7e68dbdf8c
Introduces a service to configure AIDE Intrusion Detection. This service init's the database and copies the new database to the active naming. It also sets a cron job, using email if `AideEmail` is populated, otherwise the reports are sent to `/var/log/aide/`. AIDE rules can be supplied as a hash, and should the rules ever be changed, the service will populate the new rules and re-init a fresh integrity database. Related-Blueprint: tripleo-aide-database Depends-On: Iac2ceb7fc6b610f8920ae6f75faa2885f3edf6eb Change-Id: I23d8ba2c43e907372fe079026df1fca5fa1c9881
61 lines
2.4 KiB
YAML
61 lines
2.4 KiB
YAML
# DEPRECATED: use the following steps instead for hyperconverged
|
|
#
|
|
# Rather than use "-e environments/hyperconverged-ceph.yaml" use the
|
|
# "openstack overcloud role" command to make a ComputeHCI role along
|
|
# with the other roles that are being deployed, for example:
|
|
#
|
|
# openstack overcloud roles generate -o roles_data.yaml Controller ComputeHCI
|
|
#
|
|
# Then deploy with "-r roles_data.yaml" in place of this file.
|
|
#
|
|
# Alternatively, enable the StorageMgmt network in the compute role.
|
|
resource_registry:
|
|
OS::TripleO::Compute::Ports::StorageMgmtPort: ../network/ports/storage_mgmt.yaml
|
|
|
|
parameter_defaults:
|
|
ComputeServices:
|
|
- OS::TripleO::Services::Aide
|
|
- OS::TripleO::Services::CACerts
|
|
- OS::TripleO::Services::CertmongerUser
|
|
- OS::TripleO::Services::CephClient
|
|
- OS::TripleO::Services::CephExternal
|
|
- OS::TripleO::Services::Timezone
|
|
- OS::TripleO::Services::Ntp
|
|
- OS::TripleO::Services::ContainersLogrotateCrond
|
|
- OS::TripleO::Services::Snmp
|
|
- OS::TripleO::Services::Sshd
|
|
- OS::TripleO::Services::Securetty
|
|
- OS::TripleO::Services::NeutronBgpVpnBagpipe
|
|
- OS::TripleO::Services::NovaCompute
|
|
- OS::TripleO::Services::NovaLibvirt
|
|
- OS::TripleO::Services::NovaMigrationTarget
|
|
- OS::TripleO::Services::Kernel
|
|
- OS::TripleO::Services::ComputeNeutronCorePlugin
|
|
- OS::TripleO::Services::ComputeNeutronOvsAgent
|
|
- OS::TripleO::Services::NeutronLinuxbridgeAgent
|
|
- OS::TripleO::Services::ComputeCeilometerAgent
|
|
- OS::TripleO::Services::ComputeNeutronL3Agent
|
|
- OS::TripleO::Services::ComputeNeutronMetadataAgent
|
|
- OS::TripleO::Services::TripleoPackages
|
|
- OS::TripleO::Services::TripleoFirewall
|
|
- OS::TripleO::Services::Tuned
|
|
- OS::TripleO::Services::OpenDaylightOvs
|
|
- OS::TripleO::Services::SensuClient
|
|
- OS::TripleO::Services::SkydiveAgent
|
|
- OS::TripleO::Services::Fluentd
|
|
- OS::TripleO::Services::Ipsec
|
|
- OS::TripleO::Services::AuditD
|
|
- OS::TripleO::Services::Collectd
|
|
- OS::TripleO::Services::CephOSD
|
|
- OS::TripleO::Services::Vpp
|
|
- OS::TripleO::Services::NeutronVppAgent
|
|
- OS::TripleO::Services::MySQLClient
|
|
- OS::TripleO::Services::Docker
|
|
- OS::TripleO::Services::Iscsid
|
|
- OS::TripleO::Services::OVNController
|
|
- OS::TripleO::Services::OVNMetadataAgent
|
|
- OS::TripleO::Services::RsyslogSidecar
|
|
- OS::TripleO::Services::LoginDefs
|
|
- OS::TripleO::Services::Rhsm
|
|
|