Compare commits

..

1 Commits

Author SHA1 Message Date
Jenkins Server
1a85d03ab3 Merge remote-tracking branch 'origin/master' into jenkins-build-6 2026-09-05 13:03:00 +02:00
7 changed files with 43 additions and 15 deletions

View File

@@ -101,7 +101,7 @@ Multiple ACLs need to be added as array, and will create one line each.
## SELINUX ## SELINUX
All files and directories are configured with correct selinux context. If selinux is disabled, these contexts are ignored. All files and directories are configured with correct selinux context. If selinux is disabled, these contexts are ignored.
If selinux is set to `enforce` (not controlled within this module), the parameter `hy_selinux_allow_stats` must also be set to `true`, else the haproxy service will not start as selinux will not allow it. If selinux is set to `enforce` (not controlled within this module) and `hy_show_stats`is set to `true`, the parameter `hy_selinux_allow_stats` must also be set to `true`, else the haproxy service will not start as selinux will not allow it.
## Known Problems ## Known Problems

View File

@@ -186,7 +186,7 @@
<h2 id="label-SELINUX">SELINUX</h2> <h2 id="label-SELINUX">SELINUX</h2>
<p>All files and directories are configured with correct selinux context. If selinux is disabled, these contexts are ignored. If selinux is set to <code>enforce</code> (not controlled within this module), the parameter <code>hy_selinux_allow_stats</code> must also be set to <code>true</code>, else the haproxy service will not start as selinux will not allow it.</p> <p>All files and directories are configured with correct selinux context. If selinux is disabled, these contexts are ignored. If selinux is set to <code>enforce</code> (not controlled within this module) and <code>hy_show_stats</code>is set to <code>true</code>, the parameter <code>hy_selinux_allow_stats</code> must also be set to <code>true</code>, else the haproxy service will not start as selinux will not allow it.</p>
<h2 id="label-Known+Problems">Known Problems</h2> <h2 id="label-Known+Problems">Known Problems</h2>

View File

@@ -186,7 +186,7 @@
<h2 id="label-SELINUX">SELINUX</h2> <h2 id="label-SELINUX">SELINUX</h2>
<p>All files and directories are configured with correct selinux context. If selinux is disabled, these contexts are ignored. If selinux is set to <code>enforce</code> (not controlled within this module), the parameter <code>hy_selinux_allow_stats</code> must also be set to <code>true</code>, else the haproxy service will not start as selinux will not allow it.</p> <p>All files and directories are configured with correct selinux context. If selinux is disabled, these contexts are ignored. If selinux is set to <code>enforce</code> (not controlled within this module) and <code>hy_show_stats</code>is set to <code>true</code>, the parameter <code>hy_selinux_allow_stats</code> must also be set to <code>true</code>, else the haproxy service will not start as selinux will not allow it.</p>
<h2 id="label-Known+Problems">Known Problems</h2> <h2 id="label-Known+Problems">Known Problems</h2>

View File

@@ -123,7 +123,9 @@
25 25
26 26
27 27
28</pre> 28
29
30</pre>
</td> </td>
<td> <td>
<pre class="code"><span class="info file"># File 'manifests/firewall/iptables.pp', line 6</span> <pre class="code"><span class="info file"># File 'manifests/firewall/iptables.pp', line 6</span>
@@ -144,12 +146,14 @@ class confdroid_haproxy::firewall::iptables (
jump =&gt; &#39;accept&#39;, jump =&gt; &#39;accept&#39;,
} }
if $hy_show_stats == true {
firewall { &quot;${hy_fw_order_no}${hy_stats_port} tcp port ${hy_stats_port}&quot;: firewall { &quot;${hy_fw_order_no}${hy_stats_port} tcp port ${hy_stats_port}&quot;:
proto =&gt; &#39;tcp&#39;, proto =&gt; &#39;tcp&#39;,
dport =&gt; $hy_stats_port, dport =&gt; $hy_stats_port,
jump =&gt; &#39;accept&#39;, jump =&gt; &#39;accept&#39;,
} }
} }
}
}</pre> }</pre>
</td> </td>
</tr> </tr>

View File

@@ -397,6 +397,24 @@
</li> </li>
<li>
<span class='name'>hy_show_stats</span>
<span class='type'>(<tt>Boolean</tt>)</span>
<em class="default">(defaults to: <tt>false</tt>)</em>
&mdash;
<div class='inline'>
<p>whether we want to display the statistics page</p>
</div>
</li>
<li> <li>
<span class='name'>hy_stats_socket</span> <span class='name'>hy_stats_socket</span>
@@ -894,7 +912,6 @@
<pre class="lines"> <pre class="lines">
59
60 60
61 61
62 62
@@ -985,10 +1002,12 @@
147 147
148 148
149 149
150</pre> 150
151
152</pre>
</td> </td>
<td> <td>
<pre class="code"><span class="info file"># File 'manifests/params.pp', line 59</span> <pre class="code"><span class="info file"># File 'manifests/params.pp', line 60</span>
class confdroid_haproxy::params ( class confdroid_haproxy::params (
@@ -1014,6 +1033,7 @@ class confdroid_haproxy::params (
String $hy_chroot = &#39;/var/lib/haproxy&#39;, String $hy_chroot = &#39;/var/lib/haproxy&#39;,
String $hy_pid = &#39;/var/run/haproxy.pid&#39;, String $hy_pid = &#39;/var/run/haproxy.pid&#39;,
String $hy_maxconn = &#39;4000&#39;, String $hy_maxconn = &#39;4000&#39;,
Boolean $hy_show_stats = false,
String $hy_stats_socket = &#39;/var/lib/haproxy/stats&#39;, String $hy_stats_socket = &#39;/var/lib/haproxy/stats&#39;,
String $hy_default_mode = &#39;tcp&#39;, String $hy_default_mode = &#39;tcp&#39;,
Boolean $hy_use_http_server_close = false, Boolean $hy_use_http_server_close = false,

View File

@@ -19,6 +19,7 @@ class confdroid_haproxy::firewall::iptables (
jump => 'accept', jump => 'accept',
} }
if $hy_show_stats == true {
firewall { "${hy_fw_order_no}${hy_stats_port} tcp port ${hy_stats_port}": firewall { "${hy_fw_order_no}${hy_stats_port} tcp port ${hy_stats_port}":
proto => 'tcp', proto => 'tcp',
dport => $hy_stats_port, dport => $hy_stats_port,
@@ -26,3 +27,4 @@ class confdroid_haproxy::firewall::iptables (
} }
} }
} }
}

View File

@@ -23,6 +23,7 @@
# @param [String] hy_chroot where the chroot should be # @param [String] hy_chroot where the chroot should be
# @param [String] hy_pid the pid file to use. # @param [String] hy_pid the pid file to use.
# @param [String] hy_maxconn how many connections should we max allow. # @param [String] hy_maxconn how many connections should we max allow.
# @param [Boolean] hy_show_stats whether we want to display the statistics page
# @param [String] hy_stats_socket name and path of the stats socket # @param [String] hy_stats_socket name and path of the stats socket
# @param [String] hy_default_mode which mode to use in the defaults block # @param [String] hy_default_mode which mode to use in the defaults block
# @param [String] hy_log_default should be used when the instance's logging # @param [String] hy_log_default should be used when the instance's logging
@@ -80,6 +81,7 @@ class confdroid_haproxy::params (
String $hy_chroot = '/var/lib/haproxy', String $hy_chroot = '/var/lib/haproxy',
String $hy_pid = '/var/run/haproxy.pid', String $hy_pid = '/var/run/haproxy.pid',
String $hy_maxconn = '4000', String $hy_maxconn = '4000',
Boolean $hy_show_stats = false,
String $hy_stats_socket = '/var/lib/haproxy/stats', String $hy_stats_socket = '/var/lib/haproxy/stats',
String $hy_default_mode = 'tcp', String $hy_default_mode = 'tcp',
Boolean $hy_use_http_server_close = false, Boolean $hy_use_http_server_close = false,