fix indentation
This commit is contained in:
parent
e9530357da
commit
4798787883
|
@ -1,30 +1,30 @@
|
|||
---
|
||||
- block:
|
||||
- name: Copy certs and private key to nginx proxy (content)
|
||||
copy:
|
||||
content: "{{ item.src }}"
|
||||
dest: "{{ item.dest }}"
|
||||
mode: "{{ item.mode }}"
|
||||
with_items:
|
||||
- { src: "{{ gitea_tls_key_source }}", dest: '/etc/pki/tls/private/{{ gitea_nginx_tls_key_file }}', mode: '0600' }
|
||||
- { src: "{{ gitea_tls_cert_source }}", dest: '/etc/pki/tls/certs/{{ gitea_nginx_tls_cert_file }}', mode: '0750' }
|
||||
loop_control:
|
||||
label: "{{ item.dest }}"
|
||||
notify: __nginx_reload
|
||||
when: gitea_tls_source_use_content
|
||||
- name: Copy certs and private key to nginx proxy (content)
|
||||
copy:
|
||||
content: "{{ item.src }}"
|
||||
dest: "{{ item.dest }}"
|
||||
mode: "{{ item.mode }}"
|
||||
with_items:
|
||||
- { src: "{{ gitea_tls_key_source }}", dest: '/etc/pki/tls/private/{{ gitea_nginx_tls_key_file }}', mode: '0600' }
|
||||
- { src: "{{ gitea_tls_cert_source }}", dest: '/etc/pki/tls/certs/{{ gitea_nginx_tls_cert_file }}', mode: '0750' }
|
||||
loop_control:
|
||||
label: "{{ item.dest }}"
|
||||
notify: __nginx_reload
|
||||
when: gitea_tls_source_use_content
|
||||
|
||||
- name: Copy certs and private key to nginx proxy (files)
|
||||
copy:
|
||||
src: "{{ item.src }}"
|
||||
dest: "{{ item.dest }}"
|
||||
mode: "{{ item.mode }}"
|
||||
with_items:
|
||||
- { src: "{{ gitea_tls_key_source }}", dest: '/etc/pki/tls/private/{{ gitea_nginx_tls_key_file }}', mode: '0600' }
|
||||
- { src: "{{ gitea_tls_cert_source }}", dest: '/etc/pki/tls/certs/{{ gitea_nginx_tls_cert_file }}', mode: '0750' }
|
||||
loop_control:
|
||||
label: "{{ item.dest }}"
|
||||
notify: __nginx_reload
|
||||
when: gitea_tls_source_use_files
|
||||
- name: Copy certs and private key to nginx proxy (files)
|
||||
copy:
|
||||
src: "{{ item.src }}"
|
||||
dest: "{{ item.dest }}"
|
||||
mode: "{{ item.mode }}"
|
||||
with_items:
|
||||
- { src: "{{ gitea_tls_key_source }}", dest: '/etc/pki/tls/private/{{ gitea_nginx_tls_key_file }}', mode: '0600' }
|
||||
- { src: "{{ gitea_tls_cert_source }}", dest: '/etc/pki/tls/certs/{{ gitea_nginx_tls_cert_file }}', mode: '0750' }
|
||||
loop_control:
|
||||
label: "{{ item.dest }}"
|
||||
notify: __nginx_reload
|
||||
when: gitea_tls_source_use_files
|
||||
delegate_to: "{{ gitea_nginx_server }}"
|
||||
when: gitea_nginx_tls_enabled
|
||||
become: True
|
||||
|
@ -32,31 +32,31 @@
|
|||
tags: tls_renewal
|
||||
|
||||
- block:
|
||||
- name: Add vhost configuration file
|
||||
template:
|
||||
src: nginx/vhost.j2
|
||||
dest: "{{ gitea_nginx_vhost_dir }}/gitea"
|
||||
owner: root
|
||||
group: root
|
||||
mode: 0640
|
||||
notify: __nginx_reload
|
||||
- name: Add vhost configuration file
|
||||
template:
|
||||
src: nginx/vhost.j2
|
||||
dest: "{{ gitea_nginx_vhost_dir }}/gitea"
|
||||
owner: root
|
||||
group: root
|
||||
mode: 0640
|
||||
notify: __nginx_reload
|
||||
|
||||
- name: Enable gitea vhost
|
||||
file:
|
||||
src: "{{ gitea_nginx_vhost_dir }}/gitea"
|
||||
dest: "{{ gitea_nginx_vhost_symlink }}/gitea"
|
||||
owner: root
|
||||
group: root
|
||||
state: link
|
||||
notify: __nginx_reload
|
||||
when: gitea_nginx_vhost_symlink is defined
|
||||
- name: Enable gitea vhost
|
||||
file:
|
||||
src: "{{ gitea_nginx_vhost_dir }}/gitea"
|
||||
dest: "{{ gitea_nginx_vhost_symlink }}/gitea"
|
||||
owner: root
|
||||
group: root
|
||||
state: link
|
||||
notify: __nginx_reload
|
||||
when: gitea_nginx_vhost_symlink is defined
|
||||
|
||||
- name: Open ports in iptables
|
||||
iptables_raw:
|
||||
name: allow_gitea_nginx_proxy
|
||||
state: present
|
||||
rules: '-A OUTPUT -m state --state NEW -p tcp -d {{ gitea_bind_ip }} --dport {{ gitea_bind_port }} -j ACCEPT'
|
||||
when: gitea_nginx_iptables_enabled
|
||||
- name: Open ports in iptables
|
||||
iptables_raw:
|
||||
name: allow_gitea_nginx_proxy
|
||||
state: present
|
||||
rules: '-A OUTPUT -m state --state NEW -p tcp -d {{ gitea_bind_ip }} --dport {{ gitea_bind_port }} -j ACCEPT'
|
||||
when: gitea_nginx_iptables_enabled
|
||||
delegate_to: "{{ gitea_nginx_server }}"
|
||||
become: True
|
||||
become_user: root
|
||||
|
|
Loading…
Reference in New Issue