ecf32e2078
The current rolling upgrade implementation relies on the role to orchestrate the rolling upgrade. When the role is executed using playbook serialisation, the db sync contract is executed before all hosts are upgraded, potentially resulting in data corruption. This patch implements the use of playbook serialisation for the upgrade and fact checking to determine when it is safe to execute the db sync contract. Additionally, tasks which only need to be executed against a single keystone host in the invevntory are specifically targeted rather than being skipped on the other hosts. This should provide a slight performance improvement. Depends-On: I5650f16b9a115bd392012b743788057a94d09226 Change-Id: Iac59e792a642a9e57d6d279a7d4b3d41fe419b38
40 lines
1.8 KiB
YAML
40 lines
1.8 KiB
YAML
---
|
|
# Copyright 2016, Rackspace US, Inc.
|
|
#
|
|
# Licensed under the Apache License, Version 2.0 (the "License");
|
|
# you may not use this file except in compliance with the License.
|
|
# You may obtain a copy of the License at
|
|
#
|
|
# http://www.apache.org/licenses/LICENSE-2.0
|
|
#
|
|
# Unless required by applicable law or agreed to in writing, software
|
|
# distributed under the License is distributed on an "AS IS" BASIS,
|
|
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
# See the License for the specific language governing permissions and
|
|
# limitations under the License.
|
|
|
|
# The MySQL details for the keystone service
|
|
keystone_galera_user: keystone
|
|
keystone_galera_database: keystone
|
|
keystone_galera_address: "{{ galera_address }}"
|
|
|
|
# The system user for all keystone services
|
|
keystone_system_user_name: keystone
|
|
|
|
keystone_external_ssl: "{{ openstack_external_ssl }}"
|
|
|
|
keystone_cache_backend_argument: "url:{% for host in groups['memcached'] %}{{ hostvars[host]['container_address'] }}{% if not loop.last %},{% endif %}{% endfor %}:{{ memcached_port }}"
|
|
keystone_memcached_servers: "{% for host in groups['keystone_all'] %}{{ hostvars[host]['container_address'] }}:{{ memcached_port }}{% if not loop.last %},{% endif %}{% endfor %}"
|
|
keystone_service_in_ldap: "{{ service_ldap_backend_enabled }}"
|
|
|
|
# Ensure that the package state matches the global setting
|
|
keystone_package_state: "{{ package_state }}"
|
|
|
|
# venv fetch configuration
|
|
keystone_venv_tag: "{{ venv_tag }}"
|
|
keystone_bin: "/openstack/venvs/keystone-{{ keystone_venv_tag }}/bin"
|
|
keystone_venv_download_url: "{{ venv_base_download_url }}/keystone-{{ openstack_release }}-{{ ansible_architecture | lower }}.tgz"
|
|
|
|
# locations for fetching the default files from the git source
|
|
keystone_git_config_lookup_location: "{{openstack_repo_url }}/openstackgit/keystone"
|