无法使用SSL / TLS建立etcd集群

时间:2015-03-19 08:03:13

标签: etcd

我尝试使用SSL / TLS运行3台机器(10.0.0.1,10.0.0.2,10.0.0.3)的etcd集群,用于客户端和传输安全性,但我还是进入了麻烦,似乎群集无法选举它的领导者 - 筏落入周期。难道我做错了什么?所有机器都使用etcd 2.0.5

server1的

etcd -name eu1 -data-dir eu1 \
  -ca-file=/root/etcd-ca/ca.crt -cert-file=/root/etcd-ca/server1.crt -key-file=/root/etcd-ca/server1.key \
  -peer-ca-file=/root/etcd-ca/ca.crt -peer-cert-file=/root/etcd-ca/server1.crt -peer-key-file=/root/etcd-ca/server1.key \
  -initial-advertise-peer-urls=https://10.0.0.1:2380 -listen-peer-urls=https://10.0.0.1:2380 \
  -discovery https://discovery.etcd.io/7855c14b6cd05060974839f3833ea932

server2的

etcd -name eu2 -data-dir eu2 \
  -ca-file=/root/etcd-ca/ca.crt -cert-file=/root/etcd-ca/server2.crt -key-file=/root/etcd-ca/server2.key \
  -peer-ca-file=/root/etcd-ca/ca.crt -peer-cert-file=/root/etcd-ca/server2.crt -peer-key-file=/root/etcd-ca/server2.key \
  -initial-advertise-peer-urls=https://10.0.0.2:2380 -listen-peer-urls=https://10.0.0.2:2380 \
  -discovery https://discovery.etcd.io/7855c14b6cd05060974839f3833ea932

server3的

etcd -name player -data-dir player \
  -ca-file=/root/etcd-ca/ca.crt -cert-file=/root/etcd-ca/server3.crt -key-file=/root/etcd-ca/server3.key \
  -peer-ca-file=/root/etcd-ca/ca.crt -peer-cert-file=/root/etcd-ca/server3.crt -peer-key-file=/root/etcd-ca/server3.key \
  -initial-advertise-peer-urls=https://10.0.0.3:2380 -listen-peer-urls=https://10.0.0.3:2380 \
  -discovery https://discovery.etcd.io/7855c14b6cd05060974839f3833ea932

包含输出的日志文件:http://pastebin.com/JBitRT1e

感谢您提供任何帮助! 学家

0 个答案:

没有答案