switch openvpn to use seperate service units and directories for client and server, hopefully in a mostly transparent way that will not cause much outage

This commit is contained in:
Kevin Fenzi 2017-05-14 19:01:17 +00:00
parent d860015a28
commit 179cc4dd54
2 changed files with 28 additions and 8 deletions

View file

@ -25,7 +25,7 @@
owner=root group=root mode={{ item.mode }}
with_items:
- { file: server.conf,
dest: /etc/openvpn/openvpn.conf,
dest: /etc/openvpn/server/openvpn.conf,
mode: '0644' }
- { file: "{{ private }}/files/vpn/openvpn/keys/crl.pem",
dest: /etc/openvpn/crl.pem,
@ -48,8 +48,15 @@
tags:
- openvpn
- name: enable openvpn service for rhel 7 or Fedora
service: name=openvpn@openvpn state=started enabled=true
- name: disable old openvpn service for rhel 7 or Fedora
service: name=openvpn@openvpn state=stopped enabled=false
when: ( ansible_distribution_version[0] == 7 or is_fedora is defined ) and openvpn_master is defined
tags:
- service
- openvpn
- name: enable openvpn service for rhel 7 or Fedora
service: name=openvpn-server@openvpn state=started enabled=true
when: ( ansible_distribution_version[0] == 7 or is_fedora is defined ) and openvpn_master is defined
tags:
- service