From ff99f2140497e9996653dd6875ce0579b34bd5f7 Mon Sep 17 00:00:00 2001 From: Clark Boylan Date: Mon, 24 May 2021 12:35:09 -0700 Subject: [PATCH] Provision LE cert for storyboard.openstack.org This provisions the cert but doesn't switch apache to it. When we are happy with the new cert we can land the child change which will flip apache over to the new cert. Change-Id: I9cffd26a51317ea569b078b89cc30dc34c7e7747 --- inventory/service/groups.yaml | 1 + inventory/service/host_vars/storyboard01.opendev.org.yaml | 3 +++ playbooks/roles/letsencrypt-create-certs/handlers/main.yaml | 3 +++ 3 files changed, 7 insertions(+) create mode 100644 inventory/service/host_vars/storyboard01.opendev.org.yaml diff --git a/inventory/service/groups.yaml b/inventory/service/groups.yaml index 1e0461acd3..2c4c141c99 100644 --- a/inventory/service/groups.yaml +++ b/inventory/service/groups.yaml @@ -98,6 +98,7 @@ groups: - review[0-9]*.open*.org - review-test.opendev.org - static[0-9]*.opendev.org + - storyboard[0-9]*.opendev.org - zuul[0-9]*.opendev.org - refstack[0-9]*.openstack.org logstash: diff --git a/inventory/service/host_vars/storyboard01.opendev.org.yaml b/inventory/service/host_vars/storyboard01.opendev.org.yaml new file mode 100644 index 0000000000..da3bdccc11 --- /dev/null +++ b/inventory/service/host_vars/storyboard01.opendev.org.yaml @@ -0,0 +1,3 @@ +letsencrypt_certs: + storyboard01-opendev-org-main: + - storyboard.openstack.org diff --git a/playbooks/roles/letsencrypt-create-certs/handlers/main.yaml b/playbooks/roles/letsencrypt-create-certs/handlers/main.yaml index d04c4b65fe..5d2d68d04f 100644 --- a/playbooks/roles/letsencrypt-create-certs/handlers/main.yaml +++ b/playbooks/roles/letsencrypt-create-certs/handlers/main.yaml @@ -234,6 +234,9 @@ - name: letsencrypt updated ethercalc02-openstack-org-main include_tasks: roles/letsencrypt-create-certs/handlers/restart_apache.yaml +- name: letsencrypt updated storyboard01-opendev-org-main + include_tasks: roles/letsencrypt-create-certs/handlers/restart_apache.yaml + # We split out handlers for each gitea host as handlers should be run in order # This allows us to do a rolling restart of the gitea backends. - name: letsencrypt updated gitea01-main