易陆发现互联网技术论坛

 找回密码
 开始注册
查看: 3733|回复: 5
收起左侧

nova-status upgrade check fail

[复制链接]
发表于 2017-10-10 18:53:25 | 显示全部楼层 |阅读模式
购买主题 本主题需向作者支付 2 金钱 才能浏览
 楼主| 发表于 2017-10-10 18:56:20 | 显示全部楼层
cat /etc/nova/nova.conf |grep -v ^# | grep -v ^$. Y& T6 R* ^0 R; f* S0 B' c& ^
[DEFAULT]8 i& z+ ~- G# V% x0 c+ e
firewall_driver = nova.virt.firewall.NoopFirewallDriver" G) O8 d# h5 o2 D3 E+ F
use_neutron = True6 ^' P+ [4 l- d  \1 \# E2 [
my_ip = 192.168.221.30# f. @3 [" i) E3 ]) p$ s
transport_url = rabbit://openstack:rabbitpwd@ocataControl
2 a" |% G: f+ P. q) Eenabled_apis = osapi_compute,metadata9 w: b" S5 V! s$ T% }% V; i; X5 w7 I
[api]
' S0 ~/ o2 K& e- C; P* b: W/ S3 Bauth_strategy = keystone7 s  B5 e- R6 t% W% U
[api_database]) i7 I$ A% V. F& H7 S9 t, @
[barbican]
$ j7 a' x$ v1 u, ]( z8 N" |[cache]6 ^, [" j. w! @) j
[cells]# ~+ Z1 C: m3 @% t2 s) _
[cinder]
6 X/ a+ Z% \$ v6 N: L9 H4 e[cloudpipe]& N' \& e, A* S2 Y1 _
[conductor]
( m% h% \; |8 z7 X& F2 k: H9 W" [[console]
, v/ F/ F; B' @4 w[consoleauth]1 p- a$ B( ?0 w9 b0 T
[cors]
) x0 X: h4 l6 ?* V; B[cors.subdomain]: Y/ Y/ S9 \' `4 m; o' G) {, Q
[crypto]4 I& R6 [$ F2 t# k
[database]
6 @5 P" I& l$ e/ F* y[ephemeral_storage_encryption]
+ a$ a8 q0 z/ Q4 T[filter_scheduler]
# T* e5 Y7 i9 X& H  N. B0 T2 G[glance]
1 `5 ~" y; H2 L( m4 F4 S3 c/ J+ wapi_servers = http://ocataControl:9292
/ D5 G5 \$ U# v: J6 j[guestfs]
9 f7 ~  K& C, k[healthcheck]
; C+ C7 B. H4 D8 W0 E[hyperv]+ X0 I; w) R2 s& M# s
[image_file_url]
: A/ \: S, _" v  f[ironic]
2 m/ r3 T, [+ Z[key_manager]
, P1 L+ U6 G/ U& s[keystone_authtoken]: i0 R8 `) r6 U" |6 C) l5 P
password = novapass0 d- w7 _; p/ W* E3 _) O
username = nova* M0 i8 R2 T$ P7 {9 A2 v6 `; o
project_name = service_test, v( {/ b$ G: f/ w( }0 z
user_domain_name = default
8 f! o1 i& y7 tproject_domain_name = default
. p8 Q$ c2 X% @- z8 M0 A# e) xauth_type = password9 ^( f( P8 z8 A  ~& V# O/ k- Z7 k
memcached_servers = ocataControl:11211' h% k* U! U7 `, w$ t# F3 Q  v: }
auth_url = http://ocataControl:35357
0 f7 U: d$ M/ Pauth_uri = http://ocataControl:5000
0 S8 R5 J+ _# n4 M! `[libvirt]6 [0 L6 `7 r2 n3 M/ O' X- K8 x
[matchmaker_redis]- R8 x0 A; X0 G
[metrics]
7 Y& s1 l6 M& ~: W  T  l" j[mks]
( B: @3 S& X. ?1 y0 k( k+ ~[neutron]
- n% |, D! ?' o6 k$ V8 J, ?9 C: W[notifications]2 B. e5 d) X. h2 v" ~6 e1 [
[osapi_v21]6 G  b- A/ U, w9 V
[oslo_concurrency]: e1 N) |. \! Z9 T# l( X% h
lock_path = /var/lib/nova/tmp* |3 N8 ]- S, y7 n
[oslo_messaging_amqp]
& q% ?  B2 l9 K; \+ G+ e; w[oslo_messaging_kafka]
5 G5 V5 w, {4 A2 K6 E/ m( s' H( {) |1 l[oslo_messaging_notifications]$ Q" m& q) i- \4 o7 a
[oslo_messaging_rabbit]
( |/ y- }( F3 L4 `4 }# n/ d4 Q0 ~[oslo_messaging_zmq]
- y8 k. C& O3 @4 L$ T3 D2 M; N[oslo_middleware]
8 w& J" u, t  `2 k- y[oslo_policy]; w+ ]. M2 g0 k' \/ v3 K( i
[pci]6 O+ q- u# y: B3 v  @
[placement]( e# u% t6 N1 A/ W7 `* e* O# A
auth_url = http://ocataControl:35357/v3; y. M% Q7 O5 ]# n5 k$ k
password = placementpass2 C* D) R. [, Z$ O4 D# Z: p
username = placement
3 `9 s% D- ]- _2 ]2 r6 \# F( Ouser_domain_name = Default' {5 @2 i, }0 k7 [1 r3 G
auth_type = password
8 J: f+ Y! X* hproject_name = service_test
" Z8 P( [/ J& n; q! _project_domain_name = Default% w- G  Z. C' v5 ^! @
os_region_name = RegionTWO
) Z6 o! @% J, B5 o[quota]/ J8 ~; z% b  ~9 k8 @" `4 B& N" V
[rdp]8 Z) V: G0 ?* K& _
[remote_debug]
; a. @! \; w* C; o: E[scheduler]
4 ]( a! N% r# e. M# n  F[serial_console]/ D. Z" c2 I  c9 v8 @' C
[service_user]
/ r$ b% D' J( T9 |0 Q[spice]$ x) }' u, O% T) y6 k& _
[ssl]
2 ]- l; L" y  R9 Y/ w0 z- e; f[trusted_computing]$ B' e1 D# W& Q2 ]2 ^7 i
[upgrade_levels]
0 D7 R/ N: ^- Z% ]# B4 d5 q[vendordata_dynamic_auth]
( u& [+ o: W7 I# p+ I3 z[vmware]
3 I" `! F' p/ \0 X' ^4 Q[vnc]* N0 R) U9 T) u8 m4 `
novncproxy_base_url = http://ocataControl:6080/vnc_auto.html
9 D0 C% ~% A1 }0 q6 e) Pvncserver_proxyclient_address = 192.168.221.30
9 w0 [  ]/ X, U6 k+ e7 ^5 Pvncserver_listen = 0.0.0.0. f0 N& P8 W1 V1 m, y
enabled = True
% K3 s6 p6 ]$ o" ?  Q9 \" z# e' B[workarounds]9 }: B, M3 y' V
[wsgi]0 K2 V+ X. y0 g4 q/ O" O* K
[xenserver]" z) w! y5 u$ B2 h1 e" [
[xvp]
 楼主| 发表于 2017-10-10 18:57:31 | 显示全部楼层
ConfigFilesPermissionDeniedError: Failed to open some config files: /usr/share/nova/nova-dist.conf,/etc/nova/nova.conf.
 楼主| 发表于 2017-10-10 18:59:58 | 显示全部楼层
# vim /usr/share/nova/nova-dist.conf 1 C0 a( u2 c) o+ i. n. i

- k7 _6 T# Z6 J5 k1 n[DEFAULT]. G6 _* z2 h$ s
log_dir = /var/log/nova8 W- j2 z" J6 F% s1 b# s
state_path = /var/lib/nova; F$ M+ C& n; Q( P8 {
lock_path = /var/lib/nova/tmp' M7 _: y; h+ x. l6 I% \* D- K
dhcpbridge = /usr/bin/nova-dhcpbridge+ B4 Z  K9 u8 E1 s5 F
dhcpbridge_flagfile = /usr/share/nova/nova-dist.conf
& d$ ?( z( |! M6 u1 hdhcpbridge_flagfile = /etc/nova/nova.conf0 D& R2 e# ^- Q% `  A, f  h9 y
force_dhcp_release = True
' L9 W. ~: [% l0 yinjected_network_template = /usr/share/nova/interfaces.template
7 Q* _! E0 R) f  `  G' z" g" ?libvirt_nonblocking = True4 e7 c( L1 a& I4 w3 y; k+ q
libvirt_inject_partition = -1
% p9 l/ s5 m: w; b+ z8 dnetwork_manager = nova.network.manager.FlatDHCPManager
( ~9 s  s7 H4 {$ ]' \1 w# lcompute_driver = libvirt.LibvirtDriver
( s) A: N6 g% d. a4 C% W. `* \firewall_driver = nova.virt.libvirt.firewall.IptablesFirewallDriver+ s5 t* R1 Z7 V# Q9 X
rootwrap_config = /etc/nova/rootwrap.conf  ?0 v  e4 W) y; B2 A' r3 i6 p
use_stderr = False4 }/ ~3 a# y; e% I0 z7 b
) i8 g% z: `& h4 a# h
[database]% v6 u) B  m/ w
connection = mysql://nova:92e672789c1b9e@controller/nova
9 K1 s( E8 D  k2 x- A# |! ]max_retries = -1* Y7 p/ p$ _9 M9 J& `

  x0 }/ P- m& c3 [5 _+ w1 X6 [7 t[keystone_authtoken]& y8 U% x1 `5 i  N4 c4 A
auth_host = 192.168.2.20
% `" t" P% K6 \, nauth_port = 35357& C9 ^9 N6 o+ V7 T& v7 n/ X
auth_protocol = http
 楼主| 发表于 2017-10-10 19:01:22 | 显示全部楼层
# nova-status --log-file /var/log/nova/status.log upgrade check5 B  o7 I/ d5 U
Error:4 j* l; b& n- w- n- d2 y+ F
Traceback (most recent call last):
% r+ R0 `* E9 I2 c' o  File "/usr/lib/python2.7/site-packages/nova/cmd/status.py", line 459, in main7 }4 P$ [  m1 X( S5 v
    ret = fn(*fn_args, **fn_kwargs)
+ U% F" O: M1 H# A/ K9 `( F  P  File "/usr/lib/python2.7/site-packages/nova/cmd/status.py", line 389, in check$ Y7 h, E. q1 c  F. s' b
    result = func(self)1 ]  b2 I% E* V3 m3 i0 c
  File "/usr/lib/python2.7/site-packages/nova/cmd/status.py", line 203, in _check_placement
/ Y7 e' [3 e! X/ Q$ p4 k    versions = self._placement_get("/")) K8 L3 B" ]! u  u  W
  File "/usr/lib/python2.7/site-packages/nova/cmd/status.py", line 191, in _placement_get
- B* W: q1 o" t. Z+ C    return client.get(path, endpoint_filter=ks_filter).json()8 y) J0 e: x& _4 m  L; ?
  File "/usr/lib/python2.7/site-packages/keystoneauth1/session.py", line 845, in get
% ^% v) ~; m( z; S" K: {    return self.request(url, 'GET', **kwargs)
- I; B, @, W  ^, D( ?  File "/usr/lib/python2.7/site-packages/positional/__init__.py", line 101, in inner
  F9 f% z- x7 _! \) }  T( w    return wrapped(*args, **kwargs)4 P) t" R. S6 ]9 O5 {& F
  File "/usr/lib/python2.7/site-packages/keystoneauth1/session.py", line 742, in request
+ e- C/ S8 ]- U1 Y8 P    raise exceptions.from_response(resp, method, url). v2 o7 g5 {# y
ServiceUnavailable: Service Unavailable (HTTP 503) (Request-ID: req-b587bc53-eb59-4976-b0c7-27dcddd14260)
 楼主| 发表于 2017-10-10 19:05:50 | 显示全部楼层
ausearch -c httpd
' O, c  ?+ j( ^! s5 Mshows
9 k! k) L5 @% C  C1 x
& T7 b) k5 ]& e- M* k  htype=AVC msg=audit(1498146726.488:879): avc: denied { name_connect } for pid=6299 comm="httpd" dest=35357 scontext=system_u:system_r:httpd_t:s0 tcontext=system_u:object_r:keystone_port_t:s0 tclass=tcp_socket permissive=0
# b, J, c$ Y  oThis will make it work:
# h; ]6 j) W. ]  h1 H; D1 \0 Q" X7 ?: h. i' y! Y5 K, Z
setsebool -P httpd_can_network_connect 1
您需要登录后才可以回帖 登录 | 开始注册

本版积分规则

关闭

站长推荐上一条 /4 下一条

北京云银创陇科技有限公司以云计算运维,代码开发

QQ|返回首页|Archiver|小黑屋|易陆发现技术论坛 点击这里给我发消息

GMT+8, 2026-4-8 15:25 , Processed in 0.064586 second(s), 24 queries .

Powered by Discuz! X3.4 Licensed

© 2012-2025 Discuz! Team.

快速回复 返回顶部 返回列表