How to disable Private Open Stack CSRF token validation.

In your openstack_dashboard directory you should find the file. On it, there are several options related to session cookies, one being the django cookie middleware.

Find the next line and change it to False:


Remember to restart your website frontend process (apache2,httpd,nginx..)

How to backup and restore keystone db ?

Hi Tamil,

The ops-guide covers the backups on all items, one of them being the mysql databases: (

The standard approach is using mysqldump in this fashion:

# mysqldump --opt keystone > keystone.sql

To recover, simply stop all the process related to keystone and use this command to replace the database:

# mysql keystone < keystone.sql

In addition, there is a project called Freezer that can be used to schedule backups for all items that require it on OpenStack:

how to reserve floating ip

Hi Sudarshan,

I see two cases:

  • Want to reserve the IP for later.
  • Don't want the IP in the floating IP pool.

If you want to later use those IP within OpenStack as floating-ip, then my recommendation is that you add them to a project that doesn't have users (e.g. admin, services).

Using the neutron CLI, you can create a specific floating ip for that tenant:

neutron floatingip-create --tenant-id xxxyyy --floating-ip-address x.x.x.x FLOATING_NETWORK

Once you have need of them, you can release them and associate them with the preferred servers.

If instead those IP are already in use or should be reserved for external devices, you should create the subnet in the next fashion:

E.g.: I want to allow users to consume the next IPs to, and to

When I create the subnet I will use the next command:

neutron subnet-create --allocation-pool start=192.168.11,end= --allocation pool start=,end= --enable-dhcp --gateway --tenant-id ADMIN EXT_NET

I can also simply modify an existing subnet using the neutron subnet-update in a similar fashion.

Reference: (

In Mitaka subnet pools are also available, check them here: (

