Use lookup instead of assemble for the RabbitMQ CA
Signed-off-by: Aurélien Bompard <aurelien@bompard.org>
This commit is contained in:
parent
4c52d4603b
commit
475838940a
1 changed files with 1 additions and 36 deletions
|
@ -37,44 +37,9 @@
|
||||||
- config
|
- config
|
||||||
when: "env == 'production'"
|
when: "env == 'production'"
|
||||||
|
|
||||||
- name: Create CA certs directory
|
|
||||||
ansible.builtin.file:
|
|
||||||
path: /etc/rabbitmq/cacerts/
|
|
||||||
owner: root
|
|
||||||
group: root
|
|
||||||
mode: 0755
|
|
||||||
state: directory
|
|
||||||
tags:
|
|
||||||
- rabbitmq_cluster
|
|
||||||
- config
|
|
||||||
|
|
||||||
- name: Deploy CA certificate
|
- name: Deploy CA certificate
|
||||||
ansible.builtin.copy:
|
ansible.builtin.copy:
|
||||||
src: "{{private}}/files/rabbitmq/{{env}}/pki/ca.crt"
|
content: "{{ lookup('file', private+'/files/rabbitmq/+env+'/pki/ca.crt') }}\n{{ lookup('file', private+'/files/rabbitmq/+env+'.new/pki/ca.crt') }}"
|
||||||
dest: /etc/rabbitmq/cacerts/ca.crt
|
|
||||||
owner: root
|
|
||||||
group: root
|
|
||||||
mode: 0644
|
|
||||||
tags:
|
|
||||||
- rabbitmq_cluster
|
|
||||||
- config
|
|
||||||
when: "env == 'staging'"
|
|
||||||
|
|
||||||
- name: Deploy CA certificate
|
|
||||||
ansible.builtin.copy:
|
|
||||||
src: "{{private}}/files/rabbitmq/{{env}}.old-2025-04/pki/ca.crt"
|
|
||||||
dest: /etc/rabbitmq/cacerts/ca.old.crt
|
|
||||||
owner: root
|
|
||||||
group: root
|
|
||||||
mode: 0644
|
|
||||||
tags:
|
|
||||||
- rabbitmq_cluster
|
|
||||||
- config
|
|
||||||
when: "env == 'staging'"
|
|
||||||
|
|
||||||
- name: Build combined CA cert
|
|
||||||
ansible.builtin.assemble:
|
|
||||||
src: /etc/rabbitmq/cacerts/
|
|
||||||
dest: /etc/rabbitmq/ca.crt
|
dest: /etc/rabbitmq/ca.crt
|
||||||
owner: root
|
owner: root
|
||||||
group: root
|
group: root
|
||||||
|
|
Loading…
Add table
Add a link
Reference in a new issue