cc71003acb
These changes allow the role to be tested on Xenial hosts while also ensuring that the tests are testing everything within the container as expected. Overview: * Included in this PR is a manual-test.rc. This has been added to allow developers to run tests locally without having to invoke tox. This RC file was lifed from the os_keystone role. * The git package was added to the install list. This is needed on the target when the role is running with developer mode enabled. * Connection settings within the container create prep playbook were removed. A``connection: local`` setting forces all commands to be executed against the host regardless of a delegated task. * A task has been added to the horizon role to when SSL is enabled. This task ensures that that ca certificates are updated. Without this change, when running on Xenial, tempest will fail due to the following error: [SSL: CERTIFICATE_VERIFY_FAILED] certificate verify failed (_ssl.c:590) By updating the ca certificats on tempest is able to verify the certificate and pass the tests. NOTE: This fix came from the puppet-OpenStack community where they ran into the same problems in Xenial as discussed here: [0] [0] - https://irclogs.ubuntu.com/2016/05/18/%23ubuntu-server.html#t13:37 Change-Id: I1e6808c49a8faaba5b2748918be5d6b5a59fd3d1 Signed-off-by: Kevin Carter <kevin.carter@rackspace.com>
89 lines
3.6 KiB
YAML
89 lines
3.6 KiB
YAML
---
|
|
# Copyright 2015, Rackspace US, Inc.
|
|
#
|
|
# Licensed under the Apache License, Version 2.0 (the "License");
|
|
# you may not use this file except in compliance with the License.
|
|
# You may obtain a copy of the License at
|
|
#
|
|
# http://www.apache.org/licenses/LICENSE-2.0
|
|
#
|
|
# Unless required by applicable law or agreed to in writing, software
|
|
# distributed under the License is distributed on an "AS IS" BASIS,
|
|
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
# See the License for the specific language governing permissions and
|
|
# limitations under the License.
|
|
|
|
external_lb_vip_address: 10.100.100.3
|
|
galera_client_drop_config_file: false
|
|
galera_root_password: "secrete"
|
|
galera_root_user: "root"
|
|
horizon_developer_mode: true
|
|
horizon_venv_tag: "testing"
|
|
horizon_git_install_branch: master
|
|
horizon_requirements_git_install_branch: master
|
|
horizon_galera_address: 10.100.100.2
|
|
horizon_galera_database: dash
|
|
horizon_galera_user: dash
|
|
horizon_rabbitmq_password: "secrete"
|
|
horizon_rabbitmq_userid: horizon
|
|
horizon_rabbitmq_vhost: /horizon
|
|
horizon_container_mysql_password: "SuperSecrete"
|
|
horizon_secret_key: "SuperSecreteHorizonKey"
|
|
horizon_external_ssl: false
|
|
horizon_ssl_protocol: "ALL -SSLv2 -SSLv3"
|
|
horizon_ssl_cipher_suite: "ECDH+AESGCM:DH+AESGCM:ECDH+AES256:DH+AES256:ECDH+AES128:DH+AES:ECDH+3DES:DH+3DES:RSA+AESGCM:RSA+AES:RSA+3DES:!aNULL:!MD5:!DSS"
|
|
internal_lb_vip_address: 10.100.100.3
|
|
keystone_admin_tenant_name: admin
|
|
keystone_admin_user_name: admin
|
|
keystone_auth_admin_password: "SuperSecretePassword"
|
|
keystone_container_mysql_password: "SuperSecrete"
|
|
keystone_developer_mode: true
|
|
keystone_galera_address: 10.100.100.2
|
|
keystone_galera_database: keystone
|
|
keystone_git_install_branch: master
|
|
keystone_rabbitmq_password: "secrete"
|
|
keystone_rabbitmq_port: 5671
|
|
keystone_rabbitmq_servers: 10.100.100.2
|
|
keystone_rabbitmq_use_ssl: true
|
|
keystone_rabbitmq_userid: keystone
|
|
keystone_rabbitmq_vhost: /keystone
|
|
keystone_requirements_git_install_branch: master
|
|
keystone_service_adminuri: "http://{{ internal_lb_vip_address }}:35357"
|
|
keystone_service_adminuri_insecure: false
|
|
keystone_service_adminurl: "{{ keystone_service_adminuri }}/v3"
|
|
keystone_service_internaluri: "http://{{ internal_lb_vip_address }}:5000"
|
|
keystone_service_internaluri_insecure: false
|
|
keystone_service_internalurl: "{{ keystone_service_internaluri }}/v3"
|
|
keystone_service_password: "secrete"
|
|
keystone_venv_tag: "testing"
|
|
memcached_encryption_key: "secrete"
|
|
memcached_servers: 127.0.0.1
|
|
openrc_os_auth_url: "http://127.0.0.1:5000/v3"
|
|
openrc_os_domain_name: "Default"
|
|
openrc_os_password: "{{ keystone_auth_admin_password }}"
|
|
tempest_dashboard_login_url: "https://{{ ansible_hostname }}/auth/login/"
|
|
tempest_dashboard_url: "https://{{ ansible_hostname }}/"
|
|
tempest_developer_mode: True
|
|
tempest_git_install_branch: master
|
|
tempest_venv_tag: "{{ tempest_git_install_branch }}"
|
|
# tempest_bin is the same as the default in os_tempest role, but we set
|
|
# it again here so we can refer to it in test-horizon-functional.yml
|
|
tempest_bin: "/opt/tempest_{{ tempest_venv_tag }}/bin"
|
|
tempest_log_dir: "/var/log/"
|
|
tempest_main_group: horizon_all
|
|
tempest_service_available_aodh: False
|
|
tempest_service_available_ceilometer: False
|
|
tempest_service_available_cinder: False
|
|
tempest_service_available_glance: False
|
|
tempest_service_available_heat: False
|
|
tempest_service_available_horizon: True
|
|
tempest_service_available_neutron: False
|
|
tempest_service_available_nova: False
|
|
tempest_service_available_swift: False
|
|
tempest_plugins:
|
|
- name: tempest-horizon
|
|
repo: https://git.openstack.org/openstack/tempest-horizon
|
|
branch: master
|
|
horizon_config_overrides:
|
|
X_TEST_OPTION: True
|