易陆发现互联网技术论坛

 找回密码
 开始注册
查看: 3728|回复: 5
收起左侧

nova-status upgrade check fail

[复制链接]
发表于 2017-10-10 18:53:25 | 显示全部楼层 |阅读模式
购买主题 本主题需向作者支付 2 金钱 才能浏览
 楼主| 发表于 2017-10-10 18:56:20 | 显示全部楼层
cat /etc/nova/nova.conf |grep -v ^# | grep -v ^$. \3 q  A0 S8 X! _: V2 ?
[DEFAULT]0 h4 y& M4 `' E6 }
firewall_driver = nova.virt.firewall.NoopFirewallDriver: }& K3 p" p0 B$ z1 T
use_neutron = True6 B& ^# {( \5 A. M8 }! ]
my_ip = 192.168.221.30
, q0 ~" u4 l+ _) m5 e0 f. k% Z& Ptransport_url = rabbit://openstack:rabbitpwd@ocataControl
. y) J( _# p' ^: Z5 u5 Benabled_apis = osapi_compute,metadata
& u2 P- k3 z  I/ F) Y[api]
; k  v8 R. }2 ?' [auth_strategy = keystone' H/ s8 T% T$ h* v
[api_database]+ B4 |7 z6 l: f2 x7 i% x. O
[barbican]
( V( L& y4 V/ m3 i0 K, o4 Y8 G5 O[cache]0 V2 `3 I( ]1 @: e/ g
[cells]
8 d2 I: A6 _) n8 f[cinder]
& {/ c3 i) G2 Q  r5 D  ^9 s4 w[cloudpipe]
6 i" a" a( A: _6 s[conductor]) @3 J/ z8 }  q, W, e: E
[console]0 m5 s$ W9 w2 s( E6 r
[consoleauth]
- o7 A+ _* n9 B5 b6 p1 }6 n[cors]
; p* a0 U8 ~; J0 R5 c/ _& Y, [[cors.subdomain]+ v1 g7 y2 w7 |% f1 A/ B9 a
[crypto]$ L% \( E' e5 q4 o
[database]2 q' E9 I( R: B, a
[ephemeral_storage_encryption]
* n; G7 R; n0 R[filter_scheduler]
$ e) u9 c% O' B1 ?2 R2 N[glance]2 C  S( s: ~- ?1 x  Y# L
api_servers = http://ocataControl:9292
+ S, n1 M2 A* a: U/ i[guestfs]' U3 O7 g/ _* A; E* i, s
[healthcheck]! X) K; w/ r. K4 Y- c5 p
[hyperv]
8 d9 c( j% t! S. _( \% t" U[image_file_url]( l% T; h9 N) Z+ U
[ironic]* [. }2 b$ ~: s9 b9 e
[key_manager]: V. k5 w0 ~9 E, J7 u4 P1 a+ N& V
[keystone_authtoken]
; [0 U" g! B/ I. Upassword = novapass
9 A2 I+ b2 C4 z4 P$ eusername = nova
# U& i3 Q) y1 J* J" `project_name = service_test: D3 A9 L! g* Q* Q* R
user_domain_name = default
. G- c9 Y( V7 H6 v* w9 ?0 Jproject_domain_name = default' a$ J0 f: }/ Y- j
auth_type = password
4 Y2 n: [8 U' V$ c. z, i( ^* f8 zmemcached_servers = ocataControl:11211, `, C8 X6 M( w! ^% w& M
auth_url = http://ocataControl:35357
! v5 F7 B  e$ g1 C4 Wauth_uri = http://ocataControl:5000
2 c9 {2 E8 Z' Y' Q7 z[libvirt]! ]& J( e. T, r0 W; S% i* e
[matchmaker_redis]
! `7 H! [, P" u[metrics]7 g4 p. M! ^  B0 o5 k
[mks]7 T: G, X; Y' b3 P8 ?9 [
[neutron]
2 k& G* {/ a& a% b) H[notifications]  K( s$ X  Y6 [2 O9 l
[osapi_v21]) ?/ }0 P- y; b* {( T- m% d
[oslo_concurrency]8 _/ \* J! t" Q
lock_path = /var/lib/nova/tmp
+ [5 T5 a2 @. O( k& `# G[oslo_messaging_amqp]4 V  l& Z) }0 B4 \3 m+ J
[oslo_messaging_kafka]4 \& ?/ V& L+ d: j% B- w5 f4 }* \
[oslo_messaging_notifications]4 `9 a5 V1 ]! {' K2 f; Y  Q
[oslo_messaging_rabbit]6 ?" \& h4 u& o# d, k5 i' j
[oslo_messaging_zmq]
& n+ z: z3 ^/ d+ ~; r[oslo_middleware]; B8 F1 _6 o  T5 k- t
[oslo_policy]5 @) D5 K& k: G: b7 x* G7 m3 M
[pci]
0 m8 {2 h: ~. w! |[placement]0 W0 d' m7 g, V; H% O
auth_url = http://ocataControl:35357/v3! K* m! K* o1 S5 U6 @
password = placementpass
- ^$ u' ?( p1 Dusername = placement
  z; b+ M' v% s; b1 v& M* R1 @user_domain_name = Default8 \( U. J" |- H9 \9 q- Z: s8 u3 z
auth_type = password2 p( o: p6 ?5 E1 \' i9 o
project_name = service_test
3 E- Y" R% {; |: G% e  Pproject_domain_name = Default( e- F- k8 J! _* G% a3 Z. k' P' o0 x
os_region_name = RegionTWO' u& r5 C" r3 D8 C; n$ u7 b
[quota]' r" m( |/ H3 Y/ G' }8 ~  x2 s
[rdp]2 j" [3 ?- O$ y8 @3 S
[remote_debug]. d( `; \9 ]2 h$ `4 o  r
[scheduler]  h( G2 V6 T1 T4 W0 P
[serial_console]
8 i1 i( o: O4 |) U* @+ h  h[service_user]' H0 ~0 ?* t# u' f7 v
[spice]. M) S* e& c2 G: ?
[ssl]
& A) i, {' Y. p; U2 h$ T8 f. @[trusted_computing]
7 d3 P7 t, w0 _  |2 h) p% I[upgrade_levels]- u9 V6 C; C: C1 u; V4 W$ L  k+ ~
[vendordata_dynamic_auth]. F9 `3 ?3 J* K! _2 I$ u3 Z
[vmware]
# s8 |9 ?+ _( H5 H[vnc]
' O9 a4 ?1 @- ~( Qnovncproxy_base_url = http://ocataControl:6080/vnc_auto.html4 i8 b: m- K& s5 t9 T/ O
vncserver_proxyclient_address = 192.168.221.30
9 X* e# H! q4 ^) `& ~vncserver_listen = 0.0.0.0
" l" y& z+ E8 Menabled = True& _6 w# n+ G: n
[workarounds]0 q: J+ Z9 j6 ^
[wsgi]
% b; v) R' ^7 a9 Y) ~, H$ g# x- s[xenserver]
- e5 y5 u2 b/ J' I% L( s+ W/ H[xvp]
 楼主| 发表于 2017-10-10 18:57:31 | 显示全部楼层
ConfigFilesPermissionDeniedError: Failed to open some config files: /usr/share/nova/nova-dist.conf,/etc/nova/nova.conf.
 楼主| 发表于 2017-10-10 18:59:58 | 显示全部楼层
# vim /usr/share/nova/nova-dist.conf 0 g/ c5 F6 O, A9 K3 S" B. _+ [" e

- D* t9 y* a$ ][DEFAULT]
% F  p! C, V# \& @* J: Clog_dir = /var/log/nova
% ?0 {/ ]1 |: J! j5 |state_path = /var/lib/nova
: I* V# ?% B; s0 b; xlock_path = /var/lib/nova/tmp* I. x$ _2 \8 }9 q
dhcpbridge = /usr/bin/nova-dhcpbridge
/ I! l; t7 p' |- r" cdhcpbridge_flagfile = /usr/share/nova/nova-dist.conf
' ^5 Q/ A7 [; R* U6 @; w( bdhcpbridge_flagfile = /etc/nova/nova.conf) S  X( |$ o6 ]" s6 V# q& _; O
force_dhcp_release = True% R1 C( @8 A5 G- c, u
injected_network_template = /usr/share/nova/interfaces.template
. j! q4 q! J$ A- |/ I/ Dlibvirt_nonblocking = True- ?1 Y* w" _  v" c
libvirt_inject_partition = -1/ w+ @4 h; ]0 W# l7 J# I, ^2 O( D
network_manager = nova.network.manager.FlatDHCPManager
6 A9 N- J7 [4 j; u  A5 j5 w1 acompute_driver = libvirt.LibvirtDriver, H" c4 m# d4 G, S/ v
firewall_driver = nova.virt.libvirt.firewall.IptablesFirewallDriver9 X: \7 }' y' }
rootwrap_config = /etc/nova/rootwrap.conf: M6 |* v) w5 g- }7 Q: b0 u
use_stderr = False$ t- d7 \7 m& B! w- G1 ?6 b5 |+ K, [
0 U6 [# O  f. `6 B
[database]
1 A4 k, n1 ^  H9 i$ |& e9 V" r7 k3 zconnection = mysql://nova:92e672789c1b9e@controller/nova' y1 D0 J" C1 j/ e6 N
max_retries = -1
: n, ^# D4 x7 Q8 ]- \0 E$ [
  z# r% V: o8 ]6 l9 z& p3 A[keystone_authtoken]
' {3 F. k; M0 f+ w' S1 j! |0 o  sauth_host = 192.168.2.20
( @5 {" R' L6 b- u/ X- W5 oauth_port = 35357  k$ F& z. `7 g7 C
auth_protocol = http
 楼主| 发表于 2017-10-10 19:01:22 | 显示全部楼层
# nova-status --log-file /var/log/nova/status.log upgrade check. |" n2 T; h; \& o# ~
Error:3 h8 S1 Z( o+ W
Traceback (most recent call last):1 G4 G  y/ [8 q! r& ~9 X9 Z
  File "/usr/lib/python2.7/site-packages/nova/cmd/status.py", line 459, in main
4 ~4 `2 A* ?* ~. r& d4 H$ ?    ret = fn(*fn_args, **fn_kwargs)
; T% N0 S9 S7 A4 H( l- U  File "/usr/lib/python2.7/site-packages/nova/cmd/status.py", line 389, in check
6 E6 H( e; K' W/ V& H* p+ @    result = func(self)
6 v2 Y/ p2 _* v/ Q( ^6 Z  File "/usr/lib/python2.7/site-packages/nova/cmd/status.py", line 203, in _check_placement) t# P6 U% g+ l4 Z
    versions = self._placement_get("/")
; B( C$ T/ N6 s, F8 H1 i  File "/usr/lib/python2.7/site-packages/nova/cmd/status.py", line 191, in _placement_get. |7 i( }. j$ j& s- b
    return client.get(path, endpoint_filter=ks_filter).json()
3 ]6 P* a0 i# S0 @- z  File "/usr/lib/python2.7/site-packages/keystoneauth1/session.py", line 845, in get
% ?/ H1 A* v+ f# G. ~4 w, b    return self.request(url, 'GET', **kwargs)
' h; V" @  D9 c% \+ }/ l  File "/usr/lib/python2.7/site-packages/positional/__init__.py", line 101, in inner
# [6 B1 Y7 c  g/ r    return wrapped(*args, **kwargs)" P9 G8 D: Z' [9 D
  File "/usr/lib/python2.7/site-packages/keystoneauth1/session.py", line 742, in request5 x( [0 ^" O; c4 {; j3 [
    raise exceptions.from_response(resp, method, url)
- C. W4 G5 a1 @ServiceUnavailable: Service Unavailable (HTTP 503) (Request-ID: req-b587bc53-eb59-4976-b0c7-27dcddd14260)
 楼主| 发表于 2017-10-10 19:05:50 | 显示全部楼层
ausearch -c httpd! V$ ~* u# }! z4 M
shows
$ I0 a% u8 _9 a
. F7 b" B. ?1 L4 n3 @' a/ g1 Etype=AVC msg=audit(1498146726.488:879): avc: denied { name_connect } for pid=6299 comm="httpd" dest=35357 scontext=system_u:system_r:httpd_t:s0 tcontext=system_u:object_r:keystone_port_t:s0 tclass=tcp_socket permissive=0$ _- L' x' T. i; x
This will make it work:
5 y2 B7 h2 @7 h. u% h3 w1 J
( a/ b3 P' t* Z! x: P: u; Z/ \8 V5 ~: lsetsebool -P httpd_can_network_connect 1
您需要登录后才可以回帖 登录 | 开始注册

本版积分规则

关闭

站长推荐上一条 /4 下一条

北京云银创陇科技有限公司以云计算运维,代码开发

QQ|返回首页|Archiver|小黑屋|易陆发现技术论坛 ( 蜀ICP备2026014127号-1 )点击这里给我发消息

GMT+8, 2026-4-8 21:16 , Processed in 0.056395 second(s), 25 queries .

Powered by Discuz! X3.4 Licensed

© 2012-2025 Discuz! Team.

快速回复 返回顶部 返回列表