force: [yes,no] → force [true,false]
All checks were successful
Ansible Lint |Total|New|Outstanding|Fixed|Trend |:-:|:-:|:-:|:-:|:-: |2615|7|2608|177|:+1: Reference build: <a href="https://jenkins.evolix.org/job/gitea/job/ansible-roles/job/unstable/278//ansiblelint">Evolix » ansible-roles » unstable #278</a>
gitea/ansible-roles/pipeline/head This commit looks good

This commit is contained in:
Jérémy Lecour 2023-06-28 13:22:59 +02:00 committed by Jérémy Lecour
parent def4d54538
commit 00fe225a3c
Signed by: jlecour
SSH key fingerprint: SHA256:h+5LgHRKwN9lS0SsdVR5yZPeFlJE4Mt+8UtL4CcP8dY
103 changed files with 179 additions and 178 deletions

View file

@ -21,6 +21,7 @@ The **patch** part changes is incremented if multiple releases happen the same m
### Changed ### Changed
* all: change syntax "force: [yes,no]" → "force [true,false]"
* elasticsearch: improve networking configuration * elasticsearch: improve networking configuration
* evolinux-users: remove Stretch references in tasks that also apply to next Debian versions * evolinux-users: remove Stretch references in tasks that also apply to next Debian versions
* mysql: improve shell syntax for mysql_skip script * mysql: improve shell syntax for mysql_skip script

View file

@ -7,7 +7,7 @@
owner: root owner: root
group: root group: root
mode: "0640" mode: "0640"
force: no force: false
tags: tags:
- apache - apache
@ -30,7 +30,7 @@
owner: root owner: root
group: root group: root
mode: "0640" mode: "0640"
force: no force: false
notify: reload apache notify: reload apache
tags: tags:
- apache - apache

View file

@ -14,6 +14,6 @@
owner: log2mail owner: log2mail
group: adm group: adm
mode: "0644" mode: "0644"
force: no force: false
tags: tags:
- apache - apache

View file

@ -73,7 +73,7 @@
owner: root owner: root
group: root group: root
mode: "0640" mode: "0640"
force: yes force: true
notify: reload apache notify: reload apache
tags: tags:
- apache - apache
@ -85,7 +85,7 @@
owner: root owner: root
group: root group: root
mode: "0640" mode: "0640"
force: no force: false
notify: reload apache notify: reload apache
tags: tags:
- apache - apache
@ -119,7 +119,7 @@
src: evolinux-default.conf.j2 src: evolinux-default.conf.j2
dest: /etc/apache2/sites-available/000-evolinux-default.conf dest: /etc/apache2/sites-available/000-evolinux-default.conf
mode: "0640" mode: "0640"
force: no force: false
notify: reload apache notify: reload apache
tags: tags:
- apache - apache
@ -129,7 +129,7 @@
src: /etc/apache2/sites-available/000-evolinux-default.conf src: /etc/apache2/sites-available/000-evolinux-default.conf
dest: /etc/apache2/sites-enabled/000-default.conf dest: /etc/apache2/sites-enabled/000-default.conf
state: link state: link
force: yes force: true
notify: reload apache notify: reload apache
when: apache_evolinux_default_enabled | bool when: apache_evolinux_default_enabled | bool
tags: tags:
@ -181,7 +181,7 @@
src: save_apache_status.sh src: save_apache_status.sh
dest: /usr/share/scripts/save_apache_status.sh dest: /usr/share/scripts/save_apache_status.sh
mode: "0755" mode: "0755"
force: no force: false
tags: tags:
- apache - apache

View file

@ -13,7 +13,7 @@
dest: "{{ apache_serverstatus_suffix_file }}" dest: "{{ apache_serverstatus_suffix_file }}"
# The last character "\u000A" is a line feed (LF), it's better to keep it # The last character "\u000A" is a line feed (LF), it's better to keep it
content: "{{ apache_serverstatus_suffix }}\u000A" content: "{{ apache_serverstatus_suffix }}\u000A"
force: yes force: true
when: apache_serverstatus_suffix | length > 0 when: apache_serverstatus_suffix | length > 0
- name: generate random string for server-status suffix - name: generate random string for server-status suffix

View file

@ -4,7 +4,7 @@
ansible.builtin.template: ansible.builtin.template:
src: '{{ ansible_distribution_release }}_backports.sources.j2' src: '{{ ansible_distribution_release }}_backports.sources.j2'
dest: /etc/apt/sources.list.d/backports.sources dest: /etc/apt/sources.list.d/backports.sources
force: yes force: true
mode: "0640" mode: "0640"
register: apt_backports_sources register: apt_backports_sources
tags: tags:
@ -14,7 +14,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: '{{ ansible_distribution_release }}_backports_preferences' src: '{{ ansible_distribution_release }}_backports_preferences'
dest: /etc/apt/preferences.d/0-backports-defaults dest: /etc/apt/preferences.d/0-backports-defaults
force: yes force: true
mode: "0640" mode: "0640"
register: apt_backports_config register: apt_backports_config
tags: tags:

View file

@ -11,7 +11,7 @@
ansible.builtin.template: ansible.builtin.template:
src: '{{ ansible_distribution_release }}_backports.list.j2' src: '{{ ansible_distribution_release }}_backports.list.j2'
dest: /etc/apt/sources.list.d/backports.list dest: /etc/apt/sources.list.d/backports.list
force: yes force: true
mode: "0640" mode: "0640"
register: apt_backports_list register: apt_backports_list
tags: tags:
@ -21,7 +21,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: '{{ ansible_distribution_release }}_backports_preferences' src: '{{ ansible_distribution_release }}_backports_preferences'
dest: /etc/apt/preferences.d/0-backports-defaults dest: /etc/apt/preferences.d/0-backports-defaults
force: yes force: true
mode: "0640" mode: "0640"
register: apt_backports_config register: apt_backports_config
tags: tags:

View file

@ -5,7 +5,7 @@
src: "{{ ansible_distribution_release }}_basics.sources.j2" src: "{{ ansible_distribution_release }}_basics.sources.j2"
dest: /etc/apt/sources.list.d/system.sources dest: /etc/apt/sources.list.d/system.sources
mode: "0644" mode: "0644"
force: yes force: true
register: apt_basic_sources register: apt_basic_sources
tags: tags:
- apt - apt
@ -15,7 +15,7 @@
src: "{{ ansible_distribution_release }}_security.sources.j2" src: "{{ ansible_distribution_release }}_security.sources.j2"
dest: /etc/apt/sources.list.d/security.sources dest: /etc/apt/sources.list.d/security.sources
mode: "0644" mode: "0644"
force: yes force: true
register: apt_security_sources register: apt_security_sources
tags: tags:
- apt - apt

View file

@ -5,7 +5,7 @@
src: "{{ ansible_distribution_release }}_basics.list.j2" src: "{{ ansible_distribution_release }}_basics.list.j2"
dest: /etc/apt/sources.list dest: /etc/apt/sources.list
mode: "0644" mode: "0644"
force: yes force: true
register: apt_basic_list register: apt_basic_list
tags: tags:
- apt - apt

View file

@ -20,7 +20,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: pub_evolix.asc src: pub_evolix.asc
dest: "{{ apt_keyring_dir }}/pub_evolix.asc" dest: "{{ apt_keyring_dir }}/pub_evolix.asc"
force: yes force: true
mode: "0644" mode: "0644"
owner: root owner: root
group: root group: root
@ -31,7 +31,7 @@
ansible.builtin.template: ansible.builtin.template:
src: evolix_public.sources.j2 src: evolix_public.sources.j2
dest: /etc/apt/sources.list.d/evolix_public.sources dest: /etc/apt/sources.list.d/evolix_public.sources
force: yes force: true
mode: "0640" mode: "0640"
register: apt_evolix_public register: apt_evolix_public
tags: tags:

View file

@ -20,7 +20,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: pub_evolix.asc src: pub_evolix.asc
dest: "{{ apt_keyring_dir }}/pub_evolix.asc" dest: "{{ apt_keyring_dir }}/pub_evolix.asc"
force: yes force: true
mode: "0644" mode: "0644"
owner: root owner: root
group: root group: root
@ -31,7 +31,7 @@
ansible.builtin.template: ansible.builtin.template:
src: evolix_public.list.j2 src: evolix_public.list.j2
dest: /etc/apt/sources.list.d/evolix_public.list dest: /etc/apt/sources.list.d/evolix_public.list
force: yes force: true
mode: "0640" mode: "0640"
register: apt_evolix_public register: apt_evolix_public
tags: tags:

View file

@ -71,7 +71,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: check_held_packages.sh src: check_held_packages.sh
dest: /usr/share/scripts/check_held_packages.sh dest: /usr/share/scripts/check_held_packages.sh
force: yes force: true
mode: "0755" mode: "0755"
tags: tags:
- apt - apt

View file

@ -16,7 +16,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: "{{ item }}" src: "{{ item }}"
dest: "/usr/share/scripts/{{ item }}" dest: "/usr/share/scripts/{{ item }}"
force: yes force: true
mode: "0755" mode: "0755"
loop: loop:
- deb822-migration.py - deb822-migration.py

View file

@ -7,5 +7,5 @@
owner: bind owner: bind
group: bind group: bind
mode: "0644" mode: "0644"
force: yes force: true
notify: restart bind notify: restart bind

View file

@ -23,7 +23,7 @@
owner: root owner: root
group: root group: root
mode: "0644" mode: "0644"
force: yes force: true
notify: restart apparmor notify: restart apparmor
when: check_apparmor.rc == 0 when: check_apparmor.rc == 0
@ -47,7 +47,7 @@
owner: root owner: root
group: root group: root
mode: "0644" mode: "0644"
force: yes force: true
notify: notify:
- reload systemd - reload systemd
- restart bind - restart bind
@ -77,7 +77,7 @@
dest: /root/chroot-bind.sh dest: /root/chroot-bind.sh
mode: "0700" mode: "0700"
owner: root owner: root
force: yes force: true
backup: yes backup: yes
when: bind_chroot_set | bool when: bind_chroot_set | bool
@ -109,7 +109,7 @@
owner: root owner: root
group: root group: root
mode: "0644" mode: "0644"
force: yes force: true
notify: restart bind notify: restart bind
- ansible.builtin.include: munin.yml - ansible.builtin.include: munin.yml

View file

@ -48,7 +48,7 @@
owner: root owner: root
group: root group: root
mode: "0644" mode: "0644"
force: yes force: true
notify: restart munin-node notify: restart munin-node
tags: tags:
- bind - bind

View file

@ -8,7 +8,7 @@
owner: bind owner: bind
group: bind group: bind
mode: "0644" mode: "0644"
force: yes force: true
notify: restart bind notify: restart bind
- name: enable zones.rfc1918 for recursive server - name: enable zones.rfc1918 for recursive server

View file

@ -15,7 +15,7 @@
ansible.builtin.template: ansible.builtin.template:
src: acme-challenge/nginx.conf.j2 src: acme-challenge/nginx.conf.j2
dest: /etc/nginx/snippets/letsencrypt.conf dest: /etc/nginx/snippets/letsencrypt.conf
force: yes force: true
notify: reload nginx notify: reload nginx
when: is_nginx.stat.exists when: is_nginx.stat.exists
@ -30,7 +30,7 @@
ansible.builtin.template: ansible.builtin.template:
src: acme-challenge/apache.conf.j2 src: acme-challenge/apache.conf.j2
dest: /etc/apache2/conf-available/letsencrypt.conf dest: /etc/apache2/conf-available/letsencrypt.conf
force: yes force: true
notify: reload apache notify: reload apache
- name: ACME challenge for Apache is enabled - name: ACME challenge for Apache is enabled

View file

@ -16,7 +16,7 @@
mode: '0755' mode: '0755'
owner: root owner: root
group: root group: root
force: yes force: true
notify: install letsencrypt-auto notify: install letsencrypt-auto
- name: Check certbot script - name: Check certbot script
@ -49,7 +49,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: cron_jessie src: cron_jessie
dest: /etc/cron.d/certbot dest: /etc/cron.d/certbot
force: yes force: true
when: certbot_custom_crontab | bool when: certbot_custom_crontab | bool
- name: disable self-upgrade - name: disable self-upgrade

View file

@ -26,7 +26,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: docker-debian.asc src: docker-debian.asc
dest: "{{ apt_keyring_dir }}/docker-debian.asc" dest: "{{ apt_keyring_dir }}/docker-debian.asc"
force: yes force: true
mode: "0644" mode: "0644"
owner: root owner: root
group: root group: root

View file

@ -19,4 +19,4 @@
mode: "0755" mode: "0755"
owner: "root" owner: "root"
group: "root" group: "root"
force: yes force: true

View file

@ -9,7 +9,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: elastic.asc src: elastic.asc
dest: "{{ apt_keyring_dir }}/elastic.asc" dest: "{{ apt_keyring_dir }}/elastic.asc"
force: yes force: true
mode: "0644" mode: "0644"
owner: root owner: root
group: root group: root

View file

@ -38,7 +38,7 @@
dest: "{{ repository_path }}/.gitignore" dest: "{{ repository_path }}/.gitignore"
owner: root owner: root
mode: "0600" mode: "0600"
force: no force: false
tags: tags:
- etc-git - etc-git

View file

@ -10,7 +10,7 @@
src: evocommit src: evocommit
dest: /usr/local/bin/evocommit dest: /usr/local/bin/evocommit
mode: "0755" mode: "0755"
force: yes force: true
tags: tags:
- etc-git - etc-git
@ -19,7 +19,7 @@
src: ansible-commit src: ansible-commit
dest: /usr/local/bin/ansible-commit dest: /usr/local/bin/ansible-commit
mode: "0755" mode: "0755"
force: yes force: true
tags: tags:
- etc-git - etc-git
@ -28,7 +28,7 @@
src: etc-git-optimize src: etc-git-optimize
dest: /usr/share/scripts/etc-git-optimize dest: /usr/share/scripts/etc-git-optimize
mode: "0755" mode: "0755"
force: yes force: true
tags: tags:
- etc-git - etc-git
@ -37,7 +37,7 @@
src: etc-git-status src: etc-git-status
dest: /usr/share/scripts/etc-git-status dest: /usr/share/scripts/etc-git-status
mode: "0755" mode: "0755"
force: yes force: true
tags: tags:
- etc-git - etc-git

View file

@ -16,5 +16,5 @@
mode: "0644" mode: "0644"
owner: root owner: root
group: root group: root
force: yes force: true
when: is_cron_installed.rc == 0 when: is_cron_installed.rc == 0

View file

@ -36,7 +36,7 @@
dest: "{{ evocheck_bin_dir }}/evocheck.sh" dest: "{{ evocheck_bin_dir }}/evocheck.sh"
mode: "0700" mode: "0700"
owner: root owner: root
force: yes force: true
tags: tags:
- evocheck - evocheck
@ -44,6 +44,6 @@
ansible.builtin.copy: ansible.builtin.copy:
src: evocheck.cf src: evocheck.cf
dest: /etc/evocheck.cf dest: /etc/evocheck.cf
force: no force: false
tags: tags:
- evocheck - evocheck

View file

@ -20,7 +20,7 @@
src: default_www/index.html.j2 src: default_www/index.html.j2
dest: /var/www/index.html dest: /var/www/index.html
mode: "0644" mode: "0644"
force: no force: false
when: evolinux_default_www_files | bool when: evolinux_default_www_files | bool
# SSL cert # SSL cert

View file

@ -12,4 +12,4 @@
src: /usr/local/sbin/dump-server-state src: /usr/local/sbin/dump-server-state
dest: /usr/local/sbin/backup-server-state dest: /usr/local/sbin/backup-server-state
state: link state: link
force: yes force: true

View file

@ -47,7 +47,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: hwraid.le-vert.net.asc src: hwraid.le-vert.net.asc
dest: "{{ apt_keyring_dir }}/hwraid.le-vert.net.asc" dest: "{{ apt_keyring_dir }}/hwraid.le-vert.net.asc"
force: yes force: true
mode: "0644" mode: "0644"
owner: root owner: root
group: root group: root

View file

@ -4,7 +4,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: hpePublicKey2048_key1.asc src: hpePublicKey2048_key1.asc
dest: "{{ apt_keyring_dir }}/hpePublicKey2048_key1.asc" dest: "{{ apt_keyring_dir }}/hpePublicKey2048_key1.asc"
force: yes force: true
mode: "0644" mode: "0644"
owner: root owner: root
group: root group: root

View file

@ -41,7 +41,7 @@
ansible.builtin.copy: ansible.builtin.copy:
dest: /etc/mailname dest: /etc/mailname
content: "{{ evolinux_fqdn }}\n" content: "{{ evolinux_fqdn }}\n"
force: yes force: true
when: evolinux_hostname_mailname | bool when: evolinux_hostname_mailname | bool
# Override facts # Override facts

View file

@ -27,7 +27,7 @@
ansible.builtin.copy: ansible.builtin.copy:
content: "" content: ""
dest: "/root/.bash_history" dest: "/root/.bash_history"
force: no force: false
when: evolinux_root_bash_history | bool when: evolinux_root_bash_history | bool
- name: Set umask in /root/.profile - name: Set umask in /root/.profile
@ -47,7 +47,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: root/gitconfig src: root/gitconfig
dest: "/root/.gitconfig" dest: "/root/.gitconfig"
force: no force: false
when: evolinux_root_gitconfig | bool when: evolinux_root_gitconfig | bool
- name: Is .bash_history append-only - name: Is .bash_history append-only

View file

@ -138,7 +138,7 @@
ansible.builtin.template: ansible.builtin.template:
src: system/alert5.sysvinit.j2 src: system/alert5.sysvinit.j2
dest: /etc/init.d/alert5 dest: /etc/init.d/alert5
force: no force: false
mode: "0755" mode: "0755"
when: when:
- evolinux_system_alert5_init | bool - evolinux_system_alert5_init | bool
@ -159,7 +159,7 @@
ansible.builtin.template: ansible.builtin.template:
src: system/alert5.sh.j2 src: system/alert5.sh.j2
dest: /usr/share/scripts/alert5.sh dest: /usr/share/scripts/alert5.sh
force: no force: false
mode: "0755" mode: "0755"
when: when:
- evolinux_system_alert5_init | bool - evolinux_system_alert5_init | bool
@ -169,7 +169,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: alert5.service src: alert5.service
dest: /etc/systemd/system/alert5.service dest: /etc/systemd/system/alert5.service
force: yes force: true
mode: "0644" mode: "0644"
when: when:
- evolinux_system_alert5_init | bool - evolinux_system_alert5_init | bool

View file

@ -13,7 +13,7 @@
mode: "0700" mode: "0700"
owner: root owner: root
group: root group: root
force: no force: false
- name: update-evobackup-canary script is present - name: update-evobackup-canary script is present
ansible.builtin.copy: ansible.builtin.copy:

View file

@ -12,5 +12,5 @@
src: todo.defaults.txt src: todo.defaults.txt
dest: /etc/evolinux/todo.txt dest: /etc/evolinux/todo.txt
mode: "0640" mode: "0640"
force: no force: false
when: ansible_distribution == "Debian" when: ansible_distribution == "Debian"

View file

@ -12,7 +12,7 @@
ansible.builtin.template: ansible.builtin.template:
src: sudoers.j2 src: sudoers.j2
dest: /etc/sudoers.d/evolinux dest: /etc/sudoers.d/evolinux
force: no force: false
mode: "0440" mode: "0440"
validate: '/usr/sbin/visudo -cf %s' validate: '/usr/sbin/visudo -cf %s'
register: copy_sudoers_evolinux register: copy_sudoers_evolinux

View file

@ -4,7 +4,7 @@
ansible.builtin.template: ansible.builtin.template:
src: sudoers_jessie.j2 src: sudoers_jessie.j2
dest: /etc/sudoers.d/evolinux dest: /etc/sudoers.d/evolinux
force: no force: false
mode: "0440" mode: "0440"
validate: '/usr/sbin/visudo -cf %s' validate: '/usr/sbin/visudo -cf %s'
register: copy_sudoers_evolinux register: copy_sudoers_evolinux

View file

@ -40,7 +40,7 @@
owner: root owner: root
group: root group: root
mode: "{{ item.mode }}" mode: "{{ item.mode }}"
force: yes force: true
backup: yes backup: yes
loop: loop:
- { src: 'evomaintenance.sh', dest: '/usr/share/scripts/', mode: '0700' } - { src: 'evomaintenance.sh', dest: '/usr/share/scripts/', mode: '0700' }

View file

@ -22,7 +22,7 @@
owner: root owner: root
group: root group: root
mode: "{{ item.mode }}" mode: "{{ item.mode }}"
force: yes force: true
backup: yes backup: yes
loop: loop:
- { src: 'evomaintenance.sh', dest: '/usr/share/scripts/', mode: '0700' } - { src: 'evomaintenance.sh', dest: '/usr/share/scripts/', mode: '0700' }

View file

@ -9,7 +9,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: elastic.asc src: elastic.asc
dest: "{{ apt_keyring_dir }}/elastic.asc" dest: "{{ apt_keyring_dir }}/elastic.asc"
force: yes force: true
mode: "0644" mode: "0644"
owner: root owner: root
group: root group: root

View file

@ -4,7 +4,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: treasuredata.asc src: treasuredata.asc
dest: "{{ apt_keyring_dir }}/treasuredata.asc" dest: "{{ apt_keyring_dir }}/treasuredata.asc"
force: yes force: true
mode: "0644" mode: "0644"
owner: root owner: root
group: root group: root

View file

@ -12,7 +12,7 @@
ansible.builtin.file: ansible.builtin.file:
src: /usr/share/munin/plugins/haproxy_ng src: /usr/share/munin/plugins/haproxy_ng
dest: /etc/munin/plugins/haproxy_ng dest: /etc/munin/plugins/haproxy_ng
force: yes force: true
state: link state: link
notify: restart munin-node notify: restart munin-node
tags: tags:

View file

@ -23,7 +23,7 @@
ansible.builtin.template: ansible.builtin.template:
src: haproxy_apt_preferences.j2 src: haproxy_apt_preferences.j2
dest: /etc/apt/preferences.d/999-haproxy dest: /etc/apt/preferences.d/999-haproxy
force: yes force: true
mode: "0640" mode: "0640"
register: haproxy_apt_preferences register: haproxy_apt_preferences
tags: tags:

View file

@ -9,7 +9,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: jenkins.asc src: jenkins.asc
dest: "{{ apt_keyring_dir }}/jenkins.asc" dest: "{{ apt_keyring_dir }}/jenkins.asc"
force: yes force: true
mode: "0644" mode: "0644"
owner: root owner: root
group: root group: root

View file

@ -14,7 +14,7 @@
mode: "0755" mode: "0755"
owner: root owner: root
group: root group: root
force: yes force: true
notify: restart keepalived notify: restart keepalived
tags: tags:
- keepalived - keepalived
@ -27,7 +27,7 @@
mode: "0755" mode: "0755"
owner: root owner: root
group: root group: root
force: yes force: true
tags: tags:
- keepalived - keepalived
- nrpe - nrpe

View file

@ -9,7 +9,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: elastic.asc src: elastic.asc
dest: "{{ apt_keyring_dir }}/elastic.asc" dest: "{{ apt_keyring_dir }}/elastic.asc"
force: yes force: true
mode: "0644" mode: "0644"
owner: root owner: root
group: root group: root

View file

@ -4,13 +4,13 @@
ansible.builtin.template: ansible.builtin.template:
src: nginx_proxy_kibana_ssl.j2 src: nginx_proxy_kibana_ssl.j2
dest: /etc/nginx/sites-available/kibana_ssl.conf dest: /etc/nginx/sites-available/kibana_ssl.conf
force: no force: false
- name: Example proxy for Kibana with Nginx (without SSL) - name: Example proxy for Kibana with Nginx (without SSL)
ansible.builtin.template: ansible.builtin.template:
src: nginx_proxy_kibana_nossl.j2 src: nginx_proxy_kibana_nossl.j2
dest: /etc/nginx/sites-available/kibana_nossl.conf dest: /etc/nginx/sites-available/kibana_nossl.conf
force: no force: false
# - name: Kibana host in Nginx is enabled # - name: Kibana host in Nginx is enabled
# file: # file:

View file

@ -20,7 +20,7 @@
url: "https://raw.githubusercontent.com/munin-monitoring/contrib/master/plugins/libvirt/{{ item }}" url: "https://raw.githubusercontent.com/munin-monitoring/contrib/master/plugins/libvirt/{{ item }}"
dest: "/usr/local/share/munin/plugins/" dest: "/usr/local/share/munin/plugins/"
mode: "0755" mode: "0755"
force: no force: false
loop: loop:
- kvm_cpu - kvm_cpu
- kvm_io - kvm_io
@ -32,7 +32,7 @@
src: "/usr/local/share/munin/plugins/{{ plugin_name }}" src: "/usr/local/share/munin/plugins/{{ plugin_name }}"
dest: "/etc/munin/plugins/{{ plugin_name }}" dest: "/etc/munin/plugins/{{ plugin_name }}"
state: link state: link
force: yes force: true
loop: loop:
- kvm_cpu - kvm_cpu
- kvm_io - kvm_io

View file

@ -17,7 +17,7 @@
mode: "0700" mode: "0700"
owner: root owner: root
group: root group: root
force: yes force: true
- name: migrate-vm script is present - name: migrate-vm script is present
ansible.builtin.copy: ansible.builtin.copy:
@ -26,7 +26,7 @@
mode: "0700" mode: "0700"
owner: root owner: root
group: root group: root
force: yes force: true
- name: kvmstats script is present - name: kvmstats script is present
ansible.builtin.copy: ansible.builtin.copy:
@ -35,7 +35,7 @@
mode: "0700" mode: "0700"
owner: root owner: root
group: root group: root
force: yes force: true
- name: kvmstats cron is present - name: kvmstats cron is present
ansible.builtin.template: ansible.builtin.template:

View file

@ -18,7 +18,7 @@
mode: "0700" mode: "0700"
owner: root owner: root
group: root group: root
force: yes force: true
- name: Create /etc/evolinux - name: Create /etc/evolinux
ansible.builtin.file: ansible.builtin.file:
@ -35,7 +35,7 @@
mode: "0600" mode: "0600"
owner: root owner: root
group: root group: root
force: no force: false
- name: Cron.d is present - name: Cron.d is present
ansible.builtin.file: ansible.builtin.file:

View file

@ -9,7 +9,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: elastic.asc src: elastic.asc
dest: "{{ apt_keyring_dir }}/elastic.asc" dest: "{{ apt_keyring_dir }}/elastic.asc"
force: yes force: true
mode: "0644" mode: "0644"
owner: root owner: root
group: root group: root

View file

@ -25,7 +25,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: check_memcached_instances.sh src: check_memcached_instances.sh
dest: /usr/local/lib/nagios/plugins/check_memcached_instances dest: /usr/local/lib/nagios/plugins/check_memcached_instances
force: yes force: true
mode: "0755" mode: "0755"
owner: root owner: root
group: root group: root

View file

@ -9,7 +9,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: elastic.asc src: elastic.asc
dest: "{{ apt_keyring_dir }}/elastic.asc" dest: "{{ apt_keyring_dir }}/elastic.asc"
force: yes force: true
mode: "0644" mode: "0644"
owner: root owner: root
group: root group: root

View file

@ -52,7 +52,7 @@
ansible.builtin.template: ansible.builtin.template:
src: logrotate_bullseye.j2 src: logrotate_bullseye.j2
dest: /etc/logrotate.d/mongodb dest: /etc/logrotate.d/mongodb
force: yes force: true
backup: no backup: no
- ansible.builtin.include_role: - ansible.builtin.include_role:
@ -74,7 +74,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: "munin/{{ item }}" src: "munin/{{ item }}"
dest: '/usr/local/share/munin/plugins/{{ item }}' dest: '/usr/local/share/munin/plugins/{{ item }}'
force: yes force: true
loop: loop:
- mongo_btree - mongo_btree
- mongo_collections - mongo_collections

View file

@ -10,7 +10,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: "server-{{ mongodb_version }}.asc" src: "server-{{ mongodb_version }}.asc"
dest: "{{ apt_keyring_dir }}/mongodb-server-{{ mongodb_version }}.asc" dest: "{{ apt_keyring_dir }}/mongodb-server-{{ mongodb_version }}.asc"
force: yes force: true
mode: "0644" mode: "0644"
owner: root owner: root
group: root group: root
@ -51,7 +51,7 @@
ansible.builtin.template: ansible.builtin.template:
src: logrotate_bullseye.j2 src: logrotate_bullseye.j2
dest: /etc/logrotate.d/mongodb dest: /etc/logrotate.d/mongodb
force: yes force: true
backup: no backup: no
- ansible.builtin.include_role: - ansible.builtin.include_role:
@ -73,7 +73,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: "munin/{{ item }}" src: "munin/{{ item }}"
dest: '/usr/local/share/munin/plugins/{{ item }}' dest: '/usr/local/share/munin/plugins/{{ item }}'
force: yes force: true
loop: loop:
- mongo_btree - mongo_btree
- mongo_collections - mongo_collections

View file

@ -16,7 +16,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: "server-{{ mongodb_version }}.asc" src: "server-{{ mongodb_version }}.asc"
dest: "{{ apt_keyring_dir }}/mongodb-server-{{ mongodb_version }}.asc" dest: "{{ apt_keyring_dir }}/mongodb-server-{{ mongodb_version }}.asc"
force: yes force: true
mode: "0644" mode: "0644"
owner: root owner: root
group: root group: root
@ -65,7 +65,7 @@
ansible.builtin.template: ansible.builtin.template:
src: logrotate_buster.j2 src: logrotate_buster.j2
dest: /etc/logrotate.d/mongodb dest: /etc/logrotate.d/mongodb
force: yes force: true
backup: no backup: no
- ansible.builtin.include_role: - ansible.builtin.include_role:
@ -87,7 +87,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: "munin/{{ item }}" src: "munin/{{ item }}"
dest: '/usr/local/share/munin/plugins/{{ item }}' dest: '/usr/local/share/munin/plugins/{{ item }}'
force: yes force: true
loop: loop:
- mongo_btree - mongo_btree
- mongo_collections - mongo_collections

View file

@ -16,7 +16,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: "server-{{ mongodb_version }}.asc" src: "server-{{ mongodb_version }}.asc"
dest: "/etc/apt/trusted.gpg.d/mongodb-server-{{ mongodb_version }}.asc" dest: "/etc/apt/trusted.gpg.d/mongodb-server-{{ mongodb_version }}.asc"
force: yes force: true
mode: "0644" mode: "0644"
owner: root owner: root
group: root group: root
@ -57,5 +57,5 @@
ansible.builtin.template: ansible.builtin.template:
src: logrotate_jessie.j2 src: logrotate_jessie.j2
dest: /etc/logrotate.d/mongodb dest: /etc/logrotate.d/mongodb
force: yes force: true
backup: no backup: no

View file

@ -28,7 +28,7 @@
ansible.builtin.template: ansible.builtin.template:
src: logrotate_stretch.j2 src: logrotate_stretch.j2
dest: /etc/logrotate.d/mongodb-server dest: /etc/logrotate.d/mongodb-server
force: yes force: true
backup: no backup: no
- name: disable previous logrotate - name: disable previous logrotate

View file

@ -13,7 +13,7 @@
src: evolinux-defaults.conf.j2 src: evolinux-defaults.conf.j2
dest: /etc/monit/conf.d/z-evolinux-defaults.conf dest: /etc/monit/conf.d/z-evolinux-defaults.conf
mode: "0640" mode: "0640"
force: yes force: true
notify: restart monit notify: restart monit
tags: tags:
- monit - monit

View file

@ -10,7 +10,7 @@
owner: root owner: root
group: root group: root
mode: "0644" mode: "0644"
force: yes force: true
tags: tags:
- mysql - mysql
@ -21,6 +21,6 @@
owner: root owner: root
group: root group: root
mode: "0644" mode: "0644"
force: no force: false
tags: tags:
- mysql - mysql

View file

@ -51,7 +51,7 @@
mode: "0755" mode: "0755"
owner: root owner: root
group: root group: root
force: yes force: true
- name: systemd unit is installed - name: systemd unit is installed
ansible.builtin.copy: ansible.builtin.copy:
@ -60,7 +60,7 @@
mode: "0644" mode: "0644"
owner: root owner: root
group: root group: root
force: yes force: true
register: mysql_systemd_unit register: mysql_systemd_unit
- name: APT cache is up-to-date - name: APT cache is up-to-date

View file

@ -75,7 +75,7 @@
mode: "0755" mode: "0755"
owner: root owner: root
group: staff group: staff
force: yes force: true
tags: tags:
- mytop - mytop
- mysql - mysql
@ -96,7 +96,7 @@
src: mytop-config.j2 src: mytop-config.j2
dest: /root/.mytop dest: /root/.mytop
mode: "0600" mode: "0600"
force: yes force: true
tags: tags:
- mytop - mytop
- mysql - mysql

View file

@ -10,7 +10,7 @@
owner: root owner: root
group: root group: root
mode: "0644" mode: "0644"
force: yes force: true
tags: tags:
- mysql - mysql

View file

@ -10,7 +10,7 @@
owner: root owner: root
group: root group: root
mode: "0644" mode: "0644"
force: yes force: true
notify: "{{ mysql_restart_handler_name }}" notify: "{{ mysql_restart_handler_name }}"
tags: tags:
- mysql - mysql
@ -36,7 +36,7 @@
ansible.builtin.template: ansible.builtin.template:
src: mariadb.systemd.j2 src: mariadb.systemd.j2
dest: /etc/systemd/system/mariadb.service.d/evolinux.conf dest: /etc/systemd/system/mariadb.service.d/evolinux.conf
force: yes force: true
register: mariadb_systemd_override register: mariadb_systemd_override
- name: reload systemd and restart MariaDB - name: reload systemd and restart MariaDB

View file

@ -7,7 +7,7 @@
owner: root owner: root
group: root group: root
mode: "0700" mode: "0700"
force: yes force: true
tags: tags:
- mysql_skip - mysql_skip
@ -45,7 +45,7 @@
ansible.builtin.template: ansible.builtin.template:
src: mysql_skip.systemd.j2 src: mysql_skip.systemd.j2
dest: /etc/systemd/system/mysql_skip.service dest: /etc/systemd/system/mysql_skip.service
force: yes force: true
- name: "Start or stop systemd unit" - name: "Start or stop systemd unit"
ansible.builtin.systemd: ansible.builtin.systemd:

View file

@ -76,7 +76,7 @@
src: mytop.j2 src: mytop.j2
dest: /root/.mytop dest: /root/.mytop
mode: "0600" mode: "0600"
force: yes force: true
tags: tags:
- mytop - mytop
- mysql - mysql
@ -87,7 +87,7 @@
src: mytop.bullseye.j2 src: mytop.bullseye.j2
dest: /root/.mytop dest: /root/.mytop
mode: "0600" mode: "0600"
force: yes force: true
tags: tags:
- mytop - mytop
- mysql - mysql
@ -220,7 +220,7 @@
src: save_mysql_processlist.sh src: save_mysql_processlist.sh
dest: "{{ _mysql_scripts_dir }}/save_mysql_processlist.sh" dest: "{{ _mysql_scripts_dir }}/save_mysql_processlist.sh"
mode: "0755" mode: "0755"
force: no force: false
tags: tags:
- mysql - mysql
@ -229,7 +229,7 @@
src: mysql_connections.sh src: mysql_connections.sh
dest: "{{ _mysql_scripts_dir }}/mysql_connections" dest: "{{ _mysql_scripts_dir }}/mysql_connections"
mode: "0755" mode: "0755"
force: no force: false
tags: tags:
- mysql - mysql
@ -238,7 +238,7 @@
src: mysql-queries-killer.sh src: mysql-queries-killer.sh
dest: "{{ _mysql_scripts_dir }}/mysql-queries-killer.sh" dest: "{{ _mysql_scripts_dir }}/mysql-queries-killer.sh"
mode: "0755" mode: "0755"
force: no force: false
tags: tags:
- mysql - mysql
@ -247,6 +247,6 @@
src: evomariabackup.sh src: evomariabackup.sh
dest: "{{ _mysql_scripts_dir }}/evomariabackup" dest: "{{ _mysql_scripts_dir }}/evomariabackup"
mode: "0755" mode: "0755"
force: no force: false
tags: tags:
- mysql - mysql

View file

@ -30,7 +30,7 @@
dest: /etc/nagios/nrpe.d/evolix.cfg dest: /etc/nagios/nrpe.d/evolix.cfg
group: nagios group: nagios
mode: "0640" mode: "0640"
force: no force: false
notify: restart nagios-nrpe-server notify: restart nagios-nrpe-server
tags: tags:
- nagios-nrpe - nagios-nrpe

View file

@ -24,7 +24,7 @@
owner: root owner: root
group: root group: root
mode: "0750" mode: "0750"
force: yes force: true
- name: "symlink for backward compatibility" - name: "symlink for backward compatibility"
ansible.builtin.file: ansible.builtin.file:
@ -40,4 +40,4 @@
owner: root owner: root
group: staff group: staff
mode: "0755" mode: "0755"
force: yes force: true

View file

@ -4,7 +4,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: newrelic.asc src: newrelic.asc
dest: "{{ apt_keyring_dir }}/newrelic.asc" dest: "{{ apt_keyring_dir }}/newrelic.asc"
force: yes force: true
mode: "0644" mode: "0644"
owner: root owner: root
group: root group: root

View file

@ -4,7 +4,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: logrotate_nginx src: logrotate_nginx
dest: /etc/logrotate.d/nginx dest: /etc/logrotate.d/nginx
force: no force: false
tags: tags:
- nginx - nginx
- logrotate - logrotate

View file

@ -40,7 +40,7 @@
src: nginx/evolinux-defaults.conf src: nginx/evolinux-defaults.conf
dest: /etc/nginx/conf.d/z-evolinux-defaults.conf dest: /etc/nginx/conf.d/z-evolinux-defaults.conf
mode: "0640" mode: "0640"
# force: yes # force: true
notify: reload nginx notify: reload nginx
tags: tags:
- nginx - nginx
@ -57,7 +57,7 @@
group: www-data group: www-data
directory_mode: "0640" directory_mode: "0640"
mode: "0640" mode: "0640"
force: no force: false
notify: reload nginx notify: reload nginx
tags: tags:
- nginx - nginx
@ -74,7 +74,7 @@
group: www-data group: www-data
directory_mode: "0640" directory_mode: "0640"
mode: "0640" mode: "0640"
force: no force: false
notify: reload nginx notify: reload nginx
tags: tags:
- nginx - nginx
@ -88,7 +88,7 @@
group: www-data group: www-data
directory_mode: "0640" directory_mode: "0640"
mode: "0640" mode: "0640"
force: no force: false
notify: reload nginx notify: reload nginx
tags: tags:
- nginx - nginx
@ -128,7 +128,7 @@
src: /etc/nginx/sites-available/evolinux-default.conf src: /etc/nginx/sites-available/evolinux-default.conf
dest: /etc/nginx/sites-enabled/default dest: /etc/nginx/sites-enabled/default
state: link state: link
force: yes force: true
notify: reload nginx notify: reload nginx
when: nginx_evolinux_default_enabled | bool when: nginx_evolinux_default_enabled | bool
tags: tags:

View file

@ -12,7 +12,7 @@
ansible.builtin.template: ansible.builtin.template:
src: apt/nginx_preferences src: apt/nginx_preferences
dest: /etc/apt/preferences.d/999-nginx dest: /etc/apt/preferences.d/999-nginx
force: yes force: true
mode: "0640" mode: "0640"
register: nginx_apt_preferences register: nginx_apt_preferences
tags: tags:

View file

@ -13,7 +13,7 @@
dest: "{{ nginx_serverstatus_suffix_file }}" dest: "{{ nginx_serverstatus_suffix_file }}"
# The last character "\u000A" is a line feed (LF), it's better to keep it # The last character "\u000A" is a line feed (LF), it's better to keep it
content: "{{ nginx_serverstatus_suffix }}\u000A" content: "{{ nginx_serverstatus_suffix }}\u000A"
force: yes force: true
when: nginx_serverstatus_suffix | length > 0 when: nginx_serverstatus_suffix | length > 0
- name: generate random string for server-status suffix - name: generate random string for server-status suffix

View file

@ -60,7 +60,7 @@
src: opendkim-evolix.conf src: opendkim-evolix.conf
dest: /etc/opendkim-evolix.conf dest: /etc/opendkim-evolix.conf
mode: "0644" mode: "0644"
force: yes force: true
notify: restart opendkim notify: restart opendkim
tags: tags:
- opendkim - opendkim
@ -72,7 +72,7 @@
owner: opendkim owner: opendkim
group: opendkim group: opendkim
mode: "0750" mode: "0750"
force: yes force: true
tags: tags:
- opendkim - opendkim

View file

@ -154,7 +154,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: logrotate_openvpn src: logrotate_openvpn
dest: /etc/logrotate.d/openvpn dest: /etc/logrotate.d/openvpn
force: no force: false
- name: Generate a password for the management interface - name: Generate a password for the management interface
ansible.builtin.set_fact: ansible.builtin.set_fact:

View file

@ -43,7 +43,7 @@
owner: root owner: root
group: root group: root
mode: "0644" mode: "0644"
force: no force: false
- name: Copy Apache settings for modules - name: Copy Apache settings for modules
ansible.builtin.template: ansible.builtin.template:
@ -52,7 +52,7 @@
owner: root owner: root
group: root group: root
mode: "0644" mode: "0644"
force: no force: false
- name: Ensure Apache modules configs are enabled - name: Ensure Apache modules configs are enabled
ansible.builtin.command: ansible.builtin.command:

View file

@ -31,7 +31,7 @@
<Directory /usr/share/awstats/icon/> <Directory /usr/share/awstats/icon/>
Require all granted Require all granted
</Directory> </Directory>
force: no force: false
mode: "0644" mode: "0644"
- name: Enable apache awstats-icon configuration - name: Enable apache awstats-icon configuration

View file

@ -15,7 +15,7 @@
ansible.builtin.template: ansible.builtin.template:
src: phpmyadmin_apt_preferences.j2 src: phpmyadmin_apt_preferences.j2
dest: /etc/apt/preferences.d/999-phpmyadmin dest: /etc/apt/preferences.d/999-phpmyadmin
force: yes force: true
mode: "0644" mode: "0644"
when: ansible_distribution_major_version is version('10', '=') when: ansible_distribution_major_version is version('10', '=')
@ -53,7 +53,7 @@
dest: "{{ packweb_phpmyadmin_suffix_file }}" dest: "{{ packweb_phpmyadmin_suffix_file }}"
# The last character "\u000A" is a line feed (LF), it's better to keep it # The last character "\u000A" is a line feed (LF), it's better to keep it
content: "{{ packweb_phpmyadmin_suffix }}\u000A" content: "{{ packweb_phpmyadmin_suffix }}\u000A"
force: yes force: true
when: packweb_phpmyadmin_suffix | length > 0 when: packweb_phpmyadmin_suffix | length > 0
- name: generate random string for phpmyadmin suffix - name: generate random string for phpmyadmin suffix

View file

@ -19,7 +19,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: percona.asc src: percona.asc
dest: "{{ apt_keyring_dir }}/percona.asc" dest: "{{ apt_keyring_dir }}/percona.asc"
force: yes force: true
mode: "0644" mode: "0644"
owner: root owner: root
group: root group: root

View file

@ -33,7 +33,7 @@
; Put customized values here. ; Put customized values here.
; default_charset = "ISO-8859-1" ; default_charset = "ISO-8859-1"
mode: "0644" mode: "0644"
force: no force: false
- name: "Set custom values for PHP to enable Symfony" - name: "Set custom values for PHP to enable Symfony"
community.general.ini_file: community.general.ini_file:

View file

@ -17,10 +17,10 @@
dest: "{{ php_cli_custom_ini_file }}" dest: "{{ php_cli_custom_ini_file }}"
content: | content: |
; Put customized values here. ; Put customized values here.
force: no force: false
# This task is not merged with the above copy # This task is not merged with the above copy
# because "force: no" prevents any fix after the fact # because "force: false" prevents any fix after the fact
- name: "Permissions for custom php.ini for CLI" - name: "Permissions for custom php.ini for CLI"
ansible.builtin.file: ansible.builtin.file:
dest: "{{ php_cli_custom_ini_file }}" dest: "{{ php_cli_custom_ini_file }}"

View file

@ -32,7 +32,7 @@
dest: "{{ php_fpm_custom_ini_file }}" dest: "{{ php_fpm_custom_ini_file }}"
content: | content: |
; Put customized values here. ; Put customized values here.
force: no force: false
notify: "restart {{ php_fpm_service_name }}" notify: "restart {{ php_fpm_service_name }}"
- name: Set default PHP FPM values - name: Set default PHP FPM values
@ -66,7 +66,7 @@
; Put customized values here. ; Put customized values here.
; default_charset = "ISO-8859-1" ; default_charset = "ISO-8859-1"
mode: "0644" mode: "0644"
force: no force: false
notify: "restart {{ php_fpm_service_name }}" notify: "restart {{ php_fpm_service_name }}"
- name: "Set custom values for PHP to enable Symfony" - name: "Set custom values for PHP to enable Symfony"

View file

@ -4,7 +4,7 @@
ansible.builtin.file: ansible.builtin.file:
src: "{{ item.src }}" src: "{{ item.src }}"
dest: "{{ item.dest }}" dest: "{{ item.dest }}"
force: yes force: true
state: link state: link
loop: loop:
- { src: "{{ php_cli_defaults_ini_file }}", dest: "/etc/php/7.4/cli/conf.d/z-evolinux-defaults.ini" } - { src: "{{ php_cli_defaults_ini_file }}", dest: "/etc/php/7.4/cli/conf.d/z-evolinux-defaults.ini" }
@ -19,7 +19,7 @@
ansible.builtin.file: ansible.builtin.file:
src: "{{ item.src }}" src: "{{ item.src }}"
dest: "{{ item.dest }}" dest: "{{ item.dest }}"
force: yes force: true
state: link state: link
loop: loop:
- { src: "{{ php_apache_defaults_ini_file }}", dest: "/etc/php/7.4/apache2/conf.d/z-evolinux-defaults.ini" } - { src: "{{ php_apache_defaults_ini_file }}", dest: "/etc/php/7.4/apache2/conf.d/z-evolinux-defaults.ini" }
@ -36,7 +36,7 @@
ansible.builtin.file: ansible.builtin.file:
src: "{{ item.src }}" src: "{{ item.src }}"
dest: "{{ item.dest }}" dest: "{{ item.dest }}"
force: yes force: true
state: link state: link
loop: loop:
- { src: "{{ php_fpm_defaults_ini_file }}", dest: "/etc/php/7.4/fpm/conf.d/z-evolinux-defaults.ini" } - { src: "{{ php_fpm_defaults_ini_file }}", dest: "/etc/php/7.4/fpm/conf.d/z-evolinux-defaults.ini" }

View file

@ -13,7 +13,7 @@
owner: root owner: root
group: root group: root
mode: "0644" mode: "0644"
force: yes force: true
notify: restart postfix notify: restart postfix
when: (postfix_force_main_cf | bool) or (postfix_maincf_md5_jessie in default_main_cf.stdout) or (postfix_maincf_md5_stretch in default_main_cf.stdout) when: (postfix_force_main_cf | bool) or (postfix_maincf_md5_jessie in default_main_cf.stdout) or (postfix_maincf_md5_stretch in default_main_cf.stdout)
tags: tags:

View file

@ -31,7 +31,7 @@
owner: root owner: root
group: root group: root
mode: "0644" mode: "0644"
force: yes force: true
notify: restart postfix notify: restart postfix
when: (postfix_force_main_cf | bool) or (postfix_maincf_md5_jessie in default_main_cf.stdout) or (postfix_maincf_md5_stretch in default_main_cf.stdout) when: (postfix_force_main_cf | bool) or (postfix_maincf_md5_jessie in default_main_cf.stdout) or (postfix_maincf_md5_stretch in default_main_cf.stdout)
tags: tags:
@ -50,7 +50,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: filter src: filter
dest: "/etc/postfix/{{ item }}" dest: "/etc/postfix/{{ item }}"
force: no force: false
loop: loop:
- virtual - virtual
- client.access - client.access

View file

@ -9,7 +9,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: postgresql.service.override.conf src: postgresql.service.override.conf
dest: /etc/systemd/system/postgresql@.service.d/override.conf dest: /etc/systemd/system/postgresql@.service.d/override.conf
force: yes force: true
mode: "0644" mode: "0644"
notify: notify:
- reload systemd - reload systemd

View file

@ -3,4 +3,4 @@
ansible.builtin.copy: ansible.builtin.copy:
src: logrotate_postgresql src: logrotate_postgresql
dest: /etc/logrotate.d/postgresql-common dest: /etc/logrotate.d/postgresql-common
force: no force: false

View file

@ -12,7 +12,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: postgresql.asc src: postgresql.asc
dest: "{{ apt_keyring_dir }}/postgresql.asc" dest: "{{ apt_keyring_dir }}/postgresql.asc"
force: yes force: true
mode: "0644" mode: "0644"
owner: root owner: root
group: root group: root

View file

@ -76,7 +76,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: vpasswd src: vpasswd
dest: /etc/proftpd/vpasswd dest: /etc/proftpd/vpasswd
force: no force: false
notify: restart proftpd notify: restart proftpd
tags: tags:
- proftpd - proftpd

View file

@ -10,7 +10,7 @@
owner: rabbitmq owner: rabbitmq
group: rabbitmq group: rabbitmq
mode: "0600" mode: "0600"
force: no force: false
- name: Create rabbitmq.config - name: Create rabbitmq.config
ansible.builtin.copy: ansible.builtin.copy:
@ -19,7 +19,7 @@
owner: rabbitmq owner: rabbitmq
group: rabbitmq group: rabbitmq
mode: "0600" mode: "0600"
force: no force: false
- name: Adjust ulimit - name: Adjust ulimit
ansible.builtin.lineinfile: ansible.builtin.lineinfile:

View file

@ -23,7 +23,7 @@
owner: root owner: root
group: root group: root
mode: "0755" mode: "0755"
force: yes force: true
when: ansible_distribution_major_version is version('11', '<=') when: ansible_distribution_major_version is version('11', '<=')
- name: check_rabbitmq (Python 3 version) is installed - name: check_rabbitmq (Python 3 version) is installed
@ -33,7 +33,7 @@
owner: root owner: root
group: root group: root
mode: "0755" mode: "0755"
force: yes force: true
when: ansible_distribution_major_version is version('11', '>=') when: ansible_distribution_major_version is version('11', '>=')
- name: check_rabbitmq is available for NRPE - name: check_rabbitmq is available for NRPE

View file

@ -33,7 +33,7 @@
dest: '{{ rbenv_root }}' dest: '{{ rbenv_root }}'
version: '{{ rbenv_version }}' version: '{{ rbenv_version }}'
accept_hostkey: yes accept_hostkey: yes
force: yes force: true
become_user: "{{ username }}" become_user: "{{ username }}"
become: yes become: yes
tags: tags:
@ -67,7 +67,7 @@
dest: '{{ rbenv_root }}/plugins/{{ item.name }}' dest: '{{ rbenv_root }}/plugins/{{ item.name }}'
version: '{{ item.version }}' version: '{{ item.version }}'
accept_hostkey: yes accept_hostkey: yes
force: yes force: true
loop: "{{ rbenv_plugins }}" loop: "{{ rbenv_plugins }}"
become_user: "{{ username }}" become_user: "{{ username }}"
become: yes become: yes

View file

@ -12,7 +12,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: check_redis.pl src: check_redis.pl
dest: /usr/local/lib/nagios/plugins/check_redis dest: /usr/local/lib/nagios/plugins/check_redis
force: yes force: true
mode: "0755" mode: "0755"
owner: root owner: root
group: root group: root
@ -87,7 +87,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: check_redis_instances.sh src: check_redis_instances.sh
dest: /usr/local/lib/nagios/plugins/check_redis_instances dest: /usr/local/lib/nagios/plugins/check_redis_instances
force: yes force: true
mode: "0755" mode: "0755"
owner: root owner: root
group: root group: root

View file

@ -24,7 +24,7 @@
ansible.builtin.template: ansible.builtin.template:
src: logrotate_jessie.j2 src: logrotate_jessie.j2
dest: /etc/logrotate.d/{{ squid_daemon_name }} dest: /etc/logrotate.d/{{ squid_daemon_name }}
force: yes force: true
when: squid_logrotate_md5.rc == 0 when: squid_logrotate_md5.rc == 0
tags: tags:
- squid - squid

View file

@ -24,7 +24,7 @@
ansible.builtin.template: ansible.builtin.template:
src: logrotate_stretch.j2 src: logrotate_stretch.j2
dest: /etc/logrotate.d/{{ squid_daemon_name }} dest: /etc/logrotate.d/{{ squid_daemon_name }}
force: yes force: true
when: squid_logrotate_md5.rc == 0 when: squid_logrotate_md5.rc == 0
tags: tags:
- squid - squid

View file

@ -46,7 +46,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: whitelist-evolinux.conf src: whitelist-evolinux.conf
dest: /etc/squid3/whitelist.conf dest: /etc/squid3/whitelist.conf
force: no force: false
notify: "reload squid3" notify: "reload squid3"
when: ansible_distribution_release == "jessie" when: ansible_distribution_release == "jessie"
@ -69,14 +69,14 @@
dest: /etc/squid/evolinux-whitelist-custom.conf dest: /etc/squid/evolinux-whitelist-custom.conf
content: | content: |
# Put customized values here. # Put customized values here.
force: no force: false
when: ansible_distribution_major_version is version('9', '>=') when: ansible_distribution_major_version is version('9', '>=')
- name: "evolinux acl for local proxy (Debian 9 or later)" - name: "evolinux acl for local proxy (Debian 9 or later)"
ansible.builtin.template: ansible.builtin.template:
src: evolinux-acl.conf.j2 src: evolinux-acl.conf.j2
dest: /etc/squid/evolinux-acl.conf dest: /etc/squid/evolinux-acl.conf
force: no force: false
notify: "reload squid" notify: "reload squid"
when: when:
- squid_localproxy_enable | bool - squid_localproxy_enable | bool
@ -87,7 +87,7 @@
dest: /etc/squid/evolinux-acl.conf dest: /etc/squid/evolinux-acl.conf
content: | content: |
# Put customized values here. # Put customized values here.
force: no force: false
when: when:
- not (squid_localproxy_enable | bool) - not (squid_localproxy_enable | bool)
- ansible_distribution_major_version is version('9', '>=') - ansible_distribution_major_version is version('9', '>=')
@ -96,7 +96,7 @@
ansible.builtin.copy: ansible.builtin.copy:
src: evolinux-httpaccess.conf src: evolinux-httpaccess.conf
dest: /etc/squid/evolinux-httpaccess.conf dest: /etc/squid/evolinux-httpaccess.conf
force: no force: false
notify: "reload squid" notify: "reload squid"
when: when:
- squid_localproxy_enable | bool - squid_localproxy_enable | bool
@ -107,7 +107,7 @@
dest: /etc/squid/evolinux-httpaccess.conf dest: /etc/squid/evolinux-httpaccess.conf
content: | content: |
# Put customized values here. # Put customized values here.
force: no force: false
when: when:
- not (squid_localproxy_enable | bool) - not (squid_localproxy_enable | bool)
- ansible_distribution_major_version is version('9', '>=') - ansible_distribution_major_version is version('9', '>=')
@ -116,7 +116,7 @@
ansible.builtin.template: ansible.builtin.template:
src: evolinux-custom.conf.j2 src: evolinux-custom.conf.j2
dest: /etc/squid/evolinux-custom.conf dest: /etc/squid/evolinux-custom.conf
force: no force: false
notify: "reload squid" notify: "reload squid"
when: when:
- squid_localproxy_enable | bool - squid_localproxy_enable | bool
@ -127,7 +127,7 @@
dest: /etc/squid/evolinux-custom.conf dest: /etc/squid/evolinux-custom.conf
content: | content: |
# Put customized values here. # Put customized values here.
force: no force: false
when: when:
- not (squid_localproxy_enable | bool) - not (squid_localproxy_enable | bool)
- ansible_distribution_major_version is version('9', '>=') - ansible_distribution_major_version is version('9', '>=')

View file

@ -21,7 +21,7 @@
src: systemd-override.conf.j2 src: systemd-override.conf.j2
dest: /etc/systemd/system/squid.service.d/override.conf dest: /etc/systemd/system/squid.service.d/override.conf
mode: "0644" mode: "0644"
force: yes force: true
register: _squid_systemd_override register: _squid_systemd_override
- name: "Systemd daemon is reloaded and Squid restarted" - name: "Systemd daemon is reloaded and Squid restarted"

View file

@ -10,7 +10,7 @@
src: http.conf src: http.conf
dest: /etc/supervisor/conf.d/ dest: /etc/supervisor/conf.d/
mode: "0644" mode: "0644"
force: no force: false
notify: restart supervisor notify: restart supervisor
when: supervisord_enable_http | bool when: supervisord_enable_http | bool
tags: tags:

View file

@ -21,7 +21,7 @@
mode: "0660" mode: "0660"
owner: "{{ tomcat_instance_name }}" owner: "{{ tomcat_instance_name }}"
group: "{{ tomcat_instance_name }}" group: "{{ tomcat_instance_name }}"
force: no force: false
- name: Templating of server.xml file - name: Templating of server.xml file
ansible.builtin.template: ansible.builtin.template:
@ -30,7 +30,7 @@
mode: "0660" mode: "0660"
owner: "{{ tomcat_instance_name }}" owner: "{{ tomcat_instance_name }}"
group: "{{ tomcat_instance_name }}" group: "{{ tomcat_instance_name }}"
force: no force: false
- name: Copy config file - name: Copy config file
ansible.builtin.copy: ansible.builtin.copy:
@ -39,6 +39,6 @@
mode: "0660" mode: "0660"
owner: "{{ tomcat_instance_name }}" owner: "{{ tomcat_instance_name }}"
group: "{{ tomcat_instance_name }}" group: "{{ tomcat_instance_name }}"
force: no force: false
with_fileglob: with_fileglob:
- "tomcat{{ tomcat_version }}/*" - "tomcat{{ tomcat_version }}/*"

View file

@ -11,7 +11,7 @@
ansible.builtin.get_url: ansible.builtin.get_url:
url: https://www.internic.net/domain/named.cache url: https://www.internic.net/domain/named.cache
dest: /etc/unbound/root.hints dest: /etc/unbound/root.hints
force: yes force: true
mode: "0644" mode: "0644"
notify: reload unbound notify: reload unbound
tags: tags:

Some files were not shown because too many files have changed in this diff Show more