Pierre-Yves Chibon
|
ee9fbbecaa
|
Add the fedmsg/gateway/slave/ role
|
2014-12-07 23:36:14 +00:00 |
|
Pierre-Yves Chibon
|
7adeb26a4d
|
Start working on the haproxy role
|
2014-12-07 23:36:14 +00:00 |
|
Patrick Uiterwijk
|
a4c0eb93be
|
Lets kill ns-osu01
|
2014-12-07 23:30:33 +00:00 |
|
Patrick Uiterwijk
|
172c3cc8dc
|
I dont care about reloads
|
2014-12-07 23:19:38 +00:00 |
|
Patrick Uiterwijk
|
da57eefdab
|
Identity crisis is not fun
|
2014-12-07 23:16:01 +00:00 |
|
Patrick Uiterwijk
|
b0bef5e90e
|
Standards? what are those?
|
2014-12-07 23:01:48 +00:00 |
|
Patrick Uiterwijk
|
a84d60a936
|
Add ns03 to ansible
|
2014-12-07 23:00:20 +00:00 |
|
Patrick Uiterwijk
|
16bc28b046
|
Lets not do VPN on PHX2 DNS
|
2014-12-07 20:06:04 +00:00 |
|
Ralph Bean
|
dc256b83b8
|
302 by default.
|
2014-12-07 20:04:07 +00:00 |
|
Pierre-Yves Chibon
|
cdabbd4d24
|
Move install the totpcgi key and cert to the totpcgi role
|
2014-12-07 21:04:17 +01:00 |
|
Ralph Bean
|
9e33435096
|
First try at the redirectmatch role, ported from puppet.
|
2014-12-07 20:01:50 +00:00 |
|
Ralph Bean
|
7d59bbd0fd
|
Break proxy redirects out into a sub-playbook.
|
2014-12-07 19:57:37 +00:00 |
|
Ralph Bean
|
1a512eb73d
|
Add redirects for proxies.
|
2014-12-07 19:57:37 +00:00 |
|
Patrick Uiterwijk
|
54f59deb58
|
Use this DNS for now
|
2014-12-07 19:30:59 +00:00 |
|
Patrick Uiterwijk
|
60088a117c
|
Of course this is not standardized
|
2014-12-07 19:27:24 +00:00 |
|
Patrick Uiterwijk
|
05bec0c36f
|
ns02 and ns04 are a thing
|
2014-12-07 19:24:30 +00:00 |
|
Ralph Bean
|
c8bade3c4c
|
Remove all that checking.
|
2014-12-07 19:23:46 +00:00 |
|
Pierre-Yves Chibon
|
f9a7b31f64
|
Move fas01.stg to /dev/vg_guests instead of /dev/vg_virthost10
|
2014-12-07 20:19:32 +01:00 |
|
Pierre-Yves Chibon
|
4dbea10845
|
typo
|
2014-12-07 20:12:03 +01:00 |
|
Pierre-Yves Chibon
|
9f84ff5215
|
Turn on the SELinux boolean allow_ypbind
|
2014-12-07 20:09:46 +01:00 |
|
Pierre-Yves Chibon
|
0c82987108
|
No need to repeat /etc/httpd/conf.d...
|
2014-12-07 20:00:54 +01:00 |
|
Pierre-Yves Chibon
|
96fc973c0e
|
Fix the name of the totpcgi-provisioning apache configuration file
|
2014-12-07 19:58:00 +01:00 |
|
Ralph Bean
|
52206697bb
|
Tag it up.
|
2014-12-07 18:42:18 +00:00 |
|
Pierre-Yves Chibon
|
4866769621
|
Add the /etc/pki/totpcgi/totpcgi-ca.crt and move totpcgi-server.key
|
2014-12-07 19:41:51 +01:00 |
|
Ralph Bean
|
731f38d7b5
|
A first try at an httpd/redirect role
|
2014-12-07 18:40:32 +00:00 |
|
Patrick Uiterwijk
|
b512d452f7
|
Off course all datacenters are different
|
2014-12-07 18:39:51 +00:00 |
|
Patrick Uiterwijk
|
5723a75048
|
Define ns05
|
2014-12-07 18:37:41 +00:00 |
|
Pierre-Yves Chibon
|
3507ddb5b5
|
Thou shall close quotes
|
2014-12-07 19:34:02 +01:00 |
|
Pierre-Yves Chibon
|
4039995063
|
Install totpcgi key and cert
|
2014-12-07 19:32:40 +01:00 |
|
Pierre-Yves Chibon
|
27440a55c0
|
Install /etc/pki/tls/private/totpcgi-server.key
|
2014-12-07 19:24:50 +01:00 |
|
Patrick Uiterwijk
|
8b3cd67737
|
DNS servers also need VPN
|
2014-12-07 18:09:38 +00:00 |
|
Pierre-Yves Chibon
|
6fb40edbbe
|
Create directory /var/lib/fedora-ca/crl/
|
2014-12-07 18:08:21 +00:00 |
|
Pierre-Yves Chibon
|
c296aba8fd
|
Let's not touch twice the same file
|
2014-12-07 18:02:41 +00:00 |
|
Pierre-Yves Chibon
|
28ea540c8a
|
Touche /var/lib/fedora-ca/crl/crl.pem and /var/lib/fedora-ca/cacert.pem
|
2014-12-07 17:39:49 +00:00 |
|
Ralph Bean
|
684265d0ea
|
Use the super latest python-libcloud.
|
2014-12-07 17:34:21 +00:00 |
|
Luke Macken
|
bf6c75f5bf
|
Revert "koji.stg: Point the builder at kojipkgs.phx2 instead of kojipkgs.stg"
This reverts commit 2cdd001bcb.
|
2014-12-07 17:31:07 +00:00 |
|
Pierre-Yves Chibon
|
4d2ecfc3a1
|
Install httpd and mod_wsgi early
|
2014-12-07 18:23:07 +01:00 |
|
Ralph Bean
|
ee8f8b87c0
|
Add a hosts file for fedimg01.stg.
|
2014-12-07 17:19:37 +00:00 |
|
Kevin Fenzi
|
e571eec701
|
No denyhosts. bad denyhosts.
|
2014-12-07 17:18:10 +00:00 |
|
Pierre-Yves Chibon
|
44ce0f41b0
|
Skip running the fas_client in FAS hosts
|
2014-12-07 18:17:26 +01:00 |
|
Kevin Fenzi
|
1731fd3e2d
|
Fix typo
|
2014-12-07 17:13:45 +00:00 |
|
David Gay
|
b81d839371
|
Merge branch 'master' of /git/ansible
|
2014-12-07 17:13:29 +00:00 |
|
David Gay
|
f552157fa9
|
actually really only need that production koji url for fedimg
|
2014-12-07 17:13:26 +00:00 |
|
Patrick Uiterwijk
|
94ce66dd3e
|
Obviously the SB DNS is broken...
|
2014-12-07 17:12:42 +00:00 |
|
Kevin Fenzi
|
9ddf6b5c84
|
Make sure we use 7
|
2014-12-07 17:02:30 +00:00 |
|
Pierre-Yves Chibon
|
9b74b668e0
|
Add templates from puppet converted to jinja
|
2014-12-07 17:01:04 +00:00 |
|
Kevin Fenzi
|
a8c5dc6742
|
Fix typo
|
2014-12-07 16:57:16 +00:00 |
|
Luke Macken
|
2cdd001bcb
|
koji.stg: Point the builder at kojipkgs.phx2 instead of kojipkgs.stg
|
2014-12-07 16:56:49 +00:00 |
|
Kevin Fenzi
|
6ebd3cc29b
|
Add a proxy02.stg instance
|
2014-12-07 16:53:39 +00:00 |
|
Pierre-Yves Chibon
|
7ffc7ca5b8
|
In totpcgi, create the totpcgi user before we install the rpm
|
2014-12-07 17:03:45 +01:00 |
|