← Back to team overview

openstack team mailing list archive

Re: grizzly on ubuntu precise: auth error using glance index

 

What does your keystone.conf file have for the following sections?

[signing]
#token_format = UUID
token_format = PKI
certfile = /etc/keystone/ssl/certs/signing_cert.pem
keyfile = /etc/keystone/ssl/private/signing_key.pem
ca_certs = /etc/keystone/ssl/certs/ca.pemkey_size = 1024
valid_days = 3650
ca_password = None
disable_pki = False 

[ssl]
#enable = False
enable = True
certfile = /etc/keystone/ssl/certs/signing_cert.pem
keyfile = /etc/keystone/ssl/private/signing_key.pem
ca_certs = /etc/keystone/ssl/certs/ca.pem
cert_required = False

Mark

-----Original Message-----
From: openstack-bounces+mark.m.miller=hp.com@xxxxxxxxxxxxxxxxxxx [mailto:openstack-bounces+mark.m.miller=hp.com@xxxxxxxxxxxxxxxxxxx] On Behalf Of Olivier Archer
Sent: Friday, March 08, 2013 5:51 AM
To: openstack
Subject: [Openstack] grizzly on ubuntu precise: auth error using glance index

Hi,
  From the documentation here :
http://docs.openstack.org/trunk/openstack-compute/install/apt/content/ap_installinggrizzlyubuntuprecise.html

I've got problems with 'glance index' :
# glance index
Authorization Failed: Unable to communicate with identity service:
{"error": {"message": "An unexpected error prevented the server from
fulfilling your request. Command 'openssl' returned non-zero exit
status 3", "code": 500, "title": "Internal Server Error"}}. (HTTP 500)

/var/log/keystone/keystone.log give:
ERROR [keystone.common.cms] Signing error: Error opening signer
certificate /etc/keystone/ssl/certs/signing_cert.pem

So I've run
# sudo keystone keystone-manage pki-setup

to create certs file.

But now, 'glance index' give me:

Request returned failure status.
Invalid OpenStack Identity credentials.

and keystone.log give:
WARNING [keystone.common.wsgi] Authorization failed. The request you
have made requires authentication.

my configuration is like the one in the doc:

creds:
export SERVICE_TOKEN=admin
export OS_TENANT_NAME=admin
export OS_USERNAME=admin
export OS_PASSWORD=openstack
export OS_AUTH_URL=http://100.10.10.115:5000/v2.0/
export SERVICE_ENDPOINT=http://100.10.10.115:35357/v2.0/

i've reinstalled everything from the begining from a fresh installed
server, and i'm still stuck in this error...




-- 
Olivier Archer
Océanographie spatiale - Ifremer
02 98 22 44 84

_______________________________________________
Mailing list: https://launchpad.net/~openstack
Post to     : openstack@xxxxxxxxxxxxxxxxxxx
Unsubscribe : https://launchpad.net/~openstack
More help   : https://help.launchpad.net/ListHelp


Follow ups

References