)]}'
{"id":"openstack%2Fnova~955847","triplet_id":"openstack%2Fnova~master~Ib25c39f4bd1b097b1d8b52538fe80ea387ced86e","project":"openstack/nova","branch":"master","topic":"bp/vtpm-live-migration","attention_set":{},"removed_from_attention_set":{"4690":{"account":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"last_update":"2025-09-23 06:17:19.000000000","reason":"Change was abandoned"}},"hashtags":[],"change_id":"Ib25c39f4bd1b097b1d8b52538fe80ea387ced86e","subject":"TPM: confirm secret security via hard reboot","status":"ABANDONED","created":"2025-07-25 02:13:53.000000000","updated":"2025-09-23 06:17:19.000000000","total_comment_count":2,"unresolved_comment_count":0,"has_review_started":true,"meta_rev_id":"5d36397f60d3b2061c746d396716e854505aa5bb","_number":955847,"virtual_id_number":955847,"owner":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"actions":{},"labels":{"Verified":{"recommended":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"all":[{"tag":"autogenerated:zuul:check","value":1,"date":"2025-08-09 03:41:25.000000000","permitted_voting_range":{"min":-2,"max":2},"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]}],"values":{"-2":"Fails","-1":"Doesn\u0027t seem to work"," 0":"No score","+1":"Works for me","+2":"Verified"},"description":"","value":1,"default_value":0,"optional":true},"Code-Review":{"all":[{"value":0,"permitted_voting_range":{"min":-1,"max":1},"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]}],"values":{"-2":"Do not merge","-1":"This patch needs further work before it can be merged"," 0":"No score","+1":"Looks good to me, but someone else must approve","+2":"Looks good to me (core reviewer)"},"description":"","default_value":0,"optional":true},"Workflow":{"all":[{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]}],"values":{"-1":"Work in progress"," 0":"Ready for reviews","+1":"Approved"},"description":"","default_value":0,"optional":true},"Review-Priority":{"all":[{"value":0,"permitted_voting_range":{"min":0,"max":1},"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]}],"values":{" 0":"Default Priority","+1":"Contributor Review Promise","+2":"Core Review Promise"},"description":"","default_value":0,"optional":true}},"removable_reviewers":[],"reviewers":{"REVIEWER":[{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]}],"CC":[{"_account_id":34420,"name":"openstack lightbits","display_name":"Lightbits CI","email":"openstack@lightbitslabs.com","username":"openstack_lightbits"}]},"pending_reviewers":{},"reviewer_updates":[{"updated":"2025-07-25 07:30:30.000000000","updated_by":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"reviewer":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"state":"REVIEWER"},{"updated":"2025-07-26 10:57:13.000000000","updated_by":{"_account_id":34420,"name":"openstack lightbits","display_name":"Lightbits CI","email":"openstack@lightbitslabs.com","username":"openstack_lightbits"},"reviewer":{"_account_id":34420,"name":"openstack lightbits","display_name":"Lightbits CI","email":"openstack@lightbitslabs.com","username":"openstack_lightbits"},"state":"CC"}],"messages":[{"id":"423d9fa8fb45cf5cb5df582c1cbfc6986f33a3ed","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"date":"2025-07-25 02:13:53.000000000","message":"Uploaded patch set 1.","accounts_in_message":[],"_revision_number":1},{"id":"210edafa05ca69d0af1907086dc113cbea6406ce","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"date":"2025-07-25 05:13:21.000000000","message":"Uploaded patch set 2: Patch Set 1 was rebased.","accounts_in_message":[],"_revision_number":2},{"id":"fb565425be0a65dccfba206e0edde213a2f4fbb8","tag":"autogenerated:zuul:check","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2025-07-25 07:30:30.000000000","message":"Patch Set 2: Verified-1\n\nBuild failed (check pipeline).  For information on how to proceed, see\nhttps://docs.opendev.org/opendev/infra-manual/latest/developers.html#automated-testing\nand https://docs.openstack.org/project-team-guide/testing.html#how-to-handle-test-failures\n\nhttps://zuul.opendev.org/t/openstack/buildset/9f95c76cfc8c40579451c0f941452a1f\n\n- grenade-skip-level-always https://zuul.opendev.org/t/openstack/build/b46ee4b8dab746989033306db4515672 : SUCCESS in 43m 34s\n- tempest-integrated-compute https://zuul.opendev.org/t/openstack/build/3d38725a38974b24ad30054cf07179c9 : SUCCESS in 1h 44m 34s\n- openstacksdk-functional-devstack https://zuul.opendev.org/t/openstack/build/5eda1f552c7f44e89301eaea1afcf7cc : SUCCESS in 58m 50s\n- openstack-tox-cover https://zuul.opendev.org/t/openstack/build/8ede1239ef1a45068e5186a7412d0ef5 : SUCCESS in 22m 14s\n- openstack-tox-pep8 https://zuul.opendev.org/t/openstack/build/dc1fe2f4ca9d465a84ce554a686962a2 : FAILURE in 9m 11s\n- openstack-tox-py310 https://zuul.opendev.org/t/openstack/build/5a4cd8c1a00c4143ae7c465a692a1577 : SUCCESS in 14m 06s\n- openstack-tox-py312 https://zuul.opendev.org/t/openstack/build/224445dd0c024f768a8b761beab5f528 : SUCCESS in 13m 17s\n- openstack-tox-py313 https://zuul.opendev.org/t/openstack/build/edd6aab107c3456b99d91142b939365b : SUCCESS in 18m 05s (non-voting)\n- openstack-tox-docs https://zuul.opendev.org/t/openstack/build/a6ef8d25c8ff43a085461d9c7e7d4048 : SUCCESS in 11m 39s\n- ironic-tempest-ipa-wholedisk-bios-agent_ipmitool-tinyipa https://zuul.opendev.org/t/openstack/build/6e10cdc321c143b8b0ebbeb2f400c773 : SUCCESS in 1h 09m 16s (non-voting)\n- nova-ceph-multistore https://zuul.opendev.org/t/openstack/build/66009c649c7d4d0fadf6f34b6d49d25b : SUCCESS in 1h 46m 28s\n- nova-live-migration https://zuul.opendev.org/t/openstack/build/e0262a57061d4cbd8402ec0a5f69bdea : SUCCESS in 45m 50s\n- nova-live-migration-ceph https://zuul.opendev.org/t/openstack/build/33238897bb584a4b8d987ab468001290 : SUCCESS in 1h 00m 06s\n- nova-lvm https://zuul.opendev.org/t/openstack/build/6a9b1edf6d344329a66a71de0642b59d : SUCCESS in 53m 43s\n- nova-multi-cell https://zuul.opendev.org/t/openstack/build/b08c0b2c98c14026965806a1a95c4b61 : SUCCESS in 1h 53m 38s\n- nova-next https://zuul.opendev.org/t/openstack/build/9e4f88edf2de4c1eafb5ca7972f75baa : SUCCESS in 2h 05m 41s\n- nova-ovs-hybrid-plug https://zuul.opendev.org/t/openstack/build/920eab2012be41eaa5174321792eff63 : SUCCESS in 47m 03s\n- nova-tox-validate-backport https://zuul.opendev.org/t/openstack/build/b86d6f8f8ed946b1a2ed450840dd1f5f : SUCCESS in 5m 52s (non-voting)\n- nova-tox-functional-py310 https://zuul.opendev.org/t/openstack/build/280a46b99a1744eaa6ecd954b453f061 : SUCCESS in 31m 43s\n- nova-tox-functional-py312 https://zuul.opendev.org/t/openstack/build/e651003eedc74dd199e962dcc39ee85a : SUCCESS in 31m 47s\n- nova-grenade-multinode https://zuul.opendev.org/t/openstack/build/5254a264f4464b94a674575dd5a550d2 : SUCCESS in 1h 23m 27s\n- tempest-ipv6-only https://zuul.opendev.org/t/openstack/build/a29644145efa42639b8da6001d4695f0 : SUCCESS in 55m 00s\n- cyborg-tempest https://zuul.opendev.org/t/openstack/build/1aebe00138e848d0b1c4a61dbfd50c61 : SUCCESS in 24m 37s (non-voting)\n- barbican-tempest-plugin-simple-crypto https://zuul.opendev.org/t/openstack/build/b7d10566311a4538b031e3fcee1c0566 : SUCCESS in 31m 50s (non-voting)","accounts_in_message":[],"_revision_number":2},{"id":"2f89a1ddd87730cbe9133ce6cbcd7199c7804452","tag":"autogenerated:zuul:check-arm64","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2025-07-25 07:36:12.000000000","message":"Patch Set 2:\n\nBuild succeeded (ARM64 pipeline).\nhttps://zuul.opendev.org/t/openstack/buildset/2c878978b96a466a8f85a61d58181587\n\n- openstack-tox-py310-arm64 https://zuul.opendev.org/t/openstack/build/960dfb1b6ef8416499b45a163e704138 : SUCCESS in 32m 32s (non-voting)\n- openstack-tox-py312-arm64 https://zuul.opendev.org/t/openstack/build/bb0c0da26b7b455a85b9452149b8843a : SUCCESS in 29m 13s (non-voting)\n- openstack-tox-py313-arm64 https://zuul.opendev.org/t/openstack/build/8c286f882d0f48f488ea4267332d6c90 : SUCCESS in 30m 26s (non-voting)","accounts_in_message":[],"_revision_number":2},{"id":"8a3f2d9928e2171dac685445d5474edeba63fe25","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"date":"2025-07-25 07:36:38.000000000","message":"Uploaded patch set 3: Patch Set 2 was rebased.\n\nOutdated Votes:\n* Verified-1\n","accounts_in_message":[],"_revision_number":3},{"id":"c7cb3d43d2c192fe5cbbac7c8f0a070be8b5f11e","tag":"autogenerated:zuul:check-arm64","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2025-07-25 09:02:08.000000000","message":"Patch Set 3:\n\nBuild succeeded (ARM64 pipeline).\nhttps://zuul.opendev.org/t/openstack/buildset/9b012ae9bd5647879290b40784f4ed73\n\n- openstack-tox-py310-arm64 https://zuul.opendev.org/t/openstack/build/e0f013ed1aff4eaa8e7ef96e1dfbf352 : SUCCESS in 33m 59s (non-voting)\n- openstack-tox-py312-arm64 https://zuul.opendev.org/t/openstack/build/b10b7ec9b92a46d8ae9d3f6f1fb3e6b5 : SUCCESS in 44m 37s (non-voting)\n- openstack-tox-py313-arm64 https://zuul.opendev.org/t/openstack/build/cdd52d8df2a54adebe10d0f30f2327e6 : SUCCESS in 37m 07s (non-voting)","accounts_in_message":[],"_revision_number":3},{"id":"db75f2589c018db4d5dafb5895bfaab9e44c35f8","tag":"autogenerated:zuul:check","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2025-07-25 10:25:29.000000000","message":"Patch Set 3: Verified-1\n\nBuild failed (check pipeline).  For information on how to proceed, see\nhttps://docs.opendev.org/opendev/infra-manual/latest/developers.html#automated-testing\nand https://docs.openstack.org/project-team-guide/testing.html#how-to-handle-test-failures\n\nhttps://zuul.opendev.org/t/openstack/buildset/d62eac9bba7b4ee897018c6c8fc93204\n\n- grenade-skip-level-always https://zuul.opendev.org/t/openstack/build/178ce17afdf94e4ab2923433c1b4227a : FAILURE in 52m 28s\n- tempest-integrated-compute https://zuul.opendev.org/t/openstack/build/0cca09fe0a7342cead9e38aecea9289b : SUCCESS in 1h 29m 11s\n- openstacksdk-functional-devstack https://zuul.opendev.org/t/openstack/build/4fe139a3f3844ab3985bc3cc088ac6f8 : SUCCESS in 1h 06m 29s\n- openstack-tox-cover https://zuul.opendev.org/t/openstack/build/b5f88960d9634333b8ab9bdafa04cc98 : SUCCESS in 25m 00s\n- openstack-tox-pep8 https://zuul.opendev.org/t/openstack/build/3483ea8e640a4fc1b4a194b6fbbe9ae5 : SUCCESS in 7m 28s\n- openstack-tox-py310 https://zuul.opendev.org/t/openstack/build/0ee880dcbc814a6896e86010e94a5591 : SUCCESS in 13m 20s\n- openstack-tox-py312 https://zuul.opendev.org/t/openstack/build/c567b7f10917408abdacd5ebc529a280 : SUCCESS in 14m 07s\n- openstack-tox-py313 https://zuul.opendev.org/t/openstack/build/35427026dfec40d694b29f0e623a1e12 : SUCCESS in 18m 36s (non-voting)\n- openstack-tox-docs https://zuul.opendev.org/t/openstack/build/1f540fd075a7455fade617f3923b47eb : SUCCESS in 12m 43s\n- ironic-tempest-ipa-wholedisk-bios-agent_ipmitool-tinyipa https://zuul.opendev.org/t/openstack/build/303dff8131964f67bb283ba7dfcbb3e1 : SUCCESS in 50m 47s (non-voting)\n- nova-ceph-multistore https://zuul.opendev.org/t/openstack/build/4f7083f32b57422b849bc4f262ecd98d : SUCCESS in 1h 56m 30s\n- nova-live-migration https://zuul.opendev.org/t/openstack/build/e4642ad2fde649f3b0a6677be51d77fd : SUCCESS in 54m 44s\n- nova-live-migration-ceph https://zuul.opendev.org/t/openstack/build/bde0073613204f608e8825a73462086d : SUCCESS in 56m 03s\n- nova-lvm https://zuul.opendev.org/t/openstack/build/418e4283c3b44be0a84b61d9f461c8a2 : SUCCESS in 1h 09m 05s\n- nova-multi-cell https://zuul.opendev.org/t/openstack/build/9c7682c05c624757bfa43350ef326d85 : SUCCESS in 2h 33m 43s\n- nova-next https://zuul.opendev.org/t/openstack/build/f146f3ae20bb4f23af108a17b855e9fb : SUCCESS in 2h 14m 42s\n- nova-ovs-hybrid-plug https://zuul.opendev.org/t/openstack/build/94f42af13644496aac0701dd1abeef3a : SUCCESS in 50m 16s\n- nova-tox-validate-backport https://zuul.opendev.org/t/openstack/build/c4216f5b2e8d49c18a1348c4cc86dbcc : SUCCESS in 6m 58s (non-voting)\n- nova-tox-functional-py310 https://zuul.opendev.org/t/openstack/build/2bd50023d4f346858fbb08d57e19b990 : SUCCESS in 25m 54s\n- nova-tox-functional-py312 https://zuul.opendev.org/t/openstack/build/4289695eb41a4b3487ea8159b0ed4fcf : SUCCESS in 39m 02s\n- nova-grenade-multinode https://zuul.opendev.org/t/openstack/build/87802f278c18425692bcaf267ab77e7f : SUCCESS in 1h 18m 53s\n- tempest-ipv6-only https://zuul.opendev.org/t/openstack/build/3f54aaab6f574d69b07693acb3ffa34e : SUCCESS in 1h 02m 05s\n- cyborg-tempest https://zuul.opendev.org/t/openstack/build/651107346b4c415589d53057acbe85de : SUCCESS in 27m 52s (non-voting)\n- barbican-tempest-plugin-simple-crypto https://zuul.opendev.org/t/openstack/build/091c081203f340de952fd88d598a1c8a : SUCCESS in 26m 05s (non-voting)","accounts_in_message":[],"_revision_number":3},{"id":"31b89d4eb692f29a2f6da13d2fe2c2ce5797b2eb","author":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"date":"2025-07-25 19:17:06.000000000","message":"Patch Set 3:\n\n(1 comment)","accounts_in_message":[],"_revision_number":3},{"id":"f4962e5133a3e8353e395c3b62ed0cde99b236b1","author":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"date":"2025-07-25 23:56:51.000000000","message":"Patch Set 3:\n\n(1 comment)","accounts_in_message":[],"_revision_number":3},{"id":"e543d281f25b6a6a1870dae63362772f6612663c","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"date":"2025-07-26 07:38:53.000000000","message":"Uploaded patch set 4: Patch Set 3 was rebased.\n\nOutdated Votes:\n* Verified-1\n","accounts_in_message":[],"_revision_number":4},{"id":"aaa52a3606b074b0857004a853a3d6a5569ebbc1","tag":"autogenerated:zuul:check-arm64","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2025-07-26 09:35:14.000000000","message":"Patch Set 4:\n\nBuild succeeded (ARM64 pipeline).\nhttps://zuul.opendev.org/t/openstack/buildset/efd69f6f87064107b1466bfa7c80fa11\n\n- openstack-tox-py310-arm64 https://zuul.opendev.org/t/openstack/build/a104838ef0394ea88b8a8e978fc3da19 : SUCCESS in 22m 04s (non-voting)\n- openstack-tox-py312-arm64 https://zuul.opendev.org/t/openstack/build/6b406e60e7ee4f2cbf038e63b47a1347 : SUCCESS in 17m 07s (non-voting)\n- openstack-tox-py313-arm64 https://zuul.opendev.org/t/openstack/build/2e2933c185b6432d9353656562bf3f1f : SUCCESS in 39m 17s (non-voting)","accounts_in_message":[],"_revision_number":4},{"id":"e1277e3860852bb8146058878dc058ad70e43a90","tag":"autogenerated:zuul:check","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2025-07-26 10:51:29.000000000","message":"Patch Set 4: Verified+1\n\nBuild succeeded (check pipeline).\nhttps://zuul.opendev.org/t/openstack/buildset/5d1db8422473479eb5a2f208fd2d3d00\n\n- grenade-skip-level-always https://zuul.opendev.org/t/openstack/build/a735d16884d3403ebdc7b7e22f2a16b7 : SUCCESS in 1h 09m 06s\n- tempest-integrated-compute https://zuul.opendev.org/t/openstack/build/a4eaaeb007f642a4983fe6cd5ab4b64d : SUCCESS in 1h 55m 11s\n- openstacksdk-functional-devstack https://zuul.opendev.org/t/openstack/build/ea5860dc275e44faa2c981fe9d1df687 : SUCCESS in 1h 04m 26s\n- openstack-tox-cover https://zuul.opendev.org/t/openstack/build/e9f8f36ccb174d2091c4d62d71eadb4c : SUCCESS in 24m 33s\n- openstack-tox-pep8 https://zuul.opendev.org/t/openstack/build/c56984c3194e45d8afd0d60c027b513e : SUCCESS in 7m 22s\n- openstack-tox-py310 https://zuul.opendev.org/t/openstack/build/da6d398ab5c644df9cf1c568267e97f5 : SUCCESS in 9m 48s\n- openstack-tox-py312 https://zuul.opendev.org/t/openstack/build/997197b1d8634817b265969f6dd16ab3 : SUCCESS in 15m 05s\n- openstack-tox-py313 https://zuul.opendev.org/t/openstack/build/235742ce880d4fd19ed59b369649986e : SUCCESS in 9m 57s (non-voting)\n- openstack-tox-docs https://zuul.opendev.org/t/openstack/build/ceabe055475149b1a125274b98884af3 : SUCCESS in 13m 20s\n- ironic-tempest-ipa-wholedisk-bios-agent_ipmitool-tinyipa https://zuul.opendev.org/t/openstack/build/93b35928d01145a48a34a3e853f64556 : SUCCESS in 1h 10m 35s (non-voting)\n- nova-ceph-multistore https://zuul.opendev.org/t/openstack/build/58a02b0952004f1fa219396c6cf81eae : SUCCESS in 2h 05m 25s\n- nova-live-migration https://zuul.opendev.org/t/openstack/build/a09a03e3ce444e46abd122fcddb0a2f1 : SUCCESS in 52m 39s\n- nova-live-migration-ceph https://zuul.opendev.org/t/openstack/build/05aa800d92cf4b45968843e6fc62981e : SUCCESS in 54m 03s\n- nova-lvm https://zuul.opendev.org/t/openstack/build/94741d405bf5402fa43b15ed03dd15b0 : SUCCESS in 1h 06m 18s\n- nova-multi-cell https://zuul.opendev.org/t/openstack/build/1b192d9ddb5243bda9738bd4e0031558 : SUCCESS in 1h 58m 09s\n- nova-next https://zuul.opendev.org/t/openstack/build/4d5c0dc28873482da8aff4340fbe869c : SUCCESS in 2h 51m 44s\n- nova-ovs-hybrid-plug https://zuul.opendev.org/t/openstack/build/9bf582c13ea7437e9c74a38bfe1feaa1 : SUCCESS in 50m 42s\n- nova-tox-validate-backport https://zuul.opendev.org/t/openstack/build/a3b7a00f8ee74a4a895173188fc90f3e : SUCCESS in 3m 11s (non-voting)\n- nova-tox-functional-py310 https://zuul.opendev.org/t/openstack/build/4884e394567d47128a59b7ebc14a4801 : SUCCESS in 25m 48s\n- nova-tox-functional-py312 https://zuul.opendev.org/t/openstack/build/9c77b51b7698416e95d4c7331d635067 : SUCCESS in 31m 52s\n- nova-grenade-multinode https://zuul.opendev.org/t/openstack/build/f10956e4b0c44c328aa3b8fcaa46ce48 : SUCCESS in 48m 08s\n- tempest-ipv6-only https://zuul.opendev.org/t/openstack/build/f5649a0f065b406ab98109d572c4d9dd : SUCCESS in 57m 24s\n- cyborg-tempest https://zuul.opendev.org/t/openstack/build/d11ebd5372bf49f5a1cc4367e8aceab8 : SUCCESS in 29m 06s (non-voting)\n- barbican-tempest-plugin-simple-crypto https://zuul.opendev.org/t/openstack/build/81848b2891334da9a029cf2a757c9668 : FAILURE in 25m 52s (non-voting)","accounts_in_message":[],"_revision_number":4},{"id":"215c598d38551401b1cd2671703bc273b08902c1","tag":"autogenerated:jenkins-gerrit-trigger","author":{"_account_id":34420,"name":"openstack lightbits","display_name":"Lightbits CI","email":"openstack@lightbitslabs.com","username":"openstack_lightbits"},"date":"2025-07-26 10:57:13.000000000","message":"Patch Set 4:\n\nBuild succeeded. log path: ${LOG_PATH}\nLeave a comment with \u0027run-Lightbits CI\u0027 to trigger a recheck. \nFor more information about CI, please see https://wiki.openstack.org/wiki/ThirdPartySystems/LightbitsLabs_CI","accounts_in_message":[],"_revision_number":4},{"id":"b2a3a7d870838d2b16ba2fa91c7206445d345256","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"date":"2025-07-29 03:12:28.000000000","message":"Uploaded patch set 5: Patch Set 4 was rebased.\n\nOutdated Votes:\n* Verified+1\n","accounts_in_message":[],"_revision_number":5},{"id":"601a65b8f848915cd438b0a6a58c99aac591d320","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"date":"2025-07-29 05:44:30.000000000","message":"Uploaded patch set 6: Patch Set 5 was rebased.","accounts_in_message":[],"_revision_number":6},{"id":"5ac5a5ff19cb3be7c94e6a7074450f4e8626b8d5","tag":"autogenerated:zuul:check-arm64","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2025-07-29 06:50:48.000000000","message":"Patch Set 6:\n\nBuild succeeded (ARM64 pipeline).\nhttps://zuul.opendev.org/t/openstack/buildset/ff16bcf17603434d9c728d22d6d8f76c\n\n- openstack-tox-py310-arm64 https://zuul.opendev.org/t/openstack/build/1ef0c027e5e1431c87387e94aea1813f : SUCCESS in 30m 56s (non-voting)\n- openstack-tox-py312-arm64 https://zuul.opendev.org/t/openstack/build/682f5d6ba0334b3aa20fb22d989d1eea : SUCCESS in 26m 34s (non-voting)\n- openstack-tox-py313-arm64 https://zuul.opendev.org/t/openstack/build/b4d87b32dbab4f31864c151a79262455 : SUCCESS in 31m 55s (non-voting)","accounts_in_message":[],"_revision_number":6},{"id":"077149c5d2d419b95f47439cbc5558093b0d58e2","tag":"autogenerated:zuul:check","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2025-07-29 09:02:04.000000000","message":"Patch Set 6: Verified-1\n\nBuild failed (check pipeline).  For information on how to proceed, see\nhttps://docs.opendev.org/opendev/infra-manual/latest/developers.html#automated-testing\nand https://docs.openstack.org/project-team-guide/testing.html#how-to-handle-test-failures\n\nhttps://zuul.opendev.org/t/openstack/buildset/659f2d80c3dc4fb9a736f4de2a070383\n\n- grenade-skip-level-always https://zuul.opendev.org/t/openstack/build/89a97a7fe10d4238be83ae8ddb062159 : TIMED_OUT in 3h 02m 36s\n- tempest-integrated-compute https://zuul.opendev.org/t/openstack/build/fc6e1688f5e249839a8b6753e8855e22 : SUCCESS in 1h 53m 49s\n- openstacksdk-functional-devstack https://zuul.opendev.org/t/openstack/build/d9d61bf807e04f9d8de64d249b0cde20 : SUCCESS in 1h 05m 13s\n- openstack-tox-cover https://zuul.opendev.org/t/openstack/build/095598a1abc34b9594dfeecd58f283b6 : SUCCESS in 21m 51s\n- openstack-tox-pep8 https://zuul.opendev.org/t/openstack/build/d21b834039d241f1b15c7bc666404966 : SUCCESS in 7m 55s\n- openstack-tox-py310 https://zuul.opendev.org/t/openstack/build/860da1c21b8546f1b50ada1ea939e3fd : SUCCESS in 12m 07s\n- openstack-tox-py312 https://zuul.opendev.org/t/openstack/build/a138ee5acbf04806892a2b20700d4e9b : SUCCESS in 12m 16s\n- openstack-tox-py313 https://zuul.opendev.org/t/openstack/build/365b6af3d1af4a819d8aca3646c91501 : SUCCESS in 17m 35s (non-voting)\n- openstack-tox-docs https://zuul.opendev.org/t/openstack/build/e1e346ac99e34899b15ebe27ff04f73b : SUCCESS in 12m 29s\n- ironic-tempest-ipa-wholedisk-bios-agent_ipmitool-tinyipa https://zuul.opendev.org/t/openstack/build/893c0f3792a440bbae54128960e3df92 : SUCCESS in 1h 31m 50s (non-voting)\n- nova-ceph-multistore https://zuul.opendev.org/t/openstack/build/955d21b2379e4efc8ec57c5490888e01 : SUCCESS in 1h 45m 50s\n- nova-live-migration https://zuul.opendev.org/t/openstack/build/b2a4355b77aa4f378703e84a5afa33e4 : SUCCESS in 48m 06s\n- nova-live-migration-ceph https://zuul.opendev.org/t/openstack/build/28b77495c6d545879156646378afd273 : SUCCESS in 38m 36s\n- nova-lvm https://zuul.opendev.org/t/openstack/build/e29ec39d7e054e68a13c292b590f6718 : SUCCESS in 44m 26s\n- nova-multi-cell https://zuul.opendev.org/t/openstack/build/86ee4fd809f640ffa90cedd4da90a070 : SUCCESS in 1h 42m 39s\n- nova-next https://zuul.opendev.org/t/openstack/build/06b890171f12460e96e1eed310edc50b : SUCCESS in 1h 38m 45s\n- nova-ovs-hybrid-plug https://zuul.opendev.org/t/openstack/build/cc46d7b479d4424eb906e6e7deada46d : SUCCESS in 52m 17s\n- nova-tox-validate-backport https://zuul.opendev.org/t/openstack/build/a0846c43df2d4a17add092349e83a971 : SUCCESS in 5m 54s (non-voting)\n- nova-tox-functional-py310 https://zuul.opendev.org/t/openstack/build/a9d2de3426b542d38f85e11710128c45 : SUCCESS in 27m 50s\n- nova-tox-functional-py312 https://zuul.opendev.org/t/openstack/build/47225936f0a8489b96ab7211ce66da8d : SUCCESS in 31m 38s\n- nova-grenade-multinode https://zuul.opendev.org/t/openstack/build/bd9dfd21ee1c4e81b00bdbc4c620e2a9 : SUCCESS in 1h 22m 36s\n- tempest-ipv6-only https://zuul.opendev.org/t/openstack/build/79a3ce713dd34e868334019c5a6d4977 : SUCCESS in 57m 36s\n- cyborg-tempest https://zuul.opendev.org/t/openstack/build/d0fffe5ac9f9415abac78cedb42ee4e7 : SUCCESS in 28m 23s (non-voting)\n- barbican-tempest-plugin-simple-crypto https://zuul.opendev.org/t/openstack/build/85a65edc642d425398d065f6a0e53353 : SUCCESS in 31m 22s (non-voting)","accounts_in_message":[],"_revision_number":6},{"id":"6efdcd36119c7585d1af65c604d4af53357b001a","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"date":"2025-07-30 01:03:13.000000000","message":"Uploaded patch set 7.\n\nOutdated Votes:\n* Verified-1\n","accounts_in_message":[],"_revision_number":7},{"id":"9c4bc5fa1185b9cbd30e90c94cf9f4432bc6d3ae","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"date":"2025-07-30 01:12:56.000000000","message":"Uploaded patch set 8: Patch Set 7 was rebased.","accounts_in_message":[],"_revision_number":8},{"id":"c63b2a8214e35793116f706feb755bdb2556f204","tag":"autogenerated:zuul:check","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2025-07-30 03:32:19.000000000","message":"Patch Set 8: Verified+1\n\nBuild succeeded (check pipeline).\nhttps://zuul.opendev.org/t/openstack/buildset/fc76858f93a94016a5edb074de47ed83\n\n- grenade-skip-level-always https://zuul.opendev.org/t/openstack/build/50c89dafa5594f928a120b15c80b3429 : SUCCESS in 1h 01m 17s\n- tempest-integrated-compute https://zuul.opendev.org/t/openstack/build/b3a6bb52a1e44d828f9b06feb231940d : SUCCESS in 1h 51m 11s\n- openstacksdk-functional-devstack https://zuul.opendev.org/t/openstack/build/3677a3a10aaa45f283dd089411c7f51c : SUCCESS in 54m 54s\n- openstack-tox-cover https://zuul.opendev.org/t/openstack/build/1439e634281b443589e226a3b83ba5fb : SUCCESS in 24m 23s\n- openstack-tox-pep8 https://zuul.opendev.org/t/openstack/build/7649f22110864097b089806a369142c4 : SUCCESS in 7m 13s\n- openstack-tox-py310 https://zuul.opendev.org/t/openstack/build/6618c97e3cd74af0b438193b1b2e2832 : SUCCESS in 14m 48s\n- openstack-tox-py312 https://zuul.opendev.org/t/openstack/build/714166bd4c72406caca0a30426cb0962 : SUCCESS in 14m 28s\n- openstack-tox-py313 https://zuul.opendev.org/t/openstack/build/f00320d5c5a940cd805edb7efdeab2f1 : SUCCESS in 15m 42s (non-voting)\n- openstack-tox-docs https://zuul.opendev.org/t/openstack/build/f3c208f8c3154f6ab7f1c0adc2e93e09 : SUCCESS in 11m 51s\n- ironic-tempest-ipa-wholedisk-bios-agent_ipmitool-tinyipa https://zuul.opendev.org/t/openstack/build/841e7a3232504601a262c8b5dbedb19e : SUCCESS in 1h 21m 39s (non-voting)\n- nova-ceph-multistore https://zuul.opendev.org/t/openstack/build/820df95678c740ebb5329a7b058851a5 : SUCCESS in 1h 45m 09s\n- nova-live-migration https://zuul.opendev.org/t/openstack/build/76f168aea934408782bc6067f5aeeb0b : SUCCESS in 55m 14s\n- nova-live-migration-ceph https://zuul.opendev.org/t/openstack/build/17593a94f8694836b6ab6c874eefe561 : SUCCESS in 46m 34s\n- nova-lvm https://zuul.opendev.org/t/openstack/build/4d456faa0ac747f9988064f8fc910e6d : SUCCESS in 1h 07m 25s\n- nova-multi-cell https://zuul.opendev.org/t/openstack/build/633befc32a0b4f72b88ff25a6cb10477 : SUCCESS in 2h 12m 10s\n- nova-next https://zuul.opendev.org/t/openstack/build/1ea2b3b5e170470a93919d65cfff54de : SUCCESS in 1h 53m 34s\n- nova-ovs-hybrid-plug https://zuul.opendev.org/t/openstack/build/e105fe0b7ed741a7b0280e73322b5819 : SUCCESS in 48m 07s\n- nova-tox-validate-backport https://zuul.opendev.org/t/openstack/build/a28dac270ee845c1b1e6e44bb7ad7150 : SUCCESS in 5m 38s (non-voting)\n- nova-tox-functional-py310 https://zuul.opendev.org/t/openstack/build/f1ceb682ce5e4b1ebc520609ca90164d : SUCCESS in 30m 13s\n- nova-tox-functional-py312 https://zuul.opendev.org/t/openstack/build/9cf2c0a812e64a458add1ef173c9d567 : SUCCESS in 32m 01s\n- nova-grenade-multinode https://zuul.opendev.org/t/openstack/build/92f9f1b377164ddb9e3722c7dc9fac5d : SUCCESS in 1h 20m 29s\n- tempest-ipv6-only https://zuul.opendev.org/t/openstack/build/00ad9ab854704351921d313a91818e25 : SUCCESS in 52m 51s\n- cyborg-tempest https://zuul.opendev.org/t/openstack/build/46ca76cf7ee940afbdb93dd1bedacc47 : SUCCESS in 27m 27s (non-voting)\n- barbican-tempest-plugin-simple-crypto https://zuul.opendev.org/t/openstack/build/f934dc117d8049d1bec5624100dc5a50 : SUCCESS in 34m 26s (non-voting)","accounts_in_message":[],"_revision_number":8},{"id":"6b5b6309b5a0bffe3df3f3d34b5fd32a673a7b0b","tag":"autogenerated:jenkins-gerrit-trigger","author":{"_account_id":34420,"name":"openstack lightbits","display_name":"Lightbits CI","email":"openstack@lightbitslabs.com","username":"openstack_lightbits"},"date":"2025-07-30 03:42:51.000000000","message":"Patch Set 8:\n\nBuild succeeded. log path: ${LOG_PATH}\nLeave a comment with \u0027run-Lightbits CI\u0027 to trigger a recheck. \nFor more information about CI, please see https://wiki.openstack.org/wiki/ThirdPartySystems/LightbitsLabs_CI","accounts_in_message":[],"_revision_number":8},{"id":"af484e633969caf83f69f42fb5686522a8d19d2e","tag":"autogenerated:zuul:check-arm64","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2025-07-30 04:47:53.000000000","message":"Patch Set 8:\n\nBuild succeeded (ARM64 pipeline).\nhttps://zuul.opendev.org/t/openstack/buildset/66d9e737f1ab4043a1eb5105ce9fd038\n\n- openstack-tox-py310-arm64 https://zuul.opendev.org/t/openstack/build/589ff08ba5d240a8a506ec34ee0634ef : SUCCESS in 35m 07s (non-voting)\n- openstack-tox-py312-arm64 https://zuul.opendev.org/t/openstack/build/0503233e72b64a60bc1af5d60a237113 : SUCCESS in 43m 31s (non-voting)\n- openstack-tox-py313-arm64 https://zuul.opendev.org/t/openstack/build/c9cb6d6995fc439cbe759a20bd2f97c6 : FAILURE in 42m 39s (non-voting)","accounts_in_message":[],"_revision_number":8},{"id":"c4f6dd80dfaaededbbd5e310674bc5ff0d8e67a0","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"date":"2025-08-09 01:15:32.000000000","message":"Uploaded patch set 9.\n\nOutdated Votes:\n* Verified+1\n","accounts_in_message":[],"_revision_number":9},{"id":"5fd2dbfb6319462aed56d2bf00db7aa89c72ce18","tag":"autogenerated:zuul:check","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2025-08-09 01:16:15.000000000","message":"Patch Set 9: Verified-1\n\nMerge Failed.\n\nThis change or one of its cross-repo dependencies was unable to be automatically merged with the current state of its repository. Please rebase the change and upload a new patchset.\nWarning:\n  Error merging gerrit/openstack/nova for 941483,22","accounts_in_message":[],"_revision_number":9},{"id":"39cca86a9dafc086b5bb98e869c7ff0bc216221f","tag":"autogenerated:zuul:check-arm64","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2025-08-09 01:16:19.000000000","message":"Patch Set 9:\n\nMerge Failed.\n\nThis change or one of its cross-repo dependencies was unable to be automatically merged with the current state of its repository. Please rebase the change and upload a new patchset.\nWarning:\n  Error merging gerrit/openstack/nova for 941483,22","accounts_in_message":[],"_revision_number":9},{"id":"5c6c453794b8b153a9d8e4813638a8e524a4ce1a","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"date":"2025-08-09 01:21:30.000000000","message":"Uploaded patch set 10: Patch Set 9 was rebased.\n\nOutdated Votes:\n* Verified-1\n","accounts_in_message":[],"_revision_number":10},{"id":"e4c55eb33ec36043b51570b62b3c5b4fc053e1e4","tag":"autogenerated:zuul:check","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2025-08-09 03:41:25.000000000","message":"Patch Set 10: Verified+1\n\nBuild succeeded (check pipeline).\nhttps://zuul.opendev.org/t/openstack/buildset/79d046ec483340beb66e671de3804e68\n\n- grenade-skip-level-always https://zuul.opendev.org/t/openstack/build/213a4ac33b45441ab7445e15d166ec50 : SUCCESS in 56m 22s\n- tempest-integrated-compute https://zuul.opendev.org/t/openstack/build/b8b8a6267494405086701b79968fc52e : SUCCESS in 1h 40m 00s\n- openstacksdk-functional-devstack https://zuul.opendev.org/t/openstack/build/7fe3c520a2834387a7b00aa017639b79 : SUCCESS in 1h 11m 57s\n- openstack-tox-cover https://zuul.opendev.org/t/openstack/build/b273eee94ab44968980f81772c700184 : SUCCESS in 23m 45s\n- openstack-tox-pep8 https://zuul.opendev.org/t/openstack/build/348620542a8d4c9394bd3f339d919777 : SUCCESS in 10m 17s\n- openstack-tox-py310 https://zuul.opendev.org/t/openstack/build/f7ba94a0555e4c39becd641a752d863b : SUCCESS in 14m 24s\n- openstack-tox-py312 https://zuul.opendev.org/t/openstack/build/6eb18e1b00de4cd48891b7c9a666de86 : SUCCESS in 12m 38s\n- openstack-tox-py313 https://zuul.opendev.org/t/openstack/build/a11fccb5fab34530bec18de8f21fcde8 : SUCCESS in 16m 55s (non-voting)\n- openstack-tox-docs https://zuul.opendev.org/t/openstack/build/4fc4ba3bd5d145c3bc69830abcb82cbb : SUCCESS in 12m 22s\n- ironic-tempest-ipa-wholedisk-bios-agent_ipmitool-tinyipa https://zuul.opendev.org/t/openstack/build/424abe849a3d44e8b0b43aac27471371 : SUCCESS in 1h 07m 22s (non-voting)\n- nova-ceph-multistore https://zuul.opendev.org/t/openstack/build/9d15c703da10438fb3ab3a1455a99065 : SUCCESS in 1h 48m 30s\n- nova-live-migration https://zuul.opendev.org/t/openstack/build/ba86783c71ad4d9f85f99b085bbb463d : SUCCESS in 49m 47s\n- nova-live-migration-ceph https://zuul.opendev.org/t/openstack/build/446c075332ba4fc489f1271c610be2b9 : SUCCESS in 47m 59s\n- nova-lvm https://zuul.opendev.org/t/openstack/build/268f4a1343bd42a18c973b67b8f31e21 : SUCCESS in 1h 07m 07s\n- nova-multi-cell https://zuul.opendev.org/t/openstack/build/56590cf190d14e32ba0bf6e8e036a33f : SUCCESS in 1h 52m 56s\n- nova-next https://zuul.opendev.org/t/openstack/build/fd836fc6ccb448daa157a399008857b5 : SUCCESS in 2h 05m 58s\n- nova-ovs-hybrid-plug https://zuul.opendev.org/t/openstack/build/c9c5b8420e5d4354af47a4743ac184ee : SUCCESS in 45m 49s\n- nova-tox-validate-backport https://zuul.opendev.org/t/openstack/build/e95cd401b34841119caf86f2fc7fc6a2 : SUCCESS in 6m 30s (non-voting)\n- nova-tox-functional-py310 https://zuul.opendev.org/t/openstack/build/8496ec182c3a41cba4c9bb016e1a8e06 : SUCCESS in 29m 59s\n- nova-tox-functional-py312 https://zuul.opendev.org/t/openstack/build/04de8938c71f4922b4e956839e48da0e : SUCCESS in 32m 19s\n- nova-grenade-multinode https://zuul.opendev.org/t/openstack/build/8cf654962f3f4d4198feec5aa3c6b0bf : SUCCESS in 1h 24m 10s\n- tempest-ipv6-only https://zuul.opendev.org/t/openstack/build/9d70b8d6aaa1442ab8834e48e9bb914b : SUCCESS in 56m 59s\n- cyborg-tempest https://zuul.opendev.org/t/openstack/build/683ba5cdfa6b4e118e7424dcc534bd67 : SUCCESS in 27m 32s (non-voting)\n- barbican-tempest-plugin-simple-crypto https://zuul.opendev.org/t/openstack/build/3308d7ecf97a4bb6b07d0fc389f87cad : SUCCESS in 14m 24s (non-voting)","accounts_in_message":[],"_revision_number":10},{"id":"7bf718468d384015534271dea0f7978cc671c590","tag":"autogenerated:jenkins-gerrit-trigger","author":{"_account_id":34420,"name":"openstack lightbits","display_name":"Lightbits CI","email":"openstack@lightbitslabs.com","username":"openstack_lightbits"},"date":"2025-08-09 03:51:22.000000000","message":"Patch Set 10:\n\nBuild succeeded. log path: ${LOG_PATH}\nLeave a comment with \u0027run-Lightbits CI\u0027 to trigger a recheck. \nFor more information about CI, please see https://wiki.openstack.org/wiki/ThirdPartySystems/LightbitsLabs_CI","accounts_in_message":[],"_revision_number":10},{"id":"4e1a00eda54e8a24374c9a90343fdc740526e9da","tag":"autogenerated:zuul:check-arm64","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2025-08-09 06:28:30.000000000","message":"Patch Set 10:\n\nBuild succeeded (ARM64 pipeline).\nhttps://zuul.opendev.org/t/openstack/buildset/766c7e3837164f019584699b0bd01943\n\n- openstack-tox-py310-arm64 https://zuul.opendev.org/t/openstack/build/1eb2124cce7149159c1ddbf7284c4f5b : FAILURE in 43m 25s (non-voting)\n- openstack-tox-py312-arm64 https://zuul.opendev.org/t/openstack/build/fc74764212b0404ba5b0003dd2d2846b : FAILURE in 1h 00m 20s (non-voting)\n- openstack-tox-py313-arm64 https://zuul.opendev.org/t/openstack/build/13d8ce43dd084446b187f7752e920673 : SUCCESS in 48m 35s (non-voting)","accounts_in_message":[],"_revision_number":10},{"id":"5d36397f60d3b2061c746d396716e854505aa5bb","tag":"autogenerated:gerrit:abandon","author":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"date":"2025-09-23 06:17:19.000000000","message":"Abandoned\n\nScope changed with spec re-proposal: https://review.opendev.org/c/openstack/nova-specs/+/961564","accounts_in_message":[],"_revision_number":10}],"current_revision_number":10,"current_revision":"5d6f8fcddc957784660070c8ab3295708099fb80","revisions":{"924230aa533d35a35feb9b49aab64bddda684cc1":{"kind":"REWORK","_number":1,"created":"2025-07-25 02:13:53.000000000","uploader":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"ref":"refs/changes/47/955847/1","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/nova","ref":"refs/changes/47/955847/1","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/1 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/1 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/1 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/nova refs/changes/47/955847/1"}}},"commit":{"parents":[{"commit":"e825d70d1290c7f241a23d63ebb09e79fcaef6c2","subject":"TPM: update instance request_spec with secret security","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/e825d70d1290c7f241a23d63ebb09e79fcaef6c2"}]}],"author":{"name":"melanie witt","email":"melwittt@gmail.com","date":"2025-06-16 20:06:40.000000000","tz":0},"committer":{"name":"melanie witt","email":"melwittt@gmail.com","date":"2025-07-25 02:07:17.000000000","tz":0},"subject":"TPM: confirm secret security via hard reboot","message":"TPM: confirm secret security via hard reboot\n\nFor legacy instances, the first step in migrating them to the new TPM\nsecret security policy options is to set the policy in their system\nmetadata along with a \u0027confirmed\u0027 flag set to \u0027False\u0027.\n\nThe expectation is that the user can inspect what secret security\npolicy their instance will be converted to via the GET\n/servers/{server_id} API if they choose to confirm the policy by hard\nrebooting their instance.\n\nIf the user chooses to confirm the secret security policy by hard\nrebooting the instance, we will do the appropriate conversion if\napplicable:\n\n  * For a \u0027user\u0027 (legacy) to \u0027host\u0027 conversion, we will create a new\n    libvirt secret with ephemeral\u003dno and private\u003dno that we will not\n    undefine after guest creation\n\n  * For a \u0027user\u0027 (legacy) to \u0027deployment\u0027 conversion, we will create a\n    new secret in the key manager service containing the same\n    passphrase the instance is currently using, but using the request\n    context of the Nova service user who will own the secret. Then we\n    will delete the user owned secret using the user\u0027s request context\n\nRelated to blueprint vtpm-live-migration\n\nChange-Id: Ib25c39f4bd1b097b1d8b52538fe80ea387ced86e\nSigned-off-by: melanie witt \u003cmelwittt@gmail.com\u003e\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/924230aa533d35a35feb9b49aab64bddda684cc1"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/924230aa533d35a35feb9b49aab64bddda684cc1"}]},"branch":"refs/heads/master"},"fc5a63e8f97d0294f98bfcfe06baef7926840a9b":{"kind":"TRIVIAL_REBASE","_number":2,"created":"2025-07-25 05:13:21.000000000","uploader":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"ref":"refs/changes/47/955847/2","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/nova","ref":"refs/changes/47/955847/2","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/2 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/2 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/2 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/nova refs/changes/47/955847/2"}}},"commit":{"parents":[{"commit":"53501b57b1f17ed25f35f803161ed32f98aaeea1","subject":"TPM: update instance request_spec with secret security","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/53501b57b1f17ed25f35f803161ed32f98aaeea1"}]}],"author":{"name":"melanie witt","email":"melwittt@gmail.com","date":"2025-06-16 20:06:40.000000000","tz":0},"committer":{"name":"melanie witt","email":"melwittt@gmail.com","date":"2025-07-25 05:08:18.000000000","tz":0},"subject":"TPM: confirm secret security via hard reboot","message":"TPM: confirm secret security via hard reboot\n\nFor legacy instances, the first step in migrating them to the new TPM\nsecret security policy options is to set the policy in their system\nmetadata along with a \u0027confirmed\u0027 flag set to \u0027False\u0027.\n\nThe expectation is that the user can inspect what secret security\npolicy their instance will be converted to via the GET\n/servers/{server_id} API if they choose to confirm the policy by hard\nrebooting their instance.\n\nIf the user chooses to confirm the secret security policy by hard\nrebooting the instance, we will do the appropriate conversion if\napplicable:\n\n  * For a \u0027user\u0027 (legacy) to \u0027host\u0027 conversion, we will create a new\n    libvirt secret with ephemeral\u003dno and private\u003dno that we will not\n    undefine after guest creation\n\n  * For a \u0027user\u0027 (legacy) to \u0027deployment\u0027 conversion, we will create a\n    new secret in the key manager service containing the same\n    passphrase the instance is currently using, but using the request\n    context of the Nova service user who will own the secret. Then we\n    will delete the user owned secret using the user\u0027s request context\n\nRelated to blueprint vtpm-live-migration\n\nChange-Id: Ib25c39f4bd1b097b1d8b52538fe80ea387ced86e\nSigned-off-by: melanie witt \u003cmelwittt@gmail.com\u003e\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/fc5a63e8f97d0294f98bfcfe06baef7926840a9b"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/fc5a63e8f97d0294f98bfcfe06baef7926840a9b"}]},"branch":"refs/heads/master"},"84fd58b47454c4da9df276281b88ecc9391b2ab4":{"kind":"TRIVIAL_REBASE","_number":3,"created":"2025-07-25 07:36:38.000000000","uploader":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"ref":"refs/changes/47/955847/3","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/nova","ref":"refs/changes/47/955847/3","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/3 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/3 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/3 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/nova refs/changes/47/955847/3"}}},"commit":{"parents":[{"commit":"550870620abbe9826e6e70807d682b823395b808","subject":"TPM: update instance request_spec with secret security","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/550870620abbe9826e6e70807d682b823395b808"}]}],"author":{"name":"melanie witt","email":"melwittt@gmail.com","date":"2025-06-16 20:06:40.000000000","tz":0},"committer":{"name":"melanie witt","email":"melwittt@gmail.com","date":"2025-07-25 07:35:41.000000000","tz":0},"subject":"TPM: confirm secret security via hard reboot","message":"TPM: confirm secret security via hard reboot\n\nFor legacy instances, the first step in migrating them to the new TPM\nsecret security policy options is to set the policy in their system\nmetadata along with a \u0027confirmed\u0027 flag set to \u0027False\u0027.\n\nThe expectation is that the user can inspect what secret security\npolicy their instance will be converted to via the GET\n/servers/{server_id} API if they choose to confirm the policy by hard\nrebooting their instance.\n\nIf the user chooses to confirm the secret security policy by hard\nrebooting the instance, we will do the appropriate conversion if\napplicable:\n\n  * For a \u0027user\u0027 (legacy) to \u0027host\u0027 conversion, we will create a new\n    libvirt secret with ephemeral\u003dno and private\u003dno that we will not\n    undefine after guest creation\n\n  * For a \u0027user\u0027 (legacy) to \u0027deployment\u0027 conversion, we will create a\n    new secret in the key manager service containing the same\n    passphrase the instance is currently using, but using the request\n    context of the Nova service user who will own the secret. Then we\n    will delete the user owned secret using the user\u0027s request context\n\nRelated to blueprint vtpm-live-migration\n\nChange-Id: Ib25c39f4bd1b097b1d8b52538fe80ea387ced86e\nSigned-off-by: melanie witt \u003cmelwittt@gmail.com\u003e\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/84fd58b47454c4da9df276281b88ecc9391b2ab4"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/84fd58b47454c4da9df276281b88ecc9391b2ab4"}]},"branch":"refs/heads/master"},"aefa08d9705758cbe3473d644f5b6adc097f8190":{"kind":"TRIVIAL_REBASE","_number":4,"created":"2025-07-26 07:38:53.000000000","uploader":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"ref":"refs/changes/47/955847/4","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/nova","ref":"refs/changes/47/955847/4","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/4 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/4 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/4 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/nova refs/changes/47/955847/4"}}},"commit":{"parents":[{"commit":"8fbd050be097afa5bac46f723c16a8788958e085","subject":"TPM: update instance request_spec with secret security","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/8fbd050be097afa5bac46f723c16a8788958e085"}]}],"author":{"name":"melanie witt","email":"melwittt@gmail.com","date":"2025-06-16 20:06:40.000000000","tz":0},"committer":{"name":"melanie witt","email":"melwittt@gmail.com","date":"2025-07-26 07:37:59.000000000","tz":0},"subject":"TPM: confirm secret security via hard reboot","message":"TPM: confirm secret security via hard reboot\n\nFor legacy instances, the first step in migrating them to the new TPM\nsecret security policy options is to set the policy in their system\nmetadata along with a \u0027confirmed\u0027 flag set to \u0027False\u0027.\n\nThe expectation is that the user can inspect what secret security\npolicy their instance will be converted to via the GET\n/servers/{server_id} API if they choose to confirm the policy by hard\nrebooting their instance.\n\nIf the user chooses to confirm the secret security policy by hard\nrebooting the instance, we will do the appropriate conversion if\napplicable:\n\n  * For a \u0027user\u0027 (legacy) to \u0027host\u0027 conversion, we will create a new\n    libvirt secret with ephemeral\u003dno and private\u003dno that we will not\n    undefine after guest creation\n\n  * For a \u0027user\u0027 (legacy) to \u0027deployment\u0027 conversion, we will create a\n    new secret in the key manager service containing the same\n    passphrase the instance is currently using, but using the request\n    context of the Nova service user who will own the secret. Then we\n    will delete the user owned secret using the user\u0027s request context\n\nRelated to blueprint vtpm-live-migration\n\nChange-Id: Ib25c39f4bd1b097b1d8b52538fe80ea387ced86e\nSigned-off-by: melanie witt \u003cmelwittt@gmail.com\u003e\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/aefa08d9705758cbe3473d644f5b6adc097f8190"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/aefa08d9705758cbe3473d644f5b6adc097f8190"}]},"branch":"refs/heads/master"},"1f1de866ff0a7f7cffc5c864d2d31528afe18078":{"kind":"TRIVIAL_REBASE","_number":5,"created":"2025-07-29 03:12:28.000000000","uploader":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"ref":"refs/changes/47/955847/5","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/nova","ref":"refs/changes/47/955847/5","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/5 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/5 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/5 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/nova refs/changes/47/955847/5"}}},"commit":{"parents":[{"commit":"06336d52c2996b939683f00d5ad6c5a2858ddd28","subject":"TPM: update instance request_spec with secret security","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/06336d52c2996b939683f00d5ad6c5a2858ddd28"}]}],"author":{"name":"melanie witt","email":"melwittt@gmail.com","date":"2025-06-16 20:06:40.000000000","tz":0},"committer":{"name":"melanie witt","email":"melwittt@gmail.com","date":"2025-07-29 03:07:05.000000000","tz":0},"subject":"TPM: confirm secret security via hard reboot","message":"TPM: confirm secret security via hard reboot\n\nFor legacy instances, the first step in migrating them to the new TPM\nsecret security policy options is to set the policy in their system\nmetadata along with a \u0027confirmed\u0027 flag set to \u0027False\u0027.\n\nThe expectation is that the user can inspect what secret security\npolicy their instance will be converted to via the GET\n/servers/{server_id} API if they choose to confirm the policy by hard\nrebooting their instance.\n\nIf the user chooses to confirm the secret security policy by hard\nrebooting the instance, we will do the appropriate conversion if\napplicable:\n\n  * For a \u0027user\u0027 (legacy) to \u0027host\u0027 conversion, we will create a new\n    libvirt secret with ephemeral\u003dno and private\u003dno that we will not\n    undefine after guest creation\n\n  * For a \u0027user\u0027 (legacy) to \u0027deployment\u0027 conversion, we will create a\n    new secret in the key manager service containing the same\n    passphrase the instance is currently using, but using the request\n    context of the Nova service user who will own the secret. Then we\n    will delete the user owned secret using the user\u0027s request context\n\nRelated to blueprint vtpm-live-migration\n\nChange-Id: Ib25c39f4bd1b097b1d8b52538fe80ea387ced86e\nSigned-off-by: melanie witt \u003cmelwittt@gmail.com\u003e\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/1f1de866ff0a7f7cffc5c864d2d31528afe18078"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/1f1de866ff0a7f7cffc5c864d2d31528afe18078"}]},"branch":"refs/heads/master"},"3be093f8c121acd7aa01219b0ad8abf91abcbda3":{"kind":"TRIVIAL_REBASE","_number":6,"created":"2025-07-29 05:44:30.000000000","uploader":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"ref":"refs/changes/47/955847/6","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/nova","ref":"refs/changes/47/955847/6","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/6 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/6 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/6 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/nova refs/changes/47/955847/6"}}},"commit":{"parents":[{"commit":"df70402402b091d4a017fd4a8158af97071f01a2","subject":"TPM: update instance request_spec with secret security","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/df70402402b091d4a017fd4a8158af97071f01a2"}]}],"author":{"name":"melanie witt","email":"melwittt@gmail.com","date":"2025-06-16 20:06:40.000000000","tz":0},"committer":{"name":"melanie witt","email":"melwittt@gmail.com","date":"2025-07-29 05:43:40.000000000","tz":0},"subject":"TPM: confirm secret security via hard reboot","message":"TPM: confirm secret security via hard reboot\n\nFor legacy instances, the first step in migrating them to the new TPM\nsecret security policy options is to set the policy in their system\nmetadata along with a \u0027confirmed\u0027 flag set to \u0027False\u0027.\n\nThe expectation is that the user can inspect what secret security\npolicy their instance will be converted to via the GET\n/servers/{server_id} API if they choose to confirm the policy by hard\nrebooting their instance.\n\nIf the user chooses to confirm the secret security policy by hard\nrebooting the instance, we will do the appropriate conversion if\napplicable:\n\n  * For a \u0027user\u0027 (legacy) to \u0027host\u0027 conversion, we will create a new\n    libvirt secret with ephemeral\u003dno and private\u003dno that we will not\n    undefine after guest creation\n\n  * For a \u0027user\u0027 (legacy) to \u0027deployment\u0027 conversion, we will create a\n    new secret in the key manager service containing the same\n    passphrase the instance is currently using, but using the request\n    context of the Nova service user who will own the secret. Then we\n    will delete the user owned secret using the user\u0027s request context\n\nRelated to blueprint vtpm-live-migration\n\nChange-Id: Ib25c39f4bd1b097b1d8b52538fe80ea387ced86e\nSigned-off-by: melanie witt \u003cmelwittt@gmail.com\u003e\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/3be093f8c121acd7aa01219b0ad8abf91abcbda3"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/3be093f8c121acd7aa01219b0ad8abf91abcbda3"}]},"branch":"refs/heads/master"},"e218b6ce890a641038e897ea6469ec873ec30c86":{"kind":"REWORK","_number":7,"created":"2025-07-30 01:03:13.000000000","uploader":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"ref":"refs/changes/47/955847/7","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/nova","ref":"refs/changes/47/955847/7","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/7 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/7 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/7 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/nova refs/changes/47/955847/7"}}},"commit":{"parents":[{"commit":"15c7cf177051b93f1d4ba73ab9876a856d05bf87","subject":"TPM: update instance request_spec with secret security","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/15c7cf177051b93f1d4ba73ab9876a856d05bf87"}]}],"author":{"name":"melanie witt","email":"melwittt@gmail.com","date":"2025-06-16 20:06:40.000000000","tz":0},"committer":{"name":"melanie witt","email":"melwittt@gmail.com","date":"2025-07-30 00:34:50.000000000","tz":0},"subject":"TPM: confirm secret security via hard reboot","message":"TPM: confirm secret security via hard reboot\n\nFor legacy instances, the first step in migrating them to the new TPM\nsecret security policy options is to set the policy in their system\nmetadata along with a \u0027confirmed\u0027 flag set to \u0027False\u0027.\n\nThe expectation is that the user can inspect what secret security\npolicy their instance will be converted to via the GET\n/servers/{server_id} API if they choose to confirm the policy by hard\nrebooting their instance.\n\nIf the user chooses to confirm the secret security policy by hard\nrebooting the instance, we will do the appropriate conversion if\napplicable:\n\n  * For a \u0027user\u0027 (legacy) to \u0027host\u0027 conversion, we will create a new\n    libvirt secret with ephemeral\u003dno and private\u003dno that we will not\n    undefine after guest creation\n\n  * For a \u0027user\u0027 (legacy) to \u0027deployment\u0027 conversion, we will create a\n    new secret in the key manager service containing the same\n    passphrase the instance is currently using, but using the request\n    context of the Nova service user who will own the secret. Then we\n    will delete the user owned secret using the user\u0027s request context\n\nRelated to blueprint vtpm-live-migration\n\nChange-Id: Ib25c39f4bd1b097b1d8b52538fe80ea387ced86e\nSigned-off-by: melanie witt \u003cmelwittt@gmail.com\u003e\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/e218b6ce890a641038e897ea6469ec873ec30c86"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/e218b6ce890a641038e897ea6469ec873ec30c86"}]},"branch":"refs/heads/master"},"8447aa1c9131294859cdfcdb0a37927ff95846f3":{"kind":"TRIVIAL_REBASE","_number":8,"created":"2025-07-30 01:12:56.000000000","uploader":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"ref":"refs/changes/47/955847/8","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/nova","ref":"refs/changes/47/955847/8","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/8 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/8 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/8 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/nova refs/changes/47/955847/8"}}},"commit":{"parents":[{"commit":"d7efc440c390c5d989baec72380d0f2ac4829bfe","subject":"TPM: update instance request_spec with secret security","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/d7efc440c390c5d989baec72380d0f2ac4829bfe"}]}],"author":{"name":"melanie witt","email":"melwittt@gmail.com","date":"2025-06-16 20:06:40.000000000","tz":0},"committer":{"name":"melanie witt","email":"melwittt@gmail.com","date":"2025-07-30 01:12:34.000000000","tz":0},"subject":"TPM: confirm secret security via hard reboot","message":"TPM: confirm secret security via hard reboot\n\nFor legacy instances, the first step in migrating them to the new TPM\nsecret security policy options is to set the policy in their system\nmetadata along with a \u0027confirmed\u0027 flag set to \u0027False\u0027.\n\nThe expectation is that the user can inspect what secret security\npolicy their instance will be converted to via the GET\n/servers/{server_id} API if they choose to confirm the policy by hard\nrebooting their instance.\n\nIf the user chooses to confirm the secret security policy by hard\nrebooting the instance, we will do the appropriate conversion if\napplicable:\n\n  * For a \u0027user\u0027 (legacy) to \u0027host\u0027 conversion, we will create a new\n    libvirt secret with ephemeral\u003dno and private\u003dno that we will not\n    undefine after guest creation\n\n  * For a \u0027user\u0027 (legacy) to \u0027deployment\u0027 conversion, we will create a\n    new secret in the key manager service containing the same\n    passphrase the instance is currently using, but using the request\n    context of the Nova service user who will own the secret. Then we\n    will delete the user owned secret using the user\u0027s request context\n\nRelated to blueprint vtpm-live-migration\n\nChange-Id: Ib25c39f4bd1b097b1d8b52538fe80ea387ced86e\nSigned-off-by: melanie witt \u003cmelwittt@gmail.com\u003e\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/8447aa1c9131294859cdfcdb0a37927ff95846f3"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/8447aa1c9131294859cdfcdb0a37927ff95846f3"}]},"branch":"refs/heads/master"},"56df39ccb113875426391db569db6e80a5ebc400":{"kind":"REWORK","_number":9,"created":"2025-08-09 01:15:32.000000000","uploader":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"ref":"refs/changes/47/955847/9","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/nova","ref":"refs/changes/47/955847/9","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/9 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/9 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/9 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/nova refs/changes/47/955847/9"}}},"commit":{"parents":[{"commit":"17c51e35edbb1cdc44ff105ca3b769a1ca512eb5","subject":"TPM: add late check for supported TPM secret security","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/17c51e35edbb1cdc44ff105ca3b769a1ca512eb5"}]}],"author":{"name":"melanie witt","email":"melwittt@gmail.com","date":"2025-06-16 20:06:40.000000000","tz":0},"committer":{"name":"melanie witt","email":"melwittt@gmail.com","date":"2025-08-09 01:14:26.000000000","tz":0},"subject":"TPM: confirm secret security via hard reboot","message":"TPM: confirm secret security via hard reboot\n\nFor legacy instances, the first step in migrating them to the new TPM\nsecret security policy options is to set the policy in their system\nmetadata along with a \u0027confirmed\u0027 flag set to \u0027False\u0027.\n\nThe expectation is that the user can inspect what secret security\npolicy their instance will be converted to via the GET\n/servers/{server_id} API if they choose to confirm the policy by hard\nrebooting their instance.\n\nIf the user chooses to confirm the secret security policy by hard\nrebooting the instance, we will do the appropriate conversion if\napplicable:\n\n  * For a \u0027user\u0027 (legacy) to \u0027host\u0027 conversion, we will create a new\n    libvirt secret with ephemeral\u003dno and private\u003dno that we will not\n    undefine after guest creation\n\n  * For a \u0027user\u0027 (legacy) to \u0027deployment\u0027 conversion, we will create a\n    new secret in the key manager service containing the same\n    passphrase the instance is currently using, but using the request\n    context of the Nova service user who will own the secret. Then we\n    will delete the user owned secret using the user\u0027s request context\n\nRelated to blueprint vtpm-live-migration\n\nChange-Id: Ib25c39f4bd1b097b1d8b52538fe80ea387ced86e\nSigned-off-by: melanie witt \u003cmelwittt@gmail.com\u003e\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/56df39ccb113875426391db569db6e80a5ebc400"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/56df39ccb113875426391db569db6e80a5ebc400"}]},"branch":"refs/heads/master"},"5d6f8fcddc957784660070c8ab3295708099fb80":{"kind":"TRIVIAL_REBASE","_number":10,"created":"2025-08-09 01:21:30.000000000","uploader":{"_account_id":4690,"name":"melanie witt","display_name":"melwitt","email":"melwittt@gmail.com","username":"melwitt"},"ref":"refs/changes/47/955847/10","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/nova","ref":"refs/changes/47/955847/10","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/10 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/10 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/nova refs/changes/47/955847/10 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/nova refs/changes/47/955847/10"}}},"commit":{"parents":[{"commit":"27a6de4d1f1ca3b801bdacd5f5b205d876ce03e0","subject":"TPM: add late check for supported TPM secret security","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/27a6de4d1f1ca3b801bdacd5f5b205d876ce03e0"}]}],"author":{"name":"melanie witt","email":"melwittt@gmail.com","date":"2025-06-16 20:06:40.000000000","tz":0},"committer":{"name":"melanie witt","email":"melwittt@gmail.com","date":"2025-08-09 01:18:51.000000000","tz":0},"subject":"TPM: confirm secret security via hard reboot","message":"TPM: confirm secret security via hard reboot\n\nFor legacy instances, the first step in migrating them to the new TPM\nsecret security policy options is to set the policy in their system\nmetadata along with a \u0027confirmed\u0027 flag set to \u0027False\u0027.\n\nThe expectation is that the user can inspect what secret security\npolicy their instance will be converted to via the GET\n/servers/{server_id} API if they choose to confirm the policy by hard\nrebooting their instance.\n\nIf the user chooses to confirm the secret security policy by hard\nrebooting the instance, we will do the appropriate conversion if\napplicable:\n\n  * For a \u0027user\u0027 (legacy) to \u0027host\u0027 conversion, we will create a new\n    libvirt secret with ephemeral\u003dno and private\u003dno that we will not\n    undefine after guest creation\n\n  * For a \u0027user\u0027 (legacy) to \u0027deployment\u0027 conversion, we will create a\n    new secret in the key manager service containing the same\n    passphrase the instance is currently using, but using the request\n    context of the Nova service user who will own the secret. Then we\n    will delete the user owned secret using the user\u0027s request context\n\nRelated to blueprint vtpm-live-migration\n\nChange-Id: Ib25c39f4bd1b097b1d8b52538fe80ea387ced86e\nSigned-off-by: melanie witt \u003cmelwittt@gmail.com\u003e\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/5d6f8fcddc957784660070c8ab3295708099fb80"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/nova/commit/5d6f8fcddc957784660070c8ab3295708099fb80"}]},"branch":"refs/heads/master"}},"requirements":[],"submit_records":[],"submit_requirements":[{"name":"Verified","description":"Verified in gate by CI","status":"UNSATISFIED","is_legacy":false,"submittability_expression_result":{"expression":"label:Verified\u003dMAX AND -label:Verified\u003dMIN","fulfilled":false,"status":"FAIL","passing_atoms":[],"failing_atoms":["label:Verified\u003dMAX","label:Verified\u003dMIN"],"atom_explanations":{}}},{"name":"Code-Review","description":"Code reviewed by core reviewer","status":"UNSATISFIED","is_legacy":false,"submittability_expression_result":{"expression":"label:Code-Review\u003dMAX AND -label:Code-Review\u003dMIN","fulfilled":false,"status":"FAIL","passing_atoms":[],"failing_atoms":["label:Code-Review\u003dMAX","label:Code-Review\u003dMIN"],"atom_explanations":{}}},{"name":"Review-Priority","description":"Review Priority","status":"NOT_APPLICABLE","is_legacy":false,"applicability_expression_result":{"fulfilled":false,"status":"FAIL"},"submittability_expression_result":{"expression":"is:true","fulfilled":true,"status":"NOT_EVALUATED","passing_atoms":[],"failing_atoms":[],"atom_explanations":{}}},{"name":"Workflow","description":"Approved for gate by core reviewer","status":"UNSATISFIED","is_legacy":false,"submittability_expression_result":{"expression":"label:Workflow\u003dMAX AND -label:Workflow\u003dMIN","fulfilled":false,"status":"FAIL","passing_atoms":[],"failing_atoms":["label:Workflow\u003dMAX","label:Workflow\u003dMIN"],"atom_explanations":{}}}]}
