Hi,

this cluster is running on Debian 9, that said:

pcs 0.9.155;

from whatever node I try to do that I get the very same result;

the log is from SRVDRSW01, but it gets identical from every other node i tried on.

I tried to enter a wrong password for the hacluster user and, obviously, I get rejected because of a wrong username/password.

, [2020-10-29T14:23:14.447651 #1761] INFO -- : Running: id -Gn hacluster
I, [2020-10-29T14:23:14.447824 #1761]  INFO -- : CIB USER: hacluster, groups:
I, [2020-10-29T14:23:14.450788 #1761]  INFO -- : Return Value: 0
I, [2020-10-29T14:23:14.450881 #1761]  INFO -- : Running: /usr/sbin/corosync-cmapctl totem.cluster_name I, [2020-10-29T14:23:14.450937 #1761]  INFO -- : CIB USER: hacluster, groups:
I, [2020-10-29T14:23:14.458297 #1761]  INFO -- : Return Value: 0
172.16.37.28 - - [29/Oct/2020:14:23:14 +0100] "GET /clusters_overview HTTP/1.1" 200 44 0.0163 172.16.37.28 - - [29/Oct/2020:14:23:14 +0100] "GET /clusters_overview HTTP/1.1" 200 44 0.0165 172.16.37.28 - - [29/Oct/2020:14:23:14 CET] "GET /clusters_overview HTTP/1.1" 200 44
https://172.16.10.119:2224/manage -> /clusters_overview
I, [2020-10-29T14:23:22.531202 #1761]  INFO -- : Running: id -Gn hacluster
I, [2020-10-29T14:23:22.531652 #1761]  INFO -- : CIB USER: hacluster, groups:
I, [2020-10-29T14:23:22.540823 #1761]  INFO -- : Return Value: 0
I, [2020-10-29T14:23:22.541238 #1761]  INFO -- : Running: id -Gn hacluster
I, [2020-10-29T14:23:22.541772 #1761]  INFO -- : CIB USER: hacluster, groups:
I, [2020-10-29T14:23:22.550223 #1761]  INFO -- : Return Value: 0
I, [2020-10-29T14:23:22.550626 #1761]  INFO -- : Running: /usr/sbin/corosync-cmapctl totem.cluster_name I, [2020-10-29T14:23:22.551116 #1761]  INFO -- : CIB USER: hacluster, groups:
I, [2020-10-29T14:23:22.568564 #1761]  INFO -- : Return Value: 0
I, [2020-10-29T14:23:22.571020 #1761]  INFO -- : SRWT Node: 172.16.10.132 Request: check_auth E, [2020-10-29T14:23:22.571225 #1761] ERROR -- : Unable to connect to node 172.16.10.132, no token available 172.16.37.28 - - [29/Oct/2020:14:23:22 +0100] "GET /manage/check_pcsd_status?nodes=172.16.10.132 HTTP/1.1" 200 42 0.0432 172.16.37.28 - - [29/Oct/2020:14:23:22 +0100] "GET /manage/check_pcsd_status?nodes=172.16.10.132 HTTP/1.1" 200 42 0.0436 172.16.37.28 - - [29/Oct/2020:14:23:22 CET] "GET /manage/check_pcsd_status?nodes=172.16.10.132 HTTP/1.1" 200 42 https://172.16.10.119:2224/manage -> /manage/check_pcsd_status?nodes=172.16.10.132
I, [2020-10-29T14:23:25.748128 #1761]  INFO -- : Running: id -Gn hacluster
I, [2020-10-29T14:23:25.748597 #1761]  INFO -- : CIB USER: hacluster, groups:
I, [2020-10-29T14:23:25.761041 #1761]  INFO -- : Return Value: 0
I, [2020-10-29T14:23:25.761327 #1761]  INFO -- : Running: id -Gn hacluster
I, [2020-10-29T14:23:25.761739 #1761]  INFO -- : CIB USER: hacluster, groups:
I, [2020-10-29T14:23:25.773292 #1761]  INFO -- : Return Value: 0
I, [2020-10-29T14:23:25.773790 #1761]  INFO -- : Running: /usr/sbin/corosync-cmapctl totem.cluster_name I, [2020-10-29T14:23:25.774162 #1761]  INFO -- : CIB USER: hacluster, groups:
I, [2020-10-29T14:23:25.790479 #1761]  INFO -- : Return Value: 0
I, [2020-10-29T14:23:25.925090 #1761]  INFO -- : Running: /usr/sbin/pcs status nodes corosync I, [2020-10-29T14:23:25.925561 #1761]  INFO -- : CIB USER: hacluster, groups:
I, [2020-10-29T14:23:26.775316 #1761]  INFO -- : Return Value: 0
I, [2020-10-29T14:23:26.776739 #1761]  INFO -- : Sending config 'tokens' version 1 95f8f1a2595da4058e3653957e7d474e9ef39935 to nodes: 172.16.37.28 - - [29/Oct/2020:14:23:26 +0100] "POST /manage/auth_gui_against_nodes HTTP/1.1" 200 39 1.0314 172.16.37.28 - - [29/Oct/2020:14:23:26 +0100] "POST /manage/auth_gui_against_nodes HTTP/1.1" 200 39 1.0318 172.16.37.28 - - [29/Oct/2020:14:23:25 CET] "POST /manage/auth_gui_against_nodes HTTP/1.1" 200 39
https://172.16.10.119:2224/manage -> /manage/auth_gui_against_nodes
I, [2020-10-29T14:23:26.835958 #1761]  INFO -- : Running: id -Gn hacluster
I, [2020-10-29T14:23:26.836466 #1761]  INFO -- : CIB USER: hacluster, groups:
I, [2020-10-29T14:23:26.845873 #1761]  INFO -- : Return Value: 0
I, [2020-10-29T14:23:26.846329 #1761]  INFO -- : Running: id -Gn hacluster
I, [2020-10-29T14:23:26.846650 #1761]  INFO -- : CIB USER: hacluster, groups:
I, [2020-10-29T14:23:26.854779 #1761]  INFO -- : Return Value: 0
I, [2020-10-29T14:23:26.855893 #1761]  INFO -- : Running: /usr/sbin/corosync-cmapctl totem.cluster_name I, [2020-10-29T14:23:26.856244 #1761]  INFO -- : CIB USER: hacluster, groups:
I, [2020-10-29T14:23:26.872526 #1761]  INFO -- : Return Value: 0
I, [2020-10-29T14:23:26.874768 #1761]  INFO -- : SRWT Node: 172.16.10.132 Request: check_auth E, [2020-10-29T14:23:26.874952 #1761] ERROR -- : Unable to connect to node 172.16.10.132, no token available 172.16.37.28 - - [29/Oct/2020:14:23:26 +0100] "GET /manage/check_pcsd_status?nodes=172.16.10.132 HTTP/1.1" 200 42 0.0420 172.16.37.28 - - [29/Oct/2020:14:23:26 +0100] "GET /manage/check_pcsd_status?nodes=172.16.10.132 HTTP/1.1" 200 42 0.0424 172.16.37.28 - - [29/Oct/2020:14:23:26 CET] "GET /manage/check_pcsd_status?nodes=172.16.10.132 HTTP/1.1" 200 42 https://172.16.10.119:2224/manage -> /manage/check_pcsd_status?nodes=172.16.10.132

right after you can find the log when I deliberately entered a wrong password for the hacluster user:

I, [2020-10-29T14:55:25.603445 #405] INFO -- : Running: /usr/sbin/corosync-cmapctl totem.cluster_name I, [2020-10-29T14:55:25.603687 #405]  INFO -- : CIB USER: hacluster, groups:
I, [2020-10-29T14:55:25.614132 #405]  INFO -- : Return Value: 0
I, [2020-10-29T14:55:25.614907 #405]  INFO -- : Attempting login by 'hacluster' I, [2020-10-29T14:55:27.879665 #405]  INFO -- : Failed login by 'hacluster' (bad username or password)

Thanks

On 29/10/20 14:10, Tomas Jelinek wrote:
Hi Raffaele,

We'll need to know more details:
* What is your pcs version?
* Which node is used to access web UI?
* Which node is the log from?

The part of pcsd log you provided doesn't seem to cover the issue you are experiencing. If the node is not authenticated, which seems to be the case as pcsd is asking for a password, then the log simply states the node is not authenticated.

We would need a bigger portion of the log to see what's happening when you are trying to add the cluster to the web UI.


Thanks,
Tomas


Dne 29. 10. 20 v 8:02 Raffaele Pantaleoni napsal(a):
The node is already part of that cluster indeed. That's why I clicked on

"+Add Existing"

the pop-up form says:

"Enter the hostname/IP of a node in a cluster that you would like to manage:"

But I can't add it into the pcsd web gui.

That is the cluster list is empty.

On 28/10/20 21:59, Strahil Nikolov wrote:
Are you sure that the node you want to join is not one of the listed here:

Online: [ SRVDRSW01 SRVDRSW02 SRVDRSW03 SRVDRSW04 SRVDRSW05 SRVDRSW06 ]

The hostname looks pretty much the same.

Best Regards,
Strahil Nikolov






В сряда, 28 октомври 2020 г., 11:18:11 Гринуич+2, Raffaele Pantaleoni <[email protected]> написа:





Hello everybody,

I'm trying to add an existing cluster into the pcsd web gui.

When I try to add it, I select a node (SRVDRSW01.seko.com) and right
after I am requested to enter the password for the hacluster user but
from the pcsd log file I can see this:

I, [2020-10-28T09:58:26.213638 #12661]  INFO -- : Running: id -Gn hacluster
I, [2020-10-28T09:58:26.214091 #12661]  INFO -- : CIB USER: hacluster,
groups:
I, [2020-10-28T09:58:26.222338 #12661]  INFO -- : Return Value: 0
I, [2020-10-28T09:58:26.222730 #12661]  INFO -- : Running: id -Gn hacluster
I, [2020-10-28T09:58:26.222887 #12661]  INFO -- : CIB USER: hacluster,
groups:
I, [2020-10-28T09:58:26.230203 #12661]  INFO -- : Return Value: 0
I, [2020-10-28T09:58:26.230424 #12661]  INFO -- : Running:
/usr/sbin/corosync-cmapctl totem.cluster_name
I, [2020-10-28T09:58:26.230587 #12661]  INFO -- : CIB USER: hacluster,
groups:
I, [2020-10-28T09:58:26.251826 #12661]  INFO -- : Return Value: 0
I, [2020-10-28T09:58:26.253144 #12661]  INFO -- : SRWT Node:
SRVDRSW01.seko.com Request: check_auth
E, [2020-10-28T09:58:26.253603 #12661] ERROR -- : Unable to connect to
node SRVDRSW01.seko.com, no token available

I tried it using the node name only (SRVDRSW01) or the IP address. The
error message doesn't change.

Since this is a test installation inside our LAN there is no firewall
configured at all.

This is the actual status of the cluster:
root@SRVDRSW01:~# pcs status
Cluster name: debian
Stack: corosync
Current DC: SRVDRSW01 (version 1.1.16-94ff4df) - partition with quorum
Last updated: Wed Oct 28 09:55:20 2020
Last change: Mon Oct 19 17:07:33 2020 by root via crm_attribute on SRVDRSW01

6 nodes configured
5 resources configured

Online: [ SRVDRSW01 SRVDRSW02 SRVDRSW03 SRVDRSW04 SRVDRSW05 SRVDRSW06 ]

Full list of resources:

  ClusterIP      (ocf::heartbeat:IPaddr2):       Started SRVDRSW01
  CouchIP        (ocf::heartbeat:IPaddr2):       Started SRVDRSW03
  NodeJSIP       (ocf::heartbeat:IPaddr2):       Started SRVDRSW04
  FrontEnd       (ocf::heartbeat:nginx): Started SRVDRSW01
  ITATESTSERVER-DIP      (ocf::nodejs:pm2):      Started SRVDRSW04

Daemon Status:
   corosync: active/enabled
   pacemaker: active/enabled
   pcsd: active/disabled


I went through hundreds of tries with no luck.
Is it something I am doing wrong or I forgot to do?
I tried to google it but no solution was good.
I have no ideas left.

Thank you in advance.
---
Raffaele Pantaleoni

/
/

_______________________________________________
Manage your subscription:
https://lists.clusterlabs.org/mailman/listinfo/users

ClusterLabs home: https://www.clusterlabs.org/
_______________________________________________
Manage your subscription:
https://lists.clusterlabs.org/mailman/listinfo/users

ClusterLabs home: https://www.clusterlabs.org/

_______________________________________________
Manage your subscription:
https://lists.clusterlabs.org/mailman/listinfo/users

ClusterLabs home: https://www.clusterlabs.org/

_______________________________________________
Manage your subscription:
https://lists.clusterlabs.org/mailman/listinfo/users

ClusterLabs home: https://www.clusterlabs.org/
--
Signature

*Raffaele Pantaleoni*

*IOT Design R&D Unit*

Tel.     +39 0746 605885

Fax.    +39 0746 607072

Mail *[email protected] <mailto:[email protected]>*

Skype r.pantaleoni.seko

*www.seko.com* <https://www.seko.com/> **

/This e-mail (including attachments) is intended only for the recipient(s) named above. It may contain confidential or privileged information. If you are not the named addressee you should not disseminate, distribute or copy this e-mail. Please notify the sender immediately by e-mail if you have received this e-mail by mistake and delete this e-mail from your system. E-mail transmission cannot be guaranteed to be secure or error-free as information could be intercepted, corrupted, lost, destroyed, arrive late or incomplete, or contain viruses. The sender therefore does not accept liability for any errors or omissions in the contents of this message, which arise as a result of e-mail transmission. If verification is required please request a hard-copy version. Your personal data will be processed in compliance with the EU General Data Protection Regulation n. 2016/679 ("GDPR"), applicable since May 25th, 2018. For further information, please see our Privacy Policy <https://www.seko.com/page/privacy-policy>/

_______________________________________________
Manage your subscription:
https://lists.clusterlabs.org/mailman/listinfo/users

ClusterLabs home: https://www.clusterlabs.org/

Reply via email to