Hello Ceph Users,
Is anyone successful in getting the SSL cert for Beast frontend into the config database?
Octopus 15.2.8
tail -f /var/log/ceph/ceph-client.rgw.*.log
2021-01-05T18:38:35.008+1100 7f7cd6ac9100 1 radosgw_Main not setting numa affinity
2021-01-05T18:38:35.321+1100 7f7cd6ac9100 0 framework: beast
2021-01-05T18:38:35.321+1100 7f7cd6ac9100 0 framework conf key: ssl_certificate, val:
config://rgw/cert/$realm/$zone.crt
2021-01-05T18:38:35.321+1100 7f7cd6ac9100 0 framework conf key: ssl_private_key, val:
config://rgw/cert/$realm/$zone.key
2021-01-05T18:38:35.321+1100 7f7cd6ac9100 0 starting handler: beast
2021-01-05T18:38:35.322+1100 7f7c9826d700 0 RGWReshardLock::lock failed to acquire lock
on reshard.0000000000 ret=-16
2021-01-05T18:38:35.333+1100 7f7cd6ac9100 -1 ssl_private_key was not found:
rgw/cert/OURREALM/OURZONE.key
2021-01-05T18:38:35.334+1100 7f7cd6ac9100 -1 ssl_private_key was not found:
rgw/cert/OURREALM/OURZONE.crt
2021-01-05T18:38:35.334+1100 7f7cd6ac9100 -1 no ssl_certificate configured for ssl_port
2021-01-05T18:38:35.334+1100 7f7cd6ac9100 -1 ERROR: failed initializing frontend
Certs are in the key store:
ceph config-key ls | grep rgw/cert/OURREALM/OURZONE.key
"rgw/cert/OURREALM/OURZONE ",
ceph config-key ls | grep rgw/cert/OURREALM/OURZONE.crt
"rgw/cert/OURREALM/OURZONE ",
I don't seem to have any luck with many different options set.
Glen
This e-mail is intended solely for the benefit of the addressee(s) and any other named
recipient. It is confidential and may contain legally privileged or confidential
information. If you are not the recipient, any use, distribution, disclosure or copying of
this e-mail is prohibited. The confidentiality and legal privilege attached to this
communication is not waived or lost by reason of the mistaken transmission or delivery to
you. If you have received this e-mail in error, please notify us immediately.