Slackbot
02/06/2023, 2:01 PMbala rao
02/06/2023, 2:32 PMbala rao
02/06/2023, 2:32 PMDaniel Ciocirlan
02/06/2023, 2:33 PMbala rao
02/06/2023, 2:44 PMbala rao
02/06/2023, 2:44 PMbala rao
02/06/2023, 2:44 PMDaniel Ciocirlan
02/06/2023, 2:44 PMDaniel Ciocirlan
02/06/2023, 2:45 PMDaniel Ciocirlan
02/06/2023, 2:45 PMbala rao
02/06/2023, 2:45 PMDaniel Ciocirlan
02/06/2023, 2:46 PMDaniel Ciocirlan
02/06/2023, 2:47 PMbala rao
02/06/2023, 2:48 PMDaniel Ciocirlan
02/06/2023, 2:49 PMbala rao
02/06/2023, 2:51 PMbala rao
02/06/2023, 2:52 PMDaniel Ciocirlan
02/06/2023, 2:57 PMDaniel Ciocirlan
02/06/2023, 2:58 PMDaniel Ciocirlan
02/06/2023, 2:58 PMDavid K
02/06/2023, 4:32 PMDavid K
02/06/2023, 4:33 PMDaniel Ciocirlan
02/06/2023, 4:33 PMDaniel Ciocirlan
02/06/2023, 4:34 PMDaniel Ciocirlan
02/06/2023, 4:34 PMDaniel Ciocirlan
02/06/2023, 4:35 PMDaniel Ciocirlan
02/06/2023, 4:35 PMDaniel Ciocirlan
02/06/2023, 4:35 PMThese commands are then forwarded to the Function workers over the port you asked about earlier. It is a communication channel between the two
this is very useful thank you!Daniel Ciocirlan
02/06/2023, 4:36 PMDavid K
02/06/2023, 4:36 PMpulsar-admin function create ā¦. <-- goes to the broker. The broker looks at its runtime config and sees that it is āprocess modeā so it forwards the instructions to the function workers to create the function instance, etc.Daniel Ciocirlan
02/06/2023, 4:36 PMDaniel Ciocirlan
02/06/2023, 4:37 PMDavid K
02/06/2023, 4:37 PMDavid K
02/06/2023, 4:39 PMDaniel Ciocirlan
02/06/2023, 4:39 PMDaniel Ciocirlan
02/06/2023, 4:39 PMcurl <broker-ip>:8080/admin/v2/worker/cluster
would display the standalone workers clusterDavid K
02/06/2023, 4:40 PMDavid K
02/06/2023, 4:41 PMbala rao
02/06/2023, 4:42 PMbala rao
02/06/2023, 4:42 PMbala rao
02/06/2023, 4:43 PMDaniel Ciocirlan
02/06/2023, 4:43 PMpulsar-admin functions-worker get-clusterDaniel Ciocirlan
02/06/2023, 4:44 PMDaniel Ciocirlan
02/06/2023, 4:44 PMnc -zv 10.66.221.117 6751
Ncat: Version 7.50 ( <https://nmap.org/ncat> )
Ncat: Connected to 10.66.221.117:6751.
Ncat: 0 bytes sent, 0 bytes received in 0.01 seconds.Daniel Ciocirlan
02/06/2023, 4:44 PMDaniel Ciocirlan
02/06/2023, 4:45 PMfunctions-worker get-cluster times outDaniel Ciocirlan
02/06/2023, 4:46 PMfunctions-worker get-cluster
null
Reason: java.util.concurrent.TimeoutExceptionDaniel Ciocirlan
02/06/2023, 4:47 PM[06/Feb/2023:16:44:54 +0000] "GET /admin/v2/persistent/public/functions/coordinate/stats?getPreciseBacklog=false&subscriptionBacklogSize=false&getEarliestTimeInBacklog=false HTTP/1.1" 307 0 "-" "Pulsar-Java-v2.10.2" 2Daniel Ciocirlan
02/06/2023, 4:47 PMjavax.servlet.ServletException: java.lang.UnsupportedOperationException: Pulsar Function Worker is not enabled, probably functionsWorkerEnabled is set to falseDaniel Ciocirlan
02/06/2023, 4:47 PMDavid K
02/06/2023, 5:42 PMfunctionsWorkerEnabled property to true regardless of how you plan on starting the workers.Daniel Ciocirlan
02/06/2023, 5:42 PMDaniel Ciocirlan
02/06/2023, 5:44 PMDaniel Ciocirlan
02/06/2023, 5:44 PMDaniel Ciocirlan
02/06/2023, 5:44 PMERROR org.apache.pulsar.functions.worker.PulsarWorkerService - Error Starting up in workerDaniel Ciocirlan
02/06/2023, 5:44 PMDavid K
02/06/2023, 5:46 PMDaniel Ciocirlan
02/06/2023, 5:46 PMDaniel Ciocirlan
02/06/2023, 5:47 PMDaniel Ciocirlan
02/06/2023, 5:48 PMDaniel Ciocirlan
02/06/2023, 5:48 PMDaniel Ciocirlan
02/06/2023, 5:48 PMbala rao
02/06/2023, 6:22 PMfunctionsWorkerEnabled property to false for starting the workers outside the brokersbala rao
02/06/2023, 6:23 PMDavid K
02/06/2023, 6:26 PMbala rao
02/06/2023, 6:26 PMbala rao
02/06/2023, 6:27 PMbala rao
02/06/2023, 6:27 PMDaniel Ciocirlan
02/06/2023, 6:32 PMpulsar-admin functions-worker get-clusterDaniel Ciocirlan
02/06/2023, 6:32 PMDaniel Ciocirlan
02/06/2023, 6:33 PMDaniel Ciocirlan
02/06/2023, 6:33 PMDaniel Ciocirlan
02/06/2023, 6:33 PMDavid K
02/06/2023, 6:34 PMDaniel Ciocirlan
02/06/2023, 6:34 PMDaniel Ciocirlan
02/07/2023, 1:33 PMFeb 07 13:29:59 pulsar-dev-va6-v0017-pulsarworker-i-094b5002dda8925d8 pulsar[17144]: 13:29:59.365 [function-web-25-6] INFO org.apache.zookeeper.ZooKeeper - Initiating client connection, connectString=localhost:2181 sessionTimeout=30000 watcher=org.apache.bookkeeper.zookeeper.ZooKeeperWatcherBase@7c67ae80
mainly :
connectString=localhost:2181
even if the Zk has defined IPs in function_woerks.yml ?Daniel Ciocirlan
02/07/2023, 1:34 PMINFO org.apache.pulsar.functions.worker.WorkerUtils - initialize DistributedLog Namespace with ledgersStoreServers: 10.66.219.210:2181Daniel Ciocirlan
02/07/2023, 1:34 PMDaniel Ciocirlan
02/07/2023, 1:44 PMERROR org.apache.distributedlog.bk.SimpleLedgerAllocator - Error creating ledger for allocating /pulsar/functions/public/default/TokenGenerationInfoDeduplicationFunction/8c6f6ae9-7db0-4638-8f4c-28d082144dfe-pulsar-test-1.0-SNAPSHOT.jar/<default>/allocation :Daniel Ciocirlan
02/07/2023, 1:50 PMINFO org.apache.distributedlog.impl.BKNamespaceDriver - Created shared client builder bk:<distributedlog://10.66.219.210:2181>,10.66.220.38:2181,10.66.221.102:2181,10.66.219.212:2181,10.66.220.50:2181/pulsar/functions:factory_writer_shared : zkServers = localhost:2181, ledgersPath = /ledgers, numIOThreads = 8Daniel Ciocirlan
02/07/2023, 1:50 PMzkServers = localhost:2181David K
02/07/2023, 3:03 PMfunction_worker.yaml config file? What is the value of your configurationMetadataStoreUrl property?Daniel Ciocirlan
02/08/2023, 6:52 AMDaniel Ciocirlan
02/08/2023, 6:53 AMDaniel Ciocirlan
02/08/2023, 6:53 AM1
BKDL
{"1":{"str":"localhost:2181"},"2":{"str":"/ledgers"},"3":{"tf":1},"4":{"tf":0},"5":{"str":"localhost:2181"},"6":{"str":"localhost:2181"},"7":{"str":"localhost:2181"}}Daniel Ciocirlan
02/08/2023, 6:53 AMfunction_worker.yaml was with the correct dataDaniel Ciocirlan
02/08/2023, 6:54 AMDaniel Ciocirlan
02/08/2023, 6:54 AMDaniel Ciocirlan
02/08/2023, 6:54 AMDaniel Ciocirlan
02/08/2023, 2:10 PMPEER_DID_NOT_RETURN_A_CERTIFICATEDaniel Ciocirlan
02/08/2023, 2:10 PM#### tls configuration for worker service
# Enable TLS
tlsEnabled: true
# Path for the TLS certificate file
tlsCertificateFilePath: /opt/pulsar/ssl/certificate.pem
# Path for the TLS private key file
tlsKeyFilePath: /opt/pulsar/ssl/key.pem
# Path for the trusted TLS certificate file
tlsTrustCertsFilePath: /opt/pulsar/ssl/ca.pemDavid K
02/08/2023, 3:42 PMDavid K
02/08/2023, 3:42 PMuseTLS: true
pulsarServiceUrl: <pulsar+ssl://localhost:6651/>
pulsarWebServiceUrl: <https://localhost:8443>
tlsEnabled: true
tlsCertificateFilePath: /path/to/functions-worker.cert.pem
tlsKeyFilePath: /path/to/functions-worker.key-pk8.pem
tlsTrustCertsFilePath: /path/to/ca.cert.pem
// The path to trusted certificates used by the Pulsar client to authenticate with Pulsar brokers
brokerClientTrustCertsFilePath: /path/to/ca.cert.pemDavid K
02/08/2023, 3:43 PMDaniel Ciocirlan
02/08/2023, 6:18 PMDaniel Ciocirlan
02/08/2023, 6:21 PMDaniel Ciocirlan
02/08/2023, 6:22 PMWARN org.apache.pulsar.client.impl.ClientCnx - [pulsar-hostanme/18.1.1.1:6651] Got exception io.netty.handler.codec.DecoderException: javax.net.ssl.SSLHandshakeExc
eption: error:10000410:SSL routines:OPENSSL_internal:SSLV3_ALERT_HANDSHAKE_FAILUREDaniel Ciocirlan
02/08/2023, 6:22 PMDaniel Ciocirlan
02/08/2023, 6:22 PMCaused by: javax.net.ssl.SSLHandshakeException: error:100000c0:SSL routines:OPENSSL_internal:PEER_DID_NOT_RETURN_A_CERTIFICATEDaniel Ciocirlan
02/08/2023, 6:22 PMDaniel Ciocirlan
02/08/2023, 6:23 PMDaniel Ciocirlan
02/08/2023, 6:23 PMDaniel Ciocirlan
02/08/2023, 6:23 PMDaniel Ciocirlan
02/08/2023, 6:23 PMDavid K
02/08/2023, 6:27 PMDavid K
02/08/2023, 6:29 PMDaniel Ciocirlan
02/08/2023, 6:36 PMDaniel Ciocirlan
02/08/2023, 6:36 PMDaniel Ciocirlan
02/08/2023, 6:36 PMDaniel Ciocirlan
02/08/2023, 6:37 PM############################################
# security settings for pulsar broker client
############################################
# The path to trusted certificates used by the Pulsar client to authenticate with Pulsar brokers
brokerClientTrustCertsFilePath: /opt/pulsar/ssl/ca.pem
# Whether to enable the broker client authentication used by function workers to talk to brokers
brokerClientAuthenticationEnabled: true
# the authentication plugin to be used by the pulsar client used in worker service
brokerClientAuthenticationPlugin: org.apache.pulsar.client.impl.auth.AuthenticationTls
# the authentication parameter to be used by the pulsar client used in worker service
brokerClientAuthenticationParameters: tlsCertFile:/opt/pulsar/ssl/certificate.pem,tlsKeyFile:/opt/pulsar/ssl/key.pemDaniel Ciocirlan
02/08/2023, 6:37 PMDaniel Ciocirlan
02/08/2023, 6:37 PMDaniel Ciocirlan
02/08/2023, 6:37 PM# Configure the pulsar client used by function metadata management
#
# points
# Whether to enable TLS when clients connect to broker
useTls: true
# For TLS:
# brokerServiceUrl=<pulsar+ssl://localhost:6651/>
pulsarServiceUrl: <pulsar+ssl://pulsar-hostname:6651>
# For TLS:
# webServiceUrl=<https://localhost:8443/>
pulsarWebServiceUrl: <https://pulsar-hostname:8443>David K
02/08/2023, 6:38 PMDavid K
02/08/2023, 6:39 PMDaniel Ciocirlan
02/08/2023, 6:39 PMDaniel Ciocirlan
02/08/2023, 6:39 PMDaniel Ciocirlan
02/08/2023, 6:39 PMDaniel Ciocirlan
02/08/2023, 6:39 PMDavid K
02/08/2023, 6:41 PMpulsar-client CLI? If you pass in the TLS certs, does the client connect or get the same error?David K
02/08/2023, 6:42 PMDaniel Ciocirlan
02/09/2023, 5:57 AMDavid K
02/09/2023, 6:00 AMDavid K
02/09/2023, 6:00 AMtlsEnabled: true
tlsCertificateFilePath: /path/to/functions-worker.cert.pem
tlsKeyFilePath: /path/to/functions-worker.key-pk8.pem
tlsTrustCertsFilePath: /path/to/ca.cert.pem
// The path to trusted certificates used by the Pulsar client to authenticate with Pulsar brokers
brokerClientTrustCertsFilePath: /path/to/ca.cert.pemDaniel Ciocirlan
02/09/2023, 6:03 AMDaniel Ciocirlan
02/09/2023, 6:03 AMDaniel Ciocirlan
02/09/2023, 6:04 AM#### tls configuration for worker service
# Enable TLS
tlsEnabled: true
# Path for the TLS certificate file
tlsCertificateFilePath: /opt/pulsar/ssl/certificate.pem
# Path for the TLS private key file
tlsKeyFilePath: /opt/pulsar/ssl/key.pem
# Path for the trusted TLS certificate file
tlsTrustCertsFilePath: /opt/pulsar/ssl/ca.pem
# Accept untrusted TLS certificate from client
tlsAllowInsecureConnection: false
# Whether server hostname must match the common name of the certificate
tlsEnableHostnameVerification: false
# Tls cert refresh duration in seconds (set 0 to check on every new connection)
tlsCertRefreshCheckDurationSec: 300
# Whether client certificates are required for TLS. Connections are rejected if the client
# certificate isn't trusted.
tlsRequireTrustedClientCertOnConnect: falseDaniel Ciocirlan
02/09/2023, 6:04 AMDaniel Ciocirlan
02/09/2023, 6:05 AMDavid K
02/09/2023, 6:06 AMbrokerClientTrustCertsFilePath ?Daniel Ciocirlan
02/09/2023, 6:07 AMDaniel Ciocirlan
02/09/2023, 6:07 AM############################################
# security settings for pulsar broker client
############################################
# The path to trusted certificates used by the Pulsar client to authenticate with Pulsar brokers
brokerClientTrustCertsFilePath: /opt/pulsar/ssl/ca.pem
# Whether to enable the broker client authentication used by function workers to talk to brokers
brokerClientAuthenticationEnabled: true
# the authentication plugin to be used by the pulsar client used in worker service
brokerClientAuthenticationPlugin: org.apache.pulsar.client.impl.auth.AuthenticationTls
# the authentication parameter to be used by the pulsar client used in worker service
brokerClientAuthenticationParameters: tlsCertFile:/opt/pulsar/ssl/certificate.pem,tlsKeyFile:/opt/pulsar/ssl/key.pemDaniel Ciocirlan
02/09/2023, 6:08 AMDaniel Ciocirlan
02/09/2023, 6:08 AMDaniel Ciocirlan
02/09/2023, 6:08 AMDaniel Ciocirlan
02/09/2023, 6:09 AM1
BKDL
{"1":{"str":"localhost:2181"},"2":{"str":"/ledgers"},"3":{"tf":1},"4":{"tf":0},"5":{"str":"localhost:2181"},"6":{"str":"localhost:2181"},"7":{"str":"localhost:2181"}}Daniel Ciocirlan
02/09/2023, 6:09 AMDaniel Ciocirlan
02/09/2023, 6:09 AMDaniel Ciocirlan
02/09/2023, 6:09 AMDaniel Ciocirlan
02/09/2023, 6:09 AMDaniel Ciocirlan
02/10/2023, 8:19 AMDaniel Ciocirlan
02/10/2023, 8:19 AMDaniel Ciocirlan
02/10/2023, 8:20 AM1
BKDL
{"1":{"str":"localhost:2181"},"2":{"str":"/ledgers"},"3":{"tf":1},"4":{"tf":0},"5":{"str":"localhost:2181"},"6":{"str":"localhost:2181"},"7":{"str":"localhost:2181"}}Daniel Ciocirlan
02/10/2023, 8:20 AMDaniel Ciocirlan
02/10/2023, 8:21 AM