ansible-ffibk/roles/service-dehydrated/templates/dehydrated.service.j2
prisma01 7611fb9d76
add dehydrated role with pdns-api.sh support (#25)
* add dehydrated role with pdns-api.sh support

* Minor changes to Readme

* Remove Meta

* move dehydrated to linse

* Remove Zuckerwatte from PR (nothing to do with dehydrated)

* Add other domains to dehydrated config, added hook_chain

* Add authorized keys for cert user, add structures in /home/cert/ for checking out certs

* Send dehydrated ouput to /dev/null

* user authorized_keys module, add kumpir key

* Fix typo. Use \\n for each ssh-key

* remove unnecessary .ssh creation (done by authorized_key module)

* Added wrapper script to execute two hooks: pdns_api.sh + deploy certificates

* Remove challengetype variable, as only dns-01 is supported anyway.

* Add freifunk-mainz.de domain

* fix cert deploy script.
2019-09-08 20:44:26 +02:00

12 lines
297 B
Django/Jinja

[Unit]
Description=ACME Cert renewal
ConditionFileNotEmpty=/etc/dehydrated/domains.txt
{% if dehydrated_systemd_timer_onfailure is defined %}
OnFailure={{ dehydrated_systemd_timer_onfailure }}
{% endif %}
[Service]
User=root
ExecStart={{ dehydrated_install_root }}/dehydrated --cron
Type=oneshot