7611fb9d76
* add dehydrated role with pdns-api.sh support * Minor changes to Readme * Remove Meta * move dehydrated to linse * Remove Zuckerwatte from PR (nothing to do with dehydrated) * Add other domains to dehydrated config, added hook_chain * Add authorized keys for cert user, add structures in /home/cert/ for checking out certs * Send dehydrated ouput to /dev/null * user authorized_keys module, add kumpir key * Fix typo. Use \\n for each ssh-key * remove unnecessary .ssh creation (done by authorized_key module) * Added wrapper script to execute two hooks: pdns_api.sh + deploy certificates * Remove challengetype variable, as only dns-01 is supported anyway. * Add freifunk-mainz.de domain * fix cert deploy script.
29 lines
616 B
YAML
29 lines
616 B
YAML
---
|
|
|
|
- name: Upload systemd service files
|
|
template:
|
|
src: "{{ item }}.j2"
|
|
dest: /etc/systemd/system/{{ item }}
|
|
loop:
|
|
- dehydrated.service
|
|
- dehydrated.timer
|
|
when: dehydrated_systemd_timer
|
|
notify: Reload systemd
|
|
|
|
- name: Remove system service files
|
|
file:
|
|
path: /etc/systemd/system/{{ item }}
|
|
state: absent
|
|
loop:
|
|
- dehydrated.service
|
|
- dehydrated.timer
|
|
when: not dehydrated_systemd_timer
|
|
notify: Remove timer
|
|
|
|
- name: Activate systemd timer
|
|
systemd:
|
|
daemon_reload: yes
|
|
name: dehydrated.timer
|
|
enabled: yes
|
|
state: started
|
|
when: dehydrated_systemd_timer
|