[Openstack] [OPENSTACK][TROVE] ssl.c:504 error
Giuseppe Galeota
giuseppegaleota at gmail.com
Sun Feb 23 18:03:03 UTC 2014
Dear all,
I have manually installed the TROVE service on a VM different then the
controller node, in an Opnestack testbed (not Devstack).
I have followed this
<http://docs.openstack.org/developer/trove/dev/manual_install.html#>guide,
with some command modified.
After I run the following commands:
-
# trove-api --config-file=<PathToTroveConf> &
-
# trove-taskmanager --config-file=<PathToTroveTaskmanagerConf> &
I obtain this error:
*WARNING keystoneclient.middleware.auth_token [-] Retrying on HTTP
connection exception: [Errno 1] _ssl.c:504: error:14090086:SSL
routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed*
The Keystone service, on the controller node, uses HTTPS connections, while
the api-paste.ini file in the trove directory is:
.....
[filter:authtoken]
paste.filter_factory = keystoneclient.middleware.auth_token:filter_factory
auth_host = keystone_host
auth_port = 35357
auth_protocol = https
admin_user = trove
admin_password = trove
admin_tenant_name = trove
auth_uri = https://keystone_ip:5000/v2.0
# signing_dir is configurable, but the default behavior of the authtoken
# middleware should be sufficient. It will create a temporary directory
# in the home directory for the user the trove process is running as.
signing_dir = /root/trove/etc/trove/
.......
In the signing_dir I have saved the CA_file.pem of the keystone service.
Thank you,
Giuseppe
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openstack.org/pipermail/openstack/attachments/20140223/ba5f917c/attachment.html>
More information about the Openstack
mailing list