Code Review
/
apex-tripleo-heat-templates.git
/ blobdiff
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
review
|
tree
raw
|
inline
| side by side
Merge "Bind mount needed cert for haproxy for HA too"
[apex-tripleo-heat-templates.git]
/
docker
/
services
/
haproxy.yaml
diff --git
a/docker/services/haproxy.yaml
b/docker/services/haproxy.yaml
index
242f075
..
c24e107
100644
(file)
--- a/
docker/services/haproxy.yaml
+++ b/
docker/services/haproxy.yaml
@@
-42,6
+42,11
@@
parameters:
default: /dev/log
description: Syslog address where HAproxy will send its log
type: string
default: /dev/log
description: Syslog address where HAproxy will send its log
type: string
+ DeployedSSLCertificatePath:
+ default: '/etc/pki/tls/private/overcloud_endpoint.pem'
+ description: >
+ The filepath of the certificate as it will be stored in the controller.
+ type: string
RedisPassword:
description: The password for Redis
type: string
RedisPassword:
description: The password for Redis
type: string
@@
-93,9
+98,20
@@
outputs:
list_join:
- '/'
- [ {get_param: DockerNamespace}, {get_param: DockerHAProxyConfigImage} ]
list_join:
- '/'
- [ {get_param: DockerNamespace}, {get_param: DockerHAProxyConfigImage} ]
+ volumes: &deployed_cert_mount
+ - list_join:
+ - ':'
+ - - {get_param: DeployedSSLCertificatePath}
+ - {get_param: DeployedSSLCertificatePath}
+ - 'ro'
kolla_config:
/var/lib/kolla/config_files/haproxy.json:
command: haproxy -f /etc/haproxy/haproxy.cfg
kolla_config:
/var/lib/kolla/config_files/haproxy.json:
command: haproxy -f /etc/haproxy/haproxy.cfg
+ config_files:
+ - source: "/var/lib/kolla/config_files/src/*"
+ dest: "/"
+ merge: true
+ preserve_properties: true
docker_config:
step_1:
haproxy:
docker_config:
step_1:
haproxy:
@@
-109,9
+125,10
@@
outputs:
volumes:
list_concat:
- {get_attr: [ContainersCommon, volumes]}
volumes:
list_concat:
- {get_attr: [ContainersCommon, volumes]}
+ - *deployed_cert_mount
-
- /var/lib/kolla/config_files/haproxy.json:/var/lib/kolla/config_files/config.json:ro
-
- /var/lib/kolla/config_files/haproxy.json:/var/lib/kolla/config_files/config.json:ro
- - /var/lib/config-data/
haproxy/etc/:/etc/
:ro
+ - /var/lib/config-data/
puppet-generated/haproxy/:/var/lib/kolla/config_files/src
:ro
environment:
- KOLLA_CONFIG_STRATEGY=COPY_ALWAYS
metadata_settings:
environment:
- KOLLA_CONFIG_STRATEGY=COPY_ALWAYS
metadata_settings: