无法通过boto使用亚马逊命令行shell

0 投票
2 回答
1506 浏览
提问于 2025-04-17 18:51

我正在尝试创建一个实例并通过ssh登录到服务器,我在按照一本书上的例子操作:

import os
import time
import boto
import boto.manage.cmdshell

def launch_instance(ami="ami-54cf5c3d",
                    instance_type="t1.micro",
                    key_name="paws",
                    key_extension=".pem",
                    key_dir="~/.ssh",
                    group_name="paws",
                    ssh_port="22",
                    cidr="0.0.0.0/0",
                    tag="paws",
                    user_data=None,
                    cmd_shell=True,
                    login_user="ec2-user",
                    ssh_passwd=None):

    cmd=None
    ec2 = boto.connect_ec2() # Crededentials are stored in /etc/boto.cfg

    try:
        ec2.get_all_key_pairs(keynames=[key_name])[0]
    except ec2.ResponseError, e:
        if e.code == 'InvalidKeyPair.NotFound':
            print 'Creating keypair %s' % key_name
            key = ec2.create_key_pair(key_name)
            key.save(key_dir)
        else:
            raise

    try:
        group = ec2.get_all_security_groups(groupnames=[group_name])[0]
    except ec2.ResponseError, e:
        if e.code == 'InvalidGroup.NotFound':
            print 'Creating security group %s' % group_name
            group = ec2.create_security_group(group_name,
                                              'A group that allows SSH access')
        else:
            raise

    try:
        group.authorize('tcp',ssh_port,ssh_port,cidr)
    except ec2.ResponseError, e:
        if e.code == 'InvalidPermission.Duplicate':
            print 'Security group %s already authorized' % group_name
        else:
            raise

    reservation = ec2.run_instances(ami,
                                    key_name=key_name,
                                    security_groups=[group_name],
                                    instance_type=instance_type,
                                    user_data=user_data)
    instance = reservation.instances[0]

    print 'waiting for instance...'
    while instance.state != 'running':
        time.sleep(5)
        instance.update()
    print 'Instance is now running' 
    print 'Instance IP is %s' % instance.ip_address

    instance.add_tag(tag)

    if cmd_shell:
        key_path = os.path.join(os.path.expanduser(key_dir),
                                key_name + key_extension)
        cmd = boto.manage.cmdshell.sshclient_from_instance(instance,
                                                           key_path,
                                                           user_name=login_user)

    return (instance, cmd)


launch_instance()  

这是我得到的输出:

root@johntheripper-PORTEGE-Z835:~/boto# python ec2_launch_test.py 
Security group paws already authorized
waiting for instance...
Instance is now running
SSH Connection refused, will retry in 5 seconds
SSH Connection refused, will retry in 5 seconds
SSH Connection refused, will retry in 5 seconds
SSH Connection refused, will retry in 5 seconds
SSH Connection refused, will retry in 5 seconds
Could not establish SSH connection

从最后一行可以看出,有些地方出错了。我在想可能是权限的问题,但即使我以root身份运行,情况也没有改变。

不过,我可以通过 ssh -i ........ ec2-user@..... 连接到这个实例。你能告诉我我哪里做错了吗?

2 个回答

3

我觉得一个更好的办法是实际去检查一下这个实例,看看它的ssh服务器是否准备好了,然后再继续进行后面的操作。

def poll_ssh(reservation): 
    # check if it is ready for ssh
    print '\nConnecting to ssh'
    for instance in reservation.instances:
        retry = True
        while retry:
            try:
                key_path = os.path.join(os.path.expanduser(KEY_DIR), KEY_NAME)
                key_path += '.pem'
                cmd = boto.manage.cmdshell.sshclient_from_instance(instance, key_path, user_name='ubuntu')
                #print 'debug: %s' % cmd
                if cmd:
                    retry = False #breaks the while loop once cmdshell returns true
                    cmd = None
                    print 'Connected to', instance
            except:
                time.sleep(5) # Let the sshd start up
        print 'Done\n'
2

有时候,即使实例显示“正在运行”,ssh服务器启动也需要一些时间。

可以加上一个 time.sleep(30) 的命令,然后再尝试用ssh连接,这样应该就能成功了。

参考链接

撰写回答