You've already forked role-check-mk-agent
Compare commits
7 Commits
| Author | SHA1 | Date | |
|---|---|---|---|
| a67d4af041 | |||
| 396fdf006b | |||
| 975a81ea57 | |||
| a05a453cdb | |||
| dadda67b98 | |||
| 829ca8310d | |||
| 9cd948dcdc |
@@ -1,2 +1,3 @@
|
|||||||
FROM docker.io/pycontribs/centos:7
|
FROM docker.io/pycontribs/centos:7
|
||||||
RUN yum install -y iproute
|
RUN yum install -y iproute firewalld python-firewall net-tools && \
|
||||||
|
systemctl enable firewalld
|
||||||
|
|||||||
7
Centos8-Dockerfile
Normal file
7
Centos8-Dockerfile
Normal file
@@ -0,0 +1,7 @@
|
|||||||
|
# Centos8-Dockerfile
|
||||||
|
FROM docker.io/pycontribs/centos:8
|
||||||
|
RUN yum install -y iproute firewalld net-tools && \
|
||||||
|
sed -i 's/FirewallBackend=nftables/FirewallBackend=iptables/' /etc/firewalld/firewalld.conf && \
|
||||||
|
sed -i 's/IPv6_rpfilter=yes/IPv6_rpfilter=no/' /etc/firewalld/firewalld.conf && \
|
||||||
|
systemctl enable firewalld
|
||||||
|
|
||||||
@@ -3,13 +3,22 @@ cmk_add_host: false # Should be true/false whether we should automatically add h
|
|||||||
cmk_omd_protocol: http # Should be http or https
|
cmk_omd_protocol: http # Should be http or https
|
||||||
cmk_omd_host: your-checkmk-hostname
|
cmk_omd_host: your-checkmk-hostname
|
||||||
cmk_omd_site: your-checkmk-site # e.g the first piece after the / following your hostname
|
cmk_omd_site: your-checkmk-site # e.g the first piece after the / following your hostname
|
||||||
|
|
||||||
# If you have created a folder in WATO already you want hosts to be put in when registered
|
# If you have created a folder in WATO already you want hosts to be put in when registered
|
||||||
# uncomment cmk_folder below and specify the folder to use. Otherwise the role creates and
|
# uncomment cmk_folder below and specify the folder to use. Otherwise the role creates and
|
||||||
# adds new hosts by default to Unsorted folder
|
# adds new hosts by default to Unsorted folder
|
||||||
# cmk_folder: your_folder_in_WATO
|
# cmk_folder: your_folder_in_WATO
|
||||||
|
|
||||||
|
# Copy paste the link address for rpm agent from CheckMK
|
||||||
cmk_rpm_agent: http://url-from-your-agent-bakery-in-checkmk.rpm
|
cmk_rpm_agent: http://url-from-your-agent-bakery-in-checkmk.rpm
|
||||||
|
# Copy paste the link address for MSI (Windows) agent from CheckMK
|
||||||
cmk_msi_agent: http://url-from-your-agent-bakery-in-checkmk.msi
|
cmk_msi_agent: http://url-from-your-agent-bakery-in-checkmk.msi
|
||||||
|
|
||||||
|
# Check_MK GPG Key
|
||||||
|
# Copy paste the link address from Signature Keys for Signing Agents page
|
||||||
|
cmk_gpg_key_id: 1
|
||||||
|
cmk_gpg_key_url: "{{ cmk_omd_protocol }}://{{ cmk_omd_host }}/{{ cmk_omd_site }}/check_mk/wato.py?key={{ cmk_gpg_key_id }}&mode=download_signature_key"
|
||||||
|
|
||||||
|
|
||||||
# Should be username of an automation user in checkmk
|
# Should be username of an automation user in checkmk
|
||||||
cmk_username: some-username
|
cmk_username: some-username
|
||||||
@@ -18,6 +27,7 @@ cmk_username: some-username
|
|||||||
# I recommend encrypting this with ansible-vault.
|
# I recommend encrypting this with ansible-vault.
|
||||||
# Example: ansible-vault encrypt_string somesecret_string --name cmk_secret
|
# Example: ansible-vault encrypt_string somesecret_string --name cmk_secret
|
||||||
cmk_secret: some-secret
|
cmk_secret: some-secret
|
||||||
|
|
||||||
# Combined string required for unattended actions
|
# Combined string required for unattended actions
|
||||||
cmk_auth: "&_username={{ cmk_username }}&_secret={{ cmk_secret }}"
|
cmk_auth: "&_username={{ cmk_username }}&_secret={{ cmk_secret }}"
|
||||||
|
|
||||||
|
|||||||
@@ -8,4 +8,14 @@
|
|||||||
|
|
||||||
- name: cmk fresh install
|
- name: cmk fresh install
|
||||||
set_fact:
|
set_fact:
|
||||||
cmk_fresh_install: True
|
cmk_fresh_install: True
|
||||||
|
|
||||||
|
- name: ensure firewall open
|
||||||
|
firewalld:
|
||||||
|
port: 6556/tcp
|
||||||
|
state: enabled
|
||||||
|
permanent: yes
|
||||||
|
|
||||||
|
- name: ensure firewall reloaded
|
||||||
|
command: firewall-cmd --reload
|
||||||
|
changed_when: false
|
||||||
|
|||||||
@@ -5,20 +5,21 @@ driver:
|
|||||||
name: docker
|
name: docker
|
||||||
platforms:
|
platforms:
|
||||||
- name: rhel8
|
- name: rhel8
|
||||||
image: docker.io/pycontribs/centos:8
|
image: guisea/centos8-ansible:latest
|
||||||
|
#dockerfile: Centos8-Dockerfile
|
||||||
privileged: True
|
privileged: True
|
||||||
volume_mounts:
|
volume_mounts:
|
||||||
- "/sys/fs/cgroup:/sys/fs/cgroup:rw"
|
- "/sys/fs/cgroup:/sys/fs/cgroup:rw"
|
||||||
command: "/usr/sbin/init"
|
command: "/usr/sbin/init"
|
||||||
pre_build_image: true
|
pre_build_image: true
|
||||||
- name: rhel7
|
- name: rhel7
|
||||||
image: docker.io/pycontribs/centos:7
|
image: guisea/centos7-ansible:latest
|
||||||
dockerfile: Centos7-Dockerfile
|
# dockerfile: Centos7-Dockerfile
|
||||||
privileged: True
|
privileged: True
|
||||||
volume_mounts:
|
volume_mounts:
|
||||||
- "/sys/fs/cgroup:/sys/fs/cgroup:rw"
|
- "/sys/fs/cgroup:/sys/fs/cgroup:rw"
|
||||||
command: "/usr/sbin/init"
|
command: "/usr/sbin/init"
|
||||||
pre_build_image: false
|
pre_build_image: true
|
||||||
provisioner:
|
provisioner:
|
||||||
name: ansible
|
name: ansible
|
||||||
verifier:
|
verifier:
|
||||||
|
|||||||
@@ -1,9 +1,9 @@
|
|||||||
---
|
---
|
||||||
# Tasks for installation on RedHat Family
|
# Tasks for installation on RedHat Family
|
||||||
- name: Ensure xinetd installed
|
- name: Ensure xinetd installed
|
||||||
yum:
|
package:
|
||||||
name: xinetd
|
name: xinetd
|
||||||
state: installed
|
state: present
|
||||||
notify: restart xinetd
|
notify: restart xinetd
|
||||||
|
|
||||||
- name: Gather facts of packages
|
- name: Gather facts of packages
|
||||||
@@ -16,14 +16,16 @@
|
|||||||
get_url:
|
get_url:
|
||||||
url: "{{ cmk_rpm_agent }}{{ cmk_auth }}"
|
url: "{{ cmk_rpm_agent }}{{ cmk_auth }}"
|
||||||
dest: /tmp/check-mk-agent.rpm
|
dest: /tmp/check-mk-agent.rpm
|
||||||
|
|
||||||
- name: Ensure check_mk_agent installed
|
- name: Ensure check_mk_agent installed
|
||||||
yum:
|
package:
|
||||||
name: /tmp/check-mk-agent.rpm
|
name: /tmp/check-mk-agent.rpm
|
||||||
state: installed
|
state: present
|
||||||
|
disable_gpg_check: true
|
||||||
notify:
|
notify:
|
||||||
- restart xinetd
|
- restart xinetd
|
||||||
- cmk fresh install
|
- cmk fresh install
|
||||||
|
- ensure firewall open
|
||||||
|
|
||||||
- name: Remove agent Download
|
- name: Remove agent Download
|
||||||
file:
|
file:
|
||||||
|
|||||||
Reference in New Issue
Block a user