226 Commits (99c139dd5abde26b621c938cd6869cdc86a2a015)

Author SHA1 Message Date
Erwan Miran b4e2b85745 Replace shell with command in order to allow the task to fail when openssl x509 does return zero (#3516) 6 years ago
Erwan Miran fcd8d850dc Fix ansible syntax to avoid ansible warnings (again) (#3509) 6 years ago
Erwan Miran 2ab2f3a0a3 Ability to define SSL certificates duration and SSL key size (#3482) 6 years ago
刘旭 145e5c8943 use copy and slurp module (#3313) 6 years ago
rongzhang 84c4c7dc82 Use synchronize module 6 years ago
Matthew Mosesohn aaa9a4efac Ensure vault file permissions are correct 6 years ago
Pablo Estigarribia 7cbe3c2171 ensure there is pin priority for docker package to avoid upgrade of docker to incompatible version 6 years ago
Erwan Miran 82a28d6bb3 Add documentation about having HA for etcd 6 years ago
Antoine Legrand da06c8e5a9 etcd UNSUPPORTED for all arch 6 years ago
Antoine Legrand 19268ded23 Fix some arm64 errors 6 years ago
Antoine Legrand f67933d2ac add ETCD_UNSUPPORTED_ARCH=arm64 flag 6 years ago
Takashi Okamoto 359009bb05 Download etcd and hyperkube binary. 6 years ago
Vasilis Remmas b61eb7d7f3 Add ETCD_QUOTA_BACKEND_BYTES environment variable 6 years ago
Aivars Sterns 1567a977c3
Revert "gen_certs_script: refactor using stdin (Ansible 2.4+)" 6 years ago
Tatsuyuki Ishi 69786b2d16 gen_certs_script: refactor using stdin (Ansible 2.4+) 6 years ago
Sergey Bondarev ce6854e726 add version to environment file 6 years ago
Mathieu Herbert 59d89a37cc add until option for etcd backup commands 6 years ago
Matthew Mosesohn 97e0de7e29
Fix vault file owner issues and k8s apiserver cert creation (#2985) 6 years ago
Matthew Mosesohn 5c617c5a8b
Add tags to deploy components by --tags option (#2960) 6 years ago
elementyang 7c22def422 add etcd_events_access_address 6 years ago
elementyang d6f2dbc723 fix the time of ca files are changed in make-ssl-etcd 6 years ago
elementyang 70fbc01cc1 fix etcd_events_access_addresses 6 years ago
Matthew Mosesohn 61e97251a5 Improve variable handling for disabling etcd events cluster 6 years ago
Brad Beam 63a458063b Adding missing rkt template for etcd-events 6 years ago
Matthew Mosesohn 59be578842
Revert "wip pr for improved cert sync" (#2849) 6 years ago
Matthew Mosesohn 7433348aae wip pr for improved cert sync 6 years ago
Matthew Mosesohn 07cc981971
refactor vault role (#2733) 6 years ago
Andreas Kruger 32a8ea8094 Fix wrong var used 6 years ago
ashon fb465f8b4b Use 'items()' for python compatibility 6 years ago
Markos Chandras 9168c71359 Revert "Revert "Add openSUSE support" (#2697)" (#2699) 6 years ago
Matthew Mosesohn 51f4e6585a
Revert "Add openSUSE support" (#2697) 6 years ago
Spencer Smith 49c6bf8fa6 support custom env vars for etcd 6 years ago
Markos Chandras 2d34781259 roles: etcd: Add support for SUSE distributions 6 years ago
woopstar 86e3506ae6 Etcd cluster setup makeover 6 years ago
Andreas Krüger b9b028a735 Update etcd deployment to use correct cert and key (#2572) 6 years ago
Wong Hoi Sing Edison 195d6d791a Integrate jetstack/cert-manager 0.2.3 to Kubespray 6 years ago
woopstar 859a7f32fb Fix import task. Has to be include task to evalutate etcd_cluster_setup variable at run time 6 years ago
Matthew Mosesohn 03bcfa7ff5
Stop templating kube-system namespace and creating it (#2545) 6 years ago
woopstar 0df32b03ca Update openssl.conf to count better and work with Jinja 2.9 6 years ago
Sergey Bondarev 4f7479d94d add etc tunning options 6 years ago
Sergey Bondarev f8fed0f308 change expirations period for generated certificate from 10 years to 100 years 6 years ago
RongZhang 388b627f72
Enable OOM killing for etcd-events 6 years ago
RongZhang 67ffd8e923 Add etcd-events cluster for kube-apiserver (#2385) 6 years ago
Maxim Krasilnikov ba91304636 Fixed generate front proxy client certs with vault (#2359) 6 years ago
Matthew Mosesohn 87f33a4644 Use CNI to assign kube_pods_subnet for calico 6 years ago
RongZhang c0aad0a6d5 Fix install etcd by host service (#2297) 6 years ago
Damian Nowak f8a59446e8 Enable OOM killing 6 years ago
Dmitri Rubinstein 331f141f63 Fix DNS entries in etcd's openssl.conf by adding a newline. (#2208) 6 years ago
Sébastien Han fa8a128e49 etcd: ability to enable/disable ETCD_PEER_CLIENT_CERT_AUTH 6 years ago
Matthew Mosesohn dc6a17e092
Use include/import tasks (#2192) 6 years ago