Update deployment
This commit is contained in:
parent
1008484e46
commit
0c02bc3a32
1 changed files with 31 additions and 36 deletions
|
|
@ -51,44 +51,38 @@
|
|||
# register: result
|
||||
# until: result is successful
|
||||
|
||||
- name: Register kubernetes firewalld service
|
||||
template:
|
||||
src: "etc/firewalld/services/kubernetes.xml.j2"
|
||||
dest: "/etc/firewalld/services/kubernetes.xml"
|
||||
group: root
|
||||
owner: root
|
||||
mode: 0644
|
||||
register: need_firewalld_reload
|
||||
when:
|
||||
- kubernetes_server|bool
|
||||
|
||||
- name: Reload firewalld configuration
|
||||
service:
|
||||
name: firewalld
|
||||
state: reloaded
|
||||
enabled: yes
|
||||
when:
|
||||
- kubernetes_server|bool
|
||||
- need_firewalld_reload is changed
|
||||
|
||||
#- name: reload firewalld to refresh service list
|
||||
# command: firewall-cmd --reload
|
||||
#- name: Register kubernetes firewalld service
|
||||
# template:
|
||||
# src: "etc/firewalld/services/kubernetes.xml.j2"
|
||||
# dest: "/etc/firewalld/services/kubernetes.xml"
|
||||
# group: root
|
||||
# owner: root
|
||||
# mode: 0644
|
||||
# register: need_firewalld_reload
|
||||
# when:
|
||||
# - need_firewalld_reload is changed
|
||||
# - kubernetes_server|bool
|
||||
|
||||
# Définir interface
|
||||
- name: Open Firewalld
|
||||
firewalld:
|
||||
zone: external
|
||||
service: kubernetes
|
||||
permanent: true
|
||||
state: enabled
|
||||
immediate: true
|
||||
when:
|
||||
# - need_firewall|bool
|
||||
# - firewall_name == "firewalld"
|
||||
- kubernetes_server|bool
|
||||
#
|
||||
#- name: Reload firewalld configuration
|
||||
# service:
|
||||
# name: firewalld
|
||||
# state: reloaded
|
||||
# enabled: yes
|
||||
# when:
|
||||
# - kubernetes_server|bool
|
||||
# - need_firewalld_reload is changed
|
||||
#
|
||||
## Définir interface
|
||||
#- name: Open Firewalld
|
||||
# firewalld:
|
||||
# zone: external
|
||||
# service: kubernetes
|
||||
# permanent: true
|
||||
# state: enabled
|
||||
# immediate: true
|
||||
# when:
|
||||
## - need_firewall|bool
|
||||
## - firewall_name == "firewalld"
|
||||
# - kubernetes_server|bool
|
||||
|
||||
#- name: Create kubernetes firewalld zone
|
||||
# firewalld:
|
||||
|
|
@ -107,6 +101,7 @@
|
|||
when:
|
||||
- kubernetes_server|bool
|
||||
with_items:
|
||||
- "{{ (lookup('vars', 'ansible_' + kubernetes_interface ).ipv4.network + '/' + lookup('vars', 'ansible_' + kubernetes_interface ).ipv4.netmask) | ipaddr('net') }}"
|
||||
- "{{ kubernetes_pods_network }}"
|
||||
- "10.96.0.0/12"
|
||||
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue