ืื ื’ืœื™ืชืฆืจืคืชื™ืชืกืคืจื“ื™

Ad


ืกืžืœ OnWorks

keystone - ืžืงื•ื•ืŸ ื‘ืขื ืŸ

ื”ืคืขืœ Keystone ื‘ืกืคืง ืื™ืจื•ื— ื‘ื—ื™ื ื ืฉืœ OnWorks ืขืœ ืื•ื‘ื•ื ื˜ื• ืื•ื ืœื™ื™ืŸ, ืคื“ื•ืจื” ืื•ื ืœื™ื™ืŸ, ืืžื•ืœื˜ื•ืจ ืžืงื•ื•ืŸ ืฉืœ Windows ืื• ืืžื•ืœื˜ื•ืจ ืžืงื•ื•ืŸ ืฉืœ MAC OS

ื–ื•ื”ื™ ืื‘ืŸ ื”ืžืคืชื— ืฉืœ ื”ืคืงื•ื“ื” ืฉื ื™ืชืŸ ืœื”ืคืขื™ืœ ื‘ืกืคืง ื”ืื™ืจื•ื— ื”ื—ื™ื ืžื™ ืฉืœ OnWorks ื‘ืืžืฆืขื•ืช ืื—ืช ืžืชื—ื ื•ืช ื”ืขื‘ื•ื“ื” ื”ืžืงื•ื•ื ื•ืช ื”ืžืจื•ื‘ื•ืช ืฉืœื ื•, ื›ื’ื•ืŸ Ubuntu Online, Fedora Online, ืืžื•ืœื˜ื•ืจ ืžืงื•ื•ืŸ ืฉืœ Windows ืื• ืืžื•ืœื˜ื•ืจ ืžืงื•ื•ืŸ ืฉืœ MAC OS

ืชึธื›ึฐื ึดื™ืช:

ืฉืึตื


keystone - ืœืงื•ื— ืขื‘ื•ืจ OpenStack Identity API

ืชึทืงืฆึดื™ืจ


ืื‘ืŸ ื”ืžืคืชื— [ืืคืฉืจื•ื™ื•ืช] [ืืคืฉืจื•ื™ื•ืช ืคืงื•ื“ื”]

ืื‘ืŸ ื”ืžืคืชื— ืœืขื–ื•ืจ

ืื‘ืŸ ื”ืžืคืชื— ืœืขื–ื•ืจ

ืชื™ืื•ืจ


ืื–ื”ืจื”:
ืืœ ื”ืื ื™ ืื‘ืŸ ื”ืžืคืชื— ื›ืœื™ ื”ืฉื™ืจื•ืช ืฉืœ ืฉื•ืจืช ื”ืคืงื•ื“ื” ืžืžืชื™ืŸ ืœื”ื•ืฆืื” ืžืฉื™ืžื•ืฉ. ื” OpenStackClient ืžืื•ื—ื“
ื”ืคืงื•ื“ื” ืงื• ืชื•ืขืœืช ื™ืฉ ืœื”ืฉืชืžืฉ ื‘ืžืงื•ื. ื” ืื‘ืŸ ื”ืžืคืชื— ืฉื™ืจื•ืช ืฉื•ืจืช ื”ืคืงื•ื“ื” ื‘ืœื‘ื“
ืชื•ืžืš ื‘-V2 ืฉืœ Identity API ื•ืื™ืœื• ืชื•ื›ื ื™ืช OSC ืชื•ืžื›ืช ื’ื ื‘-V2 ื•ื’ื ื‘-V3.

ืืœ ื”ืื ื™ ืื‘ืŸ ื”ืžืคืชื— ืฉื™ืจื•ืช ืฉื•ืจืช ื”ืคืงื•ื“ื” ืžืงื™ื™ื ืื™ื ื˜ืจืืงืฆื™ื” ืขื ืฉื™ืจื•ืชื™ื ื”ืžืกืคืงื™ื OpenStack Identity API
(ืœืžืฉืœ Keystone).

ื›ื“ื™ ืœืชืงืฉืจ ืขื ื”-API, ืชืฆื˜ืจืš ืœื”ื™ื•ืช ืžืื•ืžืช - ื•ืืช ืื‘ืŸ ื”ืžืคืชื— ืžืกืคืง
ืืคืฉืจื•ื™ื•ืช ืžืจื•ื‘ื•ืช ืœื›ืš.

ื‘ื–ืžืŸ ื”ืืชื—ื•ืœ ืฉืœ Keystone, ื”ืื™ืžื•ืช ืžืชื‘ืฆืข ื‘ืืžืฆืขื•ืช ืืกื™ืžื•ืŸ ืกื•ื“ื™ ืžืฉื•ืชืฃ
ื•ื”ืžื™ืงื•ื ืฉืœ ื ืงื•ื“ืช ื”ืงืฆื” ืฉืœ Identity API. ื”ืืกื™ืžื•ืŸ ื”ืกื•ื“ื™ ื”ืžืฉื•ืชืฃ ืžื•ื’ื“ืจ ื‘
keystone.conf ื‘ืชื•ืจ "admin_token".

ืืชื” ื™ื›ื•ืœ ืœืฆื™ื™ืŸ ืขืจื›ื™ื ืืœื” ื‘ืฉื•ืจืช ื”ืคืงื•ื“ื” ืขื --os-token ื• --os-endpoint, ืื• ืœื”ื’ื“ื™ืจ
ืื•ืชื ื‘ืžืฉืชื ื™ ืกื‘ื™ื‘ื”:

OS_SERVICE_TOKEN
ื”ืืกื™ืžื•ืŸ ื”ื ื™ื”ื•ืœื™ ืฉืœ Keystone ืฉืœืš

OS_SERVICE_ENDPOINT
ื ืงื•ื“ืช ื”ืงืฆื” ืฉืœ Identity API

ืืคืฉืจื•ื™ื•ืช ืฉื•ืจืช ื”ืคืงื•ื“ื” ื™ืขืงืคื• ืืช ื›ืœ ืžืฉืชื ื™ ื”ืกื‘ื™ื‘ื” ืฉื”ื•ื’ื“ืจื•.

ืื ื›ื‘ืจ ื™ืฉ ืœืš ื—ืฉื‘ื•ื ื•ืช, ืืชื” ื™ื›ื•ืœ ืœื”ืฉืชืžืฉ ื‘ืฉื ื”ืžืฉืชืžืฉ ื•ื”ืกื™ืกืžื” ืฉืœืš ื‘-OpenStack. ืืชื” ื™ื›ื•ืœ ืœืขืฉื•ืช
ื–ื” ืขื --os-ืฉื ืžืฉืชืžืฉ, --os-ืกื™ืกืžื”.

Keystone ืžืืคืฉืจ ืœืžืฉืชืžืฉ ืœื”ื™ื•ืช ืžืฉื•ื™ืš ืœืคืจื•ื™ืงื˜ ืื—ื“ ืื• ื™ื•ืชืจ ืฉื”ื ืžื‘ื—ื™ื ื” ื”ื™ืกื˜ื•ืจื™ืช
ื ืงืจื ื“ื™ื™ืจื™ื. ื›ื“ื™ ืœืฆื™ื™ืŸ ืืช ื”ืคืจื•ื™ืงื˜ ืฉื‘ืจืฆื•ื ืš ืœืืฉืจ ื ื’ื“ื•, ืชื•ื›ืœ
ืื•ืคืฆื™ื•ื ืœื™ ืœืฆื™ื™ืŸ ื --os-tenant-id or --os-danner-name.

ื‘ืžืงื•ื ืœื”ืฉืชืžืฉ ื‘ืืคืฉืจื•ื™ื•ืช, ืงืœ ื™ื•ืชืจ ืœื”ื’ื“ื™ืจ ืื•ืชืŸ ื›ืžืฉืชื ื™ ืกื‘ื™ื‘ื”:

OS_USERNAME
ืฉื ื”ืžืฉืชืžืฉ ืฉืœืš ื‘-Keystone.

OS_PASSWORD
ืกื™ืกืžืช ื”ืงื™ืกื˜ื•ืŸ ืฉืœืš.

OS_TENANT_NAME
ืฉื ืคืจื•ื™ืงื˜ Keystone.

OS_TENANT_ID
ืชืขื•ื“ืช ื–ื”ื•ืช ืฉืœ ื“ื™ื™ืจ Keystone.

OS_AUTH_URL
ื›ืชื•ื‘ืช ื”ืืชืจ ืฉืœ ืฉืจืช OpenStack API.

OS_IDENTITY_API_VERSION
ื’ืจืกืช OpenStack Identity API.

OS_CACERT
ื”ืžื™ืงื•ื ืฉืœ CA truststore (ื‘ืคื•ืจืžื˜ PEM) ืขื‘ื•ืจ ืœืงื•ื— ื–ื”.

OS_CERT
ื”ืžื™ืงื•ื ืฉืœ ืžืื’ืจ ื”ืžืคืชื—ื•ืช (ื‘ืคื•ืจืžื˜ PEM) ื”ืžื›ื™ืœ ืืช ื”ืžืคืชื— ื”ืฆื™ื‘ื•ืจื™ ืฉืœ ื–ื”
ืœึธืงื•ึผื—ึท. ืžืื’ืจ ืžืคืชื—ื•ืช ื–ื” ื™ื›ื•ืœ ืœื”ื›ื™ืœ ื’ื ืืช ื”ืžืคืชื— ื”ืคืจื˜ื™ ืฉืœ ืœืงื•ื— ื–ื”.

OS_KEY ื”ืžื™ืงื•ื ืฉืœ ืžืื’ืจ ื”ืžืคืชื—ื•ืช (ื‘ืคื•ืจืžื˜ PEM) ื”ืžื›ื™ืœ ืืช ื”ืžืคืชื— ื”ืคืจื˜ื™ ืฉืœ ื–ื”
ืœึธืงื•ึผื—ึท. ืขืจืš ื–ื” ื™ื›ื•ืœ ืœื”ื™ื•ืช ืจื™ืง ืื ื”ืžืคืชื— ื”ืคืจื˜ื™ ื›ืœื•ืœ ื‘-OS_CERT
ืงื•ื‘ืฅ.

ืœื“ื•ื’ืžื”, ื‘-Bash ื”ื™ื™ืช ืžืฉืชืžืฉ ื‘:

ื™ื™ืฆื•ื OS_USERNAME=ื”ืฉื ืฉืœืš
ื™ื™ืฆื OS_PASSWORD=yadayadayada
ื™ื™ืฆื OS_TENANT_NAME=ื”ืคืจื•ื™ืงื˜ ืฉืœื™
ื™ื™ืฆื•ื OS_AUTH_URL=http(s)://example.com:5000/v2.0/
ื™ื™ืฆื OS_IDENTITY_API_VERSION=2.0
ื™ื™ืฆื•ื OS_CACERT=/etc/keystone/yourca.pem
ื™ื™ืฆื OS_CERT=/etc/keystone/yourpublickey.pem
ื™ื™ืฆื•ื OS_KEY=/etc/keystone/yourprivatekey.pem

ืืคืฉืจื•ื™ื•ืช


ื›ื“ื™ ืœืงื‘ืœ ืจืฉื™ืžื” ืฉืœ ืคืงื•ื“ื•ืช ื•ืืคืฉืจื•ื™ื•ืช ื–ืžื™ื ื•ืช ื”ืคืขืœ:

ืขื–ืจื” ื‘ืื‘ืŸ ืžืคืชื—

ื›ื“ื™ ืœืงื‘ืœ ืฉื™ืžื•ืฉ ื•ืืคืฉืจื•ื™ื•ืช ืฉืœ ืคืงื•ื“ื”:

ืขื–ืจื” ื‘ืื‘ืŸ ืžืคืชื—

ื“ื•ื’ืžืื•ืช


ืงื‘ืœ ืžื™ื“ืข ืขืœ ืคืงื•ื“ืช ื™ืฆื™ืจืช ื ืงื•ื“ืช ืงืฆื”:

Keystone ืขื–ืจื” ื‘ื™ืฆื™ืจืช ื ืงื•ื“ื•ืช ืงืฆื”

ื”ืฆื’ ืืช ื ืงื•ื“ื•ืช ื”ืงืฆื” ืฉืœ ืฉื™ืจื•ืชื™ OpenStack:

ืงื˜ืœื•ื’ ืื‘ืŸ ืžืคืชื—

ืฆื•ืจ ืคืจื•ื™ืงื˜ 'ืฉื™ืจื•ืช':

keystone tenant-create --name=service

ืฆื•ืจ ืžืฉืชืžืฉ ืฉื™ืจื•ืช ืขื‘ื•ืจ nova:

keystone user-create --name=nova \
--tenant_id= \
--email=[ืžื•ื’ืŸ ื‘ื“ื•ื"ืœ]

ืฆืคื” ื‘ืชืคืงื™ื“ื™ื:

ืจืฉื™ืžืช ืชืคืงื™ื“ื™ ืื‘ืŸ ืžืคืชื—

ื”ืฉืชืžืฉ ื‘-keystone ื‘ืื™ื ื˜ืจื ื˜ ื‘ืืžืฆืขื•ืช ืฉื™ืจื•ืชื™ onworks.net


ืฉืจืชื™ื ื•ืชื—ื ื•ืช ืขื‘ื•ื“ื” ื‘ื—ื™ื ื

ื”ื•ืจื“ ืืคืœื™ืงืฆื™ื•ืช Windows & Linux

ืคืงื•ื“ื•ืช ืœื™ื ื•ืงืก

Ad