63001263ad
Do not inject public certificates in pacemaker bundles by means
of "podman cp", as this pauses the container for a short amount
of time and can make pacemaker operation fail during that time
window and impact cluster for no reason.
Keep "podman cp" for non-HA containers, as the freeze is short
and doesn't seem to impact podman monitoring anyway.
The new certificate injection only works for podman 1.9+, lower
version won't overwrite the existing certificate.
(cherry-picked from
|
||
---|---|---|
.. | ||
haproxy-container-puppet.yaml | ||
haproxy-edge-container-puppet.yaml | ||
haproxy-internal-tls-certmonger.j2.yaml | ||
haproxy-pacemaker-puppet.yaml | ||
haproxy-public-tls-certmonger.yaml | ||
haproxy-public-tls-inject.yaml |