c12s-kubespray/roles/kubernetes/master/templates
Matthew Mosesohn 07cc981971
refactor vault role (#2733)
* Move front-proxy-client certs back to kube mount

We want the same CA for all k8s certs

* Refactor vault to use a third party module

The module adds idempotency and reduces some of the repetitive
logic in the vault role

Requires ansible-modules-hashivault on ansible node and hvac
on the vault hosts themselves

Add upgrade test scenario
Remove bootstrap-os tags from tasks

* fix upgrade issues

* improve unseal logic

* specify ca and fix etcd check

* Fix initialization check

bump machine size
2018-05-11 19:11:38 +03:00
..
manifests refactor vault role (#2733) 2018-05-11 19:11:38 +03:00
known_users.csv.j2 kubeadm support (#1631) 2017-09-13 19:00:51 +01:00
kube-controller-manager-kubeconfig.yaml.j2 basic rbac support 2017-07-17 19:29:59 +08:00
kube-scheduler-kubeconfig.yaml.j2 basic rbac support 2017-07-17 19:29:59 +08:00
kube-scheduler-policy.yaml.j2 Fix for Issue #2141 - added policy file 2018-01-12 07:15:35 +00:00
kubeadm-config.yaml.j2 Revert 2018-03-30 11:42:20 +02:00
kubectl-kubeconfig.yaml.j2 Add HA/LB endpoints for kube-apiserver 2016-07-25 17:25:45 +02:00
secrets_encryption.yaml.j2 Added option for encrypting secrets to etcd v.2 (#2428) 2018-03-15 22:20:05 +03:00