{"id":652,"sha1":"f54b32da09e138c77831de503e122473995a436c","playbook":{"id":4,"items":{"plays":107,"tasks":2438,"results":2413,"hosts":13,"files":511,"records":0},"arguments":{"version":null,"verbosity":0,"private_key_file":null,"remote_user":null,"connection":"openstack.osa.ssh","timeout":null,"ssh_common_args":null,"sftp_extra_args":null,"scp_extra_args":null,"ssh_extra_args":null,"ask_pass":false,"connection_password_file":null,"force_handlers":true,"flush_cache":false,"become":false,"become_method":"sudo","become_user":null,"become_ask_pass":false,"become_password_file":null,"tags":["all"],"skip_tags":[],"check":false,"diff":false,"inventory":["/home/zuul/src/opendev.org/openstack/openstack-ansible/inventory/dynamic_inventory.py","/home/zuul/src/opendev.org/openstack/openstack-ansible/inventory/inventory.ini","/etc/openstack_deploy/inventory.ini"],"listhosts":false,"subset":null,"extra_vars":"Not saved by ARA as configured by 'ignored_arguments'","vault_ids":[],"ask_vault_pass":false,"vault_password_files":[],"forks":4,"module_path":null,"syntax":false,"listtasks":false,"listtags":false,"step":false,"start_at_task":null,"args":["setup-openstack.yml"]},"labels":[{"id":1,"name":"check:False"},{"id":2,"name":"tags:all"}],"started":"2025-12-14T10:21:40.790759Z","ended":"2025-12-14T11:05:36.775743Z","duration":"00:43:55.984984","name":null,"ansible_version":"2.18.6","client_version":"1.7.4","python_version":"3.13.5","server_version":"1.7.4","status":"completed","path":"/home/zuul/src/opendev.org/openstack/openstack-ansible/playbooks/setup-openstack.yml","controller":"aio1.openstack.local","user":"root"},"content":"---\n# Copyright 2017, Rackspace US, Inc.\n#\n# Licensed under the Apache License, Version 2.0 (the \"License\");\n# you may not use this file except in compliance with the License.\n# You may obtain a copy of the License at\n#\n#     http://www.apache.org/licenses/LICENSE-2.0\n#\n# Unless required by applicable law or agreed to in writing, software\n# distributed under the License is distributed on an \"AS IS\" BASIS,\n# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.\n# See the License for the specific language governing permissions and\n# limitations under the License.\n\n- name: Fail if service was deployed using a different installation method\n  ansible.builtin.fail:\n    msg: \"Switching installation methods for OpenStack services is not supported\"\n  when:\n    - ansible_local is defined\n    - ansible_local.openstack_ansible is defined\n    - ansible_local.openstack_ansible.octavia is defined\n    - ansible_local.openstack_ansible.octavia.install_method is defined\n    - ansible_local.openstack_ansible.octavia.install_method != octavia_install_method\n\n- name: Gather variables for each operating system\n  ansible.builtin.include_vars: \"{{ lookup('first_found', params) }}\"\n  vars:\n    params:\n      files:\n        - \"{{ ansible_facts['distribution'] | lower }}-{{ ansible_facts['distribution_version'] | lower }}.yml\"\n        - \"{{ ansible_facts['distribution'] | lower }}-{{ ansible_facts['distribution_major_version'] | lower }}.yml\"\n        - \"{{ ansible_facts['os_family'] | lower }}-{{ ansible_facts['distribution_major_version'] | lower }}.yml\"\n        - \"{{ ansible_facts['distribution'] | lower }}.yml\"\n        - \"{{ ansible_facts['os_family'] | lower }}.yml\"\n      paths:\n        - \"{{ role_path }}/vars\"\n  tags:\n    - always\n\n- name: Gather variables for installation method\n  ansible.builtin.include_vars: \"{{ octavia_install_method }}_install.yml\"\n  tags:\n    - always\n\n- name: Fail if our required secrets are not present\n  ansible.builtin.fail:\n    msg: \"Please set the {{ item }} variable prior to applying this role.\"\n  when: (item is undefined) or (item is none)\n  with_items: \"{{ octavia_required_secrets }}\"\n  tags:\n    - always\n\n- name: Including osa.db_setup role\n  ansible.builtin.include_role:\n    name: openstack.osa.db_setup\n    apply:\n      tags:\n        - common-db\n        - octavia-config\n  when:\n    - _octavia_is_first_play_host\n  vars:\n    _oslodb_setup_host: \"{{ octavia_db_setup_host }}\"\n    _oslodb_ansible_python_interpreter: \"{{ octavia_db_setup_python_interpreter }}\"\n    _oslodb_setup_endpoint: \"{{ octavia_galera_address }}\"\n    _oslodb_setup_port: \"{{ octavia_galera_port }}\"\n    _oslodb_databases:\n      - name: \"{{ octavia_galera_database }}\"\n        users:\n          - username: \"{{ octavia_galera_user }}\"\n            password: \"{{ octavia_container_mysql_password }}\"\n      - name: \"{{ octavia_galera_persistence_database }}\"\n        condition: \"{{ octavia_coordination_enable | bool }}\"\n        users:\n          - username: \"{{ octavia_galera_user }}\"\n            password: \"{{ octavia_container_mysql_password }}\"\n  tags:\n    - always\n\n- name: Including osa.mq_setup role\n  ansible.builtin.include_role:\n    name: openstack.osa.mq_setup\n    apply:\n      tags:\n        - common-mq\n        - octavia-config\n  when:\n    - _octavia_is_first_play_host\n  vars:\n    _oslomsg_rpc_setup_host: \"{{ octavia_oslomsg_rpc_setup_host }}\"\n    _oslomsg_rpc_userid: \"{{ octavia_oslomsg_rpc_userid }}\"\n    _oslomsg_rpc_password: \"{{ octavia_oslomsg_rpc_password }}\"\n    _oslomsg_rpc_vhost: \"{{ octavia_oslomsg_rpc_vhost }}\"\n    _oslomsg_rpc_transport: \"{{ octavia_oslomsg_rpc_transport }}\"\n    _oslomsg_rpc_policies: \"{{ octavia_oslomsg_rpc_policies }}\"\n    _oslomsg_notify_setup_host: \"{{ octavia_oslomsg_notify_setup_host }}\"\n    _oslomsg_notify_userid: \"{{ octavia_oslomsg_notify_userid }}\"\n    _oslomsg_notify_password: \"{{ octavia_oslomsg_notify_password }}\"\n    _oslomsg_notify_vhost: \"{{ octavia_oslomsg_notify_vhost }}\"\n    _oslomsg_notify_transport: \"{{ octavia_oslomsg_notify_transport }}\"\n    _oslomsg_notify_policies: \"{{ octavia_oslomsg_notify_policies }}\"\n    _oslomsg_notify_configure: \"{{ octavia_oslomsg_notify_configure }}\"\n  tags:\n    - always\n\n- name: Gather variables for installation method\n  ansible.builtin.include_vars: \"{{ octavia_install_method }}_install.yml\"\n  tags:\n    - always\n\n- name: Importing octavia_pre_install tasks\n  ansible.builtin.import_tasks: octavia_pre_install.yml\n  tags:\n    - octavia-install\n\n- name: Create and install SSL certificates\n  ansible.builtin.include_role:\n    name: pki\n    apply:\n      tags:\n        - octavia-config\n        - pki\n  vars:\n    pki_setup_host: \"{{ octavia_cert_setup_host }}\"\n    pki_dir: \"{{ octavia_cert_dir }}\"\n    pki_create_ca: \"{{ octavia_generate_ca }}\"\n    pki_regen_ca: \"{{ octavia_regenerate_ca }}\"\n    pki_authorities: \"{{ octavia_cert_authorities }}\"\n    pki_create_certificates: \"{{ octavia_generate_client_cert }}\"\n    pki_regen_cert: \"{{ octavia_regenerate_client_cert }}\"\n    pki_certificates: \"{{ octavia_cert_certificates }}\"\n    pki_install_certificates: \"{{ octavia_cert_install_certificates }}\"\n  when:\n    - (octavia_generate_certs | bool) or (octavia_backend_ssl | bool) or (octavia_ovn_ssl | bool)\n  tags:\n    - always\n\n- name: Assemble SSL certificates\n  ansible.builtin.assemble:\n    src: /etc/octavia/certs/\n    dest: /etc/octavia/certs/client.pem\n    regexp: \"(client\\\\.pem\\\\.crt|client\\\\.pem\\\\.key)$\"\n    owner: \"{{ octavia_system_user_name }}\"\n    group: \"{{ octavia_system_group_name }}\"\n    mode: \"0640\"\n  notify:\n    - Restart octavia services\n    - Restart uwsgi services\n  when:\n    - octavia_generate_certs | bool\n  tags:\n    - octavia-config\n    - octavia-install\n\n- name: Importing octavia_install tasks\n  ansible.builtin.import_tasks: octavia_install.yml\n  tags:\n    - octavia-install\n\n- name: Import uwsgi role\n  ansible.builtin.import_role:\n    name: uwsgi\n  vars:\n    uwsgi_services: \"{{ uwsgi_octavia_services }}\"\n    uwsgi_install_method: \"{{ octavia_install_method }}\"\n  tags:\n    - octavia-config\n    - uwsgi\n\n- name: Run the systemd service role\n  ansible.builtin.import_role:\n    name: systemd_service\n  vars:\n    systemd_after_targets: \"{{ service_var.after_targets | default(['syslog.target', 'network.target']) }}\"\n    systemd_user_name: \"{{ octavia_system_user_name }}\"\n    systemd_group_name: \"{{ octavia_system_group_name }}\"\n    systemd_tempd_prefix: openstack\n    systemd_slice_name: \"{{ octavia_system_slice_name }}\"\n    systemd_lock_dir: \"{{ octavia_lock_dir }}\"\n    systemd_service_cpu_accounting: true\n    systemd_service_block_io_accounting: true\n    systemd_service_memory_accounting: true\n    systemd_service_tasks_accounting: true\n    systemd_services: \"{{ filtered_octavia_services }}\"\n  tags:\n    - octavia-config\n    - systemd-service\n\n- name: Including osa.service_setup role\n  ansible.builtin.include_role:\n    name: openstack.osa.service_setup\n    apply:\n      tags:\n        - common-service\n        - octavia-config\n  vars:\n    _service_adminuri_insecure: \"{{ keystone_service_adminuri_insecure }}\"\n    _service_in_ldap: \"{{ octavia_service_in_ldap }}\"\n    _service_setup_host: \"{{ octavia_service_setup_host }}\"\n    _service_setup_host_python_interpreter: \"{{ octavia_service_setup_host_python_interpreter }}\"\n    _service_project_name: \"{{ octavia_service_project_name }}\"\n    _service_region: \"{{ octavia_service_region }}\"\n    _service_users:\n      - name: \"{{ octavia_service_user_name }}\"\n        password: \"{{ octavia_service_password }}\"\n        role: \"{{ octavia_service_role_names }}\"\n      - role: load-balancer_observer\n      - role: load-balancer_global_observer\n      - role: load-balancer_member\n      - role: load-balancer_admin\n      - role: load-balancer_quota_admin\n    _service_endpoints:\n      - service: \"{{ octavia_service_name }}\"\n        interface: \"public\"\n        url: \"{{ octavia_service_publicuri }}\"\n      - service: \"{{ octavia_service_name }}\"\n        interface: \"internal\"\n        url: \"{{ octavia_service_internaluri }}\"\n      - service: \"{{ octavia_service_name }}\"\n        interface: \"admin\"\n        url: \"{{ octavia_service_adminuri }}\"\n    _service_catalog:\n      - name: \"{{ octavia_service_name }}\"\n        type: \"{{ octavia_service_type }}\"\n        description: \"{{ octavia_service_description }}\"\n  when: _octavia_is_first_play_host\n  tags:\n    - always\n\n- name: Including octavia_resources tasks\n  ansible.builtin.include_tasks: octavia_resources.yml\n  args:\n    apply:\n      tags:\n        - octavia-config\n        - octavia-resources\n  when:\n    - _octavia_is_first_play_host\n  tags:\n    - octavia-config\n    - octavia-resources\n\n- name: Importing octavia_post_install tasks\n  ansible.builtin.import_tasks: octavia_post_install.yml\n  tags:\n    - octavia-install\n    - octavia-config\n    - post-install\n\n- name: Importing octavia_db_sync tasks\n  ansible.builtin.import_tasks: octavia_db_sync.yml\n  when:\n    - _octavia_is_first_play_host\n  tags:\n    - octavia-install\n\n- name: Flush handlers\n  ansible.builtin.meta: flush_handlers\n","created":"2025-12-14T10:21:53.060267Z","updated":"2025-12-14T10:21:53.060278Z","path":"/home/zuul/src/opendev.org/openstack/openstack-ansible-os_octavia/tasks/main.yml"}