Commit Graph

8285 Commits

Author SHA1 Message Date
Mark O Brien
1047fcdd33 vmhost: moved all vms from vmhost01.stg
Signed-off-by: Mark O Brien <markobri@redhat.com>
2022-02-15 22:57:36 +00:00
Mark O Brien
dd811b24f4 sysadmin-fedimg can access fedimg server
Signed-off-by: Mark O Brien <markobri@redhat.com>
2022-02-15 11:54:22 +00:00
Mark O Brien
2b4014f5b5 os-control: change host for stg vm
Signed-off-by: Mark O Brien <markobri@redhat.com>
2022-02-14 22:03:26 +00:00
Kevin Fenzi
93cf7c27db virt-install / ppc64le: drop the features thing for now
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-02-12 18:05:21 -08:00
Kevin Fenzi
3cebeb87bf virt-install / ppc64le: it is --features not --feature
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-02-12 17:58:46 -08:00
Kevin Fenzi
31322fc693 buildvm_ppc64le: add virt feature back in
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-02-12 16:34:21 -08:00
Kevin Fenzi
7ad036fea5 buildvm-a32: adjust install to use new variables, drop highmemory thing
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-02-10 13:20:42 -08:00
Kevin Fenzi
aea666faa7 proxies / stg: move them to f35
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-02-10 12:54:10 -08:00
Pavel Raiskup
eda6b34fa7 copr-fe-dev: create cert also for the aws hostname variant 2022-02-10 16:26:30 +01:00
Pavel Raiskup
7753abb7cd copr-fe-dev: Let's Encrypt both stg.f.o and cloud.f.o addresses 2022-02-10 16:24:59 +01:00
Silvie Chlupova
e1bd5ad45d copr: change copr-fe-dev.cloud.fedoraproject.org to copr.stg.fedoraproject.org 2022-02-10 16:13:58 +01:00
Mark O Brien
ead918a386 ocp4: add proxy settings for worker06
Signed-off-by: Mark O Brien <markobri@redhat.com>
2022-02-10 14:33:19 +00:00
Mark O Brien
c35a318b18 ocp4: add initial setup for worker06 prod
Signed-off-by: Mark O Brien <markobri@redhat.com>
2022-02-10 14:25:36 +00:00
Silvie Chlupova
2eab0c9987 copr: change copr-fe-dev.cloud.fedoraproject.org to copr.stg.fedorainfracloud.org
Also change copr-fe-dev.aws.fedoraproject.org to
copr.stg.fedoraproject.org. It is needed because of setup in kerberos
config files placed in the fedora-packager-kerberos which takes
stg.fedoraproject.org as staging instance, not aws.fedoraproject.org
2022-02-10 14:49:56 +01:00
Silvie Chlupova
48d5523dc5 copr: remove copr.stg.fedoraproject.org, we don't use it.
This is an old initiative, we wanted to have two frontend instances,
but we never used it.
2022-02-10 14:36:58 +01:00
Kevin Fenzi
0c7eb2d032 buildvm-ppc64le: adjust to new variables
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-02-07 13:37:27 -08:00
Mark O Brien
07d4e8e713 ocp4: add firewall rule to proxies for worker05
Signed-off-by: Mark O Brien <markobri@redhat.com>
2022-02-07 16:26:56 +00:00
Mark O Brien
f379242d4d ocp4: add initial config for worker05 prod
Signed-off-by: Mark O Brien <markobri@redhat.com>
2022-02-07 15:36:03 +00:00
Mark O Brien
ff80837bfb ocp4: add initial config for worker05 prod
Signed-off-by: Mark O Brien <markobri@redhat.com>
2022-02-07 15:35:38 +00:00
Kevin Fenzi
c735bfbc18 proxies / ocp: also add 6443 rule
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-02-04 13:54:24 -08:00
Kevin Fenzi
4e62da042f proxies: add worker04.ocp to be allowed to talk to the int-api endpoint.
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-02-04 12:22:24 -08:00
Pavel Raiskup
6f23e6808e copr-backen: Let's Encrypt take #3 after typofix 2022-02-04 15:42:16 +01:00
Pavel Raiskup
7c9ae68739 copr-backend: another letsencrypt temporary revert 2022-02-04 15:38:54 +01:00
Pavel Raiskup
2aa1a52321 copr-backend: another Let's Encrypt attempt
Revert "copr-backend: temporary revert"

This reverts commit 2415c05d89.
2022-02-04 15:33:56 +01:00
Pavel Raiskup
2415c05d89 copr-backend: temporary revert 2022-02-04 15:31:35 +01:00
Pavel Raiskup
d22cd2329c copr-backend: use Let's Encrypt certificate
This has been in staging for a long time, and now when the certificates
are automatically backed up on Backend we can afford moving it to
production.
2022-02-04 15:25:46 +01:00
Adam Williamson
d41dc136f0 Bump os-autoinst scratch build again (last task failed build)
Signed-off-by: Adam Williamson <awilliam@redhat.com>
2022-02-03 13:56:42 -08:00
Adam Williamson
3f6537f6f9 Update os-autoinst scratch build
Previous one had a dep issue that made it not install.

Signed-off-by: Adam Williamson <awilliam@redhat.com>
2022-02-03 11:55:34 -08:00
Adam Williamson
71cbce0447 Deploy latest test openQA and os-autoinst builds on openQA lab
Signed-off-by: Adam Williamson <awilliam@redhat.com>
2022-02-03 11:29:09 -08:00
Mark O Brien
6e40b5ef1f ocp: certs updated for 2022
Signed-off-by: Mark O Brien <markobri@redhat.com>
2022-02-03 11:05:30 +00:00
Pavel Raiskup
022cbd9589 copr: drop old configuration for aarch64 hypervisor
This is not used nowadays (we have no aarch64 machine ATM), but even if
we had one we would use the roles/copr/hypervisor role instead.
2022-02-03 09:43:46 +01:00
Mark O Brien
8a8dc07b72 blockerbugs: inherit group vars correctly for openshift app database
Signed-off-by: Mark O Brien <markobri@redhat.com>
2022-02-02 20:16:20 +00:00
Mark O Brien
87a2e19ade blockerbugs: inherit group vars correctly for openshift app
Signed-off-by: Mark O Brien <markobri@redhat.com>
2022-02-02 20:13:39 +00:00
Kevin Fenzi
b05ae8252d download-rdu01: fix network config
We need eth1 here in order to reach the netapp for nfs mounts, and we
need it to not have a gateway as eth0 is the primary gw address.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-02-01 12:17:33 -08:00
Mark O Brien
c826345ade ocp4: remove conflicting dhcp entry
Signed-off-by: Mark O Brien <markobri@redhat.com>
2022-02-01 16:47:05 +00:00
Mark O Brien
aad8ed6be7 ocp4: add worker04 prod node
Signed-off-by: Mark O Brien <markobri@redhat.com>
2022-02-01 14:57:45 +00:00
Kevin Fenzi
4430178b29 Revert "wildcard-2022.fedoraproject.org cert"
This reverts commit 57f0d4fdb6.

For an anoying reason, armv7 image builds come up with the time as 10
days ago, which makes this cert invalid. So, move back to the old cert
for a week or so and then switch to the new one again. ;(
2022-01-31 12:39:49 -08:00
Kevin Fenzi
99479542bd nagios: stop checking swap on more hosts
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-01-31 11:25:33 -08:00
Kevin Fenzi
7504296db8 db-koji01/pkgs01: stop monitoring swap, just causing noise
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-01-30 17:44:07 -08:00
Pavel Raiskup
47f1841494 copr/certbot: revert the automatic backup/restore of certs
For synchronizing from host A to host B we would have to have SSH
configured from A to B or from B to A (which we don't, and we don't even
want to).  The slurp solution would work, but certbot is pretty picky
WRT the restored /etc/letsencrypt directory (structure, filenames,
symlinks..).
2022-01-30 23:02:51 +01:00
Pavel Raiskup
9ce266360f copr/certbot: support certificate backup 2022-01-30 18:51:09 +01:00
Kevin Fenzi
7512abc21b virthost-rdu01: let us only have one gateway please
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-01-28 09:44:48 -08:00
Pavel Raiskup
90cc321464 copr-be: deploy F35 builders to production 2022-01-28 14:48:00 +01:00
Pavel Raiskup
24ea84effa copr-be-dev: update F35 images once more
- AWS images have a frozen kernel for now (rhbz#2047266)
- others have disabled systemd-resolved
2022-01-28 12:36:12 +01:00
Pete Buffon
7248eeb87c changed eth0_ip to eth0_ipv4_ip for group_vars/all virtinstall commands + cleaned up aarch64-test02.fedorainfracloud.org 2022-01-27 20:45:34 +00:00
Kevin Fenzi
57f0d4fdb6 wildcard-2022.fedoraproject.org cert
This is the renewed version of the old 2020 cert.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-01-27 10:37:27 -08:00
Kevin Fenzi
f6cee06c5c inventory: have to adjust this to be a group
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-01-26 14:35:09 -08:00
Kevin Fenzi
fbb4e4691f Adjust the list of hosts that do not use linux-system-roles/network
In addition to the cloud_aws group, we want to exclude ibiblio virthosts
as they use bonding and thats a more complex setup. Someday we should
get it working here.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-01-26 14:09:43 -08:00
Kevin Fenzi
d87aeef77a add some missing hosts vars for some a64 bvmhosts
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-01-26 14:02:37 -08:00
Kevin Fenzi
dba1e99477 dedicatedsolutions01: fix ipv6 nm
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-01-26 13:58:06 -08:00