Legacy reverse nginx proxy is running from CentOS 6.
We need to move that role to a c7/8 node with haproxy instead of nginx, or why not add that pub IP on an existing haproxy gateway node.
@bstinson @arrfab @siddharthvipul1 can we update this ticket with sizing/gain tags. I think its still valid, but just to be sure, is this work still valid?
Metadata Update from @dkirwan: - Issue tagged with: need-more-info
Metadata Update from @dkirwan: - Issue untagged with: need-more-info - Issue priority set to: Waiting on Assignee - Issue tagged with: high-gain, medium-gain
Metadata Update from @arrfab: - Issue assigned to arrfab
Metadata Update from @arrfab: - Issue untagged with: medium-gain - Issue tagged with: medium-trouble
Following commit in ansible inventory for CI infra resolves this :
* c1c9ffe - (HEAD -> master, origin/master, origin/HEAD) Added new VIP on CI gateways and added revproxy settings for ci/artifacts.c.o. Fixes #18 (11 minutes ago) <Fabian Arrotin>
It went live but just keeping ticket open for now, as I saw some other iptables rules on that node (not going through proxy) for fedmsg-relay.ci.centos.org and don't know if that's still needed. @bstinson : happy to move these DNAT rules on gateway nodes after you'll have confirmed/infirmed that we need these rules or not.
Metadata Update from @arrfab: - Issue priority set to: Waiting on External (was: Waiting on Assignee) - Issue tagged with: groomed
Got confirmation that it's not needed anymore, so closing
Issue status updated to: Closed (was: Open) Issue close_status updated to: Fixed
Login to comment on this ticket.