Compare commits
1 Commits
f3e37ffecf
...
1a85d03ab3
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
1a85d03ab3 |
@@ -101,7 +101,7 @@ Multiple ACLs need to be added as array, and will create one line each.
|
|||||||
## SELINUX
|
## SELINUX
|
||||||
|
|
||||||
All files and directories are configured with correct selinux context. If selinux is disabled, these contexts are ignored.
|
All files and directories are configured with correct selinux context. If selinux is disabled, these contexts are ignored.
|
||||||
If selinux is set to `enforce` (not controlled within this module), the parameter `hy_selinux_allow_stats` must also be set to `true`, else the haproxy service will not start as selinux will not allow it.
|
If selinux is set to `enforce` (not controlled within this module) and `hy_show_stats`is set to `true`, the parameter `hy_selinux_allow_stats` must also be set to `true`, else the haproxy service will not start as selinux will not allow it.
|
||||||
|
|
||||||
## Known Problems
|
## Known Problems
|
||||||
|
|
||||||
|
|||||||
@@ -186,7 +186,7 @@
|
|||||||
|
|
||||||
<h2 id="label-SELINUX">SELINUX</h2>
|
<h2 id="label-SELINUX">SELINUX</h2>
|
||||||
|
|
||||||
<p>All files and directories are configured with correct selinux context. If selinux is disabled, these contexts are ignored. If selinux is set to <code>enforce</code> (not controlled within this module), the parameter <code>hy_selinux_allow_stats</code> must also be set to <code>true</code>, else the haproxy service will not start as selinux will not allow it.</p>
|
<p>All files and directories are configured with correct selinux context. If selinux is disabled, these contexts are ignored. If selinux is set to <code>enforce</code> (not controlled within this module) and <code>hy_show_stats</code>is set to <code>true</code>, the parameter <code>hy_selinux_allow_stats</code> must also be set to <code>true</code>, else the haproxy service will not start as selinux will not allow it.</p>
|
||||||
|
|
||||||
<h2 id="label-Known+Problems">Known Problems</h2>
|
<h2 id="label-Known+Problems">Known Problems</h2>
|
||||||
|
|
||||||
|
|||||||
@@ -186,7 +186,7 @@
|
|||||||
|
|
||||||
<h2 id="label-SELINUX">SELINUX</h2>
|
<h2 id="label-SELINUX">SELINUX</h2>
|
||||||
|
|
||||||
<p>All files and directories are configured with correct selinux context. If selinux is disabled, these contexts are ignored. If selinux is set to <code>enforce</code> (not controlled within this module), the parameter <code>hy_selinux_allow_stats</code> must also be set to <code>true</code>, else the haproxy service will not start as selinux will not allow it.</p>
|
<p>All files and directories are configured with correct selinux context. If selinux is disabled, these contexts are ignored. If selinux is set to <code>enforce</code> (not controlled within this module) and <code>hy_show_stats</code>is set to <code>true</code>, the parameter <code>hy_selinux_allow_stats</code> must also be set to <code>true</code>, else the haproxy service will not start as selinux will not allow it.</p>
|
||||||
|
|
||||||
<h2 id="label-Known+Problems">Known Problems</h2>
|
<h2 id="label-Known+Problems">Known Problems</h2>
|
||||||
|
|
||||||
|
|||||||
@@ -123,7 +123,9 @@
|
|||||||
25
|
25
|
||||||
26
|
26
|
||||||
27
|
27
|
||||||
28</pre>
|
28
|
||||||
|
29
|
||||||
|
30</pre>
|
||||||
</td>
|
</td>
|
||||||
<td>
|
<td>
|
||||||
<pre class="code"><span class="info file"># File 'manifests/firewall/iptables.pp', line 6</span>
|
<pre class="code"><span class="info file"># File 'manifests/firewall/iptables.pp', line 6</span>
|
||||||
@@ -144,10 +146,12 @@ class confdroid_haproxy::firewall::iptables (
|
|||||||
jump => 'accept',
|
jump => 'accept',
|
||||||
}
|
}
|
||||||
|
|
||||||
firewall { "${hy_fw_order_no}${hy_stats_port} tcp port ${hy_stats_port}":
|
if $hy_show_stats == true {
|
||||||
proto => 'tcp',
|
firewall { "${hy_fw_order_no}${hy_stats_port} tcp port ${hy_stats_port}":
|
||||||
dport => $hy_stats_port,
|
proto => 'tcp',
|
||||||
jump => 'accept',
|
dport => $hy_stats_port,
|
||||||
|
jump => 'accept',
|
||||||
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
}</pre>
|
}</pre>
|
||||||
|
|||||||
@@ -397,6 +397,24 @@
|
|||||||
|
|
||||||
</li>
|
</li>
|
||||||
|
|
||||||
|
<li>
|
||||||
|
|
||||||
|
<span class='name'>hy_show_stats</span>
|
||||||
|
|
||||||
|
|
||||||
|
<span class='type'>(<tt>Boolean</tt>)</span>
|
||||||
|
|
||||||
|
|
||||||
|
<em class="default">(defaults to: <tt>false</tt>)</em>
|
||||||
|
|
||||||
|
|
||||||
|
—
|
||||||
|
<div class='inline'>
|
||||||
|
<p>whether we want to display the statistics page</p>
|
||||||
|
</div>
|
||||||
|
|
||||||
|
</li>
|
||||||
|
|
||||||
<li>
|
<li>
|
||||||
|
|
||||||
<span class='name'>hy_stats_socket</span>
|
<span class='name'>hy_stats_socket</span>
|
||||||
@@ -894,7 +912,6 @@
|
|||||||
<pre class="lines">
|
<pre class="lines">
|
||||||
|
|
||||||
|
|
||||||
59
|
|
||||||
60
|
60
|
||||||
61
|
61
|
||||||
62
|
62
|
||||||
@@ -985,10 +1002,12 @@
|
|||||||
147
|
147
|
||||||
148
|
148
|
||||||
149
|
149
|
||||||
150</pre>
|
150
|
||||||
|
151
|
||||||
|
152</pre>
|
||||||
</td>
|
</td>
|
||||||
<td>
|
<td>
|
||||||
<pre class="code"><span class="info file"># File 'manifests/params.pp', line 59</span>
|
<pre class="code"><span class="info file"># File 'manifests/params.pp', line 60</span>
|
||||||
|
|
||||||
class confdroid_haproxy::params (
|
class confdroid_haproxy::params (
|
||||||
|
|
||||||
@@ -1014,6 +1033,7 @@ class confdroid_haproxy::params (
|
|||||||
String $hy_chroot = '/var/lib/haproxy',
|
String $hy_chroot = '/var/lib/haproxy',
|
||||||
String $hy_pid = '/var/run/haproxy.pid',
|
String $hy_pid = '/var/run/haproxy.pid',
|
||||||
String $hy_maxconn = '4000',
|
String $hy_maxconn = '4000',
|
||||||
|
Boolean $hy_show_stats = false,
|
||||||
String $hy_stats_socket = '/var/lib/haproxy/stats',
|
String $hy_stats_socket = '/var/lib/haproxy/stats',
|
||||||
String $hy_default_mode = 'tcp',
|
String $hy_default_mode = 'tcp',
|
||||||
Boolean $hy_use_http_server_close = false,
|
Boolean $hy_use_http_server_close = false,
|
||||||
|
|||||||
@@ -19,10 +19,12 @@ class confdroid_haproxy::firewall::iptables (
|
|||||||
jump => 'accept',
|
jump => 'accept',
|
||||||
}
|
}
|
||||||
|
|
||||||
firewall { "${hy_fw_order_no}${hy_stats_port} tcp port ${hy_stats_port}":
|
if $hy_show_stats == true {
|
||||||
proto => 'tcp',
|
firewall { "${hy_fw_order_no}${hy_stats_port} tcp port ${hy_stats_port}":
|
||||||
dport => $hy_stats_port,
|
proto => 'tcp',
|
||||||
jump => 'accept',
|
dport => $hy_stats_port,
|
||||||
|
jump => 'accept',
|
||||||
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -23,6 +23,7 @@
|
|||||||
# @param [String] hy_chroot where the chroot should be
|
# @param [String] hy_chroot where the chroot should be
|
||||||
# @param [String] hy_pid the pid file to use.
|
# @param [String] hy_pid the pid file to use.
|
||||||
# @param [String] hy_maxconn how many connections should we max allow.
|
# @param [String] hy_maxconn how many connections should we max allow.
|
||||||
|
# @param [Boolean] hy_show_stats whether we want to display the statistics page
|
||||||
# @param [String] hy_stats_socket name and path of the stats socket
|
# @param [String] hy_stats_socket name and path of the stats socket
|
||||||
# @param [String] hy_default_mode which mode to use in the defaults block
|
# @param [String] hy_default_mode which mode to use in the defaults block
|
||||||
# @param [String] hy_log_default should be used when the instance's logging
|
# @param [String] hy_log_default should be used when the instance's logging
|
||||||
@@ -80,6 +81,7 @@ class confdroid_haproxy::params (
|
|||||||
String $hy_chroot = '/var/lib/haproxy',
|
String $hy_chroot = '/var/lib/haproxy',
|
||||||
String $hy_pid = '/var/run/haproxy.pid',
|
String $hy_pid = '/var/run/haproxy.pid',
|
||||||
String $hy_maxconn = '4000',
|
String $hy_maxconn = '4000',
|
||||||
|
Boolean $hy_show_stats = false,
|
||||||
String $hy_stats_socket = '/var/lib/haproxy/stats',
|
String $hy_stats_socket = '/var/lib/haproxy/stats',
|
||||||
String $hy_default_mode = 'tcp',
|
String $hy_default_mode = 'tcp',
|
||||||
Boolean $hy_use_http_server_close = false,
|
Boolean $hy_use_http_server_close = false,
|
||||||
|
|||||||
Reference in New Issue
Block a user