Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | Fix Restore Master AWS Options | Michael Fraenkel | 2017-08-11 | 1 | -1/+1 |
| | | | | - remove dangling bool | ||||
* | Merge pull request #4797 from kwoodson/os_firewall_refactor | Scott Dodson | 2017-08-11 | 4 | -15/+62 |
|\ | | | | | Refactor the firewall workflow. | ||||
| * | Updated README to reflect refactor. Moved firewall initialize into separate ↵ | Kenny Woodson | 2017-08-10 | 2 | -2/+5 |
| | | | | | | | | file. | ||||
| * | Adding a default condition and removing unneeded defaults. | Kenny Woodson | 2017-08-09 | 2 | -8/+4 |
| | | |||||
| * | First attempt at refactor of os_firewall | Kenny Woodson | 2017-08-08 | 4 | -15/+63 |
| | | |||||
* | | system_container.yml: fix braces | Luke Meyer | 2017-08-10 | 1 | -1/+1 |
| | | |||||
* | | Remove remaining references to openshift-master.service | Clayton Coleman | 2017-08-08 | 3 | -31/+0 |
| | | | | | | | | Prevents playbooks from accidentally restarting the master service. | ||||
* | | Disable old openshift-master.service on upgrade | Clayton Coleman | 2017-08-08 | 2 | -0/+8 |
| | | |||||
* | | Use the new election mode (client based) instead of direct etcd access | Clayton Coleman | 2017-08-08 | 1 | -3/+2 |
| | | |||||
* | | Remove the origin-master.service and associated files | Clayton Coleman | 2017-08-08 | 6 | -188/+30 |
|/ | | | | | | From now on, all master configurations use the api / controller split, regardless of HA mode or previous configuration. This will be our only supported configuration starting in 3.7 or 3.8. | ||||
* | Merge pull request #4789 from ↵ | Jan Chaloupka | 2017-08-04 | 1 | -4/+4 |
|\ | | | | | | | | | ingvagabund/allow-to-specify-docker-registry-for-system-containers Allow to specify docker registry for system containers | ||||
| * | allow to specify docker registry for system containers | Jan Chaloupka | 2017-07-19 | 1 | -4/+4 |
| | | |||||
* | | Merge pull request #4949 from carlpett/patch-1 | OpenShift Bot | 2017-08-01 | 1 | -1/+1 |
|\ \ | | | | | | | Merged by openshift-bot | ||||
| * | | Fix aws_secret_key check | Calle Pettersson | 2017-07-31 | 1 | -1/+1 |
| | | | |||||
* | | | Merge pull request #4894 from tbielawa/reg-dns-scaleup-bz1469336 | OpenShift Bot | 2017-08-01 | 5 | -6/+16 |
|\ \ \ | | | | | | | | | Merged by openshift-bot | ||||
| * | | | Use existing OPENSHIFT_DEFAULT_REGISTRY setting during masters scaleup | Tim Bielawa | 2017-07-28 | 5 | -6/+16 |
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Fixes a bug which reported that AFTER a cluster upgrade from OCP 3.5 to 3.6, any masters which are later added via the scaleup playbooks are setting a value for OPENSHIFT_DEFAULT_REGISTRY which is inconsistent with the already configured masters. * OPENSHIFT_DEFAULT_REGISTRY value is saved from oo_first_master * The new scaleup master has a fact set noting it is a scaleup host * The saved OPENSHIFT_DEFAULT_REGISTRY value is used instead of the default for 3.6, which is to use a hard-coded registry value of 'docker-registry.default.svc:5000' Fixes https://bugzilla.redhat.com/show_bug.cgi?id=1469336 | ||||
* | | | | Merge pull request #4700 from sdodson/rate-limit | OpenShift Bot | 2017-08-01 | 1 | -4/+4 |
|\ \ \ \ | |_|/ / |/| | | | Merged by openshift-bot | ||||
| * | | | Add rate limit configurability | Scott Dodson | 2017-07-06 | 1 | -4/+4 |
| | |/ | |/| | |||||
* | | | Tolerate non existence of /etc/sysconfig/atomic-openshift-master | Scott Dodson | 2017-07-27 | 1 | -2/+2 |
| |/ |/| | |||||
* | | Merge pull request #4813 from sdodson/log-dumper | Scott Dodson | 2017-07-26 | 1 | -0/+20 |
|\ \ | | | | | | | Fix log dumping on service failure | ||||
| * | | Fix log dumping on service failure | Scott Dodson | 2017-07-20 | 1 | -0/+20 |
| |/ | | | | | | | Also, add log dumping to master service startup too | ||||
* / | If proxy in effect, add etcd host IP addresses to NO_PROXY list on masters | Tim Bielawa | 2017-07-21 | 1 | -0/+6 |
|/ | | | | Fixes https://bugzilla.redhat.com/show_bug.cgi?id=1466783 | ||||
* | Fix yamllint | Scott Dodson | 2017-07-06 | 1 | -10/+10 |
| | |||||
* | Removed quotes and added env variable to be specific. | Kenny Woodson | 2017-07-05 | 1 | -2/+2 |
| | |||||
* | [BZ 1467786] Fix for OPENSHIFT_DEFAULT_REGISTRY setting. | Kenny Woodson | 2017-07-05 | 1 | -2/+11 |
| | |||||
* | Merge pull request #4414 from sdodson/bz1460626 | Scott Dodson | 2017-06-26 | 3 | -3/+3 |
|\ | | | | | Ensure that host pki tree is mounted in containerized components | ||||
| * | Ensure that host pki tree is mounted in containerized components | Scott Dodson | 2017-06-12 | 3 | -3/+3 |
| | | |||||
* | | Also configure default registry on HA masters | Scott Dodson | 2017-06-23 | 2 | -0/+6 |
| | | | | | | | | Fixes https://bugzilla.redhat.com/show_bug.cgi?id=1463498 | ||||
* | | Fixed readme doc. | Kenny Woodson | 2017-06-21 | 1 | -12/+12 |
| | | |||||
* | | Adding option for serviceAccountConfig.limitSecretReferences | Kenny Woodson | 2017-06-20 | 2 | -13/+14 |
| | | |||||
* | | Merge pull request #4292 from sdodson/push-via-dns | OpenShift Bot | 2017-06-20 | 2 | -0/+6 |
|\ \ | | | | | | | Merged by openshift-bot | ||||
| * | | Update atomic-openshift-master.j2 | Scott Dodson | 2017-06-19 | 1 | -1/+1 |
| | | | |||||
| * | | Enable push to registry via dns only on clean 3.6 installs | Scott Dodson | 2017-06-18 | 2 | -1/+4 |
| | | | | | | | | | | | | | | | We cannot assume that 3.5 to 3.6 upgrades were signed with the correct certs | ||||
| * | | Disable actually pushing to the registry via dns for now | Scott Dodson | 2017-06-18 | 1 | -1/+1 |
| | | | | | | | | | | | | | | | | | | | | | We need to sort out how to know that the registry certificate has the proper hostnames attached to it. It will for 3.6 clean installs but not for 3.5 to 3.6 upgrades. For now make it opt in and come back to this. | ||||
| * | | Push to the registry via dns | Scott Dodson | 2017-06-18 | 1 | -0/+3 |
| | | | | | | | | | | | | | | | | | | Configures OPENSHIFT_DEFAULT_REGISTRY=docker-registry.default.svc Adds 'cluster.local' to dns search on nodes via dispatcher script Adds '.svc' to NO_PROXY defaults | ||||
* | | | Preserve etcd3 storage if it's already in use | Scott Dodson | 2017-06-18 | 3 | -20/+7 |
|/ / | | | | | | | | | This would be the case if for instance they'd upgraded and then migrated. | ||||
* / | etcd v3 for clean installs | Scott Dodson | 2017-06-16 | 2 | -2/+21 |
|/ | | | | | If we have no master config assume that we're a clean install. If we're a clean install and we're 3.6 or greater use etcd v3 storage. | ||||
* | Add daemon_reload parameter to service tasks | Tim Bielawa | 2017-06-01 | 1 | -0/+1 |
| | | | | | | | Fixes "Could not find the requested service atomic-openshift-master: cannot enable" error during reinstall. https://bugzilla.redhat.com/show_bug.cgi?id=1451693 | ||||
* | Merge pull request #4234 from vshn/feature/oreg_url_masternode | OpenShift Bot | 2017-05-26 | 1 | -10/+11 |
|\ | | | | | Merged by openshift-bot | ||||
| * | allow to configure oreg_url specifically for node or master. refs #4233 | Tobias Brunner | 2017-05-19 | 1 | -10/+11 |
| | | | | | | | | | | | | | | | | | | This commit allows to specify imageConfig.format specifically for master or for nodes. One use case of this could be if you want to use customer builder images. In this case imageConfig.format only needs to be changed in the master-config.yml but not in the node-config.yml. | ||||
* | | Merge pull request #3982 from jim-minter/trello131-broker-configuration | OpenShift Bot | 2017-05-22 | 1 | -0/+7 |
|\ \ | | | | | | | Merged by openshift-bot | ||||
| * | | add template service broker configurable | Jim Minter | 2017-04-24 | 1 | -0/+7 |
| | | | |||||
* | | | Fix auditConfig for non-HA environments | Russell Teague | 2017-05-18 | 1 | -1/+1 |
| |/ |/| | | | | | Bug 1447019 | ||||
* | | Fix templating of static service files | Russell Teague | 2017-05-12 | 4 | -1/+2 |
| | | |||||
* | | Add service file templates for master and node | Steve Milner | 2017-05-09 | 3 | -0/+55 |
| | | | | | | | | | | | | | | Adds service file templates for both maste and node. These will lay down in /etc/system/systemd to override what may already be present from a package. These instances take into account the name of the container daemon (docker or container-engine). | ||||
* | | Update systemd units to use proper container service name | Steve Milner | 2017-05-09 | 3 | -12/+12 |
| | | | | | | | | | | | | | | - If using a system container: container-engine - If using a package install: docker Ref: https://bugzilla.redhat.com/show_bug.cgi?id=1448800 | ||||
* | | Stop logging AWS credentials in master role. | Devan Goodwin | 2017-05-03 | 1 | -0/+1 |
| | | | | | | | | | | | | | | Using lineinfile and with_items, the items end up logged and in this case include AWS credentials. Simple us of no_log to hide them. | ||||
* | | Don't double quote when conditions | Scott Dodson | 2017-05-01 | 1 | -1/+1 |
|/ | |||||
* | master-api: add mount for /var/log | Giuseppe Scrivano | 2017-04-06 | 1 | -1/+1 |
| | | | | Signed-off-by: Giuseppe Scrivano <gscrivan@redhat.com> | ||||
* | master: add mount for /var/log | Giuseppe Scrivano | 2017-04-06 | 1 | -1/+1 |
| | | | | Signed-off-by: Giuseppe Scrivano <gscrivan@redhat.com> |