/srv/irclogs.ubuntu.com/2015/12/22/#juju.txt

marcoceppibdx: okay, so this is for getting users to connect to a juju environment00:00
marcoceppinot like setting them in a charm00:00
marcoceppibdx: you could just gpg encrypt the environment.yaml files and ship them to users ;)00:01
bdxmarcoceppi: so yea...what I decided on for the time being was to extract the secrets from environments.yaml and in environments/<juju-envN>.jenv and add them to our hiera secrets (how we puppet secrets using gpg), then add the different juju environments.jenvs and environment.yaml as templates that get the secrets from hiera ....these will get puppeted into each users ~/.juju00:12
marcoceppisounds good00:12
marcoceppibdx: the way user credentials are managed in juju 2.0 should help this a bit. I think we'll talk more about it at the Summit if you're interested00:13
bdxmarcoceppi: haha...if I'm interested.... I can't wait man!00:14
marcoceppibdx: I think you'00:14
marcoceppire going to like what we're cooking up for 2.0!00:14
rick_h_marcoceppi: bdx juat got off the phone with the folks doong that work00:17
bdxmarcoceppi: I'm pumped for 2.0 and I don't even know any details :-)00:17
rick_h_marcoceppi: bdx we'll support both externalnauth files and per user juju credentials that'll fix this up for 16.0400:18
marcoceppirick_h_: awesome! we should have a "juju 2.0 features" talk at the Summit00:18
rick_h_sharing a model won't need anything but a one liner with a one time password to share out00:19
marcoceppiI know I'm excited about it and a lot of us are looking forward to it00:19
rick_h_marcoceppi: definitely00:19
rick_h_bdx: so sorry to hear the problem you're having but also happy it's something we care a lot about fixing and a team is doing right niw00:20
rick_h_now00:20
bdxrick_h_: very exciting! .... I want feature set 2.0 NOW!00:21
bdx:-)00:21
marcoceppibdx: there's a 1.26-alpha3 out now, and a 2.0-alpha1 coming out in a few weeks, check the list for details00:21
bdxalways00:21
marcoceppi(1.26-alpha3 is basically 2.0-alpha0)00:21
rick_h_bdx: we'll have bit in the 2.0 alphas starting after the new year so keep an eyenout and give things a try00:22
rick_h_bdx: feedback isnalways great to have early and often00:22
bdxI've started the DHC conversion ....converted the staging version of 1 of 6 of our web applications to be juju deployed.... http://paste.ubuntu.com/14133640/00:23
marcoceppibdx: epic00:24
bdxnow I just need to figure out the fine details of how I will be sharing it throught our environment between devs and whatnot00:24
bdxgetting it dialed00:24
bdxrick_h_: ^^I'm your man00:25
marcoceppibdx: let us know if we can help with access stuff. fwiw, there is some early user control stuff in 1.25 that might help `juju help user`00:25
marcoceppiat least, I think that's in 1.2500:25
marcoceppibut 2.0 will make it stupid simple to have users connect to an environment00:25
bdxuggggh .... 2.0 is dropping alongside xenial?00:26
bdxmarcoceppi, rick_h_: 2.0-alpha1 will have support for externalnauth files and per user juju credentials ?00:28
* marcoceppi chceks his crystal ball00:29
* marcoceppi has no idea00:32
bdxhaha no worries00:32
bdxI'll be keeping an eye out00:33
bdxvery exciting none the less00:33
marcoceppibdx: I think alexisb or rick_h_ were going to publish a roadmap to the list, I think there's still some finalizations being made as to what the plan will be between now and April00:33
marcoceppibdx: and yes, the plan is to have Juju 2.0 in Xenial and then backported to trusty00:33
bdxThats great!00:33
bdxI have 2 lxd stacks in the testlab running on wily atm00:37
marcoceppibdx: awesome!00:38
marcoceppiI just did my first lxd deploy00:38
rick_h_bdx: probably not that early. The work is just starting and the first work is some stuff around providing ootb cloud definitions00:41
bdxrick_h_: ok, I'll be looking out!00:41
rick_h_bdx: the goal is to split the cloud definitions/files from the user credentials from the actual juju user00:41
rick_h_bdx: e.g. if I bootstrap and share with you then you don't need anything to do with the cloud or how to connect to it, juju knows that00:42
rick_h_bdx: you just need to know how to auth to juju itself ans ask it to do things00:42
rick_h_bdx: so the work will start on the cloud end and the sharing part will be later on top of that00:42
bdxrick_h_: that makes total sense.... considering what I just went through sorting the secrets, and determining which ones are pertinent to the user, and which to the environment.... that seems like a grand solution00:43
rick_h_bdx: glad to hear it00:44
bdxrick_h_, marcoceppi: thanks for the great info! I'll be in touch!00:45
blahdeblahSomeone was talking in here (I think) a while back about bootstrapping into LXC/LXD containers on MAAS-deployed nodes.  Can that person or persons ping me when they're around?05:24
=== dpm is now known as dpm-afk
dweaver`I'm doing an upgrade test of juju charms and openstack today, is there any documentation on the best ordering for the upgrades?09:29
Walex2dweaver`: wish you a lot, a lot of luck10:02
dweaver`Walex2, Yeah, thanks for that ;)10:03
Bofu2U+110:08
Bofu2Ueverything i've seen just says to "update the release name in the charm" :|10:09
Bofu2Udweaver`: if you don't mind me asking, you using network bonds?10:09
dweaver`Bofu2U, no, relatively simple openstack deployment on about  6 machines, using 3 networks, but dedicated NICs (manually configured outside of MAAS and Juju).10:14
Bofu2Uah ok10:15
Bofu2Uyeah I'm trying to get my interfaces file to work but having some trouble because of tagged/untagged on bridges through a bond10:15
dweaver`Just interested if anyone has a service upgrade ordering, I've seen some articles, but with Juju charms the process is slightly different.10:16
dweaver`I'm going to try: Rabbit, Mysql, Keystone, Glance, Cinder, Neutron-Api, Neutron-gateway, Nova-C-C, Nova-compute, ceilometer, heat.  Anyone disagree or know any better order, do let me know, otherwise, I'll probably publish the results at some point.10:18
=== dpm-afk is now known as dpm
marcoceppidweaver`: that's as good an order as any10:52
=== Spads_ is now known as Spads
=== rvba` is now known as rvba
=== scuttle` is now known as scuttle|afk
jamjog_: ping?13:08
dweaver`marcoceppi, Thanks Marco, We're testing that order now. Upgrade is going OK, with several bugs in non-openstack charms, such as Mysql, Mongodb and Ceph, only 1 bug so far with the openstack charms, minor bug in neutron-api.  I'll submit all the bugs when we're done.13:26
Walex2dweaver`: at our site we have found that OpenStack is amazingly buggy, and Juju is slightly better. So I wish you a lot of luck with OpenStack :-)14:40
marcoceppidweaver`: I just started rewriting the mongodb charm for xenial, what problems did you run into?14:57
dweaver`marcoceppi, When changing the source to the next cloud archive it did not update the apt sources file, hence there was no upgrade.15:01
Mmikedweaver`: which mongodb version were you expecting to get from cloud archive?15:02
dweaver`marcoceppi, then there seems to be possibly another issue, which I would have to confirm, that when packages are updated there is an "apt-get install PACKAGE" which installs the latest package version, but only that package version, I don't think this mattered with mongodb, but it did with mysql as it just updated the mysql-server metapackage and not the mysql-server-5.5 package.15:04
marcoceppidweaver`: ah, yeah15:04
marcoceppidweaver`: the MySQL charm is next on my charms to rewrite15:05
dweaver`Mmike, we were using trusty juno cloud archive and upgrading to kilo cloud archive.  The mongodb version we ended up with was 1:2.4.9-1ubuntu2.15:09
dweaver`not sure if the version actually changed15:09
dweaver`So, is mongodb in the cloud archive?15:14
dweaver`Well, clearly not, now I check, which makes MongoDB outside the updates of the cloud archive and the setting "source" in the charm is misleading.  However, changing the source from juno to kilo cloud archive was not honoured.  And I saw similar behaviour with the ceph charm too, so not sure until I can isolate the logs if these are related or not.15:19
alias_Should juju 1.24.7 be able to connect to a vsphere environment? I following the manual and don't succeed? Can someone lend me a hand?15:22
alias_When bootstrapping I currently receive the following error: "failed to create new client: Post https://myuser:mypassword@172.20.13.140/sdk: dial tcp: unknown port tcp/Hv"15:24
alias_I'm just following juju docs, so what am I missing here?15:24
marcoceppialias_: not sure, but could it be you need to include the port for your vSphere API server?15:29
alias_marcoceppi: It's just 443 but I'll give it a shot15:30
=== jog_ is now known as jog
=== scuttle|afk is now known as scuttlemonkey
=== blahdeblah_ is now known as blahdeblah

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!