Use TLS proxy for neutron server's internal TLS
authorJuan Antonio Osorio Robles <jaosorior@redhat.com>
Wed, 25 Jan 2017 16:22:16 +0000 (18:22 +0200)
committerJuan Antonio Osorio Robles <jaosorior@redhat.com>
Thu, 26 Jan 2017 17:00:46 +0000 (19:00 +0200)
commit033e1f360025c9409d7e840b48a64c8814c3a1bd
tree647b33039750b46a5e754731091017a033e52925
parent58200e33c29f15dbd7b2489789b0e8d7b0992c5d
Use TLS proxy for neutron server's internal TLS

This uses the tls_proxy resource added in a previous commit [1] in
front of the neutron server when internal TLS is enabled. Right
now values are passed quite manually, but a subsequent commit will use
t-h-t to pass the appropriate hieradata, and then we'll be able to
clean it up from here.

Note that the proxy is only deployed when internal TLS is enabled.

[1] I82243fd3acfe4f23aab373116b78e1daf9d08467

bp tls-via-certmonger

Change-Id: I6dfbf49f45aef9f47e58b5c0dbedd2b4e239979e
manifests/haproxy.pp
manifests/profile/base/neutron.pp
manifests/profile/base/neutron/server.pp