Statistics
| Branch: | Tag: | Revision:

root / NEWS @ 483e3012

History | View | Annotate | Download (127.7 kB)

1
News
2
====
3

    
4

    
5
Version 2.12.0 alpha1
6
---------------------
7

    
8
*(unreleased)*
9

    
10
Incompatible/important changes
11
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
12

    
13
- Do not use debug mode in production. Certain daemons will issue warnings
14
  when launched in debug mode. Some debug logging violates some of the new
15
  invariants in the system (see "New features"). The logging has been kept as
16
  it aids diagnostics and development.
17

    
18
New features
19
~~~~~~~~~~~~
20

    
21
- OS install script parameters now come in public, private and secret
22
  varieties:
23

    
24
  - Public parameters are like all other parameters in Ganeti.
25
  - Ganeti will not log private and secret parameters, *unless* it is running
26
    in debug mode.
27
  - Ganeti will not save secret parameters to configuration. Secret parameters
28
    must be supplied every time you install, or reinstall, an instance.
29
  - Attempting to override public parameters with private or secret parameters
30
    results in an error. Similarly, you may not use secret parameters to
31
    override private parameters.
32

    
33

    
34
Version 2.11.0 alpha1
35
---------------------
36

    
37
*(unreleased)*
38

    
39
Incompatible/important changes
40
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
41

    
42
- ``gnt-node list`` no longer shows disk space information for shared file
43
  disk templates because it is not a node attribute. (For example, if you have
44
  both the file and shared file disk templates enabled, ``gnt-node list`` now
45
  only shows information about the file disk template.)
46
- The shared file disk template is now in the new 'sharedfile' storage type.
47
  As a result, ``gnt-node list-storage -t file`` now only shows information
48
  about the file disk template and you may use ``gnt-node list-storage -t
49
  sharedfile`` to query storage information for the shared file disk template.
50
- Over luxi, syntactially incorrect queries are now rejected as a whole;
51
  before, a 'SumbmitManyJobs' request was partially executed, if the outer
52
  structure of the request was syntactically correct. As the luxi protocol
53
  is internal (external applications are expected to use RAPI), the impact
54
  of this incompatible change should be limited.
55
- Queries for nodes, instances, groups, backups and networks are now
56
  exclusively done via the luxi daemon. Legacy python code was removed,
57
  as well as the --enable-split-queries configuration option.
58
- Orphan volumes errors are demoted to warnings and no longer affect the exit
59
  code of ``gnt-cluster verify``.
60
- RPC security got enhanced by using different client SSL certificates
61
  for each node. In this context 'gnt-cluster renew-crypto' got a new
62
  option '--renew-node-certificates', which renews the client
63
  certificates of all nodes. After a cluster upgrade from pre-2.11, run
64
  this to create client certificates and activate this feature.
65

    
66
New features
67
~~~~~~~~~~~~
68

    
69
- Instance moves, backups and imports can now use compression to transfer the
70
  instance data.
71
- Node groups can be configured to use an SSH port different than the
72
  default 22.
73
- Added experimental support for Gluster distributed file storage as the
74
  ``gluster`` disk template under the new ``sharedfile`` storage type through
75
  automatic management of per-node FUSE mount points. You can configure the
76
  mount point location at ``gnt-cluster init`` time by using the new
77
  ``--gluster-storage-dir`` switch.
78
- Job scheduling is now handled by luxid, and the maximal number of jobs running
79
  in parallel is a run-time parameter of the cluster.
80

    
81
New dependencies
82
~~~~~~~~~~~~~~~~
83
The following new dependencies have been added:
84

    
85
For Haskell:
86

    
87
- ``zlib`` library (http://hackage.haskell.org/package/base64-bytestring)
88

    
89
- ``base64-bytestring`` library (http://hackage.haskell.org/package/zlib),
90
  at least version 1.0.0.0
91

    
92

    
93
Version 2.10.0 rc1
94
------------------
95

    
96
*(Released Tue, 17 Dec 2013)*
97

    
98
Incompatible/important changes
99
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
100

    
101
- Adding disks with 'gnt-instance modify' now waits for the disks to sync per
102
  default. Specify --no-wait-for-sync to override this behavior.
103
- The Ganeti python code now adheres to a private-module layout. In particular,
104
  the module 'ganeti' is no longer in the python search path.
105
- On instance allocation, the iallocator now considers non-LVM storage
106
  properly. In particular, actual file storage space information is used
107
  when allocating space for a file/sharedfile instance.
108
- When disabling disk templates cluster-wide, the cluster now first
109
  checks whether there are instances still using those templates.
110
- 'gnt-node list-storage' now also reports storage information about
111
  file-based storage types.
112
- In case of non drbd instances, export \*_SECONDARY environment variables
113
  as empty strings (and not "None") during 'instance-migrate' related hooks.
114

    
115
New features
116
~~~~~~~~~~~~
117

    
118
- KVM hypervisors can now access RBD storage directly without having to
119
  go through a block device.
120
- A new command 'gnt-cluster upgrade' was added that automates the upgrade
121
  procedure between two Ganeti versions that are both 2.10 or higher.
122
- The move-instance command can now change disk templates when moving
123
  instances, and does not require any node placement options to be
124
  specified if the destination cluster has a default iallocator.
125
- Users can now change the soundhw and cpuid settings for XEN hypervisors.
126
- Hail and hbal now have the (optional) capability of accessing average CPU
127
  load information through the monitoring deamon, and to use it to dynamically
128
  adapt the allocation of instances.
129
- Hotplug support. Introduce new option '--hotplug' to ``gnt-instance modify``
130
  so that disk and NIC modifications take effect without the need of actual
131
  reboot. There are a couple of constrains currently for this feature:
132

    
133
   - only KVM hypervisor (versions >= 1.0) supports it,
134
   - one can not (yet) hotplug a disk using userspace access mode for RBD
135
   - in case of a downgrade instances should suffer a reboot in order to
136
     be migratable (due to core change of runtime files)
137

    
138
Misc changes
139
~~~~~~~~~~~~
140

    
141
- A new test framework for logical units was introduced and the test
142
  coverage for logical units was improved significantly.
143
- Opcodes are entirely generated from Haskell using the tool 'hs2py' and
144
  the module 'src/Ganeti/OpCodes.hs'.
145
- Constants are also generated from Haskell using the tool
146
  'hs2py-constants' and the module 'src/Ganeti/Constants.hs', with the
147
  exception of socket related constants, which require changing the
148
  cluster configuration file, and HVS related constants, because they
149
  are part of a port of instance queries to Haskell.  As a result, these
150
  changes will be part of the next release of Ganeti.
151

    
152
New dependencies
153
~~~~~~~~~~~~~~~~
154

    
155
The following new dependencies have been added/updated.
156

    
157
Python
158

    
159
- The version requirements for ``python-mock`` have increased to at least
160
  version 1.0.1. It is still used for testing only.
161

    
162
Since 2.10.0 beta1
163
~~~~~~~~~~~~~~~~~~
164

    
165
- All known issues in 2.10.0 beta1 have been resolved (see changes from
166
  the 2.8 branch).
167
- Improve handling of KVM runtime files from earlier Ganeti versions
168
- Documentation fixes
169

    
170
Inherited from the 2.9 branch:
171

    
172
- use custom KVM path if set for version checking
173
- SingleNotifyPipeCondition: don't share pollers
174

    
175
Inherited from the 2.8 branch:
176

    
177
- Fixed Luxi daemon socket permissions after master-failover
178
- Improve IP version detection code directly checking for colons rather than
179
  passing the family from the cluster object
180
- Fix NODE/NODE_RES locking in LUInstanceCreate by not acquiring NODE_RES locks
181
  opportunistically anymore (Issue 622)
182
- Allow link local IPv6 gateways (Issue 624)
183
- Fix error printing (Issue 616)
184
- Fix a bug in InstanceSetParams concerning names: in case no name is passed in
185
  disk modifications, keep the old one. If name=none then set disk name to
186
  None.
187
- Update build_chroot script to work with the latest hackage packages
188
- Add a packet number limit to "fping" in master-ip-setup (Issue 630)
189
- Fix evacuation out of drained node (Issue 615)
190
- Add default file_driver if missing (Issue 571)
191
- Fix job error message after unclean master shutdown (Issue 618)
192
- Lock group(s) when creating instances (Issue 621)
193
- SetDiskID() before accepting an instance (Issue 633)
194
- Allow the ext template disks to receive arbitrary parameters, both at creation
195
  time and while being modified
196
- Xen handle domain shutdown (future proofing cherry-pick)
197
- Refactor reading live data in htools (future proofing cherry-pick)
198

    
199

    
200
Version 2.10.0 beta1
201
--------------------
202

    
203
*(Released Wed, 27 Nov 2013)*
204

    
205
This was the first beta release of the 2.10 series. All important changes
206
are listed in the latest 2.10 entry.
207

    
208
Known issues
209
~~~~~~~~~~~~
210

    
211
The following issues are known to be present in the beta and will be fixed
212
before rc1.
213

    
214
- Issue 477: Wrong permissions for confd LUXI socket
215
- Issue 621: Instance related opcodes do not aquire network/group locks
216
- Issue 622: Assertion Error: Node locks differ from node resource locks
217
- Issue 623: IPv6 Masterd <-> Luxid communication error
218

    
219

    
220
Version 2.9.3
221
-------------
222

    
223
*(Released Mon, 27 Jan 2014)*
224

    
225
- Ensure that all the hypervisors exist in the config file (Issue 640)
226
- Correctly recognise the role as master node (Issue 687)
227
- configure: allow detection of Sphinx 1.2+ (Issue 502)
228
- gnt-instance now honors the KVM path correctly (Issue 691)
229

    
230
Inherited from the 2.8 branch:
231

    
232
- Change the list separator for the usb_devices parameter from comma to space.
233
  Commas could not work because they are already the hypervisor option
234
  separator (Issue 649)
235
- Add support for blktap2 file-driver (Issue 638)
236
- Add network tag definitions to the haskell codebase (Issue 641)
237
- Fix RAPI network tag handling
238
- Add the network tags to the tags searched by gnt-cluster search-tags
239
- Fix caching bug preventing jobs from being cancelled
240
- Start-master/stop-master was always failing if ConfD was disabled. (Issue 685)
241

    
242

    
243
Version 2.9.2
244
-------------
245

    
246
*(Released Fri, 13 Dec 2013)*
247

    
248
- use custom KVM path if set for version checking
249
- SingleNotifyPipeCondition: don't share pollers
250

    
251
Inherited from the 2.8 branch:
252

    
253
- Fixed Luxi daemon socket permissions after master-failover
254
- Improve IP version detection code directly checking for colons rather than
255
  passing the family from the cluster object
256
- Fix NODE/NODE_RES locking in LUInstanceCreate by not acquiring NODE_RES locks
257
  opportunistically anymore (Issue 622)
258
- Allow link local IPv6 gateways (Issue 624)
259
- Fix error printing (Issue 616)
260
- Fix a bug in InstanceSetParams concerning names: in case no name is passed in
261
  disk modifications, keep the old one. If name=none then set disk name to
262
  None.
263
- Update build_chroot script to work with the latest hackage packages
264
- Add a packet number limit to "fping" in master-ip-setup (Issue 630)
265
- Fix evacuation out of drained node (Issue 615)
266
- Add default file_driver if missing (Issue 571)
267
- Fix job error message after unclean master shutdown (Issue 618)
268
- Lock group(s) when creating instances (Issue 621)
269
- SetDiskID() before accepting an instance (Issue 633)
270
- Allow the ext template disks to receive arbitrary parameters, both at creation
271
  time and while being modified
272
- Xen handle domain shutdown (future proofing cherry-pick)
273
- Refactor reading live data in htools (future proofing cherry-pick)
274

    
275

    
276
Version 2.9.1
277
-------------
278

    
279
*(Released Wed, 13 Nov 2013)*
280

    
281
- fix bug, that kept nodes offline when readding
282
- when verifying DRBD versions, ignore unavailable nodes
283
- fix bug that made the console unavailable on kvm in split-user
284
  setup (issue 608)
285
- DRBD: ensure peers are UpToDate for dual-primary (inherited 2.8.2)
286

    
287

    
288
Version 2.9.0
289
-------------
290

    
291
*(Released Tue, 5 Nov 2013)*
292

    
293
Incompatible/important changes
294
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
295

    
296
- hroller now also plans for capacity to move non-redundant instances off
297
  any node to be rebooted; the old behavior of completely ignoring any
298
  non-redundant instances can be restored by adding the --ignore-non-redundant
299
  option.
300
- The cluster option '--no-lvm-storage' was removed in favor of the new option
301
  '--enabled-disk-templates'.
302
- On instance creation, disk templates no longer need to be specified
303
  with '-t'. The default disk template will be taken from the list of
304
  enabled disk templates.
305
- The monitoring daemon is now running as root, in order to be able to collect
306
  information only available to root (such as the state of Xen instances).
307
- The ConfD client is now IPv6 compatible.
308
- File and shared file storage is no longer dis/enabled at configure time,
309
  but using the option '--enabled-disk-templates' at cluster initialization and
310
  modification.
311
- The default directories for file and shared file storage are not anymore
312
  specified at configure time, but taken from the cluster's configuration.
313
  They can be set at cluster initialization and modification with
314
  '--file-storage-dir' and '--shared-file-storage-dir'.
315
- Cluster verification now includes stricter checks regarding the
316
  default file and shared file storage directories. It now checks that
317
  the directories are explicitely allowed in the 'file-storage-paths' file and
318
  that the directories exist on all nodes.
319
- The list of allowed disk templates in the instance policy and the list
320
  of cluster-wide enabled disk templates is now checked for consistency
321
  on cluster or group modification. On cluster initialization, the ipolicy
322
  disk templates are ensured to be a subset of the cluster-wide enabled
323
  disk templates.
324

    
325
New features
326
~~~~~~~~~~~~
327

    
328
- DRBD 8.4 support. Depending on the installed DRBD version, Ganeti now uses
329
  the correct command syntax. It is possible to use different DRBD versions
330
  on different nodes as long as they are compatible to each other. This
331
  enables rolling upgrades of DRBD with no downtime. As permanent operation
332
  of different DRBD versions within a node group is discouraged,
333
  ``gnt-cluster verify`` will emit a warning if it detects such a situation.
334
- New "inst-status-xen" data collector for the monitoring daemon, providing
335
  information about the state of the xen instances on the nodes.
336
- New "lv" data collector for the monitoring daemon, collecting data about the
337
  logical volumes on the nodes, and pairing them with the name of the instances
338
  they belong to.
339
- New "diskstats" data collector, collecting the data from /proc/diskstats and
340
  presenting them over the monitoring daemon interface.
341
- The ConfD client is now IPv6 compatible.
342

    
343
New dependencies
344
~~~~~~~~~~~~~~~~
345
The following new dependencies have been added.
346

    
347
Python
348

    
349
- ``python-mock`` (http://www.voidspace.org.uk/python/mock/) is now a required
350
  for the unit tests (and only used for testing).
351

    
352
Haskell
353

    
354
- ``hslogger`` (http://software.complete.org/hslogger) is now always
355
  required, even if confd is not enabled.
356

    
357
Since 2.9.0 rc3
358
~~~~~~~~~~~~~~~
359

    
360
- Correctly start/stop luxid during gnt-cluster master-failover (inherited
361
  from stable-2.8)
362
- Improved error messsages (inherited from stable-2.8)
363

    
364

    
365
Version 2.9.0 rc3
366
-----------------
367

    
368
*(Released Tue, 15 Oct 2013)*
369

    
370
The third release candidate in the 2.9 series. Since 2.9.0 rc2:
371

    
372
- in implicit configuration upgrade, match ipolicy with enabled disk templates
373
- improved harep documentation (inherited from stable-2.8)
374

    
375

    
376
Version 2.9.0 rc2
377
-----------------
378

    
379
*(Released Wed, 9 Oct 2013)*
380

    
381
The second release candidate in the 2.9 series. Since 2.9.0 rc1:
382

    
383
- Fix bug in cfgupgrade that led to failure when upgrading from 2.8 with
384
  at least one DRBD instance.
385
- Fix bug in cfgupgrade that led to an invalid 2.8 configuration after
386
  downgrading.
387

    
388

    
389
Version 2.9.0 rc1
390
-----------------
391

    
392
*(Released Tue, 1 Oct 2013)*
393

    
394
The first release candidate in the 2.9 series. Since 2.9.0 beta1:
395

    
396
- various bug fixes
397
- update of the documentation, in particular installation instructions
398
- merging of LD_* constants into DT_* constants
399
- python style changes to be compatible with newer versions of pylint
400

    
401

    
402
Version 2.9.0 beta1
403
-------------------
404

    
405
*(Released Thu, 29 Aug 2013)*
406

    
407
This was the first beta release of the 2.9 series. All important changes
408
are listed in the latest 2.9 entry.
409

    
410

    
411
Version 2.8.4
412
-------------
413

    
414
*(Released Thu, 23 Jan 2014)*
415

    
416
- Change the list separator for the usb_devices parameter from comma to space.
417
  Commas could not work because they are already the hypervisor option
418
  separator (Issue 649)
419
- Add support for blktap2 file-driver (Issue 638)
420
- Add network tag definitions to the haskell codebase (Issue 641)
421
- Fix RAPI network tag handling
422
- Add the network tags to the tags searched by gnt-cluster search-tags
423
- Fix caching bug preventing jobs from being cancelled
424
- Start-master/stop-master was always failing if ConfD was disabled. (Issue 685)
425

    
426

    
427
Version 2.8.3
428
-------------
429

    
430
*(Released Thu, 12 Dec 2013)*
431

    
432
- Fixed Luxi daemon socket permissions after master-failover
433
- Improve IP version detection code directly checking for colons rather than
434
  passing the family from the cluster object
435
- Fix NODE/NODE_RES locking in LUInstanceCreate by not acquiring NODE_RES locks
436
  opportunistically anymore (Issue 622)
437
- Allow link local IPv6 gateways (Issue 624)
438
- Fix error printing (Issue 616)
439
- Fix a bug in InstanceSetParams concerning names: in case no name is passed in
440
  disk modifications, keep the old one. If name=none then set disk name to
441
  None.
442
- Update build_chroot script to work with the latest hackage packages
443
- Add a packet number limit to "fping" in master-ip-setup (Issue 630)
444
- Fix evacuation out of drained node (Issue 615)
445
- Add default file_driver if missing (Issue 571)
446
- Fix job error message after unclean master shutdown (Issue 618)
447
- Lock group(s) when creating instances (Issue 621)
448
- SetDiskID() before accepting an instance (Issue 633)
449
- Allow the ext template disks to receive arbitrary parameters, both at creation
450
  time and while being modified
451
- Xen handle domain shutdown (future proofing cherry-pick)
452
- Refactor reading live data in htools (future proofing cherry-pick)
453

    
454

    
455
Version 2.8.2
456
-------------
457

    
458
*(Released Thu, 07 Nov 2013)*
459

    
460
- DRBD: ensure peers are UpToDate for dual-primary
461
- Improve error message for replace-disks
462
- More dependency checks at configure time
463
- Placate warnings on ganeti.outils_unittest.py
464

    
465

    
466
Version 2.8.1
467
-------------
468

    
469
*(Released Thu, 17 Oct 2013)*
470

    
471
- Correctly start/stop luxid during gnt-cluster master-failover
472
- Don't attempt IPv6 ssh in case of IPv4 cluster (Issue 595)
473
- Fix path for the job queue serial file
474
- Improved harep man page
475
- Minor documentation improvements
476

    
477

    
478
Version 2.8.0
479
-------------
480

    
481
*(Released Mon, 30 Sep 2013)*
482

    
483
Incompatible/important changes
484
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
485

    
486
- Instance policy can contain multiple instance specs, as described in
487
  the โ€œConstrained instance sizesโ€ section of :doc:`Partitioned Ganeti
488
  <design-partitioned>`. As a consequence, it's not possible to partially change
489
  or override instance specs. Bounding specs (min and max) can be specified as a
490
  whole using the new option ``--ipolicy-bounds-specs``, while standard
491
  specs use the new option ``--ipolicy-std-specs``.
492
- The output of the info command of gnt-cluster, gnt-group, gnt-node,
493
  gnt-instance is a valid YAML object.
494
- hail now honors network restrictions when allocating nodes. This led to an
495
  update of the IAllocator protocol. See the IAllocator documentation for
496
  details.
497
- confd now only answers static configuration request over the network. luxid
498
  was extracted, listens on the local LUXI socket and responds to live queries.
499
  This allows finer grained permissions if using separate users.
500

    
501
New features
502
~~~~~~~~~~~~
503

    
504
- The :doc:`Remote API <rapi>` daemon now supports a command line flag
505
  to always require authentication, ``--require-authentication``. It can
506
  be specified in ``$sysconfdir/default/ganeti``.
507
- A new cluster attribute 'enabled_disk_templates' is introduced. It will
508
  be used to manage the disk templates to be used by instances in the cluster.
509
  Initially, it will be set to a list that includes plain, drbd, if they were
510
  enabled by specifying a volume group name, and file and sharedfile, if those
511
  were enabled at configure time. Additionally, it will include all disk
512
  templates that are currently used by instances. The order of disk templates
513
  will be based on Ganeti's history of supporting them. In the future, the
514
  first entry of the list will be used as a default disk template on instance
515
  creation.
516
- ``cfgupgrade`` now supports a ``--downgrade`` option to bring the
517
  configuration back to the previous stable version.
518
- Disk templates in group ipolicy can be restored to the default value.
519
- Initial support for diskless instances and virtual clusters in QA.
520
- More QA and unit tests for instance policies.
521
- Every opcode now contains a reason trail (visible through ``gnt-job info``)
522
  describing why the opcode itself was executed.
523
- The monitoring daemon is now available. It allows users to query the cluster
524
  for obtaining information about the status of the system. The daemon is only
525
  responsible for providing the information over the network: the actual data
526
  gathering is performed by data collectors (currently, only the DRBD status
527
  collector is available).
528
- In order to help developers work on Ganeti, a new script
529
  (``devel/build_chroot``) is provided, for building a chroot that contains all
530
  the required development libraries and tools for compiling Ganeti on a Debian
531
  Squeeze system.
532
- A new tool, ``harep``, for performing self-repair and recreation of instances
533
  in Ganeti has been added.
534
- Split queries are enabled for tags, network, exports, cluster info, groups,
535
  jobs, nodes.
536
- New command ``show-ispecs-cmd`` for ``gnt-cluster`` and ``gnt-group``.
537
  It prints the command line to set the current policies, to ease
538
  changing them.
539
- Add the ``vnet_hdr`` HV parameter for KVM, to control whether the tap
540
  devices for KVM virtio-net interfaces will get created with VNET_HDR
541
  (IFF_VNET_HDR) support. If set to false, it disables offloading on the
542
  virtio-net interfaces, which prevents host kernel tainting and log
543
  flooding, when dealing with broken or malicious virtio-net drivers.
544
  It's set to true by default.
545
- Instance failover now supports a ``--cleanup`` parameter for fixing previous
546
  failures.
547
- Support 'viridian' parameter in Xen HVM
548
- Support DSA SSH keys in bootstrap
549
- To simplify the work of packaging frameworks that want to add the needed users
550
  and groups in a split-user setup themselves, at build time three files in
551
  ``doc/users`` will be generated. The ``groups`` files contains, one per line,
552
  the groups to be generated, the ``users`` file contains, one per line, the
553
  users to be generated, optionally followed by their primary group, where
554
  important. The ``groupmemberships`` file contains, one per line, additional
555
  user-group membership relations that need to be established. The syntax of
556
  these files will remain stable in all future versions.
557

    
558

    
559
New dependencies
560
~~~~~~~~~~~~~~~~
561
The following new dependencies have been added:
562

    
563
For Haskell:
564
- The ``curl`` library is not optional anymore for compiling the Haskell code.
565
- ``snap-server`` library (if monitoring is enabled).
566

    
567
For Python:
568
- The minimum Python version needed to run Ganeti is now 2.6.
569
- ``yaml`` library (only for running the QA).
570

    
571
Since 2.8.0 rc3
572
~~~~~~~~~~~~~~~
573
- Perform proper cleanup on termination of Haskell daemons
574
- Fix corner-case in handling of remaining retry time
575

    
576

    
577
Version 2.8.0 rc3
578
-----------------
579

    
580
*(Released Tue, 17 Sep 2013)*
581

    
582
- To simplify the work of packaging frameworks that want to add the needed users
583
  and groups in a split-user setup themselves, at build time three files in
584
  ``doc/users`` will be generated. The ``groups`` files contains, one per line,
585
  the groups to be generated, the ``users`` file contains, one per line, the
586
  users to be generated, optionally followed by their primary group, where
587
  important. The ``groupmemberships`` file contains, one per line, additional
588
  user-group membership relations that need to be established. The syntax of
589
  these files will remain stable in all future versions.
590
- Add a default to file-driver when unspecified over RAPI (Issue 571)
591
- Mark the DSA host pubkey as optional, and remove it during config downgrade
592
  (Issue 560)
593
- Some documentation fixes
594

    
595

    
596
Version 2.8.0 rc2
597
-----------------
598

    
599
*(Released Tue, 27 Aug 2013)*
600

    
601
The second release candidate of the 2.8 series. Since 2.8.0. rc1:
602

    
603
- Support 'viridian' parameter in Xen HVM (Issue 233)
604
- Include VCS version in ``gnt-cluster version``
605
- Support DSA SSH keys in bootstrap (Issue 338)
606
- Fix batch creation of instances
607
- Use FQDN to check master node status (Issue 551)
608
- Make the DRBD collector more failure-resilient
609

    
610

    
611
Version 2.8.0 rc1
612
-----------------
613

    
614
*(Released Fri, 2 Aug 2013)*
615

    
616
The first release candidate of the 2.8 series. Since 2.8.0 beta1:
617

    
618
- Fix upgrading/downgrading from 2.7
619
- Increase maximum RAPI message size
620
- Documentation updates
621
- Split ``confd`` between ``luxid`` and ``confd``
622
- Merge 2.7 series up to the 2.7.1 release
623
- Allow the ``modify_etc_hosts`` option to be changed
624
- Add better debugging for ``luxid`` queries
625
- Expose bulk parameter for GetJobs in RAPI client
626
- Expose missing ``network`` fields in RAPI
627
- Add some ``cluster verify`` tests
628
- Some unittest fixes
629
- Fix a malfunction in ``hspace``'s tiered allocation
630
- Fix query compatibility between haskell and python implementations
631
- Add the ``vnet_hdr`` HV parameter for KVM
632
- Add ``--cleanup`` to instance failover
633
- Change the connected groups format in ``gnt-network info`` output; it
634
  was previously displayed as a raw list by mistake. (Merged from 2.7)
635

    
636

    
637
Version 2.8.0 beta1
638
-------------------
639

    
640
*(Released Mon, 24 Jun 2013)*
641

    
642
This was the first beta release of the 2.8 series. All important changes
643
are listed in the latest 2.8 entry.
644

    
645

    
646
Version 2.7.2
647
-------------
648

    
649
*(Released Thu, 26 Sep 2013)*
650

    
651
- Change the connected groups format in ``gnt-network info`` output; it
652
  was previously displayed as a raw list by mistake
653
- Check disk template in right dict when copying
654
- Support multi-instance allocs without iallocator
655
- Fix some errors in the documentation
656
- Fix formatting of tuple in an error message
657

    
658

    
659
Version 2.7.1
660
-------------
661

    
662
*(Released Thu, 25 Jul 2013)*
663

    
664
- Add logrotate functionality in daemon-util
665
- Add logrotate example file
666
- Add missing fields to network queries over rapi
667
- Fix network object timestamps
668
- Add support for querying network timestamps
669
- Fix a typo in the example crontab
670
- Fix a documentation typo
671

    
672

    
673
Version 2.7.0
674
-------------
675

    
676
*(Released Thu, 04 Jul 2013)*
677

    
678
Incompatible/important changes
679
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
680

    
681
- Instance policies for disk size were documented to be on a per-disk
682
  basis, but hail applied them to the sum of all disks. This has been
683
  fixed.
684
- ``hbal`` will now exit with status 0 if, during job execution over
685
  LUXI, early exit has been requested and all jobs are successful;
686
  before, exit status 1 was used, which cannot be differentiated from
687
  "job error" case
688
- Compatibility with newer versions of rbd has been fixed
689
- ``gnt-instance batch-create`` has been changed to use the bulk create
690
  opcode from Ganeti. This lead to incompatible changes in the format of
691
  the JSON file. It's now not a custom dict anymore but a dict
692
  compatible with the ``OpInstanceCreate`` opcode.
693
- Parent directories for file storage need to be listed in
694
  ``$sysconfdir/ganeti/file-storage-paths`` now. ``cfgupgrade`` will
695
  write the file automatically based on old configuration values, but it
696
  can not distribute it across all nodes and the file contents should be
697
  verified. Use ``gnt-cluster copyfile
698
  $sysconfdir/ganeti/file-storage-paths`` once the cluster has been
699
  upgraded. The reason for requiring this list of paths now is that
700
  before it would have been possible to inject new paths via RPC,
701
  allowing files to be created in arbitrary locations. The RPC protocol
702
  is protected using SSL/X.509 certificates, but as a design principle
703
  Ganeti does not permit arbitrary paths to be passed.
704
- The parsing of the variants file for OSes (see
705
  :manpage:`ganeti-os-interface(7)`) has been slightly changed: now empty
706
  lines and comment lines (starting with ``#``) are ignored for better
707
  readability.
708
- The ``setup-ssh`` tool added in Ganeti 2.2 has been replaced and is no
709
  longer available. ``gnt-node add`` now invokes a new tool on the
710
  destination node, named ``prepare-node-join``, to configure the SSH
711
  daemon. Paramiko is no longer necessary to configure nodes' SSH
712
  daemons via ``gnt-node add``.
713
- Draining (``gnt-cluster queue drain``) and un-draining the job queue
714
  (``gnt-cluster queue undrain``) now affects all nodes in a cluster and
715
  the flag is not reset after a master failover.
716
- Python 2.4 has *not* been tested with this release. Using 2.6 or above
717
  is recommended. 2.6 will be mandatory from the 2.8 series.
718

    
719

    
720
New features
721
~~~~~~~~~~~~
722

    
723
- New network management functionality to support automatic allocation
724
  of IP addresses and managing of network parameters. See
725
  :manpage:`gnt-network(8)` for more details.
726
- New external storage backend, to allow managing arbitrary storage
727
  systems external to the cluster. See
728
  :manpage:`ganeti-extstorage-interface(7)`.
729
- New ``exclusive-storage`` node parameter added, restricted to
730
  nodegroup level. When it's set to true, physical disks are assigned in
731
  an exclusive fashion to instances, as documented in :doc:`Partitioned
732
  Ganeti <design-partitioned>`.  Currently, only instances using the
733
  ``plain`` disk template are supported.
734
- The KVM hypervisor has been updated with many new hypervisor
735
  parameters, including a generic one for passing arbitrary command line
736
  values. See a complete list in :manpage:`gnt-instance(8)`. It is now
737
  compatible up to qemu 1.4.
738
- A new tool, called ``mon-collector``, is the stand-alone executor of
739
  the data collectors for a monitoring system. As of this version, it
740
  just includes the DRBD data collector, that can be executed by calling
741
  ``mon-collector`` using the ``drbd`` parameter. See
742
  :manpage:`mon-collector(7)`.
743
- A new user option, :pyeval:`rapi.RAPI_ACCESS_READ`, has been added
744
  for RAPI users. It allows granting permissions to query for
745
  information to a specific user without giving
746
  :pyeval:`rapi.RAPI_ACCESS_WRITE` permissions.
747
- A new tool named ``node-cleanup`` has been added. It cleans remains of
748
  a cluster from a machine by stopping all daemons, removing
749
  certificates and ssconf files. Unless the ``--no-backup`` option is
750
  given, copies of the certificates are made.
751
- Instance creations now support the use of opportunistic locking,
752
  potentially speeding up the (parallel) creation of multiple instances.
753
  This feature is currently only available via the :doc:`RAPI
754
  <rapi>` interface and when an instance allocator is used. If the
755
  ``opportunistic_locking`` parameter is set the opcode will try to
756
  acquire as many locks as possible, but will not wait for any locks
757
  held by other opcodes. If not enough resources can be found to
758
  allocate the instance, the temporary error code
759
  :pyeval:`errors.ECODE_TEMP_NORES` is returned. The operation can be
760
  retried thereafter, with or without opportunistic locking.
761
- New experimental linux-ha resource scripts.
762
- Restricted-commands support: ganeti can now be asked (via command line
763
  or rapi) to perform commands on a node. These are passed via ganeti
764
  RPC rather than ssh. This functionality is restricted to commands
765
  specified on the ``$sysconfdir/ganeti/restricted-commands`` for security
766
  reasons. The file is not copied automatically.
767

    
768

    
769
Misc changes
770
~~~~~~~~~~~~
771

    
772
- Diskless instances are now externally mirrored (Issue 237). This for
773
  now has only been tested in conjunction with explicit target nodes for
774
  migration/failover.
775
- Queries not needing locks or RPC access to the node can now be
776
  performed by the confd daemon, making them independent from jobs, and
777
  thus faster to execute. This is selectable at configure time.
778
- The functionality for allocating multiple instances at once has been
779
  overhauled and is now also available through :doc:`RAPI <rapi>`.
780

    
781
There are no significant changes from version 2.7.0~rc3.
782

    
783

    
784
Version 2.7.0 rc3
785
-----------------
786

    
787
*(Released Tue, 25 Jun 2013)*
788

    
789
- Fix permissions on the confd query socket (Issue 477)
790
- Fix permissions on the job archive dir (Issue 498)
791
- Fix handling of an internal exception in replace-disks (Issue 472)
792
- Fix gnt-node info handling of shortened names (Issue 497)
793
- Fix gnt-instance grow-disk when wiping is enabled
794
- Documentation improvements, and support for newer pandoc
795
- Fix hspace honoring ipolicy for disks (Issue 484)
796
- Improve handling of the ``kvm_extra`` HV parameter
797

    
798

    
799
Version 2.7.0 rc2
800
-----------------
801

    
802
*(Released Fri, 24 May 2013)*
803

    
804
- ``devel/upload`` now works when ``/var/run`` on the target nodes is a
805
  symlink.
806
- Disks added through ``gnt-instance modify`` or created through
807
  ``gnt-instance recreate-disks`` are wiped, if the
808
  ``prealloc_wipe_disks`` flag is set.
809
- If wiping newly created disks fails, the disks are removed. Also,
810
  partial failures in creating disks through ``gnt-instance modify``
811
  triggers a cleanup of the partially-created disks.
812
- Removing the master IP address doesn't fail if the address has been
813
  already removed.
814
- Fix ownership of the OS log dir
815
- Workaround missing SO_PEERCRED constant (Issue 191)
816

    
817

    
818
Version 2.7.0 rc1
819
-----------------
820

    
821
*(Released Fri, 3 May 2013)*
822

    
823
This was the first release candidate of the 2.7 series. Since beta3:
824

    
825
- Fix kvm compatibility with qemu 1.4 (Issue 389)
826
- Documentation updates (admin guide, upgrade notes, install
827
  instructions) (Issue 372)
828
- Fix gnt-group list nodes and instances count (Issue 436)
829
- Fix compilation without non-mandatory libraries (Issue 441)
830
- Fix xen-hvm hypervisor forcing nics to type 'ioemu' (Issue 247)
831
- Make confd logging more verbose at INFO level (Issue 435)
832
- Improve "networks" documentation in :manpage:`gnt-instance(8)`
833
- Fix failure path for instance storage type conversion (Issue 229)
834
- Update htools text backend documentation
835
- Improve the renew-crypto section of :manpage:`gnt-cluster(8)`
836
- Disable inter-cluster instance move for file-based instances, because
837
  it is dependant on instance export, which is not supported for
838
  file-based instances. (Issue 414)
839
- Fix gnt-job crashes on non-ascii characters (Issue 427)
840
- Fix volume group checks on non-vm-capable nodes (Issue 432)
841

    
842

    
843
Version 2.7.0 beta3
844
-------------------
845

    
846
*(Released Mon, 22 Apr 2013)*
847

    
848
This was the third beta release of the 2.7 series. Since beta2:
849

    
850
- Fix hail to verify disk instance policies on a per-disk basis (Issue 418).
851
- Fix data loss on wrong usage of ``gnt-instance move``
852
- Properly export errors in confd-based job queries
853
- Add ``users-setup`` tool
854
- Fix iallocator protocol to report 0 as a disk size for diskless
855
  instances. This avoids hail breaking when a diskless instance is
856
  present.
857
- Fix job queue directory permission problem that made confd job queries
858
  fail. This requires running an ``ensure-dirs --full-run`` on upgrade
859
  for access to archived jobs (Issue 406).
860
- Limit the sizes of networks supported by ``gnt-network`` to something
861
  between a ``/16`` and a ``/30`` to prevent memory bloat and crashes.
862
- Fix bugs in instance disk template conversion
863
- Fix GHC 7 compatibility
864
- Fix ``burnin`` install path (Issue 426).
865
- Allow very small disk grows (Issue 347).
866
- Fix a ``ganeti-noded`` memory bloat introduced in 2.5, by making sure
867
  that noded doesn't import masterd code (Issue 419).
868
- Make sure the default metavg at cluster init is the same as the vg, if
869
  unspecified (Issue 358).
870
- Fix cleanup of partially created disks (part of Issue 416)
871

    
872

    
873
Version 2.7.0 beta2
874
-------------------
875

    
876
*(Released Tue, 2 Apr 2013)*
877

    
878
This was the second beta release of the 2.7 series. Since beta1:
879

    
880
- Networks no longer have a "type" slot, since this information was
881
  unused in Ganeti: instead of it tags should be used.
882
- The rapi client now has a ``target_node`` option to MigrateInstance.
883
- Fix early exit return code for hbal (Issue 386).
884
- Fix ``gnt-instance migrate/failover -n`` (Issue 396).
885
- Fix ``rbd showmapped`` output parsing (Issue 312).
886
- Networks are now referenced indexed by UUID, rather than name. This
887
  will require running cfgupgrade, from 2.7.0beta1, if networks are in
888
  use.
889
- The OS environment now includes network information.
890
- Deleting of a network is now disallowed if any instance nic is using
891
  it, to prevent dangling references.
892
- External storage is now documented in man pages.
893
- The exclusive_storage flag can now only be set at nodegroup level.
894
- Hbal can now submit an explicit priority with its jobs.
895
- Many network related locking fixes.
896
- Bump up the required pylint version to 0.25.1.
897
- Fix the ``no_remember`` option in RAPI client.
898
- Many ipolicy related tests, qa, and fixes.
899
- Many documentation improvements and fixes.
900
- Fix building with ``--disable-file-storage``.
901
- Fix ``-q`` option in htools, which was broken if passed more than
902
  once.
903
- Some haskell/python interaction improvements and fixes.
904
- Fix iallocator in case of missing LVM storage.
905
- Fix confd config load in case of ``--no-lvm-storage``.
906
- The confd/query functionality is now mentioned in the security
907
  documentation.
908

    
909

    
910
Version 2.7.0 beta1
911
-------------------
912

    
913
*(Released Wed, 6 Feb 2013)*
914

    
915
This was the first beta release of the 2.7 series. All important changes
916
are listed in the latest 2.7 entry.
917

    
918

    
919
Version 2.6.2
920
-------------
921

    
922
*(Released Fri, 21 Dec 2012)*
923

    
924
Important behaviour change: hbal won't rebalance anymore instances which
925
have the ``auto_balance`` attribute set to false. This was the intention
926
all along, but until now it only skipped those from the N+1 memory
927
reservation (DRBD-specific).
928

    
929
A significant number of bug fixes in this release:
930

    
931
- Fixed disk adoption interaction with ipolicy checks.
932
- Fixed networking issues when instances are started, stopped or
933
  migrated, by forcing the tap device's MAC prefix to "fe" (issue 217).
934
- Fixed the warning in cluster verify for shared storage instances not
935
  being redundant.
936
- Fixed removal of storage directory on shared file storage (issue 262).
937
- Fixed validation of LVM volume group name in OpClusterSetParams
938
  (``gnt-cluster modify``) (issue 285).
939
- Fixed runtime memory increases (``gnt-instance modify -m``).
940
- Fixed live migration under Xen's ``xl`` mode.
941
- Fixed ``gnt-instance console`` with ``xl``.
942
- Fixed building with newer Haskell compiler/libraries.
943
- Fixed PID file writing in Haskell daemons (confd); this prevents
944
  restart issues if confd was launched manually (outside of
945
  ``daemon-util``) while another copy of it was running
946
- Fixed a type error when doing live migrations with KVM (issue 297) and
947
  the error messages for failing migrations have been improved.
948
- Fixed opcode validation for the out-of-band commands (``gnt-node
949
  power``).
950
- Fixed a type error when unsetting OS hypervisor parameters (issue
951
  311); now it's possible to unset all OS-specific hypervisor
952
  parameters.
953
- Fixed the ``dry-run`` mode for many operations: verification of
954
  results was over-zealous but didn't take into account the ``dry-run``
955
  operation, resulting in "wrong" failures.
956
- Fixed bash completion in ``gnt-job list`` when the job queue has
957
  hundreds of entries; especially with older ``bash`` versions, this
958
  results in significant CPU usage.
959

    
960
And lastly, a few other improvements have been made:
961

    
962
- Added option to force master-failover without voting (issue 282).
963
- Clarified error message on lock conflict (issue 287).
964
- Logging of newly submitted jobs has been improved (issue 290).
965
- Hostname checks have been made uniform between instance rename and
966
  create (issue 291).
967
- The ``--submit`` option is now supported by ``gnt-debug delay``.
968
- Shutting down the master daemon by sending SIGTERM now stops it from
969
  processing jobs waiting for locks; instead, those jobs will be started
970
  once again after the master daemon is started the next time (issue
971
  296).
972
- Support for Xen's ``xl`` program has been improved (besides the fixes
973
  above).
974
- Reduced logging noise in the Haskell confd daemon (only show one log
975
  entry for each config reload, instead of two).
976
- Several man page updates and typo fixes.
977

    
978

    
979
Version 2.6.1
980
-------------
981

    
982
*(Released Fri, 12 Oct 2012)*
983

    
984
A small bugfix release. Among the bugs fixed:
985

    
986
- Fixed double use of ``PRIORITY_OPT`` in ``gnt-node migrate``, that
987
  made the command unusable.
988
- Commands that issue many jobs don't fail anymore just because some jobs
989
  take so long that other jobs are archived.
990
- Failures during ``gnt-instance reinstall`` are reflected by the exit
991
  status.
992
- Issue 190 fixed. Check for DRBD in cluster verify is enabled only when
993
  DRBD is enabled.
994
- When ``always_failover`` is set, ``--allow-failover`` is not required
995
  in migrate commands anymore.
996
- ``bash_completion`` works even if extglob is disabled.
997
- Fixed bug with locks that made failover for RDB-based instances fail.
998
- Fixed bug in non-mirrored instance allocation that made Ganeti choose
999
  a random node instead of one based on the allocator metric.
1000
- Support for newer versions of pylint and pep8.
1001
- Hail doesn't fail anymore when trying to add an instance of type
1002
  ``file``, ``sharedfile`` or ``rbd``.
1003
- Added new Makefile target to rebuild the whole distribution, so that
1004
  all files are included.
1005

    
1006

    
1007
Version 2.6.0
1008
-------------
1009

    
1010
*(Released Fri, 27 Jul 2012)*
1011

    
1012

    
1013
.. attention:: The ``LUXI`` protocol has been made more consistent
1014
   regarding its handling of command arguments. This, however, leads to
1015
   incompatibility issues with previous versions. Please ensure that you
1016
   restart Ganeti daemons soon after the upgrade, otherwise most
1017
   ``LUXI`` calls (job submission, setting/resetting the drain flag,
1018
   pausing/resuming the watcher, cancelling and archiving jobs, querying
1019
   the cluster configuration) will fail.
1020

    
1021

    
1022
New features
1023
~~~~~~~~~~~~
1024

    
1025
Instance run status
1026
+++++++++++++++++++
1027

    
1028
The current ``admin_up`` field, which used to denote whether an instance
1029
should be running or not, has been removed. Instead, ``admin_state`` is
1030
introduced, with 3 possible values -- ``up``, ``down`` and ``offline``.
1031

    
1032
The rational behind this is that an instance being โ€œdownโ€ can have
1033
different meanings:
1034

    
1035
- it could be down during a reboot
1036
- it could be temporarily be down for a reinstall
1037
- or it could be down because it is deprecated and kept just for its
1038
  disk
1039

    
1040
The previous Boolean state was making it difficult to do capacity
1041
calculations: should Ganeti reserve memory for a down instance? Now, the
1042
tri-state field makes it clear:
1043

    
1044
- in ``up`` and ``down`` state, all resources are reserved for the
1045
  instance, and it can be at any time brought up if it is down
1046
- in ``offline`` state, only disk space is reserved for it, but not
1047
  memory or CPUs
1048

    
1049
The field can have an extra use: since the transition between ``up`` and
1050
``down`` and vice-versus is done via ``gnt-instance start/stop``, but
1051
transition between ``offline`` and ``down`` is done via ``gnt-instance
1052
modify``, it is possible to given different rights to users. For
1053
example, owners of an instance could be allowed to start/stop it, but
1054
not transition it out of the offline state.
1055

    
1056
Instance policies and specs
1057
+++++++++++++++++++++++++++
1058

    
1059
In previous Ganeti versions, an instance creation request was not
1060
limited on the minimum size and on the maximum size just by the cluster
1061
resources. As such, any policy could be implemented only in third-party
1062
clients (RAPI clients, or shell wrappers over ``gnt-*``
1063
tools). Furthermore, calculating cluster capacity via ``hspace`` again
1064
required external input with regards to instance sizes.
1065

    
1066
In order to improve these workflows and to allow for example better
1067
per-node group differentiation, we introduced instance specs, which
1068
allow declaring:
1069

    
1070
- minimum instance disk size, disk count, memory size, cpu count
1071
- maximum values for the above metrics
1072
- and โ€œstandardโ€ values (used in ``hspace`` to calculate the standard
1073
  sized instances)
1074

    
1075
The minimum/maximum values can be also customised at node-group level,
1076
for example allowing more powerful hardware to support bigger instance
1077
memory sizes.
1078

    
1079
Beside the instance specs, there are a few other settings belonging to
1080
the instance policy framework. It is possible now to customise, per
1081
cluster and node-group:
1082

    
1083
- the list of allowed disk templates
1084
- the maximum ratio of VCPUs per PCPUs (to control CPU oversubscription)
1085
- the maximum ratio of instance to spindles (see below for more
1086
  information) for local storage
1087

    
1088
All these together should allow all tools that talk to Ganeti to know
1089
what are the ranges of allowed values for instances and the
1090
over-subscription that is allowed.
1091

    
1092
For the VCPU/PCPU ratio, we already have the VCPU configuration from the
1093
instance configuration, and the physical CPU configuration from the
1094
node. For the spindle ratios however, we didn't track before these
1095
values, so new parameters have been added:
1096

    
1097
- a new node parameter ``spindle_count``, defaults to 1, customisable at
1098
  node group or node level
1099
- at new backend parameter (for instances), ``spindle_use`` defaults to 1
1100

    
1101
Note that spindles in this context doesn't need to mean actual
1102
mechanical hard-drives; it's just a relative number for both the node
1103
I/O capacity and instance I/O consumption.
1104

    
1105
Instance migration behaviour
1106
++++++++++++++++++++++++++++
1107

    
1108
While live-migration is in general desirable over failover, it is
1109
possible that for some workloads it is actually worse, due to the
1110
variable time of the โ€œsuspendโ€ phase during live migration.
1111

    
1112
To allow the tools to work consistently over such instances (without
1113
having to hard-code instance names), a new backend parameter
1114
``always_failover`` has been added to control the migration/failover
1115
behaviour. When set to True, all migration requests for an instance will
1116
instead fall-back to failover.
1117

    
1118
Instance memory ballooning
1119
++++++++++++++++++++++++++
1120

    
1121
Initial support for memory ballooning has been added. The memory for an
1122
instance is no longer fixed (backend parameter ``memory``), but instead
1123
can vary between minimum and maximum values (backend parameters
1124
``minmem`` and ``maxmem``). Currently we only change an instance's
1125
memory when:
1126

    
1127
- live migrating or failing over and instance and the target node
1128
  doesn't have enough memory
1129
- user requests changing the memory via ``gnt-instance modify
1130
  --runtime-memory``
1131

    
1132
Instance CPU pinning
1133
++++++++++++++++++++
1134

    
1135
In order to control the use of specific CPUs by instance, support for
1136
controlling CPU pinning has been added for the Xen, HVM and LXC
1137
hypervisors. This is controlled by a new hypervisor parameter
1138
``cpu_mask``; details about possible values for this are in the
1139
:manpage:`gnt-instance(8)`. Note that use of the most specific (precise
1140
VCPU-to-CPU mapping) form will work well only when all nodes in your
1141
cluster have the same amount of CPUs.
1142

    
1143
Disk parameters
1144
+++++++++++++++
1145

    
1146
Another area in which Ganeti was not customisable were the parameters
1147
used for storage configuration, e.g. how many stripes to use for LVM,
1148
DRBD resync configuration, etc.
1149

    
1150
To improve this area, we've added disks parameters, which are
1151
customisable at cluster and node group level, and which allow to
1152
specify various parameters for disks (DRBD has the most parameters
1153
currently), for example:
1154

    
1155
- DRBD resync algorithm and parameters (e.g. speed)
1156
- the default VG for meta-data volumes for DRBD
1157
- number of stripes for LVM (plain disk template)
1158
- the RBD pool
1159

    
1160
These parameters can be modified via ``gnt-cluster modify -D โ€ฆ`` and
1161
``gnt-group modify -D โ€ฆ``, and are used at either instance creation (in
1162
case of LVM stripes, for example) or at disk โ€œactivationโ€ time
1163
(e.g. resync speed).
1164

    
1165
Rados block device support
1166
++++++++++++++++++++++++++
1167

    
1168
A Rados (http://ceph.com/wiki/Rbd) storage backend has been added,
1169
denoted by the ``rbd`` disk template type. This is considered
1170
experimental, feedback is welcome. For details on configuring it, see
1171
the :doc:`install` document and the :manpage:`gnt-cluster(8)` man page.
1172

    
1173
Master IP setup
1174
+++++++++++++++
1175

    
1176
The existing master IP functionality works well only in simple setups (a
1177
single network shared by all nodes); however, if nodes belong to
1178
different networks, then the ``/32`` setup and lack of routing
1179
information is not enough.
1180

    
1181
To allow the master IP to function well in more complex cases, the
1182
system was reworked as follows:
1183

    
1184
- a master IP netmask setting has been added
1185
- the master IP activation/turn-down code was moved from the node daemon
1186
  to a separate script
1187
- whether to run the Ganeti-supplied master IP script or a user-supplied
1188
  on is a ``gnt-cluster init`` setting
1189

    
1190
Details about the location of the standard and custom setup scripts are
1191
in the man page :manpage:`gnt-cluster(8)`; for information about the
1192
setup script protocol, look at the Ganeti-supplied script.
1193

    
1194
SPICE support
1195
+++++++++++++
1196

    
1197
The `SPICE <http://www.linux-kvm.org/page/SPICE>`_ support has been
1198
improved.
1199

    
1200
It is now possible to use TLS-protected connections, and when renewing
1201
or changing the cluster certificates (via ``gnt-cluster renew-crypto``,
1202
it is now possible to specify spice or spice CA certificates. Also, it
1203
is possible to configure a password for SPICE sessions via the
1204
hypervisor parameter ``spice_password_file``.
1205

    
1206
There are also new parameters to control the compression and streaming
1207
options (e.g. ``spice_image_compression``, ``spice_streaming_video``,
1208
etc.). For details, see the man page :manpage:`gnt-instance(8)` and look
1209
for the spice parameters.
1210

    
1211
Lastly, it is now possible to see the SPICE connection information via
1212
``gnt-instance console``.
1213

    
1214
OVF converter
1215
+++++++++++++
1216

    
1217
A new tool (``tools/ovfconverter``) has been added that supports
1218
conversion between Ganeti and the `Open Virtualization Format
1219
<http://en.wikipedia.org/wiki/Open_Virtualization_Format>`_ (both to and
1220
from).
1221

    
1222
This relies on the ``qemu-img`` tool to convert the disk formats, so the
1223
actual compatibility with other virtualization solutions depends on it.
1224

    
1225
Confd daemon changes
1226
++++++++++++++++++++
1227

    
1228
The configuration query daemon (``ganeti-confd``) is now optional, and
1229
has been rewritten in Haskell; whether to use the daemon at all, use the
1230
Python (default) or the Haskell version is selectable at configure time
1231
via the ``--enable-confd`` parameter, which can take one of the
1232
``haskell``, ``python`` or ``no`` values. If not used, disabling the
1233
daemon will result in a smaller footprint; for larger systems, we
1234
welcome feedback on the Haskell version which might become the default
1235
in future versions.
1236

    
1237
If you want to use ``gnt-node list-drbd`` you need to have the Haskell
1238
daemon running. The Python version doesn't implement the new call.
1239

    
1240

    
1241
User interface changes
1242
~~~~~~~~~~~~~~~~~~~~~~
1243

    
1244
We have replaced the ``--disks`` option of ``gnt-instance
1245
replace-disks`` with a more flexible ``--disk`` option, which allows
1246
adding and removing disks at arbitrary indices (Issue 188). Furthermore,
1247
disk size and mode can be changed upon recreation (via ``gnt-instance
1248
recreate-disks``, which accepts the same ``--disk`` option).
1249

    
1250
As many people are used to a ``show`` command, we have added that as an
1251
alias to ``info`` on all ``gnt-*`` commands.
1252

    
1253
The ``gnt-instance grow-disk`` command has a new mode in which it can
1254
accept the target size of the disk, instead of the delta; this can be
1255
more safe since two runs in absolute mode will be idempotent, and
1256
sometimes it's also easier to specify the desired size directly.
1257

    
1258
Also the handling of instances with regard to offline secondaries has
1259
been improved. Instance operations should not fail because one of it's
1260
secondary nodes is offline, even though it's safe to proceed.
1261

    
1262
A new command ``list-drbd`` has been added to the ``gnt-node`` script to
1263
support debugging of DRBD issues on nodes. It provides a mapping of DRBD
1264
minors to instance name.
1265

    
1266
API changes
1267
~~~~~~~~~~~
1268

    
1269
RAPI coverage has improved, with (for example) new resources for
1270
recreate-disks, node power-cycle, etc.
1271

    
1272
Compatibility
1273
~~~~~~~~~~~~~
1274

    
1275
There is partial support for ``xl`` in the Xen hypervisor; feedback is
1276
welcome.
1277

    
1278
Python 2.7 is better supported, and after Ganeti 2.6 we will investigate
1279
whether to still support Python 2.4 or move to Python 2.6 as minimum
1280
required version.
1281

    
1282
Support for Fedora has been slightly improved; the provided example
1283
init.d script should work better on it and the INSTALL file should
1284
document the needed dependencies.
1285

    
1286
Internal changes
1287
~~~~~~~~~~~~~~~~
1288

    
1289
The deprecated ``QueryLocks`` LUXI request has been removed. Use
1290
``Query(what=QR_LOCK, ...)`` instead.
1291

    
1292
The LUXI requests :pyeval:`luxi.REQ_QUERY_JOBS`,
1293
:pyeval:`luxi.REQ_QUERY_INSTANCES`, :pyeval:`luxi.REQ_QUERY_NODES`,
1294
:pyeval:`luxi.REQ_QUERY_GROUPS`, :pyeval:`luxi.REQ_QUERY_EXPORTS` and
1295
:pyeval:`luxi.REQ_QUERY_TAGS` are deprecated and will be removed in a
1296
future version. :pyeval:`luxi.REQ_QUERY` should be used instead.
1297

    
1298
RAPI client: ``CertificateError`` now derives from
1299
``GanetiApiError``. This should make it more easy to handle Ganeti
1300
errors.
1301

    
1302
Deprecation warnings due to PyCrypto/paramiko import in
1303
``tools/setup-ssh`` have been silenced, as usually they are safe; please
1304
make sure to run an up-to-date paramiko version, if you use this tool.
1305

    
1306
The QA scripts now depend on Python 2.5 or above (the main code base
1307
still works with Python 2.4).
1308

    
1309
The configuration file (``config.data``) is now written without
1310
indentation for performance reasons; if you want to edit it, it can be
1311
re-formatted via ``tools/fmtjson``.
1312

    
1313
A number of bugs has been fixed in the cluster merge tool.
1314

    
1315
``x509`` certification verification (used in import-export) has been
1316
changed to allow the same clock skew as permitted by the cluster
1317
verification. This will remove some rare but hard to diagnose errors in
1318
import-export.
1319

    
1320

    
1321
Version 2.6.0 rc4
1322
-----------------
1323

    
1324
*(Released Thu, 19 Jul 2012)*
1325

    
1326
Very few changes from rc4 to the final release, only bugfixes:
1327

    
1328
- integrated fixes from release 2.5.2 (fix general boot flag for KVM
1329
  instance, fix CDROM booting for KVM instances)
1330
- fixed node group modification of node parameters
1331
- fixed issue in LUClusterVerifyGroup with multi-group clusters
1332
- fixed generation of bash completion to ensure a stable ordering
1333
- fixed a few typos
1334

    
1335

    
1336
Version 2.6.0 rc3
1337
-----------------
1338

    
1339
*(Released Fri, 13 Jul 2012)*
1340

    
1341
Third release candidate for 2.6. The following changes were done from
1342
rc3 to rc4:
1343

    
1344
- Fixed ``UpgradeConfig`` w.r.t. to disk parameters on disk objects.
1345
- Fixed an inconsistency in the LUXI protocol with the provided
1346
  arguments (NOT backwards compatible)
1347
- Fixed a bug with node groups ipolicy where ``min`` was greater than
1348
  the cluster ``std`` value
1349
- Implemented a new ``gnt-node list-drbd`` call to list DRBD minors for
1350
  easier instance debugging on nodes (requires ``hconfd`` to work)
1351

    
1352

    
1353
Version 2.6.0 rc2
1354
-----------------
1355

    
1356
*(Released Tue, 03 Jul 2012)*
1357

    
1358
Second release candidate for 2.6. The following changes were done from
1359
rc2 to rc3:
1360

    
1361
- Fixed ``gnt-cluster verify`` regarding ``master-ip-script`` on non
1362
  master candidates
1363
- Fixed a RAPI regression on missing beparams/memory
1364
- Fixed redistribution of files on offline nodes
1365
- Added possibility to run activate-disks even though secondaries are
1366
  offline. With this change it relaxes also the strictness on some other
1367
  commands which use activate disks internally:
1368
  * ``gnt-instance start|reboot|rename|backup|export``
1369
- Made it possible to remove safely an instance if its secondaries are
1370
  offline
1371
- Made it possible to reinstall even though secondaries are offline
1372

    
1373

    
1374
Version 2.6.0 rc1
1375
-----------------
1376

    
1377
*(Released Mon, 25 Jun 2012)*
1378

    
1379
First release candidate for 2.6. The following changes were done from
1380
rc1 to rc2:
1381

    
1382
- Fixed bugs with disk parameters and ``rbd`` templates as well as
1383
  ``instance_os_add``
1384
- Made ``gnt-instance modify`` more consistent regarding new NIC/Disk
1385
  behaviour. It supports now the modify operation
1386
- ``hcheck`` implemented to analyze cluster health and possibility of
1387
  improving health by rebalance
1388
- ``hbal`` has been improved in dealing with split instances
1389

    
1390

    
1391
Version 2.6.0 beta2
1392
-------------------
1393

    
1394
*(Released Mon, 11 Jun 2012)*
1395

    
1396
Second beta release of 2.6. The following changes were done from beta2
1397
to rc1:
1398

    
1399
- Fixed ``daemon-util`` with non-root user models
1400
- Fixed creation of plain instances with ``--no-wait-for-sync``
1401
- Fix wrong iv_names when running ``cfgupgrade``
1402
- Export more information in RAPI group queries
1403
- Fixed bug when changing instance network interfaces
1404
- Extended burnin to do NIC changes
1405
- query: Added ``<``, ``>``, ``<=``, ``>=`` comparison operators
1406
- Changed default for DRBD barriers
1407
- Fixed DRBD error reporting for syncer rate
1408
- Verify the options on disk parameters
1409

    
1410
And of course various fixes to documentation and improved unittests and
1411
QA.
1412

    
1413

    
1414
Version 2.6.0 beta1
1415
-------------------
1416

    
1417
*(Released Wed, 23 May 2012)*
1418

    
1419
First beta release of 2.6. The following changes were done from beta1 to
1420
beta2:
1421

    
1422
- integrated patch for distributions without ``start-stop-daemon``
1423
- adapted example init.d script to work on Fedora
1424
- fixed log handling in Haskell daemons
1425
- adapted checks in the watcher for pycurl linked against libnss
1426
- add partial support for ``xl`` instead of ``xm`` for Xen
1427
- fixed a type issue in cluster verification
1428
- fixed ssconf handling in the Haskell code (was breaking confd in IPv6
1429
  clusters)
1430

    
1431
Plus integrated fixes from the 2.5 branch:
1432

    
1433
- fixed ``kvm-ifup`` to use ``/bin/bash``
1434
- fixed parallel build failures
1435
- KVM live migration when using a custom keymap
1436

    
1437

    
1438
Version 2.5.2
1439
-------------
1440

    
1441
*(Released Tue, 24 Jul 2012)*
1442

    
1443
A small bugfix release, with no new features:
1444

    
1445
- fixed bash-isms in kvm-ifup, for compatibility with systems which use a
1446
  different default shell (e.g. Debian, Ubuntu)
1447
- fixed KVM startup and live migration with a custom keymap (fixes Issue
1448
  243 and Debian bug #650664)
1449
- fixed compatibility with KVM versions that don't support multiple boot
1450
  devices (fixes Issue 230 and Debian bug #624256)
1451

    
1452
Additionally, a few fixes were done to the build system (fixed parallel
1453
build failures) and to the unittests (fixed race condition in test for
1454
FileID functions, and the default enable/disable mode for QA test is now
1455
customisable).
1456

    
1457

    
1458
Version 2.5.1
1459
-------------
1460

    
1461
*(Released Fri, 11 May 2012)*
1462

    
1463
A small bugfix release.
1464

    
1465
The main issues solved are on the topic of compatibility with newer LVM
1466
releases:
1467

    
1468
- fixed parsing of ``lv_attr`` field
1469
- adapted to new ``vgreduce --removemissing`` behaviour where sometimes
1470
  the ``--force`` flag is needed
1471

    
1472
Also on the topic of compatibility, ``tools/lvmstrap`` has been changed
1473
to accept kernel 3.x too (was hardcoded to 2.6.*).
1474

    
1475
A regression present in 2.5.0 that broke handling (in the gnt-* scripts)
1476
of hook results and that also made display of other errors suboptimal
1477
was fixed; the code behaves now like 2.4 and earlier.
1478

    
1479
Another change in 2.5, the cleanup of the OS scripts environment, is too
1480
aggressive: it removed even the ``PATH`` variable, which requires the OS
1481
scripts to *always* need to export it. Since this is a bit too strict,
1482
we now export a minimal PATH, the same that we export for hooks.
1483

    
1484
The fix for issue 201 (Preserve bridge MTU in KVM ifup script) was
1485
integrated into this release.
1486

    
1487
Finally, a few other miscellaneous changes were done (no new features,
1488
just small improvements):
1489

    
1490
- Fix ``gnt-group --help`` display
1491
- Fix hardcoded Xen kernel path
1492
- Fix grow-disk handling of invalid units
1493
- Update synopsis for ``gnt-cluster repair-disk-sizes``
1494
- Accept both PUT and POST in noded (makes future upgrade to 2.6 easier)
1495

    
1496

    
1497
Version 2.5.0
1498
-------------
1499

    
1500
*(Released Thu, 12 Apr 2012)*
1501

    
1502
Incompatible/important changes and bugfixes
1503
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
1504

    
1505
- The default of the ``/2/instances/[instance_name]/rename`` RAPI
1506
  resource's ``ip_check`` parameter changed from ``True`` to ``False``
1507
  to match the underlying LUXI interface.
1508
- The ``/2/nodes/[node_name]/evacuate`` RAPI resource was changed to use
1509
  body parameters, see :doc:`RAPI documentation <rapi>`. The server does
1510
  not maintain backwards-compatibility as the underlying operation
1511
  changed in an incompatible way. The RAPI client can talk to old
1512
  servers, but it needs to be told so as the return value changed.
1513
- When creating file-based instances via RAPI, the ``file_driver``
1514
  parameter no longer defaults to ``loop`` and must be specified.
1515
- The deprecated ``bridge`` NIC parameter is no longer supported. Use
1516
  ``link`` instead.
1517
- Support for the undocumented and deprecated RAPI instance creation
1518
  request format version 0 has been dropped. Use version 1, supported
1519
  since Ganeti 2.1.3 and :doc:`documented <rapi>`, instead.
1520
- Pyparsing 1.4.6 or above is required, see :doc:`installation
1521
  documentation <install>`.
1522
- The "cluster-verify" hooks are now executed per group by the
1523
  ``OP_CLUSTER_VERIFY_GROUP`` opcode. This maintains the same behavior
1524
  if you just run ``gnt-cluster verify``, which generates one opcode per
1525
  group.
1526
- The environment as passed to the OS scripts is cleared, and thus no
1527
  environment variables defined in the node daemon's environment will be
1528
  inherited by the scripts.
1529
- The :doc:`iallocator <iallocator>` mode ``multi-evacuate`` has been
1530
  deprecated.
1531
- :doc:`New iallocator modes <design-multi-reloc>` have been added to
1532
  support operations involving multiple node groups.
1533
- Offline nodes are ignored when failing over an instance.
1534
- Support for KVM version 1.0, which changed the version reporting format
1535
  from 3 to 2 digits.
1536
- TCP/IP ports used by DRBD disks are returned to a pool upon instance
1537
  removal.
1538
- ``Makefile`` is now compatible with Automake 1.11.2
1539
- Includes all bugfixes made in the 2.4 series
1540

    
1541
New features
1542
~~~~~~~~~~~~
1543

    
1544
- The ganeti-htools project has been merged into the ganeti-core source
1545
  tree and will be built as part of Ganeti (see :doc:`install-quick`).
1546
- Implemented support for :doc:`shared storage <design-shared-storage>`.
1547
- Add support for disks larger than 2 TB in ``lvmstrap`` by supporting
1548
  GPT-style partition tables (requires `parted
1549
  <http://www.gnu.org/s/parted/>`_).
1550
- Added support for floppy drive and 2nd CD-ROM drive in KVM hypervisor.
1551
- Allowed adding tags on instance creation.
1552
- Export instance tags to hooks (``INSTANCE_TAGS``, see :doc:`hooks`)
1553
- Allow instances to be started in a paused state, enabling the user to
1554
  see the complete console output on boot using the console.
1555
- Added new hypervisor flag to control default reboot behaviour
1556
  (``reboot_behavior``).
1557
- Added support for KVM keymaps (hypervisor parameter ``keymap``).
1558
- Improved out-of-band management support:
1559

    
1560
  - Added ``gnt-node health`` command reporting the health status of
1561
    nodes.
1562
  - Added ``gnt-node power`` command to manage power status of nodes.
1563
  - Added command for emergency power-off (EPO), ``gnt-cluster epo``.
1564

    
1565
- Instance migration can fall back to failover if instance is not
1566
  running.
1567
- Filters can be used when listing nodes, instances, groups and locks;
1568
  see :manpage:`ganeti(7)` manpage.
1569
- Added post-execution status as variables to :doc:`hooks <hooks>`
1570
  environment.
1571
- Instance tags are exported/imported together with the instance.
1572
- When given an explicit job ID, ``gnt-job info`` will work for archived
1573
  jobs.
1574
- Jobs can define dependencies on other jobs (not yet supported via
1575
  RAPI or command line, but used by internal commands and usable via
1576
  LUXI).
1577

    
1578
  - Lock monitor (``gnt-debug locks``) shows jobs waiting for
1579
    dependencies.
1580

    
1581
- Instance failover is now available as a RAPI resource
1582
  (``/2/instances/[instance_name]/failover``).
1583
- ``gnt-instance info`` defaults to static information if primary node
1584
  is offline.
1585
- Opcodes have a new ``comment`` attribute.
1586
- Added basic SPICE support to KVM hypervisor.
1587
- ``tools/ganeti-listrunner`` allows passing of arguments to executable.
1588

    
1589
Node group improvements
1590
~~~~~~~~~~~~~~~~~~~~~~~
1591

    
1592
- ``gnt-cluster verify`` has been modified to check groups separately,
1593
  thereby improving performance.
1594
- Node group support has been added to ``gnt-cluster verify-disks``,
1595
  which now operates per node group.
1596
- Watcher has been changed to work better with node groups.
1597

    
1598
  - One process and state file per node group.
1599
  - Slow watcher in one group doesn't block other group's watcher.
1600

    
1601
- Added new command, ``gnt-group evacuate``, to move all instances in a
1602
  node group to other groups.
1603
- Added ``gnt-instance change-group`` to move an instance to another
1604
  node group.
1605
- ``gnt-cluster command`` and ``gnt-cluster copyfile`` now support
1606
  per-group operations.
1607
- Node groups can be tagged.
1608
- Some operations switch from an exclusive to a shared lock as soon as
1609
  possible.
1610
- Instance's primary and secondary nodes' groups are now available as
1611
  query fields (``pnode.group``, ``pnode.group.uuid``, ``snodes.group``
1612
  and ``snodes.group.uuid``).
1613

    
1614
Misc
1615
~~~~
1616

    
1617
- Numerous updates to documentation and manpages.
1618

    
1619
  - :doc:`RAPI <rapi>` documentation now has detailed parameter
1620
    descriptions.
1621
  - Some opcode/job results are now also documented, see :doc:`RAPI
1622
    <rapi>`.
1623

    
1624
- A lockset's internal lock is now also visible in lock monitor.
1625
- Log messages from job queue workers now contain information about the
1626
  opcode they're processing.
1627
- ``gnt-instance console`` no longer requires the instance lock.
1628
- A short delay when waiting for job changes reduces the number of LUXI
1629
  requests significantly.
1630
- DRBD metadata volumes are overwritten with zeros during disk creation.
1631
- Out-of-band commands no longer acquire the cluster lock in exclusive
1632
  mode.
1633
- ``devel/upload`` now uses correct permissions for directories.
1634

    
1635

    
1636
Version 2.5.0 rc6
1637
-----------------
1638

    
1639
*(Released Fri, 23 Mar 2012)*
1640

    
1641
This was the sixth release candidate of the 2.5 series.
1642

    
1643

    
1644
Version 2.5.0 rc5
1645
-----------------
1646

    
1647
*(Released Mon, 9 Jan 2012)*
1648

    
1649
This was the fifth release candidate of the 2.5 series.
1650

    
1651

    
1652
Version 2.5.0 rc4
1653
-----------------
1654

    
1655
*(Released Thu, 27 Oct 2011)*
1656

    
1657
This was the fourth release candidate of the 2.5 series.
1658

    
1659

    
1660
Version 2.5.0 rc3
1661
-----------------
1662

    
1663
*(Released Wed, 26 Oct 2011)*
1664

    
1665
This was the third release candidate of the 2.5 series.
1666

    
1667

    
1668
Version 2.5.0 rc2
1669
-----------------
1670

    
1671
*(Released Tue, 18 Oct 2011)*
1672

    
1673
This was the second release candidate of the 2.5 series.
1674

    
1675

    
1676
Version 2.5.0 rc1
1677
-----------------
1678

    
1679
*(Released Tue, 4 Oct 2011)*
1680

    
1681
This was the first release candidate of the 2.5 series.
1682

    
1683

    
1684
Version 2.5.0 beta3
1685
-------------------
1686

    
1687
*(Released Wed, 31 Aug 2011)*
1688

    
1689
This was the third beta release of the 2.5 series.
1690

    
1691

    
1692
Version 2.5.0 beta2
1693
-------------------
1694

    
1695
*(Released Mon, 22 Aug 2011)*
1696

    
1697
This was the second beta release of the 2.5 series.
1698

    
1699

    
1700
Version 2.5.0 beta1
1701
-------------------
1702

    
1703
*(Released Fri, 12 Aug 2011)*
1704

    
1705
This was the first beta release of the 2.5 series.
1706

    
1707

    
1708
Version 2.4.5
1709
-------------
1710

    
1711
*(Released Thu, 27 Oct 2011)*
1712

    
1713
- Fixed bug when parsing command line parameter values ending in
1714
  backslash
1715
- Fixed assertion error after unclean master shutdown
1716
- Disable HTTP client pool for RPC, significantly reducing memory usage
1717
  of master daemon
1718
- Fixed queue archive creation with wrong permissions
1719

    
1720

    
1721
Version 2.4.4
1722
-------------
1723

    
1724
*(Released Tue, 23 Aug 2011)*
1725

    
1726
Small bug-fixes:
1727

    
1728
- Fixed documentation for importing with ``--src-dir`` option
1729
- Fixed a bug in ``ensure-dirs`` with queue/archive permissions
1730
- Fixed a parsing issue with DRBD 8.3.11 in the Linux kernel
1731

    
1732

    
1733
Version 2.4.3
1734
-------------
1735

    
1736
*(Released Fri, 5 Aug 2011)*
1737

    
1738
Many bug-fixes and a few small features:
1739

    
1740
- Fixed argument order in ``ReserveLV`` and ``ReserveMAC`` which caused
1741
  issues when you tried to add an instance with two MAC addresses in one
1742
  request
1743
- KVM: fixed per-instance stored UID value
1744
- KVM: configure bridged NICs at migration start
1745
- KVM: Fix a bug where instance will not start with never KVM versions
1746
  (>= 0.14)
1747
- Added OS search path to ``gnt-cluster info``
1748
- Fixed an issue with ``file_storage_dir`` where you were forced to
1749
  provide an absolute path, but the documentation states it is a
1750
  relative path, the documentation was right
1751
- Added a new parameter to instance stop/start called ``--no-remember``
1752
  that will make the state change to not be remembered
1753
- Implemented ``no_remember`` at RAPI level
1754
- Improved the documentation
1755
- Node evacuation: don't call IAllocator if node is already empty
1756
- Fixed bug in DRBD8 replace disks on current nodes
1757
- Fixed bug in recreate-disks for DRBD instances
1758
- Moved assertion checking locks in ``gnt-instance replace-disks``
1759
  causing it to abort with not owning the right locks for some situation
1760
- Job queue: Fixed potential race condition when cancelling queued jobs
1761
- Fixed off-by-one bug in job serial generation
1762
- ``gnt-node volumes``: Fix instance names
1763
- Fixed aliases in bash completion
1764
- Fixed a bug in reopening log files after being sent a SIGHUP
1765
- Added a flag to burnin to allow specifying VCPU count
1766
- Bugfixes to non-root Ganeti configuration
1767

    
1768

    
1769
Version 2.4.2
1770
-------------
1771

    
1772
*(Released Thu, 12 May 2011)*
1773

    
1774
Many bug-fixes and a few new small features:
1775

    
1776
- Fixed a bug related to log opening failures
1777
- Fixed a bug in instance listing with orphan instances
1778
- Fixed a bug which prevented resetting the cluster-level node parameter
1779
  ``oob_program`` to the default
1780
- Many fixes related to the ``cluster-merge`` tool
1781
- Fixed a race condition in the lock monitor, which caused failures
1782
  during (at least) creation of many instances in parallel
1783
- Improved output for gnt-job info
1784
- Removed the quiet flag on some ssh calls which prevented debugging
1785
  failures
1786
- Improved the N+1 failure messages in cluster verify by actually
1787
  showing the memory values (needed and available)
1788
- Increased lock attempt timeouts so that when executing long operations
1789
  (e.g. DRBD replace-disks) other jobs do not enter 'blocking acquire'
1790
  too early and thus prevent the use of the 'fair' mechanism
1791
- Changed instance query data (``gnt-instance info``) to not acquire
1792
  locks unless needed, thus allowing its use on locked instance if only
1793
  static information is asked for
1794
- Improved behaviour with filesystems that do not support rename on an
1795
  opened file
1796
- Fixed the behaviour of ``prealloc_wipe_disks`` cluster parameter which
1797
  kept locks on all nodes during the wipe, which is unneeded
1798
- Fixed ``gnt-watcher`` handling of errors during hooks execution
1799
- Fixed bug in ``prealloc_wipe_disks`` with small disk sizes (less than
1800
  10GiB) which caused the wipe to fail right at the end in some cases
1801
- Fixed master IP activation when doing master failover with no-voting
1802
- Fixed bug in ``gnt-node add --readd`` which allowed the re-adding of
1803
  the master node itself
1804
- Fixed potential data-loss in under disk full conditions, where Ganeti
1805
  wouldn't check correctly the return code and would consider
1806
  partially-written files 'correct'
1807
- Fixed bug related to multiple VGs and DRBD disk replacing
1808
- Added new disk parameter ``metavg`` that allows placement of the meta
1809
  device for DRBD in a different volume group
1810
- Fixed error handling in the node daemon when the system libc doesn't
1811
  have major number 6 (i.e. if ``libc.so.6`` is not the actual libc)
1812
- Fixed lock release during replace-disks, which kept cluster-wide locks
1813
  when doing disk replaces with an iallocator script
1814
- Added check for missing bridges in cluster verify
1815
- Handle EPIPE errors while writing to the terminal better, so that
1816
  piping the output to e.g. ``less`` doesn't cause a backtrace
1817
- Fixed rare case where a ^C during Luxi calls could have been
1818
  interpreted as server errors, instead of simply terminating
1819
- Fixed a race condition in LUGroupAssignNodes (``gnt-group
1820
  assign-nodes``)
1821
- Added a few more parameters to the KVM hypervisor, allowing a second
1822
  CDROM, custom disk type for CDROMs and a floppy image
1823
- Removed redundant message in instance rename when the name is given
1824
  already as a FQDN
1825
- Added option to ``gnt-instance recreate-disks`` to allow creating the
1826
  disks on new nodes, allowing recreation when the original instance
1827
  nodes are completely gone
1828
- Added option when converting disk templates to DRBD to skip waiting
1829
  for the resync, in order to make the instance available sooner
1830
- Added two new variables to the OS scripts environment (containing the
1831
  instance's nodes)
1832
- Made the root_path and optional parameter for the xen-pvm hypervisor,
1833
  to allow use of ``pvgrub`` as bootloader
1834
- Changed the instance memory modifications to only check out-of-memory
1835
  conditions on memory increases, and turned the secondary node warnings
1836
  into errors (they can still be overridden via ``--force``)
1837
- Fixed the handling of a corner case when the Python installation gets
1838
  corrupted (e.g. a bad disk) while ganeti-noded is running and we try
1839
  to execute a command that doesn't exist
1840
- Fixed a bug in ``gnt-instance move`` (LUInstanceMove) when the primary
1841
  node of the instance returned failures during instance shutdown; this
1842
  adds the option ``--ignore-consistency`` to gnt-instance move
1843

    
1844
And as usual, various improvements to the error messages, documentation
1845
and man pages.
1846

    
1847

    
1848
Version 2.4.1
1849
-------------
1850

    
1851
*(Released Wed, 09 Mar 2011)*
1852

    
1853
Emergency bug-fix release. ``tools/cfgupgrade`` was broken and overwrote
1854
the RAPI users file if run twice (even with ``--dry-run``).
1855

    
1856
The release fixes that bug (nothing else changed).
1857

    
1858

    
1859
Version 2.4.0
1860
-------------
1861

    
1862
*(Released Mon, 07 Mar 2011)*
1863

    
1864
Final 2.4.0 release. Just a few small fixes:
1865

    
1866
- Fixed RAPI node evacuate
1867
- Fixed the kvm-ifup script
1868
- Fixed internal error handling for special job cases
1869
- Updated man page to specify the escaping feature for options
1870

    
1871

    
1872
Version 2.4.0 rc3
1873
-----------------
1874

    
1875
*(Released Mon, 28 Feb 2011)*
1876

    
1877
A critical fix for the ``prealloc_wipe_disks`` feature: it is possible
1878
that this feature wiped the disks of the wrong instance, leading to loss
1879
of data.
1880

    
1881
Other changes:
1882

    
1883
- Fixed title of query field containing instance name
1884
- Expanded the glossary in the documentation
1885
- Fixed one unittest (internal issue)
1886

    
1887

    
1888
Version 2.4.0 rc2
1889
-----------------
1890

    
1891
*(Released Mon, 21 Feb 2011)*
1892

    
1893
A number of bug fixes plus just a couple functionality changes.
1894

    
1895
On the user-visible side, the ``gnt-* list`` command output has changed
1896
with respect to "special" field states. The current rc1 style of display
1897
can be re-enabled by passing a new ``--verbose`` (``-v``) flag, but in
1898
the default output mode special fields states are displayed as follows:
1899

    
1900
- Offline resource: ``*``
1901
- Unavailable/not applicable: ``-``
1902
- Data missing (RPC failure): ``?``
1903
- Unknown field: ``??``
1904

    
1905
Another user-visible change is the addition of ``--force-join`` to
1906
``gnt-node add``.
1907

    
1908
As for bug fixes:
1909

    
1910
- ``tools/cluster-merge`` has seen many fixes and is now enabled again
1911
- Fixed regression in RAPI/instance reinstall where all parameters were
1912
  required (instead of optional)
1913
- Fixed ``gnt-cluster repair-disk-sizes``, was broken since Ganeti 2.2
1914
- Fixed iallocator usage (offline nodes were not considered offline)
1915
- Fixed ``gnt-node list`` with respect to non-vm_capable nodes
1916
- Fixed hypervisor and OS parameter validation with respect to
1917
  non-vm_capable nodes
1918
- Fixed ``gnt-cluster verify`` with respect to offline nodes (mostly
1919
  cosmetic)
1920
- Fixed ``tools/listrunner`` with respect to agent-based usage
1921

    
1922

    
1923
Version 2.4.0 rc1
1924
-----------------
1925

    
1926
*(Released Fri,  4 Feb 2011)*
1927

    
1928
Many changes and fixes since the beta1 release. While there were some
1929
internal changes, the code has been mostly stabilised for the RC
1930
release.
1931

    
1932
Note: the dumb allocator was removed in this release, as it was not kept
1933
up-to-date with the IAllocator protocol changes. It is recommended to
1934
use the ``hail`` command from the ganeti-htools package.
1935

    
1936
Note: the 2.4 and up versions of Ganeti are not compatible with the
1937
0.2.x branch of ganeti-htools. You need to upgrade to
1938
ganeti-htools-0.3.0 (or later).
1939

    
1940
Regressions fixed from 2.3
1941
~~~~~~~~~~~~~~~~~~~~~~~~~~
1942

    
1943
- Fixed the ``gnt-cluster verify-disks`` command
1944
- Made ``gnt-cluster verify-disks`` work in parallel (as opposed to
1945
  serially on nodes)
1946
- Fixed disk adoption breakage
1947
- Fixed wrong headers in instance listing for field aliases
1948

    
1949
Other bugs fixed
1950
~~~~~~~~~~~~~~~~
1951

    
1952
- Fixed corner case in KVM handling of NICs
1953
- Fixed many cases of wrong handling of non-vm_capable nodes
1954
- Fixed a bug where a missing instance symlink was not possible to
1955
  recreate with any ``gnt-*`` command (now ``gnt-instance
1956
  activate-disks`` does it)
1957
- Fixed the volume group name as reported by ``gnt-cluster
1958
  verify-disks``
1959
- Increased timeouts for the import-export code, hopefully leading to
1960
  fewer aborts due network or instance timeouts
1961
- Fixed bug in ``gnt-node list-storage``
1962
- Fixed bug where not all daemons were started on cluster
1963
  initialisation, but only at the first watcher run
1964
- Fixed many bugs in the OOB implementation
1965
- Fixed watcher behaviour in presence of instances with offline
1966
  secondaries
1967
- Fixed instance list output for instances running on the wrong node
1968
- a few fixes to the cluster-merge tool, but it still cannot merge
1969
  multi-node groups (currently it is not recommended to use this tool)
1970

    
1971

    
1972
Improvements
1973
~~~~~~~~~~~~
1974

    
1975
- Improved network configuration for the KVM hypervisor
1976
- Added e1000 as a supported NIC for Xen-HVM
1977
- Improved the lvmstrap tool to also be able to use partitions, as
1978
  opposed to full disks
1979
- Improved speed of disk wiping (the cluster parameter
1980
  ``prealloc_wipe_disks``, so that it has a low impact on the total time
1981
  of instance creations
1982
- Added documentation for the OS parameters
1983
- Changed ``gnt-instance deactivate-disks`` so that it can work if the
1984
  hypervisor is not responding
1985
- Added display of blacklisted and hidden OS information in
1986
  ``gnt-cluster info``
1987
- Extended ``gnt-cluster verify`` to also validate hypervisor, backend,
1988
  NIC and node parameters, which might create problems with currently
1989
  invalid (but undetected) configuration files, but prevents validation
1990
  failures when unrelated parameters are modified
1991
- Changed cluster initialisation to wait for the master daemon to become
1992
  available
1993
- Expanded the RAPI interface:
1994

    
1995
  - Added config redistribution resource
1996
  - Added activation/deactivation of instance disks
1997
  - Added export of console information
1998

    
1999
- Implemented log file reopening on SIGHUP, which allows using
2000
  logrotate(8) for the Ganeti log files
2001
- Added a basic OOB helper script as an example
2002

    
2003

    
2004
Version 2.4.0 beta1
2005
-------------------
2006

    
2007
*(Released Fri, 14 Jan 2011)*
2008

    
2009
User-visible
2010
~~~~~~~~~~~~
2011

    
2012
- Fixed timezone issues when formatting timestamps
2013
- Added support for node groups, available via ``gnt-group`` and other
2014
  commands
2015
- Added out-of-band framework and management, see :doc:`design
2016
  document <design-oob>`
2017
- Removed support for roman numbers from ``gnt-node list`` and
2018
  ``gnt-instance list``.
2019
- Allowed modification of master network interface via ``gnt-cluster
2020
  modify --master-netdev``
2021
- Accept offline secondaries while shutting down instance disks
2022
- Added ``blockdev_prefix`` parameter to Xen PVM and HVM hypervisors
2023
- Added support for multiple LVM volume groups
2024
- Avoid sorting nodes for ``gnt-node list`` if specific nodes are
2025
  requested
2026
- Added commands to list available fields:
2027

    
2028
  - ``gnt-node list-fields``
2029
  - ``gnt-group list-fields``
2030
  - ``gnt-instance list-fields``
2031

    
2032
- Updated documentation and man pages
2033

    
2034
Integration
2035
~~~~~~~~~~~
2036

    
2037
- Moved ``rapi_users`` file into separate directory, now named
2038
  ``.../ganeti/rapi/users``, ``cfgupgrade`` moves the file and creates a
2039
  symlink
2040
- Added new tool for running commands on many machines,
2041
  ``tools/ganeti-listrunner``
2042
- Implemented more verbose result in ``OpInstanceConsole`` opcode, also
2043
  improving the ``gnt-instance console`` output
2044
- Allowed customisation of disk index separator at ``configure`` time
2045
- Export node group allocation policy to :doc:`iallocator <iallocator>`
2046
- Added support for non-partitioned md disks in ``lvmstrap``
2047
- Added script to gracefully power off KVM instances
2048
- Split ``utils`` module into smaller parts
2049
- Changed query operations to return more detailed information, e.g.
2050
  whether an information is unavailable due to an offline node. To use
2051
  this new functionality, the LUXI call ``Query`` must be used. Field
2052
  information is now stored by the master daemon and can be retrieved
2053
  using ``QueryFields``. Instances, nodes and groups can also be queried
2054
  using the new opcodes ``OpQuery`` and ``OpQueryFields`` (not yet
2055
  exposed via RAPI). The following commands make use of this
2056
  infrastructure change:
2057

    
2058
  - ``gnt-group list``
2059
  - ``gnt-group list-fields``
2060
  - ``gnt-node list``
2061
  - ``gnt-node list-fields``
2062
  - ``gnt-instance list``
2063
  - ``gnt-instance list-fields``
2064
  - ``gnt-debug locks``
2065

    
2066
Remote API
2067
~~~~~~~~~~
2068

    
2069
- New RAPI resources (see :doc:`rapi`):
2070

    
2071
  - ``/2/modify``
2072
  - ``/2/groups``
2073
  - ``/2/groups/[group_name]``
2074
  - ``/2/groups/[group_name]/assign-nodes``
2075
  - ``/2/groups/[group_name]/modify``
2076
  - ``/2/groups/[group_name]/rename``
2077
  - ``/2/instances/[instance_name]/disk/[disk_index]/grow``
2078

    
2079
- RAPI changes:
2080

    
2081
  - Implemented ``no_install`` for instance creation
2082
  - Implemented OS parameters for instance reinstallation, allowing
2083
    use of special settings on reinstallation (e.g. for preserving data)
2084

    
2085
Misc
2086
~~~~
2087

    
2088
- Added IPv6 support in import/export
2089
- Pause DRBD synchronization while wiping disks on instance creation
2090
- Updated unittests and QA scripts
2091
- Improved network parameters passed to KVM
2092
- Converted man pages from docbook to reStructuredText
2093

    
2094

    
2095
Version 2.3.1
2096
-------------
2097

    
2098
*(Released Mon, 20 Dec 2010)*
2099

    
2100
Released version 2.3.1~rc1 without any changes.
2101

    
2102

    
2103
Version 2.3.1 rc1
2104
-----------------
2105

    
2106
*(Released Wed, 1 Dec 2010)*
2107

    
2108
- impexpd: Disable OpenSSL compression in socat if possible (backport
2109
  from master, commit e90739d625b, see :doc:`installation guide
2110
  <install-quick>` for details)
2111
- Changed unittest coverage report to exclude test scripts
2112
- Added script to check version format
2113

    
2114

    
2115
Version 2.3.0
2116
-------------
2117

    
2118
*(Released Wed, 1 Dec 2010)*
2119

    
2120
Released version 2.3.0~rc1 without any changes.
2121

    
2122

    
2123
Version 2.3.0 rc1
2124
-----------------
2125

    
2126
*(Released Fri, 19 Nov 2010)*
2127

    
2128
A number of bugfixes and documentation updates:
2129

    
2130
- Update ganeti-os-interface documentation
2131
- Fixed a bug related to duplicate MACs or similar items which should be
2132
  unique
2133
- Fix breakage in OS state modify
2134
- Reinstall instance: disallow offline secondaries (fixes bug related to
2135
  OS changing but reinstall failing)
2136
- plus all the other fixes between 2.2.1 and 2.2.2
2137

    
2138

    
2139
Version 2.3.0 rc0
2140
-----------------
2141

    
2142
*(Released Tue, 2 Nov 2010)*
2143

    
2144
- Fixed clearing of the default iallocator using ``gnt-cluster modify``
2145
- Fixed master failover race with watcher
2146
- Fixed a bug in ``gnt-node modify`` which could lead to an inconsistent
2147
  configuration
2148
- Accept previously stopped instance for export with instance removal
2149
- Simplify and extend the environment variables for instance OS scripts
2150
- Added new node flags, ``master_capable`` and ``vm_capable``
2151
- Added optional instance disk wiping prior during allocation. This is a
2152
  cluster-wide option and can be set/modified using
2153
  ``gnt-cluster {init,modify} --prealloc-wipe-disks``.
2154
- Added IPv6 support, see :doc:`design document <design-2.3>` and
2155
  :doc:`install-quick`
2156
- Added a new watcher option (``--ignore-pause``)
2157
- Added option to ignore offline node on instance start/stop
2158
  (``--ignore-offline``)
2159
- Allow overriding OS parameters with ``gnt-instance reinstall``
2160
- Added ability to change node's secondary IP address using ``gnt-node
2161
  modify``
2162
- Implemented privilege separation for all daemons except
2163
  ``ganeti-noded``, see ``configure`` options
2164
- Complain if an instance's disk is marked faulty in ``gnt-cluster
2165
  verify``
2166
- Implemented job priorities (see ``ganeti(7)`` manpage)
2167
- Ignore failures while shutting down instances during failover from
2168
  offline node
2169
- Exit daemon's bootstrap process only once daemon is ready
2170
- Export more information via ``LUInstanceQuery``/remote API
2171
- Improved documentation, QA and unittests
2172
- RAPI daemon now watches ``rapi_users`` all the time and doesn't need a
2173
  restart if the file was created or changed
2174
- Added LUXI protocol version sent with each request and response,
2175
  allowing detection of server/client mismatches
2176
- Moved the Python scripts among gnt-* and ganeti-* into modules
2177
- Moved all code related to setting up SSH to an external script,
2178
  ``setup-ssh``
2179
- Infrastructure changes for node group support in future versions
2180

    
2181

    
2182
Version 2.2.2
2183
-------------
2184

    
2185
*(Released Fri, 19 Nov 2010)*
2186

    
2187
A few small bugs fixed, and some improvements to the build system:
2188

    
2189
- Fix documentation regarding conversion to drbd
2190
- Fix validation of parameters in cluster modify (``gnt-cluster modify
2191
  -B``)
2192
- Fix error handling in node modify with multiple changes
2193
- Allow remote imports without checked names
2194

    
2195

    
2196
Version 2.2.1
2197
-------------
2198

    
2199
*(Released Tue, 19 Oct 2010)*
2200

    
2201
- Disable SSL session ID cache in RPC client
2202

    
2203

    
2204
Version 2.2.1 rc1
2205
-----------------
2206

    
2207
*(Released Thu, 14 Oct 2010)*
2208

    
2209
- Fix interaction between Curl/GnuTLS and the Python's HTTP server
2210
  (thanks Apollon Oikonomopoulos!), finally allowing the use of Curl
2211
  with GnuTLS
2212
- Fix problems with interaction between Curl and Python's HTTP server,
2213
  resulting in increased speed in many RPC calls
2214
- Improve our release script to prevent breakage with older aclocal and
2215
  Python 2.6
2216

    
2217

    
2218
Version 2.2.1 rc0
2219
-----------------
2220

    
2221
*(Released Thu, 7 Oct 2010)*
2222

    
2223
- Fixed issue 125, replace hardcoded "xenvg" in ``gnt-cluster`` with
2224
  value retrieved from master
2225
- Added support for blacklisted or hidden OS definitions
2226
- Added simple lock monitor (accessible via (``gnt-debug locks``)
2227
- Added support for -mem-path in KVM hypervisor abstraction layer
2228
- Allow overriding instance parameters in tool for inter-cluster
2229
  instance moves (``tools/move-instance``)
2230
- Improved opcode summaries (e.g. in ``gnt-job list``)
2231
- Improve consistency of OS listing by sorting it
2232
- Documentation updates
2233

    
2234

    
2235
Version 2.2.0.1
2236
---------------
2237

    
2238
*(Released Fri, 8 Oct 2010)*
2239

    
2240
- Rebuild with a newer autotools version, to fix python 2.6 compatibility
2241

    
2242

    
2243
Version 2.2.0
2244
-------------
2245

    
2246
*(Released Mon, 4 Oct 2010)*
2247

    
2248
- Fixed regression in ``gnt-instance rename``
2249

    
2250

    
2251
Version 2.2.0 rc2
2252
-----------------
2253

    
2254
*(Released Wed, 22 Sep 2010)*
2255

    
2256
- Fixed OS_VARIANT variable for OS scripts
2257
- Fixed cluster tag operations via RAPI
2258
- Made ``setup-ssh`` exit with non-zero code if an error occurred
2259
- Disabled RAPI CA checks in watcher
2260

    
2261

    
2262
Version 2.2.0 rc1
2263
-----------------
2264

    
2265
*(Released Mon, 23 Aug 2010)*
2266

    
2267
- Support DRBD versions of the format "a.b.c.d"
2268
- Updated manpages
2269
- Re-introduce support for usage from multiple threads in RAPI client
2270
- Instance renames and modify via RAPI
2271
- Work around race condition between processing and archival in job
2272
  queue
2273
- Mark opcodes following failed one as failed, too
2274
- Job field ``lock_status`` was removed due to difficulties making it
2275
  work with the changed job queue in Ganeti 2.2; a better way to monitor
2276
  locks is expected for a later 2.2.x release
2277
- Fixed dry-run behaviour with many commands
2278
- Support ``ssh-agent`` again when adding nodes
2279
- Many additional bugfixes
2280

    
2281

    
2282
Version 2.2.0 rc0
2283
-----------------
2284

    
2285
*(Released Fri, 30 Jul 2010)*
2286

    
2287
Important change: the internal RPC mechanism between Ganeti nodes has
2288
changed from using a home-grown http library (based on the Python base
2289
libraries) to use the PycURL library. This requires that PycURL is
2290
installed on nodes. Please note that on Debian/Ubuntu, PycURL is linked
2291
against GnuTLS by default. cURL's support for GnuTLS had known issues
2292
before cURL 7.21.0 and we recommend using the latest cURL release or
2293
linking against OpenSSL. Most other distributions already link PycURL
2294
and cURL against OpenSSL. The command::
2295

    
2296
  python -c 'import pycurl; print pycurl.version'
2297

    
2298
can be used to determine the libraries PycURL and cURL are linked
2299
against.
2300

    
2301
Other significant changes:
2302

    
2303
- Rewrote much of the internals of the job queue, in order to achieve
2304
  better parallelism; this decouples job query operations from the job
2305
  processing, and it should allow much nicer behaviour of the master
2306
  daemon under load, and it also has uncovered some long-standing bugs
2307
  related to the job serialisation (now fixed)
2308
- Added a default iallocator setting to the cluster parameters,
2309
  eliminating the need to always pass nodes or an iallocator for
2310
  operations that require selection of new node(s)
2311
- Added experimental support for the LXC virtualization method
2312
- Added support for OS parameters, which allows the installation of
2313
  instances to pass parameter to OS scripts in order to customise the
2314
  instance
2315
- Added a hypervisor parameter controlling the migration type (live or
2316
  non-live), since hypervisors have various levels of reliability; this
2317
  has renamed the 'live' parameter to 'mode'
2318
- Added a cluster parameter ``reserved_lvs`` that denotes reserved
2319
  logical volumes, meaning that cluster verify will ignore them and not
2320
  flag their presence as errors
2321
- The watcher will now reset the error count for failed instances after
2322
  8 hours, thus allowing self-healing if the problem that caused the
2323
  instances to be down/fail to start has cleared in the meantime
2324
- Added a cluster parameter ``drbd_usermode_helper`` that makes Ganeti
2325
  check for, and warn, if the drbd module parameter ``usermode_helper``
2326
  is not consistent with the cluster-wide setting; this is needed to
2327
  make diagnose easier of failed drbd creations
2328
- Started adding base IPv6 support, but this is not yet
2329
  enabled/available for use
2330
- Rename operations (cluster, instance) will now return the new name,
2331
  which is especially useful if a short name was passed in
2332
- Added support for instance migration in RAPI
2333
- Added a tool to pre-configure nodes for the SSH setup, before joining
2334
  them to the cluster; this will allow in the future a simplified model
2335
  for node joining (but not yet fully enabled in 2.2); this needs the
2336
  paramiko python library
2337
- Fixed handling of name-resolving errors
2338
- Fixed consistency of job results on the error path
2339
- Fixed master-failover race condition when executed multiple times in
2340
  sequence
2341
- Fixed many bugs related to the job queue (mostly introduced during the
2342
  2.2 development cycle, so not all are impacting 2.1)
2343
- Fixed instance migration with missing disk symlinks
2344
- Fixed handling of unknown jobs in ``gnt-job archive``
2345
- And many other small fixes/improvements
2346

    
2347
Internal changes:
2348

    
2349
- Enhanced both the unittest and the QA coverage
2350
- Switched the opcode validation to a generic model, and extended the
2351
  validation to all opcode parameters
2352
- Changed more parts of the code that write shell scripts to use the
2353
  same class for this
2354
- Switched the master daemon to use the asyncore library for the Luxi
2355
  server endpoint
2356

    
2357

    
2358
Version 2.2.0 beta0
2359
-------------------
2360

    
2361
*(Released Thu, 17 Jun 2010)*
2362

    
2363
- Added tool (``move-instance``) and infrastructure to move instances
2364
  between separate clusters (see :doc:`separate documentation
2365
  <move-instance>` and :doc:`design document <design-2.2>`)
2366
- Added per-request RPC timeout
2367
- RAPI now requires a Content-Type header for requests with a body (e.g.
2368
  ``PUT`` or ``POST``) which must be set to ``application/json`` (see
2369
  :rfc:`2616` (HTTP/1.1), section 7.2.1)
2370
- ``ganeti-watcher`` attempts to restart ``ganeti-rapi`` if RAPI is not
2371
  reachable
2372
- Implemented initial support for running Ganeti daemons as separate
2373
  users, see configure-time flags ``--with-user-prefix`` and
2374
  ``--with-group-prefix`` (only ``ganeti-rapi`` is supported at this
2375
  time)
2376
- Instances can be removed after export (``gnt-backup export
2377
  --remove-instance``)
2378
- Self-signed certificates generated by Ganeti now use a 2048 bit RSA
2379
  key (instead of 1024 bit)
2380
- Added new cluster configuration file for cluster domain secret
2381
- Import/export now use SSL instead of SSH
2382
- Added support for showing estimated time when exporting an instance,
2383
  see the ``ganeti-os-interface(7)`` manpage and look for
2384
  ``EXP_SIZE_FD``
2385

    
2386

    
2387
Version 2.1.8
2388
-------------
2389

    
2390
*(Released Tue, 16 Nov 2010)*
2391

    
2392
Some more bugfixes. Unless critical bugs occur, this will be the last
2393
2.1 release:
2394

    
2395
- Fix case of MAC special-values
2396
- Fix mac checker regex
2397
- backend: Fix typo causing "out of range" error
2398
- Add missing --units in gnt-instance list man page
2399

    
2400

    
2401
Version 2.1.7
2402
-------------
2403

    
2404
*(Released Tue, 24 Aug 2010)*
2405

    
2406
Bugfixes only:
2407
  - Don't ignore secondary node silently on non-mirrored disk templates
2408
    (issue 113)
2409
  - Fix --master-netdev arg name in gnt-cluster(8) (issue 114)
2410
  - Fix usb_mouse parameter breaking with vnc_console (issue 109)
2411
  - Properly document the usb_mouse parameter
2412
  - Fix path in ganeti-rapi(8) (issue 116)
2413
  - Adjust error message when the ganeti user's .ssh directory is
2414
    missing
2415
  - Add same-node-check when changing the disk template to drbd
2416

    
2417

    
2418
Version 2.1.6
2419
-------------
2420

    
2421
*(Released Fri, 16 Jul 2010)*
2422

    
2423
Bugfixes only:
2424
  - Add an option to only select some reboot types during qa/burnin.
2425
    (on some hypervisors consequent reboots are not supported)
2426
  - Fix infrequent race condition in master failover. Sometimes the old
2427
    master ip address would be still detected as up for a short time
2428
    after it was removed, causing failover to fail.
2429
  - Decrease mlockall warnings when the ctypes module is missing. On
2430
    Python 2.4 we support running even if no ctypes module is installed,
2431
    but we were too verbose about this issue.
2432
  - Fix building on old distributions, on which man doesn't have a
2433
    --warnings option.
2434
  - Fix RAPI not to ignore the MAC address on instance creation
2435
  - Implement the old instance creation format in the RAPI client.
2436

    
2437

    
2438
Version 2.1.5
2439
-------------
2440

    
2441
*(Released Thu, 01 Jul 2010)*
2442

    
2443
A small bugfix release:
2444
  - Fix disk adoption: broken by strict --disk option checking in 2.1.4
2445
  - Fix batch-create: broken in the whole 2.1 series due to a lookup on
2446
    a non-existing option
2447
  - Fix instance create: the --force-variant option was ignored
2448
  - Improve pylint 0.21 compatibility and warnings with Python 2.6
2449
  - Fix modify node storage with non-FQDN arguments
2450
  - Fix RAPI client to authenticate under Python 2.6 when used
2451
    for more than 5 requests needing authentication
2452
  - Fix gnt-instance modify -t (storage) giving a wrong error message
2453
    when converting a non-shutdown drbd instance to plain
2454

    
2455

    
2456
Version 2.1.4
2457
-------------
2458

    
2459
*(Released Fri, 18 Jun 2010)*
2460

    
2461
A small bugfix release:
2462

    
2463
  - Fix live migration of KVM instances started with older Ganeti
2464
    versions which had fewer hypervisor parameters
2465
  - Fix gnt-instance grow-disk on down instances
2466
  - Fix an error-reporting bug during instance migration
2467
  - Better checking of the ``--net`` and ``--disk`` values, to avoid
2468
    silently ignoring broken ones
2469
  - Fix an RPC error reporting bug affecting, for example, RAPI client
2470
    users
2471
  - Fix bug triggered by different API version os-es on different nodes
2472
  - Fix a bug in instance startup with custom hvparams: OS level
2473
    parameters would fail to be applied.
2474
  - Fix the RAPI client under Python 2.6 (but more work is needed to
2475
    make it work completely well with OpenSSL)
2476
  - Fix handling of errors when resolving names from DNS
2477

    
2478

    
2479
Version 2.1.3
2480
-------------
2481

    
2482
*(Released Thu, 3 Jun 2010)*
2483

    
2484
A medium sized development cycle. Some new features, and some
2485
fixes/small improvements/cleanups.
2486

    
2487
Significant features
2488
~~~~~~~~~~~~~~~~~~~~
2489

    
2490
The node deamon now tries to mlock itself into memory, unless the
2491
``--no-mlock`` flag is passed. It also doesn't fail if it can't write
2492
its logs, and falls back to console logging. This allows emergency
2493
features such as ``gnt-node powercycle`` to work even in the event of a
2494
broken node disk (tested offlining the disk hosting the node's
2495
filesystem and dropping its memory caches; don't try this at home)
2496

    
2497
KVM: add vhost-net acceleration support. It can be tested with a new
2498
enough version of the kernel and of qemu-kvm.
2499

    
2500
KVM: Add instance chrooting feature. If you use privilege dropping for
2501
your VMs you can also now force them to chroot to an empty directory,
2502
before starting the emulated guest.
2503

    
2504
KVM: Add maximum migration bandwith and maximum downtime tweaking
2505
support (requires a new-enough version of qemu-kvm).
2506

    
2507
Cluster verify will now warn if the master node doesn't have the master
2508
ip configured on it.
2509

    
2510
Add a new (incompatible) instance creation request format to RAPI which
2511
supports all parameters (previously only a subset was supported, and it
2512
wasn't possible to extend the old format to accomodate all the new
2513
features. The old format is still supported, and a client can check for
2514
this feature, before using it, by checking for its presence in the
2515
``features`` RAPI resource.
2516

    
2517
Now with ancient latin support. Try it passing the ``--roman`` option to
2518
``gnt-instance info``, ``gnt-cluster info`` or ``gnt-node list``
2519
(requires the python-roman module to be installed, in order to work).
2520

    
2521
Other changes
2522
~~~~~~~~~~~~~
2523

    
2524
As usual many internal code refactorings, documentation updates, and
2525
such. Among others:
2526

    
2527
  - Lots of improvements and cleanups to the experimental Remote API
2528
    (RAPI) client library.
2529
  - A new unit test suite for the core daemon libraries.
2530
  - A fix to creating missing directories makes sure the umask is not
2531
    applied anymore. This enforces the same directory permissions
2532
    everywhere.
2533
  - Better handling terminating daemons with ctrl+c (used when running
2534
    them in debugging mode).
2535
  - Fix a race condition in live migrating a KVM instance, when stat()
2536
    on the old proc status file returned EINVAL, which is an unexpected
2537
    value.
2538
  - Fixed manpage checking with newer man and utf-8 charachters. But now
2539
    you need the en_US.UTF-8 locale enabled to build Ganeti from git.
2540

    
2541

    
2542
Version 2.1.2.1
2543
---------------
2544

    
2545
*(Released Fri, 7 May 2010)*
2546

    
2547
Fix a bug which prevented untagged KVM instances from starting.
2548

    
2549

    
2550
Version 2.1.2
2551
-------------
2552

    
2553
*(Released Fri, 7 May 2010)*
2554

    
2555
Another release with a long development cycle, during which many
2556
different features were added.
2557

    
2558
Significant features
2559
~~~~~~~~~~~~~~~~~~~~
2560

    
2561
The KVM hypervisor now can run the individual instances as non-root, to
2562
reduce the impact of a VM being hijacked due to bugs in the
2563
hypervisor. It is possible to run all instances as a single (non-root)
2564
user, to manually specify a user for each instance, or to dynamically
2565
allocate a user out of a cluster-wide pool to each instance, with the
2566
guarantee that no two instances will run under the same user ID on any
2567
given node.
2568

    
2569
An experimental RAPI client library, that can be used standalone
2570
(without the other Ganeti libraries), is provided in the source tree as
2571
``lib/rapi/client.py``. Note this client might change its interface in
2572
the future, as we iterate on its capabilities.
2573

    
2574
A new command, ``gnt-cluster renew-crypto`` has been added to easily
2575
replace the cluster's certificates and crypto keys. This might help in
2576
case they have been compromised, or have simply expired.
2577

    
2578
A new disk option for instance creation has been added that allows one
2579
to "adopt" currently existing logical volumes, with data
2580
preservation. This should allow easier migration to Ganeti from
2581
unmanaged (or managed via other software) instances.
2582

    
2583
Another disk improvement is the possibility to convert between redundant
2584
(DRBD) and plain (LVM) disk configuration for an instance. This should
2585
allow better scalability (starting with one node and growing the
2586
cluster, or shrinking a two-node cluster to one node).
2587

    
2588
A new feature that could help with automated node failovers has been
2589
implemented: if a node sees itself as offline (by querying the master
2590
candidates), it will try to shutdown (hard) all instances and any active
2591
DRBD devices. This reduces the risk of duplicate instances if an
2592
external script automatically failovers the instances on such nodes. To
2593
enable this, the cluster parameter ``maintain_node_health`` should be
2594
enabled; in the future this option (per the name) will enable other
2595
automatic maintenance features.
2596

    
2597
Instance export/import now will reuse the original instance
2598
specifications for all parameters; that means exporting an instance,
2599
deleting it and the importing it back should give an almost identical
2600
instance. Note that the default import behaviour has changed from
2601
before, where it created only one NIC; now it recreates the original
2602
number of NICs.
2603

    
2604
Cluster verify has added a few new checks: SSL certificates validity,
2605
/etc/hosts consistency across the cluster, etc.
2606

    
2607
Other changes
2608
~~~~~~~~~~~~~
2609

    
2610
As usual, many internal changes were done, documentation fixes,
2611
etc. Among others:
2612

    
2613
- Fixed cluster initialization with disabled cluster storage (regression
2614
  introduced in 2.1.1)
2615
- File-based storage supports growing the disks
2616
- Fixed behaviour of node role changes
2617
- Fixed cluster verify for some corner cases, plus a general rewrite of
2618
  cluster verify to allow future extension with more checks
2619
- Fixed log spamming by watcher and node daemon (regression introduced
2620
  in 2.1.1)
2621
- Fixed possible validation issues when changing the list of enabled
2622
  hypervisors
2623
- Fixed cleanup of /etc/hosts during node removal
2624
- Fixed RAPI response for invalid methods
2625
- Fixed bug with hashed passwords in ``ganeti-rapi`` daemon
2626
- Multiple small improvements to the KVM hypervisor (VNC usage, booting
2627
  from ide disks, etc.)
2628
- Allow OS changes without re-installation (to record a changed OS
2629
  outside of Ganeti, or to allow OS renames)
2630
- Allow instance creation without OS installation (useful for example if
2631
  the OS will be installed manually, or restored from a backup not in
2632
  Ganeti format)
2633
- Implemented option to make cluster ``copyfile`` use the replication
2634
  network
2635
- Added list of enabled hypervisors to ssconf (possibly useful for
2636
  external scripts)
2637
- Added a new tool (``tools/cfgupgrade12``) that allows upgrading from
2638
  1.2 clusters
2639
- A partial form of node re-IP is possible via node readd, which now
2640
  allows changed node primary IP
2641
- Command line utilities now show an informational message if the job is
2642
  waiting for a lock
2643
- The logs of the master daemon now show the PID/UID/GID of the
2644
  connected client
2645

    
2646

    
2647
Version 2.1.1
2648
-------------
2649

    
2650
*(Released Fri, 12 Mar 2010)*
2651

    
2652
During the 2.1.0 long release candidate cycle, a lot of improvements and
2653
changes have accumulated with were released later as 2.1.1.
2654

    
2655
Major changes
2656
~~~~~~~~~~~~~
2657

    
2658
The node evacuate command (``gnt-node evacuate``) was significantly
2659
rewritten, and as such the IAllocator protocol was changed - a new
2660
request type has been added. This unfortunate change during a stable
2661
series is designed to improve performance of node evacuations; on
2662
clusters with more than about five nodes and which are well-balanced,
2663
evacuation should proceed in parallel for all instances of the node
2664
being evacuated. As such, any existing IAllocator scripts need to be
2665
updated, otherwise the above command will fail due to the unknown
2666
request. The provided "dumb" allocator has not been updated; but the
2667
ganeti-htools package supports the new protocol since version 0.2.4.
2668

    
2669
Another important change is increased validation of node and instance
2670
names. This might create problems in special cases, if invalid host
2671
names are being used.
2672

    
2673
Also, a new layer of hypervisor parameters has been added, that sits at
2674
OS level between the cluster defaults and the instance ones. This allows
2675
customisation of virtualization parameters depending on the installed
2676
OS. For example instances with OS 'X' may have a different KVM kernel
2677
(or any other parameter) than the cluster defaults. This is intended to
2678
help managing a multiple OSes on the same cluster, without manual
2679
modification of each instance's parameters.
2680

    
2681
A tool for merging clusters, ``cluster-merge``, has been added in the
2682
tools sub-directory.
2683

    
2684
Bug fixes
2685
~~~~~~~~~
2686

    
2687
- Improved the int/float conversions that should make the code more
2688
  robust in face of errors from the node daemons
2689
- Fixed the remove node code in case of internal configuration errors
2690
- Fixed the node daemon behaviour in face of inconsistent queue
2691
  directory (e.g. read-only file-system where we can't open the files
2692
  read-write, etc.)
2693
- Fixed the behaviour of gnt-node modify for master candidate demotion;
2694
  now it either aborts cleanly or, if given the new "auto_promote"
2695
  parameter, will automatically promote other nodes as needed
2696
- Fixed compatibility with (unreleased yet) Python 2.6.5 that would
2697
  completely prevent Ganeti from working
2698
- Fixed bug for instance export when not all disks were successfully
2699
  exported
2700
- Fixed behaviour of node add when the new node is slow in starting up
2701
  the node daemon
2702
- Fixed handling of signals in the LUXI client, which should improve
2703
  behaviour of command-line scripts
2704
- Added checks for invalid node/instance names in the configuration (now
2705
  flagged during cluster verify)
2706
- Fixed watcher behaviour for disk activation errors
2707
- Fixed two potentially endless loops in http library, which led to the
2708
  RAPI daemon hanging and consuming 100% CPU in some cases
2709
- Fixed bug in RAPI daemon related to hashed passwords
2710
- Fixed bug for unintended qemu-level bridging of multi-NIC KVM
2711
  instances
2712
- Enhanced compatibility with non-Debian OSes, but not using absolute
2713
  path in some commands and allowing customisation of the ssh
2714
  configuration directory
2715
- Fixed possible future issue with new Python versions by abiding to the
2716
  proper use of ``__slots__`` attribute on classes
2717
- Added checks that should prevent directory traversal attacks
2718
- Many documentation fixes based on feedback from users
2719

    
2720
New features
2721
~~~~~~~~~~~~
2722

    
2723
- Added an "early_release" more for instance replace disks and node
2724
  evacuate, where we release locks earlier and thus allow higher
2725
  parallelism within the cluster
2726
- Added watcher hooks, intended to allow the watcher to restart other
2727
  daemons (e.g. from the ganeti-nbma project), but they can be used of
2728
  course for any other purpose
2729
- Added a compile-time disable for DRBD barriers, to increase
2730
  performance if the administrator trusts the power supply or the
2731
  storage system to not lose writes
2732
- Added the option of using syslog for logging instead of, or in
2733
  addition to, Ganeti's own log files
2734
- Removed boot restriction for paravirtual NICs for KVM, recent versions
2735
  can indeed boot from a paravirtual NIC
2736
- Added a generic debug level for many operations; while this is not
2737
  used widely yet, it allows one to pass the debug value all the way to
2738
  the OS scripts
2739
- Enhanced the hooks environment for instance moves (failovers,
2740
  migrations) where the primary/secondary nodes changed during the
2741
  operation, by adding {NEW,OLD}_{PRIMARY,SECONDARY} vars
2742
- Enhanced data validations for many user-supplied values; one important
2743
  item is the restrictions imposed on instance and node names, which
2744
  might reject some (invalid) host names
2745
- Add a configure-time option to disable file-based storage, if it's not
2746
  needed; this allows greater security separation between the master
2747
  node and the other nodes from the point of view of the inter-node RPC
2748
  protocol
2749
- Added user notification in interactive tools if job is waiting in the
2750
  job queue or trying to acquire locks
2751
- Added log messages when a job is waiting for locks
2752
- Added filtering by node tags in instance operations which admit
2753
  multiple instances (start, stop, reboot, reinstall)
2754
- Added a new tool for cluster mergers, ``cluster-merge``
2755
- Parameters from command line which are of the form ``a=b,c=d`` can now
2756
  use backslash escapes to pass in values which contain commas,
2757
  e.g. ``a=b\\c,d=e`` where the 'a' parameter would get the value
2758
  ``b,c``
2759
- For KVM, the instance name is the first parameter passed to KVM, so
2760
  that it's more visible in the process list
2761

    
2762

    
2763
Version 2.1.0
2764
-------------
2765

    
2766
*(Released Tue, 2 Mar 2010)*
2767

    
2768
Ganeti 2.1 brings many improvements with it. Major changes:
2769

    
2770
- Added infrastructure to ease automated disk repairs
2771
- Added new daemon to export configuration data in a cheaper way than
2772
  using the remote API
2773
- Instance NICs can now be routed instead of being associated with a
2774
  networking bridge
2775
- Improved job locking logic to reduce impact of jobs acquiring multiple
2776
  locks waiting for other long-running jobs
2777

    
2778
In-depth implementation details can be found in the Ganeti 2.1 design
2779
document.
2780

    
2781
Details
2782
~~~~~~~
2783

    
2784
- Added chroot hypervisor
2785
- Added more options to xen-hvm hypervisor (``kernel_path`` and
2786
  ``device_model``)
2787
- Added more options to xen-pvm hypervisor (``use_bootloader``,
2788
  ``bootloader_path`` and ``bootloader_args``)
2789
- Added the ``use_localtime`` option for the xen-hvm and kvm
2790
  hypervisors, and the default value for this has changed to false (in
2791
  2.0 xen-hvm always enabled it)
2792
- Added luxi call to submit multiple jobs in one go
2793
- Added cluster initialization option to not modify ``/etc/hosts``
2794
  file on nodes
2795
- Added network interface parameters
2796
- Added dry run mode to some LUs
2797
- Added RAPI resources:
2798

    
2799
  - ``/2/instances/[instance_name]/info``
2800
  - ``/2/instances/[instance_name]/replace-disks``
2801
  - ``/2/nodes/[node_name]/evacuate``
2802
  - ``/2/nodes/[node_name]/migrate``
2803
  - ``/2/nodes/[node_name]/role``
2804
  - ``/2/nodes/[node_name]/storage``
2805
  - ``/2/nodes/[node_name]/storage/modify``
2806
  - ``/2/nodes/[node_name]/storage/repair``
2807

    
2808
- Added OpCodes to evacuate or migrate all instances on a node
2809
- Added new command to list storage elements on nodes (``gnt-node
2810
  list-storage``) and modify them (``gnt-node modify-storage``)
2811
- Added new ssconf files with master candidate IP address
2812
  (``ssconf_master_candidates_ips``), node primary IP address
2813
  (``ssconf_node_primary_ips``) and node secondary IP address
2814
  (``ssconf_node_secondary_ips``)
2815
- Added ``ganeti-confd`` and a client library to query the Ganeti
2816
  configuration via UDP
2817
- Added ability to run hooks after cluster initialization and before
2818
  cluster destruction
2819
- Added automatic mode for disk replace (``gnt-instance replace-disks
2820
  --auto``)
2821
- Added ``gnt-instance recreate-disks`` to re-create (empty) disks
2822
  after catastrophic data-loss
2823
- Added ``gnt-node repair-storage`` command to repair damaged LVM volume
2824
  groups
2825
- Added ``gnt-instance move`` command to move instances
2826
- Added ``gnt-cluster watcher`` command to control watcher
2827
- Added ``gnt-node powercycle`` command to powercycle nodes
2828
- Added new job status field ``lock_status``
2829
- Added parseable error codes to cluster verification (``gnt-cluster
2830
  verify --error-codes``) and made output less verbose (use
2831
  ``--verbose`` to restore previous behaviour)
2832
- Added UUIDs to the main config entities (cluster, nodes, instances)
2833
- Added support for OS variants
2834
- Added support for hashed passwords in the Ganeti remote API users file
2835
  (``rapi_users``)
2836
- Added option to specify maximum timeout on instance shutdown
2837
- Added ``--no-ssh-init`` option to ``gnt-cluster init``
2838
- Added new helper script to start and stop Ganeti daemons
2839
  (``daemon-util``), with the intent to reduce the work necessary to
2840
  adjust Ganeti for non-Debian distributions and to start/stop daemons
2841
  from one place
2842
- Added more unittests
2843
- Fixed critical bug in ganeti-masterd startup
2844
- Removed the configure-time ``kvm-migration-port`` parameter, this is
2845
  now customisable at the cluster level for both the KVM and Xen
2846
  hypervisors using the new ``migration_port`` parameter
2847
- Pass ``INSTANCE_REINSTALL`` variable to OS installation script when
2848
  reinstalling an instance
2849
- Allowed ``@`` in tag names
2850
- Migrated to Sphinx (http://sphinx.pocoo.org/) for documentation
2851
- Many documentation updates
2852
- Distribute hypervisor files on ``gnt-cluster redist-conf``
2853
- ``gnt-instance reinstall`` can now reinstall multiple instances
2854
- Updated many command line parameters
2855
- Introduced new OS API version 15
2856
- No longer support a default hypervisor
2857
- Treat virtual LVs as inexistent
2858
- Improved job locking logic to reduce lock contention
2859
- Match instance and node names case insensitively
2860
- Reimplemented bash completion script to be more complete
2861
- Improved burnin
2862

    
2863

    
2864
Version 2.0.6
2865
-------------
2866

    
2867
*(Released Thu, 4 Feb 2010)*
2868

    
2869
- Fix cleaner behaviour on nodes not in a cluster (Debian bug 568105)
2870
- Fix a string formatting bug
2871
- Improve safety of the code in some error paths
2872
- Improve data validation in the master of values returned from nodes
2873

    
2874

    
2875
Version 2.0.5
2876
-------------
2877

    
2878
*(Released Thu, 17 Dec 2009)*
2879

    
2880
- Fix security issue due to missing validation of iallocator names; this
2881
  allows local and remote execution of arbitrary executables
2882
- Fix failure of gnt-node list during instance removal
2883
- Ship the RAPI documentation in the archive
2884

    
2885

    
2886
Version 2.0.4
2887
-------------
2888

    
2889
*(Released Wed, 30 Sep 2009)*
2890

    
2891
- Fixed many wrong messages
2892
- Fixed a few bugs related to the locking library
2893
- Fixed MAC checking at instance creation time
2894
- Fixed a DRBD parsing bug related to gaps in /proc/drbd
2895
- Fixed a few issues related to signal handling in both daemons and
2896
  scripts
2897
- Fixed the example startup script provided
2898
- Fixed insserv dependencies in the example startup script (patch from
2899
  Debian)
2900
- Fixed handling of drained nodes in the iallocator framework
2901
- Fixed handling of KERNEL_PATH parameter for xen-hvm (Debian bug
2902
  #528618)
2903
- Fixed error related to invalid job IDs in job polling
2904
- Fixed job/opcode persistence on unclean master shutdown
2905
- Fixed handling of partial job processing after unclean master
2906
  shutdown
2907
- Fixed error reporting from LUs, previously all errors were converted
2908
  into execution errors
2909
- Fixed error reporting from burnin
2910
- Decreased significantly the memory usage of the job queue
2911
- Optimised slightly multi-job submission
2912
- Optimised slightly opcode loading
2913
- Backported the multi-job submit framework from the development
2914
  branch; multi-instance start and stop should be faster
2915
- Added script to clean archived jobs after 21 days; this will reduce
2916
  the size of the queue directory
2917
- Added some extra checks in disk size tracking
2918
- Added an example ethers hook script
2919
- Added a cluster parameter that prevents Ganeti from modifying of
2920
  /etc/hosts
2921
- Added more node information to RAPI responses
2922
- Added a ``gnt-job watch`` command that allows following the ouput of a
2923
  job
2924
- Added a bind-address option to ganeti-rapi
2925
- Added more checks to the configuration verify
2926
- Enhanced the burnin script such that some operations can be retried
2927
  automatically
2928
- Converted instance reinstall to multi-instance model
2929

    
2930

    
2931
Version 2.0.3
2932
-------------
2933

    
2934
*(Released Fri, 7 Aug 2009)*
2935

    
2936
- Added ``--ignore-size`` to the ``gnt-instance activate-disks`` command
2937
  to allow using the pre-2.0.2 behaviour in activation, if any existing
2938
  instances have mismatched disk sizes in the configuration
2939
- Added ``gnt-cluster repair-disk-sizes`` command to check and update
2940
  any configuration mismatches for disk sizes
2941
- Added ``gnt-master cluste-failover --no-voting`` to allow master
2942
  failover to work on two-node clusters
2943
- Fixed the ``--net`` option of ``gnt-backup import``, which was
2944
  unusable
2945
- Fixed detection of OS script errors in ``gnt-backup export``
2946
- Fixed exit code of ``gnt-backup export``
2947

    
2948

    
2949
Version 2.0.2
2950
-------------
2951

    
2952
*(Released Fri, 17 Jul 2009)*
2953

    
2954
- Added experimental support for stripped logical volumes; this should
2955
  enhance performance but comes with a higher complexity in the block
2956
  device handling; stripping is only enabled when passing
2957
  ``--with-lvm-stripecount=N`` to ``configure``, but codepaths are
2958
  affected even in the non-stripped mode
2959
- Improved resiliency against transient failures at the end of DRBD
2960
  resyncs, and in general of DRBD resync checks
2961
- Fixed a couple of issues with exports and snapshot errors
2962
- Fixed a couple of issues in instance listing
2963
- Added display of the disk size in ``gnt-instance info``
2964
- Fixed checking for valid OSes in instance creation
2965
- Fixed handling of the "vcpus" parameter in instance listing and in
2966
  general of invalid parameters
2967
- Fixed http server library, and thus RAPI, to handle invalid
2968
  username/password combinations correctly; this means that now they
2969
  report unauthorized for queries too, not only for modifications,
2970
  allowing earlier detect of configuration problems
2971
- Added a new "role" node list field, equivalent to the master/master
2972
  candidate/drained/offline flags combinations
2973
- Fixed cluster modify and changes of candidate pool size
2974
- Fixed cluster verify error messages for wrong files on regular nodes
2975
- Fixed a couple of issues with node demotion from master candidate role
2976
- Fixed node readd issues
2977
- Added non-interactive mode for ``ganeti-masterd --no-voting`` startup
2978
- Added a new ``--no-voting`` option for masterfailover to fix failover
2979
  on two-nodes clusters when the former master node is unreachable
2980
- Added instance reinstall over RAPI
2981

    
2982

    
2983
Version 2.0.1
2984
-------------
2985

    
2986
*(Released Tue, 16 Jun 2009)*
2987

    
2988
- added ``-H``/``-B`` startup parameters to ``gnt-instance``, which will
2989
  allow re-adding the start in single-user option (regression from 1.2)
2990
- the watcher writes the instance status to a file, to allow monitoring
2991
  to report the instance status (from the master) based on cached
2992
  results of the watcher's queries; while this can get stale if the
2993
  watcher is being locked due to other work on the cluster, this is
2994
  still an improvement
2995
- the watcher now also restarts the node daemon and the rapi daemon if
2996
  they died
2997
- fixed the watcher to handle full and drained queue cases
2998
- hooks export more instance data in the environment, which helps if
2999
  hook scripts need to take action based on the instance's properties
3000
  (no longer need to query back into ganeti)
3001
- instance failovers when the instance is stopped do not check for free
3002
  RAM, so that failing over a stopped instance is possible in low memory
3003
  situations
3004
- rapi uses queries for tags instead of jobs (for less job traffic), and
3005
  for cluster tags it won't talk to masterd at all but read them from
3006
  ssconf
3007
- a couple of error handling fixes in RAPI
3008
- drbd handling: improved the error handling of inconsistent disks after
3009
  resync to reduce the frequency of "there are some degraded disks for
3010
  this instance" messages
3011
- fixed a bug in live migration when DRBD doesn't want to reconnect (the
3012
  error handling path called a wrong function name)
3013

    
3014

    
3015
Version 2.0.0
3016
-------------
3017

    
3018
*(Released Wed, 27 May 2009)*
3019

    
3020
- no changes from rc5
3021

    
3022

    
3023
Version 2.0 rc5
3024
---------------
3025

    
3026
*(Released Wed, 20 May 2009)*
3027

    
3028
- fix a couple of bugs (validation, argument checks)
3029
- fix ``gnt-cluster getmaster`` on non-master nodes (regression)
3030
- some small improvements to RAPI and IAllocator
3031
- make watcher automatically start the master daemon if down
3032

    
3033

    
3034
Version 2.0 rc4
3035
---------------
3036

    
3037
*(Released Mon, 27 Apr 2009)*
3038

    
3039
- change the OS list to not require locks; this helps with big clusters
3040
- fix ``gnt-cluster verify`` and ``gnt-cluster verify-disks`` when the
3041
  volume group is broken
3042
- ``gnt-instance info``, without any arguments, doesn't run for all
3043
  instances anymore; either pass ``--all`` or pass the desired
3044
  instances; this helps against mistakes on big clusters where listing
3045
  the information for all instances takes a long time
3046
- miscellaneous doc and man pages fixes
3047

    
3048

    
3049
Version 2.0 rc3
3050
---------------
3051

    
3052
*(Released Wed, 8 Apr 2009)*
3053

    
3054
- Change the internal locking model of some ``gnt-node`` commands, in
3055
  order to reduce contention (and blocking of master daemon) when
3056
  batching many creation/reinstall jobs
3057
- Fixes to Xen soft reboot
3058
- No longer build documentation at build time, instead distribute it in
3059
  the archive, in order to reduce the need for the whole docbook/rst
3060
  toolchains
3061

    
3062

    
3063
Version 2.0 rc2
3064
---------------
3065

    
3066
*(Released Fri, 27 Mar 2009)*
3067

    
3068
- Now the cfgupgrade scripts works and can upgrade 1.2.7 clusters to 2.0
3069
- Fix watcher startup sequence, improves the behaviour of busy clusters
3070
- Some other fixes in ``gnt-cluster verify``, ``gnt-instance
3071
  replace-disks``, ``gnt-instance add``, ``gnt-cluster queue``, KVM VNC
3072
  bind address and other places
3073
- Some documentation fixes and updates
3074

    
3075

    
3076
Version 2.0 rc1
3077
---------------
3078

    
3079
*(Released Mon, 2 Mar 2009)*
3080

    
3081
- More documentation updates, now all docs should be more-or-less
3082
  up-to-date
3083
- A couple of small fixes (mixed hypervisor clusters, offline nodes,
3084
  etc.)
3085
- Added a customizable HV_KERNEL_ARGS hypervisor parameter (for Xen PVM
3086
  and KVM)
3087
- Fix an issue related to $libdir/run/ganeti and cluster creation
3088

    
3089

    
3090
Version 2.0 beta2
3091
-----------------
3092

    
3093
*(Released Thu, 19 Feb 2009)*
3094

    
3095
- Xen PVM and KVM have switched the default value for the instance root
3096
  disk to the first partition on the first drive, instead of the whole
3097
  drive; this means that the OS installation scripts must be changed
3098
  accordingly
3099
- Man pages have been updated
3100
- RAPI has been switched by default to HTTPS, and the exported functions
3101
  should all work correctly
3102
- RAPI v1 has been removed
3103
- Many improvements to the KVM hypervisor
3104
- Block device errors are now better reported
3105
- Many other bugfixes and small improvements
3106

    
3107

    
3108
Version 2.0 beta1
3109
-----------------
3110

    
3111
*(Released Mon, 26 Jan 2009)*
3112

    
3113
- Version 2 is a general rewrite of the code and therefore the
3114
  differences are too many to list, see the design document for 2.0 in
3115
  the ``doc/`` subdirectory for more details
3116
- In this beta version there is not yet a migration path from 1.2 (there
3117
  will be one in the final 2.0 release)
3118
- A few significant changes are:
3119

    
3120
  - all commands are executed by a daemon (``ganeti-masterd``) and the
3121
    various ``gnt-*`` commands are just front-ends to it
3122
  - all the commands are entered into, and executed from a job queue,
3123
    see the ``gnt-job(8)`` manpage
3124
  - the RAPI daemon supports read-write operations, secured by basic
3125
    HTTP authentication on top of HTTPS
3126
  - DRBD version 0.7 support has been removed, DRBD 8 is the only
3127
    supported version (when migrating from Ganeti 1.2 to 2.0, you need
3128
    to migrate to DRBD 8 first while still running Ganeti 1.2)
3129
  - DRBD devices are using statically allocated minor numbers, which
3130
    will be assigned to existing instances during the migration process
3131
  - there is support for both Xen PVM and Xen HVM instances running on
3132
    the same cluster
3133
  - KVM virtualization is supported too
3134
  - file-based storage has been implemented, which means that it is
3135
    possible to run the cluster without LVM and DRBD storage, for
3136
    example using a shared filesystem exported from shared storage (and
3137
    still have live migration)
3138

    
3139

    
3140
Version 1.2.7
3141
-------------
3142

    
3143
*(Released Tue, 13 Jan 2009)*
3144

    
3145
- Change the default reboot type in ``gnt-instance reboot`` to "hard"
3146
- Reuse the old instance mac address by default on instance import, if
3147
  the instance name is the same.
3148
- Handle situations in which the node info rpc returns incomplete
3149
  results (issue 46)
3150
- Add checks for tcp/udp ports collisions in ``gnt-cluster verify``
3151
- Improved version of batcher:
3152

    
3153
  - state file support
3154
  - instance mac address support
3155
  - support for HVM clusters/instances
3156

    
3157
- Add an option to show the number of cpu sockets and nodes in
3158
  ``gnt-node list``
3159
- Support OSes that handle more than one version of the OS api (but do
3160
  not change the current API in any other way)
3161
- Fix ``gnt-node migrate``
3162
- ``gnt-debug`` man page
3163
- Fixes various more typos and small issues
3164
- Increase disk resync maximum speed to 60MB/s (from 30MB/s)
3165

    
3166

    
3167
Version 1.2.6
3168
-------------
3169

    
3170
*(Released Wed, 24 Sep 2008)*
3171

    
3172
- new ``--hvm-nic-type`` and ``--hvm-disk-type`` flags to control the
3173
  type of disk exported to fully virtualized instances.
3174
- provide access to the serial console of HVM instances
3175
- instance auto_balance flag, set by default. If turned off it will
3176
  avoid warnings on cluster verify if there is not enough memory to fail
3177
  over an instance. in the future it will prevent automatically failing
3178
  it over when we will support that.
3179
- batcher tool for instance creation, see ``tools/README.batcher``
3180
- ``gnt-instance reinstall --select-os`` to interactively select a new
3181
  operating system when reinstalling an instance.
3182
- when changing the memory amount on instance modify a check has been
3183
  added that the instance will be able to start. also warnings are
3184
  emitted if the instance will not be able to fail over, if auto_balance
3185
  is true.
3186
- documentation fixes
3187
- sync fields between ``gnt-instance list/modify/add/import``
3188
- fix a race condition in drbd when the sync speed was set after giving
3189
  the device a remote peer.
3190

    
3191

    
3192
Version 1.2.5
3193
-------------
3194

    
3195
*(Released Tue, 22 Jul 2008)*
3196

    
3197
- note: the allowed size and number of tags per object were reduced
3198
- fix a bug in ``gnt-cluster verify`` with inconsistent volume groups
3199
- fixed twisted 8.x compatibility
3200
- fixed ``gnt-instance replace-disks`` with iallocator
3201
- add TCP keepalives on twisted connections to detect restarted nodes
3202
- disk increase support, see ``gnt-instance grow-disk``
3203
- implement bulk node/instance query for RAPI
3204
- add tags in node/instance listing (optional)
3205
- experimental migration (and live migration) support, read the man page
3206
  for ``gnt-instance migrate``
3207
- the ``ganeti-watcher`` logs are now timestamped, and the watcher also
3208
  has some small improvements in handling its state file
3209

    
3210

    
3211
Version 1.2.4
3212
-------------
3213

    
3214
*(Released Fri, 13 Jun 2008)*
3215

    
3216
- Experimental readonly, REST-based remote API implementation;
3217
  automatically started on master node, TCP port 5080, if enabled by
3218
  ``--enable-rapi`` parameter to configure script.
3219
- Instance allocator support. Add and import instance accept a
3220
  ``--iallocator`` parameter, and call that instance allocator to decide
3221
  which node to use for the instance. The iallocator document describes
3222
  what's expected from an allocator script.
3223
- ``gnt-cluster verify`` N+1 memory redundancy checks: Unless passed the
3224
  ``--no-nplus1-mem`` option ``gnt-cluster verify`` now checks that if a
3225
  node is lost there is still enough memory to fail over the instances
3226
  that reside on it.
3227
- ``gnt-cluster verify`` hooks: it is now possible to add post-hooks to
3228
  ``gnt-cluster verify``, to check for site-specific compliance. All the
3229
  hooks will run, and their output, if any, will be displayed. Any
3230
  failing hook will make the verification return an error value.
3231
- ``gnt-cluster verify`` now checks that its peers are reachable on the
3232
  primary and secondary interfaces
3233
- ``gnt-node add`` now supports the ``--readd`` option, to readd a node
3234
  that is still declared as part of the cluster and has failed.
3235
- ``gnt-* list`` commands now accept a new ``-o +field`` way of
3236
  specifying output fields, that just adds the chosen fields to the
3237
  default ones.
3238
- ``gnt-backup`` now has a new ``remove`` command to delete an existing
3239
  export from the filesystem.
3240
- New per-instance parameters hvm_acpi, hvm_pae and hvm_cdrom_image_path
3241
  have been added. Using them you can enable/disable acpi and pae
3242
  support, and specify a path for a cd image to be exported to the
3243
  instance. These parameters as the name suggest only work on HVM
3244
  clusters.
3245
- When upgrading an HVM cluster to Ganeti 1.2.4, the values for ACPI and
3246
  PAE support will be set to the previously hardcoded values, but the
3247
  (previously hardcoded) path to the CDROM ISO image will be unset and
3248
  if required, needs to be set manually with ``gnt-instance modify``
3249
  after the upgrade.
3250
- The address to which an instance's VNC console is bound is now
3251
  selectable per-instance, rather than being cluster wide. Of course
3252
  this only applies to instances controlled via VNC, so currently just
3253
  applies to HVM clusters.
3254

    
3255

    
3256
Version 1.2.3
3257
-------------
3258

    
3259
*(Released Mon, 18 Feb 2008)*
3260

    
3261
- more tweaks to the disk activation code (especially helpful for DRBD)
3262
- change the default ``gnt-instance list`` output format, now there is
3263
  one combined status field (see the manpage for the exact values this
3264
  field will have)
3265
- some more fixes for the mac export to hooks change
3266
- make Ganeti not break with DRBD 8.2.x (which changed the version
3267
  format in ``/proc/drbd``) (issue 24)
3268
- add an upgrade tool from "remote_raid1" disk template to "drbd" disk
3269
  template, allowing migration from DRBD0.7+MD to DRBD8
3270

    
3271

    
3272
Version 1.2.2
3273
-------------
3274

    
3275
*(Released Wed, 30 Jan 2008)*
3276

    
3277
- fix ``gnt-instance modify`` breakage introduced in 1.2.1 with the HVM
3278
  support (issue 23)
3279
- add command aliases infrastructure and a few aliases
3280
- allow listing of VCPUs in the ``gnt-instance list`` and improve the
3281
  man pages and the ``--help`` option of ``gnt-node
3282
  list``/``gnt-instance list``
3283
- fix ``gnt-backup list`` with down nodes (issue 21)
3284
- change the tools location (move from $pkgdatadir to $pkglibdir/tools)
3285
- fix the dist archive and add a check for including svn/git files in
3286
  the future
3287
- some developer-related changes: improve the burnin and the QA suite,
3288
  add an upload script for testing during development
3289

    
3290

    
3291
Version 1.2.1
3292
-------------
3293

    
3294
*(Released Wed, 16 Jan 2008)*
3295

    
3296
- experimental HVM support, read the install document, section
3297
  "Initializing the cluster"
3298
- allow for the PVM hypervisor per-instance kernel and initrd paths
3299
- add a new command ``gnt-cluster verify-disks`` which uses a new
3300
  algorithm to improve the reconnection of the DRBD pairs if the device
3301
  on the secondary node has gone away
3302
- make logical volume code auto-activate LVs at disk activation time
3303
- slightly improve the speed of activating disks
3304
- allow specification of the MAC address at instance creation time, and
3305
  changing it later via ``gnt-instance modify``
3306
- fix handling of external commands that generate lots of output on
3307
  stderr
3308
- update documentation with regard to minimum version of DRBD8 supported
3309

    
3310

    
3311
Version 1.2.0
3312
-------------
3313

    
3314
*(Released Tue, 4 Dec 2007)*
3315

    
3316
- Log the ``xm create`` output to the node daemon log on failure (to
3317
  help diagnosing the error)
3318
- In debug mode, log all external commands output if failed to the logs
3319
- Change parsing of lvm commands to ignore stderr
3320

    
3321

    
3322
Version 1.2 beta3
3323
-----------------
3324

    
3325
*(Released Wed, 28 Nov 2007)*
3326

    
3327
- Another round of updates to the DRBD 8 code to deal with more failures
3328
  in the replace secondary node operation
3329
- Some more logging of failures in disk operations (lvm, drbd)
3330
- A few documentation updates
3331
- QA updates
3332

    
3333

    
3334
Version 1.2 beta2
3335
-----------------
3336

    
3337
*(Released Tue, 13 Nov 2007)*
3338

    
3339
- Change configuration file format from Python's Pickle to JSON.
3340
  Upgrading is possible using the cfgupgrade utility.
3341
- Add support for DRBD 8.0 (new disk template ``drbd``) which allows for
3342
  faster replace disks and is more stable (DRBD 8 has many improvements
3343
  compared to DRBD 0.7)
3344
- Added command line tags support (see man pages for ``gnt-instance``,
3345
  ``gnt-node``, ``gnt-cluster``)
3346
- Added instance rename support
3347
- Added multi-instance startup/shutdown
3348
- Added cluster rename support
3349
- Added ``gnt-node evacuate`` to simplify some node operations
3350
- Added instance reboot operation that can speedup reboot as compared to
3351
  stop and start
3352
- Soften the requirement that hostnames are in FQDN format
3353
- The ``ganeti-watcher`` now activates drbd pairs after secondary node
3354
  reboots
3355
- Removed dependency on debian's patched fping that uses the
3356
  non-standard ``-S`` option
3357
- Now the OS definitions are searched for in multiple, configurable
3358
  paths (easier for distros to package)
3359
- Some changes to the hooks infrastructure (especially the new
3360
  post-configuration update hook)
3361
- Other small bugfixes
3362

    
3363
.. vim: set textwidth=72 syntax=rst :
3364
.. Local Variables:
3365
.. mode: rst
3366
.. fill-column: 72
3367
.. End: