{"id":448,"sha1":"c98a55dcaaef0e81c6b7e6e2b134865d01bc7b6e","playbook":{"id":4,"items":{"plays":104,"tasks":1377,"results":1365,"hosts":2,"files":504,"records":0},"arguments":{"version":null,"verbosity":0,"private_key_file":null,"remote_user":null,"connection":"openstack.osa.ssh","timeout":null,"ssh_common_args":null,"sftp_extra_args":null,"scp_extra_args":null,"ssh_extra_args":null,"ask_pass":false,"connection_password_file":null,"force_handlers":true,"flush_cache":false,"become":false,"become_method":"sudo","become_user":null,"become_ask_pass":false,"become_password_file":null,"tags":["all"],"skip_tags":[],"check":false,"diff":false,"inventory":["/home/zuul/src/opendev.org/openstack/openstack-ansible/inventory/dynamic_inventory.py","/home/zuul/src/opendev.org/openstack/openstack-ansible/inventory/inventory.ini","/etc/openstack_deploy/inventory.ini"],"listhosts":false,"subset":null,"extra_vars":"Not saved by ARA as configured by 'ignored_arguments'","vault_ids":[],"ask_vault_pass":false,"vault_password_files":[],"forks":8,"module_path":null,"syntax":false,"listtasks":false,"listtags":false,"step":false,"start_at_task":null,"args":["setup-openstack.yml"]},"labels":[{"id":1,"name":"check:False"},{"id":2,"name":"tags:all"}],"started":"2025-12-08T13:39:52.478534Z","ended":"2025-12-08T14:14:54.510371Z","duration":"00:35:02.031837","name":null,"ansible_version":"2.18.6","client_version":"1.7.4","python_version":"3.12.3","server_version":"1.7.4","status":"failed","path":"/home/zuul/src/opendev.org/openstack/openstack-ansible/playbooks/setup-openstack.yml","controller":"aio1.openstack.local","user":"root"},"content":"---\n# Copyright 2014, Rackspace US, Inc.\n#\n# Licensed under the Apache License, Version 2.0 (the \"License\");\n# you may not use this file except in compliance with the License.\n# You may obtain a copy of the License at\n#\n#     http://www.apache.org/licenses/LICENSE-2.0\n#\n# Unless required by applicable law or agreed to in writing, software\n# distributed under the License is distributed on an \"AS IS\" BASIS,\n# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.\n# See the License for the specific language governing permissions and\n# limitations under the License.\n\n# NOTE(cloudnull): This task is required to copy rootwrap filters that we need\n#                  and cinder does not provide by default.\n- name: Create aux cinder dir\n  ansible.builtin.file:\n    path: \"/etc/cinder/rootwrap.d\"\n    state: \"directory\"\n    owner: \"root\"\n    group: \"root\"\n    mode: \"0750\"\n\n- name: Generate cinder config\n  openstack.config_template.config_template:\n    src: \"cinder.conf.j2\"\n    dest: \"/etc/cinder/cinder.conf\"\n    owner: \"root\"\n    group: \"{{ cinder_system_group_name }}\"\n    mode: \"0640\"\n    config_overrides: \"{{ cinder_cinder_conf_overrides }}\"\n    config_type: \"ini\"\n  notify:\n    - Restart cinder services\n    - Restart uwsgi services\n  tags:\n    - cinder-config\n    - cinder-post-install\n\n# TODO(cloudnull): Once \"master\" OSA is using a recent pull for\n#                  cinder this task and templte can be removed.\n- name: Copy cinder configs\n  openstack.config_template.config_template:\n    src: \"{{ item.src }}\"\n    dest: \"{{ item.dest }}\"\n    owner: \"root\"\n    group: \"{{ item.group | default(cinder_system_group_name) }}\"\n    mode: \"0640\"\n    config_overrides: \"{{ item.config_overrides }}\"\n    config_type: \"{{ item.config_type }}\"\n  with_items:\n    - src: \"resource_filters.json.j2\"\n      dest: \"/etc/cinder/resource_filters.json\"\n      config_overrides: \"{{ cinder_resource_filters_overrides }}\"\n      config_type: \"json\"\n  notify:\n    - Restart cinder services\n    - Restart uwsgi services\n  tags:\n    - cinder-config\n    - cinder-post-install\n\n- name: Place policy.yaml file\n  openstack.config_template.config_template:\n    content: \"{{ cinder_policy_overrides }}\"\n    dest: \"/etc/cinder/policy.yaml\"\n    owner: \"root\"\n    group: \"{{ cinder_system_group_name }}\"\n    mode: \"0640\"\n    config_type: yaml\n  when:\n    - cinder_services['cinder-api']['group'] in group_names\n  tags:\n    - cinder-config\n    - cinder-policy-override\n\n# NOTE(cloudnull): This is using \"cp\" instead of copy with a remote_source\n#                  because we only want to copy the original files once. and we\n#                  don't want to need multiple tasks.\n- name: Preserve original configuration file(s)\n  ansible.builtin.command: \"cp {{ item.target_f }} {{ item.target_f }}.original\"\n  args:\n    creates: \"{{ item.target_f }}.original\"\n  with_items: \"{{ cinder_core_files }}\"\n\n- name: Fetch override files\n  ansible.builtin.fetch:\n    src: \"{{ item.target_f }}.original\"\n    dest: \"{{ item.tmp_f }}\"\n    flat: true\n  changed_when: false\n  with_items: \"{{ cinder_core_files }}\"\n  run_once: true\n  check_mode: false\n\n- name: Copy common config\n  openstack.config_template.config_template:\n    src: \"{{ item.tmp_f }}\"\n    dest: \"{{ item.target_f }}\"\n    owner: \"{{ item.owner | default('root') }}\"\n    group: \"{{ item.group | default(cinder_system_group_name) }}\"\n    mode: \"{{ item.mode | default('0640') }}\"\n    config_overrides: \"{{ item.config_overrides }}\"\n    config_type: \"{{ item.config_type }}\"\n  with_items: \"{{ cinder_core_files }}\"\n  notify:\n    - Restart cinder services\n    - Restart uwsgi services\n\n- name: Cleanup fetched temp files\n  ansible.builtin.file:\n    path: \"{{ item.tmp_f }}\"\n    state: absent\n  changed_when: false\n  delegate_to: localhost\n  with_items: \"{{ cinder_core_files }}\"\n\n# NOTE(cloudnull): This will ensure strong permissions on all rootwrap files.\n# NOTE(noonedeadpunk): X keeps execute permissions for rootwrap.d itself.\n- name: Set rootwrap.d permissions\n  ansible.builtin.file:\n    path: \"/etc/cinder/rootwrap.d\"\n    owner: \"root\"\n    group: \"root\"\n    mode: \"u=rwX,g=rX,o=\"\n    recurse: true\n\n- name: Ensure cinder tgt include\n  ansible.builtin.lineinfile:\n    dest: /etc/tgt/targets.conf\n    line: \"include /var/lib/cinder/volumes/*\"\n    state: present\n  notify: Ensure tgt service restarted\n  when:\n    - cinder_services['cinder-volume']['group'] in group_names\n    - cinder_target_helper == 'tgtadm'\n    - cinder_backend_lvm_inuse | bool\n\n- name: Ensure iscsi service is started\n  ansible.builtin.service:\n    name: \"{{ tgt_service_name }}\"\n    state: started\n    enabled: true\n  when:\n    - cinder_services['cinder-volume']['group'] in group_names\n    - cinder_target_helper == 'lioadm'\n    - cinder_backend_lvm_inuse | bool\n\n# NOTE(jrosser) it is necessarry to start the iscsid service to\n# generate an initiator uuid if one is not already present\n- name: Ensure iscsid service is started\n  ansible.builtin.service:\n    name: \"iscsid\"\n    state: started\n    enabled: true\n  when:\n    - cinder_services['cinder-volume']['group'] in group_names\n    - cinder_backend_lvm_inuse | bool\n\n- name: Create nfs shares export file\n  ansible.builtin.template:\n    src: nfs_shares.j2\n    dest: \"{{ item.value.nfs_shares_config }}\"\n    mode: \"0644\"\n  with_dict: \"{{ cinder_backends | default({}) }}\"\n  when:\n    - cinder_services['cinder-volume']['group'] in group_names\n    - item.value.nfs_shares_config is defined\n  tags:\n    - cinder-nfs\n\n- name: Drop sudoers file\n  ansible.builtin.template:\n    src: \"sudoers.j2\"\n    dest: \"/etc/sudoers.d/{{ cinder_system_user_name }}_sudoers\"\n    mode: \"0440\"\n    owner: \"root\"\n    group: \"root\"\n","created":"2025-12-08T13:39:57.179464Z","updated":"2025-12-08T13:39:57.179495Z","path":"/home/zuul/src/opendev.org/openstack/openstack-ansible-os_cinder/tasks/cinder_post_install.yml"}