2018-01-28 12:15:20,894 [salt.utils.decorators][ERROR   ][1831] Exception encountered when attempting to inspect frame in dependency decorator: list index out of range
2018-01-28 12:15:20,897 [salt.utils.decorators][ERROR   ][1831] Exception encountered when attempting to inspect frame in dependency decorator: list index out of range
2018-01-28 12:15:20,900 [salt.utils.decorators][ERROR   ][1831] Exception encountered when attempting to inspect frame in dependency decorator: list index out of range
2018-01-28 12:15:21,075 [salt.utils.decorators][ERROR   ][1831] Exception encountered when attempting to inspect frame in dependency decorator: list index out of range
2018-01-28 12:15:21,078 [salt.utils.decorators][ERROR   ][1831] Exception encountered when attempting to inspect frame in dependency decorator: list index out of range
2018-01-28 12:15:21,081 [salt.utils.decorators][ERROR   ][1831] Exception encountered when attempting to inspect frame in dependency decorator: list index out of range
2018-01-28 12:15:21,084 [salt.utils.decorators][ERROR   ][1831] Exception encountered when attempting to inspect frame in dependency decorator: list index out of range
2018-01-28 12:15:21,140 [salt.utils.decorators][ERROR   ][1831] Exception encountered when attempting to inspect frame in dependency decorator: list index out of range
2018-01-28 12:15:21,165 [salt.utils.decorators][ERROR   ][1831] Exception encountered when attempting to inspect frame in dependency decorator: list index out of range
2018-01-28 12:15:21,169 [salt.utils.decorators][ERROR   ][1831] Exception encountered when attempting to inspect frame in dependency decorator: list index out of range
2018-01-28 12:15:21,172 [salt.utils.decorators][ERROR   ][1831] Exception encountered when attempting to inspect frame in dependency decorator: list index out of range
2018-01-28 12:15:21,175 [salt.utils.decorators][ERROR   ][1831] Exception encountered when attempting to inspect frame in dependency decorator: list index out of range
2018-01-28 12:15:21,535 [salt.utils.decorators][ERROR   ][1831] Exception encountered when attempting to inspect frame in dependency decorator: list index out of range
2018-01-28 12:15:22,753 [py.warnings      ][WARNING ][1831] /usr/lib/python2.7/dist-packages/salt/utils/templates.py:73: DeprecationWarning: Starting in 2015.5, cmd.run uses python_shell=False by default, which doesn't support shellisms (pipes, env variables, etc). cmd.run is currently aliased to cmd.shell to prevent breakage. Please switch to cmd.shell or set python_shell=True to avoid breakage in the future, when this aliasing is removed.

2018-01-28 12:15:41,369 [salt.loaded.int.module.cmdmod][ERROR   ][1831] Command 'while true; do salt-call saltutil.running|grep fun: && continue; salt-call --local service.restart salt-minion; break; done' failed with return code: None
2018-01-28 12:16:28,959 [salt.loaded.int.module.cmdmod][INFO    ][8419] Executing command ['systemctl', 'status', 'salt-minion.service', '-n', '0'] in directory '/root'
2018-01-28 12:16:28,976 [salt.loaded.int.module.cmdmod][INFO    ][8419] Executing command ['systemctl', 'is-enabled', 'salt-minion.service'] in directory '/root'
2018-01-28 12:16:29,009 [salt.loaded.int.module.cmdmod][INFO    ][8419] Executing command ['systemd-run', '--scope', 'systemctl', 'restart', 'salt-minion.service'] in directory '/root'
2018-01-28 12:16:29,060 [salt.utils.parsers][WARNING ][1216] Minion received a SIGTERM. Exiting.
2018-01-28 12:16:29,469 [salt.cli.daemons ][INFO    ][8468] Setting up the Salt Minion "ctl03.baremetal-mcp-pike-ovs-dpdk-ha.local"
2018-01-28 12:16:29,586 [salt.cli.daemons ][INFO    ][8468] Starting up the Salt Minion
2018-01-28 12:16:29,587 [salt.utils.event ][INFO    ][8468] Starting pull socket on /var/run/salt/minion/minion_event_29d2b8766d_pull.ipc
2018-01-28 12:16:30,315 [salt.minion      ][INFO    ][8468] Creating minion process manager
2018-01-28 12:16:32,570 [salt.loader.192.168.11.2.int.module.cmdmod][INFO    ][8468] Executing command ['date', '+%z'] in directory '/root'
2018-01-28 12:16:32,599 [salt.utils.schedule][INFO    ][8468] Updating job settings for scheduled job: __mine_interval
2018-01-28 12:16:32,601 [salt.minion      ][INFO    ][8468] Added mine.update to scheduler
2018-01-28 12:16:32,607 [salt.minion      ][INFO    ][8468] Minion is starting as user 'root'
2018-01-28 12:16:32,627 [salt.minion      ][INFO    ][8468] Minion is ready to receive requests!
2018-01-28 12:16:32,631 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command ssh.set_auth_key with jid 20180128121631342024
2018-01-28 12:16:32,656 [salt.minion      ][INFO    ][8550] Starting a new job with PID 8550
2018-01-28 12:16:32,669 [salt.loader.192.168.11.2.int.module.ssh][WARNING ][8550] Public Key hashing currently defaults to "md5". This will change to "sha256" in the Nitrogen release.
2018-01-28 12:16:32,672 [salt.minion      ][INFO    ][8550] Returning information for job: 20180128121631342024
2018-01-28 12:16:33,629 [salt.utils.schedule][INFO    ][8468] Running scheduled job: __mine_interval
2018-01-28 12:17:17,414 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command pkg.upgrade with jid 20180128121716827073
2018-01-28 12:17:17,448 [salt.minion      ][INFO    ][8574] Starting a new job with PID 8574
2018-01-28 12:17:17,470 [salt.loader.192.168.11.2.int.module.cmdmod][INFO    ][8574] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:17:17,879 [salt.loader.192.168.11.2.int.module.cmdmod][INFO    ][8574] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'upgrade'] in directory '/root'
2018-01-28 12:17:23,972 [salt.loader.192.168.11.2.int.module.cmdmod][INFO    ][8574] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:17:24,017 [salt.minion      ][INFO    ][8574] Returning information for job: 20180128121716827073
2018-01-28 12:20:38,103 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command test.ping with jid 20180128122037518520
2018-01-28 12:20:38,140 [salt.minion      ][INFO    ][9300] Starting a new job with PID 9300
2018-01-28 12:20:38,208 [salt.minion      ][INFO    ][9300] Returning information for job: 20180128122037518520
2018-01-28 12:23:10,397 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command state.sls with jid 20180128122309812417
2018-01-28 12:23:10,428 [salt.minion      ][INFO    ][9305] Starting a new job with PID 9305
2018-01-28 12:23:11,380 [salt.state       ][INFO    ][9305] Loading fresh modules for state activity
2018-01-28 12:23:11,432 [salt.fileclient  ][INFO    ][9305] Fetching file from saltenv 'base', ** done ** 'keepalived/init.sls'
2018-01-28 12:23:11,467 [salt.fileclient  ][INFO    ][9305] Fetching file from saltenv 'base', ** done ** 'keepalived/cluster.sls'
2018-01-28 12:23:12,066 [salt.state       ][INFO    ][9305] Running state [keepalived] at time 12:23:12.066375
2018-01-28 12:23:12,067 [salt.state       ][INFO    ][9305] Executing state pkg.installed for keepalived
2018-01-28 12:23:12,068 [salt.loaded.int.module.cmdmod][INFO    ][9305] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:23:12,522 [salt.loaded.int.module.cmdmod][INFO    ][9305] Executing command ['apt-cache', '-q', 'policy', 'keepalived'] in directory '/root'
2018-01-28 12:23:12,627 [salt.loaded.int.module.cmdmod][INFO    ][9305] Executing command ['apt-get', '-q', 'update'] in directory '/root'
2018-01-28 12:23:14,546 [salt.loaded.int.module.cmdmod][INFO    ][9305] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 12:23:14,582 [salt.loaded.int.module.cmdmod][INFO    ][9305] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'keepalived'] in directory '/root'
2018-01-28 12:23:18,834 [salt.loaded.int.module.cmdmod][INFO    ][9305] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:23:18,885 [salt.state       ][INFO    ][9305] Made the following changes:
'libsnmp30' changed from 'absent' to '5.7.3+dfsg-1ubuntu4'
'libnl-3-200' changed from 'absent' to '3.2.27-1ubuntu0.16.04.1'
'libsensors4' changed from 'absent' to '1:3.4.0-2'
'libsnmp-base' changed from 'absent' to '5.7.3+dfsg-1ubuntu4'
'keepalived' changed from 'absent' to '1:1.2.19-1ubuntu0.2'
'ipvsadm' changed from 'absent' to '1:1.28-3'
'libnl-genl-3-200' changed from 'absent' to '3.2.27-1ubuntu0.16.04.1'

2018-01-28 12:23:18,906 [salt.state       ][INFO    ][9305] Loading fresh modules for state activity
2018-01-28 12:23:18,941 [salt.state       ][INFO    ][9305] Completed state [keepalived] at time 12:23:18.941019 duration_in_ms=6874.645
2018-01-28 12:23:18,951 [salt.state       ][INFO    ][9305] Running state [lsof] at time 12:23:18.951467
2018-01-28 12:23:18,951 [salt.state       ][INFO    ][9305] Executing state pkg.installed for lsof
2018-01-28 12:23:19,363 [salt.state       ][INFO    ][9305] All specified packages are already installed
2018-01-28 12:23:19,364 [salt.state       ][INFO    ][9305] Completed state [lsof] at time 12:23:19.364649 duration_in_ms=413.181
2018-01-28 12:23:19,367 [salt.state       ][INFO    ][9305] Running state [/etc/keepalived/keepalived.conf] at time 12:23:19.367583
2018-01-28 12:23:19,368 [salt.state       ][INFO    ][9305] Executing state file.managed for /etc/keepalived/keepalived.conf
2018-01-28 12:23:19,405 [salt.fileclient  ][INFO    ][9305] Fetching file from saltenv 'base', ** done ** 'keepalived/files/keepalived.conf'
2018-01-28 12:23:19,461 [salt.state       ][INFO    ][9305] File changed:
New file
2018-01-28 12:23:19,461 [salt.state       ][INFO    ][9305] Completed state [/etc/keepalived/keepalived.conf] at time 12:23:19.461860 duration_in_ms=94.277
2018-01-28 12:23:19,463 [salt.state       ][INFO    ][9305] Running state [keepalived] at time 12:23:19.463493
2018-01-28 12:23:19,463 [salt.state       ][INFO    ][9305] Executing state service.running for keepalived
2018-01-28 12:23:19,464 [salt.loaded.int.module.cmdmod][INFO    ][9305] Executing command ['systemctl', 'status', 'keepalived.service', '-n', '0'] in directory '/root'
2018-01-28 12:23:19,488 [salt.loaded.int.module.cmdmod][INFO    ][9305] Executing command ['systemctl', 'is-active', 'keepalived.service'] in directory '/root'
2018-01-28 12:23:19,507 [salt.loaded.int.module.cmdmod][INFO    ][9305] Executing command ['systemctl', 'is-enabled', 'keepalived.service'] in directory '/root'
2018-01-28 12:23:19,531 [salt.loaded.int.module.cmdmod][INFO    ][9305] Executing command ['systemctl', 'is-enabled', 'keepalived.service'] in directory '/root'
2018-01-28 12:23:19,556 [salt.loaded.int.module.cmdmod][INFO    ][9305] Executing command ['systemd-run', '--scope', 'systemctl', 'start', 'keepalived.service'] in directory '/root'
2018-01-28 12:23:19,629 [salt.loaded.int.module.cmdmod][INFO    ][9305] Executing command ['systemctl', 'is-active', 'keepalived.service'] in directory '/root'
2018-01-28 12:23:19,651 [salt.loaded.int.module.cmdmod][INFO    ][9305] Executing command ['systemctl', 'is-enabled', 'keepalived.service'] in directory '/root'
2018-01-28 12:23:19,674 [salt.loaded.int.module.cmdmod][INFO    ][9305] Executing command ['systemctl', 'is-enabled', 'keepalived.service'] in directory '/root'
2018-01-28 12:23:19,696 [salt.state       ][INFO    ][9305] {'keepalived': True}
2018-01-28 12:23:19,697 [salt.state       ][INFO    ][9305] Completed state [keepalived] at time 12:23:19.697574 duration_in_ms=234.079
2018-01-28 12:23:19,699 [salt.minion      ][INFO    ][9305] Returning information for job: 20180128122309812417
2018-01-28 12:23:20,475 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command pillar.get with jid 20180128122319893895
2018-01-28 12:23:20,511 [salt.minion      ][INFO    ][10535] Starting a new job with PID 10535
2018-01-28 12:23:20,516 [salt.minion      ][INFO    ][10535] Returning information for job: 20180128122319893895
2018-01-28 12:29:12,751 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command state.sls with jid 20180128122912163456
2018-01-28 12:29:12,779 [salt.minion      ][INFO    ][10543] Starting a new job with PID 10543
2018-01-28 12:29:15,829 [salt.state       ][INFO    ][10543] Loading fresh modules for state activity
2018-01-28 12:29:15,876 [salt.fileclient  ][INFO    ][10543] Fetching file from saltenv 'base', ** done ** 'glusterfs/client.sls'
2018-01-28 12:29:15,930 [salt.fileclient  ][INFO    ][10543] Fetching file from saltenv 'base', ** done ** 'glusterfs/map.jinja'
2018-01-28 12:29:15,946 [py.warnings      ][WARNING ][10543] /usr/lib/python2.7/dist-packages/salt/utils/templates.py:73: DeprecationWarning: Starting in 2015.5, cmd.run uses python_shell=False by default, which doesn't support shellisms (pipes, env variables, etc). cmd.run is currently aliased to cmd.shell to prevent breakage. Please switch to cmd.shell or set python_shell=True to avoid breakage in the future, when this aliasing is removed.

2018-01-28 12:29:15,948 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command 'systemd-escape -p --suffix=mount /var/lib/glance/images' in directory '/root'
2018-01-28 12:29:15,975 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command 'systemd-escape -p --suffix=mount /var/lib/keystone/fernet-keys' in directory '/root'
2018-01-28 12:29:15,996 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command 'systemd-escape -p --suffix=mount /var/lib/keystone/credential-keys' in directory '/root'
2018-01-28 12:29:16,614 [salt.state       ][INFO    ][10543] Running state [glusterfs-client] at time 12:29:16.614878
2018-01-28 12:29:16,615 [salt.state       ][INFO    ][10543] Executing state pkg.installed for glusterfs-client
2018-01-28 12:29:16,616 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:29:16,998 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['apt-cache', '-q', 'policy', 'glusterfs-client'] in directory '/root'
2018-01-28 12:29:17,099 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['apt-get', '-q', 'update'] in directory '/root'
2018-01-28 12:29:18,935 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 12:29:18,969 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'glusterfs-client'] in directory '/root'
2018-01-28 12:29:22,252 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:29:22,303 [salt.state       ][INFO    ][10543] Made the following changes:
'python-jwt' changed from 'absent' to '1.3.0-1ubuntu0.1'
'glusterfs-client' changed from 'absent' to '3.13.2-ubuntu1~xenial1'
'libaio1' changed from 'absent' to '0.3.110-2'
'attr' changed from 'absent' to '1:2.4.47-2'
'libpython2.7' changed from 'absent' to '2.7.12-1ubuntu0~16.04.3'
'glusterfs-common' changed from 'absent' to '3.13.2-ubuntu1~xenial1'
'librdmacm1' changed from 'absent' to '1.0.21-1'
'liburcu4' changed from 'absent' to '0.9.1-3'
'libibverbs1' changed from 'absent' to '1.1.8-1.1ubuntu2'
'python-prettytable' changed from 'absent' to '0.7.2-3'

2018-01-28 12:29:22,328 [salt.state       ][INFO    ][10543] Loading fresh modules for state activity
2018-01-28 12:29:22,361 [salt.state       ][INFO    ][10543] Completed state [glusterfs-client] at time 12:29:22.361807 duration_in_ms=5746.93
2018-01-28 12:29:22,372 [salt.state       ][INFO    ][10543] Running state [attr] at time 12:29:22.372086
2018-01-28 12:29:22,372 [salt.state       ][INFO    ][10543] Executing state pkg.installed for attr
2018-01-28 12:29:22,803 [salt.state       ][INFO    ][10543] All specified packages are already installed
2018-01-28 12:29:22,803 [salt.state       ][INFO    ][10543] Completed state [attr] at time 12:29:22.803613 duration_in_ms=431.526
2018-01-28 12:29:22,805 [salt.state       ][INFO    ][10543] Running state [/etc/systemd/system/var-lib-glance-images.mount] at time 12:29:22.805709
2018-01-28 12:29:22,805 [salt.state       ][INFO    ][10543] Executing state file.managed for /etc/systemd/system/var-lib-glance-images.mount
2018-01-28 12:29:22,844 [salt.fileclient  ][INFO    ][10543] Fetching file from saltenv 'base', ** done ** 'glusterfs/files/glusterfs-client.mount'
2018-01-28 12:29:22,853 [salt.state       ][INFO    ][10543] File changed:
New file
2018-01-28 12:29:22,854 [salt.state       ][INFO    ][10543] Completed state [/etc/systemd/system/var-lib-glance-images.mount] at time 12:29:22.854149 duration_in_ms=48.439
2018-01-28 12:29:22,855 [salt.state       ][INFO    ][10543] Running state [var-lib-glance-images.mount] at time 12:29:22.855582
2018-01-28 12:29:22,855 [salt.state       ][INFO    ][10543] Executing state service.running for var-lib-glance-images.mount
2018-01-28 12:29:22,856 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'status', 'var-lib-glance-images.mount', '-n', '0'] in directory '/root'
2018-01-28 12:29:22,883 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-active', 'var-lib-glance-images.mount'] in directory '/root'
2018-01-28 12:29:22,907 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-enabled', 'var-lib-glance-images.mount'] in directory '/root'
2018-01-28 12:29:22,936 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-enabled', 'var-lib-glance-images.mount'] in directory '/root'
2018-01-28 12:29:22,957 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemd-run', '--scope', 'systemctl', 'start', 'var-lib-glance-images.mount'] in directory '/root'
2018-01-28 12:29:23,039 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-active', 'var-lib-glance-images.mount'] in directory '/root'
2018-01-28 12:29:23,067 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-enabled', 'var-lib-glance-images.mount'] in directory '/root'
2018-01-28 12:29:23,093 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-enabled', 'var-lib-glance-images.mount'] in directory '/root'
2018-01-28 12:29:23,100 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128122922300903
2018-01-28 12:29:23,116 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-enabled', 'var-lib-glance-images.mount'] in directory '/root'
2018-01-28 12:29:23,120 [salt.minion      ][INFO    ][11678] Starting a new job with PID 11678
2018-01-28 12:29:23,137 [salt.minion      ][INFO    ][11678] Returning information for job: 20180128122922300903
2018-01-28 12:29:23,139 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemd-run', '--scope', 'systemctl', 'enable', 'var-lib-glance-images.mount'] in directory '/root'
2018-01-28 12:29:23,259 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-enabled', 'var-lib-glance-images.mount'] in directory '/root'
2018-01-28 12:29:23,286 [salt.state       ][INFO    ][10543] {'var-lib-glance-images.mount': True}
2018-01-28 12:29:23,287 [salt.state       ][INFO    ][10543] Completed state [var-lib-glance-images.mount] at time 12:29:23.287401 duration_in_ms=431.818
2018-01-28 12:29:23,288 [salt.state       ][INFO    ][10543] Running state [/var/lib/glance/images] at time 12:29:23.288642
2018-01-28 12:29:23,289 [salt.state       ][INFO    ][10543] Executing state file.directory for /var/lib/glance/images
2018-01-28 12:29:23,291 [salt.state       ][INFO    ][10543] Directory /var/lib/glance/images is in the correct state
2018-01-28 12:29:23,291 [salt.state       ][INFO    ][10543] Completed state [/var/lib/glance/images] at time 12:29:23.291400 duration_in_ms=2.758
2018-01-28 12:29:23,291 [salt.state       ][INFO    ][10543] Running state [/etc/systemd/system/var-lib-keystone-fernet\x2dkeys.mount] at time 12:29:23.291653
2018-01-28 12:29:23,291 [salt.state       ][INFO    ][10543] Executing state file.managed for /etc/systemd/system/var-lib-keystone-fernet\x2dkeys.mount
2018-01-28 12:29:23,324 [salt.state       ][INFO    ][10543] File changed:
New file
2018-01-28 12:29:23,324 [salt.state       ][INFO    ][10543] Completed state [/etc/systemd/system/var-lib-keystone-fernet\x2dkeys.mount] at time 12:29:23.324567 duration_in_ms=32.913
2018-01-28 12:29:23,325 [salt.state       ][INFO    ][10543] Running state [var-lib-keystone-fernet\x2dkeys.mount] at time 12:29:23.325464
2018-01-28 12:29:23,325 [salt.state       ][INFO    ][10543] Executing state service.running for var-lib-keystone-fernet\x2dkeys.mount
2018-01-28 12:29:23,327 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'status', 'var-lib-keystone-fernet\\x2dkeys.mount', '-n', '0'] in directory '/root'
2018-01-28 12:29:23,355 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-active', 'var-lib-keystone-fernet\\x2dkeys.mount'] in directory '/root'
2018-01-28 12:29:23,379 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-enabled', 'var-lib-keystone-fernet\\x2dkeys.mount'] in directory '/root'
2018-01-28 12:29:23,404 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-enabled', 'var-lib-keystone-fernet\\x2dkeys.mount'] in directory '/root'
2018-01-28 12:29:23,426 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemd-run', '--scope', 'systemctl', 'start', 'var-lib-keystone-fernet\\x2dkeys.mount'] in directory '/root'
2018-01-28 12:29:23,535 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-active', 'var-lib-keystone-fernet\\x2dkeys.mount'] in directory '/root'
2018-01-28 12:29:23,558 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-enabled', 'var-lib-keystone-fernet\\x2dkeys.mount'] in directory '/root'
2018-01-28 12:29:23,586 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-enabled', 'var-lib-keystone-fernet\\x2dkeys.mount'] in directory '/root'
2018-01-28 12:29:23,615 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-enabled', 'var-lib-keystone-fernet\\x2dkeys.mount'] in directory '/root'
2018-01-28 12:29:23,642 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemd-run', '--scope', 'systemctl', 'enable', 'var-lib-keystone-fernet\\x2dkeys.mount'] in directory '/root'
2018-01-28 12:29:23,765 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-enabled', 'var-lib-keystone-fernet\\x2dkeys.mount'] in directory '/root'
2018-01-28 12:29:23,785 [salt.state       ][INFO    ][10543] {'var-lib-keystone-fernet\\x2dkeys.mount': True}
2018-01-28 12:29:23,786 [salt.state       ][INFO    ][10543] Completed state [var-lib-keystone-fernet\x2dkeys.mount] at time 12:29:23.786323 duration_in_ms=460.859
2018-01-28 12:29:23,788 [salt.state       ][INFO    ][10543] Running state [/var/lib/keystone/fernet-keys] at time 12:29:23.788289
2018-01-28 12:29:23,788 [salt.state       ][INFO    ][10543] Executing state file.directory for /var/lib/keystone/fernet-keys
2018-01-28 12:29:23,791 [salt.state       ][INFO    ][10543] Directory /var/lib/keystone/fernet-keys is in the correct state
2018-01-28 12:29:23,791 [salt.state       ][INFO    ][10543] Completed state [/var/lib/keystone/fernet-keys] at time 12:29:23.791488 duration_in_ms=3.2
2018-01-28 12:29:23,791 [salt.state       ][INFO    ][10543] Running state [/etc/systemd/system/var-lib-keystone-credential\x2dkeys.mount] at time 12:29:23.791825
2018-01-28 12:29:23,792 [salt.state       ][INFO    ][10543] Executing state file.managed for /etc/systemd/system/var-lib-keystone-credential\x2dkeys.mount
2018-01-28 12:29:23,821 [salt.state       ][INFO    ][10543] File changed:
New file
2018-01-28 12:29:23,821 [salt.state       ][INFO    ][10543] Completed state [/etc/systemd/system/var-lib-keystone-credential\x2dkeys.mount] at time 12:29:23.821498 duration_in_ms=29.673
2018-01-28 12:29:23,822 [salt.state       ][INFO    ][10543] Running state [var-lib-keystone-credential\x2dkeys.mount] at time 12:29:23.822158
2018-01-28 12:29:23,822 [salt.state       ][INFO    ][10543] Executing state service.running for var-lib-keystone-credential\x2dkeys.mount
2018-01-28 12:29:23,823 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'status', 'var-lib-keystone-credential\\x2dkeys.mount', '-n', '0'] in directory '/root'
2018-01-28 12:29:23,845 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-active', 'var-lib-keystone-credential\\x2dkeys.mount'] in directory '/root'
2018-01-28 12:29:23,864 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-enabled', 'var-lib-keystone-credential\\x2dkeys.mount'] in directory '/root'
2018-01-28 12:29:23,901 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-enabled', 'var-lib-keystone-credential\\x2dkeys.mount'] in directory '/root'
2018-01-28 12:29:23,923 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemd-run', '--scope', 'systemctl', 'start', 'var-lib-keystone-credential\\x2dkeys.mount'] in directory '/root'
2018-01-28 12:29:24,056 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-active', 'var-lib-keystone-credential\\x2dkeys.mount'] in directory '/root'
2018-01-28 12:29:24,079 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-enabled', 'var-lib-keystone-credential\\x2dkeys.mount'] in directory '/root'
2018-01-28 12:29:24,111 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-enabled', 'var-lib-keystone-credential\\x2dkeys.mount'] in directory '/root'
2018-01-28 12:29:24,137 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-enabled', 'var-lib-keystone-credential\\x2dkeys.mount'] in directory '/root'
2018-01-28 12:29:24,158 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemd-run', '--scope', 'systemctl', 'enable', 'var-lib-keystone-credential\\x2dkeys.mount'] in directory '/root'
2018-01-28 12:29:24,273 [salt.loaded.int.module.cmdmod][INFO    ][10543] Executing command ['systemctl', 'is-enabled', 'var-lib-keystone-credential\\x2dkeys.mount'] in directory '/root'
2018-01-28 12:29:24,290 [salt.state       ][INFO    ][10543] {'var-lib-keystone-credential\\x2dkeys.mount': True}
2018-01-28 12:29:24,291 [salt.state       ][INFO    ][10543] Completed state [var-lib-keystone-credential\x2dkeys.mount] at time 12:29:24.290995 duration_in_ms=468.836
2018-01-28 12:29:24,292 [salt.state       ][INFO    ][10543] Running state [/var/lib/keystone/credential-keys] at time 12:29:24.292387
2018-01-28 12:29:24,292 [salt.state       ][INFO    ][10543] Executing state file.directory for /var/lib/keystone/credential-keys
2018-01-28 12:29:24,294 [salt.state       ][INFO    ][10543] Directory /var/lib/keystone/credential-keys is in the correct state
2018-01-28 12:29:24,295 [salt.state       ][INFO    ][10543] Completed state [/var/lib/keystone/credential-keys] at time 12:29:24.295069 duration_in_ms=2.682
2018-01-28 12:29:24,297 [salt.minion      ][INFO    ][10543] Returning information for job: 20180128122912163456
2018-01-28 12:52:35,602 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command state.sls with jid 20180128125235023544
2018-01-28 12:52:35,627 [salt.minion      ][INFO    ][11953] Starting a new job with PID 11953
2018-01-28 12:52:38,605 [salt.state       ][INFO    ][11953] Loading fresh modules for state activity
2018-01-28 12:52:38,820 [salt.fileclient  ][INFO    ][11953] Fetching file from saltenv 'base', ** done ** 'memcached/init.sls'
2018-01-28 12:52:38,845 [salt.fileclient  ][INFO    ][11953] Fetching file from saltenv 'base', ** done ** 'memcached/server.sls'
2018-01-28 12:52:38,871 [salt.fileclient  ][INFO    ][11953] Fetching file from saltenv 'base', ** done ** 'memcached/map.jinja'
2018-01-28 12:52:39,463 [salt.state       ][INFO    ][11953] Running state [memcached] at time 12:52:39.463658
2018-01-28 12:52:39,464 [salt.state       ][INFO    ][11953] Executing state pkg.installed for memcached
2018-01-28 12:52:39,464 [salt.loaded.int.module.cmdmod][INFO    ][11953] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:52:39,842 [salt.loaded.int.module.cmdmod][INFO    ][11953] Executing command ['apt-cache', '-q', 'policy', 'memcached'] in directory '/root'
2018-01-28 12:52:39,927 [salt.loaded.int.module.cmdmod][INFO    ][11953] Executing command ['apt-get', '-q', 'update'] in directory '/root'
2018-01-28 12:52:43,495 [salt.loaded.int.module.cmdmod][INFO    ][11953] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 12:52:43,525 [salt.loaded.int.module.cmdmod][INFO    ][11953] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'memcached'] in directory '/root'
2018-01-28 12:52:45,710 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128125245127379
2018-01-28 12:52:45,728 [salt.minion      ][INFO    ][12659] Starting a new job with PID 12659
2018-01-28 12:52:45,745 [salt.minion      ][INFO    ][12659] Returning information for job: 20180128125245127379
2018-01-28 12:52:46,514 [salt.loaded.int.module.cmdmod][INFO    ][11953] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:52:46,557 [salt.state       ][INFO    ][11953] Made the following changes:
'memcached' changed from 'absent' to '1.4.25-2ubuntu1.2'

2018-01-28 12:52:46,577 [salt.state       ][INFO    ][11953] Loading fresh modules for state activity
2018-01-28 12:52:46,613 [salt.state       ][INFO    ][11953] Completed state [memcached] at time 12:52:46.613010 duration_in_ms=7149.352
2018-01-28 12:52:46,623 [salt.state       ][INFO    ][11953] Running state [python-memcache] at time 12:52:46.623036
2018-01-28 12:52:46,623 [salt.state       ][INFO    ][11953] Executing state pkg.installed for python-memcache
2018-01-28 12:52:47,056 [salt.loaded.int.module.cmdmod][INFO    ][11953] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 12:52:47,089 [salt.loaded.int.module.cmdmod][INFO    ][11953] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'python-memcache'] in directory '/root'
2018-01-28 12:52:48,860 [salt.loaded.int.module.cmdmod][INFO    ][11953] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:52:48,908 [salt.state       ][INFO    ][11953] Made the following changes:
'python-memcache' changed from 'absent' to '1.57-1'

2018-01-28 12:52:48,927 [salt.state       ][INFO    ][11953] Loading fresh modules for state activity
2018-01-28 12:52:48,965 [salt.state       ][INFO    ][11953] Completed state [python-memcache] at time 12:52:48.965078 duration_in_ms=2342.042
2018-01-28 12:52:48,969 [salt.state       ][INFO    ][11953] Running state [/etc/memcached.conf] at time 12:52:48.969300
2018-01-28 12:52:48,969 [salt.state       ][INFO    ][11953] Executing state file.managed for /etc/memcached.conf
2018-01-28 12:52:49,017 [salt.fileclient  ][INFO    ][11953] Fetching file from saltenv 'base', ** done ** 'memcached/files/memcached.conf'
2018-01-28 12:52:49,066 [salt.state       ][INFO    ][11953] File changed:
--- 
+++ 
@@ -1,11 +1,10 @@
+
 # memcached default config file
 # 2003 - Jay Bonci <jaybonci@debian.org>
-# This configuration file is read by the start-memcached script provided as
-# part of the Debian GNU/Linux distribution.
+# This configuration file is read by the start-memcached script provided as part of the Debian GNU/Linux distribution. 
 
 # Run memcached as a daemon. This command is implied, and is not needed for the
-# daemon to run. See the README.Debian that comes with this package for more
-# information.
+# daemon to run. See the README.Debian that comes with this package for more information.
 -d
 
 # Log memcached's output to /var/log/memcached
@@ -18,13 +17,13 @@
 # -vv
 
 # Start with a cap of 64 megs of memory. It's reasonable, and the daemon default
-# Note that the daemon will grow to this size, but does not start out holding this much
-# memory
+# Note that the daemon will grow to this size, but does not start out holding this much memory
 -m 64
 
 # Default connection port is 11211
 -p 11211
 
+-U 11211
 # Run the daemon as root. The start-memcached will default to running as root if no
 # -u command is present in this config file
 -u memcache
@@ -32,10 +31,12 @@
 # Specify which IP address to listen on. The default is to listen on all IP addresses
 # This parameter is one of the only security measures that memcached has, so make sure
 # it's listening on a firewalled interface.
--l 127.0.0.1
+-l 0.0.0.0
 
 # Limit the number of simultaneous incoming connections. The daemon default is 1024
 # -c 1024
+# Mirantis
+-c 8192
 
 # Lock down all paged memory. Consult with the README and homepage before you do this
 # -k
@@ -45,3 +46,6 @@
 
 # Maximize core file limit
 # -r
+
+# Number of threads to use to process incoming requests.
+-t 1
2018-01-28 12:52:49,066 [salt.state       ][INFO    ][11953] Completed state [/etc/memcached.conf] at time 12:52:49.066311 duration_in_ms=97.012
2018-01-28 12:52:49,112 [salt.state       ][INFO    ][11953] Running state [memcached] at time 12:52:49.112267
2018-01-28 12:52:49,112 [salt.state       ][INFO    ][11953] Executing state service.running for memcached
2018-01-28 12:52:49,115 [salt.loaded.int.module.cmdmod][INFO    ][11953] Executing command ['systemctl', 'status', 'memcached.service', '-n', '0'] in directory '/root'
2018-01-28 12:52:49,140 [salt.loaded.int.module.cmdmod][INFO    ][11953] Executing command ['systemctl', 'is-active', 'memcached.service'] in directory '/root'
2018-01-28 12:52:49,160 [salt.loaded.int.module.cmdmod][INFO    ][11953] Executing command ['systemctl', 'is-enabled', 'memcached.service'] in directory '/root'
2018-01-28 12:52:49,182 [salt.state       ][INFO    ][11953] The service memcached is already running
2018-01-28 12:52:49,183 [salt.state       ][INFO    ][11953] Completed state [memcached] at time 12:52:49.183356 duration_in_ms=71.089
2018-01-28 12:52:49,184 [salt.state       ][INFO    ][11953] Running state [memcached] at time 12:52:49.184055
2018-01-28 12:52:49,184 [salt.state       ][INFO    ][11953] Executing state service.mod_watch for memcached
2018-01-28 12:52:49,186 [salt.loaded.int.module.cmdmod][INFO    ][11953] Executing command ['systemctl', 'is-active', 'memcached.service'] in directory '/root'
2018-01-28 12:52:49,209 [salt.loaded.int.module.cmdmod][INFO    ][11953] Executing command ['systemctl', 'is-enabled', 'memcached.service'] in directory '/root'
2018-01-28 12:52:49,237 [salt.loaded.int.module.cmdmod][INFO    ][11953] Executing command ['systemd-run', '--scope', 'systemctl', 'restart', 'memcached.service'] in directory '/root'
2018-01-28 12:52:49,300 [salt.state       ][INFO    ][11953] {'memcached': True}
2018-01-28 12:52:49,300 [salt.state       ][INFO    ][11953] Completed state [memcached] at time 12:52:49.300714 duration_in_ms=116.658
2018-01-28 12:52:49,304 [salt.minion      ][INFO    ][11953] Returning information for job: 20180128125235023544
2018-01-28 12:52:50,112 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command state.sls with jid 20180128125249534611
2018-01-28 12:52:50,141 [salt.minion      ][INFO    ][12829] Starting a new job with PID 12829
2018-01-28 12:52:51,988 [salt.state       ][INFO    ][12829] Loading fresh modules for state activity
2018-01-28 12:52:52,043 [salt.fileclient  ][INFO    ][12829] Fetching file from saltenv 'base', ** done ** 'haproxy/init.sls'
2018-01-28 12:52:52,067 [salt.fileclient  ][INFO    ][12829] Fetching file from saltenv 'base', ** done ** 'haproxy/proxy.sls'
2018-01-28 12:52:52,685 [salt.state       ][INFO    ][12829] Running state [haproxy] at time 12:52:52.685575
2018-01-28 12:52:52,686 [salt.state       ][INFO    ][12829] Executing state pkg.installed for haproxy
2018-01-28 12:52:52,686 [salt.loaded.int.module.cmdmod][INFO    ][12829] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:52:53,141 [salt.loaded.int.module.cmdmod][INFO    ][12829] Executing command ['apt-cache', '-q', 'policy', 'haproxy'] in directory '/root'
2018-01-28 12:52:53,240 [salt.loaded.int.module.cmdmod][INFO    ][12829] Executing command ['apt-get', '-q', 'update'] in directory '/root'
2018-01-28 12:52:54,986 [salt.loaded.int.module.cmdmod][INFO    ][12829] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 12:52:55,013 [salt.loaded.int.module.cmdmod][INFO    ][12829] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'haproxy'] in directory '/root'
2018-01-28 12:52:58,147 [salt.loaded.int.module.cmdmod][INFO    ][12829] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:52:58,192 [salt.state       ][INFO    ][12829] Made the following changes:
'haproxy' changed from 'absent' to '1.6.3-1ubuntu0.1'
'liblua5.3-0' changed from 'absent' to '5.3.1-1ubuntu2'

2018-01-28 12:52:58,214 [salt.state       ][INFO    ][12829] Loading fresh modules for state activity
2018-01-28 12:52:58,249 [salt.state       ][INFO    ][12829] Completed state [haproxy] at time 12:52:58.249074 duration_in_ms=5563.498
2018-01-28 12:52:58,252 [salt.state       ][INFO    ][12829] Running state [/etc/default/haproxy] at time 12:52:58.252889
2018-01-28 12:52:58,253 [salt.state       ][INFO    ][12829] Executing state file.managed for /etc/default/haproxy
2018-01-28 12:52:58,289 [salt.fileclient  ][INFO    ][12829] Fetching file from saltenv 'base', ** done ** 'haproxy/files/haproxy.default'
2018-01-28 12:52:58,294 [salt.state       ][INFO    ][12829] File changed:
--- 
+++ 
@@ -1,10 +1,5 @@
-# Defaults file for HAProxy
-#
-# This is sourced by both, the initscript and the systemd unit file, so do not
-# treat it as a shell script fragment.
 
-# Change the config file location if needed
-#CONFIG="/etc/haproxy/haproxy.cfg"
-
-# Add extra flags here, see haproxy(1) for a few options
+# Set ENABLED to 1 if you want the init script to start haproxy.
+ENABLED=1
+# Add extra flags here.
 #EXTRAOPTS="-de -m 16"

2018-01-28 12:52:58,299 [salt.state       ][INFO    ][12829] Completed state [/etc/default/haproxy] at time 12:52:58.299332 duration_in_ms=46.443
2018-01-28 12:52:58,299 [salt.state       ][INFO    ][12829] Running state [/etc/haproxy/haproxy.cfg] at time 12:52:58.299912
2018-01-28 12:52:58,300 [salt.state       ][INFO    ][12829] Executing state file.managed for /etc/haproxy/haproxy.cfg
2018-01-28 12:52:58,326 [salt.fileclient  ][INFO    ][12829] Fetching file from saltenv 'base', ** done ** 'haproxy/files/haproxy.cfg'
2018-01-28 12:52:58,504 [salt.state       ][INFO    ][12829] File changed:
--- 
+++ 
@@ -1,35 +1,176 @@
 global
-	log /dev/log	local0
-	log /dev/log	local1 notice
-	chroot /var/lib/haproxy
-	stats socket /run/haproxy/admin.sock mode 660 level admin
-	stats timeout 30s
-	user haproxy
-	group haproxy
-	daemon
-
-	# Default SSL material locations
-	ca-base /etc/ssl/certs
-	crt-base /etc/ssl/private
-
-	# Default ciphers to use on SSL-enabled listening sockets.
-	# For more information, see ciphers(1SSL). This list is from:
-	#  https://hynek.me/articles/hardening-your-web-servers-ssl-ciphers/
-	ssl-default-bind-ciphers ECDH+AESGCM:DH+AESGCM:ECDH+AES256:DH+AES256:ECDH+AES128:DH+AES:ECDH+3DES:DH+3DES:RSA+AESGCM:RSA+AES:RSA+3DES:!aNULL:!MD5:!DSS
-	ssl-default-bind-options no-sslv3
+  log /dev/log  local0
+  log /dev/log  local1 notice
+  chroot /var/lib/haproxy
+  stats  socket /run/haproxy/admin.sock mode 660 level admin
+  stats timeout 30s
+  user  haproxy
+  group haproxy
+  daemon
+  pidfile  /var/run/haproxy.pid
+  spread-checks 4
+  tune.maxrewrite 1024
+  tune.bufsize 32768
+  maxconn  16000
+  # SSL options
+  ca-base /etc/haproxy/ssl
+  crt-base /etc/haproxy/ssl
+  tune.ssl.default-dh-param 2048
+  ssl-default-bind-ciphers ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:DHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-AES128-SHA256:ECDHE-RSA-AES128-SHA256:ECDHE-ECDSA-AES128-SHA:ECDHE-RSA-AES256-SHA384:ECDHE-RSA-AES128-SHA:ECDHE-ECDSA-AES256-SHA384:ECDHE-ECDSA-AES256-SHA:ECDHE-RSA-AES256-SHA:DHE-RSA-AES128-SHA256:DHE-RSA-AES128-SHA:DHE-RSA-AES256-SHA256:DHE-RSA-AES256-SHA:ECDHE-ECDSA-DES-CBC3-SHA:ECDHE-RSA-DES-CBC3-SHA:EDH-RSA-DES-CBC3-SHA:AES128-GCM-SHA256:AES256-GCM-SHA384:AES128-SHA256:AES256-SHA256:AES128-SHA:AES256-SHA:DES-CBC3-SHA:!DSS
+  ssl-default-bind-options no-sslv3 no-tls-tickets
+  ssl-default-server-ciphers ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:DHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-AES128-SHA256:ECDHE-RSA-AES128-SHA256:ECDHE-ECDSA-AES128-SHA:ECDHE-RSA-AES256-SHA384:ECDHE-RSA-AES128-SHA:ECDHE-ECDSA-AES256-SHA384:ECDHE-ECDSA-AES256-SHA:ECDHE-RSA-AES256-SHA:DHE-RSA-AES128-SHA256:DHE-RSA-AES128-SHA:DHE-RSA-AES256-SHA256:DHE-RSA-AES256-SHA:ECDHE-ECDSA-DES-CBC3-SHA:ECDHE-RSA-DES-CBC3-SHA:EDH-RSA-DES-CBC3-SHA:AES128-GCM-SHA256:AES256-GCM-SHA384:AES128-SHA256:AES256-SHA256:AES128-SHA:AES256-SHA:DES-CBC3-SHA:!DSS
+  ssl-default-server-options no-sslv3 no-tls-tickets
 
 defaults
-	log	global
-	mode	http
-	option	httplog
-	option	dontlognull
-        timeout connect 5000
-        timeout client  50000
-        timeout server  50000
-	errorfile 400 /etc/haproxy/errors/400.http
-	errorfile 403 /etc/haproxy/errors/403.http
-	errorfile 408 /etc/haproxy/errors/408.http
-	errorfile 500 /etc/haproxy/errors/500.http
-	errorfile 502 /etc/haproxy/errors/502.http
-	errorfile 503 /etc/haproxy/errors/503.http
-	errorfile 504 /etc/haproxy/errors/504.http
+  log  global
+  mode http
+
+  maxconn 8000
+  option  redispatch
+  retries  3
+  stats  enable
+
+  timeout http-request 10s
+  timeout queue 1m
+  timeout connect 10s
+  timeout client 1m
+  timeout server 1m
+  timeout check 10s
+
+listen keystone_public_api
+  bind 192.168.10.10:5000 
+  option  httpchk
+  option  httplog
+  option  httpclose
+  server ctl01 192.168.10.11:5000 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl02 192.168.10.12:5000 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl03 192.168.10.13:5000 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+
+listen nova_api
+  bind 192.168.10.10:8774 
+  option  httpchk
+  option  httplog
+  option  httpclose
+  server ctl01 192.168.10.11:8774 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl02 192.168.10.12:8774 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl03 192.168.10.13:8774 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+
+listen glare
+  bind 192.168.10.10:9494 
+  mode http
+  balance roundrobin
+  option  httplog
+  server ctl01 192.168.10.11:9494 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl02 192.168.10.12:9494 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl03 192.168.10.13:9494 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+
+listen nova_novnc
+  bind 192.168.10.10:6080 
+  mode http
+  balance roundrobin
+  option  httplog
+  server ctl01 192.168.10.11:6080 check
+  server ctl02 192.168.10.12:6080 check
+  server ctl03 192.168.10.13:6080 check
+
+listen keystone_admin_api
+  bind 192.168.10.10:35357 
+  option  httpchk
+  option  httplog
+  option  httpclose
+  server ctl01 192.168.10.11:35357 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl02 192.168.10.12:35357 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl03 192.168.10.13:35357 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+
+listen cinder_api
+  bind 192.168.10.10:8776 
+  option  httpchk
+  option  httplog
+  option  httpclose
+  server ctl01 192.168.10.11:8776 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl02 192.168.10.12:8776 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl03 192.168.10.13:8776 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+
+listen nova_placement_api
+  bind 192.168.10.10:8778 
+  
+  mode http
+  balance roundrobin
+  option httpclose
+  option httplog
+  option httpchk
+  http-check expect status 401
+  server ctl01 192.168.10.11:8778 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl02 192.168.10.12:8778 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl03 192.168.10.13:8778 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+
+listen heat_cloudwatch_api
+  bind 192.168.10.10:8003 
+  option  httpchk
+  option  httplog
+  option  httpclose
+  server ctl01 192.168.10.11:8003 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl02 192.168.10.12:8003 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl03 192.168.10.13:8003 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+
+listen glance_registry_api
+  bind 192.168.10.10:9191 
+  mode http
+  balance roundrobin
+  option  httplog
+  server ctl01 192.168.10.11:9191 check
+  server ctl02 192.168.10.12:9191 check
+  server ctl03 192.168.10.13:9191 check
+
+listen designate_api
+  bind 192.168.10.10:9001 
+  option  httpchk
+  option  httplog
+  option  httpclose
+  server ctl01 192.168.10.11:9001 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl02 192.168.10.12:9001 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+
+listen glance_api
+  bind 192.168.10.10:9292 
+  option  httpchk
+  option  httplog
+  option  httpclose
+  server ctl01 192.168.10.11:9292 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl02 192.168.10.12:9292 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl03 192.168.10.13:9292 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+
+listen heat_api
+  bind 192.168.10.10:8004 
+  option  httpchk
+  option  httplog
+  option  httpclose
+  server ctl01 192.168.10.11:8004 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl02 192.168.10.12:8004 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl03 192.168.10.13:8004 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+
+listen heat_cfn_api
+  bind 192.168.10.10:8000 
+  option  httpchk
+  option  httplog
+  option  httpclose
+  server ctl01 192.168.10.11:8000 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl02 192.168.10.12:8000 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl03 192.168.10.13:8000 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+
+listen nova_metadata_api
+  bind 192.168.10.10:8775 
+  option  httpchk
+  option  httplog
+  option  httpclose
+  server ctl01 192.168.10.11:8775 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl02 192.168.10.12:8775 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl03 192.168.10.13:8775 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+
+listen neutron_api
+  bind 192.168.10.10:9696 
+  option  httpchk
+  option  httplog
+  option  httpclose
+  server ctl01 192.168.10.11:9696 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl02 192.168.10.12:9696 check inter 10s fastinter 2s downinter 3s rise 3 fall 3
+  server ctl03 192.168.10.13:9696 check inter 10s fastinter 2s downinter 3s rise 3 fall 3

2018-01-28 12:52:58,505 [salt.state       ][INFO    ][12829] Completed state [/etc/haproxy/haproxy.cfg] at time 12:52:58.505246 duration_in_ms=205.332
2018-01-28 12:52:58,505 [salt.state       ][INFO    ][12829] Running state [/etc/haproxy/ssl] at time 12:52:58.505590
2018-01-28 12:52:58,505 [salt.state       ][INFO    ][12829] Executing state file.directory for /etc/haproxy/ssl
2018-01-28 12:52:58,507 [salt.state       ][INFO    ][12829] {'/etc/haproxy/ssl': 'New Dir'}
2018-01-28 12:52:58,507 [salt.state       ][INFO    ][12829] Completed state [/etc/haproxy/ssl] at time 12:52:58.507560 duration_in_ms=1.97
2018-01-28 12:52:58,508 [salt.state       ][INFO    ][12829] Running state [haproxy_status_packages] at time 12:52:58.508380
2018-01-28 12:52:58,508 [salt.state       ][INFO    ][12829] Executing state pkg.installed for haproxy_status_packages
2018-01-28 12:52:58,928 [salt.loaded.int.module.cmdmod][INFO    ][12829] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 12:52:58,963 [salt.loaded.int.module.cmdmod][INFO    ][12829] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'socat'] in directory '/root'
2018-01-28 12:53:00,240 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128125259656876
2018-01-28 12:53:00,260 [salt.minion      ][INFO    ][13818] Starting a new job with PID 13818
2018-01-28 12:53:00,278 [salt.minion      ][INFO    ][13818] Returning information for job: 20180128125259656876
2018-01-28 12:53:00,829 [salt.loaded.int.module.cmdmod][INFO    ][12829] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:53:00,872 [salt.state       ][INFO    ][12829] Made the following changes:
'socat' changed from 'absent' to '1.7.3.1-1'

2018-01-28 12:53:00,891 [salt.state       ][INFO    ][12829] Loading fresh modules for state activity
2018-01-28 12:53:00,993 [salt.state       ][INFO    ][12829] Completed state [haproxy_status_packages] at time 12:53:00.993006 duration_in_ms=2484.625
2018-01-28 12:53:00,997 [salt.state       ][INFO    ][12829] Running state [/usr/bin/haproxy-status.sh] at time 12:53:00.997588
2018-01-28 12:53:00,998 [salt.state       ][INFO    ][12829] Executing state file.managed for /usr/bin/haproxy-status.sh
2018-01-28 12:53:01,025 [salt.fileclient  ][INFO    ][12829] Fetching file from saltenv 'base', ** done ** 'haproxy/files/haproxy-status.sh'
2018-01-28 12:53:01,055 [salt.state       ][INFO    ][12829] File changed:
New file
2018-01-28 12:53:01,056 [salt.state       ][INFO    ][12829] Completed state [/usr/bin/haproxy-status.sh] at time 12:53:01.056138 duration_in_ms=58.55
2018-01-28 12:53:01,058 [salt.state       ][INFO    ][12829] Running state [net.ipv4.ip_nonlocal_bind] at time 12:53:01.058912
2018-01-28 12:53:01,059 [salt.state       ][INFO    ][12829] Executing state sysctl.present for net.ipv4.ip_nonlocal_bind
2018-01-28 12:53:01,061 [salt.loaded.int.module.cmdmod][INFO    ][12829] Executing command 'sysctl -a' in directory '/root'
2018-01-28 12:53:01,101 [salt.loaded.int.module.cmdmod][INFO    ][12829] Executing command 'sysctl -w net.ipv4.ip_nonlocal_bind="1"' in directory '/root'
2018-01-28 12:53:01,122 [salt.state       ][INFO    ][12829] {'net.ipv4.ip_nonlocal_bind': 1}
2018-01-28 12:53:01,123 [salt.state       ][INFO    ][12829] Completed state [net.ipv4.ip_nonlocal_bind] at time 12:53:01.123767 duration_in_ms=64.854
2018-01-28 12:53:01,176 [salt.state       ][INFO    ][12829] Running state [haproxy] at time 12:53:01.176819
2018-01-28 12:53:01,177 [salt.state       ][INFO    ][12829] Executing state service.running for haproxy
2018-01-28 12:53:01,178 [salt.loaded.int.module.cmdmod][INFO    ][12829] Executing command ['systemctl', 'status', 'haproxy.service', '-n', '0'] in directory '/root'
2018-01-28 12:53:01,202 [salt.loaded.int.module.cmdmod][INFO    ][12829] Executing command ['systemctl', 'is-active', 'haproxy.service'] in directory '/root'
2018-01-28 12:53:01,225 [salt.loaded.int.module.cmdmod][INFO    ][12829] Executing command ['systemctl', 'is-enabled', 'haproxy.service'] in directory '/root'
2018-01-28 12:53:01,249 [salt.state       ][INFO    ][12829] The service haproxy is already running
2018-01-28 12:53:01,251 [salt.state       ][INFO    ][12829] Completed state [haproxy] at time 12:53:01.251528 duration_in_ms=74.708
2018-01-28 12:53:01,252 [salt.state       ][INFO    ][12829] Running state [haproxy] at time 12:53:01.252044
2018-01-28 12:53:01,253 [salt.state       ][INFO    ][12829] Executing state service.mod_watch for haproxy
2018-01-28 12:53:01,254 [salt.loaded.int.module.cmdmod][INFO    ][12829] Executing command ['systemctl', 'is-active', 'haproxy.service'] in directory '/root'
2018-01-28 12:53:01,277 [salt.loaded.int.module.cmdmod][INFO    ][12829] Executing command ['systemctl', 'is-enabled', 'haproxy.service'] in directory '/root'
2018-01-28 12:53:01,300 [salt.loaded.int.module.cmdmod][INFO    ][12829] Executing command ['systemd-run', '--scope', 'systemctl', 'restart', 'haproxy.service'] in directory '/root'
2018-01-28 12:53:01,352 [salt.state       ][INFO    ][12829] {'haproxy': True}
2018-01-28 12:53:01,353 [salt.state       ][INFO    ][12829] Completed state [haproxy] at time 12:53:01.353717 duration_in_ms=101.672
2018-01-28 12:53:01,357 [salt.minion      ][INFO    ][12829] Returning information for job: 20180128125249534611
2018-01-28 12:53:05,185 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command service.status with jid 20180128125304606807
2018-01-28 12:53:05,213 [salt.minion      ][INFO    ][13883] Starting a new job with PID 13883
2018-01-28 12:53:05,266 [salt.loader.192.168.11.2.int.module.cmdmod][INFO    ][13883] Executing command ['systemctl', 'status', 'haproxy.service', '-n', '0'] in directory '/root'
2018-01-28 12:53:05,285 [salt.loader.192.168.11.2.int.module.cmdmod][INFO    ][13883] Executing command ['systemctl', 'is-active', 'haproxy.service'] in directory '/root'
2018-01-28 12:53:05,304 [salt.minion      ][INFO    ][13883] Returning information for job: 20180128125304606807
2018-01-28 12:53:06,048 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command service.restart with jid 20180128125305468269
2018-01-28 12:53:06,073 [salt.minion      ][INFO    ][13890] Starting a new job with PID 13890
2018-01-28 12:53:06,125 [salt.loader.192.168.11.2.int.module.cmdmod][INFO    ][13890] Executing command ['systemctl', 'status', 'rsyslog.service', '-n', '0'] in directory '/root'
2018-01-28 12:53:06,145 [salt.loader.192.168.11.2.int.module.cmdmod][INFO    ][13890] Executing command ['systemctl', 'is-enabled', 'rsyslog.service'] in directory '/root'
2018-01-28 12:53:06,183 [salt.loader.192.168.11.2.int.module.cmdmod][INFO    ][13890] Executing command ['systemd-run', '--scope', 'systemctl', 'restart', 'rsyslog.service'] in directory '/root'
2018-01-28 12:53:06,233 [salt.minion      ][INFO    ][13890] Returning information for job: 20180128125305468269
2018-01-28 12:53:07,096 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command test.ping with jid 20180128125306515870
2018-01-28 12:53:07,118 [salt.minion      ][INFO    ][13907] Starting a new job with PID 13907
2018-01-28 12:53:07,188 [salt.minion      ][INFO    ][13907] Returning information for job: 20180128125306515870
2018-01-28 12:55:32,463 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command state.sls with jid 20180128125531883918
2018-01-28 12:55:32,494 [salt.minion      ][INFO    ][13912] Starting a new job with PID 13912
2018-01-28 12:55:35,307 [salt.state       ][INFO    ][13912] Loading fresh modules for state activity
2018-01-28 12:55:35,356 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'keystone/server.sls'
2018-01-28 12:55:35,563 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'apache/init.sls'
2018-01-28 12:55:35,597 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'apache/server/init.sls'
2018-01-28 12:55:35,631 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'apache/server/service/init.sls'
2018-01-28 12:55:35,718 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'apache/server/service/modules.sls'
2018-01-28 12:55:35,801 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'apache/server/service/mpm.sls'
2018-01-28 12:55:35,877 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'apache/server/site.sls'
2018-01-28 12:55:35,991 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'apache/server/users.sls'
2018-01-28 12:55:36,075 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'apache/server/robots.sls'
2018-01-28 12:55:36,726 [salt.state       ][INFO    ][13912] Running state [apache2] at time 12:55:36.726058
2018-01-28 12:55:36,726 [salt.state       ][INFO    ][13912] Executing state pkg.installed for apache2
2018-01-28 12:55:36,727 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:55:37,103 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['apt-cache', '-q', 'policy', 'apache2'] in directory '/root'
2018-01-28 12:55:37,199 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['apt-get', '-q', 'update'] in directory '/root'
2018-01-28 12:55:39,113 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 12:55:39,152 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'apache2'] in directory '/root'
2018-01-28 12:55:42,522 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128125541932458
2018-01-28 12:55:42,549 [salt.minion      ][INFO    ][15035] Starting a new job with PID 15035
2018-01-28 12:55:42,566 [salt.minion      ][INFO    ][15035] Returning information for job: 20180128125541932458
2018-01-28 12:55:45,956 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:55:46,003 [salt.state       ][INFO    ][13912] Made the following changes:
'apache2-data' changed from 'absent' to '2.4.18-2ubuntu3.5'
'libapr1' changed from 'absent' to '1.5.2-3'
'apache2-utils' changed from 'absent' to '2.4.18-2ubuntu3.5'
'httpd' changed from 'absent' to '1'
'apache2-api-20120211' changed from 'absent' to '1'
'libaprutil1' changed from 'absent' to '1.5.4-1build1'
'apache2' changed from 'absent' to '2.4.18-2ubuntu3.5'
'liblua5.1-0' changed from 'absent' to '5.1.5-8ubuntu1'
'libaprutil1-dbd-sqlite3' changed from 'absent' to '1.5.4-1build1'
'libaprutil1-ldap' changed from 'absent' to '1.5.4-1build1'
'apache2-bin' changed from 'absent' to '2.4.18-2ubuntu3.5'
'ssl-cert' changed from 'absent' to '1.0.37'
'httpd-cgi' changed from 'absent' to '1'

2018-01-28 12:55:46,029 [salt.state       ][INFO    ][13912] Loading fresh modules for state activity
2018-01-28 12:55:46,063 [salt.state       ][INFO    ][13912] Completed state [apache2] at time 12:55:46.063299 duration_in_ms=9337.241
2018-01-28 12:55:46,065 [salt.state       ][INFO    ][13912] Running state [a2enmod ssl] at time 12:55:46.065665
2018-01-28 12:55:46,065 [salt.state       ][INFO    ][13912] Executing state cmd.run for a2enmod ssl
2018-01-28 12:55:46,068 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command 'a2enmod ssl' in directory '/root'
2018-01-28 12:55:46,135 [salt.state       ][INFO    ][13912] {'pid': 15315, 'retcode': 0, 'stderr': '', 'stdout': 'Considering dependency setenvif for ssl:\nModule setenvif already enabled\nConsidering dependency mime for ssl:\nModule mime already enabled\nConsidering dependency socache_shmcb for ssl:\nEnabling module socache_shmcb.\nEnabling module ssl.\nSee /usr/share/doc/apache2/README.Debian.gz on how to configure SSL and create self-signed certificates.\nTo activate the new configuration, you need to run:\n  service apache2 restart'}
2018-01-28 12:55:46,136 [salt.state       ][INFO    ][13912] Completed state [a2enmod ssl] at time 12:55:46.136199 duration_in_ms=70.533
2018-01-28 12:55:46,137 [salt.state       ][INFO    ][13912] Running state [a2enmod rewrite] at time 12:55:46.137639
2018-01-28 12:55:46,138 [salt.state       ][INFO    ][13912] Executing state cmd.run for a2enmod rewrite
2018-01-28 12:55:46,140 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command 'a2enmod rewrite' in directory '/root'
2018-01-28 12:55:46,209 [salt.state       ][INFO    ][13912] {'pid': 15334, 'retcode': 0, 'stderr': '', 'stdout': 'Enabling module rewrite.\nTo activate the new configuration, you need to run:\n  service apache2 restart'}
2018-01-28 12:55:46,210 [salt.state       ][INFO    ][13912] Completed state [a2enmod rewrite] at time 12:55:46.210250 duration_in_ms=72.61
2018-01-28 12:55:46,227 [salt.state       ][INFO    ][13912] Running state [libapache2-mod-wsgi] at time 12:55:46.227871
2018-01-28 12:55:46,228 [salt.state       ][INFO    ][13912] Executing state pkg.installed for libapache2-mod-wsgi
2018-01-28 12:55:46,669 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 12:55:46,698 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'libapache2-mod-wsgi'] in directory '/root'
2018-01-28 12:55:50,986 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:55:51,032 [salt.state       ][INFO    ][13912] Made the following changes:
'libapache2-mod-wsgi' changed from 'absent' to '4.3.0-1.1build1'
'httpd-wsgi' changed from 'absent' to '1'

2018-01-28 12:55:51,051 [salt.state       ][INFO    ][13912] Loading fresh modules for state activity
2018-01-28 12:55:51,082 [salt.state       ][INFO    ][13912] Completed state [libapache2-mod-wsgi] at time 12:55:51.082881 duration_in_ms=4855.01
2018-01-28 12:55:51,085 [salt.state       ][INFO    ][13912] Running state [a2enmod wsgi] at time 12:55:51.085252
2018-01-28 12:55:51,085 [salt.state       ][INFO    ][13912] Executing state cmd.run for a2enmod wsgi
2018-01-28 12:55:51,085 [salt.state       ][INFO    ][13912] /etc/apache2/mods-enabled/wsgi.load exists
2018-01-28 12:55:51,086 [salt.state       ][INFO    ][13912] Completed state [a2enmod wsgi] at time 12:55:51.086165 duration_in_ms=0.913
2018-01-28 12:55:51,088 [salt.state       ][INFO    ][13912] Running state [/etc/apache2/mods-enabled/mpm_prefork.load] at time 12:55:51.088531
2018-01-28 12:55:51,088 [salt.state       ][INFO    ][13912] Executing state file.absent for /etc/apache2/mods-enabled/mpm_prefork.load
2018-01-28 12:55:51,089 [salt.state       ][INFO    ][13912] File /etc/apache2/mods-enabled/mpm_prefork.load is not present
2018-01-28 12:55:51,089 [salt.state       ][INFO    ][13912] Completed state [/etc/apache2/mods-enabled/mpm_prefork.load] at time 12:55:51.089356 duration_in_ms=0.825
2018-01-28 12:55:51,089 [salt.state       ][INFO    ][13912] Running state [/etc/apache2/mods-enabled/mpm_prefork.conf] at time 12:55:51.089592
2018-01-28 12:55:51,089 [salt.state       ][INFO    ][13912] Executing state file.absent for /etc/apache2/mods-enabled/mpm_prefork.conf
2018-01-28 12:55:51,090 [salt.state       ][INFO    ][13912] File /etc/apache2/mods-enabled/mpm_prefork.conf is not present
2018-01-28 12:55:51,090 [salt.state       ][INFO    ][13912] Completed state [/etc/apache2/mods-enabled/mpm_prefork.conf] at time 12:55:51.090315 duration_in_ms=0.723
2018-01-28 12:55:51,090 [salt.state       ][INFO    ][13912] Running state [/etc/apache2/mods-enabled/mpm_worker.load] at time 12:55:51.090550
2018-01-28 12:55:51,090 [salt.state       ][INFO    ][13912] Executing state file.absent for /etc/apache2/mods-enabled/mpm_worker.load
2018-01-28 12:55:51,091 [salt.state       ][INFO    ][13912] File /etc/apache2/mods-enabled/mpm_worker.load is not present
2018-01-28 12:55:51,091 [salt.state       ][INFO    ][13912] Completed state [/etc/apache2/mods-enabled/mpm_worker.load] at time 12:55:51.091229 duration_in_ms=0.679
2018-01-28 12:55:51,091 [salt.state       ][INFO    ][13912] Running state [/etc/apache2/mods-enabled/mpm_worker.conf] at time 12:55:51.091451
2018-01-28 12:55:51,091 [salt.state       ][INFO    ][13912] Executing state file.absent for /etc/apache2/mods-enabled/mpm_worker.conf
2018-01-28 12:55:51,091 [salt.state       ][INFO    ][13912] File /etc/apache2/mods-enabled/mpm_worker.conf is not present
2018-01-28 12:55:51,092 [salt.state       ][INFO    ][13912] Completed state [/etc/apache2/mods-enabled/mpm_worker.conf] at time 12:55:51.092114 duration_in_ms=0.663
2018-01-28 12:55:51,094 [salt.state       ][INFO    ][13912] Running state [/etc/apache2/mods-available/mpm_event.conf] at time 12:55:51.094908
2018-01-28 12:55:51,095 [salt.state       ][INFO    ][13912] Executing state file.managed for /etc/apache2/mods-available/mpm_event.conf
2018-01-28 12:55:51,141 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'apache/files/mpm/mpm_event.conf'
2018-01-28 12:55:51,211 [salt.state       ][INFO    ][13912] File changed:
--- 
+++ 
@@ -5,14 +5,15 @@
 # ThreadsPerChild: constant number of worker threads in each server process
 # MaxRequestWorkers: maximum number of worker threads
 # MaxConnectionsPerChild: maximum number of requests a server process serves
+
 <IfModule mpm_event_module>
-	StartServers			 2
-	MinSpareThreads		 25
-	MaxSpareThreads		 75
-	ThreadLimit			 64
-	ThreadsPerChild		 25
-	MaxRequestWorkers	  150
-	MaxConnectionsPerChild   0
+    StartServers            5
+    MinSpareThreads         25
+    MaxSpareThreads         75
+    ThreadLimit             64
+    ThreadsPerChild         25
+    MaxRequestWorkers       150
+    MaxConnectionsPerChild  0
 </IfModule>
 
-# vim: syntax=apache ts=4 sw=4 sts=4 sr noet
+# vim: syntax=apache ts=4 sw=4 sts=4 sr et

2018-01-28 12:55:51,212 [salt.state       ][INFO    ][13912] Completed state [/etc/apache2/mods-available/mpm_event.conf] at time 12:55:51.212208 duration_in_ms=117.299
2018-01-28 12:55:51,213 [salt.state       ][INFO    ][13912] Running state [a2enmod mpm_event] at time 12:55:51.213312
2018-01-28 12:55:51,213 [salt.state       ][INFO    ][13912] Executing state cmd.run for a2enmod mpm_event
2018-01-28 12:55:51,213 [salt.state       ][INFO    ][13912] /etc/apache2/mods-enabled/mpm_event.load exists
2018-01-28 12:55:51,214 [salt.state       ][INFO    ][13912] Completed state [a2enmod mpm_event] at time 12:55:51.214085 duration_in_ms=0.773
2018-01-28 12:55:51,215 [salt.state       ][INFO    ][13912] Running state [/etc/apache2/ports.conf] at time 12:55:51.215169
2018-01-28 12:55:51,215 [salt.state       ][INFO    ][13912] Executing state file.managed for /etc/apache2/ports.conf
2018-01-28 12:55:51,243 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'apache/files/ports.conf'
2018-01-28 12:55:51,303 [salt.state       ][INFO    ][13912] File /etc/apache2/ports.conf is in the correct state
2018-01-28 12:55:51,304 [salt.state       ][INFO    ][13912] Completed state [/etc/apache2/ports.conf] at time 12:55:51.304635 duration_in_ms=89.466
2018-01-28 12:55:51,305 [salt.state       ][INFO    ][13912] Running state [/etc/apache2/conf-available/security.conf] at time 12:55:51.305490
2018-01-28 12:55:51,306 [salt.state       ][INFO    ][13912] Executing state file.managed for /etc/apache2/conf-available/security.conf
2018-01-28 12:55:51,332 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'apache/files/security.conf'
2018-01-28 12:55:51,392 [salt.state       ][INFO    ][13912] File changed:
--- 
+++ 
@@ -1,73 +1,14 @@
-#
-# Disable access to the entire file system except for the directories that
-# are explicitly allowed later.
-#
-# This currently breaks the configurations that come with some web application
-# Debian packages.
-#
-#<Directory />
-#   AllowOverride None
-#   Require all denied
-#</Directory>
+ServerSignature Off
+TraceEnable Off
+ServerTokens Prod
+<DirectoryMatch "/\.svn">
+    Require all denied
+</DirectoryMatch>
 
+<DirectoryMatch "/\.git">
+    Require all denied
+</DirectoryMatch>
 
-# Changing the following options will not really affect the security of the
-# server, but might make attacks slightly more difficult in some cases.
-
-#
-# ServerTokens
-# This directive configures what you return as the Server HTTP response
-# Header. The default is 'Full' which sends information about the OS-Type
-# and compiled in modules.
-# Set to one of:  Full | OS | Minimal | Minor | Major | Prod
-# where Full conveys the most information, and Prod the least.
-#ServerTokens Minimal
-ServerTokens OS
-#ServerTokens Full
-
-#
-# Optionally add a line containing the server version and virtual host
-# name to server-generated pages (internal error documents, FTP directory
-# listings, mod_status and mod_info output etc., but not CGI generated
-# documents or custom error documents).
-# Set to "EMail" to also include a mailto: link to the ServerAdmin.
-# Set to one of:  On | Off | EMail
-#ServerSignature Off
-ServerSignature On
-
-#
-# Allow TRACE method
-#
-# Set to "extended" to also reflect the request body (only for testing and
-# diagnostic purposes).
-#
-# Set to one of:  On | Off | extended
-TraceEnable Off
-#TraceEnable On
-
-#
-# Forbid access to version control directories
-#
-# If you use version control systems in your document root, you should
-# probably deny access to their directories. For example, for subversion:
-#
-#<DirectoryMatch "/\.svn">
-#   Require all denied
-#</DirectoryMatch>
-
-#
-# Setting this header will prevent MSIE from interpreting files as something
-# else than declared by the content type in the HTTP headers.
-# Requires mod_headers to be enabled.
-#
-#Header set X-Content-Type-Options: "nosniff"
-
-#
-# Setting this header will prevent other sites from embedding pages from this
-# site as frames. This defends against clickjacking attacks.
-# Requires mod_headers to be enabled.
-#
-#Header set X-Frame-Options: "sameorigin"
-
-
-# vim: syntax=apache ts=4 sw=4 sts=4 sr noet
+<DirectoryMatch "/\.hg">
+    Require all denied
+</DirectoryMatch>

2018-01-28 12:55:51,397 [salt.state       ][INFO    ][13912] Completed state [/etc/apache2/conf-available/security.conf] at time 12:55:51.397041 duration_in_ms=91.551
2018-01-28 12:55:51,465 [salt.state       ][INFO    ][13912] Running state [keystone] at time 12:55:51.465706
2018-01-28 12:55:51,466 [salt.state       ][INFO    ][13912] Executing state pkg.installed for keystone
2018-01-28 12:55:51,836 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 12:55:51,870 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'keystone'] in directory '/root'
2018-01-28 12:55:52,716 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128125552134088
2018-01-28 12:55:52,737 [salt.minion      ][INFO    ][15658] Starting a new job with PID 15658
2018-01-28 12:55:52,754 [salt.minion      ][INFO    ][15658] Returning information for job: 20180128125552134088
2018-01-28 12:56:02,894 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128125602312443
2018-01-28 12:56:02,924 [salt.minion      ][INFO    ][17434] Starting a new job with PID 17434
2018-01-28 12:56:02,942 [salt.minion      ][INFO    ][17434] Returning information for job: 20180128125602312443
2018-01-28 12:56:13,086 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128125612505106
2018-01-28 12:56:13,108 [salt.minion      ][INFO    ][18102] Starting a new job with PID 18102
2018-01-28 12:56:13,126 [salt.minion      ][INFO    ][18102] Returning information for job: 20180128125612505106
2018-01-28 12:56:18,953 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:56:19,010 [salt.state       ][INFO    ][13912] Made the following changes:
'python-routes' changed from 'absent' to '2.4.1-1~cloud0'
'python-retrying' changed from 'absent' to '1.3.3-1'
'python-kombu' changed from 'absent' to '4.0.2+really4.0.2+dfsg-2ubuntu1~cloud0'
'python-oslo.concurrency' changed from 'absent' to '3.21.0-0ubuntu2~cloud0'
'python-sqlparse' changed from 'absent' to '0.1.18-1'
'python-monotonic' changed from 'absent' to '0.6-2'
'xmlsec1' changed from 'absent' to '1.2.20-2ubuntu4'
'python2.7-bson' changed from 'absent' to '1'
'libtiff5' changed from 'absent' to '4.0.6-1ubuntu0.2'
'python-secretstorage' changed from 'absent' to '2.1.3-1'
'python-formencode' changed from 'absent' to '1.3.0-0ubuntu5'
'python-functools32' changed from 'absent' to '3.2.3.2-2'
'python-scrypt' changed from 'absent' to '0.8.0-0ubuntu2~cloud0'
'python-migrate' changed from 'absent' to '0.11.0-0ubuntu1~cloud0'
'python-cachetools' changed from 'absent' to '1.1.6-1~cloud0'
'python-blinker' changed from 'absent' to '1.3.dfsg2-1build1'
'ieee-data' changed from 'absent' to '20150531.1'
'python-roman' changed from 'absent' to '2.0.0-2'
'python-pastescript' changed from 'absent' to '1.7.5-3build1'
'python-bs4' changed from 'absent' to '4.4.1-1'
'python-keystoneauth1' changed from 'absent' to '3.1.0-0ubuntu2~cloud0'
'python2.7-pymongo-ext' changed from 'absent' to '1'
'python-tenacity' changed from 'absent' to '3.3.0-0ubuntu1~cloud0'
'python-setuptools' changed from 'absent' to '36.2.7-2~cloud0'
'python-bcrypt' changed from 'absent' to '3.1.3-1~cloud0'
'python-dbus' changed from 'absent' to '1.2.0-3'
'python-gridfs' changed from 'absent' to '3.2-1build1'
'python-traceback2' changed from 'absent' to '1.4.0-3'
'python-pycadf' changed from 'absent' to '2.6.0-0ubuntu1~cloud0'
'python2.7-bson-ext' changed from 'absent' to '1'
'python-anyjson' changed from 'absent' to '0.3.3-1build1'
'python-jsonschema' changed from 'absent' to '2.5.1-4'
'python2.7-pymongo' changed from 'absent' to '1'
'python-netaddr' changed from 'absent' to '0.7.18-1'
'python-dnspython' changed from 'absent' to '1.15.0-1~cloud0'
'python-babel' changed from 'absent' to '2.4.0+dfsg.1-2ubuntu1~cloud0'
'python-requests' changed from '2.9.1-3' to '2.18.1-1~cloud0'
'python-certifi' changed from 'absent' to '2015.11.20.1-2'
'python-pil' changed from 'absent' to '3.1.2-0ubuntu1.1'
'docutils-common' changed from 'absent' to '0.12+dfsg-1'
'python-distribute' changed from 'absent' to '1'
'python-oslo.db' changed from 'absent' to '4.25.0-0ubuntu1~cloud0'
'python2.7-sqlalchemy-ext' changed from 'absent' to '1'
'python-tz' changed from 'absent' to '2014.10~dfsg1-0ubuntu2'
'python-keystoneclient' changed from 'absent' to '1:3.13.0-0ubuntu1~cloud0'
'python-extras' changed from 'absent' to '0.0.3-3'
'python-funcsigs' changed from 'absent' to '1.0.2-3~cloud0'
'python2.7-gridfs' changed from 'absent' to '1'
'libxmlsec1-openssl' changed from 'absent' to '1.2.20-2ubuntu4'
'python-bson-ext' changed from 'absent' to '3.2-1build1'
'python-scgi' changed from 'absent' to '1.13-1.1build1'
'python2.7-pil' changed from 'absent' to '1'
'python-repoze.lru' changed from 'absent' to '0.6-6'
'python-posix-ipc' changed from 'absent' to '0.9.8-2build2'
'formencode-i18n' changed from 'absent' to '1.3.0-0ubuntu5'
'python2.7-testtools' changed from 'absent' to '1'
'docutils' changed from 'absent' to '1'
'keystone' changed from 'absent' to '2:12.0.0-0ubuntu1~cloud0'
'python2.7-dbus' changed from 'absent' to '1'
'python-oslo.middleware' changed from 'absent' to '3.30.0-0ubuntu1.1~cloud0'
'python-pygments' changed from 'absent' to '2.2.0+dfsg-1~cloud0'
'python-pillow' changed from 'absent' to '1'
'libpaperg' changed from 'absent' to '1'
'python2.7-netifaces' changed from 'absent' to '1'
'liblcms2-2' changed from 'absent' to '2.6-3ubuntu2'
'python-oslo.context' changed from 'absent' to '1:2.17.0-0ubuntu1~cloud0'
'python-keyring' changed from 'absent' to '7.3-1ubuntu1'
'python-pymongo-ext' changed from 'absent' to '3.2-1build1'
'python-urllib3' changed from '1.13.1-2ubuntu0.16.04.1' to '1.21.1-1~cloud0'
'python-oslo.cache' changed from 'absent' to '1.25.0-0ubuntu1~cloud0'
'python2.7-pyinotify' changed from 'absent' to '1'
'python-webob' changed from 'absent' to '1:1.7.2-0ubuntu1~cloud0'
'python-pyparsing' changed from 'absent' to '2.1.10+dfsg1-1~cloud0'
'python-babel-localedata' changed from 'absent' to '2.4.0+dfsg.1-2ubuntu1~cloud0'
'python-positional' changed from 'absent' to '1.1.1-3~cloud0'
'python-bson' changed from 'absent' to '3.2-1build1'
'python-pysaml2' changed from 'absent' to '3.0.0-3ubuntu1.16.04.3'
'python-oslo-log' changed from 'absent' to '1'
'python-iso8601' changed from 'absent' to '0.1.11-1'
'alembic' changed from 'absent' to '0.8.10-0ubuntu2~cloud0'
'libwebpmux1' changed from 'absent' to '0.4.4-1'
'python-oslo.policy' changed from 'absent' to '1.25.1-0ubuntu1~cloud0'
'python-paste' changed from 'absent' to '1.7.5.1-6ubuntu3'
'python-lxml' changed from 'absent' to '3.5.0-1build1'
'python-oslo.config' changed from 'absent' to '1:4.11.0-0ubuntu1~cloud0'
'python-futurist' changed from 'absent' to '0.13.0-2'
'libpaper1' changed from 'absent' to '1.1.24+nmu4ubuntu1'
'python2.7-keystone' changed from 'absent' to '1'
'python2.7-gi' changed from 'absent' to '1'
'python-linecache2' changed from 'absent' to '1.0.0-2'
'python-mimeparse' changed from 'absent' to '0.1.4-1build1'
'python-pastedeploy-tpl' changed from 'absent' to '1.5.2-1'
'python-oauthlib' changed from 'absent' to '1.0.3-1'
'python-oslo-db' changed from 'absent' to '1'
'python-gi' changed from 'absent' to '3.20.0-0ubuntu1'
'pycadf-common' changed from 'absent' to '2.6.0-0ubuntu1~cloud0'
'python-contextlib2' changed from 'absent' to '0.5.1-1'
'libjpeg8' changed from 'absent' to '8c-2ubuntu8'
'python-oslo.serialization' changed from 'absent' to '2.20.0-0ubuntu1~cloud0'
'python-oslo.utils' changed from 'absent' to '3.28.0-0ubuntu1~cloud0'
'python-pika-pool' changed from 'absent' to '0.1.3-1ubuntu1'
'python2.7-iso8601' changed from 'absent' to '1'
'python-wrapt' changed from 'absent' to '1.8.0-5build2'
'python-docutils' changed from 'absent' to '0.12+dfsg-1'
'python-openid' changed from 'absent' to '2.2.5-6'
'python-pastedeploy' changed from 'absent' to '1.5.2-1'
'python-keystone' changed from 'absent' to '2:12.0.0-0ubuntu1~cloud0'
'libpaper-utils' changed from 'absent' to '1.1.24+nmu4ubuntu1'
'python2.7-zope.interface' changed from 'absent' to '1'
'python-oslo.i18n' changed from 'absent' to '3.17.0-0ubuntu1~cloud0'
'python-alembic' changed from 'absent' to '0.8.10-0ubuntu2~cloud0'
'python-statsd' changed from 'absent' to '3.2.1-2~cloud0'
'libxslt1.1' changed from 'absent' to '1.1.28-2.1ubuntu0.1'
'docutils-doc' changed from 'absent' to '0.12+dfsg-1'
'python-oslo-utils' changed from 'absent' to '1'
'python-fasteners' changed from 'absent' to '0.12.0-2ubuntu1'
'python-mock' changed from 'absent' to '2.0.0-3~cloud0'
'python-rfc3986' changed from 'absent' to '0.3.1-2~cloud0'
'python-eventlet' changed from 'absent' to '0.18.4-1ubuntu1'
'python-unittest2' changed from 'absent' to '1.1.0-6.1'
'python2.7-pyparsing' changed from 'absent' to '1'
'python-oslo.log' changed from 'absent' to '3.30.0-0ubuntu1~cloud0'
'python-pyinotify' changed from 'absent' to '0.9.6-0fakesync1'
'libjpeg-turbo8' changed from 'absent' to '1.4.2-0ubuntu3'
'python-amqp' changed from 'absent' to '2.1.4-1~cloud0'
'python-pbr' changed from 'absent' to '2.0.0-0ubuntu1~cloud0'
'libwebp5' changed from 'absent' to '0.4.4-1'
'python-zope.interface' changed from 'absent' to '4.1.3-1build1'
'python-vine' changed from 'absent' to '1.1.3+dfsg-2~cloud0'
'python-defusedxml' changed from 'absent' to '0.4.1-2ubuntu0.16.04.1'
'python-netifaces' changed from 'absent' to '0.10.4-0.1build2'
'python-decorator' changed from 'absent' to '4.0.6-1'
'python-osprofiler' changed from 'absent' to '1.11.0-0ubuntu1~cloud0'
'python-oslo.messaging' changed from 'absent' to '5.30.0-0ubuntu1~cloud0'
'python-debtcollector' changed from 'absent' to '1.3.0-2'
'python-dogpile.cache' changed from 'absent' to '0.6.2-5~cloud0'
'python-html5lib' changed from 'absent' to '0.999-4'
'python2.7-lxml' changed from 'absent' to '1'
'python-pika' changed from 'absent' to '0.10.0-1'
'python-passlib' changed from 'absent' to '1.7.1-1~cloud0'
'python-greenlet' changed from 'absent' to '0.4.9-2fakesync1'
'python-sqlalchemy-ext' changed from 'absent' to '1.1.9+ds1-0ubuntu3~cloud0'
'python-oslo.service' changed from 'absent' to '1.25.0-0ubuntu1~cloud0'
'libxmlsec1' changed from 'absent' to '1.2.20-2ubuntu4'
'python-ceilometerclient' changed from 'absent' to '2.9.0-0ubuntu1~cloud0'
'python-zopeinterface' changed from 'absent' to '1'
'python-fixtures' changed from 'absent' to '3.0.0-2~cloud0'
'python-stevedore' changed from 'absent' to '1:1.25.0-0ubuntu1~cloud0'
'python-tempita' changed from 'absent' to '0.5.2-1build1'
'python-sqlalchemy' changed from 'absent' to '1.1.9+ds1-0ubuntu3~cloud0'
'python-pymongo' changed from 'absent' to '3.2-1build1'
'python-keystonemiddleware' changed from 'absent' to '4.17.0-0ubuntu1~cloud0'
'python-zope' changed from 'absent' to '1'
'python-oslo-context' changed from 'absent' to '1'
'python-testtools' changed from 'absent' to '1.8.1-0ubuntu1'
'libjbig0' changed from 'absent' to '2.1-3.1'

2018-01-28 12:56:19,044 [salt.state       ][INFO    ][13912] Loading fresh modules for state activity
2018-01-28 12:56:19,076 [salt.state       ][INFO    ][13912] Completed state [keystone] at time 12:56:19.076510 duration_in_ms=27610.805
2018-01-28 12:56:19,087 [salt.state       ][INFO    ][13912] Running state [python-keystone] at time 12:56:19.087638
2018-01-28 12:56:19,087 [salt.state       ][INFO    ][13912] Executing state pkg.installed for python-keystone
2018-01-28 12:56:20,258 [salt.state       ][INFO    ][13912] All specified packages are already installed
2018-01-28 12:56:20,258 [salt.state       ][INFO    ][13912] Completed state [python-keystone] at time 12:56:20.258384 duration_in_ms=1170.745
2018-01-28 12:56:20,258 [salt.state       ][INFO    ][13912] Running state [python-keystoneclient] at time 12:56:20.258699
2018-01-28 12:56:20,258 [salt.state       ][INFO    ][13912] Executing state pkg.installed for python-keystoneclient
2018-01-28 12:56:20,265 [salt.state       ][INFO    ][13912] All specified packages are already installed
2018-01-28 12:56:20,265 [salt.state       ][INFO    ][13912] Completed state [python-keystoneclient] at time 12:56:20.265867 duration_in_ms=7.168
2018-01-28 12:56:20,266 [salt.state       ][INFO    ][13912] Running state [python-psycopg2] at time 12:56:20.266111
2018-01-28 12:56:20,266 [salt.state       ][INFO    ][13912] Executing state pkg.installed for python-psycopg2
2018-01-28 12:56:20,286 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 12:56:20,325 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'python-psycopg2'] in directory '/root'
2018-01-28 12:56:22,926 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:56:22,984 [salt.state       ][INFO    ][13912] Made the following changes:
'python-psycopg2' changed from 'absent' to '2.6.1-1build2'
'libpq5' changed from 'absent' to '9.5.10-0ubuntu0.16.04'
'python-egenix-mxdatetime' changed from 'absent' to '3.2.9-1'
'python-egenix-mxtools' changed from 'absent' to '3.2.9-1'

2018-01-28 12:56:23,011 [salt.state       ][INFO    ][13912] Loading fresh modules for state activity
2018-01-28 12:56:23,043 [salt.state       ][INFO    ][13912] Completed state [python-psycopg2] at time 12:56:23.043409 duration_in_ms=2777.297
2018-01-28 12:56:23,054 [salt.state       ][INFO    ][13912] Running state [python-mysqldb] at time 12:56:23.054717
2018-01-28 12:56:23,055 [salt.state       ][INFO    ][13912] Executing state pkg.installed for python-mysqldb
2018-01-28 12:56:23,523 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 12:56:23,558 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'python-mysqldb'] in directory '/root'
2018-01-28 12:56:23,780 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128125622699084
2018-01-28 12:56:23,802 [salt.minion      ][INFO    ][18779] Starting a new job with PID 18779
2018-01-28 12:56:23,820 [salt.minion      ][INFO    ][18779] Returning information for job: 20180128125622699084
2018-01-28 12:56:26,012 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:56:26,060 [salt.state       ][INFO    ][13912] Made the following changes:
'python2.7-mysqldb' changed from 'absent' to '1'
'mysql-common' changed from 'absent' to '5.7.21-0ubuntu0.16.04.1'
'mysql-common-5.6' changed from 'absent' to '1'
'libmysqlclient20' changed from 'absent' to '5.7.21-0ubuntu0.16.04.1'
'python-mysqldb' changed from 'absent' to '1.3.7-1build2'

2018-01-28 12:56:26,091 [salt.state       ][INFO    ][13912] Loading fresh modules for state activity
2018-01-28 12:56:26,124 [salt.state       ][INFO    ][13912] Completed state [python-mysqldb] at time 12:56:26.124384 duration_in_ms=3069.667
2018-01-28 12:56:26,134 [salt.state       ][INFO    ][13912] Running state [mysql-client] at time 12:56:26.134175
2018-01-28 12:56:26,134 [salt.state       ][INFO    ][13912] Executing state pkg.installed for mysql-client
2018-01-28 12:56:26,598 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 12:56:26,634 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'mysql-client'] in directory '/root'
2018-01-28 12:56:29,681 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:56:29,744 [salt.state       ][INFO    ][13912] Made the following changes:
'mysql-client-core-5.7' changed from 'absent' to '5.7.21-0ubuntu0.16.04.1'
'mysql-client' changed from 'absent' to '5.7.21-0ubuntu0.16.04.1'
'virtual-mysql-client' changed from 'absent' to '1'
'mysql-client-5.7' changed from 'absent' to '5.7.21-0ubuntu0.16.04.1'
'virtual-mysql-client-core' changed from 'absent' to '1'

2018-01-28 12:56:29,773 [salt.state       ][INFO    ][13912] Loading fresh modules for state activity
2018-01-28 12:56:29,803 [salt.state       ][INFO    ][13912] Completed state [mysql-client] at time 12:56:29.803763 duration_in_ms=3669.588
2018-01-28 12:56:29,814 [salt.state       ][INFO    ][13912] Running state [python-six] at time 12:56:29.814951
2018-01-28 12:56:29,815 [salt.state       ][INFO    ][13912] Executing state pkg.installed for python-six
2018-01-28 12:56:30,253 [salt.state       ][INFO    ][13912] All specified packages are already installed
2018-01-28 12:56:30,254 [salt.state       ][INFO    ][13912] Completed state [python-six] at time 12:56:30.254469 duration_in_ms=439.519
2018-01-28 12:56:30,255 [salt.state       ][INFO    ][13912] Running state [python-memcache] at time 12:56:30.255029
2018-01-28 12:56:30,255 [salt.state       ][INFO    ][13912] Executing state pkg.installed for python-memcache
2018-01-28 12:56:30,262 [salt.state       ][INFO    ][13912] All specified packages are already installed
2018-01-28 12:56:30,263 [salt.state       ][INFO    ][13912] Completed state [python-memcache] at time 12:56:30.262970 duration_in_ms=7.941
2018-01-28 12:56:30,263 [salt.state       ][INFO    ][13912] Running state [python-openstackclient] at time 12:56:30.263461
2018-01-28 12:56:30,263 [salt.state       ][INFO    ][13912] Executing state pkg.installed for python-openstackclient
2018-01-28 12:56:30,377 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 12:56:30,410 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'python-openstackclient'] in directory '/root'
2018-01-28 12:56:33,312 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128125632729348
2018-01-28 12:56:33,339 [salt.minion      ][INFO    ][19897] Starting a new job with PID 19897
2018-01-28 12:56:33,356 [salt.minion      ][INFO    ][19897] Returning information for job: 20180128125632729348
2018-01-28 12:56:36,820 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:56:36,883 [salt.state       ][INFO    ][13912] Made the following changes:
'python-novaclient' changed from 'absent' to '2:9.1.0-0ubuntu1~cloud0'
'python-warlock' changed from 'absent' to '1.1.0-1'
'python-neutronclient' changed from 'absent' to '1:6.5.0-0ubuntu1.1~cloud0'
'python-simplejson' changed from 'absent' to '3.8.1-1ubuntu2'
'python-osc-lib' changed from 'absent' to '1.7.0-0ubuntu1~cloud0'
'python-openstacksdk' changed from 'absent' to '0.9.17-0ubuntu1~cloud0'
'python2.7-simplejson' changed from 'absent' to '1'
'python-glanceclient' changed from 'absent' to '1:2.8.0-0ubuntu1~cloud0'
'python-cmd2' changed from 'absent' to '0.6.8-1'
'python-cliff' changed from 'absent' to '2.8.0-0ubuntu1~cloud0'
'python-openstackclient' changed from 'absent' to '3.12.0-0ubuntu2~cloud0'
'python-deprecation' changed from 'absent' to '1.0.1-0ubuntu1~cloud0'
'python-appdirs' changed from 'absent' to '1.4.0-2'
'python-os-client-config' changed from 'absent' to '1.28.0-0ubuntu1~cloud0'
'python-cinderclient' changed from 'absent' to '1:3.1.0-0ubuntu1~cloud0'
'python-requestsexceptions' changed from 'absent' to '1.1.2-0ubuntu1'
'python-unicodecsv' changed from 'absent' to '0.14.1-1'
'python2.7-cmd2' changed from 'absent' to '1'
'python-jsonpatch' changed from 'absent' to '1.19-3'
'python2.7-cinderclient' changed from 'absent' to '1'
'python-json-pointer' changed from 'absent' to '1.9-3'

2018-01-28 12:56:36,915 [salt.state       ][INFO    ][13912] Loading fresh modules for state activity
2018-01-28 12:56:36,947 [salt.state       ][INFO    ][13912] Completed state [python-openstackclient] at time 12:56:36.947227 duration_in_ms=6683.766
2018-01-28 12:56:36,959 [salt.state       ][INFO    ][13912] Running state [gettext-base] at time 12:56:36.959400
2018-01-28 12:56:36,959 [salt.state       ][INFO    ][13912] Executing state pkg.installed for gettext-base
2018-01-28 12:56:37,701 [salt.state       ][INFO    ][13912] All specified packages are already installed
2018-01-28 12:56:37,701 [salt.state       ][INFO    ][13912] Completed state [gettext-base] at time 12:56:37.701580 duration_in_ms=742.179
2018-01-28 12:56:37,701 [salt.state       ][INFO    ][13912] Running state [python-pycadf] at time 12:56:37.701876
2018-01-28 12:56:37,702 [salt.state       ][INFO    ][13912] Executing state pkg.installed for python-pycadf
2018-01-28 12:56:37,709 [salt.state       ][INFO    ][13912] All specified packages are already installed
2018-01-28 12:56:37,709 [salt.state       ][INFO    ][13912] Completed state [python-pycadf] at time 12:56:37.709673 duration_in_ms=7.797
2018-01-28 12:56:37,711 [salt.state       ][INFO    ][13912] Running state [/etc/keystone/policy.json] at time 12:56:37.711678
2018-01-28 12:56:37,711 [salt.state       ][INFO    ][13912] Executing state file.managed for /etc/keystone/policy.json
2018-01-28 12:56:37,712 [salt.loaded.int.states.file][WARNING ][13912] State for file: /etc/keystone/policy.json - Neither 'source' nor 'contents' nor 'contents_pillar' nor 'contents_grains' was defined, yet 'replace' was set to 'True'. As there is no source to replace the file with, 'replace' has been set to 'False' to avoid reading the file unnecessarily.
2018-01-28 12:56:37,713 [salt.state       ][INFO    ][13912] {'new': 'file /etc/keystone/policy.json created', 'group': 'keystone', 'user': 'keystone'}
2018-01-28 12:56:37,713 [salt.state       ][INFO    ][13912] Completed state [/etc/keystone/policy.json] at time 12:56:37.713679 duration_in_ms=2.001
2018-01-28 12:56:37,714 [salt.state       ][INFO    ][13912] Running state [/etc/keystone/keystone-paste.ini] at time 12:56:37.714233
2018-01-28 12:56:37,714 [salt.state       ][INFO    ][13912] Executing state file.managed for /etc/keystone/keystone-paste.ini
2018-01-28 12:56:37,753 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'keystone/files/pike/keystone-paste.ini.Debian'
2018-01-28 12:56:37,757 [salt.state       ][INFO    ][13912] {'group': 'keystone', 'user': 'keystone'}
2018-01-28 12:56:37,758 [salt.state       ][INFO    ][13912] Completed state [/etc/keystone/keystone-paste.ini] at time 12:56:37.758118 duration_in_ms=43.884
2018-01-28 12:56:37,758 [salt.state       ][INFO    ][13912] Running state [/etc/apache2/sites-enabled/000-default.conf] at time 12:56:37.758813
2018-01-28 12:56:37,759 [salt.state       ][INFO    ][13912] Executing state file.absent for /etc/apache2/sites-enabled/000-default.conf
2018-01-28 12:56:37,759 [salt.state       ][INFO    ][13912] {'removed': '/etc/apache2/sites-enabled/000-default.conf'}
2018-01-28 12:56:37,760 [salt.state       ][INFO    ][13912] Completed state [/etc/apache2/sites-enabled/000-default.conf] at time 12:56:37.760132 duration_in_ms=1.318
2018-01-28 12:56:37,761 [salt.state       ][INFO    ][13912] Running state [/etc/keystone/keystone.conf] at time 12:56:37.761162
2018-01-28 12:56:37,761 [salt.state       ][INFO    ][13912] Executing state file.managed for /etc/keystone/keystone.conf
2018-01-28 12:56:37,800 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'keystone/files/pike/keystone.conf.Debian'
2018-01-28 12:56:38,132 [salt.state       ][INFO    ][13912] File changed:
--- 
+++ 
@@ -1,5 +1,5 @@
+
 [DEFAULT]
-log_dir = /var/log/keystone
 
 #
 # From keystone
@@ -16,6 +16,7 @@
 # `AdminTokenAuthMiddleware` (the `admin_token_auth` filter) from your paste
 # application pipelines (for example, in `keystone-paste.ini`). (string value)
 #admin_token = <None>
+admin_token=opnfv_secret
 
 # The base public endpoint URL for Keystone that is advertised to clients
 # (NOTE: this does NOT affect how Keystone listens for connections). Defaults
@@ -99,6 +100,7 @@
 # in the P release. Use oslo.middleware.http_proxy_to_wsgi configuration
 # instead.
 #secure_proxy_ssl_header = HTTP_X_FORWARDED_PROTO
+secure_proxy_ssl_header = "HTTP_X_FORWARDED_PROTO"
 
 # If set to true, then the server will return information in HTTP responses
 # that may allow an unauthenticated or authenticated user to get more
@@ -118,6 +120,7 @@
 # recommended for auditing use cases. (string value)
 # Allowed values: basic, cadf
 #notification_format = cadf
+notification_format = basic
 
 # You can reduce the number of notifications keystone emits by explicitly
 # opting out. Keystone will not emit notifications that match the patterns
@@ -140,6 +143,14 @@
 # INFO level. (boolean value)
 # Note: This option can be changed without restarting.
 #debug = false
+debug = false
+
+# DEPRECATED: If set to false, the logging level will be set to WARNING instead
+# of the default INFO level. (boolean value)
+# This option is deprecated for removal.
+# Its value may be silently ignored in the future.
+#verbose = true
+verbose = true
 
 # The name of a logging configuration file. This file is appended to any
 # existing logging configuration files. For details about logging configuration
@@ -166,6 +177,7 @@
 # is ignored if log_config_append is set. (string value)
 # Deprecated group/name - [DEFAULT]/logdir
 #log_dir = <None>
+log_dir = /var/log/keystone
 
 # Uses logging handler designed to watch file system. When log file is moved or
 # removed this handler will open a new log file with specified path
@@ -179,12 +191,6 @@
 # is set. (boolean value)
 #use_syslog = false
 
-# Enable journald for logging. If running in a systemd environment you may wish
-# to enable journal support. Doing so will use the journal native protocol
-# which includes structured metadata in addition to log messages.This option is
-# ignored if log_config_append is set. (boolean value)
-#use_journal = false
-
 # Syslog facility to receive log lines. This option is ignored if
 # log_config_append is set. (string value)
 #syslog_log_facility = LOG_USER
@@ -213,7 +219,7 @@
 
 # List of package logging levels in logger=LEVEL pairs. This option is ignored
 # if log_config_append is set. (list value)
-#default_log_levels = amqp=WARN,amqplib=WARN,boto=WARN,qpid=WARN,sqlalchemy=WARN,suds=INFO,oslo.messaging=INFO,oslo_messaging=INFO,iso8601=WARN,requests.packages.urllib3.connectionpool=WARN,urllib3.connectionpool=WARN,websocket=WARN,requests.packages.urllib3.util.retry=WARN,urllib3.util.retry=WARN,keystonemiddleware=WARN,routes.middleware=WARN,stevedore=WARN,taskflow=WARN,keystoneauth=WARN,oslo.cache=INFO,dogpile.core.dogpile=INFO
+#default_log_levels = amqp=WARN,amqplib=WARN,boto=WARN,qpid=WARN,sqlalchemy=WARN,suds=INFO,oslo.messaging=INFO,iso8601=WARN,requests.packages.urllib3.connectionpool=WARN,urllib3.connectionpool=WARN,websocket=WARN,requests.packages.urllib3.util.retry=WARN,urllib3.util.retry=WARN,keystonemiddleware=WARN,routes.middleware=WARN,stevedore=WARN,taskflow=WARN,keystoneauth=WARN,oslo.cache=INFO,dogpile.core.dogpile=INFO
 
 # Enables or disables publication of error events. (boolean value)
 #publish_errors = false
@@ -246,6 +252,7 @@
 #
 
 # Size of RPC connection pool. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_conn_pool_size
 #rpc_conn_pool_size = 30
 
 # The pool size limit for connections expiration policy (integer value)
@@ -256,24 +263,30 @@
 
 # ZeroMQ bind address. Should be a wildcard (*), an ethernet interface, or IP.
 # The "host" option should point or resolve to this address. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_bind_address
 #rpc_zmq_bind_address = *
 
 # MatchMaker driver. (string value)
 # Allowed values: redis, sentinel, dummy
+# Deprecated group/name - [DEFAULT]/rpc_zmq_matchmaker
 #rpc_zmq_matchmaker = redis
 
 # Number of ZeroMQ contexts, defaults to 1. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_contexts
 #rpc_zmq_contexts = 1
 
 # Maximum number of ingress messages to locally buffer per topic. Default is
 # unlimited. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_topic_backlog
 #rpc_zmq_topic_backlog = <None>
 
 # Directory for holding IPC sockets. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_ipc_dir
 #rpc_zmq_ipc_dir = /var/run/openstack
 
 # Name of this node. Must be a valid hostname, FQDN, or IP address. Must match
 # "host" option, if running Nova. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_host
 #rpc_zmq_host = localhost
 
 # Number of seconds to wait before all pending messages will be sent after
@@ -286,21 +299,26 @@
 
 # The default number of seconds that poll should wait. Poll raises timeout
 # exception when timeout expired. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_poll_timeout
 #rpc_poll_timeout = 1
 
 # Expiration timeout in seconds of a name service record about existing target
 # ( < 0 means no timeout). (integer value)
+# Deprecated group/name - [DEFAULT]/zmq_target_expire
 #zmq_target_expire = 300
 
 # Update period in seconds of a name service record about existing target.
 # (integer value)
+# Deprecated group/name - [DEFAULT]/zmq_target_update
 #zmq_target_update = 180
 
 # Use PUB/SUB pattern for fanout methods. PUB/SUB always uses proxy. (boolean
 # value)
+# Deprecated group/name - [DEFAULT]/use_pub_sub
 #use_pub_sub = false
 
 # Use ROUTER remote proxy. (boolean value)
+# Deprecated group/name - [DEFAULT]/use_router_proxy
 #use_router_proxy = false
 
 # This option makes direct connections dynamic or static. It makes sense only
@@ -315,20 +333,24 @@
 # Minimal port number for random ports range. (port value)
 # Minimum value: 0
 # Maximum value: 65535
+# Deprecated group/name - [DEFAULT]/rpc_zmq_min_port
 #rpc_zmq_min_port = 49153
 
 # Maximal port number for random ports range. (integer value)
 # Minimum value: 1
 # Maximum value: 65536
+# Deprecated group/name - [DEFAULT]/rpc_zmq_max_port
 #rpc_zmq_max_port = 65536
 
 # Number of retries to find free port number before fail with ZMQBindError.
 # (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_bind_port_retries
 #rpc_zmq_bind_port_retries = 100
 
 # Default serialization mechanism for serializing/deserializing
 # outgoing/incoming messages (string value)
 # Allowed values: json, msgpack
+# Deprecated group/name - [DEFAULT]/rpc_zmq_serialization
 #rpc_zmq_serialization = json
 
 # This option configures round-robin mode in zmq socket. True means not keeping
@@ -393,17 +415,16 @@
 # value)
 #subscribe_on =
 
-# Size of executor thread pool when executor is threading or eventlet. (integer
-# value)
+# Size of executor thread pool. (integer value)
 # Deprecated group/name - [DEFAULT]/rpc_thread_pool_size
 #executor_thread_pool_size = 64
 
 # Seconds to wait for a response from a call. (integer value)
 #rpc_response_timeout = 60
-
 # A URL representing the messaging driver to use and its full configuration.
 # (string value)
-#transport_url = <None>
+#transport_url = rabbit://nova:3qVSI7a1m8AdaDQ7BpB0PJu4@192.168.0.4:5673/
+transport_url = rabbit://openstack:opnfv_secret@192.168.10.41:5672,openstack:opnfv_secret@192.168.10.42:5672,openstack:opnfv_secret@192.168.10.43:5672//openstack
 
 # DEPRECATED: The messaging driver to use, defaults to rabbit. Other drivers
 # include amqp and zmq. (string value)
@@ -411,7 +432,6 @@
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
 #rpc_backend = rabbit
-
 # The default exchange under which topics are scoped. May be overridden by an
 # exchange name specified in the transport_url option. (string value)
 #control_exchange = keystone
@@ -432,7 +452,7 @@
 # A list of role names which are prohibited from being an implied role. (list
 # value)
 #prohibited_implied_role = admin
-
+driver = sql
 
 [auth]
 
@@ -446,6 +466,8 @@
 # are being invoked to validate attributes in the request environment, it can
 # cause conflicts. (list value)
 #methods = external,password,token,oauth1,mapped
+
+methods = password,token
 
 # Entry point for the password auth plugin module in the
 # `keystone.auth.password` namespace. You do not need to set this unless you
@@ -497,14 +519,14 @@
 # expiration time defined for it. (integer value)
 #expiration_time = 600
 
-# Cache backend module. For eventlet-based or environments with hundreds of
-# threaded servers, Memcache with pooling (oslo_cache.memcache_pool) is
-# recommended. For environments with less than 100 threaded servers, Memcached
-# (dogpile.cache.memcached) or Redis (dogpile.cache.redis) is recommended. Test
-# environments with a single instance of the server can use the
-# dogpile.cache.memory backend. (string value)
-# Allowed values: oslo_cache.memcache_pool, oslo_cache.dict, dogpile.cache.memcached, dogpile.cache.redis, dogpile.cache.memory, dogpile.cache.null
+# Dogpile.cache backend module. It is recommended that Memcache or Redis
+# (dogpile.cache.redis) be used in production deployments. For eventlet-based
+# or highly threaded servers, Memcache with pooling (oslo_cache.memcache_pool)
+# is recommended. For low thread servers, dogpile.cache.memcached is
+# recommended. Test environments with a single instance of the server can use
+# the dogpile.cache.memory backend. (string value)
 #backend = dogpile.cache.null
+backend = oslo_cache.memcache_pool
 
 # Arguments supplied to the backend module. Specify this option once per
 # argument to be passed to the dogpile.cache backend. Example format:
@@ -518,6 +540,7 @@
 
 # Global toggle for caching. (boolean value)
 #enabled = true
+enabled = true
 
 # Extra debugging from the cache backend (cache keys, get/set/delete/etc
 # calls). This is only really useful if you need to see the specific cache-
@@ -528,23 +551,28 @@
 # Memcache servers in the format of "host:port". (dogpile.cache.memcache and
 # oslo_cache.memcache_pool backends only). (list value)
 #memcache_servers = localhost:11211
+memcache_servers =192.168.10.11:11211,192.168.10.12:11211,192.168.10.13:11211
 
 # Number of seconds memcached server is considered dead before it is tried
 # again. (dogpile.cache.memcache and oslo_cache.memcache_pool backends only).
 # (integer value)
 #memcache_dead_retry = 300
+memcache_dead_retry = 300
 
 # Timeout in seconds for every call to a server. (dogpile.cache.memcache and
 # oslo_cache.memcache_pool backends only). (integer value)
 #memcache_socket_timeout = 3
+memcache_socket_timeout = 1
 
 # Max total number of open connections to every memcached server.
 # (oslo_cache.memcache_pool backend only). (integer value)
 #memcache_pool_maxsize = 10
+memcache_pool_maxsize = 100
 
 # Number of seconds a connection to memcached is held unused in the pool before
 # it is closed. (oslo_cache.memcache_pool backend only). (integer value)
 #memcache_pool_unused_timeout = 60
+memcache_pool_unused_timeout = 60
 
 # Number of seconds that an operation will wait to get a memcache client
 # connection. (integer value)
@@ -560,6 +588,7 @@
 # Absolute path to the file used for the templated catalog backend. This option
 # is only used if the `[catalog] driver` is set to `templated`. (string value)
 #template_file = default_catalog.templates
+template_file = default_catalog.templates
 
 # Entry point for the catalog driver in the `keystone.catalog` namespace.
 # Keystone provides a `sql` option (which supports basic CRUD operations
@@ -567,6 +596,7 @@
 # catalog file on disk), and a `endpoint_filter.sql` option (which supports
 # arbitrary service catalogs per project). (string value)
 #driver = sql
+driver = sql
 
 # Toggle for catalog caching. This has no effect unless global caching is
 # enabled. In a typical deployment, there is no reason to disable this.
@@ -587,6 +617,42 @@
 
 
 [cors]
+
+#
+# From oslo.middleware
+#
+
+# Indicate whether this resource may be shared with the domain received in the
+# requests "origin" header. Format: "<protocol>://<host>[:<port>]", no trailing
+# slash. Example: https://horizon.example.com (list value)
+#allowed_origin = <None>
+
+
+# Indicate that the actual request can include user credentials (boolean value)
+#allow_credentials = true
+
+
+# Indicate which headers are safe to expose to the API. Defaults to HTTP Simple
+# Headers. (list value)
+#expose_headers = X-Auth-Token,X-Openstack-Request-Id,X-Subject-Token
+
+
+# Maximum cache age of CORS preflight requests. (integer value)
+#max_age = 3600
+
+
+
+# Indicate which methods can be used during the actual request. (list value)
+#allow_methods = GET,PUT,POST,DELETE,PATCH
+
+
+# Indicate which header field names may be used during the actual request.
+# (list value)
+#allow_headers = X-Auth-Token,X-Openstack-Request-Id,X-Subject-Token,X-Project-Id,X-Project-Name,X-Project-Domain-Id,X-Project-Domain-Name,X-Domain-Id,X-Domain-Name
+
+
+
+[cors.subdomain]
 
 #
 # From oslo.middleware
@@ -638,17 +704,25 @@
 # of keys should be managed separately and require different rotation policies.
 # Do not share this repository with the repository used to manage keys for
 # Fernet tokens. (string value)
-#key_repository = /etc/keystone/credential-keys/
+key_repository = /var/lib/keystone/credential-keys
 
 
 [database]
-connection = sqlite:////var/lib/keystone/keystone.db
 
 #
 # From oslo.db
 #
 
+# DEPRECATED: The file name to use with SQLite. (string value)
+# Deprecated group/name - [DEFAULT]/sqlite_db
+# This option is deprecated for removal.
+# Its value may be silently ignored in the future.
+# Reason: Should use config option connection or slave_connection to connect
+# the database.
+#sqlite_db = oslo.sqlite
+
 # If True, SQLite uses synchronous mode. (boolean value)
+# Deprecated group/name - [DEFAULT]/sqlite_synchronous
 #sqlite_synchronous = true
 
 # The back end to use for the database. (string value)
@@ -661,6 +735,7 @@
 # Deprecated group/name - [DATABASE]/sql_connection
 # Deprecated group/name - [sql]/connection
 #connection = <None>
+connection=mysql+pymysql://keystone:opnfv_secret@192.168.10.50/keystone
 
 # The SQLAlchemy connection string to use to connect to the slave database.
 # (string value)
@@ -672,15 +747,12 @@
 # (string value)
 #mysql_sql_mode = TRADITIONAL
 
-# If True, transparently enables support for handling MySQL Cluster (NDB).
-# (boolean value)
-#mysql_enable_ndb = false
-
 # Timeout before idle SQL connections are reaped. (integer value)
 # Deprecated group/name - [DEFAULT]/sql_idle_timeout
 # Deprecated group/name - [DATABASE]/sql_idle_timeout
 # Deprecated group/name - [sql]/idle_timeout
 #idle_timeout = 3600
+idle_timeout = 3600
 
 # Minimum number of SQL connections to keep open in a pool. (integer value)
 # Deprecated group/name - [DEFAULT]/sql_min_pool_size
@@ -692,6 +764,9 @@
 # Deprecated group/name - [DEFAULT]/sql_max_pool_size
 # Deprecated group/name - [DATABASE]/sql_max_pool_size
 #max_pool_size = 5
+max_pool_size=10
+max_overflow=30
+max_retries=-1
 
 # Maximum number of database connection retries during startup. Set to -1 to
 # specify an infinite retry count. (integer value)
@@ -805,7 +880,7 @@
 #
 
 # DEPRECATED: The IP address of the network interface for the public service to
-# listen on. (unknown value)
+# listen on. (string value)
 # Deprecated group/name - [DEFAULT]/bind_host
 # Deprecated group/name - [DEFAULT]/public_bind_host
 # This option is deprecated for removal since K.
@@ -814,6 +889,7 @@
 # Newton release. These options remain for backwards compatibility because they
 # are used for URL substitutions.
 #public_bind_host = 0.0.0.0
+public_bind_host=192.168.10.13
 
 # DEPRECATED: The port number for the public service to listen on. (port value)
 # Minimum value: 0
@@ -825,9 +901,10 @@
 # Newton release. These options remain for backwards compatibility because they
 # are used for URL substitutions.
 #public_port = 5000
+public_port = 5000
 
 # DEPRECATED: The IP address of the network interface for the admin service to
-# listen on. (unknown value)
+# listen on. (string value)
 # Deprecated group/name - [DEFAULT]/bind_host
 # Deprecated group/name - [DEFAULT]/admin_bind_host
 # This option is deprecated for removal since K.
@@ -836,6 +913,7 @@
 # Newton release. These options remain for backwards compatibility because they
 # are used for URL substitutions.
 #admin_bind_host = 0.0.0.0
+admin_bind_host=192.168.10.13
 
 # DEPRECATED: The port number for the admin service to listen on. (port value)
 # Minimum value: 0
@@ -847,6 +925,7 @@
 # Newton release. These options remain for backwards compatibility because they
 # are used for URL substitutions.
 #admin_port = 35357
+admin_port = 35357
 
 
 [extra_headers]
@@ -857,7 +936,6 @@
 
 # Specifies the distribution of the keystone server. (string value)
 #Distribution = Ubuntu
-
 
 [federation]
 
@@ -876,7 +954,7 @@
 #assertion_prefix =
 
 # Value to be used to obtain the entity ID of the Identity Provider from the
-# environment. For `mod_shib`, this would be `Shib-Identity-Provider`. For
+# environment. For `mod_shib`, this would be `Shib-Identity-Provider`. For For
 # `mod_auth_openidc`, this could be `HTTP_OIDC_ISS`. For `mod_auth_mellon`,
 # this could be `MELLON_IDP`. (string value)
 #remote_id_attribute = <None>
@@ -934,6 +1012,7 @@
 # other nodes will result in tokens that can not be validated by all nodes.
 # (string value)
 #key_repository = /etc/keystone/fernet-keys/
+key_repository = /var/lib/keystone/fernet-keys
 
 # This controls how many keys are held in rotation by `keystone-manage
 # fernet_rotate` before they are discarded. The default value of 3 means that
@@ -943,7 +1022,7 @@
 # the rotation. (integer value)
 # Minimum value: 1
 #max_active_keys = 3
-
+max_active_keys=3
 
 [healthcheck]
 
@@ -1020,6 +1099,7 @@
 # deployment primarily relies on `ldap` AND is not using domain-specific
 # configuration, you should typically leave this set to `sql`. (string value)
 #driver = sql
+driver = sql
 
 # Toggle for identity caching. This has no effect unless global caching is
 # enabled. There is typically no reason to disable this. (boolean value)
@@ -1038,52 +1118,6 @@
 # Maximum number of entities that will be returned in an identity collection.
 # (integer value)
 #list_limit = <None>
-
-# The password hashing algorithm to use for passwords stored within keystone.
-# (string value)
-# Allowed values: bcrypt, scrypt, pbkdf2_sha512
-#password_hash_algorithm = bcrypt
-
-# This option represents a trade off between security and performance. Higher
-# values lead to slower performance, but higher security. Changing this option
-# will only affect newly created passwords as existing password hashes already
-# have a fixed number of rounds applied, so it is safe to tune this option in a
-# running cluster.  The default for bcrypt is 12, must be between 4 and 31,
-# inclusive.  The default for scrypt is 16, must be within `range(1,32)`.  The
-# default for pbkdf_sha512 is 60000, must be within `range(1,1<<32)`  WARNING:
-# If using scrypt, increasing this value increases BOTH time AND memory
-# requirements to hash a password. (integer value)
-#password_hash_rounds = <None>
-
-# Optional block size to pass to scrypt hash function (the `r` parameter).
-# Useful for tuning scrypt to optimal performance for your CPU architecture.
-# This option is only used when the `password_hash_algorithm` option is set to
-# `scrypt`. Defaults to 8. (integer value)
-#scrypt_block_size = <None>
-
-# Optional parallelism to pass to scrypt hash function (the `p` parameter).
-# This option is only used when the `password_hash_algorithm` option is set to
-# `scrypt`. Defaults to 1. (integer value)
-#scrypt_parallelism = <None>
-
-# Number of bytes to use in scrypt and pbkfd2_sha512 hashing salt.  Default for
-# scrypt is 16 bytes. Default for pbkfd2_sha512 is 16 bytes.  Limited to a
-# maximum of 96 bytes due to the size of the column used to store password
-# hashes. (integer value)
-# Minimum value: 0
-# Maximum value: 96
-#salt_bytesize = <None>
-
-# This option tells keystone to continue to hash passwords with the
-# sha512_crypt algorithm for supporting rolling upgrades. sha512_crypt is
-# typically more insecure than bcrypt, pbkdf2, and scrypt. This option should
-# be set to `False` except in the case of performing a rolling upgrade where
-# some Keystone servers may not know how to verify non-sha512_crypt based
-# password hashes.  This option will be removed in the Queens release and is
-# only to support rolling upgrades from Ocata release to Pike release. (boolean
-# value)
-#rolling_upgrade_password_hash_compat = false
-
 
 [identity_mapping]
 
@@ -1123,6 +1157,56 @@
 #backward_compatible_ids = true
 
 
+[kvs]
+
+#
+# From keystone
+#
+
+# DEPRECATED: Extra `dogpile.cache` backend modules to register with the
+# `dogpile.cache` library. It is not necessary to set this value unless you are
+# providing a custom KVS backend beyond what `dogpile.cache` already supports.
+# (list value)
+# This option is deprecated for removal since O.
+# Its value may be silently ignored in the future.
+# Reason: This option has been deprecated in the O release and will be removed
+# in the P release. Use SQL backends instead.
+#backends =
+
+# DEPRECATED: Prefix for building the configuration dictionary for the KVS
+# region. This should not need to be changed unless there is another
+# `dogpile.cache` region with the same configuration name. (string value)
+# This option is deprecated for removal since O.
+# Its value may be silently ignored in the future.
+# Reason: This option has been deprecated in the O release and will be removed
+# in the P release. Use SQL backends instead.
+#config_prefix = keystone.kvs
+
+# DEPRECATED: Set to false to disable using a key-mangling function, which
+# ensures fixed-length keys are used in the KVS store. This is configurable for
+# debugging purposes, and it is therefore highly recommended to always leave
+# this set to true. (boolean value)
+# This option is deprecated for removal since O.
+# Its value may be silently ignored in the future.
+# Reason: This option has been deprecated in the O release and will be removed
+# in the P release. Use SQL backends instead.
+#enable_key_mangler = true
+
+# DEPRECATED: Number of seconds after acquiring a distributed lock that the
+# backend should consider the lock to be expired. This option should be tuned
+# relative to the longest amount of time that it takes to perform a successful
+# operation. If this value is set too low, then a cluster will end up
+# performing work redundantly. If this value is set too high, then a cluster
+# will not be able to efficiently recover and retry after a failed operation. A
+# non-zero value is recommended if the backend supports lock timeouts, as zero
+# prevents locks from expiring altogether. (integer value)
+# Minimum value: 0
+# This option is deprecated for removal since O.
+# Its value may be silently ignored in the future.
+# Reason: This option has been deprecated in the O release and will be removed
+# in the P release. Use SQL backends instead.
+#default_lock_timeout = 5
+
 [ldap]
 
 #
@@ -1454,6 +1538,21 @@
 # From keystone
 #
 
+# DEPRECATED: Comma-separated list of memcached servers in the format of
+# `host:port,host:port` that keystone should use for the `memcache` token
+# persistence provider and other memcache-backed KVS drivers. This
+# configuration value is NOT used for intermediary caching between keystone and
+# other backends, such as SQL and LDAP (for that, see the `[cache]` section).
+# Multiple keystone servers in the same deployment should use the same set of
+# memcached servers to ensure that data (such as UUID tokens) created by one
+# node is available to the others. (list value)
+# This option is deprecated for removal since O.
+# Its value may be silently ignored in the future.
+# Reason: This option has been deprecated in the O release and will be removed
+# in the P release. Use oslo.cache instead.
+#servers = localhost:11211
+servers =192.168.10.11:11211,192.168.10.12:11211,192.168.10.13:11211
+
 # Number of seconds memcached server is considered dead before it is tried
 # again. This is used by the key value store system. (integer value)
 #dead_retry = 300
@@ -1509,64 +1608,61 @@
 
 # Name for the AMQP container. must be globally unique. Defaults to a generated
 # UUID (string value)
+# Deprecated group/name - [amqp1]/container_name
 #container_name = <None>
 
 # Timeout for inactive connections (in seconds) (integer value)
+# Deprecated group/name - [amqp1]/idle_timeout
 #idle_timeout = 0
 
 # Debug: dump AMQP frames to stdout (boolean value)
+# Deprecated group/name - [amqp1]/trace
 #trace = false
 
-# Attempt to connect via SSL. If no other ssl-related parameters are given, it
-# will use the system's CA-bundle to verify the server's certificate. (boolean
-# value)
-#ssl = false
-
 # CA certificate PEM file used to verify the server's certificate (string
 # value)
+# Deprecated group/name - [amqp1]/ssl_ca_file
 #ssl_ca_file =
 
 # Self-identifying certificate PEM file for client authentication (string
 # value)
+# Deprecated group/name - [amqp1]/ssl_cert_file
 #ssl_cert_file =
 
 # Private key PEM file used to sign ssl_cert_file certificate (optional)
 # (string value)
+# Deprecated group/name - [amqp1]/ssl_key_file
 #ssl_key_file =
 
 # Password for decrypting ssl_key_file (if encrypted) (string value)
+# Deprecated group/name - [amqp1]/ssl_key_password
 #ssl_key_password = <None>
 
 # DEPRECATED: Accept clients using either SSL or plain TCP (boolean value)
+# Deprecated group/name - [amqp1]/allow_insecure_clients
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Not applicable - not a SSL server
 #allow_insecure_clients = false
 
 # Space separated list of acceptable SASL mechanisms (string value)
+# Deprecated group/name - [amqp1]/sasl_mechanisms
 #sasl_mechanisms =
 
 # Path to directory that contains the SASL configuration (string value)
+# Deprecated group/name - [amqp1]/sasl_config_dir
 #sasl_config_dir =
 
 # Name of configuration file (without .conf suffix) (string value)
+# Deprecated group/name - [amqp1]/sasl_config_name
 #sasl_config_name =
 
-# SASL realm to use if no realm present in username (string value)
-#sasl_default_realm =
-
-# DEPRECATED: User name for message broker authentication (string value)
-# This option is deprecated for removal.
-# Its value may be silently ignored in the future.
-# Reason: Should use configuration option transport_url to provide the
-# username.
+# User name for message broker authentication (string value)
+# Deprecated group/name - [amqp1]/username
 #username =
 
-# DEPRECATED: Password for message broker authentication (string value)
-# This option is deprecated for removal.
-# Its value may be silently ignored in the future.
-# Reason: Should use configuration option transport_url to provide the
-# password.
+# Password for message broker authentication (string value)
+# Deprecated group/name - [amqp1]/password
 #password =
 
 # Seconds to pause before attempting to re-connect. (integer value)
@@ -1621,12 +1717,15 @@
 #addressing_mode = dynamic
 
 # address prefix used when sending to a specific server (string value)
+# Deprecated group/name - [amqp1]/server_request_prefix
 #server_request_prefix = exclusive
 
 # address prefix used when broadcasting to all servers (string value)
+# Deprecated group/name - [amqp1]/broadcast_prefix
 #broadcast_prefix = broadcast
 
 # address prefix when sending to any server in group (string value)
+# Deprecated group/name - [amqp1]/group_request_prefix
 #group_request_prefix = unicast
 
 # Address prefix for all generated RPC addresses (string value)
@@ -1714,7 +1813,7 @@
 # Max fetch bytes of Kafka consumer (integer value)
 #kafka_max_fetch_bytes = 1048576
 
-# Default timeout(s) for Kafka consumers (floating point value)
+# Default timeout(s) for Kafka consumers (integer value)
 #kafka_consumer_timeout = 1.0
 
 # Pool Size for Kafka Consumers (integer value)
@@ -1748,6 +1847,7 @@
 # messaging, messagingv2, routing, log, test, noop (multi valued)
 # Deprecated group/name - [DEFAULT]/notification_driver
 #driver =
+driver=messagingv2
 
 # A URL representing the messaging driver to use for notifications. If not set,
 # we fall back to the same configuration used for RPC. (string value)
@@ -1759,11 +1859,6 @@
 # Deprecated group/name - [DEFAULT]/notification_topics
 #topics = notifications
 
-# The maximum number of attempts to re-send a notification message which failed
-# to be delivered due to a recoverable error. 0 - No retry, -1 - indefinite
-# (integer value)
-#retry = -1
-
 
 [oslo_messaging_rabbit]
 
@@ -1777,31 +1872,30 @@
 #amqp_durable_queues = false
 
 # Auto-delete queues in AMQP. (boolean value)
+# Deprecated group/name - [DEFAULT]/amqp_auto_delete
 #amqp_auto_delete = false
-
-# Enable SSL (boolean value)
-#ssl = <None>
 
 # SSL version to use (valid only if SSL enabled). Valid values are TLSv1 and
 # SSLv23. SSLv2, SSLv3, TLSv1_1, and TLSv1_2 may be available on some
 # distributions. (string value)
-# Deprecated group/name - [oslo_messaging_rabbit]/kombu_ssl_version
-#ssl_version =
+# Deprecated group/name - [DEFAULT]/kombu_ssl_version
+#kombu_ssl_version =
 
 # SSL key file (valid only if SSL enabled). (string value)
-# Deprecated group/name - [oslo_messaging_rabbit]/kombu_ssl_keyfile
-#ssl_key_file =
+# Deprecated group/name - [DEFAULT]/kombu_ssl_keyfile
+#kombu_ssl_keyfile =
 
 # SSL cert file (valid only if SSL enabled). (string value)
-# Deprecated group/name - [oslo_messaging_rabbit]/kombu_ssl_certfile
-#ssl_cert_file =
+# Deprecated group/name - [DEFAULT]/kombu_ssl_certfile
+#kombu_ssl_certfile =
 
 # SSL certification authority file (valid only if SSL enabled). (string value)
-# Deprecated group/name - [oslo_messaging_rabbit]/kombu_ssl_ca_certs
-#ssl_ca_file =
+# Deprecated group/name - [DEFAULT]/kombu_ssl_ca_certs
+#kombu_ssl_ca_certs =
 
 # How long to wait before reconnecting in response to an AMQP consumer cancel
 # notification. (floating point value)
+# Deprecated group/name - [DEFAULT]/kombu_reconnect_delay
 #kombu_reconnect_delay = 1.0
 
 # EXPERIMENTAL: Possible values are: gzip, bz2. If not set compression will not
@@ -1821,6 +1915,7 @@
 
 # DEPRECATED: The RabbitMQ broker address where a single node is used. (string
 # value)
+# Deprecated group/name - [DEFAULT]/rabbit_host
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
@@ -1830,24 +1925,32 @@
 # value)
 # Minimum value: 0
 # Maximum value: 65535
+# Deprecated group/name - [DEFAULT]/rabbit_port
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
 #rabbit_port = 5672
 
 # DEPRECATED: RabbitMQ HA cluster host:port pairs. (list value)
+# Deprecated group/name - [DEFAULT]/rabbit_hosts
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
 #rabbit_hosts = $rabbit_host:$rabbit_port
 
+# Connect over SSL for RabbitMQ. (boolean value)
+# Deprecated group/name - [DEFAULT]/rabbit_use_ssl
+#rabbit_use_ssl = false
+
 # DEPRECATED: The RabbitMQ userid. (string value)
+# Deprecated group/name - [DEFAULT]/rabbit_userid
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
 #rabbit_userid = guest
 
 # DEPRECATED: The RabbitMQ password. (string value)
+# Deprecated group/name - [DEFAULT]/rabbit_password
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
@@ -1855,9 +1958,11 @@
 
 # The RabbitMQ login method. (string value)
 # Allowed values: PLAIN, AMQPLAIN, RABBIT-CR-DEMO
+# Deprecated group/name - [DEFAULT]/rabbit_login_method
 #rabbit_login_method = AMQPLAIN
 
 # DEPRECATED: The RabbitMQ virtual host. (string value)
+# Deprecated group/name - [DEFAULT]/rabbit_virtual_host
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
@@ -1868,6 +1973,7 @@
 
 # How long to backoff for between retries when connecting to RabbitMQ. (integer
 # value)
+# Deprecated group/name - [DEFAULT]/rabbit_retry_backoff
 #rabbit_retry_backoff = 2
 
 # Maximum interval of RabbitMQ connection retries. Default is 30 seconds.
@@ -1876,6 +1982,7 @@
 
 # DEPRECATED: Maximum number of RabbitMQ connection retries. Default is 0
 # (infinite retry count). (integer value)
+# Deprecated group/name - [DEFAULT]/rabbit_max_retries
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 #rabbit_max_retries = 0
@@ -1886,6 +1993,7 @@
 # If you just want to make sure that all queues (except those with auto-
 # generated names) are mirrored across all nodes, run: "rabbitmqctl set_policy
 # HA '^(?!amq\.).*' '{"ha-mode": "all"}' " (boolean value)
+# Deprecated group/name - [DEFAULT]/rabbit_ha_queues
 #rabbit_ha_queues = false
 
 # Positive integer representing duration in seconds for queue TTL (x-expires).
@@ -1902,12 +2010,15 @@
 # heartbeat's keep-alive fails (0 disable the heartbeat). EXPERIMENTAL (integer
 # value)
 #heartbeat_timeout_threshold = 60
+heartbeat_timeout_threshold = 0
 
 # How often times during the heartbeat_timeout_threshold we check the
 # heartbeat. (integer value)
 #heartbeat_rate = 2
+heartbeat_rate = 2
 
 # Deprecated, use rpc_backend=kombu+memory or rpc_backend=fake (boolean value)
+# Deprecated group/name - [DEFAULT]/fake_rabbit
 #fake_rabbit = false
 
 # Maximum number of channels to allow (integer value)
@@ -1918,6 +2029,9 @@
 
 # How often to send heartbeats for consumer's connections (integer value)
 #heartbeat_interval = 3
+
+# Enable SSL (boolean value)
+#ssl = <None>
 
 # Arguments passed to ssl.wrap_socket (dict value)
 #ssl_options = <None>
@@ -2023,24 +2137,30 @@
 
 # ZeroMQ bind address. Should be a wildcard (*), an ethernet interface, or IP.
 # The "host" option should point or resolve to this address. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_bind_address
 #rpc_zmq_bind_address = *
 
 # MatchMaker driver. (string value)
 # Allowed values: redis, sentinel, dummy
+# Deprecated group/name - [DEFAULT]/rpc_zmq_matchmaker
 #rpc_zmq_matchmaker = redis
 
 # Number of ZeroMQ contexts, defaults to 1. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_contexts
 #rpc_zmq_contexts = 1
 
 # Maximum number of ingress messages to locally buffer per topic. Default is
 # unlimited. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_topic_backlog
 #rpc_zmq_topic_backlog = <None>
 
 # Directory for holding IPC sockets. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_ipc_dir
 #rpc_zmq_ipc_dir = /var/run/openstack
 
 # Name of this node. Must be a valid hostname, FQDN, or IP address. Must match
 # "host" option, if running Nova. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_host
 #rpc_zmq_host = localhost
 
 # Number of seconds to wait before all pending messages will be sent after
@@ -2053,21 +2173,26 @@
 
 # The default number of seconds that poll should wait. Poll raises timeout
 # exception when timeout expired. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_poll_timeout
 #rpc_poll_timeout = 1
 
 # Expiration timeout in seconds of a name service record about existing target
 # ( < 0 means no timeout). (integer value)
+# Deprecated group/name - [DEFAULT]/zmq_target_expire
 #zmq_target_expire = 300
 
 # Update period in seconds of a name service record about existing target.
 # (integer value)
+# Deprecated group/name - [DEFAULT]/zmq_target_update
 #zmq_target_update = 180
 
 # Use PUB/SUB pattern for fanout methods. PUB/SUB always uses proxy. (boolean
 # value)
+# Deprecated group/name - [DEFAULT]/use_pub_sub
 #use_pub_sub = false
 
 # Use ROUTER remote proxy. (boolean value)
+# Deprecated group/name - [DEFAULT]/use_router_proxy
 #use_router_proxy = false
 
 # This option makes direct connections dynamic or static. It makes sense only
@@ -2082,20 +2207,24 @@
 # Minimal port number for random ports range. (port value)
 # Minimum value: 0
 # Maximum value: 65535
+# Deprecated group/name - [DEFAULT]/rpc_zmq_min_port
 #rpc_zmq_min_port = 49153
 
 # Maximal port number for random ports range. (integer value)
 # Minimum value: 1
 # Maximum value: 65536
+# Deprecated group/name - [DEFAULT]/rpc_zmq_max_port
 #rpc_zmq_max_port = 65536
 
 # Number of retries to find free port number before fail with ZMQBindError.
 # (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_bind_port_retries
 #rpc_zmq_bind_port_retries = 100
 
 # Default serialization mechanism for serializing/deserializing
 # outgoing/incoming messages (string value)
 # Allowed values: json, msgpack
+# Deprecated group/name - [DEFAULT]/rpc_zmq_serialization
 #rpc_zmq_serialization = json
 
 # This option configures round-robin mode in zmq socket. True means not keeping
@@ -2170,7 +2299,7 @@
 # The maximum body size for each  request, in bytes. (integer value)
 # Deprecated group/name - [DEFAULT]/osapi_max_request_body_size
 # Deprecated group/name - [DEFAULT]/max_request_body_size
-#max_request_body_size = 114688
+max_request_body_size= 114688
 
 # DEPRECATED: The HTTP Header that will be used to determine what the original
 # request protocol scheme was, even if it was hidden by a SSL termination
@@ -2191,9 +2320,11 @@
 #
 
 # The file that defines policies. (string value)
+# Deprecated group/name - [DEFAULT]/policy_file
 #policy_file = policy.json
 
 # Default rule. Enforced when a requested rule is not found. (string value)
+# Deprecated group/name - [DEFAULT]/policy_default_rule
 #policy_default_rule = default
 
 # Directories where policy configuration files are stored. They can be relative
@@ -2201,6 +2332,7 @@
 # absolute paths. The file defined by policy_file must exist for these
 # directories to be searched.  Missing or empty directories are ignored. (multi
 # valued)
+# Deprecated group/name - [DEFAULT]/policy_dirs
 #policy_dirs = policy.d
 
 
@@ -2227,7 +2359,11 @@
 # Supplied drivers are `rules` (which does not support any CRUD operations for
 # the v3 policy API) and `sql`. Typically, there is no reason to set this
 # option unless you are providing a custom entry point. (string value)
-#driver = sql
+driver = sql
+#
+# Explicit defintion of the driver is depricated
+#
+#driver = keystone.policy.backends.sql.Policy
 
 # Maximum number of entities that will be returned in a policy collection.
 # (integer value)
@@ -2338,15 +2474,10 @@
 # From keystone
 #
 
-# DEPRECATED: Entry point for the resource driver in the `keystone.resource`
-# namespace. Only a `sql` driver is supplied by keystone. Unless you are
-# writing proprietary drivers for keystone, you do not need to set this option.
-# (string value)
-# This option is deprecated for removal since P.
-# Its value may be silently ignored in the future.
-# Reason: Non-SQL resource cannot be used with SQL Identity and has been unable
-# to be used since Ocata. SQL Resource backend is a requirement as of Pike.
-# Setting this option no longer has an effect on how Keystone operates.
+# Entry point for the resource driver in the `keystone.resource` namespace.
+# Only a `sql` driver is supplied by keystone. Unless you are writing
+# proprietary drivers for keystone, you do not need to set this option. (string
+# value)
 #driver = sql
 
 # Toggle for resource caching. This has no effect unless global caching is
@@ -2579,6 +2710,20 @@
 # `[identity] driver`. (integer value)
 # Minimum value: 1
 #password_expires_days = <None>
+
+# DEPRECATED: Comma separated list of user IDs to be ignored when checking if a
+# password is expired. Passwords for users in this list will not expire. This
+# feature will only be enabled if `[security_compliance] password_expires_days`
+# is set. (list value)
+# This option is deprecated for removal since O.
+# Its value may be silently ignored in the future.
+# Reason: Functionality added as a per-user option "ignore_password_expiry" in
+# Ocata. Each user that should ignore password expiry should have the value set
+# to "true" in the user's `options` attribute (e.g.
+# `user['options']['ignore_password_expiry'] = True`) with an "update_user"
+# call. This avoids the need to restart keystone to adjust the users that
+# ignore password expiry. This option will be removed in the Pike release.
+#password_expires_ignore_user_ids =
 
 # This controls the number of previous user password iterations to keep in
 # history, in order to enforce that newly created passwords are unique. Setting
@@ -2644,82 +2789,51 @@
 # From keystone
 #
 
-# DEPRECATED: Absolute path to the public certificate file to use for signing
-# responses to revocation lists requests. Set this together with `[signing]
-# keyfile`. For non-production environments, you may be interested in using
-# `keystone-manage pki_setup` to generate self-signed certificates. (string
-# value)
-# This option is deprecated for removal since P.
-# Its value may be silently ignored in the future.
-# Reason: `keystone-manage pki_setup` was deprecated in Mitaka and removed in
-# Pike. These options remain for backwards compatibility.
+# Absolute path to the public certificate file to use for signing responses to
+# revocation lists requests. Set this together with `[signing] keyfile`. For
+# non-production environments, you may be interested in using `keystone-manage
+# pki_setup` to generate self-signed certificates. (string value)
 #certfile = /etc/keystone/ssl/certs/signing_cert.pem
 
-# DEPRECATED: Absolute path to the private key file to use for signing
-# responses to revocation lists requests. Set this together with `[signing]
-# certfile`. (string value)
-# This option is deprecated for removal since P.
-# Its value may be silently ignored in the future.
-# Reason: `keystone-manage pki_setup` was deprecated in Mitaka and removed in
-# Pike. These options remain for backwards compatibility.
+# Absolute path to the private key file to use for signing responses to
+# revocation lists requests. Set this together with `[signing] certfile`.
+# (string value)
 #keyfile = /etc/keystone/ssl/private/signing_key.pem
 
-# DEPRECATED: Absolute path to the public certificate authority (CA) file to
-# use when creating self-signed certificates with `keystone-manage pki_setup`.
-# Set this together with `[signing] ca_key`. There is no reason to set this
-# option unless you are requesting revocation lists in a non-production
-# environment. Use a `[signing] certfile` issued from a trusted certificate
-# authority instead. (string value)
-# This option is deprecated for removal since P.
-# Its value may be silently ignored in the future.
-# Reason: `keystone-manage pki_setup` was deprecated in Mitaka and removed in
-# Pike. These options remain for backwards compatibility.
+# Absolute path to the public certificate authority (CA) file to use when
+# creating self-signed certificates with `keystone-manage pki_setup`. Set this
+# together with `[signing] ca_key`. There is no reason to set this option
+# unless you are requesting revocation lists in a non-production environment.
+# Use a `[signing] certfile` issued from a trusted certificate authority
+# instead. (string value)
 #ca_certs = /etc/keystone/ssl/certs/ca.pem
 
-# DEPRECATED: Absolute path to the private certificate authority (CA) key file
-# to use when creating self-signed certificates with `keystone-manage
-# pki_setup`. Set this together with `[signing] ca_certs`. There is no reason
-# to set this option unless you are requesting revocation lists in a non-
-# production environment. Use a `[signing] certfile` issued from a trusted
-# certificate authority instead. (string value)
-# This option is deprecated for removal since P.
-# Its value may be silently ignored in the future.
-# Reason: `keystone-manage pki_setup` was deprecated in Mitaka and removed in
-# Pike. These options remain for backwards compatibility.
+# Absolute path to the private certificate authority (CA) key file to use when
+# creating self-signed certificates with `keystone-manage pki_setup`. Set this
+# together with `[signing] ca_certs`. There is no reason to set this option
+# unless you are requesting revocation lists in a non-production environment.
+# Use a `[signing] certfile` issued from a trusted certificate authority
+# instead. (string value)
 #ca_key = /etc/keystone/ssl/private/cakey.pem
 
-# DEPRECATED: Key size (in bits) to use when generating a self-signed token
+# Key size (in bits) to use when generating a self-signed token signing
+# certificate. There is no reason to set this option unless you are requesting
+# revocation lists in a non-production environment. Use a `[signing] certfile`
+# issued from a trusted certificate authority instead. (integer value)
+# Minimum value: 1024
+#key_size = 2048
+
+# The validity period (in days) to use when generating a self-signed token
 # signing certificate. There is no reason to set this option unless you are
 # requesting revocation lists in a non-production environment. Use a `[signing]
 # certfile` issued from a trusted certificate authority instead. (integer
 # value)
-# Minimum value: 1024
-# This option is deprecated for removal since P.
-# Its value may be silently ignored in the future.
-# Reason: `keystone-manage pki_setup` was deprecated in Mitaka and removed in
-# Pike. These options remain for backwards compatibility.
-#key_size = 2048
-
-# DEPRECATED: The validity period (in days) to use when generating a self-
-# signed token signing certificate. There is no reason to set this option
-# unless you are requesting revocation lists in a non-production environment.
-# Use a `[signing] certfile` issued from a trusted certificate authority
-# instead. (integer value)
-# This option is deprecated for removal since P.
-# Its value may be silently ignored in the future.
-# Reason: `keystone-manage pki_setup` was deprecated in Mitaka and removed in
-# Pike. These options remain for backwards compatibility.
 #valid_days = 3650
 
-# DEPRECATED: The certificate subject to use when generating a self-signed
-# token signing certificate. There is no reason to set this option unless you
-# are requesting revocation lists in a non-production environment. Use a
-# `[signing] certfile` issued from a trusted certificate authority instead.
-# (string value)
-# This option is deprecated for removal since P.
-# Its value may be silently ignored in the future.
-# Reason: `keystone-manage pki_setup` was deprecated in Mitaka and removed in
-# Pike. These options remain for backwards compatibility.
+# The certificate subject to use when generating a self-signed token signing
+# certificate. There is no reason to set this option unless you are requesting
+# revocation lists in a non-production environment. Use a `[signing] certfile`
+# issued from a trusted certificate authority instead. (string value)
 #cert_subject = /C=US/ST=Unset/L=Unset/O=Unset/CN=www.example.com
 
 
@@ -2734,18 +2848,16 @@
 # enforced according to the `[token] enforce_token_bind` option. (list value)
 #bind =
 
-# DEPRECATED: This controls the token binding enforcement policy on tokens
-# presented to keystone with token binding metadata (as specified by the
-# `[token] bind` option). `disabled` completely bypasses token binding
-# validation. `permissive` and `strict` do not require tokens to have binding
-# metadata (but will validate it if present), whereas `required` will always
-# demand tokens to having binding metadata. `permissive` will allow unsupported
-# binding metadata to pass through without validation (usually to be validated
-# at another time by another component), whereas `strict` and `required` will
-# demand that the included binding metadata be supported by keystone. (string
-# value)
-# This option is deprecated for removal since P.
-# Its value may be silently ignored in the future.
+# This controls the token binding enforcement policy on tokens presented to
+# keystone with token binding metadata (as specified by the `[token] bind`
+# option). `disabled` completely bypasses token binding validation.
+# `permissive` and `strict` do not require tokens to have binding metadata (but
+# will validate it if present), whereas `required` will always demand tokens to
+# having binding metadata. `permissive` will allow unsupported binding metadata
+# to pass through without validation (usually to be validated at another time
+# by another component), whereas `strict` and `required` will demand that the
+# included binding metadata be supported by keystone. (string value)
+# Allowed values: disabled, permissive, strict, required
 #enforce_token_bind = permissive
 
 # The amount of time that a token should remain valid (in seconds). Drastically
@@ -2758,6 +2870,7 @@
 # Minimum value: 0
 # Maximum value: 9223372036854775807
 #expiration = 3600
+expiration = 3600
 
 # Entry point for the token provider in the `keystone.token.provider`
 # namespace. The token provider controls the token construction, validation,
@@ -2767,20 +2880,25 @@
 # setup. `fernet` tokens do not need to be persisted at all, but require that
 # you run `keystone-manage fernet_setup` (also see the `keystone-manage
 # fernet_rotate` command). (string value)
-#provider = fernet
-
-# DEPRECATED: Entry point for the token persistence backend driver in the
-# `keystone.token.persistence` namespace. Keystone provides the `sql` driver.
-# The `sql` option (default) depends on the options in your `[database]`
-# section. If you're using the `fernet` `[token] provider`, this backend will
-# not be utilized to persist tokens at all. (string value)
-# This option is deprecated for removal since P.
-# Its value may be silently ignored in the future.
+
+provider = fernet
+
+# Depricated since previous version
+#provider = keystone.token.providers.fernet.Provider
+
+# Entry point for the token persistence backend driver in the
+# `keystone.token.persistence` namespace. Keystone provides `kvs` and `sql`
+# drivers. The `kvs` backend depends on the configuration in the `[kvs]`
+# section. The `sql` option (default) depends on the options in your
+# `[database]` section. If you're using the `fernet` `[token] provider`, this
+# backend will not be utilized to persist tokens at all. (string value)
 #driver = sql
+driver = keystone.token.persistence.backends.memcache_pool.Token
 
 # Toggle for caching token creation and validation data. This has no effect
 # unless global caching is enabled. (boolean value)
 #caching = true
+caching = false
 
 # The number of seconds to cache token creation and validation data. This has
 # no effect unless both global and `[token] caching` are enabled. (integer
@@ -2795,8 +2913,9 @@
 # of tokens to consider revoked. Do not disable this option if you're using the
 # `kvs` `[revoke] driver`. (boolean value)
 #revoke_by_id = true
-
-# This toggles whether scoped tokens may be re-scoped to a new project or
+revoke_by_id = False
+
+# This toggles whether scoped tokens may be be re-scoped to a new project or
 # domain, thereby preventing users from exchanging a scoped token (including
 # those with a default project scope) for any other token. This forces users to
 # either authenticate for unscoped tokens (and later exchange that unscoped
@@ -2821,6 +2940,7 @@
 # Defaults to two days. (integer value)
 #allow_expired_window = 172800
 
+hash_algorithm = sha256
 
 [tokenless_auth]
 
@@ -2877,3 +2997,7 @@
 # Keystone only provides a `sql` driver, so there is no reason to change this
 # unless you are providing a custom entry point. (string value)
 #driver = sql
+[extra_headers]
+Distribution = Ubuntu
+
+

2018-01-28 12:56:38,133 [salt.state       ][INFO    ][13912] Completed state [/etc/keystone/keystone.conf] at time 12:56:38.133296 duration_in_ms=372.134
2018-01-28 12:56:38,133 [salt.state       ][INFO    ][13912] Running state [/etc/apache2/sites-enabled/keystone.conf] at time 12:56:38.133553
2018-01-28 12:56:38,133 [salt.state       ][INFO    ][13912] Executing state file.absent for /etc/apache2/sites-enabled/keystone.conf
2018-01-28 12:56:38,134 [salt.state       ][INFO    ][13912] {'removed': '/etc/apache2/sites-enabled/keystone.conf'}
2018-01-28 12:56:38,134 [salt.state       ][INFO    ][13912] Completed state [/etc/apache2/sites-enabled/keystone.conf] at time 12:56:38.134311 duration_in_ms=0.758
2018-01-28 12:56:38,134 [salt.state       ][INFO    ][13912] Running state [/etc/apache2/sites-enabled/wsgi-keystone.conf] at time 12:56:38.134894
2018-01-28 12:56:38,135 [salt.state       ][INFO    ][13912] Executing state file.absent for /etc/apache2/sites-enabled/wsgi-keystone.conf
2018-01-28 12:56:38,135 [salt.state       ][INFO    ][13912] File /etc/apache2/sites-enabled/wsgi-keystone.conf is not present
2018-01-28 12:56:38,135 [salt.state       ][INFO    ][13912] Completed state [/etc/apache2/sites-enabled/wsgi-keystone.conf] at time 12:56:38.135585 duration_in_ms=0.692
2018-01-28 12:56:38,136 [salt.state       ][INFO    ][13912] Running state [/etc/apache2/sites-available/keystone_wsgi.conf] at time 12:56:38.136104
2018-01-28 12:56:38,136 [salt.state       ][INFO    ][13912] Executing state file.managed for /etc/apache2/sites-available/keystone_wsgi.conf
2018-01-28 12:56:38,167 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'keystone/files/apache.conf'
2018-01-28 12:56:38,244 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'keystone/files/pike/wsgi-keystone.conf'
2018-01-28 12:56:38,324 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'apache/files/_name.conf'
2018-01-28 12:56:38,407 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'apache/files/_ssl.conf'
2018-01-28 12:56:38,446 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'apache/files/_locations.conf'
2018-01-28 12:56:38,479 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'apache/files/_log.conf'
2018-01-28 12:56:38,491 [salt.state       ][INFO    ][13912] File changed:
New file
2018-01-28 12:56:38,491 [salt.state       ][INFO    ][13912] Completed state [/etc/apache2/sites-available/keystone_wsgi.conf] at time 12:56:38.491829 duration_in_ms=355.724
2018-01-28 12:56:38,492 [salt.state       ][INFO    ][13912] Running state [/etc/apache2/sites-enabled/keystone_wsgi.conf] at time 12:56:38.492396
2018-01-28 12:56:38,492 [salt.state       ][INFO    ][13912] Executing state file.symlink for /etc/apache2/sites-enabled/keystone_wsgi.conf
2018-01-28 12:56:38,494 [salt.state       ][INFO    ][13912] {'new': '/etc/apache2/sites-enabled/keystone_wsgi.conf'}
2018-01-28 12:56:38,494 [salt.state       ][INFO    ][13912] Completed state [/etc/apache2/sites-enabled/keystone_wsgi.conf] at time 12:56:38.494308 duration_in_ms=1.912
2018-01-28 12:56:38,498 [salt.state       ][INFO    ][13912] Running state [apache2] at time 12:56:38.498955
2018-01-28 12:56:38,499 [salt.state       ][INFO    ][13912] Executing state service.running for apache2
2018-01-28 12:56:38,499 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['systemctl', 'status', 'apache2.service', '-n', '0'] in directory '/root'
2018-01-28 12:56:38,531 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['systemctl', 'is-active', 'apache2.service'] in directory '/root'
2018-01-28 12:56:38,550 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['systemctl', 'is-enabled', 'apache2.service'] in directory '/root'
2018-01-28 12:56:38,578 [salt.state       ][INFO    ][13912] The service apache2 is already running
2018-01-28 12:56:38,579 [salt.state       ][INFO    ][13912] Completed state [apache2] at time 12:56:38.579189 duration_in_ms=80.23
2018-01-28 12:56:38,579 [salt.state       ][INFO    ][13912] Running state [apache2] at time 12:56:38.579647
2018-01-28 12:56:38,580 [salt.state       ][INFO    ][13912] Executing state service.mod_watch for apache2
2018-01-28 12:56:38,581 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['systemctl', 'is-active', 'apache2.service'] in directory '/root'
2018-01-28 12:56:38,603 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['systemctl', 'is-enabled', 'apache2.service'] in directory '/root'
2018-01-28 12:56:38,629 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['systemd-run', '--scope', 'systemctl', 'reload', 'apache2.service'] in directory '/root'
2018-01-28 12:56:38,872 [salt.state       ][INFO    ][13912] {'apache2': True}
2018-01-28 12:56:38,872 [salt.state       ][INFO    ][13912] Completed state [apache2] at time 12:56:38.872774 duration_in_ms=293.127
2018-01-28 12:56:38,874 [salt.state       ][INFO    ][13912] Running state [/etc/apache2/conf-enabled/security.conf] at time 12:56:38.874071
2018-01-28 12:56:38,874 [salt.state       ][INFO    ][13912] Executing state file.symlink for /etc/apache2/conf-enabled/security.conf
2018-01-28 12:56:38,876 [salt.state       ][INFO    ][13912] {'new': '/etc/apache2/conf-enabled/security.conf'}
2018-01-28 12:56:38,876 [salt.state       ][INFO    ][13912] Completed state [/etc/apache2/conf-enabled/security.conf] at time 12:56:38.876849 duration_in_ms=2.778
2018-01-28 12:56:38,877 [salt.state       ][INFO    ][13912] Running state [/etc/apache2/sites-enabled/keystone_wsgi] at time 12:56:38.877167
2018-01-28 12:56:38,877 [salt.state       ][INFO    ][13912] Executing state file.absent for /etc/apache2/sites-enabled/keystone_wsgi
2018-01-28 12:56:38,877 [salt.state       ][INFO    ][13912] File /etc/apache2/sites-enabled/keystone_wsgi is not present
2018-01-28 12:56:38,878 [salt.state       ][INFO    ][13912] Completed state [/etc/apache2/sites-enabled/keystone_wsgi] at time 12:56:38.878031 duration_in_ms=0.863
2018-01-28 12:56:38,878 [salt.state       ][INFO    ][13912] Running state [keystone] at time 12:56:38.878736
2018-01-28 12:56:38,879 [salt.state       ][INFO    ][13912] Executing state service.dead for keystone
2018-01-28 12:56:38,879 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['systemctl', 'status', 'keystone.service', '-n', '0'] in directory '/root'
2018-01-28 12:56:38,903 [salt.state       ][INFO    ][13912] The named service keystone is not available
2018-01-28 12:56:38,903 [salt.state       ][INFO    ][13912] Completed state [keystone] at time 12:56:38.903512 duration_in_ms=24.772
2018-01-28 12:56:38,903 [salt.state       ][INFO    ][13912] Running state [keystone] at time 12:56:38.903830
2018-01-28 12:56:38,904 [salt.state       ][INFO    ][13912] Executing state service.mod_watch for keystone
2018-01-28 12:56:38,905 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command ['systemctl', 'is-active', 'keystone.service'] in directory '/root'
2018-01-28 12:56:38,929 [salt.state       ][INFO    ][13912] Service is already stopped
2018-01-28 12:56:38,930 [salt.state       ][INFO    ][13912] Completed state [keystone] at time 12:56:38.930342 duration_in_ms=26.512
2018-01-28 12:56:38,931 [salt.state       ][INFO    ][13912] Running state [/root/keystonerc] at time 12:56:38.931477
2018-01-28 12:56:38,931 [salt.state       ][INFO    ][13912] Executing state file.managed for /root/keystonerc
2018-01-28 12:56:38,967 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'keystone/files/keystonerc'
2018-01-28 12:56:39,032 [salt.state       ][INFO    ][13912] File changed:
New file
2018-01-28 12:56:39,033 [salt.state       ][INFO    ][13912] Completed state [/root/keystonerc] at time 12:56:39.033113 duration_in_ms=101.635
2018-01-28 12:56:39,033 [salt.state       ][INFO    ][13912] Running state [/root/keystonercv3] at time 12:56:39.033734
2018-01-28 12:56:39,034 [salt.state       ][INFO    ][13912] Executing state file.managed for /root/keystonercv3
2018-01-28 12:56:39,056 [salt.fileclient  ][INFO    ][13912] Fetching file from saltenv 'base', ** done ** 'keystone/files/keystonercv3'
2018-01-28 12:56:39,101 [salt.state       ][INFO    ][13912] File changed:
New file
2018-01-28 12:56:39,101 [salt.state       ][INFO    ][13912] Completed state [/root/keystonercv3] at time 12:56:39.101222 duration_in_ms=67.488
2018-01-28 12:56:39,102 [salt.state       ][INFO    ][13912] Running state [keystone-manage db_sync && sleep 1] at time 12:56:39.102533
2018-01-28 12:56:39,102 [salt.state       ][INFO    ][13912] Executing state cmd.run for keystone-manage db_sync && sleep 1
2018-01-28 12:56:39,103 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command 'keystone-manage db_sync && sleep 1' in directory '/root'
2018-01-28 12:56:41,693 [salt.state       ][INFO    ][13912] {'pid': 20113, 'retcode': 0, 'stderr': '', 'stdout': ''}
2018-01-28 12:56:41,694 [salt.state       ][INFO    ][13912] Completed state [keystone-manage db_sync && sleep 1] at time 12:56:41.694667 duration_in_ms=2592.133
2018-01-28 12:56:41,695 [salt.state       ][INFO    ][13912] Running state [/var/lib/keystone/fernet-keys] at time 12:56:41.695824
2018-01-28 12:56:41,696 [salt.state       ][INFO    ][13912] Executing state file.directory for /var/lib/keystone/fernet-keys
2018-01-28 12:56:41,698 [salt.state       ][INFO    ][13912] Directory /var/lib/keystone/fernet-keys is in the correct state
2018-01-28 12:56:41,698 [salt.state       ][INFO    ][13912] Completed state [/var/lib/keystone/fernet-keys] at time 12:56:41.698855 duration_in_ms=3.031
2018-01-28 12:56:41,700 [salt.state       ][INFO    ][13912] Running state [keystone-manage fernet_setup --keystone-user keystone --keystone-group keystone] at time 12:56:41.700053
2018-01-28 12:56:41,700 [salt.state       ][INFO    ][13912] Executing state cmd.run for keystone-manage fernet_setup --keystone-user keystone --keystone-group keystone
2018-01-28 12:56:41,701 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command 'keystone-manage fernet_setup --keystone-user keystone --keystone-group keystone' in directory '/root'
2018-01-28 12:56:43,047 [salt.state       ][INFO    ][13912] {'pid': 20314, 'retcode': 0, 'stderr': '', 'stdout': ''}
2018-01-28 12:56:43,048 [salt.state       ][INFO    ][13912] Completed state [keystone-manage fernet_setup --keystone-user keystone --keystone-group keystone] at time 12:56:43.048756 duration_in_ms=1348.702
2018-01-28 12:56:43,049 [salt.state       ][INFO    ][13912] Running state [/var/lib/keystone/credential-keys] at time 12:56:43.049904
2018-01-28 12:56:43,050 [salt.state       ][INFO    ][13912] Executing state file.directory for /var/lib/keystone/credential-keys
2018-01-28 12:56:43,052 [salt.state       ][INFO    ][13912] Directory /var/lib/keystone/credential-keys is in the correct state
2018-01-28 12:56:43,052 [salt.state       ][INFO    ][13912] Completed state [/var/lib/keystone/credential-keys] at time 12:56:43.052878 duration_in_ms=2.974
2018-01-28 12:56:43,054 [salt.state       ][INFO    ][13912] Running state [keystone-manage credential_setup --keystone-user keystone --keystone-group keystone] at time 12:56:43.054101
2018-01-28 12:56:43,054 [salt.state       ][INFO    ][13912] Executing state cmd.run for keystone-manage credential_setup --keystone-user keystone --keystone-group keystone
2018-01-28 12:56:43,055 [salt.loaded.int.module.cmdmod][INFO    ][13912] Executing command 'keystone-manage credential_setup --keystone-user keystone --keystone-group keystone' in directory '/root'
2018-01-28 12:56:43,511 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128125642926508
2018-01-28 12:56:43,543 [salt.minion      ][INFO    ][20336] Starting a new job with PID 20336
2018-01-28 12:56:43,572 [salt.minion      ][INFO    ][20336] Returning information for job: 20180128125642926508
2018-01-28 12:56:44,400 [salt.state       ][INFO    ][13912] {'pid': 20331, 'retcode': 0, 'stderr': '', 'stdout': ''}
2018-01-28 12:56:44,401 [salt.state       ][INFO    ][13912] Completed state [keystone-manage credential_setup --keystone-user keystone --keystone-group keystone] at time 12:56:44.401314 duration_in_ms=1347.214
2018-01-28 12:56:44,404 [salt.state       ][INFO    ][13912] Running state [service] at time 12:56:44.404924
2018-01-28 12:56:44,405 [salt.state       ][INFO    ][13912] Executing state keystone.tenant_present for service
2018-01-28 12:56:46,579 [py.warnings      ][WARNING ][13912] /usr/lib/python2.7/dist-packages/keystoneauth1/adapter.py:182: UserWarning: Using keystoneclient sessions has been deprecated. Please update your software to use keystoneauth1.
  warnings.warn('Using keystoneclient sessions has been deprecated. '

2018-01-28 12:56:46,734 [salt.state       ][INFO    ][13912] Tenant / project "service" already exists
2018-01-28 12:56:46,735 [salt.state       ][INFO    ][13912] Completed state [service] at time 12:56:46.735131 duration_in_ms=2330.207
2018-01-28 12:56:46,735 [salt.state       ][INFO    ][13912] Running state [admin] at time 12:56:46.735957
2018-01-28 12:56:46,736 [salt.state       ][INFO    ][13912] Executing state keystone.tenant_present for admin
2018-01-28 12:56:46,890 [salt.state       ][INFO    ][13912] Tenant / project "admin" already exists
2018-01-28 12:56:46,891 [salt.state       ][INFO    ][13912] Completed state [admin] at time 12:56:46.891175 duration_in_ms=155.218
2018-01-28 12:56:46,891 [salt.state       ][INFO    ][13912] Running state [admin] at time 12:56:46.891709
2018-01-28 12:56:46,891 [salt.state       ][INFO    ][13912] Executing state keystone.role_present for admin
2018-01-28 12:56:46,933 [salt.state       ][INFO    ][13912] Role "admin" already exists
2018-01-28 12:56:46,933 [salt.state       ][INFO    ][13912] Completed state [admin] at time 12:56:46.933694 duration_in_ms=41.985
2018-01-28 12:56:46,934 [salt.state       ][INFO    ][13912] Running state [Member] at time 12:56:46.934233
2018-01-28 12:56:46,934 [salt.state       ][INFO    ][13912] Executing state keystone.role_present for Member
2018-01-28 12:56:47,064 [salt.state       ][INFO    ][13912] Role "Member" already exists
2018-01-28 12:56:47,064 [salt.state       ][INFO    ][13912] Completed state [Member] at time 12:56:47.064718 duration_in_ms=130.498
2018-01-28 12:56:47,065 [salt.state       ][INFO    ][13912] Running state [admin] at time 12:56:47.065889
2018-01-28 12:56:47,066 [salt.state       ][INFO    ][13912] Executing state keystone.user_present for admin
2018-01-28 12:56:48,348 [salt.state       ][INFO    ][13912] {'roles': ['"_member_" role removed for user "admin" under "admin" tenant']}
2018-01-28 12:56:48,348 [salt.state       ][INFO    ][13912] Completed state [admin] at time 12:56:48.348745 duration_in_ms=1282.855
2018-01-28 12:56:48,353 [salt.minion      ][INFO    ][13912] Returning information for job: 20180128125531883918
2018-01-28 12:56:49,201 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command service.restart with jid 20180128125648622621
2018-01-28 12:56:49,228 [salt.minion      ][INFO    ][20357] Starting a new job with PID 20357
2018-01-28 12:56:50,005 [salt.loader.192.168.11.2.int.module.cmdmod][INFO    ][20357] Executing command ['systemctl', 'status', 'apache2.service', '-n', '0'] in directory '/root'
2018-01-28 12:56:50,032 [salt.loader.192.168.11.2.int.module.cmdmod][INFO    ][20357] Executing command ['systemctl', 'is-enabled', 'apache2.service'] in directory '/root'
2018-01-28 12:56:50,074 [salt.loader.192.168.11.2.int.module.cmdmod][INFO    ][20357] Executing command ['systemd-run', '--scope', 'systemctl', 'restart', 'apache2.service'] in directory '/root'
2018-01-28 12:56:52,404 [salt.minion      ][INFO    ][20357] Returning information for job: 20180128125648622621
2018-01-28 12:56:53,217 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command test.ping with jid 20180128125652638889
2018-01-28 12:56:53,245 [salt.minion      ][INFO    ][20598] Starting a new job with PID 20598
2018-01-28 12:56:53,313 [salt.minion      ][INFO    ][20598] Returning information for job: 20180128125652638889
2018-01-28 12:57:18,584 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command state.sls with jid 20180128125718007315
2018-01-28 12:57:18,611 [salt.minion      ][INFO    ][20643] Starting a new job with PID 20643
2018-01-28 12:57:21,278 [salt.state       ][INFO    ][20643] Loading fresh modules for state activity
2018-01-28 12:57:23,561 [salt.state       ][INFO    ][20643] Running state [apache2] at time 12:57:23.561908
2018-01-28 12:57:23,563 [salt.state       ][INFO    ][20643] Executing state pkg.installed for apache2
2018-01-28 12:57:23,564 [salt.loaded.int.module.cmdmod][INFO    ][20643] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:57:23,937 [salt.state       ][INFO    ][20643] All specified packages are already installed
2018-01-28 12:57:23,938 [salt.state       ][INFO    ][20643] Completed state [apache2] at time 12:57:23.938590 duration_in_ms=376.682
2018-01-28 12:57:23,939 [salt.state       ][INFO    ][20643] Running state [a2enmod ssl] at time 12:57:23.939758
2018-01-28 12:57:23,940 [salt.state       ][INFO    ][20643] Executing state cmd.run for a2enmod ssl
2018-01-28 12:57:23,941 [salt.state       ][INFO    ][20643] /etc/apache2/mods-enabled/ssl.load exists
2018-01-28 12:57:23,941 [salt.state       ][INFO    ][20643] Completed state [a2enmod ssl] at time 12:57:23.941467 duration_in_ms=1.708
2018-01-28 12:57:23,942 [salt.state       ][INFO    ][20643] Running state [a2enmod rewrite] at time 12:57:23.942228
2018-01-28 12:57:23,943 [salt.state       ][INFO    ][20643] Executing state cmd.run for a2enmod rewrite
2018-01-28 12:57:23,943 [salt.state       ][INFO    ][20643] /etc/apache2/mods-enabled/rewrite.load exists
2018-01-28 12:57:23,944 [salt.state       ][INFO    ][20643] Completed state [a2enmod rewrite] at time 12:57:23.944045 duration_in_ms=1.817
2018-01-28 12:57:23,944 [salt.state       ][INFO    ][20643] Running state [libapache2-mod-wsgi] at time 12:57:23.944814
2018-01-28 12:57:23,945 [salt.state       ][INFO    ][20643] Executing state pkg.installed for libapache2-mod-wsgi
2018-01-28 12:57:23,952 [salt.state       ][INFO    ][20643] All specified packages are already installed
2018-01-28 12:57:23,952 [salt.state       ][INFO    ][20643] Completed state [libapache2-mod-wsgi] at time 12:57:23.952861 duration_in_ms=8.047
2018-01-28 12:57:23,953 [salt.state       ][INFO    ][20643] Running state [a2enmod wsgi] at time 12:57:23.953592
2018-01-28 12:57:23,954 [salt.state       ][INFO    ][20643] Executing state cmd.run for a2enmod wsgi
2018-01-28 12:57:23,954 [salt.state       ][INFO    ][20643] /etc/apache2/mods-enabled/wsgi.load exists
2018-01-28 12:57:23,955 [salt.state       ][INFO    ][20643] Completed state [a2enmod wsgi] at time 12:57:23.955023 duration_in_ms=1.431
2018-01-28 12:57:23,958 [salt.state       ][INFO    ][20643] Running state [/etc/apache2/mods-enabled/mpm_prefork.load] at time 12:57:23.958910
2018-01-28 12:57:23,959 [salt.state       ][INFO    ][20643] Executing state file.absent for /etc/apache2/mods-enabled/mpm_prefork.load
2018-01-28 12:57:23,960 [salt.state       ][INFO    ][20643] File /etc/apache2/mods-enabled/mpm_prefork.load is not present
2018-01-28 12:57:23,960 [salt.state       ][INFO    ][20643] Completed state [/etc/apache2/mods-enabled/mpm_prefork.load] at time 12:57:23.960432 duration_in_ms=1.522
2018-01-28 12:57:23,960 [salt.state       ][INFO    ][20643] Running state [/etc/apache2/mods-enabled/mpm_prefork.conf] at time 12:57:23.960933
2018-01-28 12:57:23,961 [salt.state       ][INFO    ][20643] Executing state file.absent for /etc/apache2/mods-enabled/mpm_prefork.conf
2018-01-28 12:57:23,961 [salt.state       ][INFO    ][20643] File /etc/apache2/mods-enabled/mpm_prefork.conf is not present
2018-01-28 12:57:23,962 [salt.state       ][INFO    ][20643] Completed state [/etc/apache2/mods-enabled/mpm_prefork.conf] at time 12:57:23.962310 duration_in_ms=1.377
2018-01-28 12:57:23,962 [salt.state       ][INFO    ][20643] Running state [/etc/apache2/mods-enabled/mpm_worker.load] at time 12:57:23.962799
2018-01-28 12:57:23,963 [salt.state       ][INFO    ][20643] Executing state file.absent for /etc/apache2/mods-enabled/mpm_worker.load
2018-01-28 12:57:23,963 [salt.state       ][INFO    ][20643] File /etc/apache2/mods-enabled/mpm_worker.load is not present
2018-01-28 12:57:23,964 [salt.state       ][INFO    ][20643] Completed state [/etc/apache2/mods-enabled/mpm_worker.load] at time 12:57:23.964162 duration_in_ms=1.363
2018-01-28 12:57:23,964 [salt.state       ][INFO    ][20643] Running state [/etc/apache2/mods-enabled/mpm_worker.conf] at time 12:57:23.964629
2018-01-28 12:57:23,965 [salt.state       ][INFO    ][20643] Executing state file.absent for /etc/apache2/mods-enabled/mpm_worker.conf
2018-01-28 12:57:23,965 [salt.state       ][INFO    ][20643] File /etc/apache2/mods-enabled/mpm_worker.conf is not present
2018-01-28 12:57:23,966 [salt.state       ][INFO    ][20643] Completed state [/etc/apache2/mods-enabled/mpm_worker.conf] at time 12:57:23.965994 duration_in_ms=1.365
2018-01-28 12:57:23,968 [salt.state       ][INFO    ][20643] Running state [/etc/apache2/mods-available/mpm_event.conf] at time 12:57:23.968718
2018-01-28 12:57:23,969 [salt.state       ][INFO    ][20643] Executing state file.managed for /etc/apache2/mods-available/mpm_event.conf
2018-01-28 12:57:24,191 [salt.state       ][INFO    ][20643] File /etc/apache2/mods-available/mpm_event.conf is in the correct state
2018-01-28 12:57:24,192 [salt.state       ][INFO    ][20643] Completed state [/etc/apache2/mods-available/mpm_event.conf] at time 12:57:24.192157 duration_in_ms=223.44
2018-01-28 12:57:24,193 [salt.state       ][INFO    ][20643] Running state [a2enmod mpm_event] at time 12:57:24.193503
2018-01-28 12:57:24,194 [salt.state       ][INFO    ][20643] Executing state cmd.run for a2enmod mpm_event
2018-01-28 12:57:24,194 [salt.state       ][INFO    ][20643] /etc/apache2/mods-enabled/mpm_event.load exists
2018-01-28 12:57:24,195 [salt.state       ][INFO    ][20643] Completed state [a2enmod mpm_event] at time 12:57:24.195010 duration_in_ms=1.507
2018-01-28 12:57:24,195 [salt.state       ][INFO    ][20643] Running state [/etc/apache2/ports.conf] at time 12:57:24.195775
2018-01-28 12:57:24,196 [salt.state       ][INFO    ][20643] Executing state file.managed for /etc/apache2/ports.conf
2018-01-28 12:57:24,262 [salt.state       ][INFO    ][20643] File /etc/apache2/ports.conf is in the correct state
2018-01-28 12:57:24,262 [salt.state       ][INFO    ][20643] Completed state [/etc/apache2/ports.conf] at time 12:57:24.262533 duration_in_ms=66.758
2018-01-28 12:57:24,263 [salt.state       ][INFO    ][20643] Running state [/etc/apache2/conf-available/security.conf] at time 12:57:24.263301
2018-01-28 12:57:24,263 [salt.state       ][INFO    ][20643] Executing state file.managed for /etc/apache2/conf-available/security.conf
2018-01-28 12:57:24,339 [salt.state       ][INFO    ][20643] File /etc/apache2/conf-available/security.conf is in the correct state
2018-01-28 12:57:24,340 [salt.state       ][INFO    ][20643] Completed state [/etc/apache2/conf-available/security.conf] at time 12:57:24.340049 duration_in_ms=76.748
2018-01-28 12:57:24,352 [salt.state       ][INFO    ][20643] Running state [keystone] at time 12:57:24.352191
2018-01-28 12:57:24,352 [salt.state       ][INFO    ][20643] Executing state pkg.installed for keystone
2018-01-28 12:57:24,359 [salt.state       ][INFO    ][20643] All specified packages are already installed
2018-01-28 12:57:24,360 [salt.state       ][INFO    ][20643] Completed state [keystone] at time 12:57:24.360201 duration_in_ms=8.011
2018-01-28 12:57:24,360 [salt.state       ][INFO    ][20643] Running state [python-keystone] at time 12:57:24.360689
2018-01-28 12:57:24,361 [salt.state       ][INFO    ][20643] Executing state pkg.installed for python-keystone
2018-01-28 12:57:24,367 [salt.state       ][INFO    ][20643] All specified packages are already installed
2018-01-28 12:57:24,368 [salt.state       ][INFO    ][20643] Completed state [python-keystone] at time 12:57:24.368391 duration_in_ms=7.702
2018-01-28 12:57:24,368 [salt.state       ][INFO    ][20643] Running state [python-keystoneclient] at time 12:57:24.368904
2018-01-28 12:57:24,369 [salt.state       ][INFO    ][20643] Executing state pkg.installed for python-keystoneclient
2018-01-28 12:57:24,375 [salt.state       ][INFO    ][20643] All specified packages are already installed
2018-01-28 12:57:24,376 [salt.state       ][INFO    ][20643] Completed state [python-keystoneclient] at time 12:57:24.376362 duration_in_ms=7.458
2018-01-28 12:57:24,376 [salt.state       ][INFO    ][20643] Running state [python-psycopg2] at time 12:57:24.376856
2018-01-28 12:57:24,377 [salt.state       ][INFO    ][20643] Executing state pkg.installed for python-psycopg2
2018-01-28 12:57:24,384 [salt.state       ][INFO    ][20643] All specified packages are already installed
2018-01-28 12:57:24,384 [salt.state       ][INFO    ][20643] Completed state [python-psycopg2] at time 12:57:24.384525 duration_in_ms=7.669
2018-01-28 12:57:24,385 [salt.state       ][INFO    ][20643] Running state [python-mysqldb] at time 12:57:24.385030
2018-01-28 12:57:24,385 [salt.state       ][INFO    ][20643] Executing state pkg.installed for python-mysqldb
2018-01-28 12:57:24,392 [salt.state       ][INFO    ][20643] All specified packages are already installed
2018-01-28 12:57:24,392 [salt.state       ][INFO    ][20643] Completed state [python-mysqldb] at time 12:57:24.392639 duration_in_ms=7.609
2018-01-28 12:57:24,393 [salt.state       ][INFO    ][20643] Running state [mysql-client] at time 12:57:24.393105
2018-01-28 12:57:24,393 [salt.state       ][INFO    ][20643] Executing state pkg.installed for mysql-client
2018-01-28 12:57:24,400 [salt.state       ][INFO    ][20643] All specified packages are already installed
2018-01-28 12:57:24,400 [salt.state       ][INFO    ][20643] Completed state [mysql-client] at time 12:57:24.400593 duration_in_ms=7.488
2018-01-28 12:57:24,401 [salt.state       ][INFO    ][20643] Running state [python-six] at time 12:57:24.401086
2018-01-28 12:57:24,401 [salt.state       ][INFO    ][20643] Executing state pkg.installed for python-six
2018-01-28 12:57:24,408 [salt.state       ][INFO    ][20643] All specified packages are already installed
2018-01-28 12:57:24,408 [salt.state       ][INFO    ][20643] Completed state [python-six] at time 12:57:24.408825 duration_in_ms=7.739
2018-01-28 12:57:24,409 [salt.state       ][INFO    ][20643] Running state [python-memcache] at time 12:57:24.409292
2018-01-28 12:57:24,409 [salt.state       ][INFO    ][20643] Executing state pkg.installed for python-memcache
2018-01-28 12:57:24,416 [salt.state       ][INFO    ][20643] All specified packages are already installed
2018-01-28 12:57:24,416 [salt.state       ][INFO    ][20643] Completed state [python-memcache] at time 12:57:24.416758 duration_in_ms=7.466
2018-01-28 12:57:24,417 [salt.state       ][INFO    ][20643] Running state [python-openstackclient] at time 12:57:24.417218
2018-01-28 12:57:24,417 [salt.state       ][INFO    ][20643] Executing state pkg.installed for python-openstackclient
2018-01-28 12:57:24,424 [salt.state       ][INFO    ][20643] All specified packages are already installed
2018-01-28 12:57:24,424 [salt.state       ][INFO    ][20643] Completed state [python-openstackclient] at time 12:57:24.424741 duration_in_ms=7.523
2018-01-28 12:57:24,425 [salt.state       ][INFO    ][20643] Running state [gettext-base] at time 12:57:24.425211
2018-01-28 12:57:24,425 [salt.state       ][INFO    ][20643] Executing state pkg.installed for gettext-base
2018-01-28 12:57:24,432 [salt.state       ][INFO    ][20643] All specified packages are already installed
2018-01-28 12:57:24,432 [salt.state       ][INFO    ][20643] Completed state [gettext-base] at time 12:57:24.432953 duration_in_ms=7.742
2018-01-28 12:57:24,433 [salt.state       ][INFO    ][20643] Running state [python-pycadf] at time 12:57:24.433389
2018-01-28 12:57:24,433 [salt.state       ][INFO    ][20643] Executing state pkg.installed for python-pycadf
2018-01-28 12:57:24,440 [salt.state       ][INFO    ][20643] All specified packages are already installed
2018-01-28 12:57:24,441 [salt.state       ][INFO    ][20643] Completed state [python-pycadf] at time 12:57:24.441177 duration_in_ms=7.788
2018-01-28 12:57:24,441 [salt.state       ][INFO    ][20643] Running state [/etc/keystone/policy.json] at time 12:57:24.441914
2018-01-28 12:57:24,442 [salt.state       ][INFO    ][20643] Executing state file.managed for /etc/keystone/policy.json
2018-01-28 12:57:24,442 [salt.loaded.int.states.file][WARNING ][20643] State for file: /etc/keystone/policy.json - Neither 'source' nor 'contents' nor 'contents_pillar' nor 'contents_grains' was defined, yet 'replace' was set to 'True'. As there is no source to replace the file with, 'replace' has been set to 'False' to avoid reading the file unnecessarily.
2018-01-28 12:57:24,443 [salt.state       ][INFO    ][20643] File /etc/keystone/policy.json exists with proper permissions. No changes made.
2018-01-28 12:57:24,444 [salt.state       ][INFO    ][20643] Completed state [/etc/keystone/policy.json] at time 12:57:24.444248 duration_in_ms=2.334
2018-01-28 12:57:24,445 [salt.state       ][INFO    ][20643] Running state [/etc/keystone/keystone-paste.ini] at time 12:57:24.445009
2018-01-28 12:57:24,445 [salt.state       ][INFO    ][20643] Executing state file.managed for /etc/keystone/keystone-paste.ini
2018-01-28 12:57:24,468 [salt.state       ][INFO    ][20643] File /etc/keystone/keystone-paste.ini is in the correct state
2018-01-28 12:57:24,468 [salt.state       ][INFO    ][20643] Completed state [/etc/keystone/keystone-paste.ini] at time 12:57:24.468522 duration_in_ms=23.513
2018-01-28 12:57:24,469 [salt.state       ][INFO    ][20643] Running state [/etc/apache2/sites-enabled/000-default.conf] at time 12:57:24.469109
2018-01-28 12:57:24,469 [salt.state       ][INFO    ][20643] Executing state file.absent for /etc/apache2/sites-enabled/000-default.conf
2018-01-28 12:57:24,470 [salt.state       ][INFO    ][20643] File /etc/apache2/sites-enabled/000-default.conf is not present
2018-01-28 12:57:24,470 [salt.state       ][INFO    ][20643] Completed state [/etc/apache2/sites-enabled/000-default.conf] at time 12:57:24.470755 duration_in_ms=1.646
2018-01-28 12:57:24,471 [salt.state       ][INFO    ][20643] Running state [/etc/keystone/keystone.conf] at time 12:57:24.471666
2018-01-28 12:57:24,472 [salt.state       ][INFO    ][20643] Executing state file.managed for /etc/keystone/keystone.conf
2018-01-28 12:57:24,641 [salt.state       ][INFO    ][20643] File /etc/keystone/keystone.conf is in the correct state
2018-01-28 12:57:24,641 [salt.state       ][INFO    ][20643] Completed state [/etc/keystone/keystone.conf] at time 12:57:24.641570 duration_in_ms=169.904
2018-01-28 12:57:24,642 [salt.state       ][INFO    ][20643] Running state [/etc/apache2/sites-enabled/keystone.conf] at time 12:57:24.642013
2018-01-28 12:57:24,642 [salt.state       ][INFO    ][20643] Executing state file.absent for /etc/apache2/sites-enabled/keystone.conf
2018-01-28 12:57:24,643 [salt.state       ][INFO    ][20643] File /etc/apache2/sites-enabled/keystone.conf is not present
2018-01-28 12:57:24,643 [salt.state       ][INFO    ][20643] Completed state [/etc/apache2/sites-enabled/keystone.conf] at time 12:57:24.643382 duration_in_ms=1.369
2018-01-28 12:57:24,643 [salt.state       ][INFO    ][20643] Running state [/etc/apache2/sites-enabled/wsgi-keystone.conf] at time 12:57:24.643803
2018-01-28 12:57:24,644 [salt.state       ][INFO    ][20643] Executing state file.absent for /etc/apache2/sites-enabled/wsgi-keystone.conf
2018-01-28 12:57:24,644 [salt.state       ][INFO    ][20643] File /etc/apache2/sites-enabled/wsgi-keystone.conf is not present
2018-01-28 12:57:24,645 [salt.state       ][INFO    ][20643] Completed state [/etc/apache2/sites-enabled/wsgi-keystone.conf] at time 12:57:24.645119 duration_in_ms=1.316
2018-01-28 12:57:24,645 [salt.state       ][INFO    ][20643] Running state [/etc/apache2/sites-available/keystone_wsgi.conf] at time 12:57:24.645835
2018-01-28 12:57:24,646 [salt.state       ][INFO    ][20643] Executing state file.managed for /etc/apache2/sites-available/keystone_wsgi.conf
2018-01-28 12:57:24,915 [salt.state       ][INFO    ][20643] File /etc/apache2/sites-available/keystone_wsgi.conf is in the correct state
2018-01-28 12:57:24,915 [salt.state       ][INFO    ][20643] Completed state [/etc/apache2/sites-available/keystone_wsgi.conf] at time 12:57:24.915272 duration_in_ms=269.437
2018-01-28 12:57:24,915 [salt.state       ][INFO    ][20643] Running state [/etc/apache2/sites-enabled/keystone_wsgi.conf] at time 12:57:24.915806
2018-01-28 12:57:24,916 [salt.state       ][INFO    ][20643] Executing state file.symlink for /etc/apache2/sites-enabled/keystone_wsgi.conf
2018-01-28 12:57:24,917 [salt.state       ][INFO    ][20643] Symlink /etc/apache2/sites-enabled/keystone_wsgi.conf is present and owned by root:root
2018-01-28 12:57:24,918 [salt.state       ][INFO    ][20643] Completed state [/etc/apache2/sites-enabled/keystone_wsgi.conf] at time 12:57:24.918002 duration_in_ms=2.195
2018-01-28 12:57:24,921 [salt.state       ][INFO    ][20643] Running state [apache2] at time 12:57:24.921813
2018-01-28 12:57:24,922 [salt.state       ][INFO    ][20643] Executing state service.running for apache2
2018-01-28 12:57:24,922 [salt.loaded.int.module.cmdmod][INFO    ][20643] Executing command ['systemctl', 'status', 'apache2.service', '-n', '0'] in directory '/root'
2018-01-28 12:57:24,975 [salt.loaded.int.module.cmdmod][INFO    ][20643] Executing command ['systemctl', 'is-active', 'apache2.service'] in directory '/root'
2018-01-28 12:57:25,001 [salt.loaded.int.module.cmdmod][INFO    ][20643] Executing command ['systemctl', 'is-enabled', 'apache2.service'] in directory '/root'
2018-01-28 12:57:25,027 [salt.state       ][INFO    ][20643] The service apache2 is already running
2018-01-28 12:57:25,028 [salt.state       ][INFO    ][20643] Completed state [apache2] at time 12:57:25.028375 duration_in_ms=106.561
2018-01-28 12:57:25,030 [salt.state       ][INFO    ][20643] Running state [/etc/apache2/conf-enabled/security.conf] at time 12:57:25.030028
2018-01-28 12:57:25,031 [salt.state       ][INFO    ][20643] Executing state file.symlink for /etc/apache2/conf-enabled/security.conf
2018-01-28 12:57:25,034 [salt.state       ][INFO    ][20643] Symlink /etc/apache2/conf-enabled/security.conf is present and owned by root:root
2018-01-28 12:57:25,035 [salt.state       ][INFO    ][20643] Completed state [/etc/apache2/conf-enabled/security.conf] at time 12:57:25.035180 duration_in_ms=5.152
2018-01-28 12:57:25,035 [salt.state       ][INFO    ][20643] Running state [/etc/apache2/sites-enabled/keystone_wsgi] at time 12:57:25.035493
2018-01-28 12:57:25,035 [salt.state       ][INFO    ][20643] Executing state file.absent for /etc/apache2/sites-enabled/keystone_wsgi
2018-01-28 12:57:25,036 [salt.state       ][INFO    ][20643] File /etc/apache2/sites-enabled/keystone_wsgi is not present
2018-01-28 12:57:25,036 [salt.state       ][INFO    ][20643] Completed state [/etc/apache2/sites-enabled/keystone_wsgi] at time 12:57:25.036453 duration_in_ms=0.96
2018-01-28 12:57:25,037 [salt.state       ][INFO    ][20643] Running state [keystone] at time 12:57:25.037199
2018-01-28 12:57:25,037 [salt.state       ][INFO    ][20643] Executing state service.dead for keystone
2018-01-28 12:57:25,038 [salt.loaded.int.module.cmdmod][INFO    ][20643] Executing command ['systemctl', 'status', 'keystone.service', '-n', '0'] in directory '/root'
2018-01-28 12:57:25,065 [salt.state       ][INFO    ][20643] The named service keystone is not available
2018-01-28 12:57:25,065 [salt.state       ][INFO    ][20643] Completed state [keystone] at time 12:57:25.065658 duration_in_ms=28.456
2018-01-28 12:57:25,067 [salt.state       ][INFO    ][20643] Running state [/root/keystonerc] at time 12:57:25.066983
2018-01-28 12:57:25,067 [salt.state       ][INFO    ][20643] Executing state file.managed for /root/keystonerc
2018-01-28 12:57:25,143 [salt.state       ][INFO    ][20643] File /root/keystonerc is in the correct state
2018-01-28 12:57:25,144 [salt.state       ][INFO    ][20643] Completed state [/root/keystonerc] at time 12:57:25.144126 duration_in_ms=77.143
2018-01-28 12:57:25,144 [salt.state       ][INFO    ][20643] Running state [/root/keystonercv3] at time 12:57:25.144749
2018-01-28 12:57:25,145 [salt.state       ][INFO    ][20643] Executing state file.managed for /root/keystonercv3
2018-01-28 12:57:25,205 [salt.state       ][INFO    ][20643] File /root/keystonercv3 is in the correct state
2018-01-28 12:57:25,205 [salt.state       ][INFO    ][20643] Completed state [/root/keystonercv3] at time 12:57:25.205773 duration_in_ms=61.024
2018-01-28 12:57:25,206 [salt.state       ][INFO    ][20643] Running state [keystone-manage db_sync && sleep 1] at time 12:57:25.206303
2018-01-28 12:57:25,206 [salt.state       ][INFO    ][20643] Executing state cmd.run for keystone-manage db_sync && sleep 1
2018-01-28 12:57:25,207 [salt.loaded.int.module.cmdmod][INFO    ][20643] Executing command 'keystone-manage db_sync && sleep 1' in directory '/root'
2018-01-28 12:57:27,850 [salt.state       ][INFO    ][20643] {'pid': 20692, 'retcode': 0, 'stderr': '', 'stdout': ''}
2018-01-28 12:57:27,852 [salt.state       ][INFO    ][20643] Completed state [keystone-manage db_sync && sleep 1] at time 12:57:27.852284 duration_in_ms=2645.979
2018-01-28 12:57:27,854 [salt.state       ][INFO    ][20643] Running state [/var/lib/keystone/fernet-keys] at time 12:57:27.854579
2018-01-28 12:57:27,855 [salt.state       ][INFO    ][20643] Executing state file.directory for /var/lib/keystone/fernet-keys
2018-01-28 12:57:27,859 [salt.state       ][INFO    ][20643] Directory /var/lib/keystone/fernet-keys is in the correct state
2018-01-28 12:57:27,860 [salt.state       ][INFO    ][20643] Completed state [/var/lib/keystone/fernet-keys] at time 12:57:27.860306 duration_in_ms=5.727
2018-01-28 12:57:27,863 [salt.state       ][INFO    ][20643] Running state [keystone-manage fernet_setup --keystone-user keystone --keystone-group keystone] at time 12:57:27.863301
2018-01-28 12:57:27,863 [salt.state       ][INFO    ][20643] Executing state cmd.run for keystone-manage fernet_setup --keystone-user keystone --keystone-group keystone
2018-01-28 12:57:27,864 [salt.loaded.int.module.cmdmod][INFO    ][20643] Executing command 'keystone-manage fernet_setup --keystone-user keystone --keystone-group keystone' in directory '/root'
2018-01-28 12:57:28,636 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128125728054059
2018-01-28 12:57:28,661 [salt.minion      ][INFO    ][20708] Starting a new job with PID 20708
2018-01-28 12:57:28,679 [salt.minion      ][INFO    ][20708] Returning information for job: 20180128125728054059
2018-01-28 12:57:29,171 [salt.state       ][INFO    ][20643] {'pid': 20701, 'retcode': 0, 'stderr': '', 'stdout': ''}
2018-01-28 12:57:29,172 [salt.state       ][INFO    ][20643] Completed state [keystone-manage fernet_setup --keystone-user keystone --keystone-group keystone] at time 12:57:29.172261 duration_in_ms=1308.961
2018-01-28 12:57:29,173 [salt.state       ][INFO    ][20643] Running state [/var/lib/keystone/credential-keys] at time 12:57:29.173403
2018-01-28 12:57:29,173 [salt.state       ][INFO    ][20643] Executing state file.directory for /var/lib/keystone/credential-keys
2018-01-28 12:57:29,176 [salt.state       ][INFO    ][20643] Directory /var/lib/keystone/credential-keys is in the correct state
2018-01-28 12:57:29,176 [salt.state       ][INFO    ][20643] Completed state [/var/lib/keystone/credential-keys] at time 12:57:29.176500 duration_in_ms=3.097
2018-01-28 12:57:29,177 [salt.state       ][INFO    ][20643] Running state [keystone-manage credential_setup --keystone-user keystone --keystone-group keystone] at time 12:57:29.177700
2018-01-28 12:57:29,178 [salt.state       ][INFO    ][20643] Executing state cmd.run for keystone-manage credential_setup --keystone-user keystone --keystone-group keystone
2018-01-28 12:57:29,178 [salt.loaded.int.module.cmdmod][INFO    ][20643] Executing command 'keystone-manage credential_setup --keystone-user keystone --keystone-group keystone' in directory '/root'
2018-01-28 12:57:30,491 [salt.state       ][INFO    ][20643] {'pid': 20713, 'retcode': 0, 'stderr': '', 'stdout': ''}
2018-01-28 12:57:30,492 [salt.state       ][INFO    ][20643] Completed state [keystone-manage credential_setup --keystone-user keystone --keystone-group keystone] at time 12:57:30.492647 duration_in_ms=1314.948
2018-01-28 12:57:30,496 [salt.state       ][INFO    ][20643] Running state [service] at time 12:57:30.496788
2018-01-28 12:57:30,497 [salt.state       ][INFO    ][20643] Executing state keystone.tenant_present for service
2018-01-28 12:57:30,572 [py.warnings      ][WARNING ][20643] /usr/lib/python2.7/dist-packages/keystoneauth1/adapter.py:182: UserWarning: Using keystoneclient sessions has been deprecated. Please update your software to use keystoneauth1.
  warnings.warn('Using keystoneclient sessions has been deprecated. '

2018-01-28 12:57:30,735 [salt.state       ][INFO    ][20643] Tenant / project "service" already exists
2018-01-28 12:57:30,736 [salt.state       ][INFO    ][20643] Completed state [service] at time 12:57:30.736160 duration_in_ms=239.371
2018-01-28 12:57:30,737 [salt.state       ][INFO    ][20643] Running state [admin] at time 12:57:30.737352
2018-01-28 12:57:30,737 [salt.state       ][INFO    ][20643] Executing state keystone.tenant_present for admin
2018-01-28 12:57:30,814 [salt.state       ][INFO    ][20643] Tenant / project "admin" already exists
2018-01-28 12:57:30,814 [salt.state       ][INFO    ][20643] Completed state [admin] at time 12:57:30.814229 duration_in_ms=76.878
2018-01-28 12:57:30,815 [salt.state       ][INFO    ][20643] Running state [admin] at time 12:57:30.815466
2018-01-28 12:57:30,815 [salt.state       ][INFO    ][20643] Executing state keystone.role_present for admin
2018-01-28 12:57:30,867 [salt.state       ][INFO    ][20643] Role "admin" already exists
2018-01-28 12:57:30,868 [salt.state       ][INFO    ][20643] Completed state [admin] at time 12:57:30.868094 duration_in_ms=52.628
2018-01-28 12:57:30,868 [salt.state       ][INFO    ][20643] Running state [Member] at time 12:57:30.868659
2018-01-28 12:57:30,868 [salt.state       ][INFO    ][20643] Executing state keystone.role_present for Member
2018-01-28 12:57:30,912 [salt.state       ][INFO    ][20643] Role "Member" already exists
2018-01-28 12:57:30,912 [salt.state       ][INFO    ][20643] Completed state [Member] at time 12:57:30.912666 duration_in_ms=44.007
2018-01-28 12:57:30,913 [salt.state       ][INFO    ][20643] Running state [admin] at time 12:57:30.913929
2018-01-28 12:57:30,914 [salt.state       ][INFO    ][20643] Executing state keystone.user_present for admin
2018-01-28 12:57:31,792 [salt.state       ][INFO    ][20643] User "admin" is already present
2018-01-28 12:57:31,792 [salt.state       ][INFO    ][20643] Completed state [admin] at time 12:57:31.792317 duration_in_ms=878.387
2018-01-28 12:57:31,796 [salt.minion      ][INFO    ][20643] Returning information for job: 20180128125718007315
2018-01-28 12:57:53,881 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command cmd.run with jid 20180128125753299116
2018-01-28 12:57:53,915 [salt.minion      ][INFO    ][20724] Starting a new job with PID 20724
2018-01-28 12:57:53,921 [salt.loader.192.168.11.2.int.module.cmdmod][INFO    ][20724] Executing command '. /root/keystonercv3; openstack service list' in directory '/root'
2018-01-28 12:57:56,572 [salt.minion      ][INFO    ][20724] Returning information for job: 20180128125753299116
2018-01-28 12:57:57,397 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command test.ping with jid 20180128125756816787
2018-01-28 12:57:57,423 [salt.minion      ][INFO    ][20736] Starting a new job with PID 20736
2018-01-28 12:57:57,490 [salt.minion      ][INFO    ][20736] Returning information for job: 20180128125756816787
2018-01-28 12:58:45,792 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command state.sls with jid 20180128125845213210
2018-01-28 12:58:45,827 [salt.minion      ][INFO    ][20741] Starting a new job with PID 20741
2018-01-28 12:58:48,547 [salt.state       ][INFO    ][20741] Loading fresh modules for state activity
2018-01-28 12:58:48,608 [salt.fileclient  ][INFO    ][20741] Fetching file from saltenv 'base', ** done ** 'glance/init.sls'
2018-01-28 12:58:48,643 [salt.fileclient  ][INFO    ][20741] Fetching file from saltenv 'base', ** done ** 'glance/server.sls'
2018-01-28 12:58:50,371 [salt.state       ][INFO    ][20741] Running state [glance] at time 12:58:50.371181
2018-01-28 12:58:50,371 [salt.state       ][INFO    ][20741] Executing state pkg.installed for glance
2018-01-28 12:58:50,372 [salt.loaded.int.module.cmdmod][INFO    ][20741] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:58:50,775 [salt.loaded.int.module.cmdmod][INFO    ][20741] Executing command ['apt-cache', '-q', 'policy', 'glance'] in directory '/root'
2018-01-28 12:58:50,873 [salt.loaded.int.module.cmdmod][INFO    ][20741] Executing command ['apt-get', '-q', 'update'] in directory '/root'
2018-01-28 12:58:52,731 [salt.loaded.int.module.cmdmod][INFO    ][20741] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 12:58:52,782 [salt.loaded.int.module.cmdmod][INFO    ][20741] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'glance'] in directory '/root'
2018-01-28 12:58:55,912 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128125855327115
2018-01-28 12:58:55,936 [salt.minion      ][INFO    ][21590] Starting a new job with PID 21590
2018-01-28 12:58:55,952 [salt.minion      ][INFO    ][21590] Returning information for job: 20180128125855327115
2018-01-28 12:59:02,296 [salt.loaded.int.module.cmdmod][INFO    ][20741] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 12:59:02,345 [salt.state       ][INFO    ][20741] Made the following changes:
'libblas.so.3' changed from 'absent' to '1'
'python-numpy-api10' changed from 'absent' to '1'
'python-ipaddr' changed from 'absent' to '2.1.11-2'
'python-wsme' changed from 'absent' to '0.8.0-2ubuntu2'
'glance' changed from 'absent' to '2:15.0.0-0ubuntu1~cloud0'
'python2.7-numpy' changed from 'absent' to '1'
'glance-store-common' changed from 'absent' to '0.22.0-0ubuntu1~cloud0'
'liblapack3' changed from 'absent' to '3.6.0-2ubuntu2'
'python-f2py' changed from 'absent' to '1'
'python2.7-glance' changed from 'absent' to '1'
'python-numpy-abi9' changed from 'absent' to '1'
'python-kazoo' changed from 'absent' to '2.2.1-1ubuntu1'
'python-semantic-version' changed from 'absent' to '2.3.1-1'
'libblas-common' changed from 'absent' to '3.6.0-2ubuntu2'
'libquadmath0' changed from 'absent' to '5.4.0-6ubuntu1~16.04.5'
'glance-common' changed from 'absent' to '2:15.0.0-0ubuntu1~cloud0'
'python-glance-store' changed from 'absent' to '0.22.0-0ubuntu1~cloud0'
'libgfortran3' changed from 'absent' to '5.4.0-6ubuntu1~16.04.5'
'python-swiftclient' changed from 'absent' to '1:3.4.0-0ubuntu1~cloud0'
'python-numpy-dev' changed from 'absent' to '1'
'python-taskflow' changed from 'absent' to '2.14.0-0ubuntu1~cloud0'
'liblapack.so.3' changed from 'absent' to '1'
'python-automaton' changed from 'absent' to '1.2.0-1'
'python-numpy' changed from 'absent' to '1:1.11.0-1ubuntu1'
'python-cursive' changed from 'absent' to '0.1.1-1ubuntu1~cloud0'
'python-httplib2' changed from 'absent' to '0.9.1+dfsg-1'
'python-simplegeneric' changed from 'absent' to '0.8.1-1'
'python-glance' changed from 'absent' to '2:15.0.0-0ubuntu1~cloud0'
'python-barbicanclient' changed from 'absent' to '4.0.1-2'
'python-castellan' changed from 'absent' to '0.12.0-0ubuntu1~cloud0'
'libblas3' changed from 'absent' to '3.6.0-2ubuntu2'
'glance-api' changed from 'absent' to '2:15.0.0-0ubuntu1~cloud0'
'python-networkx' changed from 'absent' to '1.11-1ubuntu1'
'glance-registry' changed from 'absent' to '2:15.0.0-0ubuntu1~cloud0'

2018-01-28 12:59:02,380 [salt.state       ][INFO    ][20741] Loading fresh modules for state activity
2018-01-28 12:59:02,552 [salt.state       ][INFO    ][20741] Completed state [glance] at time 12:59:02.552867 duration_in_ms=12181.685
2018-01-28 12:59:02,563 [salt.state       ][INFO    ][20741] Running state [glance-api] at time 12:59:02.563725
2018-01-28 12:59:02,564 [salt.state       ][INFO    ][20741] Executing state pkg.installed for glance-api
2018-01-28 12:59:03,006 [salt.state       ][INFO    ][20741] All specified packages are already installed
2018-01-28 12:59:03,007 [salt.state       ][INFO    ][20741] Completed state [glance-api] at time 12:59:03.007070 duration_in_ms=443.344
2018-01-28 12:59:03,007 [salt.state       ][INFO    ][20741] Running state [glance-registry] at time 12:59:03.007362
2018-01-28 12:59:03,007 [salt.state       ][INFO    ][20741] Executing state pkg.installed for glance-registry
2018-01-28 12:59:03,014 [salt.state       ][INFO    ][20741] All specified packages are already installed
2018-01-28 12:59:03,014 [salt.state       ][INFO    ][20741] Completed state [glance-registry] at time 12:59:03.014881 duration_in_ms=7.519
2018-01-28 12:59:03,015 [salt.state       ][INFO    ][20741] Running state [glance-common] at time 12:59:03.015123
2018-01-28 12:59:03,015 [salt.state       ][INFO    ][20741] Executing state pkg.installed for glance-common
2018-01-28 12:59:03,021 [salt.state       ][INFO    ][20741] All specified packages are already installed
2018-01-28 12:59:03,022 [salt.state       ][INFO    ][20741] Completed state [glance-common] at time 12:59:03.021971 duration_in_ms=6.848
2018-01-28 12:59:03,022 [salt.state       ][INFO    ][20741] Running state [python-glance] at time 12:59:03.022201
2018-01-28 12:59:03,022 [salt.state       ][INFO    ][20741] Executing state pkg.installed for python-glance
2018-01-28 12:59:03,028 [salt.state       ][INFO    ][20741] All specified packages are already installed
2018-01-28 12:59:03,029 [salt.state       ][INFO    ][20741] Completed state [python-glance] at time 12:59:03.029051 duration_in_ms=6.85
2018-01-28 12:59:03,029 [salt.state       ][INFO    ][20741] Running state [python-glance-store] at time 12:59:03.029302
2018-01-28 12:59:03,029 [salt.state       ][INFO    ][20741] Executing state pkg.installed for python-glance-store
2018-01-28 12:59:03,036 [salt.state       ][INFO    ][20741] All specified packages are already installed
2018-01-28 12:59:03,036 [salt.state       ][INFO    ][20741] Completed state [python-glance-store] at time 12:59:03.036266 duration_in_ms=6.964
2018-01-28 12:59:03,036 [salt.state       ][INFO    ][20741] Running state [python-glanceclient] at time 12:59:03.036503
2018-01-28 12:59:03,036 [salt.state       ][INFO    ][20741] Executing state pkg.installed for python-glanceclient
2018-01-28 12:59:03,043 [salt.state       ][INFO    ][20741] All specified packages are already installed
2018-01-28 12:59:03,043 [salt.state       ][INFO    ][20741] Completed state [python-glanceclient] at time 12:59:03.043739 duration_in_ms=7.236
2018-01-28 12:59:03,044 [salt.state       ][INFO    ][20741] Running state [gettext-base] at time 12:59:03.043970
2018-01-28 12:59:03,044 [salt.state       ][INFO    ][20741] Executing state pkg.installed for gettext-base
2018-01-28 12:59:03,051 [salt.state       ][INFO    ][20741] All specified packages are already installed
2018-01-28 12:59:03,051 [salt.state       ][INFO    ][20741] Completed state [gettext-base] at time 12:59:03.051460 duration_in_ms=7.49
2018-01-28 12:59:03,051 [salt.state       ][INFO    ][20741] Running state [python-memcache] at time 12:59:03.051698
2018-01-28 12:59:03,051 [salt.state       ][INFO    ][20741] Executing state pkg.installed for python-memcache
2018-01-28 12:59:03,058 [salt.state       ][INFO    ][20741] All specified packages are already installed
2018-01-28 12:59:03,058 [salt.state       ][INFO    ][20741] Completed state [python-memcache] at time 12:59:03.058755 duration_in_ms=7.056
2018-01-28 12:59:03,059 [salt.state       ][INFO    ][20741] Running state [python-pycadf] at time 12:59:03.058979
2018-01-28 12:59:03,059 [salt.state       ][INFO    ][20741] Executing state pkg.installed for python-pycadf
2018-01-28 12:59:03,065 [salt.state       ][INFO    ][20741] All specified packages are already installed
2018-01-28 12:59:03,065 [salt.state       ][INFO    ][20741] Completed state [python-pycadf] at time 12:59:03.065826 duration_in_ms=6.847
2018-01-28 12:59:03,067 [salt.state       ][INFO    ][20741] Running state [/etc/glance/glance-cache.conf] at time 12:59:03.067897
2018-01-28 12:59:03,068 [salt.state       ][INFO    ][20741] Executing state file.managed for /etc/glance/glance-cache.conf
2018-01-28 12:59:03,109 [salt.fileclient  ][INFO    ][20741] Fetching file from saltenv 'base', ** done ** 'glance/files/pike/glance-cache.conf.Debian'
2018-01-28 12:59:03,187 [salt.state       ][INFO    ][20741] File changed:
--- 
+++ 
@@ -1,3 +1,4 @@
+
 [DEFAULT]
 
 #
@@ -226,8 +227,8 @@
 #  (boolean value)
 # This option is deprecated for removal since Newton.
 # Its value may be silently ignored in the future.
-# Reason: This option will be removed in the Pike release or later because the
-# same functionality can be achieved with greater granularity by using policies.
+# Reason: This option will be removed in the Ocata release because the same
+# functionality can be achieved with greater granularity by using policies.
 # Please see the Newton release notes for more information.
 #show_multiple_locations = false
 
@@ -409,7 +410,7 @@
 # Related options:
 #     * None
 #
-#  (unknown value)
+#  (string value)
 #pydev_worker_debug_host = localhost
 
 #
@@ -473,56 +474,6 @@
 #
 #  (string value)
 #digest_algorithm = sha256
-
-#
-# The URL provides location where the temporary data will be stored
-#
-# This option is for Glance internal use only. Glance will save the
-# image data uploaded by the user to 'staging' endpoint during the
-# image import process.
-#
-# This option does not change the 'staging' API endpoint by any means.
-#
-# NOTE: It is discouraged to use same path as [task]/work_dir
-#
-# NOTE: 'file://<absolute-directory-path>' is the only option
-# api_image_import flow will support for now.
-#
-# NOTE: The staging path must be on shared filesystem available to all
-# Glance API nodes.
-#
-# Possible values:
-#     * String starting with 'file://' followed by absolute FS path
-#
-# Related options:
-#     * [task]/work_dir
-#     * [DEFAULT]/enable_image_import (*deprecated*)
-#
-#  (string value)
-#node_staging_uri = file:///tmp/staging/
-
-# DEPRECATED:
-# Enables the Image Import workflow introduced in Pike
-#
-# As '[DEFAULT]/node_staging_uri' is required for the Image
-# Import, it's disabled per default in Pike, enabled per
-# default in Queens and removed in Rocky. This allows Glance to
-# operate with previous version configs upon upgrade.
-#
-# Setting this option to True will enable the endpoints related
-# to Image Import Refactoring work.
-#
-# Related options:
-#     * [DEFUALT]/node_staging_uri (boolean value)
-# This option is deprecated for removal since Pike.
-# Its value may be silently ignored in the future.
-# Reason:
-# This option is deprecated for removal in Rocky.
-#
-# It was introduced to make sure that the API is not enabled
-# before the '[DEFAULT]/node_staging_uri' is defined and is
-# long term redundant.
-#enable_image_import = false
 
 #
 # The relative path to sqlite file database that will be used for image cache
@@ -603,6 +554,10 @@
 #  (integer value)
 # Minimum value: 0
 #image_cache_max_size = 10737418240
+image_cache_max_size = 189668314316
+
+
+os_region_name = RegionOne
 
 #
 # The amount of time, in seconds, an incomplete image remains in the cache.
@@ -628,6 +583,7 @@
 #  (integer value)
 # Minimum value: 0
 #image_cache_stall_time = 86400
+image_cache_stall_time = 86400
 
 #
 # Base directory for image cache.
@@ -661,6 +617,7 @@
 #
 #  (string value)
 #image_cache_dir = <None>
+image_cache_dir = /var/lib/glance/image-cache/
 
 #
 # Address the registry server is hosted on.
@@ -671,8 +628,9 @@
 # Related options:
 #     * None
 #
-#  (unknown value)
+#  (string value)
 #registry_host = 0.0.0.0
+registry_host = 192.168.10.10
 
 #
 # Port the registry server is listening on.
@@ -687,6 +645,7 @@
 # Minimum value: 0
 # Maximum value: 65535
 #registry_port = 9191
+registry_port = 9191
 
 #
 # Protocol to use for communication with the registry server.
@@ -909,6 +868,12 @@
 # Note: This option can be changed without restarting.
 #debug = false
 
+# DEPRECATED: If set to false, the logging level will be set to WARNING instead
+# of the default INFO level. (boolean value)
+# This option is deprecated for removal.
+# Its value may be silently ignored in the future.
+#verbose = true
+
 # The name of a logging configuration file. This file is appended to any
 # existing logging configuration files. For details about logging configuration
 # files, see the Python logging module documentation. Note that when logging
@@ -929,6 +894,7 @@
 # log_config_append is set. (string value)
 # Deprecated group/name - [DEFAULT]/logfile
 #log_file = <None>
+log_file = /var/log/glance/image-cache.log
 
 # (Optional) The base directory used for relative log_file  paths. This option
 # is ignored if log_config_append is set. (string value)
@@ -947,19 +913,13 @@
 # set. (boolean value)
 #use_syslog = false
 
-# Enable journald for logging. If running in a systemd environment you may wish
-# to enable journal support. Doing so will use the journal native protocol which
-# includes structured metadata in addition to log messages.This option is
-# ignored if log_config_append is set. (boolean value)
-#use_journal = false
-
 # Syslog facility to receive log lines. This option is ignored if
 # log_config_append is set. (string value)
 #syslog_log_facility = LOG_USER
 
 # Log output to standard error. This option is ignored if log_config_append is
 # set. (boolean value)
-#use_stderr = false
+#use_stderr = true
 
 # Format string to use for log messages with context. (string value)
 #logging_context_format_string = %(asctime)s.%(msecs)03d %(process)d %(levelname)s %(name)s [%(request_id)s %(user_identity)s] %(instance)s%(message)s
@@ -981,7 +941,7 @@
 
 # List of package logging levels in logger=LEVEL pairs. This option is ignored
 # if log_config_append is set. (list value)
-#default_log_levels = amqp=WARN,amqplib=WARN,boto=WARN,qpid=WARN,sqlalchemy=WARN,suds=INFO,oslo.messaging=INFO,oslo_messaging=INFO,iso8601=WARN,requests.packages.urllib3.connectionpool=WARN,urllib3.connectionpool=WARN,websocket=WARN,requests.packages.urllib3.util.retry=WARN,urllib3.util.retry=WARN,keystonemiddleware=WARN,routes.middleware=WARN,stevedore=WARN,taskflow=WARN,keystoneauth=WARN,oslo.cache=INFO,dogpile.core.dogpile=INFO
+#default_log_levels = amqp=WARN,amqplib=WARN,boto=WARN,qpid=WARN,sqlalchemy=WARN,suds=INFO,oslo.messaging=INFO,iso8601=WARN,requests.packages.urllib3.connectionpool=WARN,urllib3.connectionpool=WARN,websocket=WARN,requests.packages.urllib3.util.retry=WARN,urllib3.util.retry=WARN,keystonemiddleware=WARN,routes.middleware=WARN,stevedore=WARN,taskflow=WARN,keystoneauth=WARN,oslo.cache=INFO,dogpile.core.dogpile=INFO
 
 # Enables or disables publication of error events. (boolean value)
 #publish_errors = false
@@ -992,18 +952,6 @@
 # The format for an instance UUID that is passed with the log message. (string
 # value)
 #instance_uuid_format = "[instance: %(uuid)s] "
-
-# Interval, number of seconds, of log rate limiting. (integer value)
-#rate_limit_interval = 0
-
-# Maximum number of logged messages per rate_limit_interval. (integer value)
-#rate_limit_burst = 0
-
-# Log level name used by rate limiting: CRITICAL, ERROR, INFO, WARNING, DEBUG or
-# empty string. Logs with level greater or equal to rate_limit_except_level are
-# not filtered. An empty string means that all levels are filtered. (string
-# value)
-#rate_limit_except_level = CRITICAL
 
 # Enables or disables fatal status of deprecations. (boolean value)
 #fatal_deprecations = false
@@ -1090,7 +1038,7 @@
 # /store-capabilities.html
 #
 # For more information on setting up a particular store in your
-# deployment and help with the usage of this feature, please contact
+# deplyment and help with the usage of this feature, please contact
 # the storage driver maintainers listed here:
 # http://docs.openstack.org/developer/glance_store/drivers/index.html
 #
@@ -1119,8 +1067,8 @@
 #
 # Possible values:
 #     * A string of of the following form:
-#       ``<service_type>:<service_name>:<interface>``
-#       At least ``service_type`` and ``interface`` should be specified.
+#       ``<service_type>:<service_name>:<endpoint_type>``
+#       At least ``service_type`` and ``endpoint_type`` should be specified.
 #       ``service_name`` can be omitted.
 #
 # Related options:
@@ -1343,25 +1291,6 @@
 #
 #  (string value)
 #rootwrap_config = /etc/glance/rootwrap.conf
-
-#
-# Volume type that will be used for volume creation in cinder.
-#
-# Some cinder backends can have several volume types to optimize storage usage.
-# Adding this option allows an operator to choose a specific volume type
-# in cinder that can be optimized for images.
-#
-# If this is not set, then the default volume type specified in the cinder
-# configuration will be used for volume creation.
-#
-# Possible values:
-#     * A valid volume type from cinder
-#
-# Related options:
-#     * None
-#
-#  (string value)
-#cinder_volume_type = <None>
 
 #
 # Directory to which the filesystem backend store writes images.
@@ -1442,7 +1371,6 @@
 #     * None
 #
 #  (string value)
-#filesystem_store_metadata_file = <None>
 
 #
 # File access permissions for the image files.
@@ -1699,7 +1627,7 @@
 # Related Options:
 #     * sheepdog_store_port
 #
-#  (unknown value)
+#  (string value)
 #sheepdog_store_address = 127.0.0.1
 
 #
@@ -1944,16 +1872,12 @@
 # images in its own account. More details multi-tenant store can be found at
 # https://wiki.openstack.org/wiki/GlanceSwiftTenantSpecificStorage
 #
-# NOTE: If using multi-tenant swift store, please make sure
-# that you do not set a swift configuration file with the
-# 'swift_store_config_file' option.
-#
 # Possible values:
 #     * True
 #     * False
 #
 # Related options:
-#     * swift_store_config_file
+#     * None
 #
 #  (boolean value)
 #swift_store_multi_tenant = false
@@ -2169,15 +2093,12 @@
 # option is highly recommended while using Swift storage backend for
 # image storage as it avoids storage of credentials in the database.
 #
-# NOTE: Please do not configure this option if you have set
-# ``swift_store_multi_tenant`` to ``True``.
-#
 # Possible values:
 #     * String value representing an absolute path on the glance-api
 #       node
 #
 # Related options:
-#     * swift_store_multi_tenant
+#     * None
 #
 #  (string value)
 #swift_store_config_file = <None>
@@ -2198,7 +2119,7 @@
 #     * vmware_server_username
 #     * vmware_server_password
 #
-#  (unknown value)
+#  (string value)
 #vmware_server_host = 127.0.0.1
 
 #
@@ -2360,6 +2281,9 @@
 #  (multi valued)
 #vmware_datastores =
 
+os_region_name = RegionOne
+
+
 
 [oslo_policy]
 
@@ -2367,10 +2291,12 @@
 # From oslo.policy
 #
 
-# The file that defines policies. (string value)
+# The JSON file that defines policies. (string value)
+# Deprecated group/name - [DEFAULT]/policy_file
 #policy_file = policy.json
 
 # Default rule. Enforced when a requested rule is not found. (string value)
+# Deprecated group/name - [DEFAULT]/policy_default_rule
 #policy_default_rule = default
 
 # Directories where policy configuration files are stored. They can be relative
@@ -2378,4 +2304,5 @@
 # absolute paths. The file defined by policy_file must exist for these
 # directories to be searched.  Missing or empty directories are ignored. (multi
 # valued)
+# Deprecated group/name - [DEFAULT]/policy_dirs
 #policy_dirs = policy.d

2018-01-28 12:59:03,187 [salt.state       ][INFO    ][20741] Completed state [/etc/glance/glance-cache.conf] at time 12:59:03.187801 duration_in_ms=119.904
2018-01-28 12:59:03,188 [salt.state       ][INFO    ][20741] Running state [/etc/glance/glance-registry.conf] at time 12:59:03.188244
2018-01-28 12:59:03,188 [salt.state       ][INFO    ][20741] Executing state file.managed for /etc/glance/glance-registry.conf
2018-01-28 12:59:03,223 [salt.fileclient  ][INFO    ][20741] Fetching file from saltenv 'base', ** done ** 'glance/files/pike/glance-registry.conf.Debian'
2018-01-28 12:59:03,326 [salt.state       ][INFO    ][20741] File changed:
--- 
+++ 
@@ -1,3 +1,4 @@
+
 [DEFAULT]
 
 #
@@ -212,6 +213,7 @@
 #  (integer value)
 # Minimum value: 1
 #limit_param_default = 25
+limit_param_default = 25
 
 #
 # Maximum number of results that could be returned by a request.
@@ -237,6 +239,7 @@
 #  (integer value)
 # Minimum value: 1
 #api_limit_max = 1000
+api_limit_max = 1000
 
 #
 # Show direct image location when returning an image.
@@ -300,8 +303,8 @@
 #  (boolean value)
 # This option is deprecated for removal since Newton.
 # Its value may be silently ignored in the future.
-# Reason: This option will be removed in the Pike release or later because the
-# same functionality can be achieved with greater granularity by using policies.
+# Reason: This option will be removed in the Ocata release because the same
+# functionality can be achieved with greater granularity by using policies.
 # Please see the Newton release notes for more information.
 #show_multiple_locations = false
 
@@ -483,7 +486,7 @@
 # Related options:
 #     * None
 #
-#  (unknown value)
+#  (string value)
 #pydev_worker_debug_host = localhost
 
 #
@@ -549,56 +552,6 @@
 #digest_algorithm = sha256
 
 #
-# The URL provides location where the temporary data will be stored
-#
-# This option is for Glance internal use only. Glance will save the
-# image data uploaded by the user to 'staging' endpoint during the
-# image import process.
-#
-# This option does not change the 'staging' API endpoint by any means.
-#
-# NOTE: It is discouraged to use same path as [task]/work_dir
-#
-# NOTE: 'file://<absolute-directory-path>' is the only option
-# api_image_import flow will support for now.
-#
-# NOTE: The staging path must be on shared filesystem available to all
-# Glance API nodes.
-#
-# Possible values:
-#     * String starting with 'file://' followed by absolute FS path
-#
-# Related options:
-#     * [task]/work_dir
-#     * [DEFAULT]/enable_image_import (*deprecated*)
-#
-#  (string value)
-#node_staging_uri = file:///tmp/staging/
-
-# DEPRECATED:
-# Enables the Image Import workflow introduced in Pike
-#
-# As '[DEFAULT]/node_staging_uri' is required for the Image
-# Import, it's disabled per default in Pike, enabled per
-# default in Queens and removed in Rocky. This allows Glance to
-# operate with previous version configs upon upgrade.
-#
-# Setting this option to True will enable the endpoints related
-# to Image Import Refactoring work.
-#
-# Related options:
-#     * [DEFUALT]/node_staging_uri (boolean value)
-# This option is deprecated for removal since Pike.
-# Its value may be silently ignored in the future.
-# Reason:
-# This option is deprecated for removal in Rocky.
-#
-# It was introduced to make sure that the API is not enabled
-# before the '[DEFAULT]/node_staging_uri' is defined and is
-# long term redundant.
-#enable_image_import = false
-
-#
 # IP address to bind the glance servers to.
 #
 # Provide an IP address to bind the glance server to. The default
@@ -615,8 +568,9 @@
 # Related options:
 #     * None
 #
-#  (unknown value)
+#  (string value)
 #bind_host = 0.0.0.0
+bind_host = 192.168.10.13
 
 #
 # Port number on which the server will listen.
@@ -636,6 +590,7 @@
 # Minimum value: 0
 # Maximum value: 65535
 #bind_port = <None>
+bind_port = 9191
 
 #
 # Set the number of incoming connection requests.
@@ -767,6 +722,7 @@
 #  (integer value)
 # Minimum value: 0
 #workers = <None>
+workers = 8
 
 #
 # Maximum line size of message headers.
@@ -845,6 +801,14 @@
 # INFO level. (boolean value)
 # Note: This option can be changed without restarting.
 #debug = false
+debug = false
+
+# DEPRECATED: If set to false, the logging level will be set to WARNING instead
+# of the default INFO level. (boolean value)
+# This option is deprecated for removal.
+# Its value may be silently ignored in the future.
+#verbose = true
+verbose = true
 
 # The name of a logging configuration file. This file is appended to any
 # existing logging configuration files. For details about logging configuration
@@ -866,6 +830,7 @@
 # log_config_append is set. (string value)
 # Deprecated group/name - [DEFAULT]/logfile
 #log_file = <None>
+log_file = /var/log/glance/registry.log
 
 # (Optional) The base directory used for relative log_file  paths. This option
 # is ignored if log_config_append is set. (string value)
@@ -884,19 +849,13 @@
 # set. (boolean value)
 #use_syslog = false
 
-# Enable journald for logging. If running in a systemd environment you may wish
-# to enable journal support. Doing so will use the journal native protocol which
-# includes structured metadata in addition to log messages.This option is
-# ignored if log_config_append is set. (boolean value)
-#use_journal = false
-
 # Syslog facility to receive log lines. This option is ignored if
 # log_config_append is set. (string value)
 #syslog_log_facility = LOG_USER
 
 # Log output to standard error. This option is ignored if log_config_append is
 # set. (boolean value)
-#use_stderr = false
+#use_stderr = true
 
 # Format string to use for log messages with context. (string value)
 #logging_context_format_string = %(asctime)s.%(msecs)03d %(process)d %(levelname)s %(name)s [%(request_id)s %(user_identity)s] %(instance)s%(message)s
@@ -918,7 +877,7 @@
 
 # List of package logging levels in logger=LEVEL pairs. This option is ignored
 # if log_config_append is set. (list value)
-#default_log_levels = amqp=WARN,amqplib=WARN,boto=WARN,qpid=WARN,sqlalchemy=WARN,suds=INFO,oslo.messaging=INFO,oslo_messaging=INFO,iso8601=WARN,requests.packages.urllib3.connectionpool=WARN,urllib3.connectionpool=WARN,websocket=WARN,requests.packages.urllib3.util.retry=WARN,urllib3.util.retry=WARN,keystonemiddleware=WARN,routes.middleware=WARN,stevedore=WARN,taskflow=WARN,keystoneauth=WARN,oslo.cache=INFO,dogpile.core.dogpile=INFO
+#default_log_levels = amqp=WARN,amqplib=WARN,boto=WARN,qpid=WARN,sqlalchemy=WARN,suds=INFO,oslo.messaging=INFO,iso8601=WARN,requests.packages.urllib3.connectionpool=WARN,urllib3.connectionpool=WARN,websocket=WARN,requests.packages.urllib3.util.retry=WARN,urllib3.util.retry=WARN,keystonemiddleware=WARN,routes.middleware=WARN,stevedore=WARN,taskflow=WARN,keystoneauth=WARN,oslo.cache=INFO,dogpile.core.dogpile=INFO
 
 # Enables or disables publication of error events. (boolean value)
 #publish_errors = false
@@ -930,18 +889,6 @@
 # value)
 #instance_uuid_format = "[instance: %(uuid)s] "
 
-# Interval, number of seconds, of log rate limiting. (integer value)
-#rate_limit_interval = 0
-
-# Maximum number of logged messages per rate_limit_interval. (integer value)
-#rate_limit_burst = 0
-
-# Log level name used by rate limiting: CRITICAL, ERROR, INFO, WARNING, DEBUG or
-# empty string. Logs with level greater or equal to rate_limit_except_level are
-# not filtered. An empty string means that all levels are filtered. (string
-# value)
-#rate_limit_except_level = CRITICAL
-
 # Enables or disables fatal status of deprecations. (boolean value)
 #fatal_deprecations = false
 
@@ -950,6 +897,7 @@
 #
 
 # Size of RPC connection pool. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_conn_pool_size
 #rpc_conn_pool_size = 30
 
 # The pool size limit for connections expiration policy (integer value)
@@ -960,144 +908,93 @@
 
 # ZeroMQ bind address. Should be a wildcard (*), an ethernet interface, or IP.
 # The "host" option should point or resolve to this address. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_bind_address
 #rpc_zmq_bind_address = *
 
 # MatchMaker driver. (string value)
-# Allowed values: redis, sentinel, dummy
+# Allowed values: redis, dummy
+# Deprecated group/name - [DEFAULT]/rpc_zmq_matchmaker
 #rpc_zmq_matchmaker = redis
 
 # Number of ZeroMQ contexts, defaults to 1. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_contexts
 #rpc_zmq_contexts = 1
 
 # Maximum number of ingress messages to locally buffer per topic. Default is
 # unlimited. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_topic_backlog
 #rpc_zmq_topic_backlog = <None>
 
 # Directory for holding IPC sockets. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_ipc_dir
 #rpc_zmq_ipc_dir = /var/run/openstack
 
 # Name of this node. Must be a valid hostname, FQDN, or IP address. Must match
 # "host" option, if running Nova. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_host
 #rpc_zmq_host = localhost
 
-# Number of seconds to wait before all pending messages will be sent after
-# closing a socket. The default value of -1 specifies an infinite linger period.
-# The value of 0 specifies no linger period. Pending messages shall be discarded
-# immediately when the socket is closed. Positive values specify an upper bound
-# for the linger period. (integer value)
+# Seconds to wait before a cast expires (TTL). The default value of -1 specifies
+# an infinite linger period. The value of 0 specifies no linger period. Pending
+# messages shall be discarded immediately when the socket is closed. Only
+# supported by impl_zmq. (integer value)
 # Deprecated group/name - [DEFAULT]/rpc_cast_timeout
-#zmq_linger = -1
+#rpc_cast_timeout = -1
 
 # The default number of seconds that poll should wait. Poll raises timeout
 # exception when timeout expired. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_poll_timeout
 #rpc_poll_timeout = 1
 
 # Expiration timeout in seconds of a name service record about existing target (
 # < 0 means no timeout). (integer value)
+# Deprecated group/name - [DEFAULT]/zmq_target_expire
 #zmq_target_expire = 300
 
 # Update period in seconds of a name service record about existing target.
 # (integer value)
+# Deprecated group/name - [DEFAULT]/zmq_target_update
 #zmq_target_update = 180
 
 # Use PUB/SUB pattern for fanout methods. PUB/SUB always uses proxy. (boolean
 # value)
-#use_pub_sub = false
+# Deprecated group/name - [DEFAULT]/use_pub_sub
+#use_pub_sub = true
 
 # Use ROUTER remote proxy. (boolean value)
-#use_router_proxy = false
-
-# This option makes direct connections dynamic or static. It makes sense only
-# with use_router_proxy=False which means to use direct connections for direct
-# message types (ignored otherwise). (boolean value)
-#use_dynamic_connections = false
-
-# How many additional connections to a host will be made for failover reasons.
-# This option is actual only in dynamic connections mode. (integer value)
-#zmq_failover_connections = 2
+# Deprecated group/name - [DEFAULT]/use_router_proxy
+#use_router_proxy = true
 
 # Minimal port number for random ports range. (port value)
 # Minimum value: 0
 # Maximum value: 65535
+# Deprecated group/name - [DEFAULT]/rpc_zmq_min_port
 #rpc_zmq_min_port = 49153
 
 # Maximal port number for random ports range. (integer value)
 # Minimum value: 1
 # Maximum value: 65536
+# Deprecated group/name - [DEFAULT]/rpc_zmq_max_port
 #rpc_zmq_max_port = 65536
 
 # Number of retries to find free port number before fail with ZMQBindError.
 # (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_bind_port_retries
 #rpc_zmq_bind_port_retries = 100
 
 # Default serialization mechanism for serializing/deserializing
 # outgoing/incoming messages (string value)
 # Allowed values: json, msgpack
+# Deprecated group/name - [DEFAULT]/rpc_zmq_serialization
 #rpc_zmq_serialization = json
 
 # This option configures round-robin mode in zmq socket. True means not keeping
 # a queue when server side disconnects. False means to keep queue and messages
 # even if server is disconnected, when the server appears we send all
 # accumulated messages to it. (boolean value)
-#zmq_immediate = true
-
-# Enable/disable TCP keepalive (KA) mechanism. The default value of -1 (or any
-# other negative value) means to skip any overrides and leave it to OS default;
-# 0 and 1 (or any other positive value) mean to disable and enable the option
-# respectively. (integer value)
-#zmq_tcp_keepalive = -1
-
-# The duration between two keepalive transmissions in idle condition. The unit
-# is platform dependent, for example, seconds in Linux, milliseconds in Windows
-# etc. The default value of -1 (or any other negative value and 0) means to skip
-# any overrides and leave it to OS default. (integer value)
-#zmq_tcp_keepalive_idle = -1
-
-# The number of retransmissions to be carried out before declaring that remote
-# end is not available. The default value of -1 (or any other negative value and
-# 0) means to skip any overrides and leave it to OS default. (integer value)
-#zmq_tcp_keepalive_cnt = -1
-
-# The duration between two successive keepalive retransmissions, if
-# acknowledgement to the previous keepalive transmission is not received. The
-# unit is platform dependent, for example, seconds in Linux, milliseconds in
-# Windows etc. The default value of -1 (or any other negative value and 0) means
-# to skip any overrides and leave it to OS default. (integer value)
-#zmq_tcp_keepalive_intvl = -1
-
-# Maximum number of (green) threads to work concurrently. (integer value)
-#rpc_thread_pool_size = 100
-
-# Expiration timeout in seconds of a sent/received message after which it is not
-# tracked anymore by a client/server. (integer value)
-#rpc_message_ttl = 300
-
-# Wait for message acknowledgements from receivers. This mechanism works only
-# via proxy without PUB/SUB. (boolean value)
-#rpc_use_acks = false
-
-# Number of seconds to wait for an ack from a cast/call. After each retry
-# attempt this timeout is multiplied by some specified multiplier. (integer
-# value)
-#rpc_ack_timeout_base = 15
-
-# Number to multiply base ack timeout by after each retry attempt. (integer
-# value)
-#rpc_ack_timeout_multiplier = 2
-
-# Default number of message sending attempts in case of any problems occurred:
-# positive value N means at most N retries, 0 means no retries, None or -1 (or
-# any other negative values) mean to retry forever. This option is used only if
-# acknowledgments are enabled. (integer value)
-#rpc_retry_attempts = 3
-
-# List of publisher hosts SubConsumer can subscribe on. This option has higher
-# priority then the default publishers list taken from the matchmaker. (list
-# value)
-#subscribe_on =
-
-# Size of executor thread pool when executor is threading or eventlet. (integer
-# value)
+#zmq_immediate = false
+
+# Size of executor thread pool. (integer value)
 # Deprecated group/name - [DEFAULT]/rpc_thread_pool_size
 #executor_thread_pool_size = 64
 
@@ -1107,6 +1004,7 @@
 # A URL representing the messaging driver to use and its full configuration.
 # (string value)
 #transport_url = <None>
+transport_url = rabbit://openstack:opnfv_secret@192.168.10.41:5672,openstack:opnfv_secret@192.168.10.42:5672,openstack:opnfv_secret@192.168.10.43:5672//openstack
 
 # DEPRECATED: The messaging driver to use, defaults to rabbit. Other drivers
 # include amqp and zmq. (string value)
@@ -1118,6 +1016,7 @@
 # The default exchange under which topics are scoped. May be overridden by an
 # exchange name specified in the transport_url option. (string value)
 #control_exchange = openstack
+control_exchange = openstack
 
 
 [database]
@@ -1126,12 +1025,22 @@
 # From oslo.db
 #
 
+# DEPRECATED: The file name to use with SQLite. (string value)
+# Deprecated group/name - [DEFAULT]/sqlite_db
+# This option is deprecated for removal.
+# Its value may be silently ignored in the future.
+# Reason: Should use config option connection or slave_connection to connect the
+# database.
+#sqlite_db = oslo.sqlite
+
 # If True, SQLite uses synchronous mode. (boolean value)
+# Deprecated group/name - [DEFAULT]/sqlite_synchronous
 #sqlite_synchronous = true
 
 # The back end to use for the database. (string value)
 # Deprecated group/name - [DEFAULT]/db_backend
 #backend = sqlalchemy
+backend = sqlalchemy
 
 # The SQLAlchemy connection string to use to connect to the database. (string
 # value)
@@ -1139,6 +1048,7 @@
 # Deprecated group/name - [DATABASE]/sql_connection
 # Deprecated group/name - [sql]/connection
 #connection = <None>
+connection = mysql+pymysql://glance:opnfv_secret@192.168.10.50/glance
 
 # The SQLAlchemy connection string to use to connect to the slave database.
 # (string value)
@@ -1150,15 +1060,12 @@
 # (string value)
 #mysql_sql_mode = TRADITIONAL
 
-# If True, transparently enables support for handling MySQL Cluster (NDB).
-# (boolean value)
-#mysql_enable_ndb = false
-
 # Timeout before idle SQL connections are reaped. (integer value)
 # Deprecated group/name - [DEFAULT]/sql_idle_timeout
 # Deprecated group/name - [DATABASE]/sql_idle_timeout
 # Deprecated group/name - [sql]/idle_timeout
 #idle_timeout = 3600
+idle_timeout = 3600
 
 # Minimum number of SQL connections to keep open in a pool. (integer value)
 # Deprecated group/name - [DEFAULT]/sql_min_pool_size
@@ -1170,12 +1077,14 @@
 # Deprecated group/name - [DEFAULT]/sql_max_pool_size
 # Deprecated group/name - [DATABASE]/sql_max_pool_size
 #max_pool_size = 5
+max_pool_size = 10
 
 # Maximum number of database connection retries during startup. Set to -1 to
 # specify an infinite retry count. (integer value)
 # Deprecated group/name - [DEFAULT]/sql_max_retries
 # Deprecated group/name - [DATABASE]/sql_max_retries
 #max_retries = 10
+max_retries = -1
 
 # Interval between retries of opening a SQL connection. (integer value)
 # Deprecated group/name - [DEFAULT]/sql_retry_interval
@@ -1186,6 +1095,7 @@
 # Deprecated group/name - [DEFAULT]/sql_max_overflow
 # Deprecated group/name - [DATABASE]/sqlalchemy_max_overflow
 #max_overflow = 50
+max_overflow = 30
 
 # Verbosity of SQL debugging information: 0=None, 100=Everything. (integer
 # value)
@@ -1230,20 +1140,47 @@
 # Deprecated group/name - [DEFAULT]/dbapi_use_tpool
 #use_tpool = false
 
+[glance_store]
+filesystem_store_datadir = /var/lib/glance/images/
+
+swift_store_endpoint_type = internalURL
+
+cinder_catalog_info = volumev2::internalURL
+
+# Override service catalog lookup with template for cinder endpoint
+# e.g. http://localhost:8776/v2/%(tenant)s (string value)
+#cinder_endpoint_template = <None>
+
+# Region name of this node. If specified, it will be used to locate
+# OpenStack services for stores. (string value)
+# Deprecated group/name - [DEFAULT]/os_region_name
+#cinder_os_region_name = <None>
+
+cinder_os_region_name = RegionOne
+
 
 [keystone_authtoken]
 
 #
 # From keystonemiddleware.auth_token
 #
-
+revocation_cache_time = 10
+auth_type = password
+user_domain_id = default
+project_domain_id = default
+project_name = service
+username = glance
+password = opnfv_secret
+auth_uri=http://192.168.10.10:5000
+auth_url=http://192.168.10.10:35357
+memcached_servers=192.168.10.11:11211,192.168.10.12:11211,192.168.10.13:11211
 # Complete "public" Identity API endpoint. This endpoint should not be an
 # "admin" endpoint, as it should be accessible by all end users. Unauthenticated
 # clients are redirected to this endpoint to authenticate. Although this
-# endpoint should ideally be unversioned, client support in the wild varies. If
-# you're using a versioned v2 endpoint here, then this should *not* be the same
-# endpoint the service user utilizes for validating tokens, because normal end
-# users may not be able to reach that endpoint. (string value)
+# endpoint should  ideally be unversioned, client support in the wild varies.
+# If you're using a versioned v2 endpoint here, then this  should *not* be the
+# same endpoint the service user utilizes  for validating tokens, because normal
+# end users may not be  able to reach that endpoint. (string value)
 #auth_uri = <None>
 
 # API version of the admin Identity API endpoint. (string value)
@@ -1283,12 +1220,7 @@
 # The region in which the identity server can be found. (string value)
 #region_name = <None>
 
-# DEPRECATED: Directory used to cache files related to PKI tokens. This option
-# has been deprecated in the Ocata release and will be removed in the P release.
-# (string value)
-# This option is deprecated for removal since Ocata.
-# Its value may be silently ignored in the future.
-# Reason: PKI token format is no longer supported.
+# Directory used to cache files related to PKI tokens. (string value)
 #signing_dir = <None>
 
 # Optionally specify a list of memcached server(s) to use for caching. If left
@@ -1301,14 +1233,10 @@
 # -1 to disable caching completely. (integer value)
 #token_cache_time = 300
 
-# DEPRECATED: Determines the frequency at which the list of revoked tokens is
-# retrieved from the Identity service (in seconds). A high number of revocation
-# events combined with a low cache duration may significantly reduce
-# performance. Only valid for PKI tokens. This option has been deprecated in the
-# Ocata release and will be removed in the P release. (integer value)
-# This option is deprecated for removal since Ocata.
-# Its value may be silently ignored in the future.
-# Reason: PKI token format is no longer supported.
+# Determines the frequency at which the list of revoked tokens is retrieved from
+# the Identity service (in seconds). A high number of revocation events combined
+# with a low cache duration may significantly reduce performance. Only valid for
+# PKI tokens. (integer value)
 #revocation_cache_time = 10
 
 # (Optional) If defined, indicate whether token data should be authenticated or
@@ -1361,40 +1289,19 @@
 # value)
 #enforce_token_bind = permissive
 
-# DEPRECATED: If true, the revocation list will be checked for cached tokens.
-# This requires that PKI tokens are configured on the identity server. (boolean
-# value)
-# This option is deprecated for removal since Ocata.
-# Its value may be silently ignored in the future.
-# Reason: PKI token format is no longer supported.
+# If true, the revocation list will be checked for cached tokens. This requires
+# that PKI tokens are configured on the identity server. (boolean value)
 #check_revocations_for_cached = false
 
-# DEPRECATED: Hash algorithms to use for hashing PKI tokens. This may be a
-# single algorithm or multiple. The algorithms are those supported by Python
-# standard hashlib.new(). The hashes will be tried in the order given, so put
-# the preferred one first for performance. The result of the first hash will be
+# Hash algorithms to use for hashing PKI tokens. This may be a single algorithm
+# or multiple. The algorithms are those supported by Python standard
+# hashlib.new(). The hashes will be tried in the order given, so put the
+# preferred one first for performance. The result of the first hash will be
 # stored in the cache. This will typically be set to multiple values only while
 # migrating from a less secure algorithm to a more secure one. Once all the old
 # tokens are expired this option should be set to a single value for better
 # performance. (list value)
-# This option is deprecated for removal since Ocata.
-# Its value may be silently ignored in the future.
-# Reason: PKI token format is no longer supported.
 #hash_algorithms = md5
-
-# A choice of roles that must be present in a service token. Service tokens are
-# allowed to request that an expired token can be used and so this check should
-# tightly control that only actual services should be sending this token. Roles
-# here are applied as an ANY check so any role in this list must be present. For
-# backwards compatibility reasons this currently only affects the allow_expired
-# check. (list value)
-#service_token_roles = service
-
-# For backwards compatibility reasons we must let valid service tokens pass that
-# don't pass the service_token_roles check as valid. Setting this true will
-# become the default in a future release and should be enabled if possible.
-# (boolean value)
-#service_token_roles_required = false
 
 # Authentication type to load (string value)
 # Deprecated group/name - [keystone_authtoken]/auth_plugin
@@ -1430,7 +1337,7 @@
 # Reason: Replaced by [DEFAULT]/transport_url
 #password =
 
-# DEPRECATED: List of Redis Sentinel hosts (fault tolerance mode), e.g.,
+# DEPRECATED: List of Redis Sentinel hosts (fault tolerance mode) e.g.
 # [host:port, host1:port ... ] (list value)
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
@@ -1446,7 +1353,7 @@
 # Time in ms to wait before the transaction is killed. (integer value)
 #check_timeout = 20000
 
-# Timeout in ms on blocking socket operations. (integer value)
+# Timeout in ms on blocking socket operations (integer value)
 #socket_timeout = 10000
 
 
@@ -1458,60 +1365,55 @@
 
 # Name for the AMQP container. must be globally unique. Defaults to a generated
 # UUID (string value)
+# Deprecated group/name - [amqp1]/container_name
 #container_name = <None>
 
 # Timeout for inactive connections (in seconds) (integer value)
+# Deprecated group/name - [amqp1]/idle_timeout
 #idle_timeout = 0
 
 # Debug: dump AMQP frames to stdout (boolean value)
+# Deprecated group/name - [amqp1]/trace
 #trace = false
 
-# Attempt to connect via SSL. If no other ssl-related parameters are given, it
-# will use the system's CA-bundle to verify the server's certificate. (boolean
-# value)
-#ssl = false
-
-# CA certificate PEM file used to verify the server's certificate (string value)
+# CA certificate PEM file to verify server certificate (string value)
+# Deprecated group/name - [amqp1]/ssl_ca_file
 #ssl_ca_file =
 
-# Self-identifying certificate PEM file for client authentication (string value)
+# Identifying certificate PEM file to present to clients (string value)
+# Deprecated group/name - [amqp1]/ssl_cert_file
 #ssl_cert_file =
 
-# Private key PEM file used to sign ssl_cert_file certificate (optional) (string
-# value)
+# Private key PEM file used to sign cert_file certificate (string value)
+# Deprecated group/name - [amqp1]/ssl_key_file
 #ssl_key_file =
 
 # Password for decrypting ssl_key_file (if encrypted) (string value)
+# Deprecated group/name - [amqp1]/ssl_key_password
 #ssl_key_password = <None>
 
-# DEPRECATED: Accept clients using either SSL or plain TCP (boolean value)
-# This option is deprecated for removal.
-# Its value may be silently ignored in the future.
-# Reason: Not applicable - not a SSL server
+# Accept clients using either SSL or plain TCP (boolean value)
+# Deprecated group/name - [amqp1]/allow_insecure_clients
 #allow_insecure_clients = false
 
 # Space separated list of acceptable SASL mechanisms (string value)
+# Deprecated group/name - [amqp1]/sasl_mechanisms
 #sasl_mechanisms =
 
 # Path to directory that contains the SASL configuration (string value)
+# Deprecated group/name - [amqp1]/sasl_config_dir
 #sasl_config_dir =
 
 # Name of configuration file (without .conf suffix) (string value)
+# Deprecated group/name - [amqp1]/sasl_config_name
 #sasl_config_name =
 
-# SASL realm to use if no realm present in username (string value)
-#sasl_default_realm =
-
-# DEPRECATED: User name for message broker authentication (string value)
-# This option is deprecated for removal.
-# Its value may be silently ignored in the future.
-# Reason: Should use configuration option transport_url to provide the username.
+# User name for message broker authentication (string value)
+# Deprecated group/name - [amqp1]/username
 #username =
 
-# DEPRECATED: Password for message broker authentication (string value)
-# This option is deprecated for removal.
-# Its value may be silently ignored in the future.
-# Reason: Should use configuration option transport_url to provide the password.
+# Password for message broker authentication (string value)
+# Deprecated group/name - [amqp1]/password
 #password =
 
 # Seconds to pause before attempting to re-connect. (integer value)
@@ -1533,12 +1435,8 @@
 # Minimum value: 1
 #link_retry_delay = 10
 
-# The maximum number of attempts to re-send a reply message which failed due to
-# a recoverable error. (integer value)
-# Minimum value: -1
-#default_reply_retry = 0
-
-# The deadline for an rpc reply message delivery. (integer value)
+# The deadline for an rpc reply message delivery. Only used when caller does not
+# provide a timeout expiry. (integer value)
 # Minimum value: 5
 #default_reply_timeout = 30
 
@@ -1551,11 +1449,6 @@
 # does not provide a timeout expiry. (integer value)
 # Minimum value: 5
 #default_notify_timeout = 30
-
-# The duration to schedule a purge of idle sender links. Detach link after
-# expiry. (integer value)
-# Minimum value: 1
-#default_sender_link_timeout = 600
 
 # Indicates the addressing mode used by the driver.
 # Permitted values:
@@ -1566,12 +1459,15 @@
 #addressing_mode = dynamic
 
 # address prefix used when sending to a specific server (string value)
+# Deprecated group/name - [amqp1]/server_request_prefix
 #server_request_prefix = exclusive
 
 # address prefix used when broadcasting to all servers (string value)
+# Deprecated group/name - [amqp1]/broadcast_prefix
 #broadcast_prefix = broadcast
 
 # address prefix when sending to any server in group (string value)
+# Deprecated group/name - [amqp1]/group_request_prefix
 #group_request_prefix = unicast
 
 # Address prefix for all generated RPC addresses (string value)
@@ -1601,6 +1497,7 @@
 # else control_exchange if set
 # else 'notify' (string value)
 #default_notification_exchange = <None>
+default_notification_exchange = glance
 
 # Exchange name used in RPC addresses.
 # Exchange name resolution precedence:
@@ -1622,66 +1519,6 @@
 # Minimum value: 1
 #notify_server_credit = 100
 
-# Send messages of this type pre-settled.
-# Pre-settled messages will not receive acknowledgement
-# from the peer. Note well: pre-settled messages may be
-# silently discarded if the delivery fails.
-# Permitted values:
-# 'rpc-call' - send RPC Calls pre-settled
-# 'rpc-reply'- send RPC Replies pre-settled
-# 'rpc-cast' - Send RPC Casts pre-settled
-# 'notify'   - Send Notifications pre-settled
-#  (multi valued)
-#pre_settled = rpc-cast
-#pre_settled = rpc-reply
-
-
-[oslo_messaging_kafka]
-
-#
-# From oslo.messaging
-#
-
-# DEPRECATED: Default Kafka broker Host (string value)
-# This option is deprecated for removal.
-# Its value may be silently ignored in the future.
-# Reason: Replaced by [DEFAULT]/transport_url
-#kafka_default_host = localhost
-
-# DEPRECATED: Default Kafka broker Port (port value)
-# Minimum value: 0
-# Maximum value: 65535
-# This option is deprecated for removal.
-# Its value may be silently ignored in the future.
-# Reason: Replaced by [DEFAULT]/transport_url
-#kafka_default_port = 9092
-
-# Max fetch bytes of Kafka consumer (integer value)
-#kafka_max_fetch_bytes = 1048576
-
-# Default timeout(s) for Kafka consumers (floating point value)
-#kafka_consumer_timeout = 1.0
-
-# Pool Size for Kafka Consumers (integer value)
-#pool_size = 10
-
-# The pool size limit for connections expiration policy (integer value)
-#conn_pool_min_size = 2
-
-# The time-to-live in sec of idle connections in the pool (integer value)
-#conn_pool_ttl = 1200
-
-# Group id for Kafka consumer. Consumers in one group will coordinate message
-# consumption (string value)
-#consumer_group = oslo_messaging_consumer
-
-# Upper bound on the delay for KafkaProducer batching in seconds (floating point
-# value)
-#producer_batch_timeout = 0.0
-
-# Size of batch for the producer async send (integer value)
-#producer_batch_size = 16384
-
 
 [oslo_messaging_notifications]
 
@@ -1693,7 +1530,7 @@
 # messagingv2, routing, log, test, noop (multi valued)
 # Deprecated group/name - [DEFAULT]/notification_driver
 #driver =
-
+driver = messagingv2
 # A URL representing the messaging driver to use for notifications. If not set,
 # we fall back to the same configuration used for RPC. (string value)
 # Deprecated group/name - [DEFAULT]/notification_transport_url
@@ -1704,11 +1541,6 @@
 # Deprecated group/name - [DEFAULT]/notification_topics
 #topics = notifications
 
-# The maximum number of attempts to re-send a notification message which failed
-# to be delivered due to a recoverable error. 0 - No retry, -1 - indefinite
-# (integer value)
-#retry = -1
-
 
 [oslo_messaging_rabbit]
 
@@ -1722,31 +1554,30 @@
 #amqp_durable_queues = false
 
 # Auto-delete queues in AMQP. (boolean value)
+# Deprecated group/name - [DEFAULT]/amqp_auto_delete
 #amqp_auto_delete = false
-
-# Enable SSL (boolean value)
-#ssl = <None>
 
 # SSL version to use (valid only if SSL enabled). Valid values are TLSv1 and
 # SSLv23. SSLv2, SSLv3, TLSv1_1, and TLSv1_2 may be available on some
 # distributions. (string value)
-# Deprecated group/name - [oslo_messaging_rabbit]/kombu_ssl_version
-#ssl_version =
+# Deprecated group/name - [DEFAULT]/kombu_ssl_version
+#kombu_ssl_version =
 
 # SSL key file (valid only if SSL enabled). (string value)
-# Deprecated group/name - [oslo_messaging_rabbit]/kombu_ssl_keyfile
-#ssl_key_file =
+# Deprecated group/name - [DEFAULT]/kombu_ssl_keyfile
+#kombu_ssl_keyfile =
 
 # SSL cert file (valid only if SSL enabled). (string value)
-# Deprecated group/name - [oslo_messaging_rabbit]/kombu_ssl_certfile
-#ssl_cert_file =
+# Deprecated group/name - [DEFAULT]/kombu_ssl_certfile
+#kombu_ssl_certfile =
 
 # SSL certification authority file (valid only if SSL enabled). (string value)
-# Deprecated group/name - [oslo_messaging_rabbit]/kombu_ssl_ca_certs
-#ssl_ca_file =
+# Deprecated group/name - [DEFAULT]/kombu_ssl_ca_certs
+#kombu_ssl_ca_certs =
 
 # How long to wait before reconnecting in response to an AMQP consumer cancel
 # notification. (floating point value)
+# Deprecated group/name - [DEFAULT]/kombu_reconnect_delay
 #kombu_reconnect_delay = 1.0
 
 # EXPERIMENTAL: Possible values are: gzip, bz2. If not set compression will not
@@ -1766,6 +1597,7 @@
 
 # DEPRECATED: The RabbitMQ broker address where a single node is used. (string
 # value)
+# Deprecated group/name - [DEFAULT]/rabbit_host
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
@@ -1774,34 +1606,43 @@
 # DEPRECATED: The RabbitMQ broker port where a single node is used. (port value)
 # Minimum value: 0
 # Maximum value: 65535
+# Deprecated group/name - [DEFAULT]/rabbit_port
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
 #rabbit_port = 5672
 
 # DEPRECATED: RabbitMQ HA cluster host:port pairs. (list value)
+# Deprecated group/name - [DEFAULT]/rabbit_hosts
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
 #rabbit_hosts = $rabbit_host:$rabbit_port
 
+# Connect over SSL for RabbitMQ. (boolean value)
+# Deprecated group/name - [DEFAULT]/rabbit_use_ssl
+#rabbit_use_ssl = false
+
 # DEPRECATED: The RabbitMQ userid. (string value)
+# Deprecated group/name - [DEFAULT]/rabbit_userid
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
 #rabbit_userid = guest
 
 # DEPRECATED: The RabbitMQ password. (string value)
+# Deprecated group/name - [DEFAULT]/rabbit_password
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
 #rabbit_password = guest
 
 # The RabbitMQ login method. (string value)
-# Allowed values: PLAIN, AMQPLAIN, RABBIT-CR-DEMO
+# Deprecated group/name - [DEFAULT]/rabbit_login_method
 #rabbit_login_method = AMQPLAIN
 
 # DEPRECATED: The RabbitMQ virtual host. (string value)
+# Deprecated group/name - [DEFAULT]/rabbit_virtual_host
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
@@ -1812,6 +1653,7 @@
 
 # How long to backoff for between retries when connecting to RabbitMQ. (integer
 # value)
+# Deprecated group/name - [DEFAULT]/rabbit_retry_backoff
 #rabbit_retry_backoff = 2
 
 # Maximum interval of RabbitMQ connection retries. Default is 30 seconds.
@@ -1820,6 +1662,7 @@
 
 # DEPRECATED: Maximum number of RabbitMQ connection retries. Default is 0
 # (infinite retry count). (integer value)
+# Deprecated group/name - [DEFAULT]/rabbit_max_retries
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 #rabbit_max_retries = 0
@@ -1827,9 +1670,10 @@
 # Try to use HA queues in RabbitMQ (x-ha-policy: all). If you change this
 # option, you must wipe the RabbitMQ database. In RabbitMQ 3.0, queue mirroring
 # is no longer controlled by the x-ha-policy argument when declaring a queue. If
-# you just want to make sure that all queues (except those with auto-generated
+# you just want to make sure that all queues (except  those with auto-generated
 # names) are mirrored across all nodes, run: "rabbitmqctl set_policy HA
 # '^(?!amq\.).*' '{"ha-mode": "all"}' " (boolean value)
+# Deprecated group/name - [DEFAULT]/rabbit_ha_queues
 #rabbit_ha_queues = false
 
 # Positive integer representing duration in seconds for queue TTL (x-expires).
@@ -1852,6 +1696,7 @@
 #heartbeat_rate = 2
 
 # Deprecated, use rpc_backend=kombu+memory or rpc_backend=fake (boolean value)
+# Deprecated group/name - [DEFAULT]/fake_rabbit
 #fake_rabbit = false
 
 # Maximum number of channels to allow (integer value)
@@ -1862,6 +1707,9 @@
 
 # How often to send heartbeats for consumer's connections (integer value)
 #heartbeat_interval = 3
+
+# Enable SSL (boolean value)
+#ssl = <None>
 
 # Arguments passed to ssl.wrap_socket (dict value)
 #ssl_options = <None>
@@ -1899,207 +1747,152 @@
 # (integer value)
 #pool_stale = 60
 
+# Persist notification messages. (boolean value)
+#notification_persistence = false
+
+# Exchange name for sending notifications (string value)
+#default_notification_exchange = ${control_exchange}_notification
+
+# Max number of not acknowledged message which RabbitMQ can send to notification
+# listener. (integer value)
+#notification_listener_prefetch_count = 100
+
+# Reconnecting retry count in case of connectivity problem during sending
+# notification, -1 means infinite retry. (integer value)
+#default_notification_retry_attempts = -1
+
+# Reconnecting retry delay in case of connectivity problem during sending
+# notification message (floating point value)
+#notification_retry_delay = 0.25
+
+# Time to live for rpc queues without consumers in seconds. (integer value)
+#rpc_queue_expiration = 60
+
+# Exchange name for sending RPC messages (string value)
+#default_rpc_exchange = ${control_exchange}_rpc
+
+# Exchange name for receiving RPC replies (string value)
+#rpc_reply_exchange = ${control_exchange}_rpc_reply
+
+# Max number of not acknowledged message which RabbitMQ can send to rpc
+# listener. (integer value)
+#rpc_listener_prefetch_count = 100
+
+# Max number of not acknowledged message which RabbitMQ can send to rpc reply
+# listener. (integer value)
+#rpc_reply_listener_prefetch_count = 100
+
+# Reconnecting retry count in case of connectivity problem during sending reply.
+# -1 means infinite retry during rpc_timeout (integer value)
+#rpc_reply_retry_attempts = -1
+
+# Reconnecting retry delay in case of connectivity problem during sending reply.
+# (floating point value)
+#rpc_reply_retry_delay = 0.25
+
+# Reconnecting retry count in case of connectivity problem during sending RPC
+# message, -1 means infinite retry. If actual retry attempts in not 0 the rpc
+# request could be processed more then one time (integer value)
+#default_rpc_retry_attempts = -1
+
+# Reconnecting retry delay in case of connectivity problem during sending RPC
+# message (floating point value)
+#rpc_retry_delay = 0.25
+
+
+[oslo_messaging_zmq]
+
+#
+# From oslo.messaging
+#
+
+# ZeroMQ bind address. Should be a wildcard (*), an ethernet interface, or IP.
+# The "host" option should point or resolve to this address. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_bind_address
+#rpc_zmq_bind_address = *
+
+# MatchMaker driver. (string value)
+# Allowed values: redis, dummy
+# Deprecated group/name - [DEFAULT]/rpc_zmq_matchmaker
+#rpc_zmq_matchmaker = redis
+
+# Number of ZeroMQ contexts, defaults to 1. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_contexts
+#rpc_zmq_contexts = 1
+
+# Maximum number of ingress messages to locally buffer per topic. Default is
+# unlimited. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_topic_backlog
+#rpc_zmq_topic_backlog = <None>
+
+# Directory for holding IPC sockets. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_ipc_dir
+#rpc_zmq_ipc_dir = /var/run/openstack
+
+# Name of this node. Must be a valid hostname, FQDN, or IP address. Must match
+# "host" option, if running Nova. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_host
+#rpc_zmq_host = localhost
+
+# Seconds to wait before a cast expires (TTL). The default value of -1 specifies
+# an infinite linger period. The value of 0 specifies no linger period. Pending
+# messages shall be discarded immediately when the socket is closed. Only
+# supported by impl_zmq. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_cast_timeout
+#rpc_cast_timeout = -1
+
+# The default number of seconds that poll should wait. Poll raises timeout
+# exception when timeout expired. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_poll_timeout
+#rpc_poll_timeout = 1
+
+# Expiration timeout in seconds of a name service record about existing target (
+# < 0 means no timeout). (integer value)
+# Deprecated group/name - [DEFAULT]/zmq_target_expire
+#zmq_target_expire = 300
+
+# Update period in seconds of a name service record about existing target.
+# (integer value)
+# Deprecated group/name - [DEFAULT]/zmq_target_update
+#zmq_target_update = 180
+
+# Use PUB/SUB pattern for fanout methods. PUB/SUB always uses proxy. (boolean
+# value)
+# Deprecated group/name - [DEFAULT]/use_pub_sub
+#use_pub_sub = true
+
+# Use ROUTER remote proxy. (boolean value)
+# Deprecated group/name - [DEFAULT]/use_router_proxy
+#use_router_proxy = true
+
+# Minimal port number for random ports range. (port value)
+# Minimum value: 0
+# Maximum value: 65535
+# Deprecated group/name - [DEFAULT]/rpc_zmq_min_port
+#rpc_zmq_min_port = 49153
+
+# Maximal port number for random ports range. (integer value)
+# Minimum value: 1
+# Maximum value: 65536
+# Deprecated group/name - [DEFAULT]/rpc_zmq_max_port
+#rpc_zmq_max_port = 65536
+
+# Number of retries to find free port number before fail with ZMQBindError.
+# (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_bind_port_retries
+#rpc_zmq_bind_port_retries = 100
+
 # Default serialization mechanism for serializing/deserializing
 # outgoing/incoming messages (string value)
 # Allowed values: json, msgpack
-#default_serializer_type = json
-
-# Persist notification messages. (boolean value)
-#notification_persistence = false
-
-# Exchange name for sending notifications (string value)
-#default_notification_exchange = ${control_exchange}_notification
-
-# Max number of not acknowledged message which RabbitMQ can send to notification
-# listener. (integer value)
-#notification_listener_prefetch_count = 100
-
-# Reconnecting retry count in case of connectivity problem during sending
-# notification, -1 means infinite retry. (integer value)
-#default_notification_retry_attempts = -1
-
-# Reconnecting retry delay in case of connectivity problem during sending
-# notification message (floating point value)
-#notification_retry_delay = 0.25
-
-# Time to live for rpc queues without consumers in seconds. (integer value)
-#rpc_queue_expiration = 60
-
-# Exchange name for sending RPC messages (string value)
-#default_rpc_exchange = ${control_exchange}_rpc
-
-# Exchange name for receiving RPC replies (string value)
-#rpc_reply_exchange = ${control_exchange}_rpc_reply
-
-# Max number of not acknowledged message which RabbitMQ can send to rpc
-# listener. (integer value)
-#rpc_listener_prefetch_count = 100
-
-# Max number of not acknowledged message which RabbitMQ can send to rpc reply
-# listener. (integer value)
-#rpc_reply_listener_prefetch_count = 100
-
-# Reconnecting retry count in case of connectivity problem during sending reply.
-# -1 means infinite retry during rpc_timeout (integer value)
-#rpc_reply_retry_attempts = -1
-
-# Reconnecting retry delay in case of connectivity problem during sending reply.
-# (floating point value)
-#rpc_reply_retry_delay = 0.25
-
-# Reconnecting retry count in case of connectivity problem during sending RPC
-# message, -1 means infinite retry. If actual retry attempts in not 0 the rpc
-# request could be processed more than one time (integer value)
-#default_rpc_retry_attempts = -1
-
-# Reconnecting retry delay in case of connectivity problem during sending RPC
-# message (floating point value)
-#rpc_retry_delay = 0.25
-
-
-[oslo_messaging_zmq]
-
-#
-# From oslo.messaging
-#
-
-# ZeroMQ bind address. Should be a wildcard (*), an ethernet interface, or IP.
-# The "host" option should point or resolve to this address. (string value)
-#rpc_zmq_bind_address = *
-
-# MatchMaker driver. (string value)
-# Allowed values: redis, sentinel, dummy
-#rpc_zmq_matchmaker = redis
-
-# Number of ZeroMQ contexts, defaults to 1. (integer value)
-#rpc_zmq_contexts = 1
-
-# Maximum number of ingress messages to locally buffer per topic. Default is
-# unlimited. (integer value)
-#rpc_zmq_topic_backlog = <None>
-
-# Directory for holding IPC sockets. (string value)
-#rpc_zmq_ipc_dir = /var/run/openstack
-
-# Name of this node. Must be a valid hostname, FQDN, or IP address. Must match
-# "host" option, if running Nova. (string value)
-#rpc_zmq_host = localhost
-
-# Number of seconds to wait before all pending messages will be sent after
-# closing a socket. The default value of -1 specifies an infinite linger period.
-# The value of 0 specifies no linger period. Pending messages shall be discarded
-# immediately when the socket is closed. Positive values specify an upper bound
-# for the linger period. (integer value)
-# Deprecated group/name - [DEFAULT]/rpc_cast_timeout
-#zmq_linger = -1
-
-# The default number of seconds that poll should wait. Poll raises timeout
-# exception when timeout expired. (integer value)
-#rpc_poll_timeout = 1
-
-# Expiration timeout in seconds of a name service record about existing target (
-# < 0 means no timeout). (integer value)
-#zmq_target_expire = 300
-
-# Update period in seconds of a name service record about existing target.
-# (integer value)
-#zmq_target_update = 180
-
-# Use PUB/SUB pattern for fanout methods. PUB/SUB always uses proxy. (boolean
-# value)
-#use_pub_sub = false
-
-# Use ROUTER remote proxy. (boolean value)
-#use_router_proxy = false
-
-# This option makes direct connections dynamic or static. It makes sense only
-# with use_router_proxy=False which means to use direct connections for direct
-# message types (ignored otherwise). (boolean value)
-#use_dynamic_connections = false
-
-# How many additional connections to a host will be made for failover reasons.
-# This option is actual only in dynamic connections mode. (integer value)
-#zmq_failover_connections = 2
-
-# Minimal port number for random ports range. (port value)
-# Minimum value: 0
-# Maximum value: 65535
-#rpc_zmq_min_port = 49153
-
-# Maximal port number for random ports range. (integer value)
-# Minimum value: 1
-# Maximum value: 65536
-#rpc_zmq_max_port = 65536
-
-# Number of retries to find free port number before fail with ZMQBindError.
-# (integer value)
-#rpc_zmq_bind_port_retries = 100
-
-# Default serialization mechanism for serializing/deserializing
-# outgoing/incoming messages (string value)
-# Allowed values: json, msgpack
+# Deprecated group/name - [DEFAULT]/rpc_zmq_serialization
 #rpc_zmq_serialization = json
 
 # This option configures round-robin mode in zmq socket. True means not keeping
 # a queue when server side disconnects. False means to keep queue and messages
 # even if server is disconnected, when the server appears we send all
 # accumulated messages to it. (boolean value)
-#zmq_immediate = true
-
-# Enable/disable TCP keepalive (KA) mechanism. The default value of -1 (or any
-# other negative value) means to skip any overrides and leave it to OS default;
-# 0 and 1 (or any other positive value) mean to disable and enable the option
-# respectively. (integer value)
-#zmq_tcp_keepalive = -1
-
-# The duration between two keepalive transmissions in idle condition. The unit
-# is platform dependent, for example, seconds in Linux, milliseconds in Windows
-# etc. The default value of -1 (or any other negative value and 0) means to skip
-# any overrides and leave it to OS default. (integer value)
-#zmq_tcp_keepalive_idle = -1
-
-# The number of retransmissions to be carried out before declaring that remote
-# end is not available. The default value of -1 (or any other negative value and
-# 0) means to skip any overrides and leave it to OS default. (integer value)
-#zmq_tcp_keepalive_cnt = -1
-
-# The duration between two successive keepalive retransmissions, if
-# acknowledgement to the previous keepalive transmission is not received. The
-# unit is platform dependent, for example, seconds in Linux, milliseconds in
-# Windows etc. The default value of -1 (or any other negative value and 0) means
-# to skip any overrides and leave it to OS default. (integer value)
-#zmq_tcp_keepalive_intvl = -1
-
-# Maximum number of (green) threads to work concurrently. (integer value)
-#rpc_thread_pool_size = 100
-
-# Expiration timeout in seconds of a sent/received message after which it is not
-# tracked anymore by a client/server. (integer value)
-#rpc_message_ttl = 300
-
-# Wait for message acknowledgements from receivers. This mechanism works only
-# via proxy without PUB/SUB. (boolean value)
-#rpc_use_acks = false
-
-# Number of seconds to wait for an ack from a cast/call. After each retry
-# attempt this timeout is multiplied by some specified multiplier. (integer
-# value)
-#rpc_ack_timeout_base = 15
-
-# Number to multiply base ack timeout by after each retry attempt. (integer
-# value)
-#rpc_ack_timeout_multiplier = 2
-
-# Default number of message sending attempts in case of any problems occurred:
-# positive value N means at most N retries, 0 means no retries, None or -1 (or
-# any other negative values) mean to retry forever. This option is used only if
-# acknowledgments are enabled. (integer value)
-#rpc_retry_attempts = 3
-
-# List of publisher hosts SubConsumer can subscribe on. This option has higher
-# priority then the default publishers list taken from the matchmaker. (list
-# value)
-#subscribe_on =
+#zmq_immediate = false
 
 
 [oslo_policy]
@@ -2108,10 +1901,13 @@
 # From oslo.policy
 #
 
-# The file that defines policies. (string value)
+# The JSON file that defines policies. (string value)
+# Deprecated group/name - [DEFAULT]/policy_file
 #policy_file = policy.json
+policy_file = /etc/glance/policy.json
 
 # Default rule. Enforced when a requested rule is not found. (string value)
+# Deprecated group/name - [DEFAULT]/policy_default_rule
 #policy_default_rule = default
 
 # Directories where policy configuration files are stored. They can be relative
@@ -2119,6 +1915,7 @@
 # absolute paths. The file defined by policy_file must exist for these
 # directories to be searched.  Missing or empty directories are ignored. (multi
 # valued)
+# Deprecated group/name - [DEFAULT]/policy_dirs
 #policy_dirs = policy.d
 
 
@@ -2148,6 +1945,7 @@
 #
 #  (string value)
 #flavor = keystone
+flavor = keystone
 
 #
 # Name of the paste configuration file.
@@ -2239,39 +2037,5 @@
 # Examples of possible values:
 #
 # * messaging://: use oslo_messaging driver for sending notifications.
-# * mongodb://127.0.0.1:27017 : use mongodb driver for sending notifications.
-# * elasticsearch://127.0.0.1:9200 : use elasticsearch driver for sending
-# notifications.
 #  (string value)
 #connection_string = messaging://
-
-#
-# Document type for notification indexing in elasticsearch.
-#  (string value)
-#es_doc_type = notification
-
-#
-# This parameter is a time value parameter (for example: es_scroll_time=2m),
-# indicating for how long the nodes that participate in the search will maintain
-# relevant resources in order to continue and support it.
-#  (string value)
-#es_scroll_time = 2m
-
-#
-# Elasticsearch splits large requests in batches. This parameter defines
-# maximum size of each batch (for example: es_scroll_size=10000).
-#  (integer value)
-#es_scroll_size = 10000
-
-#
-# Redissentinel provides a timeout option on the connections.
-# This parameter defines that timeout (for example: socket_timeout=0.1).
-#  (floating point value)
-#socket_timeout = 0.1
-
-#
-# Redissentinel uses a service name to identify a master redis service.
-# This parameter defines the name (for example:
-# sentinal_service_name=mymaster).
-#  (string value)
-#sentinel_service_name = mymaster

2018-01-28 12:59:03,327 [salt.state       ][INFO    ][20741] Completed state [/etc/glance/glance-registry.conf] at time 12:59:03.327078 duration_in_ms=138.834
2018-01-28 12:59:03,327 [salt.state       ][INFO    ][20741] Running state [/etc/glance/glance-scrubber.conf] at time 12:59:03.327551
2018-01-28 12:59:03,327 [salt.state       ][INFO    ][20741] Executing state file.managed for /etc/glance/glance-scrubber.conf
2018-01-28 12:59:03,356 [salt.fileclient  ][INFO    ][20741] Fetching file from saltenv 'base', ** done ** 'glance/files/pike/glance-scrubber.conf.Debian'
2018-01-28 12:59:03,432 [salt.state       ][INFO    ][20741] File changed:
--- 
+++ 
@@ -1,3 +1,4 @@
+
 [DEFAULT]
 
 #
@@ -226,8 +227,8 @@
 #  (boolean value)
 # This option is deprecated for removal since Newton.
 # Its value may be silently ignored in the future.
-# Reason: This option will be removed in the Pike release or later because the
-# same functionality can be achieved with greater granularity by using policies.
+# Reason: This option will be removed in the Ocata release because the same
+# functionality can be achieved with greater granularity by using policies.
 # Please see the Newton release notes for more information.
 #show_multiple_locations = false
 
@@ -409,7 +410,7 @@
 # Related options:
 #     * None
 #
-#  (unknown value)
+#  (string value)
 #pydev_worker_debug_host = localhost
 
 #
@@ -473,56 +474,6 @@
 #
 #  (string value)
 #digest_algorithm = sha256
-
-#
-# The URL provides location where the temporary data will be stored
-#
-# This option is for Glance internal use only. Glance will save the
-# image data uploaded by the user to 'staging' endpoint during the
-# image import process.
-#
-# This option does not change the 'staging' API endpoint by any means.
-#
-# NOTE: It is discouraged to use same path as [task]/work_dir
-#
-# NOTE: 'file://<absolute-directory-path>' is the only option
-# api_image_import flow will support for now.
-#
-# NOTE: The staging path must be on shared filesystem available to all
-# Glance API nodes.
-#
-# Possible values:
-#     * String starting with 'file://' followed by absolute FS path
-#
-# Related options:
-#     * [task]/work_dir
-#     * [DEFAULT]/enable_image_import (*deprecated*)
-#
-#  (string value)
-#node_staging_uri = file:///tmp/staging/
-
-# DEPRECATED:
-# Enables the Image Import workflow introduced in Pike
-#
-# As '[DEFAULT]/node_staging_uri' is required for the Image
-# Import, it's disabled per default in Pike, enabled per
-# default in Queens and removed in Rocky. This allows Glance to
-# operate with previous version configs upon upgrade.
-#
-# Setting this option to True will enable the endpoints related
-# to Image Import Refactoring work.
-#
-# Related options:
-#     * [DEFUALT]/node_staging_uri (boolean value)
-# This option is deprecated for removal since Pike.
-# Its value may be silently ignored in the future.
-# Reason:
-# This option is deprecated for removal in Rocky.
-#
-# It was introduced to make sure that the API is not enabled
-# before the '[DEFAULT]/node_staging_uri' is defined and is
-# long term redundant.
-#enable_image_import = false
 
 #
 # The amount of time, in seconds, to delay image scrubbing.
@@ -670,6 +621,7 @@
 #  (integer value)
 # Minimum value: 0
 #wakeup_time = 300
+wakeup_time = 300
 
 #
 # Run scrubber as a daemon.
@@ -693,6 +645,7 @@
 #
 #  (boolean value)
 #daemon = false
+daemon = false
 
 #
 # Protocol to use for communication with the registry server.
@@ -915,8 +868,9 @@
 # Related options:
 #     * None
 #
-#  (unknown value)
+#  (string value)
 #registry_host = 0.0.0.0
+registry_host = 192.168.10.10
 
 #
 # Port the registry server is listening on.
@@ -931,6 +885,7 @@
 # Minimum value: 0
 # Maximum value: 65535
 #registry_port = 9191
+registry_port = 9191
 
 #
 # From oslo.log
@@ -940,6 +895,12 @@
 # INFO level. (boolean value)
 # Note: This option can be changed without restarting.
 #debug = false
+
+# DEPRECATED: If set to false, the logging level will be set to WARNING instead
+# of the default INFO level. (boolean value)
+# This option is deprecated for removal.
+# Its value may be silently ignored in the future.
+#verbose = true
 
 # The name of a logging configuration file. This file is appended to any
 # existing logging configuration files. For details about logging configuration
@@ -961,6 +922,7 @@
 # log_config_append is set. (string value)
 # Deprecated group/name - [DEFAULT]/logfile
 #log_file = <None>
+log_file = /var/log/glance/scrubber.log
 
 # (Optional) The base directory used for relative log_file  paths. This option
 # is ignored if log_config_append is set. (string value)
@@ -979,19 +941,13 @@
 # set. (boolean value)
 #use_syslog = false
 
-# Enable journald for logging. If running in a systemd environment you may wish
-# to enable journal support. Doing so will use the journal native protocol which
-# includes structured metadata in addition to log messages.This option is
-# ignored if log_config_append is set. (boolean value)
-#use_journal = false
-
 # Syslog facility to receive log lines. This option is ignored if
 # log_config_append is set. (string value)
 #syslog_log_facility = LOG_USER
 
 # Log output to standard error. This option is ignored if log_config_append is
 # set. (boolean value)
-#use_stderr = false
+#use_stderr = true
 
 # Format string to use for log messages with context. (string value)
 #logging_context_format_string = %(asctime)s.%(msecs)03d %(process)d %(levelname)s %(name)s [%(request_id)s %(user_identity)s] %(instance)s%(message)s
@@ -1013,7 +969,7 @@
 
 # List of package logging levels in logger=LEVEL pairs. This option is ignored
 # if log_config_append is set. (list value)
-#default_log_levels = amqp=WARN,amqplib=WARN,boto=WARN,qpid=WARN,sqlalchemy=WARN,suds=INFO,oslo.messaging=INFO,oslo_messaging=INFO,iso8601=WARN,requests.packages.urllib3.connectionpool=WARN,urllib3.connectionpool=WARN,websocket=WARN,requests.packages.urllib3.util.retry=WARN,urllib3.util.retry=WARN,keystonemiddleware=WARN,routes.middleware=WARN,stevedore=WARN,taskflow=WARN,keystoneauth=WARN,oslo.cache=INFO,dogpile.core.dogpile=INFO
+#default_log_levels = amqp=WARN,amqplib=WARN,boto=WARN,qpid=WARN,sqlalchemy=WARN,suds=INFO,oslo.messaging=INFO,iso8601=WARN,requests.packages.urllib3.connectionpool=WARN,urllib3.connectionpool=WARN,websocket=WARN,requests.packages.urllib3.util.retry=WARN,urllib3.util.retry=WARN,keystonemiddleware=WARN,routes.middleware=WARN,stevedore=WARN,taskflow=WARN,keystoneauth=WARN,oslo.cache=INFO,dogpile.core.dogpile=INFO
 
 # Enables or disables publication of error events. (boolean value)
 #publish_errors = false
@@ -1025,18 +981,6 @@
 # value)
 #instance_uuid_format = "[instance: %(uuid)s] "
 
-# Interval, number of seconds, of log rate limiting. (integer value)
-#rate_limit_interval = 0
-
-# Maximum number of logged messages per rate_limit_interval. (integer value)
-#rate_limit_burst = 0
-
-# Log level name used by rate limiting: CRITICAL, ERROR, INFO, WARNING, DEBUG or
-# empty string. Logs with level greater or equal to rate_limit_except_level are
-# not filtered. An empty string means that all levels are filtered. (string
-# value)
-#rate_limit_except_level = CRITICAL
-
 # Enables or disables fatal status of deprecations. (boolean value)
 #fatal_deprecations = false
 
@@ -1047,7 +991,16 @@
 # From oslo.db
 #
 
+# DEPRECATED: The file name to use with SQLite. (string value)
+# Deprecated group/name - [DEFAULT]/sqlite_db
+# This option is deprecated for removal.
+# Its value may be silently ignored in the future.
+# Reason: Should use config option connection or slave_connection to connect the
+# database.
+#sqlite_db = oslo.sqlite
+
 # If True, SQLite uses synchronous mode. (boolean value)
+# Deprecated group/name - [DEFAULT]/sqlite_synchronous
 #sqlite_synchronous = true
 
 # The back end to use for the database. (string value)
@@ -1070,10 +1023,6 @@
 # the server configuration, set this to no value. Example: mysql_sql_mode=
 # (string value)
 #mysql_sql_mode = TRADITIONAL
-
-# If True, transparently enables support for handling MySQL Cluster (NDB).
-# (boolean value)
-#mysql_enable_ndb = false
 
 # Timeout before idle SQL connections are reaped. (integer value)
 # Deprecated group/name - [DEFAULT]/sql_idle_timeout
@@ -1233,7 +1182,7 @@
 # /store-capabilities.html
 #
 # For more information on setting up a particular store in your
-# deployment and help with the usage of this feature, please contact
+# deplyment and help with the usage of this feature, please contact
 # the storage driver maintainers listed here:
 # http://docs.openstack.org/developer/glance_store/drivers/index.html
 #
@@ -1262,8 +1211,8 @@
 #
 # Possible values:
 #     * A string of of the following form:
-#       ``<service_type>:<service_name>:<interface>``
-#       At least ``service_type`` and ``interface`` should be specified.
+#       ``<service_type>:<service_name>:<endpoint_type>``
+#       At least ``service_type`` and ``endpoint_type`` should be specified.
 #       ``service_name`` can be omitted.
 #
 # Related options:
@@ -1486,25 +1435,6 @@
 #
 #  (string value)
 #rootwrap_config = /etc/glance/rootwrap.conf
-
-#
-# Volume type that will be used for volume creation in cinder.
-#
-# Some cinder backends can have several volume types to optimize storage usage.
-# Adding this option allows an operator to choose a specific volume type
-# in cinder that can be optimized for images.
-#
-# If this is not set, then the default volume type specified in the cinder
-# configuration will be used for volume creation.
-#
-# Possible values:
-#     * A valid volume type from cinder
-#
-# Related options:
-#     * None
-#
-#  (string value)
-#cinder_volume_type = <None>
 
 #
 # Directory to which the filesystem backend store writes images.
@@ -1585,7 +1515,6 @@
 #     * None
 #
 #  (string value)
-#filesystem_store_metadata_file = <None>
 
 #
 # File access permissions for the image files.
@@ -1842,7 +1771,7 @@
 # Related Options:
 #     * sheepdog_store_port
 #
-#  (unknown value)
+#  (string value)
 #sheepdog_store_address = 127.0.0.1
 
 #
@@ -2087,16 +2016,12 @@
 # images in its own account. More details multi-tenant store can be found at
 # https://wiki.openstack.org/wiki/GlanceSwiftTenantSpecificStorage
 #
-# NOTE: If using multi-tenant swift store, please make sure
-# that you do not set a swift configuration file with the
-# 'swift_store_config_file' option.
-#
 # Possible values:
 #     * True
 #     * False
 #
 # Related options:
-#     * swift_store_config_file
+#     * None
 #
 #  (boolean value)
 #swift_store_multi_tenant = false
@@ -2312,15 +2237,12 @@
 # option is highly recommended while using Swift storage backend for
 # image storage as it avoids storage of credentials in the database.
 #
-# NOTE: Please do not configure this option if you have set
-# ``swift_store_multi_tenant`` to ``True``.
-#
 # Possible values:
 #     * String value representing an absolute path on the glance-api
 #       node
 #
 # Related options:
-#     * swift_store_multi_tenant
+#     * None
 #
 #  (string value)
 #swift_store_config_file = <None>
@@ -2341,7 +2263,7 @@
 #     * vmware_server_username
 #     * vmware_server_password
 #
-#  (unknown value)
+#  (string value)
 #vmware_server_host = 127.0.0.1
 
 #
@@ -2511,12 +2433,14 @@
 #
 
 # Enables or disables inter-process locks. (boolean value)
+# Deprecated group/name - [DEFAULT]/disable_process_locking
 #disable_process_locking = false
 
 # Directory to use for lock files.  For security, the specified directory should
 # only be writable by the user running the processes that need locking. Defaults
 # to environment variable OSLO_LOCK_PATH. If external locks are used, a lock
 # path must be set. (string value)
+# Deprecated group/name - [DEFAULT]/lock_path
 #lock_path = <None>
 
 
@@ -2526,10 +2450,12 @@
 # From oslo.policy
 #
 
-# The file that defines policies. (string value)
+# The JSON file that defines policies. (string value)
+# Deprecated group/name - [DEFAULT]/policy_file
 #policy_file = policy.json
 
 # Default rule. Enforced when a requested rule is not found. (string value)
+# Deprecated group/name - [DEFAULT]/policy_default_rule
 #policy_default_rule = default
 
 # Directories where policy configuration files are stored. They can be relative
@@ -2537,4 +2463,5 @@
 # absolute paths. The file defined by policy_file must exist for these
 # directories to be searched.  Missing or empty directories are ignored. (multi
 # valued)
+# Deprecated group/name - [DEFAULT]/policy_dirs
 #policy_dirs = policy.d

2018-01-28 12:59:03,433 [salt.state       ][INFO    ][20741] Completed state [/etc/glance/glance-scrubber.conf] at time 12:59:03.433193 duration_in_ms=105.641
2018-01-28 12:59:03,433 [salt.state       ][INFO    ][20741] Running state [/etc/glance/glance-api.conf] at time 12:59:03.433646
2018-01-28 12:59:03,433 [salt.state       ][INFO    ][20741] Executing state file.managed for /etc/glance/glance-api.conf
2018-01-28 12:59:03,472 [salt.fileclient  ][INFO    ][20741] Fetching file from saltenv 'base', ** done ** 'glance/files/pike/glance-api.conf.Debian'
2018-01-28 12:59:03,693 [salt.state       ][INFO    ][20741] File changed:
--- 
+++ 
@@ -1,3 +1,5 @@
+
+
 [DEFAULT]
 
 #
@@ -79,9 +81,9 @@
 #max_request_id_length = 64
 
 #
-# Public url endpoint to use for Glance versions response.
-#
-# This is the public url endpoint that will appear in the Glance
+# Public url endpoint to use for Glance/Glare versions response.
+#
+# This is the public url endpoint that will appear in the Glance/Glare
 # "versions" response. If no value is specified, the endpoint that is
 # displayed in the version's response is that of the host running the
 # API service. Change the endpoint to represent the proxy URL if the
@@ -233,6 +235,7 @@
 #  (integer value)
 # Minimum value: 1
 #limit_param_default = 25
+limit_param_default = 25
 
 #
 # Maximum number of results that could be returned by a request.
@@ -258,6 +261,7 @@
 #  (integer value)
 # Minimum value: 1
 #api_limit_max = 1000
+api_limit_max = 1000
 
 #
 # Show direct image location when returning an image.
@@ -290,6 +294,7 @@
 #
 #  (boolean value)
 #show_image_direct_url = false
+show_image_direct_url = true
 
 # DEPRECATED:
 # Show all image locations when returning an image.
@@ -321,10 +326,11 @@
 #  (boolean value)
 # This option is deprecated for removal since Newton.
 # Its value may be silently ignored in the future.
-# Reason: This option will be removed in the Pike release or later because the
-# same functionality can be achieved with greater granularity by using policies.
+# Reason: This option will be removed in the Ocata release because the same
+# functionality can be achieved with greater granularity by using policies.
 # Please see the Newton release notes for more information.
 #show_multiple_locations = false
+show_multiple_locations = true
 
 #
 # Maximum size of image a user can upload in bytes.
@@ -409,6 +415,7 @@
 #
 #  (boolean value)
 #enable_v1_api = true
+enable_v1_api=False
 
 #
 # Deploy the v2 OpenStack Images API.
@@ -439,6 +446,7 @@
 #
 #  (boolean value)
 #enable_v2_api = true
+enable_v2_api=True
 
 #
 # Deploy the v1 API Registry service.
@@ -504,7 +512,7 @@
 # Related options:
 #     * None
 #
-#  (unknown value)
+#  (string value)
 #pydev_worker_debug_host = localhost
 
 #
@@ -568,56 +576,6 @@
 #
 #  (string value)
 #digest_algorithm = sha256
-
-#
-# The URL provides location where the temporary data will be stored
-#
-# This option is for Glance internal use only. Glance will save the
-# image data uploaded by the user to 'staging' endpoint during the
-# image import process.
-#
-# This option does not change the 'staging' API endpoint by any means.
-#
-# NOTE: It is discouraged to use same path as [task]/work_dir
-#
-# NOTE: 'file://<absolute-directory-path>' is the only option
-# api_image_import flow will support for now.
-#
-# NOTE: The staging path must be on shared filesystem available to all
-# Glance API nodes.
-#
-# Possible values:
-#     * String starting with 'file://' followed by absolute FS path
-#
-# Related options:
-#     * [task]/work_dir
-#     * [DEFAULT]/enable_image_import (*deprecated*)
-#
-#  (string value)
-#node_staging_uri = file:///tmp/staging/
-
-# DEPRECATED:
-# Enables the Image Import workflow introduced in Pike
-#
-# As '[DEFAULT]/node_staging_uri' is required for the Image
-# Import, it's disabled per default in Pike, enabled per
-# default in Queens and removed in Rocky. This allows Glance to
-# operate with previous version configs upon upgrade.
-#
-# Setting this option to True will enable the endpoints related
-# to Image Import Refactoring work.
-#
-# Related options:
-#     * [DEFUALT]/node_staging_uri (boolean value)
-# This option is deprecated for removal since Pike.
-# Its value may be silently ignored in the future.
-# Reason:
-# This option is deprecated for removal in Rocky.
-#
-# It was introduced to make sure that the API is not enabled
-# before the '[DEFAULT]/node_staging_uri' is defined and is
-# long term redundant.
-#enable_image_import = false
 
 #
 # Strategy to determine the preference order of image locations.
@@ -646,6 +604,9 @@
 # Allowed values: location_order, store_type
 #location_strategy = location_order
 
+location_strategy = location_order
+
+
 #
 # The location of the property protection file.
 #
@@ -660,7 +621,7 @@
 # protections won't be enforced. If a value is specified and the file
 # is not found, the glance-api service will fail to start.
 # More information on property protections can be found at:
-# https://docs.openstack.org/glance/latest/admin/property-protections.html
+# http://docs.openstack.org/developer/glance/property-protections.html
 #
 # Possible values:
 #     * Empty string
@@ -686,8 +647,7 @@
 # policy.json is used to express property protections for each
 # of the CRUD operations. Examples of how property protections
 # are enforced based on ``roles`` or ``policies`` can be found at:
-# https://docs.openstack.org/glance/latest/admin/property-
-# protections.html#examples
+# http://docs.openstack.org/developer/glance/property-protections.html#examples
 #
 # Possible values:
 #     * roles
@@ -738,8 +698,9 @@
 # Related options:
 #     * None
 #
-#  (unknown value)
+#  (string value)
 #bind_host = 0.0.0.0
+bind_host = 192.168.10.13
 
 #
 # Port number on which the server will listen.
@@ -759,6 +720,7 @@
 # Minimum value: 0
 # Maximum value: 65535
 #bind_port = <None>
+bind_port = 9292
 
 #
 # Number of Glance worker processes to start.
@@ -783,6 +745,7 @@
 #  (integer value)
 # Minimum value: 0
 #workers = <None>
+workers = 8
 
 #
 # Maximum line size of message headers.
@@ -1039,6 +1002,7 @@
 #  (integer value)
 # Minimum value: 0
 #image_cache_max_size = 10737418240
+
 
 #
 # The amount of time, in seconds, an incomplete image remains in the cache.
@@ -1154,8 +1118,9 @@
 # Related options:
 #     * None
 #
-#  (unknown value)
+#  (string value)
 #registry_host = 0.0.0.0
+registry_host = 192.168.10.10
 
 #
 # Port the registry server is listening on.
@@ -1170,6 +1135,7 @@
 # Minimum value: 0
 # Maximum value: 65535
 #registry_port = 9191
+registry_port = 9191
 
 # DEPRECATED: Whether to pass through the user token when making requests to the
 # registry. To prevent failures with token expiration during big files upload,
@@ -1245,6 +1211,9 @@
 # Keystone trusts support.
 #auth_region = <None>
 
+auth_region = RegionOne
+
+
 #
 # Protocol to use for communication with the registry server.
 #
@@ -1271,6 +1240,7 @@
 #  (string value)
 # Allowed values: http, https
 #registry_client_protocol = http
+registry_client_protocol = http
 
 #
 # Absolute path to the private key file.
@@ -1337,7 +1307,6 @@
 #     * registry_client_insecure
 #
 #  (string value)
-#registry_client_ca_file = /etc/ssl/cafile/file.ca
 
 #
 # Set verification of the registry server certificate.
@@ -1498,6 +1467,14 @@
 # INFO level. (boolean value)
 # Note: This option can be changed without restarting.
 #debug = false
+debug = false
+
+# DEPRECATED: If set to false, the logging level will be set to WARNING instead
+# of the default INFO level. (boolean value)
+# This option is deprecated for removal.
+# Its value may be silently ignored in the future.
+#verbose = true
+verbose = true
 
 # The name of a logging configuration file. This file is appended to any
 # existing logging configuration files. For details about logging configuration
@@ -1519,6 +1496,7 @@
 # log_config_append is set. (string value)
 # Deprecated group/name - [DEFAULT]/logfile
 #log_file = <None>
+log_file = /var/log/glance/api.log
 
 # (Optional) The base directory used for relative log_file  paths. This option
 # is ignored if log_config_append is set. (string value)
@@ -1537,12 +1515,6 @@
 # set. (boolean value)
 #use_syslog = false
 
-# Enable journald for logging. If running in a systemd environment you may wish
-# to enable journal support. Doing so will use the journal native protocol which
-# includes structured metadata in addition to log messages.This option is
-# ignored if log_config_append is set. (boolean value)
-#use_journal = false
-
 # Syslog facility to receive log lines. This option is ignored if
 # log_config_append is set. (string value)
 #syslog_log_facility = LOG_USER
@@ -1571,7 +1543,7 @@
 
 # List of package logging levels in logger=LEVEL pairs. This option is ignored
 # if log_config_append is set. (list value)
-#default_log_levels = amqp=WARN,amqplib=WARN,boto=WARN,qpid=WARN,sqlalchemy=WARN,suds=INFO,oslo.messaging=INFO,oslo_messaging=INFO,iso8601=WARN,requests.packages.urllib3.connectionpool=WARN,urllib3.connectionpool=WARN,websocket=WARN,requests.packages.urllib3.util.retry=WARN,urllib3.util.retry=WARN,keystonemiddleware=WARN,routes.middleware=WARN,stevedore=WARN,taskflow=WARN,keystoneauth=WARN,oslo.cache=INFO,dogpile.core.dogpile=INFO
+#default_log_levels = amqp=WARN,amqplib=WARN,boto=WARN,qpid=WARN,sqlalchemy=WARN,suds=INFO,oslo.messaging=INFO,iso8601=WARN,requests.packages.urllib3.connectionpool=WARN,urllib3.connectionpool=WARN,websocket=WARN,requests.packages.urllib3.util.retry=WARN,urllib3.util.retry=WARN,keystonemiddleware=WARN,routes.middleware=WARN,stevedore=WARN,taskflow=WARN,keystoneauth=WARN,oslo.cache=INFO,dogpile.core.dogpile=INFO
 
 # Enables or disables publication of error events. (boolean value)
 #publish_errors = false
@@ -1603,6 +1575,7 @@
 #
 
 # Size of RPC connection pool. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_conn_pool_size
 #rpc_conn_pool_size = 30
 
 # The pool size limit for connections expiration policy (integer value)
@@ -1613,24 +1586,30 @@
 
 # ZeroMQ bind address. Should be a wildcard (*), an ethernet interface, or IP.
 # The "host" option should point or resolve to this address. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_bind_address
 #rpc_zmq_bind_address = *
 
 # MatchMaker driver. (string value)
-# Allowed values: redis, sentinel, dummy
+# Allowed values: redis, dummy
+# Deprecated group/name - [DEFAULT]/rpc_zmq_matchmaker
 #rpc_zmq_matchmaker = redis
 
 # Number of ZeroMQ contexts, defaults to 1. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_contexts
 #rpc_zmq_contexts = 1
 
 # Maximum number of ingress messages to locally buffer per topic. Default is
 # unlimited. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_topic_backlog
 #rpc_zmq_topic_backlog = <None>
 
 # Directory for holding IPC sockets. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_ipc_dir
 #rpc_zmq_ipc_dir = /var/run/openstack
 
 # Name of this node. Must be a valid hostname, FQDN, or IP address. Must match
 # "host" option, if running Nova. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_host
 #rpc_zmq_host = localhost
 
 # Number of seconds to wait before all pending messages will be sent after
@@ -1643,57 +1622,56 @@
 
 # The default number of seconds that poll should wait. Poll raises timeout
 # exception when timeout expired. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_poll_timeout
 #rpc_poll_timeout = 1
 
 # Expiration timeout in seconds of a name service record about existing target (
 # < 0 means no timeout). (integer value)
+# Deprecated group/name - [DEFAULT]/zmq_target_expire
 #zmq_target_expire = 300
 
 # Update period in seconds of a name service record about existing target.
 # (integer value)
+# Deprecated group/name - [DEFAULT]/zmq_target_update
 #zmq_target_update = 180
 
 # Use PUB/SUB pattern for fanout methods. PUB/SUB always uses proxy. (boolean
 # value)
+# Deprecated group/name - [DEFAULT]/use_pub_sub
 #use_pub_sub = false
 
 # Use ROUTER remote proxy. (boolean value)
+# Deprecated group/name - [DEFAULT]/use_router_proxy
 #use_router_proxy = false
-
-# This option makes direct connections dynamic or static. It makes sense only
-# with use_router_proxy=False which means to use direct connections for direct
-# message types (ignored otherwise). (boolean value)
-#use_dynamic_connections = false
-
-# How many additional connections to a host will be made for failover reasons.
-# This option is actual only in dynamic connections mode. (integer value)
-#zmq_failover_connections = 2
 
 # Minimal port number for random ports range. (port value)
 # Minimum value: 0
 # Maximum value: 65535
+# Deprecated group/name - [DEFAULT]/rpc_zmq_min_port
 #rpc_zmq_min_port = 49153
 
 # Maximal port number for random ports range. (integer value)
 # Minimum value: 1
 # Maximum value: 65536
+# Deprecated group/name - [DEFAULT]/rpc_zmq_max_port
 #rpc_zmq_max_port = 65536
 
 # Number of retries to find free port number before fail with ZMQBindError.
 # (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_bind_port_retries
 #rpc_zmq_bind_port_retries = 100
 
 # Default serialization mechanism for serializing/deserializing
 # outgoing/incoming messages (string value)
 # Allowed values: json, msgpack
+# Deprecated group/name - [DEFAULT]/rpc_zmq_serialization
 #rpc_zmq_serialization = json
 
 # This option configures round-robin mode in zmq socket. True means not keeping
 # a queue when server side disconnects. False means to keep queue and messages
 # even if server is disconnected, when the server appears we send all
 # accumulated messages to it. (boolean value)
-#zmq_immediate = true
-
+#zmq_immediate = false
 # Enable/disable TCP keepalive (KA) mechanism. The default value of -1 (or any
 # other negative value) means to skip any overrides and leave it to OS default;
 # 0 and 1 (or any other positive value) mean to disable and enable the option
@@ -1749,8 +1727,7 @@
 # value)
 #subscribe_on =
 
-# Size of executor thread pool when executor is threading or eventlet. (integer
-# value)
+# Size of executor thread pool. (integer value)
 # Deprecated group/name - [DEFAULT]/rpc_thread_pool_size
 #executor_thread_pool_size = 64
 
@@ -1760,6 +1737,7 @@
 # A URL representing the messaging driver to use and its full configuration.
 # (string value)
 #transport_url = <None>
+transport_url = rabbit://openstack:opnfv_secret@192.168.10.41:5672,openstack:opnfv_secret@192.168.10.42:5672,openstack:opnfv_secret@192.168.10.43:5672//openstack
 
 # DEPRECATED: The messaging driver to use, defaults to rabbit. Other drivers
 # include amqp and zmq. (string value)
@@ -1771,6 +1749,8 @@
 # The default exchange under which topics are scoped. May be overridden by an
 # exchange name specified in the transport_url option. (string value)
 #control_exchange = openstack
+control_exchange = openstack
+scrubber_datadir=/var/lib/glance/scrubber
 
 
 [cors]
@@ -1802,18 +1782,57 @@
 #allow_headers = Content-MD5,X-Image-Meta-Checksum,X-Storage-Token,Accept-Encoding,X-Auth-Token,X-Identity-Status,X-Roles,X-Service-Catalog,X-User-Id,X-Tenant-Id,X-OpenStack-Request-ID
 
 
+[cors.subdomain]
+
+#
+# From oslo.middleware.cors
+#
+
+# Indicate whether this resource may be shared with the domain received in the
+# requests "origin" header. Format: "<protocol>://<host>[:<port>]", no trailing
+# slash. Example: https://horizon.example.com (list value)
+#allowed_origin = <None>
+
+# Indicate that the actual request can include user credentials (boolean value)
+#allow_credentials = true
+
+# Indicate which headers are safe to expose to the API. Defaults to HTTP Simple
+# Headers. (list value)
+#expose_headers = X-Image-Meta-Checksum,X-Auth-Token,X-Subject-Token,X-Service-Token,X-OpenStack-Request-ID
+
+# Maximum cache age of CORS preflight requests. (integer value)
+#max_age = 3600
+
+# Indicate which methods can be used during the actual request. (list value)
+#allow_methods = GET,PUT,POST,DELETE,PATCH
+
+# Indicate which header field names may be used during the actual request. (list
+# value)
+#allow_headers = Content-MD5,X-Image-Meta-Checksum,X-Storage-Token,Accept-Encoding,X-Auth-Token,X-Identity-Status,X-Roles,X-Service-Catalog,X-User-Id,X-Tenant-Id,X-OpenStack-Request-ID
+
+
 [database]
 
 #
 # From oslo.db
 #
 
+# DEPRECATED: The file name to use with SQLite. (string value)
+# Deprecated group/name - [DEFAULT]/sqlite_db
+# This option is deprecated for removal.
+# Its value may be silently ignored in the future.
+# Reason: Should use config option connection or slave_connection to connect the
+# database.
+#sqlite_db = oslo.sqlite
+
 # If True, SQLite uses synchronous mode. (boolean value)
+# Deprecated group/name - [DEFAULT]/sqlite_synchronous
 #sqlite_synchronous = true
 
 # The back end to use for the database. (string value)
 # Deprecated group/name - [DEFAULT]/db_backend
 #backend = sqlalchemy
+backend = sqlalchemy
 
 # The SQLAlchemy connection string to use to connect to the database. (string
 # value)
@@ -1821,6 +1840,7 @@
 # Deprecated group/name - [DATABASE]/sql_connection
 # Deprecated group/name - [sql]/connection
 #connection = <None>
+connection = mysql+pymysql://glance:opnfv_secret@192.168.10.50/glance
 
 # The SQLAlchemy connection string to use to connect to the slave database.
 # (string value)
@@ -1832,15 +1852,12 @@
 # (string value)
 #mysql_sql_mode = TRADITIONAL
 
-# If True, transparently enables support for handling MySQL Cluster (NDB).
-# (boolean value)
-#mysql_enable_ndb = false
-
 # Timeout before idle SQL connections are reaped. (integer value)
 # Deprecated group/name - [DEFAULT]/sql_idle_timeout
 # Deprecated group/name - [DATABASE]/sql_idle_timeout
 # Deprecated group/name - [sql]/idle_timeout
 #idle_timeout = 3600
+idle_timeout = 3600
 
 # Minimum number of SQL connections to keep open in a pool. (integer value)
 # Deprecated group/name - [DEFAULT]/sql_min_pool_size
@@ -1858,6 +1875,7 @@
 # Deprecated group/name - [DEFAULT]/sql_max_retries
 # Deprecated group/name - [DATABASE]/sql_max_retries
 #max_retries = 10
+max_retries = -1
 
 # Interval between retries of opening a SQL connection. (integer value)
 # Deprecated group/name - [DEFAULT]/sql_retry_interval
@@ -1868,6 +1886,7 @@
 # Deprecated group/name - [DEFAULT]/sql_max_overflow
 # Deprecated group/name - [DATABASE]/sqlalchemy_max_overflow
 #max_overflow = 50
+max_overflow = 30
 
 # Verbosity of SQL debugging information: 0=None, 100=Everything. (integer
 # value)
@@ -1941,7 +1960,8 @@
 #
 #  (list value)
 #stores = file,http
-
+default_store = file
+stores = file,http
 #
 # The default scheme to use for storing images.
 #
@@ -1994,7 +2014,7 @@
 # /store-capabilities.html
 #
 # For more information on setting up a particular store in your
-# deployment and help with the usage of this feature, please contact
+# deplyment and help with the usage of this feature, please contact
 # the storage driver maintainers listed here:
 # http://docs.openstack.org/developer/glance_store/drivers/index.html
 #
@@ -2023,8 +2043,8 @@
 #
 # Possible values:
 #     * A string of of the following form:
-#       ``<service_type>:<service_name>:<interface>``
-#       At least ``service_type`` and ``interface`` should be specified.
+#       ``<service_type>:<service_name>:<endpoint_type>``
+#       At least ``service_type`` and ``endpoint_type`` should be specified.
 #       ``service_name`` can be omitted.
 #
 # Related options:
@@ -2038,6 +2058,9 @@
 #  (string value)
 #cinder_catalog_info = volumev2::publicURL
 
+
+cinder_catalog_info = volumev2::internalURL
+
 #
 # Override service catalog lookup with template for cinder endpoint.
 #
@@ -2082,6 +2105,9 @@
 # Deprecated group/name - [glance_store]/os_region_name
 #cinder_os_region_name = <None>
 
+cinder_os_region_name = RegionOne
+
+
 #
 # Location of a CA certificates file used for cinder client requests.
 #
@@ -2097,7 +2123,6 @@
 #     * cinder_api_insecure
 #
 #  (string value)
-#cinder_ca_certificates_file = <None>
 
 #
 # Number of cinderclient retries on failed http calls.
@@ -2249,25 +2274,6 @@
 #rootwrap_config = /etc/glance/rootwrap.conf
 
 #
-# Volume type that will be used for volume creation in cinder.
-#
-# Some cinder backends can have several volume types to optimize storage usage.
-# Adding this option allows an operator to choose a specific volume type
-# in cinder that can be optimized for images.
-#
-# If this is not set, then the default volume type specified in the cinder
-# configuration will be used for volume creation.
-#
-# Possible values:
-#     * A valid volume type from cinder
-#
-# Related options:
-#     * None
-#
-#  (string value)
-#cinder_volume_type = <None>
-
-#
 # Directory to which the filesystem backend store writes images.
 #
 # Upon start up, Glance creates the directory if it doesn't already
@@ -2292,6 +2298,7 @@
 #
 #  (string value)
 #filesystem_store_datadir = /var/lib/glance/images
+filesystem_store_datadir = /var/lib/glance/images/
 
 #
 # List of directories and their priorities to which the filesystem
@@ -2346,7 +2353,6 @@
 #     * None
 #
 #  (string value)
-#filesystem_store_metadata_file = <None>
 
 #
 # File access permissions for the image files.
@@ -2435,106 +2441,6 @@
 #http_proxy_information =
 
 #
-# Size, in megabytes, to chunk RADOS images into.
-#
-# Provide an integer value representing the size in megabytes to chunk
-# Glance images into. The default chunk size is 8 megabytes. For optimal
-# performance, the value should be a power of two.
-#
-# When Ceph's RBD object storage system is used as the storage backend
-# for storing Glance images, the images are chunked into objects of the
-# size set using this option. These chunked objects are then stored
-# across the distributed block data store to use for Glance.
-#
-# Possible Values:
-#     * Any positive integer value
-#
-# Related options:
-#     * None
-#
-#  (integer value)
-# Minimum value: 1
-#rbd_store_chunk_size = 8
-
-#
-# RADOS pool in which images are stored.
-#
-# When RBD is used as the storage backend for storing Glance images, the
-# images are stored by means of logical grouping of the objects (chunks
-# of images) into a ``pool``. Each pool is defined with the number of
-# placement groups it can contain. The default pool that is used is
-# 'images'.
-#
-# More information on the RBD storage backend can be found here:
-# http://ceph.com/planet/how-data-is-stored-in-ceph-cluster/
-#
-# Possible Values:
-#     * A valid pool name
-#
-# Related options:
-#     * None
-#
-#  (string value)
-#rbd_store_pool = images
-
-#
-# RADOS user to authenticate as.
-#
-# This configuration option takes in the RADOS user to authenticate as.
-# This is only needed when RADOS authentication is enabled and is
-# applicable only if the user is using Cephx authentication. If the
-# value for this option is not set by the user or is set to None, a
-# default value will be chosen, which will be based on the client.
-# section in rbd_store_ceph_conf.
-#
-# Possible Values:
-#     * A valid RADOS user
-#
-# Related options:
-#     * rbd_store_ceph_conf
-#
-#  (string value)
-#rbd_store_user = <None>
-
-#
-# Ceph configuration file path.
-#
-# This configuration option takes in the path to the Ceph configuration
-# file to be used. If the value for this option is not set by the user
-# or is set to None, librados will locate the default configuration file
-# which is located at /etc/ceph/ceph.conf. If using Cephx
-# authentication, this file should include a reference to the right
-# keyring in a client.<USER> section
-#
-# Possible Values:
-#     * A valid path to a configuration file
-#
-# Related options:
-#     * rbd_store_user
-#
-#  (string value)
-#rbd_store_ceph_conf = /etc/ceph/ceph.conf
-
-#
-# Timeout value for connecting to Ceph cluster.
-#
-# This configuration option takes in the timeout value in seconds used
-# when connecting to the Ceph cluster i.e. it sets the time to wait for
-# glance-api before closing the connection. This prevents glance-api
-# hangups during the connection to RBD. If the value for this option
-# is set to less than or equal to 0, no timeout is set and the default
-# librados value is used.
-#
-# Possible Values:
-#     * Any integer value
-#
-# Related options:
-#     * None
-#
-#  (integer value)
-#rados_connect_timeout = 0
-
-#
 # Chunk size for images to be stored in Sheepdog data store.
 #
 # Provide an integer value representing the size in mebibyte
@@ -2603,7 +2509,7 @@
 # Related Options:
 #     * sheepdog_store_port
 #
-#  (unknown value)
+#  (string value)
 #sheepdog_store_address = 127.0.0.1
 
 #
@@ -2622,469 +2528,6 @@
 #     * swift_store_cacert
 #
 #  (boolean value)
-#swift_store_auth_insecure = false
-
-#
-# Path to the CA bundle file.
-#
-# This configuration option enables the operator to specify the path to
-# a custom Certificate Authority file for SSL verification when
-# connecting to Swift.
-#
-# Possible values:
-#     * A valid path to a CA file
-#
-# Related options:
-#     * swift_store_auth_insecure
-#
-#  (string value)
-#swift_store_cacert = /etc/ssl/certs/ca-certificates.crt
-
-#
-# The region of Swift endpoint to use by Glance.
-#
-# Provide a string value representing a Swift region where Glance
-# can connect to for image storage. By default, there is no region
-# set.
-#
-# When Glance uses Swift as the storage backend to store images
-# for a specific tenant that has multiple endpoints, setting of a
-# Swift region with ``swift_store_region`` allows Glance to connect
-# to Swift in the specified region as opposed to a single region
-# connectivity.
-#
-# This option can be configured for both single-tenant and
-# multi-tenant storage.
-#
-# NOTE: Setting the region with ``swift_store_region`` is
-# tenant-specific and is necessary ``only if`` the tenant has
-# multiple endpoints across different regions.
-#
-# Possible values:
-#     * A string value representing a valid Swift region.
-#
-# Related Options:
-#     * None
-#
-#  (string value)
-#swift_store_region = RegionTwo
-
-#
-# The URL endpoint to use for Swift backend storage.
-#
-# Provide a string value representing the URL endpoint to use for
-# storing Glance images in Swift store. By default, an endpoint
-# is not set and the storage URL returned by ``auth`` is used.
-# Setting an endpoint with ``swift_store_endpoint`` overrides the
-# storage URL and is used for Glance image storage.
-#
-# NOTE: The URL should include the path up to, but excluding the
-# container. The location of an object is obtained by appending
-# the container and object to the configured URL.
-#
-# Possible values:
-#     * String value representing a valid URL path up to a Swift container
-#
-# Related Options:
-#     * None
-#
-#  (string value)
-#swift_store_endpoint = https://swift.openstack.example.org/v1/path_not_including_container_name
-
-#
-# Endpoint Type of Swift service.
-#
-# This string value indicates the endpoint type to use to fetch the
-# Swift endpoint. The endpoint type determines the actions the user will
-# be allowed to perform, for instance, reading and writing to the Store.
-# This setting is only used if swift_store_auth_version is greater than
-# 1.
-#
-# Possible values:
-#     * publicURL
-#     * adminURL
-#     * internalURL
-#
-# Related options:
-#     * swift_store_endpoint
-#
-#  (string value)
-# Allowed values: publicURL, adminURL, internalURL
-#swift_store_endpoint_type = publicURL
-
-#
-# Type of Swift service to use.
-#
-# Provide a string value representing the service type to use for
-# storing images while using Swift backend storage. The default
-# service type is set to ``object-store``.
-#
-# NOTE: If ``swift_store_auth_version`` is set to 2, the value for
-# this configuration option needs to be ``object-store``. If using
-# a higher version of Keystone or a different auth scheme, this
-# option may be modified.
-#
-# Possible values:
-#     * A string representing a valid service type for Swift storage.
-#
-# Related Options:
-#     * None
-#
-#  (string value)
-#swift_store_service_type = object-store
-
-#
-# Name of single container to store images/name prefix for multiple containers
-#
-# When a single container is being used to store images, this configuration
-# option indicates the container within the Glance account to be used for
-# storing all images. When multiple containers are used to store images, this
-# will be the name prefix for all containers. Usage of single/multiple
-# containers can be controlled using the configuration option
-# ``swift_store_multiple_containers_seed``.
-#
-# When using multiple containers, the containers will be named after the value
-# set for this configuration option with the first N chars of the image UUID
-# as the suffix delimited by an underscore (where N is specified by
-# ``swift_store_multiple_containers_seed``).
-#
-# Example: if the seed is set to 3 and swift_store_container = ``glance``, then
-# an image with UUID ``fdae39a1-bac5-4238-aba4-69bcc726e848`` would be placed in
-# the container ``glance_fda``. All dashes in the UUID are included when
-# creating the container name but do not count toward the character limit, so
-# when N=10 the container name would be ``glance_fdae39a1-ba.``
-#
-# Possible values:
-#     * If using single container, this configuration option can be any string
-#       that is a valid swift container name in Glance's Swift account
-#     * If using multiple containers, this configuration option can be any
-#       string as long as it satisfies the container naming rules enforced by
-#       Swift. The value of ``swift_store_multiple_containers_seed`` should be
-#       taken into account as well.
-#
-# Related options:
-#     * ``swift_store_multiple_containers_seed``
-#     * ``swift_store_multi_tenant``
-#     * ``swift_store_create_container_on_put``
-#
-#  (string value)
-#swift_store_container = glance
-
-#
-# The size threshold, in MB, after which Glance will start segmenting image
-# data.
-#
-# Swift has an upper limit on the size of a single uploaded object. By default,
-# this is 5GB. To upload objects bigger than this limit, objects are segmented
-# into multiple smaller objects that are tied together with a manifest file.
-# For more detail, refer to
-# http://docs.openstack.org/developer/swift/overview_large_objects.html
-#
-# This configuration option specifies the size threshold over which the Swift
-# driver will start segmenting image data into multiple smaller files.
-# Currently, the Swift driver only supports creating Dynamic Large Objects.
-#
-# NOTE: This should be set by taking into account the large object limit
-# enforced by the Swift cluster in consideration.
-#
-# Possible values:
-#     * A positive integer that is less than or equal to the large object limit
-#       enforced by the Swift cluster in consideration.
-#
-# Related options:
-#     * ``swift_store_large_object_chunk_size``
-#
-#  (integer value)
-# Minimum value: 1
-#swift_store_large_object_size = 5120
-
-#
-# The maximum size, in MB, of the segments when image data is segmented.
-#
-# When image data is segmented to upload images that are larger than the limit
-# enforced by the Swift cluster, image data is broken into segments that are no
-# bigger than the size specified by this configuration option.
-# Refer to ``swift_store_large_object_size`` for more detail.
-#
-# For example: if ``swift_store_large_object_size`` is 5GB and
-# ``swift_store_large_object_chunk_size`` is 1GB, an image of size 6.2GB will be
-# segmented into 7 segments where the first six segments will be 1GB in size and
-# the seventh segment will be 0.2GB.
-#
-# Possible values:
-#     * A positive integer that is less than or equal to the large object limit
-#       enforced by Swift cluster in consideration.
-#
-# Related options:
-#     * ``swift_store_large_object_size``
-#
-#  (integer value)
-# Minimum value: 1
-#swift_store_large_object_chunk_size = 200
-
-#
-# Create container, if it doesn't already exist, when uploading image.
-#
-# At the time of uploading an image, if the corresponding container doesn't
-# exist, it will be created provided this configuration option is set to True.
-# By default, it won't be created. This behavior is applicable for both single
-# and multiple containers mode.
-#
-# Possible values:
-#     * True
-#     * False
-#
-# Related options:
-#     * None
-#
-#  (boolean value)
-#swift_store_create_container_on_put = false
-
-#
-# Store images in tenant's Swift account.
-#
-# This enables multi-tenant storage mode which causes Glance images to be stored
-# in tenant specific Swift accounts. If this is disabled, Glance stores all
-# images in its own account. More details multi-tenant store can be found at
-# https://wiki.openstack.org/wiki/GlanceSwiftTenantSpecificStorage
-#
-# NOTE: If using multi-tenant swift store, please make sure
-# that you do not set a swift configuration file with the
-# 'swift_store_config_file' option.
-#
-# Possible values:
-#     * True
-#     * False
-#
-# Related options:
-#     * swift_store_config_file
-#
-#  (boolean value)
-#swift_store_multi_tenant = false
-
-#
-# Seed indicating the number of containers to use for storing images.
-#
-# When using a single-tenant store, images can be stored in one or more than one
-# containers. When set to 0, all images will be stored in one single container.
-# When set to an integer value between 1 and 32, multiple containers will be
-# used to store images. This configuration option will determine how many
-# containers are created. The total number of containers that will be used is
-# equal to 16^N, so if this config option is set to 2, then 16^2=256 containers
-# will be used to store images.
-#
-# Please refer to ``swift_store_container`` for more detail on the naming
-# convention. More detail about using multiple containers can be found at
-# https://specs.openstack.org/openstack/glance-specs/specs/kilo/swift-store-
-# multiple-containers.html
-#
-# NOTE: This is used only when swift_store_multi_tenant is disabled.
-#
-# Possible values:
-#     * A non-negative integer less than or equal to 32
-#
-# Related options:
-#     * ``swift_store_container``
-#     * ``swift_store_multi_tenant``
-#     * ``swift_store_create_container_on_put``
-#
-#  (integer value)
-# Minimum value: 0
-# Maximum value: 32
-#swift_store_multiple_containers_seed = 0
-
-#
-# List of tenants that will be granted admin access.
-#
-# This is a list of tenants that will be granted read/write access on
-# all Swift containers created by Glance in multi-tenant mode. The
-# default value is an empty list.
-#
-# Possible values:
-#     * A comma separated list of strings representing UUIDs of Keystone
-#       projects/tenants
-#
-# Related options:
-#     * None
-#
-#  (list value)
-#swift_store_admin_tenants =
-
-#
-# SSL layer compression for HTTPS Swift requests.
-#
-# Provide a boolean value to determine whether or not to compress
-# HTTPS Swift requests for images at the SSL layer. By default,
-# compression is enabled.
-#
-# When using Swift as the backend store for Glance image storage,
-# SSL layer compression of HTTPS Swift requests can be set using
-# this option. If set to False, SSL layer compression of HTTPS
-# Swift requests is disabled. Disabling this option may improve
-# performance for images which are already in a compressed format,
-# for example, qcow2.
-#
-# Possible values:
-#     * True
-#     * False
-#
-# Related Options:
-#     * None
-#
-#  (boolean value)
-#swift_store_ssl_compression = true
-
-#
-# The number of times a Swift download will be retried before the
-# request fails.
-#
-# Provide an integer value representing the number of times an image
-# download must be retried before erroring out. The default value is
-# zero (no retry on a failed image download). When set to a positive
-# integer value, ``swift_store_retry_get_count`` ensures that the
-# download is attempted this many more times upon a download failure
-# before sending an error message.
-#
-# Possible values:
-#     * Zero
-#     * Positive integer value
-#
-# Related Options:
-#     * None
-#
-#  (integer value)
-# Minimum value: 0
-#swift_store_retry_get_count = 0
-
-#
-# Time in seconds defining the size of the window in which a new
-# token may be requested before the current token is due to expire.
-#
-# Typically, the Swift storage driver fetches a new token upon the
-# expiration of the current token to ensure continued access to
-# Swift. However, some Swift transactions (like uploading image
-# segments) may not recover well if the token expires on the fly.
-#
-# Hence, by fetching a new token before the current token expiration,
-# we make sure that the token does not expire or is close to expiry
-# before a transaction is attempted. By default, the Swift storage
-# driver requests for a new token 60 seconds or less before the
-# current token expiration.
-#
-# Possible values:
-#     * Zero
-#     * Positive integer value
-#
-# Related Options:
-#     * None
-#
-#  (integer value)
-# Minimum value: 0
-#swift_store_expire_soon_interval = 60
-
-#
-# Use trusts for multi-tenant Swift store.
-#
-# This option instructs the Swift store to create a trust for each
-# add/get request when the multi-tenant store is in use. Using trusts
-# allows the Swift store to avoid problems that can be caused by an
-# authentication token expiring during the upload or download of data.
-#
-# By default, ``swift_store_use_trusts`` is set to ``True``(use of
-# trusts is enabled). If set to ``False``, a user token is used for
-# the Swift connection instead, eliminating the overhead of trust
-# creation.
-#
-# NOTE: This option is considered only when
-# ``swift_store_multi_tenant`` is set to ``True``
-#
-# Possible values:
-#     * True
-#     * False
-#
-# Related options:
-#     * swift_store_multi_tenant
-#
-#  (boolean value)
-#swift_store_use_trusts = true
-
-#
-# Reference to default Swift account/backing store parameters.
-#
-# Provide a string value representing a reference to the default set
-# of parameters required for using swift account/backing store for
-# image storage. The default reference value for this configuration
-# option is 'ref1'. This configuration option dereferences the
-# parameters and facilitates image storage in Swift storage backend
-# every time a new image is added.
-#
-# Possible values:
-#     * A valid string value
-#
-# Related options:
-#     * None
-#
-#  (string value)
-#default_swift_reference = ref1
-
-# DEPRECATED: Version of the authentication service to use. Valid versions are 2
-# and 3 for keystone and 1 (deprecated) for swauth and rackspace. (string value)
-# This option is deprecated for removal.
-# Its value may be silently ignored in the future.
-# Reason:
-# The option 'auth_version' in the Swift back-end configuration file is
-# used instead.
-#swift_store_auth_version = 2
-
-# DEPRECATED: The address where the Swift authentication service is listening.
-# (string value)
-# This option is deprecated for removal.
-# Its value may be silently ignored in the future.
-# Reason:
-# The option 'auth_address' in the Swift back-end configuration file is
-# used instead.
-#swift_store_auth_address = <None>
-
-# DEPRECATED: The user to authenticate against the Swift authentication service.
-# (string value)
-# This option is deprecated for removal.
-# Its value may be silently ignored in the future.
-# Reason:
-# The option 'user' in the Swift back-end configuration file is set instead.
-#swift_store_user = <None>
-
-# DEPRECATED: Auth key for the user authenticating against the Swift
-# authentication service. (string value)
-# This option is deprecated for removal.
-# Its value may be silently ignored in the future.
-# Reason:
-# The option 'key' in the Swift back-end configuration file is used
-# to set the authentication key instead.
-#swift_store_key = <None>
-
-#
-# Absolute path to the file containing the swift account(s)
-# configurations.
-#
-# Include a string value representing the path to a configuration
-# file that has references for each of the configured Swift
-# account(s)/backing stores. By default, no file path is specified
-# and customized Swift referencing is disabled. Configuring this
-# option is highly recommended while using Swift storage backend for
-# image storage as it avoids storage of credentials in the database.
-#
-# NOTE: Please do not configure this option if you have set
-# ``swift_store_multi_tenant`` to ``True``.
-#
-# Possible values:
-#     * String value representing an absolute path on the glance-api
-#       node
-#
-# Related options:
-#     * swift_store_multi_tenant
-#
-#  (string value)
-#swift_store_config_file = <None>
 
 #
 # Address of the ESX/ESXi or vCenter Server target system.
@@ -3102,7 +2545,7 @@
 #     * vmware_server_username
 #     * vmware_server_password
 #
-#  (unknown value)
+#  (string value)
 #vmware_server_host = 127.0.0.1
 
 #
@@ -3277,11 +2720,22 @@
 
 # Supported values for the 'disk_format' image attribute (list value)
 # Deprecated group/name - [DEFAULT]/disk_formats
-disk_formats = ami,ari,aki,vhd,vhdx,vmdk,raw,qcow2,vdi,iso,ploop.root-tar
+#disk_formats = ami,ari,aki,vhd,vhdx,vmdk,raw,qcow2,vdi,iso
 
 
 [keystone_authtoken]
-
+revocation_cache_time = 10
+auth_type = password
+user_domain_id = default
+project_domain_id = default
+project_name = service
+username = glance
+password = opnfv_secret
+auth_uri=http://192.168.10.10:5000
+auth_url=http://192.168.10.10:35357
+
+token_cache_time = -1
+memcached_servers=192.168.10.11:11211,192.168.10.12:11211,192.168.10.13:11211
 #
 # From keystonemiddleware.auth_token
 #
@@ -3289,10 +2743,10 @@
 # Complete "public" Identity API endpoint. This endpoint should not be an
 # "admin" endpoint, as it should be accessible by all end users. Unauthenticated
 # clients are redirected to this endpoint to authenticate. Although this
-# endpoint should ideally be unversioned, client support in the wild varies. If
-# you're using a versioned v2 endpoint here, then this should *not* be the same
-# endpoint the service user utilizes for validating tokens, because normal end
-# users may not be able to reach that endpoint. (string value)
+# endpoint should  ideally be unversioned, client support in the wild varies.
+# If you're using a versioned v2 endpoint here, then this  should *not* be the
+# same endpoint the service user utilizes  for validating tokens, because normal
+# end users may not be  able to reach that endpoint. (string value)
 #auth_uri = <None>
 
 # API version of the admin Identity API endpoint. (string value)
@@ -3332,12 +2786,7 @@
 # The region in which the identity server can be found. (string value)
 #region_name = <None>
 
-# DEPRECATED: Directory used to cache files related to PKI tokens. This option
-# has been deprecated in the Ocata release and will be removed in the P release.
-# (string value)
-# This option is deprecated for removal since Ocata.
-# Its value may be silently ignored in the future.
-# Reason: PKI token format is no longer supported.
+# Directory used to cache files related to PKI tokens. (string value)
 #signing_dir = <None>
 
 # Optionally specify a list of memcached server(s) to use for caching. If left
@@ -3350,14 +2799,10 @@
 # -1 to disable caching completely. (integer value)
 #token_cache_time = 300
 
-# DEPRECATED: Determines the frequency at which the list of revoked tokens is
-# retrieved from the Identity service (in seconds). A high number of revocation
-# events combined with a low cache duration may significantly reduce
-# performance. Only valid for PKI tokens. This option has been deprecated in the
-# Ocata release and will be removed in the P release. (integer value)
-# This option is deprecated for removal since Ocata.
-# Its value may be silently ignored in the future.
-# Reason: PKI token format is no longer supported.
+# Determines the frequency at which the list of revoked tokens is retrieved from
+# the Identity service (in seconds). A high number of revocation events combined
+# with a low cache duration may significantly reduce performance. Only valid for
+# PKI tokens. (integer value)
 #revocation_cache_time = 10
 
 # (Optional) If defined, indicate whether token data should be authenticated or
@@ -3410,40 +2855,19 @@
 # value)
 #enforce_token_bind = permissive
 
-# DEPRECATED: If true, the revocation list will be checked for cached tokens.
-# This requires that PKI tokens are configured on the identity server. (boolean
-# value)
-# This option is deprecated for removal since Ocata.
-# Its value may be silently ignored in the future.
-# Reason: PKI token format is no longer supported.
+# If true, the revocation list will be checked for cached tokens. This requires
+# that PKI tokens are configured on the identity server. (boolean value)
 #check_revocations_for_cached = false
 
-# DEPRECATED: Hash algorithms to use for hashing PKI tokens. This may be a
-# single algorithm or multiple. The algorithms are those supported by Python
-# standard hashlib.new(). The hashes will be tried in the order given, so put
-# the preferred one first for performance. The result of the first hash will be
+# Hash algorithms to use for hashing PKI tokens. This may be a single algorithm
+# or multiple. The algorithms are those supported by Python standard
+# hashlib.new(). The hashes will be tried in the order given, so put the
+# preferred one first for performance. The result of the first hash will be
 # stored in the cache. This will typically be set to multiple values only while
 # migrating from a less secure algorithm to a more secure one. Once all the old
 # tokens are expired this option should be set to a single value for better
 # performance. (list value)
-# This option is deprecated for removal since Ocata.
-# Its value may be silently ignored in the future.
-# Reason: PKI token format is no longer supported.
 #hash_algorithms = md5
-
-# A choice of roles that must be present in a service token. Service tokens are
-# allowed to request that an expired token can be used and so this check should
-# tightly control that only actual services should be sending this token. Roles
-# here are applied as an ANY check so any role in this list must be present. For
-# backwards compatibility reasons this currently only affects the allow_expired
-# check. (list value)
-#service_token_roles = service
-
-# For backwards compatibility reasons we must let valid service tokens pass that
-# don't pass the service_token_roles check as valid. Setting this true will
-# become the default in a future release and should be enabled if possible.
-# (boolean value)
-#service_token_roles_required = false
 
 # Authentication type to load (string value)
 # Deprecated group/name - [keystone_authtoken]/auth_plugin
@@ -3479,7 +2903,7 @@
 # Reason: Replaced by [DEFAULT]/transport_url
 #password =
 
-# DEPRECATED: List of Redis Sentinel hosts (fault tolerance mode), e.g.,
+# DEPRECATED: List of Redis Sentinel hosts (fault tolerance mode) e.g.
 # [host:port, host1:port ... ] (list value)
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
@@ -3495,7 +2919,7 @@
 # Time in ms to wait before the transaction is killed. (integer value)
 #check_timeout = 20000
 
-# Timeout in ms on blocking socket operations. (integer value)
+# Timeout in ms on blocking socket operations (integer value)
 #socket_timeout = 10000
 
 
@@ -3506,12 +2930,14 @@
 #
 
 # Enables or disables inter-process locks. (boolean value)
+# Deprecated group/name - [DEFAULT]/disable_process_locking
 #disable_process_locking = false
 
 # Directory to use for lock files.  For security, the specified directory should
 # only be writable by the user running the processes that need locking. Defaults
 # to environment variable OSLO_LOCK_PATH. If external locks are used, a lock
 # path must be set. (string value)
+# Deprecated group/name - [DEFAULT]/lock_path
 #lock_path = <None>
 
 
@@ -3523,60 +2949,55 @@
 
 # Name for the AMQP container. must be globally unique. Defaults to a generated
 # UUID (string value)
+# Deprecated group/name - [amqp1]/container_name
 #container_name = <None>
 
 # Timeout for inactive connections (in seconds) (integer value)
+# Deprecated group/name - [amqp1]/idle_timeout
 #idle_timeout = 0
 
 # Debug: dump AMQP frames to stdout (boolean value)
+# Deprecated group/name - [amqp1]/trace
 #trace = false
 
-# Attempt to connect via SSL. If no other ssl-related parameters are given, it
-# will use the system's CA-bundle to verify the server's certificate. (boolean
-# value)
-#ssl = false
-
-# CA certificate PEM file used to verify the server's certificate (string value)
+# CA certificate PEM file to verify server certificate (string value)
+# Deprecated group/name - [amqp1]/ssl_ca_file
 #ssl_ca_file =
 
-# Self-identifying certificate PEM file for client authentication (string value)
+# Identifying certificate PEM file to present to clients (string value)
+# Deprecated group/name - [amqp1]/ssl_cert_file
 #ssl_cert_file =
 
-# Private key PEM file used to sign ssl_cert_file certificate (optional) (string
-# value)
+# Private key PEM file used to sign cert_file certificate (string value)
+# Deprecated group/name - [amqp1]/ssl_key_file
 #ssl_key_file =
 
 # Password for decrypting ssl_key_file (if encrypted) (string value)
+# Deprecated group/name - [amqp1]/ssl_key_password
 #ssl_key_password = <None>
 
-# DEPRECATED: Accept clients using either SSL or plain TCP (boolean value)
-# This option is deprecated for removal.
-# Its value may be silently ignored in the future.
-# Reason: Not applicable - not a SSL server
+# Accept clients using either SSL or plain TCP (boolean value)
+# Deprecated group/name - [amqp1]/allow_insecure_clients
 #allow_insecure_clients = false
 
 # Space separated list of acceptable SASL mechanisms (string value)
+# Deprecated group/name - [amqp1]/sasl_mechanisms
 #sasl_mechanisms =
 
 # Path to directory that contains the SASL configuration (string value)
+# Deprecated group/name - [amqp1]/sasl_config_dir
 #sasl_config_dir =
 
 # Name of configuration file (without .conf suffix) (string value)
+# Deprecated group/name - [amqp1]/sasl_config_name
 #sasl_config_name =
 
-# SASL realm to use if no realm present in username (string value)
-#sasl_default_realm =
-
-# DEPRECATED: User name for message broker authentication (string value)
-# This option is deprecated for removal.
-# Its value may be silently ignored in the future.
-# Reason: Should use configuration option transport_url to provide the username.
+# User name for message broker authentication (string value)
+# Deprecated group/name - [amqp1]/username
 #username =
 
-# DEPRECATED: Password for message broker authentication (string value)
-# This option is deprecated for removal.
-# Its value may be silently ignored in the future.
-# Reason: Should use configuration option transport_url to provide the password.
+# Password for message broker authentication (string value)
+# Deprecated group/name - [amqp1]/password
 #password =
 
 # Seconds to pause before attempting to re-connect. (integer value)
@@ -3598,12 +3019,8 @@
 # Minimum value: 1
 #link_retry_delay = 10
 
-# The maximum number of attempts to re-send a reply message which failed due to
-# a recoverable error. (integer value)
-# Minimum value: -1
-#default_reply_retry = 0
-
-# The deadline for an rpc reply message delivery. (integer value)
+# The deadline for an rpc reply message delivery. Only used when caller does not
+# provide a timeout expiry. (integer value)
 # Minimum value: 5
 #default_reply_timeout = 30
 
@@ -3616,11 +3033,6 @@
 # does not provide a timeout expiry. (integer value)
 # Minimum value: 5
 #default_notify_timeout = 30
-
-# The duration to schedule a purge of idle sender links. Detach link after
-# expiry. (integer value)
-# Minimum value: 1
-#default_sender_link_timeout = 600
 
 # Indicates the addressing mode used by the driver.
 # Permitted values:
@@ -3631,12 +3043,15 @@
 #addressing_mode = dynamic
 
 # address prefix used when sending to a specific server (string value)
+# Deprecated group/name - [amqp1]/server_request_prefix
 #server_request_prefix = exclusive
 
 # address prefix used when broadcasting to all servers (string value)
+# Deprecated group/name - [amqp1]/broadcast_prefix
 #broadcast_prefix = broadcast
 
 # address prefix when sending to any server in group (string value)
+# Deprecated group/name - [amqp1]/group_request_prefix
 #group_request_prefix = unicast
 
 # Address prefix for all generated RPC addresses (string value)
@@ -3666,6 +3081,7 @@
 # else control_exchange if set
 # else 'notify' (string value)
 #default_notification_exchange = <None>
+default_notification_exchange = glance
 
 # Exchange name used in RPC addresses.
 # Exchange name resolution precedence:
@@ -3687,66 +3103,6 @@
 # Minimum value: 1
 #notify_server_credit = 100
 
-# Send messages of this type pre-settled.
-# Pre-settled messages will not receive acknowledgement
-# from the peer. Note well: pre-settled messages may be
-# silently discarded if the delivery fails.
-# Permitted values:
-# 'rpc-call' - send RPC Calls pre-settled
-# 'rpc-reply'- send RPC Replies pre-settled
-# 'rpc-cast' - Send RPC Casts pre-settled
-# 'notify'   - Send Notifications pre-settled
-#  (multi valued)
-#pre_settled = rpc-cast
-#pre_settled = rpc-reply
-
-
-[oslo_messaging_kafka]
-
-#
-# From oslo.messaging
-#
-
-# DEPRECATED: Default Kafka broker Host (string value)
-# This option is deprecated for removal.
-# Its value may be silently ignored in the future.
-# Reason: Replaced by [DEFAULT]/transport_url
-#kafka_default_host = localhost
-
-# DEPRECATED: Default Kafka broker Port (port value)
-# Minimum value: 0
-# Maximum value: 65535
-# This option is deprecated for removal.
-# Its value may be silently ignored in the future.
-# Reason: Replaced by [DEFAULT]/transport_url
-#kafka_default_port = 9092
-
-# Max fetch bytes of Kafka consumer (integer value)
-#kafka_max_fetch_bytes = 1048576
-
-# Default timeout(s) for Kafka consumers (floating point value)
-#kafka_consumer_timeout = 1.0
-
-# Pool Size for Kafka Consumers (integer value)
-#pool_size = 10
-
-# The pool size limit for connections expiration policy (integer value)
-#conn_pool_min_size = 2
-
-# The time-to-live in sec of idle connections in the pool (integer value)
-#conn_pool_ttl = 1200
-
-# Group id for Kafka consumer. Consumers in one group will coordinate message
-# consumption (string value)
-#consumer_group = oslo_messaging_consumer
-
-# Upper bound on the delay for KafkaProducer batching in seconds (floating point
-# value)
-#producer_batch_timeout = 0.0
-
-# Size of batch for the producer async send (integer value)
-#producer_batch_size = 16384
-
 
 [oslo_messaging_notifications]
 
@@ -3758,6 +3114,7 @@
 # messagingv2, routing, log, test, noop (multi valued)
 # Deprecated group/name - [DEFAULT]/notification_driver
 #driver =
+driver = messagingv2
 
 # A URL representing the messaging driver to use for notifications. If not set,
 # we fall back to the same configuration used for RPC. (string value)
@@ -3769,11 +3126,6 @@
 # Deprecated group/name - [DEFAULT]/notification_topics
 #topics = notifications
 
-# The maximum number of attempts to re-send a notification message which failed
-# to be delivered due to a recoverable error. 0 - No retry, -1 - indefinite
-# (integer value)
-#retry = -1
-
 
 [oslo_messaging_rabbit]
 
@@ -3787,31 +3139,30 @@
 #amqp_durable_queues = false
 
 # Auto-delete queues in AMQP. (boolean value)
+# Deprecated group/name - [DEFAULT]/amqp_auto_delete
 #amqp_auto_delete = false
-
-# Enable SSL (boolean value)
-#ssl = <None>
 
 # SSL version to use (valid only if SSL enabled). Valid values are TLSv1 and
 # SSLv23. SSLv2, SSLv3, TLSv1_1, and TLSv1_2 may be available on some
 # distributions. (string value)
-# Deprecated group/name - [oslo_messaging_rabbit]/kombu_ssl_version
-#ssl_version =
+# Deprecated group/name - [DEFAULT]/kombu_ssl_version
+#kombu_ssl_version =
 
 # SSL key file (valid only if SSL enabled). (string value)
-# Deprecated group/name - [oslo_messaging_rabbit]/kombu_ssl_keyfile
-#ssl_key_file =
+# Deprecated group/name - [DEFAULT]/kombu_ssl_keyfile
+#kombu_ssl_keyfile =
 
 # SSL cert file (valid only if SSL enabled). (string value)
-# Deprecated group/name - [oslo_messaging_rabbit]/kombu_ssl_certfile
-#ssl_cert_file =
+# Deprecated group/name - [DEFAULT]/kombu_ssl_certfile
+#kombu_ssl_certfile =
 
 # SSL certification authority file (valid only if SSL enabled). (string value)
-# Deprecated group/name - [oslo_messaging_rabbit]/kombu_ssl_ca_certs
-#ssl_ca_file =
+# Deprecated group/name - [DEFAULT]/kombu_ssl_ca_certs
+#kombu_ssl_ca_certs =
 
 # How long to wait before reconnecting in response to an AMQP consumer cancel
 # notification. (floating point value)
+# Deprecated group/name - [DEFAULT]/kombu_reconnect_delay
 #kombu_reconnect_delay = 1.0
 
 # EXPERIMENTAL: Possible values are: gzip, bz2. If not set compression will not
@@ -3831,6 +3182,7 @@
 
 # DEPRECATED: The RabbitMQ broker address where a single node is used. (string
 # value)
+# Deprecated group/name - [DEFAULT]/rabbit_host
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
@@ -3839,34 +3191,43 @@
 # DEPRECATED: The RabbitMQ broker port where a single node is used. (port value)
 # Minimum value: 0
 # Maximum value: 65535
+# Deprecated group/name - [DEFAULT]/rabbit_port
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
 #rabbit_port = 5672
 
 # DEPRECATED: RabbitMQ HA cluster host:port pairs. (list value)
+# Deprecated group/name - [DEFAULT]/rabbit_hosts
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
 #rabbit_hosts = $rabbit_host:$rabbit_port
 
+# Connect over SSL for RabbitMQ. (boolean value)
+# Deprecated group/name - [DEFAULT]/rabbit_use_ssl
+#rabbit_use_ssl = false
+
 # DEPRECATED: The RabbitMQ userid. (string value)
+# Deprecated group/name - [DEFAULT]/rabbit_userid
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
 #rabbit_userid = guest
 
 # DEPRECATED: The RabbitMQ password. (string value)
+# Deprecated group/name - [DEFAULT]/rabbit_password
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
 #rabbit_password = guest
 
 # The RabbitMQ login method. (string value)
-# Allowed values: PLAIN, AMQPLAIN, RABBIT-CR-DEMO
+# Deprecated group/name - [DEFAULT]/rabbit_login_method
 #rabbit_login_method = AMQPLAIN
 
 # DEPRECATED: The RabbitMQ virtual host. (string value)
+# Deprecated group/name - [DEFAULT]/rabbit_virtual_host
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
@@ -3877,6 +3238,7 @@
 
 # How long to backoff for between retries when connecting to RabbitMQ. (integer
 # value)
+# Deprecated group/name - [DEFAULT]/rabbit_retry_backoff
 #rabbit_retry_backoff = 2
 
 # Maximum interval of RabbitMQ connection retries. Default is 30 seconds.
@@ -3885,6 +3247,7 @@
 
 # DEPRECATED: Maximum number of RabbitMQ connection retries. Default is 0
 # (infinite retry count). (integer value)
+# Deprecated group/name - [DEFAULT]/rabbit_max_retries
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 #rabbit_max_retries = 0
@@ -3892,9 +3255,10 @@
 # Try to use HA queues in RabbitMQ (x-ha-policy: all). If you change this
 # option, you must wipe the RabbitMQ database. In RabbitMQ 3.0, queue mirroring
 # is no longer controlled by the x-ha-policy argument when declaring a queue. If
-# you just want to make sure that all queues (except those with auto-generated
+# you just want to make sure that all queues (except  those with auto-generated
 # names) are mirrored across all nodes, run: "rabbitmqctl set_policy HA
 # '^(?!amq\.).*' '{"ha-mode": "all"}' " (boolean value)
+# Deprecated group/name - [DEFAULT]/rabbit_ha_queues
 #rabbit_ha_queues = false
 
 # Positive integer representing duration in seconds for queue TTL (x-expires).
@@ -3917,6 +3281,7 @@
 #heartbeat_rate = 2
 
 # Deprecated, use rpc_backend=kombu+memory or rpc_backend=fake (boolean value)
+# Deprecated group/name - [DEFAULT]/fake_rabbit
 #fake_rabbit = false
 
 # Maximum number of channels to allow (integer value)
@@ -3927,6 +3292,9 @@
 
 # How often to send heartbeats for consumer's connections (integer value)
 #heartbeat_interval = 3
+
+# Enable SSL (boolean value)
+#ssl = <None>
 
 # Arguments passed to ssl.wrap_socket (dict value)
 #ssl_options = <None>
@@ -3964,207 +3332,152 @@
 # (integer value)
 #pool_stale = 60
 
+# Persist notification messages. (boolean value)
+#notification_persistence = false
+
+# Exchange name for sending notifications (string value)
+#default_notification_exchange = ${control_exchange}_notification
+
+# Max number of not acknowledged message which RabbitMQ can send to notification
+# listener. (integer value)
+#notification_listener_prefetch_count = 100
+
+# Reconnecting retry count in case of connectivity problem during sending
+# notification, -1 means infinite retry. (integer value)
+#default_notification_retry_attempts = -1
+
+# Reconnecting retry delay in case of connectivity problem during sending
+# notification message (floating point value)
+#notification_retry_delay = 0.25
+
+# Time to live for rpc queues without consumers in seconds. (integer value)
+#rpc_queue_expiration = 60
+
+# Exchange name for sending RPC messages (string value)
+#default_rpc_exchange = ${control_exchange}_rpc
+
+# Exchange name for receiving RPC replies (string value)
+#rpc_reply_exchange = ${control_exchange}_rpc_reply
+
+# Max number of not acknowledged message which RabbitMQ can send to rpc
+# listener. (integer value)
+#rpc_listener_prefetch_count = 100
+
+# Max number of not acknowledged message which RabbitMQ can send to rpc reply
+# listener. (integer value)
+#rpc_reply_listener_prefetch_count = 100
+
+# Reconnecting retry count in case of connectivity problem during sending reply.
+# -1 means infinite retry during rpc_timeout (integer value)
+#rpc_reply_retry_attempts = -1
+
+# Reconnecting retry delay in case of connectivity problem during sending reply.
+# (floating point value)
+#rpc_reply_retry_delay = 0.25
+
+# Reconnecting retry count in case of connectivity problem during sending RPC
+# message, -1 means infinite retry. If actual retry attempts in not 0 the rpc
+# request could be processed more then one time (integer value)
+#default_rpc_retry_attempts = -1
+
+# Reconnecting retry delay in case of connectivity problem during sending RPC
+# message (floating point value)
+#rpc_retry_delay = 0.25
+
+
+[oslo_messaging_zmq]
+
+#
+# From oslo.messaging
+#
+
+# ZeroMQ bind address. Should be a wildcard (*), an ethernet interface, or IP.
+# The "host" option should point or resolve to this address. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_bind_address
+#rpc_zmq_bind_address = *
+
+# MatchMaker driver. (string value)
+# Allowed values: redis, dummy
+# Deprecated group/name - [DEFAULT]/rpc_zmq_matchmaker
+#rpc_zmq_matchmaker = redis
+
+# Number of ZeroMQ contexts, defaults to 1. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_contexts
+#rpc_zmq_contexts = 1
+
+# Maximum number of ingress messages to locally buffer per topic. Default is
+# unlimited. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_topic_backlog
+#rpc_zmq_topic_backlog = <None>
+
+# Directory for holding IPC sockets. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_ipc_dir
+#rpc_zmq_ipc_dir = /var/run/openstack
+
+# Name of this node. Must be a valid hostname, FQDN, or IP address. Must match
+# "host" option, if running Nova. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_host
+#rpc_zmq_host = localhost
+
+# Seconds to wait before a cast expires (TTL). The default value of -1 specifies
+# an infinite linger period. The value of 0 specifies no linger period. Pending
+# messages shall be discarded immediately when the socket is closed. Only
+# supported by impl_zmq. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_cast_timeout
+#rpc_cast_timeout = -1
+
+# The default number of seconds that poll should wait. Poll raises timeout
+# exception when timeout expired. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_poll_timeout
+#rpc_poll_timeout = 1
+
+# Expiration timeout in seconds of a name service record about existing target (
+# < 0 means no timeout). (integer value)
+# Deprecated group/name - [DEFAULT]/zmq_target_expire
+#zmq_target_expire = 300
+
+# Update period in seconds of a name service record about existing target.
+# (integer value)
+# Deprecated group/name - [DEFAULT]/zmq_target_update
+#zmq_target_update = 180
+
+# Use PUB/SUB pattern for fanout methods. PUB/SUB always uses proxy. (boolean
+# value)
+# Deprecated group/name - [DEFAULT]/use_pub_sub
+#use_pub_sub = true
+
+# Use ROUTER remote proxy. (boolean value)
+# Deprecated group/name - [DEFAULT]/use_router_proxy
+#use_router_proxy = true
+
+# Minimal port number for random ports range. (port value)
+# Minimum value: 0
+# Maximum value: 65535
+# Deprecated group/name - [DEFAULT]/rpc_zmq_min_port
+#rpc_zmq_min_port = 49153
+
+# Maximal port number for random ports range. (integer value)
+# Minimum value: 1
+# Maximum value: 65536
+# Deprecated group/name - [DEFAULT]/rpc_zmq_max_port
+#rpc_zmq_max_port = 65536
+
+# Number of retries to find free port number before fail with ZMQBindError.
+# (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_bind_port_retries
+#rpc_zmq_bind_port_retries = 100
+
 # Default serialization mechanism for serializing/deserializing
 # outgoing/incoming messages (string value)
 # Allowed values: json, msgpack
-#default_serializer_type = json
-
-# Persist notification messages. (boolean value)
-#notification_persistence = false
-
-# Exchange name for sending notifications (string value)
-#default_notification_exchange = ${control_exchange}_notification
-
-# Max number of not acknowledged message which RabbitMQ can send to notification
-# listener. (integer value)
-#notification_listener_prefetch_count = 100
-
-# Reconnecting retry count in case of connectivity problem during sending
-# notification, -1 means infinite retry. (integer value)
-#default_notification_retry_attempts = -1
-
-# Reconnecting retry delay in case of connectivity problem during sending
-# notification message (floating point value)
-#notification_retry_delay = 0.25
-
-# Time to live for rpc queues without consumers in seconds. (integer value)
-#rpc_queue_expiration = 60
-
-# Exchange name for sending RPC messages (string value)
-#default_rpc_exchange = ${control_exchange}_rpc
-
-# Exchange name for receiving RPC replies (string value)
-#rpc_reply_exchange = ${control_exchange}_rpc_reply
-
-# Max number of not acknowledged message which RabbitMQ can send to rpc
-# listener. (integer value)
-#rpc_listener_prefetch_count = 100
-
-# Max number of not acknowledged message which RabbitMQ can send to rpc reply
-# listener. (integer value)
-#rpc_reply_listener_prefetch_count = 100
-
-# Reconnecting retry count in case of connectivity problem during sending reply.
-# -1 means infinite retry during rpc_timeout (integer value)
-#rpc_reply_retry_attempts = -1
-
-# Reconnecting retry delay in case of connectivity problem during sending reply.
-# (floating point value)
-#rpc_reply_retry_delay = 0.25
-
-# Reconnecting retry count in case of connectivity problem during sending RPC
-# message, -1 means infinite retry. If actual retry attempts in not 0 the rpc
-# request could be processed more than one time (integer value)
-#default_rpc_retry_attempts = -1
-
-# Reconnecting retry delay in case of connectivity problem during sending RPC
-# message (floating point value)
-#rpc_retry_delay = 0.25
-
-
-[oslo_messaging_zmq]
-
-#
-# From oslo.messaging
-#
-
-# ZeroMQ bind address. Should be a wildcard (*), an ethernet interface, or IP.
-# The "host" option should point or resolve to this address. (string value)
-#rpc_zmq_bind_address = *
-
-# MatchMaker driver. (string value)
-# Allowed values: redis, sentinel, dummy
-#rpc_zmq_matchmaker = redis
-
-# Number of ZeroMQ contexts, defaults to 1. (integer value)
-#rpc_zmq_contexts = 1
-
-# Maximum number of ingress messages to locally buffer per topic. Default is
-# unlimited. (integer value)
-#rpc_zmq_topic_backlog = <None>
-
-# Directory for holding IPC sockets. (string value)
-#rpc_zmq_ipc_dir = /var/run/openstack
-
-# Name of this node. Must be a valid hostname, FQDN, or IP address. Must match
-# "host" option, if running Nova. (string value)
-#rpc_zmq_host = localhost
-
-# Number of seconds to wait before all pending messages will be sent after
-# closing a socket. The default value of -1 specifies an infinite linger period.
-# The value of 0 specifies no linger period. Pending messages shall be discarded
-# immediately when the socket is closed. Positive values specify an upper bound
-# for the linger period. (integer value)
-# Deprecated group/name - [DEFAULT]/rpc_cast_timeout
-#zmq_linger = -1
-
-# The default number of seconds that poll should wait. Poll raises timeout
-# exception when timeout expired. (integer value)
-#rpc_poll_timeout = 1
-
-# Expiration timeout in seconds of a name service record about existing target (
-# < 0 means no timeout). (integer value)
-#zmq_target_expire = 300
-
-# Update period in seconds of a name service record about existing target.
-# (integer value)
-#zmq_target_update = 180
-
-# Use PUB/SUB pattern for fanout methods. PUB/SUB always uses proxy. (boolean
-# value)
-#use_pub_sub = false
-
-# Use ROUTER remote proxy. (boolean value)
-#use_router_proxy = false
-
-# This option makes direct connections dynamic or static. It makes sense only
-# with use_router_proxy=False which means to use direct connections for direct
-# message types (ignored otherwise). (boolean value)
-#use_dynamic_connections = false
-
-# How many additional connections to a host will be made for failover reasons.
-# This option is actual only in dynamic connections mode. (integer value)
-#zmq_failover_connections = 2
-
-# Minimal port number for random ports range. (port value)
-# Minimum value: 0
-# Maximum value: 65535
-#rpc_zmq_min_port = 49153
-
-# Maximal port number for random ports range. (integer value)
-# Minimum value: 1
-# Maximum value: 65536
-#rpc_zmq_max_port = 65536
-
-# Number of retries to find free port number before fail with ZMQBindError.
-# (integer value)
-#rpc_zmq_bind_port_retries = 100
-
-# Default serialization mechanism for serializing/deserializing
-# outgoing/incoming messages (string value)
-# Allowed values: json, msgpack
+# Deprecated group/name - [DEFAULT]/rpc_zmq_serialization
 #rpc_zmq_serialization = json
 
 # This option configures round-robin mode in zmq socket. True means not keeping
 # a queue when server side disconnects. False means to keep queue and messages
 # even if server is disconnected, when the server appears we send all
 # accumulated messages to it. (boolean value)
-#zmq_immediate = true
-
-# Enable/disable TCP keepalive (KA) mechanism. The default value of -1 (or any
-# other negative value) means to skip any overrides and leave it to OS default;
-# 0 and 1 (or any other positive value) mean to disable and enable the option
-# respectively. (integer value)
-#zmq_tcp_keepalive = -1
-
-# The duration between two keepalive transmissions in idle condition. The unit
-# is platform dependent, for example, seconds in Linux, milliseconds in Windows
-# etc. The default value of -1 (or any other negative value and 0) means to skip
-# any overrides and leave it to OS default. (integer value)
-#zmq_tcp_keepalive_idle = -1
-
-# The number of retransmissions to be carried out before declaring that remote
-# end is not available. The default value of -1 (or any other negative value and
-# 0) means to skip any overrides and leave it to OS default. (integer value)
-#zmq_tcp_keepalive_cnt = -1
-
-# The duration between two successive keepalive retransmissions, if
-# acknowledgement to the previous keepalive transmission is not received. The
-# unit is platform dependent, for example, seconds in Linux, milliseconds in
-# Windows etc. The default value of -1 (or any other negative value and 0) means
-# to skip any overrides and leave it to OS default. (integer value)
-#zmq_tcp_keepalive_intvl = -1
-
-# Maximum number of (green) threads to work concurrently. (integer value)
-#rpc_thread_pool_size = 100
-
-# Expiration timeout in seconds of a sent/received message after which it is not
-# tracked anymore by a client/server. (integer value)
-#rpc_message_ttl = 300
-
-# Wait for message acknowledgements from receivers. This mechanism works only
-# via proxy without PUB/SUB. (boolean value)
-#rpc_use_acks = false
-
-# Number of seconds to wait for an ack from a cast/call. After each retry
-# attempt this timeout is multiplied by some specified multiplier. (integer
-# value)
-#rpc_ack_timeout_base = 15
-
-# Number to multiply base ack timeout by after each retry attempt. (integer
-# value)
-#rpc_ack_timeout_multiplier = 2
-
-# Default number of message sending attempts in case of any problems occurred:
-# positive value N means at most N retries, 0 means no retries, None or -1 (or
-# any other negative values) mean to retry forever. This option is used only if
-# acknowledgments are enabled. (integer value)
-#rpc_retry_attempts = 3
-
-# List of publisher hosts SubConsumer can subscribe on. This option has higher
-# priority then the default publishers list taken from the matchmaker. (list
-# value)
-#subscribe_on =
+#zmq_immediate = false
 
 
 [oslo_middleware]
@@ -4184,10 +3497,13 @@
 # From oslo.policy
 #
 
-# The file that defines policies. (string value)
+# The JSON file that defines policies. (string value)
+# Deprecated group/name - [DEFAULT]/policy_file
 #policy_file = policy.json
+policy_file = /etc/glance/policy.json
 
 # Default rule. Enforced when a requested rule is not found. (string value)
+# Deprecated group/name - [DEFAULT]/policy_default_rule
 #policy_default_rule = default
 
 # Directories where policy configuration files are stored. They can be relative
@@ -4195,6 +3511,7 @@
 # absolute paths. The file defined by policy_file must exist for these
 # directories to be searched.  Missing or empty directories are ignored. (multi
 # valued)
+# Deprecated group/name - [DEFAULT]/policy_dirs
 #policy_dirs = policy.d
 
 
@@ -4224,6 +3541,9 @@
 #
 #  (string value)
 #flavor = keystone
+
+flavor=keystone
+
 
 #
 # Name of the paste configuration file.
@@ -4315,42 +3635,8 @@
 # Examples of possible values:
 #
 # * messaging://: use oslo_messaging driver for sending notifications.
-# * mongodb://127.0.0.1:27017 : use mongodb driver for sending notifications.
-# * elasticsearch://127.0.0.1:9200 : use elasticsearch driver for sending
-# notifications.
 #  (string value)
 #connection_string = messaging://
-
-#
-# Document type for notification indexing in elasticsearch.
-#  (string value)
-#es_doc_type = notification
-
-#
-# This parameter is a time value parameter (for example: es_scroll_time=2m),
-# indicating for how long the nodes that participate in the search will maintain
-# relevant resources in order to continue and support it.
-#  (string value)
-#es_scroll_time = 2m
-
-#
-# Elasticsearch splits large requests in batches. This parameter defines
-# maximum size of each batch (for example: es_scroll_size=10000).
-#  (integer value)
-#es_scroll_size = 10000
-
-#
-# Redissentinel provides a timeout option on the connections.
-# This parameter defines that timeout (for example: socket_timeout=0.1).
-#  (floating point value)
-#socket_timeout = 0.1
-
-#
-# Redissentinel uses a service name to identify a master redis service.
-# This parameter defines the name (for example:
-# sentinal_service_name=mymaster).
-#  (string value)
-#sentinel_service_name = mymaster
 
 
 [store_type_location_strategy]
@@ -4391,6 +3677,7 @@
 #store_type_preference =
 
 
+
 [task]
 
 #

2018-01-28 12:59:03,695 [salt.state       ][INFO    ][20741] Completed state [/etc/glance/glance-api.conf] at time 12:59:03.695256 duration_in_ms=261.61
2018-01-28 12:59:03,695 [salt.state       ][INFO    ][20741] Running state [/etc/glance/glance-api-paste.ini] at time 12:59:03.695690
2018-01-28 12:59:03,695 [salt.state       ][INFO    ][20741] Executing state file.managed for /etc/glance/glance-api-paste.ini
2018-01-28 12:59:03,720 [salt.fileclient  ][INFO    ][20741] Fetching file from saltenv 'base', ** done ** 'glance/files/pike/glance-api-paste.ini'
2018-01-28 12:59:03,763 [salt.state       ][INFO    ][20741] File changed:
--- 
+++ 
@@ -1,3 +1,4 @@
+
 # Use this pipeline for no auth or image caching - DEFAULT
 [pipeline:glance-api]
 pipeline = cors healthcheck http_proxy_to_wsgi versionnegotiation osprofiler unauthenticated-context rootapp
@@ -12,7 +13,7 @@
 
 # Use this pipeline for keystone auth
 [pipeline:glance-api-keystone]
-pipeline = cors healthcheck http_proxy_to_wsgi versionnegotiation osprofiler authtoken context  rootapp
+pipeline = cors healthcheck http_proxy_to_wsgi versionnegotiation osprofiler authtoken context rootapp
 
 # Use this pipeline for keystone auth with image caching
 [pipeline:glance-api-keystone+caching]

2018-01-28 12:59:03,763 [salt.state       ][INFO    ][20741] Completed state [/etc/glance/glance-api-paste.ini] at time 12:59:03.763672 duration_in_ms=67.981
2018-01-28 12:59:03,764 [salt.state       ][INFO    ][20741] Running state [/etc/default/glance-api] at time 12:59:03.764086
2018-01-28 12:59:03,764 [salt.state       ][INFO    ][20741] Executing state file.managed for /etc/default/glance-api
2018-01-28 12:59:03,788 [salt.fileclient  ][INFO    ][20741] Fetching file from saltenv 'base', ** done ** 'glance/files/default'
2018-01-28 12:59:03,792 [salt.state       ][INFO    ][20741] File changed:
New file
2018-01-28 12:59:03,792 [salt.state       ][INFO    ][20741] Completed state [/etc/default/glance-api] at time 12:59:03.792858 duration_in_ms=28.772
2018-01-28 12:59:03,793 [salt.state       ][INFO    ][20741] Running state [/etc/default/glance-registry] at time 12:59:03.793276
2018-01-28 12:59:03,793 [salt.state       ][INFO    ][20741] Executing state file.managed for /etc/default/glance-registry
2018-01-28 12:59:03,814 [salt.state       ][INFO    ][20741] File changed:
New file
2018-01-28 12:59:03,814 [salt.state       ][INFO    ][20741] Completed state [/etc/default/glance-registry] at time 12:59:03.814369 duration_in_ms=21.093
2018-01-28 12:59:03,815 [salt.state       ][INFO    ][20741] Running state [/etc/default/glance-glare] at time 12:59:03.815158
2018-01-28 12:59:03,815 [salt.state       ][INFO    ][20741] Executing state file.managed for /etc/default/glance-glare
2018-01-28 12:59:03,835 [salt.state       ][INFO    ][20741] File changed:
New file
2018-01-28 12:59:03,835 [salt.state       ][INFO    ][20741] Completed state [/etc/default/glance-glare] at time 12:59:03.835756 duration_in_ms=20.598
2018-01-28 12:59:03,839 [salt.state       ][INFO    ][20741] Running state [glance-api] at time 12:59:03.839585
2018-01-28 12:59:03,839 [salt.state       ][INFO    ][20741] Executing state service.running for glance-api
2018-01-28 12:59:03,840 [salt.loaded.int.module.cmdmod][INFO    ][20741] Executing command ['systemctl', 'status', 'glance-api.service', '-n', '0'] in directory '/root'
2018-01-28 12:59:03,865 [salt.loaded.int.module.cmdmod][INFO    ][20741] Executing command ['systemctl', 'is-active', 'glance-api.service'] in directory '/root'
2018-01-28 12:59:03,884 [salt.loaded.int.module.cmdmod][INFO    ][20741] Executing command ['systemctl', 'is-enabled', 'glance-api.service'] in directory '/root'
2018-01-28 12:59:03,911 [salt.state       ][INFO    ][20741] The service glance-api is already running
2018-01-28 12:59:03,912 [salt.state       ][INFO    ][20741] Completed state [glance-api] at time 12:59:03.912550 duration_in_ms=72.963
2018-01-28 12:59:03,913 [salt.state       ][INFO    ][20741] Running state [glance-api] at time 12:59:03.913152
2018-01-28 12:59:03,913 [salt.state       ][INFO    ][20741] Executing state service.mod_watch for glance-api
2018-01-28 12:59:03,915 [salt.loaded.int.module.cmdmod][INFO    ][20741] Executing command ['systemctl', 'is-active', 'glance-api.service'] in directory '/root'
2018-01-28 12:59:03,944 [salt.loaded.int.module.cmdmod][INFO    ][20741] Executing command ['systemctl', 'is-enabled', 'glance-api.service'] in directory '/root'
2018-01-28 12:59:03,969 [salt.loaded.int.module.cmdmod][INFO    ][20741] Executing command ['systemd-run', '--scope', 'systemctl', 'restart', 'glance-api.service'] in directory '/root'
2018-01-28 12:59:04,070 [salt.state       ][INFO    ][20741] {'glance-api': True}
2018-01-28 12:59:04,071 [salt.state       ][INFO    ][20741] Completed state [glance-api] at time 12:59:04.071195 duration_in_ms=158.043
2018-01-28 12:59:04,072 [salt.state       ][INFO    ][20741] Running state [glance-registry] at time 12:59:04.072643
2018-01-28 12:59:04,073 [salt.state       ][INFO    ][20741] Executing state service.running for glance-registry
2018-01-28 12:59:04,074 [salt.loaded.int.module.cmdmod][INFO    ][20741] Executing command ['systemctl', 'status', 'glance-registry.service', '-n', '0'] in directory '/root'
2018-01-28 12:59:04,096 [salt.loaded.int.module.cmdmod][INFO    ][20741] Executing command ['systemctl', 'is-active', 'glance-registry.service'] in directory '/root'
2018-01-28 12:59:04,114 [salt.loaded.int.module.cmdmod][INFO    ][20741] Executing command ['systemctl', 'is-enabled', 'glance-registry.service'] in directory '/root'
2018-01-28 12:59:04,133 [salt.state       ][INFO    ][20741] The service glance-registry is already running
2018-01-28 12:59:04,133 [salt.state       ][INFO    ][20741] Completed state [glance-registry] at time 12:59:04.133537 duration_in_ms=60.89
2018-01-28 12:59:04,133 [salt.state       ][INFO    ][20741] Running state [glance-registry] at time 12:59:04.133872
2018-01-28 12:59:04,134 [salt.state       ][INFO    ][20741] Executing state service.mod_watch for glance-registry
2018-01-28 12:59:04,135 [salt.loaded.int.module.cmdmod][INFO    ][20741] Executing command ['systemctl', 'is-active', 'glance-registry.service'] in directory '/root'
2018-01-28 12:59:04,153 [salt.loaded.int.module.cmdmod][INFO    ][20741] Executing command ['systemctl', 'is-enabled', 'glance-registry.service'] in directory '/root'
2018-01-28 12:59:04,173 [salt.loaded.int.module.cmdmod][INFO    ][20741] Executing command ['systemd-run', '--scope', 'systemctl', 'restart', 'glance-registry.service'] in directory '/root'
2018-01-28 12:59:04,233 [salt.state       ][INFO    ][20741] {'glance-registry': True}
2018-01-28 12:59:04,233 [salt.state       ][INFO    ][20741] Completed state [glance-registry] at time 12:59:04.233418 duration_in_ms=99.546
2018-01-28 12:59:04,237 [salt.state       ][INFO    ][20741] Running state [glance-manage db_sync] at time 12:59:04.237337
2018-01-28 12:59:04,237 [salt.state       ][INFO    ][20741] Executing state cmd.run for glance-manage db_sync
2018-01-28 12:59:04,238 [salt.loaded.int.module.cmdmod][INFO    ][20741] Executing command 'glance-manage db_sync' in directory '/root'
2018-01-28 12:59:06,093 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128125905508797
2018-01-28 12:59:06,132 [salt.minion      ][INFO    ][22106] Starting a new job with PID 22106
2018-01-28 12:59:06,155 [salt.minion      ][INFO    ][22106] Returning information for job: 20180128125905508797
2018-01-28 12:59:06,341 [salt.state       ][INFO    ][20741] {'pid': 22079, 'retcode': 0, 'stderr': '/usr/lib/python2.7/dist-packages/oslo_db/sqlalchemy/enginefacade.py:1328: OsloDBDeprecationWarning: EngineFacade is deprecated; please use oslo_db.sqlalchemy.enginefacade\n  expire_on_commit=expire_on_commit, _conf=conf)\nINFO  [alembic.runtime.migration] Context impl MySQLImpl.\nINFO  [alembic.runtime.migration] Will assume non-transactional DDL.\nINFO  [alembic.runtime.migration] Context impl MySQLImpl.\nINFO  [alembic.runtime.migration] Will assume non-transactional DDL.', 'stdout': 'Upgraded database to: pike01, current revision(s): pike01'}
2018-01-28 12:59:06,342 [salt.state       ][INFO    ][20741] Completed state [glance-manage db_sync] at time 12:59:06.342770 duration_in_ms=2105.432
2018-01-28 12:59:06,343 [salt.state       ][INFO    ][20741] Running state [glance-manage db_load_metadefs] at time 12:59:06.343938
2018-01-28 12:59:06,344 [salt.state       ][INFO    ][20741] Executing state cmd.run for glance-manage db_load_metadefs
2018-01-28 12:59:06,345 [salt.loaded.int.module.cmdmod][INFO    ][20741] Executing command 'glance-manage db_load_metadefs' in directory '/root'
2018-01-28 12:59:08,602 [salt.state       ][INFO    ][20741] {'pid': 22121, 'retcode': 0, 'stderr': '/usr/lib/python2.7/dist-packages/oslo_db/sqlalchemy/enginefacade.py:1328: OsloDBDeprecationWarning: EngineFacade is deprecated; please use oslo_db.sqlalchemy.enginefacade\n  expire_on_commit=expire_on_commit, _conf=conf)\n2018-01-28 12:59:08.347 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Glance::Signatures. It already exists in the database.\n2018-01-28 12:59:08.354 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Compute::Trust. It already exists in the database.\n2018-01-28 12:59:08.359 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace CIM::VirtualSystemSettingData. It already exists in the database.\n2018-01-28 12:59:08.365 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Compute::GuestShutdownBehavior. It already exists in the database.\n2018-01-28 12:59:08.371 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Compute::AggregateNumInstancesFilter. It already exists in the database.\n2018-01-28 12:59:08.377 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Software::WebServers. It already exists in the database.\n2018-01-28 12:59:08.383 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Compute::VMwareFlavor. It already exists in the database.\n2018-01-28 12:59:08.388 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Compute::GuestMemoryBacking. It already exists in the database.\n2018-01-28 12:59:08.394 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Compute::VMwareQuotaFlavor. It already exists in the database.\n2018-01-28 12:59:08.399 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace CIM::ProcessorAllocationSettingData. It already exists in the database.\n2018-01-28 12:59:08.405 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Compute::LibvirtImage. It already exists in the database.\n2018-01-28 12:59:08.411 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Compute::AggregateDiskFilter. It already exists in the database.\n2018-01-28 12:59:08.416 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Compute::RandomNumberGenerator. It already exists in the database.\n2018-01-28 12:59:08.423 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Compute::CPUPinning. It already exists in the database.\n2018-01-28 12:59:08.428 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace CIM::ResourceAllocationSettingData. It already exists in the database.\n2018-01-28 12:59:08.434 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Compute::HostCapabilities. It already exists in the database.\n2018-01-28 12:59:08.440 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Compute::Libvirt. It already exists in the database.\n2018-01-28 12:59:08.446 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Software::Runtimes. It already exists in the database.\n2018-01-28 12:59:08.452 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Software::DBMS. It already exists in the database.\n2018-01-28 12:59:08.458 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Compute::InstanceData. It already exists in the database.\n2018-01-28 12:59:08.464 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Compute::XenAPI. It already exists in the database.\n2018-01-28 12:59:08.470 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Compute::Hypervisor. It already exists in the database.\n2018-01-28 12:59:08.476 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Cinder::Volumetype. It already exists in the database.\n2018-01-28 12:59:08.483 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Compute::VirtCPUTopology. It already exists in the database.\n2018-01-28 12:59:08.488 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Compute::Quota. It already exists in the database.\n2018-01-28 12:59:08.495 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Compute::AggregateIoOpsFilter. It already exists in the database.\n2018-01-28 12:59:08.500 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::OperatingSystem. It already exists in the database.\n2018-01-28 12:59:08.507 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Compute::VMware. It already exists in the database.\n2018-01-28 12:59:08.513 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Glance::CommonImageProperties. It already exists in the database.\n2018-01-28 12:59:08.519 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace OS::Compute::Watchdog. It already exists in the database.\n2018-01-28 12:59:08.525 22122 INFO glance.db.sqlalchemy.metadata [-] Skipping namespace CIM::StorageAllocationSettingData. It already exists in the database.\n2018-01-28 12:59:08.526 22122 INFO glance.db.sqlalchemy.metadata [-] Metadata loading finished', 'stdout': ''}
2018-01-28 12:59:08,602 [salt.state       ][INFO    ][20741] Completed state [glance-manage db_load_metadefs] at time 12:59:08.602880 duration_in_ms=2258.941
2018-01-28 12:59:08,603 [salt.state       ][INFO    ][20741] Running state [/srv/glance] at time 12:59:08.603728
2018-01-28 12:59:08,604 [salt.state       ][INFO    ][20741] Executing state file.directory for /srv/glance
2018-01-28 12:59:08,606 [salt.state       ][INFO    ][20741] {'/srv/glance': 'New Dir'}
2018-01-28 12:59:08,606 [salt.state       ][INFO    ][20741] Completed state [/srv/glance] at time 12:59:08.606227 duration_in_ms=2.499
2018-01-28 12:59:08,607 [salt.state       ][INFO    ][20741] Running state [/var/lib/glance/images] at time 12:59:08.607003
2018-01-28 12:59:08,607 [salt.state       ][INFO    ][20741] Executing state file.directory for /var/lib/glance/images
2018-01-28 12:59:08,609 [salt.state       ][INFO    ][20741] Directory /var/lib/glance/images is in the correct state
2018-01-28 12:59:08,609 [salt.state       ][INFO    ][20741] Completed state [/var/lib/glance/images] at time 12:59:08.609471 duration_in_ms=2.468
2018-01-28 12:59:08,612 [salt.minion      ][INFO    ][20741] Returning information for job: 20180128125845213210
2018-01-28 12:59:09,530 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command test.ping with jid 20180128125908949091
2018-01-28 12:59:09,560 [salt.minion      ][INFO    ][22132] Starting a new job with PID 22132
2018-01-28 12:59:09,628 [salt.minion      ][INFO    ][22132] Returning information for job: 20180128125908949091
2018-01-28 12:59:14,389 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command state.sls with jid 20180128125913811465
2018-01-28 12:59:14,416 [salt.minion      ][INFO    ][22137] Starting a new job with PID 22137
2018-01-28 12:59:15,360 [salt.state       ][INFO    ][22137] Loading fresh modules for state activity
2018-01-28 12:59:15,419 [salt.fileclient  ][INFO    ][22137] Fetching file from saltenv 'base', ** done ** 'nova/init.sls'
2018-01-28 12:59:15,453 [salt.fileclient  ][INFO    ][22137] Fetching file from saltenv 'base', ** done ** 'nova/controller.sls'
2018-01-28 12:59:15,642 [salt.utils.templates][ERROR   ][22137] Rendering exception occurred: Jinja variable 'list object' has no attribute 'log_appender'
2018-01-28 12:59:15,642 [salt.state       ][CRITICAL][22137] Rendering SLS 'base:nova.controller' failed: Jinja variable 'list object' has no attribute 'log_appender'
2018-01-28 12:59:15,642 [salt.minion      ][INFO    ][22137] Returning information for job: 20180128125913811465
2018-01-28 12:59:16,465 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command test.ping with jid 20180128125915885903
2018-01-28 12:59:16,490 [salt.minion      ][INFO    ][22148] Starting a new job with PID 22148
2018-01-28 12:59:16,558 [salt.minion      ][INFO    ][22148] Returning information for job: 20180128125915885903
2018-01-28 13:00:18,441 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command state.sls with jid 20180128130017859725
2018-01-28 13:00:18,471 [salt.minion      ][INFO    ][22153] Starting a new job with PID 22153
2018-01-28 13:00:21,275 [salt.state       ][INFO    ][22153] Loading fresh modules for state activity
2018-01-28 13:00:21,340 [salt.fileclient  ][INFO    ][22153] Fetching file from saltenv 'base', ** done ** 'heat/init.sls'
2018-01-28 13:00:21,371 [salt.fileclient  ][INFO    ][22153] Fetching file from saltenv 'base', ** done ** 'heat/server.sls'
2018-01-28 13:00:23,146 [salt.state       ][INFO    ][22153] Running state [heat-api] at time 13:00:23.146080
2018-01-28 13:00:23,146 [salt.state       ][INFO    ][22153] Executing state pkg.installed for heat-api
2018-01-28 13:00:23,148 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 13:00:23,541 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['apt-cache', '-q', 'policy', 'heat-api'] in directory '/root'
2018-01-28 13:00:23,640 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['apt-get', '-q', 'update'] in directory '/root'
2018-01-28 13:00:25,567 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 13:00:25,607 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'heat-api'] in directory '/root'
2018-01-28 13:00:28,500 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128130027916381
2018-01-28 13:00:28,517 [salt.minion      ][INFO    ][22939] Starting a new job with PID 22939
2018-01-28 13:00:28,533 [salt.minion      ][INFO    ][22939] Returning information for job: 20180128130027916381
2018-01-28 13:00:33,860 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 13:00:33,921 [salt.state       ][INFO    ][22153] Made the following changes:
'python-oslo.versionedobjects' changed from 'absent' to '1.26.0-0ubuntu1~cloud0'
'python-magnumclient' changed from 'absent' to '2.7.0-0ubuntu1~cloud0'
'python-heatclient' changed from 'absent' to '1.11.0-0ubuntu1~cloud0'
'python-manilaclient' changed from 'absent' to '1.17.1-0ubuntu1~cloud0'
'python-senlinclient' changed from 'absent' to '1.4.0-0ubuntu1~cloud0'
'python-ply-lex-3.5' changed from 'absent' to '1'
'python-heat' changed from 'absent' to '1:9.0.1-0ubuntu1~cloud0'
'python-aodhclient' changed from 'absent' to '0.9.0-0ubuntu1~cloud0'
'python-croniter' changed from 'absent' to '0.3.8-1'
'python-monascaclient' changed from 'absent' to '1.7.0-0ubuntu1~cloud0'
'python-yaql' changed from 'absent' to '1.1.0-0ubuntu1'
'python-mistralclient' changed from 'absent' to '1:3.1.0-0ubuntu1~cloud0'
'python-oslo.reports' changed from 'absent' to '1.22.0-0ubuntu1~cloud0'
'heat-common' changed from 'absent' to '1:9.0.1-0ubuntu1~cloud0'
'python-manilaclient-doc' changed from 'absent' to '1.17.1-0ubuntu1~cloud0'
'python-troveclient' changed from 'absent' to '1:2.12.0-0ubuntu1~cloud0'
'python-ply-yacc-3.5' changed from 'absent' to '1'
'python-designateclient' changed from 'absent' to '2.7.0-0ubuntu1~cloud0'
'python-ply' changed from 'absent' to '3.7-1'
'python-saharaclient' changed from 'absent' to '1.3.0-0ubuntu1~cloud0'
'heat-api' changed from 'absent' to '1:9.0.1-0ubuntu1~cloud0'
'python2.7-ply' changed from 'absent' to '1'
'python-zaqarclient' changed from 'absent' to '1.7.0-0ubuntu1~cloud0'

2018-01-28 13:00:33,957 [salt.state       ][INFO    ][22153] Loading fresh modules for state activity
2018-01-28 13:00:34,129 [salt.state       ][INFO    ][22153] Completed state [heat-api] at time 13:00:34.129226 duration_in_ms=10983.146
2018-01-28 13:00:34,141 [salt.state       ][INFO    ][22153] Running state [heat-api-cfn] at time 13:00:34.141174
2018-01-28 13:00:34,141 [salt.state       ][INFO    ][22153] Executing state pkg.installed for heat-api-cfn
2018-01-28 13:00:34,673 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 13:00:34,706 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'heat-api-cfn'] in directory '/root'
2018-01-28 13:00:37,540 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 13:00:37,591 [salt.state       ][INFO    ][22153] Made the following changes:
'heat-api-cfn' changed from 'absent' to '1:9.0.1-0ubuntu1~cloud0'

2018-01-28 13:00:37,619 [salt.state       ][INFO    ][22153] Loading fresh modules for state activity
2018-01-28 13:00:37,676 [salt.state       ][INFO    ][22153] Completed state [heat-api-cfn] at time 13:00:37.676874 duration_in_ms=3535.699
2018-01-28 13:00:37,686 [salt.state       ][INFO    ][22153] Running state [heat-api-cloudwatch] at time 13:00:37.686687
2018-01-28 13:00:37,687 [salt.state       ][INFO    ][22153] Executing state pkg.installed for heat-api-cloudwatch
2018-01-28 13:00:38,147 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 13:00:38,181 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'heat-api-cloudwatch'] in directory '/root'
2018-01-28 13:00:38,675 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128130038092672
2018-01-28 13:00:38,696 [salt.minion      ][INFO    ][23486] Starting a new job with PID 23486
2018-01-28 13:00:38,714 [salt.minion      ][INFO    ][23486] Returning information for job: 20180128130038092672
2018-01-28 13:00:41,068 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 13:00:41,121 [salt.state       ][INFO    ][22153] Made the following changes:
'heat-api-cloudwatch' changed from 'absent' to '1:9.0.1-0ubuntu1~cloud0'

2018-01-28 13:00:41,151 [salt.state       ][INFO    ][22153] Loading fresh modules for state activity
2018-01-28 13:00:41,184 [salt.state       ][INFO    ][22153] Completed state [heat-api-cloudwatch] at time 13:00:41.184082 duration_in_ms=3497.395
2018-01-28 13:00:41,195 [salt.state       ][INFO    ][22153] Running state [heat-engine] at time 13:00:41.195037
2018-01-28 13:00:41,195 [salt.state       ][INFO    ][22153] Executing state pkg.installed for heat-engine
2018-01-28 13:00:41,737 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 13:00:41,784 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'heat-engine'] in directory '/root'
2018-01-28 13:00:44,656 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 13:00:44,711 [salt.state       ][INFO    ][22153] Made the following changes:
'heat-engine' changed from 'absent' to '1:9.0.1-0ubuntu1~cloud0'

2018-01-28 13:00:44,740 [salt.state       ][INFO    ][22153] Loading fresh modules for state activity
2018-01-28 13:00:44,774 [salt.state       ][INFO    ][22153] Completed state [heat-engine] at time 13:00:44.774125 duration_in_ms=3579.088
2018-01-28 13:00:44,785 [salt.state       ][INFO    ][22153] Running state [heat-common] at time 13:00:44.785238
2018-01-28 13:00:44,785 [salt.state       ][INFO    ][22153] Executing state pkg.installed for heat-common
2018-01-28 13:00:45,240 [salt.state       ][INFO    ][22153] All specified packages are already installed
2018-01-28 13:00:45,240 [salt.state       ][INFO    ][22153] Completed state [heat-common] at time 13:00:45.240483 duration_in_ms=455.244
2018-01-28 13:00:45,240 [salt.state       ][INFO    ][22153] Running state [python-heatclient] at time 13:00:45.240804
2018-01-28 13:00:45,241 [salt.state       ][INFO    ][22153] Executing state pkg.installed for python-heatclient
2018-01-28 13:00:45,248 [salt.state       ][INFO    ][22153] All specified packages are already installed
2018-01-28 13:00:45,248 [salt.state       ][INFO    ][22153] Completed state [python-heatclient] at time 13:00:45.248344 duration_in_ms=7.54
2018-01-28 13:00:45,248 [salt.state       ][INFO    ][22153] Running state [gettext-base] at time 13:00:45.248580
2018-01-28 13:00:45,248 [salt.state       ][INFO    ][22153] Executing state pkg.installed for gettext-base
2018-01-28 13:00:45,258 [salt.state       ][INFO    ][22153] All specified packages are already installed
2018-01-28 13:00:45,258 [salt.state       ][INFO    ][22153] Completed state [gettext-base] at time 13:00:45.258818 duration_in_ms=10.237
2018-01-28 13:00:45,261 [salt.state       ][INFO    ][22153] Running state [/etc/heat/heat.conf] at time 13:00:45.261293
2018-01-28 13:00:45,261 [salt.state       ][INFO    ][22153] Executing state file.managed for /etc/heat/heat.conf
2018-01-28 13:00:45,298 [salt.fileclient  ][INFO    ][22153] Fetching file from saltenv 'base', ** done ** 'heat/files/pike/heat.conf.Debian'
2018-01-28 13:00:45,461 [salt.state       ][INFO    ][22153] File changed:
--- 
+++ 
@@ -1,12 +1,15 @@
+
 [DEFAULT]
 
 #
 # From heat.api.middleware.ssl
 #
+region_name_for_services=RegionOne
 
 # The HTTP Header that will be used to determine what the original request
 # protocol scheme was, even if it was removed by an SSL terminator proxy.
 # (string value)
+# Deprecated group/name - [DEFAULT]/secure_proxy_ssl_header
 #secure_proxy_ssl_header = X-Forwarded-Proto
 
 #
@@ -15,7 +18,7 @@
 
 # Name of the engine node. This can be an opaque identifier. It is not
 # necessarily a hostname, FQDN, or IP address. (string value)
-#host = lgw01-amd64-021
+#host = lgw01-02
 
 # List of directories to search for plug-ins. (list value)
 #plugin_dirs = /usr/lib64/heat,/usr/lib/heat,/usr/local/lib/heat,/usr/local/lib64/heat
@@ -26,13 +29,8 @@
 # The directory to search for template files. (string value)
 #template_dir = /etc/heat/templates
 
-# DEPRECATED: Select deferred auth method, stored password or trusts. (string
-# value)
+# Select deferred auth method, stored password or trusts. (string value)
 # Allowed values: password, trusts
-# This option is deprecated for removal since 9.0.0.
-# Its value may be silently ignored in the future.
-# Reason: Stored password based deferred auth is broken when used with keystone
-# v3 and is not supported.
 #deferred_auth_method = trusts
 
 # Allow reauthentication on token expiry, such that long-running tasks may
@@ -40,6 +38,10 @@
 # value)
 # Allowed values: '', trusts
 #reauthentication_auth_method =
+
+# Gap, in seconds, to determine whether the given token is about to expire.
+# (integer value)
+#stale_token_duration = 30
 
 # Subset of trustor roles to be delegated to heat. If left unset, all roles of
 # a user will be delegated to heat when creating a stack. (list value)
@@ -173,15 +175,19 @@
 # require instances to use a different endpoint than in the keystone catalog
 # (string value)
 #heat_metadata_server_url = <None>
+heat_metadata_server_url=http://192.168.10.103:8000
 
 # URL of the Heat waitcondition server. (string value)
 #heat_waitcondition_server_url = <None>
+heat_waitcondition_server_url=http://192.168.10.103:8000/v1/waitcondition
 
 # URL of the Heat CloudWatch server. (string value)
 #heat_watch_server_url =
+heat_watch_server_url=http://192.168.10.103:8003
 
 # Instance connection to CFN/CW API via https. (string value)
 #instance_connection_is_secure = 0
+instance_connection_is_secure=0
 
 # Instance connection to CFN/CW API validate certs if SSL is used. (string
 # value)
@@ -202,12 +208,15 @@
 # `stack_user_domain_id` option is set, this option is ignored. (string value)
 #stack_user_domain_name = <None>
 
-# Keystone username, a user with roles sufficient to manage users and projects
-# in the stack_user_domain. (string value)
-#stack_domain_admin = <None>
-
-# Keystone password for stack_domain_admin user. (string value)
-#stack_domain_admin_password = <None>
+# Keystone username, a user with roles sufficient to manage
+# users and projects in the stack_user_domain. (string value)
+stack_domain_admin = heat_domain_admin
+
+# Keystone password for stack_domain_admin user. (string
+# value)
+stack_domain_admin_password=opnfv_secret
+
+stack_user_domain_name = heat_user_domain
 
 # Maximum raw byte size of any template. (integer value)
 #max_template_size = 524288
@@ -241,13 +250,6 @@
 
 # Fully qualified class name to use as a client backend. (string value)
 #cloud_backend = heat.engine.clients.OpenStackClients
-
-#
-# From heat.engine.clients.os.keystone.heat_keystoneclient
-#
-
-# Fully qualified class name to use as a keystone backend. (string value)
-#keystone_backend = heat.engine.clients.os.keystone.heat_keystoneclient.KsClientWrapper
 
 #
 # From heat.engine.notification
@@ -274,6 +276,13 @@
 # INFO level. (boolean value)
 # Note: This option can be changed without restarting.
 #debug = false
+
+# DEPRECATED: If set to false, the logging level will be set to WARNING instead
+# of the default INFO level. (boolean value)
+# This option is deprecated for removal.
+# Its value may be silently ignored in the future.
+#verbose = true
+verbose = true
 
 # The name of a logging configuration file. This file is appended to any
 # existing logging configuration files. For details about logging configuration
@@ -295,6 +304,7 @@
 # log_config_append is set. (string value)
 # Deprecated group/name - [DEFAULT]/logfile
 #log_file = <None>
+log_file=/var/log/heat/heat.log
 
 # (Optional) The base directory used for relative log_file  paths. This option
 # is ignored if log_config_append is set. (string value)
@@ -313,12 +323,6 @@
 # is set. (boolean value)
 #use_syslog = false
 
-# Enable journald for logging. If running in a systemd environment you may wish
-# to enable journal support. Doing so will use the journal native protocol
-# which includes structured metadata in addition to log messages.This option is
-# ignored if log_config_append is set. (boolean value)
-#use_journal = false
-
 # Syslog facility to receive log lines. This option is ignored if
 # log_config_append is set. (string value)
 #syslog_log_facility = LOG_USER
@@ -347,7 +351,7 @@
 
 # List of package logging levels in logger=LEVEL pairs. This option is ignored
 # if log_config_append is set. (list value)
-#default_log_levels = amqp=WARN,amqplib=WARN,boto=WARN,qpid=WARN,sqlalchemy=WARN,suds=INFO,oslo.messaging=INFO,oslo_messaging=INFO,iso8601=WARN,requests.packages.urllib3.connectionpool=WARN,urllib3.connectionpool=WARN,websocket=WARN,requests.packages.urllib3.util.retry=WARN,urllib3.util.retry=WARN,keystonemiddleware=WARN,routes.middleware=WARN,stevedore=WARN,taskflow=WARN,keystoneauth=WARN,oslo.cache=INFO,dogpile.core.dogpile=INFO
+#default_log_levels = amqp=WARN,amqplib=WARN,boto=WARN,qpid=WARN,sqlalchemy=WARN,suds=INFO,oslo.messaging=INFO,iso8601=WARN,requests.packages.urllib3.connectionpool=WARN,urllib3.connectionpool=WARN,websocket=WARN,requests.packages.urllib3.util.retry=WARN,urllib3.util.retry=WARN,keystonemiddleware=WARN,routes.middleware=WARN,stevedore=WARN,taskflow=WARN,keystoneauth=WARN,oslo.cache=INFO,dogpile.core.dogpile=INFO
 
 # Enables or disables publication of error events. (boolean value)
 #publish_errors = false
@@ -380,6 +384,7 @@
 #
 
 # Size of RPC connection pool. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_conn_pool_size
 #rpc_conn_pool_size = 30
 
 # The pool size limit for connections expiration policy (integer value)
@@ -390,24 +395,30 @@
 
 # ZeroMQ bind address. Should be a wildcard (*), an ethernet interface, or IP.
 # The "host" option should point or resolve to this address. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_bind_address
 #rpc_zmq_bind_address = *
 
 # MatchMaker driver. (string value)
 # Allowed values: redis, sentinel, dummy
+# Deprecated group/name - [DEFAULT]/rpc_zmq_matchmaker
 #rpc_zmq_matchmaker = redis
 
 # Number of ZeroMQ contexts, defaults to 1. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_contexts
 #rpc_zmq_contexts = 1
 
 # Maximum number of ingress messages to locally buffer per topic. Default is
 # unlimited. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_topic_backlog
 #rpc_zmq_topic_backlog = <None>
 
 # Directory for holding IPC sockets. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_ipc_dir
 #rpc_zmq_ipc_dir = /var/run/openstack
 
 # Name of this node. Must be a valid hostname, FQDN, or IP address. Must match
 # "host" option, if running Nova. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_host
 #rpc_zmq_host = localhost
 
 # Number of seconds to wait before all pending messages will be sent after
@@ -420,21 +431,26 @@
 
 # The default number of seconds that poll should wait. Poll raises timeout
 # exception when timeout expired. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_poll_timeout
 #rpc_poll_timeout = 1
 
 # Expiration timeout in seconds of a name service record about existing target
 # ( < 0 means no timeout). (integer value)
+# Deprecated group/name - [DEFAULT]/zmq_target_expire
 #zmq_target_expire = 300
 
 # Update period in seconds of a name service record about existing target.
 # (integer value)
+# Deprecated group/name - [DEFAULT]/zmq_target_update
 #zmq_target_update = 180
 
 # Use PUB/SUB pattern for fanout methods. PUB/SUB always uses proxy. (boolean
 # value)
+# Deprecated group/name - [DEFAULT]/use_pub_sub
 #use_pub_sub = false
 
 # Use ROUTER remote proxy. (boolean value)
+# Deprecated group/name - [DEFAULT]/use_router_proxy
 #use_router_proxy = false
 
 # This option makes direct connections dynamic or static. It makes sense only
@@ -449,20 +465,24 @@
 # Minimal port number for random ports range. (port value)
 # Minimum value: 0
 # Maximum value: 65535
+# Deprecated group/name - [DEFAULT]/rpc_zmq_min_port
 #rpc_zmq_min_port = 49153
 
 # Maximal port number for random ports range. (integer value)
 # Minimum value: 1
 # Maximum value: 65536
+# Deprecated group/name - [DEFAULT]/rpc_zmq_max_port
 #rpc_zmq_max_port = 65536
 
 # Number of retries to find free port number before fail with ZMQBindError.
 # (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_bind_port_retries
 #rpc_zmq_bind_port_retries = 100
 
 # Default serialization mechanism for serializing/deserializing
 # outgoing/incoming messages (string value)
 # Allowed values: json, msgpack
+# Deprecated group/name - [DEFAULT]/rpc_zmq_serialization
 #rpc_zmq_serialization = json
 
 # This option configures round-robin mode in zmq socket. True means not keeping
@@ -527,18 +547,18 @@
 # value)
 #subscribe_on =
 
-# Size of executor thread pool when executor is threading or eventlet. (integer
-# value)
+# Size of executor thread pool. (integer value)
 # Deprecated group/name - [DEFAULT]/rpc_thread_pool_size
 #executor_thread_pool_size = 64
 
 # Seconds to wait for a response from a call. (integer value)
 #rpc_response_timeout = 60
+rpc_response_timeout = 600
 
 # A URL representing the messaging driver to use and its full configuration.
 # (string value)
 #transport_url = <None>
-
+transport_url = rabbit://openstack:opnfv_secret@192.168.10.41:5672,openstack:opnfv_secret@192.168.10.42:5672,openstack:opnfv_secret@192.168.10.43:5672//openstack
 # DEPRECATED: The messaging driver to use, defaults to rabbit. Other drivers
 # include amqp and zmq. (string value)
 # This option is deprecated for removal.
@@ -583,7 +603,9 @@
 # Specify a timeout after which a gracefully shutdown server will exit. Zero
 # value means endless wait. (integer value)
 #graceful_shutdown_timeout = 60
-
+max_resources_per_stack=20000
+max_json_body_size=10880000
+max_template_size=5440000
 
 [auth_password]
 
@@ -788,32 +810,6 @@
 # Optional heat url in format like http://0.0.0.0:8004/v1/%(tenant_id)s.
 # (string value)
 #url =
-
-
-[clients_keystone]
-
-#
-# From heat.common.config
-#
-
-# Type of endpoint in Identity service catalog to use for communication with
-# the OpenStack service. (string value)
-#endpoint_type = <None>
-
-# Optional CA cert file to use in SSL connections. (string value)
-#ca_file = <None>
-
-# Optional PEM-formatted certificate chain file. (string value)
-#cert_file = <None>
-
-# Optional PEM-formatted file that contains the private key. (string value)
-#key_file = <None>
-
-# If set, then the server's certificate will not be verified. (boolean value)
-#insecure = <None>
-
-# Unversioned keystone url in format like http://0.0.0.0:5000. (string value)
-#auth_uri =
 
 
 [clients_magnum]
@@ -1093,6 +1089,7 @@
 # Maximum cache age of CORS preflight requests. (integer value)
 #max_age = 3600
 
+
 # Indicate which methods can be used during the actual request. (list value)
 #allow_methods = GET,PUT,POST,DELETE,PATCH
 
@@ -1101,13 +1098,51 @@
 #allow_headers = X-Auth-Token,X-Identity-Status,X-Roles,X-Service-Catalog,X-User-Id,X-Tenant-Id,X-OpenStack-Request-ID
 
 
+[cors.subdomain]
+
+#
+# From oslo.middleware
+#
+
+# Indicate whether this resource may be shared with the domain received in the
+# requests "origin" header. Format: "<protocol>://<host>[:<port>]", no trailing
+# slash. Example: https://horizon.example.com (list value)
+#allowed_origin = <None>
+
+# Indicate that the actual request can include user credentials (boolean value)
+#allow_credentials = true
+
+# Indicate which headers are safe to expose to the API. Defaults to HTTP Simple
+# Headers. (list value)
+#expose_headers = X-Auth-Token,X-Subject-Token,X-Service-Token,X-OpenStack-Request-ID
+
+# Maximum cache age of CORS preflight requests. (integer value)
+#max_age = 3600
+
+# Indicate which methods can be used during the actual request. (list value)
+#allow_methods = GET,PUT,POST,DELETE,PATCH
+
+# Indicate which header field names may be used during the actual request.
+# (list value)
+#allow_headers = X-Auth-Token,X-Identity-Status,X-Roles,X-Service-Catalog,X-User-Id,X-Tenant-Id,X-OpenStack-Request-ID
+
+
 [database]
 
 #
 # From oslo.db
 #
 
+# DEPRECATED: The file name to use with SQLite. (string value)
+# Deprecated group/name - [DEFAULT]/sqlite_db
+# This option is deprecated for removal.
+# Its value may be silently ignored in the future.
+# Reason: Should use config option connection or slave_connection to connect
+# the database.
+#sqlite_db = oslo.sqlite
+
 # If True, SQLite uses synchronous mode. (boolean value)
+# Deprecated group/name - [DEFAULT]/sqlite_synchronous
 #sqlite_synchronous = true
 
 # The back end to use for the database. (string value)
@@ -1120,6 +1155,7 @@
 # Deprecated group/name - [DATABASE]/sql_connection
 # Deprecated group/name - [sql]/connection
 #connection = <None>
+connection = mysql+pymysql://heat:opnfv_secret@192.168.10.50/heat?charset=utf8
 
 # The SQLAlchemy connection string to use to connect to the slave database.
 # (string value)
@@ -1131,10 +1167,6 @@
 # (string value)
 #mysql_sql_mode = TRADITIONAL
 
-# If True, transparently enables support for handling MySQL Cluster (NDB).
-# (boolean value)
-#mysql_enable_ndb = false
-
 # Timeout before idle SQL connections are reaped. (integer value)
 # Deprecated group/name - [DEFAULT]/sql_idle_timeout
 # Deprecated group/name - [DATABASE]/sql_idle_timeout
@@ -1151,12 +1183,14 @@
 # Deprecated group/name - [DEFAULT]/sql_max_pool_size
 # Deprecated group/name - [DATABASE]/sql_max_pool_size
 #max_pool_size = 5
+max_pool_size = 30
 
 # Maximum number of database connection retries during startup. Set to -1 to
 # specify an infinite retry count. (integer value)
 # Deprecated group/name - [DEFAULT]/sql_max_retries
 # Deprecated group/name - [DATABASE]/sql_max_retries
 #max_retries = 10
+max_retries = -1
 
 # Interval between retries of opening a SQL connection. (integer value)
 # Deprecated group/name - [DEFAULT]/sql_retry_interval
@@ -1167,6 +1201,7 @@
 # Deprecated group/name - [DEFAULT]/sql_max_overflow
 # Deprecated group/name - [DATABASE]/sqlalchemy_max_overflow
 #max_overflow = 50
+max_overflow = 60
 
 # Verbosity of SQL debugging information: 0=None, 100=Everything. (integer
 # value)
@@ -1206,30 +1241,28 @@
 [ec2authtoken]
 
 #
-# From heat.api.aws.ec2token
+# Options defined in heat.api.aws.ec2token
 #
 
 # Authentication Endpoint URI. (string value)
-#auth_uri = <None>
+auth_uri=http://192.168.10.10:5000/v2.0
 
 # Allow orchestration of multiple clouds. (boolean value)
-#multi_cloud = false
-
-# Allowed keystone endpoints for auth_uri when multi_cloud is enabled. At least
-# one endpoint needs to be specified. (list value)
-#allowed_auth_uris =
-
-# Optional PEM-formatted certificate chain file. (string value)
-#cert_file = <None>
-
-# Optional PEM-formatted file that contains the private key. (string value)
-#key_file = <None>
-
-# Optional CA cert file to use in SSL connections. (string value)
-#ca_file = <None>
-
-# If set, then the server's certificate will not be verified. (boolean value)
-#insecure = false
+#multi_cloud=false
+
+# Allowed keystone endpoints for auth_uri when multi_cloud is
+# enabled. At least one endpoint needs to be specified. (list
+# value)
+#allowed_auth_uris=
+keystone_ec2_uri=http://192.168.10.10:5000/v2.0/ec2tokens
+
+[clients]
+endpoint_type = internalURL
+
+[clients_heat]
+endpoint_type = publicURL
+[clients_keystone]
+auth_uri=http://192.168.10.10:35357
 
 
 [eventlet_opts]
@@ -1283,26 +1316,34 @@
 
 # Address to bind the server. Useful when selecting a particular network
 # interface. (IP address value)
+# Deprecated group/name - [DEFAULT]/bind_host
 #bind_host = 0.0.0.0
+bind_host = 192.168.10.13
 
 # The port on which the server will listen. (port value)
 # Minimum value: 0
 # Maximum value: 65535
+# Deprecated group/name - [DEFAULT]/bind_port
 #bind_port = 8004
 
 # Number of backlog requests to configure the socket with. (integer value)
+# Deprecated group/name - [DEFAULT]/backlog
 #backlog = 4096
 
 # Location of the SSL certificate file to use for SSL mode. (string value)
+# Deprecated group/name - [DEFAULT]/cert_file
 #cert_file = <None>
 
 # Location of the SSL key file to use for enabling SSL mode. (string value)
+# Deprecated group/name - [DEFAULT]/key_file
 #key_file = <None>
 
 # Number of workers for Heat service. Default value 0 means, that service will
 # start number of workers equal number of cores on server. (integer value)
 # Minimum value: 0
+# Deprecated group/name - [DEFAULT]/workers
 #workers = 0
+workers=4
 
 # Maximum line size of message headers to be accepted. max_header_line may need
 # to be increased when using large tokens (typically those generated by the
@@ -1323,24 +1364,31 @@
 
 # Address to bind the server. Useful when selecting a particular network
 # interface. (IP address value)
+# Deprecated group/name - [DEFAULT]/bind_host
 #bind_host = 0.0.0.0
+bind_host = 192.168.10.13
 
 # The port on which the server will listen. (port value)
 # Minimum value: 0
 # Maximum value: 65535
+# Deprecated group/name - [DEFAULT]/bind_port
 #bind_port = 8000
 
 # Number of backlog requests to configure the socket with. (integer value)
+# Deprecated group/name - [DEFAULT]/backlog
 #backlog = 4096
 
 # Location of the SSL certificate file to use for SSL mode. (string value)
+# Deprecated group/name - [DEFAULT]/cert_file
 #cert_file = <None>
 
 # Location of the SSL key file to use for enabling SSL mode. (string value)
+# Deprecated group/name - [DEFAULT]/key_file
 #key_file = <None>
 
 # Number of workers for Heat service. (integer value)
 # Minimum value: 0
+# Deprecated group/name - [DEFAULT]/workers
 #workers = 1
 
 # Maximum line size of message headers to be accepted. max_header_line may need
@@ -1362,24 +1410,31 @@
 
 # Address to bind the server. Useful when selecting a particular network
 # interface. (IP address value)
+# Deprecated group/name - [DEFAULT]/bind_host
 #bind_host = 0.0.0.0
+bind_host = 192.168.10.13
 
 # The port on which the server will listen. (port value)
 # Minimum value: 0
 # Maximum value: 65535
+# Deprecated group/name - [DEFAULT]/bind_port
 #bind_port = 8003
 
 # Number of backlog requests to configure the socket with. (integer value)
+# Deprecated group/name - [DEFAULT]/backlog
 #backlog = 4096
 
 # Location of the SSL certificate file to use for SSL mode. (string value)
+# Deprecated group/name - [DEFAULT]/cert_file
 #cert_file = <None>
 
 # Location of the SSL key file to use for enabling SSL mode. (string value)
+# Deprecated group/name - [DEFAULT]/key_file
 #key_file = <None>
 
 # Number of workers for Heat service. (integer value)
 # Minimum value: 0
+# Deprecated group/name - [DEFAULT]/workers
 #workers = 1
 
 # Maximum line size of message headers to be accepted. max_header_line may need
@@ -1402,10 +1457,10 @@
 # Complete "public" Identity API endpoint. This endpoint should not be an
 # "admin" endpoint, as it should be accessible by all end users.
 # Unauthenticated clients are redirected to this endpoint to authenticate.
-# Although this endpoint should ideally be unversioned, client support in the
-# wild varies. If you're using a versioned v2 endpoint here, then this should
-# *not* be the same endpoint the service user utilizes for validating tokens,
-# because normal end users may not be able to reach that endpoint. (string
+# Although this endpoint should  ideally be unversioned, client support in the
+# wild varies.  If you're using a versioned v2 endpoint here, then this  should
+# *not* be the same endpoint the service user utilizes  for validating tokens,
+# because normal end users may not be  able to reach that endpoint. (string
 # value)
 #auth_uri = <None>
 
@@ -1602,7 +1657,18 @@
 
 # Config Section from which to load plugin specific options (string value)
 #auth_section = <None>
-
+auth_type = password
+auth_uri=http://192.168.10.10:5000/v2.0
+#identity_uri=http://192.168.10.10:35357
+#admin_user=heat
+#admin_password=opnfv_secret
+#admin_tenant_name=service
+auth_url=http://192.168.10.10:35357
+username = heat
+password = opnfv_secret
+project_name = service
+project_domain_name = Default
+user_domain_name = Default
 
 [matchmaker_redis]
 
@@ -1658,64 +1724,61 @@
 
 # Name for the AMQP container. must be globally unique. Defaults to a generated
 # UUID (string value)
+# Deprecated group/name - [amqp1]/container_name
 #container_name = <None>
 
 # Timeout for inactive connections (in seconds) (integer value)
+# Deprecated group/name - [amqp1]/idle_timeout
 #idle_timeout = 0
 
 # Debug: dump AMQP frames to stdout (boolean value)
+# Deprecated group/name - [amqp1]/trace
 #trace = false
 
-# Attempt to connect via SSL. If no other ssl-related parameters are given, it
-# will use the system's CA-bundle to verify the server's certificate. (boolean
-# value)
-#ssl = false
-
 # CA certificate PEM file used to verify the server's certificate (string
 # value)
+# Deprecated group/name - [amqp1]/ssl_ca_file
 #ssl_ca_file =
 
 # Self-identifying certificate PEM file for client authentication (string
 # value)
+# Deprecated group/name - [amqp1]/ssl_cert_file
 #ssl_cert_file =
 
 # Private key PEM file used to sign ssl_cert_file certificate (optional)
 # (string value)
+# Deprecated group/name - [amqp1]/ssl_key_file
 #ssl_key_file =
 
 # Password for decrypting ssl_key_file (if encrypted) (string value)
+# Deprecated group/name - [amqp1]/ssl_key_password
 #ssl_key_password = <None>
 
 # DEPRECATED: Accept clients using either SSL or plain TCP (boolean value)
+# Deprecated group/name - [amqp1]/allow_insecure_clients
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Not applicable - not a SSL server
 #allow_insecure_clients = false
 
 # Space separated list of acceptable SASL mechanisms (string value)
+# Deprecated group/name - [amqp1]/sasl_mechanisms
 #sasl_mechanisms =
 
 # Path to directory that contains the SASL configuration (string value)
+# Deprecated group/name - [amqp1]/sasl_config_dir
 #sasl_config_dir =
 
 # Name of configuration file (without .conf suffix) (string value)
+# Deprecated group/name - [amqp1]/sasl_config_name
 #sasl_config_name =
 
-# SASL realm to use if no realm present in username (string value)
-#sasl_default_realm =
-
-# DEPRECATED: User name for message broker authentication (string value)
-# This option is deprecated for removal.
-# Its value may be silently ignored in the future.
-# Reason: Should use configuration option transport_url to provide the
-# username.
+# User name for message broker authentication (string value)
+# Deprecated group/name - [amqp1]/username
 #username =
 
-# DEPRECATED: Password for message broker authentication (string value)
-# This option is deprecated for removal.
-# Its value may be silently ignored in the future.
-# Reason: Should use configuration option transport_url to provide the
-# password.
+# Password for message broker authentication (string value)
+# Deprecated group/name - [amqp1]/password
 #password =
 
 # Seconds to pause before attempting to re-connect. (integer value)
@@ -1770,12 +1833,15 @@
 #addressing_mode = dynamic
 
 # address prefix used when sending to a specific server (string value)
+# Deprecated group/name - [amqp1]/server_request_prefix
 #server_request_prefix = exclusive
 
 # address prefix used when broadcasting to all servers (string value)
+# Deprecated group/name - [amqp1]/broadcast_prefix
 #broadcast_prefix = broadcast
 
 # address prefix when sending to any server in group (string value)
+# Deprecated group/name - [amqp1]/group_request_prefix
 #group_request_prefix = unicast
 
 # Address prefix for all generated RPC addresses (string value)
@@ -1863,7 +1929,7 @@
 # Max fetch bytes of Kafka consumer (integer value)
 #kafka_max_fetch_bytes = 1048576
 
-# Default timeout(s) for Kafka consumers (floating point value)
+# Default timeout(s) for Kafka consumers (integer value)
 #kafka_consumer_timeout = 1.0
 
 # Pool Size for Kafka Consumers (integer value)
@@ -1897,6 +1963,7 @@
 # messaging, messagingv2, routing, log, test, noop (multi valued)
 # Deprecated group/name - [DEFAULT]/notification_driver
 #driver =
+driver = messagingv2
 
 # A URL representing the messaging driver to use for notifications. If not set,
 # we fall back to the same configuration used for RPC. (string value)
@@ -1908,11 +1975,6 @@
 # Deprecated group/name - [DEFAULT]/notification_topics
 #topics = notifications
 
-# The maximum number of attempts to re-send a notification message which failed
-# to be delivered due to a recoverable error. 0 - No retry, -1 - indefinite
-# (integer value)
-#retry = -1
-
 
 [oslo_messaging_rabbit]
 
@@ -1926,31 +1988,30 @@
 #amqp_durable_queues = false
 
 # Auto-delete queues in AMQP. (boolean value)
+# Deprecated group/name - [DEFAULT]/amqp_auto_delete
 #amqp_auto_delete = false
-
-# Enable SSL (boolean value)
-#ssl = <None>
 
 # SSL version to use (valid only if SSL enabled). Valid values are TLSv1 and
 # SSLv23. SSLv2, SSLv3, TLSv1_1, and TLSv1_2 may be available on some
 # distributions. (string value)
-# Deprecated group/name - [oslo_messaging_rabbit]/kombu_ssl_version
-#ssl_version =
+# Deprecated group/name - [DEFAULT]/kombu_ssl_version
+#kombu_ssl_version =
 
 # SSL key file (valid only if SSL enabled). (string value)
-# Deprecated group/name - [oslo_messaging_rabbit]/kombu_ssl_keyfile
-#ssl_key_file =
+# Deprecated group/name - [DEFAULT]/kombu_ssl_keyfile
+#kombu_ssl_keyfile =
 
 # SSL cert file (valid only if SSL enabled). (string value)
-# Deprecated group/name - [oslo_messaging_rabbit]/kombu_ssl_certfile
-#ssl_cert_file =
+# Deprecated group/name - [DEFAULT]/kombu_ssl_certfile
+#kombu_ssl_certfile =
 
 # SSL certification authority file (valid only if SSL enabled). (string value)
-# Deprecated group/name - [oslo_messaging_rabbit]/kombu_ssl_ca_certs
-#ssl_ca_file =
+# Deprecated group/name - [DEFAULT]/kombu_ssl_ca_certs
+#kombu_ssl_ca_certs =
 
 # How long to wait before reconnecting in response to an AMQP consumer cancel
 # notification. (floating point value)
+# Deprecated group/name - [DEFAULT]/kombu_reconnect_delay
 #kombu_reconnect_delay = 1.0
 
 # EXPERIMENTAL: Possible values are: gzip, bz2. If not set compression will not
@@ -1970,6 +2031,7 @@
 
 # DEPRECATED: The RabbitMQ broker address where a single node is used. (string
 # value)
+# Deprecated group/name - [DEFAULT]/rabbit_host
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
@@ -1979,24 +2041,32 @@
 # value)
 # Minimum value: 0
 # Maximum value: 65535
+# Deprecated group/name - [DEFAULT]/rabbit_port
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
 #rabbit_port = 5672
 
 # DEPRECATED: RabbitMQ HA cluster host:port pairs. (list value)
+# Deprecated group/name - [DEFAULT]/rabbit_hosts
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
 #rabbit_hosts = $rabbit_host:$rabbit_port
 
+# Connect over SSL for RabbitMQ. (boolean value)
+# Deprecated group/name - [DEFAULT]/rabbit_use_ssl
+#rabbit_use_ssl = false
+
 # DEPRECATED: The RabbitMQ userid. (string value)
+# Deprecated group/name - [DEFAULT]/rabbit_userid
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
 #rabbit_userid = guest
 
 # DEPRECATED: The RabbitMQ password. (string value)
+# Deprecated group/name - [DEFAULT]/rabbit_password
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
@@ -2004,9 +2074,11 @@
 
 # The RabbitMQ login method. (string value)
 # Allowed values: PLAIN, AMQPLAIN, RABBIT-CR-DEMO
+# Deprecated group/name - [DEFAULT]/rabbit_login_method
 #rabbit_login_method = AMQPLAIN
 
 # DEPRECATED: The RabbitMQ virtual host. (string value)
+# Deprecated group/name - [DEFAULT]/rabbit_virtual_host
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
@@ -2017,6 +2089,7 @@
 
 # How long to backoff for between retries when connecting to RabbitMQ. (integer
 # value)
+# Deprecated group/name - [DEFAULT]/rabbit_retry_backoff
 #rabbit_retry_backoff = 2
 
 # Maximum interval of RabbitMQ connection retries. Default is 30 seconds.
@@ -2025,6 +2098,7 @@
 
 # DEPRECATED: Maximum number of RabbitMQ connection retries. Default is 0
 # (infinite retry count). (integer value)
+# Deprecated group/name - [DEFAULT]/rabbit_max_retries
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 #rabbit_max_retries = 0
@@ -2035,6 +2109,7 @@
 # If you just want to make sure that all queues (except those with auto-
 # generated names) are mirrored across all nodes, run: "rabbitmqctl set_policy
 # HA '^(?!amq\.).*' '{"ha-mode": "all"}' " (boolean value)
+# Deprecated group/name - [DEFAULT]/rabbit_ha_queues
 #rabbit_ha_queues = false
 
 # Positive integer representing duration in seconds for queue TTL (x-expires).
@@ -2057,6 +2132,7 @@
 #heartbeat_rate = 2
 
 # Deprecated, use rpc_backend=kombu+memory or rpc_backend=fake (boolean value)
+# Deprecated group/name - [DEFAULT]/fake_rabbit
 #fake_rabbit = false
 
 # Maximum number of channels to allow (integer value)
@@ -2067,6 +2143,9 @@
 
 # How often to send heartbeats for consumer's connections (integer value)
 #heartbeat_interval = 3
+
+# Enable SSL (boolean value)
+#ssl = <None>
 
 # Arguments passed to ssl.wrap_socket (dict value)
 #ssl_options = <None>
@@ -2172,24 +2251,30 @@
 
 # ZeroMQ bind address. Should be a wildcard (*), an ethernet interface, or IP.
 # The "host" option should point or resolve to this address. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_bind_address
 #rpc_zmq_bind_address = *
 
 # MatchMaker driver. (string value)
 # Allowed values: redis, sentinel, dummy
+# Deprecated group/name - [DEFAULT]/rpc_zmq_matchmaker
 #rpc_zmq_matchmaker = redis
 
 # Number of ZeroMQ contexts, defaults to 1. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_contexts
 #rpc_zmq_contexts = 1
 
 # Maximum number of ingress messages to locally buffer per topic. Default is
 # unlimited. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_topic_backlog
 #rpc_zmq_topic_backlog = <None>
 
 # Directory for holding IPC sockets. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_ipc_dir
 #rpc_zmq_ipc_dir = /var/run/openstack
 
 # Name of this node. Must be a valid hostname, FQDN, or IP address. Must match
 # "host" option, if running Nova. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_host
 #rpc_zmq_host = localhost
 
 # Number of seconds to wait before all pending messages will be sent after
@@ -2202,21 +2287,26 @@
 
 # The default number of seconds that poll should wait. Poll raises timeout
 # exception when timeout expired. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_poll_timeout
 #rpc_poll_timeout = 1
 
 # Expiration timeout in seconds of a name service record about existing target
 # ( < 0 means no timeout). (integer value)
+# Deprecated group/name - [DEFAULT]/zmq_target_expire
 #zmq_target_expire = 300
 
 # Update period in seconds of a name service record about existing target.
 # (integer value)
+# Deprecated group/name - [DEFAULT]/zmq_target_update
 #zmq_target_update = 180
 
 # Use PUB/SUB pattern for fanout methods. PUB/SUB always uses proxy. (boolean
 # value)
+# Deprecated group/name - [DEFAULT]/use_pub_sub
 #use_pub_sub = false
 
 # Use ROUTER remote proxy. (boolean value)
+# Deprecated group/name - [DEFAULT]/use_router_proxy
 #use_router_proxy = false
 
 # This option makes direct connections dynamic or static. It makes sense only
@@ -2231,20 +2321,24 @@
 # Minimal port number for random ports range. (port value)
 # Minimum value: 0
 # Maximum value: 65535
+# Deprecated group/name - [DEFAULT]/rpc_zmq_min_port
 #rpc_zmq_min_port = 49153
 
 # Maximal port number for random ports range. (integer value)
 # Minimum value: 1
 # Maximum value: 65536
+# Deprecated group/name - [DEFAULT]/rpc_zmq_max_port
 #rpc_zmq_max_port = 65536
 
 # Number of retries to find free port number before fail with ZMQBindError.
 # (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_bind_port_retries
 #rpc_zmq_bind_port_retries = 100
 
 # Default serialization mechanism for serializing/deserializing
 # outgoing/incoming messages (string value)
 # Allowed values: json, msgpack
+# Deprecated group/name - [DEFAULT]/rpc_zmq_serialization
 #rpc_zmq_serialization = json
 
 # This option configures round-robin mode in zmq socket. True means not keeping
@@ -2315,6 +2409,7 @@
 #
 # From oslo.middleware
 #
+enable_proxy_headers_parsing = True
 
 # The maximum body size for each  request, in bytes. (integer value)
 # Deprecated group/name - [DEFAULT]/osapi_max_request_body_size
@@ -2340,9 +2435,11 @@
 #
 
 # The file that defines policies. (string value)
+# Deprecated group/name - [DEFAULT]/policy_file
 #policy_file = policy.json
 
 # Default rule. Enforced when a requested rule is not found. (string value)
+# Deprecated group/name - [DEFAULT]/policy_default_rule
 #policy_default_rule = default
 
 # Directories where policy configuration files are stored. They can be relative
@@ -2350,6 +2447,7 @@
 # absolute paths. The file defined by policy_file must exist for these
 # directories to be searched.  Missing or empty directories are ignored. (multi
 # valued)
+# Deprecated group/name - [DEFAULT]/policy_dirs
 #policy_dirs = policy.d
 
 
@@ -2509,7 +2607,13 @@
 #
 # From heat.common.context
 #
-
+auth_plugin = password
+auth_url = http://192.168.10.10:35357
+username = heat
+password = opnfv_secret
+user_domain_name = default
+project_domain_id = default
+user_domain_id = default
 # Authentication type to load (string value)
 # Deprecated group/name - [trustee]/auth_plugin
 #auth_type = <None>
@@ -2527,11 +2631,11 @@
 #domain_name = <None>
 
 # Project ID to scope to (string value)
-# Deprecated group/name - [trustee]/tenant_id
+# Deprecated group/name - [trustee]/tenant-id
 #project_id = <None>
 
 # Project name to scope to (string value)
-# Deprecated group/name - [trustee]/tenant_name
+# Deprecated group/name - [trustee]/tenant-name
 #project_name = <None>
 
 # Domain ID containing project (string value)
@@ -2557,7 +2661,7 @@
 #user_id = <None>
 
 # Username (string value)
-# Deprecated group/name - [trustee]/user_name
+# Deprecated group/name - [trustee]/user-name
 #username = <None>
 
 # User's domain id (string value)

2018-01-28 13:00:45,462 [salt.state       ][INFO    ][22153] Completed state [/etc/heat/heat.conf] at time 13:00:45.462125 duration_in_ms=200.831
2018-01-28 13:00:45,462 [salt.state       ][INFO    ][22153] Running state [/etc/heat/api-paste.ini] at time 13:00:45.462890
2018-01-28 13:00:45,463 [salt.state       ][INFO    ][22153] Executing state file.managed for /etc/heat/api-paste.ini
2018-01-28 13:00:45,493 [salt.fileclient  ][INFO    ][22153] Fetching file from saltenv 'base', ** done ** 'heat/files/pike/api-paste.ini'
2018-01-28 13:00:45,496 [salt.state       ][INFO    ][22153] File /etc/heat/api-paste.ini is in the correct state
2018-01-28 13:00:45,496 [salt.state       ][INFO    ][22153] Completed state [/etc/heat/api-paste.ini] at time 13:00:45.496725 duration_in_ms=33.835
2018-01-28 13:00:45,497 [salt.state       ][INFO    ][22153] Running state [/etc/default/heat-api] at time 13:00:45.497136
2018-01-28 13:00:45,497 [salt.state       ][INFO    ][22153] Executing state file.managed for /etc/default/heat-api
2018-01-28 13:00:45,519 [salt.fileclient  ][INFO    ][22153] Fetching file from saltenv 'base', ** done ** 'heat/files/default'
2018-01-28 13:00:45,522 [salt.state       ][INFO    ][22153] File changed:
New file
2018-01-28 13:00:45,522 [salt.state       ][INFO    ][22153] Completed state [/etc/default/heat-api] at time 13:00:45.522937 duration_in_ms=25.801
2018-01-28 13:00:45,523 [salt.state       ][INFO    ][22153] Running state [/etc/default/heat-api-cfn] at time 13:00:45.523339
2018-01-28 13:00:45,523 [salt.state       ][INFO    ][22153] Executing state file.managed for /etc/default/heat-api-cfn
2018-01-28 13:00:45,542 [salt.state       ][INFO    ][22153] File changed:
New file
2018-01-28 13:00:45,543 [salt.state       ][INFO    ][22153] Completed state [/etc/default/heat-api-cfn] at time 13:00:45.543011 duration_in_ms=19.672
2018-01-28 13:00:45,543 [salt.state       ][INFO    ][22153] Running state [/etc/default/heat-api-cloudwatch] at time 13:00:45.543416
2018-01-28 13:00:45,543 [salt.state       ][INFO    ][22153] Executing state file.managed for /etc/default/heat-api-cloudwatch
2018-01-28 13:00:45,560 [salt.state       ][INFO    ][22153] File changed:
New file
2018-01-28 13:00:45,561 [salt.state       ][INFO    ][22153] Completed state [/etc/default/heat-api-cloudwatch] at time 13:00:45.561027 duration_in_ms=17.611
2018-01-28 13:00:45,561 [salt.state       ][INFO    ][22153] Running state [/etc/default/heat-engine] at time 13:00:45.561432
2018-01-28 13:00:45,561 [salt.state       ][INFO    ][22153] Executing state file.managed for /etc/default/heat-engine
2018-01-28 13:00:45,580 [salt.state       ][INFO    ][22153] File changed:
New file
2018-01-28 13:00:45,580 [salt.state       ][INFO    ][22153] Completed state [/etc/default/heat-engine] at time 13:00:45.580457 duration_in_ms=19.025
2018-01-28 13:00:45,581 [salt.state       ][INFO    ][22153] Running state [heat_stack_owner] at time 13:00:45.581405
2018-01-28 13:00:45,581 [salt.state       ][INFO    ][22153] Executing state keystone.role_present for heat_stack_owner
2018-01-28 13:00:45,616 [py.warnings      ][WARNING ][22153] /usr/lib/python2.7/dist-packages/keystoneauth1/adapter.py:182: UserWarning: Using keystoneclient sessions has been deprecated. Please update your software to use keystoneauth1.
  warnings.warn('Using keystoneclient sessions has been deprecated. '

2018-01-28 13:00:45,672 [salt.state       ][INFO    ][22153] Role "heat_stack_owner" already exists
2018-01-28 13:00:45,672 [salt.state       ][INFO    ][22153] Completed state [heat_stack_owner] at time 13:00:45.672334 duration_in_ms=90.928
2018-01-28 13:00:45,672 [salt.state       ][INFO    ][22153] Running state [heat_stack_user] at time 13:00:45.672849
2018-01-28 13:00:45,673 [salt.state       ][INFO    ][22153] Executing state keystone.role_present for heat_stack_user
2018-01-28 13:00:45,731 [salt.state       ][INFO    ][22153] Role "heat_stack_user" already exists
2018-01-28 13:00:45,731 [salt.state       ][INFO    ][22153] Completed state [heat_stack_user] at time 13:00:45.731919 duration_in_ms=59.069
2018-01-28 13:00:45,737 [salt.state       ][INFO    ][22153] Running state [source /root/keystonercv3; heat-keystone-setup-domain --stack-user-domain-name heat_user_domain --stack-domain-admin heat_domain_admin --stack-domain-admin-password opnfv_secret] at time 13:00:45.737497
2018-01-28 13:00:45,737 [salt.state       ][INFO    ][22153] Executing state cmd.run for source /root/keystonercv3; heat-keystone-setup-domain --stack-user-domain-name heat_user_domain --stack-domain-admin heat_domain_admin --stack-domain-admin-password opnfv_secret
2018-01-28 13:00:45,738 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command 'source /root/keystonercv3; heat-keystone-setup-domain --stack-user-domain-name heat_user_domain --stack-domain-admin heat_domain_admin --stack-domain-admin-password opnfv_secret' in directory '/root'
2018-01-28 13:00:48,481 [salt.state       ][INFO    ][22153] {'pid': 23928, 'retcode': 0, 'stderr': "/usr/lib/python2.7/dist-packages/keystoneauth1/adapter.py:182: UserWarning: Using keystoneclient sessions has been deprecated. Please update your software to use keystoneauth1.\n  warnings.warn('Using keystoneclient sessions has been deprecated. '", 'stdout': '2018-01-28 13:00:47.821 23929 INFO __main__ [-] Creating domain heat_user_domain\n2018-01-28 13:00:47.869 23929 WARNING __main__ [-] Domain heat_user_domain already exists: Conflict: Conflict occurred attempting to store project - it is not permitted to have two projects acting as domains with the same name: heat_user_domain. (HTTP 409) (Request-ID: req-f824534e-7333-48f6-bc33-c57c7dd35cd9)\n2018-01-28 13:00:48.283 23929 WARNING __main__ [-] User heat_domain_admin already exists: Conflict: Conflict occurred attempting to store user - Duplicate entry found with name heat_domain_admin at domain ID 3ad5e88e69cb4e63a06d47b66abc9813. (HTTP 409) (Request-ID: req-f69c3c76-2f34-4229-a057-eb5f75b71902)\n\nPlease update your heat.conf with the following in [DEFAULT]\n\nstack_user_domain_id=3ad5e88e69cb4e63a06d47b66abc9813\nstack_domain_admin=heat_domain_admin\nstack_domain_admin_password=opnfv_secret'}
2018-01-28 13:00:48,482 [salt.state       ][INFO    ][22153] Completed state [source /root/keystonercv3; heat-keystone-setup-domain --stack-user-domain-name heat_user_domain --stack-domain-admin heat_domain_admin --stack-domain-admin-password opnfv_secret] at time 13:00:48.482182 duration_in_ms=2744.685
2018-01-28 13:00:48,484 [salt.state       ][INFO    ][22153] Running state [heat-manage db_sync] at time 13:00:48.483956
2018-01-28 13:00:48,484 [salt.state       ][INFO    ][22153] Executing state cmd.run for heat-manage db_sync
2018-01-28 13:00:48,485 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command 'heat-manage db_sync' in directory '/root'
2018-01-28 13:00:48,850 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128130048270220
2018-01-28 13:00:48,877 [salt.minion      ][INFO    ][23943] Starting a new job with PID 23943
2018-01-28 13:00:48,898 [salt.minion      ][INFO    ][23943] Returning information for job: 20180128130048270220
2018-01-28 13:00:49,775 [salt.state       ][INFO    ][22153] {'pid': 23939, 'retcode': 0, 'stderr': '', 'stdout': ''}
2018-01-28 13:00:49,776 [salt.state       ][INFO    ][22153] Completed state [heat-manage db_sync] at time 13:00:49.776531 duration_in_ms=1292.576
2018-01-28 13:00:49,778 [salt.state       ][INFO    ][22153] Running state [chown heat:heat /var/log/heat/ -R] at time 13:00:49.778087
2018-01-28 13:00:49,778 [salt.state       ][INFO    ][22153] Executing state cmd.run for chown heat:heat /var/log/heat/ -R
2018-01-28 13:00:49,780 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command 'chown heat:heat /var/log/heat/ -R' in directory '/root'
2018-01-28 13:00:49,810 [salt.state       ][INFO    ][22153] {'pid': 23951, 'retcode': 0, 'stderr': '', 'stdout': ''}
2018-01-28 13:00:49,811 [salt.state       ][INFO    ][22153] Completed state [chown heat:heat /var/log/heat/ -R] at time 13:00:49.811784 duration_in_ms=33.697
2018-01-28 13:00:49,817 [salt.state       ][INFO    ][22153] Running state [heat-api] at time 13:00:49.817606
2018-01-28 13:00:49,818 [salt.state       ][INFO    ][22153] Executing state service.running for heat-api
2018-01-28 13:00:49,819 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemctl', 'status', 'heat-api.service', '-n', '0'] in directory '/root'
2018-01-28 13:00:49,848 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemctl', 'is-active', 'heat-api.service'] in directory '/root'
2018-01-28 13:00:49,866 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemctl', 'is-enabled', 'heat-api.service'] in directory '/root'
2018-01-28 13:00:49,891 [salt.state       ][INFO    ][22153] The service heat-api is already running
2018-01-28 13:00:49,892 [salt.state       ][INFO    ][22153] Completed state [heat-api] at time 13:00:49.891961 duration_in_ms=74.355
2018-01-28 13:00:49,892 [salt.state       ][INFO    ][22153] Running state [heat-api] at time 13:00:49.892495
2018-01-28 13:00:49,893 [salt.state       ][INFO    ][22153] Executing state service.mod_watch for heat-api
2018-01-28 13:00:49,894 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemctl', 'is-active', 'heat-api.service'] in directory '/root'
2018-01-28 13:00:49,919 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemctl', 'is-enabled', 'heat-api.service'] in directory '/root'
2018-01-28 13:00:49,940 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemd-run', '--scope', 'systemctl', 'restart', 'heat-api.service'] in directory '/root'
2018-01-28 13:00:50,070 [salt.state       ][INFO    ][22153] {'heat-api': True}
2018-01-28 13:00:50,071 [salt.state       ][INFO    ][22153] Completed state [heat-api] at time 13:00:50.071185 duration_in_ms=178.689
2018-01-28 13:00:50,074 [salt.state       ][INFO    ][22153] Running state [heat-api-cfn] at time 13:00:50.074045
2018-01-28 13:00:50,077 [salt.state       ][INFO    ][22153] Executing state service.running for heat-api-cfn
2018-01-28 13:00:50,078 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemctl', 'status', 'heat-api-cfn.service', '-n', '0'] in directory '/root'
2018-01-28 13:00:50,101 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemctl', 'is-active', 'heat-api-cfn.service'] in directory '/root'
2018-01-28 13:00:50,119 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemctl', 'is-enabled', 'heat-api-cfn.service'] in directory '/root'
2018-01-28 13:00:50,143 [salt.state       ][INFO    ][22153] The service heat-api-cfn is already running
2018-01-28 13:00:50,143 [salt.state       ][INFO    ][22153] Completed state [heat-api-cfn] at time 13:00:50.143859 duration_in_ms=69.813
2018-01-28 13:00:50,144 [salt.state       ][INFO    ][22153] Running state [heat-api-cfn] at time 13:00:50.144450
2018-01-28 13:00:50,145 [salt.state       ][INFO    ][22153] Executing state service.mod_watch for heat-api-cfn
2018-01-28 13:00:50,147 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemctl', 'is-active', 'heat-api-cfn.service'] in directory '/root'
2018-01-28 13:00:50,170 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemctl', 'is-enabled', 'heat-api-cfn.service'] in directory '/root'
2018-01-28 13:00:50,193 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemd-run', '--scope', 'systemctl', 'restart', 'heat-api-cfn.service'] in directory '/root'
2018-01-28 13:00:50,254 [salt.state       ][INFO    ][22153] {'heat-api-cfn': True}
2018-01-28 13:00:50,255 [salt.state       ][INFO    ][22153] Completed state [heat-api-cfn] at time 13:00:50.255576 duration_in_ms=111.125
2018-01-28 13:00:50,257 [salt.state       ][INFO    ][22153] Running state [heat-api-cloudwatch] at time 13:00:50.257438
2018-01-28 13:00:50,258 [salt.state       ][INFO    ][22153] Executing state service.running for heat-api-cloudwatch
2018-01-28 13:00:50,259 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemctl', 'status', 'heat-api-cloudwatch.service', '-n', '0'] in directory '/root'
2018-01-28 13:00:50,286 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemctl', 'is-active', 'heat-api-cloudwatch.service'] in directory '/root'
2018-01-28 13:00:50,307 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemctl', 'is-enabled', 'heat-api-cloudwatch.service'] in directory '/root'
2018-01-28 13:00:50,326 [salt.state       ][INFO    ][22153] The service heat-api-cloudwatch is already running
2018-01-28 13:00:50,326 [salt.state       ][INFO    ][22153] Completed state [heat-api-cloudwatch] at time 13:00:50.326831 duration_in_ms=69.392
2018-01-28 13:00:50,327 [salt.state       ][INFO    ][22153] Running state [heat-api-cloudwatch] at time 13:00:50.327150
2018-01-28 13:00:50,327 [salt.state       ][INFO    ][22153] Executing state service.mod_watch for heat-api-cloudwatch
2018-01-28 13:00:50,328 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemctl', 'is-active', 'heat-api-cloudwatch.service'] in directory '/root'
2018-01-28 13:00:50,352 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemctl', 'is-enabled', 'heat-api-cloudwatch.service'] in directory '/root'
2018-01-28 13:00:50,370 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemd-run', '--scope', 'systemctl', 'restart', 'heat-api-cloudwatch.service'] in directory '/root'
2018-01-28 13:00:50,432 [salt.state       ][INFO    ][22153] {'heat-api-cloudwatch': True}
2018-01-28 13:00:50,433 [salt.state       ][INFO    ][22153] Completed state [heat-api-cloudwatch] at time 13:00:50.433210 duration_in_ms=106.059
2018-01-28 13:00:50,443 [salt.state       ][INFO    ][22153] Running state [heat-engine] at time 13:00:50.443879
2018-01-28 13:00:50,444 [salt.state       ][INFO    ][22153] Executing state service.running for heat-engine
2018-01-28 13:00:50,445 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemctl', 'status', 'heat-engine.service', '-n', '0'] in directory '/root'
2018-01-28 13:00:50,467 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemctl', 'is-active', 'heat-engine.service'] in directory '/root'
2018-01-28 13:00:50,485 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemctl', 'is-enabled', 'heat-engine.service'] in directory '/root'
2018-01-28 13:00:50,503 [salt.state       ][INFO    ][22153] The service heat-engine is already running
2018-01-28 13:00:50,503 [salt.state       ][INFO    ][22153] Completed state [heat-engine] at time 13:00:50.503757 duration_in_ms=59.877
2018-01-28 13:00:50,504 [salt.state       ][INFO    ][22153] Running state [heat-engine] at time 13:00:50.504065
2018-01-28 13:00:50,504 [salt.state       ][INFO    ][22153] Executing state service.mod_watch for heat-engine
2018-01-28 13:00:50,505 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemctl', 'is-active', 'heat-engine.service'] in directory '/root'
2018-01-28 13:00:50,522 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemctl', 'is-enabled', 'heat-engine.service'] in directory '/root'
2018-01-28 13:00:50,541 [salt.loaded.int.module.cmdmod][INFO    ][22153] Executing command ['systemd-run', '--scope', 'systemctl', 'restart', 'heat-engine.service'] in directory '/root'
2018-01-28 13:00:50,776 [salt.state       ][INFO    ][22153] {'heat-engine': True}
2018-01-28 13:00:50,776 [salt.state       ][INFO    ][22153] Completed state [heat-engine] at time 13:00:50.776876 duration_in_ms=272.81
2018-01-28 13:00:50,780 [salt.minion      ][INFO    ][22153] Returning information for job: 20180128130017859725
2018-01-28 13:00:51,649 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command test.ping with jid 20180128130051072819
2018-01-28 13:00:51,674 [salt.minion      ][INFO    ][24090] Starting a new job with PID 24090
2018-01-28 13:00:51,822 [salt.minion      ][INFO    ][24090] Returning information for job: 20180128130051072819
2018-01-28 13:02:25,379 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command state.sls with jid 20180128130224796060
2018-01-28 13:02:25,411 [salt.minion      ][INFO    ][24103] Starting a new job with PID 24103
2018-01-28 13:02:28,161 [salt.state       ][INFO    ][24103] Loading fresh modules for state activity
2018-01-28 13:02:28,219 [salt.fileclient  ][INFO    ][24103] Fetching file from saltenv 'base', ** done ** 'cinder/init.sls'
2018-01-28 13:02:28,257 [salt.fileclient  ][INFO    ][24103] Fetching file from saltenv 'base', ** done ** 'cinder/controller.sls'
2018-01-28 13:02:28,397 [salt.fileclient  ][INFO    ][24103] Fetching file from saltenv 'base', ** done ** 'cinder/user.sls'
2018-01-28 13:02:28,474 [salt.fileclient  ][INFO    ][24103] Fetching file from saltenv 'base', ** done ** 'cinder/volume.sls'
2018-01-28 13:02:28,585 [salt.state       ][INFO    ][24103] Running state [cinder] at time 13:02:28.585785
2018-01-28 13:02:28,586 [salt.state       ][INFO    ][24103] Executing state group.present for cinder
2018-01-28 13:02:28,589 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command 'groupadd -g 304 -r cinder' in directory '/root'
2018-01-28 13:02:28,686 [salt.state       ][INFO    ][24103] {'passwd': 'x', 'gid': 304, 'name': 'cinder', 'members': []}
2018-01-28 13:02:28,687 [salt.state       ][INFO    ][24103] Completed state [cinder] at time 13:02:28.687344 duration_in_ms=101.559
2018-01-28 13:02:28,687 [salt.state       ][INFO    ][24103] Running state [cinder] at time 13:02:28.687860
2018-01-28 13:02:28,688 [salt.state       ][INFO    ][24103] Executing state user.present for cinder
2018-01-28 13:02:28,693 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['useradd', '-s', '/bin/false', '-u', '304', '-g', '304', '-m', '-d', '/var/lib/cinder', '-r', 'cinder'] in directory '/root'
2018-01-28 13:02:28,729 [salt.state       ][INFO    ][24103] {'shell': '/bin/false', 'workphone': '', 'uid': 304, 'passwd': 'x', 'roomnumber': '', 'groups': ['cinder'], 'home': '/var/lib/cinder', 'name': 'cinder', 'gid': 304, 'fullname': '', 'homephone': ''}
2018-01-28 13:02:28,730 [salt.state       ][INFO    ][24103] Completed state [cinder] at time 13:02:28.729864 duration_in_ms=42.002
2018-01-28 13:02:30,333 [salt.state       ][INFO    ][24103] Running state [cinder-api] at time 13:02:30.333253
2018-01-28 13:02:30,333 [salt.state       ][INFO    ][24103] Executing state pkg.installed for cinder-api
2018-01-28 13:02:30,334 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 13:02:30,804 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['apt-cache', '-q', 'policy', 'cinder-api'] in directory '/root'
2018-01-28 13:02:30,890 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['apt-get', '-q', 'update'] in directory '/root'
2018-01-28 13:02:32,796 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 13:02:32,835 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'cinder-api'] in directory '/root'
2018-01-28 13:02:35,442 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128130234852626
2018-01-28 13:02:35,469 [salt.minion      ][INFO    ][24901] Starting a new job with PID 24901
2018-01-28 13:02:35,488 [salt.minion      ][INFO    ][24901] Returning information for job: 20180128130234852626
2018-01-28 13:02:41,249 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 13:02:41,309 [salt.state       ][INFO    ][24103] Made the following changes:
'python-redis' changed from 'absent' to '2.10.5-1ubuntu1'
'python-os-brick' changed from 'absent' to '1.15.2-0ubuntu1~cloud0'
'python-cinder' changed from 'absent' to '2:11.0.1-0ubuntu1~cloud0'
'python-oslo.rootwrap' changed from 'absent' to '5.9.0-0ubuntu1~cloud0'
'python2.7-paramiko' changed from 'absent' to '1'
'python-oslo.vmware' changed from 'absent' to '2.23.0-0ubuntu1~cloud0'
'python-tooz' changed from 'absent' to '1.58.0-0ubuntu1~cloud0'
'os-brick-common' changed from 'absent' to '1.15.2-0ubuntu1~cloud0'
'cinder-common' changed from 'absent' to '2:11.0.1-0ubuntu1~cloud0'
'python-cffi' changed from 'absent' to '1.9.1-2build2~cloud0'
'python-paramiko' changed from 'absent' to '2.0.0-1~cloud0'
'python-os-win' changed from 'absent' to '2.2.0-0ubuntu1~cloud0'
'python-pymemcache' changed from 'absent' to '1.3.2-2ubuntu1'
'python-zake' changed from 'absent' to '0.1.6-1'
'cinder-api' changed from 'absent' to '2:11.0.1-0ubuntu1~cloud0'
'python-suds' changed from 'absent' to '0.7~git20150727.94664dd-3'
'python-voluptuous' changed from 'absent' to '0.9.3-1~cloud0'
'python-oslo-rootwrap' changed from 'absent' to '1'
'python-pycparser' changed from 'absent' to '2.14+dfsg-2build1'
'python-oslo.privsep' changed from 'absent' to '1.22.0-0ubuntu1~cloud0'

2018-01-28 13:02:41,344 [salt.state       ][INFO    ][24103] Loading fresh modules for state activity
2018-01-28 13:02:41,545 [salt.state       ][INFO    ][24103] Completed state [cinder-api] at time 13:02:41.545043 duration_in_ms=11211.789
2018-01-28 13:02:41,557 [salt.state       ][INFO    ][24103] Running state [cinder-scheduler] at time 13:02:41.557291
2018-01-28 13:02:41,558 [salt.state       ][INFO    ][24103] Executing state pkg.installed for cinder-scheduler
2018-01-28 13:02:42,087 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 13:02:42,137 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'cinder-scheduler'] in directory '/root'
2018-01-28 13:02:45,628 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128130245043216
2018-01-28 13:02:45,658 [salt.minion      ][INFO    ][25805] Starting a new job with PID 25805
2018-01-28 13:02:45,687 [salt.minion      ][INFO    ][25805] Returning information for job: 20180128130245043216
2018-01-28 13:02:46,247 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 13:02:46,343 [salt.state       ][INFO    ][24103] Made the following changes:
'cinder-scheduler' changed from 'absent' to '2:11.0.1-0ubuntu1~cloud0'

2018-01-28 13:02:46,373 [salt.state       ][INFO    ][24103] Loading fresh modules for state activity
2018-01-28 13:02:46,423 [salt.state       ][INFO    ][24103] Completed state [cinder-scheduler] at time 13:02:46.423477 duration_in_ms=4866.185
2018-01-28 13:02:46,441 [salt.state       ][INFO    ][24103] Running state [lvm2] at time 13:02:46.441376
2018-01-28 13:02:46,441 [salt.state       ][INFO    ][24103] Executing state pkg.installed for lvm2
2018-01-28 13:02:47,146 [salt.state       ][INFO    ][24103] All specified packages are already installed
2018-01-28 13:02:47,147 [salt.state       ][INFO    ][24103] Completed state [lvm2] at time 13:02:47.147881 duration_in_ms=706.503
2018-01-28 13:02:47,148 [salt.state       ][INFO    ][24103] Running state [python-cinder] at time 13:02:47.148633
2018-01-28 13:02:47,149 [salt.state       ][INFO    ][24103] Executing state pkg.installed for python-cinder
2018-01-28 13:02:47,156 [salt.state       ][INFO    ][24103] All specified packages are already installed
2018-01-28 13:02:47,157 [salt.state       ][INFO    ][24103] Completed state [python-cinder] at time 13:02:47.156961 duration_in_ms=8.328
2018-01-28 13:02:47,157 [salt.state       ][INFO    ][24103] Running state [gettext-base] at time 13:02:47.157533
2018-01-28 13:02:47,158 [salt.state       ][INFO    ][24103] Executing state pkg.installed for gettext-base
2018-01-28 13:02:47,165 [salt.state       ][INFO    ][24103] All specified packages are already installed
2018-01-28 13:02:47,166 [salt.state       ][INFO    ][24103] Completed state [gettext-base] at time 13:02:47.166027 duration_in_ms=8.494
2018-01-28 13:02:47,166 [salt.state       ][INFO    ][24103] Running state [python-memcache] at time 13:02:47.166614
2018-01-28 13:02:47,167 [salt.state       ][INFO    ][24103] Executing state pkg.installed for python-memcache
2018-01-28 13:02:47,174 [salt.state       ][INFO    ][24103] All specified packages are already installed
2018-01-28 13:02:47,175 [salt.state       ][INFO    ][24103] Completed state [python-memcache] at time 13:02:47.175144 duration_in_ms=8.53
2018-01-28 13:02:47,175 [salt.state       ][INFO    ][24103] Running state [python-pycadf] at time 13:02:47.175715
2018-01-28 13:02:47,176 [salt.state       ][INFO    ][24103] Executing state pkg.installed for python-pycadf
2018-01-28 13:02:47,183 [salt.state       ][INFO    ][24103] All specified packages are already installed
2018-01-28 13:02:47,183 [salt.state       ][INFO    ][24103] Completed state [python-pycadf] at time 13:02:47.183468 duration_in_ms=7.753
2018-01-28 13:02:47,186 [salt.state       ][INFO    ][24103] Running state [/etc/cinder/cinder.conf] at time 13:02:47.186160
2018-01-28 13:02:47,186 [salt.state       ][INFO    ][24103] Executing state file.managed for /etc/cinder/cinder.conf
2018-01-28 13:02:47,238 [salt.fileclient  ][INFO    ][24103] Fetching file from saltenv 'base', ** done ** 'cinder/files/pike/cinder.conf.controller.Debian'
2018-01-28 13:02:47,438 [salt.fileclient  ][INFO    ][24103] Fetching file from saltenv 'base', ** done ** 'cinder/files/backend/_lvm.conf'
2018-01-28 13:02:47,443 [salt.state       ][INFO    ][24103] File changed:
--- 
+++ 
@@ -1,15 +1,160 @@
+
+
 [DEFAULT]
 rootwrap_config = /etc/cinder/rootwrap.conf
 api_paste_confg = /etc/cinder/api-paste.ini
+
 iscsi_helper = tgtadm
 volume_name_template = volume-%s
-volume_group = cinder-volumes
+#volume_group = cinder
+
 verbose = True
+
+osapi_volume_workers = 4
+
 auth_strategy = keystone
+
 state_path = /var/lib/cinder
-lock_path = /var/lock/cinder
+
+use_syslog=False
+
+glance_num_retries=0
+debug=False
+
+os_region_name=RegionOne
+allow_availability_zone_fallback = True
+
+#glance_api_ssl_compression=False
+#glance_api_insecure=False
+
+osapi_volume_listen=192.168.10.13
+
+glance_api_servers = http://192.168.10.10:9292
+
+
+glance_host=192.168.10.10
+glance_port=9292
+glance_api_version=2
+
+enable_v3_api = True
+
+os_privileged_user_name=cinder
+os_privileged_user_password=opnfv_secret
+os_privileged_user_tenant=service
+os_privileged_user_auth_url=http://192.168.10.10:5000/v3/
+
+volume_backend_name=DEFAULT
+
+default_volume_type=lvm-driver
+
+enabled_backends=lvm-driver
+
+# Enables the Force option on upload_to_image. This enables running
+# upload_volume on in-use volumes for backends that support it. (boolean value)
+#enable_force_upload = false
+enable_force_upload = false
+
+#RPC response timeout recommended by Hitachi
+rpc_response_timeout=3600
+
+#Rabbit
+control_exchange=cinder
+
+
+volume_clear=none
+
+
+
+volume_name_template = volume-%s
+
+#volume_group = vg_cinder_volume
+
 volumes_dir = /var/lib/cinder/volumes
-enabled_backends = lvm
+log_dir=/var/log/cinder
+
+# Use syslog for logging. (boolean value)
+#use_syslog=false
+
+use_syslog=false
+verbose=True
+lock_path=/var/lock/cinder
+
+nova_catalog_admin_info = compute:nova:adminURL
+nova_catalog_info = compute:nova:internalURL
+
+osapi_volume_extension = cinder.api.contrib.standard_extensions
+transport_url = rabbit://openstack:opnfv_secret@192.168.10.41:5672,openstack:opnfv_secret@192.168.10.42:5672,openstack:opnfv_secret@192.168.10.43:5672//openstack
+
+[oslo_messaging_notifications]
+driver = messagingv2
+
+[oslo_concurrency]
+
+lock_path=/var/lock/cinder
+
+[oslo_middleware]
+
+enable_proxy_headers_parsing = True
+
+
+[keystone_authtoken]
+signing_dir=/tmp/keystone-signing-cinder
+revocation_cache_time = 10
+auth_type = password
+user_domain_name = Default
+project_domain_name = Default
+project_name = service
+username = cinder
+password = opnfv_secret
+
+auth_uri=http://192.168.10.10:5000
+auth_url=http://192.168.10.10:35357
+
+# Temporary disabled for backward compataiblity
+#auth_uri=http://192.168.10.10/identity
+#auth_url=http://192.168.10.10/identity_v2_admin
+memcached_servers=192.168.10.11:11211,192.168.10.12:11211,192.168.10.13:11211,192.168.10.11:11211,192.168.10.12:11211,192.168.10.13:11211
+auth_version = v3
 
 [database]
-connection = sqlite:////var/lib/cinder/cinder.sqlite
+idle_timeout=3600
+max_pool_size=30
+max_retries=-1
+max_overflow=40
+connection = mysql+pymysql://cinder:opnfv_secret@192.168.10.50/cinder?charset=utf8
+[lvm-driver]
+host=ctl03
+volume_driver = cinder.volume.drivers.lvm.LVMVolumeDriver
+volume_backend_name=lvm-driver
+lvm_type = default
+iscsi_helper = tgtadm
+volume_group = cinder-volume
+
+[cors]
+
+#
+# From oslo.middleware.cors
+#
+
+# Indicate whether this resource may be shared with the domain
+# received in the requests "origin" header. (list value)
+#allowed_origin = <None>
+
+# Indicate that the actual request can include user credentials
+# (boolean value)
+#allow_credentials = true
+
+# Indicate which headers are safe to expose to the API. Defaults to
+# HTTP Simple Headers. (list value)
+#expose_headers = X-Image-Meta-Checksum,X-Auth-Token,X-Subject-Token,X-Service-Token,X-OpenStack-Request-ID
+
+# Maximum cache age of CORS preflight requests. (integer value)
+#max_age = 3600
+
+# Indicate which methods can be used during the actual request. (list
+# value)
+#allow_methods = GET,PUT,POST,DELETE,PATCH
+
+# Indicate which header field names may be used during the actual
+# request. (list value)
+#allow_headers = Content-MD5,X-Image-Meta-Checksum,X-Storage-Token,Accept-Encoding,X-Auth-Token,X-Identity-Status,X-Roles,X-Service-Catalog,X-User-Id,X-Tenant-Id,X-OpenStack-Request-ID

2018-01-28 13:02:47,462 [salt.state       ][INFO    ][24103] Completed state [/etc/cinder/cinder.conf] at time 13:02:47.462380 duration_in_ms=276.22
2018-01-28 13:02:47,462 [salt.state       ][INFO    ][24103] Running state [/etc/cinder/api-paste.ini] at time 13:02:47.462836
2018-01-28 13:02:47,463 [salt.state       ][INFO    ][24103] Executing state file.managed for /etc/cinder/api-paste.ini
2018-01-28 13:02:47,493 [salt.fileclient  ][INFO    ][24103] Fetching file from saltenv 'base', ** done ** 'cinder/files/pike/api-paste.ini.controller.Debian'
2018-01-28 13:02:47,560 [salt.state       ][INFO    ][24103] File changed:
--- 
+++ 
@@ -73,3 +73,4 @@
 
 [filter:authtoken]
 paste.filter_factory = keystonemiddleware.auth_token:filter_factory
+

2018-01-28 13:02:47,560 [salt.state       ][INFO    ][24103] Completed state [/etc/cinder/api-paste.ini] at time 13:02:47.560296 duration_in_ms=97.46
2018-01-28 13:02:47,560 [salt.state       ][INFO    ][24103] Running state [/etc/default/cinder-scheduler] at time 13:02:47.560765
2018-01-28 13:02:47,561 [salt.state       ][INFO    ][24103] Executing state file.managed for /etc/default/cinder-scheduler
2018-01-28 13:02:47,600 [salt.fileclient  ][INFO    ][24103] Fetching file from saltenv 'base', ** done ** 'cinder/files/default'
2018-01-28 13:02:47,608 [salt.state       ][INFO    ][24103] File changed:
New file
2018-01-28 13:02:47,609 [salt.state       ][INFO    ][24103] Completed state [/etc/default/cinder-scheduler] at time 13:02:47.609417 duration_in_ms=48.652
2018-01-28 13:02:47,610 [salt.state       ][INFO    ][24103] Running state [/etc/apache2/conf-available/cinder-wsgi.conf] at time 13:02:47.610102
2018-01-28 13:02:47,610 [salt.state       ][INFO    ][24103] Executing state file.managed for /etc/apache2/conf-available/cinder-wsgi.conf
2018-01-28 13:02:47,661 [salt.fileclient  ][INFO    ][24103] Fetching file from saltenv 'base', ** done ** 'cinder/files/pike/cinder-wsgi.conf'
2018-01-28 13:02:47,754 [salt.state       ][INFO    ][24103] File changed:
--- 
+++ 
@@ -1,7 +1,7 @@
-Listen 8776
-LogFormat "%h %l %u %t \"%r\" %>s %b \"%{Referer}i\" \"%{User-agent}i\" %D(us)" cinder_combined
 
-<VirtualHost *:8776>
+Listen 192.168.10.13:8776
+
+<VirtualHost 192.168.10.13:8776>
     WSGIDaemonProcess cinder-wsgi processes=5 threads=1 user=cinder group=cinder display-name=%{GROUP}
     WSGIProcessGroup cinder-wsgi
     WSGIScriptAlias / /usr/bin/cinder-wsgi
@@ -12,10 +12,10 @@
     </IfVersion>
 
     ErrorLog /var/log/apache2/cinder_error.log
-    CustomLog /var/log/apache2/cinder.log cinder_combined
+    CustomLog /var/log/apache2/cinder.log "%v:%p %h %l %u %t \"%r\" %>s %D %O \"%{Referer}i\" \"%{User-Agent}i\""
 
     <Directory /usr/bin>
-	<IfVersion >= 2.4>
+        <IfVersion >= 2.4>
             Require all granted
         </IfVersion>
         <IfVersion < 2.4>

2018-01-28 13:02:47,758 [salt.state       ][INFO    ][24103] Completed state [/etc/apache2/conf-available/cinder-wsgi.conf] at time 13:02:47.758871 duration_in_ms=148.768
2018-01-28 13:02:47,760 [salt.state       ][INFO    ][24103] Running state [cinder-wsgi] at time 13:02:47.760082
2018-01-28 13:02:47,760 [salt.state       ][INFO    ][24103] Executing state apache_conf.enabled for cinder-wsgi
2018-01-28 13:02:47,761 [salt.state       ][INFO    ][24103] cinder-wsgi already enabled.
2018-01-28 13:02:47,761 [salt.state       ][INFO    ][24103] Completed state [cinder-wsgi] at time 13:02:47.761661 duration_in_ms=1.579
2018-01-28 13:02:47,763 [salt.state       ][INFO    ][24103] Running state [apache2] at time 13:02:47.763526
2018-01-28 13:02:47,764 [salt.state       ][INFO    ][24103] Executing state service.running for apache2
2018-01-28 13:02:47,765 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['systemctl', 'status', 'apache2.service', '-n', '0'] in directory '/root'
2018-01-28 13:02:47,797 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['systemctl', 'is-active', 'apache2.service'] in directory '/root'
2018-01-28 13:02:47,824 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['systemctl', 'is-enabled', 'apache2.service'] in directory '/root'
2018-01-28 13:02:47,847 [salt.state       ][INFO    ][24103] The service apache2 is already running
2018-01-28 13:02:47,848 [salt.state       ][INFO    ][24103] Completed state [apache2] at time 13:02:47.848600 duration_in_ms=85.07
2018-01-28 13:02:47,849 [salt.state       ][INFO    ][24103] Running state [apache2] at time 13:02:47.849120
2018-01-28 13:02:47,849 [salt.state       ][INFO    ][24103] Executing state service.mod_watch for apache2
2018-01-28 13:02:47,853 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['systemctl', 'is-active', 'apache2.service'] in directory '/root'
2018-01-28 13:02:47,875 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['systemctl', 'is-enabled', 'apache2.service'] in directory '/root'
2018-01-28 13:02:47,903 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['systemd-run', '--scope', 'systemctl', 'restart', 'apache2.service'] in directory '/root'
2018-01-28 13:02:53,449 [salt.state       ][INFO    ][24103] {'apache2': True}
2018-01-28 13:02:53,451 [salt.state       ][INFO    ][24103] Completed state [apache2] at time 13:02:53.451469 duration_in_ms=5602.346
2018-01-28 13:02:53,454 [salt.state       ][INFO    ][24103] Running state [cinder-scheduler] at time 13:02:53.454304
2018-01-28 13:02:53,455 [salt.state       ][INFO    ][24103] Executing state service.running for cinder-scheduler
2018-01-28 13:02:53,456 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['systemctl', 'status', 'cinder-scheduler.service', '-n', '0'] in directory '/root'
2018-01-28 13:02:53,485 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['systemctl', 'is-active', 'cinder-scheduler.service'] in directory '/root'
2018-01-28 13:02:53,506 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['systemctl', 'is-enabled', 'cinder-scheduler.service'] in directory '/root'
2018-01-28 13:02:53,533 [salt.state       ][INFO    ][24103] The service cinder-scheduler is already running
2018-01-28 13:02:53,535 [salt.state       ][INFO    ][24103] Completed state [cinder-scheduler] at time 13:02:53.535156 duration_in_ms=80.851
2018-01-28 13:02:53,535 [salt.state       ][INFO    ][24103] Running state [cinder-scheduler] at time 13:02:53.535790
2018-01-28 13:02:53,536 [salt.state       ][INFO    ][24103] Executing state service.mod_watch for cinder-scheduler
2018-01-28 13:02:53,537 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['systemctl', 'is-active', 'cinder-scheduler.service'] in directory '/root'
2018-01-28 13:02:53,559 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['systemctl', 'is-enabled', 'cinder-scheduler.service'] in directory '/root'
2018-01-28 13:02:53,583 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command ['systemd-run', '--scope', 'systemctl', 'restart', 'cinder-scheduler.service'] in directory '/root'
2018-01-28 13:02:54,160 [salt.state       ][INFO    ][24103] {'cinder-scheduler': True}
2018-01-28 13:02:54,161 [salt.state       ][INFO    ][24103] Completed state [cinder-scheduler] at time 13:02:54.161299 duration_in_ms=625.508
2018-01-28 13:02:54,165 [salt.state       ][INFO    ][24103] Running state [cinder-manage db sync; sleep 5;] at time 13:02:54.164584
2018-01-28 13:02:54,165 [salt.state       ][INFO    ][24103] Executing state cmd.run for cinder-manage db sync; sleep 5;
2018-01-28 13:02:54,166 [salt.loaded.int.module.cmdmod][INFO    ][24103] Executing command 'cinder-manage db sync; sleep 5;' in directory '/root'
2018-01-28 13:02:55,844 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128130255260047
2018-01-28 13:02:55,887 [salt.minion      ][INFO    ][26218] Starting a new job with PID 26218
2018-01-28 13:02:55,919 [salt.minion      ][INFO    ][26218] Returning information for job: 20180128130255260047
2018-01-28 13:03:02,100 [salt.state       ][INFO    ][24103] {'pid': 26186, 'retcode': 0, 'stderr': '', 'stdout': ''}
2018-01-28 13:03:02,101 [salt.state       ][INFO    ][24103] Completed state [cinder-manage db sync; sleep 5;] at time 13:03:02.101440 duration_in_ms=7936.857
2018-01-28 13:03:02,105 [salt.state       ][INFO    ][24103] Running state [lvm-driver] at time 13:03:02.105607
2018-01-28 13:03:02,106 [salt.state       ][INFO    ][24103] Executing state cinderng.volume_type_present for lvm-driver
2018-01-28 13:03:05,869 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128130305288828
2018-01-28 13:03:05,897 [salt.minion      ][INFO    ][26262] Starting a new job with PID 26262
2018-01-28 13:03:05,914 [salt.minion      ][INFO    ][26262] Returning information for job: 20180128130305288828
2018-01-28 13:03:06,390 [salt.state       ][INFO    ][24103] Volume type "lvm-driver" already exists
2018-01-28 13:03:06,392 [salt.state       ][INFO    ][24103] Completed state [lvm-driver] at time 13:03:06.392074 duration_in_ms=4286.465
2018-01-28 13:03:06,394 [salt.state       ][INFO    ][24103] Running state [lvm-driver] at time 13:03:06.394073
2018-01-28 13:03:06,395 [salt.state       ][INFO    ][24103] Executing state cinderng.volume_type_key_present for lvm-driver
2018-01-28 13:03:10,482 [salt.state       ][INFO    ][24103] Volume type keys "{u'volume_backend_name': u'lvm-driver'}" in volume type "lvm-driver" already exist
2018-01-28 13:03:10,484 [salt.state       ][INFO    ][24103] Completed state [lvm-driver] at time 13:03:10.484162 duration_in_ms=4090.088
2018-01-28 13:03:10,488 [salt.minion      ][INFO    ][24103] Returning information for job: 20180128130224796060
2018-01-28 13:03:11,268 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command state.sls with jid 20180128130310690254
2018-01-28 13:03:11,302 [salt.minion      ][INFO    ][26269] Starting a new job with PID 26269
2018-01-28 13:03:14,389 [salt.state       ][INFO    ][26269] Loading fresh modules for state activity
2018-01-28 13:03:16,573 [salt.state       ][INFO    ][26269] Running state [cinder-api] at time 13:03:16.573233
2018-01-28 13:03:16,573 [salt.state       ][INFO    ][26269] Executing state pkg.installed for cinder-api
2018-01-28 13:03:16,574 [salt.loaded.int.module.cmdmod][INFO    ][26269] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 13:03:16,954 [salt.state       ][INFO    ][26269] All specified packages are already installed
2018-01-28 13:03:16,956 [salt.state       ][INFO    ][26269] Completed state [cinder-api] at time 13:03:16.955925 duration_in_ms=382.692
2018-01-28 13:03:16,956 [salt.state       ][INFO    ][26269] Running state [cinder-scheduler] at time 13:03:16.956547
2018-01-28 13:03:16,957 [salt.state       ][INFO    ][26269] Executing state pkg.installed for cinder-scheduler
2018-01-28 13:03:16,964 [salt.state       ][INFO    ][26269] All specified packages are already installed
2018-01-28 13:03:16,964 [salt.state       ][INFO    ][26269] Completed state [cinder-scheduler] at time 13:03:16.964504 duration_in_ms=7.957
2018-01-28 13:03:16,965 [salt.state       ][INFO    ][26269] Running state [lvm2] at time 13:03:16.965006
2018-01-28 13:03:16,965 [salt.state       ][INFO    ][26269] Executing state pkg.installed for lvm2
2018-01-28 13:03:16,972 [salt.state       ][INFO    ][26269] All specified packages are already installed
2018-01-28 13:03:16,972 [salt.state       ][INFO    ][26269] Completed state [lvm2] at time 13:03:16.972761 duration_in_ms=7.755
2018-01-28 13:03:16,973 [salt.state       ][INFO    ][26269] Running state [python-cinder] at time 13:03:16.973224
2018-01-28 13:03:16,973 [salt.state       ][INFO    ][26269] Executing state pkg.installed for python-cinder
2018-01-28 13:03:16,981 [salt.state       ][INFO    ][26269] All specified packages are already installed
2018-01-28 13:03:16,981 [salt.state       ][INFO    ][26269] Completed state [python-cinder] at time 13:03:16.981496 duration_in_ms=8.272
2018-01-28 13:03:16,981 [salt.state       ][INFO    ][26269] Running state [gettext-base] at time 13:03:16.981957
2018-01-28 13:03:16,982 [salt.state       ][INFO    ][26269] Executing state pkg.installed for gettext-base
2018-01-28 13:03:16,988 [salt.state       ][INFO    ][26269] All specified packages are already installed
2018-01-28 13:03:16,989 [salt.state       ][INFO    ][26269] Completed state [gettext-base] at time 13:03:16.989342 duration_in_ms=7.385
2018-01-28 13:03:16,989 [salt.state       ][INFO    ][26269] Running state [python-memcache] at time 13:03:16.989810
2018-01-28 13:03:16,990 [salt.state       ][INFO    ][26269] Executing state pkg.installed for python-memcache
2018-01-28 13:03:16,996 [salt.state       ][INFO    ][26269] All specified packages are already installed
2018-01-28 13:03:16,997 [salt.state       ][INFO    ][26269] Completed state [python-memcache] at time 13:03:16.997368 duration_in_ms=7.558
2018-01-28 13:03:16,997 [salt.state       ][INFO    ][26269] Running state [python-pycadf] at time 13:03:16.997837
2018-01-28 13:03:16,998 [salt.state       ][INFO    ][26269] Executing state pkg.installed for python-pycadf
2018-01-28 13:03:17,005 [salt.state       ][INFO    ][26269] All specified packages are already installed
2018-01-28 13:03:17,005 [salt.state       ][INFO    ][26269] Completed state [python-pycadf] at time 13:03:17.005736 duration_in_ms=7.899
2018-01-28 13:03:17,010 [salt.state       ][INFO    ][26269] Running state [/etc/cinder/cinder.conf] at time 13:03:17.010302
2018-01-28 13:03:17,011 [salt.state       ][INFO    ][26269] Executing state file.managed for /etc/cinder/cinder.conf
2018-01-28 13:03:17,336 [salt.state       ][INFO    ][26269] File /etc/cinder/cinder.conf is in the correct state
2018-01-28 13:03:17,336 [salt.state       ][INFO    ][26269] Completed state [/etc/cinder/cinder.conf] at time 13:03:17.336756 duration_in_ms=326.455
2018-01-28 13:03:17,337 [salt.state       ][INFO    ][26269] Running state [/etc/cinder/api-paste.ini] at time 13:03:17.337474
2018-01-28 13:03:17,337 [salt.state       ][INFO    ][26269] Executing state file.managed for /etc/cinder/api-paste.ini
2018-01-28 13:03:17,414 [salt.state       ][INFO    ][26269] File /etc/cinder/api-paste.ini is in the correct state
2018-01-28 13:03:17,414 [salt.state       ][INFO    ][26269] Completed state [/etc/cinder/api-paste.ini] at time 13:03:17.414652 duration_in_ms=77.178
2018-01-28 13:03:17,415 [salt.state       ][INFO    ][26269] Running state [/etc/default/cinder-scheduler] at time 13:03:17.415290
2018-01-28 13:03:17,415 [salt.state       ][INFO    ][26269] Executing state file.managed for /etc/default/cinder-scheduler
2018-01-28 13:03:17,431 [salt.state       ][INFO    ][26269] File /etc/default/cinder-scheduler is in the correct state
2018-01-28 13:03:17,432 [salt.state       ][INFO    ][26269] Completed state [/etc/default/cinder-scheduler] at time 13:03:17.432071 duration_in_ms=16.781
2018-01-28 13:03:17,432 [salt.state       ][INFO    ][26269] Running state [/etc/apache2/conf-available/cinder-wsgi.conf] at time 13:03:17.432736
2018-01-28 13:03:17,433 [salt.state       ][INFO    ][26269] Executing state file.managed for /etc/apache2/conf-available/cinder-wsgi.conf
2018-01-28 13:03:17,498 [salt.state       ][INFO    ][26269] File /etc/apache2/conf-available/cinder-wsgi.conf is in the correct state
2018-01-28 13:03:17,498 [salt.state       ][INFO    ][26269] Completed state [/etc/apache2/conf-available/cinder-wsgi.conf] at time 13:03:17.498750 duration_in_ms=66.014
2018-01-28 13:03:17,499 [salt.state       ][INFO    ][26269] Running state [cinder-wsgi] at time 13:03:17.499697
2018-01-28 13:03:17,500 [salt.state       ][INFO    ][26269] Executing state apache_conf.enabled for cinder-wsgi
2018-01-28 13:03:17,500 [salt.state       ][INFO    ][26269] cinder-wsgi already enabled.
2018-01-28 13:03:17,501 [salt.state       ][INFO    ][26269] Completed state [cinder-wsgi] at time 13:03:17.501250 duration_in_ms=1.553
2018-01-28 13:03:17,503 [salt.state       ][INFO    ][26269] Running state [apache2] at time 13:03:17.503081
2018-01-28 13:03:17,503 [salt.state       ][INFO    ][26269] Executing state service.running for apache2
2018-01-28 13:03:17,504 [salt.loaded.int.module.cmdmod][INFO    ][26269] Executing command ['systemctl', 'status', 'apache2.service', '-n', '0'] in directory '/root'
2018-01-28 13:03:17,555 [salt.loaded.int.module.cmdmod][INFO    ][26269] Executing command ['systemctl', 'is-active', 'apache2.service'] in directory '/root'
2018-01-28 13:03:17,582 [salt.loaded.int.module.cmdmod][INFO    ][26269] Executing command ['systemctl', 'is-enabled', 'apache2.service'] in directory '/root'
2018-01-28 13:03:17,609 [salt.state       ][INFO    ][26269] The service apache2 is already running
2018-01-28 13:03:17,611 [salt.state       ][INFO    ][26269] Completed state [apache2] at time 13:03:17.611095 duration_in_ms=108.012
2018-01-28 13:03:17,613 [salt.state       ][INFO    ][26269] Running state [cinder-scheduler] at time 13:03:17.613526
2018-01-28 13:03:17,614 [salt.state       ][INFO    ][26269] Executing state service.running for cinder-scheduler
2018-01-28 13:03:17,616 [salt.loaded.int.module.cmdmod][INFO    ][26269] Executing command ['systemctl', 'status', 'cinder-scheduler.service', '-n', '0'] in directory '/root'
2018-01-28 13:03:17,640 [salt.loaded.int.module.cmdmod][INFO    ][26269] Executing command ['systemctl', 'is-active', 'cinder-scheduler.service'] in directory '/root'
2018-01-28 13:03:17,662 [salt.loaded.int.module.cmdmod][INFO    ][26269] Executing command ['systemctl', 'is-enabled', 'cinder-scheduler.service'] in directory '/root'
2018-01-28 13:03:17,687 [salt.state       ][INFO    ][26269] The service cinder-scheduler is already running
2018-01-28 13:03:17,688 [salt.state       ][INFO    ][26269] Completed state [cinder-scheduler] at time 13:03:17.688355 duration_in_ms=74.828
2018-01-28 13:03:17,693 [salt.state       ][INFO    ][26269] Running state [cinder-manage db sync; sleep 5;] at time 13:03:17.693805
2018-01-28 13:03:17,694 [salt.state       ][INFO    ][26269] Executing state cmd.run for cinder-manage db sync; sleep 5;
2018-01-28 13:03:17,696 [salt.loaded.int.module.cmdmod][INFO    ][26269] Executing command 'cinder-manage db sync; sleep 5;' in directory '/root'
2018-01-28 13:03:21,370 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128130320789240
2018-01-28 13:03:21,401 [salt.minion      ][INFO    ][26318] Starting a new job with PID 26318
2018-01-28 13:03:21,420 [salt.minion      ][INFO    ][26318] Returning information for job: 20180128130320789240
2018-01-28 13:03:25,284 [salt.state       ][INFO    ][26269] {'pid': 26308, 'retcode': 0, 'stderr': '', 'stdout': ''}
2018-01-28 13:03:25,284 [salt.state       ][INFO    ][26269] Completed state [cinder-manage db sync; sleep 5;] at time 13:03:25.284776 duration_in_ms=7590.97
2018-01-28 13:03:25,287 [salt.state       ][INFO    ][26269] Running state [lvm-driver] at time 13:03:25.287432
2018-01-28 13:03:25,287 [salt.state       ][INFO    ][26269] Executing state cinderng.volume_type_present for lvm-driver
2018-01-28 13:03:26,391 [salt.state       ][INFO    ][26269] Volume type "lvm-driver" already exists
2018-01-28 13:03:26,393 [salt.state       ][INFO    ][26269] Completed state [lvm-driver] at time 13:03:26.392913 duration_in_ms=1105.48
2018-01-28 13:03:26,394 [salt.state       ][INFO    ][26269] Running state [lvm-driver] at time 13:03:26.394537
2018-01-28 13:03:26,395 [salt.state       ][INFO    ][26269] Executing state cinderng.volume_type_key_present for lvm-driver
2018-01-28 13:03:28,597 [salt.state       ][INFO    ][26269] Volume type keys "{u'volume_backend_name': u'lvm-driver'}" in volume type "lvm-driver" already exist
2018-01-28 13:03:28,598 [salt.state       ][INFO    ][26269] Completed state [lvm-driver] at time 13:03:28.598922 duration_in_ms=2204.385
2018-01-28 13:03:28,600 [salt.minion      ][INFO    ][26269] Returning information for job: 20180128130310690254
2018-01-28 13:03:57,051 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command test.ping with jid 20180128130356473969
2018-01-28 13:03:57,080 [salt.minion      ][INFO    ][26330] Starting a new job with PID 26330
2018-01-28 13:03:57,149 [salt.minion      ][INFO    ][26330] Returning information for job: 20180128130356473969
2018-01-28 13:04:51,595 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command state.sls with jid 20180128130451012980
2018-01-28 13:04:51,623 [salt.minion      ][INFO    ][26335] Starting a new job with PID 26335
2018-01-28 13:04:54,327 [salt.state       ][INFO    ][26335] Loading fresh modules for state activity
2018-01-28 13:04:54,389 [salt.fileclient  ][INFO    ][26335] Fetching file from saltenv 'base', ** done ** 'neutron/init.sls'
2018-01-28 13:04:54,426 [salt.fileclient  ][INFO    ][26335] Fetching file from saltenv 'base', ** done ** 'neutron/server.sls'
2018-01-28 13:04:54,559 [salt.state       ][INFO    ][26335] Running state [/usr/sbin/policy-rc.d] at time 13:04:54.559425
2018-01-28 13:04:54,559 [salt.state       ][INFO    ][26335] Executing state file.managed for /usr/sbin/policy-rc.d
2018-01-28 13:04:54,569 [salt.state       ][INFO    ][26335] File changed:
New file
2018-01-28 13:04:54,569 [salt.state       ][INFO    ][26335] Completed state [/usr/sbin/policy-rc.d] at time 13:04:54.569619 duration_in_ms=10.196
2018-01-28 13:04:56,402 [salt.state       ][INFO    ][26335] Running state [neutron-server] at time 13:04:56.402264
2018-01-28 13:04:56,402 [salt.state       ][INFO    ][26335] Executing state pkg.installed for neutron-server
2018-01-28 13:04:56,403 [salt.loaded.int.module.cmdmod][INFO    ][26335] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 13:04:56,813 [salt.loaded.int.module.cmdmod][INFO    ][26335] Executing command ['apt-cache', '-q', 'policy', 'neutron-server'] in directory '/root'
2018-01-28 13:04:56,914 [salt.loaded.int.module.cmdmod][INFO    ][26335] Executing command ['apt-get', '-q', 'update'] in directory '/root'
2018-01-28 13:04:58,820 [salt.loaded.int.module.cmdmod][INFO    ][26335] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 13:04:58,857 [salt.loaded.int.module.cmdmod][INFO    ][26335] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'neutron-server'] in directory '/root'
2018-01-28 13:05:01,700 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128130501111500
2018-01-28 13:05:01,725 [salt.minion      ][INFO    ][27150] Starting a new job with PID 27150
2018-01-28 13:05:01,747 [salt.minion      ][INFO    ][27150] Returning information for job: 20180128130501111500
2018-01-28 13:05:07,908 [salt.loaded.int.module.cmdmod][INFO    ][26335] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 13:05:07,970 [salt.state       ][INFO    ][26335] Made the following changes:
'python-waitress' changed from 'absent' to '0.8.10-1'
'ipset' changed from 'absent' to '6.29-1'
'python-ovsdbapp' changed from 'absent' to '0.4.0-0ubuntu2~cloud0'
'neutron-common' changed from 'absent' to '2:11.0.2-0ubuntu1.1~cloud0'
'python-neutron-fwaas' changed from 'absent' to '1:11.0.1-0ubuntu1~cloud0'
'python-singledispatch' changed from 'absent' to '3.4.0.3-2'
'neutron-plugin-ml2' changed from 'absent' to '2:11.0.2-0ubuntu1.1~cloud0'
'libipset3' changed from 'absent' to '6.29-1'
'python-weakrefmethod' changed from 'absent' to '1.0-1'
'python-neutron' changed from 'absent' to '2:11.0.2-0ubuntu1.1~cloud0'
'python-os-xenapi' changed from 'absent' to '0.2.0-0ubuntu1~cloud0'
'python-ryu' changed from 'absent' to '4.15-0ubuntu1~cloud0'
'python-pyroute2' changed from 'absent' to '0.4.18-0ubuntu1~cloud0'
'python-pecan' changed from 'absent' to '1.1.2-3fakesync2~cloud0'
'python-logutils' changed from 'absent' to '0.3.3-5'
'ipset-6.29' changed from 'absent' to '1'
'python-openvswitch' changed from 'absent' to '2.8.0-0ubuntu2~cloud0'
'python-tinyrpc' changed from 'absent' to '0.5-0ubuntu1~cloud0'
'python-webtest' changed from 'absent' to '2.0.18-1ubuntu1'
'neutron-plugin' changed from 'absent' to '1'
'python2.7-neutron' changed from 'absent' to '1'
'neutron-server' changed from 'absent' to '2:11.0.2-0ubuntu1.1~cloud0'
'python2.7-waitress' changed from 'absent' to '1'
'python2.7-ryu' changed from 'absent' to '1'
'python-neutron-lib' changed from 'absent' to '1.9.1-0ubuntu1~cloud0'

2018-01-28 13:05:08,007 [salt.state       ][INFO    ][26335] Loading fresh modules for state activity
2018-01-28 13:05:08,203 [salt.state       ][INFO    ][26335] Completed state [neutron-server] at time 13:05:08.203062 duration_in_ms=11800.798
2018-01-28 13:05:08,213 [salt.state       ][INFO    ][26335] Running state [python-neutron-lbaas] at time 13:05:08.213806
2018-01-28 13:05:08,214 [salt.state       ][INFO    ][26335] Executing state pkg.installed for python-neutron-lbaas
2018-01-28 13:05:08,678 [salt.loaded.int.module.cmdmod][INFO    ][26335] Executing command ['dpkg', '--get-selections', '*'] in directory '/root'
2018-01-28 13:05:08,722 [salt.loaded.int.module.cmdmod][INFO    ][26335] Executing command ['systemd-run', '--scope', 'apt-get', '-q', '-y', '-o', 'DPkg::Options::=--force-confold', '-o', 'DPkg::Options::=--force-confdef', 'install', 'python-neutron-lbaas'] in directory '/root'
2018-01-28 13:05:11,032 [salt.loaded.int.module.cmdmod][INFO    ][26335] Executing command ['dpkg-query', '--showformat', '${Status} ${Package} ${Version} ${Architecture}\n', '-W'] in directory '/root'
2018-01-28 13:05:11,095 [salt.state       ][INFO    ][26335] Made the following changes:
'python-pyasn1-modules' changed from 'absent' to '0.0.7-0.1'
'python-neutron-lbaas' changed from 'absent' to '2:11.0.2-0ubuntu1~cloud0'

2018-01-28 13:05:11,123 [salt.state       ][INFO    ][26335] Loading fresh modules for state activity
2018-01-28 13:05:11,154 [salt.state       ][INFO    ][26335] Completed state [python-neutron-lbaas] at time 13:05:11.153989 duration_in_ms=2940.183
2018-01-28 13:05:11,163 [salt.state       ][INFO    ][26335] Running state [gettext-base] at time 13:05:11.163765
2018-01-28 13:05:11,164 [salt.state       ][INFO    ][26335] Executing state pkg.installed for gettext-base
2018-01-28 13:05:11,687 [salt.state       ][INFO    ][26335] All specified packages are already installed
2018-01-28 13:05:11,687 [salt.state       ][INFO    ][26335] Completed state [gettext-base] at time 13:05:11.687586 duration_in_ms=523.821
2018-01-28 13:05:11,687 [salt.state       ][INFO    ][26335] Running state [python-pycadf] at time 13:05:11.687950
2018-01-28 13:05:11,688 [salt.state       ][INFO    ][26335] Executing state pkg.installed for python-pycadf
2018-01-28 13:05:11,694 [salt.state       ][INFO    ][26335] All specified packages are already installed
2018-01-28 13:05:11,695 [salt.state       ][INFO    ][26335] Completed state [python-pycadf] at time 13:05:11.695111 duration_in_ms=7.161
2018-01-28 13:05:11,696 [salt.state       ][INFO    ][26335] Running state [/usr/sbin/policy-rc.d] at time 13:05:11.696389
2018-01-28 13:05:11,696 [salt.state       ][INFO    ][26335] Executing state file.absent for /usr/sbin/policy-rc.d
2018-01-28 13:05:11,697 [salt.state       ][INFO    ][26335] {'removed': '/usr/sbin/policy-rc.d'}
2018-01-28 13:05:11,697 [salt.state       ][INFO    ][26335] Completed state [/usr/sbin/policy-rc.d] at time 13:05:11.697323 duration_in_ms=0.934
2018-01-28 13:05:11,697 [salt.state       ][INFO    ][26335] Running state [/etc/neutron/plugins/ml2/ml2_conf.ini] at time 13:05:11.697786
2018-01-28 13:05:11,698 [salt.state       ][INFO    ][26335] Executing state file.managed for /etc/neutron/plugins/ml2/ml2_conf.ini
2018-01-28 13:05:11,738 [salt.fileclient  ][INFO    ][26335] Fetching file from saltenv 'base', ** done ** 'neutron/files/pike/ml2_conf.ini'
2018-01-28 13:05:11,832 [salt.state       ][INFO    ][26335] File changed:
--- 
+++ 
@@ -1,3 +1,4 @@
+
 [DEFAULT]
 
 #
@@ -8,6 +9,12 @@
 # INFO level. (boolean value)
 # Note: This option can be changed without restarting.
 #debug = false
+
+# DEPRECATED: If set to false, the logging level will be set to WARNING instead
+# of the default INFO level. (boolean value)
+# This option is deprecated for removal.
+# Its value may be silently ignored in the future.
+#verbose = true
 
 # The name of a logging configuration file. This file is appended to any
 # existing logging configuration files. For details about logging configuration
@@ -47,12 +54,6 @@
 # is set. (boolean value)
 #use_syslog = false
 
-# Enable journald for logging. If running in a systemd environment you may wish
-# to enable journal support. Doing so will use the journal native protocol
-# which includes structured metadata in addition to log messages.This option is
-# ignored if log_config_append is set. (boolean value)
-#use_journal = false
-
 # Syslog facility to receive log lines. This option is ignored if
 # log_config_append is set. (string value)
 #syslog_log_facility = LOG_USER
@@ -81,7 +82,7 @@
 
 # List of package logging levels in logger=LEVEL pairs. This option is ignored
 # if log_config_append is set. (list value)
-#default_log_levels = amqp=WARN,amqplib=WARN,boto=WARN,qpid=WARN,sqlalchemy=WARN,suds=INFO,oslo.messaging=INFO,oslo_messaging=INFO,iso8601=WARN,requests.packages.urllib3.connectionpool=WARN,urllib3.connectionpool=WARN,websocket=WARN,requests.packages.urllib3.util.retry=WARN,urllib3.util.retry=WARN,keystonemiddleware=WARN,routes.middleware=WARN,stevedore=WARN,taskflow=WARN,keystoneauth=WARN,oslo.cache=INFO,dogpile.core.dogpile=INFO
+#default_log_levels = amqp=WARN,amqplib=WARN,boto=WARN,qpid=WARN,sqlalchemy=WARN,suds=INFO,oslo.messaging=INFO,iso8601=WARN,requests.packages.urllib3.connectionpool=WARN,urllib3.connectionpool=WARN,websocket=WARN,requests.packages.urllib3.util.retry=WARN,urllib3.util.retry=WARN,keystonemiddleware=WARN,routes.middleware=WARN,stevedore=WARN,taskflow=WARN,keystoneauth=WARN,oslo.cache=INFO,dogpile.core.dogpile=INFO
 
 # Enables or disables publication of error events. (boolean value)
 #publish_errors = false
@@ -108,17 +109,6 @@
 
 # Enables or disables fatal status of deprecations. (boolean value)
 #fatal_deprecations = false
-
-
-[l2pop]
-
-#
-# From neutron.ml2
-#
-
-# Delay within which agent is expected to update existing ports when it
-# restarts (integer value)
-#agent_boot_time = 180
 
 
 [ml2]
@@ -135,27 +125,34 @@
 # value 'local' is useful for single-box testing but provides no connectivity
 # between hosts. (list value)
 #tenant_network_types = local
+tenant_network_types = flat,vxlan
 
 # An ordered list of networking mechanism driver entrypoints to be loaded from
 # the neutron.ml2.mechanism_drivers namespace. (list value)
 #mechanism_drivers =
+mechanism_drivers = openvswitch,l2population
 
 # An ordered list of extension driver entrypoints to be loaded from the
 # neutron.ml2.extension_drivers namespace. For example: extension_drivers =
 # port_security,qos (list value)
 #extension_drivers =
+
+
+extension_drivers=port_security
 
 # Maximum size of an IP packet (MTU) that can traverse the underlying physical
 # network infrastructure without fragmentation when using an overlay/tunnel
 # protocol. This option allows specifying a physical network MTU value that
 # differs from the default global_physnet_mtu value. (integer value)
 #path_mtu = 0
+path_mtu = 1500
 
 # A list of mappings of physical networks to MTU values. The format of the
 # mapping is <physnet>:<mtu val>. This mapping allows specifying a physical
 # network MTU value that differs from the default global_physnet_mtu value.
 # (list value)
 #physical_network_mtus =
+physical_network_mtus = physnet1:1500
 
 # Default network type for external networks when no provider attributes are
 # specified. By default it is None, which means that if provider attributes are
@@ -180,6 +177,7 @@
 # default '*' to allow flat networks with arbitrary physical_network names. Use
 # an empty list to disable flat networks. (list value)
 #flat_networks = *
+flat_networks = *
 
 
 [ml2_type_geneve]
@@ -191,6 +189,7 @@
 # Comma-separated list of <vni_min>:<vni_max> tuples enumerating ranges of
 # Geneve VNI IDs that are available for tenant network allocation (list value)
 #vni_ranges =
+vni_ranges = 1:65536
 
 # Geneve encapsulation header size is dynamic, this value is used to calculate
 # the maximum MTU for the driver. This is the sum of the sizes of the outer ETH
@@ -198,6 +197,7 @@
 # which is the size of the Geneve header without any additional option headers.
 # (integer value)
 #max_header_size = 30
+max_header_size = 38
 
 
 [ml2_type_gre]
@@ -209,6 +209,7 @@
 # Comma-separated list of <tun_min>:<tun_max> tuples enumerating ranges of GRE
 # tunnel IDs that are available for tenant network allocation (list value)
 #tunnel_id_ranges =
+tunnel_id_ranges =2:65535
 
 
 [ml2_type_vlan]
@@ -222,7 +223,7 @@
 # networks, as well as ranges of VLAN tags on each available for allocation to
 # tenant networks. (list value)
 #network_vlan_ranges =
-
+network_vlan_ranges = 
 
 [ml2_type_vxlan]
 
@@ -233,11 +234,13 @@
 # Comma-separated list of <vni_min>:<vni_max> tuples enumerating ranges of
 # VXLAN VNI IDs that are available for tenant network allocation (list value)
 #vni_ranges =
+vni_ranges = 2:65535
 
 # Multicast group for VXLAN. When configured, will enable sending all broadcast
 # traffic to this multicast group. When left unconfigured, will disable
 # multicast VXLAN mode. (string value)
 #vxlan_group = <None>
+vxlan_group = 224.0.0.1
 
 
 [securitygroup]
@@ -253,6 +256,8 @@
 # should be false when using no security groups or using the nova security
 # group API. (boolean value)
 #enable_security_group = true
+firewall_driver = openvswitch
+enable_security_group = True
 
 # Use ipset to speed-up the iptables based security groups. Enabling ipset
 # support requires that ipset is installed on L2 agent node. (boolean value)

2018-01-28 13:05:11,833 [salt.state       ][INFO    ][26335] Completed state [/etc/neutron/plugins/ml2/ml2_conf.ini] at time 13:05:11.833163 duration_in_ms=135.376
2018-01-28 13:05:11,834 [salt.state       ][INFO    ][26335] Running state [ln -s /etc/neutron/plugins/ml2/ml2_conf.ini /etc/neutron/plugin.ini] at time 13:05:11.834614
2018-01-28 13:05:11,834 [salt.state       ][INFO    ][26335] Executing state cmd.run for ln -s /etc/neutron/plugins/ml2/ml2_conf.ini /etc/neutron/plugin.ini
2018-01-28 13:05:11,835 [salt.loaded.int.module.cmdmod][INFO    ][26335] Executing command 'test -e /etc/neutron/plugin.ini' in directory '/root'
2018-01-28 13:05:11,852 [salt.loaded.int.module.cmdmod][INFO    ][26335] Executing command 'ln -s /etc/neutron/plugins/ml2/ml2_conf.ini /etc/neutron/plugin.ini' in directory '/root'
2018-01-28 13:05:11,869 [salt.state       ][INFO    ][26335] {'pid': 27552, 'retcode': 0, 'stderr': '', 'stdout': ''}
2018-01-28 13:05:11,869 [salt.state       ][INFO    ][26335] Completed state [ln -s /etc/neutron/plugins/ml2/ml2_conf.ini /etc/neutron/plugin.ini] at time 13:05:11.869588 duration_in_ms=34.974
2018-01-28 13:05:11,871 [salt.state       ][INFO    ][26335] Running state [/etc/neutron/neutron.conf] at time 13:05:11.871595
2018-01-28 13:05:11,872 [salt.state       ][INFO    ][26335] Executing state file.managed for /etc/neutron/neutron.conf
2018-01-28 13:05:11,909 [salt.fileclient  ][INFO    ][26335] Fetching file from saltenv 'base', ** done ** 'neutron/files/pike/neutron-server.conf.Debian'
2018-01-28 13:05:11,931 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128130511304312
2018-01-28 13:05:11,950 [salt.minion      ][INFO    ][27557] Starting a new job with PID 27557
2018-01-28 13:05:11,968 [salt.minion      ][INFO    ][27557] Returning information for job: 20180128130511304312
2018-01-28 13:05:12,107 [salt.state       ][INFO    ][26335] File changed:
--- 
+++ 
@@ -1,5 +1,5 @@
+
 [DEFAULT]
-core_plugin = ml2
 
 #
 # From neutron
@@ -8,14 +8,17 @@
 # Where to store Neutron state files. This directory must be writable by the
 # agent. (string value)
 #state_path = /var/lib/neutron
-
-# The host IP to bind to. (unknown value)
+state_path = /var/lib/neutron
+
+# The host IP to bind to (string value)
 #bind_host = 0.0.0.0
+bind_host = 192.168.10.13
 
 # The port to bind to (port value)
 # Minimum value: 0
 # Maximum value: 65535
 #bind_port = 9696
+bind_port = 9696
 
 # The path for API extensions. Note that this can be a colon-separated list of
 # paths. For example: api_extensions_path =
@@ -23,15 +26,27 @@
 # neutron.extensions is appended to this, so if your extensions are in there
 # you don't need to specify them here. (string value)
 #api_extensions_path =
+agent_down_time = 30
 
 # The type of authentication to use (string value)
 #auth_strategy = keystone
-
-# The core plugin Neutron will use (string value)
-#core_plugin = <None>
+auth_strategy = keystone
+
+
+
+core_plugin = neutron.plugins.ml2.plugin.Ml2Plugin
+
+
+
+
+
+service_plugins =neutron.services.l3_router.l3_router_plugin.L3RouterPlugin, neutron.services.metering.metering_plugin.MeteringPlugin,trunk
 
 # The service plugins Neutron will use (list value)
 #service_plugins =
+
+allow_pagination = False
+
 
 # The base MAC address Neutron will use for VIFs. The first 3 octets will
 # remain unchanged. If the 4th octet is not 00, it will also be used. The
@@ -44,6 +59,7 @@
 # The maximum number of items returned in a single response, value was
 # 'infinite' or negative integer means no limit (string value)
 #pagination_max_limit = -1
+pagination_max_limit = -1
 
 # Default value of availability zone hints. The availability zone aware
 # schedulers use this when the resources availability_zone_hints is empty.
@@ -59,6 +75,12 @@
 # Maximum number of host routes per subnet (integer value)
 #max_subnet_host_routes = 20
 
+# DEPRECATED: Maximum number of fixed ips per port. This option is deprecated
+# and will be removed in the Ocata release. (integer value)
+# This option is deprecated for removal.
+# Its value may be silently ignored in the future.
+#max_fixed_ips_per_port = 5
+
 # Enables IPv6 Prefix Delegation for automatic subnet CIDR allocation. Set to
 # True to enable IPv6 Prefix Delegation for subnet allocation in a PD-capable
 # environment. Users making subnet creation requests for IPv6 subnets without
@@ -70,9 +92,11 @@
 # DHCP lease duration (in seconds). Use -1 to tell dnsmasq to use infinite
 # lease times. (integer value)
 #dhcp_lease_duration = 86400
+dhcp_lease_duration = 600
 
 # Domain to use for building the hostnames (string value)
 #dns_domain = openstacklocal
+dns_domain = novalocal
 
 # Driver for external DNS integration. (string value)
 #external_dns_driver = <None>
@@ -84,23 +108,21 @@
 # MUST be set to False if Neutron is being used in conjunction with Nova
 # security groups. (boolean value)
 #allow_overlapping_ips = false
+allow_overlapping_ips = True
 
 # Hostname to be used by the Neutron server, agents and services running on
 # this machine. All the agents and services running on this machine must use
-# the same host value. (unknown value)
+# the same host value. (string value)
 #host = example.domain
-
-# This string is prepended to the normal URL that is returned in links to the
-# OpenStack Network API. If it is empty (the default), the URLs are returned
-# unchanged. (string value)
-#network_link_prefix = <None>
 
 # Send notification to nova when port status changes (boolean value)
 #notify_nova_on_port_status_changes = true
+notify_nova_on_port_status_changes = true
 
 # Send notification to nova when port data (fixed_ips/floatingip) changes so
 # nova can update its cache. (boolean value)
 #notify_nova_on_port_data_changes = true
+notify_nova_on_port_data_changes = true
 
 # Number of seconds between sending events to nova if there are any events to
 # send. (integer value)
@@ -114,13 +136,10 @@
 # networks. (boolean value)
 #vlan_transparent = false
 
-# DEPRECATED: This will choose the web framework in which to run the Neutron
-# API server. 'pecan' is a new rewrite of the API routing components. (string
-# value)
+# This will choose the web framework in which to run the Neutron API server.
+# 'pecan' is a new experimental rewrite of the API server. (string value)
 # Allowed values: legacy, pecan
-# This option is deprecated for removal.
-# Its value may be silently ignored in the future.
-#web_framework = pecan
+#web_framework = legacy
 
 # MTU of the underlying physical network. Neutron uses this value to calculate
 # MTU for all virtual network components. For flat and VLAN networks, neutron
@@ -129,6 +148,7 @@
 # value. Defaults to 1500, the standard value for Ethernet. (integer value)
 # Deprecated group/name - [ml2]/segment_mtu
 #global_physnet_mtu = 1500
+global_physnet_mtu = 1500
 
 # Number of backlog requests to configure the socket with (integer value)
 #backlog = 4096
@@ -149,10 +169,13 @@
 
 # Number of RPC worker processes for service. (integer value)
 #rpc_workers = 1
+rpc_workers = 4
+
 
 # Number of RPC worker processes dedicated to state reports queue. (integer
 # value)
 #rpc_state_report_workers = 1
+rpc_state_report_workers = 4
 
 # Range of seconds to randomly delay when starting the periodic task scheduler
 # to reduce stampeding. (Disable by setting to 0) (integer value)
@@ -175,6 +198,14 @@
 # Group (gid or name) running metadata proxy after its initialization (if
 # empty: agent effective group). (string value)
 #metadata_proxy_group =
+
+# Enable/Disable log watch by metadata proxy. It should be disabled when
+# metadata_proxy_user/group is not allowed to read/write its log file and
+# copytruncate logrotate option must be used if logrotate is enabled on
+# metadata proxy log files. Option default value is deduced from
+# metadata_proxy_user: watch log is enabled if metadata_proxy_user is agent
+# effective user id/name. (boolean value)
+#metadata_proxy_watch_log = <None>
 
 #
 # From neutron.db
@@ -219,6 +250,7 @@
 # a given tenant network, providing high availability for DHCP service.
 # (integer value)
 #dhcp_agents_per_network = 1
+dhcp_agents_per_network = 2
 
 # Enable services on an agent with admin_state_up False. If this option is
 # False, when admin_state_up of an agent is turned False, services on it will
@@ -238,13 +270,11 @@
 # System-wide flag to determine the type of router that tenants can create.
 # Only admin can override. (boolean value)
 #router_distributed = false
-
-# Determine if setup is configured for DVR. If False, DVR API extension will be
-# disabled. (boolean value)
-#enable_dvr = true
+router_distributed = False
 
 # Driver to use for scheduling router to a default L3 agent (string value)
 #router_scheduler_driver = neutron.scheduler.l3_agent_scheduler.LeastRoutersScheduler
+router_scheduler_driver = neutron.scheduler.l3_agent_scheduler.ChanceScheduler
 
 # Allow auto scheduling of routers to L3 agent. (boolean value)
 #router_auto_schedule = true
@@ -252,13 +282,16 @@
 # Automatically reschedule routers from offline L3 agents to online L3 agents.
 # (boolean value)
 #allow_automatic_l3agent_failover = false
+allow_automatic_l3agent_failover = true
 
 # Enable HA mode for virtual routers. (boolean value)
 #l3_ha = false
+l3_ha = True
 
 # Maximum number of L3 agents which a HA router will be scheduled on. If it is
 # set to 0 then the router will be scheduled on every agent. (integer value)
 #max_l3_agents_per_router = 3
+max_l3_agents_per_router = 0
 
 # Subnet used for the l3 HA admin network. (string value)
 #l3_ha_net_cidr = 169.254.192.0/18
@@ -288,6 +321,13 @@
 # INFO level. (boolean value)
 # Note: This option can be changed without restarting.
 #debug = false
+
+# DEPRECATED: If set to false, the logging level will be set to WARNING instead
+# of the default INFO level. (boolean value)
+# This option is deprecated for removal.
+# Its value may be silently ignored in the future.
+#verbose = true
+verbose = true
 
 # The name of a logging configuration file. This file is appended to any
 # existing logging configuration files. For details about logging configuration
@@ -327,12 +367,6 @@
 # is set. (boolean value)
 #use_syslog = false
 
-# Enable journald for logging. If running in a systemd environment you may wish
-# to enable journal support. Doing so will use the journal native protocol
-# which includes structured metadata in addition to log messages.This option is
-# ignored if log_config_append is set. (boolean value)
-#use_journal = false
-
 # Syslog facility to receive log lines. This option is ignored if
 # log_config_append is set. (string value)
 #syslog_log_facility = LOG_USER
@@ -361,7 +395,7 @@
 
 # List of package logging levels in logger=LEVEL pairs. This option is ignored
 # if log_config_append is set. (list value)
-#default_log_levels = amqp=WARN,amqplib=WARN,boto=WARN,qpid=WARN,sqlalchemy=WARN,suds=INFO,oslo.messaging=INFO,oslo_messaging=INFO,iso8601=WARN,requests.packages.urllib3.connectionpool=WARN,urllib3.connectionpool=WARN,websocket=WARN,requests.packages.urllib3.util.retry=WARN,urllib3.util.retry=WARN,keystonemiddleware=WARN,routes.middleware=WARN,stevedore=WARN,taskflow=WARN,keystoneauth=WARN,oslo.cache=INFO,dogpile.core.dogpile=INFO
+#default_log_levels = amqp=WARN,amqplib=WARN,boto=WARN,qpid=WARN,sqlalchemy=WARN,suds=INFO,oslo.messaging=INFO,iso8601=WARN,requests.packages.urllib3.connectionpool=WARN,urllib3.connectionpool=WARN,websocket=WARN,requests.packages.urllib3.util.retry=WARN,urllib3.util.retry=WARN,keystonemiddleware=WARN,routes.middleware=WARN,stevedore=WARN,taskflow=WARN,keystoneauth=WARN,oslo.cache=INFO,dogpile.core.dogpile=INFO
 
 # Enables or disables publication of error events. (boolean value)
 #publish_errors = false
@@ -394,6 +428,7 @@
 #
 
 # Size of RPC connection pool. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_conn_pool_size
 #rpc_conn_pool_size = 30
 
 # The pool size limit for connections expiration policy (integer value)
@@ -404,24 +439,30 @@
 
 # ZeroMQ bind address. Should be a wildcard (*), an ethernet interface, or IP.
 # The "host" option should point or resolve to this address. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_bind_address
 #rpc_zmq_bind_address = *
 
 # MatchMaker driver. (string value)
 # Allowed values: redis, sentinel, dummy
+# Deprecated group/name - [DEFAULT]/rpc_zmq_matchmaker
 #rpc_zmq_matchmaker = redis
 
 # Number of ZeroMQ contexts, defaults to 1. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_contexts
 #rpc_zmq_contexts = 1
 
 # Maximum number of ingress messages to locally buffer per topic. Default is
 # unlimited. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_topic_backlog
 #rpc_zmq_topic_backlog = <None>
 
 # Directory for holding IPC sockets. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_ipc_dir
 #rpc_zmq_ipc_dir = /var/run/openstack
 
 # Name of this node. Must be a valid hostname, FQDN, or IP address. Must match
 # "host" option, if running Nova. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_host
 #rpc_zmq_host = localhost
 
 # Number of seconds to wait before all pending messages will be sent after
@@ -431,24 +472,30 @@
 # upper bound for the linger period. (integer value)
 # Deprecated group/name - [DEFAULT]/rpc_cast_timeout
 #zmq_linger = -1
+zmq_linger = 30
 
 # The default number of seconds that poll should wait. Poll raises timeout
 # exception when timeout expired. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_poll_timeout
 #rpc_poll_timeout = 1
 
 # Expiration timeout in seconds of a name service record about existing target
 # ( < 0 means no timeout). (integer value)
+# Deprecated group/name - [DEFAULT]/zmq_target_expire
 #zmq_target_expire = 300
 
 # Update period in seconds of a name service record about existing target.
 # (integer value)
+# Deprecated group/name - [DEFAULT]/zmq_target_update
 #zmq_target_update = 180
 
 # Use PUB/SUB pattern for fanout methods. PUB/SUB always uses proxy. (boolean
 # value)
+# Deprecated group/name - [DEFAULT]/use_pub_sub
 #use_pub_sub = false
 
 # Use ROUTER remote proxy. (boolean value)
+# Deprecated group/name - [DEFAULT]/use_router_proxy
 #use_router_proxy = false
 
 # This option makes direct connections dynamic or static. It makes sense only
@@ -463,20 +510,24 @@
 # Minimal port number for random ports range. (port value)
 # Minimum value: 0
 # Maximum value: 65535
+# Deprecated group/name - [DEFAULT]/rpc_zmq_min_port
 #rpc_zmq_min_port = 49153
 
 # Maximal port number for random ports range. (integer value)
 # Minimum value: 1
 # Maximum value: 65536
+# Deprecated group/name - [DEFAULT]/rpc_zmq_max_port
 #rpc_zmq_max_port = 65536
 
 # Number of retries to find free port number before fail with ZMQBindError.
 # (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_bind_port_retries
 #rpc_zmq_bind_port_retries = 100
 
 # Default serialization mechanism for serializing/deserializing
 # outgoing/incoming messages (string value)
 # Allowed values: json, msgpack
+# Deprecated group/name - [DEFAULT]/rpc_zmq_serialization
 #rpc_zmq_serialization = json
 
 # This option configures round-robin mode in zmq socket. True means not keeping
@@ -541,17 +592,19 @@
 # value)
 #subscribe_on =
 
-# Size of executor thread pool when executor is threading or eventlet. (integer
-# value)
+# Size of executor thread pool. (integer value)
 # Deprecated group/name - [DEFAULT]/rpc_thread_pool_size
 #executor_thread_pool_size = 64
+executor_thread_pool_size = 70
 
 # Seconds to wait for a response from a call. (integer value)
 #rpc_response_timeout = 60
+rpc_response_timeout=120
 
 # A URL representing the messaging driver to use and its full configuration.
 # (string value)
 #transport_url = <None>
+transport_url = rabbit://openstack:opnfv_secret@192.168.10.41:5672,openstack:opnfv_secret@192.168.10.42:5672,openstack:opnfv_secret@192.168.10.43:5672//openstack
 
 # DEPRECATED: The messaging driver to use, defaults to rabbit. Other drivers
 # include amqp and zmq. (string value)
@@ -596,10 +649,10 @@
 # is idle for this number of seconds it will be closed. A value of '0' means
 # wait forever. (integer value)
 #client_socket_timeout = 900
+nova_url = http://192.168.10.10:8774/v2
 
 
 [agent]
-root_helper = sudo /usr/bin/neutron-rootwrap /etc/neutron/rootwrap.conf
 
 #
 # From neutron.agent
@@ -609,7 +662,7 @@
 # /etc/neutron/rootwrap.conf' to use the real root filter facility. Change to
 # 'sudo' to skip the filtering and just run the command directly. (string
 # value)
-#root_helper = sudo
+root_helper = sudo /usr/bin/neutron-rootwrap /etc/neutron/rootwrap.conf
 
 # Use the root helper when listing the namespaces on a system. This may not be
 # required depending on the security configuration. If the root helper is not
@@ -620,12 +673,13 @@
 # needs to execute commands in Dom0 in the hypervisor of XenServer, this item
 # should be set to 'xenapi_root_helper', so that it will keep a XenAPI session
 # to pass commands to Dom0. (string value)
-#root_helper_daemon = <None>
+root_helper_daemon = sudo neutron-rootwrap-daemon /etc/neutron/rootwrap.conf
 
 # Seconds between nodes reporting state to server; should be less than
 # agent_down_time, best if it is half or less than agent_down_time. (floating
 # point value)
 #report_interval = 30
+report_interval = 10
 
 # Log agent heartbeats (boolean value)
 #log_agent_heartbeats = false
@@ -682,9 +736,36 @@
 # (list value)
 #allow_headers = X-Auth-Token,X-Identity-Status,X-Roles,X-Service-Catalog,X-User-Id,X-Tenant-Id,X-OpenStack-Request-ID
 
+[cors.subdomain]
+
+#
+# From oslo.middleware.cors
+#
+
+# Indicate whether this resource may be shared with the domain received in the
+# requests "origin" header. Format: "<protocol>://<host>[:<port>]", no trailing
+# slash. Example: https://horizon.example.com (list value)
+#allowed_origin = <None>
+
+# Indicate that the actual request can include user credentials (boolean value)
+#allow_credentials = true
+
+# Indicate which headers are safe to expose to the API. Defaults to HTTP Simple
+# Headers. (list value)
+#expose_headers = X-Auth-Token,X-Subject-Token,X-Service-Token,X-OpenStack-Request-ID,OpenStack-Volume-microversion
+
+# Maximum cache age of CORS preflight requests. (integer value)
+#max_age = 3600
+
+# Indicate which methods can be used during the actual request. (list value)
+#allow_methods = GET,PUT,POST,DELETE,PATCH
+
+# Indicate which header field names may be used during the actual request.
+# (list value)
+#allow_headers = X-Auth-Token,X-Identity-Status,X-Roles,X-Service-Catalog,X-User-Id,X-Tenant-Id,X-OpenStack-Request-ID
+
 
 [database]
-connection = sqlite:////var/lib/neutron/neutron.sqlite
 
 #
 # From neutron.db
@@ -698,7 +779,16 @@
 # From oslo.db
 #
 
+# DEPRECATED: The file name to use with SQLite. (string value)
+# Deprecated group/name - [DEFAULT]/sqlite_db
+# This option is deprecated for removal.
+# Its value may be silently ignored in the future.
+# Reason: Should use config option connection or slave_connection to connect
+# the database.
+#sqlite_db = oslo.sqlite
+
 # If True, SQLite uses synchronous mode. (boolean value)
+# Deprecated group/name - [DEFAULT]/sqlite_synchronous
 #sqlite_synchronous = true
 
 # The back end to use for the database. (string value)
@@ -710,7 +800,9 @@
 # Deprecated group/name - [DEFAULT]/sql_connection
 # Deprecated group/name - [DATABASE]/sql_connection
 # Deprecated group/name - [sql]/connection
-#connection = <None>
+
+
+connection = mysql+pymysql://neutron:opnfv_secret@192.168.10.50/neutron?charset=utf8
 
 # The SQLAlchemy connection string to use to connect to the slave database.
 # (string value)
@@ -722,15 +814,12 @@
 # (string value)
 #mysql_sql_mode = TRADITIONAL
 
-# If True, transparently enables support for handling MySQL Cluster (NDB).
-# (boolean value)
-#mysql_enable_ndb = false
-
 # Timeout before idle SQL connections are reaped. (integer value)
 # Deprecated group/name - [DEFAULT]/sql_idle_timeout
 # Deprecated group/name - [DATABASE]/sql_idle_timeout
 # Deprecated group/name - [sql]/idle_timeout
 #idle_timeout = 3600
+idle_timeout = 3600
 
 # Minimum number of SQL connections to keep open in a pool. (integer value)
 # Deprecated group/name - [DEFAULT]/sql_min_pool_size
@@ -742,22 +831,26 @@
 # Deprecated group/name - [DEFAULT]/sql_max_pool_size
 # Deprecated group/name - [DATABASE]/sql_max_pool_size
 #max_pool_size = 5
+max_pool_size = 20
 
 # Maximum number of database connection retries during startup. Set to -1 to
 # specify an infinite retry count. (integer value)
 # Deprecated group/name - [DEFAULT]/sql_max_retries
 # Deprecated group/name - [DATABASE]/sql_max_retries
 #max_retries = 10
+max_retries = -1
 
 # Interval between retries of opening a SQL connection. (integer value)
 # Deprecated group/name - [DEFAULT]/sql_retry_interval
 # Deprecated group/name - [DATABASE]/reconnect_interval
 #retry_interval = 10
+retry_interval = 2
 
 # If set, use this value for max_overflow with SQLAlchemy. (integer value)
 # Deprecated group/name - [DEFAULT]/sql_max_overflow
 # Deprecated group/name - [DATABASE]/sqlalchemy_max_overflow
 #max_overflow = 50
+max_overflow = 20
 
 # Verbosity of SQL debugging information: 0=None, 100=Everything. (integer
 # value)
@@ -796,6 +889,19 @@
 
 [keystone_authtoken]
 
+auth_region=RegionOne
+auth_protocol=http
+revocation_cache_time = 10
+auth_type = password
+auth_host = 192.168.10.10
+auth_port = 35357
+user_domain_id = default
+project_domain_id = default
+project_name = service
+username = neutron
+password = opnfv_secret
+auth_uri=http://192.168.10.10:5000
+auth_url=http://192.168.10.10:35357
 #
 # From keystonemiddleware.auth_token
 #
@@ -803,10 +909,10 @@
 # Complete "public" Identity API endpoint. This endpoint should not be an
 # "admin" endpoint, as it should be accessible by all end users.
 # Unauthenticated clients are redirected to this endpoint to authenticate.
-# Although this endpoint should ideally be unversioned, client support in the
-# wild varies. If you're using a versioned v2 endpoint here, then this should
-# *not* be the same endpoint the service user utilizes for validating tokens,
-# because normal end users may not be able to reach that endpoint. (string
+# Although this endpoint should  ideally be unversioned, client support in the
+# wild varies.  If you're using a versioned v2 endpoint here, then this  should
+# *not* be the same endpoint the service user utilizes  for validating tokens,
+# because normal end users may not be  able to reach that endpoint. (string
 # value)
 #auth_uri = <None>
 
@@ -1060,12 +1166,14 @@
 # Name of nova region to use. Useful if keystone manages more than one region.
 # (string value)
 #region_name = <None>
+region_name = RegionOne
 
 # Type of the nova endpoint to use.  This endpoint will be looked up in the
 # keystone catalog and should be one of public, internal or admin. (string
 # value)
 # Allowed values: public, admin, internal
 #endpoint_type = public
+endpoint_type = internal
 
 #
 # From nova.auth
@@ -1073,6 +1181,13 @@
 
 # Authentication URL (string value)
 #auth_url = <None>
+user_domain_id = default
+project_domain_id = default
+project_name = service
+password = opnfv_secret
+username = nova
+auth_type = password
+auth_url = http://192.168.10.10:35357
 
 # Authentication type to load (string value)
 # Deprecated group/name - [nova]/auth_plugin
@@ -1117,11 +1232,11 @@
 #project_domain_name = <None>
 
 # Project ID to scope to (string value)
-# Deprecated group/name - [nova]/tenant_id
+# Deprecated group/name - [nova]/tenant-id
 #project_id = <None>
 
 # Project name to scope to (string value)
-# Deprecated group/name - [nova]/tenant_name
+# Deprecated group/name - [nova]/tenant-name
 #project_name = <None>
 
 # Tenant ID (string value)
@@ -1146,7 +1261,7 @@
 #user_id = <None>
 
 # Username (string value)
-# Deprecated group/name - [nova]/user_name
+# Deprecated group/name - [nova]/user-name
 #username = <None>
 
 
@@ -1157,6 +1272,7 @@
 #
 
 # Enables or disables inter-process locks. (boolean value)
+# Deprecated group/name - [DEFAULT]/disable_process_locking
 #disable_process_locking = false
 
 # Directory to use for lock files.  For security, the specified directory
@@ -1165,7 +1281,9 @@
 # in the environment, use the Python tempfile.gettempdir function to find a
 # suitable location. If external locks are used, a lock path must be set.
 # (string value)
+# Deprecated group/name - [DEFAULT]/lock_path
 #lock_path = /tmp
+lock_path = $state_path/lock
 
 
 [oslo_messaging_amqp]
@@ -1176,64 +1294,61 @@
 
 # Name for the AMQP container. must be globally unique. Defaults to a generated
 # UUID (string value)
+# Deprecated group/name - [amqp1]/container_name
 #container_name = <None>
 
 # Timeout for inactive connections (in seconds) (integer value)
+# Deprecated group/name - [amqp1]/idle_timeout
 #idle_timeout = 0
 
 # Debug: dump AMQP frames to stdout (boolean value)
+# Deprecated group/name - [amqp1]/trace
 #trace = false
 
-# Attempt to connect via SSL. If no other ssl-related parameters are given, it
-# will use the system's CA-bundle to verify the server's certificate. (boolean
-# value)
-#ssl = false
-
 # CA certificate PEM file used to verify the server's certificate (string
 # value)
+# Deprecated group/name - [amqp1]/ssl_ca_file
 #ssl_ca_file =
 
 # Self-identifying certificate PEM file for client authentication (string
 # value)
+# Deprecated group/name - [amqp1]/ssl_cert_file
 #ssl_cert_file =
 
 # Private key PEM file used to sign ssl_cert_file certificate (optional)
 # (string value)
+# Deprecated group/name - [amqp1]/ssl_key_file
 #ssl_key_file =
 
 # Password for decrypting ssl_key_file (if encrypted) (string value)
+# Deprecated group/name - [amqp1]/ssl_key_password
 #ssl_key_password = <None>
 
 # DEPRECATED: Accept clients using either SSL or plain TCP (boolean value)
+# Deprecated group/name - [amqp1]/allow_insecure_clients
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Not applicable - not a SSL server
 #allow_insecure_clients = false
 
 # Space separated list of acceptable SASL mechanisms (string value)
+# Deprecated group/name - [amqp1]/sasl_mechanisms
 #sasl_mechanisms =
 
 # Path to directory that contains the SASL configuration (string value)
+# Deprecated group/name - [amqp1]/sasl_config_dir
 #sasl_config_dir =
 
 # Name of configuration file (without .conf suffix) (string value)
+# Deprecated group/name - [amqp1]/sasl_config_name
 #sasl_config_name =
 
-# SASL realm to use if no realm present in username (string value)
-#sasl_default_realm =
-
-# DEPRECATED: User name for message broker authentication (string value)
-# This option is deprecated for removal.
-# Its value may be silently ignored in the future.
-# Reason: Should use configuration option transport_url to provide the
-# username.
+# User name for message broker authentication (string value)
+# Deprecated group/name - [amqp1]/username
 #username =
 
-# DEPRECATED: Password for message broker authentication (string value)
-# This option is deprecated for removal.
-# Its value may be silently ignored in the future.
-# Reason: Should use configuration option transport_url to provide the
-# password.
+# Password for message broker authentication (string value)
+# Deprecated group/name - [amqp1]/password
 #password =
 
 # Seconds to pause before attempting to re-connect. (integer value)
@@ -1288,12 +1403,15 @@
 #addressing_mode = dynamic
 
 # address prefix used when sending to a specific server (string value)
+# Deprecated group/name - [amqp1]/server_request_prefix
 #server_request_prefix = exclusive
 
 # address prefix used when broadcasting to all servers (string value)
+# Deprecated group/name - [amqp1]/broadcast_prefix
 #broadcast_prefix = broadcast
 
 # address prefix when sending to any server in group (string value)
+# Deprecated group/name - [amqp1]/group_request_prefix
 #group_request_prefix = unicast
 
 # Address prefix for all generated RPC addresses (string value)
@@ -1381,7 +1499,7 @@
 # Max fetch bytes of Kafka consumer (integer value)
 #kafka_max_fetch_bytes = 1048576
 
-# Default timeout(s) for Kafka consumers (floating point value)
+# Default timeout(s) for Kafka consumers (integer value)
 #kafka_consumer_timeout = 1.0
 
 # Pool Size for Kafka Consumers (integer value)
@@ -1426,11 +1544,6 @@
 # Deprecated group/name - [DEFAULT]/notification_topics
 #topics = notifications
 
-# The maximum number of attempts to re-send a notification message which failed
-# to be delivered due to a recoverable error. 0 - No retry, -1 - indefinite
-# (integer value)
-#retry = -1
-
 
 [oslo_messaging_rabbit]
 
@@ -1444,31 +1557,30 @@
 #amqp_durable_queues = false
 
 # Auto-delete queues in AMQP. (boolean value)
+# Deprecated group/name - [DEFAULT]/amqp_auto_delete
 #amqp_auto_delete = false
-
-# Enable SSL (boolean value)
-#ssl = <None>
 
 # SSL version to use (valid only if SSL enabled). Valid values are TLSv1 and
 # SSLv23. SSLv2, SSLv3, TLSv1_1, and TLSv1_2 may be available on some
 # distributions. (string value)
-# Deprecated group/name - [oslo_messaging_rabbit]/kombu_ssl_version
-#ssl_version =
+# Deprecated group/name - [DEFAULT]/kombu_ssl_version
+#kombu_ssl_version =
 
 # SSL key file (valid only if SSL enabled). (string value)
-# Deprecated group/name - [oslo_messaging_rabbit]/kombu_ssl_keyfile
-#ssl_key_file =
+# Deprecated group/name - [DEFAULT]/kombu_ssl_keyfile
+#kombu_ssl_keyfile =
 
 # SSL cert file (valid only if SSL enabled). (string value)
-# Deprecated group/name - [oslo_messaging_rabbit]/kombu_ssl_certfile
-#ssl_cert_file =
+# Deprecated group/name - [DEFAULT]/kombu_ssl_certfile
+#kombu_ssl_certfile =
 
 # SSL certification authority file (valid only if SSL enabled). (string value)
-# Deprecated group/name - [oslo_messaging_rabbit]/kombu_ssl_ca_certs
-#ssl_ca_file =
+# Deprecated group/name - [DEFAULT]/kombu_ssl_ca_certs
+#kombu_ssl_ca_certs =
 
 # How long to wait before reconnecting in response to an AMQP consumer cancel
 # notification. (floating point value)
+# Deprecated group/name - [DEFAULT]/kombu_reconnect_delay
 #kombu_reconnect_delay = 1.0
 
 # EXPERIMENTAL: Possible values are: gzip, bz2. If not set compression will not
@@ -1488,6 +1600,7 @@
 
 # DEPRECATED: The RabbitMQ broker address where a single node is used. (string
 # value)
+# Deprecated group/name - [DEFAULT]/rabbit_host
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
@@ -1497,24 +1610,32 @@
 # value)
 # Minimum value: 0
 # Maximum value: 65535
+# Deprecated group/name - [DEFAULT]/rabbit_port
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
 #rabbit_port = 5672
 
 # DEPRECATED: RabbitMQ HA cluster host:port pairs. (list value)
+# Deprecated group/name - [DEFAULT]/rabbit_hosts
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
 #rabbit_hosts = $rabbit_host:$rabbit_port
 
+# Connect over SSL for RabbitMQ. (boolean value)
+# Deprecated group/name - [DEFAULT]/rabbit_use_ssl
+#rabbit_use_ssl = false
+
 # DEPRECATED: The RabbitMQ userid. (string value)
+# Deprecated group/name - [DEFAULT]/rabbit_userid
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
 #rabbit_userid = guest
 
 # DEPRECATED: The RabbitMQ password. (string value)
+# Deprecated group/name - [DEFAULT]/rabbit_password
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
@@ -1522,9 +1643,11 @@
 
 # The RabbitMQ login method. (string value)
 # Allowed values: PLAIN, AMQPLAIN, RABBIT-CR-DEMO
+# Deprecated group/name - [DEFAULT]/rabbit_login_method
 #rabbit_login_method = AMQPLAIN
 
 # DEPRECATED: The RabbitMQ virtual host. (string value)
+# Deprecated group/name - [DEFAULT]/rabbit_virtual_host
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 # Reason: Replaced by [DEFAULT]/transport_url
@@ -1532,10 +1655,13 @@
 
 # How frequently to retry connecting with RabbitMQ. (integer value)
 #rabbit_retry_interval = 1
+rabbit_retry_interval = 1
 
 # How long to backoff for between retries when connecting to RabbitMQ. (integer
 # value)
+# Deprecated group/name - [DEFAULT]/rabbit_retry_backoff
 #rabbit_retry_backoff = 2
+rabbit_retry_backoff = 2
 
 # Maximum interval of RabbitMQ connection retries. Default is 30 seconds.
 # (integer value)
@@ -1543,6 +1669,7 @@
 
 # DEPRECATED: Maximum number of RabbitMQ connection retries. Default is 0
 # (infinite retry count). (integer value)
+# Deprecated group/name - [DEFAULT]/rabbit_max_retries
 # This option is deprecated for removal.
 # Its value may be silently ignored in the future.
 #rabbit_max_retries = 0
@@ -1553,6 +1680,7 @@
 # If you just want to make sure that all queues (except those with auto-
 # generated names) are mirrored across all nodes, run: "rabbitmqctl set_policy
 # HA '^(?!amq\.).*' '{"ha-mode": "all"}' " (boolean value)
+# Deprecated group/name - [DEFAULT]/rabbit_ha_queues
 #rabbit_ha_queues = false
 
 # Positive integer representing duration in seconds for queue TTL (x-expires).
@@ -1569,12 +1697,15 @@
 # heartbeat's keep-alive fails (0 disable the heartbeat). EXPERIMENTAL (integer
 # value)
 #heartbeat_timeout_threshold = 60
+heartbeat_timeout_threshold = 0
 
 # How often times during the heartbeat_timeout_threshold we check the
 # heartbeat. (integer value)
 #heartbeat_rate = 2
+heartbeat_rate = 2
 
 # Deprecated, use rpc_backend=kombu+memory or rpc_backend=fake (boolean value)
+# Deprecated group/name - [DEFAULT]/fake_rabbit
 #fake_rabbit = false
 
 # Maximum number of channels to allow (integer value)
@@ -1585,6 +1716,9 @@
 
 # How often to send heartbeats for consumer's connections (integer value)
 #heartbeat_interval = 3
+
+# Enable SSL (boolean value)
+#ssl = <None>
 
 # Arguments passed to ssl.wrap_socket (dict value)
 #ssl_options = <None>
@@ -1690,24 +1824,30 @@
 
 # ZeroMQ bind address. Should be a wildcard (*), an ethernet interface, or IP.
 # The "host" option should point or resolve to this address. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_bind_address
 #rpc_zmq_bind_address = *
 
 # MatchMaker driver. (string value)
 # Allowed values: redis, sentinel, dummy
+# Deprecated group/name - [DEFAULT]/rpc_zmq_matchmaker
 #rpc_zmq_matchmaker = redis
 
 # Number of ZeroMQ contexts, defaults to 1. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_contexts
 #rpc_zmq_contexts = 1
 
 # Maximum number of ingress messages to locally buffer per topic. Default is
 # unlimited. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_topic_backlog
 #rpc_zmq_topic_backlog = <None>
 
 # Directory for holding IPC sockets. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_ipc_dir
 #rpc_zmq_ipc_dir = /var/run/openstack
 
 # Name of this node. Must be a valid hostname, FQDN, or IP address. Must match
 # "host" option, if running Nova. (string value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_host
 #rpc_zmq_host = localhost
 
 # Number of seconds to wait before all pending messages will be sent after
@@ -1720,21 +1860,26 @@
 
 # The default number of seconds that poll should wait. Poll raises timeout
 # exception when timeout expired. (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_poll_timeout
 #rpc_poll_timeout = 1
 
 # Expiration timeout in seconds of a name service record about existing target
 # ( < 0 means no timeout). (integer value)
+# Deprecated group/name - [DEFAULT]/zmq_target_expire
 #zmq_target_expire = 300
 
 # Update period in seconds of a name service record about existing target.
 # (integer value)
+# Deprecated group/name - [DEFAULT]/zmq_target_update
 #zmq_target_update = 180
 
 # Use PUB/SUB pattern for fanout methods. PUB/SUB always uses proxy. (boolean
 # value)
+# Deprecated group/name - [DEFAULT]/use_pub_sub
 #use_pub_sub = false
 
 # Use ROUTER remote proxy. (boolean value)
+# Deprecated group/name - [DEFAULT]/use_router_proxy
 #use_router_proxy = false
 
 # This option makes direct connections dynamic or static. It makes sense only
@@ -1749,20 +1894,24 @@
 # Minimal port number for random ports range. (port value)
 # Minimum value: 0
 # Maximum value: 65535
+# Deprecated group/name - [DEFAULT]/rpc_zmq_min_port
 #rpc_zmq_min_port = 49153
 
 # Maximal port number for random ports range. (integer value)
 # Minimum value: 1
 # Maximum value: 65536
+# Deprecated group/name - [DEFAULT]/rpc_zmq_max_port
 #rpc_zmq_max_port = 65536
 
 # Number of retries to find free port number before fail with ZMQBindError.
 # (integer value)
+# Deprecated group/name - [DEFAULT]/rpc_zmq_bind_port_retries
 #rpc_zmq_bind_port_retries = 100
 
 # Default serialization mechanism for serializing/deserializing
 # outgoing/incoming messages (string value)
 # Allowed values: json, msgpack
+# Deprecated group/name - [DEFAULT]/rpc_zmq_serialization
 #rpc_zmq_serialization = json
 
 # This option configures round-robin mode in zmq socket. True means not keeping
@@ -1846,9 +1995,11 @@
 #
 
 # The file that defines policies. (string value)
+# Deprecated group/name - [DEFAULT]/policy_file
 #policy_file = policy.json
 
 # Default rule. Enforced when a requested rule is not found. (string value)
+# Deprecated group/name - [DEFAULT]/policy_default_rule
 #policy_default_rule = default
 
 # Directories where policy configuration files are stored. They can be relative
@@ -1856,7 +2007,21 @@
 # absolute paths. The file defined by policy_file must exist for these
 # directories to be searched.  Missing or empty directories are ignored. (multi
 # valued)
+# Deprecated group/name - [DEFAULT]/policy_dirs
 #policy_dirs = policy.d
+
+
+[qos]
+
+#
+# From neutron.qos
+#
+
+# DEPRECATED: Drivers list to use to send the update notification. This option
+# will be unused in Pike. (list value)
+# This option is deprecated for removal.
+# Its value may be silently ignored in the future.
+#notification_drivers = message_queue
 
 
 [quotas]
@@ -1871,15 +2036,15 @@
 
 # Number of networks allowed per tenant. A negative value means unlimited.
 # (integer value)
-#quota_network = 100
+#quota_network = 10
 
 # Number of subnets allowed per tenant, A negative value means unlimited.
 # (integer value)
-#quota_subnet = 100
+#quota_subnet = 10
 
 # Number of ports allowed per tenant. A negative value means unlimited.
 # (integer value)
-#quota_port = 500
+#quota_port = 50
 
 # Default driver to use for quota checks. (string value)
 #quota_driver = neutron.db.quota.driver.DbQuotaDriver
@@ -1936,3 +2101,6 @@
 # Sets the list of available ciphers. value should be a string in the OpenSSL
 # cipher list format. (string value)
 #ciphers = <None>
+[service_providers]
+
+

2018-01-28 13:05:12,108 [salt.state       ][INFO    ][26335] Completed state [/etc/neutron/neutron.conf] at time 13:05:12.108001 duration_in_ms=236.407
2018-01-28 13:05:12,108 [salt.state       ][INFO    ][26335] Running state [neutron-db-manage --config-file /etc/neutron/neutron.conf --config-file /etc/neutron/plugins/ml2/ml2_conf.ini upgrade head] at time 13:05:12.108431
2018-01-28 13:05:12,108 [salt.state       ][INFO    ][26335] Executing state cmd.run for neutron-db-manage --config-file /etc/neutron/neutron.conf --config-file /etc/neutron/plugins/ml2/ml2_conf.ini upgrade head
2018-01-28 13:05:12,109 [salt.loaded.int.module.cmdmod][INFO    ][26335] Executing command 'neutron-db-manage --config-file /etc/neutron/neutron.conf --config-file /etc/neutron/plugins/ml2/ml2_conf.ini upgrade head' in directory '/root'
2018-01-28 13:05:15,074 [salt.state       ][INFO    ][26335] {'pid': 27562, 'retcode': 0, 'stderr': 'INFO  [alembic.runtime.migration] Context impl MySQLImpl.\nINFO  [alembic.runtime.migration] Will assume non-transactional DDL.\nINFO  [alembic.runtime.migration] Context impl MySQLImpl.\nINFO  [alembic.runtime.migration] Will assume non-transactional DDL.\nINFO  [alembic.runtime.migration] Context impl MySQLImpl.\nINFO  [alembic.runtime.migration] Will assume non-transactional DDL.\nINFO  [alembic.runtime.migration] Context impl MySQLImpl.\nINFO  [alembic.runtime.migration] Will assume non-transactional DDL.\nINFO  [alembic.runtime.migration] Context impl MySQLImpl.\nINFO  [alembic.runtime.migration] Will assume non-transactional DDL.\nINFO  [alembic.runtime.migration] Context impl MySQLImpl.\nINFO  [alembic.runtime.migration] Will assume non-transactional DDL.', 'stdout': 'Running upgrade for neutron ...\nOK\nRunning upgrade for neutron-fwaas ...\nOK\nRunning upgrade for neutron-lbaas ...\nOK'}
2018-01-28 13:05:15,075 [salt.state       ][INFO    ][26335] Completed state [neutron-db-manage --config-file /etc/neutron/neutron.conf --config-file /etc/neutron/plugins/ml2/ml2_conf.ini upgrade head] at time 13:05:15.075519 duration_in_ms=2967.086
2018-01-28 13:05:15,076 [salt.state       ][INFO    ][26335] Running state [/etc/neutron/api-paste.ini] at time 13:05:15.076867
2018-01-28 13:05:15,077 [salt.state       ][INFO    ][26335] Executing state file.managed for /etc/neutron/api-paste.ini
2018-01-28 13:05:15,121 [salt.fileclient  ][INFO    ][26335] Fetching file from saltenv 'base', ** done ** 'neutron/files/pike/api-paste.ini.Debian'
2018-01-28 13:05:15,197 [salt.state       ][INFO    ][26335] File changed:
--- 
+++ 
@@ -1,3 +1,4 @@
+
 [composite:neutron]
 use = egg:Paste#urlmap
 /: neutronversions_composite

2018-01-28 13:05:15,197 [salt.state       ][INFO    ][26335] Completed state [/etc/neutron/api-paste.ini] at time 13:05:15.197725 duration_in_ms=120.858
2018-01-28 13:05:15,198 [salt.state       ][INFO    ][26335] Running state [/etc/default/neutron-server] at time 13:05:15.198156
2018-01-28 13:05:15,198 [salt.state       ][INFO    ][26335] Executing state file.managed for /etc/default/neutron-server
2018-01-28 13:05:15,233 [salt.fileclient  ][INFO    ][26335] Fetching file from saltenv 'base', ** done ** 'neutron/files/pike/neutron-server'
2018-01-28 13:05:15,296 [salt.state       ][INFO    ][26335] File changed:
--- 
+++ 
@@ -1,5 +1,8 @@
+# Generated by Salt.
+
 # defaults for neutron-server
 
 # path to config file corresponding to the core_plugin specified in
 # neutron.conf
-NEUTRON_PLUGIN_CONFIG="/etc/neutron/plugins/ml2/ml2_conf.ini"
+#NEUTRON_PLUGIN_CONFIG="/etc/neutron/plugins/openvswitch/ovs_neutron_plugin.ini"
+NEUTRON_PLUGIN_CONFIG="/etc/neutron/plugins/ml2/ml2_conf.ini"
2018-01-28 13:05:15,296 [salt.state       ][INFO    ][26335] Completed state [/etc/default/neutron-server] at time 13:05:15.296791 duration_in_ms=98.635
2018-01-28 13:05:15,298 [salt.state       ][INFO    ][26335] Running state [neutron-server] at time 13:05:15.298771
2018-01-28 13:05:15,299 [salt.state       ][INFO    ][26335] Executing state service.running for neutron-server
2018-01-28 13:05:15,299 [salt.loaded.int.module.cmdmod][INFO    ][26335] Executing command ['systemctl', 'status', 'neutron-server.service', '-n', '0'] in directory '/root'
2018-01-28 13:05:15,324 [salt.loaded.int.module.cmdmod][INFO    ][26335] Executing command ['systemctl', 'is-active', 'neutron-server.service'] in directory '/root'
2018-01-28 13:05:15,347 [salt.loaded.int.module.cmdmod][INFO    ][26335] Executing command ['systemctl', 'is-enabled', 'neutron-server.service'] in directory '/root'
2018-01-28 13:05:15,368 [salt.loaded.int.module.cmdmod][INFO    ][26335] Executing command ['systemctl', 'is-enabled', 'neutron-server.service'] in directory '/root'
2018-01-28 13:05:15,389 [salt.loaded.int.module.cmdmod][INFO    ][26335] Executing command ['systemd-run', '--scope', 'systemctl', 'start', 'neutron-server.service'] in directory '/root'
2018-01-28 13:05:15,448 [salt.loaded.int.module.cmdmod][INFO    ][26335] Executing command ['systemctl', 'is-active', 'neutron-server.service'] in directory '/root'
2018-01-28 13:05:15,469 [salt.loaded.int.module.cmdmod][INFO    ][26335] Executing command ['systemctl', 'is-enabled', 'neutron-server.service'] in directory '/root'
2018-01-28 13:05:15,490 [salt.loaded.int.module.cmdmod][INFO    ][26335] Executing command ['systemctl', 'is-enabled', 'neutron-server.service'] in directory '/root'
2018-01-28 13:05:15,508 [salt.state       ][INFO    ][26335] {'neutron-server': True}
2018-01-28 13:05:15,508 [salt.state       ][INFO    ][26335] Completed state [neutron-server] at time 13:05:15.508800 duration_in_ms=210.029
2018-01-28 13:05:15,511 [salt.minion      ][INFO    ][26335] Returning information for job: 20180128130451012980
2018-01-28 13:16:28,198 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command ini.set_option with jid 20180128131627622663
2018-01-28 13:16:28,226 [salt.minion      ][INFO    ][27626] Starting a new job with PID 27626
2018-01-28 13:16:33,629 [salt.utils.schedule][INFO    ][8468] Running scheduled job: __mine_interval
2018-01-28 13:16:38,317 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128131637739192
2018-01-28 13:16:38,341 [salt.minion      ][INFO    ][27638] Starting a new job with PID 27638
2018-01-28 13:16:38,361 [salt.minion      ][INFO    ][27638] Returning information for job: 20180128131637739192
2018-01-28 13:16:48,345 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command saltutil.find_job with jid 20180128131647765370
2018-01-28 13:16:48,371 [salt.minion      ][INFO    ][27643] Starting a new job with PID 27643
2018-01-28 13:16:48,391 [salt.minion      ][INFO    ][27643] Returning information for job: 20180128131647765370
2018-01-28 13:16:51,246 [salt.minion      ][INFO    ][27626] Returning information for job: 20180128131627622663
2018-01-28 13:16:52,229 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command service.restart with jid 20180128131651646205
2018-01-28 13:16:52,259 [salt.minion      ][INFO    ][27650] Starting a new job with PID 27650
2018-01-28 13:16:53,290 [salt.loader.192.168.11.2.int.module.cmdmod][INFO    ][27650] Executing command ['systemctl', 'status', 'glance-api.service', '-n', '0'] in directory '/root'
2018-01-28 13:16:53,316 [salt.loader.192.168.11.2.int.module.cmdmod][INFO    ][27650] Executing command ['systemctl', 'is-enabled', 'glance-api.service'] in directory '/root'
2018-01-28 13:16:53,358 [salt.loader.192.168.11.2.int.module.cmdmod][INFO    ][27650] Executing command ['systemd-run', '--scope', 'systemctl', 'restart', 'glance-api.service'] in directory '/root'
2018-01-28 13:16:53,575 [salt.minion      ][INFO    ][27650] Returning information for job: 20180128131651646205
2018-01-28 13:17:25,259 [salt.minion      ][INFO    ][8468] User sudo_ubuntu Executing command cp.push_dir with jid 20180128131724681527
2018-01-28 13:17:25,289 [salt.minion      ][INFO    ][27703] Starting a new job with PID 27703
