Преглед изворни кода

encrypt pull secret with vault

Grega Bremec пре 1 месец
родитељ
комит
9d80db3972

+ 1 - 0
playbooks/ansible.cfg

@@ -4,6 +4,7 @@ jinja2_native = True
 inventory = ./inventory.yml
 remote_user = student
 ask_pass = no
+vault_identity_list = pull@.vault_pull
 
 [privilege_escalation]
 become = no

+ 3 - 0
playbooks/roles/deploy-certmanager/tasks/main.yml

@@ -1,5 +1,8 @@
 ---
 # Ensures a CertManager instance is deployed and configured with a CA.
+#
+# TODO: oc patch featuregate/cluster --type=merge -p '{"spec": {"customNoUpgrade": {"enabled": ["RouteExternalCertificate"]}}}'
+#
 - name: See if the Cert Manager project is there.
   kubernetes.core.k8s_info:
     kubeconfig: tmp/kubeconfig-ocp4

Разлика између датотеке није приказан због своје велике величине
+ 0 - 6
playbooks/roles/fix-operators/files/pull-secret.yml


+ 2 - 2
playbooks/roles/user-workload-monitoring/tasks/main.yml

@@ -47,7 +47,7 @@
             enableUserAlertmanagerConfig: true
           prometheusK8s:
             retention: 1w
-            retentionSize: 4Gi
+            retentionSize: 4G
             volumeClaimTemplate:
               spec:
                 storageClassName: nfs-storage
@@ -71,7 +71,7 @@
             enableAlertmanagerConfig: true
           prometheus:
             retention: 1w
-            retentionSize: 4Gi
+            retentionSize: 4G
             volumeClaimTemplate:
               spec:
                 storageClassName: nfs-storage

Неке датотеке нису приказане због велике количине промена