and we should be ready for first round build

This commit is contained in:
Stephen Smoogen 2017-01-07 21:01:28 +00:00
parent c59b912a18
commit 630d3f424d
3 changed files with 65 additions and 0 deletions

View file

@ -0,0 +1,22 @@
---
nm: 255.255.255.0
gw: 10.5.126.254
dns: 10.5.126.21
ks_url: http://10.5.126.23/repo/rhel/ks/kvm-rhel-7
ks_repo: http://10.5.126.23/repo/rhel/RHEL7-x86_64/
volgroup: /dev/vg_virthost01
vmhost: virthost01.phx2.fedoraproject.org
datacenter: phx2
tcp_ports: ['22', '80', '443', '67', '68']
udp_ports: ['67','68','69']
custom_rules: [
'-A INPUT -p tcp -m tcp -s 192.168.1.20 --dport 5666 -j ACCEPT',
'-A INPUT -p tcp -m tcp -s 10.5.126.13 --dport 873 -j ACCEPT',
'-A INPUT -p tcp -m tcp -s 192.168.1.59 --dport 873 -j ACCEPT',
]
eth0_ip: 10.5.126.207
csi_relationship: |
nagios-internal is currently a development host

View file

@ -425,6 +425,10 @@ noc02.fedoraproject.org
[nagios-stg]
noc01.stg.phx2.fedoraproject.org
# This name is not permanent but is meant for the dev env
[nagios-internal]
nagios-internal.phx2.fedoraproject.org
[notifs-backend]
notifs-backend01.phx2.fedoraproject.org

View file

@ -0,0 +1,39 @@
# This is a basic playbook
- include: "/srv/web/infra/ansible/playbooks/include/virt-create.yml myhosts=nagios-internal"
- name: make the box be real
hosts: noc-internal.phx2.fedoraproject.org
user: root
gather_facts: True
vars_files:
- /srv/web/infra/ansible/vars/global.yml
- "/srv/private/ansible/vars.yml"
- /srv/web/infra/ansible/vars/{{ ansible_distribution }}.yml
pre_tasks:
- include: "{{ tasks }}/yumrepos.yml"
roles:
- base
- rkhunter
- nagios_client
- hosts
- fas_client
- collectd/base
- sudo
- mod_wsgi
- role: keytab/service
owner_user: apache
owner_group: apache
service: HTTP
host: "admin.fedoraproject.org"
when: env == "production"
tasks:
- include: "{{ tasks }}/2fa_client.yml"
- include: "{{ tasks }}/motd.yml"
handlers:
- include: "{{ handlers }}/restart_services.yml"