main.yml 2.9 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152
  1. ---
  2. docker_cli_auth_config_path: '/root/.docker'
  3. openshift_docker_service_name: "docker"
  4. openshift_docker_additional_registries: []
  5. openshift_docker_blocked_registries: []
  6. openshift_docker_insecure_registries: []
  7. openshift_docker_ent_reg: 'registry.redhat.io'
  8. # The l2_docker_* variables convert csv strings to lists, if
  9. # necessary. These variables should be used in place of their respective
  10. # openshift_docker_* counterparts to ensure the properly formatted lists are
  11. # utilized.
  12. l2_docker_additional_registries: "{% if openshift_docker_additional_registries is string %}{% if openshift_docker_additional_registries == '' %}[]{% elif ',' in openshift_docker_additional_registries %}{{ openshift_docker_additional_registries.split(',') | list }}{% else %}{{ [ openshift_docker_additional_registries ] }}{% endif %}{% else %}{{ openshift_docker_additional_registries }}{% endif %}"
  13. l2_docker_blocked_registries: "{% if openshift_docker_blocked_registries is string %}{% if openshift_docker_blocked_registries == '' %}[]{% elif ',' in openshift_docker_blocked_registries %}{{ openshift_docker_blocked_registries.split(',') | list }}{% else %}{{ [ openshift_docker_blocked_registries ] }}{% endif %}{% else %}{{ openshift_docker_blocked_registries }}{% endif %}"
  14. l2_docker_insecure_registries: "{% if openshift_docker_insecure_registries is string %}{% if openshift_docker_insecure_registries == '' %}[]{% elif ',' in openshift_docker_insecure_registries %}{{ openshift_docker_insecure_registries.split(',') | list }}{% else %}{{ [ openshift_docker_insecure_registries ] }}{% endif %}{% else %}{{ openshift_docker_insecure_registries }}{% endif %}"
  15. containers_registries_conf_path: /etc/containers/registries.conf
  16. r_crio_firewall_enabled: "{{ os_firewall_enabled | default(True) }}"
  17. r_crio_use_firewalld: "{{ os_firewall_use_firewalld | default(False) }}"
  18. r_crio_os_firewall_deny: []
  19. r_crio_os_firewall_allow:
  20. - service: crio
  21. port: 10010/tcp
  22. r_crio_use_openshift_sdn: "{{ openshift_use_openshift_sdn | default(True) }}"
  23. docker_alt_storage_path: /var/lib/containers/docker
  24. docker_default_storage_path: /var/lib/docker
  25. docker_storage_path: "{{ docker_default_storage_path }}"
  26. docker_storage_size: 40G
  27. docker_storage_setup_options:
  28. vg: docker_vg
  29. data_size: 99%VG
  30. storage_driver: overlay2
  31. root_lv_name: docker-root-lv
  32. root_lv_size: 100%FREE
  33. root_lv_mount_path: "{{ docker_storage_path }}"
  34. docker_storage_extra_options:
  35. - "--storage-opt overlay2.override_kernel_check=true"
  36. - "{{ '--storage-opt overlay2.size=' ~ docker_storage_size if container_runtime_docker_storage_setup_device is defined and container_runtime_docker_storage_setup_device != '' else '' }}"
  37. - "--graph={{ docker_storage_path}}"
  38. container_runtime_extra_storage: []
  39. l_insecure_crio_registries: "{{ '\"{}\"'.format('\", \"'.join(l2_docker_insecure_registries)) }}"
  40. l_crio_registries: "{{ l2_docker_additional_registries + ['docker.io'] }}"
  41. l_additional_crio_registries: "{{ '\"{}\"'.format('\", \"'.join(l_crio_registries)) }}"