You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@cloudstack.apache.org by "ASF GitHub Bot (JIRA)" <ji...@apache.org> on 2017/03/07 04:58:32 UTC

[jira] [Commented] (CLOUDSTACK-9725) Failed to update VPC Network during N/w offering Upgrade which doesnt have ACL service Enabled. check if acl service provider is configured when network is associated with a acl.

    [ https://issues.apache.org/jira/browse/CLOUDSTACK-9725?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15898750#comment-15898750 ] 

ASF GitHub Bot commented on CLOUDSTACK-9725:
--------------------------------------------

Github user jayapalu commented on the issue:

    https://github.com/apache/cloudstack/pull/1970
  
    Code LGTM


> Failed to update VPC Network during N/w offering Upgrade which doesnt have ACL service Enabled.     check if acl service provider is configured when network is associated with a acl.
> --------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
>
>                 Key: CLOUDSTACK-9725
>                 URL: https://issues.apache.org/jira/browse/CLOUDSTACK-9725
>             Project: CloudStack
>          Issue Type: Bug
>      Security Level: Public(Anyone can view this level - this is the default.) 
>          Components: Management Server
>            Reporter: Bharat Kumar
>            Assignee: Bharat Kumar
>             Fix For: 4.9.0
>
>
> - Create a VPC set up with default Offering : " Default VPC offering ".
> - Create a tier T1 with default offering : " Offering for Isolated Vpc networks with Source Nat service enabled".
> - Perform few operation such as Deploy instance , configure Public IP etc.
> - CReate a new VPC network offering (vpc1) which doesnt have ' Network ACL' service enabled.
> - Now try to Update the offering ID of T1 with the new offering (vpc1).
> Observations : 
> - Since this is a network offering degrade ( i.e it doesnt have Network ACL service as compared to the existing default offering ) it throws a status message saying [ "  The new offering:vpc1 will remove the following services [NetworkACL, PortForwarding, StaticNat, UserData, Vpn]along with all the related configuration currently in use. will not proceed with the network update.set forced parameter to true for forcing an update.]
> - after issuing an API with forced parameter set to true following is the exception observed : 
> -  When a tier is created with a VPC network offering which doesnt have ACL service enabled : following error message is observed " Cannot apply NetworkACL. Network Offering does not support NetworkACL service "
> 2016-01-04 16:42:01,140 DEBUG [c.c.a.m.DirectAgentAttache] (DirectAgent-244:ctx-056cc899) (logid:877ad8b1) Seq 6-5478347471719527904: Response Received:
> 2016-01-04 16:42:01,143 DEBUG [c.c.a.t.Request] (DirectAgent-244:ctx-056cc899) (logid:877ad8b1) Seq 6-5478347471719527904: Processing:  { Ans: , MgmtId: 7203499016310, via: 6(10.147.28.36), Ver: v1, Flags: 10, [{"com.cloud.agent.api.Answer":{"result":true,"details":"Command aggregation started","wait":0}}] }
> 2016-01-04 16:42:01,143 DEBUG [c.c.a.t.Request] (API-Job-Executor-92:ctx-69f77f83 job-527 ctx-8ba1c852) (logid:877ad8b1) Seq 6-5478347471719527904: Received:  { Ans: , MgmtId: 7203499016310, via: 6(10.147.28.36), Ver: v1, Flags: 10, { Answer } }
> 2016-01-04 16:42:01,144 DEBUG [o.a.c.e.o.NetworkOrchestrator] (API-Job-Executor-92:ctx-69f77f83 job-527 ctx-8ba1c852) (logid:877ad8b1) Reprogramming network Ntwk[222|Guest|20] as a part of network implement
> 2016-01-04 16:42:01,197 DEBUG [c.c.n.f.FirewallManagerImpl] (API-Job-Executor-92:ctx-69f77f83 job-527 ctx-8ba1c852) (logid:877ad8b1) There are no firewall rules to apply
> 2016-01-04 16:42:01,267 DEBUG [c.c.n.r.RulesManagerImpl] (API-Job-Executor-92:ctx-69f77f83 job-527 ctx-8ba1c852) (logid:877ad8b1) There are no static nat to apply for network id=222
> 2016-01-04 16:42:01,274 DEBUG [c.c.n.f.FirewallManagerImpl] (API-Job-Executor-92:ctx-69f77f83 job-527 ctx-8ba1c852) (logid:877ad8b1) There are no firewall rules to apply
> 2016-01-04 16:42:01,304 DEBUG [c.c.n.r.RulesManagerImpl] (API-Job-Executor-92:ctx-69f77f83 job-527 ctx-8ba1c852) (logid:877ad8b1) There are no port forwarding rules to apply for network id=222
> 2016-01-04 16:42:01,321 DEBUG [c.c.n.r.RulesManagerImpl] (API-Job-Executor-92:ctx-69f77f83 job-527 ctx-8ba1c852) (logid:877ad8b1) There are no static nat rules to apply for network id=222
> 2016-01-04 16:42:01,391 DEBUG [c.c.n.l.LoadBalancingRulesManagerImpl] (API-Job-Executor-92:ctx-69f77f83 job-527 ctx-8ba1c852) (logid:877ad8b1) Applying load balancer rules of scheme Public in network id=222
> 2016-01-04 16:42:01,394 DEBUG [c.c.n.l.LoadBalancingRulesManagerImpl] (API-Job-Executor-92:ctx-69f77f83 job-527 ctx-8ba1c852) (logid:877ad8b1) There are no Load Balancing Rules to forward to the network elements
> 2016-01-04 16:42:01,405 DEBUG [c.c.n.l.LoadBalancingRulesManagerImpl] (API-Job-Executor-92:ctx-69f77f83 job-527 ctx-8ba1c852) (logid:877ad8b1) Applying load balancer rules of scheme Internal in network id=222
> 2016-01-04 16:42:01,407 DEBUG [c.c.n.l.LoadBalancingRulesManagerImpl] (API-Job-Executor-92:ctx-69f77f83 job-527 ctx-8ba1c852) (logid:877ad8b1) There are no Load Balancing Rules to forward to the network elements
> 2016-01-04 16:42:01,578 DEBUG [c.c.n.v.NetworkACLManagerImpl] (API-Job-Executor-92:ctx-69f77f83 job-527 ctx-8ba1c852) (logid:877ad8b1) Unable to find NetworkACL service provider for network: 222
> 2016-01-04 16:42:01,589 WARN  [o.a.c.e.o.NetworkOrchestrator] (API-Job-Executor-92:ctx-69f77f83 job-527 ctx-8ba1c852) (logid:877ad8b1) Failed to reapply network ACLs as a part of  of network id=222 restart
> 2016-01-04 16:42:01,627 WARN  [o.a.c.e.o.NetworkOrchestrator] (API-Job-Executor-92:ctx-69f77f83 job-527 ctx-8ba1c852) (logid:877ad8b1) Failed to re-program the network as a part of network Ntwk[222|Guest|20] implement
> 2016-01-04 16:42:01,667 WARN  [c.c.n.NetworkServiceImpl] (API-Job-Executor-92:ctx-69f77f83 job-527 ctx-8ba1c852) (logid:877ad8b1) Failed to implement network Ntwk[222|Guest|20] elements and resources as a part of network update due to
> com.cloud.exception.ResourceUnavailableException: Resource [DataCenter:2] is unreachable: Unable to apply network rules as a part of network Ntwk[222|Guest|20] implement
>         at org.apache.cloudstack.engine.orchestration.NetworkOrchestrator.implementNetworkElementsAndResources(NetworkOrchestrator.java:1145)
>         at com.cloud.network.NetworkServiceImpl.updateGuestNetwork(NetworkServiceImpl.java:2379)
>         at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method)
>         at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:57)
>         at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:43)
>         at java.lang.reflect.Method.invoke(Method.java:601)
>         at org.springframework.aop.support.AopUtils.invokeJoinpointUsingReflection(AopUtils.java:317)
>         at org.springframework.aop.framework.ReflectiveMethodInvocation.invokeJoinpoint(ReflectiveMethodInvocation.java:183)
>         at org.springframework.aop.framework.ReflectiveMethodInvocation.proceed(ReflectiveMethodInvocation.java:150)
>         at org.apache.cloudstack.network.contrail.management.EventUtils$EventInterceptor.invoke(EventUtils.java:106)
>         at org.springframework.aop.framework.ReflectiveMethodInvocation.proceed(ReflectiveMethodInvocation.java:161)
>         at com.cloud.event.ActionEventInterceptor.invoke(ActionEventInterceptor.java:51)
>         at org.springframework.aop.framework.ReflectiveMethodInvocation.proceed(ReflectiveMethodInvocation.java:161)
>         at org.springframework.aop.interceptor.ExposeInvocationInterceptor.invoke(ExposeInvocationInterceptor.java:91)
>         at org.springframework.aop.framework.ReflectiveMethodInvocation.proceed(ReflectiveMethodInvocation.java:172)
>         at org.springframework.aop.framework.JdkDynamicAopProxy.invoke(JdkDynamicAopProxy.java:204)
>         at $Proxy162.updateGuestNetwork(Unknown Source)
>         at org.apache.cloudstack.api.command.admin.network.UpdateNetworkCmdByAdmin.execute(UpdateNetworkCmdByAdmin.java:51)
>         at com.cloud.api.ApiDispatcher.dispatch(ApiDispatcher.java:150)
>         at com.cloud.api.ApiAsyncJobDispatcher.runJob(ApiAsyncJobDispatcher.java:108)
>         at org.apache.cloudstack.framework.jobs.impl.AsyncJobManagerImpl$5.runInContext(AsyncJobManagerImpl.java:558)
>         at org.apache.cloudstack.managed.context.ManagedContextRunnable$1.run(ManagedContextRunnable.java:49)
>         at org.apache.cloudstack.managed.context.impl.DefaultManagedContext$1.call(DefaultManagedContext.java:56)
>         at org.apache.cloudstack.managed.context.impl.DefaultManagedContext.callWithContext(DefaultManagedContext.java:103)
>         at org.apache.cloudstack.managed.context.impl.DefaultManagedContext.runWithContext(DefaultManagedContext.java:53)
>         at org.apache.cloudstack.managed.context.ManagedContextRunnable.run(ManagedContextRunnable.java:46)
>         at org.apache.cloudstack.framework.jobs.impl.AsyncJobManagerImpl$5.run(AsyncJobManagerImpl.java:505)
>         at java.util.concurrent.Executors$RunnableAdapter.call(Executors.java:471)
>         at java.util.concurrent.FutureTask$Sync.innerRun(FutureTask.java:334)
>         at java.util.concurrent.FutureTask.run(FutureTask.java:166)
>         at java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1110)
>         at java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:603)
>         at java.lang.Thread.run(Thread.java:722)
> 2016-01-04 16:42:01,717 DEBUG [c.c.n.r.VirtualNetworkApplianceManagerImpl] (RouterStatusMonitor-1:ctx-fd20d825) (logid:8af0e0f7) Found 12 routers to update status.
> 2016-01-04 16:42:01,894 ERROR [c.c.a.ApiAsyncJobDispatcher] (API-Job-Executor-92:ctx-69f77f83 job-527) (logid:877ad8b1) Unexpected exception while executing org.apache.cloudstack.api.command.admin.network.UpdateNetworkCmdByAdmin
> com.cloud.utils.exception.CloudRuntimeException: failed to update network 5411b1fc-41d1-4bf8-b9cd-956f182b7772due to Failed to implement network (with specified id) elements and resources as a part of network update
>         at com.cloud.network.NetworkServiceImpl.updateGuestNetwork(NetworkServiceImpl.java:2410)
>         at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method)
>         at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:57)
>         at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:43)
>         at java.lang.reflect.Method.invoke(Method.java:601)
>         at org.springframework.aop.support.AopUtils.invokeJoinpointUsingReflection(AopUtils.java:317)
>         at org.springframework.aop.framework.ReflectiveMethodInvocation.invokeJoinpoint(ReflectiveMethodInvocation.java:183)
>         at org.springframework.aop.framework.ReflectiveMethodInvocation.proceed(ReflectiveMethodInvocation.java:150)
>         at org.apache.cloudstack.network.contrail.management.EventUtils$EventInterceptor.invoke(EventUtils.java:106)
>         at org.springframework.aop.framework.ReflectiveMethodInvocation.proceed(ReflectiveMethodInvocation.java:161)
>         at com.cloud.event.ActionEventInterceptor.invoke(ActionEventInterceptor.java:51)
>         at org.springframework.aop.framework.ReflectiveMethodInvocation.proceed(ReflectiveMethodInvocation.java:161)
>         at org.springframework.aop.interceptor.ExposeInvocationInterceptor.invoke(ExposeInvocationInterceptor.java:91)
>         at org.springframework.aop.framework.ReflectiveMethodInvocation.proceed(ReflectiveMethodInvocation.java:172)
>         at org.springframework.aop.framework.JdkDynamicAopProxy.invoke(JdkDynamicAopProxy.java:204)
>         at $Proxy162.updateGuestNetwork(Unknown Source)
>         at org.apache.cloudstack.api.command.admin.network.UpdateNetworkCmdByAdmin.execute(UpdateNetworkCmdByAdmin.java:51)
>         at com.cloud.api.ApiDispatcher.dispatch(ApiDispatcher.java:150)
>         at com.cloud.api.ApiAsyncJobDispatcher.runJob(ApiAsyncJobDispatcher.java:108)
>         at org.apache.cloudstack.framework.jobs.impl.AsyncJobManagerImpl$5.runInContext(AsyncJobManagerImpl.java:558)
>         at org.apache.cloudstack.managed.context.ManagedContextRunnable$1.run(ManagedContextRunnable.java:49)
>         at org.apache.cloudstack.managed.context.impl.DefaultManagedContext$1.call(DefaultManagedContext.java:56)
>         at org.apache.cloudstack.managed.context.impl.DefaultManagedContext.callWithContext(DefaultManagedContext.java:103)
>         at org.apache.cloudstack.managed.context.impl.DefaultManagedContext.runWithContext(DefaultManagedContext.java:53)
>         at org.apache.cloudstack.managed.context.ManagedContextRunnable.run(ManagedContextRunnable.java:46)
>         at org.apache.cloudstack.framework.jobs.impl.AsyncJobManagerImpl$5.run(AsyncJobManagerImpl.java:505)
>         at java.util.concurrent.Executors$RunnableAdapter.call(Executors.java:471)
>         at java.util.concurrent.FutureTask$Sync.innerRun(FutureTask.java:334)
>         at java.util.concurrent.FutureTask.run(FutureTask.java:166)
>         at java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1110)
>         at java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:603)
>         at java.lang.Thread.run(Thread.java:722)
> 2016-01-04 16:42:01,945 DEBUG [o.a.c.f.j.i.AsyncJobManagerImpl] (API-Job-Executor-92:ctx-69f77f83 job-527) (logid:877ad8b1) Complete async job-527, jobStatus: FAILED, resultCode: 530, result: org.apache.cloudstack.api.response.ExceptionResponse/null/{"uuidList":[],"errorcode":530,"errortext":"failed to update network 5411b1fc-41d1-4bf8-b9cd-956f182b7772due to Failed to implement network (with specified id) elements and resources as a part of network update"}
> 2016-01-04 16:42:01,960 DEBUG [c.c.a.t.Request] (RouterStatusMonitor-1:ctx-fd20d825) (logid:8af0e0f7) Seq 4-3050625797590105821: Sending  { Cmd , MgmtId: 7203499016310, via: 4(Rack3Pod1Host39), Ver: v1, Flags: 100111, [{"com.cloud.agent.api.CheckS2SVpnConnectionsCommand":{"vpnIps":["10.147.30.117"],"accessDetails":{"router.name":"r-27-VM","router.ip":"169.254.1.243"},"wait":30}}] }.



--
This message was sent by Atlassian JIRA
(v6.3.15#6346)