Commit graph

5501 commits

Author SHA1 Message Date
Kevin Fenzi
d270cac30f Merge branch 'master' of /git/ansible 2014-12-08 00:29:38 +00:00
Kevin Fenzi
695fe47b94 Fix host vars 2014-12-08 00:29:28 +00:00
Ralph Bean
059349b8cd Many more, but not all websites. 2014-12-08 00:27:51 +00:00
Kevin Fenzi
668768ef18 Use ip 2014-12-08 00:25:38 +00:00
Kevin Fenzi
ac64085b8b Add db-fas01 to ansible 2014-12-08 00:19:16 +00:00
Ralph Bean
e997d35d3d Add fpo_ips. 2014-12-08 00:15:30 +00:00
Ralph Bean
b42dec0eff Whitespace. 2014-12-08 00:14:23 +00:00
Pierre-Yves Chibon
0f43dd177d Add the varnish role 2014-12-08 00:09:40 +00:00
Patrick Uiterwijk
98a44dfb91 ns0*.phx2 is staging-friendly 2014-12-08 00:03:43 +00:00
Ralph Bean
c2956c2598 Use jinja filter here. 2014-12-07 23:58:30 +00:00
Ralph Bean
0dfa62d8e2 Fix this name. 2014-12-07 23:56:57 +00:00
Ralph Bean
d0cee5b994 s/end/endif/g 2014-12-07 23:55:21 +00:00
Ralph Bean
ed909fd8f8 Ruby in my templates? No, thanks. 2014-12-07 23:54:13 +00:00
Pierre-Yves Chibon
b17badb5fe Add stunnel configuration within the fedmsg-gateway-slace role 2014-12-07 23:48:20 +00:00
Ralph Bean
9a8f293c29 Add forgotten conf. 2014-12-07 23:47:25 +00:00
Ralph Bean
4165c45203 Fixing, fixing. 2014-12-07 23:43:38 +00:00
Ralph Bean
00269dc0a8 Working on the proxies-websites.yml playbook. 2014-12-07 23:39:51 +00:00
Pierre-Yves Chibon
ee9fbbecaa Add the fedmsg/gateway/slave/ role 2014-12-07 23:36:14 +00:00
Pierre-Yves Chibon
7adeb26a4d Start working on the haproxy role 2014-12-07 23:36:14 +00:00
Patrick Uiterwijk
a4c0eb93be Lets kill ns-osu01 2014-12-07 23:30:33 +00:00
Patrick Uiterwijk
172c3cc8dc I dont care about reloads 2014-12-07 23:19:38 +00:00
Patrick Uiterwijk
da57eefdab Identity crisis is not fun 2014-12-07 23:16:01 +00:00
Patrick Uiterwijk
b0bef5e90e Standards? what are those? 2014-12-07 23:01:48 +00:00
Patrick Uiterwijk
a84d60a936 Add ns03 to ansible 2014-12-07 23:00:20 +00:00
Patrick Uiterwijk
16bc28b046 Lets not do VPN on PHX2 DNS 2014-12-07 20:06:04 +00:00
Ralph Bean
dc256b83b8 302 by default. 2014-12-07 20:04:07 +00:00
Pierre-Yves Chibon
cdabbd4d24 Move install the totpcgi key and cert to the totpcgi role 2014-12-07 21:04:17 +01:00
Ralph Bean
9e33435096 First try at the redirectmatch role, ported from puppet. 2014-12-07 20:01:50 +00:00
Ralph Bean
7d59bbd0fd Break proxy redirects out into a sub-playbook. 2014-12-07 19:57:37 +00:00
Ralph Bean
1a512eb73d Add redirects for proxies. 2014-12-07 19:57:37 +00:00
Patrick Uiterwijk
54f59deb58 Use this DNS for now 2014-12-07 19:30:59 +00:00
Patrick Uiterwijk
60088a117c Of course this is not standardized 2014-12-07 19:27:24 +00:00
Patrick Uiterwijk
05bec0c36f ns02 and ns04 are a thing 2014-12-07 19:24:30 +00:00
Ralph Bean
c8bade3c4c Remove all that checking. 2014-12-07 19:23:46 +00:00
Pierre-Yves Chibon
f9a7b31f64 Move fas01.stg to /dev/vg_guests instead of /dev/vg_virthost10 2014-12-07 20:19:32 +01:00
Pierre-Yves Chibon
4dbea10845 typo 2014-12-07 20:12:03 +01:00
Pierre-Yves Chibon
9f84ff5215 Turn on the SELinux boolean allow_ypbind 2014-12-07 20:09:46 +01:00
Pierre-Yves Chibon
0c82987108 No need to repeat /etc/httpd/conf.d... 2014-12-07 20:00:54 +01:00
Pierre-Yves Chibon
96fc973c0e Fix the name of the totpcgi-provisioning apache configuration file 2014-12-07 19:58:00 +01:00
Ralph Bean
52206697bb Tag it up. 2014-12-07 18:42:18 +00:00
Pierre-Yves Chibon
4866769621 Add the /etc/pki/totpcgi/totpcgi-ca.crt and move totpcgi-server.key 2014-12-07 19:41:51 +01:00
Ralph Bean
731f38d7b5 A first try at an httpd/redirect role 2014-12-07 18:40:32 +00:00
Patrick Uiterwijk
b512d452f7 Off course all datacenters are different 2014-12-07 18:39:51 +00:00
Patrick Uiterwijk
5723a75048 Define ns05 2014-12-07 18:37:41 +00:00
Pierre-Yves Chibon
3507ddb5b5 Thou shall close quotes 2014-12-07 19:34:02 +01:00
Pierre-Yves Chibon
4039995063 Install totpcgi key and cert 2014-12-07 19:32:40 +01:00
Pierre-Yves Chibon
27440a55c0 Install /etc/pki/tls/private/totpcgi-server.key 2014-12-07 19:24:50 +01:00
Patrick Uiterwijk
8b3cd67737 DNS servers also need VPN 2014-12-07 18:09:38 +00:00
Pierre-Yves Chibon
6fb40edbbe Create directory /var/lib/fedora-ca/crl/ 2014-12-07 18:08:21 +00:00
Pierre-Yves Chibon
c296aba8fd Let's not touch twice the same file 2014-12-07 18:02:41 +00:00