Manage keystone initialization directly in t-h-t manifests
[apex-tripleo-heat-templates.git] / puppet / hieradata / controller.yaml
1 # Hiera data here applies to all controller nodes
2 nova::api::enabled: true
3 nova::conductor::enabled: true
4 nova::consoleauth::enabled: true
5 nova::vncproxy::enabled: true
6 nova::scheduler::enabled: true
7
8 # rabbitmq
9 rabbitmq::delete_guest_user: false
10 rabbitmq::wipe_db_on_cookie_change: true
11 rabbitmq::port: '5672'
12 rabbitmq::package_source: undef
13 rabbitmq::repos_ensure: false
14 rabbitmq_environment:
15   RABBITMQ_NODENAME: "rabbit@%{::hostname}"
16   RABBITMQ_SERVER_ERL_ARGS: '"+K true +A30 +P 1048576 -kernel inet_default_connect_options [{nodelay,true},{raw,6,18,<<5000:64/native>>}] -kernel inet_default_listen_options [{raw,6,18,<<5000:64/native>>}]"'
17 rabbitmq_kernel_variables:
18   inet_dist_listen_min: '35672'
19   inet_dist_listen_max: '35672'
20 rabbitmq_config_variables:
21   tcp_listen_options: '[binary, {packet, raw}, {reuseaddr, true}, {backlog, 128}, {nodelay, true}, {exit_on_close, false}, {keepalive, true}]'
22   cluster_partition_handling: 'pause_minority'
23
24 mongodb::server::replset: tripleo
25 mongodb::server::journal: false
26
27 redis::port: 6379
28 redis::sentinel::master_name: "%{hiera('bootstrap_nodeid')}"
29 redis::sentinel::redis_host: "%{hiera('bootstrap_nodeid_ip')}"
30 redis::sentinel::notification_script: '/usr/local/bin/redis-notifications.sh'
31
32 # service tenant
33 nova::api::admin_tenant_name: 'service'
34 glance::api::keystone_tenant: 'service'
35 glance::registry::keystone_tenant: 'service'
36 neutron::server::auth_tenant: 'service'
37 neutron::agents::metadata::auth_tenant: 'service'
38 cinder::api::keystone_tenant: 'service'
39 swift::proxy::authtoken::admin_tenant_name: 'service'
40 ceilometer::api::keystone_tenant: 'service'
41 heat::keystone_tenant: 'service'
42 glance::keystone::auth::tenant: 'service'
43 nova::keystone::auth::tenant: 'service'
44 neutron::keystone::auth::tenant: 'service'
45 cinder::keystone::auth::tenant: 'service'
46 swift::keystone::auth::tenant: 'service'
47 ceilometer::keystone::auth::tenant: 'service'
48 heat::keystone::auth::tenant: 'service'
49
50 # keystone
51 keystone::cron::token_flush::maxdelay: 3600
52 keystone::roles::admin::service_tenant: 'service'
53 keystone::roles::admin::admin_tenant: 'admin'
54
55 #swift
56 swift::proxy::pipeline:
57   - 'catch_errors'
58   - 'healthcheck'
59   - 'cache'
60   - 'ratelimit'
61   - 'tempurl'
62   - 'formpost'
63   - 'authtoken'
64   - 'keystone'
65   - 'staticweb'
66   - 'proxy-logging'
67   - 'proxy-server'
68
69 swift::proxy::account_autocreate: true
70 swift::keystone::auth::configure_s3_endpoint: false
71 swift::keystone::auth::operator_roles:
72   - admin
73   - swiftoperator
74
75 # glance
76 glance::api::pipeline: 'keystone'
77 glance::registry::pipeline: 'keystone'
78 glance::backend::swift::swift_store_create_container_on_put: true
79 glance::backend::rbd::rbd_store_user: 'openstack'
80 glance_file_pcmk_directory: '/var/lib/glance/images'
81
82 # neutron
83 neutron::server::sync_db: true
84 neutron::agents::dhcp::dnsmasq_config_file: /etc/neutron/dnsmasq-neutron.conf
85
86 # nova
87 nova::notify_on_state_change: 'vm_and_task_state'
88 nova::api::default_floating_pool: 'public'
89 nova::api::osapi_v3: true
90 nova::scheduler::filter::ram_allocation_ratio: '1.0'
91 nova::keystone::auth::configure_ec2_endpoint: false
92
93 # ceilometer
94 ceilometer::agent::auth::auth_endpoint_type: 'internalURL'
95
96 # cinder
97 cinder::scheduler::scheduler_driver: cinder.scheduler.filter_scheduler.FilterScheduler
98
99 # heat
100 heat::engine::configure_delegated_roles: false
101 heat::engine::trusts_delegated_roles: []
102 heat::instance_user: ''
103
104 # pacemaker
105 pacemaker::corosync::cluster_name: 'tripleo_cluster'
106 pacemaker::corosync::manage_fw: false
107 pacemaker::resource_defaults::defaults:
108   resource-stickiness: { value: INFINITY }
109
110 # horizon
111 horizon::cache_backend: django.core.cache.backends.memcached.MemcachedCache
112 horizon::django_session_engine: 'django.contrib.sessions.backends.cache'
113 horizon::vhost_extra_params:
114   add_listen: false
115   priority: 10
116
117 # mysql
118 mysql::server::manage_config_file: true
119
120
121 tripleo::loadbalancer::keystone_admin: true
122 tripleo::loadbalancer::keystone_public: true
123 tripleo::loadbalancer::neutron: true
124 tripleo::loadbalancer::cinder: true
125 tripleo::loadbalancer::glance_api: true
126 tripleo::loadbalancer::glance_registry: true
127 tripleo::loadbalancer::nova_ec2: true
128 tripleo::loadbalancer::nova_osapi: true
129 tripleo::loadbalancer::nova_metadata: true
130 tripleo::loadbalancer::nova_novncproxy: true
131 tripleo::loadbalancer::mysql: true
132 tripleo::loadbalancer::redis: true
133 tripleo::loadbalancer::swift_proxy_server: true
134 tripleo::loadbalancer::ceilometer: true
135 tripleo::loadbalancer::heat_api: true
136 tripleo::loadbalancer::heat_cloudwatch: true
137 tripleo::loadbalancer::heat_cfn: true
138 tripleo::loadbalancer::horizon: true
139
140 controller_classes: []