hongming
调度其他节点后,启动正常了。
之前的账号无法登录了,按照https://kubesphere.com.cn/forum/d/570-kubesphere-faq 的方法找回密码时,报错:
/ # packet='PUT /kapis/iam.kubesphere.io/v1alpha2/users/admin HTTP/1.1\r\nHost: ks-account.kubesphere-system.svc:9090\r\nUser-Agent: curl/7.54.0\r\nAccept: */*\r\nContent-Type: application
/json\r\nContent-Length: 105\r\n\r\n{"username": "admin","email":"admin@kubesphere.io","cluster_role": "cluster-admin","password":"P@88w0rd"}'; echo -ne $packet | nc ks-account.kubesphere-
system.svc 80
HTTP/1.1 500 Internal Server Error
Content-Type: application/json
Date: Tue, 19 May 2020 09:44:17 GMT
Content-Length: 58
{
"message": "LDAP Result Code 32 \"No Such Object\": "
}/ #
查看openLDAP的pod err日志有这么一段:
5ec3aa71 conn=1037 fd=17 ACCEPT from IP=10.233.66.57:35316 (IP=0.0.0.0:389)
5ec3aa71 conn=1037 op=0 BIND dn="cn=admin,dc=kubesphere,dc=io" method=128
5ec3aa71 conn=1037 op=0 BIND dn="cn=admin,dc=kubesphere,dc=io" mech=SIMPLE ssf=0
5ec3aa71 conn=1037 op=0 RESULT tag=97 err=0 text=
5ec3aa71 conn=1037 op=1 SRCH base="ou=Users,dc=kubesphere,dc=io" scope=2 deref=0 filter="(&(objectClass=inetOrgPerson)(mail=admin@kubesphere.io))"
5ec3aa71 conn=1037 op=1 SRCH attr=uid mail
5ec3aa71 conn=1037 op=1 SEARCH RESULT tag=101 err=32 nentries=0 text=
5ec3aa75 conn=1038 fd=18 ACCEPT from IP=10.233.72.1:39958 (IP=0.0.0.0:389)
5ec3aa75 conn=1038 fd=18 closed (connection lost)