blob: b8d71099a54be97e6939d12cfeb7e2a3ae12cd1b (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
|
---
classes:
- system.linux.system.repo.mcp.openstack
- system.linux.system.repo.mcp.extra
- system.nginx.server.single
- system.nginx.server.proxy.openstack_api
- system.nginx.server.proxy.openstack_vnc
- system.nginx.server.proxy.openstack_web
- system.nginx.server.proxy.openstack.aodh
- system.nginx.server.proxy.openstack.ceilometer
- system.horizon.server.single
- system.salt.minion.cert.proxy
- system.sphinx.server.doc.reclass
- service.keepalived.cluster.single
- cluster.baremetal-mcp-ocata-odl-ha.infra
- cluster.baremetal-mcp-ocata-odl-ha.openstack.dashboard
# - cluster.baremetal-mcp-ocata-odl-ha.stacklight.proxy
parameters:
_param:
keepalived_vip_interface: ens3
keepalived_vip_virtual_router_id: 240
nginx_proxy_ssl:
enabled: true
authority: ${_param:salt_minion_ca_authority}
engine: salt
mode: secure
cluster_vip_address: ${_param:openstack_proxy_address}
salt_minion_ca_host: cfg01.${_param:cluster_domain}
linux:
network:
interface:
ens2: ${_param:linux_dhcp_interface}
ens3: ${_param:linux_single_interface}
system:
package:
libapache2-mod-wsgi:
salt:
minion:
cert:
proxy:
alternative_names: "IP:${_param:openstack_proxy_address}"
key_usage: 'digitalSignature, keyEncipherment'
nginx:
server:
site:
nginx_proxy_opendaylight_web:
enabled: true
type: nginx_proxy
name: opendaylight_web
check: false
proxy:
host: ${_param:opendaylight_service_host}
port: 8181
protocol: http
host:
name: ${_param:nginx_proxy_openstack_api_host}
port: 8181
nginx_proxy_opendaylight_rest:
enabled: true
type: nginx_proxy
name: opendaylight_rest
check: false
proxy:
host: ${_param:opendaylight_service_host}
port: 8282
protocol: http
host:
name: ${_param:nginx_proxy_openstack_api_host}
port: 8282
|