找回密码
 注册
查看: 3731|回复: 5

nova-status upgrade check fail

[复制链接]

1

主题

0

回帖

12

积分

管理员

积分
12
QQ
发表于 2017-10-10 18:53:25 | 显示全部楼层 |阅读模式
购买主题 本主题需向作者支付 2 金钱 才能浏览

1

主题

0

回帖

12

积分

管理员

积分
12
QQ
 楼主| 发表于 2017-10-10 18:56:20 | 显示全部楼层
cat /etc/nova/nova.conf |grep -v ^# | grep -v ^$
1 ~2 \1 J# w5 I* }7 e[DEFAULT]1 T0 N3 B/ r7 w# _4 F  t# Z% R
firewall_driver = nova.virt.firewall.NoopFirewallDriver$ e6 I" ~9 M+ w: I, Q
use_neutron = True( Y0 y  v4 `7 W4 h/ r
my_ip = 192.168.221.30) G  |, q$ ^% {7 O# c4 m
transport_url = rabbit://openstack:rabbitpwd@ocataControl& R- {9 r$ I+ C) \7 {
enabled_apis = osapi_compute,metadata
. E8 A* t) Q0 c4 x[api]
' v0 w. o6 F: u: Cauth_strategy = keystone! l0 o  s& D3 e3 A8 M. {+ V
[api_database]
: H1 Y6 d$ M3 l[barbican]. |& o/ t( C+ |3 U
[cache]
0 V, O+ }) b" P) i" g- s[cells]3 D% F0 }+ I6 E/ P: J  `
[cinder]4 ^: U) D4 S- Q
[cloudpipe]
' Y) P: F. A* e[conductor]/ O$ r* V; T& j5 K
[console]
/ ~# Y+ W, S# ]* H$ {* ?0 X2 `5 F[consoleauth]' M# |, Y* _7 t9 G7 w5 u
[cors]
, K) T+ Z6 _( O2 Q. M# o# ^[cors.subdomain]
; H, `; F% o, |. G. \4 L; a4 ~[crypto]
; a# v; S  [) n2 n1 w[database]
' I/ o5 d1 Q/ M2 N" l+ x[ephemeral_storage_encryption]
5 c+ n/ ]. L1 u! Q  j+ x* y[filter_scheduler]
1 c8 [. S, z# D2 h2 Z. x[glance]
6 M# M! y# z4 z3 {api_servers = http://ocataControl:9292
; f0 V& s2 j! T, l* I4 T7 z[guestfs]2 Q8 S% z" {4 y0 S0 f
[healthcheck]
" A) ~( f# F- L; L) N9 u8 G[hyperv]- F! d) g' Y9 B
[image_file_url]
2 [5 g0 |, M8 u+ s1 H: l[ironic]0 a$ ?+ c5 F$ i" P  `9 Z+ k" w) B
[key_manager]: I: M1 F9 p7 P# R
[keystone_authtoken]8 W3 h: ?* z- ^0 I; z
password = novapass
% q% g! X: R5 I4 I7 B, c1 busername = nova1 V9 i8 o2 V, G$ u
project_name = service_test
" ^: ^1 x2 o5 o& [user_domain_name = default
8 w) ]" z* @3 s; _, E7 `8 C5 ~project_domain_name = default
- g/ w+ k+ a$ I4 V6 C# Q% cauth_type = password
' ]' |( q* \( _7 {memcached_servers = ocataControl:11211& ?) U) w3 |/ z
auth_url = http://ocataControl:35357* z+ l6 W# `7 U7 `  x
auth_uri = http://ocataControl:5000( C8 K: m  B( J  U4 D1 b# f- S. @4 D2 S
[libvirt]
- v. _3 l6 ]' ^+ I: v[matchmaker_redis]
) o) I& n* C) J[metrics]
6 E3 N) q2 \9 e# y, K$ M[mks]3 B8 }" p, N) Z) z/ v8 Z" x
[neutron]
3 H( p$ D% l/ @6 }% F% I' X[notifications]6 N+ X! D  `3 l& F! t
[osapi_v21]! r+ i5 `; c6 I) k/ e
[oslo_concurrency]
' u( U* o: j4 F- mlock_path = /var/lib/nova/tmp
3 v/ C; w* t/ ^2 P8 z- Z% D[oslo_messaging_amqp]
3 d  H* V+ z. d7 j. U[oslo_messaging_kafka]' u1 o! M( ]& b( V( q, m
[oslo_messaging_notifications]9 k3 u& V  m/ H$ N
[oslo_messaging_rabbit]
. ~3 p' |3 O" Y. z1 U[oslo_messaging_zmq]) O: g0 M+ K3 _& Z( ]! V  W
[oslo_middleware]9 j5 s8 \- `. H6 S$ U4 y% g
[oslo_policy]
: C9 e1 J* r9 l5 o[pci]& {" x! X% r/ p" `& E' M! Q4 I4 j% A5 {
[placement]
6 ~- a* o) i  @. |( `auth_url = http://ocataControl:35357/v3
* z; K# p2 R- q; kpassword = placementpass, l+ g! J, `8 o. M
username = placement# o% q! N( C: A7 |+ \% b
user_domain_name = Default3 m8 v: L7 E, K) D8 y6 y: k
auth_type = password: a9 P/ p( ~8 M7 q% D
project_name = service_test
8 a; `8 e1 a  Oproject_domain_name = Default* Y+ C) d6 S* ^5 c6 l+ v" I) S
os_region_name = RegionTWO5 o8 v) W! z$ v- _# T5 W% q
[quota]2 N5 h6 O3 [$ f7 {& a) J
[rdp]
0 ^0 M# w3 S) L+ [% w# O[remote_debug]- n- Y: d% `+ _
[scheduler]
: l- K* W6 a3 ^2 G3 K6 a[serial_console]
- @* v7 n/ S; N, P0 i7 ^5 g[service_user]. T$ v5 b' M. p1 q; K7 t& y8 s
[spice]
3 k+ T, e- Z8 W- K% p3 u[ssl]) v/ H+ f2 C& V2 H! c7 o
[trusted_computing]
; \' Z" K$ p; D2 v4 n5 v- o* g# |3 Y[upgrade_levels]
" I" E3 s3 P, a8 W1 l[vendordata_dynamic_auth]1 \5 W* S; v6 y+ e! n& L& }4 A1 `& w
[vmware]3 H2 l- H9 @" A: b0 b
[vnc]
3 `# M- W: `1 V, ?; G4 Cnovncproxy_base_url = http://ocataControl:6080/vnc_auto.html; J; W3 A) c1 N' \) G
vncserver_proxyclient_address = 192.168.221.30
$ \& m5 t! P/ M4 N7 v' t, Ovncserver_listen = 0.0.0.05 L; H9 s! o1 A7 r6 r5 I$ @
enabled = True
4 c. `& U3 z& @' `6 w5 J$ E( c* E[workarounds]
7 g" R! ]  \. S& U* o[wsgi]( h2 Z2 }9 I0 ?
[xenserver]
: r" B8 {4 D+ e2 ~[xvp]

1

主题

0

回帖

12

积分

管理员

积分
12
QQ
 楼主| 发表于 2017-10-10 18:57:31 | 显示全部楼层
ConfigFilesPermissionDeniedError: Failed to open some config files: /usr/share/nova/nova-dist.conf,/etc/nova/nova.conf.

1

主题

0

回帖

12

积分

管理员

积分
12
QQ
 楼主| 发表于 2017-10-10 18:59:58 | 显示全部楼层
# vim /usr/share/nova/nova-dist.conf
8 m% D" P8 e$ N" a# r: ~. f! Z( d" G# D& P9 N! v% w" x
[DEFAULT]
- ~% e$ x1 @7 V, w! Llog_dir = /var/log/nova, x8 p* H1 N+ A& U4 ^! q# Q6 s2 V# ?
state_path = /var/lib/nova
1 v: d/ I$ B( e- q/ a8 [lock_path = /var/lib/nova/tmp) H# i: I' f4 H! L
dhcpbridge = /usr/bin/nova-dhcpbridge1 @% e; d/ Q) `+ J0 {& s- S
dhcpbridge_flagfile = /usr/share/nova/nova-dist.conf" z3 j1 x/ N/ Z
dhcpbridge_flagfile = /etc/nova/nova.conf0 [0 m6 x: h9 u+ e$ \( o
force_dhcp_release = True
( ~: }! s& U& |& C- y3 ginjected_network_template = /usr/share/nova/interfaces.template- V2 [( |+ h7 d+ e+ D3 H
libvirt_nonblocking = True) c) N6 v  l( v* \9 A
libvirt_inject_partition = -1
7 x; G  o2 ^: c: ?' xnetwork_manager = nova.network.manager.FlatDHCPManager* a& H, f( N  S  F* m5 ~
compute_driver = libvirt.LibvirtDriver
& |3 _3 D4 r- r0 ]: qfirewall_driver = nova.virt.libvirt.firewall.IptablesFirewallDriver  ^1 }7 z8 y! U% r4 U/ n$ c+ ~
rootwrap_config = /etc/nova/rootwrap.conf: R/ {( g6 D! g/ C8 h2 A+ ?3 a
use_stderr = False# n+ s8 v6 b+ F* f5 E
  ?, i! b3 A9 b" \+ s
[database]0 w, i4 z% U0 j( S$ M
connection = mysql://nova:92e672789c1b9e@controller/nova6 h, e( \7 X; r" j1 z
max_retries = -1, n) x; [, G; }: u! M# t7 M

6 t4 R4 r& C& V[keystone_authtoken]
% b2 n8 v; n7 V) G- {auth_host = 192.168.2.20
, S1 j. Z* g. R' Qauth_port = 35357
0 ?. |% @; m9 J3 m9 Bauth_protocol = http

1

主题

0

回帖

12

积分

管理员

积分
12
QQ
 楼主| 发表于 2017-10-10 19:01:22 | 显示全部楼层
# nova-status --log-file /var/log/nova/status.log upgrade check+ C+ o$ \% k( \
Error:6 h; \4 t  s/ j
Traceback (most recent call last):
. U, w2 p* X& {' H9 x; p  File "/usr/lib/python2.7/site-packages/nova/cmd/status.py", line 459, in main
  h4 N4 D; r0 G+ X( _    ret = fn(*fn_args, **fn_kwargs)
4 J: K7 x6 s8 B# E; H/ I  File "/usr/lib/python2.7/site-packages/nova/cmd/status.py", line 389, in check
5 N* B  U; ~0 W    result = func(self)
- f/ ]( I* n0 L+ f+ U, D  File "/usr/lib/python2.7/site-packages/nova/cmd/status.py", line 203, in _check_placement: w- Y8 O3 M# @, [! Y+ n
    versions = self._placement_get("/")
9 D* D! G/ A8 @1 q0 H& Q: a, ]  File "/usr/lib/python2.7/site-packages/nova/cmd/status.py", line 191, in _placement_get0 v! u3 M% q  T3 k, g5 V
    return client.get(path, endpoint_filter=ks_filter).json()
0 |( n& Q: q1 m1 k- M+ ?5 x  File "/usr/lib/python2.7/site-packages/keystoneauth1/session.py", line 845, in get6 V8 b2 h, l; q5 ^) b' e( l
    return self.request(url, 'GET', **kwargs)
5 V( M5 y* p* ]4 f) N  File "/usr/lib/python2.7/site-packages/positional/__init__.py", line 101, in inner& z' b7 x+ F' k4 A- n# ^
    return wrapped(*args, **kwargs)
  K1 p% D# p6 n7 M  File "/usr/lib/python2.7/site-packages/keystoneauth1/session.py", line 742, in request
% L1 C: D& R; G4 h" j! ]    raise exceptions.from_response(resp, method, url)/ |( [% V8 H5 T2 q% u2 @* m
ServiceUnavailable: Service Unavailable (HTTP 503) (Request-ID: req-b587bc53-eb59-4976-b0c7-27dcddd14260)

1

主题

0

回帖

12

积分

管理员

积分
12
QQ
 楼主| 发表于 2017-10-10 19:05:50 | 显示全部楼层
ausearch -c httpd
) H, w" A6 d. F7 h/ m* _/ ~shows' L1 ]' u$ O; |7 L
7 |9 _- C& M1 @' t: U1 D, R
type=AVC msg=audit(1498146726.488:879): avc: denied { name_connect } for pid=6299 comm="httpd" dest=35357 scontext=system_u:system_r:httpd_t:s0 tcontext=system_u:object_r:keystone_port_t:s0 tclass=tcp_socket permissive=0
% v& O; D' K* r# M) K' s8 jThis will make it work:
7 z. e( U) }1 _- f: o
3 v: N. V0 A5 ^% b% R9 Zsetsebool -P httpd_can_network_connect 1
您需要登录后才可以回帖 登录 | 注册

本版积分规则

返回首页|Archiver|手机版|小黑屋|易陆发现技术论坛 ( 蜀ICP备2026014127号-1 )

GMT+8, 2026-6-12 02:44 , Processed in 0.016297 second(s), 25 queries .

Powered by Discuz! X5.0

© 2001-2026 Discuz! Team.

快速回复 返回顶部 返回列表