openshift认证

展开阅读全文

openshift m5示例应用自签名证书错误

02-28

<div class="post-text" itemprop="text"> <p>I'm trying to follow the directions for the openshift 3 v0.3.3 sample-app on centos 6.6 as per <a href="https://github.com/openshift/origin/tree/v0.3.3" rel="nofollow">https://github.com/openshift/origin/tree/v0.3.3</a> . When i run </p> <pre><code>openshift ex policy add-user view anypassword:test-admin </code></pre> <p>i get complaints from add_user.go:43</p> <pre><code>Get https://localhost:8443/osapi/v1beta1/policyBindings/master?namespace=default: x509: certificate signed by unknown authority </code></pre> <p>I didn't know how to get around it so i commented out the Fatal() call. This allowed execution to continue and i can login to the web administrator console. The next step worked but then i hit </p> <pre><code>openshift ex registry --create --credentials="${KUBECONFIG}" </code></pre> <p>which produces the error</p> <pre><code>registry.go:145] Can't check for existing docker-registry "docker-registry": Get https://localhost:8443/api/v1beta1/services/docker-registry?namespace=default: x509: certificate signed by unknown authority </code></pre> <p>There are LOTS of registry.go files in openshift and i don't like kludging through these errors in any case. Perhaps it's just a case of finding the right .pem file so i can follow this procedure: <a href="https://www.happyassassin.net/2015/01/14/trusting-additional-cas-in-fedora-rhel-centos-dont-append-to-etcpkitlscertsca-bundle-crt-or-etcpkitlscert-pem/" rel="nofollow">https://www.happyassassin.net/2015/01/14/trusting-additional-cas-in-fedora-rhel-centos-dont-append-to-etcpkitlscertsca-bundle-crt-or-etcpkitlscert-pem/</a>. Does anyone have experience with this?</p> <p>thanks!</p> </div> 问答

没有更多推荐了,返回首页

©️2019 CSDN 皮肤主题: 编程工作室 设计师: CSDN官方博客

分享到微信朋友圈

×

扫一扫,手机浏览