  1. 28 Oct, 2020 2 commits
  2. 14 Oct, 2020 2 commits
  3. 13 Oct, 2020 1 commit
    • Bharat Kunwar's avatar
      [fix] Sync nodegroup status before delete_complete · 3ced2fa8
      Bharat Kunwar authored
      Magnum cluster deletion is not behaving as expected. While it appears to
      delete successfully, _delete_complete routine in
      magnum/drivers/heat/ is never called because the status of
      nodegroups have not had the chance to sync with Heat before
      _check_delete_complete is called. As a result, for example, trustee user
      accounts are left orphaned. This PS changes or order of activities so
      that _delete_complete is invoked successfully.
      Story: 2007965
      Task: 40459
      Change-Id: Ibadd5b57fe175bb0b100266e2dbcc2e1ea4efcf9
      (cherry picked from commit 1cdc0628)
  4. 23 Sep, 2020 2 commits
    • Feilong Wang's avatar
      Remove cloud-config from k8s worker node · d79fb45b
      Feilong Wang authored
      Now Magnum is not deploying any service or workload on k8s
      worker nodes which need to get credentials from local to talk
      to Magnum control plane. So the cloud-config file should be
      removed from worker nodes to reduce the attach surface from
      a security point of view.
      Task: 40791
      Story: 2008090
      Change-Id: I72e418491cbd19291527bbe4b504d599c740fea9
      (cherry picked from commit c84653cd)
    • Feilong Wang's avatar
      Update default values for docker nofile and vm.max_map_count · c73afa8a
      Feilong Wang authored
      Task: 40801
      Story: 2008098
      Change-Id: I1802e4002d9aa89a321f130a16fd8021a773b73a
      (cherry picked from commit 385bc970)
  5. 22 Sep, 2020 2 commits
    • OpenStack Release Bot's avatar
      Update TOX_CONSTRAINTS_FILE for stable/victoria · 039fc599
      OpenStack Release Bot authored
      Update the URL to the upper-constraints file to point to the redirect
      rule on so that anyone working on this branch
      will switch to the correct upper-constraints list automatically when
      the requirements repository branches.
      Until the requirements repository has as stable/victoria branch, tests will
      continue to use the upper-constraints list on master.
      Change-Id: Ica4ddd5eb3d2a3deec6c4807bac863fa08cc79e1
    • OpenStack Release Bot's avatar
      Update .gitreview for stable/victoria · e9b5c32e
      OpenStack Release Bot authored
      Change-Id: I850b1073ae565b7a98fcd885d80eed1e368dee5f
  6. 09 Sep, 2020 1 commit
  7. 08 Sep, 2020 1 commit
  8. 07 Sep, 2020 2 commits
  9. 31 Aug, 2020 1 commit
  10. 27 Aug, 2020 2 commits
    • Zuul's avatar
      Merge "ci: Log in to DockerHub using docker_login" · cbf0a392
      Zuul authored
    • Mohammed Naser's avatar
      Stop using delete_on_termination for BFV instances · 2c63aca8
      Mohammed Naser authored
      When using delete_on_termination and the booting of the instance fails
      on the first attempt, the second attempt will fail with Heat.  The
      reason is that with delete_on_termination set to True, Nova will delete
      the volume when Heat deletes the ERROR'd instance and it will then
      result in the follow-up boot to fail with an error along the line of
      unable to find volume, which masks the real failure from the user (which
      could potentialy be aquota issue).
      With this patch, we no longer set this and instead use the default of
      false.  This will not mean we will leak volumes because when we delete
      the stack, Heat will do all the right things and delete them in order,
      making sure the volume disappears eventually.
      Change-Id: I362cea7bf57825035d13d234d0181a2b1fca5743
  11. 26 Aug, 2020 1 commit
  12. 25 Aug, 2020 4 commits
  13. 24 Aug, 2020 3 commits
    • Spyridon Trigazis's avatar
      ci: Quote password on docker login · f2718315
      Spyridon Trigazis authored
      The password contains special characters, so we need to
      quote the password string on docker login.
      Change-Id: Ie826c78309395765911db01e6d412426e46f176e
      Signed-off-by: Spyridon Trigazis's avatarSpyros Trigazis <>
    • Zuul's avatar
      Merge "[k8s] Support CA certs rotate" · f2b97898
      Zuul authored
    • Feilong Wang's avatar
      [k8s] Support CA certs rotate · 8020391e
      Feilong Wang authored
      Now k8s cluster owner can do CA cert rotate to re-generate CA of
      the cluster, service account keys and the certs of all nodes will
      be regenerated as well. Cluster user needs to get a new kubeconfig
      to access kubernetes API. This function is only supported by
      Fedora CoreOS driver.
      To test this patch with python-magnumclient, you need this patch, otherwise, you will see
      an error about "not enough values to unpack", though the CA cert
      rotate request has been processed by Magnum server side correctly.
      Task: 39580
      Story: 2005201
      Change-Id: I4ae12f928e4f49b99732fba097371692cb35d9ee
  14. 21 Aug, 2020 1 commit
  15. 19 Aug, 2020 1 commit
  16. 07 Aug, 2020 1 commit
    • Bharat Kunwar's avatar
      [k8s-atomic] Support master_lb_allowed_cidrs in template · ffed8839
      Bharat Kunwar authored
      In I157a3b01d169e550e79b94316803fde8ddf77b03, support for
      master_lb_allowed_cidrs  was introduced but only for the fedora coreos
      driver. However, this parameter is also supplied to fedora atomic
      clusters but the template does not expect this parameter. As a result,
      cluster creation fails due to backward incompatibility. This PS
      addresses this issue.
      Task: 40632
      Story: 2007478
      Change-Id: Ia781288f7aa35146582b10d5762aa05e3b107dce
  17. 04 Aug, 2020 1 commit
    • Thomas George Hartland's avatar
      Increase container-publish timeout · 79c4b72f
      Thomas George Hartland authored
      The magnum-container-publish job first
      has to run the container-build job,
      so it doesn't make sense for the publish job
      timeout to be shorter than the build job timeout.
      Change-Id: I7f8b1b91eba733ecda01dc385c594d04f238a30b
  18. 03 Aug, 2020 1 commit
  19. 02 Aug, 2020 1 commit
    • Simon Merrick's avatar
      Configure placeholder role-mapping Sync · 31623a13
      Simon Merrick authored
       + Adds placeholder ConfigMap and with a template
         keystone-sync-policy that can be edited by the cluster
       + Docs for sync policy added
       + Docs for auth policy edited for grammar, spelling
         and clarity.
      Task: 39136
      Story: 1755770
      Change-Id: I0afc19c630e077c079f7f6a52439f4aee8bf5eb8
  20. 31 Jul, 2020 1 commit
    • Bharat Kunwar's avatar
      [ci] Use stestr for coverage and fail if below 90% · 4fbf9651
      Bharat Kunwar authored
      Additionally remove non-voting status of coverage job. 1% toleration is
      enabled for allowed_extra_missing lines. If we need to lower the 90%
      threshold for coverage in the future, this can be decided then.
      Change-Id: I7bc80c34dc6e6e054c61181410d88e7b747310c9
  21. 30 Jul, 2020 4 commits
  22. 28 Jul, 2020 1 commit
    • Bharat Kunwar's avatar
      Remove zuul legacy jobs · 463a0185
      Bharat Kunwar authored
      As part of the Victoria cycle, all legacy jobs need to either be
      converted or dropped. Since we no longer use these jobs that have been
      parked in the experimental queue, it makes sense to drop them.
      Change-Id: I16f15d8fb6887ff9076b20d473d9d39cec455b96
  23. 22 Jul, 2020 1 commit
  24. 21 Jul, 2020 1 commit
    • Feilong Wang's avatar
      Add master_lb_enabled to cluster · 946c1d67
      Feilong Wang authored
      Adding the master_lb_enabled option when creating a cluster,
      which will benefit both the cloud provider side and the end
      user side. For cloud prodiver, they don't have to maintain
      separate cluster templates with or w/o master_lb_enabled enabled.
      For end user, they can easily use one single template to create
      different clusters with different configs.
      Task: 39680
      Story: 2007634
      Change-Id: I0b586f05168ece84fd340ef7493a56688191053d
  25. 15 Jul, 2020 1 commit
  26. 13 Jul, 2020 1 commit