Freeze Break Request - Introduce fedmsg-gateway slaves on the proxies

Ricky Elrod codeblock at elrod.me
Thu Sep 4 20:10:34 UTC 2014


+1

-re

On 09/04/2014 04:08 PM, Ralph Bean wrote:
> I'm seeking two +1s to apply some work I did and tested in staging to
> the production proxies.
> 
> The gist is that we currently proxy persistent tcp connections for the
> fedmsg firehose through our proxies to busgateway01 (which these days
> numbers around 700 connections but could scale up unexpectedly).  We
> suspect that this has been causing our vpn issues since all fedmsg
> traffic is sent to the proxies for every connection (700 times the
> traffic normally on the bus).
> 
> The following patch 'turns on' a scheme where each proxy will run its
> own fedmsg-gateway slave.  Haproxy connects remote requests to these
> slaves, and the slaves in turn connect just once to the master
> fedmsg-gateway on busgateway01.  Traffic should then only be sent once
> to each proxy (over the vpn in most cases).
> 
> I tested it pretty thoroughly in stg (removed the daemon and its
> config and re-ran puppet a few times to make sure things were put in
> place in the correct order).
> 
> Patch attached.
> 
> -Ralph
> 
> 
> 
> _______________________________________________
> infrastructure mailing list
> infrastructure at lists.fedoraproject.org
> https://admin.fedoraproject.org/mailman/listinfo/infrastructure
> 


-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: OpenPGP digital signature
URL: <http://lists.fedoraproject.org/pipermail/infrastructure/attachments/20140904/6f9f1a65/attachment.sig>


More information about the infrastructure mailing list