kerberos: switch servers to Ansible control
This is a follow-on to I60b40897486b29beafc76025790c501b5055313d to switch the KDC servers to Ansible control and remove any related puppet configuration. Change-Id: Ib8f6ec657ca10a3ba648bd154a035fc3d8da4be5
This commit is contained in:
parent
c1aff2ed38
commit
2254b6e43d
@ -72,8 +72,13 @@ groups:
|
|||||||
- health[0-9]*.openstack.org
|
- health[0-9]*.openstack.org
|
||||||
jvb:
|
jvb:
|
||||||
- jvb[0-9]*.opendev.org
|
- jvb[0-9]*.opendev.org
|
||||||
kdc:
|
kerberos-kdc:
|
||||||
- kdc[0-9]*.open*.org
|
- kdc03.openstack.org
|
||||||
|
- kdc04.openstack.org
|
||||||
|
kerberos-kdc-primary:
|
||||||
|
- kdc03.openstack.org
|
||||||
|
kerberos-kdc-replica:
|
||||||
|
- kdc04.openstack.org
|
||||||
letsencrypt:
|
letsencrypt:
|
||||||
- codesearch[0-9]*.opendev.org
|
- codesearch[0-9]*.opendev.org
|
||||||
- etherpad[0-9]*.opendev.org
|
- etherpad[0-9]*.opendev.org
|
||||||
@ -130,7 +135,6 @@ groups:
|
|||||||
- ethercalc[0-9]*.open*.org
|
- ethercalc[0-9]*.open*.org
|
||||||
- firehose[0-9]*.open*.org
|
- firehose[0-9]*.open*.org
|
||||||
- health[0-9]*.openstack.org
|
- health[0-9]*.openstack.org
|
||||||
- kdc[0-9]*.open*.org
|
|
||||||
- lists*.katacontainers.io
|
- lists*.katacontainers.io
|
||||||
- lists*.open*.org
|
- lists*.open*.org
|
||||||
- logstash-worker[0-9]*.open*.org
|
- logstash-worker[0-9]*.open*.org
|
||||||
@ -161,7 +165,6 @@ groups:
|
|||||||
- ethercalc[0-9]*.open*.org
|
- ethercalc[0-9]*.open*.org
|
||||||
- firehose[0-9]*.open*.org
|
- firehose[0-9]*.open*.org
|
||||||
- health[0-9]*.openstack.org
|
- health[0-9]*.openstack.org
|
||||||
- kdc[0-9]*.open*.org
|
|
||||||
- lists*.katacontainers.io
|
- lists*.katacontainers.io
|
||||||
- lists*.open*.org
|
- lists*.open*.org
|
||||||
- lists-dev[0-9]*.open*.org
|
- lists-dev[0-9]*.open*.org
|
||||||
|
@ -458,22 +458,6 @@ node /^openstackid-dev\d*\.openstack\.org$/ {
|
|||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
# Node-OS: xenial
|
|
||||||
node /^kdc03\.open.*\.org$/ {
|
|
||||||
class { 'openstack_project::server': }
|
|
||||||
|
|
||||||
class { 'openstack_project::kdc': }
|
|
||||||
}
|
|
||||||
|
|
||||||
# Node-OS: xenial
|
|
||||||
node /^kdc04\.open.*\.org$/ {
|
|
||||||
class { 'openstack_project::server': }
|
|
||||||
|
|
||||||
class { 'openstack_project::kdc':
|
|
||||||
slave => true,
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
# Node-OS: xenial
|
# Node-OS: xenial
|
||||||
node /^ask\d*\.open.*\.org$/ {
|
node /^ask\d*\.open.*\.org$/ {
|
||||||
|
|
||||||
|
@ -1,17 +0,0 @@
|
|||||||
# kerberos kdc servers
|
|
||||||
class openstack_project::kdc (
|
|
||||||
$slave = false,
|
|
||||||
) {
|
|
||||||
class { 'kerberos::server':
|
|
||||||
realm => 'OPENSTACK.ORG',
|
|
||||||
kdcs => [
|
|
||||||
'kdc03.openstack.org',
|
|
||||||
'kdc04.openstack.org',
|
|
||||||
],
|
|
||||||
admin_server => 'kdc.openstack.org',
|
|
||||||
slaves => [
|
|
||||||
'kdc04.openstack.org',
|
|
||||||
],
|
|
||||||
slave => $slave,
|
|
||||||
}
|
|
||||||
}
|
|
Loading…
Reference in New Issue
Block a user