Add SB ssl connection to in devstack

When using `enable_service tls-proxy`, devstack creates the appropriate NB
config but did not do so for the SB. SB configurations are necessary
too, as specified in config guide[1].

[1] https://docs.openstack.org/ovn-octavia-provider/xena/configuration/config.html#ovn.ovn_sb_connection

Change-Id: I3d6422037f977f98abed88a326ab73ff6689cde9
This commit is contained in:
Jake Yip 2022-03-09 18:02:01 +11:00
parent ec5b1d5774
commit 657a9280d3
1 changed files with 5 additions and 0 deletions

View File

@ -10,6 +10,7 @@ else
OVN_PROTO=tcp
fi
OVN_NB_REMOTE=${OVN_NB_REMOTE:-$OVN_PROTO:$SERVICE_HOST:6641}
OVN_SB_REMOTE=${OVN_SB_REMOTE:-$OVN_PROTO:$SERVICE_HOST:6642}
function _configure_provider_driver {
iniset ${OCTAVIA_CONF} api_settings enabled_provider_drivers "${OCTAVIA_PROVIDER_DRIVERS}"
@ -21,6 +22,10 @@ function _configure_provider_driver {
iniset ${OCTAVIA_CONF} ovn ovn_nb_ca_cert "$INT_CA_DIR/ca-chain.pem"
iniset ${OCTAVIA_CONF} ovn ovn_nb_certificate "$INT_CA_DIR/$DEVSTACK_CERT_NAME.crt"
iniset ${OCTAVIA_CONF} ovn ovn_nb_private_key "$INT_CA_DIR/private/$DEVSTACK_CERT_NAME.key"
iniset ${OCTAVIA_CONF} ovn ovn_sb_connection "$OVN_SB_REMOTE"
iniset ${OCTAVIA_CONF} ovn ovn_sb_ca_cert "$INT_CA_DIR/ca-chain.pem"
iniset ${OCTAVIA_CONF} ovn ovn_sb_certificate "$INT_CA_DIR/$DEVSTACK_CERT_NAME.crt"
iniset ${OCTAVIA_CONF} ovn ovn_sb_private_key "$INT_CA_DIR/private/$DEVSTACK_CERT_NAME.key"
fi
}