)]}'
{"/PATCHSET_LEVEL":[{"author":{"_account_id":4146,"name":"Clark Boylan","email":"cboylan@sapwetik.org","username":"cboylan"},"change_message_id":"bf385f4c8ee39f090af63e335cdc498912c35289","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":1,"id":"c4b3c2cb_0b2a073b","updated":"2022-10-13 20:04:09.000000000","message":"I don\u0027t think this will have access to the root_rsa_key that the root-keys role writes out. Otherwise I think this should work. This goes back to how much content we want to keep in zuul and manage there. I personally like the nice dividing line, but it definitely makes bootstrapping things like this server difficult. Maybe we can boot strap everything but the root key then run ansible to write that out? As operators we\u0027re already going to need to sync things over like the group and host vars.","commit_id":"0d4675165329657b0ad3e31476ae08d15e0f3487"},{"author":{"_account_id":4146,"name":"Clark Boylan","email":"cboylan@sapwetik.org","username":"cboylan"},"change_message_id":"1ac126c9aefe8911be1a0762dbdae2f979679c06","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":10,"id":"803c6646_60063108","updated":"2022-10-14 21:04:36.000000000","message":"One small thing getting the job file matchers correct. I think this should work. Before we land it I think we should double check that we aren\u0027t over logging and potentially leaking the private key value via the new ansible execution method. I think this is probably the biggest risk to this change.\n\nIt would also be good to get as many eyes on this as possible.","commit_id":"a69f2fd2be217963e0c75d5b1768ba99dd29bc52"},{"author":{"_account_id":7118,"name":"Ian Wienand","email":"iwienand@redhat.com","username":"iwienand"},"change_message_id":"25fe433e1e6f7e72d6fd68d5986cdd9714cda5a2","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":10,"id":"8bedbafd_0ef52717","in_reply_to":"803c6646_60063108","updated":"2022-10-14 23:34:25.000000000","message":"To make this more robust I redirected the output to a file, and put no_log on it as well.","commit_id":"a69f2fd2be217963e0c75d5b1768ba99dd29bc52"},{"author":{"_account_id":4146,"name":"Clark Boylan","email":"cboylan@sapwetik.org","username":"cboylan"},"change_message_id":"84dd43fa21c71899223274c2913a2fb44844f664","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":12,"id":"d9443c8a_cd46e8e8","updated":"2022-10-17 20:38:38.000000000","message":"Thank you for the updates. Looking at job logs this should sufficiently protect us against unexpected leaks. I\u0027m not approving this as I need to do a school run in a bit and won\u0027t be able to watch this as it goes in. But feel free to approve when it can be monitored.","commit_id":"77ebe6e0b7b639633a9a59cc3a3eee0bcfab8fe8"},{"author":{"_account_id":7118,"name":"Ian Wienand","email":"iwienand@redhat.com","username":"iwienand"},"change_message_id":"96913c04c0b0c3fa595e5d3391798c941d604ff4","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":12,"id":"39d4fe02_f88312a4","updated":"2022-10-18 23:00:45.000000000","message":"both of these failed in gate due to ssh errors when it seems like the node ip got reused.  this starts so many nodes the cross section between gate/check is massive.  since i\u0027m trying to move on with this, i\u0027ll take the liberty of merging so i can monitor it","commit_id":"77ebe6e0b7b639633a9a59cc3a3eee0bcfab8fe8"},{"author":{"_account_id":7118,"name":"Ian Wienand","email":"iwienand@redhat.com","username":"iwienand"},"change_message_id":"d2a330a8ebd6b330b1560044dc119c300f64b234","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":12,"id":"3c2fe3ea_9fcc4303","updated":"2022-10-15 01:14:59.000000000","message":"recheck","commit_id":"77ebe6e0b7b639633a9a59cc3a3eee0bcfab8fe8"},{"author":{"_account_id":7118,"name":"Ian Wienand","email":"iwienand@redhat.com","username":"iwienand"},"change_message_id":"da6572c0cba4cfbe2282261f0816fd731cbb168c","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":12,"id":"426cced2_fe75e0a0","updated":"2022-10-18 23:15:44.000000000","message":"recheck","commit_id":"77ebe6e0b7b639633a9a59cc3a3eee0bcfab8fe8"},{"author":{"_account_id":7118,"name":"Ian Wienand","email":"iwienand@redhat.com","username":"iwienand"},"change_message_id":"e41b0bf14353fdf549a7ce06b6fb4d98a8debd2e","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":12,"id":"82d9ff68_fb823a02","updated":"2022-10-15 23:39:49.000000000","message":"recheck","commit_id":"77ebe6e0b7b639633a9a59cc3a3eee0bcfab8fe8"},{"author":{"_account_id":7118,"name":"Ian Wienand","email":"iwienand@redhat.com","username":"iwienand"},"change_message_id":"8954f007b23798fc6a051f6659f3df4ee41407a9","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":12,"id":"a95fb6b7_dccc261d","updated":"2022-10-18 04:24:03.000000000","message":"recheck","commit_id":"77ebe6e0b7b639633a9a59cc3a3eee0bcfab8fe8"},{"author":{"_account_id":7118,"name":"Ian Wienand","email":"iwienand@redhat.com","username":"iwienand"},"change_message_id":"d2afd781c64ee27546b9c9bdae644d96346dae9d","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":12,"id":"fbf43578_f091d7c6","updated":"2022-10-18 19:59:22.000000000","message":"recheck","commit_id":"77ebe6e0b7b639633a9a59cc3a3eee0bcfab8fe8"},{"author":{"_account_id":7118,"name":"Ian Wienand","email":"iwienand@redhat.com","username":"iwienand"},"change_message_id":"9e4bd2d6d9a65deb2ca7e1cec2ce3610526f8b60","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":12,"id":"3498680c_de1c49d9","updated":"2022-10-17 23:51:42.000000000","message":"redirect issue fixed with https://review.opendev.org/c/opendev/system-config/+/861673\n\nI think we can go with this and fix up, as it\u0027s also no_log; rather than respining the whole stack.  will monitor","commit_id":"77ebe6e0b7b639633a9a59cc3a3eee0bcfab8fe8"}],"zuul.d/infra-prod.yaml":[{"author":{"_account_id":4146,"name":"Clark Boylan","email":"cboylan@sapwetik.org","username":"cboylan"},"change_message_id":"1ac126c9aefe8911be1a0762dbdae2f979679c06","unresolved":true,"context_lines":[{"line_number":49,"context_line":"    run: playbooks/zuul/run-production-boostrap-bridge.yaml"},{"line_number":50,"context_line":"    files:"},{"line_number":51,"context_line":"      - playbooks/bootstrap-bridge.yaml"},{"line_number":52,"context_line":"      - playbooks/zuul/run-production-bootstrap-bridge-add-rootkey.yaml"},{"line_number":53,"context_line":"      - playbooks/roles/install-ansible/"},{"line_number":54,"context_line":"      - playbooks/roles/root-keys/"},{"line_number":55,"context_line":"      - inventory/service/host_vars/bridge.openstack.org.yaml"}],"source_content_type":"text/x-yaml","patch_set":10,"id":"2251fffd_bb82c1f0","line":52,"updated":"2022-10-14 21:04:36.000000000","message":"playbooks/zuul/run-production-boostrap-bridge.yaml should probably be in this list too since the job runs this playbook.","commit_id":"a69f2fd2be217963e0c75d5b1768ba99dd29bc52"},{"author":{"_account_id":7118,"name":"Ian Wienand","email":"iwienand@redhat.com","username":"iwienand"},"change_message_id":"25fe433e1e6f7e72d6fd68d5986cdd9714cda5a2","unresolved":false,"context_lines":[{"line_number":49,"context_line":"    run: playbooks/zuul/run-production-boostrap-bridge.yaml"},{"line_number":50,"context_line":"    files:"},{"line_number":51,"context_line":"      - playbooks/bootstrap-bridge.yaml"},{"line_number":52,"context_line":"      - playbooks/zuul/run-production-bootstrap-bridge-add-rootkey.yaml"},{"line_number":53,"context_line":"      - playbooks/roles/install-ansible/"},{"line_number":54,"context_line":"      - playbooks/roles/root-keys/"},{"line_number":55,"context_line":"      - inventory/service/host_vars/bridge.openstack.org.yaml"}],"source_content_type":"text/x-yaml","patch_set":10,"id":"7ae9cf35_5d202d01","line":52,"in_reply_to":"2251fffd_bb82c1f0","updated":"2022-10-14 23:34:25.000000000","message":"Done","commit_id":"a69f2fd2be217963e0c75d5b1768ba99dd29bc52"}]}
