Advertisement
dcapone2004

globals.yml

Dec 1st, 2023
35
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.03 KB | None | 0 0
  1. #############
  2. # TLS options
  3. #############
  4. # To provide encryption and authentication on the kolla_external_vip_interface,
  5. # TLS can be enabled. When TLS is enabled, certificates must be provided to
  6. # allow clients to perform authentication.
  7. #kolla_enable_tls_internal: "no"
  8. kolla_enable_tls_internal: "no"
  9. #kolla_enable_tls_external: "{{ kolla_enable_tls_internal if kolla_same_external_internal_vip | bool else 'no' }}"
  10. kolla_enable_tls_external: "yes"
  11. #kolla_certificates_dir: "{{ node_config }}/certificates"
  12. #kolla_external_fqdn_cert: "{{ kolla_certificates_dir }}/haxy.pem"
  13. kolla_external_fqdn_cert: "/etc/kolla/config/certificates/multistar_<scrubbed our domain>_com.pem"
  14. #kolla_internal_fqdn_cert: "{{ kolla_certificates_dir }}/haproxy-internal.pem"
  15. #kolla_admin_openrc_cacert: ""
  16. #kolla_copy_ca_into_containers: "no"
  17. kolla_copy_ca_into_containers: "no"
  18. #haproxy_backend_cacert: "{{ 'ca-certificates.crt' if kolla_base_distro in ['debian', 'ubuntu'] else 'ca-bundle.trust.crt' }}"
  19. #haproxy_backend_cacert_dir: "/etc/ssl/certs"
  20.  
  21.  
  22.  
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement