stx-puppet/puppet-manifests/src/hieradata
Jim Somerville 0c13c06b02 Security: Add nospectre_v1 to the security params
Most of the v1 mitigation is baked into the kernel and not
optional.  The swapgs barriers are, however, optional.
They have a negative performance impact so we disable them
by using the nospectre_v1 kernel bootarg.

Partial-Bug: 1860193
Depends-On: https://review.opendev.org/#/c/705300
Signed-off-by: Jim Somerville <Jim.Somerville@windriver.com>
(cherry picked from commit 950670ac1f)

Change-Id: I8472e7fc4fbf5b3e01b56b79eba7feda315d29cf
2020-01-31 16:37:30 -05:00
..
controller.yaml dcdbsync for containerized openstack services - puppet 2019-10-07 13:16:15 -04:00
global.yaml Security: Add nospectre_v1 to the security params 2020-01-31 16:37:30 -05:00
storage.yaml Update manifests to remove unused openstack components 2019-03-08 18:43:22 -06:00
worker.yaml Update manifests to remove unused openstack components 2019-03-08 18:43:22 -06:00