Skip to content

packaging: use rng-tools service name on SUSE 15 - #14311

Open
kiranchavala wants to merge 2 commits into
apache:mainfrom
kiranchavala:suse15-rng-tools-service
Open

kiranchavala wants to merge 2 commits into
apache:mainfrom
kiranchavala:suse15-rng-tools-service

Conversation

@kiranchavala

@kiranchavala kiranchavala commented Oct 5, 2026 •

Copy link
Copy Markdown
Member

Description

this pr fixes #14312

On SUSE 15, the rng-tools package provides the service as rng-tools.service rather than rngd.service. The management server and agent %post scriptlets in packaging/suse15/cloud.spec tried to enable rngd, which silently failed (output is discarded and || true is used), leaving the entropy daemon disabled.

This changes both to:

/usr/bin/systemctl enable --now rng-tools > /dev/null 2>&1 || true

Types of changes

  • Breaking change (fix or feature that would cause existing functionality to change)
  • New feature (non-breaking change which adds functionality)
  • Bug fix (non-breaking change which fixes an issue)
  • Enhancement (improves an existing feature and functionality)
  • Cleanup (Code refactoring and cleanup, that may add test cases)

How Has This Been Tested?

Packaging change only; install the management server and agent RPMs on SUSE 15 and verify systemctl is-enabled rng-tools / systemctl is-active rng-tools.

🤖 Generated with Claude Code

On SUSE 15 the rng-tools package ships the service as rng-tools.service,
not rngd.service, so enabling rngd silently failed.

Co-Authored-By: Claude Opus 5.5 (1M context) <noreply@anthropic.com>
Copilot AI balanced review requested due to automatic review settings October 5, 2026 11:34
Co-Authored-By: Claude Opus 5.5 (1M context) <noreply@anthropic.com>
@kiranchavala kiranchavala changed the title packaging: use rng-tools service name on SUSE 15 for management server packaging: use rng-tools service name on SUSE 15 Oct 5, 2026

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copilot review overview

🟢 Approval recommended

Both substitutions match the SUSE service documented in the linked issue, with no blocking issues identified.

Review effort: Balanced
Findings: None

What changed in this PR

Fixes SUSE 15 packaging so CloudStack installations enable and start the entropy daemon, addressing #14312.

Changes:

  • Replaces rngd with rng-tools in management and agent post-install scriptlets.
  • Preserves existing error handling.
File Description
packaging/​suse15/​cloud.spec Corrects the entropy service name in both scriptlets.

💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.

@codecov

codecov Bot commented Oct 5, 2026 •

Copy link
Copy Markdown

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 19.91%. Comparing base (27722a5) to head (ad86966).
⚠️ Report is 15 commits behind head on main.

Additional details and impacted files
@@            Coverage Diff            @@
##               main   #14311   +/-   ##
=========================================
  Coverage     19.91%   19.91%           
- Complexity    20175    20200   +25     
=========================================
  Files          6372     6373    +1     
  Lines        577139   577230   +91     
  Branches      70682    70696   +14     
=========================================
+ Hits         114913   114952   +39     
- Misses       449664   449712   +48     
- Partials      12562    12566    +4     
Flag Coverage Δ
uitests 3.71% <ø> (ø)
unittests 21.18% <ø> (+<0.01%) ⬆️

Flags with carried forward coverage won't be shown. Click here to find out more.

☔ View full report in Codecov by Harness.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@weizhouapache

Copy link
Copy Markdown
Member

@kiranchavala
is this needed for el8/9 ?

@kiranchavala

Copy link
Copy Markdown
Member Author

@kiranchavala is this needed for el8/9 ?

@weizhouapache not required with el8 and el9

[root@ref-trl-12464-k-Mol8-kiran-chavala-mgmt1 ~]# systemctl status rngd.service
● rngd.service - Hardware RNG Entropy Gatherer Daemon
   Loaded: loaded (/usr/lib/systemd/system/rngd.service; enabled; vendor preset: enabled)
   Active: active (running) since Mon 2026-10-05 05:46:22 UTC; 6h ago
 Main PID: 9220 (rngd)
    Tasks: 3 (limit: 31267)
   Memory: 3.9M
   CGroup: /system.slice/rngd.service
           └─9220 /usr/sbin/rngd -f --fill-watermark=0 -x pkcs11 -x nist

Oct 05 05:46:22 ref-trl-12464-k-Mol8-kiran-chavala-mgmt1 systemd[1]: Started Hardware RNG Entropy Gatherer Daemon.
Oct 05 05:46:22 ref-trl-12464-k-Mol8-kiran-chavala-mgmt1 rngd[9220]: Disabling 7: PKCS11 Entropy generator (pkcs11)
Oct 05 05:46:22 ref-trl-12464-k-Mol8-kiran-chavala-mgmt1 rngd[9220]: Disabling 5: NIST Network Entropy Beacon (nist)
Oct 05 05:46:22 ref-trl-12464-k-Mol8-kiran-chavala-mgmt1 rngd[9220]: Initializing available sources
Oct 05 05:46:22 ref-trl-12464-k-Mol8-kiran-chavala-mgmt1 rngd[9220]: [hwrng ]: Initialization Failed
Oct 05 05:46:22 ref-trl-12464-k-Mol8-kiran-chavala-mgmt1 rngd[9220]: [rdrand]: Enabling RDSEED rng support
Oct 05 05:46:22 ref-trl-12464-k-Mol8-kiran-chavala-mgmt1 rngd[9220]: [rdrand]: Initialized
Oct 05 05:46:22 ref-trl-12464-k-Mol8-kiran-chavala-mgmt1 rngd[9220]: [jitter]: Initializing AES buffer
Oct 05 05:46:25 ref-trl-12464-k-Mol8-kiran-chavala-mgmt1 rngd[9220]: [jitter]: Enabling JITTER rng support
Oct 05 05:46:25 ref-trl-12464-k-Mol8-kiran-chavala-mgmt1 rngd[9220]: [jitter]: Initialized

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

SUSE 15: packaging enables non-existent rngd.service, so rng-tools is never started

3 participants