Commit graph

24 commits

Author SHA1 Message Date
Patrick Marchand cba87f594c Fix mistake in join for minifirewall HTTPSITES
All checks were successful
continuous-integration/drone/push Build is passing
There were extraneous quotes in the rendered string.

fixes #65
2019-07-03 09:07:17 -04:00
Patrick Marchand ff9e1e80aa Fix for minifirewall bug in 8d352f100e
All checks were successful
continuous-integration/drone/push Build is passing
The default OS websites would override all the default http sites.
I removed those default http sites from the file and put them in
the minifirewall_http_sites list. Since this would override the
list anyway, it doesnt change much, except that someone who doesnt
want to use the OS default websites should also override the related
variables (minifirewall_default_*_http_sites)

fixes #65
2019-07-03 09:04:17 -04:00
Patrick Marchand 8d352f100e Adds default http sites whitelist for ubuntu
Some checks reported errors
continuous-integration/drone/push Build encountered an error
Ubuntu and Debian do not use the same apt sources. I created two
new default variables (minifirewall_default_xxx_http_sites) that
contain a list of the sites required for apt to work. I then removed
the debian sites from the default file and added two new tasks to
prepend the contents of these variables to HTTPSITES.

fixes #65
2019-07-02 16:12:09 -04:00
Jérémy Lecour a94c94018c normalize some arguments positions 2019-01-01 20:02:50 +01:00
Jérémy Lecour 2bcc1133c0 minifirewall: all variables are configurable
By default, a Null value keeps the variable current value as-is.
Set an Array (can be empty) to replace the value.
2018-12-04 14:49:50 +01:00
Jérémy Lecour 50e16e0dee minifirewall: compare config before/after (for restart condition) 2018-12-04 14:46:32 +01:00
Jérémy Lecour c3e4a78442 minifirewall: main file is configurable 2018-12-04 14:45:48 +01:00
Jérémy Lecour 96cd04ae40 minifirewall: add a variable to disable the restart handler 2018-08-30 17:04:14 +02:00
Jérémy Lecour bcd3553cbb minifirewall: add debug for variables 2017-11-26 12:32:33 +01:00
Jérémy Lecour 97b0225232 Minifirewall can deal with evomaintenance
Each role has to know how to deal with the other.
Otherwise, depending on order of execution, the firewall might not
allow connections for evomaintenance
2017-10-08 00:00:24 +02:00
Jérémy Lecour 685282bf93 minifirewall: fallback when no trusted ip is provided 2017-09-14 14:26:44 +02:00
Jérémy Lecour 86372199ec minifirewall: simplify debug 2017-04-11 16:13:53 +02:00
Jérémy Lecour cda0932aad whitespaces 2017-03-30 16:05:46 +02:00
Jérémy Lecour 5b2ab0d8d3 Ansible >= 2.2 supported 2017-03-24 14:15:09 +01:00
Jérémy Lecour 5efb9b04e1 Minifirewall: ensure that at least 1 trusted IP is provided 2017-03-22 18:12:30 +01:00
Jérémy Lecour 1f653b1fdc minifirewall: the return of the comments 2017-01-31 17:44:31 +01:00
Jérémy Lecour dd432a9c11 minifirewall: restart manually (systemd unit is not working) 2017-01-31 17:43:10 +01:00
Jérémy Lecour 0273f2ad56 minifirewall: debug for current status 2017-01-31 17:42:32 +01:00
Jérémy Lecour 277de88d44 minifirewall: command → shell 2017-01-31 17:41:33 +01:00
Jérémy Lecour 8920ff1ee4 Add "always_run: yes" where it's pertinent
There is also the "check_mode: no", but commented,
for when we switch to Ansible 2.2
2017-01-31 11:45:35 +01:00
Jérémy Lecour 82a4faa578 Minifirewall: disable check_mode for status check 2017-01-10 14:35:26 +01:00
Jérémy Lecour caf929b45b minifirewall: forgot a double quote 2017-01-09 16:47:07 +01:00
Jérémy Lecour 8cc7a032c2 minifirewall: restart if needed 2017-01-09 16:38:59 +01:00
Jérémy Lecour 9570efcaed Minifirewall: extend configuration abilities with blocks 2017-01-06 15:50:48 +01:00