| @ -16,15 +16,17 @@ | |||||||
|   when: > |   when: > | ||||||
|     install_kubernetes | default(true) | bool |     install_kubernetes | default(true) | bool | ||||||
|       and |       and | ||||||
|     not kubernetes_installed | default(false) | bool |     kubernetes_installed | default(false) | bool | ||||||
|  |  | ||||||
|  |  | ||||||
| - name: Wireguard Cluster Encryption | - name: Wireguard Cluster Encryption | ||||||
|   ansible.builtin.include_tasks: |   ansible.builtin.include_tasks: | ||||||
|     file: k3s/configure.yaml |     file: k3s/wireguard.yaml | ||||||
|   when: > |   when: > | ||||||
|     install_kubernetes | default(true) | bool |     install_kubernetes | default(true) | bool | ||||||
|       and |       and | ||||||
|     not kubernetes_installed | default(false) | bool |     kubernetes_installed | default(false) | bool | ||||||
|       and |       and | ||||||
|     not kubernetes_installed_encryption | default(false) | bool |     not kubernetes_installed_encryption | default(false) | bool | ||||||
|  |       and | ||||||
|  |     kubernetes_config.cluster.networking.encrypt | default(false) | bool | ||||||
|  | |||||||
| @ -6,8 +6,8 @@ | |||||||
|     update_cache: false |     update_cache: false | ||||||
|   when: > |   when: > | ||||||
|     ansible_os_family == 'Debian' |     ansible_os_family == 'Debian' | ||||||
|       and |   #    and | ||||||
|     kubernetes.networking.encrypt | default(false) | bool |   #  kubernetes.networking.encrypt | default(false) | bool | ||||||
|  |  | ||||||
|  |  | ||||||
| - name: Enable Cluster Encryption | - name: Enable Cluster Encryption | ||||||
| @ -15,10 +15,6 @@ | |||||||
|     cmd: kubectl patch felixconfiguration default --type='merge' -p '{"spec":{"wireguardEnabled":true,"wireguardEnabledV6":true}}' |     cmd: kubectl patch felixconfiguration default --type='merge' -p '{"spec":{"wireguardEnabled":true,"wireguardEnabledV6":true}}' | ||||||
|   changed_when: false |   changed_when: false | ||||||
|   when: > |   when: > | ||||||
|     ansible_os_family == 'Debian' |  | ||||||
|       and |  | ||||||
|     kubernetes.networking.encrypt | default(false) | bool |  | ||||||
|       and |  | ||||||
|     kubernetes_config.cluster.prime.name == inventory_hostname |     kubernetes_config.cluster.prime.name == inventory_hostname | ||||||
|  |  | ||||||
| - name: Set Kubernetes Encryption Final Install Fact | - name: Set Kubernetes Encryption Final Install Fact | ||||||
|  | |||||||
		Reference in New Issue
	
	Block a user