Ales Komarek | 16d9703 | 2014-06-14 13:31:57 +0200 | [diff] [blame] | 1 | {% from "docker/map.jinja" import host with context %} |
Martin Polreich | 48ae3e1 | 2017-04-13 10:53:32 +0200 | [diff] [blame] | 2 | |
Petr Michalec | e2e889c | 2018-07-11 10:13:25 +0200 | [diff] [blame] | 3 | {%- if host.get('enabled', False) %} |
Ales Komarek | 16d9703 | 2014-06-14 13:31:57 +0200 | [diff] [blame] | 4 | |
Ales Komarek | ad7fffa | 2014-06-15 08:47:01 +0200 | [diff] [blame] | 5 | docker_packages: |
marco | 1f5db28 | 2016-07-19 22:01:32 +0200 | [diff] [blame] | 6 | pkg.installed: |
Ales Komarek | ad7fffa | 2014-06-15 08:47:01 +0200 | [diff] [blame] | 7 | - pkgs: {{ host.pkgs }} |
Ales Komarek | 16d9703 | 2014-06-14 13:31:57 +0200 | [diff] [blame] | 8 | |
Martin Polreich | 48ae3e1 | 2017-04-13 10:53:32 +0200 | [diff] [blame] | 9 | {%- if grains.get('virtual_subtype', None) not in ['Docker', 'LXC'] %} |
| 10 | |
marco | 7c1333c | 2016-04-11 12:12:45 +0200 | [diff] [blame] | 11 | network.ipv4.ip_forward: |
Jakub Pavlik | d97f4a8 | 2015-12-02 16:06:25 +0100 | [diff] [blame] | 12 | sysctl.present: |
marco | 8656158 | 2016-04-11 12:15:09 +0200 | [diff] [blame] | 13 | - name: net.ipv4.ip_forward |
Jakub Pavlik | d97f4a8 | 2015-12-02 16:06:25 +0100 | [diff] [blame] | 14 | - value: 1 |
| 15 | |
Martin Polreich | 48ae3e1 | 2017-04-13 10:53:32 +0200 | [diff] [blame] | 16 | {%- endif %} |
| 17 | |
Jakub Pavlik | d97f4a8 | 2015-12-02 16:06:25 +0100 | [diff] [blame] | 18 | {%- if grains.os == 'Ubuntu' %} |
| 19 | |
| 20 | /etc/default/docker: |
| 21 | file.managed: |
| 22 | - source: salt://docker/files/default |
| 23 | - template: jinja |
| 24 | - require: |
| 25 | - pkg: docker_packages |
| 26 | - watch_in: |
| 27 | - service: docker_service |
| 28 | |
| 29 | {%- endif %} |
| 30 | |
Filip Pytloun | 972294d | 2016-09-15 17:52:32 +0200 | [diff] [blame] | 31 | /etc/docker/daemon.json: |
| 32 | file.managed: |
| 33 | - source: salt://docker/files/daemon.json |
| 34 | - template: jinja |
Martin Polreich | 48ae3e1 | 2017-04-13 10:53:32 +0200 | [diff] [blame] | 35 | - makedirs: True |
Filip Pytloun | 972294d | 2016-09-15 17:52:32 +0200 | [diff] [blame] | 36 | - require: |
| 37 | - pkg: docker_packages |
| 38 | - watch_in: |
| 39 | - service: docker_service |
| 40 | |
Consatntine Kalinovskiy | 3a31931 | 2017-11-02 21:28:08 +0200 | [diff] [blame] | 41 | {%- if host.get('proxy', {}).get('enabled', False) %} |
Tomáš Kukrál | 19a3960 | 2017-08-27 22:21:47 +0200 | [diff] [blame] | 42 | {%- if host.proxy.get('http') or host.proxy.get('https') or host.proxy.get('no_proxy') %} |
| 43 | |
| 44 | /etc/systemd/system/docker.service.d/http-proxy.conf: |
| 45 | file.managed: |
| 46 | - source: salt://docker/files/http-proxy.conf |
| 47 | - template: jinja |
| 48 | - makedirs: True |
| 49 | - require_in: |
| 50 | - service: docker_service |
Andrey | 6d305c2 | 2017-10-25 17:25:41 -0500 | [diff] [blame] | 51 | - watch_in: |
| 52 | - service: docker_service |
Tomáš Kukrál | 19a3960 | 2017-08-27 22:21:47 +0200 | [diff] [blame] | 53 | |
| 54 | {% else %} |
| 55 | |
| 56 | /etc/systemd/system/docker.service.d/http-proxy.conf: |
| 57 | file.absent |
| 58 | |
| 59 | {%- endif %} |
| 60 | |
| 61 | systemd_reload_due_proxy: |
| 62 | module.run: |
| 63 | - name: service.systemctl_reload |
| 64 | - onchanges: |
| 65 | - file: /etc/systemd/system/docker.service.d/http-proxy.conf |
| 66 | |
| 67 | {%- endif %} |
| 68 | |
| 69 | |
Ales Komarek | ad7fffa | 2014-06-15 08:47:01 +0200 | [diff] [blame] | 70 | docker_service: |
| 71 | service.running: |
| 72 | - name: {{ host.service }} |
Filip Pytloun | 9d0e8df | 2016-07-13 23:22:20 +0200 | [diff] [blame] | 73 | - enable: true |
Martin Polreich | 36e842d | 2017-06-08 14:12:53 +0200 | [diff] [blame] | 74 | {%- if grains.get('noservices') %} |
| 75 | - onlyif: /bin/false |
| 76 | {%- endif %} |
Ales Komarek | ad7fffa | 2014-06-15 08:47:01 +0200 | [diff] [blame] | 77 | - require: |
| 78 | - pkg: docker_packages |
| 79 | |
marco | 85b72a6 | 2016-07-07 13:08:33 +0200 | [diff] [blame] | 80 | {%- if host.registry is defined %} |
| 81 | |
| 82 | {%- for name,registry in host.registry.iteritems() %} |
| 83 | |
Filip Pytloun | ffc82df | 2017-12-03 15:35:54 +0100 | [diff] [blame] | 84 | docker_{{ registry.get('address', name) }}_login: |
marco | 85b72a6 | 2016-07-07 13:08:33 +0200 | [diff] [blame] | 85 | cmd.run: |
Filip Pytloun | ffc82df | 2017-12-03 15:35:54 +0100 | [diff] [blame] | 86 | - name: 'docker login -u {{ registry.user }} -p {{ registry.password }}{% if registry.get('address') %} {{ registry.address }}{% endif %}' |
| 87 | - user: {{ registry.get('system_user', 'root') }} |
| 88 | - unless: grep {{ registry.address|default('https://index.docker.io/v1/') }} {{ salt['user.info'](registry.get('system_user', 'root')).home }}/.docker/config.json |
marco | 85b72a6 | 2016-07-07 13:08:33 +0200 | [diff] [blame] | 89 | |
| 90 | {%- endfor %} |
| 91 | |
| 92 | {%- endif %} |
Michael Kutý | 1764940 | 2016-03-19 23:57:43 +0100 | [diff] [blame] | 93 | |
Filip Pytloun | 9d0e8df | 2016-07-13 23:22:20 +0200 | [diff] [blame] | 94 | {%- endif %} |