Puppet Class: profile::druid::turnilo::proxy

Defined in:
modules/profile/manifests/druid/turnilo/proxy.pp

Overview

Class profile::druid::turnilo::proxy

Sets up an apache http proxy with WMF ldap authentication. To login, you must be in either the wmf or ops ldap group.

This class can only be used on the same host running turnilo.

Parameters

server_name

VirtualHost ServerName hostname to use.

turnilo_port

Port bound by the Turnilo nodejs service.

Parameters:

  • ldap_config (Hash) (defaults to: lookup('ldap', Hash, hash, {}))
  • turnilo_port (Integer) (defaults to: lookup('profile::turnilo::proxy::turnilo_port', { 'default_value' => 9091 }))
  • server_name (Stdlib::Fqdn) (defaults to: lookup('profile::turnilo::proxy::server_name', { 'default_value' =>'turnilo.wikimedia.org' }))


16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
# File 'modules/profile/manifests/druid/turnilo/proxy.pp', line 16

class profile::druid::turnilo::proxy(
    Hash $ldap_config         = lookup('ldap', Hash, hash, {}),
    Integer $turnilo_port     = lookup('profile::turnilo::proxy::turnilo_port', { 'default_value' => 9091 }),
    Stdlib::Fqdn $server_name = lookup('profile::turnilo::proxy::server_name', { 'default_value' =>'turnilo.wikimedia.org' }),
) {

    require ::profile::analytics::httpd::utils

    $proxypass = $passwords::ldap::production::proxypass
    $ldap_server_primary = $ldap_config['ro-server']
    $ldap_server_fallback = $ldap_config['ro-server-fallback']

    # Set up the VirtualHost
    httpd::site { $server_name:
        content => template('profile/druid/turnilo/proxy/turnilo.vhost.erb'),
        require => File['/var/www/health_check'],
    }
}