Our Foreman/Puppet server is a single host connected to two different networks: NetworkA and NetworkB. I’ve been provisioning hosts over NetworkA for a year. Now we need to be able to provision hosts from NetworkB.
The Foreman server is named foreman.example.org on the NetworkA interface. It’s called foreman-internal.example.org on the NetworkB interface.
It sounds like we want to use the Template Smart Proxy for this. So, I enabled this via the foreman-installer. Here is the config. I’m not sure if port 8000 is right, I simply used what’s in the example.
Here it comes - this is called multi-homing and I always say - if you can avoid it, avoid it.
Correct me if I am wrong @ekohl but our installer assumes just a single name. While it’s technically possible to have a host with 10 NICs connected to 10 networks with 10 IP addresses, we simply can’t support all those scenarios.
You can’t. Foreman has a federate design. There should be one Foreman with one DNS name and IP address and one or many smart-proxies that does the dirty job of relying all the communication from nodes and to backend services.
Everytime I hear “I have two subnets” I automatically respond “then deploy two smart proxies”. If you can change your infra, then do it.
Otherwise you are on your own. You’d probably need to regenerate X509 and add an alias there, create some kind of HTTPs proxy or other hack I don’t even know about, I haven’t tried this and you should really avoid it.