PLAY RECAP *********************************************************************
subcloud11 : ok=36 changed=20 unreachable=0 failed=1
Saturday 04 December 2021 14:13:33 +0000 (0:01:09.094) 0:01:53.071 *****
controller-0:~$ source /etc/platform/openrc
[sysadmin@controller-0 ~(keystone_admin)]$ openstack secret list
------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------+
Secret href Name Created Status Content types Algorithm Bit length Secret type Mode Expiration
------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------+
uuid service section name value personality resource
------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
Brief Description
After a platform upgrade from 21.05 to 21.12, the subcloud rehome failed due to the update_ docker_ registry. sh failed
Severity
Major
Steps to Reproduce
1. Upgrade a subcloud from 21.05 to 21.12
2. Rehome this subcloud to a 21.12 DC system
Expected Behavior
Rehome successful
Actual Behavior
Rehome failed in the step: Update docker registry credentials
Reproducibility
Reproducible
System Configuration
DC
Branch/Pull Time/Commit
SW_VERSION="21.12"
Last Pass
NA
Timestamp/Logs
TASK [rehome- subcloud/ update- keystone- data : Restart keystone service] *********
Saturday 04 December 2021 14:12:12 +0000 (0:00:00.406) 0:00:31.663 *****
changed: [subcloud11]
TASK [rehome- subcloud/ update- keystone- data : Wait until keystone is restarted] ***
Saturday 04 December 2021 14:12:13 +0000 (0:00:01.433) 0:00:33.097 *****
FAILED - RETRYING: Wait until keystone is restarted (10 retries left).
changed: [subcloud11]
TASK [rehome- subcloud/ update- keystone- data : Update docker registry credentials] ***
Saturday 04 December 2021 14:12:24 +0000 (0:00:10.879) 0:00:43.976 *****
fatal: [subcloud11]: FAILED! => changed=true
cmd:
update_ docker_ registry_ auth.sh table,value, yaml}] content_ type PAYLOAD_ CONTENT_ TYPE] table,value, yaml}
sysinv
O4LUr=X7LvF*f=k4
delta: '0:01:08.868264'
end: '2021-12-04 14:13:33.679879'
msg: non-zero return code
rc: 2
start: '2021-12-04 14:12:24.811615'
stderr: |-
usage: openstack secret get [-h] [-f {json,shell,
[-c COLUMN] [--max-width <integer>] [--fit-width]
[--print-empty] [--noindent] [--prefix PREFIX]
[--decrypt | --payload | --file <filename>]
[--payload_
URI
openstack secret get: error: too few arguments
stderr_lines:
- 'usage: openstack secret get [-h] [-f {json,shell,
]'
' [-c COLUMN] [--max-width <integer>] [--fit-width]' content_ type PAYLOAD_ CONTENT_ TYPE]' O4LUr=X7LvF* f=k4
' [--print-empty] [--noindent] [--prefix PREFIX]'
' [--decrypt | --payload | --file <filename>]'
' [--payload_
' URI'
'openstack secret get: error: too few arguments'
stdout: |2-
Updating docker-registry credentials ...... done.
Validating docker-registry credentials updated to: username:sysinv password:
Updating quay-registry credentials ...... done. O4LUr=X7LvF* f=k4
Validating quay-registry credentials updated to: username:sysinv password:
Updating elastic-registry credentials ...... done. O4LUr=X7LvF* f=k4
Validating elastic-registry credentials updated to: username:sysinv password:
Updating gcr-registry credentials ...... done. O4LUr=X7LvF* f=k4
Validating gcr-registry credentials updated to: username:sysinv password:
Updating k8s-registry credentials ...... done. O4LUr=X7LvF* f=k4
Validating k8s-registry credentials updated to: username:sysinv password:
Updating ghcr-registry credentials ..
stdout_lines: <omitted>
PLAY RECAP ******* ******* ******* ******* ******* ******* ******* ******* ******* ******
subcloud11 : ok=36 changed=20 unreachable=0 failed=1
Saturday 04 December 2021 14:13:33 +0000 (0:01:09.094) 0:01:53.071 *****
controller-0:~$ source /etc/platform/ openrc controller- 0 ~(keystone_admin)]$ openstack secret list ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- -+
[sysadmin@
-------
Secret href Name Created Status Content types Algorithm Bit length Secret type Mode Expiration ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- -+
-------
http:// controller: 9311/v1/ secrets/ de3fe51c- a0bd-4fe9- 9e66-5ba7d5c49e dc k8s-registry-secret 2021-12- 04T14:13: 23.899474+ 00:00 ACTIVE {u'default': u'text/plain'} aes 256 opaque cbc None controller: 9311/v1/ secrets/ e3b40483- 925f-404d- bcb8-db3d1975f3 d1 gcr-registry-secret 2021-12- 04T14:13: 11.197411+ 00:00 ACTIVE {u'default': u'text/plain'} aes 256 opaque cbc None controller: 9311/v1/ secrets/ 194687fe- ad84-432f- a0c5-469e8540ab f3 elastic- registry- secret 2021-12- 04T14:12: 58.203490+ 00:00 ACTIVE {u'default': u'text/plain'} aes 256 opaque cbc None controller: 9311/v1/ secrets/ 800b70dd- f7d5-4980- 8446-e8ecfb0385 e2 quay-registry- secret 2021-12- 04T14:12: 45.409269+ 00:00 ACTIVE {u'default': u'text/plain'} aes 256 opaque cbc None controller: 9311/v1/ secrets/ dc04e11a- 6004-432f- b638-d056cbf771 bc docker- registry- secret 2021-12- 04T14:12: 31.652723+ 00:00 ACTIVE {u'default': u'text/plain'} aes 256 opaque cbc None ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- -+ controller- 0 ~(keystone_admin)]$ system service- parameter- list ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------
http://
http://
http://
http://
-------
[sysadmin@
-------
uuid service section name value personality resource ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------- ------
-------
dd489d53- bc4b-4528- 9dfd-8c7e763192 44 radosgw config fs_size_mb 25 None None 2068-4ccb- 937f-ec10a04e4c 76 http config http_port 8080 None None e186-441e- a814-108050e897 14 http config https_port 8443 None None ecde-42b5- b74a-2127128c69 3e kubernetes config pod_max_pids 10000 None None c4c1-474f- a247-837d727fbd c7 radosgw config service_enabled false None None de9a-4020- ae75-a1c058a7b7 e5 identity config token_expiration 3600 None None 4fd5-4ea0- 81f5-d32fbb01ad fa docker docker-registry auth-secret dc04e11a- 6004-432f- b638-d056cbf771 bc None None 1e9b-4361- a859-09115f9cbd 8a docker docker-registry type docker None None 5caf-45d1- 9365-7980cb16e3 03 docker docker-registry url registry. central: 9001/docker. io None None 986c-4c01- a503-a709ce51cd 70 docker elastic-registry auth-secret 194687fe- ad84-432f- a0c5-469e8540ab f3 None None d84a-4e77- 9645-b9b7b64e21 80 docker elastic-registry type docker None None 5771-4b6f- 9720-9e45544c86 a5 docker elastic-registry url registry. central: 9001/docker. elastic. co None None a441-4ab9- 9aaf-2dd700d822 88 docker gcr-registry auth-secret e3b40483- 925f-404d- bcb8-db3d1975f3 d1 None None 9c10-4aee- a593-f7ae577068 8c docker gcr-registry type docker None None ba40-47fe- b061-228a0236a8 cf docker gcr-registry url registry. central: 9001/gcr. io None None ecf9-4671- 96cc-c0169b1b3d 6f docker ghcr-registry auth-secret 68bd9137- 6103-4b3c- 8b2a-8acdd74e6a c9 None None 0480-4a27- a190-7c1d06924c f8 docker ghcr-registry type docker None None a278-468a- 90f0-0cb6162c92 69 docker ghcr-registry url registry. central: 9001/ghcr. io None None 3e5d-4362- 9508-44e6cfa93b a3 docker k8s-registry auth-secret de3fe51c- a0bd-4fe9- 9e66-5ba7d5c49e dc None None f88a-4141- 96dd-617800e5d0 e1 docker k8s-registry type docker None None 3d22-4458- b486-adec01ce44 00 docker k8s-registry url registry. central: 9001/k8s. gcr.io None None 7671-4e3d- b1cc-bb7ed33e1f bc platform kernel audit 0 None None 441e-47ca- 9be6-bb43b42214 6f platform maintenance controller_ boot_timeout 1200 None None b25b-4f8e- 93ff-ca7c39ba12 68 platform maintenance heartbeat_ degrade_ threshold 6 None None a289-472c- a940-5ed044b9e1 e8 platform maintenance heartbeat_ failure_ action fail None None 6e2b-4b1b- b23e-0ab48fc1c4 b0 platform maintenance heartbeat_ failure_ threshold 10 None None 5895-4985- b549-56c5df9aff d0 platform maintenance heartbeat_period 100 None None c482-47bf- b3a9-b7a2d5f75c 55 platform maintenance mnfa_threshold 2 None None 903d-42ca- 892d-97befa5d4d b3 platform maintenance mnfa_timeout 0 None None fec3-4e7c- a04b-c3201ff18c 43 platform maintenance worker_boot_timeout 720 None None ec5f-4a7c- 854f-4366352963 c7 docker proxy http_proxy http:// yow-proxomatic. wrs.com: 3128 None None fb1d-4e87- 83a0-a9854d8ff9 46 docker proxy no_proxy localhost, 127.0.0. 1,registry. local,[ fd04::1] ,[fd01: 8c::2], [fd01:8c: :3],[2620: 10a:a001: a103::1135] , None None
registry. central, [2620:10a: a001:a103: :167],tis- lab-registry. cumulus. wrs.com
c1481786-
18accb80-
ee615917-
a4878eec-
f39ee3c7-
b5a36f18-
bd1b7c7a-
02d2fc97-
a941da2a-
ac35122f-
4e2b246b-
6913eafe-
5105c878-
6354fb56-
95a809cc-
23ce0761-
6169287f-
96ac8bf3-
ce7ef65e-
118a1a08-
9b5b5037-
f6f1f57f-
c2f0ce80-
93ec6f8c-
a93eb86f-
c3e91588-
98569e52-
3e6b93bb-
47339286-
24947921-
720ded1b-
4f88e981- d345-4fd7- b2e6-27b0b4131d 8f docker quay-registry auth-secret 800b70dd- f7d5-4980- 8446-e8ecfb0385 e2 None None 092f-4ab5- 86cf-a3d8782e20 3d docker quay-registry type docker None None 140a-4c94- 9311-84d6c2dbed bd docker quay-registry url registry. central: 9001/quay. io None None 8a74-4285- a28b-63c786b9a4 f0 identity security_compliance lockout_retries 5 None None 70b6-4a68- 9b7e-795c795843 3b identity security_compliance lockout_seconds 1800 None None
d91b5b80-
cc800ccb-
5beae5bf-
b14aa612-
Alarms
NA
Test Activity
Regression Testing
Workaround
NA