自拍偷在线精品自拍偷,亚洲欧美中文日韩v在线观看不卡

保護(hù)企業(yè)私有云,構(gòu)建 Openstack yum 源操作示例

云計(jì)算 云安全 OpenStack
對(duì)于企業(yè)的 Openstack 私有云,出于安全和某些因素的考慮,有些服務(wù)器無(wú)法訪問(wèn)公網(wǎng),導(dǎo)致服務(wù)器無(wú)法更新某些 RPM 包,同時(shí)內(nèi)部常有 Openstack 新特性開(kāi)發(fā)需求、版本的維護(hù)與升級(jí),因此非常有必要構(gòu)建企業(yè)私有的 openstack yum 源。

[[124049]]

對(duì)于企業(yè)的 Openstack 私有云,出于安全和某些因素的考慮,有些服務(wù)器無(wú)法訪問(wèn)公網(wǎng),導(dǎo)致服務(wù)器無(wú)法更新某些 RPM 包,同時(shí)內(nèi)部常有 Openstack 新特性開(kāi)發(fā)需求、版本的維護(hù)與升級(jí),因此非常有必要構(gòu)建企業(yè)私有的 openstack yum 源。 構(gòu)建 openstack yum 源有兩個(gè)步驟:1.同步(下載)官方的源至企業(yè) yum 服務(wù)器中;2. 重新創(chuàng)建 repo 并通過(guò) nginx(apache)發(fā)布。

Overview

以 Redhat Openstack 官網(wǎng)安裝手冊(cè)為例,安裝 Openstack 需要用到兩類共計(jì) 8 個(gè) repo,

1). Centos 源

CentOS-Base.repo CentOS-Debuginfo.repo CentOS-Media.repo CentOS-Vault.repo

2). openstack 源及相關(guān)依賴源(epel, foreman, puppet):

epel.repo foreman.repo puppetlabs.repo rdo-release.repo

構(gòu)建本地源步驟

1.yum源文件下載

(1).下載必要工具:

[root@yumserver ~]# yum -y install wget

[root@yumserver ~]# yum -y install createrepo

(2).下載yum源到本地:

[root@yumserver ~]# mkdir -p /wget-yum

[root@yumserver ~]# cd /wget-yum

下載Centos 源:

[root@yumserver wget-yum]# wget -S -c -r -np -L http://mirrors.sohu.com/centos/6.5/

下載foreman源:

[root@yumserver wget-yum]# wget -S -c -r -np -L http://yum.theforeman.org/plugins/1.5/el6/

[root@yumserver wget-yum]# wget -S -c -r -np -L http://yum.theforeman.org/releases/1.5/el6/

下載epel源:

[root@yumserver wget-yum]# wget -S -c -r -np -L http://mirrors.yun-idc.com/epel/6/

下載puppetlabs源:

[root@yumserver wget-yum]# wget -S -c -r -np -L https://yum.puppetlabs.com/el/6/

下載openstack源:

[root@yumserver wget-yum]# wget -S -c -r -np -L https://repos.fedorapeople.org/repos/openstack/openstack-havana/

[root@yumserver wget-yum]# wget -S -c -r -np -L https://repos.fedorapeople.org/repos/openstack/openstack-icehouse/

(3).刪除不需要的軟件包和文件:

[root@yumserver wget-yum]# find ./ -name index.html* | xarge rm -rf

[root@yumserver wget-yum]# find ./ -name fedora-20 | xarge rm -rf

[root@yumserver wget-yum]# find ./ -name fedora-19 | xarge rm -rf

[root@yumserver wget-yum]# find ./ -name i386 | xarge rm -rf

(4).調(diào)整目錄結(jié)構(gòu):

[root@yumserver wget-yum]# mkdir foreman

[root@yumserver wget-yum]# mv yum.theforeman.org/plugins foreman/

[root@yumserver wget-yum]# mv yum.theforeman.org/releases foreman/

[root@yumserver wget-yum]# rm -rf yum.theforeman.org

[root@yumserver wget-yum]# mv mirrors.yun-idc.com/epel ./

[root@yumserver wget-yum]# rm -rf mirrors.yun-idc.com

[root@yumserver wget-yum]# mkdir puppetlabs

[root@yumserver wget-yum]# mv yum.puppetlabs.com/el /puppetlabs/

[root@yumserver wget-yum]# rm -rf yum.puppetlabs.com

[root@yumserver wget-yum]# mv repos.fedorapeople.org/repos/openstack ./

[root@yumserver wget-yum]# rm -rf repos.fedorapeople.org

[root@yumserver wget-yum]# ls

centos epel foreman openstack puppetlabs

#p#

2.nginx配置:

[root@yumserver wget-yum]# rpm -ivh http://nginx.org/packages/centos/6/noarch/RPMS/nginx-release-centos-6-0.el6.ngx.noarch.rpm

[root@yumserver wget-yum]# yum -y install nginx

[root@yumserver wget-yum]# vi /etc/nginx/nginx.conf

  1. <span style="color: rgb(69, 69, 69); font-family: Arial, sans-serif; font-size: 14px; line-height: 20px;">[root@yumserver&nbsp;wget-yum]# vi&nbsp;/etc/nginx/nginx.conf</span> 
  2. user  nginx; 
  3. worker_processes  8
  4. error_log  /var/log/nginx/error.log warn; 
  5. pid        /var/run/nginx.pid; 
  6. events { 
  7.     worker_connections  8192
  8. http { 
  9.     autoindex on; 
  10.     autoindex_exact_size off; 
  11.     autoindex_localtime on; 
  12.     charset utf-8,gbk;  
  13.     include       /etc/nginx/mime.types; 
  14.     default_type  application/octet-stream; 
  15.     log_format  main  '$remote_addr - $remote_user [$time_local] "$request" ' 
  16.                       '$status $body_bytes_sent "$http_referer" ' 
  17.                       '"$http_user_agent" "$http_x_forwarded_for"'
  18.     access_log  /var/log/nginx/access.log  main; 
  19.     sendfile        on; 
  20.     keepalive_timeout  65
  21.     include /etc/nginx/conf.d/*.conf; 
  22. [root@yumserver wget-yum]# vi /etc/nginx/conf.d/default.conf 
  23.   
  24. server { 
  25.     listen       80
  26.     server_name  openstack-yum-server.cn; 
  27.     location / { 
  28.         #root   html; 
  29.         root /wget-yum; 
  30.         autoindex on; 
  31.         index  index.html index.htm; 
  32.     } 
  33.     error_page   500 502 503 504  /50x.html; 
  34.     location = /50x.html { 
  35.         root   /usr/share/nginx/html; 
  36.     } 

[root@yumserver wget-yum]# /etc/init.d/nginx restart

3. release.rpm制作:

(1).下載icehouse源碼包:

[root@yumserver ~]# wget https://repos.fedorapeople.org/repos/openstack/openstack-icehouse/rdo-release-icehouse-4.src.rpm

(2).創(chuàng)建padraig用戶和組:

[root@yumserver ~]# groupadd -g 2000 padraig

[root@yumserver ~]# useradd -u 2000 -g padraig -m padraig -d /home -s /bin/bash

(3).解壓rpm,并修改各個(gè) .repo 文件的 url:

[root@yumserver ~]# rpm -i rdo-release-icehouse-4.src.rpm

修改 .repo 文件,以 rdo-release.repo 為例

  1. [openstack-havana] 
  2. name=OpenStack Havana Repository 
  3. baseurl=http://openstack-yum-server.cn/openstack/openstack-havana/epel-6/ 
  4. enabled=1 
  5. skip_if_unavailable=0 
  6. gpgcheck=0 
  7. gpgkey=file:///etc/pki/rpm-gpg/RPM-GPG-KEY-RDO-Havana 
  8. priority=98 

(4).修改 .spec 文件內(nèi)容:

[root@yumserver ~]# cd rpmbuild/

[root@yumserver rpmbuild]#

SOURCES SPECS

[root@yumserver ~]# cd SPECS

[root@yumserver SPECS]# vi rdo-release.spec

URL: https://github.com/redhat-openstack/rdo-release

Source0: rdo-release.repo

Source1: RPM-GPG-KEY-RDO-Icehouse

Source2: foreman.repo

Source3: RPM-GPG-KEY-foreman

Source4: puppetlabs.repo

Source5: RPM-GPG-KEY-puppetlabs

Source6: epel.repo

Source7: RPM-GPG-KEY-EPEL-6

 

%install

install -p -D -m 644 %{SOURCE0} %{buildroot}%{_sysconfdir}/yum.repos.d/rdo-release.repo

install -p -D -m 644 %{SOURCE2} %{buildroot}%{_sysconfdir}/yum.repos.d/foreman.repo

install -p -D -m 644 %{SOURCE4} %{buildroot}%{_sysconfdir}/yum.repos.d/puppetlabs.repo

install -p -D -m 644 %{SOURCE6} %{buildroot}%{_sysconfdir}/yum.repos.d/epel.repo


#GPG Keys

install -Dpm 644 %{SOURCE1} %{buildroot}%{_sysconfdir}/pki/rpm-gpg/RPM-GPG-KEY-RDO-Icehouse

install -Dpm 644 %{SOURCE3} %{buildroot}%{_sysconfdir}/pki/rpm-gpg/RPM-GPG-KEY-foreman

install -Dpm 644 %{SOURCE5} %{buildroot}%{_sysconfdir}/pki/rpm-gpg/RPM-GPG-KEY-puppetlabs

install -Dpm 644 %{SOURCE7} %{buildroot}%{_sysconfdir}/pki/rpm-gpg/RPM-GPG-KEY-EPEL-6

 

for repo in rdo-release foreman puppetlabs epel ; do

(5).修改SOURCES文件內(nèi)容,并增加相應(yīng)文件:

[root@yumserver SPECS]# cd ../SOURCES

[root@yumserver SOURCES]# ls

epel.repo foreman.repo puppetlabs.repo rdo-release.repo RPM-GPG-KEY-EPEL-6 RPM-GPG-KEY-foreman RPM-GPG-KEY-puppetlabs RPM-GPG-KEY-RDO-Icehouse

(6).重新打包rpm:

[root@yumserver SPECS]# yum -y install rpm-build

[root@yumserver SPECS]# pwd

/root/rpmbuild/SPECS

[root@yumserver SPECS]# rpmbuild -ba rdo-release.spec

#p#

4. 解決依賴關(guān)系,創(chuàng)建倉(cāng)庫(kù):

[root@yumserver updates]# ls

repodata x86_64

[root@yumserver updates]# pwd

yum-repo/openstack/openstack-icehouse/updates

[root@yumserver updates]# createrepo x86_64

5. repo 更新 RPM 包:

createrepo x86_64 --update

**********************************************************************************************************************************

編譯后的rpm源碼包示例:

new-rdo-release-havana-8.0.src.rpm
new-rdo-release-icehouse-4.0.src.rpm


troubleshooting:

yum repolist 出現(xiàn)

[root@controller yum.repos.d]# yum repolist
Loaded plugins: axelget, fastestmirror, security
Loading mirror speeds from cached hostfile

http://openstack-yum-server/ceph/el6/x86_64/repodata/repomd.xml: [Errno 14] PYCURL ERROR 22 - "The requested URL returned error: 403 Forbidden"
Trying other mirror.
http://openstack-yum-server/ceph/el6/noarch/repodata/repomd.xml: [Errno 14] PYCURL ERROR 22 - "The requested URL returned error: 403 Forbidden"
Trying other mirror.
.....


解決方案:
1)
每個(gè) repo 配置新增 proxy=None
[openstack-havana-updates]

.....
_proxy_=None
2)

關(guān)閉防火墻, service iptables stop

原文出自:http://blog.csdn.net/wsfdl/article/details/41808939

責(zé)任編輯:Ophira 來(lái)源: wsfdl的專欄
相關(guān)推薦

2011-06-08 14:24:11

CitrixOpenStack私有云

2020-03-04 15:52:38

OpenStack私有云技術(shù)

2013-05-27 09:32:07

構(gòu)建私有云OpenStack開(kāi)源云計(jì)算

2013-10-25 11:14:46

云發(fā)展OpenStack私有云

2017-11-07 06:28:11

2015-05-28 13:42:08

2015-07-21 16:59:22

OpenStack

2018-06-11 08:41:48

云存儲(chǔ)技巧私有

2014-12-10 09:36:09

OpenStack企業(yè)私有云

2014-05-12 11:00:42

紅帽

2017-03-03 10:18:13

存儲(chǔ)云APIGUI

2017-03-01 14:30:48

存儲(chǔ)云私有云公有云

2016-10-25 12:59:49

私有云OpenStack選項(xiàng)

2017-05-03 09:49:14

OpenStack私有云搭建

2013-08-30 16:19:30

私有云OATOSOATOS私有云

2016-09-12 17:17:06

OpenStack云計(jì)算私有云

2016-10-12 17:18:26

私有云持續(xù)交付華為

2015-08-06 09:45:14

私有云OpenStackVMware

2015-05-25 13:13:24

GartnerOpenStack私有云

2012-08-17 09:21:54

RackspaceOpenStack私有云
點(diǎn)贊
收藏

51CTO技術(shù)棧公眾號(hào)