tripleo-heat-templates/deployment/ovn
Damien Ciabrini 8b16911cc2 Revert rolling certificate updates for HA services
Currently galera and ovn require a coordinated restart across
the controller node when certmonger determines the certificate
for a node has expired and it needs to regenerate it.

But right now, when the tripleo certmonger puppet module is
called to assert to state of the certificates, it ends up
regenerating new certificate unconditionally. So the galera and
ovn get restarted on stack update, even when there is no need to.

To mitigate these unecessary restarts, disable the post-action
for now until we fix the behaviour of tripleo's certmonger puppet
module. This has the side effect that services won't get restarted
automatically if no stack update takes place until the certificate
expiration date is reached.

Related-Bug: #1906505

Change-Id: I17f1364932e43b8487515084e41b525e186888db
2020-12-02 12:45:53 +01:00
..
ovn-controller-container-puppet.yaml ovn: Add neutron-cleanup 2020-10-15 10:03:05 +00:00
ovn-dbs-container-puppet.yaml Add mode option when creating persistent directories. 2020-04-20 15:37:08 +02:00
ovn-dbs-pacemaker-puppet.yaml Revert rolling certificate updates for HA services 2020-12-02 12:45:53 +01:00
ovn-metadata-container-puppet.yaml Fix temp namespace tasks to work in check mode 2020-09-29 21:53:17 +00:00