This change updates the galera deployment options for kolide which will
allow it to co-exist on the same host as an elasticsearch environment.
Because the galera cluster for kolide is on the backend, and not user
facing the installation and setup of a VIP for the backend galera
cluster is not needed.
Change-Id: Ia5f581ebb028bf35c00dc7606b0eb1a12ad54670
Signed-off-by: Kevin Carter <kevin.carter@rackspace.com>
The osquery tooling needed a little work to be fully automated and
repeatable. This change tunes up the tools and makes the entire
deployment process multi-node capable and repeatable.
The osquery role was vendored because of bugs within their use of aarmor
profiles and there was no way to disable them.
The fleet use of commands for ssl creation have been removed. The ssl
modules are now being used to generate all of the certificates.
New pre-tasks have been added to check for required variables. If the
required variables are not set the playbooks will fail early and notify
the user of the issue.
Change-Id: I88c2b40ed9d9a88a39bdf07b0dce2900fda50151
Signed-off-by: Kevin Carter <kevin.carter@rackspace.com>
* move playbooks to roles
* update documentation
* update haproxy
- set 6443 as default port for kolide fleet
* add galera support
Change-Id: I2fdefcb6bec98486c16b54cf33e2b7940b88d50b