Moby: http: .. EOF์˜ TLS ํ•ธ๋“œ์…ฐ์ดํฌ ์˜ค๋ฅ˜

์— ๋งŒ๋“  2015๋…„ 12์›” 11์ผ  ยท  3์ฝ”๋ฉ˜ํŠธ  ยท  ์ถœ์ฒ˜: moby/moby

์ž์ฒด ์„œ๋ช…๋œ ์ธ์ฆ์„œ๋ฅผ ์‚ฌ์šฉํ•˜์—ฌ ๋‚˜๋งŒ์˜ ๊ฐœ์ธ ๋„์ปค ๋ ˆ์ง€์ŠคํŠธ๋ฆฌ๋ฅผ ๋งŒ๋“ค๊ณ  ์‹ถ์Šต๋‹ˆ๋‹ค. ์ €๋Š” AWS EC2์˜ CentOS7์—์„œ ์ž‘์—…ํ•˜๊ณ  ์žˆ์Šต๋‹ˆ๋‹ค. ๋‚ด๊ฐ€ ๋”ฐ๋ž๋˜ ๋‹จ๊ณ„๋Š” ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

์ธ์ฆ์„œ ์ƒ์„ฑ

mkdir -p certs && openssl req \
  -newkey rsa:4096 -nodes -sha256 -keyout certs/domain.key \
  -x509 -days 365 -out certs/domain.crt

๋‚ด๊ฐ€ ์ค€ cname: ec2-xx-xx-xx-xx.compute.amazonaws.com(ec2์˜ ์™ธ๋ถ€ ํ˜ธ์ŠคํŠธ ์ด๋ฆ„)
์˜ฌ๋ฐ”๋ฅธ ๊ถŒํ•œ ๋ถ€์—ฌ:

chcon -Rt svirt_sandbox_file_t /home/centos/certs/

๋‚ด ๋ ˆ์ง€์ŠคํŠธ๋ฆฌ ์ƒ์„ฑ ๋ฐ ์‹คํ–‰:

docker run -d -p 5000:5000 --restart=always --name registry \
  -v `pwd`/certs:/certs \
  -e REGISTRY_HTTP_TLS_CERTIFICATE=certs/domain.crt \
  -e REGISTRY_HTTP_TLS_KEY=certs/domain.key \
  registry:2

์ด์ œ ์ด๋ฏธ์ง€์— ํƒœ๊ทธ๋ฅผ ์ง€์ •ํ•˜๊ณ  ํ‘ธ์‹œํ•ฉ๋‹ˆ๋‹ค.
docker tag ubuntu ec2-xx-xx-xx-xx.compute.amazonaws.com:5000/ubuntu
docker push ec2-xx-xx-xx-xx.compute.amazonaws.com:5000/ubuntu ํ‘ธ์‹œ

๋‹ค์Œ ์˜ค๋ฅ˜๊ฐ€ ๋ฐœ์ƒํ–ˆ์Šต๋‹ˆ๋‹ค.

unable to ping registry endpoint https://ec2-xx-xx-xx-xx.compute.amazonaws.com:5000/v0/
v2 ping attempt failed with error: Get https://ec2-xx-xx-xx-xx.compute.amazonaws.com:5000/v2/: net/http: TLS handshake timeout
 v1 ping attempt failed with error: Get https://ec2-xx-xx-xx-xx.compute.amazonaws.com:5000/v1/_ping: net/http: TLS handshake timeout

๊ทธ๋ฆฌ๊ณ  ๋‚ด ๋„์ปค ๋กœ๊ทธ์—์„œ

2015/12/11 12:49:21 http: TLS handshake error from 10.0.x.x:54152: EOF

๊ฐ€์žฅ ์œ ์šฉํ•œ ๋Œ“๊ธ€

๋‚˜๋Š” ๊ฐ™์€ ๋ฌธ์ œ๊ฐ€ ์žˆ์Šต๋‹ˆ๋‹ค. ๋ˆ„๊ตฌ๋“ ์ง€ ๋„์šธ ์ˆ˜ ์žˆ์Šต๋‹ˆ๊นŒ?

๋ชจ๋“  3 ๋Œ“๊ธ€

์•ˆ๋…•!

๋ฌธ์ œ ์ƒ์„ฑ์— ๋Œ€ํ•œ ์ด ์ค‘์š”ํ•œ ์ •๋ณด๋ฅผ ์ฝ์œผ์‹ญ์‹œ์˜ค.

์ƒˆ๋กœ์šด ๋ฌธ์ œ๋ฅผ ๋ณด๊ณ ํ•˜๋Š” ๊ฒฝ์šฐ ์ด๋ฏธ ์—ด๋ ค ์žˆ๋Š” ์ค‘๋ณต ํ•ญ๋ชฉ์ด ์—†๋Š”์ง€ ํ™•์ธํ•˜์‹ญ์‹œ์˜ค. ์ด ์ €์žฅ์†Œ์˜ ๋ฌธ์ œ ๋ชฉ๋ก์„ ๊ฒ€์ƒ‰ํ•˜์—ฌ ์ด๋ฅผ ํ™•์ธํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ์ค‘๋ณต์ด ์žˆ๋Š” ๊ฒฝ์šฐ ๋ฌธ์ œ๋ฅผ ๋‹ซ๊ณ  ๋Œ€์‹  ๊ธฐ์กด ๋ฌธ์ œ์— ๋Œ“๊ธ€์„ ์ถ”๊ฐ€ํ•˜์„ธ์š”.

๋ฌธ์ œ๊ฐ€ ๋ฒ„๊ทธ๋ผ๊ณ  ์˜์‹ฌ๋˜๋Š” ๊ฒฝ์šฐ ์•„๋ž˜์— ํ‘œ์‹œ๋œ BUG REPORT INFORMATION์„ ํฌํ•จํ•˜๋„๋ก ๋ฌธ์ œ ์„ค๋ช…์„ ์ˆ˜์ •ํ•˜์‹ญ์‹œ์˜ค. 7์ผ ์ด๋‚ด์— ์ด ์ •๋ณด๋ฅผ ์ œ๊ณตํ•˜์ง€ ์•Š์œผ๋ฉด ๋ฌธ์ œ๋ฅผ ๋””๋ฒ„๊น…ํ•  ์ˆ˜ ์—†์œผ๋ฉฐ ์ข…๋ฃŒ๋ฉ๋‹ˆ๋‹ค. ๊ทธ๋Ÿฌ๋‚˜ ๋‚˜์ค‘์— ์ •๋ณด๋ฅผ ์ œ๊ณตํ•˜๋ฉด ๋‹ค์‹œ ์—ด ๊ฒƒ์ž…๋‹ˆ๋‹ค.

์ด๊ฒƒ์€ ์ž๋™ํ™”๋œ ์ •๋ณด ์‘๋‹ต์ž…๋‹ˆ๋‹ค.

๊ฐ์‚ฌํ•ฉ๋‹ˆ๋‹ค.

๋ฌธ์ œ ๋ณด๊ณ ์— ๋Œ€ํ•œ ์ž์„ธํ•œ ๋‚ด์šฉ์€ https://github.com/docker/docker/blob/master/CONTRIBUTING.md#reporting -other-issues๋ฅผ ์ฐธ์กฐํ•˜์„ธ์š”.


๋ฒ„๊ทธ ๋ณด๊ณ  ์ •๋ณด

์•„๋ž˜ ๋ช…๋ น์„ ์‚ฌ์šฉํ•˜์—ฌ ํ™˜๊ฒฝ์˜ ์ฃผ์š” ์ •๋ณด๋ฅผ ์ œ๊ณตํ•˜์‹ญ์‹œ์˜ค.

docker version :
docker info :
uname -a :

์ถ”๊ฐ€ ํ™˜๊ฒฝ ์„ธ๋ถ€ ์ •๋ณด ์ œ๊ณต(AWS, VirtualBox, ๋ฌผ๋ฆฌ์  ๋“ฑ):

๋ฌธ์ œ๋ฅผ ์žฌํ˜„ํ•˜๋Š” ๋‹จ๊ณ„๋ฅผ ๋‚˜์—ดํ•ฉ๋‹ˆ๋‹ค.
1.
2.
์‚ผ.

๋ฐ›์€ ๊ฒฐ๊ณผ๋ฅผ ์„ค๋ช…ํ•˜์„ธ์š”.

์˜ˆ์ƒํ•œ ๊ฒฐ๊ณผ๋ฅผ ์„ค๋ช…ํ•˜์„ธ์š”.

์ค‘์š”ํ•˜๋‹ค๊ณ  ์ƒ๊ฐํ•˜๋Š” ์ถ”๊ฐ€ ์ •๋ณด๋ฅผ ์ œ๊ณตํ•˜์„ธ์š”.

----------๋ณด๊ณ ์„œ ์ข…๋ฃŒ ----------

์—๋‹ˆ๋“œ๋ชจ์–ด ์ •๋ณด

๋‚˜๋Š” ๊ฐ™์€ ๋ฌธ์ œ๋ฅผ ๋ณธ๋‹ค.

๋ฒˆ์‹ํ•˜๋ ค๋ฉด:

1) ์ž์ฒด ํ• ๋‹น ์ธ์ฆ์„œ ์ƒ์„ฑ
2) ๋‹ค์Œ ๋ช…๋ น์„ ์‚ฌ์šฉํ•˜์—ฌ ๋ ˆ์ง€์ŠคํŠธ๋ฆฌ๋ฅผ ๋งŒ๋“ญ๋‹ˆ๋‹ค.
docker run -d -p 5000:5000 --restart=always --name registry -v /home/.../data:/var/lib/registry -v /home/.../auth:/auth -e "REGISTRY_AUTH=htpasswd" -e "REGISTRY_AUTH_HTPASSWD_REALM=Registry Realm" -e REGISTRY_AUTH_HTPASSWD_PATH=/auth/htpasswd -v /home/.../certs:/certs -e REGISTRY_HTTP_TLS_CERTIFICATE=/certs/$CERT -e REGISTRY_HTTP_TLS_KEY=/certs/$KEY registry:2

https://docs.docker.com/registry/insecure/ ๋ฅผ ๋”ฐ๋ผ ๋„์ปค๊ฐ€ ์ž์ฒด ํ• ๋‹น๋œ ์ธ์ฆ์„œ๋กœ ์ž‘๋™ํ•˜๋„๋ก ํ•ฉ๋‹ˆ๋‹ค.

๊ฒฐ๊ณผ๋Š” ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

time="2016-03-09T19:03:05Z" level=warning msg="์ œ๊ณต๋œ HTTP ๋น„๋ฐ€ ์—†์Œ - ๋ฌด์ž‘์œ„ ๋น„๋ฐ€ ์ƒ์„ฑ. ๋กœ๋“œ ๋ฐธ๋Ÿฐ์„œ ๋’ค์— ์—ฌ๋Ÿฌ ๋ ˆ์ง€์ŠคํŠธ๋ฆฌ๊ฐ€ ์žˆ๋Š” ๊ฒฝ์šฐ ์—…๋กœ๋“œ์— ๋ฌธ์ œ๊ฐ€ ๋ฐœ์ƒํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ๊ณต์œ  ๋น„๋ฐ€์„ ์ œ๊ณตํ•˜๋ ค๋ฉด ๊ตฌ์„ฑ ํŒŒ์ผ์— http.secret์„ ์ž…๋ ฅํ•˜๊ฑฐ๋‚˜ REGISTRY_HTTP_SECRET ํ™˜๊ฒฝ ๋ณ€์ˆ˜๋ฅผ ์„ค์ •ํ•˜์‹ญ์‹œ์˜ค." go.version=go1.5.3 instance.id=fe73a5f8-5fcc-4c46-8488-7f1edba79266 ๋ฒ„์ „=v2.3.1
time="2016-03-09T19:03:05Z" level=info msg="redis๊ฐ€ ๊ตฌ์„ฑ๋˜์ง€ ์•Š์Œ" go.version=go1.5.3 instance.id=fe73a5f8-5fcc-4c46-8488-7f1edba79266 ๋ฒ„์ „=v2.3.1
time="2016-03-09T19:03:05Z" level=info msg="50๋ถ„ ํ›„ ์—…๋กœ๋“œ ์ œ๊ฑฐ ์‹œ์ž‘" go.version=go1.5.3 instance.id=fe73a5f8-5fcc-4c46-8488-7f1edba79266 version=v2.3.1
time="2016-03-09T19:03:05Z" level=info msg="๋ฉ”๋ชจ๋ฆฌ Blob ์„ค๋ช…์ž ์บ์‹œ ์‚ฌ์šฉ" go.version=go1.5.3 instance.id=fe73a5f8-5fcc-4c46-8488-7f1edba79266 version=v2.3.1
time="2016-03-09T19:03:05Z" level=info msg="๋“ฃ๊ธฐ [::]:5000, tls" go.version=go1.5.3 instance.id=fe73a5f8-5fcc-4c46-8488-7f1edba79266 ๋ฒ„์ „=v2.3.1
2016/03/09 19:03:33 http: xx.xx.xx.xx:53010์˜ TLS ํ•ธ๋“œ์…ฐ์ดํฌ ์˜ค๋ฅ˜: EOF
2016/03/09 19:03:43 http: xx.xx.xx.xx:53011: EOF์˜ TLS ํ•ธ๋“œ์…ฐ์ดํฌ ์˜ค๋ฅ˜
2016/03/09 19:04:00 http: xx.xx.xx.xx:53325์˜ TLS ํ•ธ๋“œ์…ฐ์ดํฌ ์˜ค๋ฅ˜: tls: ์ฒซ ๋ฒˆ์งธ ๋ ˆ์ฝ”๋“œ๊ฐ€ TLS ํ•ธ๋“œ์…ฐ์ดํฌ์ฒ˜๋Ÿผ ๋ณด์ด์ง€ ์•Š์Šต๋‹ˆ๋‹ค.
2016/03/09 19:04:06 http: xx.xx.xx.xx:53327์˜ TLS ํ•ธ๋“œ์…ฐ์ดํฌ ์˜ค๋ฅ˜: tls: ์ฒซ ๋ฒˆ์งธ ๋ ˆ์ฝ”๋“œ๊ฐ€ TLS ํ•ธ๋“œ์…ฐ์ดํฌ์ฒ˜๋Ÿผ ๋ณด์ด์ง€ ์•Š์Šต๋‹ˆ๋‹ค.
2016/03/09 19:04:09 http: xx.xx.xx.xx:53326์˜ TLS ํ•ธ๋“œ์…ฐ์ดํฌ ์˜ค๋ฅ˜: tls: ์ฒซ ๋ฒˆ์งธ ๋ ˆ์ฝ”๋“œ๊ฐ€ TLS ํ•ธ๋“œ์…ฐ์ดํฌ์ฒ˜๋Ÿผ ๋ณด์ด์ง€ ์•Š์Šต๋‹ˆ๋‹ค.
2016/03/09 19:04:13 http: xx.xx.xx.xx:53328์˜ TLS ํ•ธ๋“œ์…ฐ์ดํฌ ์˜ค๋ฅ˜: tls: ์ฒซ ๋ฒˆ์งธ ๋ ˆ์ฝ”๋“œ๊ฐ€ TLS ํ•ธ๋“œ์…ฐ์ดํฌ์ฒ˜๋Ÿผ ๋ณด์ด์ง€ ์•Š์Šต๋‹ˆ๋‹ค.
2016/03/09 19:04:24 http: xx.xx.xx.xx:53329์˜ TLS ํ•ธ๋“œ์…ฐ์ดํฌ ์˜ค๋ฅ˜: EOF
2016/03/09 19:04:35 http: xx.xx.xx.xx:53333์˜ TLS ํ•ธ๋“œ์…ฐ์ดํฌ ์˜ค๋ฅ˜: EOF
2016/03/09 19:04:35 http: xx.xx.xx.xx:53334์˜ TLS ํ•ธ๋“œ์…ฐ์ดํฌ ์˜ค๋ฅ˜: EOF

์˜ค๋ฅ˜๋ฅผ ๋ณด๊ณ ํ•˜์ง€ ์•Š๋Š” ์ค„์€ ์›น ๋ธŒ๋ผ์šฐ์ €๋ฅผ ํ†ตํ•ด ์—ฐ๊ฒฐ์„ ์‹œ๋„ํ•˜๋Š” ๊ณณ์ž…๋‹ˆ๋‹ค.
๋‹ค์Œ์„ ์‚ฌ์šฉํ•˜์—ฌ ๋ ˆ์ง€์ŠคํŠธ๋ฆฌ์— ๋กœ๊ทธ์ธํ•  ์ˆ˜ ์žˆ์„ ๊ฒƒ์œผ๋กœ ์˜ˆ์ƒํ–ˆ์Šต๋‹ˆ๋‹ค.

๋„์ปค ๋กœ๊ทธ์ธ myserver:5000

ํ•˜์ง€๋งŒ ์ž๊ฒฉ ์ฆ๋ช…์„ ์ž…๋ ฅํ•œ ํ›„ ๋ฉˆ์ถฅ๋‹ˆ๋‹ค. ๋„์ปค ๋กœ๊ทธ๋Š” ์œ„์˜ ๋‚ด์šฉ์„ ๋ณด๊ณ ํ•ฉ๋‹ˆ๋‹ค.

์‹œ์Šคํ…œ ์ •๋ณด:
๋„์ปค ๋ฒ„์ „
๊ณ ๊ฐ:
๋ฒ„์ „: 1.9.1
API ๋ฒ„์ „: 1.21
์ด๋™ ๋ฒ„์ „: go1.4.2
ํž˜๋‚ด ์ปค๋ฐ‹: a34a1d5
์ž‘์„ฑ์ผ: 2015๋…„ 11์›” 20์ผ ๊ธˆ์š”์ผ 13:12:04 UTC
OS/์•„์น˜: linux/amd64

์„ฌ๊ธฐ๋Š” ์‚ฌ๋žŒ:
๋ฒ„์ „: 1.9.1
API ๋ฒ„์ „: 1.21
์ด๋™ ๋ฒ„์ „: go1.4.2
ํž˜๋‚ด ์ปค๋ฐ‹: a34a1d5
์ž‘์„ฑ์ผ: 2015๋…„ 11์›” 20์ผ ๊ธˆ์š”์ผ 13:12:04 UTC
OS/์•„์น˜: linux/amd64

๋„์ปค ์ •๋ณด
์ปจํ…Œ์ด๋„ˆ: 34
์ด๋ฏธ์ง€: 230
์„œ๋ฒ„ ๋ฒ„์ „: 1.9.1
์ €์žฅ ๋“œ๋ผ์ด๋ฒ„: aufs
๋ฃจํŠธ ๋””๋ ‰ํ† ๋ฆฌ: /var/lib/docker/aufs
๋ฐฑ์—… ํŒŒ์ผ ์‹œ์Šคํ…œ: extfs
๋””๋ ‰ํ† ๋ฆฌ: 298
Dirperm1 ์ง€์›: true
์‹คํ–‰ ๋“œ๋ผ์ด๋ฒ„: native-0.2
๋กœ๊น… ๋“œ๋ผ์ด๋ฒ„: json-file
์ปค๋„ ๋ฒ„์ „: 3.19.0-25-์ผ๋ฐ˜
์šด์˜ ์ฒด์ œ: ์šฐ๋ถ„ํˆฌ 14.04.3 LTS
CPU: 4
์ด ๋ฉ”๋ชจ๋ฆฌ: 3.665GiB
์ด๋ฆ„: coheatServer002
ID: 6 ์˜ค์ง€:T4AJ :TYV3:UC7E:SKW5:5V4V:74YJ:IY3H:4Q7I:T4EB:3 SJL:NVIQ
๊ฒฝ๊ณ : ์Šค์™‘ ์ œํ•œ ์ง€์› ์—†์Œ

์šฐ๋‚˜๋ฉ” -a
Linux coheatServer002 3.19.0-25-generic #26~14.04.1-Ubuntu SMP Fri Jul 24 21:16:20 UTC 2015 x86_64 x86_64 x86_64 GNU/Linux

๋‚˜๋Š” ๊ฐ™์€ ๋ฌธ์ œ๊ฐ€ ์žˆ์Šต๋‹ˆ๋‹ค. ๋ˆ„๊ตฌ๋“ ์ง€ ๋„์šธ ์ˆ˜ ์žˆ์Šต๋‹ˆ๊นŒ?

์ด ํŽ˜์ด์ง€๊ฐ€ ๋„์›€์ด ๋˜์—ˆ๋‚˜์š”?
0 / 5 - 0 ๋“ฑ๊ธ‰