8 Ganeti 2.1 brings many improvements with it. Major changes:
10 - Added infrastructure to ease automated disk repairs
11 - Added new daemon to export configuration data in a cheaper way than
13 - Instance NICs can now be routed instead of being associated with a
15 - Improved job locking logic to reduce impact of jobs acquiring multiple
16 locks waiting for other long-running jobs
18 In-depth implementation details can be found in the Ganeti 2.1 design
24 - Added chroot hypervisor
25 - Added more options to xen-hvm hypervisor (``kernel_path`` and
27 - Added more options to xen-pvm hypervisor (``use_bootloader``,
28 ``bootloader_path`` and ``bootloader_args``)
29 - Added the ``use_localtime`` option for the xen-hvm and kvm
30 hypervisors, and the default value for this has changed to false (in
31 2.0 xen-hvm always enabled it)
32 - Added luxi call to submit multiple jobs in one go
33 - Added cluster initialization option to not modify ``/etc/hosts``
35 - Added network interface parameters
36 - Added dry run mode to some LUs
37 - Added RAPI resources:
39 - ``/2/instances/[instance_name]/info``
40 - ``/2/instances/[instance_name]/replace-disks``
41 - ``/2/nodes/[node_name]/evacuate``
42 - ``/2/nodes/[node_name]/migrate``
43 - ``/2/nodes/[node_name]/role``
44 - ``/2/nodes/[node_name]/storage``
45 - ``/2/nodes/[node_name]/storage/modify``
46 - ``/2/nodes/[node_name]/storage/repair``
48 - Added OpCodes to evacuate or migrate all instances on a node
49 - Added new command to list storage elements on nodes (``gnt-node
50 list-storage``) and modify them (``gnt-node modify-storage``)
51 - Added new ssconf files with master candidate IP address
52 (``ssconf_master_candidates_ips``), node primary IP address
53 (``ssconf_node_primary_ips``) and node secondary IP address
54 (``ssconf_node_secondary_ips``)
55 - Added ``ganeti-confd`` and a client library to query the Ganeti
57 - Added ability to run hooks after cluster initialization and before
59 - Added automatic mode for disk replace (``gnt-instance replace-disks
61 - Added ``gnt-instance recreate-disks`` to re-create (empty) disks
62 after catastrophic data-loss
63 - Added ``gnt-node repair-storage`` command to repair damaged LVM volume
65 - Added ``gnt-instance move`` command to move instances
66 - Added ``gnt-cluster watcher`` command to control watcher
67 - Added ``gnt-node powercycle`` command to powercycle nodes
68 - Added new job status field ``lock_status``
69 - Added parseable error codes to cluster verification (``gnt-cluster
70 verify --error-codes``) and made output less verbose (use
71 ``--verbose`` to restore previous behaviour)
72 - Added UUIDs to the main config entities (cluster, nodes, instances)
73 - Added support for OS variants
74 - Added support for hashed passwords in the Ganeti remote API users file
76 - Added option to specify maximum timeout on instance shutdown
77 - Added ``--no-ssh-init`` option to ``gnt-cluster init``
78 - Added new helper script to start and stop Ganeti daemons
79 (``daemon-util``), with the intent to reduce the work necessary to
80 adjust Ganeti for non-Debian distributions and to start/stop daemons
82 - Added more unittests
83 - Fixed critical bug in ganeti-masterd startup
84 - Removed the configure-time ``kvm-migration-port`` parameter, this is
85 now customisable at the cluster level for both the KVM and Xen
86 hypervisors using the new ``migration_port`` parameter
87 - Pass ``INSTANCE_REINSTALL`` variable to OS installation script when
88 reinstalling an instance
89 - Allowed ``@`` in tag names
90 - Migrated to Sphinx (http://sphinx.pocoo.org/) for documentation
91 - Many documentation updates
92 - Distribute hypervisor files on ``gnt-cluster redist-conf``
93 - ``gnt-instance reinstall`` can now reinstall multiple instances
94 - Updated many command line parameters
95 - Introduced new OS API version 15
96 - No longer support a default hypervisor
97 - Treat virtual LVs as inexistent
98 - Improved job locking logic to reduce lock contention
99 - Match instance and node names case insensitively
100 - Reimplemented bash completion script to be more complete
107 - Fix security issue due to missing validation of iallocator names; this
108 allows local and remote execution of arbitrary executables
109 - Fix failure of gnt-node list during instance removal
110 - Ship the RAPI documentation in the archive
116 - Fixed many wrong messages
117 - Fixed a few bugs related to the locking library
118 - Fixed MAC checking at instance creation time
119 - Fixed a DRBD parsing bug related to gaps in /proc/drbd
120 - Fixed a few issues related to signal handling in both daemons and
122 - Fixed the example startup script provided
123 - Fixed insserv dependencies in the example startup script (patch from
125 - Fixed handling of drained nodes in the iallocator framework
126 - Fixed handling of KERNEL_PATH parameter for xen-hvm (Debian bug
128 - Fixed error related to invalid job IDs in job polling
129 - Fixed job/opcode persistence on unclean master shutdown
130 - Fixed handling of partial job processing after unclean master
132 - Fixed error reporting from LUs, previously all errors were converted
133 into execution errors
134 - Fixed error reporting from burnin
135 - Decreased significantly the memory usage of the job queue
136 - Optimised slightly multi-job submission
137 - Optimised slightly opcode loading
138 - Backported the multi-job submit framework from the development
139 branch; multi-instance start and stop should be faster
140 - Added script to clean archived jobs after 21 days; this will reduce
141 the size of the queue directory
142 - Added some extra checks in disk size tracking
143 - Added an example ethers hook script
144 - Added a cluster parameter that prevents Ganeti from modifying of
146 - Added more node information to RAPI responses
147 - Added a ``gnt-job watch`` command that allows following the ouput of a
149 - Added a bind-address option to ganeti-rapi
150 - Added more checks to the configuration verify
151 - Enhanced the burnin script such that some operations can be retried
153 - Converted instance reinstall to multi-instance model
159 - Added ``--ignore-size`` to the ``gnt-instance activate-disks`` command
160 to allow using the pre-2.0.2 behaviour in activation, if any existing
161 instances have mismatched disk sizes in the configuration
162 - Added ``gnt-cluster repair-disk-sizes`` command to check and update
163 any configuration mismatches for disk sizes
164 - Added ``gnt-master cluste-failover --no-voting`` to allow master
165 failover to work on two-node clusters
166 - Fixed the ``--net`` option of ``gnt-backup import``, which was
168 - Fixed detection of OS script errors in ``gnt-backup export``
169 - Fixed exit code of ``gnt-backup export``
175 - Added experimental support for stripped logical volumes; this should
176 enhance performance but comes with a higher complexity in the block
177 device handling; stripping is only enabled when passing
178 ``--with-lvm-stripecount=N`` to ``configure``, but codepaths are
179 affected even in the non-stripped mode
180 - Improved resiliency against transient failures at the end of DRBD
181 resyncs, and in general of DRBD resync checks
182 - Fixed a couple of issues with exports and snapshot errors
183 - Fixed a couple of issues in instance listing
184 - Added display of the disk size in ``gnt-instance info``
185 - Fixed checking for valid OSes in instance creation
186 - Fixed handling of the "vcpus" parameter in instance listing and in
187 general of invalid parameters
188 - Fixed http server library, and thus RAPI, to handle invalid
189 username/password combinations correctly; this means that now they
190 report unauthorized for queries too, not only for modifications,
191 allowing earlier detect of configuration problems
192 - Added a new "role" node list field, equivalent to the master/master
193 candidate/drained/offline flags combinations
194 - Fixed cluster modify and changes of candidate pool size
195 - Fixed cluster verify error messages for wrong files on regular nodes
196 - Fixed a couple of issues with node demotion from master candidate role
197 - Fixed node readd issues
198 - Added non-interactive mode for ``ganeti-masterd --no-voting`` startup
199 - Added a new ``--no-voting`` option for masterfailover to fix failover
200 on two-nodes clusters when the former master node is unreachable
201 - Added instance reinstall over RAPI
207 - added ``-H``/``-B`` startup parameters to ``gnt-instance``, which will
208 allow re-adding the start in single-user option (regression from 1.2)
209 - the watcher writes the instance status to a file, to allow monitoring
210 to report the instance status (from the master) based on cached
211 results of the watcher's queries; while this can get stale if the
212 watcher is being locked due to other work on the cluster, this is
214 - the watcher now also restarts the node daemon and the rapi daemon if
216 - fixed the watcher to handle full and drained queue cases
217 - hooks export more instance data in the environment, which helps if
218 hook scripts need to take action based on the instance's properties
219 (no longer need to query back into ganeti)
220 - instance failovers when the instance is stopped do not check for free
221 RAM, so that failing over a stopped instance is possible in low memory
223 - rapi uses queries for tags instead of jobs (for less job traffic), and
224 for cluster tags it won't talk to masterd at all but read them from
226 - a couple of error handling fixes in RAPI
227 - drbd handling: improved the error handling of inconsistent disks after
228 resync to reduce the frequency of "there are some degraded disks for
229 this instance" messages
230 - fixed a bug in live migration when DRBD doesn't want to reconnect (the
231 error handling path called a wrong function name)
237 - no changes from rc5
240 Version 2.0 release candidate 5
241 -------------------------------
243 - fix a couple of bugs (validation, argument checks)
244 - fix ``gnt-cluster getmaster`` on non-master nodes (regression)
245 - some small improvements to RAPI and IAllocator
246 - make watcher automatically start the master daemon if down
249 Version 2.0 release candidate 4
250 -------------------------------
252 - change the OS list to not require locks; this helps with big clusters
253 - fix ``gnt-cluster verify`` and ``gnt-cluster verify-disks`` when the
254 volume group is broken
255 - ``gnt-instance info``, without any arguments, doesn't run for all
256 instances anymore; either pass ``--all`` or pass the desired
257 instances; this helps against mistakes on big clusters where listing
258 the information for all instances takes a long time
259 - miscellaneous doc and man pages fixes
262 Version 2.0 release candidate 3
263 -------------------------------
265 - Change the internal locking model of some ``gnt-node`` commands, in
266 order to reduce contention (and blocking of master daemon) when
267 batching many creation/reinstall jobs
268 - Fixes to Xen soft reboot
269 - No longer build documentation at build time, instead distribute it in
270 the archive, in order to reduce the need for the whole docbook/rst
274 Version 2.0 release candidate 2
275 -------------------------------
277 - Now the cfgupgrade scripts works and can upgrade 1.2.7 clusters to 2.0
278 - Fix watcher startup sequence, improves the behaviour of busy clusters
279 - Some other fixes in ``gnt-cluster verify``, ``gnt-instance
280 replace-disks``, ``gnt-instance add``, ``gnt-cluster queue``, KVM VNC
281 bind address and other places
282 - Some documentation fixes and updates
285 Version 2.0 release candidate 1
286 -------------------------------
288 - More documentation updates, now all docs should be more-or-less
290 - A couple of small fixes (mixed hypervisor clusters, offline nodes,
292 - Added a customizable HV_KERNEL_ARGS hypervisor parameter (for Xen PVM
294 - Fix an issue related to $libdir/run/ganeti and cluster creation
300 - Xen PVM and KVM have switched the default value for the instance root
301 disk to the first partition on the first drive, instead of the whole
302 drive; this means that the OS installation scripts must be changed
304 - Man pages have been updated
305 - RAPI has been switched by default to HTTPS, and the exported functions
306 should all work correctly
307 - RAPI v1 has been removed
308 - Many improvements to the KVM hypervisor
309 - Block device errors are now better reported
310 - Many other bugfixes and small improvements
316 - Version 2 is a general rewrite of the code and therefore the
317 differences are too many to list, see the design document for 2.0 in
318 the ``doc/`` subdirectory for more details
319 - In this beta version there is not yet a migration path from 1.2 (there
320 will be one in the final 2.0 release)
321 - A few significant changes are:
323 - all commands are executed by a daemon (``ganeti-masterd``) and the
324 various ``gnt-*`` commands are just front-ends to it
325 - all the commands are entered into, and executed from a job queue,
326 see the ``gnt-job(8)`` manpage
327 - the RAPI daemon supports read-write operations, secured by basic
328 HTTP authentication on top of HTTPS
329 - DRBD version 0.7 support has been removed, DRBD 8 is the only
330 supported version (when migrating from Ganeti 1.2 to 2.0, you need
331 to migrate to DRBD 8 first while still running Ganeti 1.2)
332 - DRBD devices are using statically allocated minor numbers, which
333 will be assigned to existing instances during the migration process
334 - there is support for both Xen PVM and Xen HVM instances running on
336 - KVM virtualization is supported too
337 - file-based storage has been implemented, which means that it is
338 possible to run the cluster without LVM and DRBD storage, for
339 example using a shared filesystem exported from shared storage (and
340 still have live migration)
346 - Change the default reboot type in ``gnt-instance reboot`` to "hard"
347 - Reuse the old instance mac address by default on instance import, if
348 the instance name is the same.
349 - Handle situations in which the node info rpc returns incomplete
351 - Add checks for tcp/udp ports collisions in ``gnt-cluster verify``
352 - Improved version of batcher:
355 - instance mac address support
356 - support for HVM clusters/instances
358 - Add an option to show the number of cpu sockets and nodes in
360 - Support OSes that handle more than one version of the OS api (but do
361 not change the current API in any other way)
362 - Fix ``gnt-node migrate``
363 - ``gnt-debug`` man page
364 - Fixes various more typos and small issues
365 - Increase disk resync maximum speed to 60MB/s (from 30MB/s)
371 - new ``--hvm-nic-type`` and ``--hvm-disk-type`` flags to control the
372 type of disk exported to fully virtualized instances.
373 - provide access to the serial console of HVM instances
374 - instance auto_balance flag, set by default. If turned off it will
375 avoid warnings on cluster verify if there is not enough memory to fail
376 over an instance. in the future it will prevent automatically failing
377 it over when we will support that.
378 - batcher tool for instance creation, see ``tools/README.batcher``
379 - ``gnt-instance reinstall --select-os`` to interactively select a new
380 operating system when reinstalling an instance.
381 - when changing the memory amount on instance modify a check has been
382 added that the instance will be able to start. also warnings are
383 emitted if the instance will not be able to fail over, if auto_balance
385 - documentation fixes
386 - sync fields between ``gnt-instance list/modify/add/import``
387 - fix a race condition in drbd when the sync speed was set after giving
388 the device a remote peer.
394 - note: the allowed size and number of tags per object were reduced
395 - fix a bug in ``gnt-cluster verify`` with inconsistent volume groups
396 - fixed twisted 8.x compatibility
397 - fixed ``gnt-instance replace-disks`` with iallocator
398 - add TCP keepalives on twisted connections to detect restarted nodes
399 - disk increase support, see ``gnt-instance grow-disk``
400 - implement bulk node/instance query for RAPI
401 - add tags in node/instance listing (optional)
402 - experimental migration (and live migration) support, read the man page
403 for ``gnt-instance migrate``
404 - the ``ganeti-watcher`` logs are now timestamped, and the watcher also
405 has some small improvements in handling its state file
411 - Experimental readonly, REST-based remote API implementation;
412 automatically started on master node, TCP port 5080, if enabled by
413 ``--enable-rapi`` parameter to configure script.
414 - Instance allocator support. Add and import instance accept a
415 ``--iallocator`` parameter, and call that instance allocator to decide
416 which node to use for the instance. The iallocator document describes
417 what's expected from an allocator script.
418 - ``gnt-cluster verify`` N+1 memory redundancy checks: Unless passed the
419 ``--no-nplus1-mem`` option ``gnt-cluster verify`` now checks that if a
420 node is lost there is still enough memory to fail over the instances
422 - ``gnt-cluster verify`` hooks: it is now possible to add post-hooks to
423 ``gnt-cluster verify``, to check for site-specific compliance. All the
424 hooks will run, and their output, if any, will be displayed. Any
425 failing hook will make the verification return an error value.
426 - ``gnt-cluster verify`` now checks that its peers are reachable on the
427 primary and secondary interfaces
428 - ``gnt-node add`` now supports the ``--readd`` option, to readd a node
429 that is still declared as part of the cluster and has failed.
430 - ``gnt-* list`` commands now accept a new ``-o +field`` way of
431 specifying output fields, that just adds the chosen fields to the
433 - ``gnt-backup`` now has a new ``remove`` command to delete an existing
434 export from the filesystem.
435 - New per-instance parameters hvm_acpi, hvm_pae and hvm_cdrom_image_path
436 have been added. Using them you can enable/disable acpi and pae
437 support, and specify a path for a cd image to be exported to the
438 instance. These parameters as the name suggest only work on HVM
440 - When upgrading an HVM cluster to Ganeti 1.2.4, the values for ACPI and
441 PAE support will be set to the previously hardcoded values, but the
442 (previously hardcoded) path to the CDROM ISO image will be unset and
443 if required, needs to be set manually with ``gnt-instance modify``
445 - The address to which an instance's VNC console is bound is now
446 selectable per-instance, rather than being cluster wide. Of course
447 this only applies to instances controlled via VNC, so currently just
448 applies to HVM clusters.
454 - more tweaks to the disk activation code (especially helpful for DRBD)
455 - change the default ``gnt-instance list`` output format, now there is
456 one combined status field (see the manpage for the exact values this
458 - some more fixes for the mac export to hooks change
459 - make Ganeti not break with DRBD 8.2.x (which changed the version
460 format in ``/proc/drbd``) (issue 24)
461 - add an upgrade tool from "remote_raid1" disk template to "drbd" disk
462 template, allowing migration from DRBD0.7+MD to DRBD8
468 - fix ``gnt-instance modify`` breakage introduced in 1.2.1 with the HVM
470 - add command aliases infrastructure and a few aliases
471 - allow listing of VCPUs in the ``gnt-instance list`` and improve the
472 man pages and the ``--help`` option of ``gnt-node
473 list``/``gnt-instance list``
474 - fix ``gnt-backup list`` with down nodes (issue 21)
475 - change the tools location (move from $pkgdatadir to $pkglibdir/tools)
476 - fix the dist archive and add a check for including svn/git files in
478 - some developer-related changes: improve the burnin and the QA suite,
479 add an upload script for testing during development
485 - experimental HVM support, read the install document, section
486 "Initializing the cluster"
487 - allow for the PVM hypervisor per-instance kernel and initrd paths
488 - add a new command ``gnt-cluster verify-disks`` which uses a new
489 algorithm to improve the reconnection of the DRBD pairs if the device
490 on the secondary node has gone away
491 - make logical volume code auto-activate LVs at disk activation time
492 - slightly improve the speed of activating disks
493 - allow specification of the MAC address at instance creation time, and
494 changing it later via ``gnt-instance modify``
495 - fix handling of external commands that generate lots of output on
497 - update documentation with regard to minimum version of DRBD8 supported
503 - Log the ``xm create`` output to the node daemon log on failure (to
504 help diagnosing the error)
505 - In debug mode, log all external commands output if failed to the logs
506 - Change parsing of lvm commands to ignore stderr
512 - Another round of updates to the DRBD 8 code to deal with more failures
513 in the replace secondary node operation
514 - Some more logging of failures in disk operations (lvm, drbd)
515 - A few documentation updates
522 - Change configuration file format from Python's Pickle to JSON.
523 Upgrading is possible using the cfgupgrade utility.
524 - Add support for DRBD 8.0 (new disk template ``drbd``) which allows for
525 faster replace disks and is more stable (DRBD 8 has many improvements
526 compared to DRBD 0.7)
527 - Added command line tags support (see man pages for ``gnt-instance``,
528 ``gnt-node``, ``gnt-cluster``)
529 - Added instance rename support
530 - Added multi-instance startup/shutdown
531 - Added cluster rename support
532 - Added ``gnt-node evacuate`` to simplify some node operations
533 - Added instance reboot operation that can speedup reboot as compared to
535 - Soften the requirement that hostnames are in FQDN format
536 - The ``ganeti-watcher`` now activates drbd pairs after secondary node
538 - Removed dependency on debian's patched fping that uses the
539 non-standard ``-S`` option
540 - Now the OS definitions are searched for in multiple, configurable
541 paths (easier for distros to package)
542 - Some changes to the hooks infrastructure (especially the new
543 post-configuration update hook)
544 - Other small bugfixes
546 .. vim: set textwidth=72 :