ansible_vault → ansible/: wireguard
parent
399c988780
commit
ac04b63c87
|
@ -7,9 +7,9 @@ loc_wireguard:
|
||||||
tunnels:
|
tunnels:
|
||||||
- name: "sputnik"
|
- name: "sputnik"
|
||||||
listen_port: 51820
|
listen_port: 51820
|
||||||
private_key: "{{ vault.wireguard_boeing_private_key }}"
|
private_key: "{{ vault.wireguard.boeing.privkey }}"
|
||||||
peers:
|
peers:
|
||||||
- public_key: "{{ vault.wireguard_sputnik_public_key }}"
|
- public_key: "{{ vault.wireguard.sputnik.pubkey }}"
|
||||||
allowed_ips:
|
allowed_ips:
|
||||||
- "{{ query('ldap', 'ip', 'sputnik', 'adm') | ipv4 | first }}/32"
|
- "{{ query('ldap', 'ip', 'sputnik', 'adm') | ipv4 | first }}/32"
|
||||||
- "{{ query('ldap', 'ip', 'sputnik', 'adm') | ipv6 | first }}/128"
|
- "{{ query('ldap', 'ip', 'sputnik', 'adm') | ipv6 | first }}/128"
|
||||||
|
|
|
@ -15,9 +15,9 @@ loc_wireguard:
|
||||||
- "{{ query('ldap', 'ip', 'sputnik', 'adm') | ipv4 | first }}/24"
|
- "{{ query('ldap', 'ip', 'sputnik', 'adm') | ipv4 | first }}/24"
|
||||||
- "{{ query('ldap', 'ip', 'sputnik', 'adm') | ipv6 | first }}/64"
|
- "{{ query('ldap', 'ip', 'sputnik', 'adm') | ipv6 | first }}/64"
|
||||||
listen_port: 51820
|
listen_port: 51820
|
||||||
private_key: "{{ vault.wireguard_sputnik_private_key }}"
|
private_key: "{{ vault.wireguard.sputnik.privkey }}"
|
||||||
peers:
|
peers:
|
||||||
- public_key: "{{ vault.wireguard_boeing_public_key }}"
|
- public_key: "{{ vault.wireguard.boeing.pubkey }}"
|
||||||
allowed_ips:
|
allowed_ips:
|
||||||
- "{{ query('ldap', 'network', 'adm') }}"
|
- "{{ query('ldap', 'network', 'adm') }}"
|
||||||
- "fd00:0:0:{{ query('ldap', 'vlanid', 'adm') }}::/64"
|
- "fd00:0:0:{{ query('ldap', 'vlanid', 'adm') }}::/64"
|
||||||
|
|
|
@ -7,9 +7,9 @@ loc_wireguard:
|
||||||
tunnels:
|
tunnels:
|
||||||
- name: "gulp"
|
- name: "gulp"
|
||||||
listen_port: 51820
|
listen_port: 51820
|
||||||
private_key: "{{ vault.wireguard_vol447_private_key }}"
|
private_key: "{{ vault.wireguard.vol447.privkey }}"
|
||||||
peers:
|
peers:
|
||||||
- public_key: "{{ vault.wireguard_charybde_public_key }}"
|
- public_key: "{{ vault.wireguard.charybde.pubkey }}"
|
||||||
allowed_ips:
|
allowed_ips:
|
||||||
- "{{ query('ldap', 'ip', 'charybde', 'adm') | ipv4 | first }}/32"
|
- "{{ query('ldap', 'ip', 'charybde', 'adm') | ipv4 | first }}/32"
|
||||||
- "{{ query('ldap', 'ip', 'charybde', 'adm') | ipv6 | first }}/128"
|
- "{{ query('ldap', 'ip', 'charybde', 'adm') | ipv6 | first }}/128"
|
||||||
|
|
Loading…
Reference in New Issue