all:
  children:
    cephs:
      hosts:
        instance: null
    computes:
      hosts:
        instance: null
    controllers:
      hosts:
        instance: null
    zuul_unreachable:
      hosts: {}
  hosts:
    instance:
      ansible_connection: ssh
      ansible_host: 199.19.213.74
      ansible_port: 22
      ansible_python_interpreter: auto
      ansible_user: zuul
      atmosphere_image_prefix: harbor.atmosphere.dev/
      atmosphere_network_backend: openvswitch
      barbican_helm_values:
        pod:
          replicas:
            api: 1
      ceph_conf_overrides:
      - option: mon allow pool size one
        section: global
        value: true
      - option: osd crush chooseleaf type
        section: global
        value: 0
      - option: auth allow insecure global id reclaim
        section: mon
        value: false
      ceph_csi_rbd_helm_values:
        provisioner:
          replicaCount: 1
      ceph_fsid: 4837cbf8-4f90-4300-b3f6-726c9b9f89b4
      ceph_osd_devices:
      - /dev/ceph-{{ inventory_hostname_short }}-osd0/data
      - /dev/ceph-{{ inventory_hostname_short }}-osd1/data
      - /dev/ceph-{{ inventory_hostname_short }}-osd2/data
      ceph_public_network: '{{ ansible_facts[''default_ipv4''][''network''] + ''/''
        + (ansible_facts[''default_ipv4''][''prefix''] | string) }}'
      ceph_version: 18.2.7
      cilium_helm_values:
        operator:
          replicas: 1
      cinder_helm_values:
        conf:
          ceph:
            pools:
              backup:
                replication: 1
              cinder.volumes:
                replication: 1
          cinder:
            DEFAULT:
              osapi_volume_workers: 2
        pod:
          replicas:
            api: 1
            scheduler: 1
      cluster_issuer_type: self-signed
      coredns_helm_values:
        replicaCount: 1
      csi_driver: local-path-provisioner
      glance_helm_values:
        conf:
          glance:
            DEFAULT:
              workers: 2
            glance_store:
              rbd_store_replication: 1
        pod:
          replicas:
            api: 1
      glance_images:
      - container_format: bare
        disk_format: raw
        is_public: true
        min_disk: 1
        name: cirros
        url: http://download.cirros-cloud.net/0.6.2/cirros-0.6.2-x86_64-disk.img
      heat_helm_values:
        conf:
          heat:
            DEFAULT:
              num_engine_workers: 2
            heat_api:
              workers: 2
            heat_api_cfn:
              workers: 2
            heat_api_cloudwatch:
              workers: 2
        pod:
          replicas:
            api: 1
            cfn: 1
            cloudwatch: 1
            engine: 1
      horizon_helm_values:
        pod:
          replicas:
            server: 1
      ingress_nginx_helm_values:
        controller:
          config:
            worker-processes: 2
      keystone_helm_values:
        pod:
          replicas:
            api: 1
      kube_vip_address: 172.17.0.100
      kube_vip_interface: '{{ ansible_facts[''default_ipv4''].interface }}'
      kubernetes_hostname: '{{ ansible_facts[''default_ipv4''].address }}'
      kubernetes_keepalived_interface: br-mgmt
      magnum_helm_values:
        conf:
          magnum:
            api:
              workers: 2
            conductor:
              workers: 2
        pod:
          replicas:
            api: 1
            conductor: 1
      magnum_image_disk_format: qcow2
      magnum_images: '[ {{ _magnum_images[-1] }} ]'
      manila_helm_values:
        conf:
          manila:
            DEFAULT:
              osapi_share_workers: 2
        pod:
          replicas:
            api: 1
            scheduler: 1
      molecule_scenario: aio
      neutron_helm_values:
        conf:
          neutron:
            DEFAULT:
              api_workers: 2
              metadata_workers: 2
              rpc_workers: 2
        pod:
          replicas:
            rpc_server: 1
            server: 1
      nodepool:
        az: nova
        cloud: public
        external_id: 9daf7955-9d49-447b-a623-6d3f329ddf44
        host_id: a14e37c14509a0e10156ccf8c706cd5613db7e363735e5577c330644
        interface_ip: 199.19.213.74
        label: ubuntu-jammy-16
        node_properties: {}
        private_ipv4: 199.19.213.74
        private_ipv6: null
        provider: yul1
        public_ipv4: 199.19.213.74
        public_ipv6: 2604:e100:1:0:f816:3eff:fee8:dc25
        region: ca-ymq-1
        slot: null
      nova_helm_values:
        conf:
          nova:
            DEFAULT:
              metadata_workers: 2
              osapi_compute_workers: 2
            conductor:
              workers: 2
            scheduler:
              workers: 2
        pod:
          replicas:
            api_metadata: 1
            conductor: 1
            novncproxy: 1
            osapi: 1
            scheduler: 1
            spiceproxy: 1
      octavia_helm_values:
        conf:
          octavia:
            controller_worker:
              workers: 2
          octavia_api_uwsgi:
            uwsgi:
              processes: 2
        pod:
          replicas:
            api: 1
            housekeeping: 1
            worker: 1
      ovn_helm_values:
        conf:
          auto_bridge_add:
            br-ex: null
        pod:
          replicas:
            ovn_northd: 1
            ovn_ovsdb_nb: 1
            ovn_ovsdb_sb: 1
      percona_xtradb_cluster_spec:
        allowUnsafeConfigurations: true
        haproxy:
          size: 1
        pxc:
          size: 1
      placement_helm_values:
        conf:
          placement_api_uwsgi:
            uwsgi:
              processes: 2
        pod:
          replicas:
            api: 1
      rook_ceph_cluster_radosgw_spec:
        dataPool:
          failureDomain: osd
        gateway:
          instances: 1
        metadataPool:
          failureDomain: osd
      staffeln_helm_values:
        pod:
          replicas:
            api: 1
            conductor: 1
      valkey_helm_values:
        replica:
          replicaCount: 1
      zuul_node:
        az: nova
        cloud: public
        external_id: 9daf7955-9d49-447b-a623-6d3f329ddf44
        host_id: a14e37c14509a0e10156ccf8c706cd5613db7e363735e5577c330644
        interface_ip: 199.19.213.74
        label: ubuntu-jammy-16
        node_properties: {}
        private_ipv4: 199.19.213.74
        private_ipv6: null
        provider: yul1
        public_ipv4: 199.19.213.74
        public_ipv6: 2604:e100:1:0:f816:3eff:fee8:dc25
        region: ca-ymq-1
        slot: null
        uuid: null
  vars:
    atmosphere_image_prefix: harbor.atmosphere.dev/
    atmosphere_network_backend: openvswitch
    barbican_helm_values:
      pod:
        replicas:
          api: 1
    ceph_conf_overrides:
    - option: mon allow pool size one
      section: global
      value: true
    - option: osd crush chooseleaf type
      section: global
      value: 0
    - option: auth allow insecure global id reclaim
      section: mon
      value: false
    ceph_csi_rbd_helm_values:
      provisioner:
        replicaCount: 1
    ceph_fsid: 4837cbf8-4f90-4300-b3f6-726c9b9f89b4
    ceph_osd_devices:
    - /dev/ceph-{{ inventory_hostname_short }}-osd0/data
    - /dev/ceph-{{ inventory_hostname_short }}-osd1/data
    - /dev/ceph-{{ inventory_hostname_short }}-osd2/data
    ceph_public_network: '{{ ansible_facts[''default_ipv4''][''network''] + ''/''
      + (ansible_facts[''default_ipv4''][''prefix''] | string) }}'
    ceph_version: 18.2.7
    cilium_helm_values:
      operator:
        replicas: 1
    cinder_helm_values:
      conf:
        ceph:
          pools:
            backup:
              replication: 1
            cinder.volumes:
              replication: 1
        cinder:
          DEFAULT:
            osapi_volume_workers: 2
      pod:
        replicas:
          api: 1
          scheduler: 1
    cluster_issuer_type: self-signed
    coredns_helm_values:
      replicaCount: 1
    csi_driver: local-path-provisioner
    glance_helm_values:
      conf:
        glance:
          DEFAULT:
            workers: 2
          glance_store:
            rbd_store_replication: 1
      pod:
        replicas:
          api: 1
    glance_images:
    - container_format: bare
      disk_format: raw
      is_public: true
      min_disk: 1
      name: cirros
      url: http://download.cirros-cloud.net/0.6.2/cirros-0.6.2-x86_64-disk.img
    heat_helm_values:
      conf:
        heat:
          DEFAULT:
            num_engine_workers: 2
          heat_api:
            workers: 2
          heat_api_cfn:
            workers: 2
          heat_api_cloudwatch:
            workers: 2
      pod:
        replicas:
          api: 1
          cfn: 1
          cloudwatch: 1
          engine: 1
    horizon_helm_values:
      pod:
        replicas:
          server: 1
    ingress_nginx_helm_values:
      controller:
        config:
          worker-processes: 2
    keystone_helm_values:
      pod:
        replicas:
          api: 1
    kube_vip_address: 172.17.0.100
    kube_vip_interface: '{{ ansible_facts[''default_ipv4''].interface }}'
    kubernetes_hostname: '{{ ansible_facts[''default_ipv4''].address }}'
    kubernetes_keepalived_interface: br-mgmt
    magnum_helm_values:
      conf:
        magnum:
          api:
            workers: 2
          conductor:
            workers: 2
      pod:
        replicas:
          api: 1
          conductor: 1
    magnum_image_disk_format: qcow2
    magnum_images: '[ {{ _magnum_images[-1] }} ]'
    manila_helm_values:
      conf:
        manila:
          DEFAULT:
            osapi_share_workers: 2
      pod:
        replicas:
          api: 1
          scheduler: 1
    molecule_scenario: aio
    neutron_helm_values:
      conf:
        neutron:
          DEFAULT:
            api_workers: 2
            metadata_workers: 2
            rpc_workers: 2
      pod:
        replicas:
          rpc_server: 1
          server: 1
    nova_helm_values:
      conf:
        nova:
          DEFAULT:
            metadata_workers: 2
            osapi_compute_workers: 2
          conductor:
            workers: 2
          scheduler:
            workers: 2
      pod:
        replicas:
          api_metadata: 1
          conductor: 1
          novncproxy: 1
          osapi: 1
          scheduler: 1
          spiceproxy: 1
    octavia_helm_values:
      conf:
        octavia:
          controller_worker:
            workers: 2
        octavia_api_uwsgi:
          uwsgi:
            processes: 2
      pod:
        replicas:
          api: 1
          housekeeping: 1
          worker: 1
    ovn_helm_values:
      conf:
        auto_bridge_add:
          br-ex: null
      pod:
        replicas:
          ovn_northd: 1
          ovn_ovsdb_nb: 1
          ovn_ovsdb_sb: 1
    percona_xtradb_cluster_spec:
      allowUnsafeConfigurations: true
      haproxy:
        size: 1
      pxc:
        size: 1
    placement_helm_values:
      conf:
        placement_api_uwsgi:
          uwsgi:
            processes: 2
      pod:
        replicas:
          api: 1
    rook_ceph_cluster_radosgw_spec:
      dataPool:
        failureDomain: osd
      gateway:
        instances: 1
      metadataPool:
        failureDomain: osd
    staffeln_helm_values:
      pod:
        replicas:
          api: 1
          conductor: 1
    valkey_helm_values:
      replica:
        replicaCount: 1
    zuul:
      _inheritance_path:
      - '<Job base explicit: None implied: {MatchAny:{ImpliedBranchMatcher:main}}
        source: vexxhost/zuul-config/zuul.d/jobs.yaml@main#1>'
      - '<Job molecule explicit: None implied: {MatchAny:{ImpliedBranchMatcher:main}}
        source: vexxhost/zuul-jobs/zuul.d/ansible-jobs.yaml@main#1>'
      - '<Job atmosphere-molecule explicit: None implied: {MatchAny:{ImpliedBranchMatcher:main}}
        source: vexxhost/atmosphere/.zuul.yaml@main#24>'
      - '<Job atmosphere-molecule-aio explicit: None implied: {MatchAny:{ImpliedBranchMatcher:main}}
        source: vexxhost/atmosphere/.zuul.yaml@main#88>'
      - '<Job atmosphere-molecule-aio-openvswitch explicit: None implied: {MatchAny:{ImpliedBranchMatcher:main}}
        source: vexxhost/atmosphere/.zuul.yaml@main#270>'
      - '<Job atmosphere-molecule-aio-openvswitch explicit: None implied: None source:
        vexxhost/atmosphere/.zuul.yaml@main#314>'
      ansible_version: '9'
      attempts: 1
      branch: main
      build: 1d9a7bc395274477ae09ad7f64cab413
      build_refs:
      - branch: main
        change: '3844'
        change_message: "feat(deploy): break three config-only DAG edges for parallelism\n\n##
          Summary\n\nAudit of install-time behaviour vs. declared dependencies in
          the parallel deployment orchestrator found three edges where the declared
          dependency is a **configuration-only reference** (endpoint URL stored in
          a Helm values template) rather than a real install-time API call. Removing
          them lets the orchestrator schedule components earlier.\n\n### Edges removed\n\n|
          Component | Old deps | New deps | Why the removed edge is safe |\n|---|---|---|---|\n|
          `neutron` | keystone, **nova**, ovn, coredns | keystone, ovn, coredns |
          `roles/neutron/tasks/main.yml` only makes Neutron API calls (`openstack.cloud.network`,
          subnets) and does not touch Nova at install time. |\n| `magnum` | **barbican**,
          **heat** | keystone | `roles/magnum/vars/main.yml` references `barbican_client`
          / `heat_client` in `magnum.conf`. These strings are only dereferenced when
          a user later creates a cluster. |\n| `rook-ceph-cluster` | rook-ceph, ceph,
          **barbican** | rook-ceph, ceph, **keystone** | The role creates an identity
          user and catalog entry for the RGW. The previous Barbican dependency was
          mis-declared \u2014 the real dependency is Keystone. |\n\n### Readiness
          check added\n\nAlong with the Keystone dependency, `roles/rook_ceph_cluster/tasks/main.yml`
          now waits for the `keystone-api` Deployment to be `Available` before the
          subsequent `openstack.cloud.*` calls, preventing a race with Keystone's
          rollout. This mirrors the cert-manager secret wait added for Octavia in
          #3834.\n\nThe other two removals (`neutron -> nova`, `magnum -> barbican/heat`)
          don't need new gates: audit of the affected `tasks/` files confirms they
          make no install-time API calls against the removed dependencies.\n\n## Measured
          impact\n\nOn `atmosphere-molecule-aio-ovn` the current critical path is:\n\n```\n...
          -> keystone -> Wave6 -> nova -> neutron -> (octavia || manila) = ~12 min
          tail\n```\n\nAfter these changes the expected critical path is:\n\n```\n...
          -> keystone -> Wave6 -> (nova || neutron) -> (octavia || manila) = ~8.5
          min tail\n```\n\n**Expected saving: ~3 min 20 s on the critical path** (roughly
          9% of the measured 34m 40s non-prepull deploy time in #3841).\n\n## Validation\n\n-
          `go test ./pkg/dag/ ./internal/deploy/` passes.\n- `go build ./cmd/atmosphere`
          succeeds.\n- Release note passes `vale` with zero errors / warnings / suggestions.\n-
          DCO signed.\n\n## Stacking\n\nThis PR is based on #3818 (`feat/parallel-deploy-orchestrator`)
          so it is self-contained once #3818 lands on main. #3841 will be rebuilt
          as #3834 + #3835 + this PR on top of `main`.\n\nSigned-off-by: Rico Lin
          <rlin@vexxhost.com>\nCo-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>"
        change_url: https://github.com/vexxhost/atmosphere/pull/3844
        commit_id: 88ac78672dfbfff4bbd6f556baf125b91bd67771
        patchset: 88ac78672dfbfff4bbd6f556baf125b91bd67771
        project:
          canonical_hostname: github.com
          canonical_name: github.com/vexxhost/atmosphere
          name: vexxhost/atmosphere
          short_name: atmosphere
          src_dir: src/github.com/vexxhost/atmosphere
        src_dir: src/github.com/vexxhost/atmosphere
        topic: null
      buildset: c85e2f32610f48a29bdbd5d04f4e932b
      buildset_refs:
      - branch: main
        change: '3844'
        change_message: "feat(deploy): break three config-only DAG edges for parallelism\n\n##
          Summary\n\nAudit of install-time behaviour vs. declared dependencies in
          the parallel deployment orchestrator found three edges where the declared
          dependency is a **configuration-only reference** (endpoint URL stored in
          a Helm values template) rather than a real install-time API call. Removing
          them lets the orchestrator schedule components earlier.\n\n### Edges removed\n\n|
          Component | Old deps | New deps | Why the removed edge is safe |\n|---|---|---|---|\n|
          `neutron` | keystone, **nova**, ovn, coredns | keystone, ovn, coredns |
          `roles/neutron/tasks/main.yml` only makes Neutron API calls (`openstack.cloud.network`,
          subnets) and does not touch Nova at install time. |\n| `magnum` | **barbican**,
          **heat** | keystone | `roles/magnum/vars/main.yml` references `barbican_client`
          / `heat_client` in `magnum.conf`. These strings are only dereferenced when
          a user later creates a cluster. |\n| `rook-ceph-cluster` | rook-ceph, ceph,
          **barbican** | rook-ceph, ceph, **keystone** | The role creates an identity
          user and catalog entry for the RGW. The previous Barbican dependency was
          mis-declared \u2014 the real dependency is Keystone. |\n\n### Readiness
          check added\n\nAlong with the Keystone dependency, `roles/rook_ceph_cluster/tasks/main.yml`
          now waits for the `keystone-api` Deployment to be `Available` before the
          subsequent `openstack.cloud.*` calls, preventing a race with Keystone's
          rollout. This mirrors the cert-manager secret wait added for Octavia in
          #3834.\n\nThe other two removals (`neutron -> nova`, `magnum -> barbican/heat`)
          don't need new gates: audit of the affected `tasks/` files confirms they
          make no install-time API calls against the removed dependencies.\n\n## Measured
          impact\n\nOn `atmosphere-molecule-aio-ovn` the current critical path is:\n\n```\n...
          -> keystone -> Wave6 -> nova -> neutron -> (octavia || manila) = ~12 min
          tail\n```\n\nAfter these changes the expected critical path is:\n\n```\n...
          -> keystone -> Wave6 -> (nova || neutron) -> (octavia || manila) = ~8.5
          min tail\n```\n\n**Expected saving: ~3 min 20 s on the critical path** (roughly
          9% of the measured 34m 40s non-prepull deploy time in #3841).\n\n## Validation\n\n-
          `go test ./pkg/dag/ ./internal/deploy/` passes.\n- `go build ./cmd/atmosphere`
          succeeds.\n- Release note passes `vale` with zero errors / warnings / suggestions.\n-
          DCO signed.\n\n## Stacking\n\nThis PR is based on #3818 (`feat/parallel-deploy-orchestrator`)
          so it is self-contained once #3818 lands on main. #3841 will be rebuilt
          as #3834 + #3835 + this PR on top of `main`.\n\nSigned-off-by: Rico Lin
          <rlin@vexxhost.com>\nCo-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>"
        change_url: https://github.com/vexxhost/atmosphere/pull/3844
        commit_id: 88ac78672dfbfff4bbd6f556baf125b91bd67771
        patchset: 88ac78672dfbfff4bbd6f556baf125b91bd67771
        project:
          canonical_hostname: github.com
          canonical_name: github.com/vexxhost/atmosphere
          name: vexxhost/atmosphere
          short_name: atmosphere
          src_dir: src/github.com/vexxhost/atmosphere
        src_dir: src/github.com/vexxhost/atmosphere
        topic: null
      change: '3844'
      change_message: "feat(deploy): break three config-only DAG edges for parallelism\n\n##
        Summary\n\nAudit of install-time behaviour vs. declared dependencies in the
        parallel deployment orchestrator found three edges where the declared dependency
        is a **configuration-only reference** (endpoint URL stored in a Helm values
        template) rather than a real install-time API call. Removing them lets the
        orchestrator schedule components earlier.\n\n### Edges removed\n\n| Component
        | Old deps | New deps | Why the removed edge is safe |\n|---|---|---|---|\n|
        `neutron` | keystone, **nova**, ovn, coredns | keystone, ovn, coredns | `roles/neutron/tasks/main.yml`
        only makes Neutron API calls (`openstack.cloud.network`, subnets) and does
        not touch Nova at install time. |\n| `magnum` | **barbican**, **heat** | keystone
        | `roles/magnum/vars/main.yml` references `barbican_client` / `heat_client`
        in `magnum.conf`. These strings are only dereferenced when a user later creates
        a cluster. |\n| `rook-ceph-cluster` | rook-ceph, ceph, **barbican** | rook-ceph,
        ceph, **keystone** | The role creates an identity user and catalog entry for
        the RGW. The previous Barbican dependency was mis-declared \u2014 the real
        dependency is Keystone. |\n\n### Readiness check added\n\nAlong with the Keystone
        dependency, `roles/rook_ceph_cluster/tasks/main.yml` now waits for the `keystone-api`
        Deployment to be `Available` before the subsequent `openstack.cloud.*` calls,
        preventing a race with Keystone's rollout. This mirrors the cert-manager secret
        wait added for Octavia in #3834.\n\nThe other two removals (`neutron -> nova`,
        `magnum -> barbican/heat`) don't need new gates: audit of the affected `tasks/`
        files confirms they make no install-time API calls against the removed dependencies.\n\n##
        Measured impact\n\nOn `atmosphere-molecule-aio-ovn` the current critical path
        is:\n\n```\n... -> keystone -> Wave6 -> nova -> neutron -> (octavia || manila)
        = ~12 min tail\n```\n\nAfter these changes the expected critical path is:\n\n```\n...
        -> keystone -> Wave6 -> (nova || neutron) -> (octavia || manila) = ~8.5 min
        tail\n```\n\n**Expected saving: ~3 min 20 s on the critical path** (roughly
        9% of the measured 34m 40s non-prepull deploy time in #3841).\n\n## Validation\n\n-
        `go test ./pkg/dag/ ./internal/deploy/` passes.\n- `go build ./cmd/atmosphere`
        succeeds.\n- Release note passes `vale` with zero errors / warnings / suggestions.\n-
        DCO signed.\n\n## Stacking\n\nThis PR is based on #3818 (`feat/parallel-deploy-orchestrator`)
        so it is self-contained once #3818 lands on main. #3841 will be rebuilt as
        #3834 + #3835 + this PR on top of `main`.\n\nSigned-off-by: Rico Lin <rlin@vexxhost.com>\nCo-authored-by:
        Copilot <223556219+Copilot@users.noreply.github.com>"
      change_url: https://github.com/vexxhost/atmosphere/pull/3844
      child_jobs: []
      commit_id: 88ac78672dfbfff4bbd6f556baf125b91bd67771
      event_id: 395b1cc0-3ef8-11f1-896f-e811034807d4
      executor:
        hostname: 0a8996d2b663
        inventory_file: /var/lib/zuul/builds/1d9a7bc395274477ae09ad7f64cab413/ansible/inventory.yaml
        log_root: /var/lib/zuul/builds/1d9a7bc395274477ae09ad7f64cab413/work/logs
        result_data_file: /var/lib/zuul/builds/1d9a7bc395274477ae09ad7f64cab413/work/results.json
        src_root: /var/lib/zuul/builds/1d9a7bc395274477ae09ad7f64cab413/work/src
        work_root: /var/lib/zuul/builds/1d9a7bc395274477ae09ad7f64cab413/work
      include_vars: []
      items:
      - branch: main
        change: '3844'
        change_message: "feat(deploy): break three config-only DAG edges for parallelism\n\n##
          Summary\n\nAudit of install-time behaviour vs. declared dependencies in
          the parallel deployment orchestrator found three edges where the declared
          dependency is a **configuration-only reference** (endpoint URL stored in
          a Helm values template) rather than a real install-time API call. Removing
          them lets the orchestrator schedule components earlier.\n\n### Edges removed\n\n|
          Component | Old deps | New deps | Why the removed edge is safe |\n|---|---|---|---|\n|
          `neutron` | keystone, **nova**, ovn, coredns | keystone, ovn, coredns |
          `roles/neutron/tasks/main.yml` only makes Neutron API calls (`openstack.cloud.network`,
          subnets) and does not touch Nova at install time. |\n| `magnum` | **barbican**,
          **heat** | keystone | `roles/magnum/vars/main.yml` references `barbican_client`
          / `heat_client` in `magnum.conf`. These strings are only dereferenced when
          a user later creates a cluster. |\n| `rook-ceph-cluster` | rook-ceph, ceph,
          **barbican** | rook-ceph, ceph, **keystone** | The role creates an identity
          user and catalog entry for the RGW. The previous Barbican dependency was
          mis-declared \u2014 the real dependency is Keystone. |\n\n### Readiness
          check added\n\nAlong with the Keystone dependency, `roles/rook_ceph_cluster/tasks/main.yml`
          now waits for the `keystone-api` Deployment to be `Available` before the
          subsequent `openstack.cloud.*` calls, preventing a race with Keystone's
          rollout. This mirrors the cert-manager secret wait added for Octavia in
          #3834.\n\nThe other two removals (`neutron -> nova`, `magnum -> barbican/heat`)
          don't need new gates: audit of the affected `tasks/` files confirms they
          make no install-time API calls against the removed dependencies.\n\n## Measured
          impact\n\nOn `atmosphere-molecule-aio-ovn` the current critical path is:\n\n```\n...
          -> keystone -> Wave6 -> nova -> neutron -> (octavia || manila) = ~12 min
          tail\n```\n\nAfter these changes the expected critical path is:\n\n```\n...
          -> keystone -> Wave6 -> (nova || neutron) -> (octavia || manila) = ~8.5
          min tail\n```\n\n**Expected saving: ~3 min 20 s on the critical path** (roughly
          9% of the measured 34m 40s non-prepull deploy time in #3841).\n\n## Validation\n\n-
          `go test ./pkg/dag/ ./internal/deploy/` passes.\n- `go build ./cmd/atmosphere`
          succeeds.\n- Release note passes `vale` with zero errors / warnings / suggestions.\n-
          DCO signed.\n\n## Stacking\n\nThis PR is based on #3818 (`feat/parallel-deploy-orchestrator`)
          so it is self-contained once #3818 lands on main. #3841 will be rebuilt
          as #3834 + #3835 + this PR on top of `main`.\n\nSigned-off-by: Rico Lin
          <rlin@vexxhost.com>\nCo-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>"
        change_url: https://github.com/vexxhost/atmosphere/pull/3844
        commit_id: 88ac78672dfbfff4bbd6f556baf125b91bd67771
        patchset: 88ac78672dfbfff4bbd6f556baf125b91bd67771
        project:
          canonical_hostname: github.com
          canonical_name: github.com/vexxhost/atmosphere
          name: vexxhost/atmosphere
          short_name: atmosphere
          src_dir: src/github.com/vexxhost/atmosphere
        topic: null
      job: atmosphere-molecule-aio-openvswitch
      jobtags: []
      max_attempts: 3
      message: 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
      patchset: 88ac78672dfbfff4bbd6f556baf125b91bd67771
      pipeline: check
      playbook_context:
        playbook_projects:
          trusted/project_0/github.com/vexxhost/zuul-config:
            canonical_name: github.com/vexxhost/zuul-config
            checkout: main
            commit: 298983cd1253e6833abdb49d87d912527e0e6597
          trusted/project_1/opendev.org/zuul/zuul-jobs:
            canonical_name: opendev.org/zuul/zuul-jobs
            checkout: master
            commit: 9f5c1d680d573485f0ccdb18d2184d4f1d446419
          trusted/project_2/github.com/vexxhost/zuul-jobs:
            canonical_name: github.com/vexxhost/zuul-jobs
            checkout: main
            commit: a6e68243e02ef030ce5e75f8b67630880c475f33
          untrusted/project_0/github.com/vexxhost/zuul-jobs:
            canonical_name: github.com/vexxhost/zuul-jobs
            checkout: main
            commit: a6e68243e02ef030ce5e75f8b67630880c475f33
          untrusted/project_1/github.com/vexxhost/zuul-config:
            canonical_name: github.com/vexxhost/zuul-config
            checkout: main
            commit: 298983cd1253e6833abdb49d87d912527e0e6597
          untrusted/project_2/opendev.org/zuul/zuul-jobs:
            canonical_name: opendev.org/zuul/zuul-jobs
            checkout: master
            commit: 9f5c1d680d573485f0ccdb18d2184d4f1d446419
          untrusted/project_3/github.com/vexxhost/atmosphere:
            canonical_name: github.com/vexxhost/atmosphere
            checkout: main
            commit: 88ac78672dfbfff4bbd6f556baf125b91bd67771
          untrusted/project_4/opendev.org/openstack/openstack-helm:
            canonical_name: opendev.org/openstack/openstack-helm
            checkout: master
            commit: 6089c4f545d521ff2ffb1c8c1dd3c04028eecb8f
        playbooks:
        - path: untrusted/project_3/github.com/vexxhost/atmosphere/molecule/aio/converge.yml
          roles:
          - checkout: main
            checkout_description: playbook branch
            link_name: ansible/playbook_0/role_0/atmosphere
            link_target: untrusted/project_3/github.com/vexxhost/atmosphere
            role_path: ansible/playbook_0/role_0/atmosphere/roles
          - checkout: master
            checkout_description: project default branch
            link_name: ansible/playbook_0/role_1/openstack-helm
            link_target: untrusted/project_4/opendev.org/openstack/openstack-helm
            role_path: ansible/playbook_0/role_1/openstack-helm/roles
          - checkout: master
            checkout_description: project default branch
            link_name: ansible/playbook_0/role_3/zuul-jobs
            link_target: untrusted/project_2/opendev.org/zuul/zuul-jobs
            role_path: ansible/playbook_0/role_3/zuul-jobs/roles
          - checkout: main
            checkout_description: zuul branch
            link_name: ansible/playbook_0/role_4/zuul-jobs
            link_target: untrusted/project_0/github.com/vexxhost/zuul-jobs
            role_path: ansible/playbook_0/role_4/zuul-jobs/roles
        - path: untrusted/project_3/github.com/vexxhost/atmosphere/test-playbooks/molecule/run.yml
          roles:
          - checkout: main
            checkout_description: playbook branch
            link_name: ansible/playbook_1/role_0/atmosphere
            link_target: untrusted/project_3/github.com/vexxhost/atmosphere
            role_path: ansible/playbook_1/role_0/atmosphere/roles
          - checkout: master
            checkout_description: project default branch
            link_name: ansible/playbook_1/role_1/openstack-helm
            link_target: untrusted/project_4/opendev.org/openstack/openstack-helm
            role_path: ansible/playbook_1/role_1/openstack-helm/roles
          - checkout: master
            checkout_description: project default branch
            link_name: ansible/playbook_1/role_3/zuul-jobs
            link_target: untrusted/project_2/opendev.org/zuul/zuul-jobs
            role_path: ansible/playbook_1/role_3/zuul-jobs/roles
          - checkout: main
            checkout_description: zuul branch
            link_name: ansible/playbook_1/role_4/zuul-jobs
            link_target: untrusted/project_0/github.com/vexxhost/zuul-jobs
            role_path: ansible/playbook_1/role_4/zuul-jobs/roles
        post_playbooks:
        - path: untrusted/project_3/github.com/vexxhost/atmosphere/test-playbooks/molecule/post.yml
          roles:
          - checkout: main
            checkout_description: playbook branch
            link_name: ansible/post_playbook_0/role_0/atmosphere
            link_target: untrusted/project_3/github.com/vexxhost/atmosphere
            role_path: ansible/post_playbook_0/role_0/atmosphere/roles
          - checkout: master
            checkout_description: project default branch
            link_name: ansible/post_playbook_0/role_1/openstack-helm
            link_target: untrusted/project_4/opendev.org/openstack/openstack-helm
            role_path: ansible/post_playbook_0/role_1/openstack-helm/roles
          - checkout: master
            checkout_description: project default branch
            link_name: ansible/post_playbook_0/role_3/zuul-jobs
            link_target: untrusted/project_2/opendev.org/zuul/zuul-jobs
            role_path: ansible/post_playbook_0/role_3/zuul-jobs/roles
          - checkout: main
            checkout_description: zuul branch
            link_name: ansible/post_playbook_0/role_4/zuul-jobs
            link_target: untrusted/project_0/github.com/vexxhost/zuul-jobs
            role_path: ansible/post_playbook_0/role_4/zuul-jobs/roles
        - path: trusted/project_0/github.com/vexxhost/zuul-config/playbooks/base/post.yaml
          roles:
          - checkout: master
            checkout_description: project default branch
            link_name: ansible/post_playbook_1/role_1/zuul-jobs
            link_target: trusted/project_1/opendev.org/zuul/zuul-jobs
            role_path: ansible/post_playbook_1/role_1/zuul-jobs/roles
          - checkout: main
            checkout_description: zuul branch
            link_name: ansible/post_playbook_1/role_2/zuul-jobs
            link_target: trusted/project_2/github.com/vexxhost/zuul-jobs
            role_path: ansible/post_playbook_1/role_2/zuul-jobs/roles
        - path: trusted/project_0/github.com/vexxhost/zuul-config/playbooks/base/post-logs.yaml
          roles:
          - checkout: master
            checkout_description: project default branch
            link_name: ansible/post_playbook_2/role_1/zuul-jobs
            link_target: trusted/project_1/opendev.org/zuul/zuul-jobs
            role_path: ansible/post_playbook_2/role_1/zuul-jobs/roles
          - checkout: main
            checkout_description: zuul branch
            link_name: ansible/post_playbook_2/role_2/zuul-jobs
            link_target: trusted/project_2/github.com/vexxhost/zuul-jobs
            role_path: ansible/post_playbook_2/role_2/zuul-jobs/roles
        pre_playbooks:
        - path: trusted/project_0/github.com/vexxhost/zuul-config/playbooks/base/pre.yaml
          roles:
          - checkout: master
            checkout_description: project default branch
            link_name: ansible/pre_playbook_0/role_1/zuul-jobs
            link_target: trusted/project_1/opendev.org/zuul/zuul-jobs
            role_path: ansible/pre_playbook_0/role_1/zuul-jobs/roles
          - checkout: main
            checkout_description: zuul branch
            link_name: ansible/pre_playbook_0/role_2/zuul-jobs
            link_target: trusted/project_2/github.com/vexxhost/zuul-jobs
            role_path: ansible/pre_playbook_0/role_2/zuul-jobs/roles
        - path: untrusted/project_0/github.com/vexxhost/zuul-jobs/playbooks/molecule/pre.yaml
          roles:
          - checkout: master
            checkout_description: project default branch
            link_name: ansible/pre_playbook_1/role_1/zuul-jobs
            link_target: untrusted/project_2/opendev.org/zuul/zuul-jobs
            role_path: ansible/pre_playbook_1/role_1/zuul-jobs/roles
          - checkout: main
            checkout_description: playbook branch
            link_name: ansible/pre_playbook_1/role_2/zuul-jobs
            link_target: untrusted/project_0/github.com/vexxhost/zuul-jobs
            role_path: ansible/pre_playbook_1/role_2/zuul-jobs/roles
        - path: untrusted/project_3/github.com/vexxhost/atmosphere/test-playbooks/molecule/pre.yml
          roles:
          - checkout: main
            checkout_description: playbook branch
            link_name: ansible/pre_playbook_2/role_0/atmosphere
            link_target: untrusted/project_3/github.com/vexxhost/atmosphere
            role_path: ansible/pre_playbook_2/role_0/atmosphere/roles
          - checkout: master
            checkout_description: project default branch
            link_name: ansible/pre_playbook_2/role_1/openstack-helm
            link_target: untrusted/project_4/opendev.org/openstack/openstack-helm
            role_path: ansible/pre_playbook_2/role_1/openstack-helm/roles
          - checkout: master
            checkout_description: project default branch
            link_name: ansible/pre_playbook_2/role_3/zuul-jobs
            link_target: untrusted/project_2/opendev.org/zuul/zuul-jobs
            role_path: ansible/pre_playbook_2/role_3/zuul-jobs/roles
          - checkout: main
            checkout_description: zuul branch
            link_name: ansible/pre_playbook_2/role_4/zuul-jobs
            link_target: untrusted/project_0/github.com/vexxhost/zuul-jobs
            role_path: ansible/pre_playbook_2/role_4/zuul-jobs/roles
      post_review: false
      post_timeout: null
      pre_timeout: null
      project:
        canonical_hostname: github.com
        canonical_name: github.com/vexxhost/atmosphere
        name: vexxhost/atmosphere
        short_name: atmosphere
        src_dir: src/github.com/vexxhost/atmosphere
      projects:
        github.com/vexxhost/atmosphere:
          canonical_hostname: github.com
          canonical_name: github.com/vexxhost/atmosphere
          checkout: main
          checkout_description: zuul branch
          commit: 88ac78672dfbfff4bbd6f556baf125b91bd67771
          name: vexxhost/atmosphere
          required: false
          short_name: atmosphere
          src_dir: src/github.com/vexxhost/atmosphere
      ref: refs/pull/3844/head
      resources: {}
      tenant: oss
      timeout: 7200
      topic: null
      voting: true
