openstack-ansible/doc/source/install-guide/configure-haproxy.rst
Major Hayden 1b864a57fe Merge SSL documentation
Closes-Bug: 1497361

Change-Id: I6afc62f57eec8c6687244df7bf84a9d4936536dd
2015-09-23 09:29:18 -05:00

1.2 KiB

Home OpenStack Ansible Installation Guide

Configuring HAProxy (optional)

For evaluation, testing, and development, HAProxy can temporarily provide load balancing services in lieu of hardware load balancers. The default HAProxy configuration does not provide highly-available load balancing services. For production deployments, deploy a hardware load balancer prior to deploying OSA.

  • In the /etc/openstack_deploy/openstack_user_config.yml file, add the haproxy_hosts section with one or more infrastructure target hosts, for example:

    haproxy_hosts:
      123456-infra01:
        ip: 172.29.236.51
      123457-infra02:
        ip: 172.29.236.52
      123458-infra03:
        ip: 172.29.236.53

Securing HAProxy communication with SSL certificates

The openstack-ansible project provides the ability to secure HAProxy communications with self-signed or user-provided SSL certificates.

Refer to Securing services with SSL certificates for available configuration options.