main.yaml 3.2 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283
  1. ---
  2. - fail:
  3. msg: "The openshift_manageiq role requires OpenShift Enterprise 3.1 or Origin 1.1."
  4. when: not openshift.common.version_gte_3_1_or_1_1 | bool
  5. - name: Copy Configuration to temporary conf
  6. command: >
  7. cp {{ openshift.common.config_base }}/master/admin.kubeconfig {{manage_iq_tmp_conf}}
  8. changed_when: false
  9. - name: Add Management Infrastructure project
  10. command: >
  11. {{ openshift.common.client_binary }} adm new-project
  12. management-infra
  13. --description="Management Infrastructure"
  14. --config={{manage_iq_tmp_conf}}
  15. register: osmiq_create_mi_project
  16. failed_when: "'already exists' not in osmiq_create_mi_project.stderr and osmiq_create_mi_project.rc != 0"
  17. changed_when: osmiq_create_mi_project.rc == 0
  18. - name: Create Admin Service Account
  19. shell: >
  20. echo {{ manageiq_service_account | to_json | quote }} |
  21. {{ openshift.common.client_binary }} create
  22. -n management-infra
  23. --config={{manage_iq_tmp_conf}}
  24. -f -
  25. register: osmiq_create_service_account
  26. failed_when: "'already exists' not in osmiq_create_service_account.stderr and osmiq_create_service_account.rc != 0"
  27. changed_when: osmiq_create_service_account.rc == 0
  28. - name: Create Image Inspector Service Account
  29. shell: >
  30. echo {{ manageiq_image_inspector_service_account | to_json | quote }} |
  31. {{ openshift.common.client_binary }} create
  32. -n management-infra
  33. --config={{manage_iq_tmp_conf}}
  34. -f -
  35. register: osmiq_create_service_account
  36. failed_when: "'already exists' not in osmiq_create_service_account.stderr and osmiq_create_service_account.rc != 0"
  37. changed_when: osmiq_create_service_account.rc == 0
  38. - name: Create Cluster Role
  39. shell: >
  40. echo {{ manageiq_cluster_role | to_json | quote }} |
  41. {{ openshift.common.client_binary }} create
  42. --config={{manage_iq_tmp_conf}}
  43. -f -
  44. register: osmiq_create_cluster_role
  45. failed_when: "'already exists' not in osmiq_create_cluster_role.stderr and osmiq_create_cluster_role.rc != 0"
  46. changed_when: osmiq_create_cluster_role.rc == 0
  47. - name: Create Hawkular Metrics Admin Cluster Role
  48. shell: >
  49. echo {{ manageiq_metrics_admin_clusterrole | to_json | quote }} |
  50. {{ openshift.common.client_binary }}
  51. --config={{manage_iq_tmp_conf}}
  52. create -f -
  53. register: oshawkular_create_cluster_role
  54. failed_when: "'already exists' not in oshawkular_create_cluster_role.stderr and oshawkular_create_cluster_role.rc != 0"
  55. changed_when: oshawkular_create_cluster_role.rc == 0
  56. - name: Configure role/user permissions
  57. command: >
  58. {{ openshift.common.client_binary }} adm {{item}}
  59. --config={{manage_iq_tmp_conf}}
  60. with_items: "{{manage_iq_tasks}}"
  61. register: osmiq_perm_task
  62. failed_when: "'already exists' not in osmiq_perm_task.stderr and osmiq_perm_task.rc != 0"
  63. changed_when: osmiq_perm_task.rc == 0
  64. - name: Configure 3_2 role/user permissions
  65. command: >
  66. {{ openshift.common.client_binary }} adm {{item}}
  67. --config={{manage_iq_tmp_conf}}
  68. with_items: "{{manage_iq_openshift_3_2_tasks}}"
  69. register: osmiq_perm_3_2_task
  70. failed_when: osmiq_perm_3_2_task.rc != 0
  71. changed_when: osmiq_perm_3_2_task.rc == 0
  72. when: openshift.common.version_gte_3_2_or_1_2 | bool
  73. - name: Clean temporary configuration file
  74. file: path={{manage_iq_tmp_conf}} state=absent