【问题标题】:kops ssh public key permission deniedkops ssh 公钥权限被拒绝
【发布时间】:2019-08-20 11:55:29
【问题描述】:

我正在尝试通过 kops 创建一个集群,遵循这些说明https://github.com/kubernetes/kops/blob/master/docs/cli/kops_create_cluster.md

这是我尝试过的

export AWS_ACCESS_KEY_ID=$(aws configure get aws_access_key_id)
export AWS_SECRET_ACCESS_KEY=$(aws configure get aws_secret_access_key)
export KOPS_CLUSTER_NAME=staging.fayzlab.com
export KOPS_STATE_STORE=s3://fayzlab-kops-stat-store

aws s3api create-bucket \
--bucket fayzlab-kops-stat-store \
--region us-east-1

aws s3api put-bucket-versioning --bucket fayzlab-kops-stat-store --versioning-configuration Status=Enabled

kops create cluster \
    --zones us-east-1b \
    --topology private \
    --networking calico \
    --api-ssl-certificate arn:aws:acm:us-east-1:679995182974:certificate/b1753864-f1b7-4a51-a008-cb14f07544ab \
    --master-size t2.micro\
    --master-count 1 \
    --node-size t2.micro \
    --node-count 1 \
    --name ${KOPS_CLUSTER_NAME}

我得到以下输出

{
    "Location": "/fayzlab-kops-stat-store"
}
I0329 17:58:56.299037   32539 create_cluster.go:496] Inferred --cloud=aws from zone "us-east-1b"
I0329 17:58:57.216939   32539 subnets.go:184] Assigned CIDR 172.20.32.0/19 to subnet us-east-1b
I0329 17:58:57.217040   32539 subnets.go:198] Assigned CIDR 172.20.0.0/22 to subnet utility-us-east-1b
Previewing changes that will be made:


SSH public key must be specified when running with AWS (create with `kops create secret --name staging.fayzlab.com sshpublickey admin -i ~/.ssh/id_rsa.pub`)

我创建了一个密钥ssh-keygen -t rsa -f ./cluster.fayzlab.com

尝试过

kops create secret sshpublickey admin -i ~/.ssh/cluster.fayzlab.com.pub \
  --name staging.fayzlab.com --state s3://fayzlab-kops-stat-store

但我收到此错误

error reading SSH public key /home/faiz/.ssh/cluster.fayzlab.com.pub: open /home/faiz/.ssh/cluster.fayzlab.com.pub: permission denied

我已经用尽了所有在线选项和资源。请指教。

文件权限

-rw------- 1 faiz faiz 1766 Mar 29 17:51 cluster.fayzlab.com
-rw-r--r-- 1 faiz faiz  391 Mar 29 17:51 cluster.fayzlab.com.pub

【问题讨论】:

  • 我遇到了同样的问题 - 我提供了更改为目录的完整路径 删除并重新创建了 ssh 密钥 没有任何效果
  • 我重新安装了 kops,这对我有用。删除 kops 和 kubectl 并重新安装。
  • 我做了同样的事情 - 请在stackoverflow.com/questions/61296806/…查看详细信息

标签: amazon-web-services kubernetes kops


【解决方案1】:

选项一

1) 将工作目录更改为

cd ~/.ssh/

2) 并再次运行如下命令

kops create secret sshpublickey admin -i cluster.fayzlab.com.pub --name staging.fayzlab.com --state s3://fayzlab-kops-stat-store

选项二

提供您的公钥的完整路径,即

kops create secret sshpublickey admin -i /home/faiz/.ssh/cluster.fayzlab.com.pub --name staging.fayzlab.com --state s3://fayzlab-kops-stat-store

【讨论】:

    猜你喜欢
    • 2019-11-24
    • 2014-11-08
    • 2019-03-11
    • 1970-01-01
    • 2019-03-08
    • 2016-08-13
    • 1970-01-01
    • 1970-01-01
    • 1970-01-01
    相关资源
    最近更新 更多