Changeset 1eb53aba in darkpeak-services


Ignore:
Timestamp:
Jul 21, 2018, 2:19:30 PM (2 years ago)
Author:
Caolan McMahon <caolan.mcmahon@…>
Branches:
ansible, keycloak, master, matrix, pleroma
Children:
c318965a
Parents:
86e5c57f
Message:

move certbot tasks into tls role #7

Location:
roles
Files:
1 deleted
1 edited

Legend:

Unmodified
Added
Removed
  • roles/tls/tasks/configure-tls-cert.yml

    r86e5c57f r1eb53aba  
    11# If a service requires read access to a cert, the system user that
    22# the service runs as should be a member of the "ssl-cert" group.
     3
     4- name: Add stretch-backports
     5  apt_repository:
     6    repo: "deb http://mirror.bytemark.co.uk/debian stretch-backports main"
    37
    48- name: Install ssl-cert package
     
    812    update_cache: yes
    913    cache_valid_time: 10800   # 3 hours
     14
     15- name: Install CertBot from backports
     16  apt:
     17    name: certbot
     18    default_release: stretch-backports
     19    state: present
     20    update_cache: yes
     21    cache_valid_time: 10800   # 3 hours
     22
     23- name: Create certbot www directory
     24  file:
     25    path: /usr/share/certbot
     26    owner: root
     27    group: www-data
     28    state: directory
     29    mode: 0755
    1030
    1131- name: Ensure directory for TLS certs
Note: See TracChangeset for help on using the changeset viewer.