Debian 12 bookworm
Sponsored Link

OpenStack Zed : Configure Swift (Control Node)2023/06/29

 
Configure OpenStack Object Storage (Swift).
This example is based on the environment like follows.
------------+--------------------------+------------
            |                          |
        eth0|10.0.0.30             eth0|10.0.0.50
+-----------+-----------+  +-----------+-----------+
|   [ dlp.srv.world ]   |  | [ network.srv.world ] |
|     (Control Node)    |  |      (Proxy Node)     |
|                       |  |                       |
|  MariaDB    RabbitMQ  |  |      Swift Proxy      |
|  Memcached  Nginx     |  |         Nginx         |
|  Keystone   httpd     |  |                       |
+-----------------------+  +-----------------------+

------------+--------------------------+--------------------------+-----------
        eth0|10.0.0.71             eth0|10.0.0.72             eth0|10.0.0.73
+-----------+-----------+  +-----------+-----------+  +-----------+-----------+
|  [snode01.srv.world]  |  |  [snode02.srv.world]  |  |  [snode03.srv.world]  |
|    (Storage Node#1)   |  |    (Storage Node#2)   |  |    (Storage Node#3)   |
|                       |  |                       |  |                       |
|     Swift-Account     |  |     Swift-Account     |  |     Swift-Account     |
|    Swift-Container    |  |    Swift-Container    |  |    Swift-Container    |
|     Swift-Object      |  |     Swift-Object      |  |     Swift-Object      |
+-----------------------+  +-----------------------+  +-----------------------+

[1] Add Swift user or service on Keystone Server (Control Node) first.
# create [swift] user in [service] project

root@dlp ~(keystone)#
openstack user create --domain default --project service --password servicepassword swift

+---------------------+----------------------------------+
| Field               | Value                            |
+---------------------+----------------------------------+
| default_project_id  | d8b09d86ed7743039f92b2e542ea26c1 |
| domain_id           | default                          |
| enabled             | True                             |
| id                  | f8ae8e6b62a147be8c256002243d0a1a |
| name                | swift                            |
| options             | {}                               |
| password_expires_at | None                             |
+---------------------+----------------------------------+

# add [swift] user in [admin] role

root@dlp ~(keystone)#
openstack role add --project service --user swift admin
# create service entry for [swift]

root@dlp ~(keystone)#
openstack service create --name swift --description "OpenStack Object Storage" object-store

+-------------+----------------------------------+
| Field       | Value                            |
+-------------+----------------------------------+
| description | OpenStack Object Storage         |
| enabled     | True                             |
| id          | 7cd9527d3abe40c39526b71de37ff0c6 |
| name        | swift                            |
| type        | object-store                     |
+-------------+----------------------------------+

# define Swift Proxy Host

root@dlp ~(keystone)#
export swift_proxy=network.srv.world
# create endpoint for [swift] (public)

root@dlp ~(keystone)#
openstack endpoint create --region RegionOne object-store public https://$swift_proxy:8080/v1/AUTH_%\(tenant_id\)s

+--------------+------------------------------------------------------+
| Field        | Value                                                |
+--------------+------------------------------------------------------+
| enabled      | True                                                 |
| id           | 7fe1c389c08a44c0bfd68069cb519987                     |
| interface    | public                                               |
| region       | RegionOne                                            |
| region_id    | RegionOne                                            |
| service_id   | 7cd9527d3abe40c39526b71de37ff0c6                     |
| service_name | swift                                                |
| service_type | object-store                                         |
| url          | https://network.srv.world:8080/v1/AUTH_%(tenant_id)s |
+--------------+------------------------------------------------------+

# create endpoint for [swift] (internal)

root@dlp ~(keystone)#
openstack endpoint create --region RegionOne object-store internal https://$swift_proxy:8080/v1/AUTH_%\(tenant_id\)s

+--------------+------------------------------------------------------+
| Field        | Value                                                |
+--------------+------------------------------------------------------+
| enabled      | True                                                 |
| id           | 65544bfe8c204d5b8047c532c1fec685                     |
| interface    | internal                                             |
| region       | RegionOne                                            |
| region_id    | RegionOne                                            |
| service_id   | 7cd9527d3abe40c39526b71de37ff0c6                     |
| service_name | swift                                                |
| service_type | object-store                                         |
| url          | https://network.srv.world:8080/v1/AUTH_%(tenant_id)s |
+--------------+------------------------------------------------------+

# create endpoint for [swift] (admin)

root@dlp ~(keystone)#
openstack endpoint create --region RegionOne object-store admin https://$swift_proxy:8080/v1

+--------------+-----------------------------------+
| Field        | Value                             |
+--------------+-----------------------------------+
| enabled      | True                              |
| id           | 40b24a1d090446d1abf2d44b77f6ebdd  |
| interface    | admin                             |
| region       | RegionOne                         |
| region_id    | RegionOne                         |
| service_id   | 7cd9527d3abe40c39526b71de37ff0c6  |
| service_name | swift                             |
| service_type | object-store                      |
| url          | https://network.srv.world:8080/v1 |
+--------------+-----------------------------------+
Matched Content