add tls tasks
This commit is contained in:
parent
34536084af
commit
f9ae90bbc4
|
@ -3,6 +3,9 @@
|
|||
- import_tasks: storage.yml
|
||||
when: matrix_lvm_enabled
|
||||
- include_tasks: install.yml
|
||||
- import_tasks: tls.yml
|
||||
when: matrix_tls_enabled
|
||||
tags: tls_renewal
|
||||
- import_tasks: nginx.yml
|
||||
when: matrix_nginx_vhost_enabled
|
||||
- include_tasks: post_tasks.yml
|
||||
|
|
|
@ -0,0 +1,30 @@
|
|||
---
|
||||
- block:
|
||||
- name: Create tls folder structure
|
||||
file:
|
||||
path: "{{ item }}"
|
||||
state: directory
|
||||
owner: "{{ matrix_user }}"
|
||||
group: "{{ matrix_group }}"
|
||||
recurse: True
|
||||
with_items:
|
||||
- "{{ matrix_tls_cert_path | dirname }}"
|
||||
- "{{ matrix_tls_key_path | dirname }}"
|
||||
become: True
|
||||
become_user: root
|
||||
|
||||
- block:
|
||||
- name: Copy certs and private key
|
||||
copy:
|
||||
src: "{{ item.src }}"
|
||||
dest: "{{ item.dest }}"
|
||||
mode: "{{ item.mode }}"
|
||||
with_items:
|
||||
- { src: "{{ matrix_tls_key_source }}", dest: '{{ matrix_tls_key_path }}', mode: '0600' }
|
||||
- { src: "{{ matrix_tls_cert_source }}", dest: '{{ matrix_tls_cert_path }}', mode: '0750' }
|
||||
loop_control:
|
||||
label: "{{ item.dest }}"
|
||||
register: __matrix_certs_file
|
||||
when: matrix_tls_source_use_files
|
||||
become: True
|
||||
become_user: "{{ matrix_user }}"
|
Loading…
Reference in New Issue