<@phsmoura:fedora.im>
19:00:08
!startmeeting Fedora Infrastructure Ops Daily Standup Meeting
<@meetbot:fedora.im>
19:00:09
Meeting started at 2023-12-05 19:00:08 UTC
<@meetbot:fedora.im>
19:00:09
The Meeting name is 'Fedora Infrastructure Ops Daily Standup Meeting'
<@phsmoura:fedora.im>
19:00:12
!meetingname fedora_infrastructure_ops_daily_standup_meeting
<@phsmoura:fedora.im>
19:00:21
!info meeting is 30 minutes MAX. At the end of 30, its stops !info agenda is at https://board.net/p/fedora-infra-daily
<@phsmoura:fedora.im>
19:00:24
hello
<@nirik:matrix.scrye.com>
19:01:21
!hi
<@zodbot:fedora.im>
19:01:22
Kevin Fenzi (kevin) - he / him / his
<@phsmoura:fedora.im>
19:02:07
!info reminder: speak up if you want to work on a ticket!
<@phsmoura:fedora.im>
19:02:13
!topic Tickets needing review
<@phsmoura:fedora.im>
19:03:16
!ticket 11662
<@zodbot:fedora.im>
19:03:17
fedora-infrastructure #11662 (https://pagure.io/fedora-infrastructure/issue/11662): retrace03 not processing correctly
<@leo:fedora.im>
19:03:17
!hi
<@zodbot:fedora.im>
19:03:18
Leo Puvilland (leo) - he / him / his
<@nirik:matrix.scrye.com>
19:03:49
med med ops? but it's really on retrace folks to fix...
<@nirik:matrix.scrye.com>
19:03:54
I guess I could try rebooting it.
<@phsmoura:fedora.im>
19:04:00
ok
<@phsmoura:fedora.im>
19:04:33
!ticket 11663
<@zodbot:fedora.im>
19:04:33
fedora-infrastructure #11663 (https://pagure.io/fedora-infrastructure/issue/11663): proxies: adjust logrotate to xz logs
<@nirik:matrix.scrye.com>
19:04:43
low low ops.
<@nirik:matrix.scrye.com>
19:04:52
aheath1992 was gonna look at this I think...
<@aheath1992:matrix.org>
19:05:22
Ack
<@phsmoura:fedora.im>
19:06:11
ok, moving to releng
<@phsmoura:fedora.im>
19:06:13
!info https://pagure.io/releng/issues?status=Open
<@phsmoura:fedora.im>
19:06:37
!releng 11823
<@zodbot:fedora.im>
19:06:37
releng #11823 (https://pagure.io/releng/issue/11823): please send openh264-2.3.1-4.fc40 to cisco
<@nirik:matrix.scrye.com>
19:06:53
med med I guess?
<@phsmoura:fedora.im>
19:06:58
+1
<@nirik:matrix.scrye.com>
19:07:02
forgot to ask jednorozec about this one
<@humaton:fedora.im>
19:07:18
oh
<@humaton:fedora.im>
19:07:30
slipped my radar
<@humaton:fedora.im>
19:07:52
will do that I will also include samyak in the mai to cisco so he is aware of how it is done
<@humaton:fedora.im>
19:08:01
*mail
<@nirik:matrix.scrye.com>
19:08:08
can you cc me too? just in case...
<@humaton:fedora.im>
19:08:14
yup
<@nirik:matrix.scrye.com>
19:08:18
and sounds good.
<@humaton:fedora.im>
19:08:35
Its also new person on ciscos side so I hope it will go smoothly
<@nirik:matrix.scrye.com>
19:09:05
fun. As a side note there's been some users hitting issues downloading...
<@nirik:matrix.scrye.com>
19:09:29
but as near as I can tell it's because they are behind proxies/anti-malware stuff that are blocking it
<@phsmoura:fedora.im>
19:10:20
!releng 11824
<@zodbot:fedora.im>
19:10:20
releng #11824 (https://pagure.io/releng/issue/11824): Please remove branches from systemd repo
<@phsmoura:fedora.im>
19:10:33
low low ops?
<@nirik:matrix.scrye.com>
19:10:44
+1
<@leo:fedora.im>
19:10:51
+1
<@phsmoura:fedora.im>
19:11:56
!topic Planning, Upcoming work and Open floor
<@phsmoura:fedora.im>
19:12:05
anything for open floor?
<@nirik:matrix.scrye.com>
19:12:38
Lets see...
<@phsmoura:fedora.im>
19:12:40
I updated the planet PR, not sure about krb5 path tho
<@nirik:matrix.scrye.com>
19:13:06
I'm still waiting on koji devs to move that forward. Trying to catch up on pr's and tickets.
<@leo:fedora.im>
19:13:25
about the proxy, why not just use nginx so we don’t have to deal with ssl?
<@leo:fedora.im>
19:13:30
plain nginx
<@nirik:matrix.scrye.com>
19:13:43
phsmoura: look at the maubot app... basically it gets the keytab in the playbook and puts it in a secret. Then, in your deployment you mount that secret on a path and use it there.
<@nirik:matrix.scrye.com>
19:14:47
does nginx have caching? and that would just be openqa http-> cache -> https -> flathub?
<@leo:fedora.im>
19:14:55
yep!
<@nirik:matrix.scrye.com>
19:15:33
and actually, we could do https all the way... just use a fedoraproject hostname where we have a cert already...
<@nirik:matrix.scrye.com>
19:15:53
I've not used nginx much. If it will work I'm not opposed.
<@leo:fedora.im>
19:15:55
that’s what i was thinking yeah so we could do squid which is an actual dedicated caching solution or use nginx
<@leo:fedora.im>
19:16:17
i’m leaning towards squid because it was intended for this but whatever works
<@nirik:matrix.scrye.com>
19:16:31
openqa -> https://flathub-cache.apps.ocp.fedoraproject.org -> squid or whatever -> https://dl.flathub.org
<@leo:fedora.im>
19:16:37
yes exactly
<@nirik:matrix.scrye.com>
19:17:21
we probibly want to check with the requestor that that will work... it means openqa has to reconfigure to use that host... it's not transparent.
<@leo:fedora.im>
19:17:43
yeah so here’s the thing
<@leo:fedora.im>
19:17:58
for nginx we just give edit the remote for flathub
<@phsmoura:fedora.im>
19:18:08
nirik: that part its mounting keytab?
<@leo:fedora.im>
19:18:13
for squid we would have to use the http_proxy environment var
<@nirik:matrix.scrye.com>
19:19:33
we don't have to do that for squid either. You can just directly hit squid and it works.
<@leo:fedora.im>
19:20:04
ah, okay
<@leo:fedora.im>
19:20:17
well whichever is easier for openqa is probably better then?
<@nirik:matrix.scrye.com>
19:20:38
phsmoura: yeah... so it mounts it at a path in deployment
<@nirik:matrix.scrye.com>
19:20:58
ie, /etc/keytabs or whatever
<@nirik:matrix.scrye.com>
19:21:28
Leo: can you ask in the ticket if that setup will work ok? noting that it will require changing the remote...
<@leo:fedora.im>
19:21:51
ok will do
<@phsmoura:fedora.im>
19:21:58
ok, Ill check how it works and update it, there is a yml claiming the volume
<@phsmoura:fedora.im>
19:23:04
anything else?
<@nirik:matrix.scrye.com>
19:23:18
yeah, it's kinda tricky. I think we should document how it works... ;)
<@nirik:matrix.scrye.com>
19:23:22
nothing else off hand from me.
<@phsmoura:fedora.im>
19:24:46
cool, thanks everyone :)
<@phsmoura:fedora.im>
19:24:53
!endmeeting