diff --git a/roles/dns/tasks/main.yml b/roles/dns/tasks/main.yml new file mode 100644 index 00000000..791ec82c --- /dev/null +++ b/roles/dns/tasks/main.yml @@ -0,0 +1,36 @@ +--- +- name: Create dns directory + file: + path: /var/local/dns + state: directory + mode: '2775' + owner: root + group: nounou + +- name: Set ACL for dns directory + acl: + path: /var/local/dns + default: true + entity: nounou + etype: group + permissions: rwx + state: query + +- name: Clone dns repository + git: + repo: 'http://gitlab.adm.crans.org/nounous/dns.git' + dest: /var/local/dns + umask: '002' + +- name: Deploy re2o config + template: + src: dns/re2o-config.ini.j2 + dest: /var/local/dns/re2o-config.ini + mode: 0600 + owner: root + group: root + +- name: Deploy cron for dns + template: + src: cron.d/dns.j2 + dest: /etc/cron.d/dns diff --git a/roles/dns/templates/cron.d/firewall.j2 b/roles/dns/templates/cron.d/firewall.j2 new file mode 100644 index 00000000..1fe89fad --- /dev/null +++ b/roles/dns/templates/cron.d/firewall.j2 @@ -0,0 +1,2 @@ +{{ ansible_header | comment }} +*/2 * * * * root /usr/bin/python3 /var/local/dns/dns.py -q diff --git a/roles/dns/templates/firewall/re2o-config.ini.j2 b/roles/dns/templates/firewall/re2o-config.ini.j2 new file mode 100644 index 00000000..7bf9a4ca --- /dev/null +++ b/roles/dns/templates/firewall/re2o-config.ini.j2 @@ -0,0 +1,5 @@ +{{ ansible_header | comment(decoration='; ') }} +[Re2o] +hostname = {{ re2o.server }} +username = {{ re2o.service_userĀ }} +password = {{ re2o.service_password }}