2017-03-24 15:38:38 +01:00
|
|
|
# This role installs the docker daemon
|
|
|
|
---
|
2017-07-24 22:38:08 +02:00
|
|
|
- name: Remove older docker packages
|
2017-03-24 15:38:38 +01:00
|
|
|
apt:
|
2017-07-24 22:38:08 +02:00
|
|
|
name: '{{ item }}'
|
|
|
|
state: absent
|
|
|
|
with_items:
|
|
|
|
- docker
|
|
|
|
- docker-engine
|
|
|
|
- docker.io
|
|
|
|
|
|
|
|
- name: Install source requirements
|
|
|
|
apt:
|
|
|
|
name: '{{ item }}'
|
2017-03-24 15:38:38 +01:00
|
|
|
state: present
|
|
|
|
update_cache: yes
|
2017-07-24 22:38:08 +02:00
|
|
|
with_items:
|
|
|
|
- apt-transport-https
|
|
|
|
- ca-certificates
|
|
|
|
- gnupg2
|
2017-03-24 15:38:38 +01:00
|
|
|
|
2017-07-24 22:38:08 +02:00
|
|
|
- name: Add Docker repository
|
2017-03-24 15:38:38 +01:00
|
|
|
apt_repository:
|
2017-07-24 22:38:08 +02:00
|
|
|
repo: 'deb [arch=amd64] https://download.docker.com/linux/debian {{ ansible_distribution_release }} stable'
|
2017-03-24 15:38:38 +01:00
|
|
|
state: present
|
|
|
|
update_cache: no
|
2017-07-28 00:15:18 +02:00
|
|
|
filename: docker.list
|
2017-03-24 15:38:38 +01:00
|
|
|
|
2017-07-28 00:15:18 +02:00
|
|
|
- include: jessie_backports.yml
|
2017-07-24 22:38:08 +02:00
|
|
|
when: ansible_distribution_release == 'jessie'
|
2017-03-24 15:38:38 +01:00
|
|
|
|
2017-07-24 22:38:08 +02:00
|
|
|
- name: Add Docker's official GPG key
|
2017-03-24 15:38:38 +01:00
|
|
|
apt_key:
|
2017-07-24 22:38:08 +02:00
|
|
|
url: "https://download.docker.com/linux/debian/gpg"
|
|
|
|
state: present
|
2017-03-24 15:38:38 +01:00
|
|
|
|
2017-07-24 22:38:08 +02:00
|
|
|
- name: Install docker and python-docker
|
2017-03-24 15:38:38 +01:00
|
|
|
apt:
|
2017-04-06 11:33:56 +02:00
|
|
|
name: "{{ item }}"
|
2017-03-24 15:38:38 +01:00
|
|
|
state: latest
|
|
|
|
update_cache: yes
|
|
|
|
with_items:
|
2017-07-24 22:38:08 +02:00
|
|
|
- docker-ce
|
2017-03-24 15:38:38 +01:00
|
|
|
- python-docker
|
|
|
|
|
2017-07-24 22:38:08 +02:00
|
|
|
- name: Copy Docker daemon configuration file
|
2017-03-24 15:38:38 +01:00
|
|
|
template:
|
2017-07-24 22:38:08 +02:00
|
|
|
src: daemon.json.j2
|
|
|
|
dest: /etc/docker/daemon.json
|
2017-03-24 15:38:38 +01:00
|
|
|
notify:
|
|
|
|
- reload systemd
|
|
|
|
- restart docker
|
|
|
|
|
2017-07-24 22:38:08 +02:00
|
|
|
- name: Remove options from docker systemd service
|
|
|
|
lineinfile:
|
2017-08-03 21:16:23 +02:00
|
|
|
dest: /lib/systemd/system/docker.service
|
2017-07-24 22:38:08 +02:00
|
|
|
regexp: '^ExecStart='
|
|
|
|
line: 'ExecStart=/usr/bin/dockerd'
|
|
|
|
|
2017-03-24 15:38:38 +01:00
|
|
|
- name: Creating Docker tmp directory
|
|
|
|
file:
|
|
|
|
path: "{{ docker_tmpdir }}"
|
|
|
|
state: directory
|
|
|
|
mode: "0644"
|
|
|
|
owner: root
|
|
|
|
|
|
|
|
- name: Creating Docker TLS directory
|
|
|
|
file:
|
|
|
|
path: "{{ docker_tls_path }}"
|
|
|
|
state: directory
|
|
|
|
mode: "0644"
|
|
|
|
owner: root
|
2017-07-24 22:38:08 +02:00
|
|
|
when: docker_tls_enabled
|
2017-03-24 15:38:38 +01:00
|
|
|
|
|
|
|
- name: Copy shellpki utility to Docker TLS directory
|
|
|
|
template:
|
|
|
|
src: "{{ item }}.j2"
|
|
|
|
dest: "{{ docker_tls_path }}/{{ item }}"
|
|
|
|
mode: "0744"
|
|
|
|
with_items:
|
|
|
|
- shellpki.sh
|
|
|
|
- openssl.cnf
|
2017-07-24 22:38:08 +02:00
|
|
|
when: docker_tls_enabled
|
|
|
|
|
|
|
|
- name: Check if certs are already created
|
|
|
|
stat:
|
|
|
|
path: "{{ docker_tls_path }}/certs"
|
|
|
|
register: tls_certs_stat
|
2017-03-24 15:38:38 +01:00
|
|
|
|
|
|
|
- name: Creating a CA, server key
|
|
|
|
command: "{{ docker_tls_path }}/shellpki.sh init"
|
2017-07-24 22:38:08 +02:00
|
|
|
when: docker_tls_enabled and not tls_certs_stat.stat.isdir is defined
|