9be717e860

The patch introduces network policy configuration similar to openstack-helm services. It allows users to configure policies depending on the environment. * Network policies are disabled by default. * When enabled default policies allow all ingress and egress traffic (i.e. policy set to {}), this may be changed in future patch-sets. Change-Id: I2adb5e652c1da0a1982ab18c498f033910a47cd8
Divingbell
Introduction
Divingbell is a lightweight solution for:
1. Bare metal configuration management for a few very targeted use cases via the following modules:
- apparmor
- ethtool
- exec (run arbitrary scripts)
- system limits
- mounts
- permissions (perm)
- sysctl values
- basic user account management (uamlite)
- Bare metal package manager orchestration using apt module
What problems does it solve?
The needs identified for Divingbell were:
- To plug gaps in day 1 tools (e.g., Drydock) for node configuration
- To provide a day 2 solution for managing these configurations going forward
- [Future] To provide a day 2 solution for system level host patching
Documentation
Find more documentation for Divingbell on Read the Docs.
Further Reading
Description
Languages
Shell
56.5%
Smarty
41.9%
Makefile
1%
Python
0.6%