ceph radosgw與keystone整合

來源:互聯網
上載者:User

標籤:keystone   radosgw   

1、參考http://penguintux.blog.51cto.com/3021117/1872939部署好ceph radosgw

  • ceph版本:jewel

  • docker鏡像:ceph/daemon:tag-build-master-jewel-centos-7

2、安裝keystone,這裡使用kolla newton安裝好了keystone

參考http://penguintux.blog.51cto.com/3021117/1865832,僅需要安裝keyston,kolla的globals.yml如下:

cat /etc/kolla/globals.ymlkolla_base_distro: "centos"kolla_install_type: "source"openstack_release: "3.0.1" kolla_internal_vip_address: "192.168.1.200"kolla_external_vip_address: "{{ kolla_internal_vip_address }}" docker_registry: "registry_ip_address:registry_ip_port"docker_namespace: "kolla"docker_registry_username: "admin"docker_registry_password: "registry_password" network_interface: "eth0"neutron_external_interface: "eth1" neutron_plugin_agent: "linuxbridge" nova_console: "novnc" enable_haproxy: "no"enable_keystone: "yes"enable_glance: "no"enable_neutron: "no"enable_heat: "no"enable_nova: "no"enable_horizon: "yes"enable_cinder: "no"enable_cinder_backend_lvm: "no" enable_central_logging: "no"enable_ceph: "no"enable_ceilometer: "no"enable_mongodb: "no"enable_sahara: "no"

3、整合ceph radosgw與keystone整合

查看radosgw cephx user

docker exec -it rgw ceph auth listinstalled auth entries:osd.0        key: AQCK2T5YprIzOxAAosJID+MgoEblYW32EI2WUw==        caps: [mon] allow profile osd        caps: [osd] allow *client.admin        key: AQDM2D5YCga8ORAA+lAoJCLbzBK38n1IQLyrhw==        auid: 0        caps: [mds] allow        caps: [mon] allow *        caps: [osd] allow *client.bootstrap-mds        key: AQDN2D5YcBo2BRAAXHGmPpd+xT1BRT6sIdd08A==        caps: [mon] allow profile bootstrap-mdsclient.bootstrap-osd        key: AQDN2D5YREdIAxAAvl3//4aCO59k8xLNA0wo0A==        caps: [mon] allow profile bootstrap-osdclient.bootstrap-rgw        key: AQDN2D5Y4qQfBxAAr/wQdam1ioKkGF4fly/X5Q==        caps: [mon] allow profile bootstrap-rgwclient.radosgw.Control-1        key: AQBe8j5YdJP0BBAAOB+xOeEGjncBpA4S0UEifA==        caps: [mds] allow *        caps: [mon] allow *        caps: [osd] allow *client.rgw.rgw0        key: AQBH4D5Y04IpCRAAqDk+1f7479cv4pDoL5J/1g==        caps: [mon] allow rw        caps: [osd] allow rwx# 注意 client.rgw.rgw0,記下這個,等下會使用

產生/etc/ceph/ceph.client.rgw.rgw0.keyring

ceph auth get-or-create           client.rgw.rgw0 osd ‘allow rwx‘ mon ‘allow rw‘           -o /etc/ceph/ceph.client.rgw.rgw0.keyring

編輯/etc/ceph/ceph.conf

# [client.rgw.rgw0] 需要與ceph auth list 中輸出的一致[client.rgw.rgw0]rgw keystone api version = 3rgw keystone url = http://192.168.1.200:5000# rgw keystone url = http://192.168.1.200:35357#rgw keystone admin token = {keystone admin token}rgw keystone admin user = adminrgw keystone admin password = 123456#rgw keystone admin tenant = {keystone service tenant name}rgw keystone admin domain = defaultrgw keystone admin project = adminrgw keystone accepted roles = SwiftOperator,admin,_member_, project_admin, member2rgw keystone token cache size = 500rgw keystone revocation interval = 500rgw keystone implicit tenants = truergw s3 auth use keystone = true#nss db path = {path to nss db}rgw keystone verify ssl = false#keyring = /etc/ceph/ceph.client.radosgw.Control-1.keyringkeyring = /etc/ceph/ceph.client.rgw.rgw0.keyring

重啟radosgw

docker restart rgw

建立swift endpoint

openstack service create --name swift object-storeopenstack endpoint create --region RegionOne swift public http://192.168.1.200:8080/swift/v1openstack endpoint create --region RegionOne swift admin http://192.168.1.200:8080/swift/v1openstack endpoint create --region RegionOne swift internal  http://192.168.1.200:8080/swift/v1

測試

swift list

參考連結:

http://zhengtianbao.com/ceph/radosgw/2016/05/31/ceph-radosgw-install.html

https://kairen.gitbooks.io/openstack-ubuntu/content/deployments/ubuntu/keystone/ceph-keystone.html

http://docs.ceph.com/docs/jewel/radosgw/keystone/

本文出自 “武陵荒草” 部落格,請務必保留此出處http://penguintux.blog.51cto.com/3021117/1878219

ceph radosgw與keystone整合

聯繫我們

該頁面正文內容均來源於網絡整理,並不代表阿里雲官方的觀點,該頁面所提到的產品和服務也與阿里云無關,如果該頁面內容對您造成了困擾,歡迎寫郵件給我們,收到郵件我們將在5個工作日內處理。

如果您發現本社區中有涉嫌抄襲的內容,歡迎發送郵件至: info-contact@alibabacloud.com 進行舉報並提供相關證據,工作人員會在 5 個工作天內聯絡您,一經查實,本站將立刻刪除涉嫌侵權內容。

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.