mirror of
https://github.com/kevinveenbirkenbach/computer-playbook.git
synced 2025-01-22 07:03:21 +01:00
149 lines
6.8 KiB
Plaintext
149 lines
6.8 KiB
Plaintext
# Server Tact Variables
|
|
|
|
## Ours in which the server is 100% working. Rest of the time is reserved for maintanance
|
|
hours_server_awake: "{{ range(9, 24) | list + range(0, 3) | list }}"
|
|
|
|
## Random delay for systemd timers to avoid peak loads.
|
|
randomized_delay_sec: "5min"
|
|
|
|
## Schedule for Health Checks
|
|
on_calendar_health_btrfs: "*-*-* 00:00:00"
|
|
on_calendar_health_journalctl: "*-*-* 00:00:00"
|
|
on_calendar_health_disc_space: "*-*-* 06,12,18,00:00:00"
|
|
on_calendar_health_docker_container: "*-*-* {{ hours_server_awake | join(',') }}:00:00"
|
|
on_calendar_health_docker_volumes: "*-*-* {{ hours_server_awake | join(',') }}:15:00"
|
|
on_calendar_health_nginx: "*-*-* {{ hours_server_awake | join(',') }}:45:00"
|
|
|
|
## Schedule for Cleanup Tasks
|
|
on_calendar_cleanup_backups: "*-*-* 06,12,18,00:30:00"
|
|
on_calendar_cleanup_disc_space: "*-*-* 07,13,19,01:30:00"
|
|
|
|
## Schedule for Backup Tasks
|
|
on_calendar_backup_docker_to_local: "*-*-* 03:30:00"
|
|
on_calendar_backup_remote_to_local: "*-*-* 21:30:00"
|
|
|
|
## Schedule for Maintenance Tasks
|
|
on_calendar_heal_docker: "*-*-* {{ hours_server_awake | join(',') }}:30:00"
|
|
on_calendar_defrost: "*-*-* *:00,15,30,45:00"
|
|
on_calendar_renew_lets_encrypt_certificates: "*-*-* 12,00:30:00"
|
|
on_calendar_deploy_mailu_certificates: "*-*-* 13,01:30:00"
|
|
on_calendar_msi_keyboard_color: "*-*-* *:*:00"
|
|
|
|
|
|
# Storage Space-Related Configurations
|
|
size_percent_maximum_backup: 75 # Maximum storage space in percent for backups
|
|
size_percent_disc_space_warning: 85 # Warning threshold in percent for free disk space
|
|
size_percent_cleanup_disc_space: 90 # Threshold for triggering cleanup actions
|
|
|
|
|
|
# Path Variables for Key Directories and Scripts
|
|
path_administrator_home: "/home/administrator/"
|
|
path_administrator_scripts: "{{path_administrator_home}}scripts/"
|
|
path_docker_volumes: "{{path_administrator_home}}volumes/docker/"
|
|
path_docker_compose_instances: "{{path_administrator_home}}docker-compose/"
|
|
path_system_maintenance_service_freezer_script: "{{path_administrator_scripts}}system-maintenance-service-freezer.py"
|
|
|
|
|
|
# Runtime Variables for Process Control
|
|
activate_all_timers: false # Activates all timers, independend if the handlers had been triggered
|
|
nginx_matomo_tracking: false # Activates matomo tracking on all html pages
|
|
execute_updates: true # Executes updates
|
|
force_backup_before_update: true # Activates the backup before the update procedure
|
|
|
|
|
|
# System maintenance Services
|
|
|
|
## Timeouts to wait for other services to stop
|
|
system_maintenance_timeout_cleanup_services: "15min"
|
|
system_maintenance_timeout_backup_services: "1h"
|
|
system_maintenance_timeout_heal_docker: "30min"
|
|
system_maintenance_timeout_update_docker: "5min"
|
|
system_maintenance_timeout_freezer_action: "2min"
|
|
|
|
## Services
|
|
|
|
### Defined Services for Backup Tasks
|
|
system_maintenance_backup_services:
|
|
- "backup-docker-to-local"
|
|
- "backup-remote-to-local"
|
|
- "backup-data-to-usb"
|
|
|
|
### Defined Services for System Cleanup
|
|
system_maintenance_cleanup_services:
|
|
- "cleanup-backups"
|
|
- "cleanup-disc-space"
|
|
- "cleanup-failed-docker-backups"
|
|
|
|
### Freeze services (wait until they are finished to be sure that nobody else is doing stuff in the fridge)
|
|
- "system-maintenance-service-freeze"
|
|
- "system-maintenance-service-defrost"
|
|
|
|
### Services that Manipulate the System
|
|
system_maintenance_manipulation_services:
|
|
- "heal-docker"
|
|
- "update-docker"
|
|
|
|
## Total System Maintenance Services
|
|
system_maintenance_services: "{{ system_maintenance_backup_services + system_maintenance_cleanup_services + system_maintenance_manipulation_services }}"
|
|
|
|
## First default freezer action to apply when freezer service get triggered during play
|
|
system_maintenance_service_freeze_action: 'freeze' # Valid Values: freeze, defrost
|
|
|
|
|
|
# Webserver Configuration
|
|
|
|
## Nginx-Specific Path Configurations
|
|
nginx_configuration_directory: "/etc/nginx/conf.d/" # General configuration dir
|
|
nginx_servers_directory: "{{nginx_configuration_directory}}servers/" # Contains server blogs
|
|
nginx_maps_directory: "{{nginx_configuration_directory}}maps/" # Contains mappins
|
|
nginx_upstreams_directory: "{{nginx_configuration_directory}}upstreams/" # Contains upstream configurations
|
|
|
|
# Routing Configurations for Domain Redirections
|
|
redirect_domain_mappings:
|
|
- { source: "nextcloud.{{top_domain}}", target: "cloud.{{top_domain}}" }
|
|
- { source: "gitea.{{top_domain}}", target: "git.{{top_domain}}" }
|
|
- { source: "listmonk.{{top_domain}}", target: "newsletter.{{top_domain}}" }
|
|
- { source: "discourse.{{top_domain}}", target: "forum.{{top_domain}}" }
|
|
- { source: "bbb.{{top_domain}}", target: "meet.{{top_domain}}" }
|
|
- { source: "short.{{top_domain}}", target: "s.{{top_domain}}" }
|
|
- { source: "mastodon.{{top_domain}}", target: "microblog.{{top_domain}}" }
|
|
- { source: "peertube.{{top_domain}}", target: "videos.{{top_domain}}" }
|
|
- { source: "funkwhale.{{top_domain}}", target: "music.{{top_domain}}" }
|
|
- { source: "pixelfed.{{top_domain}}", target: "pictures.{{top_domain}}" }
|
|
- { source: "matrix.{{top_domain}}", target: "chat.{{top_domain}}" }
|
|
|
|
## Docker Applications
|
|
|
|
### Domain Names for Various Services
|
|
domain_akaunting: "akaunting.{{top_domain}}"
|
|
domain_baserow: "baserow.{{top_domain}}"
|
|
domain_bigbluebutton: "meet.{{top_domain}}"
|
|
domain_elk: "elk.{{top_domain}}"
|
|
domain_discourse: "forum.{{top_domain}}"
|
|
domain_funkwhale: "music.{{top_domain}}"
|
|
domain_gitea: "git.{{top_domain}}"
|
|
domain_listmonk: "newsletter.{{top_domain}}"
|
|
domain_mailu: "mail.{{top_domain}}"
|
|
domain_mastodon: "microblog.{{top_domain}}"
|
|
domains_mastodon_alternates: []
|
|
domain_matomo: "matomo.{{top_domain}}"
|
|
domain_matrix: "chat.{{top_domain}}"
|
|
domain_mediawiki: "wiki.{{top_domain}}"
|
|
domain_nextcloud: "cloud.{{top_domain}}"
|
|
domain_pixelfed: "pictures.{{top_domain}}"
|
|
domains_pixelfed: []
|
|
domain_peertube: "videos.{{top_domain}}"
|
|
domains_peertube: []
|
|
domain_roulette: "roulette.{{top_domain}}"
|
|
domain_attendize: "tickets.{{top_domain}}"
|
|
domain_yourls: "s.{{top_domain}}"
|
|
|
|
### Software Versions for Specific Applications
|
|
version_nextcloud: "production" # Danger: Nextcloud can't skipp major version updates.
|
|
version_mailu: "2.0"
|
|
version_akaunting: "latest"
|
|
version_mastodon: "latest"
|
|
|
|
### Role specific configuration
|
|
pixelfed_app_name: "Pictures"
|