|
@@ -12,7 +12,7 @@ r_openshift_master_clean_install: false
|
|
r_openshift_master_etcd3_storage: false
|
|
r_openshift_master_etcd3_storage: false
|
|
r_openshift_master_os_firewall_enable: true
|
|
r_openshift_master_os_firewall_enable: true
|
|
r_openshift_master_os_firewall_deny: []
|
|
r_openshift_master_os_firewall_deny: []
|
|
-r_openshift_master_os_firewall_allow:
|
|
|
|
|
|
+default_r_openshift_master_os_firewall_allow:
|
|
- service: api server https
|
|
- service: api server https
|
|
port: "{{ openshift.master.api_port }}/tcp"
|
|
port: "{{ openshift.master.api_port }}/tcp"
|
|
- service: api controllers https
|
|
- service: api controllers https
|
|
@@ -24,6 +24,8 @@ r_openshift_master_os_firewall_allow:
|
|
- service: etcd embedded
|
|
- service: etcd embedded
|
|
port: 4001/tcp
|
|
port: 4001/tcp
|
|
cond: "{{ groups.oo_etcd_to_config | default([]) | length == 0 }}"
|
|
cond: "{{ groups.oo_etcd_to_config | default([]) | length == 0 }}"
|
|
|
|
+r_openshift_master_os_firewall_allow: "{{ default_r_openshift_master_os_firewall_allow | union(openshift_master_open_ports | default([])) }}"
|
|
|
|
+
|
|
|
|
|
|
# oreg_url is defined by user input
|
|
# oreg_url is defined by user input
|
|
oreg_host: "{{ oreg_url.split('/')[0] if (oreg_url is defined and '.' in oreg_url.split('/')[0]) else '' }}"
|
|
oreg_host: "{{ oreg_url.split('/')[0] if (oreg_url is defined and '.' in oreg_url.split('/')[0]) else '' }}"
|