ca041e2c41
Calling iptables CLI in the container requires advanced and risky
bind-mounts, and on certain platform, iptables-save can't be found (e.g.
fedora28 containers).
This patch simplifies the firewall step for HAproxy container
configuration where we now run Puppet on the host instead of from the
container.
Note: we can't use the puppet module in Ansible yet because we need
Ansible 2.7.6 which has:
|
||
---|---|---|
.. | ||
database | ||
clustercheck.yaml | ||
haproxy.yaml | ||
manila-share.yaml | ||
notify-rabbitmq.yaml | ||
ovn-dbs.yaml | ||
rabbitmq.yaml | ||
rpc-rabbitmq.yaml |