Nothing stands out as obviously-wrong in your configuration, so I'd suggest starting with the following to debug:
Enable debug mode in keystone.conf and watch the log files in both keystone and barbican (those produced by auth_token) and attempt your request against barbican again. Next, ensure that the credentials in your [filter:keystone_v3_authtoken] sections of paste config are valid by using them to manually get a token with the client. On Tue, Apr 7, 2015 at 1:34 PM, Asha Seshagiri <[email protected]> wrote: > Hi All , > > Could anyone please help me on this integration issue. > I am unable to authenticate with keystone V3 for Barbican curl command > .I have followed the procedure given in the following link : > > https://github.com/cloudkeep/barbican/wiki/Integration-with-Keystone-V3-API > > I was unable to authenticate with the keystone V3 even though the right > token was provided in the curl command > Please find the command to get the token and the curl command to post the > secret . > > [root@keystone-versiontest ~]# openstack --insecure token issue *(Command > to get token from keystone v3)* > +------------+----------------------------------+ > | Field | Value | > +------------+----------------------------------+ > | expires | 2015-04-07T18:26:13.835641Z | > |* id | f28b93f27cce4bc09f9ac50d84bde736 |* > | project_id | 9d37f9ecc481422aa8ab53674cb82410 | > | user_id | e7d02ed8e7e64b01a1d66bb86ffa90d8 | > +------------+----------------------------------+ > > [root@keystone-versiontest ~]# curl -X POST -H > 'content-type:application/json' -H 'X-Project-Id:12345' \ > > -H "X-Auth-Token:*f28b93f27cce4bc09f9ac50d84bde736*" -d '{"payload": > "my-secret-here", "payload_content_type": "text/plain"}' > http://localhost:9311/v1/secrets > *Authentication required*[root@keystone-versiontest ~]# > > The contents of the admin.opensrc file is as given below : > > [root@keystone-versiontest ~]# cat admin.openrc > export OS_USERNAME=admin > export OS_TENANT_NAME=admin > export OS_PASSWORD=admin > export OS_AUTH_URL=https://169.54.204.69:35357/v3 > export OS_REGION_NAME=RegionOne > export OS_IDENTITY_API_VERSION=3 > export OS_USER_DOMAIN_ID=default > export OS_PROJECT_DOMAIN_ID=default > > > And also I have attached the barbican-api-paste.ini and > barbican-admin-paste.ini files. > > I would like to know why the curl command for posting the secret is not > geting authenticated with Keystone V3 > > Any help would highly be appreciated. > -- > *Thanks and Regards,* > *Asha Seshagiri* > > __________________________________________________________________________ > OpenStack Development Mailing List (not for usage questions) > Unsubscribe: [email protected]?subject:unsubscribe > http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack-dev > >
__________________________________________________________________________ OpenStack Development Mailing List (not for usage questions) Unsubscribe: [email protected]?subject:unsubscribe http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack-dev
