-
- Downloads
Vault role updates:
* using separated vault roles for generate certs with different `O` (Organization) subject field; * configure vault roles for issuing certificates with different `CN` (Common name) subject field; * set `CN` and `O` to `kubernetes` and `etcd` certificates; * vault/defaults vars definition was simplified; * vault dirs variables defined in kubernetes-defaults foles for using shared tasks in etcd and kubernetes/secrets roles; * upgrade vault to 0.8.1; * generate random vault user password for each role by default; * fix `serial` file name for vault certs; * move vault auth request to issue_cert tasks; * enable `RBAC` in vault CI;
Showing
- .gitlab-ci.yml 1 addition, 0 deletions.gitlab-ci.yml
- roles/etcd/tasks/gen_certs_vault.yml 2 additions, 39 deletionsroles/etcd/tasks/gen_certs_vault.yml
- roles/kubernetes/secrets/tasks/gen_certs_vault.yml 13 additions, 44 deletionsroles/kubernetes/secrets/tasks/gen_certs_vault.yml
- roles/kubernetes/secrets/tasks/sync_kube_master_certs.yml 3 additions, 3 deletionsroles/kubernetes/secrets/tasks/sync_kube_master_certs.yml
- roles/kubespray-defaults/defaults/main.yaml 7 additions, 0 deletionsroles/kubespray-defaults/defaults/main.yaml
- roles/vault/defaults/main.yml 124 additions, 63 deletionsroles/vault/defaults/main.yml
- roles/vault/tasks/bootstrap/create_etcd_role.yml 0 additions, 17 deletionsroles/vault/tasks/bootstrap/create_etcd_role.yml
- roles/vault/tasks/bootstrap/create_mounts.yml 12 additions, 0 deletionsroles/vault/tasks/bootstrap/create_mounts.yml
- roles/vault/tasks/bootstrap/create_roles.yml 10 additions, 0 deletionsroles/vault/tasks/bootstrap/create_roles.yml
- roles/vault/tasks/bootstrap/gen_vault_certs.yml 6 additions, 14 deletionsroles/vault/tasks/bootstrap/gen_vault_certs.yml
- roles/vault/tasks/bootstrap/main.yml 29 additions, 45 deletionsroles/vault/tasks/bootstrap/main.yml
- roles/vault/tasks/cluster/create_mounts.yml 13 additions, 0 deletionsroles/vault/tasks/cluster/create_mounts.yml
- roles/vault/tasks/cluster/create_roles.yml 3 additions, 11 deletionsroles/vault/tasks/cluster/create_roles.yml
- roles/vault/tasks/cluster/main.yml 11 additions, 33 deletionsroles/vault/tasks/cluster/main.yml
- roles/vault/tasks/shared/create_role.yml 2 additions, 3 deletionsroles/vault/tasks/shared/create_role.yml
- roles/vault/tasks/shared/gen_ca.yml 2 additions, 2 deletionsroles/vault/tasks/shared/gen_ca.yml
- roles/vault/tasks/shared/gen_userpass.yml 0 additions, 1 deletionroles/vault/tasks/shared/gen_userpass.yml
- roles/vault/tasks/shared/issue_cert.yml 42 additions, 3 deletionsroles/vault/tasks/shared/issue_cert.yml
Loading
Please register or sign in to comment