2014-06-30 21:32:34 +00:00
|
|
|
---
|
|
|
|
# openvpn - ftw - or something
|
|
|
|
- name: install openvpn
|
2017-10-09 00:37:39 +02:00
|
|
|
package: name=openvpn state=present
|
2014-06-30 21:32:34 +00:00
|
|
|
tags:
|
|
|
|
- packages
|
|
|
|
|
|
|
|
- name: /etc/openvpn/ca.crt from vpn/openvpn/keys/ca.crt
|
2015-09-25 18:16:23 +00:00
|
|
|
copy: src="{{ private }}/files/vpn/openvpn/keys/ca.crt" dest=/etc/openvpn/ca.crt mode=0600 owner=root group=root
|
2014-06-30 21:32:34 +00:00
|
|
|
tags:
|
|
|
|
- config
|
|
|
|
notify:
|
|
|
|
- restart openvpn 7
|
|
|
|
|
|
|
|
#- name: /etc/openvpn/crl.pem from vpn/openvpn/keys/crl.pem
|
2015-09-25 18:16:23 +00:00
|
|
|
# copy: src="{{ private }}/vpn/openvpn/keys/crl.pem" dest=/etc/openvpn/crl.pem mode=0644 owner=root group=root
|
2014-06-30 21:32:34 +00:00
|
|
|
# tags:
|
|
|
|
# - config
|
|
|
|
# notify:
|
|
|
|
# - restart openvpn
|
|
|
|
|
|
|
|
- name: /etc/openvpn/openvpn.conf
|
2015-09-26 00:20:13 +00:00
|
|
|
copy: src="{{ files }}/openvpn/client.conf" dest=/etc/openvpn/openvpn.conf
|
2014-06-30 21:32:34 +00:00
|
|
|
tags:
|
|
|
|
- config
|
|
|
|
notify:
|
|
|
|
- restart openvpn 7
|
|
|
|
|
|
|
|
- name: /etc/openvpn/client.crt
|
2015-09-25 18:16:23 +00:00
|
|
|
copy: src="{{ private }}/files/vpn/openvpn/keys/{{ inventory_hostname }}.crt" dest=/etc/openvpn/client.crt mode=0600 owner=root group=root
|
2014-06-30 21:32:34 +00:00
|
|
|
tags:
|
|
|
|
- config
|
|
|
|
notify:
|
|
|
|
- restart openvpn 7
|
|
|
|
|
|
|
|
- name: /etc/openvpn/client.key
|
2015-09-25 18:16:23 +00:00
|
|
|
copy: src="{{ private }}/files/vpn/openvpn/keys/{{ inventory_hostname }}.key" dest=/etc/openvpn/client.key mode=0600 owner=root group=root
|
2014-06-30 21:32:34 +00:00
|
|
|
tags:
|
|
|
|
- config
|
|
|
|
notify:
|
|
|
|
- restart openvpn 7
|
|
|
|
|
|
|
|
- name: enable openvpn service for rhel 7 or fedora
|
2017-04-13 01:37:21 +00:00
|
|
|
service: name=openvpn@openvpn state=started enabled=true
|
2014-06-30 21:32:34 +00:00
|
|
|
tags:
|
|
|
|
- service
|