add tls tasks
This commit is contained in:
parent
34536084af
commit
f9ae90bbc4
|
@ -3,6 +3,9 @@
|
||||||
- import_tasks: storage.yml
|
- import_tasks: storage.yml
|
||||||
when: matrix_lvm_enabled
|
when: matrix_lvm_enabled
|
||||||
- include_tasks: install.yml
|
- include_tasks: install.yml
|
||||||
|
- import_tasks: tls.yml
|
||||||
|
when: matrix_tls_enabled
|
||||||
|
tags: tls_renewal
|
||||||
- import_tasks: nginx.yml
|
- import_tasks: nginx.yml
|
||||||
when: matrix_nginx_vhost_enabled
|
when: matrix_nginx_vhost_enabled
|
||||||
- include_tasks: post_tasks.yml
|
- include_tasks: post_tasks.yml
|
||||||
|
|
|
@ -0,0 +1,30 @@
|
||||||
|
---
|
||||||
|
- block:
|
||||||
|
- name: Create tls folder structure
|
||||||
|
file:
|
||||||
|
path: "{{ item }}"
|
||||||
|
state: directory
|
||||||
|
owner: "{{ matrix_user }}"
|
||||||
|
group: "{{ matrix_group }}"
|
||||||
|
recurse: True
|
||||||
|
with_items:
|
||||||
|
- "{{ matrix_tls_cert_path | dirname }}"
|
||||||
|
- "{{ matrix_tls_key_path | dirname }}"
|
||||||
|
become: True
|
||||||
|
become_user: root
|
||||||
|
|
||||||
|
- block:
|
||||||
|
- name: Copy certs and private key
|
||||||
|
copy:
|
||||||
|
src: "{{ item.src }}"
|
||||||
|
dest: "{{ item.dest }}"
|
||||||
|
mode: "{{ item.mode }}"
|
||||||
|
with_items:
|
||||||
|
- { src: "{{ matrix_tls_key_source }}", dest: '{{ matrix_tls_key_path }}', mode: '0600' }
|
||||||
|
- { src: "{{ matrix_tls_cert_source }}", dest: '{{ matrix_tls_cert_path }}', mode: '0750' }
|
||||||
|
loop_control:
|
||||||
|
label: "{{ item.dest }}"
|
||||||
|
register: __matrix_certs_file
|
||||||
|
when: matrix_tls_source_use_files
|
||||||
|
become: True
|
||||||
|
become_user: "{{ matrix_user }}"
|
Loading…
Reference in New Issue