Dmitriy Rabotyagov 8ceea78a97 Fix linters and metadata
With update of ansible-lint to version >=6.0.0 a lot of new
linters were added, that enabled by default. In order to comply
with linter rules we're applying changes to the role.

With that we also update metdata to reflect current state.

Depends-On: https://review.opendev.org/c/openstack/ansible-role-systemd_service/+/888223
Change-Id: I3905e334cfbeb7ccb976358016f81c5edd6cd284
2023-09-04 18:55:41 +02:00

311 lines
9.7 KiB
YAML

---
# Copyright 2014, Rackspace US, Inc.
#
# Licensed under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License.
# You may obtain a copy of the License at
#
# http://www.apache.org/licenses/LICENSE-2.0
#
# Unless required by applicable law or agreed to in writing, software
# distributed under the License is distributed on an "AS IS" BASIS,
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
# See the License for the specific language governing permissions and
# limitations under the License.
- name: Importing neutron_check tasks
import_tasks: neutron_check.yml
- name: Gather variables for each operating system
include_vars: "{{ lookup('first_found', params) }}"
vars:
params:
files:
- "{{ ansible_facts['distribution'] | lower }}-{{ ansible_facts['distribution_version'] | lower }}.yml"
- "{{ ansible_facts['distribution'] | lower }}-{{ ansible_facts['distribution_major_version'] | lower }}.yml"
- "{{ ansible_facts['os_family'] | lower }}-{{ ansible_facts['distribution_major_version'] | lower }}.yml"
- "{{ ansible_facts['distribution'] | lower }}.yml"
- "{{ ansible_facts['os_family'] | lower }}.yml"
paths:
- "{{ role_path }}/vars"
tags:
- always
- name: Gather variables for installation method
include_vars: "{{ neutron_install_method }}_install.yml"
tags:
- always
- name: Including osa.db_setup role
include_role:
name: openstack.osa.db_setup
apply:
tags:
- common-db
- neutron-config
when:
- "_neutron_is_first_play_host"
vars:
_oslodb_setup_host: "{{ neutron_db_setup_host }}"
_oslodb_ansible_python_interpreter: "{{ neutron_db_setup_python_interpreter }}"
_oslodb_setup_endpoint: "{{ neutron_galera_address }}"
_oslodb_setup_port: "{{ neutron_galera_port }}"
_oslodb_databases:
- name: "{{ neutron_galera_database }}"
users:
- username: "{{ neutron_galera_user }}"
password: "{{ neutron_container_mysql_password }}"
tags:
- always
- name: Including osa.mq_setup role
include_role:
name: openstack.osa.mq_setup
apply:
tags:
- common-mq
- neutron-config
when:
- "_neutron_is_first_play_host"
vars:
_oslomsg_rpc_setup_host: "{{ neutron_oslomsg_rpc_setup_host }}"
_oslomsg_rpc_userid: "{{ neutron_oslomsg_rpc_userid }}"
_oslomsg_rpc_password: "{{ neutron_oslomsg_rpc_password }}"
_oslomsg_rpc_vhost: "{{ neutron_oslomsg_rpc_vhost }}"
_oslomsg_rpc_transport: "{{ neutron_oslomsg_rpc_transport }}"
_oslomsg_notify_setup_host: "{{ neutron_oslomsg_notify_setup_host }}"
_oslomsg_notify_userid: "{{ neutron_oslomsg_notify_userid }}"
_oslomsg_notify_password: "{{ neutron_oslomsg_notify_password }}"
_oslomsg_notify_vhost: "{{ neutron_oslomsg_notify_vhost }}"
_oslomsg_notify_transport: "{{ neutron_oslomsg_notify_transport }}"
tags:
- always
- name: Get CPU info content and store as var
command: cat /proc/cpuinfo
register: cpuinfo_contents
changed_when: false
failed_when: false
tags:
- always
- name: Create the neutron provider networks fact
openstack.osa.provider_networks:
provider_networks: "{{ provider_networks }}"
bind_prefix: "{{ provider_network_bind_prefix | default('') }}"
is_metal: "{{ is_metal }}"
group_names: "{{ group_names }}"
register: pndata
when: neutron_provider_networks is not defined
check_mode: false
changed_when: false
tags:
- always
- name: Set provider network fact(s)
set_fact:
neutron_provider_networks: "{{ neutron_provider_networks | default(pndata) }}"
tags:
- always
- name: Importing dependent_neutron_roles tasks
import_tasks: dependent_neutron_roles.yml
- name: Importing neutron_pre_install tasks
import_tasks: neutron_pre_install.yml
tags:
- neutron-install
- name: Importing neutron_install tasks
import_tasks: neutron_install.yml
tags:
- neutron-install
- name: Refresh local facts
setup:
filter: ansible_local
gather_subset: "!all"
tags:
- neutron-config
# create the ssl certs before the installation of the services.
- name: Create and install SSL certificates for API
include_role:
name: pki
tasks_from: main_certs.yml
apply:
tags:
- neutron-config
- pki
vars:
pki_setup_host: "{{ neutron_pki_setup_host }}"
pki_dir: "{{ neutron_pki_dir }}"
pki_create_certificates: "{{ neutron_user_ssl_cert is not defined and neutron_user_ssl_key is not defined }}"
pki_regen_cert: "{{ neutron_pki_regen_cert }}"
pki_certificates: "{{ neutron_pki_certificates }}"
pki_install_certificates: "{{ neutron_pki_install_certificates }}"
when:
- neutron_backend_ssl
- neutron_services['neutron-server']['group'] in group_names
tags:
- always
- name: Create and install SSL certificates for OVN
include_role:
name: pki
tasks_from: main_certs.yml
apply:
tags:
- neutron_ovn-config
- pki
vars:
pki_setup_host: "{{ neutron_ovn_pki_setup_host }}"
pki_dir: "{{ neutron_ovn_pki_dir }}"
pki_create_certificates: "{{ neutron_ovn_user_ssl_cert is not defined and neutron_ovn_user_ssl_key is not defined }}"
pki_regen_cert: "{{ neutron_ovn_pki_regen_cert }}"
pki_certificates: "{{ neutron_ovn_pki_certificates }}"
pki_install_certificates: "{{ neutron_ovn_pki_install_certificates }}"
when:
- neutron_plugin_type == 'ml2.ovn'
- neutron_ovn_ssl
- (neutron_services['neutron-ovn-controller']['group'] in group_names) or
(neutron_services['neutron-ovn-northd']['group'] in group_names) or
(neutron_services['neutron-server']['group'] in group_names)
tags:
- always
# Include provider specific config(s)
- name: Including plugin-specific tasks
include_tasks: "{{ item }}"
with_first_found:
- files:
- "{{ neutron_plugin_type.split('.')[-1] }}_config.yml"
skip: true
paths:
- "providers/"
tags:
- neutron-install
- name: Importing neutron_post_install tasks
import_tasks: neutron_post_install.yml
tags:
- neutron-config
# TODO(noonedeadpunk): Remove block for Bobcat release
- name: Disable dhcp and metadata agents for OVN scenario
when:
- neutron_plugin_type == 'ml2.ovn'
- (neutron_services['neutron-metadata-agent']['group'] in group_names) or (neutron_services['neutron-dhcp-agent']['group'] in group_names)
block:
- name: Gather service facts
service_facts:
- name: Disable services if they present
systemd:
name: "{{ item['service_name'] }}"
state: stopped
enabled: False
masked: True
when:
- item['group'] in group_names
- item['service_name'] ~ '.service' in ansible_facts.services
notify:
- "Restart neutron services"
with_items:
- "{{ neutron_services['neutron-metadata-agent'] }}"
- "{{ neutron_services['neutron-dhcp-agent'] }}"
- name: Run the systemd service role
import_role:
name: systemd_service
vars:
systemd_user_name: "{{ neutron_system_user_name }}"
systemd_group_name: "{{ neutron_system_group_name }}"
systemd_tempd_prefix: openstack
systemd_slice_name: "{{ neutron_system_slice_name }}"
systemd_lock_dir: "{{ neutron_lock_dir }}"
systemd_service_cpu_accounting: true
systemd_service_block_io_accounting: true
systemd_service_memory_accounting: true
systemd_service_tasks_accounting: true
systemd_services: |-
{%- set services = [] -%}
{%- for service in filtered_neutron_services -%}
{%- set _ = service.update(
{
'enabled': 'yes',
'state': 'started',
'config_overrides': service.init_config_overrides
}
)
-%}
{%- set _ = service.pop('init_config_overrides') -%}
{%- set _ = services.append(service) -%}
{%- endfor %}
{{- services -}}
tags:
- neutron-config
- systemd-service
- name: Including neutron_db_setup role
include_tasks: neutron_db_setup.yml
args:
apply:
tags:
- neutron-config
when:
- "_neutron_is_first_play_host"
tags:
- always
- name: Import uwsgi role
import_role:
name: uwsgi
vars:
uwsgi_services: "{{ uwsgi_neutron_services }}"
uwsgi_install_method: "{{ neutron_install_method }}"
tags:
- neutron-config
- uwsgi
- name: Including osa.service_setup role
include_role:
name: openstack.osa.service_setup
apply:
tags:
- common-service
- neutron-config
vars:
_service_adminuri_insecure: "{{ keystone_service_adminuri_insecure }}"
_service_in_ldap: "{{ neutron_service_in_ldap }}"
_service_setup_host: "{{ neutron_service_setup_host }}"
_service_setup_host_python_interpreter: "{{ neutron_service_setup_host_python_interpreter }}"
_service_project_name: "{{ neutron_service_project_name }}"
_service_region: "{{ neutron_service_region }}"
_service_users:
- name: "{{ neutron_service_user_name }}"
password: "{{ neutron_service_password }}"
role: "{{ neutron_service_role_names }}"
_service_endpoints:
- service: "{{ neutron_service_name }}"
interface: "public"
url: "{{ neutron_service_publicurl }}"
- service: "{{ neutron_service_name }}"
interface: "internal"
url: "{{ neutron_service_internalurl }}"
- service: "{{ neutron_service_name }}"
interface: "admin"
url: "{{ neutron_service_adminurl }}"
_service_catalog:
- name: "{{ neutron_service_name }}"
type: "{{ neutron_service_type }}"
description: "{{ neutron_service_description }}"
when:
- "_neutron_is_first_play_host"
tags:
- always
- name: Flush handlers
meta: flush_handlers