@andrey - pasted the output of the contrail-lbaas-auth.conf from all the k8s-node. kube-api-server should be 10.84.7.34 instead of the node ip. I have attached the instances.yaml as well.
[root@b4s41 /]# cat /etc/contrail/contrail-lbaas-auth.conf [BARBICAN] admin_tenant_name = service admin_user = barbican admin_password = contrail123 auth_url = http://127.0.0.1:35357/v2.0 region = RegionOne user_domain_name = Default project_domain_name = Default region_name = RegionOne insecure = True certfile = keyfile = cafile = [KUBERNETES] kubernetes_token=eyJhbGciOiJSUzI1NiIsInR5cCI6IkpXVCJ9.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.q3tRamhVQNLfkQ_eQqQBWGOpzLlbOa6_LQ7DNk8U-jR7eikT8NJi0GqstoacXQ5E1eEF1JNAHkoY5MD5n10gQSNyBwxxAeTYYQNZk7n9j9-DjfnnHJEO78MkM3oL-YEO5fGf_1xMv8AAc19tiQfoqiQxP-Prs1CmPJ3HsmCmF-Lx8Y2dDRd9Odf8BNkyzQwjaM9Saou91c703rxQDVbb98_LTPmb8VLZh-9gc3WQIoy8Mnjpft-54BZM1f80XZYQZb49X9CQ1abYlsYo9eZbdRiE7JRZliad5rqAq0qLfYu64UZVWegkFlnhBSQi2A8GBIleub7gfK1wetcO6zr2SA kubernetes_api_server=10.84.24.61 kubernetes_api_port=8080 kubernetes_api_secure_port=6443 [root@b4s41 /]#
[root@b4s42 /]# cat /etc/contrail/contrail-lbaas-auth.conf [BARBICAN] admin_tenant_name = service admin_user = barbican admin_password = contrail123 auth_url = http://127.0.0.1:35357/v2.0 region = RegionOne user_domain_name = Default project_domain_name = Default region_name = RegionOne insecure = True certfile = keyfile = cafile = [KUBERNETES] kubernetes_token=eyJhbGciOiJSUzI1NiIsInR5cCI6IkpXVCJ9.eyJpc3MiOiJrdWJlcm5ldGVzL3NlcnZpY2VhY2NvdW50Iiwia3ViZXJuZXRlcy5pby9zZXJ2aWNlYWNjb3VudC9uYW1lc3BhY2UiOiJA kubernetes_api_server=10.84.24.62 kubernetes_api_port=8080 kubernetes_api_secure_port=6443 [root@b4s42 /]#
instances.yaml -------------- global_configuration: CONTAINER_REGISTRY: ci-repo.englab.juniper.net:5000 REGISTRY_PRIVATE_INSECURE: true CONTRAIL_VERSION: master-115 provider_config: bms: ssh_pwd: c0ntrail123 ssh_user: root domainsuffix: local instances: bms1: provider: bms ip: 10.84.7.34 roles: config_database: config: control: analytics_database: analytics: webui: k8s_master: kubemanager: bms2: provider: bms ip: 10.84.24.61 roles: vrouter: k8s_node: bms3: provider: bms ip: 10.84.24.62 roles: vrouter: k8s_node: contrail_configuration: CLOUD_ORCHESTRATOR: kubernetes
Thanks, Yuavraja
@andrey - pasted the output of the contrail- lbaas-auth. conf from all the k8s-node.
kube-api-server should be 10.84.7.34 instead of the node ip. I have attached the instances.yaml as well.
[root@b4s41 /]# cat /etc/contrail/ contrail- lbaas-auth. conf 127.0.0. 1:35357/ v2.0 token=eyJhbGciO iJSUzI1NiIsInR5 cCI6IkpXVCJ9. eyJpc3MiOiJrdWJ lcm5ldGVzL3Nlcn ZpY2VhY2NvdW50I iwia3ViZXJuZXRl cy5pby9zZXJ2aWN lYWNjb3VudC9uYW 1lc3BhY2UiOiJjb 250cmFpbCIsImt1 YmVybmV0ZXMuaW8 vc2VydmljZWFjY2 91bnQvc2VjcmV0L m5hbWUiOiJjb250 cmFpbC1rdWJlbWF uYWdlci10b2tlbi 1ncG03eiIsImt1Y mVybmV0ZXMuaW8v c2VydmljZWFjY29 1bnQvc2VydmljZS 1hY2NvdW50Lm5hb WUiOiJjb250cmFp bC1rdWJlbWFuYWd lciIsImt1YmVybm V0ZXMuaW8vc2Vyd mljZWFjY291bnQv c2VydmljZS1hY2N vdW50LnVpZCI6Ij BjMGRiZTI1LTYwO WYtMTFlOC1hMTgz LTAwMjU5MGE1NDU 4MyIsInN1YiI6In N5c3RlbTpzZXJ2a WNlYWNjb3VudDpj b250cmFpbDpjb25 0cmFpbC1rdWJlbW FuYWdlciJ9. q3tRamhVQNLfkQ_ eQqQBWGOpzLlbOa 6_LQ7DNk8U- jR7eikT8NJi0Gqs toacXQ5E1eEF1JN AHkoY5MD5n10gQS NyBwxxAeTYYQNZk 7n9j9-DjfnnHJEO 78MkM3oL- YEO5fGf_ 1xMv8AAc19tiQfo qiQxP-Prs1CmPJ3 HsmCmF- Lx8Y2dDRd9Odf8B NkyzQwjaM9Saou9 1c703rxQDVbb98_ LTPmb8VLZh- 9gc3WQIoy8Mnjpf t-54BZM1f80XZYQ Zb49X9CQ1abYlsY o9eZbdRiE7JRZli ad5rqAq0qLfYu64 UZVWegkFlnhBSQi 2A8GBIleub7gfK1 wetcO6zr2SA api_server= 10.84.24. 61 api_port= 8080 api_secure_ port=6443
[BARBICAN]
admin_tenant_name = service
admin_user = barbican
admin_password = contrail123
auth_url = http://
region = RegionOne
user_domain_name = Default
project_domain_name = Default
region_name = RegionOne
insecure = True
certfile =
keyfile =
cafile =
[KUBERNETES]
kubernetes_
kubernetes_
kubernetes_
kubernetes_
[root@b4s41 /]#
[root@b4s42 /]# cat /etc/contrail/ contrail- lbaas-auth. conf 127.0.0. 1:35357/ v2.0 token=eyJhbGciO iJSUzI1NiIsInR5 cCI6IkpXVCJ9. eyJpc3MiOiJrdWJ lcm5ldGVzL3Nlcn ZpY2VhY2NvdW50I iwia3ViZXJuZXRl cy5pby9zZXJ2aWN lYWNjb3VudC9uYW 1lc3BhY2UiOiJA api_server= 10.84.24. 62 api_port= 8080 api_secure_ port=6443
[BARBICAN]
admin_tenant_name = service
admin_user = barbican
admin_password = contrail123
auth_url = http://
region = RegionOne
user_domain_name = Default
project_domain_name = Default
region_name = RegionOne
insecure = True
certfile =
keyfile =
cafile =
[KUBERNETES]
kubernetes_
kubernetes_
kubernetes_
kubernetes_
[root@b4s42 /]#
instances.yaml configuration: REGISTRY: ci-repo. englab. juniper. net:5000 PRIVATE_ INSECURE: true
config_ database:
analytics_ database:
kubemanager: configuration: ORCHESTRATOR: kubernetes
--------------
global_
CONTAINER_
REGISTRY_
CONTRAIL_VERSION: master-115
provider_config:
bms:
ssh_pwd: c0ntrail123
ssh_user: root
domainsuffix: local
instances:
bms1:
provider: bms
ip: 10.84.7.34
roles:
config:
control:
analytics:
webui:
k8s_master:
bms2:
provider: bms
ip: 10.84.24.61
roles:
vrouter:
k8s_node:
bms3:
provider: bms
ip: 10.84.24.62
roles:
vrouter:
k8s_node:
contrail_
CLOUD_
Thanks,
Yuavraja