--- # openshift_master_defaults_in_use is a workaround to detect if we are consuming # the plays from the role or outside of the role. openshift_master_defaults_in_use: True openshift_master_debug_level: "{{ debug_level | default(2) }}" r_openshift_master_firewall_enabled: "{{ os_firewall_enabled | default(True) }}" r_openshift_master_use_firewalld: "{{ os_firewall_use_firewalld | default(False) }}" openshift_node_ips: [] r_openshift_master_clean_install: false r_openshift_master_etcd3_storage: false r_openshift_master_os_firewall_enable: true r_openshift_master_os_firewall_deny: [] r_openshift_master_os_firewall_allow: - service: api server https port: "{{ openshift.master.api_port }}/tcp" - service: api controllers https port: "{{ openshift.master.controllers_port }}/tcp" - service: skydns tcp port: "{{ openshift.master.dns_port }}/tcp" - service: skydns udp port: "{{ openshift.master.dns_port }}/udp" - service: etcd embedded port: 4001/tcp cond: "{{ groups.oo_etcd_to_config | default([]) | length == 0 }}" # oreg_url is defined by user input oreg_host: "{{ oreg_url.split('/')[0] if (oreg_url is defined and '.' in oreg_url.split('/')[0]) else '' }}" oreg_auth_credentials_path: "{{ r_openshift_master_data_dir }}/.docker" oreg_auth_credentials_replace: False l_bind_docker_reg_auth: False containerized_svc_dir: "/usr/lib/systemd/system" ha_svc_template_path: "native-cluster" # NOTE # r_openshift_master_*_default may be defined external to this role. # openshift_use_*, if defined, may affect other roles or play behavior. r_openshift_master_use_openshift_sdn_default: "{{ openshift_use_openshift_sdn | default(True) }}" r_openshift_master_use_openshift_sdn: "{{ r_openshift_master_use_openshift_sdn_default }}" r_openshift_master_use_nuage_default: "{{ openshift_use_nuage | default(False) }}" r_openshift_master_use_nuage: "{{ r_openshift_master_use_nuage_default }}" r_openshift_master_use_contiv_default: "{{ openshift_use_contiv | default(False) }}" r_openshift_master_use_contiv: "{{ r_openshift_master_use_contiv_default }}" r_openshift_master_use_kuryr_default: "{{ openshift_use_kuryr | default(False) }}" r_openshift_master_use_kuryr: "{{ r_openshift_master_use_kuryr_default }}" r_openshift_master_data_dir_default: "{{ openshift_data_dir | default('/var/lib/origin') }}" r_openshift_master_data_dir: "{{ r_openshift_master_data_dir_default }}" r_openshift_master_sdn_network_plugin_name_default: "{{ os_sdn_network_plugin_name | default('redhat/openshift-ovs-subnet') }}" r_openshift_master_sdn_network_plugin_name: "{{ r_openshift_master_sdn_network_plugin_name_default }}" openshift_master_image_config_latest_default: "{{ openshift_image_config_latest | default(False) }}" openshift_master_image_config_latest: "{{ openshift_master_image_config_latest_default }}" openshift_master_config_dir_default: "{{ (openshift.common.config_base | default('/etc/origin/master')) ~ '/master' }}" openshift_master_config_dir: "{{ openshift_master_config_dir_default }}" openshift_master_cloud_provider: "{{ openshift_cloudprovider_kind | default('aws') }}" openshift_master_node_config_networkconfig_mtu: 1450 openshift_master_node_config_kubeletargs_cpu: 500m openshift_master_node_config_kubeletargs_mem: 512M openshift_master_bootstrap_enabled: False openshift_master_client_binary: "{{ openshift.common.client_binary if openshift is defined else 'oc' }}" openshift_master_config_imageconfig_format: "{{ oreg_url if oreg_url != '' else 'registry.access.redhat.com/openshift3/ose-${component}:${version}' }}" # these are for the default settings in a generated node-config.yaml openshift_master_node_config_default_edits: - key: nodeName state: absent - key: dnsBindAddress value: 127.0.0.1:53 - key: dnsDomain value: cluster.local - key: dnsRecursiveResolvConf value: /etc/origin/node/resolv.conf - key: imageConfig.format value: "{{ openshift_master_config_imageconfig_format }}" - key: kubeletArguments.cloud-config value: - "/etc/origin/cloudprovider/{{ openshift_master_cloud_provider }}.conf" - key: kubeletArguments.cloud-provider value: - "{{ openshift_master_cloud_provider }}" - key: kubeletArguments.kube-reserved value: - "cpu={{ openshift_master_node_config_kubeletargs_cpu }},memory={{ openshift_master_node_config_kubeletargs_mem }}" - key: kubeletArguments.system-reserved value: - "cpu={{ openshift_master_node_config_kubeletargs_cpu }},memory={{ openshift_master_node_config_kubeletargs_mem }}" - key: enable-controller-attach-detach value: - 'true' - key: networkConfig.mtu value: 8951 - key: networkConfig.networkPluginName value: "{{ r_openshift_master_sdn_network_plugin_name }}" - key: networkPluginName value: "{{ r_openshift_master_sdn_network_plugin_name }}" # We support labels for all nodes here openshift_master_node_config_kubeletargs_default_labels: [] # We do support overrides for node group labels openshift_master_node_config_kubeletargs_master_labels: [] openshift_master_node_config_kubeletargs_infra_labels: [] openshift_master_node_config_kubeletargs_compute_labels: [] openshift_master_node_config_master: type: master edits: - key: kubeletArguments.node-labels value: "{{ openshift_master_node_config_kubeletargs_default_labels | union(openshift_master_node_config_kubeletargs_master_labels) | union(['type=master']) }}" openshift_master_node_config_infra: type: infra edits: - key: kubeletArguments.node-labels value: "{{ openshift_master_node_config_kubeletargs_default_labels | union(openshift_master_node_config_kubeletargs_infra_labels) | union(['type=infra']) }}" openshift_master_node_config_compute: type: compute edits: - key: kubeletArguments.node-labels value: "{{ openshift_master_node_config_kubeletargs_default_labels | union(openshift_master_node_config_kubeletargs_compute_labels) | union(['type=compute']) }}" openshift_master_node_configs: - "{{ openshift_master_node_config_infra }}" - "{{ openshift_master_node_config_compute }}" openshift_master_bootstrap_namespace: openshift-node