--- - name: ensure dnsmasq.d directory exists file: path: /etc/dnsmasq.d state: directory - name: Write dnsmasq configuration template: src: 01-kube-dns.conf.j2 dest: /etc/dnsmasq.d/01-kube-dns.conf mode: 755 backup: yes - name: Create dnsmasq pod manifest template: src=dnsmasq-pod.yml dest=/etc/kubernetes/manifests/dnsmasq-pod.manifest - name: Check for dnsmasq port (pulling image and running container) wait_for: port: 53 delay: 5 - name: check resolvconf stat: path=/etc/resolvconf/resolv.conf.d/head register: resolvconf - name: target resolv.conf file set_fact: resolvconffile: >- {%- if resolvconf.stat.exists == True -%}/etc/resolvconf/resolv.conf.d/head{%- else -%}/etc/resolv.conf{%- endif -%} - name: Add search resolv.conf lineinfile: line: "search {{ [ 'default.svc.' + dns_domain, 'svc.' + dns_domain, dns_domain ] | join(' ') }}" dest: "{{resolvconffile}}" state: present insertbefore: BOF backup: yes follow: yes - name: Add local dnsmasq to resolv.conf lineinfile: line: "nameserver 127.0.0.1" dest: "{{resolvconffile}}" state: present insertafter: "^search.*$" backup: yes follow: yes - name: Add options to resolv.conf lineinfile: line: options {{ item }} dest: "{{resolvconffile}}" state: present regexp: "^options.*{{ item }}$" insertafter: EOF backup: yes follow: yes with_items: - timeout:2 - attempts:2 - name: disable resolv.conf modification by dhclient copy: src=dhclient_nodnsupdate dest=/etc/dhcp/dhclient-enter-hooks.d/nodnsupdate mode=u+x backup=yes when: ansible_os_family == "Debian" - name: disable resolv.conf modification by dhclient copy: src=dhclient_nodnsupdate dest=/etc/dhcp/dhclient.d/nodnsupdate mode=u+x backup=yes when: ansible_os_family == "RedHat" - name: update resolvconf command: resolvconf -u changed_when: False when: resolvconf.stat.exists == True - meta: flush_handlers