Page MenuHomePhabricator
Feed Advanced Search

Oct 20 2015

gerritbot added a comment to T115943: erbium (logging) - useradd: group '30001' does not exist.

Change 247589 had a related patch set uploaded (by Ottomata):
Remove uid setting from file_mover user. enforce-users-groups-cleanup was removing this

Oct 20 2015, 3:40 PM · SRE, Patch-For-Review, Analytics-Backlog
Krenair claimed T70387: Beta Cluster no longer listens for HTTPS.

Using a real trusted certificate is covered in T50501, T75919 and T97593.

Oct 20 2015, 3:39 PM · SRE, Patch-For-Review, Beta-Cluster-Infrastructure
gerritbot added a project to T70387: Beta Cluster no longer listens for HTTPS: Patch-For-Review.
Oct 20 2015, 3:38 PM · SRE, Patch-For-Review, Beta-Cluster-Infrastructure
gerritbot added a comment to T70387: Beta Cluster no longer listens for HTTPS.

Change 247587 had a related patch set uploaded (by Alex Monk):
Change star.wmflabs.org to beta certificate

Oct 20 2015, 3:38 PM · SRE, Patch-For-Review, Beta-Cluster-Infrastructure
gerritbot added a comment to T115943: erbium (logging) - useradd: group '30001' does not exist.

Change 247584 merged by Ottomata:
Set file_mover primary gid by name rather than number

Oct 20 2015, 3:33 PM · SRE, Patch-For-Review, Analytics-Backlog
gerritbot added a project to T115943: erbium (logging) - useradd: group '30001' does not exist: Patch-For-Review.
Oct 20 2015, 3:31 PM · SRE, Patch-For-Review, Analytics-Backlog
gerritbot added a comment to T115943: erbium (logging) - useradd: group '30001' does not exist.

Change 247584 had a related patch set uploaded (by Ottomata):
Set file_mover primary gid by name rather than number

Oct 20 2015, 3:31 PM · SRE, Patch-For-Review, Analytics-Backlog
Ottomata added a comment to T115943: erbium (logging) - useradd: group '30001' does not exist.

Hm, actually, let's make the gid for the file_mover user use the name rather than the gid. file_mover group exists as gid 997 on erbium.

Oct 20 2015, 3:30 PM · SRE, Patch-For-Review, Analytics-Backlog
Ottomata added a comment to T115943: erbium (logging) - useradd: group '30001' does not exist.

Hm, no idea. Can we just do

Oct 20 2015, 3:28 PM · SRE, Patch-For-Review, Analytics-Backlog
Cmjohnson created T116019: Rack/Setpup labvirt1010 and 1011.
Oct 20 2015, 3:07 PM · labs-sprint-118, SRE, Cloud-VPS, ops-eqiad, Cloud-Services
jcrespo moved T115711: Drop `user_daily_contribs` table from all production wikis from Backlog to In progress on the DBA board.
Oct 20 2015, 2:56 PM · MW-1.27-release (WMF-deploy-2015-12-15_(1.27.0-wmf.9)), Patch-For-Review, SRE, DBA
jcrespo added a comment to T115711: Drop `user_daily_contribs` table from all production wikis.

I have renamed the table on all wikis to delete_user_daily_contribs; I will leave it as is for some time, will delete it afterwards after checking that no code is requiring it.

Oct 20 2015, 2:56 PM · MW-1.27-release (WMF-deploy-2015-12-15_(1.27.0-wmf.9)), Patch-For-Review, SRE, DBA
BBlack closed T113639: cp1046 is crashing and becoming unresponsive as Resolved.

Seems ok now

Oct 20 2015, 2:50 PM · SRE, ops-eqiad, Traffic
BBlack added a comment to T114870: cp1059 has network issues.

Looks fixed, will leave it alone for a day or so to see if icinga state stabilizes, then un-downtime it for a day or two and see if we get alerts, then repool.

Oct 20 2015, 2:48 PM · SRE, Patch-For-Review, ops-eqiad
MoritzMuehlenhoff added a comment to T116011: ferm: Log dropped packets.

Yes, my initial debug rules simply used syslog, but for a more complete fleet-wide solution I was thinking of ulogd(2).

Oct 20 2015, 2:47 PM · SRE
Dzahn added a comment to T114059: ssl expiry tracking in icinga - we don't monitor that many domains.

SSL OK - Certificate wikitech.wikimedia.org valid until 2016-01-25 04:44:13 +0000 (expires in 96 days)

Oct 20 2015, 2:42 PM · Traffic, HTTPS, Icinga, observability, SRE
faidon added a comment to T116011: ferm: Log dropped packets.

Yeah that's a good idea. If we do, should we consider userspace logging with ulogd instead of spamming dmesg? That way we could potentially collect it in the future as well and e.g. detect anomalies.

Oct 20 2015, 2:40 PM · SRE
Cmjohnson closed T115952: relabel tmh1001/mw1259 & tmh1002/mw1260 as Resolved.

done

Oct 20 2015, 2:40 PM · SRE, ops-eqiad
Cmjohnson closed T115952: relabel tmh1001/mw1259 & tmh1002/mw1260, a subtask of T115950: reclaim tmh2* as spares or into mw* pool, as Resolved.
Oct 20 2015, 2:40 PM · SRE
MoritzMuehlenhoff triaged T116011: ferm: Log dropped packets as Medium priority.
Oct 20 2015, 2:39 PM · SRE
MoritzMuehlenhoff created T116011: ferm: Log dropped packets.
Oct 20 2015, 2:39 PM · SRE
Cmjohnson closed T115921: remove tele2(patchid 2953) from dmarc panel as Resolved.

Removed

Oct 20 2015, 2:35 PM · SRE, netops, ops-eqiad
Cmjohnson added a comment to T114870: cp1059 has network issues.

Swapped the fiber and sfp+'s for Juniper 10G copper cable.

Oct 20 2015, 2:31 PM · SRE, Patch-For-Review, ops-eqiad
Maniphest added a project to T116007: Add basic jenkins linting to analytics-limn-wikidata-data: SRE-Access-Requests.
Oct 20 2015, 2:31 PM · Wikidata-Sprint-2015-10-13, Patch-For-Review, Continuous-Integration-Config, WMDE-Analytics-Engineering, Analytics, Wikidata
Krenair added a comment to T70387: Beta Cluster no longer listens for HTTPS.

I made a certificate for beta on deployment-puppetmaster and replaced the star.wmflabs.org cert with it there (also had a mess around with some other settings to get it to work), then went and changed all the cache instances so they could get the new cert, start nginx and get puppet working again. We probably want to separate that cert from star.wmflabs.org so we can get the patch into the operations/puppet repository.

Oct 20 2015, 2:14 PM · SRE, Patch-For-Review, Beta-Cluster-Infrastructure
gerritbot added a comment to T83580: Overhaul reqstats.

Change 247564 merged by Ottomata:
Deploy VarnishReqstats diamond collector on remaining cache hosts

Oct 20 2015, 2:12 PM · SRE, Analytics-Kanban, Patch-For-Review, observability
Dzahn closed T115548: Requesting access to analytics-privatedata-users for Bryan Davis as Resolved.

[stat1002:~] $ id bd808
uid=3518(bd808) gid=500(wikidev) groups=500(wikidev),731(analytics-privatedata-users)

Oct 20 2015, 2:05 PM · SRE, Patch-For-Review, SRE-Access-Requests
Dzahn added a comment to T115548: Requesting access to analytics-privatedata-users for Bryan Davis.

on stat1002:

Oct 20 2015, 2:05 PM · SRE, Patch-For-Review, SRE-Access-Requests
gerritbot added a comment to T115548: Requesting access to analytics-privatedata-users for Bryan Davis.

Change 247295 merged by Dzahn:
admin: add bd808 to analytics-privatedata-users

Oct 20 2015, 2:02 PM · SRE, Patch-For-Review, SRE-Access-Requests
gerritbot added a comment to T114059: ssl expiry tracking in icinga - we don't monitor that many domains.

Change 244610 merged by Faidon Liambotis:
wikitech: add SSL cert expiry monitoring

Oct 20 2015, 2:00 PM · Traffic, HTTPS, Icinga, observability, SRE
gerritbot added a comment to T83580: Overhaul reqstats.

Change 247564 had a related patch set uploaded (by Ottomata):
Deploy VarnishReqstats diamond collector on remaining cache hosts

Oct 20 2015, 1:50 PM · SRE, Analytics-Kanban, Patch-For-Review, observability
fgiunchedi added a comment to T114861: mailman check_queue recurrent alarm/recovery.

FWIW you should be able to obtain the same with a diamond collector and export data into graphite for graphing (and possibly alerting)

Oct 20 2015, 1:48 PM · SRE, Wikimedia-Mailing-lists
jcrespo added a comment to T115711: Drop `user_daily_contribs` table from all production wikis.

There are 30 million rows on these tables (on enwiki, fewer on the others). This makes this a slightly more complex issue due to potential impact on the 5.5 masters. We will have to do it slowly, specially for s1 and s3.

Oct 20 2015, 1:37 PM · MW-1.27-release (WMF-deploy-2015-12-15_(1.27.0-wmf.9)), Patch-For-Review, SRE, DBA
Nemo_bis added a project to T116001: Large job queue increase, category updates etc. very slow: WMF-General-or-Unknown.
Oct 20 2015, 1:26 PM · MediaWiki-Core-JobQueue, WMF-General-or-Unknown, Performance Issue
jcrespo added a comment to T115711: Drop `user_daily_contribs` table from all production wikis.

According to https://gerrit.wikimedia.org/r/#/c/246689/1/wmf-config/InitialiseSettings.php, this should have been enabled on all production wikis.

Oct 20 2015, 1:24 PM · MW-1.27-release (WMF-deploy-2015-12-15_(1.27.0-wmf.9)), Patch-For-Review, SRE, DBA
jcrespo moved T115982: Drop the tables old_growth, hitcounter, click_tracking, click_tracking_user_properties from enwiki, maybe other schemas from Triage to Backlog on the DBA board.
Oct 20 2015, 1:13 PM · MediaWiki-extensions-ClickTracking, SRE, DBA
jcrespo triaged T115982: Drop the tables old_growth, hitcounter, click_tracking, click_tracking_user_properties from enwiki, maybe other schemas as Low priority.
Oct 20 2015, 1:13 PM · MediaWiki-extensions-ClickTracking, SRE, DBA
Steinsplitter added a project to T116001: Large job queue increase, category updates etc. very slow: Performance Issue.
Oct 20 2015, 12:44 PM · MediaWiki-Core-JobQueue, WMF-General-or-Unknown, Performance Issue
Steinsplitter updated the task description for T116001: Large job queue increase, category updates etc. very slow.
Oct 20 2015, 12:43 PM · MediaWiki-Core-JobQueue, WMF-General-or-Unknown, Performance Issue
Steinsplitter created T116001: Large job queue increase, category updates etc. very slow.
Oct 20 2015, 12:42 PM · MediaWiki-Core-JobQueue, WMF-General-or-Unknown, Performance Issue
jcrespo moved T111654: Set up TLS for MariaDB replication from Backlog to In progress on the DBA board.
Oct 20 2015, 11:24 AM · Patch-For-Review, SRE, DBA
gerritbot added a project to T111654: Set up TLS for MariaDB replication: Patch-For-Review.
Oct 20 2015, 11:22 AM · Patch-For-Review, SRE, DBA
gerritbot added a comment to T111654: Set up TLS for MariaDB replication.

Change 247542 had a related patch set uploaded (by Jcrespo):
[WIP] Script to genereate openssh TLS keys for mysql replication

Oct 20 2015, 11:22 AM · Patch-For-Review, SRE, DBA
Reedy updated subscribers of T111654: Set up TLS for MariaDB replication.
Oct 20 2015, 11:13 AM · Patch-For-Review, SRE, DBA
jcrespo added a comment to T111654: Set up TLS for MariaDB replication.

So, I have some questions here for the TLS experts:

Oct 20 2015, 11:12 AM · Patch-For-Review, SRE, DBA
Chmarkine added a comment to T50501: beta: Get SSL certificates for *.{projects}.beta.wmflabs.org.

Let's Encrypt provides free trusted(*) DV non-wildcard certs. We have 31 domains lists here. If you think it's plausible, we can obtain 31 certs (one for each domain) from Let's Encrypt at zero cost.

(*) They will have their CA certificate cross-signed by IdenTrust next month, so the certs they issued won't be trusted until then.

Oct 20 2015, 9:40 AM · SRE, Beta-Cluster-Infrastructure
hashar added a comment to T34796: status.wikimedia.org has no (valid) HTTPS.

Do we really care of having status.wikimedia.org to be served over TLS? I am not sure it is worth it (and the price of a host cert), so I would rather disable HTTPS and just use http.

Oct 20 2015, 9:15 AM · Patch-For-Review, SRE, Traffic, HTTPS
MoritzMuehlenhoff created T115983: Old salt grains not removed if a role changes.
Oct 20 2015, 9:12 AM · Salt, SRE
jcrespo created T115982: Drop the tables old_growth, hitcounter, click_tracking, click_tracking_user_properties from enwiki, maybe other schemas.
Oct 20 2015, 9:00 AM · MediaWiki-extensions-ClickTracking, SRE, DBA
jcrespo added a comment to T101803: wikitech-static sync broken.

@Dzahn I do not see anything in a critical state - I suppose you meant the "lag" between the servers.

Oct 20 2015, 8:50 AM · SRE, Patch-For-Review, Wikimedia-Apache-configuration, Cloud-VPS, Cloud-Services, wikitech.wikimedia.org
mobrovac removed a project from T102030: Document and hook up public mathoid end point in RB: Patch-For-Review.
Oct 20 2015, 8:44 AM · Math, SRE, RESTBase, Mathoid, Services
ArielGlenn closed T113888: scap to snapshot1001 failing due to full disk as Resolved.
Oct 20 2015, 6:57 AM · SRE
ArielGlenn reopened T113888: scap to snapshot1001 failing due to full disk as "Open".

space there because it was reinstalled with a larger partition. sorry, I should have closed this. doing so now.

Oct 20 2015, 6:53 AM · SRE
Dzahn claimed T34796: status.wikimedia.org has no (valid) HTTPS.
Oct 20 2015, 4:19 AM · Patch-For-Review, SRE, Traffic, HTTPS
faidon added a comment to T115760: deployment: user trebuchet gets added and removed from group wikidev on every puppet run.

Well as those puppet runs and logs prove, user trebuchet belongs in group wikidev only for about 1 minute every 30. I think we can pretty safely conclude that it's not strictly needed.

Oct 20 2015, 3:37 AM · SRE, Patch-For-Review, Release-Engineering-Team
ellery added a comment to T97676: Verify kafkatee use for fundraising logs on erbium.

Is this task being tracked on two tickets? Anyway, you can make the change as far as I'm concerned as long as the campaign names are included in the schema as before (unless there is some other way to map banners to campaigns in one of the other tables). Also, make sure to multiply the counts by 10 or what ever the rate ends up being used.

Oct 20 2015, 2:33 AM · Fr-tech-archived-from-FY-2015/16, Patch-For-Review, Fundraising Sprint X-Ray Spex, Fundraising Sprint William Shatner, SRE, Fundraising-Backlog-Old, Fundraising Sprint Lou Reed, Fundraising Sprint Kraftwerk, Analytics-Clusters
Krinkle created T115965: [Regression] 404 Not Found: https://en.wikipedia.org/apple-touch-icon.png.
Oct 20 2015, 1:07 AM · Patch-For-Review, SRE, Regression
Dzahn added a comment to T114922: Transfer of domain names to WMF servers.

@VBaranetsky Hi, any response from Doneva yet?

Oct 20 2015, 12:38 AM · Traffic, SRE, Domains, DNS
Dzahn triaged T115937: restore old mw config private svn repo from bacula as Medium priority.
Oct 20 2015, 12:36 AM · SRE
Dzahn triaged T115718: create new admin group for datacenter ops to add new systems to puppet as Medium priority.

group added, but needs to be added to hosts. and there is the question on https://gerrit.wikimedia.org/r/#/c/246850/

Oct 20 2015, 12:35 AM · SRE-Access-Requests, SRE
Dzahn claimed T114059: ssl expiry tracking in icinga - we don't monitor that many domains.
Oct 20 2015, 12:34 AM · Traffic, HTTPS, Icinga, observability, SRE
Dzahn added a comment to T114059: ssl expiry tracking in icinga - we don't monitor that many domains.

check for gerrit cert added:

Oct 20 2015, 12:33 AM · Traffic, HTTPS, Icinga, observability, SRE
Dzahn added a comment to T115067: Kartotherian service logs inaccessible (systemd?) and not updated (/var/log).

made this an access-request

Oct 20 2015, 12:11 AM · Maps, Discovery-ARCHIVED, SRE, SRE-Access-Requests, Patch-For-Review, Blocked-on-Operations, service-runner, Maps-Sprint
gerritbot added a comment to T114059: ssl expiry tracking in icinga - we don't monitor that many domains.

Change 244618 merged by Dzahn:
gerrit: add cert expiry check

Oct 20 2015, 12:02 AM · Traffic, HTTPS, Icinga, observability, SRE

Oct 19 2015

Dzahn added a comment to T115067: Kartotherian service logs inaccessible (systemd?) and not updated (/var/log).

@akosiaris wanna review https://gerrit.wikimedia.org/r/#/c/244627/ ?

Oct 19 2015, 11:59 PM · Maps, Discovery-ARCHIVED, SRE, SRE-Access-Requests, Patch-For-Review, Blocked-on-Operations, service-runner, Maps-Sprint
Dzahn added a project to T115067: Kartotherian service logs inaccessible (systemd?) and not updated (/var/log): SRE-Access-Requests.
Oct 19 2015, 11:59 PM · Maps, Discovery-ARCHIVED, SRE, SRE-Access-Requests, Patch-For-Review, Blocked-on-Operations, service-runner, Maps-Sprint
gerritbot added a comment to T115718: create new admin group for datacenter ops to add new systems to puppet.

Change 246848 merged by Dzahn:
admin: add new group for datacenter ops

Oct 19 2015, 11:56 PM · SRE-Access-Requests, SRE
gerritbot added a comment to T115348: Audit uses of package=>latest.

Change 247005 merged by Dzahn:
ntp: do not 'ensure latest'

Oct 19 2015, 11:54 PM · SRE, Patch-For-Review
RobH added a comment to T115950: reclaim tmh2* as spares or into mw* pool.

These are identical to the other mw* systems in codfw, so it makes sense to simply append these to the end of the mw system range and use them. (I'll create the onsite tasks shortly, as well as the new dns entries for mgmt.)

Oct 19 2015, 11:53 PM · SRE
Krenair removed a project from T101824: Backport python-ldap3 package from Utopic to Precise / Trusty: Patch-For-Review.
Oct 19 2015, 11:50 PM · SRE, Cloud-Services
Dzahn triaged T101824: Backport python-ldap3 package from Utopic to Precise / Trusty as Medium priority.

What's still missing?

Oct 19 2015, 11:48 PM · SRE, Cloud-Services
RobH triaged T115950: reclaim tmh2* as spares or into mw* pool as Medium priority.

Indeed, thx for the linking (I've now resolved the second of the two due to link ;)

Oct 19 2015, 11:48 PM · SRE
Krenair reassigned T105009: videoscaler naming conventions from Krenair to Joe.
Oct 19 2015, 11:47 PM · SRE
Dzahn triaged T114638: Add the puppet CA to the certification authorities trusted by our systems, on demand as Medium priority.
Oct 19 2015, 11:47 PM · SRE, Patch-For-Review, Puppet
Dzahn triaged T114661: make critical icinga services always send email but keep honoring timezones for pages as Medium priority.
Oct 19 2015, 11:47 PM · SRE, Icinga
Krenair closed T105009: videoscaler naming conventions as Resolved.

See also T115950 and https://gerrit.wikimedia.org/r/#/c/242127/

Oct 19 2015, 11:47 PM · SRE
Dzahn claimed T114661: make critical icinga services always send email but keep honoring timezones for pages.
Oct 19 2015, 11:46 PM · SRE, Icinga
Dzahn triaged T114937: salt still has issues with grain selection? as Medium priority.
Oct 19 2015, 11:46 PM · SRE, Salt
Krenair renamed T115952: relabel tmh1001/mw1259 & tmh1002/mw1260 from relabel tmh1001/mw1259 & tmh1001/tmh1002 to relabel tmh1001/mw1259 & tmh1002/mw1260.
Oct 19 2015, 11:45 PM · SRE, ops-eqiad
Dzahn triaged T113714: Separate /var on restbase as Medium priority.
Oct 19 2015, 11:43 PM · Cassandra, SRE, Patch-For-Review, RESTBase-architecture, Services
Krenair added a comment to T115950: reclaim tmh2* as spares or into mw* pool.

(See also T84823 and T84812)

Oct 19 2015, 11:41 PM · SRE
RobH created T115952: relabel tmh1001/mw1259 & tmh1002/mw1260.
Oct 19 2015, 11:40 PM · SRE, ops-eqiad
RobH created T115950: reclaim tmh2* as spares or into mw* pool.
Oct 19 2015, 11:39 PM · SRE
gerritbot added a project to T114020: Need an administrative front end for BounceHandler : Patch-For-Review.
Oct 19 2015, 11:39 PM · MW-1.27-release (WMF-deploy-2015-10-27_(1.27.0-wmf.4)), SRE, Patch-For-Review, MediaWiki-extensions-BounceHandler
gerritbot added a comment to T114020: Need an administrative front end for BounceHandler .

Change 247481 had a related patch set uploaded (by Legoktm):
Send bounce and unsubscribe counts to graphite

Oct 19 2015, 11:39 PM · MW-1.27-release (WMF-deploy-2015-10-27_(1.27.0-wmf.4)), SRE, Patch-For-Review, MediaWiki-extensions-BounceHandler
Dzahn triaged T113597: pybal-related issue on host start can break service IPs... as High priority.
Oct 19 2015, 11:37 PM · Traffic-Icebox, SRE, PyBal
Legoktm added a comment to T114020: Need an administrative front end for BounceHandler .

We can send the data to graphite and put up some graphs on grafana.

Oct 19 2015, 11:34 PM · MW-1.27-release (WMF-deploy-2015-10-27_(1.27.0-wmf.4)), SRE, Patch-For-Review, MediaWiki-extensions-BounceHandler
bcampbell added a comment to T115935: Remove user from fr-online list.

Thank you!

Oct 19 2015, 11:34 PM · SRE
gerritbot added a project to T115372: power off Codfw-Cisco Servers: Patch-For-Review.
Oct 19 2015, 11:30 PM · SRE, Patch-For-Review, ops-codfw
gerritbot added a comment to T115372: power off Codfw-Cisco Servers.

Change 247480 had a related patch set uploaded (by Alex Monk):
Removed mgmt DNS for virt20[0-1][1-9], pc200[1-3], labsdb200[1-3] and WMF5709

Oct 19 2015, 11:30 PM · SRE, Patch-For-Review, ops-codfw
Dzahn added a comment to T113888: scap to snapshot1001 failing due to full disk.

looks like it was reinstalled, yep

Oct 19 2015, 11:28 PM · SRE
Dzahn closed T113888: scap to snapshot1001 failing due to full disk as Resolved.

Filesystem Size Used Avail Use% Mounted on
/dev/sda1 59G 25G 32G 44% /
..
dataset1001.wikimedia.org:/data 57T 40T 17T 71% /mnt/data

Oct 19 2015, 11:28 PM · SRE
Reedy added a comment to T34796: status.wikimedia.org has no (valid) HTTPS.

Over 2 years later, and we still have pages like status.watchmouse.com giving

Oct 19 2015, 11:27 PM · Patch-For-Review, SRE, Traffic, HTTPS
Dzahn triaged T113888: scap to snapshot1001 failing due to full disk as High priority.
Oct 19 2015, 11:27 PM · SRE
Dzahn added a comment to T113888: scap to snapshot1001 failing due to full disk.

I see enough disk space on snapshot1001 now. Don't know how it was resolved, but it looks it is.

Oct 19 2015, 11:27 PM · SRE
Dzahn assigned T113834: How to page when a host is down? to Andrew.
Oct 19 2015, 11:26 PM · SRE
Dzahn triaged T113834: How to page when a host is down? as Medium priority.
Oct 19 2015, 11:26 PM · SRE
Dzahn added a comment to T113834: How to page when a host is down?.

@Andrew Did that answer the question or should the ticket stay open?

Oct 19 2015, 11:25 PM · SRE
Dzahn triaged T114018: Booleans in hiera may be harmful as Medium priority.
Oct 19 2015, 11:23 PM · cloud-services-team (Kanban), SRE
Dzahn triaged T114020: Need an administrative front end for BounceHandler as Medium priority.
Oct 19 2015, 11:23 PM · MW-1.27-release (WMF-deploy-2015-10-27_(1.27.0-wmf.4)), SRE, Patch-For-Review, MediaWiki-extensions-BounceHandler