summaryrefslogtreecommitdiffstats
path: root/roles/openshift_hosted/tasks/router/router.yml
diff options
context:
space:
mode:
authorOpenShift Bot <dmcphers+openshiftbot@redhat.com>2017-03-13 21:43:09 -0400
committerGitHub <noreply@github.com>2017-03-13 21:43:09 -0400
commit46d1efcf1e8ab67deaa6c42460bc510650df17b0 (patch)
tree655779372f8171a9fb3b73e5f18eb8e8cbaef2c4 /roles/openshift_hosted/tasks/router/router.yml
parent0ee14573521daf459e9fa8609769c954425979d7 (diff)
parente879931d0d093fac33c5c3bd8d32fab176e68c93 (diff)
downloadopenshift-46d1efcf1e8ab67deaa6c42460bc510650df17b0.tar.gz
openshift-46d1efcf1e8ab67deaa6c42460bc510650df17b0.tar.bz2
openshift-46d1efcf1e8ab67deaa6c42460bc510650df17b0.tar.xz
openshift-46d1efcf1e8ab67deaa6c42460bc510650df17b0.zip
Merge pull request #3640 from mtnbikenc/refactor-serviceaccount
Merged by openshift-bot
Diffstat (limited to 'roles/openshift_hosted/tasks/router/router.yml')
-rw-r--r--roles/openshift_hosted/tasks/router/router.yml15
1 files changed, 15 insertions, 0 deletions
diff --git a/roles/openshift_hosted/tasks/router/router.yml b/roles/openshift_hosted/tasks/router/router.yml
index 3b7021eae..969fb27a9 100644
--- a/roles/openshift_hosted/tasks/router/router.yml
+++ b/roles/openshift_hosted/tasks/router/router.yml
@@ -22,6 +22,21 @@
with_items: "{{ openshift_hosted_routers | oo_collect(attribute='certificates') |
oo_select_keys_from_list(['keyfile', 'certfile', 'cafile']) }}"
+- name: Create the router service account(s)
+ oc_serviceaccount:
+ name: "{{ item.serviceaccount }}"
+ namespace: "{{ item.namespace }}"
+ state: present
+ with_items: "{{ openshift_hosted_routers }}"
+
+- name: Grant the router serivce account(s) access to the appropriate scc
+ oc_adm_policy_user:
+ user: "system:serviceaccount:{{ item.namespace }}:{{ item.serviceaccount }}"
+ namespace: "{{ item.namespace }}"
+ resource_kind: scc
+ resource_name: hostnetwork
+ with_items: "{{ openshift_hosted_routers }}"
+
- name: Create OpenShift router
oc_adm_router:
name: "{{ item.name }}"