- Issued:
- 2014-11-04
- Updated:
- 2014-11-04
RHBA-2014:1800 - Bug Fix Advisory
Synopsis
Red Hat Enterprise Linux OpenStack Platform Installer Bug Fix Advisory
Type/Severity
Bug Fix Advisory
Red Hat Insights patch analysis
Identify and remediate systems affected by this advisory.
Topic
An updated version of the Red Hat Enterprise Linux OpenStack Platform 5.0 wizard-based installer is now available.
Description
Red Hat Enterprise Linux OpenStack Platform provides the facilities for
building a private or public infrastructure-as-a-service (IaaS) cloud
running on commonly available physical hardware. Services provided by
these packages include:
- OpenStack Block Storage service ("cinder").
- OpenStack Compute service ("nova").
- OpenStack Dashboard ("horizon").
- OpenStack Image service ("glance").
- OpenStack Identity ("keystone").
- OpenStack Networking service ("neutron").
- OpenStack Object Storage service ("swift").
- OpenStack Orchestration service ("heat").
- OpenStack Telemetry service ("ceilometer").
RHEL OpenStack Platform also includes these supporting technologies:
- RHEL OpenStack Platform Installer, a utility for deploying
enterprise-level OpenStack clouds.
- PackStack, a utility for rapidly deploying proof of concept OpenStack
clouds.
- Open vSwitch, an implementation of the OpenFlow protocol for remote
per-flow control of network traffic.
This advisory fixes Red Hat Enterprise Linux OpenStack Platform Installer
bugs, along with several bugs for other components. These fixes are
documented in the following Technical Notes document:
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux_OpenStack_Platform/5/html/Technical_Notes/index.html
Solution
Before applying this update, make sure all previously released errata
relevant to your system have been applied.
Red Hat Enterprise Linux OpenStack Platform 5 runs on the latest available version of Red Hat Enterprise Linux 7.
The Red Hat Enterprise Linux OpenStack Platform 5 Release Notes contain the
following:
- Operating System requirements.
- The channels required for Red Hat Enterprise Linux OpenStack Platform 5, including which channels need to be enabled and disabled.
- Enhancements, Technology Previews, Recommended Practices, Known Issues and Deprecated Functionality.
The Release Notes are available at:
https://access.redhat.com/site/documentation/en-US/Red_Hat_Enterprise_Linux_OpenStack_Platform/5/html/Release_Notes/index.html
This update is available via the Red Hat Network. Details on how to
use the Red Hat Network to apply this update are available at
https://access.redhat.com/articles/11258
Affected Products
- Red Hat OpenStack foreman x86_64
Fixes
- BZ - RHBA-2014:1800 - [RFE] - Need ability to configure nexus mechanism driver
- BZ - RHBA-2014:1800 - staypuft should setup by default all HA recommended networks
- BZ - RHBA-2014:1800 - Integrating n1kv installation with RHEL-OSP installer
- BZ - RHBA-2014:1800 - Integrating n1kv VSM puppet deployment with foreman installer
- BZ - RHBA-2014:1800 - [RFE] Need ability to specify NIC bonding for node network setup
- BZ - RHBA-2014:1800 - [RFE] Need an ability to specify per infrastructure network if Foreman/Staypuft admin node should provide ip address management
- BZ - RHBA-2014:1800 - Rubygem-Staypuft: Need to enforce usage of a different interface than the interface used for pxe/provisioning the node for Nova deployment with vlan tenant network type and no single nic to be allowed.
- BZ - RHBA-2014:1800 - Puppet fails on networker after br-ex is configured
- BZ - RHBA-2014:1800 - Neutron cli fails to authenticate
- BZ - RHBA-2014:1800 - Staypuft does not create the cron job to flush the keystone tokens
- BZ - RHBA-2014:1800 - [RFE] Need an ability to specify vLAN (tagged) on top of bonded NICs per network per node type
- BZ - RHBA-2014:1800 - staypuft neutron network failed with "no implicit conversion of nil to string"
- BZ - RHBA-2014:1800 - RFE: Staypuft should prevent users adding hosts through foreman UI
- BZ - RHBA-2014:1800 - Not used NICs should be detected and should not be set to BOOTPROTO=dhcp and ONBOOT=yes
- BZ - RHBA-2014:1800 - Rubygem-Staypuft: Using different HW in the same deployment will fail the deployment because the NICs are named differently.
- BZ - RHBA-2014:1800 - RFE: rhel-osp-installer should install the rhos sos plugins on all nodes
- BZ - RHBA-2014:1800 - rubygem-staypuft: When choosing deployment with QPID - Rabbit is being installed on the controller, with bad configuration that cause deployment to fail.
- BZ - RHBA-2014:1800 - [RFE] Ceph RBD backend configuration for Cinder and Glance in OSP
- BZ - RHBA-2014:1800 - [RFE] Puppet should generate client keyring for the Controller and Compute nodes
- BZ - RHBA-2014:1800 - Rubygem-Staypuft: in UI after clicking on the "Done" button in "Configure Networks" the host(s) should discontinue be selected.
- BZ - RHBA-2014:1800 - Rubygem-Staypuft: in UI under the "Network Configuration" page: the roles that don't need to be under the default network, should appear under "Available Network Traffic Types".
- BZ - RHBA-2014:1800 - staypuft needs to create ceph.conf on ceph storage/installer node
- BZ - RHBA-2014:1800 - ability to set osd pool default size in ceph.conf
- BZ - RHBA-2014:1800 - ability to set osd pool default size in ceph.conf
- BZ - RHBA-2014:1800 - Rubygem-Staypuft: HA Neutron+GRE deployment - puppet agent exits with error on controllers: Error 400 on SERVER: Local ip for ovs agent must be set when tunneling is enabled at /etc/puppet/environments/production/modules/neutron/manifests/agents/ovs.pp:32
- BZ - RHBA-2014:1800 - open ceph ports on HA controller
- BZ - RHBA-2014:1800 - Staypuft doesn't create & set a type for each Cinder back end when configuring multiple back ends
- BZ - RHBA-2014:1800 - rubygem-staypuft: Selecting hosts with different interfaces in the "Configure Networks" prompts "<hostname> does not have interfaces with same names", Exiting from that error messes up the UI.
- BZ - RHBA-2014:1800 - Staypuft related JS modification doesn't load on hosts#edit
- BZ - RHBA-2014:1800 - Rubygem-Staypuft: Nova+vlan deployment: The number of vlan range against "Fixed IP range for tenant networks" isn't validated although may fail a deployment.
- BZ - RHBA-2014:1800 - rubygem-staypuft: HANeutron deployment with "Tenant Network Type" set to "VLAN Segmentation" fails installing the controllers. Puppet error: /usr/sbin/rabbitmqctl set_policy HA '^(?!amq\.).*' '{"ha-mode": "all"}' returned 2 instead of one of [0].
- BZ - RHBA-2014:1800 - installing osp5 rhel7 hosts fails automatically if boot disk is > 2TB
- BZ - RHBA-2014:1800 - rubygem-staypuft: "service network restart" line in the %post section of the kickstart prevents subsequent packages installation/update on some setups.
- BZ - RHBA-2014:1800 - Automated subscription-manager registration fails with special characters in password
- BZ - RHBA-2014:1800 - Rubygem-Staypuft: The default gateway resides on the wrong NIC. Should be on the public apil NIC where it exists otherwise on Provisioning/PXE. (VLAN)
- BZ - RHBA-2014:1800 - host=<ID> is not set in neutron-HA mode, thus network-node failovers will not work
- BZ - RHBA-2014:1800 - Galera+puppet stability improvements
- BZ - RHBA-2014:1800 - Integrating n1kv installation with OS-HA in RHEL-OSP installer
- BZ - RHBA-2014:1800 - rubygem-staypuft: Clicking on "Configure Networks" doesn't open the "Configure Networks" page - gets stuck.
- BZ - RHBA-2014:1800 - Registration of non-provisioned hosts to the installer
- BZ - RHBA-2014:1800 - rubygem-staypuft: Clicking on 'Access all details' button after a successful deployment - get the following in Controllers IPs secton: "192.168.0.6 what subnet type here?"
- BZ - RHBA-2014:1800 - fence_xvm in HA controller: expose port param, add firewall rule
- BZ - RHBA-2014:1800 - subnet occasionally not appearing in nic assignment screen - HA deployment
- BZ - RHBA-2014:1800 - public vips not populated (blocker)
- BZ - RHBA-2014:1800 - vip mac address conflicts when more than 1 HA deployment
- BZ - RHBA-2014:1800 - Staypuft Network Configuration: Operation FAILED: uninitialized constant Net::Validations::MASK_REGEXP
- BZ - RHBA-2014:1800 - rubygem-staypuft: Clicking on 'Access all details' button after a successful deployment - the identation is bad. The image is attached.
- BZ - RHBA-2014:1800 - rubygem-staypuft: Creating a new subnet from within the deployment enforces specifying gateway for networks with no DHCP server.
- BZ - RHBA-2014:1800 - Hosts get disassociated from deployment after editing
- BZ - RHBA-2014:1800 - rubygem-staypuft: Editing a host: no network traffic type is specified in the networks' help text in the tab network.
- BZ - RHBA-2014:1800 - rubygem-staypuft: Public_api role assignment to network - need to add validation that the network has a gateway configured.
- BZ - RHBA-2014:1800 - Validation failure while editing host in production only environment
- BZ - RHBA-2014:1800 - rubygem-staypuft: Hosts don't get registered in staypuft and don't appear in the "discovered hosts" list.
- BZ - RHBA-2014:1800 - rubygem-staypuft: Selecting more than one Cinder driver backend doesn't set the "Multiple Backend" value to true.
- BZ - RHBA-2014:1800 - unable to deploy fencing in ha-neutron
- BZ - RHBA-2014:1800 - Unable to Add host
- BZ - RHBA-2014:1800 - open ceph ports on ceph storage node
- BZ - RHBA-2014:1800 - open ceph ports on ceph storage node
- BZ - RHBA-2014:1800 - memcached port 11211 is not opened by default on controllers in HA environments.
- BZ - RHBA-2014:1800 - rubygem-staypuft: The default gateway isn't set on the right interface when among other NICs vlan tagged NIC is used.
- BZ - RHBA-2014:1800 - allow installs with tenant and provisioning on the same subnet
- BZ - RHBA-2014:1800 - bonded interfaces are incorrectly configured with missing bond name
CVEs
(none)
Red Hat OpenStack foreman
SRPM | |
---|---|
augeas-1.0.0-7.el6.src.rpm | SHA-256: 48ce390b965cc843e6dccba25eb619d231c847d6278746f36a557228c66fdc60 |
foreman-1.6.0.44-6.el6ost.src.rpm | SHA-256: a6adb235421fbab9e3cc6a7dd9773cf045cb5e749d5c2137d2e5ed0ca07a93f9 |
openstack-foreman-installer-2.0.32-1.el6ost.src.rpm | SHA-256: 31a78aefc90a5cf490b126ea6f7b09639f612ace3a9e253ddaf471de62e6d0c1 |
openstack-puppet-modules-2014.1-24.el6ost.src.rpm | SHA-256: 1aeb9b5f32ac24e0d15c2e8ff54c7a51ef67aba78c7a2493b87dbe52330e6b1d |
rhel-osp-installer-0.4.7-1.el6ost.src.rpm | SHA-256: 10f7b75b0ea2fbc1a85042777b6bb0640370b15ed76392c96a27382bda001fba |
ruby193-rubygem-ipaddress-0.8.0-6.el6ost.src.rpm | SHA-256: 619ee11e0e9195d478bdc5d110948b3db9b1964566c63fd21b911c9eab83ba0e |
ruby193-rubygem-staypuft-0.4.14-1.el6ost.src.rpm | SHA-256: 6cbd2536fd76dcb0550e46473d2681c8a2cba4bbefed24fc15860c844832648a |
syslinux-4.04-3.el6.src.rpm | SHA-256: 123278a4b886d6fcdccb43801c9eca0452973b1e367f88fa376737818f52e0e6 |
x86_64 | |
augeas-1.0.0-7.el6.x86_64.rpm | SHA-256: f197177990de25a3555e4fe46f82ccf507a338440325b49f39f9c0cc5b840d80 |
augeas-debuginfo-1.0.0-7.el6.x86_64.rpm | SHA-256: 15a0fdd6dbf01665ba476a237d2822b0965e9506b184b56f463ab9faeb489e91 |
augeas-libs-1.0.0-7.el6.x86_64.rpm | SHA-256: 78030a31f87a43b5ce9176d54b276867a962381bbfb54cb29fe9551d2845d0e4 |
foreman-1.6.0.44-6.el6ost.noarch.rpm | SHA-256: 092c1a9da4254f10957cd46a184086b9e90c3d43a47f7219e5a2b1776bcdd9ab |
foreman-mysql2-1.6.0.44-6.el6ost.noarch.rpm | SHA-256: ccfaa40cd951de11229c2dfeee2030e3d4e2cce44765665f224b30b007f20dd0 |
foreman-postgresql-1.6.0.44-6.el6ost.noarch.rpm | SHA-256: 52d5abc36dc5772c71b2d593bbeacdb2ca115fdb6e1c8debc0aaa87ff479cead |
foreman-sqlite-1.6.0.44-6.el6ost.noarch.rpm | SHA-256: 4a183208c4d27b1625c56c3278ac5d0c7416f73050fd9c3b7fd1042e6cee5004 |
openstack-foreman-installer-2.0.32-1.el6ost.noarch.rpm | SHA-256: b4653c60a9d1a5d6f55c32e686da89aedd6bda1fe12675e639cbdcc8ef1b7189 |
openstack-puppet-modules-2014.1-24.el6ost.noarch.rpm | SHA-256: 6ced5f618749f710a4ef9a644e9519bcba45bf0097f262c2638dc94c93344f3c |
rhel-osp-installer-0.4.7-1.el6ost.noarch.rpm | SHA-256: 1c1f27275d4b00c6153519ccb3453f74c8dc7d34e7fc1b4c661df55d604b4536 |
ruby193-rubygem-ipaddress-0.8.0-6.el6ost.noarch.rpm | SHA-256: 5e2ec93ec9be2ddb5bb0c493a6a9c8a058e19bca9b5ba6d15e5f534fd83fca88 |
ruby193-rubygem-ipaddress-doc-0.8.0-6.el6ost.noarch.rpm | SHA-256: 0b387b9df117e187b82cd49b21d66e111a3c3977f8b97a3630f2e0ad78c6ddda |
ruby193-rubygem-staypuft-0.4.14-1.el6ost.noarch.rpm | SHA-256: 1694a8ae34b4c490db29f378078e29cc06a378319f6bc3f970b0445ec6004461 |
ruby193-rubygem-staypuft-doc-0.4.14-1.el6ost.noarch.rpm | SHA-256: 384eaba782a8ada76efa801d71ecb7c8840a791fb1fb7dad4ce7e927463e6b44 |
syslinux-debuginfo-4.04-3.el6.x86_64.rpm | SHA-256: 9a9595ed96f6f60db2ff42555c3149279ad4bf2a1fec97b04e4bc9d632d2c2b9 |
syslinux-extlinux-4.04-3.el6.x86_64.rpm | SHA-256: 36ed07293c737ead5c340fbeaec92dde51f12179ea2ae8922988de3806583c0b |
syslinux-extlinux-nonlinux-4.04-3.el6.noarch.rpm | SHA-256: b8901330e691a6b49634721d2b56f144fa54e914ce19ba63f6737c4dcec487d9 |
syslinux-nonlinux-4.04-3.el6.noarch.rpm | SHA-256: dff82bc2716680d9739c363e79f39eece95b7b390018252cf88ca566c99b6e2f |
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.