Skip to content

refactor: credential types inject env vars, orchestrator playbook - #94

Closed
tech2734 wants to merge 4 commits into
v2from
feature/aap-seed-update
Closed

tech2734 wants to merge 4 commits into
v2from
feature/aap-seed-update

Conversation

@tech2734

Copy link
Copy Markdown

Summary

Refactors aap_seed credential types to inject environment variables and extra vars directly, adds an orchestrator playbook, and updates downstream roles.

Changes

aap_seed

  • Custom credential types now inject VMWARE_* / K8S_AUTH_* environment variables
  • source_name / target_name are injected as extra vars by credentials (removed from survey)
  • EE organization is now optional — omitted by default for global EEs, configurable via aap_execution_environment_organization

mtv_provider / mtv_maps

  • Added VMWARE_* env var cascade with fallback to legacy mf_source_* variables
  • Updated validate tasks, templates, and argument specs

Orchestrator (vmf_orchestrate.yml)

  • New playbook: Phase 1 seeds AAP, Phase 2 launches MTV Provider jobs for each source-target pair
  • Respects aap_hosts on target clusters to scope which AAP controller handles which pairs

Files Changed

  • roles/aap_seed/defaults/main.yml, meta/argument_specs.yml, tasks/build_credentials.yml, templates
  • roles/mtv_provider/defaults/main.yml, meta/argument_specs.yml, tasks/validate.yml, templates/provider_secret.yml.j2, tasks/rescue_provider.yml
  • roles/mtv_maps/tasks/validate.yml
  • playbooks/vmf_orchestrate.yml (new)
  • inventory/inventory-sample.yml

tech2734 and others added 4 commits September 17, 2026 15:52
- New custom OCP target credential type (Migration Factory - Target
  Environment) injects K8S_AUTH_* env vars and target_name extra var
- Updated source credential type injects VMWARE_* env vars and
  source_name extra var instead of mf_source_* extra vars
- Renamed insecure_skip_tls_verify to validate_certs (inverted)
- Removed source_name/target_name from common survey spec
- Removed survey_enabled from provider/maps/plans job templates
- Added VMWARE_* env var cascade to mtv_provider role defaults
- Updated mtv_provider to use role-prefixed vars throughout
- Added orchestrator playbook (vmf_orchestrate.yml)

Co-authored-by: Cursor <cursoragent@cursor.com>
Co-authored-by: Cursor <cursoragent@cursor.com>
Co-authored-by: Cursor <cursoragent@cursor.com>
- Add no_log to job_launch task (no-log-password)
- Add noqa for syntax-check[unknown-module] (ansible.controller not in CI)
- Regenerate README docs via docsible

Co-authored-by: Cursor <cursoragent@cursor.com>
@tech2734
tech2734 force-pushed the feature/aap-seed-update branch from 8d4ee57 to b34c16c Compare September 18, 2026 12:27
@sabre1041 sabre1041 closed this Sep 18, 2026
@sabre1041
sabre1041 deleted the feature/aap-seed-update branch September 18, 2026 18:55
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants