日韩性视频-久久久蜜桃-www中文字幕-在线中文字幕av-亚洲欧美一区二区三区四区-撸久久-香蕉视频一区-久久无码精品丰满人妻-国产高潮av-激情福利社-日韩av网址大全-国产精品久久999-日本五十路在线-性欧美在线-久久99精品波多结衣一区-男女午夜免费视频-黑人极品ⅴideos精品欧美棵-人人妻人人澡人人爽精品欧美一区-日韩一区在线看-欧美a级在线免费观看

歡迎訪問 生活随笔!

生活随笔

當前位置: 首頁 > 编程资源 > 编程问答 >内容正文

编程问答

OpenStack Pike Minimal安装:二、身份认证

發布時間:2025/6/17 编程问答 57 豆豆
生活随笔 收集整理的這篇文章主要介紹了 OpenStack Pike Minimal安装:二、身份认证 小編覺得挺不錯的,現在分享給大家,幫大家做個參考.

1.在controller節點上安裝keystone

root@controller ~]# yum install openstack-keystone httpd mod_wsgi -y

2.配置

[root@controller ~]# mv /etc/keystone/keystone.conf /etc/keystone/keystone.conf.bak [root@controller ~]# Keys=$(openssl rand -hex 10) [root@controller ~]# echo "kestone $Keys">>~/openstack.log

echo "
[DEFAULT]
admin_token = $Keys
verbose = true
[database]
connection = mysql+pymysql://keystone:keystone@controller/keystone
[token]
provider = fernet
driver = memcache
[memcache]
servers = controller:11211
">/etc/keystone/keystone.conf

[root@controller ~]# cat /etc/keystone/keystone.conf [DEFAULT] admin_token = 2562bfbfacd795832772 verbose = true [database] connection = mysql+pymysql://keystone:keystone@controller/keystone [token] provider = fernet driver = memcache [memcache] servers = controller:11211

3.填充數據庫

[root@controller ~]# su -s /bin/sh -c "keystone-manage db_sync" keystone #日志文件所處位置 [root@controller ~]# ll /var/log/keystone/keystone.log -rw-rw---- 1 root keystone 16062 Sep 4 01:05 /var/log/keystone/keystone.log #查看數據庫 [root@controller ~]# mysql -h controller -ukeystone -pkeystone -e "use keystone;show tables;"

4.初始化Fernet key

[root@controller ~]# keystone-manage fernet_setup --keystone-user keystone --keystone-group keystone [root@controller ~]# keystone-manage credential_setup --keystone-user keystone --keystone-group keystone

5.初始化服務

# keystone-manage bootstrap --bootstrap-password admin \
--bootstrap-admin-url http://controller:35357/v3/ \
--bootstrap-internal-url http://controller:5000/v3/ \
--bootstrap-public-url http://controller:5000/v3/ \
--bootstrap-region-id RegionOne

6.配置httpd

[root@controller ~]# vim /etc/httpd/conf/httpd.conf #修改ServerName為主機名 ServerName controller [root@controller ~]# ln -s /usr/share/keystone/wsgi-keystone.conf /etc/httpd/conf.d/ [root@controller ~]# systemctl enable httpd.service [root@controller ~]# systemctl start httpd.service

7.創建登陸腳本

[root@controller ~]# cat admin-openstack.sh export OS_PROJECT_DOMAIN_NAME=Default export OS_USER_DOMAIN_NAME=Default export OS_PROJECT_NAME=admin export OS_USERNAME=admin export OS_PASSWORD=admin export OS_AUTH_URL=http://controller:35357/v3 export OS_IDENTITY_API_VERSION=3 export OS_IMAGE_API_VERSION=2 [root@controller ~]# cat demo-openstack.sh export OS_PROJECT_DOMAIN_NAME=Default export OS_USER_DOMAIN_NAME=Default export OS_PROJECT_NAME=demo export OS_USERNAME=demo export OS_PASSWORD=demo export OS_AUTH_URL=http://controller:5000/v3 export OS_IDENTITY_API_VERSION=3 export OS_IMAGE_API_VERSION=2

8.創建domain, projects, users, and roles

#先使用腳本登陸admin [root@controller ~]# . admin-openstack.sh

①創建service project

openstack project create --domain default --description "Service Project" service

②創建demo project

openstack project create --domain default --description "Demo Project" demo

③創建demo user

openstack user create --domain default --password-prompt demo

④創建 user role

openstack role create user

⑤將user role添加到demo project和user

openstack role add --project demo --user demo user

9.驗證操作

①注銷登陸

[root@controller ~]# unset OS_AUTH_URL OS_PASSWORD

②驗證admin用戶

openstack --os-auth-url http://controller:35357/v3 --os-project-domain-name Default --os-user-domain-name Default --os-project-name admin --os-username admin token issue

③驗證demo用戶

openstack --os-auth-url http://controller:5000/v3 --os-project-domain-name Default --os-user-domain-name Default --os-project-name demo --os-username demo token issue


④使用腳本查看

[root@controller ~]# . admin-openstack.sh [root@controller ~]# openstack token issue

轉載于:https://blog.51cto.com/lullaby/2169980

《新程序員》:云原生和全面數字化實踐50位技術專家共同創作,文字、視頻、音頻交互閱讀

總結

以上是生活随笔為你收集整理的OpenStack Pike Minimal安装:二、身份认证的全部內容,希望文章能夠幫你解決所遇到的問題。

如果覺得生活随笔網站內容還不錯,歡迎將生活随笔推薦給好友。