From f18604123fbebce35263ad220f8c4b2c730f6002 Mon Sep 17 00:00:00 2001 From: Christian Pointner Date: Sat, 8 Feb 2020 04:24:09 +0100 Subject: kubernetes: added workaround for encryption config --- inventory/group_vars/k8s-emc/main.yml | 4 ++++ inventory/group_vars/k8s-test/main.yml | 5 +++-- 2 files changed, 7 insertions(+), 2 deletions(-) (limited to 'inventory') diff --git a/inventory/group_vars/k8s-emc/main.yml b/inventory/group_vars/k8s-emc/main.yml index d9bf350e..367fcda9 100644 --- a/inventory/group_vars/k8s-emc/main.yml +++ b/inventory/group_vars/k8s-emc/main.yml @@ -19,6 +19,10 @@ kubernetes: service_ip_range: 172.18.192.0/18 +kubernetes_secrets: + encryption_config_keys: "{{ vault_kubernetes_encryption_config_keys }}" + + kubeguard: ## node_index must be in the range between 1 and 190 -> 189 hosts possible ## diff --git a/inventory/group_vars/k8s-test/main.yml b/inventory/group_vars/k8s-test/main.yml index 60d381ec..e67039df 100644 --- a/inventory/group_vars/k8s-test/main.yml +++ b/inventory/group_vars/k8s-test/main.yml @@ -22,8 +22,9 @@ kubernetes: pod_ip_range_size: 24 service_ip_range: 172.18.192.0/18 -# kubernetes_secrets: -# encryption_config_keys: "{{ vault_kubernetes_encryption_config_keys }}" + +kubernetes_secrets: + encryption_config_keys: "{{ vault_kubernetes_encryption_config_keys }}" kubeguard: -- cgit v1.2.3