|
@@ -23,6 +23,7 @@ etcd_conf_dir: '/etc/etcd'
|
|
|
etcd_conf_file: "{{ etcd_conf_dir }}/etcd.conf"
|
|
|
etcd_ca_file: "{{ etcd_conf_dir }}/ca.crt"
|
|
|
etcd_cert_file: "{{ etcd_conf_dir }}/server.crt"
|
|
|
+etcd_cert_subdir: "etcd-{{ openshift.common.hostname }}"
|
|
|
etcd_key_file: "{{ etcd_conf_dir }}/server.key"
|
|
|
etcd_peer_ca_file: "{{ etcd_conf_dir }}/ca.crt"
|
|
|
etcd_peer_cert_file: "{{ etcd_conf_dir }}/peer.crt"
|
|
@@ -31,6 +32,8 @@ etcd_peer_key_file: "{{ etcd_conf_dir }}/peer.key"
|
|
|
# etcd ca vars
|
|
|
etcd_ca_dir: "{{ etcd_conf_dir}}/ca"
|
|
|
etcd_generated_certs_dir: "{{ etcd_conf_dir }}/generated_certs"
|
|
|
+etcd_cert_prefix: ''
|
|
|
+etcd_cert_config_dir: "/etc/etcd"
|
|
|
etcd_ca_cert: "{{ etcd_ca_dir }}/ca.crt"
|
|
|
etcd_ca_key: "{{ etcd_ca_dir }}/ca.key"
|
|
|
etcd_openssl_conf: "{{ etcd_ca_dir }}/openssl.cnf"
|
|
@@ -52,10 +55,9 @@ r_etcd_common_master_peer_key_file: /etc/origin/master/master.etcd-client.key
|
|
|
r_etcd_common_master_peer_ca_file: /etc/origin/master/master.etcd-ca.crt
|
|
|
|
|
|
# etcd server & certificate vars
|
|
|
-etcd_hostname: "{{ inventory_hostname }}"
|
|
|
-etcd_ip: "{{ ansible_default_ipv4.address }}"
|
|
|
-etcd_is_atomic: False
|
|
|
-etcd_is_containerized: False
|
|
|
+etcd_hostname: "{{ openshift.common.hostname }}"
|
|
|
+etcd_ip: "{{ openshift.common.ip }}"
|
|
|
+etcd_is_atomic: "{{ openshift_is_atomic }}"
|
|
|
etcd_is_thirdparty: False
|
|
|
|
|
|
# etcd dir vars
|
|
@@ -64,8 +66,8 @@ etcd_data_dir: "/var/lib/etcd/"
|
|
|
# etcd ports and protocols
|
|
|
etcd_client_port: 2379
|
|
|
etcd_peer_port: 2380
|
|
|
-etcd_url_scheme: http
|
|
|
-etcd_peer_url_scheme: http
|
|
|
+etcd_url_scheme: https
|
|
|
+etcd_peer_url_scheme: https
|
|
|
|
|
|
etcd_initial_cluster_state: new
|
|
|
etcd_initial_cluster_token: etcd-cluster-1
|
|
@@ -98,3 +100,5 @@ r_etcd_os_firewall_allow:
|
|
|
etcd_quota_backend_bytes: 4294967296
|
|
|
|
|
|
openshift_docker_service_name: "{{ 'container-engine' if (openshift_docker_use_system_container | default(False) | bool) else 'docker' }}"
|
|
|
+
|
|
|
+etcd_ca_host: "{{ groups['oo_etcd_to_config'].0 }}"
|