init.yml 1.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445
  1. ---
  2. - import_playbook: ../../../init/evaluate_groups.yml
  3. vars:
  4. # Do not allow adding hosts during upgrade.
  5. g_new_master_hosts: []
  6. g_new_node_hosts: []
  7. - import_playbook: ../../../init/basic_facts.yml
  8. - import_playbook: ../../../init/base_packages.yml
  9. - import_playbook: ../../../init/cluster_facts.yml
  10. - name: Inspect cluster certificates
  11. hosts: "{{ l_upgrade_cert_check_hosts }}"
  12. tasks:
  13. - import_role:
  14. name: openshift_certificate_expiry
  15. tasks_from: main.yml
  16. - name: Ensure essential node configmaps are present
  17. hosts: oo_first_master
  18. tasks:
  19. - import_role:
  20. name: openshift_node_group
  21. tasks_from: check_for_configs.yml
  22. - name: Ensure firewall is not switched during upgrade
  23. hosts: "{{ l_upgrade_no_switch_firewall_hosts | default('oo_all_hosts') }}"
  24. vars:
  25. openshift_master_installed_version: "{{ hostvars[groups.oo_first_master.0].openshift_current_version }}"
  26. tasks:
  27. - name: set currently installed version
  28. set_fact:
  29. openshift_currently_installed_version: "{{ openshift_master_installed_version }}"
  30. - name: Get iptable service details
  31. systemd:
  32. name: "iptables"
  33. ignore_errors: true
  34. register: iptables_service
  35. - name: Set fact os_firewall_use_firewalld FALSE for iptables
  36. set_fact:
  37. os_firewall_use_firewalld: false
  38. when:
  39. - iptables_service.status.ActiveState != 'active'