Skip to content
Snippets Groups Projects
Commit 78627ce2 authored by Lars Beckers's avatar Lars Beckers
Browse files

lint yaml files

parent ed7ac49f
Branches
No related tags found
No related merge requests found
Showing
with 111 additions and 87 deletions
---
extends: default
rules:
comments-indentation:
level: warning
document-start:
level: error
empty-lines:
max: 1
empty-values:
forbid-in-flow-mappings: true
forbid-in-block-mappings: true
line-length:
level: warning
octal-values:
forbid-implicit-octal: true
level: warning
...@@ -6,4 +6,4 @@ acmetool_key_type: rsa ...@@ -6,4 +6,4 @@ acmetool_key_type: rsa
acmetool_rsa_key_size: 4096 acmetool_rsa_key_size: 4096
acmetool_mail: "{{ adminaddr }}" acmetool_mail: "{{ adminaddr }}"
acmetool_enable_proxy: True acmetool_enable_proxy: true
...@@ -9,11 +9,11 @@ ...@@ -9,11 +9,11 @@
- name: ensure we have our response file - name: ensure we have our response file
template: template:
src: response-file.yml src: response-file.yml.j2
dest: /var/lib/acme/quickstart-reponses.yml dest: /var/lib/acme/quickstart-reponses.yml
owner: root owner: root
group: root group: root
mode: 0644 mode: '0644'
tags: tags:
- acmetool - acmetool
- config - config
...@@ -21,12 +21,13 @@ ...@@ -21,12 +21,13 @@
- name: check if acmetool is configured - name: check if acmetool is configured
command: acmetool status command: acmetool status
register: acmetool_status register: acmetool_status
changed_when: no changed_when: false
tags: tags:
- acmetool - acmetool
- config - config
- name: initially configure acmetool - name: initially configure acmetool
# yamllint disable-line rule:line-length
command: acmetool quickstart --expert --batch --response-file /var/lib/acme/quickstart-reponses.yml command: acmetool quickstart --expert --batch --response-file /var/lib/acme/quickstart-reponses.yml
when: not acmetool_status.stdout|search(acmetool_endpoint) when: not acmetool_status.stdout|search(acmetool_endpoint)
tags: tags:
...@@ -39,7 +40,7 @@ ...@@ -39,7 +40,7 @@
dest: /etc/default/acme-reload dest: /etc/default/acme-reload
owner: root owner: root
group: root group: root
mode: 0644 mode: '0644'
tags: tags:
- acmetool - acmetool
- config - config
...@@ -50,7 +51,7 @@ ...@@ -50,7 +51,7 @@
state: directory state: directory
owner: root owner: root
group: root group: root
mode: 0755 mode: '0755'
notify: notify:
- reload systemd service files - reload systemd service files
when: acmetool_enable_proxy when: acmetool_enable_proxy
...@@ -64,7 +65,7 @@ ...@@ -64,7 +65,7 @@
dest: /etc/systemd/system/acmetool.service.d/nginx-proxy.conf dest: /etc/systemd/system/acmetool.service.d/nginx-proxy.conf
owner: root owner: root
group: root group: root
mode: 0644 mode: '0644'
notify: notify:
- reload systemd service files - reload systemd service files
when: acmetool_enable_proxy when: acmetool_enable_proxy
...@@ -78,7 +79,7 @@ ...@@ -78,7 +79,7 @@
dest: "/var/lib/acme/desired/{{item.hostnames[0]}}" dest: "/var/lib/acme/desired/{{item.hostnames[0]}}"
owner: root owner: root
group: root group: root
mode: 0644 mode: '0644'
with_items: "{{acmetool_certificates}}" with_items: "{{acmetool_certificates}}"
notify: notify:
- update certificates - update certificates
...@@ -87,7 +88,10 @@ ...@@ -87,7 +88,10 @@
- certificates - certificates
- name: ensure certificates are updated regularly - name: ensure certificates are updated regularly
systemd: name=acmetool.timer enabled=yes state=started systemd:
name: acmetool.timer
enabled: true
state: started
tags: tags:
- acmetool - acmetool
- services - services
...@@ -4,7 +4,7 @@ ...@@ -4,7 +4,7 @@
- name: ensure we have a repo group - name: ensure we have a repo group
group: group:
name: repo name: repo
system: yes system: true
state: present state: present
tags: tags:
- debian-repository - debian-repository
...@@ -14,10 +14,10 @@ ...@@ -14,10 +14,10 @@
user: user:
name: repo name: repo
group: repo group: repo
system: yes system: true
home: /srv/repo home: /srv/repo
shell: /usr/bin/nologin shell: /usr/bin/nologin
createhome: no createhome: false
state: present state: present
tags: tags:
- debian-repository - debian-repository
...@@ -31,4 +31,3 @@ ...@@ -31,4 +31,3 @@
- packages - packages
- debian-repository - debian-repository
- webservices - webservices
...@@ -5,7 +5,7 @@ dokuwiki: ...@@ -5,7 +5,7 @@ dokuwiki:
user: dokuwiki user: dokuwiki
group: dokuwiki group: dokuwiki
version: 2018-04-22a version: 2018-04-22a
ad: no ad: false
ad_domain: example.com ad_domain: example.com
ad_basedn: dc=example,dc=com ad_basedn: dc=example,dc=com
ad_controller: ad.example.com ad_controller: ad.example.com
......
...@@ -4,7 +4,7 @@ ...@@ -4,7 +4,7 @@
command: "{{ item.path }}/bin/delete_old_files.py" command: "{{ item.path }}/bin/delete_old_files.py"
args: args:
chdir: "{{ item.path }}" chdir: "{{ item.path }}"
become: yes become: true
become_user: "{{ item.user }}" become_user: "{{ item.user }}"
with_items: "{{ dokuwiki }}" with_items: "{{ dokuwiki }}"
......
...@@ -15,7 +15,7 @@ ...@@ -15,7 +15,7 @@
group: group:
name: "{{ item.group }}" name: "{{ item.group }}"
state: present state: present
system: yes system: true
with_items: "{{ dokuwiki }}" with_items: "{{ dokuwiki }}"
tags: tags:
- dokuwiki - dokuwiki
...@@ -26,10 +26,10 @@ ...@@ -26,10 +26,10 @@
name: "{{ item.user }}" name: "{{ item.user }}"
group: "{{ item.group }}" group: "{{ item.group }}"
state: present state: present
system: yes system: true
shell: /usr/bin/nologin shell: /usr/bin/nologin
home: "{{ item.path }}" home: "{{ item.path }}"
createhome: no createhome: false
with_items: "{{ dokuwiki }}" with_items: "{{ dokuwiki }}"
tags: tags:
- dokuwiki - dokuwiki
...@@ -60,8 +60,8 @@ ...@@ -60,8 +60,8 @@
- name: gather installed versions - name: gather installed versions
command: "cat {{ item.path }}/VERSION" command: "cat {{ item.path }}/VERSION"
ignore_errors: yes ignore_errors: true
changed_when: no changed_when: false
register: versions register: versions
with_items: "{{ dokuwiki }}" with_items: "{{ dokuwiki }}"
tags: tags:
...@@ -70,7 +70,8 @@ ...@@ -70,7 +70,8 @@
- name: backup dokuwiki data on update - name: backup dokuwiki data on update
command: /bin/true command: /bin/true
changed_when: yes changed_when: true
# yamllint disable-line rule:line-length
when: item.1 is failed or item.1 is skipped or item.0.version != item.1.stdout|regex_replace(' .*') when: item.1 is failed or item.1 is skipped or item.0.version != item.1.stdout|regex_replace(' .*')
with_together: with_together:
- "{{ dokuwiki }}" - "{{ dokuwiki }}"
...@@ -85,8 +86,9 @@ ...@@ -85,8 +86,9 @@
- name: ensure dokuwiki files are in place - name: ensure dokuwiki files are in place
unarchive: unarchive:
# yamllint disable-line rule:line-length
src: "https://download.dokuwiki.org/src/dokuwiki/dokuwiki-{{ item.0.version }}.tgz" src: "https://download.dokuwiki.org/src/dokuwiki/dokuwiki-{{ item.0.version }}.tgz"
remote_src: yes remote_src: true
dest: "{{ item.0.path }}" dest: "{{ item.0.path }}"
owner: "{{ item.0.user }}" owner: "{{ item.0.user }}"
group: "{{ item.0.group }}" group: "{{ item.0.group }}"
...@@ -94,6 +96,7 @@ ...@@ -94,6 +96,7 @@
- --strip-components=1 - --strip-components=1
- --overwrite - --overwrite
- -p - -p
# yamllint disable-line rule:line-length
when: item.1 is failed or item.1 is skipped or item.0.version != item.1.stdout|regex_replace(' .*') when: item.1 is failed or item.1 is skipped or item.0.version != item.1.stdout|regex_replace(' .*')
with_together: with_together:
- "{{ dokuwiki }}" - "{{ dokuwiki }}"
...@@ -158,7 +161,7 @@ ...@@ -158,7 +161,7 @@
owner: "{{ item.user }}" owner: "{{ item.user }}"
group: "{{ item.group }}" group: "{{ item.group }}"
mode: '0664' mode: '0664'
force: no force: false
with_items: "{{ dokuwiki }}" with_items: "{{ dokuwiki }}"
notify: notify:
- reindex search - reindex search
......
...@@ -12,6 +12,6 @@ mediawiki_dbtype: postgres ...@@ -12,6 +12,6 @@ mediawiki_dbtype: postgres
mediawiki_dbhost: localhost mediawiki_dbhost: localhost
mediawiki_dbname: "{{ mediawiki_name }}" mediawiki_dbname: "{{ mediawiki_name }}"
mediawiki_dbuser: "{{ mediawiki_name }}" mediawiki_dbuser: "{{ mediawiki_name }}"
mediawiki_dbpassword: mediawiki_dbpassword: ""
mediawiki_use_ldap: yes mediawiki_use_ldap: true
...@@ -8,7 +8,7 @@ ...@@ -8,7 +8,7 @@
service: service:
name: "mediawiki-{{ mediawiki_name }}" name: "mediawiki-{{ mediawiki_name }}"
state: restarted state: restarted
enabled: yes enabled: true
- name: create tmpfiles - name: create tmpfiles
shell: systemd-tmpfiles --create shell: systemd-tmpfiles --create
...@@ -5,7 +5,7 @@ ...@@ -5,7 +5,7 @@
apt: apt:
name: mediawiki name: mediawiki
state: present state: present
install_recommends: no install_recommends: false
when: debian_version == "jessie" when: debian_version == "jessie"
tags: tags:
- mediawiki - mediawiki
...@@ -24,7 +24,7 @@ ...@@ -24,7 +24,7 @@
group: group:
name: "{{ mediawiki_group }}" name: "{{ mediawiki_group }}"
state: present state: present
system: yes system: true
tags: tags:
- mediawiki - mediawiki
- webservices - webservices
...@@ -34,10 +34,10 @@ ...@@ -34,10 +34,10 @@
name: "{{ mediawiki_user }}" name: "{{ mediawiki_user }}"
group: "{{ mediawiki_group }}" group: "{{ mediawiki_group }}"
state: present state: present
system: yes system: true
shell: /usr/bin/nologin shell: /usr/bin/nologin
home: "{{ mediawiki_web_root }}" home: "{{ mediawiki_web_root }}"
createhome: no createhome: false
tags: tags:
- mediawiki - mediawiki
- webservices - webservices
...@@ -76,7 +76,7 @@ ...@@ -76,7 +76,7 @@
state: link state: link
src: "/usr/share/mediawiki/{{ item }}" src: "/usr/share/mediawiki/{{ item }}"
dest: "{{ mediawiki_web_root }}/{{ mediawiki_name }}/{{ item }}" dest: "{{ mediawiki_web_root }}/{{ mediawiki_name }}/{{ item }}"
force: yes force: true
with_items: "{{ mediawiki_other_files.stdout_lines }}" with_items: "{{ mediawiki_other_files.stdout_lines }}"
tags: tags:
- mediawiki - mediawiki
...@@ -88,7 +88,7 @@ ...@@ -88,7 +88,7 @@
dest: "/etc/tmpfiles.d/10-mediawiki-{{ mediawiki_name }}.conf" dest: "/etc/tmpfiles.d/10-mediawiki-{{ mediawiki_name }}.conf"
owner: root owner: root
group: root group: root
mode: 0644 mode: '0644'
notify: notify:
- create tmpfiles - create tmpfiles
tags: tags:
...@@ -110,7 +110,7 @@ ...@@ -110,7 +110,7 @@
dest: "/etc/cron.d/mediawiki-{{ mediawiki_name }}-maint" dest: "/etc/cron.d/mediawiki-{{ mediawiki_name }}-maint"
owner: root owner: root
group: root group: root
mode: 0644 mode: '0644'
tags: tags:
- mediawiki - mediawiki
- webservices - webservices
...@@ -18,4 +18,3 @@ ...@@ -18,4 +18,3 @@
tags: tags:
- mediawiki - mediawiki
- webservices - webservices
...@@ -24,8 +24,8 @@ ...@@ -24,8 +24,8 @@
name: "{{ mediawiki_dbuser }}" name: "{{ mediawiki_dbuser }}"
password: "{{ mediawiki_dbpassword }}" password: "{{ mediawiki_dbpassword }}"
state: present state: present
no_log: True no_log: true
become: yes become: true
become_user: postgres become_user: postgres
tags: tags:
- mediawiki - mediawiki
...@@ -36,7 +36,7 @@ ...@@ -36,7 +36,7 @@
name: "{{ mediawiki_dbname }}" name: "{{ mediawiki_dbname }}"
owner: "{{ mediawiki_dbuser }}" owner: "{{ mediawiki_dbuser }}"
state: present state: present
become: yes become: true
become_user: postgres become_user: postgres
tags: tags:
- mediawiki - mediawiki
...@@ -49,7 +49,7 @@ ...@@ -49,7 +49,7 @@
privs: ALL privs: ALL
state: present state: present
type: database type: database
become: yes become: true
become_user: postgres become_user: postgres
tags: tags:
- mediawiki - mediawiki
......
...@@ -29,7 +29,7 @@ ...@@ -29,7 +29,7 @@
dest: "/etc/php/7.0/fpm/pool.d/{{ fpm_pool }}.conf" dest: "/etc/php/7.0/fpm/pool.d/{{ fpm_pool }}.conf"
owner: root owner: root
group: root group: root
mode: 0644 mode: '0644'
when: debian_version == "stretch" when: debian_version == "stretch"
notify: notify:
- restart php-fpm - restart php-fpm
...@@ -43,7 +43,7 @@ ...@@ -43,7 +43,7 @@
dest: "/etc/php/7.0/fpm/pool.d/{{item.name}}.conf" dest: "/etc/php/7.0/fpm/pool.d/{{item.name}}.conf"
owner: root owner: root
group: root group: root
mode: 0644 mode: '0644'
when: debian_version == "stretch" when: debian_version == "stretch"
with_items: "{{fpm_pools|default([])}}" with_items: "{{fpm_pools|default([])}}"
notify: notify:
......
...@@ -11,16 +11,16 @@ sentry_db_host: null ...@@ -11,16 +11,16 @@ sentry_db_host: null
sentry_redis_url: redis://localhost:6379/0 sentry_redis_url: redis://localhost:6379/0
sentry_web_host: localhost sentry_web_host: localhost
sentry_web_port: 9000 sentry_web_port: 9000
sentry_mail_active: no sentry_mail_active: false
sentry_mail_host: mail.example.com sentry_mail_host: mail.example.com
sentry_mail_user: null sentry_mail_user: null
sentry_mail_password: null sentry_mail_password: null
sentry_mail_use_tls: no sentry_mail_use_tls: false
sentry_mail_from: "sentry@example.com" sentry_mail_from: "sentry@example.com"
sentry_storage_dir: "/tmp/sentry-files" sentry_storage_dir: "/tmp/sentry-files"
sentry_default_user_mail: sentry@example.com sentry_default_user_mail: sentry@example.com
sentry_default_user_password: null sentry_default_user_password: null
sentry_use_ldap: yes sentry_use_ldap: true
sentry_ldap_uri: "ldaps://auth.example.com" sentry_ldap_uri: "ldaps://auth.example.com"
sentry_ldap_distinguished_name: "dc=example,dc=com" sentry_ldap_distinguished_name: "dc=example,dc=com"
sentry_ldap_deny_group: null sentry_ldap_deny_group: null
......
...@@ -22,7 +22,10 @@ ...@@ -22,7 +22,10 @@
- monitoring - monitoring
- name: ensure we have the sentry group - name: ensure we have the sentry group
group: name="{{sentry_group}}" state=present system=yes group:
name: "{{sentry_group}}"
state: present
system: true
tags: tags:
- sentry - sentry
- webservices - webservices
...@@ -33,10 +36,10 @@ ...@@ -33,10 +36,10 @@
name: "{{sentry_user}}" name: "{{sentry_user}}"
group: "{{sentry_group}}" group: "{{sentry_group}}"
state: present state: present
system: yes system: true
shell: /usr/bin/nologin shell: /usr/bin/nologin
home: "{{sentry_root_dir}}" home: "{{sentry_root_dir}}"
createhome: no createhome: false
tags: tags:
- sentry - sentry
- webservices - webservices
...@@ -46,7 +49,7 @@ ...@@ -46,7 +49,7 @@
file: file:
path: "{{sentry_root_dir}}" path: "{{sentry_root_dir}}"
state: directory state: directory
mode: 0750 mode: '0750'
owner: root owner: root
group: sentry group: sentry
tags: tags:
...@@ -69,31 +72,22 @@ ...@@ -69,31 +72,22 @@
- monitoring - monitoring
- name: ensure uwsgi is executable - name: ensure uwsgi is executable
file: path="{{sentry_root_dir}}/bin/uwsgi" mode="o+rx" file:
tags: path: "{{sentry_root_dir}}/bin/uwsgi"
- sentry mode: "o+rx"
- webservices
- monitoring
- name: get the database password
local_action: pass name="db/{{sentry_db_host}}-pgsql-sentry" state=present generate=20 store=FSMPI_PASSWORD_STORE_DIR limit=yes
register: sentry_db_password
when: sentry_db_host is not none and sentry_db_password is none
no_log: yes
tags: tags:
- sentry - sentry
- webservices - webservices
- monitoring - monitoring
- password
- postgres
- name: ensure we have a postgres database user - name: ensure we have a postgres database user
postgresql_user: postgresql_user:
name: "{{sentry_db_user}}" name: "{{sentry_db_user}}"
state: present state: present
password: "{{sentry_db_password.password|default(sentry_db_password)|default(omit)}}" # yamllint disable-line rule:line-length
password: "{{ lookup('passwordstore', 'db/{{sentry_db_host}}-pgsql-sentry create=true length=20') if sentry_db_host is not None and sentry_db_password is None }}"
role_attr_flags: NOSUPERUSER,NOCREATEDB role_attr_flags: NOSUPERUSER,NOCREATEDB
become: yes become: true
become_user: postgres become_user: postgres
delegate_to: "{{sentry_db_host|default(omit)}}" delegate_to: "{{sentry_db_host|default(omit)}}"
tags: tags:
...@@ -107,7 +101,7 @@ ...@@ -107,7 +101,7 @@
name: "{{sentry_db_name}}" name: "{{sentry_db_name}}"
owner: "{{sentry_db_user}}" owner: "{{sentry_db_user}}"
state: present state: present
become: yes become: true
become_user: postgres become_user: postgres
delegate_to: "{{sentry_db_host|default(omit)}}" delegate_to: "{{sentry_db_host|default(omit)}}"
tags: tags:
...@@ -123,7 +117,7 @@ ...@@ -123,7 +117,7 @@
privs: ALL privs: ALL
state: present state: present
type: database type: database
become: yes become: true
become_user: postgres become_user: postgres
delegate_to: "{{sentry_db_host|default(omit)}}" delegate_to: "{{sentry_db_host|default(omit)}}"
tags: tags:
...@@ -135,7 +129,9 @@ ...@@ -135,7 +129,9 @@
- name: ensure the user may login - name: ensure the user may login
lineinfile: lineinfile:
dest: /etc/postgresql/9.6/main/pg_hba.conf dest: /etc/postgresql/9.6/main/pg_hba.conf
# yamllint disable-line rule:line-length
insertafter: "host all all 127.0.0.1/32 md5" insertafter: "host all all 127.0.0.1/32 md5"
# yamllint disable-line rule:line-length
line: "host {{sentry_db_name}} {{sentry_db_user}} monitoring.fsmpi.rwth-aachen.de md5" line: "host {{sentry_db_name}} {{sentry_db_user}} monitoring.fsmpi.rwth-aachen.de md5"
delegate_to: "{{sentry_db_host|default(omit)}}" delegate_to: "{{sentry_db_host|default(omit)}}"
notify: notify:
...@@ -148,7 +144,7 @@ ...@@ -148,7 +144,7 @@
- name: ensure the database supports citext - name: ensure the database supports citext
command: "psql {{sentry_db_name}} -c 'CREATE EXTENSION IF NOT EXISTS citext'" command: "psql {{sentry_db_name}} -c 'CREATE EXTENSION IF NOT EXISTS citext'"
become: yes become: true
become_user: postgres become_user: postgres
delegate_to: "{{sentry_db_host|default(omit)}}" delegate_to: "{{sentry_db_host|default(omit)}}"
tags: tags:
...@@ -161,11 +157,11 @@ ...@@ -161,11 +157,11 @@
- name: ensure sentry is configured - name: ensure sentry is configured
template: template:
src: "{{item}}" src: "{{item}}.j2"
dest: "{{sentry_root_dir}}" dest: "{{sentry_root_dir}}"
owner: root owner: root
group: "{{sentry_group}}" group: "{{sentry_group}}"
mode: 0640 mode: '0640'
with_items: with_items:
- config.yml - config.yml
- sentry.conf.py - sentry.conf.py
...@@ -178,11 +174,12 @@ ...@@ -178,11 +174,12 @@
- config - config
# if this fails with 137/kill -9, this might be OOM # if this fails with 137/kill -9, this might be OOM
- name: upgrade the sentry database (this may take some time and use much memory) - name: upgrade the sentry database (this may take some time and memory)
# yamllint disable-line rule:line-length
shell: "SENTRY_CONF={{sentry_root_dir}} {{sentry_root_dir}}/bin/sentry upgrade" shell: "SENTRY_CONF={{sentry_root_dir}} {{sentry_root_dir}}/bin/sentry upgrade"
args: args:
stdin: n stdin: n
become: yes become: true
become_user: "{{sentry_user}}" become_user: "{{sentry_user}}"
tags: tags:
- sentry - sentry
...@@ -196,7 +193,7 @@ ...@@ -196,7 +193,7 @@
dest: /etc/systemd/system dest: /etc/systemd/system
owner: root owner: root
group: root group: root
mode: 0644 mode: '0644'
with_items: with_items:
- sentry-web.service - sentry-web.service
- sentry-cron.service - sentry-cron.service
...@@ -211,7 +208,9 @@ ...@@ -211,7 +208,9 @@
- service - service
- name: ensure sentry is activated - name: ensure sentry is activated
systemd: name=sentry-web enabled=yes systemd:
name: sentry-web
enabled: true
tags: tags:
- sentry - sentry
- webservices - webservices
......
File moved
...@@ -3,6 +3,7 @@ ...@@ -3,6 +3,7 @@
- name: activate the shibboleth apt repository - name: activate the shibboleth apt repository
apt_repository: apt_repository:
# yamllint disable-line rule:line-length
repo: "deb [arch=amd64] https://repo.fsmpi.rwth-aachen.de/ {{ansible_facts.distribution_release}} shibboleth" repo: "deb [arch=amd64] https://repo.fsmpi.rwth-aachen.de/ {{ansible_facts.distribution_release}} shibboleth"
state: present state: present
notify: notify:
...@@ -37,7 +38,7 @@ ...@@ -37,7 +38,7 @@
dest: /etc/shibboleth/shibboleth2.xml dest: /etc/shibboleth/shibboleth2.xml
owner: root owner: root
group: root group: root
mode: 0644 mode: '0644'
notify: notify:
- reload shibd - reload shibd
tags: tags:
...@@ -50,7 +51,7 @@ ...@@ -50,7 +51,7 @@
dest: /etc/shibboleth/attribute-map.xml dest: /etc/shibboleth/attribute-map.xml
owner: root owner: root
group: root group: root
mode: 0644 mode: '0644'
notify: notify:
- reload shibd - reload shibd
tags: tags:
...@@ -63,7 +64,7 @@ ...@@ -63,7 +64,7 @@
dest: /etc/supervisor/conf.d/ dest: /etc/supervisor/conf.d/
owner: root owner: root
group: root group: root
mode: 0644 mode: '0644'
with_items: with_items:
- shibauthorizer.conf - shibauthorizer.conf
- shibresponder.conf - shibresponder.conf
...@@ -80,7 +81,7 @@ ...@@ -80,7 +81,7 @@
dest: /etc/nginx/snippets/ dest: /etc/nginx/snippets/
owner: root owner: root
group: root group: root
mode: 0644 mode: '0644'
tags: tags:
- shibboleth - shibboleth
- nginx - nginx
...@@ -89,7 +90,7 @@ ...@@ -89,7 +90,7 @@
- name: ensure the services are running - name: ensure the services are running
systemd: systemd:
name: "{{item}}" name: "{{item}}"
enabled: yes enabled: true
state: started state: started
with_items: with_items:
- supervisor - supervisor
......
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment