|
|
||
|---|---|---|
| roles | ||
| tests | ||
| .ansible-lint | ||
| .gitignore | ||
| .yamllint | ||
| ansible.cfg | ||
| flatcar.yml | ||
| mise.toml | ||
| README.md | ||
| requirements.yml | ||
ansible_playbook_flatcar
The Flatcar Docker hosts: bix, inara and mara.
These run Docker outside Kubernetes and had no metrics about it at all — no
container_*, no engine_daemon_* — so what they run could only be discovered
by logging in (DWA-65).
mise run setup # pinned roles, and the inventory repository
mise run lint
mise run validate # parses the playbook, contacts nothing
mise run check # dry run against the real inventory
mise run ping # reachability only
Why this is not a play inside ansible_playbook_baseline
baseline installs and removes packages on every host it touches. Flatcar has
no package manager, so these hosts are excluded there by design — the exclusion
is in the inventory, and that file says so. Adding a play for them to the same
repository would mean every run of one carrying the risk of the other.
fennec01 is not here
It is Flatcar as well, but it is the Kubernetes node: kubespray owns its
configuration, and its containers are already reported through kubelet's own
cAdvisor. The flatcar group is the three Docker hosts only.
What is deployed
container_metrics, pinned by tag — cAdvisor as a systemd unit, on port 9101
bound to each host's primary address. See that role's README for what it
deliberately leaves alone, notably daemon.json.