2017-08-20 47 views
0

我想在使用bosh的openstack上部署CF。 我下面的文檔https://bosh.io/docs/init-openstack.html在使用bosh在Openstack上部署CF時出錯:「SecurityGroupNotFound 」

當我執行:

bosh create-env bosh-deployment/bosh.yml --state=state.json \ 
--vars-store=creds.yml -o bosh-deployment/openstack/cpi.yml \ 
-v director_name=bosh-1 \ 
-v internal_cidr=172.10.0.0/24 \ 
-v internal_gw=172.10.0.1 \ 
-v internal_ip=172.10.0.6 \ 
-v auth_url=https://mycontrollerip:5000/v2.0 \ 
-v az=test \ 
-v default_key_name=mykeypairname \ 
-v default_security_groups=[bosh,CF] \ 
-v net_id=3a374103-4b4a-49aa-b2e7-d113cb6939c3 \ 
-v openstack_password=mypassword \ 
-v openstack_username=myusername \ 
-v openstack_project=projectname \ 
-v private_key=/path/to/mykeypair.pem \ 
-v region=RegionOne \ 
-v openstack_domain=test \ 
-v tenant=projectname 

我得到錯誤:

Stopping registry... Finished (00:00:00) 
Cleaning up rendered CPI jobs... Finished (00:00:00) 
Deploying: 
    Creating instance 'bosh/0': 
    Creating VM: 
     Creating vm with stemcell cid 'a8833ec1-7b3c-4904-a522-329ab1233302': 
     CPI 'create_vm' method responded with error: 
     CmdError{"type":"Bosh::Clouds::CloudError","message":"OpenStack 
     API service not found error: Expected([201]) \u003c=\u003e 
     Actual(404 Not Found)\nexcon.error.response\n :body 
     =\u003e \"{\\\"NeutronError\\\": {\\\"message\\\": 
     \\\"Security group 0ccd1f3f-a064-49d7-899a-1ea450c518fa 
     does not exist\\\", \\\"type\\\": 
     \\\"SecurityGroupNotFound\\\", \\\"detail\\\": 
     \\\"\\\"}}\"\n :cookies  =\u003e [\n ]\n :headers 
     =\u003e {\n \"Content-Length\"   =\u003e 
     \"146\"\n \"Content-Type\"   =\u003e 
     \"application/json; charset=UTF-8\"\n \"Date\" 
     =\u003e \"Sat, 19 Aug 2017 13:28:29 GMT\"\n 
     \"X-Openstack-Request-Id\" =\u003e 
     \"req-8b903ed9-7c62-4433-b43b-cd784fd0fbeb\"\n }\n :host 
     =\u003e \"controllerip\"\n :local_address =\u003e 
     \"172.10.0.15\"\n :local_port =\u003e 39862\n :path 
     =\u003e \"/v2.0/ports\"\n :port   =\u003e 9696\n 
     :reason_phrase =\u003e \"Not Found\"\n :remote_ip 
     =\u003e \"mycontrollerip\"\n :status  =\u003e 404\n 
     :status_line =\u003e \"HTTP/1.1 404 Not 
     Found\\r\\n\"\n\nCheck task debug log for 
     details.","ok_to_retry":false} 
Exit code 1 

誰能幫助我?

+0

可能與範圍有關,但不確定。域是V3 keystone API的一部分,所以它也可能與使用/v2.0而不是/ v3相關。 Nova中的日誌可能會更容易閱讀/理解。由於您有請求ID,您可以在nova日誌中查看它是否存在錯誤。 'grep -i req-8b903ed9-7c62-4433-b43b-cd784fd0fbeb/var/log/nova * .log' - 如果你有多個控制器,那麼你需要檢查每個日誌。 –

+0

@MichaelPetersen:問題得到解決,因爲波什指的是不同的安全組ID,而不是當前租戶中的問題。謝謝! – user3796119

+0

太棒了。感謝您的跟蹤。 –

回答

0

當我重命名安全組時,問題得到了解決。看起來在不同租戶中有另一個同名安全組,而波什指的是另一個安全組的ID