uset haproxy owner on cert only if haproxy is defines
We need to avoid setting owner group to haproxy on instalations without
haproxy enabled.
Change-Id: I7455819144bba8ce085bf99a61e8bbbfb99668f2
diff --git a/kubernetes/master/controller.sls b/kubernetes/master/controller.sls
index 9e79926..3ecab62 100644
--- a/kubernetes/master/controller.sls
+++ b/kubernetes/master/controller.sls
@@ -186,7 +186,11 @@
file.managed:
- source: salt://{{ master.get('cert_source','_certs/kubernetes') }}/{{ filename }}
- user: root
+ {%- if pillar.get('haproxy', {}).get('proxy', {}).get('enabled') %}
- group: haproxy
+ {%- else %}
+ - group: root
+ {%- endif %}
- mode: 640
- watch_in:
- service: master_services