3

我正在尝试使用 SSL/TLS 运行 3 台机器(10.0.0.1、10.0.0.2、10.0.0.3)的 etcd 集群,以实现客户端和传输安全,但我仍然遇到麻烦,看起来集群无法选举其领导者 - raft 陷入循环。难道我做错了什么?所有机器使用 etcd 2.0.5

服务器1

etcd -name eu1 -data-dir eu1 \
  -ca-file=/root/etcd-ca/ca.crt -cert-file=/root/etcd-ca/server1.crt -key-file=/root/etcd-ca/server1.key \
  -peer-ca-file=/root/etcd-ca/ca.crt -peer-cert-file=/root/etcd-ca/server1.crt -peer-key-file=/root/etcd-ca/server1.key \
  -initial-advertise-peer-urls=https://10.0.0.1:2380 -listen-peer-urls=https://10.0.0.1:2380 \
  -discovery https://discovery.etcd.io/7855c14b6cd05060974839f3833ea932

服务器2

etcd -name eu2 -data-dir eu2 \
  -ca-file=/root/etcd-ca/ca.crt -cert-file=/root/etcd-ca/server2.crt -key-file=/root/etcd-ca/server2.key \
  -peer-ca-file=/root/etcd-ca/ca.crt -peer-cert-file=/root/etcd-ca/server2.crt -peer-key-file=/root/etcd-ca/server2.key \
  -initial-advertise-peer-urls=https://10.0.0.2:2380 -listen-peer-urls=https://10.0.0.2:2380 \
  -discovery https://discovery.etcd.io/7855c14b6cd05060974839f3833ea932

服务器3

etcd -name player -data-dir player \
  -ca-file=/root/etcd-ca/ca.crt -cert-file=/root/etcd-ca/server3.crt -key-file=/root/etcd-ca/server3.key \
  -peer-ca-file=/root/etcd-ca/ca.crt -peer-cert-file=/root/etcd-ca/server3.crt -peer-key-file=/root/etcd-ca/server3.key \
  -initial-advertise-peer-urls=https://10.0.0.3:2380 -listen-peer-urls=https://10.0.0.3:2380 \
  -discovery https://discovery.etcd.io/7855c14b6cd05060974839f3833ea932

带有输出的日志文件:http: //pastebin.com/JBitRT1e

感谢您提供任何帮助!J。

4

0 回答 0