Add HAProxy TLS handled by certmonger as composable service
authorJuan Antonio Osorio Robles <jaosorior@redhat.com>
Wed, 17 Aug 2016 12:24:23 +0000 (12:24 +0000)
committerJuan Antonio Osorio Robles <jaosorior@redhat.com>
Thu, 29 Sep 2016 17:15:13 +0000 (17:15 +0000)
commit9bf37e06b53a1f621eb4fee314a57d2d4a17c644
tree33b01c5c537a8987f2669c905b9cf039a2b7faff
parent57f14d99c14846e6187f3e3d611ea7c2e76174e8
Add HAProxy TLS handled by certmonger as composable service

This adds some basic pieces to get certmonger to manage the
certificates for HAProxy. The aim is to be flexible enough that we
will be able to manage both public and internal certificates.

This also adds a relevant environment to get the endpoints to have
TLS everywhere.

bp tls-via-certmonger

Depends-On: I89001ae32f46c9682aecc118753ef6cd647baa62
Change-Id: Ife5f8c2f07233295bc15b4c605acf3d9bd62f162
environments/services/haproxy-internal-tls-certmonger.yaml [new file with mode: 0644]
environments/services/haproxy-public-tls-certmonger.yaml [new file with mode: 0644]
environments/tls-everywhere-endpoints-dns.yaml [new file with mode: 0644]
overcloud-resource-registry-puppet.j2.yaml
puppet/services/haproxy-internal-tls-certmonger.yaml [new file with mode: 0644]
puppet/services/haproxy-public-tls-certmonger.yaml [new file with mode: 0644]
puppet/services/haproxy.yaml