add nginx, sshd, ssl roles

This commit is contained in:
2026-09-20 22:14:56 +00:00
parent ba9e1a664f
commit c640406c10
131 changed files with 1535 additions and 780 deletions
+29
View File
@@ -0,0 +1,29 @@
---
- name: deploy rasy-rsa
hosts: localhost
connection: local
become: true
roles:
- easy-rsa
- name: configure liqueur openvpn
hosts: liqueur
vars:
ansible_connection: ssh
ansible_host: "{{ container_ip }}"
ansible_user: root
ansible_ssh_private_key_file: ~/.ssh/id_ed25519
ansible_ssh_common_args: '-o UserKnownHostsFile=/dev/null -o StrictHostKeyChecking=no'
roles:
- openvpn
- name: configure router openvpn
hosts: router
vars:
ansible_connection: ssh
ansible_host: "{{ container_ip }}"
ansible_user: root
ansible_ssh_private_key_file: ~/.ssh/id_ed25519
ansible_ssh_common_args: '-o UserKnownHostsFile=/dev/null -o StrictHostKeyChecking=no'
roles:
- openvpn
+23
View File
@@ -0,0 +1,23 @@
---
- name: configure over ssh
hosts: liqueur
vars:
ansible_connection: ssh
ansible_host: "{{ container_ip }}"
ansible_user: root
ansible_ssh_private_key_file: ~/.ssh/id_ed25519
ansible_ssh_common_args: >-
-o UserKnownHostsFile=/dev/null
-o StrictHostKeyChecking=no
-o PreferredAuthentications=publickey,password
-o PubkeyAuthentication=yes
roles:
- authorized_key
- sshd
- certbot
- sysctl
- nginx
- nftables
- stunnel4
- openvpn
- haproxy
+2 -3
View File
@@ -18,12 +18,11 @@
- timezone
- locales
- sysctl
- stunnel4
- openvpn
- xray-core
- xray-client
- logrotate
- dnsmasq
- xray-lists
- unbound
- wireguard-tools
- zerotier-one
- nftables
-5
View File
@@ -1,5 +0,0 @@
---
- hosts: router
become: yes
roles:
- xray-core