无法从控制器ping / ssh Openstack VM内部实例

时间:2016-04-24 03:52:16

标签: openstack openstack-nova openstack-neutron private-cloud

我有一个工作的单节点centos Openstack实例,它在很多方面很好地工作,除了一个让我撕掉头发的问题。

问题在于:当我创建新的VM实例时,我无法从控制器计算机ping / ssh它们。因此,当VM出现在10.0.1.x网络上时,我无法直接从控制器访问它。我可以从Horizo​​n Console应用程序访问该计算机 - 这让我感到困惑,因为地平线正在控制器上运行。如果我向机器添加浮动IP,我可以从控制器以及LAN上的任何系统访问它。

我已经确认安全组已正确设置并打开,以允许访问ssh和icmp。这是安全组设置:

ALLOW IPv6 to ::/0
ALLOW IPv4 to 0.0.0.0/0
ALLOW IPv4 from default
ALLOW IPv6 from default
ALLOW IPv4 22/tcp from 0.0.0.0/0
ALLOW IPv4 icmp from 0.0.0.0/0

以及其他各种可能有助于识别问题的设置:

br-ex: flags=4163<UP,BROADCAST,RUNNING,MULTICAST>  mtu 1500
    inet 192.168.1.200  netmask 255.255.255.0  broadcast 192.168.1.255
    inet6 fe80::dacb:8aff:fea4:471  prefixlen 64  scopeid 0x20<link>
    ether d8:cb:8a:a4:04:71  txqueuelen 0  (Ethernet)
    RX packets 418591  bytes 66744430 (63.6 MiB)
    RX errors 0  dropped 51  overruns 0  frame 0
    TX packets 217891  bytes 165063129 (157.4 MiB)
    TX errors 0  dropped 0 overruns 0  carrier 0  collisions 0


[liz@openstack-controlle ~(keystone_admin)]$ neutron net-list
+--------------------------------------+---------------+-----------------------------------------------------+
| id                                   | name          | subnets                                             |
+--------------------------------------+---------------+-----------------------------------------------------+
| a1ab7093-2884-4032-8511-003e89fcb81e | external      | c184b9ef-f16d-4aad-9c7b-5d2f5e49ce58 192.168.1.0/24 |
| bb3da742-1223-4859-83f1-d03bda84ff2d | intenal-saidi | 160b1f41-de0a-40e0-9d3d-9a6630347e0e 10.0.1.0/24    |
+--------------------------------------+---------------+-----------------------------------------------------+

[liz@openstack-controlle ~(keystone_admin)]$ neutron router-list
+--------------------------------------+--------------+-------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------+-------------+-------+
| id                                   | name         | external_gateway_info                                                                                                                                                                     | distributed | ha    |
+--------------------------------------+--------------+-------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------+-------------+-------+
| 9cd5d292-a7bb-4dcf-969d-f174e397b949 | router-saidi | {"network_id": "a1ab7093-2884-4032-8511-003e89fcb81e", "enable_snat": true, "external_fixed_ips": [{"subnet_id": "c184b9ef-f16d-4aad-9c7b-5d2f5e49ce58", "ip_address": "192.168.1.201"}]} | False       | False |
+--------------------------------------+--------------+-------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------+-------------+-------+

0 个答案:

没有答案