Skip to content

Commit db0d370

Browse files
authored
Create RBAC policies before routers
RBAC policy may be used to set a network as external, and routers may only be connected to external networks. If an RBAC policy affects a network to be added to a router, ensure that the policy is applied before the router is created.
1 parent 685b5bf commit db0d370

File tree

1 file changed

+4
-4
lines changed

1 file changed

+4
-4
lines changed

roles/os_networks/tasks/networks.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -62,6 +62,10 @@
6262
- "{{ os_networks }}"
6363
- subnets
6464

65+
- name: Include rbac.yml
66+
ansible.builtin.include_tasks: rbac.yml
67+
when: os_networks_rbac | length > 0
68+
6569
# - name: Ensure router is registered with neutron
6670
# openstack.cloud.router:
6771
# auth_type: "{{ os_networks_auth_type }}"
@@ -124,7 +128,3 @@
124128
with_subelements:
125129
- "{{ os_networks_security_groups }}"
126130
- rules
127-
128-
- name: Include rbac.yml
129-
ansible.builtin.include_tasks: rbac.yml
130-
when: os_networks_rbac | length > 0

0 commit comments

Comments
 (0)