I am recently trying to setup LDAP/AD integration with Openstack keystone (packstack) for authentication and i get below error when i tried to run openstack-status. I cannot access the Openstack UI anymore. Need help resolving

asked 2019-12-23 10:05:05 -0500

WoleS gravatar image

== Keystone users == Failed to discover available identity versions when contacting http://controllerIP:5000/v3. Attempting to parse version from URL. == Glance images == Internal Server Error (HTTP 500) == Nova managed services == No handlers could be found for logger "keystoneauth.identity.generic.base" ERROR (InternalServerError): Internal Server Error (HTTP 500) == Nova networks == No handlers could be found for logger "keystoneauth.identity.generic.base" ERROR (InternalServerError): Internal Server Error (HTTP 500) == Nova instance flavors == No handlers could be found for logger "keystoneauth.identity.generic.base" ERROR (InternalServerError): Internal Server Error (HTTP 500) == Nova instances == No handlers could be found for logger "keystoneauth.identity.generic.base" ERROR (InternalServerError): Internal Server Error (HTTP 500)

edit retag flag offensive close merge delete

Comments

Check the Keystone log for errors.

Bernd Bausch gravatar imageBernd Bausch ( 2019-12-23 15:12:30 -0500 )edit

Here is the error in the Keystone log and it doesn't really make sense to me : ConfigFilesNotFoundError: Failed to find some config files: policy.d default default] /usr/lib/python2.7/site-packages/oslo_policy/policy.py:695: UserWarning: Policy "identity:delete_region":"rule:admin_required"

WoleS gravatar imageWoleS ( 2019-12-26 14:22:56 -0500 )edit

was deprecated in S in favor of "identity:delete_region":"role:admin and system_scope:all". Reason: As of the Stein release, the region API now understands default roles and system-scoped tokens, making the API more granular without compromising security.

WoleS gravatar imageWoleS ( 2019-12-26 14:23:43 -0500 )edit

he new policies for this API account for these changes automatically. Be sure to take these new defaults into consideration if you are relying on overrides in your deployment for the region API.. Either ensure your deployment is ready for the new default or copy/paste the deprecated policy into your

WoleS gravatar imageWoleS ( 2019-12-26 14:24:06 -0500 )edit

Also the keystone service is not running.

systemctl status openstack-keystone.service

Unit openstack-keystone.service could not be found.

WoleS gravatar imageWoleS ( 2019-12-26 14:25:05 -0500 )edit