summaryrefslogtreecommitdiffstats
path: root/ansible_collections/community/okd/molecule/default/prepare.yml
blob: 0d0361ab2eb4d7ee75377f841620700173635f0a (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
---
- name: Prepare
  hosts: localhost
  connection: local
  gather_facts: no

  tasks:
    - pip:
        name: virtualenv

    - pip:
        name:
          - kubernetes>=12.0.0
          - coverage
          - python-ldap
        virtualenv: "{{ virtualenv }}"
        virtualenv_command: "{{ virtualenv_command }}"
        virtualenv_site_packages: no

    - name: 'Configure htpasswd secret (username: test, password: testing123)'
      community.okd.k8s:
        definition:
          apiVersion: v1
          kind: Secret
          metadata:
            name: htpass-secret
            namespace: openshift-config
          stringData:
            htpasswd: "test:$2y$05$zgjczyp96jCIp//CGmnWiefhd7G3l54IdsZoV4IwA1UWtd04L0lE2"

    - name: Configure htpasswd identity provider
      community.okd.k8s:
        definition:
          apiVersion: config.openshift.io/v1
          kind: OAuth
          metadata:
            name: cluster
          spec:
            identityProviders:
              - name: htpasswd_provider
                mappingMethod: claim
                type: HTPasswd
                htpasswd:
                  fileData:
                    name: htpass-secret

    - name: Create ClusterRoleBinding for test user
      community.okd.k8s:
        definition:
          apiVersion: rbac.authorization.k8s.io/v1
          kind: ClusterRoleBinding
          metadata:
            name: test-cluster-reader
          roleRef:
            apiGroup: rbac.authorization.k8s.io
            kind: ClusterRole
            name: cluster-admin
          subjects:
            - apiGroup: rbac.authorization.k8s.io
              kind: User
              name: test