openstack的vnc启动ssl
生活随笔
收集整理的這篇文章主要介紹了
openstack的vnc启动ssl
小編覺得挺不錯的,現在分享給大家,幫大家做個參考.
1、制作ssl證書
#?cd?/etc/pki/tls/certs [root@www?certs]#?make?vnc.key Enter?pass?phrase:#?輸入密碼 Verifying?-?Enter?pass?phrase:#確認?# 從private key 中刪除密碼
#?openssl?rsa?-in?vnc.key?-out?vnc.key #?make?vnc.csr Country?Name?(2?letter?code)?[XX]:CN#?國家 State?or?Province?Name?(full?name)?[]:shanghai???#?省 Locality?Name?(eg,?city)?[Default?City]:?shanghai???#?市 Organization?Name?(eg,?company)?[Default?Company?Ltd]:openstack??#?公司 Organizational?Unit?Name?(eg,?section)?[]:Server?World???#?部門 Common?Name?(eg,?your?name?or?your?server's?hostname)?[]:www.srv.world???#?主機名 Email?Address?[]:xxx@srv.world?#?郵箱 Please?enter?the?following?'extra'?attributes to?be?sent?with?your?certificate?request A?challenge?password?[]:#回車 An?optional?company?name?[]:#?Enter?
#?openssl?x509?-in?vnc.csr?-out?vnc.crt?-req?-signkey?vnc.key?-days?3650 Signature?ok subject=/C=CN/ST=shanghai/L=shanghai/O=openstack/OU=computer/CN=www.openstack.com/emailAddress=example@openstack.com Getting?Private?key2、拷貝證書:
#?cp?-a?vnc.key?/etc/pki/tls/private3、賦予權限:
#?chown?nova:nova??/etc/pki/tls/private/vnc.key #?chown?nova:nova??/etc/pki/tls/certs/vnc.crt4、在controller上配置nova.conf
[DEFAULT] ssl_only=True cert=/etc/pki/tls/certs/vnc.crt key=/etc/pki/tls/private/vnc.key [vnc] novncproxy_base_url?=?https://192.168.8.100:6080/vnc_auto.html5、在computer上配置nova.conf
[vnc] novncproxy_base_url?=?https://192.168.8.100:6080/vnc_auto.html?
6、controller重啟nova服務
#?systemctl?|?grep?nova?|?awk?-F?"?"?'{print$1}'?|?xargs?systemctl?restart7、Computer上重啟服務
#?systemctl?|?grep?nova?|?awk?-F?"?"?'{print$1}'?|?xargs?systemctl?restart8、驗證:
?
?
轉載于:https://blog.51cto.com/chengshimayi/1922196
總結
以上是生活随笔為你收集整理的openstack的vnc启动ssl的全部內容,希望文章能夠幫你解決所遇到的問題。
- 上一篇: 土壤数据共享
- 下一篇: 常用数学特殊符号,复制到word中使用