Age | Commit message (Collapse) | Author | Files | Lines | |
---|---|---|---|---|---|
2022-08-09 | sshd: make support for authorize_keys file optional (default yes) | Lars Wirzenius | 1 | -0/+8 | |
Sponsored-by: author | |||||
2022-08-03 | fix: allow ed25519 for certs as well | Lars Wirzenius | 1 | -1/+1 | |
Sponsored-by: author | |||||
2022-08-03 | fix: typo in sshd/README | Lars Wirzenius | 1 | -1/+1 | |
Sponsored-by: author | |||||
2022-08-02 | docs: document the `sshd` role variables | Lars Wirzenius | 1 | -0/+17 | |
Sponsored-by: author | |||||
2022-07-31 | sshd: add | Lars Wirzenius | 4 | -0/+100 | |
Sponsored-by: author | |||||
2022-07-11 | chore(sane_debian_system role): run off Ansible warning about | Lars Wirzenius | 1 | -0/+2 | |
Ansible warns about using apt-get instead of the apt module. However, I don't think the module can do what the command does. Shut up the warning. Sponsored-by: author | |||||
2022-04-30 | fix(sane_debian_system/apt): allow root to use sudo without password | Lars Wirzenius | 1 | -1/+1 | |
Previously, wrong username was used in sudo config. Sponsored-by: author | |||||
2022-04-24 | fix: allow root to use sudo | Lars Wirzenius | 1 | -0/+7 | |
Sponsored-by: author | |||||
2022-04-24 | fix: start dbus before using hostname module, relying on systemd | Lars Wirzenius | 1 | -0/+7 | |
Sponsored-by: author | |||||
2022-02-15 | apache_server: redirect also https site | Lars Wirzenius | 1 | -0/+5 | |
Sponsored-by: author | |||||
2022-02-15 | apache_server: allow redirecting a site to another site | Lars Wirzenius | 2 | -0/+6 | |
Sponsored-by: author | |||||
2022-01-29 | don't install ntp, use Debian's default of systemd-timesyncd instead | Lars Wirzenius | 1 | -1/+0 | |
Sponsored-by: author | |||||
2021-12-31 | fix: set hostname without systemd | Lars Wirzenius | 1 | -1/+1 | |
Sponsored-by: author | |||||
2021-12-31 | fix: don't have a default hostname value | Lars Wirzenius | 1 | -2/+2 | |
Sponsored-by: author | |||||
2021-12-28 | sane_debian_system: avoid apt-key for adding repository signing keys | Lars Wirzenius | 1 | -9/+13 | |
Debian has decided to deprecate apt-key, though I can't find out why. Sponsored-by: author | |||||
2021-12-12 | fix: install gpg, for apt key installation | Lars Wirzenius | 1 | -1/+2 | |
Not gnupg (see earlier commit), but gpgv doesn't seem to be enough. Bummer. Sponsored-by: author | |||||
2021-12-08 | fix: drop installation of gnupg | Lars Wirzenius | 1 | -2/+1 | |
gnupg drags in a lot of desktop-oriented stuff, which can make logins to servers quite slow. nalanda.liw.fi logins took 90 seconds because of this. Sponsored-by: author | |||||
2021-09-16 | fix: add impl to bindings files for new Subplot | Lars Wirzenius | 2 | -10/+30 | |
Sponsored-by: author | |||||
2021-09-09 | turn off Ansible warning for using apt-get in shell | Lars Wirzenius | 1 | -0/+2 | |
Sponsored-by: author | |||||
2021-08-20 | fix: tell Ansible to use python3 | Lars Wirzenius | 1 | -1/+2 | |
Sponsored-by: author | |||||
2021-08-20 | fix: automatically handle stable becoming bullseye | Lars Wirzenius | 1 | -15/+14 | |
Sponsored-by: author | |||||
2021-07-12 | Revert "fix: sane_debian_system setting hostname" | Lars Wirzenius | 1 | -4/+3 | |
This reverts commit 028980c06c069914823ec965e413f272b0ae0e83. | |||||
2021-07-07 | fix: make sure gnupg is installed before adding apt keys | Lars Wirzenius | 1 | -0/+4 | |
On the Debian 11 cloud image it's not installed by default. Sponsored-by: author | |||||
2021-07-07 | fix: sane_debian_system setting hostname | Lars Wirzenius | 1 | -3/+4 | |
This avoids the Ansible hostname module, which breaks post-Python3.6, because they removed platform.linux_didstribution. Sigh. Sponsored-by: author | |||||
2021-03-31 | feat! default sane_debian_hostname to inventory hostname | Lars Wirzenius | 3 | -5/+29 | |
Doesn't break anything if hostname was already set, but just in case, bump version number, which means any users of this role need to be upgraded. | |||||
2020-11-08 | feat(unix_users): allow a user to be added to extra groups | Lars Wirzenius | 4 | -3/+28 | |
2020-11-04 | feat! make all sane_debian_system variables be prefixed properly | Lars Wirzenius | 6 | -36/+27 | |
This is a breaking change. | |||||
2020-11-01 | sane_debian_system: check that debian_codename is set | Lars Wirzenius | 1 | -0/+15 | |
2020-10-21 | unix_users: drop obsolete authkeys_dir variable, bump version | Lars Wirzenius | 3 | -27/+32 | |
Also, document the variables in the subplot. | |||||
2020-10-21 | doc: all roles | Lars Wirzenius | 3 | -0/+17 | |
2020-10-18 | fix(sane_debian_system): set hostname via Ansible | Lars Wirzenius | 4 | -12/+25 | |
2020-10-11 | fix: syntax non-error | Lars Wirzenius | 1 | -1/+1 | |
2020-10-10 | test(sane_debian_system): add subplot scenarios | Lars Wirzenius | 6 | -1/+78 | |
2020-10-10 | doc: add instructions for using | Lars Wirzenius | 1 | -1/+1 | |
2020-10-10 | feat(unix_users): user MUST declare compat version they want | Lars Wirzenius | 3 | -0/+13 | |
2020-10-10 | test(unix_users): verify setting authorized_keys | Lars Wirzenius | 3 | -1/+16 | |
2020-10-10 | test(unix_users): set encrypted password for users | Lars Wirzenius | 3 | -0/+16 | |
2020-10-10 | feat: verify unix_users can set shell | Lars Wirzenius | 3 | -1/+20 | |
2020-10-10 | fix: unix_users scenario verifies user doesn't exist before creating | Lars Wirzenius | 3 | -0/+11 | |
2020-10-06 | test: add a subplot to verify the roles work | Lars Wirzenius | 3 | -0/+28 | |
2020-09-08 | fix(sane_debian_system): install sudo | Lars Wirzenius | 1 | -0/+4 | |
2020-09-08 | fix(apache_server: allow apache2 restarting to fail | Lars Wirzenius | 1 | -1/+2 | |
2019-10-02 | Fix: don't fail when apache can't be started | Lars Wirzenius | 1 | -1/+2 | |
This happens on first run, since apache want to use a cert that hasn't been created yet. | |||||
2019-10-02 | Change: allow setting Debian release from which certbot is installed | Lars Wirzenius | 2 | -1/+4 | |
2019-09-29 | Change: don't terminate even if certbot fails | Lars Wirzenius | 1 | -1/+1 | |
Need to restart apache back up again. | |||||
2019-09-29 | Change: order of installing haproxy, running certbot | Lars Wirzenius | 1 | -6/+6 | |
For freshly installed systems so the first run doesn't fail. | |||||
2019-05-19 | Fix: add newline to end of /etc/cron.d/deploy_static_site_certs | Lars Wirzenius | 1 | -1/+2 | |
2019-05-19 | Fix: how we check that haproxy_domain is set | Lars Wirzenius | 1 | -14/+11 | |
2019-02-25 | Change: use apt with list of packages, intead of looping | Lars Wirzenius | 3 | -6/+3 | |
2019-02-16 | Refactor: install daily cron job, then invoke it, instead of inline | Lars Wirzenius | 1 | -14/+14 | |