
when run creating Magnum trustee user role task, the domain parameter must be domain id[0]. so kolla-ansible need to register the result of Creating Magnum trustee domain task, and use the domain id when creating Magnum trustee user role. [0]: https://github.com/openstack/kolla-ansible/blob/master/ansible/roles/magnum/tasks/register.yml#L59 Co-Authored-By: ZhijunWei <wzj334965317@outlook.com> Change-Id: I57cdd011b7fc863133f9e3b43ae783cd1486e644 Closes-Bug: #1766410
66 lines
2.2 KiB
YAML
66 lines
2.2 KiB
YAML
---
|
|
- name: Creating the Magnum service and endpoint
|
|
kolla_toolbox:
|
|
module_name: "kolla_keystone_service"
|
|
module_args:
|
|
service_name: "magnum"
|
|
service_type: "container-infra"
|
|
description: "Container Infrastructure Management Service"
|
|
endpoint_region: "{{ openstack_region_name }}"
|
|
url: "{{ item.url }}"
|
|
interface: "{{ item.interface }}"
|
|
region_name: "{{ openstack_region_name }}"
|
|
auth: "{{ openstack_magnum_auth }}"
|
|
endpoint_type: "{{ openstack_interface }}"
|
|
run_once: True
|
|
with_items:
|
|
- {'interface': 'admin', 'url': '{{ magnum_admin_endpoint }}'}
|
|
- {'interface': 'internal', 'url': '{{ magnum_internal_endpoint }}'}
|
|
- {'interface': 'public', 'url': '{{ magnum_public_endpoint }}'}
|
|
|
|
- name: Creating the Magnum project, user, and role
|
|
kolla_toolbox:
|
|
module_name: "kolla_keystone_user"
|
|
module_args:
|
|
project: "service"
|
|
user: "{{ magnum_keystone_user }}"
|
|
password: "{{ magnum_keystone_password }}"
|
|
role: "admin"
|
|
region_name: "{{ openstack_region_name }}"
|
|
auth: "{{ openstack_magnum_auth }}"
|
|
endpoint_type: "{{ openstack_interface }}"
|
|
run_once: True
|
|
|
|
- name: Creating Magnum trustee domain
|
|
kolla_toolbox:
|
|
module_name: "os_keystone_domain"
|
|
module_args:
|
|
name: "{{ magnum_trustee_domain }}"
|
|
description: "Owns users and projects created by magnum"
|
|
auth: "{{ openstack_magnum_auth }}"
|
|
endpoint_type: "{{ openstack_interface }}"
|
|
register: trustee_domain
|
|
run_once: True
|
|
|
|
- name: Creating Magnum trustee user
|
|
kolla_toolbox:
|
|
module_name: "os_user"
|
|
module_args:
|
|
name: "{{ magnum_trustee_domain_admin }}"
|
|
domain: "{{ magnum_trustee_domain }}"
|
|
password: "{{ magnum_keystone_password }}"
|
|
auth: "{{ openstack_magnum_auth }}"
|
|
endpoint_type: "{{ openstack_interface }}"
|
|
run_once: True
|
|
|
|
- name: Creating Magnum trustee user role
|
|
kolla_toolbox:
|
|
module_name: "os_user_role"
|
|
module_args:
|
|
domain: "{{ trustee_domain.id }}"
|
|
user: "{{ magnum_trustee_domain_admin }}"
|
|
role: "admin"
|
|
auth: "{{ openstack_magnum_auth }}"
|
|
endpoint_type: "{{ openstack_interface }}"
|
|
run_once: True
|