-
Notifications
You must be signed in to change notification settings - Fork 3
/
main.yml
145 lines (136 loc) · 2.21 KB
/
main.yml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
---
- name: Basic Setup
hosts: all
become: yes
tags:
- base
vars_files:
- vars.yml
roles:
- base
- docker
- nginx
- restic
- ubuntu-unattended-upgrades
- name: Rocketchat
hosts: all
become: yes
vars_files:
- vars.yml
tags:
- rocketchat
- never
vars:
nginx_domain_name: "chat.{{ main_domain }}"
upload_limit: 500M
project_root: /srv/rocketchat
restic_to_backup: "/srv/rocketchat"
roles:
- restic
- nginx-tls-add
- rocket
- name: Whiteboard
hosts: all
become: yes
vars_files:
- vars.yml
tags:
- whiteboard
- never
vars:
nginx_domain_name: "tafel.{{ main_domain }}"
roles:
- nginx-tls-add
- whiteboard
- name: Jitsi
hosts: all
become: yes
tags:
- jitsi
- never
vars_files:
- vars.yml
vars:
nginx_domain_name: "jitsi.{{ main_domain }}"
docker_config_project: jitsi
project_root: /srv/jitsi
roles:
- nginx-tls-add
- tna76874.ansible_docker_jitsi
- name: Cryptpad
hosts: all
become: yes
vars_files:
- vars.yml
tags:
- cryptpad
- never
vars:
nginx_domain_name: "cryptpad.{{ main_domain }}"
roles:
- nginx-tls-add
- cryptpad
- name: Mumble
hosts: all
become: yes
vars_files:
- vars.yml
tags:
- mumble
- never
vars:
nginx_domain_name: "mumble.{{ main_domain }}"
roles:
- nginx-tls-add
- mumble
- name: Collabora
hosts: all
become: yes
vars_files:
- vars.yml
tags:
- collabora
- never
vars:
nginx_domain_name: "collabora.{{ main_domain }}"
roles:
- nginx-tls-add
- collabora
- name: Deploy mailserver
collections:
- community.docker
hosts: all
become: yes
tags:
- mail
- never
vars_files:
- vars.yml
vars:
main_domain_name: "{{ main_domain }}"
restic_to_backup: "/srv/mailserver"
project_root: "/srv/mailserver"
roles:
- restic
- docker
- mailserver
- name: Secure the ssh server
hosts: all
become: yes
vars_files:
- vars.yml
tags:
- security
- never
roles:
- security
- name: Perform backup
hosts: all
become: yes
vars:
restic_to_backup: /srv
tags:
- backup
- never
roles:
- restic