找回密码
 注册
查看: 3729|回复: 5

nova-status upgrade check fail

[复制链接]

1

主题

0

回帖

12

积分

管理员

积分
12
QQ
发表于 2017-10-10 18:53:25 | 显示全部楼层 |阅读模式
购买主题 本主题需向作者支付 2 金钱 才能浏览

1

主题

0

回帖

12

积分

管理员

积分
12
QQ
 楼主| 发表于 2017-10-10 18:56:20 | 显示全部楼层
cat /etc/nova/nova.conf |grep -v ^# | grep -v ^$. n- P/ x/ |( n4 g% r8 G2 n: ?
[DEFAULT]0 c9 a3 D2 p( H5 [: b  ?, G
firewall_driver = nova.virt.firewall.NoopFirewallDriver
6 W, u/ Z; k2 x9 F. f2 T' Juse_neutron = True
: f7 E' u7 x7 _5 t' J8 m6 gmy_ip = 192.168.221.30: `2 p9 n  \7 ]! Q& ]6 f
transport_url = rabbit://openstack:rabbitpwd@ocataControl- L9 Z1 u5 E7 U0 J0 V7 z) Q
enabled_apis = osapi_compute,metadata0 l( K5 B' [  _' H# h( I
[api]$ x& `/ }$ a0 j+ O
auth_strategy = keystone$ q. J5 B, u2 t, J' Y6 \0 J
[api_database]
+ t' q  O% X4 Z/ I[barbican]/ E- G8 H4 [- C, Q
[cache]5 f2 T# m5 k0 r' q
[cells]
- t7 S* L' A# W$ }$ ^7 ?3 n8 T[cinder]
" X$ C$ Y, b" o& ^5 g( V# }, v9 U' e1 n[cloudpipe]. L& P  G  G% R+ j
[conductor]
/ S1 v7 K8 o% b$ L0 o[console]' S9 t/ W4 L) L
[consoleauth]
: T+ U: ?3 [& i- I; B- L, P[cors], h! p4 z5 n- @$ C! t! R! I+ b
[cors.subdomain]
' t$ K9 h- J7 _) O; V[crypto]0 z, @1 \1 Z7 o
[database]( D+ k; z! A( X) _/ Y: S
[ephemeral_storage_encryption]
4 U4 {7 Y# r; C/ |& B[filter_scheduler]
4 i2 x. c- T6 Y6 f, G8 J[glance]
* v# P5 B6 N) K: h9 G5 o" mapi_servers = http://ocataControl:9292
4 P( z% h  y! `[guestfs]6 Z& |6 |! v$ K' R& D0 Q( D' u
[healthcheck]
3 Z3 n5 e& z  d0 `4 r[hyperv]
6 E  c, u' n1 I" L[image_file_url]1 o; `8 }6 u: L8 ?7 U) M
[ironic]
9 ^" W1 D2 A; _$ {: y[key_manager]
7 f+ l  k+ K3 h. Y; X[keystone_authtoken]: X6 k# R2 Q7 `4 D" ^6 T; m
password = novapass  u4 A$ r6 @. @+ \7 ~; L+ g) z
username = nova. n( Y4 ~$ Z5 d3 A* E* o2 [& e4 V
project_name = service_test3 N9 M+ I4 H# l/ S" d1 p
user_domain_name = default
8 l3 D3 s& U2 f9 _7 [: X% Yproject_domain_name = default
8 c& W& _. f) m' f% |& Hauth_type = password
* h6 h" c3 U. y: |$ s, Qmemcached_servers = ocataControl:11211/ ?0 Y" W' [3 q/ t
auth_url = http://ocataControl:35357
6 q' k7 O, G0 S: p+ l1 F# Xauth_uri = http://ocataControl:5000
# Q  U; B6 d) V/ r- c5 y[libvirt]
& H2 E+ q* e( O+ c9 {[matchmaker_redis]
- i; d. c2 U# m  j) h[metrics]
' y! O- O; N$ G3 b, t[mks]/ W* `: K( ]9 H! ?8 Z4 G
[neutron]; t/ b+ q; E# n2 U. ~+ u
[notifications]- X6 s( r1 _( z! E0 s$ E* G& h
[osapi_v21]
) B/ Y3 [2 \: I0 j' T* E: R* Q[oslo_concurrency]
  c) |9 W0 l1 h. X# i1 w' ?lock_path = /var/lib/nova/tmp
2 ?* G' B4 P3 ][oslo_messaging_amqp]
, j1 C) V# n, x2 F, U- a[oslo_messaging_kafka]
1 A9 v. w; Y2 w$ O' x- P[oslo_messaging_notifications]0 m1 Q( w/ G) j* s  z
[oslo_messaging_rabbit]
5 {7 Y: c) h' }: W; p* |+ k7 y' p$ o[oslo_messaging_zmq]
5 w# g) n  w( g2 {1 G0 {5 f5 j[oslo_middleware]. A$ q2 M1 E% D- v4 G9 b1 R
[oslo_policy]9 u* \% r' O# Y# u8 a$ G
[pci]
+ h- \& |' W: e) O9 Q1 Y$ ^3 X8 h[placement]5 B; g% c! L. W+ T! v6 E+ G
auth_url = http://ocataControl:35357/v3
- U2 c4 l6 G9 Z5 y5 spassword = placementpass7 R: h9 {* j  X$ n# N
username = placement
% K- J) `: ]: s; Nuser_domain_name = Default
4 R( C' c; a) J  o0 Vauth_type = password
& c* p, a( f8 O* r* }$ oproject_name = service_test' D% Q) J: j  A; |
project_domain_name = Default  k( K  W/ X( Z/ c8 [" D: m2 g
os_region_name = RegionTWO
4 U5 I" {- z  t' \  q( y1 @' C[quota], p( f) M. z# f; S, L4 a
[rdp]3 ^7 f' S! i7 P
[remote_debug]# K9 F: l& f6 g$ V1 Z9 x  C
[scheduler]- l$ C+ _! P! h- j  E0 _
[serial_console]
. n# u5 @7 q! @* u' O/ |[service_user]
6 Q  r, S# S! c& W* a6 t/ l5 \[spice]/ b" x2 H+ I- c5 M9 o* P% W
[ssl]" L  v+ Y1 `1 v1 t1 c5 O
[trusted_computing]5 H4 @" x* j& M
[upgrade_levels]
* q+ Y& E! u: @; p[vendordata_dynamic_auth]
8 y" `# V3 \% C$ V( \% p8 g[vmware]6 G: X1 H2 l/ E2 {2 Q1 O5 p
[vnc]& a: c; Y4 ~  G! L: o3 P: u( I! d9 h
novncproxy_base_url = http://ocataControl:6080/vnc_auto.html
% f6 d0 @1 @& K* q# c! Wvncserver_proxyclient_address = 192.168.221.30% Z6 X8 P$ H0 D# {
vncserver_listen = 0.0.0.0# a: L7 S% u: B( J0 r. _
enabled = True
; K4 A8 C5 B" s' {3 C% q) r[workarounds]
: g, L% h* g" @9 @2 w[wsgi]
& K- Z. y7 K+ N- a- Z[xenserver]
( g" B6 F- w* r, a3 [[xvp]

1

主题

0

回帖

12

积分

管理员

积分
12
QQ
 楼主| 发表于 2017-10-10 18:57:31 | 显示全部楼层
ConfigFilesPermissionDeniedError: Failed to open some config files: /usr/share/nova/nova-dist.conf,/etc/nova/nova.conf.

1

主题

0

回帖

12

积分

管理员

积分
12
QQ
 楼主| 发表于 2017-10-10 18:59:58 | 显示全部楼层
# vim /usr/share/nova/nova-dist.conf
8 I/ w5 i7 L; b# J/ u1 M
# g! ^; j* q$ Y) Y, Z[DEFAULT]
, z% Q" U% @7 f: W- Ulog_dir = /var/log/nova
- a: y5 T" @0 I# d5 ?: T$ ^state_path = /var/lib/nova
( A( K0 X9 l8 Ulock_path = /var/lib/nova/tmp, `- u8 _0 Q2 _1 ]
dhcpbridge = /usr/bin/nova-dhcpbridge
2 x# a9 l' Q' Kdhcpbridge_flagfile = /usr/share/nova/nova-dist.conf
( Q5 L, {/ m) K! x6 cdhcpbridge_flagfile = /etc/nova/nova.conf
: ^5 x4 e5 x# C& f" sforce_dhcp_release = True
) m/ M9 d  a1 [, k) }8 t. ]injected_network_template = /usr/share/nova/interfaces.template
9 a: o* N  j" M" p! x; R; g* flibvirt_nonblocking = True
+ H* m) [$ M0 e" Xlibvirt_inject_partition = -1: ~8 _" L" g0 c9 x% {4 I  d  X, z, i
network_manager = nova.network.manager.FlatDHCPManager5 S% {  d, s; e3 e7 c: o
compute_driver = libvirt.LibvirtDriver* f5 T) q2 n  u( I0 }
firewall_driver = nova.virt.libvirt.firewall.IptablesFirewallDriver
" f6 Q( u6 J- ?, W1 Irootwrap_config = /etc/nova/rootwrap.conf
" Z6 ]( c3 F. R! ause_stderr = False
* p- T# q2 t* N2 U5 Q2 j( n4 {. A* I' g2 G
[database]
( p& R' r7 Y* U& Vconnection = mysql://nova:92e672789c1b9e@controller/nova# ?1 ~# c; U4 k  F2 v! d
max_retries = -1
4 k6 H+ T3 r2 {5 D0 i- H; S$ T9 V& L3 d- t$ i' c! U4 i
[keystone_authtoken], y/ I6 o  ]+ t8 l. F
auth_host = 192.168.2.20
! T/ ]" q/ `. Y. Q$ S. ~' Jauth_port = 35357) m( r5 M4 ^" Z3 L7 |7 x
auth_protocol = http

1

主题

0

回帖

12

积分

管理员

积分
12
QQ
 楼主| 发表于 2017-10-10 19:01:22 | 显示全部楼层
# nova-status --log-file /var/log/nova/status.log upgrade check# q0 J2 v2 e* `* V
Error:
8 o& k2 R5 Y$ P/ U" mTraceback (most recent call last):
0 \% l; |8 D" A3 g; O  File "/usr/lib/python2.7/site-packages/nova/cmd/status.py", line 459, in main
/ w8 U7 H7 p1 h" J' O+ R; Z! X" j    ret = fn(*fn_args, **fn_kwargs)
+ v& X3 o- {  M" B/ L$ J. N% ?7 W* V  File "/usr/lib/python2.7/site-packages/nova/cmd/status.py", line 389, in check
" J: b) `+ K* |! p  w    result = func(self)# ]; }; J  u0 V" c6 r
  File "/usr/lib/python2.7/site-packages/nova/cmd/status.py", line 203, in _check_placement! m# |- i  f; h) L) U
    versions = self._placement_get("/")
, `& q1 r$ s/ d. P4 E' n, o1 \  File "/usr/lib/python2.7/site-packages/nova/cmd/status.py", line 191, in _placement_get; g( C/ W! |* R1 Z
    return client.get(path, endpoint_filter=ks_filter).json()! J6 b+ B% b; c0 S% `/ S6 |( e! N
  File "/usr/lib/python2.7/site-packages/keystoneauth1/session.py", line 845, in get
8 n( [% ^& N; @    return self.request(url, 'GET', **kwargs)
  P2 A" I0 @$ ?3 T  File "/usr/lib/python2.7/site-packages/positional/__init__.py", line 101, in inner
1 O" G; @1 a3 f8 ~" ]1 x1 f    return wrapped(*args, **kwargs)8 u4 T) \  h, c* {8 r" p5 U7 u
  File "/usr/lib/python2.7/site-packages/keystoneauth1/session.py", line 742, in request0 `/ }# v: i/ k) g( x2 Z
    raise exceptions.from_response(resp, method, url)0 X4 b; j9 T0 p( H0 ]) C& o- w# N9 O+ f- z
ServiceUnavailable: Service Unavailable (HTTP 503) (Request-ID: req-b587bc53-eb59-4976-b0c7-27dcddd14260)

1

主题

0

回帖

12

积分

管理员

积分
12
QQ
 楼主| 发表于 2017-10-10 19:05:50 | 显示全部楼层
ausearch -c httpd
8 i8 Y$ s8 C4 S9 j: M0 }shows+ W+ ~4 |; b3 @3 R
* r* F, b6 T& M4 Y, ^  M. x
type=AVC msg=audit(1498146726.488:879): avc: denied { name_connect } for pid=6299 comm="httpd" dest=35357 scontext=system_u:system_r:httpd_t:s0 tcontext=system_u:object_r:keystone_port_t:s0 tclass=tcp_socket permissive=0
; Q) j  y" S5 A  l' k4 u4 nThis will make it work:
& L6 u: f; G" n
7 h" {1 s1 w- |  |; Y% ~setsebool -P httpd_can_network_connect 1
您需要登录后才可以回帖 登录 | 注册

本版积分规则

返回首页|Archiver|手机版|小黑屋|易陆发现技术论坛 ( 蜀ICP备2026014127号-1 )

GMT+8, 2026-6-12 01:28 , Processed in 0.017463 second(s), 25 queries .

Powered by Discuz! X5.0

© 2001-2026 Discuz! Team.

快速回复 返回顶部 返回列表