You cannot select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
 
 
 
 
 
 
Go to file
Sven Ketelsen 96a0a6ebb9 chore: allow ssh access to ext-mpmexec-02
- 'daniel.risse'
- 'esther.fuhrmann'
- 'philipp.eichhorn'
3 years ago
ansible-builder Dev 997 provisioning galaxy role 3 years ago
docker/dregsy feat: consolidation for harbor 4 years ago
group_vars chore: allow ssh access to ext-mpmexec-02 3 years ago
host_vars DEV-989 Changed hetzner server type in host vars 3 years ago
inventory_plugins Feature/dev 927 3 years ago
kubespray@00550ba832 SC-44: added 2 new nodes + added corrected kubespray version 3 years ago
library bugfix: connect-wordpress orchestration 4 years ago
roles DEV-580: Added prom2teams alert and receiver for email 3 years ago
scripts MOB-367 added script for pull/tag/push images between stages 3 years ago
smardigo DEV-526 added pmci-callback playbook for testing purposes 3 years ago
tasks DEV-1014 bugfix: autodiscover_pre_task broken 3 years ago
templates DEV-1011: inc. threshold to avoid senseless false positives 3 years ago
users DEV-822 feat: ssh key für Hans-Peter Wissenbach hinzugefügt 3 years ago
.gitignore DEV-327: added several stuff for new prodnso-stage + bugfixing and improving other stuff 4 years ago
.gitlab-ci.yml Dev 997 provisioning galaxy role 3 years ago
.gitmodules Feature/dev 927 3 years ago
README.md Dev-997: provisioning galaxy role 3 years ago
ansible-lint.cfg chore: ansible linter 3 years ago
ansible.cfg Feature/dev 930 3 years ago
create-database-backup.yml Feature/dev 829 - ansible version updaten 3 years ago
create-database.yml Feature/dev 829 - ansible version updaten 3 years ago
create-kibana-objects.yml Feature/dev 829 - ansible version updaten 3 years ago
create-realm.yml Feature/dev 829 - ansible version updaten 3 years ago
create-remote-database-backup.yml Feature/dev 829 - ansible version updaten 3 years ago
create-server.yml Dev-997: provisioning galaxy role 3 years ago
create-service.yml Feature/dev 829 - ansible version updaten 3 years ago
dump-hcloud-ips.yml Dev-997: provisioning galaxy role 3 years ago
elastic-certs.sh DEV-338: added logstash config to deliver k8s-dockerlogs into specific indices 4 years ago
evil-remove-server.yml Dev-997: provisioning galaxy role 3 years ago
export-database.yml Feature/dev 829 - ansible version updaten 3 years ago
external_monitoring.yml DEV-960: adding 2 additinal clsuter nodes 3 years ago
galaxy-requirements.yml Dev-997: provisioning galaxy role 3 years ago
gitlab-mirrors.yml spike: automated mirrors for gitlab (w.i.p.) 4 years ago
hcloud_firewall.yml Dev-997: provisioning galaxy role 3 years ago
import-database.yml Feature/dev 829 - ansible version updaten 3 years ago
info.yml Feature/dev 829 - ansible version updaten 3 years ago
kubernetes.yml Feature/dev 829 - ansible version updaten 3 years ago
mobene.yml Feature/dev 829 - ansible version updaten 3 years ago
patchday.yml DEV-914 bugfix of regression from customer specific domains 3 years ago
pip-requirements Feature/dev 829 - ansible version updaten 3 years ago
pmci-callback.yml DEV-914 bugfix of regression from customer specific domains 3 years ago
pmci-empty-playbook.yml DEV-526 added pmci-callback playbook for testing purposes 3 years ago
pmci-inventory-cluster.yml Feature/dev 829 - ansible version updaten 3 years ago
poetry.lock Feature/dev 927 3 years ago
prodwork01-infrastructure-realm.yml Feature/dev 829 - ansible version updaten 3 years ago
provisioning.yml Dev-997: provisioning galaxy role 3 years ago
pyproject.toml Feature/dev 927 3 years ago
remove-database.yml Feature/dev 829 - ansible version updaten 3 years ago
remove-realm.yml Feature/dev 829 - ansible version updaten 3 years ago
remove-server.yml Dev-997: provisioning galaxy role 3 years ago
remove-service.yml Dev-997: provisioning galaxy role 3 years ago
restore-database-backup.yml Feature/dev 829 - ansible version updaten 3 years ago
restore-remote-database-backup.yml Dev-997: provisioning galaxy role 3 years ago
setup.yml Feature/dev 829 - ansible version updaten 3 years ago
smardigo.yml Feature/dev 829 - ansible version updaten 3 years ago
stage-dev Dev-997: provisioning galaxy role 3 years ago
stage-dev-netgo-hcloud.yml Feature/dev 927 3 years ago
stage-devscr SC-6 added new worker node for devscr cluster 3 years ago
stage-devscr-netgo-hcloud.yml DEV-497: created new branch due to git-problems - dunno what exactly 4 years ago
stage-digitalocean DEV-253: digitalocean stuff - add droplet but not idempotentgit branch git branch plz check 4 years ago
stage-ext DEV-875 removed ext-bdev-mpmexec-01.smardigo.digital 3 years ago
stage-ext-netgo-hcloud.yml DEV-597 removed ssh keys 3 years ago
stage-prodnso DEV-931: setup new prodnso k8s cluster 3 years ago
stage-prodnso-netgo-hcloud.yml Feature/dev 927 3 years ago
stage-prodwork01 DEV-960: adding 2 additinal clsuter nodes 3 years ago
stage-prodwork01-netgo-hcloud.yml DEV-927: fixing problems 3 years ago
stage-qa Feature/dev 930 3 years ago
stage-qa-netgo-hcloud.yml Feature/dev 927 3 years ago
update-docker-image.yml Feature/dev 829 - ansible version updaten 3 years ago
update-monitoring.yml Feature/dev 829 - ansible version updaten 3 years ago
update-service-state.yml Feature/dev 829 - ansible version updaten 3 years ago
update-ssh-config-file.yml Dev-997: provisioning galaxy role 3 years ago
upload-database-dumb.yml Feature/dev 829 - ansible version updaten 3 years ago

README.md

Prepare ansible Installation

Install needed python pip packages

pip3 install -r pip-requirements

Install needed ansible collections / roles

ansible-galaxy install -r galaxy-requirements.yml -f

Setup

Create/Start servers for stage-dev

ansible-playbook -i stage-dev provisioning.yml --vault-password-file ~/vault-pass
ansible-playbook -i stage-dev start.yml --vault-password-file ~/vault-pass
ansible-playbook -i stage-dev stop.yml --vault-password-file ~/vault-pass

with Poetry prefix with poetry run

Provisioning

ansible-playbook -i stage-dev setup.yml --vault-password-file ~/vault-pass -u root
ansible-playbook dynamic-provisioning.yml  --vault-password-file ~/vault-pass -e "stage=dev name=test node=01 service=connect"

with Poetry prefix with poetry run

Setup Smardigo Service

Setup/Configure a Server, Database, Realm (keycloak) and Smardigo
ansible-playbook create-server.yml -e "stage='dev' tenant_id='sken' cluster_name='test01' cluster_size='1' cluster_service='connect' stage='dev'"
ansible-playbook create-database.yml -e "stage='dev' tenant_id='sken' cluster_name='test01' cluster_size='1' cluster_service='connect' stage='dev'"
ansible-playbook create-realm.yml -e "stage='dev' tenant_id='sken' cluster_name='test01' cluster_size='1' cluster_service='connect' stage='dev' current_realm_name='sken' current_realm_display_name='S-K-E-N'"
ansible-playbook create-service.yml -e "stage='dev' tenant_id='sken' cluster_name='test01' cluster_size='1' cluster_service='connect' stage='dev' current_realm_name='sken' current_realm_display_name='S-K-E-N'"

with Poetry prefix with poetry run

Remove Smardigo Service

Remove a Server, Database, Realm (keycloak) and Smardigo
ansible-playbook remove-server.yml -e "stage='dev' tenant_id='sken' cluster_name='test01' cluster_size='1' cluster_service='connect' stage='dev'"

with Poetry prefix with poetry run

ansible-builder

AWX is used in smardigo setup do execute several playbooks due to user interaction within smardigo product. To finish ansible runs successfully we have to make sure every ansible dependency(ansible collection/role or pip package) is installed. therefore ansible-builder gave us the opportunity to configure the needed environment to exec plays successfully.

before every git-merge depending on changes concerning new ansible collections/roles and/or new pip-packages, please run the following:

cd ansible-builder/
ansible-builder build --tag dev-harbor-01.smardigo.digital/awx/awx-custom-ee --container-runtime docker

hopefully it will result in e.g.:

cd ansible-builder/
ATTENTION: to get more information plz set --verbosity 3	
ansible-builder build --tag awx-custom-ee:latest --container-runtime docker
Running command:
  docker build -f context/Dockerfile -t awx-custom-ee:latest context

Complete! The build context can be found at: /home/friedrich/sandbox/netgo_stuff/hetzner-ansible/ansible-builder/context

real	2m56,131s
user	0m0,208s
sys	0m0,102s`

you can start the docker container locally with e.g. : docker run -it --rm --mount type=bind,source="$(pwd)"/,target=/gitrepo/ awx-custom-ee:latest /bin/bash

after it, you are able to exec some ansbible-runs like: (please solve dependencies before starting to docker container) cd /gitrepo ansible-playbook -i stage-digitalocean external_monitoring.yml --ask-vault-password -u root --private-key sshkey_pw_less

export HETZNER_LABEL_SELECTOR='stage=dev'
ansible-playbook -i stage-netgo-hcloud.yml -l redis smardigo.yml --ask-vault-password  -u root --private-key sshkey_pw_less

if everything works fine, plz push the created docker container with:

docker login dev-harbor-01.smardigo.digital
docker tag XXXXXXXX dev-harbor-01.smardigo.digital/awx/awx-custom-ee:latest
docker push dev-harbor-01.smardigo.digital/awx/awx-custom-ee

TODO

Prometheus (Grafana) docker exec -i dev-prometheus-01-grafana sh -c 'grafana-cli plugins install grafana-piechart-panel' docker restart dev-prometheus-01-grafana