记一次云计算测试实验-openstack-icehouse-安装keystone

网友投稿 267 2022-11-13

记一次云计算测试实验-openstack-icehouse-安装keystone

mysql -uroot -p000000

CREATE DATABASE keystone;

CREATE DATABASE glance;

CREATE DATABASE nova;

CREATE DATABASE neutron;

CREATE DATABASE cinder;

GRANT ALL PRIVILEGES ON keystone.* TO 'keystone'@'localhost' IDENTIFIED BY '000000';

GRANT ALL PRIVILEGES ON glance.* TO 'glance'@'localhost' IDENTIFIED BY '000000';

GRANT ALL PRIVILEGES ON nova.* TO 'nova'@'localhost' IDENTIFIED BY '000000';

GRANT ALL PRIVILEGES ON neutron.* TO 'neutron'@'localhost' IDENTIFIED BY '000000';

GRANT ALL PRIVILEGES ON cinder.* TO 'cinder'@'localhost' IDENTIFIED BY '000000';

GRANT ALL PRIVILEGES ON keystone.* TO 'keystone'@'%' IDENTIFIED BY '000000';

GRANT ALL PRIVILEGES ON glance.* TO 'glance'@'%' IDENTIFIED BY '000000';

GRANT ALL PRIVILEGES ON nova.* TO 'nova'@'%' IDENTIFIED BY '000000';

GRANT ALL PRIVILEGES ON neutron.* TO 'neutron'@'%' IDENTIFIED BY '000000';

GRANT ALL PRIVILEGES ON cinder.* TO 'cinder'@'%' IDENTIFIED BY '000000';

mysql> show databases;

exit

yum install openstack-keystone python-keystoneclient -y

openstack-config --set /etc/keystone/keystone.conf database connection mysql://keystone:000000@controller/keystone

su -s /bin/sh -c "keystone-manage db_sync" keystone

ADMIN_TOKEN=$(openssl rand -hex 10)

echo $ADMIN_TOKEN

openstack-config --set /etc/keystone/keystone.conf DEFAULT admin_token $ADMIN_TOKEN

keystone-manage pki_setup --keystone-user keystone --keystone-group keystone

chown -R keystone:keystone /etc/keystone/ssl

chmod -R o-rwx /etc/keystone/ssl

service openstack-keystone restart

chkconfig openstack-keystone on

(crontab -l -u keystone 2>&1 | grep -q token_flush) || echo '@hourly /usr/bin/keystone-manage token_flush >/var/log/keystone/keystone-tokenflush.log 2>&1' >> /var/spool/cron/keystone

crontab -l -u keystone

export OS_SERVICE_TOKEN=$ADMIN_TOKEN

export OS_SERVICE_ENDPOINT=user-create --name=admin --pass=000000 --email=admin@localhost

keystone role-create --name=admin

keystone tenant-create --name=admin --description="Admin Tenant"

keystone user-role-add --user=admin --tenant=admin --role=admin

keystone user-role-add --user=admin --role=_member_ --tenant=admin

keystone user-create --name=user1 --pass=000000 --email=user1@localhost

keystone tenant-create --name=user1 --description="User1 Tenant"

keystone user-role-add --user=user1 --role=_member_ --tenant=user1

keystone tenant-create --name=service --description="Service Tenant"

keystone service-create --name=keystone --type=identity --description="OpenStack Identity"

keystone endpoint-create \

--service-id=$(keystone service-list | awk '/ identity / {print $2}') \

--publicurl=\

--internalurl=\

--adminurl=OS_SERVICE_TOKEN OS_SERVICE_ENDPOINT

keystone --os-username=admin --os-password=000000 --os-auth-url=token-get

keystone --os-username=admin --os-password=000000 --os-tenant-name=admin --os-auth-url=token-get

cd

vi admin-openrc.sh

export OS_USERNAME=admin

export OS_PASSWORD=000000

export OS_TENANT_NAME=admin

export OS_AUTH_URL=admin-openrc.sh

keystone token-get

keystone user-list

keystone user-role-list --user admin --tenant admin

版权声明:本文内容由网络用户投稿,版权归原作者所有,本站不拥有其著作权,亦不承担相应法律责任。如果您发现本站中有涉嫌抄袭或描述失实的内容,请联系我们jiasou666@gmail.com 处理,核实后本网站将在24小时内删除侵权内容。

上一篇:bios识别不到固态硬盘
下一篇:SpringSecurity自定义AuthenticationProvider无法@Autowire的解决
相关文章

 发表评论

暂时没有评论,来抢沙发吧~