2017-02-09 05:41:36 +08:00
|
|
|
---
|
|
|
|
|
|
|
|
- include: ../shared/sync_auth_certs.yml
|
|
|
|
when: inventory_hostname in groups.vault
|
|
|
|
|
|
|
|
- include: ../shared/cert_auth_mount.yml
|
|
|
|
when: inventory_hostname == groups.vault|first
|
|
|
|
|
|
|
|
- include: ../shared/auth_backend.yml
|
|
|
|
vars:
|
|
|
|
auth_backend_description: A Cert-based Auth primarily for services needing to issue certificates
|
|
|
|
auth_backend_name: cert
|
|
|
|
auth_backend_type: cert
|
|
|
|
when: inventory_hostname == groups.vault|first
|
|
|
|
|
|
|
|
- include: gen_auth_ca.yml
|
|
|
|
when: inventory_hostname in groups.vault and vault_auth_ca_cert_needed
|
|
|
|
|
|
|
|
- include: ../shared/config_ca.yml
|
|
|
|
vars:
|
|
|
|
ca_name: auth-ca
|
|
|
|
mount_name: auth-pki
|
|
|
|
when: inventory_hostname == groups.vault|first and not vault_auth_ca_cert_needed
|
2017-02-18 05:22:34 +08:00
|
|
|
|
2017-02-09 05:41:36 +08:00
|
|
|
- include: create_etcd_role.yml
|
|
|
|
when: inventory_hostname in groups.etcd
|