OP enable target by default
This commit is contained in:
1
Jenkinsfile
vendored
1
Jenkinsfile
vendored
@@ -93,7 +93,6 @@ pipeline {
|
|||||||
git rm -r --cached .vscode || echo "No .vscode to remove from git"
|
git rm -r --cached .vscode || echo "No .vscode to remove from git"
|
||||||
git add -A && git commit -am "Recommit for updates in build $BUILD_NUMBER" || echo "No changes to commit"
|
git add -A && git commit -am "Recommit for updates in build $BUILD_NUMBER" || echo "No changes to commit"
|
||||||
git push origin HEAD:master
|
git push origin HEAD:master
|
||||||
|
|
||||||
'''
|
'''
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|||||||
64
README.md
64
README.md
@@ -2,6 +2,7 @@
|
|||||||
|
|
||||||
[](https://jenkins.confdroid.com/job/confdroid_puppet/)
|
[](https://jenkins.confdroid.com/job/confdroid_puppet/)
|
||||||
[](https://sonarqube.confdroid.com/dashboard?id=confdroid_puppet)
|
[](https://sonarqube.confdroid.com/dashboard?id=confdroid_puppet)
|
||||||
|
[](https://deepwiki.com/grizzlycoda/puppet_collection)
|
||||||
|
|
||||||
- [Readme](#readme)
|
- [Readme](#readme)
|
||||||
- [Synopsis](#synopsis)
|
- [Synopsis](#synopsis)
|
||||||
@@ -9,7 +10,7 @@
|
|||||||
- [Features](#features)
|
- [Features](#features)
|
||||||
- [Puppet server and agent](#puppet-server-and-agent)
|
- [Puppet server and agent](#puppet-server-and-agent)
|
||||||
- [Firewall](#firewall)
|
- [Firewall](#firewall)
|
||||||
- [Directories, Files and Services,](#directories-files-and-services)
|
- [Directories, Files and Services](#directories-files-and-services)
|
||||||
- [Optional](#optional)
|
- [Optional](#optional)
|
||||||
- [R10k service](#r10k-service)
|
- [R10k service](#r10k-service)
|
||||||
- [R10k Web hook](#r10k-web-hook)
|
- [R10k Web hook](#r10k-web-hook)
|
||||||
@@ -24,60 +25,62 @@
|
|||||||
- [Documentation](#documentation)
|
- [Documentation](#documentation)
|
||||||
- [Disclaimer](#disclaimer)
|
- [Disclaimer](#disclaimer)
|
||||||
|
|
||||||
|
|
||||||
## Synopsis
|
## Synopsis
|
||||||
|
|
||||||
This Puppet module configures settings a full Puppet environment, i.e. Puppet master, Puppet agents pointed to the master.
|
This Puppet module configures settings a full Puppet environment, i.e. Puppet master, Puppet agents pointed to the master.
|
||||||
|
|
||||||
Optionally:
|
Optionally:
|
||||||
* R10k to connect to a control repo and manage
|
|
||||||
|
- R10k to connect to a control repo and manage
|
||||||
puppet modules
|
puppet modules
|
||||||
* webhook listener to trigger r10k when a puppet module has been updated.
|
- webhook listener to trigger r10k when a puppet module has been updated.
|
||||||
* PuppetDB for exporting and storing resources.
|
- PuppetDB for exporting and storing resources.
|
||||||
|
|
||||||
The syntax is specifically for Puppet Core 8 and Rocky 9, although might work elsewhere as well.
|
The syntax is specifically for Puppet Core 8 and Rocky 9, although might work elsewhere as well.
|
||||||
This module is also designed to work with [Foreman][def] as External Node Classifier (ENC), although it does not install Foreman.
|
This module is also designed to work with [Foreman][def] as External Node Classifier (ENC), although it does not install Foreman.
|
||||||
|
|
||||||
## WARNING
|
## WARNING
|
||||||
|
|
||||||
***Attention: Never use this puppet module on systems which have been previously configured manually. It is impossible to predict how and what would have been configured, hence previous configurations outside the scope of this module may be overwritten! Automated configurations require a test environment to verify that the module suits the purpose intended by the user, as well as tune the parameters, before deploying into live production***
|
> **Attention: Never use this puppet module on systems which have been previously configured manually. It is impossible to predict how and what would have been configured, hence previous configurations outside the scope of this module may be overwritten! Automated configurations require a test environment to verify that the module suits the purpose intended by the user, as well as tune the parameters, before deploying into live production**
|
||||||
|
|
||||||
## Features
|
## Features
|
||||||
|
|
||||||
### Puppet server and agent
|
### Puppet server and agent
|
||||||
|
|
||||||
* if the host FQDN matches your specified Puppet master via `$pt_pm_fqdn`, it installs and configures a puppetmaster ready for serving with Foreman as ENC (Foreman not yet included). It specifically rewrites the puppet.conf with values taken from parameters.
|
- if the host FQDN matches your specified Puppet master via `$pt_pm_fqdn`, it installs and configures a puppetmaster ready for serving with Foreman as ENC (Foreman not yet included). It specifically rewrites the puppet.conf with values taken from parameters.
|
||||||
* Any other system becomes a puppet agent.
|
- Any other system becomes a puppet agent.
|
||||||
|
|
||||||
### Firewall
|
### Firewall
|
||||||
|
|
||||||
* open firewall ports depending on choices above
|
- open firewall ports depending on choices above
|
||||||
|
|
||||||
### Directories, Files and Services,
|
### Directories, Files and Services
|
||||||
* manage directories and required files including
|
|
||||||
|
- manage directories and required files including
|
||||||
permissions and selinux context (todo)
|
permissions and selinux context (todo)
|
||||||
* start services as required
|
- start services as required
|
||||||
|
|
||||||
### Optional
|
### Optional
|
||||||
|
|
||||||
#### R10k service
|
#### R10k service
|
||||||
|
|
||||||
* install r10k service on your puppetmaster.
|
- install r10k service on your puppetmaster.
|
||||||
If you set `$pt_use_r10k`to `true`, it also installs r10k to connect to a control repo and manage the code available to clients via Puppetfile.
|
If you set `$pt_use_r10k`to `true`, it also installs r10k to connect to a control repo and manage the code available to clients via Puppetfile.
|
||||||
|
|
||||||
#### R10k Web hook
|
#### R10k Web hook
|
||||||
|
|
||||||
* installs a webhook listener
|
- installs a webhook listener
|
||||||
If you set `$pt_use_r10k_webhook`to `true`, it also installs a simple webhook listener to watch for post_hooks from gitlab, and triggers the r10k deployment.
|
If you set `$pt_use_r10k_webhook`to `true`, it also installs a simple webhook listener to watch for post_hooks from gitlab, and triggers the r10k deployment.
|
||||||
|
|
||||||
#### Puppetdb
|
#### Puppetdb
|
||||||
* installs and configures Puppetdb on the node specified with `pt_puppetdb_fqdn`, which can be the puppetmaster or any other node (recommended for performance reasons)
|
|
||||||
* the logrotation can be set in max days via `pt_pptdb_log_max_age`
|
- installs and configures Puppetdb on the node specified with `pt_puppetdb_fqdn`, which can be the puppetmaster or any other node (recommended for performance reasons)
|
||||||
|
- the logrotation can be set in max days via `pt_pptdb_log_max_age`
|
||||||
|
|
||||||
## Support
|
## Support
|
||||||
|
|
||||||
* Rocky 9
|
- Rocky 9
|
||||||
* Puppet Core 8
|
- Puppet Core 8
|
||||||
|
|
||||||
## Parameter Inheritance
|
## Parameter Inheritance
|
||||||
|
|
||||||
@@ -91,26 +94,27 @@ All parameters are listed in `params.pp` and inherited from there. Variable par
|
|||||||
include confdroid_puppet
|
include confdroid_puppet
|
||||||
|
|
||||||
```
|
```
|
||||||
|
|
||||||
### through Foreman
|
### through Foreman
|
||||||
|
|
||||||
* ensure the module is present on the puppetmaster running Foreman in the module path, i.e. /etc/puppetlabs/code/environments/production/ . use r10k or clone the module there through git
|
- ensure the module is present on the puppetmaster running Foreman in the module path, i.e. /etc/puppetlabs/code/environments/production/ . use r10k or clone the module there through git
|
||||||
* import the module in Foreman
|
- import the module in Foreman
|
||||||
* assign `confdroid_puppet::params` to the nodes in question, typically a host group.
|
- assign `confdroid_puppet::params` to the nodes in question, typically a host group.
|
||||||
* overwrite the value for `$pt_pm_fqdn`to match your puppetmaster's fqdn. **This will overwrite the puppet.conf with the settings set in params.pp. It is highly recommended to use a test system first to see and fine tune those settings!** Any node not matching this fqdn will become an agent.
|
- overwrite the value for `$pt_pm_fqdn`to match your puppetmaster's fqdn. **This will overwrite the puppet.conf with the settings set in params.pp. It is highly recommended to use a test system first to see and fine tune those settings!** Any node not matching this fqdn will become an agent.
|
||||||
|
|
||||||
## Tests
|
## Tests
|
||||||
|
|
||||||
* Puppet Lint
|
- Puppet Lint
|
||||||
* excluded tests:
|
- excluded tests:
|
||||||
* `--no-variable_scope-check`: not applicable as we are inheriting parameters from params class. the lint check does not distinguish between facts and inherited parameters.
|
- `--no-variable_scope-check`: not applicable as we are inheriting parameters from params class. the lint check does not distinguish between facts and inherited parameters.
|
||||||
* Puppet Parser
|
- Puppet Parser
|
||||||
* ERB Template Parser
|
- ERB Template Parser
|
||||||
* Sonar Quality Gate
|
- Sonar Quality Gate
|
||||||
|
|
||||||
## Contact Us
|
## Contact Us
|
||||||
|
|
||||||
* [contact form](https://confdroid.com/contact/)
|
- [contact form](https://confdroid.com/contact/)
|
||||||
* [feedback portal](https://feedback.confdroid.com/)
|
- [feedback portal](https://feedback.confdroid.com/)
|
||||||
|
|
||||||
## Documentation
|
## Documentation
|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user