Signed-off-by: Nis Wechselberg <enbewe@enbewe.de>
This commit is contained in:
parent
6e8d01203a
commit
851b5fa0ad
11 changed files with 48 additions and 48 deletions
|
@ -32,8 +32,8 @@
|
|||
group: 'root'
|
||||
mode: 'u=rwx,g=rx,o=rx'
|
||||
loop:
|
||||
- '/etc/openvpn/{{ openvpn_server_directory }}'
|
||||
- '/etc/openvpn/{{ openvpn_server_directory }}/ccd'
|
||||
- '/etc/openvpn/{{ server_openvpn_directory }}'
|
||||
- '/etc/openvpn/{{ server_openvpn_directory }}/ccd'
|
||||
|
||||
- name: 'Deploy config files'
|
||||
become: true
|
||||
|
@ -45,25 +45,25 @@
|
|||
mode: '{{ item.mode }}'
|
||||
loop:
|
||||
- src: 'ca.crt.j2'
|
||||
dest: '/etc/openvpn/{{ openvpn_server_ca }}'
|
||||
dest: '/etc/openvpn/{{ server_openvpn_ca }}'
|
||||
mode: 'u=rw,g=r,o=r'
|
||||
- src: 'cert.crt.j2'
|
||||
dest: '/etc/openvpn/{{ openvpn_server_cert }}'
|
||||
dest: '/etc/openvpn/{{ server_openvpn_cert }}'
|
||||
mode: 'u=rw,g=r,o=r'
|
||||
- src: 'cert.key.j2'
|
||||
dest: '/etc/openvpn/{{ openvpn_server_key }}'
|
||||
dest: '/etc/openvpn/{{ server_openvpn_key }}'
|
||||
mode: 'u=rw,g=,o='
|
||||
- src: 'cert.pwd.j2'
|
||||
dest: '/etc/openvpn/{{ openvpn_server_passfile }}'
|
||||
dest: '/etc/openvpn/{{ server_openvpn_passfile }}'
|
||||
mode: 'u=rw,g=,o='
|
||||
- src: 'crl.pem.j2'
|
||||
dest: '/etc/openvpn/{{ openvpn_server_crl }}'
|
||||
dest: '/etc/openvpn/{{ server_openvpn_crl }}'
|
||||
mode: 'u=rw,g=r,o=r'
|
||||
- src: 'tls-auth.key.j2'
|
||||
dest: '/etc/openvpn/{{ openvpn_server_tlsauth }}'
|
||||
dest: '/etc/openvpn/{{ server_openvpn_tlsauth }}'
|
||||
mode: 'u=rw,g=,o='
|
||||
- src: 'dh2048.pem.j2'
|
||||
dest: '/etc/openvpn/{{ openvpn_server_dhfile }}'
|
||||
dest: '/etc/openvpn/{{ server_openvpn_dhfile }}'
|
||||
mode: 'u=rw,g=r,o=r'
|
||||
notify: 'Restart openvpn server'
|
||||
|
||||
|
@ -71,18 +71,18 @@
|
|||
become: true
|
||||
ansible.builtin.template:
|
||||
src: 'ccd.j2'
|
||||
dest: '/etc/openvpn/{{ openvpn_server_directory }}/ccd/{{ item.key }}'
|
||||
dest: '/etc/openvpn/{{ server_openvpn_directory }}/ccd/{{ item.key }}'
|
||||
owner: 'root'
|
||||
group: 'root'
|
||||
mode: 'u=rw,g=r,o=r'
|
||||
loop: '{{ openvpn_server_client_configs | dict2items }}'
|
||||
loop: '{{ server_openvpn_client_configs | dict2items }}'
|
||||
notify: 'Restart openvpn server'
|
||||
|
||||
- name: 'Deploy server config'
|
||||
become: true
|
||||
ansible.builtin.template:
|
||||
src: 'openvpn_server.conf.j2'
|
||||
dest: '/etc/openvpn/{{ openvpn_server_config_name }}.conf'
|
||||
dest: '/etc/openvpn/{{ server_openvpn_config_name }}.conf'
|
||||
owner: 'root'
|
||||
group: 'root'
|
||||
mode: 'u=rw,g=r,o=r'
|
||||
|
@ -95,5 +95,5 @@
|
|||
ansible.posix.sysctl:
|
||||
name: '{{ item.key }}'
|
||||
value: '{{ item.value }}'
|
||||
loop: '{{ openvpn_sysctl_settings | dict2items }}'
|
||||
loop: '{{ server_openvpn_sysctl_settings | dict2items }}'
|
||||
notify: 'Restart openvpn server'
|
||||
|
|
Loading…
Add table
Add a link
Reference in a new issue