X-Git-Url: https://gerrit.akraino.org/r/gitweb?a=blobdiff_plain;f=ocd%2Finfra%2Fplaybooks%2Froles%2Fmepserver%2Ftasks%2Finstall.yml;h=b739ae2798ebe9e2e7fc9013936ec75b71b1497e;hb=b747fd2db81a059a8fa8e3acb23ca2c5980fc93b;hp=da0ff9e82f5cc066575073f49ab8003798f864b1;hpb=d52efc724f30aaf99ebb4a53f03c900b5668b8ff;p=ealt-edge.git diff --git a/ocd/infra/playbooks/roles/mepserver/tasks/install.yml b/ocd/infra/playbooks/roles/mepserver/tasks/install.yml index da0ff9e..b739ae2 100644 --- a/ocd/infra/playbooks/roles/mepserver/tasks/install.yml +++ b/ocd/infra/playbooks/roles/mepserver/tasks/install.yml @@ -23,6 +23,37 @@ src: deploy dest: /tmp/mepserver/ +- name: Generate Certificates + shell: +# yamllint disable rule:line-length + cmd: openssl genrsa -out ca.key 2048 + chdir: /tmp/mepserver/deploy/ + +- name: Generate Certificate - Step 2 + shell: + cmd: openssl req -new -key ca.key -subj /C=CN/ST=Peking/L=Beijing/O=ealtedge/CN=www.ealtedge.org -out ca.csr + chdir: /tmp/mepserver/deploy/ + +- name: Generate Root Certificate + shell: + cmd: openssl x509 -req -days 365 -in ca.csr -extensions v3_req -signkey ca.key -out trust.cer + chdir: /tmp/mepserver/deploy/ + +- name: Generate TLS certificate and TLS Key + shell: + cmd: openssl genrsa -out server_key.pem 2048 + chdir: /tmp/mepserver/deploy/ + +- name: Generate TLS Certificate and TLS Key + shell: + cmd: openssl req -new -key server_key.pem -subj /C=CN/ST=Beijing/L=Beijing/O=ealtedge/CN=www.ealtedge.org -out tls.csr + chdir: /tmp/mepserver/deploy/ + +- name: Generate TLS Certificate and TLS Key + shell: + cmd: openssl x509 -req -in tls.csr -extensions v3_req -CA trust.cer -CAkey ca.key -CAcreateserial -out server.cer + chdir: /tmp/mepserver/deploy/ + - name: Create mepssl-secret shell: # yamllint disable rule:line-length @@ -48,3 +79,12 @@ - name: Apply postgres-k8s.yaml shell: cmd: kubectl apply -f /tmp/mepserver/deploy/postgres-k8s.yaml + +- name: -----Configuring Kong API Gateway----- + shell: + cmd: sleep 30 + +- name: Configuring Kong API Gateway + shell: + cmd: chmod +x kongconfig.sh && ./kongconfig.sh + chdir: /tmp/mepserver/deploy/