openstack-ansible/playbooks/certificate-generate.yml

33 lines
1.2 KiB
YAML

# Copyright 2021, BBC
#
# Licensed under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License.
# You may obtain a copy of the License at
#
# http://www.apache.org/licenses/LICENSE-2.0
#
# Unless required by applicable law or agreed to in writing, software
# distributed under the License is distributed on an "AS IS" BASIS,
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
# See the License for the specific language governing permissions and
# limitations under the License.
- name: Generate any extra user certificates
hosts: "{{ openstack_pki_setup_host | default('localhost') }}"
gather_facts: "{{ osa_gather_facts | default(True) }}"
tags:
- always
tasks:
- name: Create user certificates
include_role:
name: pki
tasks_from: main_certs.yml
vars:
pki_setup_host: "{{ openstack_pki_setup_host | default('localhost') }}"
pki_dir: "{{ openstack_pki_dir }}"
cert_dir: "{{ pki_dir }}/certs"
pki_search_certificates_pattern: "user_pki_certificates_"
pki_regen_cert: "{{ user_pki_regen_cert | default(false) }}"
when:
- pki_create_certificates | default(true)