mirror of
https://github.com/rocky-linux/infrastructure
synced 2024-12-27 13:10:55 +00:00
Merge pull request #14962 from rocky-linux/develop
Removing all vault files - prepping for infra
This commit is contained in:
commit
18a9382c18
5 changed files with 13 additions and 35 deletions
4
ansible/.gitignore
vendored
4
ansible/.gitignore
vendored
|
@ -9,3 +9,7 @@ roles/public/*
|
|||
#keep fodler holding ansible collections empty
|
||||
collections/*
|
||||
!README.md
|
||||
|
||||
# Ignore all vaults
|
||||
playbooks/vars/vaults/*
|
||||
!playbooks/vars/vaults/README.md
|
||||
|
|
9
ansible/playbooks/vars/vaults/README.md
Normal file
9
ansible/playbooks/vars/vaults/README.md
Normal file
|
@ -0,0 +1,9 @@
|
|||
All vaulted files go here. They are not available in this repo.
|
||||
|
||||
The default vault files currently expected:
|
||||
|
||||
```
|
||||
encpass.yml
|
||||
rabbitmq_production.yml
|
||||
rabbitmq_staging.yml
|
||||
```
|
|
@ -1,27 +0,0 @@
|
|||
---
|
||||
# You must set this up using ansible-vault. Note that each var of a particular
|
||||
# group (eg ipa) should have its own vault password separate from the rest. The
|
||||
# passwords here should not be unlockable by one single password. It may be
|
||||
# beneficial instead to split out the various passwords into separate vars
|
||||
# files.
|
||||
ipaadmin_password: !vault |
|
||||
$ANSIBLE_VAULT;1.1;AES256
|
||||
REDACTED
|
||||
ipadm_password: !vault |
|
||||
$ANSIBLE_VAULT;1.1;AES256
|
||||
REDACTED
|
||||
ipa_binder_password: !vault |
|
||||
$ANSIBLE_VAULT;1.1;AES256
|
||||
REDACTED
|
||||
ipsilon_db_password: !vault |
|
||||
$ANSIBLE_VAULT;1.1;AES256
|
||||
REDACTED
|
||||
koji_db_pass: !vault |
|
||||
$ANSIBLE_VAULT;1.1;AES256
|
||||
REDACTED
|
||||
pubsub_federation_pass: !vault |
|
||||
$ANSIBLE_VAULT;1.1;AES256
|
||||
REDACTED
|
||||
gitlab_db_pass: !vault |
|
||||
$ANSIBLE_VAULT;1.1;AES256
|
||||
REDACTED
|
|
@ -1,4 +0,0 @@
|
|||
---
|
||||
# This will need to be vaulted
|
||||
rabbitmq_admin_password: ThisIsNotThePassword!
|
||||
rabbitmq_cookie: "X4MYneML6Ppp+ajPuG/qdD64ZjdVT1OJF8XUG/o+"
|
|
@ -1,4 +0,0 @@
|
|||
---
|
||||
# This will need to be vaulted
|
||||
rabbitmq_admin_password: ThisIsNotThePassword!
|
||||
rabbitmq_cookie: "X4MYneML6Ppp+ajPuG/qdD64ZjdVT1OJF8XUG/o+"
|
Loading…
Reference in a new issue