易陆发现互联网技术论坛

 找回密码
 开始注册
查看: 3732|回复: 5
收起左侧

nova-status upgrade check fail

[复制链接]
发表于 2017-10-10 18:53:25 | 显示全部楼层 |阅读模式
购买主题 本主题需向作者支付 2 金钱 才能浏览
 楼主| 发表于 2017-10-10 18:56:20 | 显示全部楼层
cat /etc/nova/nova.conf |grep -v ^# | grep -v ^$  N& p) G0 }, }  Y2 T9 T  B
[DEFAULT]
+ i4 B' f0 L7 Q+ Sfirewall_driver = nova.virt.firewall.NoopFirewallDriver
8 F  T" O; U' ]  r, iuse_neutron = True2 j; A4 t/ U' m* V. T
my_ip = 192.168.221.30
: Y# o/ m5 A9 Btransport_url = rabbit://openstack:rabbitpwd@ocataControl
) o6 f6 m2 G6 M: Uenabled_apis = osapi_compute,metadata
, I, Y! J1 _2 I9 T; m3 p8 @" n[api]
0 i$ _0 A& T9 R1 ^auth_strategy = keystone# ^/ C$ M, I8 h- c; G
[api_database]% @1 G. I5 ?& W1 l0 O; ^
[barbican]0 d. \% }9 V4 f* P" \" Z
[cache]6 [, U9 X6 U  \& L
[cells]8 r* h+ t1 F' _2 X9 M
[cinder]
% I4 m  c3 }/ p2 \# d[cloudpipe]
" S6 a8 x9 H" k5 ~6 B( c3 g& r[conductor], `* m3 T! l4 B0 p. i3 x7 O
[console]
$ c# Z$ E+ y7 ^$ z. a, b, j( z" i$ Y6 k[consoleauth]
8 N# @+ P9 A# g5 N( X3 `2 W[cors]/ ]8 }& S" B5 p; U* H! ]
[cors.subdomain]4 G+ |' u1 x5 ~/ I
[crypto]1 F2 [) k, c4 L: Y8 i* T
[database]
  ]1 A: O0 }5 J8 [* X$ \" \[ephemeral_storage_encryption]
- }% _$ R% F* t0 m: _/ I[filter_scheduler]
/ h( }/ c, S/ _/ ^/ a+ Q9 ^[glance]/ t7 K% i4 {  |
api_servers = http://ocataControl:9292' ^9 y  ?; Z# J* k4 b
[guestfs]
: x1 B9 Y' R/ r  z9 z* `& G! S/ t[healthcheck]3 |4 t5 i) r$ s7 r( u7 J
[hyperv]
- B4 C) B5 w8 s$ B5 V8 X( t" {[image_file_url]) d$ c% J3 i) U7 `
[ironic]- I! q- G; k+ j- ]
[key_manager]
; h/ M" f8 s  Q6 [[keystone_authtoken]
7 G2 l8 h% |& [) H/ M8 jpassword = novapass
) }$ Y2 r8 {6 Q8 h0 I3 [2 @' [7 pusername = nova/ r, u& p: C! z: D
project_name = service_test8 h6 D% d8 I- @6 \1 Y' u, G
user_domain_name = default' G7 V; F; Y0 [) B: Q6 }4 V7 L
project_domain_name = default
1 }  G& I- y+ V: \) }auth_type = password: o' y# i& ~3 R! I5 Q( Q! G
memcached_servers = ocataControl:11211& u9 H% L# R: y5 X6 S9 v
auth_url = http://ocataControl:353572 [! d/ q) ]  }6 `/ w
auth_uri = http://ocataControl:5000* y7 o$ o( G& ?: g2 P; L, z* t* ]
[libvirt]
; o9 s1 ^$ y9 G1 b" Q9 r3 L[matchmaker_redis]- h  [6 B$ |) K9 G) o+ `# h1 L
[metrics]: M* d) A- [; z4 Y
[mks]# I# d# H  O1 X+ _2 v5 k
[neutron]
3 v6 X( o2 U. g0 e[notifications]/ o- m) K  L: ~) K' [  P
[osapi_v21]
  Q: v2 x1 E: W& p' _. R% Q[oslo_concurrency]
; x' R& E* r1 C# t1 [lock_path = /var/lib/nova/tmp" V. ?$ t" G; ]( w9 B5 g) V3 a
[oslo_messaging_amqp]  y3 U- W0 x' ~! h
[oslo_messaging_kafka]5 u) x3 e0 l: d
[oslo_messaging_notifications]3 Q5 |/ J) L6 T
[oslo_messaging_rabbit]1 x+ H0 T$ }" o  G1 T: ?( O$ e
[oslo_messaging_zmq]
6 R! F& S3 k7 W; W1 I5 b[oslo_middleware]$ i. r6 n# ]! o! g  l
[oslo_policy]  F0 r0 m% O! D' y! I
[pci]+ k$ @7 d) J; R6 s
[placement]- A/ ~  a; O8 J# [* u: c- p1 F
auth_url = http://ocataControl:35357/v3$ d* q2 N; g: |  @
password = placementpass3 C: V8 a, j6 R  I/ E3 r# y
username = placement
# Z& |4 |1 ?  m" L1 U# |1 x0 ?user_domain_name = Default
& r' e9 [& ?- D9 p& xauth_type = password
$ L% ~' Y# ~7 \$ w% I; Z' _  nproject_name = service_test
- Y3 G$ s5 R) U1 Nproject_domain_name = Default
% P) @* \4 J4 P7 ]/ ~os_region_name = RegionTWO7 f; w- [0 D, x! H4 `; N6 Z: E
[quota]" V& }% [% r/ G6 g* j% o+ I7 M; f+ y
[rdp]8 m1 y2 D) T3 k* y- A3 O
[remote_debug]8 {; M  P) M( D
[scheduler]
; O8 L; h) Z, y[serial_console]
) u- m1 |. U7 y6 K: B. X# F/ m[service_user]1 Y2 v% V5 d  Y; l$ P( G) e: F
[spice]
3 s& f: i7 Y: {1 x% W/ F[ssl]3 R5 y7 J! b9 g: X
[trusted_computing]( w+ K1 z  [6 N1 P& a- O. T. x* J) \
[upgrade_levels]
( w8 x, p& b* J[vendordata_dynamic_auth]
- `( j( h% A7 J+ c& I* ?[vmware]
) B4 O( K# h0 f3 q* S2 D  b[vnc]) d, \# m$ q* @9 t
novncproxy_base_url = http://ocataControl:6080/vnc_auto.html+ }% x1 n9 t: @: Z9 Q+ t- o/ S, \
vncserver_proxyclient_address = 192.168.221.30
& S6 A# B  j5 }% Cvncserver_listen = 0.0.0.00 N; y9 ]- z1 X1 U0 F
enabled = True
( D& R. j+ Z  J! m5 M5 ^+ w[workarounds]
. x' t) ?0 d2 x/ d5 V[wsgi]  _- M' x: c7 P2 r5 n
[xenserver]) |5 ?$ Q" Q$ A( V* F) E
[xvp]
 楼主| 发表于 2017-10-10 18:57:31 | 显示全部楼层
ConfigFilesPermissionDeniedError: Failed to open some config files: /usr/share/nova/nova-dist.conf,/etc/nova/nova.conf.
 楼主| 发表于 2017-10-10 18:59:58 | 显示全部楼层
# vim /usr/share/nova/nova-dist.conf   h& L# i1 X  m. T! n/ m% @* q. ]
# k* ?. b- {% _- R. ?" T# e7 M
[DEFAULT]+ e* V' W- o) s8 C8 _
log_dir = /var/log/nova8 [: v+ [$ l& S9 l% e/ h) J7 h
state_path = /var/lib/nova
- {' {+ L2 q) B- k" _lock_path = /var/lib/nova/tmp; n* C$ e! l$ D# n" U2 V
dhcpbridge = /usr/bin/nova-dhcpbridge
4 b. `# ?& s* p- y: ddhcpbridge_flagfile = /usr/share/nova/nova-dist.conf0 K, c7 h7 d! m6 W% H8 w2 O
dhcpbridge_flagfile = /etc/nova/nova.conf- e1 o9 \% i6 |$ p
force_dhcp_release = True
6 Z+ x2 p" _+ G' |$ R1 F8 Cinjected_network_template = /usr/share/nova/interfaces.template9 ?" S4 V3 ]$ U  D" @/ R3 @+ X
libvirt_nonblocking = True4 c  [& Q! N6 \% B# C
libvirt_inject_partition = -1
( Q2 b( g% ^& e) u5 K3 \+ bnetwork_manager = nova.network.manager.FlatDHCPManager6 D/ B' d4 K/ ^1 D9 R3 `
compute_driver = libvirt.LibvirtDriver
! Z: N3 [, g. k0 C% n8 u8 bfirewall_driver = nova.virt.libvirt.firewall.IptablesFirewallDriver
# r2 J; l; i; D. N4 P0 k! r# [. G& O" g# Rrootwrap_config = /etc/nova/rootwrap.conf
9 h% c& R6 ?, g9 t( T$ M' {  H! yuse_stderr = False
5 {9 `2 D! q# ^- K5 C6 ^  Z. p" P' t1 t4 o' J# z
[database]
8 F5 q$ G% x% n6 econnection = mysql://nova:92e672789c1b9e@controller/nova
. V" o& p$ V' l" l" Rmax_retries = -1
- Y" }( o% x: T6 z. O
' X0 r8 p8 x  ?  i; Y[keystone_authtoken]
+ L8 M2 C  ?9 k/ G' W. Xauth_host = 192.168.2.20/ z2 M( n0 _, S% I
auth_port = 35357& O) v; J) r, y% l
auth_protocol = http
 楼主| 发表于 2017-10-10 19:01:22 | 显示全部楼层
# nova-status --log-file /var/log/nova/status.log upgrade check) F- X' X* S- F8 }/ h
Error:
  ?. D! A/ h4 E% nTraceback (most recent call last):
' g' x5 a: u/ b  File "/usr/lib/python2.7/site-packages/nova/cmd/status.py", line 459, in main
; m- J2 m7 h9 j( I2 o    ret = fn(*fn_args, **fn_kwargs)
5 D5 Y) D& S; g* m4 u  File "/usr/lib/python2.7/site-packages/nova/cmd/status.py", line 389, in check$ B: g1 {$ @& ]: ^$ n( T2 t
    result = func(self)
- @/ m# X' X) \, q& l$ w- s  File "/usr/lib/python2.7/site-packages/nova/cmd/status.py", line 203, in _check_placement
' F7 k3 R' y/ B+ X    versions = self._placement_get("/")
+ a$ u/ |0 b$ l2 b6 O0 i8 I  File "/usr/lib/python2.7/site-packages/nova/cmd/status.py", line 191, in _placement_get- A) C& x5 O" J4 A- V
    return client.get(path, endpoint_filter=ks_filter).json()
2 K1 y% p7 K' v6 k/ A! d: \  File "/usr/lib/python2.7/site-packages/keystoneauth1/session.py", line 845, in get
5 |4 b+ j! ~2 x8 T  O    return self.request(url, 'GET', **kwargs)& c& {0 w$ J. @% m# M% M
  File "/usr/lib/python2.7/site-packages/positional/__init__.py", line 101, in inner  M" _7 e, A% H- t
    return wrapped(*args, **kwargs)
, ^$ R8 A! y$ G/ W9 W( z  File "/usr/lib/python2.7/site-packages/keystoneauth1/session.py", line 742, in request
- ]: @  V6 k1 v& |2 v! j' A    raise exceptions.from_response(resp, method, url); I4 y, R% m4 Z9 X; o( M
ServiceUnavailable: Service Unavailable (HTTP 503) (Request-ID: req-b587bc53-eb59-4976-b0c7-27dcddd14260)
 楼主| 发表于 2017-10-10 19:05:50 | 显示全部楼层
ausearch -c httpd
# A  X/ Q$ x  ?. G5 o: Lshows; F4 H" m/ r; F& a0 @5 Z/ ?
: `9 ]: |; F+ V) _) z
type=AVC msg=audit(1498146726.488:879): avc: denied { name_connect } for pid=6299 comm="httpd" dest=35357 scontext=system_u:system_r:httpd_t:s0 tcontext=system_u:object_r:keystone_port_t:s0 tclass=tcp_socket permissive=0
4 T: r5 |( |3 KThis will make it work:
. r/ r/ \8 P2 r% D& z* W) S  h( K7 M9 L* v9 N' M0 ^
setsebool -P httpd_can_network_connect 1
您需要登录后才可以回帖 登录 | 开始注册

本版积分规则

关闭

站长推荐上一条 /4 下一条

北京云银创陇科技有限公司以云计算运维,代码开发

QQ|返回首页|Archiver|小黑屋|易陆发现技术论坛 点击这里给我发消息

GMT+8, 2026-4-8 15:22 , Processed in 0.045640 second(s), 24 queries .

Powered by Discuz! X3.4 Licensed

© 2012-2025 Discuz! Team.

快速回复 返回顶部 返回列表