c9b21a3286
Add ansible_certificate custom fact
2020-08-29 15:55:51 +00:00
aac14db657
ansible-host: Publish ansible facts with nginx
2020-08-29 13:43:21 +00:00
88157dcc91
collab: Initial version of role
2020-08-28 16:09:53 +00:00
dd2b5c6a69
apache: Remove Procotols option
...
CentOS 7 doesn't support Protocols definition at all. Also as we
are running Apache only behind proxies all requests are HTTP/1.1
anyway.
2020-08-28 10:57:39 +00:00
e7aa1c9b73
apache: Drop back to Mozilla intermediate
...
Looks like our proxies don't support modern settings yet.
2020-08-28 10:13:29 +00:00
47da9470a6
apache: Allow access to web root
2020-08-28 10:10:57 +00:00
bace8a39b4
apache: Just use Mozilla recommended settings
...
Removed all RedHat default settings and just added Mozilla recommended
modern settings.
2020-08-28 10:05:44 +00:00
affeddd2cc
apache: Require client certificate authentication
2020-08-28 09:58:36 +00:00
480822619d
apache: Initial version of module
2020-08-28 09:52:02 +00:00
9532fa165e
ansible-host: Add missing bashrc file
2020-08-28 07:32:56 +00:00
18919643d9
base: Really disable rsa key and not just say so
2020-08-28 07:29:59 +00:00
526a192018
ansible-host: Make sure that ssh-agent is running for root
2020-08-27 18:47:49 +00:00
8ecbc19c75
ansible-host: Remove some packages not related to ansible
2020-08-27 18:26:57 +00:00
602cc4dfc6
certbot: Add missing config file and lint fixes
2020-08-27 21:14:36 +03:00
b81950c5b2
ansible-host: Don't update local ansible repo
2020-08-27 21:13:31 +03:00
5e1f521eb6
certbot: Initial version of role
2020-08-27 20:50:57 +03:00
cb51dc186c
network: Fix default network_interfaces variable
2020-08-27 17:47:09 +00:00
c80eca3d85
New implementation of network interfaces
...
Combine interfaces and network_ether_interfaces into one common
variable network_interfaces. Provisioning uses format:
network_interfaces:
- device: device name eg. vio0 or eth0
vlan: vlan id for this interface
mac: mac address for interface (optional)
Additionally network role will use more settings to configure
interface.
2020-08-27 17:42:07 +00:00
ee03bd3cb7
ansible-host: More fixes to support out of box install
2020-08-27 14:43:19 +03:00
00bdcfb7de
selinux: Fix python package name for EL8
2020-08-27 14:35:31 +03:00
f14bb25ade
nginx/site: Add support for self signed certs
2020-08-27 13:45:19 +03:00
e672015a1f
nginx: Use alias for certbot host
2020-08-27 12:00:28 +03:00
ee23e2120b
ansible-host: Add missing virt-install
2020-08-26 23:46:18 +03:00
398bbf5a32
ansible-host: Install more tools
2020-08-26 23:40:52 +03:00
d09ad303dc
ansible-host: Fix private directory link
2020-08-26 23:31:20 +03:00
f05112b125
ansible-host: Initial version of role
2020-08-26 23:25:20 +03:00
858a7d30d7
epel-repo: Initial version of role
2020-08-26 23:11:51 +03:00
964b70f978
base: Add more base packages
2020-08-26 23:04:16 +03:00
74edead676
base: Remove all depencies to other than base packages
2020-08-26 22:54:47 +03:00
a1c96a5369
Support OpenSMTPd only on OpenBSD
2020-08-26 22:53:11 +03:00
c8f65fc7bd
Initial version of postfix role
2020-08-26 22:47:04 +03:00
f490804106
Disable rsa key from ssh host keys
2020-08-26 22:03:18 +03:00
b7e0ef18c5
Reorder installs to get selinux support earlier
...
Ansible cannot set file contexts unless selinux python bindings are installed.
2020-08-26 21:53:48 +03:00
08d1495026
syslogd: lint fixes
2020-02-28 00:09:17 +02:00
302427c85f
selinux: update module to support centos 8
2020-02-28 00:07:10 +02:00
3dbb65302e
base: fix warning of cron job hour value (should be string)
2020-02-27 14:12:09 +02:00
08466f3143
base: remove rcs from default installs
2020-02-27 14:08:12 +02:00
1fcc2dd407
add remote logging support to rsyslog
2019-07-19 18:04:53 +03:00
6085718f5d
enable remote logging for syslogd
2019-07-19 17:55:54 +03:00
d11300df60
add syslog support for proxies
2019-07-19 17:55:22 +03:00
7088bc9b14
add server support for syslogd
2019-07-19 17:16:59 +03:00
9b3bfe9bc8
nginx: use mozilla recommended ssl options
2019-07-05 10:20:25 +03:00
6cd29b72a7
nginx: enable http2 protocol
2019-07-05 10:20:00 +03:00
84db430875
add foo.sh layout to cups web interface
2019-06-14 11:20:51 +03:00
a496da62b0
add more cups configuration
2019-06-14 11:09:23 +03:00
5afff575c5
change cups authentication to use kerberos
2019-06-14 10:12:07 +03:00
8920d79078
selinux file context fixes for nginx data directories
2019-06-11 15:53:55 +03:00
5016b70292
make sure that selinux contexts are correct in ldap data directory
2019-06-11 15:52:53 +03:00
020a10677b
add ldap/nss to cups/server dependency to get group access correct
2019-06-10 21:06:00 +03:00
9fc02e7bef
add role ldap/nss
2019-06-10 21:05:08 +03:00