CentOS Stream 9
Sponsored Link

OpenStack Antelope : Swift 設定 (Control ノード)2023/04/19

 
OpenStack Object Storage(Swift)を設定します。
当例では以下のような環境を例に Swift サービスを設定します。
------------+--------------------------+------------
            |                          |
        eth0|10.0.0.30             eth0|10.0.0.50
+-----------+-----------+  +-----------+-----------+
|   [ dlp.srv.world ]   |  | [ network.srv.world ] |
|     (Control Node)    |  |      (Proxy Node)     |
|                       |  |                       |
|  MariaDB    RabbitMQ  |  |      Swift Proxy      |
|  Memcached  Nginx     |  |         Nginx         |
|  Keystone   httpd     |  |                       |
+-----------------------+  +-----------------------+

------------+--------------------------+--------------------------+-----------
        eth0|10.0.0.71             eth0|10.0.0.72             eth0|10.0.0.73
+-----------+-----------+  +-----------+-----------+  +-----------+-----------+
|  [snode01.srv.world]  |  |  [snode02.srv.world]  |  |  [snode03.srv.world]  |
|    (Storage Node#1)   |  |    (Storage Node#2)   |  |    (Storage Node#3)   |
|                       |  |                       |  |                       |
|     Swift-Account     |  |     Swift-Account     |  |     Swift-Account     |
|    Swift-Container    |  |    Swift-Container    |  |    Swift-Container    |
|     Swift-Object      |  |     Swift-Object      |  |     Swift-Object      |
+-----------------------+  +-----------------------+  +-----------------------+

[1] Control ノードの Keystone に Swift 用のユーザー等々を登録しておきます。
# [service] プロジェクト所属で [swift] ユーザーを作成

[root@dlp ~(keystone)]#
openstack user create --domain default --project service --password servicepassword swift

+---------------------+----------------------------------+
| Field               | Value                            |
+---------------------+----------------------------------+
| default_project_id  | 6d680c2574034967ab496a59d1319a65 |
| domain_id           | default                          |
| enabled             | True                             |
| id                  | e128d646f829438a8ef7733c6be0e128 |
| name                | swift                            |
| options             | {}                               |
| password_expires_at | None                             |
+---------------------+----------------------------------+

# [swift] ユーザーを [admin] ロール に加える

[root@dlp ~(keystone)]#
openstack role add --project service --user swift admin
# [swift] 用サービスエントリ作成

[root@dlp ~(keystone)]#
openstack service create --name swift --description "OpenStack Object Storage" object-store

+-------------+----------------------------------+
| Field       | Value                            |
+-------------+----------------------------------+
| description | OpenStack Object Storage         |
| enabled     | True                             |
| id          | a3ecde6a8f944283a3896cc8183ed281 |
| name        | swift                            |
| type        | object-store                     |
+-------------+----------------------------------+

# Swift Proxy ノードを定義

[root@dlp ~(keystone)]#
export swift_proxy=network.srv.world
# [swift] 用エンドポイント作成 (public)

[root@dlp ~(keystone)]#
openstack endpoint create --region RegionOne object-store public https://$swift_proxy:8080/v1/AUTH_%\(project_id\)s

+--------------+-------------------------------------------------------+
| Field        | Value                                                 |
+--------------+-------------------------------------------------------+
| enabled      | True                                                  |
| id           | 3e6d113e089240778db410c27ff828a2                      |
| interface    | public                                                |
| region       | RegionOne                                             |
| region_id    | RegionOne                                             |
| service_id   | a3ecde6a8f944283a3896cc8183ed281                      |
| service_name | swift                                                 |
| service_type | object-store                                          |
| url          | https://network.srv.world:8080/v1/AUTH_%(project_id)s |
+--------------+-------------------------------------------------------+

# [swift] 用エンドポイント作成 (internal)

[root@dlp ~(keystone)]#
openstack endpoint create --region RegionOne object-store internal https://$swift_proxy:8080/v1/AUTH_%\(project_id\)s

+--------------+-------------------------------------------------------+
| Field        | Value                                                 |
+--------------+-------------------------------------------------------+
| enabled      | True                                                  |
| id           | 1f982759cf644e7f9b98a94ee55131aa                      |
| interface    | internal                                              |
| region       | RegionOne                                             |
| region_id    | RegionOne                                             |
| service_id   | a3ecde6a8f944283a3896cc8183ed281                      |
| service_name | swift                                                 |
| service_type | object-store                                          |
| url          | https://network.srv.world:8080/v1/AUTH_%(project_id)s |
+--------------+-------------------------------------------------------+

# [swift] 用エンドポイント作成 (admin)

[root@dlp ~(keystone)]#
openstack endpoint create --region RegionOne object-store admin https://$swift_proxy:8080/v1

+--------------+-----------------------------------+
| Field        | Value                             |
+--------------+-----------------------------------+
| enabled      | True                              |
| id           | 54da458473474eaea5ab62140b39b2cf  |
| interface    | admin                             |
| region       | RegionOne                         |
| region_id    | RegionOne                         |
| service_id   | a3ecde6a8f944283a3896cc8183ed281  |
| service_name | swift                             |
| service_type | object-store                      |
| url          | https://network.srv.world:8080/v1 |
+--------------+-----------------------------------+
関連コンテンツ