give up with rabbitmq ans ssl

when I configured both server and OS for ssl, I get:
2015-02-02 12:32:26.475 15074 ERROR neutron.openstack.common.rpc.common [-] AMQP server on 209.132.184.9:5671 is unreachable: [Errno 1] _ssl.c:504: error:1409442E:SSL routines:SSL3_READ_BYTES:tlsv1 alert protocol version. Trying again in 19 seconds
I simply give up
This commit is contained in:
Miroslav Suchý 2015-02-02 12:54:08 +00:00
parent 3e6466e288
commit c1d43488f8
2 changed files with 51 additions and 51 deletions

View file

@ -83,7 +83,7 @@ CONFIG_AMQP_BACKEND=rabbitmq
CONFIG_AMQP_HOST={{ controller_public_ip }}
# Enable SSL for the AMQP service
CONFIG_AMQP_ENABLE_SSL=y
CONFIG_AMQP_ENABLE_SSL=n
# Enable Authentication for the AMQP service
CONFIG_AMQP_ENABLE_AUTH=y

View file

@ -144,31 +144,31 @@
regexp="RABBITMQ_NODE_PORT"
line=" 'RABBITMQ_NODE_PORTTTTT' => $port,"
backup=yes
- lineinfile:
dest=/usr/share/openstack-puppet/modules/rabbitmq/templates/rabbitmq.config.erb
regexp="cacertfile"
line=" {ssl_options, [{cacertfile,\"<%= @ssl_cert %>\"},"
backup=yes
- lineinfile:
dest=/usr/share/openstack-puppet/modules/neutron/manifests/init.pp
regexp="rabbit_use_ssl = "
line=" $rabbit_use_ssl = true,"
backup=yes
- lineinfile:
dest=/usr/share/openstack-puppet/modules/nova/manifests/init.pp
regexp="rabbit_use_ssl = "
line=" $rabbit_use_ssl = true,"
backup=yes
- lineinfile:
dest=/usr/share/openstack-puppet/modules/glance/manifests/notify/rabbitmq.pp
regexp="rabbit_use_ssl = "
line=" $rabbit_use_ssl = true,"
backup=yes
- lineinfile:
dest=/usr/share/openstack-puppet/modules/ceilometer/manifests/init.pp
regexp="rabbit_use_ssl = "
line=" $rabbit_use_ssl = true,"
backup=yes
#- lineinfile:
# dest=/usr/share/openstack-puppet/modules/rabbitmq/templates/rabbitmq.config.erb
# regexp="cacertfile"
# line=" {ssl_options, [{cacertfile,\"<%= @ssl_cert %>\"},"
# backup=yes
#- lineinfile:
# dest=/usr/share/openstack-puppet/modules/neutron/manifests/init.pp
# regexp="rabbit_use_ssl = "
# line=" $rabbit_use_ssl = true,"
# backup=yes
#- lineinfile:
# dest=/usr/share/openstack-puppet/modules/nova/manifests/init.pp
# regexp="rabbit_use_ssl = "
# line=" $rabbit_use_ssl = true,"
# backup=yes
#- lineinfile:
# dest=/usr/share/openstack-puppet/modules/glance/manifests/notify/rabbitmq.pp
# regexp="rabbit_use_ssl = "
# line=" $rabbit_use_ssl = true,"
# backup=yes
#- lineinfile:
# dest=/usr/share/openstack-puppet/modules/ceilometer/manifests/init.pp
# regexp="rabbit_use_ssl = "
# line=" $rabbit_use_ssl = true,"
# backup=yes
- lineinfile:
dest=/usr/lib/python2.7/site-packages/packstack/puppet/templates/mongodb.pp
regexp="pidfilepath"
@ -190,31 +190,31 @@
- service: name=rabbitmq-server state=started
# WORKAROUND again
- ini_file: dest=/etc/keystone/keystone.conf section="DEFAULT" option="rabbit_use_ssl" value="true"
- service: name=rabbitmq-server state=restarted
- ini_file: dest=/etc/nova/nova.conf section="DEFAULT" option="rabbit_use_ssl" value="true"
- ini_file: dest=/etc/cinder/cinder.conf section="DEFAULT" option="rabbit_use_ssl" value="true"
- ini_file: dest=/etc/ceilometer/ceilometer.conf section="DEFAULT" option="rabbit_use_ssl" value="true"
- service: name="{{item}}" state=restarted
with_items:
- openstack-ceilometer-alarm-evaluator
- openstack-ceilometer-alarm-notifier
- openstack-ceilometer-api
- openstack-ceilometer-central
- openstack-ceilometer-collector
- openstack-ceilometer-compute
- openstack-ceilometer-notification
- openstack-cinder-api
- openstack-cinder-backup
- openstack-cinder-scheduler
- openstack-cinder-volume
- openstack-nova-api
- openstack-nova-cert
- openstack-nova-compute
- openstack-nova-conductor
- openstack-nova-consoleauth
- openstack-nova-novncproxy
- openstack-nova-scheduler
#- ini_file: dest=/etc/keystone/keystone.conf section="DEFAULT" option="rabbit_use_ssl" value="true"
#- service: name=rabbitmq-server state=restarted
#- ini_file: dest=/etc/nova/nova.conf section="DEFAULT" option="rabbit_use_ssl" value="true"
#- ini_file: dest=/etc/cinder/cinder.conf section="DEFAULT" option="rabbit_use_ssl" value="true"
#- ini_file: dest=/etc/ceilometer/ceilometer.conf section="DEFAULT" option="rabbit_use_ssl" value="true"
#- service: name="{{item}}" state=restarted
# with_items:
# - openstack-ceilometer-alarm-evaluator
# - openstack-ceilometer-alarm-notifier
# - openstack-ceilometer-api
# - openstack-ceilometer-central
# - openstack-ceilometer-collector
# - openstack-ceilometer-compute
# - openstack-ceilometer-notification
# - openstack-cinder-api
# - openstack-cinder-backup
# - openstack-cinder-scheduler
# - openstack-cinder-volume
# - openstack-nova-api
# - openstack-nova-cert
# - openstack-nova-compute
# - openstack-nova-conductor
# - openstack-nova-consoleauth
# - openstack-nova-novncproxy
# - openstack-nova-scheduler
# configure cider with multi back-end
# https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux_OpenStack_Platform/5/html/Cloud_Administrator_Guide/section_manage-volumes.html