Re: [ovirt-users] Engine and nodes ssh setup

There is a step I am not sure : is root user on the engine supposed t= o be=0A > able to log into nodes without password or not ? In my case it= doesn't=0A=0A No, the webadmin application uses Java implementation of=
--=_c5002ad26b7ed9cd543fb426f89741ec Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: quoted-printable Hi,=0A I have weaked "/usr/lib/python2.7/site-packages/vdsm/sslutils.p= y" in order to get more informative errors. So here is what I get 2018= -03-23 12:26:17,367+0100 ERROR (Reactor thread) [ProtocolDetector.SSLHan= dshakeDispatcher] ssl handshake: SSLError, address: ::ffff:10.100.1.100= error : [EOF occurred in violation of protocol (_ssl.c:579)] dispatcher= : socket: ('::ffff:10.100.1.51', 54321, 0, 0) family: 10 protocol: 6 (s= slutils:259)=0A=0A Can someone explain what it means ? Regards =0A=0A= Le 22-Mar-2018 10:55:03 +0100, msivak@redhat.com a crit: =0AHi,=0A=0A= the ssh=0A protocol and you give it the needed password when you add a= host for=0A the first time. It prepares ssh keys for itself and stores= them in=0A database (iirc).=0A=0A The root user on the machine running= the webadmin app does not have=0A any access to hosts afaik.=0A=0A Best= regards=0A=0A Martin Sivak=0A=0A On Thu, Mar 22, 2018 at 10:39 AM, wro= te:=0A > Hi,=0A >=0A > I am still trying to make my restored hosted engi= ne communicate with the=0A > nodes without success.=0A >=0A > There is a= step I am not sure : is root user on the engine supposed to be=0A > abl= e to log into nodes without password or not ? In my case it doesn't=0A >= =0A > By the way, where are located the certificates actually used for t= hese=0A > communications ?=0A >=0A > Regards=0A >=0A > _________________= _______________=0A > FreeMail powered by mail.fr=0A > __________________= _____________________________=0A > Users mailing list=0A > Users@ovirt.o= rg=0A > http://lists.ovirt.org/mailman/listinfo/users=0A > =0A=0A-------= ------------------------------------------------------------------------= ------------------=0AFreeMail powered by mail.fr --=_c5002ad26b7ed9cd543fb426f89741ec Content-Type: text/html; charset=utf-8 Content-Transfer-Encoding: quoted-printable <div><span style=3D"font-family: arial, helvetica,sans-serif; font-size:= 10pt; color: #000000;">Hi,<br /></span></div>=0A<div> </div>=0A<di= v><span style=3D"font-family: arial, helvetica,sans-serif; font-size: 10= pt; color: #000000;">I have weaked "/usr/lib/python2.7/site-packages/vds= m/sslutils.py" in order to get more informative errors. So here is what= I get</span></div>=0A<div> </div>=0A<div><span style=3D"font-famil= y: arial, helvetica,sans-serif; font-size: 10pt; color: #000000;">2018-0= 3-23 12:26:17,367+0100 ERROR (Reactor thread) [ProtocolDetector.SSLHands= hakeDispatcher] ssl handshake: SSLError, address: ::ffff:10.100.1.100 er= ror : [EOF occurred in violation of protocol (_ssl.c:579)] dispatcher: &= lt;vdsm.sslutils.SSLSocket object at 0x30be450> socket: ('::ffff:10.1= 00.1.51', 54321, 0, 0) family: 10 protocol: 6 (sslutils:259)<br /><br />= </span></div>=0A<div><span style=3D"font-family: arial, helvetica,sans-s= erif; font-size: 10pt; color: #000000;">Can someone explain what it mean= s ?</span></div>=0A<div> </div>=0A<div><span style=3D"font-family:= arial, helvetica,sans-serif; font-size: 10pt; color: #000000;">Regards<= /span></div>=0A<p><br /><br /> Le 22-Mar-2018 10:55:03 +0100, msivak@red= hat.com a écrit:</p>=0A<div> </div>=0A<blockquote style=3D"m= argin-left: 0; padding-left: 5px; border-left: 2px solid navy;">Hi,<br /=
<br /> > There is a step I am not sure : is root user on the engine= supposed to be<br /> > able to log into nodes without password or no= t ? In my case it doesn't<br /><br /> No, the webadmin application uses= Java implementation of the ssh<br /> protocol and you give it the neede= d password when you add a host for<br /> the first time. It prepares ssh= keys for itself and stores them in<br /> database (iirc).<br /><br /> T= he root user on the machine running the webadmin app does not have<br />= any access to hosts afaik.<br /><br /> Best regards<br /><br /> Martin= Sivak<br /><br /> On Thu, Mar 22, 2018 at 10:39 AM, <spfma.tech@e.ma= il.fr> wrote:<br /> > Hi,<br /> ><br /> > I am still trying= to make my restored hosted engine communicate with the<br /> > nodes= without success.<br /> ><br /> > There is a step I am not sure := is root user on the engine supposed to be<br /> > able to log into n= odes without password or not ? In my case it doesn't<br /> ><br /> &g= t; By the way, where are located the certificates actually used for thes= e<br /> > communications ?<br /> ><br /> > Regards<br /> ><b= r /> > ________________________________<br /> > FreeMail powered b= y mail.fr<br /> > _______________________________________________<br= /> > Users mailing list<br /> > <a href=3D"mailto:Users@ovirt.org= " target=3D"_blank" rel=3D"noreferrer noopener">Users@ovirt.org</a><br /= > <a href=3D"http://lists.ovirt.org/mailman/listinfo/users" target= =3D"_blank" rel=3D"noreferrer noopener">http://lists.ovirt.org/mailman/l= istinfo/users</a><br /> ></blockquote>=0A <br/><hr= FreeMail powered by <a href=3D"https://mail.fr" target=3D"_blank">mail.= fr</a>=0A
--=_c5002ad26b7ed9cd543fb426f89741ec--
participants (1)
-
spfma.tech@e.mail.fr