2016-05-11 00:29:27 +08:00
|
|
|
---
|
|
|
|
# Variables here are applicable to all host groups NOT roles
|
|
|
|
|
|
|
|
# This sample file generated by generate_group_vars_sample.sh
|
|
|
|
|
|
|
|
# Dummy variable to avoid error because ansible does not recognize the
|
|
|
|
# file as a good configuration file when no variable in it.
|
|
|
|
dummy:
|
|
|
|
|
|
|
|
###########
|
|
|
|
# GENERAL #
|
|
|
|
###########
|
|
|
|
|
2018-04-11 23:15:29 +08:00
|
|
|
# Even though Client nodes should not have the admin key
|
|
|
|
# at their disposal, some people might want to have it
|
|
|
|
# distributed on Client nodes. Setting 'copy_admin_key' to 'true'
|
|
|
|
# will copy the admin key to the /etc/ceph/ directory
|
2017-09-02 06:52:55 +08:00
|
|
|
#copy_admin_key: false
|
2016-05-11 00:29:27 +08:00
|
|
|
|
|
|
|
#user_config: false
|
2020-02-28 23:03:15 +08:00
|
|
|
# When pg_autoscale_mode is set to True, you must add the target_size_ratio key with a correct value
|
|
|
|
# `pg_num` and `pgp_num` keys will be ignored, even if specified.
|
|
|
|
# eg:
|
|
|
|
# test:
|
|
|
|
# name: "test"
|
|
|
|
# application: "rbd"
|
|
|
|
# target_size_ratio: 0.2
|
2018-03-07 21:50:27 +08:00
|
|
|
#test:
|
|
|
|
# name: "test"
|
2019-03-01 00:46:29 +08:00
|
|
|
# application: "rbd"
|
2018-03-07 21:50:27 +08:00
|
|
|
#test2:
|
|
|
|
# name: "test2"
|
2019-03-01 00:46:29 +08:00
|
|
|
# application: "rbd"
|
2016-05-11 00:29:27 +08:00
|
|
|
#pools:
|
2018-03-07 21:50:27 +08:00
|
|
|
# - "{{ test }}"
|
|
|
|
# - "{{ test2 }}"
|
2016-05-11 00:29:27 +08:00
|
|
|
|
2017-12-12 18:25:26 +08:00
|
|
|
# Generate a keyring using ceph-authtool CLI or python.
|
|
|
|
# Eg:
|
|
|
|
# $ ceph-authtool --gen-print-key
|
2017-12-12 18:28:36 +08:00
|
|
|
# or
|
2019-02-01 21:32:14 +08:00
|
|
|
# $ python2 -c "import os ; import struct ; import time; import base64 ; key = os.urandom(16) ; header = struct.pack('<hiih',1,int(time.time()),0,len(key)) ; print(base64.b64encode(header + key))"
|
2018-04-04 22:22:36 +08:00
|
|
|
#
|
|
|
|
# To use a particular secret, you have to add 'key' to the dict below, so something like:
|
|
|
|
# - { name: client.test, key: "AQAin8tUMICVFBAALRHNrV0Z4MXupRw4v9JQ6Q==" ...
|
2018-06-25 21:12:56 +08:00
|
|
|
|
2016-05-11 00:29:27 +08:00
|
|
|
#keys:
|
2019-08-27 03:35:19 +08:00
|
|
|
# - { name: client.test, caps: { mon: "profile rbd", osd: "allow class-read object_prefix rbd_children, profile rbd pool=test" }, mode: "{{ ceph_keyring_permissions }}" }
|
|
|
|
# - { name: client.test2, caps: { mon: "profile rbd", osd: "allow class-read object_prefix rbd_children, profile rbd pool=test2" }, mode: "{{ ceph_keyring_permissions }}" }
|
2016-05-11 00:29:27 +08:00
|
|
|
|