Repository navigation
package: Add missing openssl and decompression utilities to KVM agent dependencies - #14307
weizhouapache wants to merge 1 commit into
Conversation
|
@blueorangutan package |
Codecov Report✅ All modified and coverable lines are covered by tests. Additional details and impacted files@@ Coverage Diff @@
## main #14307 +/- ##
=========================================
Coverage 20.21% 20.21%
- Complexity 20747 20750 +3
=========================================
Files 6426 6426
Lines 580181 580181
Branches 71033 71033
=========================================
+ Hits 117282 117288 +6
+ Misses 450184 450180 -4
+ Partials 12715 12713 -2
Flags with carried forward coverage won't be shown. Click here to find out more. ☔ View full report in Codecov by Harness. 🚀 New features to boost your workflow:
|
Match the KVM agent dependencies added in apache/cloudstack#14307: openssl, bzip2, gzip and unzip are needed for template decompression (.bz2/.gz/.zip) and direct download handling. Install them via apt on Debian/Ubuntu and dnf on CentOS 8/EL9.
… dependencies Add bzip2, gzip, unzip, and openssl as explicit dependencies for the KVM agent. These utilities are required for: - Template decompression (bunzip2 for .bz2 files, gzip for .gz, unzip for .zip) - SSL/TLS operations - Direct download template handling on Ceph/RBD storage Fixes direct download failures when template files are compressed (e.g. .qcow2.bz2).
7d69608 to
265fe9d
Compare
|
@blueorangutan package |
|
@weizhouapache a [SL] Jenkins job has been kicked to build packages. It will be bundled with no SystemVM templates. I'll keep you posted as I make progress. |
There was a problem hiding this comment.
🟡 Changes recommended
The agent still lacks explicit file and xz dependencies required by its supported extraction path.
3 open findings
What changed in this PR
Adds explicit SSL and decompression runtime dependencies to KVM agent packages.
Changes:
- Adds OpenSSL, bzip2, gzip, and unzip dependencies across supported distributions.
| File | Description |
|---|---|
packaging/suse15/cloud.spec |
Updates SUSE agent dependencies. |
packaging/el8/cloud.spec |
Updates EL8 agent dependencies. |
debian/control |
Updates Debian agent dependencies. |
🧠 Review effort: Balanced
💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.
| Package: cloudstack-agent | ||
| Architecture: all | ||
| Depends: ${python:Depends}, ${python3:Depends}, openjdk-17-jre-headless | java17-runtime-headless | java17-runtime | zulu-17, cloudstack-common (= ${source:Version}), lsb-base (>= 9), openssh-client, qemu-kvm (>= 2.5) | qemu-system-x86 (>= 5.2), libvirt-bin (>= 1.3) | libvirt-daemon-system (>= 3.0), iproute2, ebtables, vlan, ipset, python3-libvirt, ethtool, iptables, cryptsetup, rng-tools, rsync, ovmf, swtpm, lsb-release, ufw, apparmor, cpu-checker, libvirt-daemon-driver-storage-rbd, sysstat, python3-libnbd, socat | ||
| Depends: ${python:Depends}, ${python3:Depends}, openjdk-17-jre-headless | java17-runtime-headless | java17-runtime | zulu-17, cloudstack-common (= ${source:Version}), lsb-base (>= 9), openssh-client, qemu-kvm (>= 2.5) | qemu-system-x86 (>= 5.2), libvirt-bin (>= 1.3) | libvirt-daemon-system (>= 3.0), iproute2, ebtables, vlan, ipset, python3-libvirt, ethtool, iptables, cryptsetup, rng-tools, rsync, ovmf, swtpm, lsb-release, ufw, apparmor, cpu-checker, libvirt-daemon-driver-storage-rbd, sysstat, python3-libnbd, socat, openssl, bzip2, gzip, unzip |
| Requires: openssl | ||
| Requires: bzip2 | ||
| Requires: gzip | ||
| Requires: unzip |
| Requires: openssl | ||
| Requires: bzip2 | ||
| Requires: gzip | ||
| Requires: unzip |
|
Packaging result [SF]: ✔️ el8 ✔️ el9 ✔️ el10 ✔️ debian ✔️ suse15. SL-JID 19489 |

Description
Add bzip2, gzip, unzip, and openssl as explicit dependencies for the KVM agent. These utilities are required for:
Fixes direct download failures when template files are compressed (e.g. .qcow2.bz2).
Types of changes
Feature/Enhancement Scale or Bug Severity
Feature/Enhancement Scale
Bug Severity
Screenshots (if appropriate):
How Has This Been Tested?
How did you try to break this feature and the system with this change?