MAS DevOps Ansible Collection Ansible CLI
Home Ansible Automation Platform OCP Install Cloud Pak For Data Install Core Add AIBroker Add IoT Add Manage Add Monitor Add Optimizer Add Predict Add Visual Inspection Update Upgrade Uninstall Core Backup & Restore ocp_cluster_monitoring ocp_config ocp_deprovision ocp_efs ocp_github_oauth ocp_login ocp_node_config ocp_provision ocp_roks_upgrade_registry_storage ocp_upgrade ocp_verify appconnect aws_bucket_access_point aws_documentdb_user aws_policy aws_route53 aws_user_creation aws_vpc cert_manager cis common-services configure_manage_eventstreams cos cos_bucket cp4d_admin_pwd_update cp4d cp4d_service db2 dro eck grafana ibm_catalogs kafka nvidia_gpu mongodb ocs sls turbonomic uds mirror_case_prepare mirror_extras_prepare mirror_images mirror_ocp ocp_contentsourcepolicy ocp_simulate_disconnected_network registry suite_app_config suite_app_install suite_app_uninstall suite_app_upgrade suite_app_rollback suite_app_backup_restore suite_certs suite_config suite_db2_setup_for_manage suite_dns suite_install suite_manage_attachments_config suite_manage_birt_report_config suite_manage_bim_config suite_manage_customer_files_config suite_manage_imagestitching_config suite_manage_import_certs_config suite_manage_load_dbc_scripts suite_manage_logging_config suite_manage_pvc_config suite_uninstall suite_upgrade suite_rollback suite_verify suite_backup_restore ansible_version_check entitlement_key_rotation gencfg_jdbc gencfg_watsonstudio gencfg_workspace install_operator gencfg_mongo

cert_manager¤

Deploy IBM Certificate Manager Operator or **Red Hat Certificate Manager Operator into the target OCP cluster.

The role supports migrtation from an existing IBM Certificate Manager install to the Red Hat Certificate Manager, and will configure the cluster resources namespace to ibm-common-services in this case to ensure compatibility with all existing ClusterIssuers.

Prerequisites¤

IBM Certificate Manager¤

You must have already installed a CatalogSource that contains IBM Certificate Manager and installed the IBM Cloud Pak Foundational Services Operator. These tasks can be achieved using the ibm_catalogs and common_services roles in this collection.

Red Hat Certificate Manager¤

You must have already installed the Red Hat Operators CatalogSource.

Role Variables¤

cert_manager_action¤

Inform the role whether to perform an install or an uninstall the Certificate Manager service, action can also be set to none to instruct the role to take no action.

cert_manager_provider¤

Choose which flavour of Certificate Manager to install; IBM (ibm), or Red Hat (redhat)

Note: Certificate Manager is a cluster-wide dependency, therefore be really careful when uninstalling it as this might be used by several applications and dependencies installed in the cluster.

Example Playbook¤

After installing the Ansible Collection you can include this role in your own custom playbooks.

IBM Certificate Manager¤

- hosts: localhost
  vars:
    - cert_manager_action: install
    - cert_manager_provider: ibm
  roles:
    - ibm.mas_devops.ibm_catalogs
    - ibm.mas_devops.common_services
    - ibm.mas_devops.cert_manager

Red Hat Certificate Manager¤

- hosts: localhost
  vars:
    - cert_manager_action: install
    - cert_manager_provider: redhat
  roles:
    - ibm.mas_devops.cert_manager

Run Role Playbook¤

After installing the Ansible Collection you can easily run the role standalone using the run_role playbook provided.

ROLE_NAME=cert_manager ansible-playbook ibm.mas_devops.run_role

License¤

EPL-2.0