Re: [Openstack] How to generate an API key
Hello again, Basically I am using Openstack itself, keystone folsom in particular. I understand then the API keys are just user's passwords? Kind regards. On Fri, Feb 8, 2013 at 2:47 PM, Anne Gentle wrote: > > > > On Fri, Feb 8, 2013 at 8:43 AM, Emilio García < > emilio.gar...@cloudreach.co.uk> wrote: > >> Thank your for taking your time answering. >> >> I am aware about this not being a Zenoss list, so this was just to give a >> little bit of background. I can only find this sentence concerning API keys: >> >> *Note: An API key — provided by some cloud providers auth systems. You >> or your OpenStack provider's administrator/support staff can revoke it and >> generate a new one. While an authentication token can have a short >> lifespan, an API key lasts until it is regenerated.* >> >> However I cannot see anywhere any reference on how to generate API keys >> (not tokens). It is just like some kind of holy grail which is mentioned >> but anyone really knows where exactly is. Am I overlooking something very >> obvious? Closest reference I found suggested that the API key could be just >> a user's password. Is that so? or is a dead end? >> >> > API keys are specific to the provider. For example, Rackspace lets their > users authenticate with either a username and password or a username and > API key. See: > > http://docs.rackspace.com/servers/api/v2/cs-devguide/content/curl_auth.html > > >> In a nutshell I am very confused about what is a API key exactly and how >> can they be generated (not a token). >> >> > I think it really depends on your provider. Perhaps some others can chime > in. > > Anne > > >> Kind regards. >> >> >> On Fri, Feb 8, 2013 at 2:34 PM, Anne Gentle wrote: >> >>> Hi Emilio, >>> >>> This isn't exactly a Zenoss list, but look under Usage on this page: >>> https://github.com/zenoss/ZenPacks.zenoss.OpenStack >>> >>> The above page doesn't clearly explain the versions of different APIs >>> from different services. From OpenStack's release perspective for Folsom, >>> the Identity API is currently v2 and the Compute API is currently v2 (which >>> is identical to v1.1). So I'm not sure from the Zenoss perspective what API >>> they are providing support for. >>> >>> In the OpenStack docs, this page explains more about tokens and API >>> keys. API keys are typically given by a particular provider. Tokens are >>> handed out by Keystone, the Identity service under the OpenStack umbrella. >>> >>> http://docs.openstack.org/api/openstack-compute/programmer/content/getting-the-keys-to-the-kingdom.html >>> >>> This page describes the process of obtaining a token. >>> http://docs.openstack.org/api/quick-start/content/index.html#Getting-Credentials-a00665 >>> >>> Hope this helps. >>> Anne >>> >>> >>> On Fri, Feb 8, 2013 at 7:53 AM, Emilio García < >>> emilio.gar...@cloudreach.co.uk> wrote: >>> >>>> Hi all, >>>> >>>> I am trying to generate an API key for a Zenpack (Zenoss) to use the >>>> OpenStack API to gather stats. However I cannot see how to generate a API >>>> key in the documentation anywhere. How can I do that? Also is it possible >>>> to use the v1 of the API protocol in Folsom or only v2? >>>> >>>> Kind regards. >>>> >>>> >>>> Cloudreach Limited is a limited company registered in England with >>>> registered number 06975407 >>>> >>>> The above terms reflect a potential business arrangement, are provided >>>> solely as a basis for further discussion, >>>> and are not intended to be and do not constitute a legally binding >>>> obligation. No legally binding obligations >>>> will be created, implied, or inferred until an agreement in final form is >>>> executed in writing by all parties involved. >>>> >>>> This email may be confidential or privileged. If you received this >>>> communication by mistake, please don't forward >>>> it to anyone else, please erase all copies and attachments, and please let >>>> us know that it has gone to the wrong person. >>>> >>>> >>>> >>>> ___ >>>> Mailing list: https://launchpad.net/~openstack >>>> Post to : openstack@lists.launchpad.net >>>>
Re: [Openstack] How to generate an API key
Thank your for taking your time answering. I am aware about this not being a Zenoss list, so this was just to give a little bit of background. I can only find this sentence concerning API keys: *Note: An API key — provided by some cloud providers auth systems. You or your OpenStack provider's administrator/support staff can revoke it and generate a new one. While an authentication token can have a short lifespan, an API key lasts until it is regenerated.* However I cannot see anywhere any reference on how to generate API keys (not tokens). It is just like some kind of holy grail which is mentioned but anyone really knows where exactly is. Am I overlooking something very obvious? Closest reference I found suggested that the API key could be just a user's password. Is that so? or is a dead end? In a nutshell I am very confused about what is a API key exactly and how can they be generated (not a token). Kind regards. On Fri, Feb 8, 2013 at 2:34 PM, Anne Gentle wrote: > Hi Emilio, > > This isn't exactly a Zenoss list, but look under Usage on this page: > https://github.com/zenoss/ZenPacks.zenoss.OpenStack > > The above page doesn't clearly explain the versions of different APIs from > different services. From OpenStack's release perspective for Folsom, the > Identity API is currently v2 and the Compute API is currently v2 (which is > identical to v1.1). So I'm not sure from the Zenoss perspective what API > they are providing support for. > > In the OpenStack docs, this page explains more about tokens and API keys. > API keys are typically given by a particular provider. Tokens are handed > out by Keystone, the Identity service under the OpenStack umbrella. > > http://docs.openstack.org/api/openstack-compute/programmer/content/getting-the-keys-to-the-kingdom.html > > This page describes the process of obtaining a token. > http://docs.openstack.org/api/quick-start/content/index.html#Getting-Credentials-a00665 > > Hope this helps. > Anne > > > On Fri, Feb 8, 2013 at 7:53 AM, Emilio García < > emilio.gar...@cloudreach.co.uk> wrote: > >> Hi all, >> >> I am trying to generate an API key for a Zenpack (Zenoss) to use the >> OpenStack API to gather stats. However I cannot see how to generate a API >> key in the documentation anywhere. How can I do that? Also is it possible >> to use the v1 of the API protocol in Folsom or only v2? >> >> Kind regards. >> >> >> Cloudreach Limited is a limited company registered in England with >> registered number 06975407 >> >> The above terms reflect a potential business arrangement, are provided >> solely as a basis for further discussion, >> and are not intended to be and do not constitute a legally binding >> obligation. No legally binding obligations >> will be created, implied, or inferred until an agreement in final form is >> executed in writing by all parties involved. >> >> This email may be confidential or privileged. If you received this >> communication by mistake, please don't forward >> it to anyone else, please erase all copies and attachments, and please let >> us know that it has gone to the wrong person. >> >> >> >> ___ >> Mailing list: https://launchpad.net/~openstack >> Post to : openstack@lists.launchpad.net >> Unsubscribe : https://launchpad.net/~openstack >> More help : https://help.launchpad.net/ListHelp >> >> > -- *Emilio Garcia* Systems Developer, Cloudreach Limited [t] +44 20 7183 3893 (ext. 403) [m] +44 7958 036 743 Cloudreach Limited is a limited company registered in England with registered number 06975407 The above terms reflect a potential business arrangement, are provided solely as a basis for further discussion, and are not intended to be and do not constitute a legally binding obligation. No legally binding obligations will be created, implied, or inferred until an agreement in final form is executed in writing by all parties involved. This email may be confidential or privileged. If you received this communication by mistake, please don't forward it to anyone else, please erase all copies and attachments, and please let us know that it has gone to the wrong person. ___ Mailing list: https://launchpad.net/~openstack Post to : openstack@lists.launchpad.net Unsubscribe : https://launchpad.net/~openstack More help : https://help.launchpad.net/ListHelp
[Openstack] How to generate an API key
Hi all, I am trying to generate an API key for a Zenpack (Zenoss) to use the OpenStack API to gather stats. However I cannot see how to generate a API key in the documentation anywhere. How can I do that? Also is it possible to use the v1 of the API protocol in Folsom or only v2? Kind regards. Cloudreach Limited is a limited company registered in England with registered number 06975407 The above terms reflect a potential business arrangement, are provided solely as a basis for further discussion, and are not intended to be and do not constitute a legally binding obligation. No legally binding obligations will be created, implied, or inferred until an agreement in final form is executed in writing by all parties involved. This email may be confidential or privileged. If you received this communication by mistake, please don't forward it to anyone else, please erase all copies and attachments, and please let us know that it has gone to the wrong person. ___ Mailing list: https://launchpad.net/~openstack Post to : openstack@lists.launchpad.net Unsubscribe : https://launchpad.net/~openstack More help : https://help.launchpad.net/ListHelp
Re: [Openstack] I can use Swift in Horizon but not with the CLI...
Just for reference I made it work like this: root@ostack-sn01:/etc/swift# swift *-V 2.0* -A http://192.168.0.17:5000/v2.0-U Default:emilio.garcia -K xx list mycontainer Folder1 Folder1/Test Folder1/libjvm.so fxavcodecplugin-53.so Regards. On 7 December 2012 16:49, Emilio García wrote: > > > On 7 December 2012 16:45, Emilio García wrote: > >> This is what I get in the proxy log with I use Horizon: >> >> Dec 7 16:18:44 ostack-sn01 proxy-server Calling S3Token middleware. >> (txn: txaed5df4ce9074dfa92b80cf7c7eedaff) (client_ip: 192.168.0.13) >> Dec 7 16:18:44 ostack-sn01 proxy-server No Authorization header. >> skipping. (txn: txaed5df4ce9074dfa92b80cf7c7eedaff) (client_ip: >> 192.168.0.13) >> Dec 7 16:18:44 ostack-sn01 proxy-server Using identity: {'roles': >> [u'Member'], 'user': u'emilio.garcia', 'tenant': >> (u'4ff435e56eb94a74adba58bb8082c011', u'Default')} (txn: >> txaed5df4ce9074dfa92b80cf7c7eedaff) (client_ip: 192.168.0.13) >> Dec 7 16:18:44 ostack-sn01 proxy-server allow user with role Member as >> account admin (txn: tx1fca098a555d4a2198d49af145f63fa5) (client_ip: >> 192.168.0.13) >> Dec 7 16:18:44 ostack-sn01 proxy-server 192.168.0.13 192.168.0.13 >> 07/Dec/2012/16/18/44 GET >> /v1/AUTH_4ff435e56eb94a74adba58bb8082c011/mycontainer%3Fformat%3Djson%26marker%3Dfxavcodecplugin-53.so%26limit%3D1001%26delimiter%3D/ >> HTTP/1.0 200 - - de504887f25d4e03a736bcbbc099d6bf - 2 - >> tx1fca098a555d4a2198d49af145f63fa5 - 0.0058 >> >> And this is what I get if I use the CLI: >> >> Dec 7 16:08:01 ostack-sn01 proxy-server STDOUT: >> WARNING:keystone.middleware.auth_token:Unable to find authentication token >> in headers: {'webob._parsed_query_vars': (GET([]), ''), 'SCRIPT_NAME': '', >> 'REQUEST_METHOD': 'POST', 'PATH_INFO': '/auth/v2.0/tokens', >> 'SERVER_PROTOCOL': 'HTTP/1.0', 'CONTENT_LENGTH': '103', 'HTTP_USER_AGENT': >> 'python-keystoneclient', 'eventlet.posthooks': [], 'RAW_PATH_INFO': >> '/auth/v2.0/tokens', 'REMOTE_ADDR': '192.168.0.22', 'eventlet.input': >> , 'wsgi.url_scheme': 'http', >> 'SERVER_PORT': '8080', 'wsgi.input': > 0x2e45990>, 'HTTP_HOST': '192.168.0.18:8080', 'swift.cache': >> , >> 'wsgi.multithread': True, 'wsgi.version': (1, 0), 'SERVER_NAME': >> '192.168.0.18', 'GATEWAY_INTERFACE': 'CGI/1.1', 'wsgi.run_once': False, >> 'wsgi.errors': , >> 'wsgi.multiprocess': False, 'CONTENT_TYPE': 'application/json', >> 'HTTP_ACCEPT_ENCODING': 'gzip, deflate'} >> >> On 7 December 2012 16:39, Emilio García >> wrote: >> >>> I get a different error with that: >>> >>> # swift -A http://192.168.0.17:5000/auth/v1.0 -U service:swift -K >>> xxx stat >>> Account not found >>> >>> No matter what -K value I put. >>> >>> PS: I have keystone in .17 while swift proxy is in .18. >>> >>> Regards. >>> >>> On 7 December 2012 16:34, George Mihaiescu wrote: >>> >>>> ** ** ** >>>> >>>> Hi Emilio, >>>> >>>> ** ** >>>> >>>> Try to connect to the Keystone endpoint: >>>> >>>> swift -A http://192.168.0.18:5000/auth/v1.0 -U system:swift -K >>>> stat >>>> >>>> ** ** >>>> >>>> ** ** >>>> >>>> George >>>> >>>> ** ** >>>> >>>> ** ** >>>> -- >>>> >>>> *From:* >>>> openstack-bounces+george.mihaiescu=q9@lists.launchpad.net[mailto: >>>> openstack-bounces+george.mihaiescu=q9@lists.launchpad.net] *On >>>> Behalf Of *Emilio García >>>> *Sent:* Friday, December 07, 2012 11:11 AM >>>> *To:* openstack@lists.launchpad.net >>>> *Subject:* [Openstack] I can use Swift in Horizon but not with the >>>> CLI... >>>> >>>> ** ** >>>> >>>> Hi all, >>>> >>>> ** ** >>>> >>>> I configured swift, first with tempauth. I checked the CLI worked fine. >>
Re: [Openstack] I can use Swift in Horizon but not with the CLI...
On 7 December 2012 16:39, Emilio García wrote: > I get a different error with that: > > # swift -A http://192.168.0.17:5000/auth/v1.0 -U service:swift -K xxx > stat > Account not found > > No matter what -K value I put. > > PS: I have keystone in .17 while swift proxy is in .18. > > Regards. > > On 7 December 2012 16:34, George Mihaiescu wrote: > >> ** ** ** >> >> Hi Emilio, >> >> ** ** >> >> Try to connect to the Keystone endpoint: >> >> swift -A http://192.168.0.18:5000/auth/v1.0 -U system:swift -K >> stat >> >> ** ** >> >> ** ** >> >> George >> >> ** ** >> >> ** ** >> -- >> >> *From:* openstack-bounces+george.mihaiescu=q9@lists.launchpad.net[mailto: >> openstack-bounces+george.mihaiescu=q9@lists.launchpad.net] *On >> Behalf Of *Emilio García >> *Sent:* Friday, December 07, 2012 11:11 AM >> *To:* openstack@lists.launchpad.net >> *Subject:* [Openstack] I can use Swift in Horizon but not with the CLI... >> >> >> ** ** >> >> Hi all, >> >> ** ** >> >> I configured swift, first with tempauth. I checked the CLI worked fine.** >> ** >> >> **The**n I integrated with with keystone. Now I can create containers >> and folders from Horizon... but for some reason I cannot from the CLI. I >> always get 401! >> >> ** ** >> >> swift -A http://192.168.0.18:8080/auth/v1.0 -U system:swift -K >> stat >> >> Auth GET failed: http://192.168.0.18:8080/auth/v1.0/ 401 Unauthorized >> >> ** ** >> >> swift -A http://192.168.0.18:8080/auth/v1.0 -U admin:admin -K >> stat >> >> Auth GET failed: http://192.168.0.18:8080/auth/v1.0/ 401 Unauthorized >> >> ** ** >> >> I am using Folsom in Ubuntu 12.04. >> >> ** ** >> >> How do I have to use the CLI command now?! If the UI can create and >> upload objects... it has to be something wrong with how do I invoke the >> command now?! >> >> ** ** >> >> Regards. >> >> >> ** ** >> >> ** ** >> >> Cloudreach Limited is a limited company registered in England with >> registered number 06975407 >> >> ** ** >> >> **The** above terms reflect a potential business arrangement, are provided >> solely as a basis for further discussion, >> >> and are not intended to be and do not constitute a legally binding >> obligation. No legally binding obligations >> >> will be created, implied, or inferred until an agreement in final form is >> executed in writing by all parties involved. >> >> ** ** >> >> This email may be confidential or privileged. If you received this >> communication by mistake, please don't forward >> >> it to anyone else, please erase all copies and attachments, and please let >> us know that it has gone to the wrong person. >> >> ** ** >> >> > > > Cloudreach Limited is a limited company registered in England with registered number 06975407 The above terms reflect a potential business arrangement, are provided solely as a basis for further discussion, and are not intended to be and do not constitute a legally binding obligation. No legally binding obligations will be created, implied, or inferred until an agreement in final form is executed in writing by all parties involved. This email may be confidential or privileged. If you received this communication by mistake, please don't forward it to anyone else, please erase all copies and attachments, and please let us know that it has gone to the wrong person. ___ Mailing list: https://launchpad.net/~openstack Post to : openstack@lists.launchpad.net Unsubscribe : https://launchpad.net/~openstack More help : https://help.launchpad.net/ListHelp
Re: [Openstack] I can use Swift in Horizon but not with the CLI...
On 7 December 2012 16:45, Emilio García wrote: > This is what I get in the proxy log with I use Horizon: > > Dec 7 16:18:44 ostack-sn01 proxy-server Calling S3Token middleware. (txn: > txaed5df4ce9074dfa92b80cf7c7eedaff) (client_ip: 192.168.0.13) > Dec 7 16:18:44 ostack-sn01 proxy-server No Authorization header. > skipping. (txn: txaed5df4ce9074dfa92b80cf7c7eedaff) (client_ip: > 192.168.0.13) > Dec 7 16:18:44 ostack-sn01 proxy-server Using identity: {'roles': > [u'Member'], 'user': u'emilio.garcia', 'tenant': > (u'4ff435e56eb94a74adba58bb8082c011', u'Default')} (txn: > txaed5df4ce9074dfa92b80cf7c7eedaff) (client_ip: 192.168.0.13) > Dec 7 16:18:44 ostack-sn01 proxy-server allow user with role Member as > account admin (txn: tx1fca098a555d4a2198d49af145f63fa5) (client_ip: > 192.168.0.13) > Dec 7 16:18:44 ostack-sn01 proxy-server 192.168.0.13 192.168.0.13 > 07/Dec/2012/16/18/44 GET > /v1/AUTH_4ff435e56eb94a74adba58bb8082c011/mycontainer%3Fformat%3Djson%26marker%3Dfxavcodecplugin-53.so%26limit%3D1001%26delimiter%3D/ > HTTP/1.0 200 - - de504887f25d4e03a736bcbbc099d6bf - 2 - > tx1fca098a555d4a2198d49af145f63fa5 - 0.0058 > > And this is what I get if I use the CLI: > > Dec 7 16:08:01 ostack-sn01 proxy-server STDOUT: > WARNING:keystone.middleware.auth_token:Unable to find authentication token > in headers: {'webob._parsed_query_vars': (GET([]), ''), 'SCRIPT_NAME': '', > 'REQUEST_METHOD': 'POST', 'PATH_INFO': '/auth/v2.0/tokens', > 'SERVER_PROTOCOL': 'HTTP/1.0', 'CONTENT_LENGTH': '103', 'HTTP_USER_AGENT': > 'python-keystoneclient', 'eventlet.posthooks': [], 'RAW_PATH_INFO': > '/auth/v2.0/tokens', 'REMOTE_ADDR': '192.168.0.22', 'eventlet.input': > , 'wsgi.url_scheme': 'http', > 'SERVER_PORT': '8080', 'wsgi.input': 0x2e45990>, 'HTTP_HOST': '192.168.0.18:8080', 'swift.cache': > , > 'wsgi.multithread': True, 'wsgi.version': (1, 0), 'SERVER_NAME': > '192.168.0.18', 'GATEWAY_INTERFACE': 'CGI/1.1', 'wsgi.run_once': False, > 'wsgi.errors': , > 'wsgi.multiprocess': False, 'CONTENT_TYPE': 'application/json', > 'HTTP_ACCEPT_ENCODING': 'gzip, deflate'} > > On 7 December 2012 16:39, Emilio García wrote: > >> I get a different error with that: >> >> # swift -A http://192.168.0.17:5000/auth/v1.0 -U service:swift -K >> xxx stat >> Account not found >> >> No matter what -K value I put. >> >> PS: I have keystone in .17 while swift proxy is in .18. >> >> Regards. >> >> On 7 December 2012 16:34, George Mihaiescu wrote: >> >>> ** ** ** >>> >>> Hi Emilio, >>> >>> ** ** >>> >>> Try to connect to the Keystone endpoint: >>> >>> swift -A http://192.168.0.18:5000/auth/v1.0 -U system:swift -K >>> stat >>> >>> ** ** >>> >>> ** ** >>> >>> George >>> >>> ** ** >>> >>> ** ** >>> -- >>> >>> *From:* >>> openstack-bounces+george.mihaiescu=q9@lists.launchpad.net[mailto: >>> openstack-bounces+george.mihaiescu=q9@lists.launchpad.net] *On >>> Behalf Of *Emilio García >>> *Sent:* Friday, December 07, 2012 11:11 AM >>> *To:* openstack@lists.launchpad.net >>> *Subject:* [Openstack] I can use Swift in Horizon but not with the >>> CLI... >>> >>> ** ** >>> >>> Hi all, >>> >>> ** ** >>> >>> I configured swift, first with tempauth. I checked the CLI worked fine.* >>> *** >>> >>> **The**n I integrated with with keystone. Now I can create containers >>> and folders from Horizon... but for some reason I cannot from the CLI. I >>> always get 401! >>> >>> ** ** >>> >>> swift -A http://192.168.0.18:8080/auth/v1.0 -U system:swift -K >>> stat >>> >>> Auth GET failed: http://192.168.0.18:8080/auth/v1.0/ 401 Unauthorized*** >>> * >>> >>> ** ** >>> >>> swift -A http://192.168.0.18:8080/auth/v1.0 -U admin:admin -K >>> stat >>> >>&g
[Openstack] I can use Swift in Horizon but not with the CLI...
Hi all, I configured swift, first with tempauth. I checked the CLI worked fine. Then I integrated with with keystone. Now I can create containers and folders from Horizon... but for some reason I cannot from the CLI. I always get 401! swift -A http://192.168.0.18:8080/auth/v1.0 -U system:swift -K stat Auth GET failed: http://192.168.0.18:8080/auth/v1.0/ 401 Unauthorized swift -A http://192.168.0.18:8080/auth/v1.0 -U admin:admin -K stat Auth GET failed: http://192.168.0.18:8080/auth/v1.0/ 401 Unauthorized I am using Folsom in Ubuntu 12.04. How do I have to use the CLI command now?! If the UI can create and upload objects... it has to be something wrong with how do I invoke the command now?! Regards. Cloudreach Limited is a limited company registered in England with registered number 06975407 The above terms reflect a potential business arrangement, are provided solely as a basis for further discussion, and are not intended to be and do not constitute a legally binding obligation. No legally binding obligations will be created, implied, or inferred until an agreement in final form is executed in writing by all parties involved. This email may be confidential or privileged. If you received this communication by mistake, please don't forward it to anyone else, please erase all copies and attachments, and please let us know that it has gone to the wrong person. ___ Mailing list: https://launchpad.net/~openstack Post to : openstack@lists.launchpad.net Unsubscribe : https://launchpad.net/~openstack More help : https://help.launchpad.net/ListHelp
[Openstack] PoC Swift
Good day everyone, I want to set up a PoC for Swift. But we are willing to make it a little bit more complicated than just trivial. So we have two spare machines to dedicate to it. I was thinking we could just set up proxy and data node in the same machines. And have two data replicas (one per machine). Is this possible or do I need to have at least 3 data copies? If that is the case, or we want to make things a little bit more realistic but without adding extra servers I guess I can have duplicated copies by having more than just one data disk per server (so two data copies per machine). Is that assumption ok too? Thanks. Cloudreach Limited is a limited company registered in England with registered number 06975407 The above terms reflect a potential business arrangement, are provided solely as a basis for further discussion, and are not intended to be and do not constitute a legally binding obligation. No legally binding obligations will be created, implied, or inferred until an agreement in final form is executed in writing by all parties involved. This email may be confidential or privileged. If you received this communication by mistake, please don't forward it to anyone else, please erase all copies and attachments, and please let us know that it has gone to the wrong person. ___ Mailing list: https://launchpad.net/~openstack Post to : openstack@lists.launchpad.net Unsubscribe : https://launchpad.net/~openstack More help : https://help.launchpad.net/ListHelp
Re: [Openstack] Quantum Debug
-int Port "qr-3c159389-9e" tag: 1 Interface "qr-3c159389-9e" type: internal Port br-int Interface br-int type: internal Port "int-br-eth1" Interface "int-br-eth1" Port "tap24284d5b-2b" tag: 1 Interface "tap24284d5b-2b" type: internal Bridge br-ex Port "qg-42a6ab11-cf" Interface "qg-42a6ab11-cf" type: internal Port br-ex Interface br-ex type: internal Port "eth2" Interface "eth2" ovs_version: "1.4.0+build0" Then I followed this part to create the subnets/routers in Quantum: https://github.com/mseknibilel/OpenStack-Folsom-Install-guide/blob/master/OpenStack_Folsom_Install_Guide_WebVersion.rst#12-your-first-vm Does anyone has any idea? Kind regards. On 9 November 2012 22:28, Emilio García wrote: > Hi again, > > I won't have access again to the system till Monday so I will test it > then, but a colleague of mine just told me (he is just trying the same set > up with similar issues): > > when virtual machine is booting on the compute node, on the controller > node i can see the following: > > 22:18:39.500044 IP 10.10.10.2 > 10.10.10.1: GREv0, key=0x1, length 354: > IP 0.0.0.0.bootpc > 255.255.255.255.bootps: BOOTP/DHCP, Request from > fa:16:3e:d6:1b:12 (oui Unknown), length 300 > 22:18:39.500074 IP 10.10.10.1 > 10.10.10.2: ICMP 10.10.10.1 protocol 47 > port 25944 unreachable, length 382 > 22:18:39.596341 IP 10.10.10.2 > 10.10.10.1: GREv0, key=0x1, length 90: > IP6 :: > ff02::1:ffd6:1b12: ICMP6, neighbor solicitation, who has > fe80::f816:3eff:fed6:1b12, length 24 > 22:18:39.596372 IP 10.10.10.1 > 10.10.10.2: ICMP 10.10.10.1 protocol 47 > port 25944 unreachable, length 118 > 22:18:39.936583 IP 10.10.10.2 > 10.10.10.1: GREv0, key=0x1, length 102: > IP6 :: > ff02::16: HBH ICMP6, multicast listener report v2, 1 group > record(s), length 28 > > 10.10.10.1 - controller node > 10.10.10.2 - compute node > > looks like controller accepts requirest, but doesn't know what to do with > it > > Kind regards. > > On 9 November 2012 20:16, Ivan Kolodyazhny wrote: > >> Hello, Emilio. >> >> It looks like you use Quantum and Opwn vSwitch plugin wich used network >> namespaces. Try to pind instance from the router namespace: >> # >> > >> # ip netnx exec qrouter-1fceeb5c-2792-4b73-b523-d7d55586a1eb ping >> 10.1.1.20 >> >> Regards, >> Ivan Kolodyazhny, >> Web Developer, >> http://blog.e0ne.info/, >> http://notacash.com/, >> http://kharkivpy.org.ua/ >> >> >> >> On Fri, Nov 9, 2012 at 8:51 PM, Emilio García < >> emilio.gar...@cloudreach.co.uk> wrote: >> >>> Good day everyone, >>> >>> I am doing a Folsom install following this guide: >>> https://github.com/EmilienM/openstack-folsom-guide >>> >>> I only have set up the internal network and I can swpan instances but it >>> doesn't seem like I can connect to them at all, and they cannot find the >>> metadata host. >>> >>> I have 3 interfaces in the cloudcontroller: the management one eth0, the >>> vm traffic one eth1 and a the external one eth2 which im not using for >>> anything at the moment. >>> >>> The thing is after setting up Quantum in the cloudcontroller I cannot >>> even ping the compute node in eth1 any more (cc is 10.1.1.10 and cn is >>> 10.1.1.20). >>> >>> My set up was to create a Quantum network, then a subnet (10.1.1.0/24) >>> and then a router a attach the port to that subnet. I am using Quantum >>> tunnels too no VLAN. >>> >>> Does anyone has any clue? Any recommendantions to debug Quantum? Of >>> course I cannot ping the instances neither. >>> >>> My interfaces are: >>> >>> ubuntu@folsom-cc01:~$ ifconfig -a >>> br-eth1 Link encap:Ethernet HWaddr 00:50:56:a5:1a:40 >>> BROADCAST MULTICAST MTU:1500 Metric:1 >>> RX packets:2938 errors:0 dropped:8 overruns:0 frame:0 >>> TX packets:0 errors:0 dropped:0 overruns:0 carrier:0 >>> collisions:0 txqueuelen:0 >>> RX bytes:176290 (176.2 KB) TX bytes:0 (0.0 B) >>> >>> br-ex Link encap:Ethernet HWaddr 00:50:56:a5:1a:45 >>> BROADCAST MULTICAST MTU:1500 Metric:1 >>> RX packets:2938 errors:0 dro
Re: [Openstack] Quantum Debug
Hi again, I won't have access again to the system till Monday so I will test it then, but a colleague of mine just told me (he is just trying the same set up with similar issues): when virtual machine is booting on the compute node, on the controller node i can see the following: 22:18:39.500044 IP 10.10.10.2 > 10.10.10.1: GREv0, key=0x1, length 354: IP 0.0.0.0.bootpc > 255.255.255.255.bootps: BOOTP/DHCP, Request from fa:16:3e:d6:1b:12 (oui Unknown), length 300 22:18:39.500074 IP 10.10.10.1 > 10.10.10.2: ICMP 10.10.10.1 protocol 47 port 25944 unreachable, length 382 22:18:39.596341 IP 10.10.10.2 > 10.10.10.1: GREv0, key=0x1, length 90: IP6 :: > ff02::1:ffd6:1b12: ICMP6, neighbor solicitation, who has fe80::f816:3eff:fed6:1b12, length 24 22:18:39.596372 IP 10.10.10.1 > 10.10.10.2: ICMP 10.10.10.1 protocol 47 port 25944 unreachable, length 118 22:18:39.936583 IP 10.10.10.2 > 10.10.10.1: GREv0, key=0x1, length 102: IP6 :: > ff02::16: HBH ICMP6, multicast listener report v2, 1 group record(s), length 28 10.10.10.1 - controller node 10.10.10.2 - compute node looks like controller accepts requirest, but doesn't know what to do with it Kind regards. On 9 November 2012 20:16, Ivan Kolodyazhny wrote: > Hello, Emilio. > > It looks like you use Quantum and Opwn vSwitch plugin wich used network > namespaces. Try to pind instance from the router namespace: > # ip netns > # ip netnx exec qrouter-1fceeb5c-2792-4b73-b523-d7d55586a1eb ping 10.1.1.20 > > Regards, > Ivan Kolodyazhny, > Web Developer, > http://blog.e0ne.info/, > http://notacash.com/, > http://kharkivpy.org.ua/ > > > > On Fri, Nov 9, 2012 at 8:51 PM, Emilio García < > emilio.gar...@cloudreach.co.uk> wrote: > >> Good day everyone, >> >> I am doing a Folsom install following this guide: >> https://github.com/EmilienM/openstack-folsom-guide >> >> I only have set up the internal network and I can swpan instances but it >> doesn't seem like I can connect to them at all, and they cannot find the >> metadata host. >> >> I have 3 interfaces in the cloudcontroller: the management one eth0, the >> vm traffic one eth1 and a the external one eth2 which im not using for >> anything at the moment. >> >> The thing is after setting up Quantum in the cloudcontroller I cannot >> even ping the compute node in eth1 any more (cc is 10.1.1.10 and cn is >> 10.1.1.20). >> >> My set up was to create a Quantum network, then a subnet (10.1.1.0/24) >> and then a router a attach the port to that subnet. I am using Quantum >> tunnels too no VLAN. >> >> Does anyone has any clue? Any recommendantions to debug Quantum? Of >> course I cannot ping the instances neither. >> >> My interfaces are: >> >> ubuntu@folsom-cc01:~$ ifconfig -a >> br-eth1 Link encap:Ethernet HWaddr 00:50:56:a5:1a:40 >> BROADCAST MULTICAST MTU:1500 Metric:1 >> RX packets:2938 errors:0 dropped:8 overruns:0 frame:0 >> TX packets:0 errors:0 dropped:0 overruns:0 carrier:0 >> collisions:0 txqueuelen:0 >> RX bytes:176290 (176.2 KB) TX bytes:0 (0.0 B) >> >> br-ex Link encap:Ethernet HWaddr 00:50:56:a5:1a:45 >> BROADCAST MULTICAST MTU:1500 Metric:1 >> RX packets:2938 errors:0 dropped:8 overruns:0 frame:0 >> TX packets:0 errors:0 dropped:0 overruns:0 carrier:0 >> collisions:0 txqueuelen:0 >> RX bytes:176290 (176.2 KB) TX bytes:0 (0.0 B) >> >> br-intLink encap:Ethernet HWaddr ba:92:69:aa:06:40 >> BROADCAST MULTICAST MTU:1500 Metric:1 >> RX packets:0 errors:0 dropped:0 overruns:0 frame:0 >> TX packets:0 errors:0 dropped:0 overruns:0 carrier:0 >> collisions:0 txqueuelen:0 >> RX bytes:0 (0.0 B) TX bytes:0 (0.0 B) >> >> br-tunLink encap:Ethernet HWaddr 86:ed:48:ab:0e:40 >> BROADCAST MULTICAST MTU:1500 Metric:1 >> RX packets:0 errors:0 dropped:0 overruns:0 frame:0 >> TX packets:0 errors:0 dropped:0 overruns:0 carrier:0 >> collisions:0 txqueuelen:0 >> RX bytes:0 (0.0 B) TX bytes:0 (0.0 B) >> >> eth0 Link encap:Ethernet HWaddr 00:50:56:a5:1a:3f >> inet addr:192.168.253.172 Bcast:192.168.253.255 >> Mask:255.255.255.0 >> inet6 addr: fe80::250:56ff:fea5:1a3f/64 Scope:Link >> UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1 >> RX packets:7926 errors:0 dropped:0 overruns:0 frame:0 >> TX packets:7677 errors:0 dropped:0 overruns:0 carrier:0 >> collisions:
[Openstack] Quantum Debug
Good day everyone, I am doing a Folsom install following this guide: https://github.com/EmilienM/openstack-folsom-guide I only have set up the internal network and I can swpan instances but it doesn't seem like I can connect to them at all, and they cannot find the metadata host. I have 3 interfaces in the cloudcontroller: the management one eth0, the vm traffic one eth1 and a the external one eth2 which im not using for anything at the moment. The thing is after setting up Quantum in the cloudcontroller I cannot even ping the compute node in eth1 any more (cc is 10.1.1.10 and cn is 10.1.1.20). My set up was to create a Quantum network, then a subnet (10.1.1.0/24) and then a router a attach the port to that subnet. I am using Quantum tunnels too no VLAN. Does anyone has any clue? Any recommendantions to debug Quantum? Of course I cannot ping the instances neither. My interfaces are: ubuntu@folsom-cc01:~$ ifconfig -a br-eth1 Link encap:Ethernet HWaddr 00:50:56:a5:1a:40 BROADCAST MULTICAST MTU:1500 Metric:1 RX packets:2938 errors:0 dropped:8 overruns:0 frame:0 TX packets:0 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:0 RX bytes:176290 (176.2 KB) TX bytes:0 (0.0 B) br-ex Link encap:Ethernet HWaddr 00:50:56:a5:1a:45 BROADCAST MULTICAST MTU:1500 Metric:1 RX packets:2938 errors:0 dropped:8 overruns:0 frame:0 TX packets:0 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:0 RX bytes:176290 (176.2 KB) TX bytes:0 (0.0 B) br-intLink encap:Ethernet HWaddr ba:92:69:aa:06:40 BROADCAST MULTICAST MTU:1500 Metric:1 RX packets:0 errors:0 dropped:0 overruns:0 frame:0 TX packets:0 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:0 RX bytes:0 (0.0 B) TX bytes:0 (0.0 B) br-tunLink encap:Ethernet HWaddr 86:ed:48:ab:0e:40 BROADCAST MULTICAST MTU:1500 Metric:1 RX packets:0 errors:0 dropped:0 overruns:0 frame:0 TX packets:0 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:0 RX bytes:0 (0.0 B) TX bytes:0 (0.0 B) eth0 Link encap:Ethernet HWaddr 00:50:56:a5:1a:3f inet addr:192.168.253.172 Bcast:192.168.253.255 Mask:255.255.255.0 inet6 addr: fe80::250:56ff:fea5:1a3f/64 Scope:Link UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1 RX packets:7926 errors:0 dropped:0 overruns:0 frame:0 TX packets:7677 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:1000 RX bytes:3163435 (3.1 MB) TX bytes:4062130 (4.0 MB) eth1 Link encap:Ethernet HWaddr 00:50:56:a5:1a:40 inet addr:10.1.1.10 Bcast:10.1.1.255 Mask:255.255.255.0 inet6 addr: fe80::250:56ff:fea5:1a40/64 Scope:Link UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1 RX packets:2946 errors:0 dropped:4 overruns:0 frame:0 TX packets:2934 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:1000 RX bytes:176780 (176.7 KB) TX bytes:123444 (123.4 KB) eth2 Link encap:Ethernet HWaddr 00:50:56:a5:1a:45 inet6 addr: fe80::250:56ff:fea5:1a45/64 Scope:Link UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1 RX packets:5873 errors:0 dropped:4 overruns:0 frame:0 TX packets:6 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:1000 RX bytes:352390 (352.3 KB) TX bytes:468 (468.0 B) loLink encap:Local Loopback inet addr:127.0.0.1 Mask:255.0.0.0 inet6 addr: ::1/128 Scope:Host UP LOOPBACK RUNNING MTU:16436 Metric:1 RX packets:323440 errors:0 dropped:0 overruns:0 frame:0 TX packets:323440 errors:0 dropped:0 overruns:0 carrier:0 collisions:0 txqueuelen:0 RX bytes:70585630 (70.5 MB) TX bytes:70585630 (70.5 MB) And when I try to ping always get: ubuntu@folsom-cc01:~$ ping 10.1.1.20 PING 10.1.1.20 (10.1.1.20) 56(84) bytes of data. >From 10.1.1.10 icmp_seq=1 Destination Host Unreachable >From 10.1.1.10 icmp_seq=2 Destination Host Unreachable >From 10.1.1.10 icmp_seq=3 Destination Host Unreachable ^C --- 10.1.1.20 ping statistics --- 6 packets transmitted, 0 received, +3 errors, 100% packet loss, time 5030ms pipe 3 Any help is appreciated. Cloudreach Limited is a limited company registered in England with registered number 06975407 The above terms reflect a potential business arrangement, are provided solely as a basis for further discussion, and are not intended to be and do not constitute a legally binding obligation. No legally binding obligations will be created, implied, or inferred until an agreement in final form is executed in writing by all parties involved. This email may be confidential or privileged. If you received this communication by mistake, please don'
Re: [Openstack] [Folsom] Horizon not working
It is folsom, from deb http://ubuntu-cloud.archive.canonical.com/ubuntuprecise-updates/folsom main I installed following a different guide and it is working (but same repos). But to be honest I don't know what is the difference. Kind regards. On 8 November 2012 17:32, Dolph Mathews wrote: > We just fixed a similar issue in keystoneclient -- what release is this > running against? > > https://bugs.launchpad.net/python-keystoneclient/+bug/1074784 > > https://review.openstack.org/#/c/15410/ > > > -Dolph > > > > On Thu, Nov 8, 2012 at 5:46 AM, Robert van Leeuwen < > robert.vanleeu...@spilgames.com> wrote: > >> > [Fri Nov 02 14:25:28 2012] [error] unable to retrieve service catalog >> with >> > token >> > [Fri Nov 02 14:25:28 2012] [error] Traceback (most recent call last): >> > [Fri Nov 02 14:25:28 2012] [error] File >> > "/usr/lib/python2.7/dist-packages/keystoneclient/v2_0/client.py", line >> 132, >> > in _extract_service_catalog >> > [Fri Nov 02 14:25:28 2012] [error] endpoint_type='adminURL') >> > [Fri Nov 02 14:25:28 2012] [error] File >> > "/usr/lib/python2.7/dist-packages/keystoneclient/service_catalog.py", >> line >> > 62, in url_for >> > [Fri Nov 02 14:25:28 2012] [error] raise >> > exceptions.EndpointNotFound('Endpoint not found.') >> > [Fri Nov 02 14:25:28 2012] [error] EndpointNotFound: Endpoint not found. >> >> Sounds like keystone is not properly setup. >> Maybe one of the required endpoints is not setup? >> ( I think you will need at least 4 endpoints to make it work. >> They are for the following services: identity, image, compute, volume) >> >> For debugging you can take a look at the keystone log so you can see the >> contents of the created tokens. >> >> Regards, >> Robert van Leeuwen >> >> >> >> >> >> ___ >> Mailing list: https://launchpad.net/~openstack >> Post to : openstack@lists.launchpad.net >> Unsubscribe : https://launchpad.net/~openstack >> More help : https://help.launchpad.net/ListHelp >> > > > ___ > Mailing list: https://launchpad.net/~openstack > Post to : openstack@lists.launchpad.net > Unsubscribe : https://launchpad.net/~openstack > More help : https://help.launchpad.net/ListHelp > > -- Cloudreach Limited is a limited company registered in England with registered number 06975407 The above terms reflect a potential business arrangement, are provided solely as a basis for further discussion, and are not intended to be and do not constitute a legally binding obligation. No legally binding obligations will be created, implied, or inferred until an agreement in final form is executed in writing by all parties involved. This email may be confidential or privileged. If you received this communication by mistake, please don't forward it to anyone else, please erase all copies and attachments, and please let us know that it has gone to the wrong person. ___ Mailing list: https://launchpad.net/~openstack Post to : openstack@lists.launchpad.net Unsubscribe : https://launchpad.net/~openstack More help : https://help.launchpad.net/ListHelp
[Openstack] [Folsom] Horizon not working
Hello there, I am having the exact same problem! Any fix? On Fri, Nov 2, 2012 at 10:45 AM, Raja Gajju wrote: > Hi all, > > I am totally new to Folsom and just wanted to get into it. > > I followed installation instructions from this guide : > https://github.com/mseknibilel/OpenStack-Folsom-Install-guide/blob/master/OpenStack_Folsom_Install_Guide_WebVersion.rst > > Everything went fine till the end(Horizon) but when I tried to access > OpenStack 192.168.2.46/horizon on Firefox** with credentials > admin:admin_pass, > I am not able to login. > > I am having two new Ubuntu 12.10 machines (one Controller and one > Compute). I have done every steps sequentially for Controller > and have confirmed them also. I even also rebooted the machine after > installing Horizon as it was mentioned in the guide. > On my Controller eth0 is 192.168.2.46 and eth1 is 192.168.2.66 > > I checked in this log file : /var/log/apache2/error.log and found > following error :- > > [Fri Nov 02 14:25:28 2012] [error] unable to retrieve service catalog with > token > [Fri Nov 02 14:25:28 2012] [error] Traceback (most recent call last): > [Fri Nov 02 14:25:28 2012] [error] File > "/usr/lib/python2.7/dist-packages/keystoneclient/v2_0/client.py", line 132, > in _extract_service_catalog > [Fri Nov 02 14:25:28 2012] [error] endpoint_type='adminURL') > [Fri Nov 02 14:25:28 2012] [error] File > "/usr/lib/python2.7/dist-packages/keystoneclient/service_catalog.py", line > 62, in url_for > [Fri Nov 02 14:25:28 2012] [error] raise > exceptions.EndpointNotFound('Endpoint not found.') > [Fri Nov 02 14:25:28 2012] [error] EndpointNotFound: Endpoint not found. > [Fri Nov 02 14:26:31 2012] [error] \x1b[.31;1mUnauthorized: n/a (HTTP > 401)\x1b[0m > [Fri Nov 02 14:26:31 2012] [error] Traceback (most recent call last): > [Fri Nov 02 14:26:31 2012] [error] File > "/usr/lib/python2.7/dist-packages/horizon/usage/base.py", line 93, in > summarize > [Fri Nov 02 14:26:31 2012] [error] self.usage_list = > self.get_usage_list(start, end) > [Fri Nov 02 14:26:31 2012] [error] File > "/usr/lib/python2.7/dist-packages/horizon/usage/base.py", line 128, in > get_usage_list > [Fri Nov 02 14:26:31 2012] [error] return api.usage_list(self.request, > start, end) > [Fri Nov 02 14:26:31 2012] [error] File > "/usr/lib/python2.7/dist-packages/horizon/api/nova.py", line 418, in > usage_list > [Fri Nov 02 14:26:31 2012] [error] return [Usage(u) for u in > novaclient(request).usage.list(start, end, True)] > [Fri Nov 02 14:26:31 2012] [error] File > "/usr/lib/python2.7/dist-packages/novaclient/v1_1/usage.py", line 35, in > list > [Fri Nov 02 14:26:31 2012] [error] "tenant_usages") > [Fri Nov 02 14:26:31 2012] [error] File > "/usr/lib/python2.7/dist-packages/novaclient/base.py", line 62, in _list > [Fri Nov 02 14:26:31 2012] [error] _resp, body = > self.api.client.get(url) > [Fri Nov 02 14:26:31 2012] [error] File > "/usr/lib/python2.7/dist-packages/novaclient/client.py", line 239, in get > [Fri Nov 02 14:26:31 2012] [error] return self._cs_request(url, 'GET', > **kwargs) > [Fri Nov 02 14:26:31 2012] [error] File > "/usr/lib/python2.7/dist-packages/novaclient/client.py", line 236, in > _cs_request > [Fri Nov 02 14:26:31 2012] [error] raise ex > [Fri Nov 02 14:26:31 2012] [error] Unauthorized: n/a (HTTP 401) > > I am not getting any idea how to get rid of this problem. > Any help to rectify this problem is appreciated. > Thanks in advance. > > Thanks and Regards, > Girija Sharan Singh > > ___ > Mailing list: https://launchpad.net/~openstack > Post to : openstack [at] lists > Unsubscribe : https://launchpad.net/~openstack > More help : https://help.launchpad.net/ListHelp > > -- Cloudreach Limited is a limited company registered in England with registered number 06975407 The above terms reflect a potential business arrangement, are provided solely as a basis for further discussion, and are not intended to be and do not constitute a legally binding obligation. No legally binding obligations will be created, implied, or inferred until an agreement in final form is executed in writing by all parties involved. This email may be confidential or privileged. If you received this communication by mistake, please don't forward it to anyone else, please erase all copies and attachments, and please let us know that it has gone to the wrong person. ___ Mailing list: https://launchpad.net/~openstack Post to : openstack@lists.launchpad.net Unsubscribe : https://launchpad.net/~openstack More help : https://help.launchpad.net/ListHelp