main.yml 3.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869
  1. ---
  2. # openshift_master_defaults_in_use is a workaround to detect if we are consuming
  3. # the plays from the role or outside of the role.
  4. openshift_master_defaults_in_use: True
  5. openshift_master_debug_level: "{{ debug_level | default(2) }}"
  6. r_openshift_master_firewall_enabled: "{{ os_firewall_enabled | default(True) }}"
  7. r_openshift_master_use_firewalld: "{{ os_firewall_use_firewalld | default(False) }}"
  8. openshift_node_ips: []
  9. r_openshift_master_clean_install: false
  10. r_openshift_master_etcd3_storage: false
  11. r_openshift_master_os_firewall_enable: true
  12. r_openshift_master_os_firewall_deny: []
  13. default_r_openshift_master_os_firewall_allow:
  14. - service: api server https
  15. port: "{{ openshift.master.api_port }}/tcp"
  16. - service: api controllers https
  17. port: "{{ openshift.master.controllers_port }}/tcp"
  18. - service: skydns tcp
  19. port: "{{ openshift.master.dns_port }}/tcp"
  20. - service: skydns udp
  21. port: "{{ openshift.master.dns_port }}/udp"
  22. - service: etcd embedded
  23. port: 4001/tcp
  24. cond: "{{ groups.oo_etcd_to_config | default([]) | length == 0 }}"
  25. r_openshift_master_os_firewall_allow: "{{ default_r_openshift_master_os_firewall_allow | union(openshift_master_open_ports | default([])) }}"
  26. # oreg_url is defined by user input
  27. oreg_host: "{{ oreg_url.split('/')[0] if (oreg_url is defined and '.' in oreg_url.split('/')[0]) else '' }}"
  28. oreg_auth_credentials_path: "{{ r_openshift_master_data_dir }}/.docker"
  29. oreg_auth_credentials_replace: False
  30. l_bind_docker_reg_auth: False
  31. openshift_docker_alternative_creds: "{{ (openshift_docker_use_system_container | default(False)) or (openshift_use_crio_only | default(False)) }}"
  32. containerized_svc_dir: "/usr/lib/systemd/system"
  33. ha_svc_template_path: "native-cluster"
  34. # NOTE
  35. # r_openshift_master_*_default may be defined external to this role.
  36. # openshift_use_*, if defined, may affect other roles or play behavior.
  37. r_openshift_master_use_openshift_sdn_default: "{{ openshift_use_openshift_sdn | default(True) }}"
  38. r_openshift_master_use_openshift_sdn: "{{ r_openshift_master_use_openshift_sdn_default }}"
  39. r_openshift_master_use_nuage_default: "{{ openshift_use_nuage | default(False) }}"
  40. r_openshift_master_use_nuage: "{{ r_openshift_master_use_nuage_default }}"
  41. r_openshift_master_use_contiv_default: "{{ openshift_use_contiv | default(False) }}"
  42. r_openshift_master_use_contiv: "{{ r_openshift_master_use_contiv_default }}"
  43. r_openshift_master_use_kuryr_default: "{{ openshift_use_kuryr | default(False) }}"
  44. r_openshift_master_use_kuryr: "{{ r_openshift_master_use_kuryr_default }}"
  45. r_openshift_master_data_dir_default: "{{ openshift_data_dir | default('/var/lib/origin') }}"
  46. r_openshift_master_data_dir: "{{ r_openshift_master_data_dir_default }}"
  47. r_openshift_master_sdn_network_plugin_name_default: "{{ os_sdn_network_plugin_name | default('redhat/openshift-ovs-subnet') }}"
  48. r_openshift_master_sdn_network_plugin_name: "{{ r_openshift_master_sdn_network_plugin_name_default }}"
  49. openshift_master_image_config_latest_default: "{{ openshift_image_config_latest | default(False) }}"
  50. openshift_master_image_config_latest: "{{ openshift_master_image_config_latest_default }}"
  51. openshift_master_config_dir_default: "{{ openshift.common.config_base ~ '/master' if openshift is defined and 'common' in openshift else '/etc/origin/master' }}"
  52. openshift_master_config_dir: "{{ openshift_master_config_dir_default }}"
  53. openshift_master_bootstrap_enabled: False
  54. openshift_master_csr_sa: node-bootstrapper
  55. openshift_master_csr_namespace: openshift-infra