Add /etc/httpd/conf.d/sks.conf to ansible
This commit is contained in:
parent
665f1ee4e0
commit
60df08fc1a
3 changed files with 63 additions and 0 deletions
57
files/keyserver/sks.conf
Normal file
57
files/keyserver/sks.conf
Normal file
|
@ -0,0 +1,57 @@
|
||||||
|
ServerName keys.fedoraproject.org
|
||||||
|
Listen 80.239.156.219:11371
|
||||||
|
|
||||||
|
<ifModule !mod_proxy.c>
|
||||||
|
LoadModule proxy_module modules/mod_proxy.so
|
||||||
|
</IfModule>
|
||||||
|
|
||||||
|
<IfModule !mod_proxy_http.c>
|
||||||
|
LoadModule proxy_http_module modules/mod_proxy_http.so
|
||||||
|
</IfModule>
|
||||||
|
|
||||||
|
<IfModule !mod_proxy_balancer.c>
|
||||||
|
LoadModule proxy_balancer_module modules/mod_proxy_balancer.so
|
||||||
|
</IfModule>
|
||||||
|
|
||||||
|
<IfModule !mod_headers.c>
|
||||||
|
LoadModule headers_module modules/mod_headers.so
|
||||||
|
</IfModule>
|
||||||
|
|
||||||
|
<IfModule !mod_authz_host.c>
|
||||||
|
LoadModule authz_host_module modules/mod_authz_host.so
|
||||||
|
</IfModule>
|
||||||
|
|
||||||
|
<IfModule !mod_log_config.c>
|
||||||
|
LoadModule log_config_module modules/mod_log_config.so
|
||||||
|
</IfModule>
|
||||||
|
|
||||||
|
<IfModule !mod_env.c>
|
||||||
|
LoadModule env_module modules/mod_env.so
|
||||||
|
</IfModule>
|
||||||
|
|
||||||
|
<Directory />
|
||||||
|
Options FollowSymLinks
|
||||||
|
AllowOverride None
|
||||||
|
Order deny,allow
|
||||||
|
Deny from all
|
||||||
|
</Directory>
|
||||||
|
|
||||||
|
<IfModule mod_ssl.c>
|
||||||
|
<VirtualHost *:443>
|
||||||
|
ServerAdmin sysadmin-keys-members@fedoraproject.org
|
||||||
|
ServerName keys.fedoraproject.org
|
||||||
|
|
||||||
|
SSLEngine on
|
||||||
|
SSLCertificateFile /etc/pki/tls/keys_fedoraproject_org.crt.pem
|
||||||
|
SSLCertificateKeyFile /etc/pki/tls/keys_fedoraproject_org.key
|
||||||
|
ProxyPass / http://localhost:11371/
|
||||||
|
ProxyPassReverse / http://localhost:11371/
|
||||||
|
</VirtualHost>
|
||||||
|
<VirtualHost *:11371>
|
||||||
|
ServerAdmin sysadmin-keys-members@fedoraproject.org
|
||||||
|
ServerName keys.fedoraproject.org
|
||||||
|
ProxyPass / http://127.0.0.1:11371/
|
||||||
|
ProxyPassReverse / http://127.0.0.1:11371/
|
||||||
|
SetEnv proxy-nokeepalive 1
|
||||||
|
</VirtualHost>
|
||||||
|
</IfModule>
|
|
@ -1,5 +1,6 @@
|
||||||
basedir: /srv/sks
|
basedir: /srv/sks
|
||||||
hostname: keys.fedoraproject.org
|
hostname: keys.fedoraproject.org
|
||||||
|
hkp_address: 127.0.0.1
|
||||||
hkp_port: 11371
|
hkp_port: 11371
|
||||||
recon_port: 11370
|
recon_port: 11370
|
||||||
gossip_interval: 1440
|
gossip_interval: 1440
|
||||||
|
|
|
@ -36,6 +36,11 @@
|
||||||
tags:
|
tags:
|
||||||
- config
|
- config
|
||||||
|
|
||||||
|
- name: /etc/httpd/conf.d/sks.conf
|
||||||
|
copy: src=$files/keyserver/sks.conf dest=/etc/httpd/conf.d/sks.conf owner=root group=root mode=0644
|
||||||
|
tags:
|
||||||
|
- config
|
||||||
|
|
||||||
- cron: name="regenerate stats hourly"
|
- cron: name="regenerate stats hourly"
|
||||||
hour="*"
|
hour="*"
|
||||||
minute="5"
|
minute="5"
|
||||||
|
|
Loading…
Add table
Add a link
Reference in a new issue