Commit graph

1512 commits

Author SHA1 Message Date
3b67903e4f nginx: Configure proxy key/cert globally and not in site 2020-09-09 19:55:00 +00:00
852770b74a nfs-server: Disable NFS over UDP 2020-09-09 18:34:40 +00:00
ef1ee545fe nfs-server: Restart nfs services after config change 2020-09-09 18:34:07 +00:00
cfabd677a4 nfs-server: Let nfs-client depedency install packages 2020-09-09 18:32:49 +00:00
2c79f6e801 Fix typos from proxy playbook 2020-09-09 18:30:01 +00:00
c6ea27bf2d Add static host group 2020-09-09 18:29:05 +00:00
09a6bcce84 autofs: Initial version of role 2020-09-09 18:28:00 +00:00
dde5a9f61d ldap/client: Fix auth mech for root 2020-09-09 15:49:41 +00:00
36e1c74b98 Add LDAP client utils to adm hosts 2020-09-09 15:45:26 +00:00
b85e458781 Add redirects for www.foo.sh site 2020-09-09 11:55:22 +00:00
e0fad56127 nfs-client: Initial version 2020-09-09 11:40:02 +00:00
db085fd4ab Make OS disk larger on proxies 2020-09-09 11:09:53 +00:00
5d33f46a11 nginx/server: Disable chroot on OpenBSD 2020-09-09 11:09:22 +00:00
53d5f75f8e Add web-build role to adm hosts 2020-09-09 10:43:38 +00:00
e4e9e6a692 web-build: Initial version 2020-09-09 10:43:09 +00:00
bce775efd5 Add LDAP users to adm hosts 2020-09-09 09:18:18 +00:00
3f05e6e50f Redirect collab.foo.sh root to collab 2020-09-09 07:36:28 +00:00
a3492d4490 collab: Move theme install to different place
Trying to avoid hardcoding pahts.
2020-09-08 23:32:54 +00:00
07a5adafa6 Fix collab principal name 2020-09-08 23:32:06 +00:00
3b957e5685 Use ansible for collab default settings 2020-09-08 23:31:10 +00:00
61e9094657 collab: Set base collab permissions and default page 2020-09-08 23:29:35 +00:00
42353b188c collab: Add foo.sh theme python script 2020-09-08 20:19:29 +00:00
689ba57b72 collab: Don't overwrite already existing configs 2020-09-08 19:48:52 +00:00
0621850db4 collab: Add foo.sh theme support 2020-09-08 19:48:18 +00:00
40639ee1d0 iptables: Fix indentation from iptables templates 2020-09-07 15:24:10 +00:00
28e7fa236b relayd: Fix permissions from config 2020-09-07 06:20:31 +00:00
9e61fe3cbc kerberos/keytab: Add default keytab path 2020-09-04 16:49:41 +00:00
d152c433f0 Add ldap client to collab for group memberships 2020-09-04 16:38:00 +00:00
fe2b2bc7e9 Add nfs-server role to nas hosts 2020-09-04 13:39:07 +00:00
93b241e8ed nfs-server: Initial version of role 2020-09-04 13:38:57 +00:00
03cb591e21 Add kvm-host role to hypervisors group 2020-09-04 13:38:26 +00:00
7b35cb159b Add GSSAPI authentication to collab hosts 2020-09-04 13:37:45 +00:00
70bf4bf846 Open NFS port for nas hosts 2020-09-04 13:37:23 +00:00
f1a4424067 mod_auth_gssapi: Initial version of role 2020-09-04 13:36:56 +00:00
878de962f6 kvm-host: Initial version of role 2020-09-04 12:00:02 +00:00
f7fc9e97c6 selinux: Lint fixes 2020-09-04 09:28:21 +00:00
e117fa23c5 postfix: Lint fixes 2020-09-04 09:25:55 +00:00
9a2cd1e646 Add nas02.home.foo.sh host 2020-09-04 08:32:31 +00:00
f920c8f09a zfs: Initial version of role 2020-09-04 08:31:49 +00:00
7f63f03ac1 Open DoT port 853 for public dns servers 2020-09-04 07:00:00 +00:00
533b48204f ldap_netdb: Add -v option to cron job and skip localhost 2020-09-04 06:58:48 +00:00
8ca459430c nsd: Restart nsd after certificate update 2020-09-04 06:37:53 +00:00
bdb2d9adb9 Rework site.yml to include tested groups 2020-09-03 20:41:17 +00:00
46bdda437d Add nginx to ns group
Used to authenticate certficates from letsencrypt.
2020-09-03 20:24:57 +00:00
e10d84305a base: Install curl to all hosts 2020-09-03 20:24:25 +00:00
5edbeef97a Rename certbot.foo.sh to certbot.home.foo.sh 2020-09-03 20:23:53 +00:00
7de9a9a6ae nsd: Remove secondary dns servers
We run all as masters at the moment.
2020-09-03 20:04:17 +00:00
b4e260b1e1 nsd: Fix typo 2020-09-03 20:04:05 +00:00
db35937a67 Don't lock myself out from external hosts 2020-09-03 19:39:42 +00:00
4b49e9e486 Add atl01.vultr.foo.sh host 2020-09-03 19:37:06 +00:00