* project: update all dependencies including ansible Upgrade to ansible 7.x and ansible-core 2.14.x. There seems to be issue with ansible 8/ansible-core 2.15 so we remain on those versions for now. It's quite a big bump already anyway. Signed-off-by: Arthur Outhenin-Chalandre <arthur.outhenin-chalandre@proton.ch> * tests: install aws galaxy collection Signed-off-by: Arthur Outhenin-Chalandre <arthur.outhenin-chalandre@proton.ch> * ansible-lint: disable various rules after ansible upgrade Temporarily disable a bunch of linting action following ansible upgrade. Those should be taken care of separately. Signed-off-by: Arthur Outhenin-Chalandre <arthur.outhenin-chalandre@proton.ch> * project: resolve deprecated-module ansible-lint error Signed-off-by: Arthur Outhenin-Chalandre <arthur.outhenin-chalandre@proton.ch> * project: resolve no-free-form ansible-lint error Signed-off-by: Arthur Outhenin-Chalandre <arthur.outhenin-chalandre@proton.ch> * project: resolve schema[meta] ansible-lint error Signed-off-by: Arthur Outhenin-Chalandre <arthur.outhenin-chalandre@proton.ch> * project: resolve schema[playbook] ansible-lint error Signed-off-by: Arthur Outhenin-Chalandre <arthur.outhenin-chalandre@proton.ch> * project: resolve schema[tasks] ansible-lint error Signed-off-by: Arthur Outhenin-Chalandre <arthur.outhenin-chalandre@proton.ch> * project: resolve risky-file-permissions ansible-lint error Signed-off-by: Arthur Outhenin-Chalandre <arthur.outhenin-chalandre@proton.ch> * project: resolve risky-shell-pipe ansible-lint error Signed-off-by: Arthur Outhenin-Chalandre <arthur.outhenin-chalandre@proton.ch> * project: remove deprecated warn args Signed-off-by: Arthur Outhenin-Chalandre <arthur.outhenin-chalandre@proton.ch> * project: use fqcn for non builtin tasks Signed-off-by: Arthur Outhenin-Chalandre <arthur.outhenin-chalandre@proton.ch> * project: resolve syntax-check[missing-file] for contrib playbook Signed-off-by: Arthur Outhenin-Chalandre <arthur.outhenin-chalandre@proton.ch> * project: use arithmetic inside jinja to fix ansible 6 upgrade Signed-off-by: Arthur Outhenin-Chalandre <arthur.outhenin-chalandre@proton.ch> --------- Signed-off-by: Arthur Outhenin-Chalandre <arthur.outhenin-chalandre@proton.ch>
63 lines
1.6 KiB
YAML
63 lines
1.6 KiB
YAML
---
|
|
- name: kube-router | Create annotations
|
|
import_tasks: annotate.yml
|
|
tags: annotate
|
|
|
|
- name: kube-router | Create config directory
|
|
file:
|
|
path: /var/lib/kube-router
|
|
state: directory
|
|
owner: "{{ kube_owner }}"
|
|
recurse: true
|
|
mode: 0755
|
|
|
|
- name: kube-router | Create kubeconfig
|
|
template:
|
|
src: kubeconfig.yml.j2
|
|
dest: /var/lib/kube-router/kubeconfig
|
|
mode: 0644
|
|
owner: "{{ kube_owner }}"
|
|
notify:
|
|
- reset_kube_router
|
|
|
|
- name: kube-router | Slurp cni config
|
|
slurp:
|
|
src: /etc/cni/net.d/10-kuberouter.conflist
|
|
register: cni_config_slurp
|
|
ignore_errors: true # noqa ignore-errors
|
|
|
|
- name: kube-router | Set cni_config variable
|
|
set_fact:
|
|
cni_config: "{{ cni_config_slurp.content | b64decode | from_json }}"
|
|
when:
|
|
- not cni_config_slurp.failed
|
|
|
|
- name: kube-router | Set host_subnet variable
|
|
set_fact:
|
|
host_subnet: "{{ cni_config | json_query('plugins[?bridge==`kube-bridge`].ipam.subnet') | first }}"
|
|
when:
|
|
- cni_config is defined
|
|
- cni_config | json_query('plugins[?bridge==`kube-bridge`].ipam.subnet') | length > 0
|
|
|
|
- name: kube-router | Create cni config
|
|
template:
|
|
src: cni-conf.json.j2
|
|
dest: /etc/cni/net.d/10-kuberouter.conflist
|
|
mode: 0644
|
|
owner: "{{ kube_owner }}"
|
|
notify:
|
|
- reset_kube_router
|
|
|
|
- name: kube-router | Delete old configuration
|
|
file:
|
|
path: /etc/cni/net.d/10-kuberouter.conf
|
|
state: absent
|
|
|
|
- name: kube-router | Create manifest
|
|
template:
|
|
src: kube-router.yml.j2
|
|
dest: "{{ kube_config_dir }}/kube-router.yml"
|
|
mode: 0644
|
|
delegate_to: "{{ groups['kube_control_plane'] | first }}"
|
|
run_once: true
|