This repository was archived by the owner on Jan 5, 2025. It is now read-only.
File tree Expand file tree Collapse file tree 4 files changed +9
-7
lines changed Expand file tree Collapse file tree 4 files changed +9
-7
lines changed Original file line number Diff line number Diff line change 33generate_tls_certs : true
44# Do not put trailing slash "/"
55cert_dir : ./certs
6+ remote_certs_dir : /etc/ssl
7+ remote_ca_certs_dir : /etc/ssl/certs
68generate_ca_cert : false
79generate_client_cert : false
810generate_server_cert : false
Original file line number Diff line number Diff line change 5656- name : Copy the CA certificate to the remote machine
5757 copy :
5858 src : " {{ cert_dir }}/{{ tls_ca_cert }}"
59- dest : /etc/ssl/certs/
59+ dest : " {{ remote_ca_certs_dir }} "
6060 mode : 0644
6161 owner : root
6262 group : root
Original file line number Diff line number Diff line change 44 file :
55 state : directory
66 recurse : yes
7- path : " /etc/ssl /{{ item.path }}"
7+ path : " {{ remote_certs_dir }} /{{ item.path }}"
88 mode : " {{ item.mode }}"
99 owner : root
1010 group : root
3232 become : yes
3333 copy :
3434 src : " {{ cert_dir }}/{{ tls_client_key}}"
35- dest : /etc/ssl/ local/certs/
35+ dest : " {{ remote_certs_dir }}/ local/certs/"
3636 mode : 0644
3737 owner : root
3838 group : root
8080 become : yes
8181 copy :
8282 src : " {{ cert_dir }}/{{ tls_client_cert }}"
83- dest : /etc/ssl/ local/private
83+ dest : " {{ remote_certs_dir }}/ local/private"
8484 mode : 0600
8585 owner : root
8686 group : root
Original file line number Diff line number Diff line change 44 file :
55 state : directory
66 recurse : yes
7- path : " /etc/ssl /{{ item.path }}"
7+ path : " {{ remote_certs_dir }} /{{ item.path }}"
88 mode : " {{ item.mode }}"
99 owner : root
1010 group : root
2929 become : yes
3030 copy :
3131 src : " {{ cert_dir }}/{{ inventory_hostname_short }}.key"
32- dest : /etc/ssl/ local/certs/
32+ dest : " {{ remote_certs_dir }}/ local/certs/"
3333 mode : 0644
3434 owner : root
3535 group : root
8989 become : yes
9090 copy :
9191 src : " {{ cert_dir }}/{{ inventory_hostname_short }}.pem"
92- dest : /etc/ssl/ local/private
92+ dest : " {{ remote_certs_dir }}/ local/private"
9393 mode : 0600
9494 owner : root
9595 group : root
You can’t perform that action at this time.
0 commit comments