-
Notifications
You must be signed in to change notification settings - Fork 25
Expand file tree
/
Copy pathmain.yml
More file actions
68 lines (61 loc) · 2.21 KB
/
main.yml
File metadata and controls
68 lines (61 loc) · 2.21 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
---
- name: Create temporary directory
ansible.builtin.tempfile:
state: directory
suffix: certificate-build
register: certificate_bundle_build_directory
- name: Create directory structure
ansible.builtin.file:
state: directory
path: "{{ certificate_bundle_build_directory.path }}/ssl-build/{{ certificate_bundle_hostname }}"
mode: '0755'
- name: Copy CA certificate
ansible.builtin.copy:
src: "{{ certificate_bundle_ca_certificate }}"
dest: "{{ certificate_bundle_build_directory.path }}/ssl-build/{{ item }}"
remote_src: true
mode: '0444'
loop:
- katello-server-ca.crt
- katello-default-ca.crt
- name: Copy server certificate
ansible.builtin.copy:
src: "{{ certificate_bundle_server_certificate }}"
dest: "{{ certificate_bundle_build_directory.path }}/ssl-build/{{ certificate_bundle_hostname }}/{{ certificate_bundle_hostname }}-{{ item }}"
remote_src: true
mode: '0444'
loop:
- apache.crt
- foreman-proxy.crt
- name: Copy server key
ansible.builtin.copy:
src: "{{ certificate_bundle_server_key }}"
dest: "{{ certificate_bundle_build_directory.path }}/ssl-build/{{ certificate_bundle_hostname }}/{{ certificate_bundle_hostname }}-{{ item }}"
remote_src: true
mode: '0440'
loop:
- apache.key
- foreman-proxy.key
- name: Copy client certificate
ansible.builtin.copy:
src: "{{ certificate_bundle_client_certificate }}"
dest: "{{ certificate_bundle_build_directory.path }}/ssl-build/{{ certificate_bundle_hostname }}/{{ certificate_bundle_hostname }}-{{ item }}"
remote_src: true
mode: '0444'
loop:
- foreman-proxy-client.crt
- puppet-client.crt
- name: Copy client key
ansible.builtin.copy:
src: "{{ certificate_bundle_client_key }}"
dest: "{{ certificate_bundle_build_directory.path }}/ssl-build/{{ certificate_bundle_hostname }}/{{ certificate_bundle_hostname }}-{{ item }}"
remote_src: true
mode: '0440'
loop:
- foreman-proxy-client.key
- puppet-client.key
- name: Create tarball
community.general.archive:
path: "{{ certificate_bundle_build_directory.path }}/ssl-build"
dest: "{{ certificate_bundle_output_directory }}/{{ certificate_bundle_hostname }}.tar.gz"
mode: '0640'