Make user for podman containers configurable

This commit is contained in:
Ivo C.S. Wingelaar 2024-10-13 14:44:30 +02:00
parent f916260c90
commit 82713dabce
Signed by: ivo
GPG key ID: ABBED434F58D0AA3
7 changed files with 8 additions and 6 deletions

View file

@ -1,3 +1,4 @@
--- ---
podman_certbot_port_mapping: "8080:80" podman_certbot_port_mapping: "8080:80"
podman_certbot_timer: weekly podman_certbot_timer: weekly
podman_certbot_user: podman

View file

@ -4,5 +4,5 @@
daemon_reload: true daemon_reload: true
scope: user scope: user
become_method: community.general.machinectl become_method: community.general.machinectl
become_user: podman become_user: "{{ podman_certbot_user }}"
become: true become: true

View file

@ -2,5 +2,5 @@
- name: Configure Certbot service - name: Configure Certbot service
ansible.builtin.import_tasks: machinectl.yml ansible.builtin.import_tasks: machinectl.yml
become_method: community.general.machinectl become_method: community.general.machinectl
become_user: podman become_user: "{{ podman_certbot_user }}"
become: true become: true

View file

@ -4,5 +4,5 @@
daemon_reload: true daemon_reload: true
scope: user scope: user
become_method: community.general.machinectl become_method: community.general.machinectl
become_user: podman become_user: "{{ podman_certbot_user }}"
become: true become: true

View file

@ -20,7 +20,7 @@
- name: Allow podman user to execute the move command - name: Allow podman user to execute the move command
community.general.sudoers: community.general.sudoers:
name: allow-podman-move-certificates name: allow-podman-move-certificates
user: podman user: "{{ podman_certbot_user }}"
state: present state: present
commands: commands:
- /usr/local/bin/move-certificate-files-to-root - /usr/local/bin/move-certificate-files-to-root
@ -29,5 +29,5 @@
- name: Configure Certbot service - name: Configure Certbot service
ansible.builtin.import_tasks: machinectl.yml ansible.builtin.import_tasks: machinectl.yml
become_method: community.general.machinectl become_method: community.general.machinectl
become_user: podman become_user: "{{ podman_certbot_user }}"
become: true become: true

View file

@ -1,2 +1,3 @@
--- ---
podman_forgejo_version: 8.0.1 podman_forgejo_version: 8.0.1
podman_forgejo_user: podman

View file

@ -2,5 +2,5 @@
- name: Configure Forgejo service - name: Configure Forgejo service
ansible.builtin.import_tasks: machinectl.yml ansible.builtin.import_tasks: machinectl.yml
become_method: community.general.machinectl become_method: community.general.machinectl
become_user: podman become_user: "{{ podman_forgejo_user }}"
become: true become: true