Add option to force encryption of all health checks over SSL

This is required if a server only speaks HTTPS

Change-Id: Ib99eed929dfded2bbf11bc1a54c4184edafe8452
This commit is contained in:
James Gibson 2021-12-06 17:22:43 +00:00
parent f8b7ce18a2
commit 33dbb82bbb
1 changed files with 6 additions and 0 deletions

View File

@ -127,6 +127,9 @@ backend {{ item.service.haproxy_service_name }}-back
{% set _ = entry.append(item.service.backend_fall|default(item.service.haproxy_backend_nodes | count | string)) %}
{% if item.service.haproxy_backend_ssl | default(False) %}
{% set _ = entry.append("ssl") %}
{% if item.service.haproxy_backend_ssl_check | default(item.service.haproxy_backend_ssl) %}
{% set _ = entry.append("check-ssl") %}
{% endif %}
{% if item.service.haproxy_backend_ca %}
{% set _ = entry.append("ca-file") %}
{% set _ = entry.append(item.service.haproxy_backend_ca) %}
@ -165,6 +168,9 @@ backend {{ item.service.haproxy_service_name }}-back
{% set _ = entry.append("backup") %}
{% if item.service.haproxy_backend_ssl | default(False) %}
{% set _ = entry.append("ssl") %}
{% if item.service.haproxy_backend_ssl_check | default(item.service.haproxy_backend_ssl) %}
{% set _ = entry.append("check-ssl") %}
{% endif %}
{% if item.service.haproxy_backend_ca %}
{% set _ = entry.append("ca-file") %}
{% set _ = entry.append(item.service.haproxy_backend_ca) %}