Miroslav Suchý
|
40c2f245ff
|
try this
|
2015-03-06 15:18:10 +00:00 |
|
Miroslav Suchý
|
2f4005d466
|
try if this script will work
|
2015-03-06 14:12:51 +00:00 |
|
Miroslav Suchý
|
7f12c2f069
|
do not use https for novnc
|
2015-03-06 13:07:26 +00:00 |
|
Miroslav Suchý
|
348f2b070e
|
move non-ssl swift to 7080
so it does not confilect with novncproxy
|
2015-03-06 12:57:43 +00:00 |
|
Miroslav Suchý
|
8694e6f29b
|
typo
|
2015-03-06 09:53:03 +00:00 |
|
Miroslav Suchý
|
d8abe657be
|
provide ssl cert for novncproxy
|
2015-03-06 09:41:04 +00:00 |
|
Miroslav Suchý
|
9cfcff43f6
|
tell nova that glance use https
|
2015-03-06 08:45:22 +00:00 |
|
Miroslav Suchý
|
dc156003af
|
move all openstack services to SSL
|
2015-03-05 14:24:08 +00:00 |
|
Miroslav Suchý
|
35ee8445ec
|
move cinder to ssl
|
2015-03-05 11:24:58 +00:00 |
|
|
59e09864a0
|
HRF has been deprecated for many months now. Nuke it.
Signed-off-by: Ricky Elrod <codeblock@fedoraproject.org>
|
2015-03-05 02:47:29 +00:00 |
|
Miroslav Suchý
|
101a8fb00f
|
neutron do not use ssl, haproxy do that
|
2015-03-04 16:12:50 +00:00 |
|
Miroslav Suchý
|
4dc92de6d9
|
typo
|
2015-03-04 15:49:04 +00:00 |
|
Miroslav Suchý
|
178fc3859c
|
typo
|
2015-03-04 12:57:19 +00:00 |
|
Miroslav Suchý
|
8af53bd559
|
move neutron to port 8696 and set haproxy as stunell
|
2015-03-04 12:38:37 +00:00 |
|
Miroslav Suchý
|
5b18f32123
|
tell horizon where is ca cert
|
2015-03-03 20:17:25 +00:00 |
|
Miroslav Suchý
|
69df075e3f
|
neutron is unable to read ssl key, put there its own copy
|
2015-03-03 12:10:37 +00:00 |
|
Miroslav Suchý
|
67e982781d
|
typo
|
2015-03-03 10:28:02 +00:00 |
|
Miroslav Suchý
|
a86f5d4473
|
this does not work due rules: section
|
2015-03-03 10:27:27 +00:00 |
|
Miroslav Suchý
|
0658a5c14e
|
specify auth_url for rest of modules
due used https
|
2015-03-03 10:24:44 +00:00 |
|
Miroslav Suchý
|
eb0be78765
|
specify auth_url for nova_flavour module
due used https
|
2015-03-03 10:08:50 +00:00 |
|
Miroslav Suchý
|
b341df3533
|
specify auth_url for glance_image module
due used https
|
2015-03-03 09:59:17 +00:00 |
|
Miroslav Suchý
|
5e7059b1f6
|
replace ip by FQDN on places where we use SSL
|
2015-03-03 09:33:39 +00:00 |
|
Miroslav Suchý
|
03f4921381
|
put controller hostname into variable
|
2015-03-03 09:33:39 +00:00 |
|
Miroslav Suchý
|
2049b15c37
|
try this
|
2015-03-03 09:33:39 +00:00 |
|
Miroslav Suchý
|
2db4f31139
|
change attr to 644 so other services can read this cert
|
2015-03-02 16:24:37 +00:00 |
|
Miroslav Suchý
|
fd16828ca3
|
fix documentation link
|
2015-03-02 15:47:20 +00:00 |
|
Miroslav Suchý
|
872f91da1c
|
try to enable vnc
|
2015-03-02 15:45:27 +00:00 |
|
Miroslav Suchý
|
c8ce683903
|
switch glance-scrubber to SSL too
|
2015-03-02 15:15:40 +00:00 |
|
Miroslav Suchý
|
6a693aac4f
|
neutron needs certs to start SSL
|
2015-03-02 15:05:33 +00:00 |
|
Miroslav Suchý
|
cf0dbcd318
|
enable ssl on all openstack services
|
2015-03-02 14:29:29 +00:00 |
|
Miroslav Suchý
|
1dee9ba400
|
enable SSL for keystone
|
2015-03-02 12:35:02 +00:00 |
|
Kevin Fenzi
|
b76471700d
|
And the rest of these internal nets too
|
2015-02-28 03:40:24 +00:00 |
|
Kevin Fenzi
|
db986bcd0f
|
Set nameservers for internal zone so instances get dns
|
2015-02-28 03:38:12 +00:00 |
|
Kevin Fenzi
|
d934cf11ef
|
Fold in new private cloud work from today. Gets things pretty working.
|
2015-02-28 03:15:15 +00:00 |
|
Kevin Fenzi
|
7de6c6b39d
|
Don't need hosts here either.
|
2015-02-23 18:31:24 +00:00 |
|
Miroslav Suchý
|
e5d03eb9e9
|
try this
|
2015-02-19 13:40:13 +00:00 |
|
Kevin Fenzi
|
81e7d8fa98
|
Move new openstack compute nodes to a group playbook.
|
2015-02-18 12:47:17 +00:00 |
|
Stephen Smoogen
|
601d617d43
|
and we have more cloud.
|
2015-02-18 01:52:56 +00:00 |
|
Miroslav Suchý
|
43dea2c265
|
add missed port number
|
2015-02-17 12:02:04 +00:00 |
|
Miroslav Suchý
|
ea3aaf0988
|
Revert "try this"
This reverts commit e2b01d5b33 .
|
2015-02-17 12:02:04 +00:00 |
|
Miroslav Suchý
|
e2b01d5b33
|
try this
|
2015-02-17 10:13:48 +00:00 |
|
Miroslav Suchý
|
8f933457fa
|
br-tun may not even exists
|
2015-02-17 07:59:19 +00:00 |
|
Aurélien Bompard
|
1ad2739c53
|
lists-dev: install postgresql
|
2015-02-13 15:32:34 +00:00 |
|
Aurélien Bompard
|
db0e4830a9
|
oops, typo
|
2015-02-13 15:26:34 +00:00 |
|
Aurélien Bompard
|
2fdda6ad96
|
Don't use lokkit to open ports in the firewall
|
2015-02-13 15:24:40 +00:00 |
|
Miroslav Suchý
|
2e0842b872
|
separate repo install
otherwise it will fail to install it in one step
|
2015-02-13 13:43:50 +00:00 |
|
Miroslav Suchý
|
32c63ef596
|
add self-signed cert to trusted ring
|
2015-02-13 13:32:38 +00:00 |
|
Stephen Smoogen
|
5c48c8a57a
|
and this playbook will be junk03 soon
|
2015-02-11 03:29:50 +00:00 |
|
Miroslav Suchý
|
ce6fb32e56
|
do not change swift, it listen just on public IP
|
2015-02-04 16:09:32 +00:00 |
|
Miroslav Suchý
|
f4f43dc3c6
|
add ceilometer port
|
2015-02-04 15:59:37 +00:00 |
|