45d
copr: change copr-fe-dev.cloud.fedoraproject.org to copr.stg.fedoraproject.org
2022-02-10 16:13:58 +01:00
Mark O Brien
ead918a386
ocp4: add proxy settings for worker06
...
Signed-off-by: Mark O Brien <markobri@redhat.com >
2022-02-10 14:33:19 +00:00
Mark O Brien
c35a318b18
ocp4: add initial setup for worker06 prod
...
Signed-off-by: Mark O Brien <markobri@redhat.com >
2022-02-10 14:25:36 +00:00
Silvie Chlupova
2eab0c9987
copr: change copr-fe-dev.cloud.fedoraproject.org to copr.stg.fedorainfracloud.org
...
Also change copr-fe-dev.aws.fedoraproject.org to
copr.stg.fedoraproject.org. It is needed because of setup in kerberos
config files placed in the fedora-packager-kerberos which takes
stg.fedoraproject.org as staging instance, not aws.fedoraproject.org
2022-02-10 14:49:56 +01:00
Silvie Chlupova
48d5523dc5
copr: remove copr.stg.fedoraproject.org, we don't use it.
...
This is an old initiative, we wanted to have two frontend instances,
but we never used it.
2022-02-10 14:36:58 +01:00
Kevin Fenzi
0c7eb2d032
buildvm-ppc64le: adjust to new variables
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com >
2022-02-07 13:37:27 -08:00
Mark O Brien
07d4e8e713
ocp4: add firewall rule to proxies for worker05
...
Signed-off-by: Mark O Brien <markobri@redhat.com >
2022-02-07 16:26:56 +00:00
Mark O Brien
f379242d4d
ocp4: add initial config for worker05 prod
...
Signed-off-by: Mark O Brien <markobri@redhat.com >
2022-02-07 15:36:03 +00:00
Mark O Brien
ff80837bfb
ocp4: add initial config for worker05 prod
...
Signed-off-by: Mark O Brien <markobri@redhat.com >
2022-02-07 15:35:38 +00:00
Kevin Fenzi
c735bfbc18
proxies / ocp: also add 6443 rule
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com >
2022-02-04 13:54:24 -08:00
Kevin Fenzi
4e62da042f
proxies: add worker04.ocp to be allowed to talk to the int-api endpoint.
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com >
2022-02-04 12:22:24 -08:00
Pavel Raiskup
6f23e6808e
copr-backen: Let's Encrypt take #3 after typofix
2022-02-04 15:42:16 +01:00
Pavel Raiskup
7c9ae68739
copr-backend: another letsencrypt temporary revert
2022-02-04 15:38:54 +01:00
Pavel Raiskup
2aa1a52321
copr-backend: another Let's Encrypt attempt
...
Revert "copr-backend: temporary revert"
This reverts commit 2415c05d89 .
2022-02-04 15:33:56 +01:00
Pavel Raiskup
2415c05d89
copr-backend: temporary revert
2022-02-04 15:31:35 +01:00
Pavel Raiskup
d22cd2329c
copr-backend: use Let's Encrypt certificate
...
This has been in staging for a long time, and now when the certificates
are automatically backed up on Backend we can afford moving it to
production.
2022-02-04 15:25:46 +01:00
Adam Williamson
d41dc136f0
Bump os-autoinst scratch build again (last task failed build)
...
Signed-off-by: Adam Williamson <awilliam@redhat.com >
2022-02-03 13:56:42 -08:00
Adam Williamson
3f6537f6f9
Update os-autoinst scratch build
...
Previous one had a dep issue that made it not install.
Signed-off-by: Adam Williamson <awilliam@redhat.com >
2022-02-03 11:55:34 -08:00
Adam Williamson
71cbce0447
Deploy latest test openQA and os-autoinst builds on openQA lab
...
Signed-off-by: Adam Williamson <awilliam@redhat.com >
2022-02-03 11:29:09 -08:00
Mark O Brien
6e40b5ef1f
ocp: certs updated for 2022
...
Signed-off-by: Mark O Brien <markobri@redhat.com >
2022-02-03 11:05:30 +00:00
Pavel Raiskup
022cbd9589
copr: drop old configuration for aarch64 hypervisor
...
This is not used nowadays (we have no aarch64 machine ATM), but even if
we had one we would use the roles/copr/hypervisor role instead.
2022-02-03 09:43:46 +01:00
Mark O Brien
8a8dc07b72
blockerbugs: inherit group vars correctly for openshift app database
...
Signed-off-by: Mark O Brien <markobri@redhat.com >
2022-02-02 20:16:20 +00:00
Mark O Brien
87a2e19ade
blockerbugs: inherit group vars correctly for openshift app
...
Signed-off-by: Mark O Brien <markobri@redhat.com >
2022-02-02 20:13:39 +00:00
Kevin Fenzi
b05ae8252d
download-rdu01: fix network config
...
We need eth1 here in order to reach the netapp for nfs mounts, and we
need it to not have a gateway as eth0 is the primary gw address.
Signed-off-by: Kevin Fenzi <kevin@scrye.com >
2022-02-01 12:17:33 -08:00
Mark O Brien
c826345ade
ocp4: remove conflicting dhcp entry
...
Signed-off-by: Mark O Brien <markobri@redhat.com >
2022-02-01 16:47:05 +00:00
Mark O Brien
aad8ed6be7
ocp4: add worker04 prod node
...
Signed-off-by: Mark O Brien <markobri@redhat.com >
2022-02-01 14:57:45 +00:00
Kevin Fenzi
4430178b29
Revert "wildcard-2022.fedoraproject.org cert"
...
This reverts commit 57f0d4fdb6 .
For an anoying reason, armv7 image builds come up with the time as 10
days ago, which makes this cert invalid. So, move back to the old cert
for a week or so and then switch to the new one again. ;(
2022-01-31 12:39:49 -08:00
Kevin Fenzi
99479542bd
nagios: stop checking swap on more hosts
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com >
2022-01-31 11:25:33 -08:00
Kevin Fenzi
7504296db8
db-koji01/pkgs01: stop monitoring swap, just causing noise
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com >
2022-01-30 17:44:07 -08:00
Pavel Raiskup
47f1841494
copr/certbot: revert the automatic backup/restore of certs
...
For synchronizing from host A to host B we would have to have SSH
configured from A to B or from B to A (which we don't, and we don't even
want to). The slurp solution would work, but certbot is pretty picky
WRT the restored /etc/letsencrypt directory (structure, filenames,
symlinks..).
2022-01-30 23:02:51 +01:00
Pavel Raiskup
9ce266360f
copr/certbot: support certificate backup
2022-01-30 18:51:09 +01:00
Kevin Fenzi
7512abc21b
virthost-rdu01: let us only have one gateway please
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com >
2022-01-28 09:44:48 -08:00
Pavel Raiskup
90cc321464
copr-be: deploy F35 builders to production
2022-01-28 14:48:00 +01:00
Pavel Raiskup
24ea84effa
copr-be-dev: update F35 images once more
...
- AWS images have a frozen kernel for now (rhbz#2047266)
- others have disabled systemd-resolved
2022-01-28 12:36:12 +01:00
Pete Buffon
7248eeb87c
changed eth0_ip to eth0_ipv4_ip for group_vars/all virtinstall commands + cleaned up aarch64-test02.fedorainfracloud.org
2022-01-27 20:45:34 +00:00
Kevin Fenzi
57f0d4fdb6
wildcard-2022.fedoraproject.org cert
...
This is the renewed version of the old 2020 cert.
Signed-off-by: Kevin Fenzi <kevin@scrye.com >
2022-01-27 10:37:27 -08:00
Kevin Fenzi
f6cee06c5c
inventory: have to adjust this to be a group
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com >
2022-01-26 14:35:09 -08:00
Kevin Fenzi
fbb4e4691f
Adjust the list of hosts that do not use linux-system-roles/network
...
In addition to the cloud_aws group, we want to exclude ibiblio virthosts
as they use bonding and thats a more complex setup. Someday we should
get it working here.
Signed-off-by: Kevin Fenzi <kevin@scrye.com >
2022-01-26 14:09:43 -08:00
Kevin Fenzi
d87aeef77a
add some missing hosts vars for some a64 bvmhosts
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com >
2022-01-26 14:02:37 -08:00
Kevin Fenzi
dba1e99477
dedicatedsolutions01: fix ipv6 nm
...
Signed-off-by: Kevin Fenzi <kevin@scrye.com >
2022-01-26 13:58:06 -08:00