Jérémy Lecour
77b5f84567
evoacme: disable old certbot cron also in cron.daily
2018-06-21 17:22:40 +02:00
Jérémy Lecour
37f701eb54
evoacme: typos
2017-12-08 10:22:32 +01:00
Jérémy Lecour
375c3e6760
evoacme: crontab management
...
* simply rename certbot script to disable it
* use "evoacme" as file name for our custom cron script
2017-11-25 14:17:36 +01:00
Victor LABORIE
1c48df025c
Move /usr rw remount into remount-usr role
2017-11-07 13:34:05 +01:00
Gregory Colpart
a006a604f2
Rename /etc/cron.d/certbot to .disabled as written in https://wiki.evolix.org/HowtoLetsEncrypt
2017-09-21 03:48:05 +02:00
Gregory Colpart
41329af173
Remove dynamic add of whitelist Squid proxy
2017-08-23 01:26:57 +02:00
Gregory Colpart
2bb7367edf
standardization for Debian versions : we use "jessie" or "9 or later" to prepare buster smoothly as possible
2017-08-18 03:50:30 +02:00
Jérémy Lecour
62fbbd2016
Rename role "apt-repositories" to "apt"
2017-07-19 08:56:46 +02:00
Jérémy Lecour
bc99227259
Better squid/squid3 whitelist and reload
2017-07-12 12:17:33 +02:00
Jérémy Lecour
404f4445d4
install backports with "tasks_from"
...
When including a specific tasks file, we bypass the "main" tasks of the role and the conditionals.
That way we don't play useless tasks and don't rely on default values.
2017-05-23 15:13:11 +02:00
Jérémy Lecour
6eb71daead
Let's Encrypt has many subdomains, let's whitelist them all
2017-05-19 21:35:51 +02:00
Jérémy Lecour
6386509d3b
Add Let's Encrypt domains in the squid's whitelist
2017-05-19 19:54:12 +02:00
Jérémy Lecour
d4036df165
evoacme: simplify squid whitelist management
2017-05-16 15:04:24 +02:00
Jérémy Lecour
82b2ab1a67
evoacme: relative path to external roles
2017-05-16 15:04:02 +02:00
Jérémy Lecour
f068684a76
evoacme: add squid whitelist for ocsp server
2017-05-16 10:30:17 +02:00
Jérémy Lecour
5b2ab0d8d3
Ansible >= 2.2 supported
2017-03-24 14:15:09 +01:00
Jérémy Lecour
af2351486d
evoacme: use apt-repositories role
2017-03-24 14:13:39 +01:00
Jérémy Lecour
294cea44e8
Change mode with leading 0, but still as String
2017-03-23 16:59:43 +01:00
Gregory Colpart
ad2a36036a
Improve backports handling
2017-03-22 01:10:01 +01:00
Jérémy Lecour
8920ff1ee4
Add "always_run: yes" where it's pertinent
...
There is also the "check_mode: no", but commented,
for when we switch to Ansible 2.2
2017-01-31 11:45:35 +01:00
Victor LABORIE
8d3be99042
evoacme: fix changed for backports
2017-01-17 14:13:05 +01:00
Jérémy Lecour
5a7a561cca
Remount /usr only if it is a dedicated partition
2017-01-12 16:23:48 +01:00
Jérémy Lecour
5a4f838375
Unix mode MUST be a quoted string when using octal notation
2017-01-05 12:03:54 +01:00
Victor LABORIE
a9faeb7fbc
Fix update after add backports
2017-01-03 17:21:35 +01:00
Victor LABORIE
0ba65cbe05
Fix variable name
2016-12-22 15:58:45 +01:00
Jérémy Lecour
3c20c3faf3
evoacme: multiline file content
2016-12-21 16:23:29 +01:00
Jérémy Lecour
935026c973
evoacme: namespaced variables
2016-12-21 16:23:28 +01:00
Victor LABORIE
b485b0b49c
Evoacme: merge role from evoacme private repo
2016-12-21 16:12:27 +01:00