From a5e9b375fa690f874fe1017abb62298d49e12ebe Mon Sep 17 00:00:00 2001 From: Kevin Fenzi Date: Wed, 10 Feb 2021 20:03:31 -0800 Subject: [PATCH] fedocal: put the entire old group file back. Signed-off-by: Kevin Fenzi --- inventory/group_vars/fedocal | 42 +++++++++++++++++++++++++++++++++++- 1 file changed, 41 insertions(+), 1 deletion(-) diff --git a/inventory/group_vars/fedocal b/inventory/group_vars/fedocal index 7bac663362..7b743bae06 100644 --- a/inventory/group_vars/fedocal +++ b/inventory/group_vars/fedocal @@ -1,2 +1,42 @@ --- -tcp_ports: [ 80 ] +# Define resources for this group of hosts here. +lvm_size: 20000 +mem_size: 4096 +num_cpus: 2 + +# for systems that do not match the above - specify the same parameter in +# the host_vars/$hostname file + +tcp_ports: [ 80, 443, + # These 16 ports are used by fedmsg. One for each wsgi thread. + 3000, 3001, 3002, 3003, 3004, 3005, 3006, 3007, + 3008, 3009, 3010, 3011, 3012, 3013, 3014, 3015] + +# Neeed for rsync from log01 for logs. +custom_rules: [ '-A INPUT -p tcp -m tcp -s 10.3.163.39 --dport 873 -j ACCEPT', '-A INPUT -p tcp -m tcp -s 192.168.1.59 -- +port 873 -j ACCEPT' ] + +fas_client_groups: sysadmin-noc,sysadmin-web,sysadmin-veteran + +freezes: false + +# These are consumed by a task in roles/fedmsg/base/main.yml +fedmsg_certs: +- service: shell + owner: root + group: sysadmin + can_send: + - logger.log +- service: fedocal + owner: root + group: apache + can_send: + - fedocal.calendar.clear + - fedocal.calendar.delete + - fedocal.calendar.new + - fedocal.calendar.update + - fedocal.calendar.upload + - fedocal.meeting.delete + - fedocal.meeting.new + - fedocal.meeting.reminder + - fedocal.meeting.update