 2dda74a3d0
			
		
	
	2dda74a3d0
	
	
	
		
			
			Add noqa where requried http://paste.openstack.org/show/798685/ Also remove centos-7 jobs as these are not supported for Victoria and are blocking further patches merging. Change-Id: I92f9131daf23f5cd38054a0b7c385344994a2aa0
		
			
				
	
	
		
			46 lines
		
	
	
		
			1.4 KiB
		
	
	
	
		
			YAML
		
	
	
	
	
	
			
		
		
	
	
			46 lines
		
	
	
		
			1.4 KiB
		
	
	
	
		
			YAML
		
	
	
	
	
	
| ---
 | |
| # Copyright 2014, Rackspace US, Inc.
 | |
| #
 | |
| # Licensed under the Apache License, Version 2.0 (the "License");
 | |
| # you may not use this file except in compliance with the License.
 | |
| # You may obtain a copy of the License at
 | |
| #
 | |
| #     http://www.apache.org/licenses/LICENSE-2.0
 | |
| #
 | |
| # Unless required by applicable law or agreed to in writing, software
 | |
| # distributed under the License is distributed on an "AS IS" BASIS,
 | |
| # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
 | |
| # See the License for the specific language governing permissions and
 | |
| # limitations under the License.
 | |
| 
 | |
| - name: Remove IdP self-signed certificate for regen
 | |
|   file:
 | |
|     dest: "{{ keystone_idp.cerfile }}"
 | |
|     state: "absent"
 | |
|   when:
 | |
|     - keystone_idp.regen_cert | bool
 | |
| 
 | |
| - name: Create IdP self-signed ssl cert
 | |
|   command: >
 | |
|     openssl req -new -nodes -sha256 -x509 -subj
 | |
|     "{{ keystone_idp.self_signed_cert_subject }}"
 | |
|     -days 3650
 | |
|     -keyout {{ keystone_idp.keyfile }}
 | |
|     -out {{ keystone_idp.certfile }}
 | |
|     -extensions v3_ca
 | |
|     creates={{ keystone_idp.certfile }}
 | |
|   when: _keystone_is_first_play_host
 | |
|   notify:
 | |
|     - Manage LB
 | |
|     - Restart web server
 | |
| 
 | |
| - name: Set appropriate file ownership on the IdP self-signed cert
 | |
|   file:
 | |
|     path: "{{ item }}"
 | |
|     owner: "{{ keystone_system_user_name }}"
 | |
|     group: "{{ keystone_system_group_name }}"
 | |
|     mode: "0640"
 | |
|   with_items:
 | |
|     - "{{ keystone_idp.keyfile }}"
 | |
|     - "{{ keystone_idp.certfile }}"
 |