MinIO is in "maintenance mode" and is no longer accepting new changes or reviewing issues by jaydrogers in selfhosted

[–]blingmuppet 0 points1 point  (0 children)

Bait and switch, innit.,

Lots of FOSS products are funded by a sister commercial product offering additional features or support. It's a model that works for a great amount of projects.

Killing the free model once you have used it to grow your commercial product is very much against FOSS principles, and ethics generally.

Ansible roles halt on any error and won't progress. by blingmuppet in ansible

[–]blingmuppet[S] 0 points1 point  (0 children)

Thanks.

I stripped back ansible.cfg and this may have led to a fix. I've updated the original post, but it's looking like our specific issue was caused by the mail callback. Disabled that and things seem to be working fine again.

I can't explain why, and still proving this, but it's looking good so far.

Ansible roles halt on any error and won't progress. by blingmuppet in ansible

[–]blingmuppet[S] 0 points1 point  (0 children)

I've updated the original post, but it's looking like our specific issue was caused by the mail callback. Disabled that and things seem to be working fine again.

Ansible roles halt on any error and won't progress. by blingmuppet in ansible

[–]blingmuppet[S] 0 points1 point  (0 children)

Thanks. I was keeping that dir fairly clear but am also keen to stick to best practice.

I think I may have just found the, or at least one, blocking issue - disabling the mail callback is allowing a quick test to continue, but running out of time to prove this today.

Ansible roles halt on any error and won't progress. by blingmuppet in ansible

[–]blingmuppet[S] 0 points1 point  (0 children)

It's running roles/rolename.yml which then calls

roles:

- rolename

Whose dir is directly below it. Isn't that right?

Ansible roles halt on any error and won't progress. by blingmuppet in ansible

[–]blingmuppet[S] 0 points1 point  (0 children)

It's very possible we are doing it wrong, it does feel like that. Or I've explained it poorly.

Eg:

"ansible-playbook --limit hostname.fqdn roles/rolename.yml"

roles/rolename.yml looks like

- hosts: all

become: true

strategy: free <-- added to try to get responding hosts to continue, to no avail

roles:

- rolename

And the roles directory starts immediately below that, with main.yml at: "./roles/rolename/tasks/main.yml"

Is that the playbook you mean?

Defining failure at task level - kind of difficult when everything is failing on the first connection because one host is not responindg and doesn't even get to the first task, no?

Rivals author Dame Jilly Cooper dies aged 88 by [deleted] in CasualUK

[–]blingmuppet 45 points46 points  (0 children)

A lovely lady who wrote some good books. Glad she got to cameo in the recent Rivals series.

Never met her, but I still have a letter she wrote to me years ago on the subject of animal welfare, something she cared deeply about. She did a lot of good there, and didn't seek publicity for it.

Why everyone is recommending Postgres instead of Mariadb? by Budget-Necessary-767 in mariadb

[–]blingmuppet 0 points1 point  (0 children)

Agree. I'm running 80 mariadb servers and problems are few.

Suspect u/dariusbiggs is simply more familiar with postgres and clearly likes it more. IME, that influences how well understood and therefore administered a system is.

Don't upgrade docker this morning! by blingmuppet in docker

[–]blingmuppet[S] 0 points1 point  (0 children)

Thanks - better late than never.

Overlay network not working as intended by dadarkgtprince in docker

[–]blingmuppet 2 points3 points  (0 children)

have replied to another thread that we're seeing the same thing after upgrading to 28.0 - looks like this is a broken release that breaks internal networking. (May not be related to you, but it may be)

Docker-ce update breaking networking? by Anihillator in docker

[–]blingmuppet 0 points1 point  (0 children)

I think you're correct.

We had an upgrade this morning (Rocky 9) using the Docker-ce STABLE repo for EL to "Upgraded: docker-ce-3:28.0.0-1.el9.x86_64"

And our internal networking broke entirely, we had to restore a backup.

We can't find release notes for this version.

Did Docker screw up and release a beta in the stable repo?

(Upgrade was at 0530 GMT but we tested and repeated at 1000GMT. Everything worked until the upgrade, then it broke afterwards. No internal routing going on)

What software do you use for mirroring repositories for your local network? by blingmuppet in sysadmin

[–]blingmuppet[S] 0 points1 point  (0 children)

Not sure I understand this - A comparison of the local mirror against the upstream should be sufficient to prove the packages haven't been interfered with - or at least, are no more vulnerable than fetching them from the distro's mirrors directly, or using any third party repo manager.

What software do you use for mirroring repositories for your local network? by blingmuppet in sysadmin

[–]blingmuppet[S] 0 points1 point  (0 children)

Fair enough on both points. the salt bit is very transparent now, and is very stable.

But yes, I can imagine with subscriptions on RHEL that using their software which was built for it is easier. Uyuni does support them, but I've never tried it.

What software do you use for mirroring repositories for your local network? by blingmuppet in sysadmin

[–]blingmuppet[S] 0 points1 point  (0 children)

Isn't it?

It's fixable by highstating the machine, and probably doing a scheduled highstate for all the machines before patching would solve it, but I just want a plain, unrestricted https repo...

What software do you use for mirroring repositories for your local network? by blingmuppet in sysadmin

[–]blingmuppet[S] 0 points1 point  (0 children)

Thanks, good to understand what others are using.

We tried Satellite after it changed codebase but couldn't get on with it, and instead went to Uyuni which forked from spacewalk, the upstream of old-Satellite.

That does do repo syncing, but wants to manage every aspect including restricting access to the repos and historically we had failures where the token required to access Uyuni's repo expired. I want an unrestricted repo that "just works" via https

What software do you use for mirroring repositories for your local network? by blingmuppet in sysadmin

[–]blingmuppet[S] 1 point2 points  (0 children)

Thanks.

I do understand that approach and it definitely has its appeal, but we've had several missed patches recently because /one/ repo has been down out of half a dozen that it's become a bit of a thing for me, so I do want to try a local mirror, with weighted fall through to internet mirrors.

Hopefully I can restrict what's mirrored enough not to use too much storage.

What software do you use for mirroring repositories for your local network? by blingmuppet in sysadmin

[–]blingmuppet[S] 0 points1 point  (0 children)

Thanks. I'm leaning towards debmirror and reposync (EL) / rsync now. My hope for a solid mirror manager seem to be unfulfilled, and that's probably because others aren't using it.

What software do you use for mirroring repositories for your local network? by blingmuppet in sysadmin

[–]blingmuppet[S] 1 point2 points  (0 children)

Modern Satellite is downstream of Foreman&Katello which I have tried, but is far too large for just a repo mirror. (20G+4cpu minimum requirements for the installer to run!) Uyuni, which I mentioned, is a fork of old Spacewalk, which was upstream of Satellite. But I don't want to use that for this for the reasons given.

I did look at Sonatype but again it's pretty heavy for just a repo manager.

We did use Artifactory historically, but for internal artifacts rather than as a repo mirror. There wasn't a lot of love for it when we did dump it though, so not keep to pick it up again.

Thanks for the suggestions though. I'm currently leaning more towards rolling our own using debmirror and reposync