mirror of
https://github.com/kevinveenbirkenbach/computer-playbook.git
synced 2025-08-29 15:06:26 +02:00
Refactored native-
This commit is contained in:
@@ -1,3 +1,3 @@
|
||||
dependencies:
|
||||
- native-python-pip
|
||||
- python-pip
|
||||
- systemd_notifier
|
||||
|
@@ -1,4 +1,4 @@
|
||||
# role native-backups-consumer
|
||||
# role backups-consumer
|
||||
|
||||
## goal
|
||||
This script allows to pull backups from a remote server.
|
@@ -1,4 +1,4 @@
|
||||
dependencies:
|
||||
- native-git
|
||||
- git
|
||||
- systemd_notifier
|
||||
- backups-cleanup-timer
|
@@ -1,2 +1,2 @@
|
||||
dependencies:
|
||||
- native-sshd
|
||||
- sshd
|
@@ -1,4 +1,4 @@
|
||||
# role native-backups-provider-user
|
||||
# role backups-provider-user
|
||||
User for backups
|
||||
|
||||
## todo
|
@@ -1,4 +1,4 @@
|
||||
# role native-backups-provider-host
|
||||
# role backups-provider-host
|
||||
|
||||
## todo
|
||||
- add full system backup
|
@@ -1,3 +1,3 @@
|
||||
dependencies:
|
||||
- native-backups-provider-user
|
||||
- backups-provider-user
|
||||
- backups-cleanup-timer
|
@@ -1,3 +1,3 @@
|
||||
dependencies:
|
||||
- native-nginx
|
||||
- nginx
|
||||
- systemd_notifier
|
@@ -1,2 +1,2 @@
|
||||
dependencies:
|
||||
- native-docker-reverse-proxy
|
||||
- docker-reverse-proxy
|
||||
|
@@ -3,7 +3,7 @@
|
||||
command: certbot certonly --agree-tos --email {{administrator_email}} --non-interactive --webroot -w /var/lib/letsencrypt/ -d {{domain}}
|
||||
|
||||
- name: configure {{domain}}.conf
|
||||
template: src=roles/native-docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
template: src=roles/docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
notify: restart nginx
|
||||
|
||||
- name: register directory
|
||||
|
@@ -1,2 +1,2 @@
|
||||
dependencies:
|
||||
- native-docker-reverse-proxy
|
||||
- docker-reverse-proxy
|
||||
|
@@ -7,13 +7,13 @@
|
||||
|
||||
- name: configure {{domain}}.conf
|
||||
template:
|
||||
src: roles/native-docker-reverse-proxy/templates/domain.conf.j2
|
||||
src: roles/docker-reverse-proxy/templates/domain.conf.j2
|
||||
dest: /etc/nginx/conf.d/{{domain}}.conf
|
||||
notify: restart nginx
|
||||
|
||||
#- name: configure {{ mail_interface_domain }}.conf
|
||||
# template:
|
||||
# src: roles/native-docker-reverse-proxy/templates/domain.conf.j2
|
||||
# src: roles/docker-reverse-proxy/templates/domain.conf.j2
|
||||
# dest: /etc/nginx/conf.d/{{ mail_interface_domain }}.conf
|
||||
# vars:
|
||||
# http_port: "{{ mail_interface_http_port }}"
|
||||
|
@@ -1,2 +1,2 @@
|
||||
dependencies:
|
||||
- native-docker-reverse-proxy
|
||||
- docker-reverse-proxy
|
||||
|
@@ -1,2 +1,2 @@
|
||||
# native-docker-compose-restart-unhealthy
|
||||
# docker-compose-restart-unhealthy
|
||||
docker-compose restart for containers which are unhealty or excited
|
@@ -1,2 +1,2 @@
|
||||
dependencies:
|
||||
- native-docker-reverse-proxy
|
||||
- docker-reverse-proxy
|
||||
|
@@ -4,7 +4,7 @@
|
||||
command: certbot certonly --agree-tos --email {{administrator_email}} --non-interactive --webroot -w /var/lib/letsencrypt/ -d {{domain}}
|
||||
|
||||
- name: configure {{domain}}.conf
|
||||
template: src=roles/native-docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
template: src=roles/docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
notify: restart nginx
|
||||
|
||||
- name: create elasticsearch-sysctl.conf
|
||||
|
@@ -1,2 +1,2 @@
|
||||
dependencies:
|
||||
- native-docker-reverse-proxy
|
||||
- docker-reverse-proxy
|
||||
|
@@ -3,7 +3,7 @@
|
||||
command: certbot certonly --agree-tos --email {{administrator_email}} --non-interactive --webroot -w /var/lib/letsencrypt/ -d {{domain}}
|
||||
|
||||
- name: configure {{domain}}.conf
|
||||
template: src=roles/native-docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
template: src=roles/docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
notify: restart nginx
|
||||
|
||||
- name: "create {{docker_compose_path}}"
|
||||
|
@@ -1,2 +1,2 @@
|
||||
dependencies:
|
||||
- native-docker-reverse-proxy
|
||||
- docker-reverse-proxy
|
||||
|
@@ -3,7 +3,7 @@
|
||||
command: certbot certonly --agree-tos --email {{administrator_email}} --non-interactive --webroot -w /var/lib/letsencrypt/ -d {{domain}}
|
||||
|
||||
- name: configure {{domain}} https
|
||||
template: src=roles/native-docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
template: src=roles/docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
notify: restart nginx
|
||||
|
||||
- name: "create {{path_docker_compose_folder}}"
|
||||
|
@@ -1,2 +1,2 @@
|
||||
dependencies:
|
||||
- native-docker-reverse-proxy
|
||||
- docker-reverse-proxy
|
||||
|
@@ -2,7 +2,7 @@
|
||||
command: certbot certonly --agree-tos --email {{administrator_email}} --non-interactive --webroot -w /var/lib/letsencrypt/ -d {{domain}}
|
||||
|
||||
- name: configure {{domain}}.conf
|
||||
template: src=roles/native-docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
template: src=roles/docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
notify: restart nginx
|
||||
|
||||
- name: "docker jenkins"
|
||||
|
@@ -1,2 +1,2 @@
|
||||
dependencies:
|
||||
- native-docker-reverse-proxy
|
||||
- docker-reverse-proxy
|
||||
|
@@ -3,7 +3,7 @@
|
||||
command: certbot certonly --agree-tos --email {{administrator_email}} --non-interactive --webroot -w /var/lib/letsencrypt/ -d {{domain}}
|
||||
|
||||
- name: configure {{domain}}.conf
|
||||
template: src=roles/native-docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
template: src=roles/docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
notify: restart nginx
|
||||
|
||||
- name: "create {{path_docker_compose_folder}}"
|
||||
|
@@ -1,3 +1,3 @@
|
||||
dependencies:
|
||||
- native-docker-reverse-proxy
|
||||
- docker-reverse-proxy
|
||||
- systemd_notifier
|
||||
|
@@ -6,7 +6,7 @@
|
||||
- name: configure {{domain}}.conf
|
||||
vars:
|
||||
client_max_body_size: "31M"
|
||||
template: src=roles/native-docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
template: src=roles/docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
notify: restart nginx
|
||||
|
||||
- name: "create {{path_docker_compose_files}}mailu"
|
||||
|
@@ -1,2 +1,2 @@
|
||||
dependencies:
|
||||
- native-docker-reverse-proxy
|
||||
- docker-reverse-proxy
|
||||
|
@@ -6,7 +6,7 @@ map $http_upgrade $connection_upgrade {
|
||||
server {
|
||||
server_name {{domain}};
|
||||
|
||||
{% include 'roles/native-letsencrypt/templates/ssl_header.j2' %}
|
||||
{% include 'roles/letsencrypt/templates/ssl_header.j2' %}
|
||||
|
||||
keepalive_timeout 70;
|
||||
sendfile on;
|
||||
@@ -23,7 +23,7 @@ server {
|
||||
|
||||
add_header Strict-Transport-Security "max-age=31536000";
|
||||
|
||||
{% include 'roles/native-docker-reverse-proxy/templates/proxy_pass.conf.j2' %}
|
||||
{% include 'roles/docker-reverse-proxy/templates/proxy_pass.conf.j2' %}
|
||||
|
||||
location /api/v1/streaming {
|
||||
proxy_set_header Host $host;
|
||||
|
@@ -1,2 +1,2 @@
|
||||
dependencies:
|
||||
- native-docker-reverse-proxy
|
||||
- docker-reverse-proxy
|
||||
|
@@ -2,7 +2,7 @@
|
||||
command: certbot certonly --agree-tos --email {{administrator_email}} --non-interactive --webroot -w /var/lib/letsencrypt/ -d {{domain}}
|
||||
|
||||
- name: configure {{domain}}.conf
|
||||
template: src=roles/native-docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
template: src=roles/docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
notify: restart nginx
|
||||
|
||||
- name: "docker mediawiki"
|
||||
|
@@ -1,2 +1,2 @@
|
||||
dependencies:
|
||||
- native-docker-reverse-proxy
|
||||
- docker-reverse-proxy
|
||||
|
@@ -3,7 +3,7 @@
|
||||
command: certbot certonly --agree-tos --email {{administrator_email}} --non-interactive --webroot -w /var/lib/letsencrypt/ -d {{domain}}
|
||||
|
||||
- name: configure {{domain}}.conf
|
||||
template: src=roles/native-docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
template: src=roles/docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
notify: restart nginx
|
||||
|
||||
- name: create data folder
|
||||
|
@@ -1,2 +1,2 @@
|
||||
dependencies:
|
||||
- native-docker-reverse-proxy
|
||||
- docker-reverse-proxy
|
||||
|
@@ -2,7 +2,7 @@ server
|
||||
{
|
||||
server_name {{domain}};
|
||||
|
||||
{% include 'roles/native-letsencrypt/templates/ssl_header.j2' %}
|
||||
{% include 'roles/letsencrypt/templates/ssl_header.j2' %}
|
||||
|
||||
# Remove X-Powered-By, which is an information leak
|
||||
fastcgi_hide_header X-Powered-By;
|
||||
@@ -12,7 +12,7 @@ server
|
||||
client_body_buffer_size 400M;
|
||||
fastcgi_buffers 64 4K;
|
||||
|
||||
{% include 'roles/native-docker-reverse-proxy/templates/proxy_pass.conf.j2' %}
|
||||
{% include 'roles/docker-reverse-proxy/templates/proxy_pass.conf.j2' %}
|
||||
|
||||
location ^~ /.well-known {
|
||||
rewrite ^/\.well-known/host-meta\.json /public.php?service=host-meta-json last;
|
||||
|
@@ -1,2 +1,2 @@
|
||||
dependencies:
|
||||
- native-docker-reverse-proxy
|
||||
- docker-reverse-proxy
|
||||
|
@@ -6,7 +6,7 @@ upstream backend {
|
||||
server {
|
||||
server_name {{domain}};
|
||||
|
||||
{% include 'roles/native-letsencrypt/templates/ssl_header.j2' %}
|
||||
{% include 'roles/letsencrypt/templates/ssl_header.j2' %}
|
||||
|
||||
##
|
||||
# Application
|
||||
|
@@ -1,2 +1,2 @@
|
||||
dependencies:
|
||||
- native-docker-reverse-proxy
|
||||
- docker-reverse-proxy
|
||||
|
@@ -3,7 +3,7 @@
|
||||
command: certbot certonly --agree-tos --email {{administrator_email}} --non-interactive --webroot -w /var/lib/letsencrypt/ -d {{domain}}
|
||||
|
||||
- name: configure {{domain}}.conf
|
||||
template: src=roles/native-docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
template: src=roles/docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
notify: restart nginx
|
||||
|
||||
- name: "create {{docker_compose_path}}"
|
||||
|
@@ -1,4 +1,4 @@
|
||||
# role native-docker-reverse-proxy
|
||||
# role docker-reverse-proxy
|
||||
|
||||
Uses nginx as an [reverse proxy](https://en.wikipedia.org/wiki/Reverse_proxy) for local docker applications.
|
||||
|
3
roles/docker-reverse-proxy/meta/main.yml
Normal file
3
roles/docker-reverse-proxy/meta/main.yml
Normal file
@@ -0,0 +1,3 @@
|
||||
dependencies:
|
||||
- docker
|
||||
- https-server
|
@@ -6,7 +6,7 @@ server
|
||||
client_max_body_size {{ client_max_body_size }};
|
||||
{% endif %}
|
||||
|
||||
{% include 'roles/native-letsencrypt/templates/ssl_header.j2' %}
|
||||
{% include 'roles/letsencrypt/templates/ssl_header.j2' %}
|
||||
|
||||
{% include 'proxy_pass.conf.j2' %}
|
||||
|
@@ -1,2 +1,2 @@
|
||||
dependencies:
|
||||
- native-docker-reverse-proxy
|
||||
- docker-reverse-proxy
|
||||
|
@@ -3,7 +3,7 @@
|
||||
command: certbot certonly --agree-tos --email {{administrator_email}} --non-interactive --webroot -w /var/lib/letsencrypt/ -d {{domain}}
|
||||
|
||||
- name: configure {{domain}}.conf
|
||||
template: src=roles/native-docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
template: src=roles/docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{domain}}.conf
|
||||
notify: restart nginx
|
||||
|
||||
- name: "create {{docker_compose_path}}"
|
||||
|
4
roles/docker-volume-backup/meta/main.yml
Normal file
4
roles/docker-volume-backup/meta/main.yml
Normal file
@@ -0,0 +1,4 @@
|
||||
dependencies:
|
||||
- git
|
||||
- backups-provider
|
||||
- systemd_notifier
|
@@ -1,2 +1,2 @@
|
||||
dependencies:
|
||||
- native-docker-reverse-proxy
|
||||
- docker-reverse-proxy
|
||||
|
@@ -7,7 +7,7 @@
|
||||
vars:
|
||||
client_max_body_size: "2M"
|
||||
domain: "{{item}}"
|
||||
template: src=roles/native-docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{ item }}.conf
|
||||
template: src=roles/docker-reverse-proxy/templates/domain.conf.j2 dest=/etc/nginx/conf.d/{{ item }}.conf
|
||||
loop: "{{domains}}"
|
||||
notify: restart nginx
|
||||
|
||||
|
@@ -1,2 +1,2 @@
|
||||
dependencies:
|
||||
- native-docker-reverse-proxy
|
||||
- docker-reverse-proxy
|
||||
|
@@ -4,7 +4,7 @@
|
||||
|
||||
- name: configure {{domain}}.conf
|
||||
template:
|
||||
src: "roles/native-docker-reverse-proxy/templates/domain.conf.j2"
|
||||
src: "roles/docker-reverse-proxy/templates/domain.conf.j2"
|
||||
dest: "/etc/nginx/conf.d/{{domain}}.conf"
|
||||
notify: restart nginx
|
||||
|
||||
|
@@ -1,4 +1,4 @@
|
||||
# role native-docker
|
||||
# role docker
|
||||
|
||||
## maintanance
|
||||
|
Some files were not shown because too many files have changed in this diff Show More
Reference in New Issue
Block a user