File tree Expand file tree Collapse file tree 4 files changed +9
-12
lines changed Expand file tree Collapse file tree 4 files changed +9
-12
lines changed Original file line number Diff line number Diff line change 11---
22skip_list:
3- - key-order[task]
4- - jinja[spacing]
5- - name[missing]
63 - var-naming[no-role-prefix]
74 - yaml[octal-values]
85 - yaml[trailing-spaces]
Original file line number Diff line number Diff line change 2626 until : vault_init_status.status == 200
2727
2828- name : " Initialize vault"
29+ run_once : true
30+ when :
31+ - not vault_init_status.json.initialized
2932 block :
3033 - name : Initialize vault
3134 hashivault_init :
5457 delegate_to : " {{ vault_write_keys_file_host }}"
5558 when :
5659 - vault_write_keys_file | bool
57- run_once : true
58- when :
59- - not vault_init_status.json.initialized
Original file line number Diff line number Diff line change 1212 max_lease_ttl : " {{ vault_pki_intermediate_max_lease_ttl }}"
1313
1414- name : " Generate Intermediate CA cert, key and sign CSR"
15+ when : not vault_pki_intermediate_import | bool
1516 block :
1617 - name : " Generate Vault Intermediate CA cert and key"
1718 hashivault_pki_ca :
9394 - intermediate_ca_csr.data is defined
9495 - intermediate_ca_csr_signed.data is defined
9596
96- when : not vault_pki_intermediate_import | bool
9797
9898- name : " Import Intermediate CA cert and key"
99+ when : vault_pki_intermediate_import | bool
99100 block :
100101 - name : " Import Intermediate CA cert and key"
101102 hashivault_pki_ca_set :
104105 ca_cert : " {{ vault_ca_cert | default(omit) }}"
105106 mount_point : " {{ vault_pki_intermediate_ca_name }}"
106107 pem_bundle : " {{ vault_pki_intermediate_ca_bundle }}"
107-
108- when : vault_pki_intermediate_import | bool
Original file line number Diff line number Diff line change 1515 state : directory
1616 become : true
1717
18- - include_role :
18+ - name : Include vault role
19+ include_role :
1920 name : vault
2021
21- # Idempotence test
22- - include_role :
22+ - name : Include vault role (idemoptence test)
23+ include_role :
2324 name : vault
2425
2526 - name : Unseal vault
You can’t perform that action at this time.
0 commit comments