- Issued:
- 2018-06-27
- Updated:
- 2018-06-27
RHEA-2018:2085 - Product Enhancement Advisory
Synopsis
Red Hat OpenStack Platform 13.0 containers Enhancement Advisory
Type/Severity
Product Enhancement Advisory
Topic
Updated container images are now available for Red Hat OpenStack Platform
13.0 (Queens) for RHEL 7
Description
Red Hat OpenStack Platform provides the facilities for building, deploying
and monitoring a private or public infrastructure-as-a-service (IaaS) cloud
running on commonly available physical hardware.
- A race condition in openshift-node causes CNI script failures that prevent pods from receiving IP addresses. This happens when containers get spawned before pods in OpenShift API get updated with the correct containerId, and as a result the containerId value in the kuryr-cni script is hard-coded as "null".
To avoid the issue and to have the IPs assigned correctly, use the Docker API instead of the OpenShift API to fetch containerId when generating the kuryr-cni script. (BZ#1591352)
- From RHOS-12 onwards, the OpenStack services are becoming containerized. In this release, we containerize OpenStack Tempest as well. The containerized OpenStack Tempest is available as a Technology Preview. (BZ#1488095)
- The overcloud container image prepare command returned extra images which were not being built by downstream. If these were included, the containers would not be available.
The containers we don't generate were patched out of tripleo-common. Now all container images referenced by the overcloud container image prepare command are available as built images to be shipped in OSP 13. (BZ#1535610)
- Fixes OSP 13 Beta issue where some container images were not available. (BZ#1577537)
Solution
Before applying this update, ensure all previously released errata relevant
to your system have been applied.
Red Hat OpenStack Platform 13 runs on Red Hat Enterprise Linux 7.5.
The Red Hat OpenStack Platform 13 Release Notes contain the following:
- An explanation of the way in which the provided components interact to
form a working cloud computing environment.
- Technology Previews, Recommended Practices, and Known Issues.
- The channels required for Red Hat OpenStack Platform 13, including which
channels need to be enabled and disabled.
The Release Notes are available at:
https://access.redhat.com/documentation/en/red-hat-openstack-platform/
This update is available through 'yum update' on systems registered through
Red Hat Subscription Manager. For more information about Red Hat
Subscription Manager, see:
https://access.redhat.com/documentation/en-US/Red_Hat_Subscription_Management/1/html/RHSM/index.html
Affected Products
- Red Hat OpenStack for IBM Power 13 ppc64le
- Red Hat OpenStack 13 x86_64
Fixes
- BZ - 1488095 - [RFE] Containerize Tempest
- BZ - 1488797 - [RFE] [ODL] Test a fully containerized ODL+Neutron setup
- BZ - 1527447 - openstack-sensu-client-container image attempts to do gem install during docker build
- BZ - 1527504 - openstack-keystone-docker has a pip install in rendered Dockerfile
- BZ - 1535610 - container images missing for congress-api, mongodb, novajoin, qrouterd, skydive
- BZ - 1539788 - Getting rhosp13/openstack-neutron-metadata-agent-ovn rhosp13/openstack-neutron-server-ovn into OSP13
- BZ - 1543053 - need to update manila-share container image with the latest ceph packages
- BZ - 1562435 - Octavia dashboard not installed
- BZ - 1562706 - OSP 13 dpdk unable to start neutron_ovs_agent container on compute
- BZ - 1567966 - Redis container restarts unable to sudo and hangs deployment
- BZ - 1570940 - [Deployment][TLS] neutron-server-opendaylight container based off wrong container image
- BZ - 1575677 - Respin Container Images to pick up Beta content
- BZ - 1577537 - [OSP13] inconsistent tags for overcloud images in registry.access.redhat.com/rhosp13-beta
- BZ - 1591352 - bootstrap-autoapprover pod in multi-master OpenShift cluster remains in ContainerCreating status forever
CVEs
(none)
References
(none)
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.