Skip to content
This repository was archived by the owner on Jan 5, 2025. It is now read-only.

Commit dbdafdf

Browse files
committed
Parametrize remote directories
1 parent a87a47a commit dbdafdf

File tree

4 files changed

+9
-7
lines changed

4 files changed

+9
-7
lines changed

defaults/main.yml

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -3,6 +3,8 @@
33
generate_tls_certs: true
44
# Do not put trailing slash "/"
55
cert_dir: ./certs
6+
remote_certs_dir: /etc/ssl
7+
remote_ca_certs_dir: /etc/ssl/certs
68
generate_ca_cert: false
79
generate_client_cert: false
810
generate_server_cert: false

tasks/generate-ca-cert.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -56,7 +56,7 @@
5656
- name: Copy the CA certificate to the remote machine
5757
copy:
5858
src: "{{ cert_dir }}/{{ tls_ca_cert }}"
59-
dest: /etc/ssl/certs/
59+
dest: "{{ remote_ca_certs_dir }}"
6060
mode: 0644
6161
owner: root
6262
group: root

tasks/generate-client-cert.yaml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -4,7 +4,7 @@
44
file:
55
state: directory
66
recurse: yes
7-
path: "/etc/ssl/{{ item.path }}"
7+
path: "{{ remote_certs_dir }}/{{ item.path }}"
88
mode: "{{ item.mode }}"
99
owner: root
1010
group: root
@@ -32,7 +32,7 @@
3232
become: yes
3333
copy:
3434
src: "{{ cert_dir }}/{{ tls_client_key}}"
35-
dest: /etc/ssl/local/certs/
35+
dest: "{{ remote_certs_dir }}/local/certs/"
3636
mode: 0644
3737
owner: root
3838
group: root
@@ -80,7 +80,7 @@
8080
become: yes
8181
copy:
8282
src: "{{ cert_dir }}/{{ tls_client_cert }}"
83-
dest: /etc/ssl/local/private
83+
dest: "{{ remote_certs_dir }}/local/private"
8484
mode: 0600
8585
owner: root
8686
group: root

tasks/generate-server-cert.yaml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -4,7 +4,7 @@
44
file:
55
state: directory
66
recurse: yes
7-
path: "/etc/ssl/{{ item.path }}"
7+
path: "{{ remote_certs_dir }}/{{ item.path }}"
88
mode: "{{ item.mode }}"
99
owner: root
1010
group: root
@@ -29,7 +29,7 @@
2929
become: yes
3030
copy:
3131
src: "{{ cert_dir }}/{{ inventory_hostname_short }}.key"
32-
dest: /etc/ssl/local/certs/
32+
dest: "{{ remote_certs_dir }}/local/certs/"
3333
mode: 0644
3434
owner: root
3535
group: root
@@ -89,7 +89,7 @@
8989
become: yes
9090
copy:
9191
src: "{{ cert_dir }}/{{ inventory_hostname_short }}.pem"
92-
dest: /etc/ssl/local/private
92+
dest: "{{ remote_certs_dir }}/local/private"
9393
mode: 0600
9494
owner: root
9595
group: root

0 commit comments

Comments
 (0)