summaryrefslogtreecommitdiff
path: root/puppet/hiera/hiera.yaml
diff options
context:
space:
mode:
Diffstat (limited to 'puppet/hiera/hiera.yaml')
-rw-r--r--puppet/hiera/hiera.yaml33
1 files changed, 33 insertions, 0 deletions
diff --git a/puppet/hiera/hiera.yaml b/puppet/hiera/hiera.yaml
new file mode 100644
index 0000000..a8ae792
--- /dev/null
+++ b/puppet/hiera/hiera.yaml
@@ -0,0 +1,33 @@
+---
+:backends:
+ - yaml
+:yaml:
+ # Right now vagrant and puppet are not fully supporting
+ # a relative datadir. For it to work, we were forced to
+ # create a manifests/hiera symlink. This should be
+ # reconsidered in the future.
+ #
+ # See http://docs.vagrantup.com/v2/provisioning/puppet_apply.html
+ :datadir: '%{settings::confdir}/hiera'
+:hierarchy:
+ #
+ # Put in the secrets folder all sensitive information that
+ # wont be spread into every system if you're using the Hydra Suite.
+ #
+ # We also recommend to leave only encrypted data in your hiera config.
+ #
+ - 'secrets/node/%{::clientcert}'
+ - 'secrets/role/%{::nodo::role}'
+ - 'secrets/location/%{::nodo::location}'
+ - 'secrets/domain/%{::domain}'
+
+ #
+ # All other stuff goes in regular YAML files.
+ #
+ - 'node/%{::clientcert}'
+ - 'role/%{::nodo::role}'
+ - 'virtual/%{::virtual}'
+ - 'location/%{::nodo::location}'
+ - 'domain/%{::domain}'
+ - bootstrap
+ - common