main.yml 1.3 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546
  1. ---
  2. r_openshift_hosted_router_firewall_enabled: True
  3. r_openshift_hosted_router_use_firewalld: False
  4. r_openshift_hosted_registry_firewall_enabled: True
  5. r_openshift_hosted_registry_use_firewalld: False
  6. registry_volume_claim: 'registry-claim'
  7. openshift_hosted_router_edits:
  8. - key: spec.strategy.rollingParams.intervalSeconds
  9. value: 1
  10. action: put
  11. - key: spec.strategy.rollingParams.updatePeriodSeconds
  12. value: 1
  13. action: put
  14. - key: spec.strategy.activeDeadlineSeconds
  15. value: 21600
  16. action: put
  17. openshift_hosted_routers:
  18. - name: router
  19. replicas: "{{ replicas | default(1) }}"
  20. namespace: default
  21. serviceaccount: router
  22. selector: "{{ openshift_hosted_router_selector | default(None) }}"
  23. images: "{{ openshift_hosted_router_image | default(None) }}"
  24. edits: "{{ openshift_hosted_router_edits }}"
  25. stats_port: 1936
  26. ports:
  27. - 80:80
  28. - 443:443
  29. certificate: "{{ openshift_hosted_router_certificate | default({}) }}"
  30. openshift_hosted_router_certificate: {}
  31. openshift_hosted_registry_cert_expire_days: 730
  32. openshift_hosted_router_create_certificate: True
  33. r_openshift_hosted_router_os_firewall_deny: []
  34. r_openshift_hosted_router_os_firewall_allow: []
  35. r_openshift_hosted_registry_os_firewall_deny: []
  36. r_openshift_hosted_registry_os_firewall_allow:
  37. - service: Docker Registry Port
  38. port: 5000/tcp
  39. cond: "{{ r_openshift_hosted_use_calico }}"