source: main/waeup-ansible

Revision log mode:


Legend:

Added
Modified
Copied or renamed
Diff Rev Age Author Log message
(edit) @17070   2 years Henrik Bettermann Add domain obi-dient.com.ng.
(edit) @16992   2 years Henrik Bettermann Add lp-nigeria.com.ng
(edit) @16987   2 years uli Update SSH config to current infosec state.
(edit) @16889   3 years uli Add h9, update h10 LE domains.
(edit) @16727   3 years Henrik Bettermann Add unidel-trac.waeup.org
(edit) @16600   3 years uli Update domain lists for letsencrypt certs. We had some additions on …
(edit) @16581   3 years uli Add d2.waeup.org LE domain and fix LE role.
(edit) @16580   3 years uli Update TLS cert domains for h8, add h10 cert domains.
(edit) @16460   3 years uli Also apt autoremove after package changes.
(edit) @16036   5 years uli Modernize munin-client role. With recent ansible versions lists of …
(edit) @16035   5 years uli Update list of hosts.
(edit) @16019   5 years uli Hint: first domain should not be changed.
(edit) @16018   5 years Henrik Bettermann Add kofaplus.com and www.kofaplus.com.
(edit) @15967   5 years uli Add host vars for h9 and h10. These include mainly the backup …
(edit) @15962   5 years uli Update letsencrypt domain list.
(edit) @15936   5 years uli Minor fixes in borg playbook. Fix permissions set and creat README …
(edit) @15935   5 years uli In backup script also prune old backups. This is neccessary to create …
(edit) @15934   5 years uli Fix backup vars for host h9. Set the proper list of dirs to backup …
(edit) @15933   5 years uli Fix executable settings. Recent ansible versions are more picky about …
(edit) @15928   5 years uli Install scripts to set borg env vars. When installing borg, provide …
(edit) @15926   5 years uli Add script templates for borg backup.
(edit) @15915   5 years uli Rename group [yet-untouched] -> [yet_untouched] as ansible does not …
(edit) @15914   5 years uli Remove retired servers.
(edit) @15909   5 years uli Extend letsencrypt covered domain list.
(edit) @15908   5 years uli Reflect last server additions/removals.
(edit) @15907   5 years uli Stop vhost10 before reboot.
(edit) @15906   5 years uli Remive unused vars, fix script name.
(edit) @15905   5 years Henrik Bettermann Start vagrant vhost10 after reboot.
(edit) @15904   5 years uli Add playbooks and config for borg backup.
(edit) @15903   5 years uli Add dir to store generated borg backup credentials. That includes …
(edit) @15902   5 years uli Update host specific settings. Especially h5 provides no special …
(edit) @15901   5 years uli Update syntax to get rid of deprecation warnings. Also readability is …
(edit) @15573   5 years uli We ran setup.yml on h8. therefore it is now a production machine …
(edit) @15572   5 years uli Go on when something goes wrong. Do not skip further hosts if things …
(edit) @15568   5 years uli Start/stop nginx in main play, add more domains The pre- and …
(edit) @15566   5 years uli Add iuokada-trac domain.
(edit) @15556   5 years uli Extend list of certified domains. The letsencrypt cert should also …
(edit) @15488   5 years uli Extend list of domains to cover on h8
(edit) @15390   5 years uli Remove private hosts.
(edit) @15389   5 years uli Start vhost 6 after reboots.
(edit) @15358   6 years uli Update package list for basic installs. We do not need …
(edit) @15357   6 years uli Add a cleanup script.
(edit) @15356   6 years uli Move handling of v1. As v1 moved from h7 to h8, we have to reflect …
(edit) @15355   6 years uli Import playbooks rather than include them. Importing playbooks is the …
(edit) @15353   6 years uli Add missing letsencrypt domain. We manage letsencrypt on h8 by …
(edit) @15262   6 years uli Tell about users in vagrant envs.
(edit) @15003   6 years uli Put timestamp into log.
(edit) @14985   6 years uli Log daily upgrade changes to file. The daily-upgrade playbook output …
(edit) @14982   6 years uli Add a playbook for daily upgrades.
(edit) @14930   7 years uli Add role for munin clients.
(edit) @14929   7 years uli Add missing domains.
(edit) @14923   7 years uli Add a bootstrapper for vhosts.
(edit) @14922   7 years uli Provide different Vagrantfiles for different purposes.
(edit) @14912   7 years uli Run odoo in proxy-mode.
(edit) @14911   7 years uli Append missing domains in letsencrypt playbook. Adding domains in the …
(edit) @14909   7 years uli Add docs for provisioning vhosts.
(edit) @14908   7 years uli Provide a oneliner to equip hosts with odoo.
(edit) @14907   7 years uli Add an odoo role.
(edit) @14906   7 years uli Care for new host during reboot.
(edit) @14905   7 years uli Add new vhost v5.
(edit) @14773   7 years uli Tell about ansible-vault in README. Just encrypted all sensitive …
(edit) @14772   7 years uli Stop v3, v4 before rebooting hosts.
(edit) @14771   7 years uli Add v3 and v4 in reboot playbooks.
(edit) @14763   7 years uli Fix reboot playbook. There were two problems with the former version …
(edit) @14762   7 years uli Create more host groups. We treat hosts differently depending on …
(edit) @14752   7 years uli Allow per-host settings in separate config files. We want to set …
(edit) @14706   7 years uli Add ansible role for installing letsencrypt (LE) The …
(edit) @14694   7 years uli More packages to install during host setup.
(edit) @14693   7 years uli In README, describe host setup after bootstrapping. Give hints how we …
(edit) @14692   7 years uli Consider vhosts in pre-/post-reboot playbooks. When rebooting hosts …
(edit) @14678   7 years uli Give time to sleep before reboot.
(edit) @14434   8 years uli Fix filename in sample call.
(edit) @14352   8 years uli Start installing basic packages.
(edit) @14349   8 years uli Add a playbook for setup of already bootstrapped hosts. After …
(edit) @14330   8 years Henrik Bettermann Add Ikoba AAUE instance to playbooks.
(edit) @14325   8 years uli Make bootstrap.yml really work. This version of bootstrap.yml was …
(edit) @14324   8 years uli Remove empty line.
(edit) @14323   8 years uli Update README. Reflect changes to bootstrap.yml.
(edit) @14192   8 years Henrik Bettermann Add Ikoba Demo and Ikoba Uniben instances.
(edit) @14187   8 years uli Set port when waiting for server reboot. When we reboot a host and …
(edit) @14186   8 years uli Hm, this is much shorter. Just learned how to include other playbooks …
(edit) @14185   8 years uli Add a playbook that reboots hosts. It does of course also all the …
(edit) @14033   8 years uli New versions of ansible upgrade.
(edit) @14032   8 years uli Add ansible playbook for starting services. Yet we have a …
(edit) @14031   8 years uli This playbook works okay for all servers.
(edit) @13995   8 years uli Add roles to enable swap-accounting. Swap accounting is at least used …
(edit) @13994   8 years uli Turn (some) tasks from playbook into roles.
(edit) @13993   8 years uli Use a more robust approach when updating remote hosts.
(edit) @13957   8 years uli Add playbook that prepares hosts for reboot.
(edit) @13956   8 years uli Simple shell script for running aptitude safe-upgrade on all hosts.
(edit) @13955   8 years uli Add a hosts inventory with real hosts. We should merge both set of …
(edit) @13954   8 years uli Add a minimal ansible.cfg. Not sure, whether this is really needed.
(edit) @13851   8 years uli Merge two host-key tasks into one.
(edit) @13850   8 years uli Add missing sshd_config pieces. We set required SSH ciphers/MACs/key …
(edit) @13849   8 years uli Use sshd restart as a handler. This way sshd is only restarted if …
(edit) @13848   8 years uli Basic moduli fixer for ssh.
(edit) @13847   8 years uli Fix task for modifying sudoers file. As colon followed by space (': …
(edit) @13845   8 years uli Add tasks for securing sshd config.
(edit) @13844   8 years uli Enable passwordless sudo for deploy user.
(edit) @13843   8 years uli Tell about what we learned.
Note: See TracRevisionLog for help on using the revision log.