30 lines
656 B
YAML
30 lines
656 B
YAML
---
|
|
|
|
- name: create hostkey group
|
|
group:
|
|
name: hostkey
|
|
system: true
|
|
|
|
- name: copy ca certificate
|
|
copy:
|
|
src: "/srv/ca/certs/ca.crt"
|
|
dest: "{{ tls_certs }}/ca.crt"
|
|
mode: 0644
|
|
owner: root
|
|
group: "{{ ansible_wheel }}"
|
|
|
|
- name: copy host certificate
|
|
copy:
|
|
src: "/srv/ca/certs/{{ inventory_hostname }}.crt"
|
|
dest: "{{ tls_certs }}/{{ inventory_hostname }}.crt"
|
|
mode: 0644
|
|
owner: root
|
|
group: "{{ ansible_wheel }}"
|
|
|
|
- name: copy host key
|
|
copy:
|
|
src: "/srv/ca/private/{{ inventory_hostname }}.key"
|
|
dest: "{{ tls_private }}/{{ inventory_hostname }}.key"
|
|
mode: 0640
|
|
owner: root
|
|
group: hostkey
|