openstack team mailing list archive
-
openstack team
-
Mailing list archive
-
Message #21719
Re: grizzly on ubuntu precise: auth error using glance index
-
To:
Olivier Archer <olivier.archer@xxxxxxxxxx>, openstack <openstack@xxxxxxxxxxxxxxxxxxx>
-
From:
"Miller, Mark M (EB SW Cloud - R&D - Corvallis)" <mark.m.miller@xxxxxx>
-
Date:
Fri, 8 Mar 2013 18:03:11 +0000
-
Accept-language:
en-US
-
In-reply-to:
<CAOo=kQVrz1jLW9dbwrgZrOrw1p1CtajFD166BJNrrmv2ixgu+w@mail.gmail.com>
-
Thread-index:
AQHOHAQVUk/uxwKf70i4N0HWIrXAdpicFcAQ
-
Thread-topic:
[Openstack] grizzly on ubuntu precise: auth error using glance index
What does your keystone.conf file have for the following sections?
[signing]
#token_format = UUID
token_format = PKI
certfile = /etc/keystone/ssl/certs/signing_cert.pem
keyfile = /etc/keystone/ssl/private/signing_key.pem
ca_certs = /etc/keystone/ssl/certs/ca.pemkey_size = 1024
valid_days = 3650
ca_password = None
disable_pki = False
[ssl]
#enable = False
enable = True
certfile = /etc/keystone/ssl/certs/signing_cert.pem
keyfile = /etc/keystone/ssl/private/signing_key.pem
ca_certs = /etc/keystone/ssl/certs/ca.pem
cert_required = False
Mark
-----Original Message-----
From: openstack-bounces+mark.m.miller=hp.com@xxxxxxxxxxxxxxxxxxx [mailto:openstack-bounces+mark.m.miller=hp.com@xxxxxxxxxxxxxxxxxxx] On Behalf Of Olivier Archer
Sent: Friday, March 08, 2013 5:51 AM
To: openstack
Subject: [Openstack] grizzly on ubuntu precise: auth error using glance index
Hi,
From the documentation here :
http://docs.openstack.org/trunk/openstack-compute/install/apt/content/ap_installinggrizzlyubuntuprecise.html
I've got problems with 'glance index' :
# glance index
Authorization Failed: Unable to communicate with identity service:
{"error": {"message": "An unexpected error prevented the server from
fulfilling your request. Command 'openssl' returned non-zero exit
status 3", "code": 500, "title": "Internal Server Error"}}. (HTTP 500)
/var/log/keystone/keystone.log give:
ERROR [keystone.common.cms] Signing error: Error opening signer
certificate /etc/keystone/ssl/certs/signing_cert.pem
So I've run
# sudo keystone keystone-manage pki-setup
to create certs file.
But now, 'glance index' give me:
Request returned failure status.
Invalid OpenStack Identity credentials.
and keystone.log give:
WARNING [keystone.common.wsgi] Authorization failed. The request you
have made requires authentication.
my configuration is like the one in the doc:
creds:
export SERVICE_TOKEN=admin
export OS_TENANT_NAME=admin
export OS_USERNAME=admin
export OS_PASSWORD=openstack
export OS_AUTH_URL=http://100.10.10.115:5000/v2.0/
export SERVICE_ENDPOINT=http://100.10.10.115:35357/v2.0/
i've reinstalled everything from the begining from a fresh installed
server, and i'm still stuck in this error...
--
Olivier Archer
Océanographie spatiale - Ifremer
02 98 22 44 84
_______________________________________________
Mailing list: https://launchpad.net/~openstack
Post to : openstack@xxxxxxxxxxxxxxxxxxx
Unsubscribe : https://launchpad.net/~openstack
More help : https://help.launchpad.net/ListHelp
Follow ups
References