I cannot really try on my real environment, because there we "solved" the issue by running the containers-lxc-create.yml playbook limited to Keystone containers, and that works. Our custom CA certificates are therefore correctly deployed already.
So instead I tried in a test AIO environment, first using Xena, then master. In Xena I think the variable name (pki_install_ca_) may need to be different. But no matter what, I haven't been able to make it work, either in Xena or master - tried running the certificate-*.yml playbooks as well as containers-lxc-create.yml.
What am I missing? Happy to try again if you see what I'm doing wrong.
Hello Dmitriy,
I cannot really try on my real environment, because there we "solved" the issue by running the containers- lxc-create. yml playbook limited to Keystone containers, and that works. Our custom CA certificates are therefore correctly deployed already.
So instead I tried in a test AIO environment, first using Xena, then master. In Xena I think the variable name (pki_install_ca_) may need to be different. But no matter what, I haven't been able to make it work, either in Xena or master - tried running the certificate-*.yml playbooks as well as containers- lxc-create. yml.
What am I missing? Happy to try again if you see what I'm doing wrong.