
This patch migrates all of the remaining non-unique variable names in the security role to a pattern that begins with `security_*`. This will reduce potential variable collisions with other roles. This is a breaking change for deployers and users who are moving from the liberty or stable/mitaka branches to master. Release notes are included with additional details to help with the transition. Closes-Bug: 1578326 Change-Id: Ib716e81e6fed971b21dc5579ae1a871736e21189
19 lines
625 B
ReStructuredText
19 lines
625 B
ReStructuredText
**Exception**
|
|
|
|
Operating system patching policies vary from organization to organization and
|
|
are typically established based on business requirements and risk tolerance.
|
|
|
|
If desired, automatic updates (using the ``unattended-upgrades`` package)
|
|
can be enabled via openstack-ansible-security by setting the following
|
|
variable to ``true``:
|
|
|
|
.. code-block:: yaml
|
|
|
|
security_unattended_upgrades: true
|
|
|
|
Note that this will only apply updates made available to the distro-security
|
|
(eg. trusty-security) repositories.
|
|
|
|
**Deployers are urged to fully understand the impact of enabling automatic
|
|
update before making the change.**
|