From c12de0e17f560c7810e60d143eca616e40299dca Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Miroslav=20Such=C3=BD?= Date: Fri, 30 Jan 2015 10:47:24 +0000 Subject: [PATCH] use httpd ssl certs for AMWP too --- files/fedora-cloud/packstack-controller-answers.txt | 6 +++--- .../hosts/fed-cloud09.cloud.fedoraproject.org.yml | 13 +++++++------ 2 files changed, 10 insertions(+), 9 deletions(-) diff --git a/files/fedora-cloud/packstack-controller-answers.txt b/files/fedora-cloud/packstack-controller-answers.txt index a59bd5a365..886243198d 100644 --- a/files/fedora-cloud/packstack-controller-answers.txt +++ b/files/fedora-cloud/packstack-controller-answers.txt @@ -96,14 +96,14 @@ CONFIG_AMQP_SSL_PORT=5671 # The filename of the certificate that the AMQP service is going to # use -CONFIG_AMQP_SSL_CERT_FILE=/etc/pki/tls/certs/amqp_selfcert.pem +CONFIG_AMQP_SSL_CERT_FILE=/etc/pki/tls/certs/fed-cloud09.pem # The filename of the private key that the AMQP service is going to # use -CONFIG_AMQP_SSL_KEY_FILE=/etc/pki/tls/private/amqp_selfkey.pem +CONFIG_AMQP_SSL_KEY_FILE=/etc/pki/tls/private/fed-cloud09.key # Auto Generates self signed SSL certificate and key -CONFIG_AMQP_SSL_SELF_SIGNED=y +CONFIG_AMQP_SSL_SELF_SIGNED=n # User for amqp authentication CONFIG_AMQP_AUTH_USER=amqp_user diff --git a/playbooks/hosts/fed-cloud09.cloud.fedoraproject.org.yml b/playbooks/hosts/fed-cloud09.cloud.fedoraproject.org.yml index 821670820e..afcb3f70c0 100644 --- a/playbooks/hosts/fed-cloud09.cloud.fedoraproject.org.yml +++ b/playbooks/hosts/fed-cloud09.cloud.fedoraproject.org.yml @@ -59,12 +59,6 @@ - stat: path=/etc/packstack_sucessfully_finished register: packstack_sucessfully_finished - - name: add ssl cert - copy: src={{ private }}/files/openstack/fed-cloud09.pem dest=/etc/pki/tls/certs/fed-cloud09.pem mode=600 owner=root group=root - - - name: add ssl key - copy: src={{ private }}/files/openstack/fed-cloud09.key dest=/etc/pki/tls/private/fed-cloud09.key mode=600 owner=root group=root - # http://docs.openstack.org/trunk/install-guide/install/yum/content/basics-networking.html - service: name=NetworkManager state=stopped enabled=no - service: name=network state=started enabled=yes @@ -95,8 +89,15 @@ - yum: state=present name=openstack-selinux - yum: state=present name=openstack-packstack - yum: state=present name=python-glanceclient + - yum: state=presetn name=rabbitmq-server - yum: name=* state=latest + - name: add ssl cert + copy: src={{ private }}/files/openstack/fed-cloud09.pem dest=/etc/pki/tls/certs/fed-cloud09.pem mode=600 owner=rabbitmq group=root + + - name: add ssl key + copy: src={{ private }}/files/openstack/fed-cloud09.key dest=/etc/pki/tls/private/fed-cloud09.key mode=600 owner=rabbitmq group=root + # http://docs.openstack.org/trunk/install-guide/install/yum/content/basics-database-controller.html - name: install mysql packages action: yum state=present pkg={{ item }}