Fetch internal certificates for HAProxy based on network
authorJuan Antonio Osorio Robles <jaosorior@redhat.com>
Wed, 7 Sep 2016 07:29:40 +0000 (10:29 +0300)
committerJuan Antonio Osorio Robles <jaosorior@redhat.com>
Wed, 5 Oct 2016 15:38:31 +0000 (18:38 +0300)
commitd7b449943ad17b3fbbd9d23c71699b2aacccb70b
tree0562c35e12119432b5f297f2b545df01e82975b9
parent87a5491525e411830b086ab37c9d8de224c33330
Fetch internal certificates for HAProxy based on network

The service profile in HAProxy has the capability of creating
certificates based on a map. The idea is to standardize this, as
some of those certificates should match certain networks the services
are listening on (with the exception of the external network which is
handled differently and the tenant network which doesn't need a
certificate). So, based on which network a certain service is
listening on, we fetch the appropriate certificate.

bp tls-via-certmonger

Change-Id: I89001ae32f46c9682aecc118753ef6cd647baa62
manifests/haproxy.pp
manifests/haproxy/endpoint.pp
manifests/profile/base/haproxy.pp