Rename service-letsencrypt to just letsencrypt
This isn't a service, it's a meta thing that we run for different hosts at different times. Change-Id: Ib65665c98afb3ddb94b15346931be88a4b1757d8
This commit is contained in:
parent
d93a661ae4
commit
f27c170d01
@ -12,7 +12,7 @@ At a Glance
|
|||||||
===========
|
===========
|
||||||
|
|
||||||
:Ansible:
|
:Ansible:
|
||||||
* :git_file:`playbooks/service-letsencrypt.yaml`
|
* :git_file:`playbooks/letsencrypt.yaml`
|
||||||
* :git_file:`playbooks/roles/letsencrypt-acme-sh-install`
|
* :git_file:`playbooks/roles/letsencrypt-acme-sh-install`
|
||||||
* :git_file:`playbooks/roles/letsencrypt-request-certs`
|
* :git_file:`playbooks/roles/letsencrypt-request-certs`
|
||||||
* :git_file:`playbooks/roles/letsencrypt-install-txt-record`
|
* :git_file:`playbooks/roles/letsencrypt-install-txt-record`
|
||||||
@ -30,7 +30,7 @@ We support automatic provisioning of certificates from Let's Encrypt
|
|||||||
to hosts in the ``opendev.org`` domain.
|
to hosts in the ``opendev.org`` domain.
|
||||||
|
|
||||||
This is implemented in OpenDev via the roles driven from
|
This is implemented in OpenDev via the roles driven from
|
||||||
:git_file:`playbooks/roles/service-letsencrypt.yaml`. The overall
|
:git_file:`playbooks/letsencrypt.yaml`. The overall
|
||||||
actions implemented by the above roles are roughly:
|
actions implemented by the above roles are roughly:
|
||||||
|
|
||||||
* Hosts that want a certificate use the ``amce.sh`` tool to request it
|
* Hosts that want a certificate use the ``amce.sh`` tool to request it
|
||||||
|
@ -61,17 +61,17 @@
|
|||||||
- playbooks/roles/base/
|
- playbooks/roles/base/
|
||||||
|
|
||||||
- job:
|
- job:
|
||||||
name: infra-prod-service-letsencrypt
|
name: infra-prod-letsencrypt
|
||||||
parent: infra-prod-playbook
|
parent: infra-prod-playbook
|
||||||
description: Run service-letsencrypt.yaml playbook.
|
description: Run letsencrypt.yaml playbook.
|
||||||
vars:
|
vars:
|
||||||
playbook_name: service-letsencrypt.yaml
|
playbook_name: letsencrypt.yaml
|
||||||
dependencies:
|
dependencies:
|
||||||
- name: infra-prod-install-ansible
|
- name: infra-prod-install-ansible
|
||||||
soft: true
|
soft: true
|
||||||
files:
|
files:
|
||||||
- inventory/
|
- inventory/
|
||||||
- playbooks/service-letsencrypt.yaml
|
- playbooks/letsencrypt.yaml
|
||||||
# Any touching of host_vars or group_vars can substantively
|
# Any touching of host_vars or group_vars can substantively
|
||||||
# change the certs we're doing, so be greedy here.
|
# change the certs we're doing, so be greedy here.
|
||||||
- playbooks/host_vars/
|
- playbooks/host_vars/
|
||||||
@ -103,7 +103,7 @@
|
|||||||
dependencies:
|
dependencies:
|
||||||
- name: infra-prod-install-ansible
|
- name: infra-prod-install-ansible
|
||||||
soft: true
|
soft: true
|
||||||
- name: infra-prod-service-letsencrypt
|
- name: infra-prod-letsencrypt
|
||||||
soft: true
|
soft: true
|
||||||
|
|
||||||
- job:
|
- job:
|
||||||
@ -206,7 +206,7 @@
|
|||||||
dependencies:
|
dependencies:
|
||||||
- name: infra-prod-install-ansible
|
- name: infra-prod-install-ansible
|
||||||
soft: true
|
soft: true
|
||||||
- name: infra-prod-service-letsencrypt
|
- name: infra-prod-letsencrypt
|
||||||
soft: true
|
soft: true
|
||||||
- name: system-config-promote-image-jitsi-meet
|
- name: system-config-promote-image-jitsi-meet
|
||||||
soft: true
|
soft: true
|
||||||
@ -344,7 +344,7 @@
|
|||||||
dependencies:
|
dependencies:
|
||||||
- name: infra-prod-install-ansible
|
- name: infra-prod-install-ansible
|
||||||
soft: true
|
soft: true
|
||||||
- name: infra-prod-service-letsencrypt
|
- name: infra-prod-letsencrypt
|
||||||
soft: true
|
soft: true
|
||||||
- name: infra-prod-manage-projects
|
- name: infra-prod-manage-projects
|
||||||
soft: true
|
soft: true
|
||||||
@ -370,7 +370,7 @@
|
|||||||
dependencies: &infra_prod_service_review_deps
|
dependencies: &infra_prod_service_review_deps
|
||||||
- name: infra-prod-install-ansible
|
- name: infra-prod-install-ansible
|
||||||
soft: true
|
soft: true
|
||||||
- name: infra-prod-service-letsencrypt
|
- name: infra-prod-letsencrypt
|
||||||
soft: true
|
soft: true
|
||||||
- name: system-config-promote-image-gerrit-2.13
|
- name: system-config-promote-image-gerrit-2.13
|
||||||
soft: true
|
soft: true
|
||||||
@ -410,7 +410,7 @@
|
|||||||
dependencies:
|
dependencies:
|
||||||
- name: infra-prod-install-ansible
|
- name: infra-prod-install-ansible
|
||||||
soft: true
|
soft: true
|
||||||
- name: infra-prod-service-letsencrypt
|
- name: infra-prod-letsencrypt
|
||||||
soft: true
|
soft: true
|
||||||
- name: system-config-promote-image-gitea-init
|
- name: system-config-promote-image-gitea-init
|
||||||
soft: true
|
soft: true
|
||||||
@ -467,7 +467,7 @@
|
|||||||
dependencies:
|
dependencies:
|
||||||
- name: infra-prod-install-ansible
|
- name: infra-prod-install-ansible
|
||||||
soft: true
|
soft: true
|
||||||
- name: infra-prod-service-letsencrypt
|
- name: infra-prod-letsencrypt
|
||||||
soft: true
|
soft: true
|
||||||
- name: system-config-promote-image-accessbot
|
- name: system-config-promote-image-accessbot
|
||||||
soft: true
|
soft: true
|
||||||
|
@ -179,7 +179,7 @@
|
|||||||
- system-config-promote-image-uwsgi-base-3.8
|
- system-config-promote-image-uwsgi-base-3.8
|
||||||
- infra-prod-install-ansible
|
- infra-prod-install-ansible
|
||||||
- infra-prod-base
|
- infra-prod-base
|
||||||
- infra-prod-service-letsencrypt
|
- infra-prod-letsencrypt
|
||||||
- infra-prod-manage-projects:
|
- infra-prod-manage-projects:
|
||||||
files:
|
files:
|
||||||
- inventory/.*
|
- inventory/.*
|
||||||
@ -204,7 +204,7 @@
|
|||||||
dependencies:
|
dependencies:
|
||||||
- name: infra-prod-install-ansible
|
- name: infra-prod-install-ansible
|
||||||
soft: true
|
soft: true
|
||||||
- name: infra-prod-service-letsencrypt
|
- name: infra-prod-letsencrypt
|
||||||
soft: true
|
soft: true
|
||||||
- name: system-config-promote-image-etherpad
|
- name: system-config-promote-image-etherpad
|
||||||
soft: true
|
soft: true
|
||||||
@ -245,7 +245,7 @@
|
|||||||
# Nightly runs of ansible things for catchup
|
# Nightly runs of ansible things for catchup
|
||||||
- infra-prod-install-ansible
|
- infra-prod-install-ansible
|
||||||
- infra-prod-base
|
- infra-prod-base
|
||||||
- infra-prod-service-letsencrypt
|
- infra-prod-letsencrypt
|
||||||
- infra-prod-service-bridge
|
- infra-prod-service-bridge
|
||||||
- infra-prod-service-gitea-lb
|
- infra-prod-service-gitea-lb
|
||||||
- infra-prod-service-nameserver
|
- infra-prod-service-nameserver
|
||||||
|
@ -189,7 +189,7 @@
|
|||||||
vars:
|
vars:
|
||||||
run_playbooks:
|
run_playbooks:
|
||||||
- playbooks/service-nameserver.yaml
|
- playbooks/service-nameserver.yaml
|
||||||
- playbooks/service-letsencrypt.yaml
|
- playbooks/letsencrypt.yaml
|
||||||
host-vars:
|
host-vars:
|
||||||
bridge.openstack.org:
|
bridge.openstack.org:
|
||||||
host_copy_output:
|
host_copy_output:
|
||||||
@ -262,7 +262,7 @@
|
|||||||
'/var/log/nodepool/builder-debug.log': logs
|
'/var/log/nodepool/builder-debug.log': logs
|
||||||
vars:
|
vars:
|
||||||
run_playbooks:
|
run_playbooks:
|
||||||
- playbooks/service-letsencrypt.yaml
|
- playbooks/letsencrypt.yaml
|
||||||
- playbooks/service-zookeeper.yaml
|
- playbooks/service-zookeeper.yaml
|
||||||
- playbooks/service-nodepool.yaml
|
- playbooks/service-nodepool.yaml
|
||||||
- playbooks/remote_puppet_else.yaml
|
- playbooks/remote_puppet_else.yaml
|
||||||
@ -347,7 +347,7 @@
|
|||||||
Run the playbook for a mirror node
|
Run the playbook for a mirror node
|
||||||
vars:
|
vars:
|
||||||
run_playbooks:
|
run_playbooks:
|
||||||
- playbooks/service-letsencrypt.yaml
|
- playbooks/letsencrypt.yaml
|
||||||
- playbooks/service-mirror.yaml
|
- playbooks/service-mirror.yaml
|
||||||
host-vars:
|
host-vars:
|
||||||
mirror01.openafs.provider.opendev.org:
|
mirror01.openafs.provider.opendev.org:
|
||||||
@ -366,7 +366,7 @@
|
|||||||
- playbooks/group_vars/mirror.yaml
|
- playbooks/group_vars/mirror.yaml
|
||||||
- playbooks/roles/mirror/
|
- playbooks/roles/mirror/
|
||||||
- playbooks/roles/letsencrypt
|
- playbooks/roles/letsencrypt
|
||||||
- playbooks/service-letsencrypt.yaml
|
- playbooks/letsencrypt.yaml
|
||||||
- playbooks/service-mirror.yaml
|
- playbooks/service-mirror.yaml
|
||||||
- playbooks/zuul/templates/group_vars/mirror.yaml.j2
|
- playbooks/zuul/templates/group_vars/mirror.yaml.j2
|
||||||
- testinfra/test_mirror.py
|
- testinfra/test_mirror.py
|
||||||
@ -429,7 +429,7 @@
|
|||||||
label: ubuntu-bionic
|
label: ubuntu-bionic
|
||||||
vars:
|
vars:
|
||||||
run_playbooks:
|
run_playbooks:
|
||||||
- playbooks/service-letsencrypt.yaml
|
- playbooks/letsencrypt.yaml
|
||||||
- playbooks/service-registry.yaml
|
- playbooks/service-registry.yaml
|
||||||
host-vars:
|
host-vars:
|
||||||
insecure-ci-registry01.opendev.org:
|
insecure-ci-registry01.opendev.org:
|
||||||
@ -462,11 +462,11 @@
|
|||||||
label: ubuntu-bionic
|
label: ubuntu-bionic
|
||||||
vars:
|
vars:
|
||||||
run_playbooks:
|
run_playbooks:
|
||||||
- playbooks/service-letsencrypt.yaml
|
- playbooks/letsencrypt.yaml
|
||||||
- playbooks/service-etherpad.yaml
|
- playbooks/service-etherpad.yaml
|
||||||
files:
|
files:
|
||||||
- playbooks/bridge.yaml
|
- playbooks/bridge.yaml
|
||||||
- playbooks/service-letsencrypt.yaml
|
- playbooks/letsencrypt.yaml
|
||||||
- playbooks/service-etherpad.yaml
|
- playbooks/service-etherpad.yaml
|
||||||
- playbooks/roles/etherpad/
|
- playbooks/roles/etherpad/
|
||||||
- playbooks/roles/install-docker/
|
- playbooks/roles/install-docker/
|
||||||
@ -492,7 +492,7 @@
|
|||||||
- opendev/system-config
|
- opendev/system-config
|
||||||
vars:
|
vars:
|
||||||
run_playbooks:
|
run_playbooks:
|
||||||
- playbooks/service-letsencrypt.yaml
|
- playbooks/letsencrypt.yaml
|
||||||
- playbooks/service-gitea-lb.yaml
|
- playbooks/service-gitea-lb.yaml
|
||||||
- playbooks/service-gitea.yaml
|
- playbooks/service-gitea.yaml
|
||||||
- playbooks/manage-projects.yaml
|
- playbooks/manage-projects.yaml
|
||||||
@ -508,7 +508,7 @@
|
|||||||
'/var/haproxy/etc': logs
|
'/var/haproxy/etc': logs
|
||||||
files:
|
files:
|
||||||
- playbooks/install-ansible.yaml
|
- playbooks/install-ansible.yaml
|
||||||
- playbooks/service-letsencrypt.yaml
|
- playbooks/letsencrypt.yaml
|
||||||
- playbooks/service-gitea-lb.yaml
|
- playbooks/service-gitea-lb.yaml
|
||||||
- playbooks/service-gitea.yaml
|
- playbooks/service-gitea.yaml
|
||||||
- playbooks/manage-projects.yaml
|
- playbooks/manage-projects.yaml
|
||||||
@ -551,7 +551,7 @@
|
|||||||
label: ubuntu-bionic
|
label: ubuntu-bionic
|
||||||
vars:
|
vars:
|
||||||
run_playbooks:
|
run_playbooks:
|
||||||
- playbooks/service-letsencrypt.yaml
|
- playbooks/letsencrypt.yaml
|
||||||
- playbooks/service-meetpad.yaml
|
- playbooks/service-meetpad.yaml
|
||||||
host-vars:
|
host-vars:
|
||||||
meetpad01.opendev.org:
|
meetpad01.opendev.org:
|
||||||
@ -641,7 +641,7 @@
|
|||||||
- opendev/system-config
|
- opendev/system-config
|
||||||
vars:
|
vars:
|
||||||
run_playbooks:
|
run_playbooks:
|
||||||
- playbooks/service-letsencrypt.yaml
|
- playbooks/letsencrypt.yaml
|
||||||
- playbooks/service-zookeeper.yaml
|
- playbooks/service-zookeeper.yaml
|
||||||
- playbooks/service-zuul.yaml
|
- playbooks/service-zuul.yaml
|
||||||
host-vars:
|
host-vars:
|
||||||
@ -692,7 +692,7 @@
|
|||||||
- opendev/system-config
|
- opendev/system-config
|
||||||
vars:
|
vars:
|
||||||
run_playbooks:
|
run_playbooks:
|
||||||
- playbooks/service-letsencrypt.yaml
|
- playbooks/letsencrypt.yaml
|
||||||
- playbooks/service-review-dev.yaml
|
- playbooks/service-review-dev.yaml
|
||||||
- playbooks/service-review.yaml
|
- playbooks/service-review.yaml
|
||||||
host-vars:
|
host-vars:
|
||||||
@ -710,7 +710,7 @@
|
|||||||
'/var/log/acme.sh': logs
|
'/var/log/acme.sh': logs
|
||||||
files:
|
files:
|
||||||
- playbooks/install-ansible.yaml
|
- playbooks/install-ansible.yaml
|
||||||
- playbooks/service-letsencrypt.yaml
|
- playbooks/letsencrypt.yaml
|
||||||
- playbooks/service-review.*.yaml
|
- playbooks/service-review.*.yaml
|
||||||
- playbooks/group_vars/review.yaml
|
- playbooks/group_vars/review.yaml
|
||||||
- playbooks/host_vars/review\d+.openstack.org.yaml
|
- playbooks/host_vars/review\d+.openstack.org.yaml
|
||||||
@ -739,13 +739,13 @@
|
|||||||
label: ubuntu-bionic
|
label: ubuntu-bionic
|
||||||
vars:
|
vars:
|
||||||
run_playbooks:
|
run_playbooks:
|
||||||
- playbooks/service-letsencrypt.yaml
|
- playbooks/letsencrypt.yaml
|
||||||
- playbooks/service-static.yaml
|
- playbooks/service-static.yaml
|
||||||
files:
|
files:
|
||||||
- playbooks/install-ansible.yaml
|
- playbooks/install-ansible.yaml
|
||||||
- playbooks/roles/static/
|
- playbooks/roles/static/
|
||||||
- playbooks/roles/letsencrypt
|
- playbooks/roles/letsencrypt
|
||||||
- playbooks/service-letsencrypt.yaml
|
- playbooks/letsencrypt.yaml
|
||||||
- playbooks/service-static.yaml
|
- playbooks/service-static.yaml
|
||||||
- testinfra/test_static.py
|
- testinfra/test_static.py
|
||||||
host-vars:
|
host-vars:
|
||||||
|
Loading…
Reference in New Issue
Block a user