aboutsummaryrefslogtreecommitdiffstats
path: root/manifests/haproxy.pp
diff options
context:
space:
mode:
authorJuan Antonio Osorio Robles <jaosorior@redhat.com>2017-01-25 18:22:16 +0200
committerJuan Antonio Osorio Robles <jaosorior@redhat.com>2017-01-26 19:00:46 +0200
commit033e1f360025c9409d7e840b48a64c8814c3a1bd (patch)
tree647b33039750b46a5e754731091017a033e52925 /manifests/haproxy.pp
parent58200e33c29f15dbd7b2489789b0e8d7b0992c5d (diff)
Use TLS proxy for neutron server's internal TLS
This uses the tls_proxy resource added in a previous commit [1] in front of the neutron server when internal TLS is enabled. Right now values are passed quite manually, but a subsequent commit will use t-h-t to pass the appropriate hieradata, and then we'll be able to clean it up from here. Note that the proxy is only deployed when internal TLS is enabled. [1] I82243fd3acfe4f23aab373116b78e1daf9d08467 bp tls-via-certmonger Change-Id: I6dfbf49f45aef9f47e58b5c0dbedd2b4e239979e
Diffstat (limited to 'manifests/haproxy.pp')
-rw-r--r--manifests/haproxy.pp1
1 files changed, 1 insertions, 0 deletions
diff --git a/manifests/haproxy.pp b/manifests/haproxy.pp
index c399a96..b6519a2 100644
--- a/manifests/haproxy.pp
+++ b/manifests/haproxy.pp
@@ -863,6 +863,7 @@ class tripleo::haproxy (
},
public_ssl_port => $ports[neutron_api_ssl_port],
service_network => $neutron_network,
+ member_options => union($haproxy_member_options, $internal_tls_member_options),
}
}