f80fd24a55
When running ansible-lint directly, we can see a lot of warning message like risky-file-permissions File permissions unset or incorrect This fixes the warning messages.
44 lines
1.8 KiB
YAML
44 lines
1.8 KiB
YAML
---
|
|
- name: Kubernetes Apps | Lay Down CoreDNS templates
|
|
template:
|
|
src: "{{ item.file }}.j2"
|
|
dest: "{{ kube_config_dir }}/{{ item.file }}"
|
|
mode: 0644
|
|
loop:
|
|
- { name: coredns, file: coredns-clusterrole.yml, type: clusterrole }
|
|
- { name: coredns, file: coredns-clusterrolebinding.yml, type: clusterrolebinding }
|
|
- { name: coredns, file: coredns-config.yml, type: configmap }
|
|
- { name: coredns, file: coredns-deployment.yml, type: deployment }
|
|
- { name: coredns, file: coredns-sa.yml, type: sa }
|
|
- { name: coredns, file: coredns-svc.yml, type: svc }
|
|
- { name: dns-autoscaler, file: dns-autoscaler.yml, type: deployment }
|
|
- { name: dns-autoscaler, file: dns-autoscaler-clusterrole.yml, type: clusterrole }
|
|
- { name: dns-autoscaler, file: dns-autoscaler-clusterrolebinding.yml, type: clusterrolebinding }
|
|
- { name: dns-autoscaler, file: dns-autoscaler-sa.yml, type: sa }
|
|
register: coredns_manifests
|
|
vars:
|
|
clusterIP: "{{ skydns_server }}"
|
|
when:
|
|
- dns_mode in ['coredns', 'coredns_dual']
|
|
- inventory_hostname == groups['kube_control_plane'][0]
|
|
tags:
|
|
- coredns
|
|
|
|
- name: Kubernetes Apps | Lay Down Secondary CoreDNS Template
|
|
template:
|
|
src: "{{ item.src }}.j2"
|
|
dest: "{{ kube_config_dir }}/{{ item.file }}"
|
|
mode: 0644
|
|
with_items:
|
|
- { name: coredns, src: coredns-deployment.yml, file: coredns-deployment-secondary.yml, type: deployment }
|
|
- { name: coredns, src: coredns-svc.yml, file: coredns-svc-secondary.yml, type: svc }
|
|
- { name: dns-autoscaler, src: dns-autoscaler.yml, file: coredns-autoscaler-secondary.yml, type: deployment }
|
|
register: coredns_secondary_manifests
|
|
vars:
|
|
clusterIP: "{{ skydns_server_secondary }}"
|
|
coredns_ordinal_suffix: "-secondary"
|
|
when:
|
|
- dns_mode == 'coredns_dual'
|
|
- inventory_hostname == groups['kube_control_plane'][0]
|
|
tags:
|
|
- coredns
|