Make user for podman containers configurable
This commit is contained in:
parent
f916260c90
commit
82713dabce
7 changed files with 8 additions and 6 deletions
|
|
@ -1,3 +1,4 @@
|
||||||
---
|
---
|
||||||
podman_certbot_port_mapping: "8080:80"
|
podman_certbot_port_mapping: "8080:80"
|
||||||
podman_certbot_timer: weekly
|
podman_certbot_timer: weekly
|
||||||
|
podman_certbot_user: podman
|
||||||
|
|
|
||||||
|
|
@ -4,5 +4,5 @@
|
||||||
daemon_reload: true
|
daemon_reload: true
|
||||||
scope: user
|
scope: user
|
||||||
become_method: community.general.machinectl
|
become_method: community.general.machinectl
|
||||||
become_user: podman
|
become_user: "{{ podman_certbot_user }}"
|
||||||
become: true
|
become: true
|
||||||
|
|
|
||||||
|
|
@ -2,5 +2,5 @@
|
||||||
- name: Configure Certbot service
|
- name: Configure Certbot service
|
||||||
ansible.builtin.import_tasks: machinectl.yml
|
ansible.builtin.import_tasks: machinectl.yml
|
||||||
become_method: community.general.machinectl
|
become_method: community.general.machinectl
|
||||||
become_user: podman
|
become_user: "{{ podman_certbot_user }}"
|
||||||
become: true
|
become: true
|
||||||
|
|
|
||||||
|
|
@ -4,5 +4,5 @@
|
||||||
daemon_reload: true
|
daemon_reload: true
|
||||||
scope: user
|
scope: user
|
||||||
become_method: community.general.machinectl
|
become_method: community.general.machinectl
|
||||||
become_user: podman
|
become_user: "{{ podman_certbot_user }}"
|
||||||
become: true
|
become: true
|
||||||
|
|
|
||||||
|
|
@ -20,7 +20,7 @@
|
||||||
- name: Allow podman user to execute the move command
|
- name: Allow podman user to execute the move command
|
||||||
community.general.sudoers:
|
community.general.sudoers:
|
||||||
name: allow-podman-move-certificates
|
name: allow-podman-move-certificates
|
||||||
user: podman
|
user: "{{ podman_certbot_user }}"
|
||||||
state: present
|
state: present
|
||||||
commands:
|
commands:
|
||||||
- /usr/local/bin/move-certificate-files-to-root
|
- /usr/local/bin/move-certificate-files-to-root
|
||||||
|
|
@ -29,5 +29,5 @@
|
||||||
- name: Configure Certbot service
|
- name: Configure Certbot service
|
||||||
ansible.builtin.import_tasks: machinectl.yml
|
ansible.builtin.import_tasks: machinectl.yml
|
||||||
become_method: community.general.machinectl
|
become_method: community.general.machinectl
|
||||||
become_user: podman
|
become_user: "{{ podman_certbot_user }}"
|
||||||
become: true
|
become: true
|
||||||
|
|
|
||||||
|
|
@ -1,2 +1,3 @@
|
||||||
---
|
---
|
||||||
podman_forgejo_version: 8.0.1
|
podman_forgejo_version: 8.0.1
|
||||||
|
podman_forgejo_user: podman
|
||||||
|
|
|
||||||
|
|
@ -2,5 +2,5 @@
|
||||||
- name: Configure Forgejo service
|
- name: Configure Forgejo service
|
||||||
ansible.builtin.import_tasks: machinectl.yml
|
ansible.builtin.import_tasks: machinectl.yml
|
||||||
become_method: community.general.machinectl
|
become_method: community.general.machinectl
|
||||||
become_user: podman
|
become_user: "{{ podman_forgejo_user }}"
|
||||||
become: true
|
become: true
|
||||||
|
|
|
||||||
Loading…
Reference in a new issue