Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | Where we use curl force it to use tlsv1.2 | Scott Dodson | 2016-11-02 | 1 | -1/+1 |
| | | | | | | | curl, prior to RHEL 7.2, did not properly negotiate up the TLS protocol, so force it to use tlsv1.2 Fixes bug 1390869 | ||||
* | update handling of use_dnsmasq | Jason DeTiberus | 2016-10-13 | 1 | -2/+2 |
| | |||||
* | Further secure registry improvements | Andrew Butcher | 2016-09-29 | 1 | -2/+2 |
| | | | | | | - Default to hosted_registry_insecure=False - Add openshift ca to system ca-trust. - Update ca trust in openshift_node_certificates rather than docker_ca_trust | ||||
* | Update play names for consistency. | Andrew Butcher | 2016-09-29 | 1 | -3/+3 |
| | |||||
* | Suppress more warnings. | Andrew Butcher | 2016-09-28 | 1 | -0/+4 |
| | |||||
* | Iterate over node inventory hostnames instead of openshift.common.hostname ↵ | Andrew Butcher | 2016-09-08 | 1 | -3/+1 |
| | | | | within openshift_manage_node role. | ||||
* | Don't loop over hostvars when setting node schedulability. | Andrew Butcher | 2016-09-07 | 1 | -1/+0 |
| | |||||
* | fixing openshift key error in case of node failure during run (ssh issue) | jawed | 2016-08-09 | 1 | -1/+1 |
| | |||||
* | Merge pull request #2049 from abutcher/named-certificates | Scott Dodson | 2016-08-03 | 1 | -1/+6 |
|\ | | | | | Named CA Certificates | ||||
| * | Add options for specifying named ca certificates to be added to the ↵ | Andrew Butcher | 2016-08-01 | 1 | -1/+6 |
| | | | | | | | | openshift ca bundle. | ||||
* | | Refactor etcd certificates roles. | Andrew Butcher | 2016-08-02 | 1 | -82/+5 |
|/ | |||||
* | Move role dependencies to playbooks. | Andrew Butcher | 2016-07-29 | 1 | -2/+46 |
| | |||||
* | Refactor openshift certificates roles. | Andrew Butcher | 2016-07-20 | 1 | -66/+4 |
| | |||||
* | Clean up some deprecation warnings | Tim Bielawa | 2016-07-07 | 1 | -4/+4 |
| | | | | | | * "Using bare variables is deprecated. Update your playbooks so that the environment value uses the full variable syntax" * Closes #2125 | ||||
* | Revert openshift-certificates changes. | Andrew Butcher | 2016-05-30 | 1 | -4/+66 |
| | |||||
* | Consolidate ca/master/node certificates roles into openshift_certificates. | Andrew Butcher | 2016-05-19 | 1 | -66/+4 |
| | |||||
* | Refactor where we compute no_proxy hostnames | Scott Dodson | 2016-05-17 | 1 | -0/+14 |
| | |||||
* | Merge pull request #1880 from dgoodwin/registry-insecure | Brenton Leanhardt | 2016-05-16 | 1 | -8/+0 |
|\ | | | | | Fixes for openshift_docker_hosted_registry_insecure var. | ||||
| * | Fixes for openshift_docker_hosted_registry_insecure var. | Devan Goodwin | 2016-05-16 | 1 | -8/+0 |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Fixes a failure on masters if you explicitly set openshift_docker_hosted_registry_insecure=true. This is the default but if you tried to set it an error would trigger as a relevant variable was not passed in the master playbooks. Fixes setting the variable to false being ignored. master/node playbooks were referencing the docker fact, which was not set at that point and thus we were always getting the default of true, regardless what was in your inventory. Stop passing registry insecure in via playbooks, we can access it when running openshift_facts itself. Add a new default in openshift facts. | ||||
* | | Fixes for flannel configuration. | Andrew Butcher | 2016-05-09 | 1 | -13/+10 |
|/ | |||||
* | Merge pull request #1839 from abutcher/v2-deprecations | Jason DeTiberus | 2016-04-29 | 1 | -4/+4 |
|\ | | | | | Cleanup various deprecation warnings. | ||||
| * | Cleanup various deprecation warnings. | Andrew Butcher | 2016-04-29 | 1 | -4/+4 |
| | | |||||
* | | Merge pull request #1843 from detiber/remove_deprecated_roles | Jason DeTiberus | 2016-04-29 | 1 | -8/+0 |
|\ \ | |/ |/| | Remove deprecated roles | ||||
| * | Remove deprecated online playbooks/roles | Jason DeTiberus | 2016-04-29 | 1 | -8/+0 |
| | | |||||
* | | Add openshift_docker_hosted_registry_insecure option | Andrew Lau | 2016-04-29 | 1 | -2/+2 |
|/ | |||||
* | Replace deprecated sudo with become. | Andrew Butcher | 2016-04-25 | 1 | -1/+1 |
| | |||||
* | Fix bug after portal_net move from master to common role. | Devan Goodwin | 2016-04-21 | 1 | -2/+2 |
| | | | | | | Use of the variable was still pointing to the master role location causing the default insecure registry subnet to be used rather than the expected one. | ||||
* | Use openshift_hostname/openshift_ip values for etcd configuration and ↵ | Andrew Butcher | 2016-04-20 | 1 | -1/+3 |
| | | | | certificates. | ||||
* | Merge pull request #1614 from detiber/bz1317755 | Brenton Leanhardt | 2016-03-17 | 1 | -0/+10 |
|\ | | | | | Bug 1317755 - Set insecure-registry for internal registry by default | ||||
| * | Bug 1317755 - Set insecure-registry for internal registry by default | Jason DeTiberus | 2016-03-17 | 1 | -0/+10 |
| | | |||||
* | | Fix path to cacert on /healthz/ready check | Scott Dodson | 2016-03-16 | 1 | -1/+1 |
| | | |||||
* | | Provide cacert when performing health checks | Andrew Butcher | 2016-03-15 | 1 | -1/+2 |
|/ | |||||
* | Move common common facts to openshift_facts | Jason DeTiberus | 2016-03-15 | 1 | -89/+85 |
| | | | | | | | - Prevents roles that need common facts from needing to require openshift_common, which pulls in the openshift binary. - Add dependency on openshift_facts to os_firewall, since it uses openshift.common facts | ||||
* | Docker role refactor | Jason DeTiberus | 2016-03-14 | 1 | -2/+4 |
| | | | | | | | | | | | | | | | - refactors the docker role to push generic config into docker role and wrap openshift specific variables into an openshift_docker role and it's dependent openshift_docker_facts role - adds support for setting --confirm-def-push flag (Resolves https://github.com/openshift/openshift-ansible/issues/1014) - moves docker related facts from common/node roles to a new docker role - renames cli_docker_* role varialbes to openshift_docker-* (maintaining backward compatibility) - update role dependencies to pull in openshift_docker conditionally based on is_containerized - remove playbooks/common/openshift-docker since the docker role is now conditionally included | ||||
* | Use /healthz/ready when verifying api | Andrew Butcher | 2016-03-08 | 1 | -2/+2 |
| | |||||
* | configure debug_level for master and node from cli | jawed | 2016-02-23 | 1 | -0/+4 |
| | |||||
* | Merge pull request #1324 from abutcher/fluentd-fixes | Brenton Leanhardt | 2016-02-11 | 1 | -2/+0 |
|\ | | | | | Remove fluentd_master and fluentd_node roles | ||||
| * | Remove fluentd_master and fluentd_node roles. | Andrew Butcher | 2016-02-08 | 1 | -2/+0 |
| | | |||||
* | | add missing connection:local | Jason DeTiberus | 2016-02-09 | 1 | -0/+1 |
| | | |||||
* | | Do not apply the etcd_certificates role during node playbook. | Andrew Butcher | 2016-02-02 | 1 | -0/+1 |
|/ | |||||
* | Fix for bug 1298 | Vishal Patil | 2016-01-28 | 1 | -0/+1 |
| | |||||
* | Configure logrotate on atomic. | Andrew Butcher | 2016-01-27 | 1 | -1/+0 |
| | |||||
* | Install cockpit, logrotate and fluentd unless host is atomic. | Andrew Butcher | 2016-01-26 | 1 | -1/+1 |
| | |||||
* | Merge pull request #1160 from vishpat/nuage | Brenton Leanhardt | 2016-01-25 | 1 | -0/+2 |
|\ | | | | | Nuage | ||||
| * | Add Nuage support to openshift ansible | Vishal Patil | 2016-01-25 | 1 | -0/+2 |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Added variables Made changes for node configuration Add service restart logic to node Fixed ansible syntax errors Add cert and key info for nodes Added active and standby controller ip configuration information Uncommented the nuage sdn check Changed ca_crt -> ca_cert Added restarting of atomic openshift master Removed service account dependencies Fixes Fixed the api server url Removed redundant restart of atomic openshift master Configure nuagekubemon on all of the master nodes Restart master api and controllers as well on nuagekubemon installation Converted plugin config into template Add template for nuagekubemon Removed uplink interface from vars Able to copy cert keys Uninstall default ovs Add the kubemon template Do not install rdo sdn rpms in case of nuage Addressed latest review comments Set the networkPluginName for nuage | ||||
* | | Configure nodes which are also masters prior to nodes in containerized install. | Andrew Butcher | 2016-01-15 | 1 | -8/+38 |
| | | |||||
* | | Check api prior to starting node. | Andrew Butcher | 2016-01-14 | 1 | -4/+0 |
| | | |||||
* | | Update api verification. | Andrew Butcher | 2016-01-13 | 1 | -6/+14 |
| | | |||||
* | | Add a Verify API Server handler that waits for the API server to become | Scott Dodson | 2016-01-13 | 1 | -1/+10 |
| | | | | | | | | available | ||||
* | | Merge pull request #808 from sdodson/containers | Brenton Leanhardt | 2015-12-19 | 1 | -0/+1 |
|\ \ | | | | | | | Containerized install with SDN support |