Remove obsoleted generate_service_certificates
Remove traces of generate_service_certificates. It was removed during Pike release cycle [1]. [1] https://review.opendev.org/c/openstack/puppet-tripleo/+/444891 Change-Id: Ib203b52547433ff73141df66641528c389b50361
This commit is contained in:
parent
d18c6abac7
commit
6e7e0ab48e
@ -107,7 +107,6 @@ outputs:
|
||||
- if:
|
||||
- internal_tls_enabled
|
||||
-
|
||||
generate_service_certificates: true
|
||||
apache::mod::ssl::ssl_ca: {get_param: InternalTLSCAFile}
|
||||
apache::mod::ssl::ssl_protocol: ['all', '-SSLv2', '-SSLv3', '-TLSv1']
|
||||
apache_certificates_specs:
|
||||
|
@ -164,7 +164,6 @@ outputs:
|
||||
- if:
|
||||
- internal_tls_enabled
|
||||
-
|
||||
generate_service_certificates: true
|
||||
ceph_grafana_certificate_specs:
|
||||
service_certificate: '/etc/pki/tls/certs/ceph_grafana.crt'
|
||||
service_key: '/etc/pki/tls/private/ceph_grafana.key'
|
||||
|
@ -149,7 +149,6 @@ outputs:
|
||||
- if:
|
||||
- internal_tls_enabled
|
||||
-
|
||||
generate_service_certificates: true
|
||||
ceph_dashboard_certificate_specs:
|
||||
service_certificate: '/etc/pki/tls/certs/ceph_dashboard.crt'
|
||||
service_key: '/etc/pki/tls/private/ceph_dashboard.key'
|
||||
|
@ -169,7 +169,6 @@ outputs:
|
||||
- if:
|
||||
- internal_tls_enabled
|
||||
-
|
||||
generate_service_certificates: true
|
||||
ceph_rgw_certificate_specs:
|
||||
service_certificate: '/etc/pki/tls/certs/ceph_rgw.crt'
|
||||
service_key: '/etc/pki/tls/private/ceph_rgw.key'
|
||||
|
@ -151,7 +151,6 @@ outputs:
|
||||
- if:
|
||||
- internal_tls_enabled
|
||||
-
|
||||
generate_service_certificates: true
|
||||
tripleo::profile::base::database::mysql::certificate_specs:
|
||||
service_certificate: '/etc/pki/tls/certs/mysql.crt'
|
||||
service_key: '/etc/pki/tls/private/mysql.key'
|
||||
|
@ -125,7 +125,7 @@ outputs:
|
||||
-
|
||||
if:
|
||||
- internal_tls_enabled
|
||||
- generate_service_certificates: true
|
||||
-
|
||||
tripleo::profile::base::etcd::certificate_specs:
|
||||
service_certificate: '/etc/pki/tls/certs/etcd.crt'
|
||||
service_key: '/etc/pki/tls/private/etcd.key'
|
||||
|
@ -71,7 +71,6 @@ outputs:
|
||||
value:
|
||||
service_name: haproxy_internal_tls_certmonger
|
||||
config_settings:
|
||||
generate_service_certificates: true
|
||||
tripleo::haproxy::use_internal_certificates: true
|
||||
certificates_specs:
|
||||
map_merge:
|
||||
|
@ -59,7 +59,6 @@ outputs:
|
||||
value:
|
||||
service_name: haproxy_public_tls_certmonger
|
||||
config_settings:
|
||||
generate_service_certificates: true
|
||||
tripleo::haproxy::service_certificate: {get_param: DeployedSSLCertificatePath}
|
||||
certificates_specs:
|
||||
haproxy-external:
|
||||
|
@ -250,7 +250,7 @@ outputs:
|
||||
-
|
||||
if:
|
||||
- internal_tls_enabled
|
||||
- generate_service_certificates: true
|
||||
-
|
||||
tripleo::memcached::service_certificate: '/etc/pki/tls/certs/memcached.crt'
|
||||
tripleo::profile::base::memcached::certificate_specs:
|
||||
service_certificate: '/etc/pki/tls/certs/memcached.crt'
|
||||
|
@ -228,7 +228,7 @@ outputs:
|
||||
qdr::listener_auth_peer: {get_param: MetricsQdrAuthenticateClient}
|
||||
- if:
|
||||
- internal_tls_enabled
|
||||
- generate_service_certificates: true
|
||||
-
|
||||
tripleo::profile::base::metrics::qdr::ssl_profiles:
|
||||
list_concat:
|
||||
- get_param: MetricsQdrSSLProfiles
|
||||
|
@ -389,7 +389,6 @@ outputs:
|
||||
if:
|
||||
- ovn_and_tls
|
||||
-
|
||||
generate_service_certificates: true
|
||||
tripleo::profile::base::neutron::plugins::ml2::ovn::protocol: 'ssl'
|
||||
tripleo::profile::base::neutron::plugins::ml2::ovn::ovn_nb_private_key: '/etc/pki/tls/private/neutron_ovn.key'
|
||||
tripleo::profile::base::neutron::plugins::ml2::ovn::ovn_nb_certificate: '/etc/pki/tls/certs/neutron_ovn.crt'
|
||||
|
@ -252,7 +252,6 @@ outputs:
|
||||
- neutron::agents::dhcp::ovsdb_agent_ssl_key_file: '/etc/pki/tls/private/neutron.key'
|
||||
neutron::agents::dhcp::ovsdb_agent_ssl_cert_file: '/etc/pki/tls/certs/neutron.crt'
|
||||
neutron::agents::dhcp::ovsdb_agent_ssl_ca_file: {get_param: InternalTLSCAFile}
|
||||
generate_service_certificates: true
|
||||
- {}
|
||||
- if:
|
||||
- dhcp_ovs_intergation_bridge_unset
|
||||
|
@ -446,7 +446,6 @@ outputs:
|
||||
if:
|
||||
- use_tls_for_live_migration
|
||||
-
|
||||
generate_service_certificates: true
|
||||
tripleo::profile::base::nova::migration::client::libvirt_tls: true
|
||||
tripleo::profile::base::nova::libvirt::tls_password: {get_param: [LibvirtTLSPassword]}
|
||||
nova::compute::libvirt::tls_priority: {get_param: LibvirtTLSPriority}
|
||||
@ -475,7 +474,6 @@ outputs:
|
||||
-
|
||||
nova::compute::libvirt::qemu::vnc_tls: true
|
||||
nova::compute::libvirt::qemu::vnc_tls_verify: true
|
||||
generate_service_certificates: true
|
||||
- {}
|
||||
-
|
||||
if:
|
||||
|
@ -214,7 +214,6 @@ outputs:
|
||||
nova::console_ssl_minimum_version: {get_param: NovaVNCProxySSLMinimumVersion}
|
||||
nova::cert: /etc/pki/tls/certs/novnc-proxy.crt
|
||||
nova::key: /etc/pki/tls/private/novnc-proxy.key
|
||||
generate_service_certificates: true
|
||||
- {}
|
||||
service_config_settings:
|
||||
rabbitmq: {get_attr: [NovaBase, role_data, service_config_settings], rabbitmq}
|
||||
|
@ -80,7 +80,6 @@ outputs:
|
||||
- tripleo::profile::base::octavia::provider::ovn::ovn_nb_ca_cert: {get_param: InternalTLSCAFile}
|
||||
tripleo::profile::base::octavia::provider::ovn::ovn_nb_certificate: '/etc/pki/tls/certs/ovn_octavia.crt'
|
||||
tripleo::profile::base::octavia::provider::ovn::ovn_nb_private_key: '/etc/pki/tls/private/ovn_octavia.key'
|
||||
generate_service_certificates: true
|
||||
- {}
|
||||
puppet_tags: octavia_ovn_provider_config
|
||||
provider_driver_labels:
|
||||
|
@ -183,7 +183,7 @@ outputs:
|
||||
-
|
||||
if:
|
||||
- internal_tls_enabled
|
||||
- generate_service_certificates: true
|
||||
-
|
||||
tripleo::profile::base::neutron::agents::ovn::protocol: 'ssl'
|
||||
- {}
|
||||
service_config_settings: {}
|
||||
|
@ -186,7 +186,7 @@ outputs:
|
||||
- 'yes'
|
||||
- if:
|
||||
- internal_tls_enabled
|
||||
- generate_service_certificates: true
|
||||
-
|
||||
tripleo::profile::pacemaker::ovn_dbs_bundle::ca_file:
|
||||
get_param: InternalTLSCAFile
|
||||
tripleo::profile::base::neutron::agents::ovn::protocol: 'ssl'
|
||||
|
@ -205,7 +205,6 @@ outputs:
|
||||
tripleo::profile::base::neutron::ovn_metadata::protocol: 'ssl'
|
||||
tripleo::profile::base::neutron::ovn_metadata::ovn_sb_certificate: '/etc/pki/tls/certs/ovn_metadata.crt'
|
||||
tripleo::profile::base::neutron::ovn_metadata::ovn_sb_private_key: '/etc/pki/tls/private/ovn_metadata.key'
|
||||
generate_service_certificates: true
|
||||
- {}
|
||||
|
||||
puppet_config:
|
||||
|
@ -203,7 +203,7 @@ outputs:
|
||||
-
|
||||
if:
|
||||
- internal_tls_enabled
|
||||
- generate_service_certificates: true
|
||||
-
|
||||
tripleo::rabbitmq::service_certificate: '/etc/pki/tls/certs/rabbitmq.crt'
|
||||
tripleo::profile::base::rabbitmq::certificate_specs:
|
||||
service_certificate: '/etc/pki/tls/certs/rabbitmq.crt'
|
||||
|
@ -147,7 +147,7 @@ outputs:
|
||||
-
|
||||
if:
|
||||
- internal_tls_enabled
|
||||
- generate_service_certificates: true
|
||||
-
|
||||
tripleo::rabbitmq::service_certificate: '/etc/pki/tls/certs/rabbitmq.crt'
|
||||
tripleo::certmonger::rabbitmq::postsave_cmd: "true" # TODO: restart the rabbitmq container here
|
||||
tripleo::profile::base::rabbitmq::certificate_specs:
|
||||
|
@ -147,7 +147,7 @@ outputs:
|
||||
-
|
||||
if:
|
||||
- internal_tls_enabled
|
||||
- generate_service_certificates: true
|
||||
-
|
||||
tripleo::rabbitmq::service_certificate: '/etc/pki/tls/certs/rabbitmq.crt'
|
||||
tripleo::certmonger::rabbitmq::postsave_cmd: "true" # TODO: restart the rabbitmq container here
|
||||
tripleo::profile::base::rabbitmq::certificate_specs:
|
||||
|
Loading…
Reference in New Issue
Block a user