Set default token instead of agent to get dns working, set node name to be the short name instead of fqdn
This commit is contained in:
parent
be8d9c68da
commit
7c2084790f
3 changed files with 6 additions and 2 deletions
BIN
ansible/consul-debug-1598770949.tar.gz
Normal file
BIN
ansible/consul-debug-1598770949.tar.gz
Normal file
Binary file not shown.
|
@ -1,5 +1,7 @@
|
||||||
datacenter = "{{ main_dc_name }}"
|
datacenter = "{{ main_dc_name }}"
|
||||||
|
primary_datacenter = "{{ main_dc_name }}"
|
||||||
domain = "{{ consul_domain }}"
|
domain = "{{ consul_domain }}"
|
||||||
|
node_name = "{{ inventory_hostname_short }}"
|
||||||
|
|
||||||
encrypt = "{{ lookup('hashi_vault', 'secret=kv/data/consul:data')['gossip'] }}"
|
encrypt = "{{ lookup('hashi_vault', 'secret=kv/data/consul:data')['gossip'] }}"
|
||||||
|
|
||||||
|
@ -28,6 +30,6 @@ acl {
|
||||||
default_policy = "deny"
|
default_policy = "deny"
|
||||||
enable_token_persistence = true
|
enable_token_persistence = true
|
||||||
tokens {
|
tokens {
|
||||||
agent = "{{ lookup('hashi_vault', 'secret=kv/data/consul:data')['server-acl-token'] }}"
|
default = "{{ lookup('hashi_vault', 'secret=kv/data/consul:data')['server-acl-token'] }}"
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
|
@ -1,5 +1,7 @@
|
||||||
datacenter = "{{ main_dc_name }}"
|
datacenter = "{{ main_dc_name }}"
|
||||||
|
primary_datacenter = "{{ main_dc_name }}"
|
||||||
domain = "{{ consul_domain }}"
|
domain = "{{ consul_domain }}"
|
||||||
|
node_name = "{{ inventory_hostname_short }}"
|
||||||
server = true
|
server = true
|
||||||
bootstrap_expect = 3
|
bootstrap_expect = 3
|
||||||
ui = true
|
ui = true
|
||||||
|
@ -37,6 +39,6 @@ acl {
|
||||||
default_policy = "deny"
|
default_policy = "deny"
|
||||||
enable_token_persistence = true
|
enable_token_persistence = true
|
||||||
tokens {
|
tokens {
|
||||||
agent = "{{ lookup('hashi_vault', 'secret=kv/data/consul:data')['server-acl-token'] }}"
|
default = "{{ lookup('hashi_vault', 'secret=kv/data/consul:data')['server-acl-token'] }}"
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
Loading…
Reference in a new issue