Skip to content
Snippets Groups Projects
Commit 8b20f9d3 authored by Antoine SCHILDKNECHT's avatar Antoine SCHILDKNECHT
Browse files

Merge branch 't36656-certbot-hook' into 'main'

Remove useless nginx test in post-hook | refs #36656

See merge request sys/ansible-public!27
parents 110c87ff fbe17dcb
No related branches found
No related tags found
No related merge requests found
Showing
with 12 additions and 75 deletions
---
- name: MEDIACACHE
hosts: mediacache
tags: mediacache
......@@ -14,8 +13,8 @@
notify: restart nginx on mediaservers
ansible.builtin.lineinfile:
path: /etc/nginx/conf.d/mediaserver-securelink.conf
line: "{{'\t'}}{{ securelink_ip }} 1;" # noqa: no-tabs
insertafter: '^geo'
line: "{{'\t'}}{{ securelink_ip }} 1;" # noqa no-tabs jinja[spacing]
insertafter: ^geo
delegate_to: "{{ item }}"
delegate_facts: true
loop: "{{ groups['mediaserver'] }}"
......@@ -28,5 +27,3 @@
delegate_to: "{{ item }}"
delegate_facts: true
loop: "{{ groups['mediaserver'] }}"
...
#!/usr/bin/env ansible-playbook
---
- name: MEDIACACHE
hosts: mediacache
tags: mediacache
......@@ -35,5 +34,3 @@
- import_playbook: deploy-minimal.yml
tags: mediacache
...
#!/usr/bin/env ansible-playbook
---
- name: MEDIAIMPORT
hosts: mediaimport
tags: mediaimport
......@@ -15,5 +14,3 @@
when: proxy_apply | d(false)
ansible.builtin.include_role:
name: proxy
...
#!/usr/bin/env ansible-playbook
---
- name: MEDIASERVER
hosts: mediaserver
tags: mediaserver
......@@ -19,5 +18,3 @@
when: proxy_apply | d(false)
ansible.builtin.include_role:
name: proxy
...
#!/usr/bin/env ansible-playbook
---
- name: MEDIAVAULT
hosts: mediavault
tags: mediavault
tasks:
- include_tasks: ressources/add_backup_task.yml
loop: "{{ mvt_backups }}"
...
- include_tasks: ressources/add_backup_task.yml
loop: "{{ mvt_backups }}"
#!/usr/bin/env ansible-playbook
---
- name: MEDIAVAULT
hosts: mediavault
tags: mediavault
......@@ -15,5 +14,3 @@
when: proxy_apply | d(false)
ansible.builtin.include_role:
name: proxy
...
---
- name: get {{ item.name }} backup information
stat: path={{ item.dest }}/backup.marker
register: backup_marker
......@@ -7,5 +6,3 @@
- name: create {{ item.name }} backup
ansible.builtin.shell: mediavaultctl add --backup-name "{{ item.name }}" --source-folder "{{ item.source }}" --dest-folder "{{ item.dest }}"
when: not backup_marker.stat.exists
...
#!/usr/bin/env ansible-playbook
---
- name: MEDIAWORKER
hosts: mediaworker
tags: mediaworker
......@@ -15,5 +14,3 @@
when: proxy_apply | d(false)
ansible.builtin.include_role:
name: proxy
...
#!/usr/bin/env ansible-playbook
---
- name: MIRIS MANAGER
hosts: mirismanager
tags: mirismanager
......@@ -19,5 +18,3 @@
when: proxy_apply | d(false)
ansible.builtin.include_role:
name: proxy
...
#!/usr/bin/env ansible-playbook
---
- import_playbook: msmonitor.yml
tags: monitor
- import_playbook: munin-node.yml
tags: monitor
- import_playbook: munin-server.yml
tags: monitor
...
#!/usr/bin/env ansible-playbook
---
- name: msmonitor
hosts: msmonitor
tags: munin
roles:
- munin/msmonitor
...
#!/usr/bin/env ansible-playbook
---
- name: Munin node
hosts: munin_node
tags: munin
roles:
- munin/munin-node
...
#!/usr/bin/env ansible-playbook
---
- name: Munin server
hosts: munin_server
tags: munin
......@@ -12,5 +11,3 @@
with_items: "{{ groups['munin_node'] }}"
roles:
- munin/munin-server
...
#!/usr/bin/env ansible-playbook
---
- name: NETCAPTURE
hosts: netcapture
tags: netcapture
......@@ -15,5 +14,3 @@
when: proxy_apply | d(false)
ansible.builtin.include_role:
name: proxy
...
---
- name: NETCAPTURE
hosts: netcapture
gather_facts: false
......@@ -7,5 +6,3 @@
roles:
- lxc
- netcapture
...
---
- name: NETCAPTURE
hosts: netcapture
tags: netcapture
......@@ -15,8 +14,7 @@
server_ferm_global_settings:
tasks:
- name: firewall
when: ((server_firewall_enabled is defined) and server_firewall_enabled)
or (server_firewall_enabled is undefined)
when: ((server_firewall_enabled is defined) and server_firewall_enabled) or (server_firewall_enabled is undefined)
vars:
ferm_rules_filename: "{{ server_ferm_rules_filename }}"
ferm_input_rules: "{{ server_ferm_input_rules }}"
......@@ -27,5 +25,3 @@
- import_playbook: deploy-minimal.yml
tags: netcapture
...
#!/usr/bin/env ansible-playbook
---
- name: POSTFIX
hosts: all
tags: all
roles:
- conf
- postfix
...
#!/usr/bin/env ansible-playbook
---
- name: POSTGRES HA
hosts: postgres
tags: postgres
......@@ -26,7 +25,7 @@
- name: POSTGRES HA CLIENTS
hosts: mediaserver
tags: ['postgres', 'mediaserver']
tags: [postgres, mediaserver]
pre_tasks:
- name: check that haproxy is configured
ansible.builtin.assert:
......@@ -34,5 +33,3 @@
quiet: true
roles:
- haproxy
...
#!/usr/bin/env ansible-playbook
---
- import_playbook: postgres-maintenance/rephacheck_status.yml
tags: ['always']
tags: [always]
- import_playbook: postgres-maintenance/fenced_to_standby.yml
tags: ['never', 'fenced-to-standby']
tags: [never, fenced-to-standby]
- import_playbook: postgres-maintenance/standby_to_primary.yml
tags: ['never', 'standby-to-primary']
tags: [never, standby-to-primary]
- import_playbook: postgres-maintenance/restart_repmgrd.yml
tags: ['never', 'restart-repmgrd', 'standby-to-primary']
...
tags: [never, restart-repmgrd, standby-to-primary]
......@@ -5,7 +5,7 @@
tasks:
- name: fail if node status if not fenced
ansible.builtin.fail:
msg: "Current status {{ rephacheck['stdout'] }} must be fenced."
msg: Current status {{ rephacheck['stdout'] }} must be fenced.
when: rephacheck['stdout'] != "fenced"
- name: stop postgresql
......@@ -39,9 +39,7 @@
when: copy_from_primary is succeeded
- name: register node as standby
ansible.builtin.command: "repmgr -f /etc/postgresql/13/main/repmgr.conf --force --verbose standby register"
ansible.builtin.command: repmgr -f /etc/postgresql/13/main/repmgr.conf --force --verbose standby register
become: true
become_user: postgres
when: copy_from_primary is succeeded
...
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment