Merge pull request #14962 from rocky-linux/develop

Removing all vault files - prepping for infra
This commit is contained in:
Louis Abel 2021-01-04 13:26:20 -07:00 committed by GitHub
commit 18a9382c18
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
5 changed files with 13 additions and 35 deletions

4
ansible/.gitignore vendored
View File

@ -9,3 +9,7 @@ roles/public/*
#keep fodler holding ansible collections empty
collections/*
!README.md
# Ignore all vaults
playbooks/vars/vaults/*
!playbooks/vars/vaults/README.md

View File

@ -0,0 +1,9 @@
All vaulted files go here. They are not available in this repo.
The default vault files currently expected:
```
encpass.yml
rabbitmq_production.yml
rabbitmq_staging.yml
```

View File

@ -1,27 +0,0 @@
---
# You must set this up using ansible-vault. Note that each var of a particular
# group (eg ipa) should have its own vault password separate from the rest. The
# passwords here should not be unlockable by one single password. It may be
# beneficial instead to split out the various passwords into separate vars
# files.
ipaadmin_password: !vault |
$ANSIBLE_VAULT;1.1;AES256
REDACTED
ipadm_password: !vault |
$ANSIBLE_VAULT;1.1;AES256
REDACTED
ipa_binder_password: !vault |
$ANSIBLE_VAULT;1.1;AES256
REDACTED
ipsilon_db_password: !vault |
$ANSIBLE_VAULT;1.1;AES256
REDACTED
koji_db_pass: !vault |
$ANSIBLE_VAULT;1.1;AES256
REDACTED
pubsub_federation_pass: !vault |
$ANSIBLE_VAULT;1.1;AES256
REDACTED
gitlab_db_pass: !vault |
$ANSIBLE_VAULT;1.1;AES256
REDACTED

View File

@ -1,4 +0,0 @@
---
# This will need to be vaulted
rabbitmq_admin_password: ThisIsNotThePassword!
rabbitmq_cookie: "X4MYneML6Ppp+ajPuG/qdD64ZjdVT1OJF8XUG/o+"

View File

@ -1,4 +0,0 @@
---
# This will need to be vaulted
rabbitmq_admin_password: ThisIsNotThePassword!
rabbitmq_cookie: "X4MYneML6Ppp+ajPuG/qdD64ZjdVT1OJF8XUG/o+"