Michael Gugino 0781eedf90 Replace and refactor openshift_is_containerized in places 7 anos atrás
..
defaults ccb7cd480f Cleanup stale version bits 7 anos atrás
meta 801779eeb6 Relocate filter plugins to lib_utils 7 anos atrás
tasks 0781eedf90 Replace and refactor openshift_is_containerized in places 7 anos atrás
vars d8d0e6d7de Separate certificate playbooks. 7 anos atrás
OWNERS 1a656ce0b2 Add OWNERS files 7 anos atrás
README.md 85af64fce1 Cleanup master related plays and variables 7 anos atrás

README.md

OpenShift CA

This role delegates all tasks to the openshift_ca_host such that this role can be depended on by other OpenShift certificate roles.

Requirements

Role Variables

From this role:

Name Default value Description
openshift_ca_host None (Required) The hostname of the system where the OpenShift CA will be created.
openshift_ca_config_dir {{ openshift.common.config_base }}/master CA certificate directory.
openshift_ca_cert {{ openshift_ca_config_dir }}/ca.crt CA certificate path including CA certificate filename.
openshift_ca_key {{ openshift_ca_config_dir }}/ca.key CA key path including CA key filename.
openshift_ca_serial {{ openshift_ca_config_dir }}/ca.serial.txt CA serial path including CA serial filename.
openshift_master_cert_expire_days 730 (2 years) Validity of the certificates in days. Works only with OpenShift version 1.5 (3.5) and later.
openshift_ca_cert_expire_days 1825 (5 years) Validity of the CA certificates in days. Works only with OpenShift version 1.5 (3.5) and later.

Dependencies

  • openshift_repos
  • openshift_cli

Example Playbook

- name: Create OpenShift CA
  hosts: localhost
  roles:
  - role: openshift_ca

License

Apache License Version 2.0

Author Information

Jason DeTiberus (jdetiber@redhat.com)