summaryrefslogtreecommitdiffstats
path: root/roles/openshift_master
Commit message (Collapse)AuthorAgeFilesLines
* Add vagrantfile and minor bugfixesJason DeTiberus2015-04-281-0/+11
| | | | | | | | - Add Vagrantfile for configuring a basic cluster - Add an initial readme for using vagrant - explicitly set connection: local and sudo: false for localhost actions in playbooks/common/openshift-node/config.yml - Fix permissions issue with openshift config file for non-root user
* Fixes for latest osc client config changesJason DeTiberus2015-04-221-5/+13
| | | | - also pylint fixes
* Use docker-registry.ops when deploying as onlineWesley Hearn2015-04-221-0/+6
|
* Fix issue with nodes being set to an empty string when generating master configJason DeTiberus2015-04-201-2/+2
|
* Configuration updates for latest builds and major refactorJason DeTiberus2015-04-142-15/+54
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Configuration updates for latest builds - Switch to using create-node-config - Switch sdn services to use etcd over SSL - This re-uses the client certificate deployed on each node - Additional node registration changes - Do not assume that metadata service is available in openshift_facts module - Call systemctl daemon-reload after installing openshift-master, openshift-sdn-master, openshift-node, openshift-sdn-node - Fix bug overriding openshift_hostname and openshift_public_hostname in byo playbooks - Start moving generated configs to /etc/openshift - Some custom module cleanup - Add known issue with ansible-1.9 to README_OSE.md - Update to genericize the kubernetes_register_node module - Default to use kubectl for commands - Allow for overriding kubectl_cmd - In openshift_register_node role, override kubectl_cmd to openshift_kube - Set default openshift_registry_url for enterprise when deployment_type is enterprise - Fix openshift_register_node for client config change - Ensure that master certs directory is created - Add roles and filter_plugin symlinks to playbooks/common/openshift-master and node - Allow non-root user with sudo nopasswd access - Updates for README_OSE.md - Update byo inventory for adding additional comments - Updates for node cert/config sync to work with non-root user using sudo - Move node config/certs to /etc/openshift/node - Don't use path for mktemp. addresses: https://github.com/openshift/openshift-ansible/issues/154 Create common playbooks - create common/openshift-master/config.yml - create common/openshift-node/config.yml - update playbooks to use new common playbooks - update launch playbooks to call update playbooks - fix openshift_registry and openshift_node_ip usage Set default deployment type to origin - openshift_repo updates for enabling origin deployments - also separate repo and gpgkey file structure - remove kubernetes repo since it isn't currently needed - full deployment type support for bin/cluster - honor OS_DEPLOYMENT_TYPE env variable - add --deployment-type option, which will override OS_DEPLOYMENT_TYPE if set - if neither OS_DEPLOYMENT_TYPE or --deployment-type is set, defaults to origin installs Additional changes: - Add separate config action to bin/cluster that runs ansible config but does not update packages - Some more duplication reduction in cluster playbooks. - Rename task files in playbooks dirs to have tasks in their name for clarity. - update aws/gce scripts to use a directory for inventory (otherwise when there are no hosts returned from dynamic inventory there is an error) libvirt refactor and update - add libvirt dynamic inventory - updates to use dynamic inventory for libvirt
* openshift_facts role/module refactor default settingsJason DeTiberus2015-04-035-45/+49
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | - Add openshift_facts role and module - Created new role openshift_facts that contains an openshift_facts module - Refactor openshift_* roles to use openshift_facts instead of relying on defaults - Refactor playbooks to use openshift_facts - Cleanup inventory group_vars - Update defaults - update openshift_master role firewall defaults - remove etcd peer port, since we will not be supporting clustered embedded etcd - remove 8444 since console now runs on the api port by default - add 8444 and 7001 to disabled services to ensure removal if updating - Add new role os_env_extras_node that is a subset of the docker role - previously, we were starting/enabling docker which was causing issues with some installations - Does not install or start docker, since the openshift-node role will handle that for us - Only adds root to the dockerroot group - Update playbooks to use ops_env_extras_node role instead of docker role - os_firewall bug fixes - ignore ip6tables for now, since we are not configuring any ipv6 rules - if installing package do a daemon-reload before starting/enabling service - Add aws support to bin/cluster - Add list action to bin/cluster - Add update action to bin/cluster - cleanup some stray debug statements - some variable renaming for clarity
* remove openshift_hostname_workaround var for openshift_common, rather rely ↵Jason DeTiberus2015-03-241-1/+0
| | | | on inventory/playbook variables for openshift_hostname
* node registration changesJason DeTiberus2015-03-242-31/+6
| | | | | | | | | | | | | | - Remove default value for openshift_hostname and make it required - Remove workarounds that are no longer needed - Remove resources parameter from openshift_register_node module - pre-create node certificates for each node before registering node - distribute created node certificates to each node - Move node registration logic to a new openshift_register_nodes role - This is because we now have to run the steps on a master as opposed to on the nodes like we were previously doing. - Rename openshift_register_node module to kubernetes_register_node, one more step to genericizing enough for upstreaming, however there are still plenty of openshift specific commands that still need to be genericized.
* Add workaround for openshift-master startup timeoutJason DeTiberus2015-03-131-0/+17
|
* Merge pull request #100 from detiber/randomCleanupThomas Wiest2015-03-092-14/+26
|\ | | | | Random cleanup
| * Initial READMEs for openshift_{common, node, master}Jason DeTiberus2015-03-061-13/+25
| |
| * Fix license nameJason DeTiberus2015-03-061-1/+1
| |
* | Merge pull request #106 from detiber/condionalNodeOptionThomas Wiest2015-03-091-2/+3
|\ \ | | | | | | Conditionally set --nodes on master
| * | Conditionally set --nodes on masterJason DeTiberus2015-03-091-2/+3
| | | | | | | | | | | | | | | - only add --nodes option to /etc/sysconfig/openshift-master when openshift_node_ips is not an empty list.
* | | Fix permissions on .kube folderJason DeTiberus2015-03-091-1/+1
|/ / | | | | | | - missing leading 0 on mode
* | start fixing os_firewall issuesJason DeTiberus2015-03-062-15/+12
| | | | | | | | | | - Fix missed references to old firewall scripts - Fix variable name references that didn't get updated
* | Merge pull request #98 from detiber/copyNotEnvKubeconfigThomas Wiest2015-03-061-0/+21
|\ \ | | | | | | Do not set KUBECONFIG for root user
| * | Do not set KUBECONFIG for root userJason DeTiberus2015-03-061-0/+21
| |/ | | | | | | | | | | | | - instead of setting KUBECONFIG, copy the admin kubeconfig to /root/.kube/.kubeconfig in the openshift_master and openshift_node roles - pause for 30 seconds if the openshift-master service has changed state, since the file we are copying is generated by the master
* / Provide default value for openshift_node_ipsJason DeTiberus2015-03-061-0/+1
|/ | | | | | | | | | | | | | | | | - openshift_node_ips now defaults to [] - Previously an empty --nodes in /etc/sysconfig/master would result in the master creating a node for the localhost. The latest Origin and OSE builds now only create the implicit localhost node if run as openshift, not openshift-master. We can now safely default to setting no nodes in /etc/sysconfig/master and having nodes register themselves with the master when they come up via the 'Register node (if not already registered)' task in roles/openshift_node/tasks/main.yml) - This had an associated change for the byo scripts that had not been merged into master yet, but this PR changes the behavior of the openshift_master role to not fail if openshift_node_ips is not set. This also prevents having the openshift_master service restarted when a node is added.
* remove extra '}'Liang Xia2015-03-031-3/+3
|
* Merge pull request #91 from detiber/downWithJSONThomas Wiest2015-03-021-8/+19
|\ | | | | Prefer YAML style datastructures over JSON
| * Prefer YAML style datastructures over JSONJason DeTiberus2015-03-021-8/+19
| | | | | | | | - Switch JSON style datastructures to YAML for debuggability
* | Add openshift_hostname default variable to openshift_commonJason DeTiberus2015-03-021-2/+1
| | | | | | | | | | - for use anywhere the hostname is used that would be dependent on the openshift_hostname_workaround setting.
* | add openshift_hostname workaround varJason DeTiberus2015-03-021-2/+3
|/ | | | | - use openshift_bind_ip for hostname when openshift_hostname_workaround is true - defaults to true to maintain current behavior.
* add support for overriding default registry urlJason DeTiberus2015-03-021-0/+9
|
* Set local_facts for openshift_node and openshift_master later in the task listJason DeTiberus2015-03-021-7/+7
|
* Disable master,node services when externally managedJason DeTiberus2015-03-011-0/+4
|
* create openshift_common roleJason DeTiberus2015-02-245-153/+41
| | | | | | | | | | | - move common openshift logic into openshift_common - set openshift_common as a dependency for openshift_node and openshift_master - rename role variables to openshift_* to be more descriptive - start recording local_facts on the openshift hosts - clean up firewalld config to be a bit more dry - Update firewall ports for https, make sure http rules are removed - Replace references to ansible_eth0.ipv4.address with ansible_default_ipv4.address
* removed kubernetes roles as they're just cruft at this point.Thomas Wiest2015-02-231-1/+1
|
* fixed bug when updating the openshift-master sysconfig file. Also, made it ↵Thomas Wiest2015-02-231-1/+2
| | | | multi-line so we get better errors from ansible.
* Set and export KUBECONFIG in root user .bash_profileJason DeTiberus2015-02-201-11/+14
| | | | | | | | | | | | - roles/base_os: Without this, the root user would need to manually configure this variable before attempting to run any osc commands - roles/base_os: Cleanup the firewall service definition and only pause when the service state changes. - roles/openshift_master: use Akram's suggestion of simplifying the firewall config - roles/openshift_master: explicitly disable previously exposed ports that are no longer exposed (8080/tcp I'm looking at you).
* Fix SSL support between master and node(s)Jhon Honce2015-02-191-2/+2
|
* - Rename minion to nodeJhon Honce2015-02-162-7/+6
| | | | - Update playbooks to support latest code
* removed the usage of yaml '>' for multiline entries and replaced them with ↵Thomas Wiest2015-02-051-4/+4
| | | | yaml dictionaries as demonstrated by the ansible documentation.
* Add comments explaining changing the master/minion hostnamesJhon Honce2014-10-241-1/+2
| | | | | * openshift forces resolving all minions to hostnames to query etcd keys rather than using the IP address
* Support latest origin v3 CLI optionsJhon Honce2014-10-231-3/+6
|
* WIP Infra - Use variables in rolesJhon Honce2014-10-031-2/+2
|
* Finish origin -> openshift renameJhon Honce2014-10-026-0/+200