设为首页 收藏本站
查看: 1358|回复: 0

[经验分享] Openstack云平台实践

[复制链接]

尚未签到

发表于 2017-12-4 19:30:53 | 显示全部楼层 |阅读模式
DSC0000.png

  计算,网络,存储模块化
  环境准备(参考https://www.unixhot.com/article/64)
  Centos7.0
  1,安装rpel仓库
  rpm -ivh http://mirrors.aliyun.com/epel/epel-release-latest-7.noarch.rpm
  2,安装OpenStack仓库
  yum install -y centos-release-openstack-mitaka
  3,安装OpenStack客户端
  yum install -y python-openstackclient
  4,安装openstack Selinux管理包
  yum install -y openstack-selinux
  MySQL数据库部署
  yum install -y mariadb mariadb-server python2-PyMySQL
  配置
  cd /etc/my.cnf.d
  vim openstack.cnf



[mysqld]
bind-address = 10.0.0.151
default-storage-engine = innodb
innodb_file_per_table
max_connections = 4096
collation-server = utf8_general_ci
character-set-server = utf8

  配置参考文档https://docs.openstack.org/mitaka/zh_CN/install-guide-rdo/index.html
  启动mysql
  systemctl start mariadb
  systemctl enable mariadb
  创建数据库
  mysql -uroot -p123456
  create database keystone;
  grant all on keystone.* to keystone@'localhost' identified by 'keystone';
  grant all on keystone.* to keystone@'%' identified by 'keystone';
  create database glance;
  grant all on glance.* to glance@'localhost' identified by 'glance';
  grant all on glance.* to glance@'%' identified by 'glance';
  create database nove;
  grant all on nova.* to nova@'localhost' identified by 'nova';
  grant all on nova.* to nova@'%' identified by 'nova';
  create database nove_api;
  grant all on nova_api.* to nova@'loaclhost' identified by 'nova';
  grant all on nova_api.* to nova@'%' identified by 'nova';
  create database neutron;
  grant all on neutron.* to neutron@'localhost' identified by 'neutron';
  grant all on neutron.* to neutron@'%' identified by 'neutron';
  安装消息队列RabbitMQ
  yum -y install rabbitmq-server
  设置开机自启动
  systemctl enable rabbitmq-server
  systemctl start rabbitmq-server
  PS:如果启动出现这个错误
  Job for rabbitmq-server.service failed because the control process exited with error code. See "systemctl status rabbitmq-server.service" and "journalctl -xe" for details
  关闭selinux 配置好hosts
  添加openstack用户
  rabbitmqctl add_user openstack openstack
  用户名和密码都为openstack
  给openstack授权
  rabbitmqctl set_permissions openstack ".*" ".*" ".*"
  查看插件
  rabbitmq-plugins list
  启用web界面插件
  rabbitmq-plugins enable rabbitmq_management
DSC0001.png

  启动15672端口
DSC0002.png

  http://10.0.0.151:15672/
  默认用户 guest guest
DSC0003.png

  Openstack验证服务KeyStone
  yum -y install openstack-keystone httpd mod_swgi memcached python-memcached
  配置admin_token
  vim /etc/keystone/keystone.conf
DSC0004.png

  PS:随机值由命令openssl rand -hex 10 生成
  配置数据库
DSC0005.png

  connection = mysql+pymysql://keystone:keystone@10.0.0.151/keystone
  PS:三个keystone分别代表用户名,密码,库名
  配置Fernet UUID令牌的提供者
DSC0006.png

  配置memcached
DSC0007.png

DSC0008.png

  查看所有配置
DSC0009.png

  初始化数据库
  su -s /bin/sh -c "keystone-manage db_sync" keystone
  PS:会自动读取keystone配置文件创建数据库表
DSC00010.png

  PS:同步的日志文件 /var/log/keystone/keystone.log
  初始化Fernet keys

keystone-manage fernet_setup --keystone-user keystone --keystone-group keystone


DSC00011.png

  在这个目录生成证书
  启动memcached
  systemctl enable memcached
systemctl start memcached
  配置文件
DSC00012.png

  配置apache
  vim /etc/httpd/conf/httpd.conf
DSC00013.png

  PS:必须修改否则会出现奇怪的问题
  vim /etc/httpd/conf.d/wsgi-keystone.conf



Listen 5000
Listen 35357
<VirtualHost *:5000>
WSGIDaemonProcess keystone-public processes=5 threads=1 user=keystone group=keystone display-name=%{GROUP}
WSGIProcessGroup keystone-public
WSGIScriptAlias / /usr/bin/keystone-wsgi-public
WSGIApplicationGroup %{GLOBAL}
WSGIPassAuthorization On
ErrorLogFormat "%{cu}t %M"
ErrorLog /var/log/httpd/keystone-error.log
CustomLog /var/log/httpd/keystone-access.log combined
<Directory /usr/bin>
Require all granted
</Directory>
</VirtualHost>
<VirtualHost *:35357>
WSGIDaemonProcess keystone-admin processes=5 threads=1 user=keystone group=keystone display-name=%{GROUP}
WSGIProcessGroup keystone-admin
WSGIScriptAlias / /usr/bin/keystone-wsgi-admin
WSGIApplicationGroup %{GLOBAL}
WSGIPassAuthorization On
ErrorLogFormat "%{cu}t %M"
ErrorLog /var/log/httpd/keystone-error.log
CustomLog /var/log/httpd/keystone-access.log combined
<Directory /usr/bin>
Require all granted
</Directory>
</VirtualHost>

  启动systemctl start httpd
  报错了 明天再看

运维网声明 1、欢迎大家加入本站运维交流群:群②:261659950 群⑤:202807635 群⑦870801961 群⑧679858003
2、本站所有主题由该帖子作者发表,该帖子作者与运维网享有帖子相关版权
3、所有作品的著作权均归原作者享有,请您和我们一样尊重他人的著作权等合法权益。如果您对作品感到满意,请购买正版
4、禁止制作、复制、发布和传播具有反动、淫秽、色情、暴力、凶杀等内容的信息,一经发现立即删除。若您因此触犯法律,一切后果自负,我们对此不承担任何责任
5、所有资源均系网友上传或者通过网络收集,我们仅提供一个展示、介绍、观摩学习的平台,我们不对其内容的准确性、可靠性、正当性、安全性、合法性等负责,亦不承担任何法律责任
6、所有作品仅供您个人学习、研究或欣赏,不得用于商业或者其他用途,否则,一切后果均由您自己承担,我们对此不承担任何法律责任
7、如涉及侵犯版权等问题,请您及时通知我们,我们将立即采取措施予以解决
8、联系人Email:admin@iyunv.com 网址:www.yunweiku.com

所有资源均系网友上传或者通过网络收集,我们仅提供一个展示、介绍、观摩学习的平台,我们不对其承担任何法律责任,如涉及侵犯版权等问题,请您及时通知我们,我们将立即处理,联系人Email:kefu@iyunv.com,QQ:1061981298 本贴地址:https://www.yunweiku.com/thread-420574-1-1.html 上篇帖子: openstack安装记录 下篇帖子: openstack--neutron--local
您需要登录后才可以回帖 登录 | 立即注册

本版积分规则

扫码加入运维网微信交流群X

扫码加入运维网微信交流群

扫描二维码加入运维网微信交流群,最新一手资源尽在官方微信交流群!快快加入我们吧...

扫描微信二维码查看详情

客服E-mail:kefu@iyunv.com 客服QQ:1061981298


QQ群⑦:运维网交流群⑦ QQ群⑧:运维网交流群⑧ k8s群:运维网kubernetes交流群


提醒:禁止发布任何违反国家法律、法规的言论与图片等内容;本站内容均来自个人观点与网络等信息,非本站认同之观点.


本站大部分资源是网友从网上搜集分享而来,其版权均归原作者及其网站所有,我们尊重他人的合法权益,如有内容侵犯您的合法权益,请及时与我们联系进行核实删除!



合作伙伴: 青云cloud

快速回复 返回顶部 返回列表