Prepare for fqdn on internal endpoints in keystone catalog
* Adds hosts entries to each node to map
<openstack_control_address> to <openstack_service_hostname>.<domain>
* Adds appropriate DNS aliases to openstack API, barbican, novncproxy
certs
Change-Id: I8fbd0f03a7c60291c66c5fd686052d18d4edc426
Related-Prod: PROD-24975
diff --git a/salt/minion/cert/barbican.yml b/salt/minion/cert/barbican.yml
index b53d07d..eb38c44 100644
--- a/salt/minion/cert/barbican.yml
+++ b/salt/minion/cert/barbican.yml
@@ -2,7 +2,7 @@
_param:
salt_minion_ca_host: kmn01.${_param:cluster_domain}
salt_minion_ca_authority: salt_master_ca
- barbican_cert_alternative_names: IP:127.0.0.1,IP:${_param:cluster_local_address},IP:${_param:cluster_vip_address},DNS:${linux:system:name},DNS:${linux:network:fqdn},DNS:${_param:cluster_vip_address}
+ barbican_cert_alternative_names: IP:127.0.0.1,IP:${_param:cluster_local_address},IP:${_param:cluster_vip_address},DNS:${linux:system:name},DNS:${linux:network:fqdn},DNS:${_param:cluster_vip_address},DNS:${_param:openstack_service_host}
salt:
minion:
cert: