people: retire people02

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
This commit is contained in:
Kevin Fenzi 2024-06-27 15:38:03 -07:00
parent 095d74eff4
commit 4bcbc54efa
7 changed files with 4 additions and 48 deletions

View file

@ -10,7 +10,7 @@ db-datanommer02.iad2.fedoraproject.org
db-fas01.iad2.fedoraproject.org db-fas01.iad2.fedoraproject.org
batcave01.iad2.fedoraproject.org batcave01.iad2.fedoraproject.org
pagure02.fedoraproject.org pagure02.fedoraproject.org
people02.fedoraproject.org people01.fedoraproject.org
pkgs01.iad2.fedoraproject.org pkgs01.iad2.fedoraproject.org
log01.iad2.fedoraproject.org log01.iad2.fedoraproject.org
db-openqa01.iad2.fedoraproject.org db-openqa01.iad2.fedoraproject.org

View file

@ -322,7 +322,6 @@ mm_crawler_stg
[people] [people]
people01.fedoraproject.org people01.fedoraproject.org
people02.fedoraproject.org
[qahardware] [qahardware]
@ -843,7 +842,6 @@ buildvmhost
[groupc] [groupc]
people01.fedoraproject.org people01.fedoraproject.org
people02.fedoraproject.org
[virtservers:children] [virtservers:children]
colo_virt colo_virt
@ -1028,7 +1026,6 @@ bodhi-backend01.iad2.fedoraproject.org
bodhi-backend01.iad2.fedoraproject.org bodhi-backend01.iad2.fedoraproject.org
mailman01.iad2.fedoraproject.org mailman01.iad2.fedoraproject.org
people01.fedoraproject.org people01.fedoraproject.org
people02.fedoraproject.org
pagure02.fedoraproject.org pagure02.fedoraproject.org
pkgs01.iad2.fedoraproject.org pkgs01.iad2.fedoraproject.org
#wiki01.iad2.fedoraproject.org #wiki01.iad2.fedoraproject.org

View file

@ -19,32 +19,6 @@
- import_tasks: "{{ tasks_path }}/yumrepos.yml" - import_tasks: "{{ tasks_path }}/yumrepos.yml"
- name: mount project volume
mount: >
name=/project
src=/dev/mapper/GuestVolGroup00-project
fstype=xfs
opts="noatime,noexec,nosuid,nodev"
passno=0
dump=0
state=mounted
when: inventory_hostname.startswith('people02')
tags:
- mount
- name: mount srv volume
mount: >
name=/srv
src=/dev/mapper/GuestVolGroup00-srv
fstype=xfs
opts="usrquota,gqnoenforce,noatime,noexec,nosuid,nodev"
passno=0
dump=0
state=mounted
when: inventory_hostname.startswith('people02')
tags:
- mount
- name: mount project volume - name: mount project volume
mount: > mount: >
name=/project name=/project
@ -100,13 +74,7 @@
- cgit/clean_lock_cron - cgit/clean_lock_cron
- cgit/make_pkgs_list - cgit/make_pkgs_list
- clamav - clamav
- { role: planet, when: inventory_hostname.startswith('people02') }
- { role: letsencrypt, site_name: 'fedoraplanet.org', when: inventory_hostname.startswith('people02') }
- git/server - git/server
- role: rabbit/user
username: "planet{{ env_suffix }}"
sent_topics: ^org\.fedoraproject\.{{ env_short }}\.(planet|logger)\..*
when: inventory_hostname.startswith('people02')
- role: apache - role: apache

View file

@ -110,7 +110,7 @@ define service {
} }
define service { define service {
host_name people02.fedoraproject.org host_name people01.fedoraproject.org
service_description http-cert-people.fedoraproject.org service_description http-cert-people.fedoraproject.org
check_command check_ssl_cert!fedorapeople.org!25 check_command check_ssl_cert!fedorapeople.org!25
use defaulttemplate use defaulttemplate

View file

@ -336,12 +336,3 @@
- config - config
notify: notify:
- restart sssd - restart sssd
- name: mount tmp on tmpfs
mount: name=/var/lib/sss/db/ src=tmpfs fstype=tmpfs state=mounted opts=defaults,size=2G,mode=0700,rootcontext=system_u:object_r:sssd_var_lib_t:s0
when: inventory_hostname.startswith('people02')
tags:
- ipa/client
- config
notify:
- restart sssd

View file

@ -6,7 +6,7 @@ ipa_domain = fedoraproject.org
id_provider = ipa id_provider = ipa
auth_provider = ipa auth_provider = ipa
access_provider = ipa access_provider = ipa
ipa_hostname = people02.fedoraproject.org ipa_hostname = people01.fedoraproject.org
chpass_provider = ipa chpass_provider = ipa
ipa_server = _srv_, ipa01.iad2.fedoraproject.org, ipa02.iad2.fedoraproject.org, ipa03.iad2.fedoraproject.org ipa_server = _srv_, ipa01.iad2.fedoraproject.org, ipa02.iad2.fedoraproject.org, ipa03.iad2.fedoraproject.org
ldap_tls_cacert = /etc/ipa/ca.crt ldap_tls_cacert = /etc/ipa/ca.crt

View file

@ -39,7 +39,7 @@ synced_hosts:
# - blockerbugs02.iad2.fedoraproject.org # - blockerbugs02.iad2.fedoraproject.org
# - blockerbugs01.stg.iad2.fedoraproject.org # - blockerbugs01.stg.iad2.fedoraproject.org
- value02.iad2.fedoraproject.org - value02.iad2.fedoraproject.org
- people02.vpn.fedoraproject.org - people01.vpn.fedoraproject.org
- noc01.iad2.fedoraproject.org - noc01.iad2.fedoraproject.org
- dl01.iad2.fedoraproject.org - dl01.iad2.fedoraproject.org
- dl02.iad2.fedoraproject.org - dl02.iad2.fedoraproject.org