R5.0-micro-services provision - keystone admin password.

Bug #1760064 reported by Ritam Gangopadhyay
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
Juniper Openstack
Status tracked in Trunk
Trunk
Invalid
Critical
Ramprakash R

Bug Description

1. It would be good to have a global password field which overrides contrail as well as kolla subsection passwords in instances.yaml.

2. If keystone admin password is not specified in kolla globals section of instances.yaml it should give priority to keystone password set in contrail configuration section and then take the default option.

Tags: provisioning
Revision history for this message
Sudheendra Rao (sudheendra-k) wrote :

Found this problem on build ocata-master-45, where default keystone_admin_password is changed to contrail123 (earlier it was c0ntrail123)
The knob KEYSTONE_AUTH_ADMIN_PASSWORD under contrail config in instances.yaml is set to c0ntrail123, due to this api-server fails to come up which is using the password as c0ntrail123 but keystone is brought up with password as contrail123.

Revision history for this message
Ramprakash R (ramprakash) wrote :

There should not be any need to specify KEYSTONE_AUTH_PASSWORD under contrail_configuration section.
Just specifying in kolla_passwords section should be sufficient. this will create credentials in keystone and contrail configurations are derived from this to use this password for authentication.

To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.