Puppet Class: sahara::keystone::auth

Defined in:
manifests/keystone/auth.pp

Overview

Class: sahara::keystone::auth

Configures sahara service and endpoint in Keystone.

Parameters

password

(Required) Password for Sahara user.

service_name

(Optional) Name of the service. Defaults to ‘sahara’

auth_name

(Optional) Username for sahara service. Defaults to ‘sahara’.

email

(Optional) Email for Sahara user. Defaults to ‘sahara@localhost’.

tenant

(Optional) Tenant for Sahara user. Defaults to ‘services’.

roles

(Optional) List of roles assigned to sahara user. Defaults to [‘admin’]

system_scope

(Optional) Scope for system operations. Defaults to ‘all’

system_roles

(Optional) List of system roles assigned to sahara user. Defaults to []

configure_endpoint

(Optional) Should Sahara endpoint be configured? Defaults to true.

configure_user

(Optional) Should the service user be configured? Defaults to true

configure_user_role

(Optional) Should the admin role be configured for the service user? Defaults to true

service_type

(Optional) Type of service. Defaults to ‘data-processing’.

service_description

(Optional) Description of service. Defaults to ‘Sahara Data Processing’.

region

(Optional) Region for endpoint. Defaults to ‘RegionOne’.

public_url

(Optional) The endpoint’s public url. This url should not contain any trailing ‘/’. Defaults to ‘127.0.0.1:8386

admin_url

(Optional) The endpoint’s admin url. This url should not contain any trailing ‘/’. Defaults to ‘127.0.0.1:8386

internal_url

(Optional) The endpoint’s internal url. This url should not contain any trailing ‘/’. Defaults to ‘127.0.0.1:8386

Examples

class { 'sahara::keystone::auth':
  password     => 'secret',
  public_url   => 'https://10.0.0.10:8386',
  internal_url => 'https://10.0.0.11:8386',
  admin_url    => 'https://10.0.0.11:8386',
}

Parameters:

  • password (Any)
  • service_name (Any) (defaults to: 'sahara')
  • auth_name (Any) (defaults to: 'sahara')
  • email (Any) (defaults to: 'sahara@localhost')
  • tenant (Any) (defaults to: 'services')
  • roles (Any) (defaults to: ['admin'])
  • system_scope (Any) (defaults to: 'all')
  • system_roles (Any) (defaults to: [])
  • service_type (Any) (defaults to: 'data-processing')
  • service_description (Any) (defaults to: 'Sahara Data Processing')
  • configure_endpoint (Any) (defaults to: true)
  • configure_user (Any) (defaults to: true)
  • configure_user_role (Any) (defaults to: true)
  • region (Any) (defaults to: 'RegionOne')
  • public_url (Any) (defaults to: 'http://127.0.0.1:8386')
  • admin_url (Any) (defaults to: 'http://127.0.0.1:8386')
  • internal_url (Any) (defaults to: 'http://127.0.0.1:8386')


86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
# File 'manifests/keystone/auth.pp', line 86

class sahara::keystone::auth(
  $password,
  $service_name        = 'sahara',
  $auth_name           = 'sahara',
  $email               = 'sahara@localhost',
  $tenant              = 'services',
  $roles               = ['admin'],
  $system_scope        = 'all',
  $system_roles        = [],
  $service_type        = 'data-processing',
  $service_description = 'Sahara Data Processing',
  $configure_endpoint  = true,
  $configure_user      = true,
  $configure_user_role = true,
  $region              = 'RegionOne',
  $public_url          = 'http://127.0.0.1:8386',
  $admin_url           = 'http://127.0.0.1:8386',
  $internal_url        = 'http://127.0.0.1:8386',
) {

  include sahara::deps

  Keystone::Resource::Service_identity['sahara'] -> Anchor['sahara::service::end']

  keystone::resource::service_identity { 'sahara':
    configure_user      => $configure_user,
    configure_user_role => $configure_user_role,
    configure_endpoint  => $configure_endpoint,
    service_type        => $service_type,
    service_description => $service_description,
    service_name        => $service_name,
    auth_name           => $auth_name,
    region              => $region,
    password            => $password,
    email               => $email,
    tenant              => $tenant,
    roles               => $roles,
    system_scope        => $system_scope,
    system_roles        => $system_roles,
    public_url          => $public_url,
    admin_url           => $admin_url,
    internal_url        => $internal_url,
  }
}