Debian 12 bookworm
Sponsored Link

OpenStack Zed : Swift 設定 (Control ノード)2023/06/29

 
OpenStack Object Storage(Swift)を設定します。
当例では以下のような環境を例に Swift サービスを設定します。
------------+--------------------------+------------
            |                          |
        eth0|10.0.0.30             eth0|10.0.0.50
+-----------+-----------+  +-----------+-----------+
|   [ dlp.srv.world ]   |  | [ network.srv.world ] |
|     (Control Node)    |  |      (Proxy Node)     |
|                       |  |                       |
|  MariaDB    RabbitMQ  |  |      Swift Proxy      |
|  Memcached  Nginx     |  |         Nginx         |
|  Keystone   httpd     |  |                       |
+-----------------------+  +-----------------------+

------------+--------------------------+--------------------------+-----------
        eth0|10.0.0.71             eth0|10.0.0.72             eth0|10.0.0.73
+-----------+-----------+  +-----------+-----------+  +-----------+-----------+
|  [snode01.srv.world]  |  |  [snode02.srv.world]  |  |  [snode03.srv.world]  |
|    (Storage Node#1)   |  |    (Storage Node#2)   |  |    (Storage Node#3)   |
|                       |  |                       |  |                       |
|     Swift-Account     |  |     Swift-Account     |  |     Swift-Account     |
|    Swift-Container    |  |    Swift-Container    |  |    Swift-Container    |
|     Swift-Object      |  |     Swift-Object      |  |     Swift-Object      |
+-----------------------+  +-----------------------+  +-----------------------+

[1] Control ノードの Keystone に Swift 用のユーザー等々を登録しておきます。
# [service] プロジェクト所属で [swift] ユーザーを作成

root@dlp ~(keystone)#
openstack user create --domain default --project service --password servicepassword swift

+---------------------+----------------------------------+
| Field               | Value                            |
+---------------------+----------------------------------+
| default_project_id  | d8b09d86ed7743039f92b2e542ea26c1 |
| domain_id           | default                          |
| enabled             | True                             |
| id                  | f8ae8e6b62a147be8c256002243d0a1a |
| name                | swift                            |
| options             | {}                               |
| password_expires_at | None                             |
+---------------------+----------------------------------+

# [swift] ユーザーを [admin] ロール に加える

root@dlp ~(keystone)#
openstack role add --project service --user swift admin
# [swift] 用サービスエントリ作成

root@dlp ~(keystone)#
openstack service create --name swift --description "OpenStack Object Storage" object-store

+-------------+----------------------------------+
| Field       | Value                            |
+-------------+----------------------------------+
| description | OpenStack Object Storage         |
| enabled     | True                             |
| id          | 7cd9527d3abe40c39526b71de37ff0c6 |
| name        | swift                            |
| type        | object-store                     |
+-------------+----------------------------------+

# Swift Proxy ノードを定義

root@dlp ~(keystone)#
export swift_proxy=network.srv.world
# [swift] 用エンドポイント作成 (public)

root@dlp ~(keystone)#
openstack endpoint create --region RegionOne object-store public https://$swift_proxy:8080/v1/AUTH_%\(tenant_id\)s

+--------------+------------------------------------------------------+
| Field        | Value                                                |
+--------------+------------------------------------------------------+
| enabled      | True                                                 |
| id           | 7fe1c389c08a44c0bfd68069cb519987                     |
| interface    | public                                               |
| region       | RegionOne                                            |
| region_id    | RegionOne                                            |
| service_id   | 7cd9527d3abe40c39526b71de37ff0c6                     |
| service_name | swift                                                |
| service_type | object-store                                         |
| url          | https://network.srv.world:8080/v1/AUTH_%(tenant_id)s |
+--------------+------------------------------------------------------+

# [swift] 用エンドポイント作成 (internal)

root@dlp ~(keystone)#
openstack endpoint create --region RegionOne object-store internal https://$swift_proxy:8080/v1/AUTH_%\(tenant_id\)s

+--------------+------------------------------------------------------+
| Field        | Value                                                |
+--------------+------------------------------------------------------+
| enabled      | True                                                 |
| id           | 65544bfe8c204d5b8047c532c1fec685                     |
| interface    | internal                                             |
| region       | RegionOne                                            |
| region_id    | RegionOne                                            |
| service_id   | 7cd9527d3abe40c39526b71de37ff0c6                     |
| service_name | swift                                                |
| service_type | object-store                                         |
| url          | https://network.srv.world:8080/v1/AUTH_%(tenant_id)s |
+--------------+------------------------------------------------------+

# [swift] 用エンドポイント作成 (admin)

root@dlp ~(keystone)#
openstack endpoint create --region RegionOne object-store admin https://$swift_proxy:8080/v1

+--------------+-----------------------------------+
| Field        | Value                             |
+--------------+-----------------------------------+
| enabled      | True                              |
| id           | 40b24a1d090446d1abf2d44b77f6ebdd  |
| interface    | admin                             |
| region       | RegionOne                         |
| region_id    | RegionOne                         |
| service_id   | 7cd9527d3abe40c39526b71de37ff0c6  |
| service_name | swift                             |
| service_type | object-store                      |
| url          | https://network.srv.world:8080/v1 |
+--------------+-----------------------------------+
関連コンテンツ