Kevin Fenzi
233f22575a
New openshift ssl ca
2018-05-31 23:47:27 +00:00
Patrick Uiterwijk
06f53389bc
Add a README for the os-cert
...
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com >
2018-05-31 02:11:07 +02:00
Kevin Fenzi
1f74423825
Update staging cert
2018-05-31 00:09:32 +00:00
Patrick Uiterwijk
8b3f02c228
Use a way less heavy endpoint to determine frontend up-ness
...
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com >
2018-05-21 02:29:47 +00:00
Kevin Fenzi
0abb588b08
drop fas3-stg
2018-05-17 19:36:58 +00:00
Kevin Fenzi
cb22afd4fe
Look, ask has moved away. I'm sure it will write us back someday...
2018-05-09 02:00:45 +00:00
Kevin Fenzi
d967e989c8
remove awx for now from haproxy
2018-05-08 20:22:27 +00:00
Stephen Smoogen
bb3e88188a
remove the bodhi from the haproxy
2018-05-08 15:52:19 +00:00
Kevin Fenzi
a8714caab3
first cut at changing all the old |changed to is changed per ansible deprecations
2018-05-07 23:51:48 +00:00
Stephen Smoogen
59b547828d
lets remove this bodhi stuff. its all in dockah now
2018-05-04 15:07:05 +00:00
Ricky Elrod
b6654379b3
make haproxy check with http/1.1
...
Signed-off-by: Ricky Elrod <relrod@redhat.com >
2018-04-12 14:44:00 +00:00
Ricky Elrod
b87efec9a0
make this phx2 only
...
Signed-off-by: Ricky Elrod <relrod@redhat.com >
2018-04-11 21:24:58 +00:00
Ricky Elrod
72003bf457
Break the world (add awx to proxies)
...
Signed-off-by: Ricky Elrod <relrod@redhat.com >
2018-04-11 19:45:48 +00:00
Kevin Fenzi
0e494da145
shelve darkserver
2018-04-10 20:36:40 +00:00
Mikolaj Izdebski
577f928431
Add koschei-web02 to haproxy
2018-03-01 17:38:36 +00:00
Kevin Fenzi
8a19a0ef8d
try this one
2018-02-24 01:44:25 +00:00
Kevin Fenzi
b651061e5c
new staging ca cert
2018-02-24 01:13:56 +00:00
Pierre-Yves Chibon
5b81d69c5d
More proxy tweaking for hubs
...
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr >
2018-02-20 15:40:54 +01:00
Pierre-Yves Chibon
143a5ee77d
Add haproxy config for hubs01
2018-02-19 11:16:05 +01:00
Kevin Fenzi
b52aeaa952
direct retrace.stg to retrace02 per request in staging
2018-02-14 19:43:00 +00:00
Ralph Bean
1b0742d155
Add freshmaker to haproxy.
2018-02-02 14:59:27 +00:00
Kevin Fenzi
1b1c9c4968
add back in containers
2018-01-12 20:05:41 +00:00
Stephen Smoogen
ece29a885c
remove the mirrorlist2 items from haproxy
2018-01-12 19:38:51 +00:00
Ricky Elrod
a5d017c71f
new os-master cert
...
Signed-off-by: Ricky Elrod <relrod@redhat.com >
2017-11-29 07:14:00 +00:00
Patrick Uiterwijk
cc1795cec7
Also add koji stuff on other internal proxies
...
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com >
2017-11-24 21:45:48 +00:00
Patrick Uiterwijk
0a98934168
Make the haproxy admin file root owned, the group isn't available due to selinux
...
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com >
2017-11-22 19:37:27 +00:00
Ralph Bean
2adfc5a305
Enable odcs prod nodes.
2017-10-13 14:45:16 +00:00
Patrick Uiterwijk
5a5fe6a93a
Revert "Not now please"
...
This reverts commit cabef76b08 .
2017-10-12 18:59:41 +00:00
Patrick Uiterwijk
cabef76b08
Not now please
...
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com >
2017-10-12 18:58:18 +00:00
Patrick Uiterwijk
253481598f
Automated rewrite of haproxy.cfg to new split frontend and backend
...
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com >
2017-10-08 23:32:20 +00:00
Patrick Uiterwijk
936e8b261a
yum accepted pkg=, package calls it name=
...
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org >
2017-10-09 00:38:26 +02:00
Patrick Uiterwijk
039b08354a
Yum allowed state=installed. Lets use state=present consistently
...
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com >
2017-10-08 22:31:03 +00:00
Patrick Uiterwijk
adcbf72f03
Packageize this, packageize that, packageize the world
...
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com >
2017-10-08 22:25:52 +00:00
Ralph Bean
e088283bfb
URL change for odcs.
2017-10-05 18:02:31 +00:00
Ralph Bean
5e6d8e074f
Fix PDC haproxy entry, to the original intent.
2017-10-05 13:36:02 +00:00
Ralph Bean
15a506191d
Remove erroneous host from stg haproxy config.
2017-09-25 18:31:05 +00:00
Ralph Bean
f8d4b1e0f0
Proxy configuration for ODCS in stg.
2017-09-25 18:01:11 +00:00
Patrick Uiterwijk
4005fd5929
Fix krb5 with failover
...
Seems like IPA 4.5.0 broke active/active failover of krb5 KDC.
While we wait on getting that fixed, let's set us up for active/passive failover on the HTTPD end.
Since we can't do active/passive for UDP (there's no checks there), let's just remove ipa02 for those.
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com >
2017-09-15 22:53:35 +00:00
Kevin Fenzi
3ae95a6169
fix names
2017-08-22 19:49:20 +00:00
Kevin Fenzi
4047dc3228
move file for env name
2017-08-22 19:45:25 +00:00
Kevin Fenzi
9d330280ef
add prod os CA and make haproxy use it
2017-08-22 19:41:07 +00:00
Kevin Fenzi
fcf82e738c
drop 2 mirrorlists we do not need
2017-08-10 22:40:39 +00:00
Patrick Uiterwijk
5bd010cc68
Move to registry02/03 in production
...
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org >
2017-08-04 00:22:01 +02:00
Ralph Bean
bf6db455d1
Try sticky haproxy sessions for pdc to share some of the load.
2017-08-01 17:27:12 +00:00
Patrick Uiterwijk
67939cfd7a
New OS certificate
...
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com >
2017-06-29 15:17:47 +00:00
Kevin Fenzi
04e93913b4
update openshift ca from current install
2017-05-25 19:35:48 +00:00
Kevin Fenzi
eb1dd0ae0f
look, you can fix a error with 0s
2017-05-16 15:24:23 +00:00
Patrick Uiterwijk
f3b344d52f
We expect a 503
...
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com >
2017-05-12 15:42:22 +00:00
Patrick Uiterwijk
02df22e6c2
Fix cert validation
...
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com >
2017-05-12 15:37:09 +00:00
Patrick Uiterwijk
331a664f1e
Updatecert
...
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com >
2017-05-12 15:03:41 +00:00