|
|
@ -1,12 +1,9 @@
|
|
|
|
- name: Set up lotus-land-story
|
|
|
|
- name: Set up lotus-land-story
|
|
|
|
hosts: lotus-land-story
|
|
|
|
hosts: lotus-land-story
|
|
|
|
|
|
|
|
vars_files:
|
|
|
|
|
|
|
|
- vars.yml
|
|
|
|
tasks:
|
|
|
|
tasks:
|
|
|
|
|
|
|
|
|
|
|
|
- name: Set facts from environment variables
|
|
|
|
|
|
|
|
ansible.builtin.set_fact:
|
|
|
|
|
|
|
|
domain: "{{ lookup('ansible.builtin.env', 'TF_VAR_domain') }}"
|
|
|
|
|
|
|
|
miniflux_password: "{{ lookup('ansible.builtin.env', 'MINIFLUX_PASSWORD') }}"
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
# https://wiki.debian.org/PostgreSql
|
|
|
|
# https://wiki.debian.org/PostgreSql
|
|
|
|
- name: Install postgres
|
|
|
|
- name: Install postgres
|
|
|
|
ansible.builtin.apt:
|
|
|
|
ansible.builtin.apt:
|
|
|
@ -21,10 +18,11 @@
|
|
|
|
line: /dev/disk/by-id/scsi-0Linode_Volume_lotus-land-story /mnt/lotus-land-story ext4 defaults,noatime,nofail 0 2
|
|
|
|
line: /dev/disk/by-id/scsi-0Linode_Volume_lotus-land-story /mnt/lotus-land-story ext4 defaults,noatime,nofail 0 2
|
|
|
|
state: present
|
|
|
|
state: present
|
|
|
|
- name: Make /mnt/lotus-land-story/postgresql
|
|
|
|
- name: Make /mnt/lotus-land-story/postgresql
|
|
|
|
file:
|
|
|
|
ansible.builtin.file:
|
|
|
|
path: /mnt/lotus-land-story/postgresql
|
|
|
|
path: /mnt/lotus-land-story/postgresql
|
|
|
|
state: directory
|
|
|
|
state: directory
|
|
|
|
owner: postgres
|
|
|
|
owner: postgres
|
|
|
|
|
|
|
|
mode: "0755"
|
|
|
|
- name: Set data directory to volume
|
|
|
|
- name: Set data directory to volume
|
|
|
|
ansible.builtin.lineinfile:
|
|
|
|
ansible.builtin.lineinfile:
|
|
|
|
dest: "/etc/postgresql/13/main/postgresql.conf"
|
|
|
|
dest: "/etc/postgresql/13/main/postgresql.conf"
|
|
|
@ -53,23 +51,27 @@
|
|
|
|
- gnupg
|
|
|
|
- gnupg
|
|
|
|
state: present
|
|
|
|
state: present
|
|
|
|
- name: Make /etc/apt/keyrings
|
|
|
|
- name: Make /etc/apt/keyrings
|
|
|
|
file:
|
|
|
|
ansible.builtin.file:
|
|
|
|
path: /etc/apt/keyrings
|
|
|
|
path: /etc/apt/keyrings
|
|
|
|
state: directory
|
|
|
|
state: directory
|
|
|
|
mode: 0755
|
|
|
|
mode: "0755"
|
|
|
|
- name: Download Docker GPG key
|
|
|
|
- name: Download Docker GPG key
|
|
|
|
ansible.builtin.shell: curl -fsSL https://download.docker.com/linux/debian/gpg | gpg --dearmor -o /etc/apt/keyrings/docker.gpg
|
|
|
|
ansible.builtin.shell: |
|
|
|
|
|
|
|
|
set -o pipefail
|
|
|
|
|
|
|
|
curl -fsSL https://download.docker.com/linux/debian/gpg | gpg --dearmor -o /etc/apt/keyrings/docker.gpg
|
|
|
|
args:
|
|
|
|
args:
|
|
|
|
creates: /etc/apt/keyrings/docker.gpg
|
|
|
|
creates: /etc/apt/keyrings/docker.gpg
|
|
|
|
- name: Get architecture
|
|
|
|
- name: Get architecture
|
|
|
|
command: dpkg --print-architecture
|
|
|
|
ansible.builtin.command: dpkg --print-architecture
|
|
|
|
register: arch
|
|
|
|
register: arch
|
|
|
|
|
|
|
|
changed_when: arch.rc != 0
|
|
|
|
- name: Set up docker repository
|
|
|
|
- name: Set up docker repository
|
|
|
|
ansible.builtin.template:
|
|
|
|
ansible.builtin.template:
|
|
|
|
src: templates/docker.list
|
|
|
|
src: templates/docker.list
|
|
|
|
dest: /etc/apt/sources.list.d/docker.list
|
|
|
|
dest: /etc/apt/sources.list.d/docker.list
|
|
|
|
|
|
|
|
mode: "0644"
|
|
|
|
- name: Install docker
|
|
|
|
- name: Install docker
|
|
|
|
apt:
|
|
|
|
ansible.builtin.apt:
|
|
|
|
pkg:
|
|
|
|
pkg:
|
|
|
|
- docker-ce
|
|
|
|
- docker-ce
|
|
|
|
- docker-ce-cli
|
|
|
|
- docker-ce-cli
|
|
|
@ -84,8 +86,11 @@
|
|
|
|
block:
|
|
|
|
block:
|
|
|
|
|
|
|
|
|
|
|
|
- name: Get docker0 IP address
|
|
|
|
- name: Get docker0 IP address
|
|
|
|
ansible.builtin.shell: ip -4 -o addr show docker0 | awk '{print $4}'
|
|
|
|
ansible.builtin.shell: ip -4 -o addr show docker0 | awk '{print $4}' # noqa: risky-shell-pipe
|
|
|
|
|
|
|
|
vars:
|
|
|
|
|
|
|
|
executable: /usr/bin/bash
|
|
|
|
register: docker_ip
|
|
|
|
register: docker_ip
|
|
|
|
|
|
|
|
changed_when: docker_ip.rc != 0
|
|
|
|
- name: Listen on docker0 interface
|
|
|
|
- name: Listen on docker0 interface
|
|
|
|
ansible.builtin.lineinfile:
|
|
|
|
ansible.builtin.lineinfile:
|
|
|
|
dest: "/etc/postgresql/13/main/conf.d/listen.conf"
|
|
|
|
dest: "/etc/postgresql/13/main/conf.d/listen.conf"
|
|
|
@ -93,6 +98,7 @@
|
|
|
|
line: "listen_addresses='localhost,{{ docker_ip.stdout | ansible.utils.ipaddr('address') }}'"
|
|
|
|
line: "listen_addresses='localhost,{{ docker_ip.stdout | ansible.utils.ipaddr('address') }}'"
|
|
|
|
state: present
|
|
|
|
state: present
|
|
|
|
create: true
|
|
|
|
create: true
|
|
|
|
|
|
|
|
mode: "0644"
|
|
|
|
notify: Restart postgres
|
|
|
|
notify: Restart postgres
|
|
|
|
|
|
|
|
|
|
|
|
- name: Set up postgres for miniflux
|
|
|
|
- name: Set up postgres for miniflux
|
|
|
@ -147,9 +153,10 @@
|
|
|
|
- "host.docker.internal:host-gateway"
|
|
|
|
- "host.docker.internal:host-gateway"
|
|
|
|
|
|
|
|
|
|
|
|
- name: Make /mnt/lotus-land-story/caddy
|
|
|
|
- name: Make /mnt/lotus-land-story/caddy
|
|
|
|
file:
|
|
|
|
ansible.builtin.file:
|
|
|
|
path: /mnt/lotus-land-story/{{ item }}
|
|
|
|
path: /mnt/lotus-land-story/{{ item }}
|
|
|
|
state: directory
|
|
|
|
state: directory
|
|
|
|
|
|
|
|
mode: "0755"
|
|
|
|
loop:
|
|
|
|
loop:
|
|
|
|
- caddy
|
|
|
|
- caddy
|
|
|
|
- caddy/data
|
|
|
|
- caddy/data
|
|
|
@ -158,6 +165,7 @@
|
|
|
|
ansible.builtin.template:
|
|
|
|
ansible.builtin.template:
|
|
|
|
src: templates/Caddyfile
|
|
|
|
src: templates/Caddyfile
|
|
|
|
dest: /mnt/lotus-land-story/caddy/Caddyfile
|
|
|
|
dest: /mnt/lotus-land-story/caddy/Caddyfile
|
|
|
|
|
|
|
|
mode: "0644"
|
|
|
|
- name: Run caddy
|
|
|
|
- name: Run caddy
|
|
|
|
community.docker.docker_compose:
|
|
|
|
community.docker.docker_compose:
|
|
|
|
project_name: caddy
|
|
|
|
project_name: caddy
|
|
|
@ -182,3 +190,5 @@
|
|
|
|
ansible.builtin.service:
|
|
|
|
ansible.builtin.service:
|
|
|
|
name: postgresql
|
|
|
|
name: postgresql
|
|
|
|
state: restarted
|
|
|
|
state: restarted
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
# vim: ft=yaml.ansible
|
|
|
|