[gitlab] gardening
parent
8db9375a49
commit
c11a7664f5
|
@ -1,4 +1,4 @@
|
||||||
[Service]
|
[Service]
|
||||||
# Allow domain resolution, don't use adm network for anything else
|
# Allow domain resolution, don't use adm network for anything else
|
||||||
ExecStartPost=/bin/sh -c "/usr/sbin/iptables -I FORWARD 1 -i docker0 -d {{ docker.dns_network }} -p udp --dport 53 -j ACCEPT; /usr/sbin/iptables -I FORWARD 2 -d {{ docker.adm_network }} -i docker0 -j REJECT --reject-with icmp-port-unreachable"
|
ExecStartPost=/bin/sh -c "/usr/sbin/iptables -I FORWARD 1 -i docker0 -d 172.16.10.128/32 -p udp --dport 53 -j ACCEPT; /usr/sbin/iptables -I FORWARD 2 -d 172.16.0.0/16 -i docker0 -j REJECT --reject-with icmp-port-unreachable"
|
||||||
ExecStopPost=/usr/sbin/iptables --flush FORWARD
|
ExecStopPost=/usr/sbin/iptables --flush FORWARD
|
||||||
|
|
|
@ -26,7 +26,7 @@
|
||||||
# Add the repository into source list
|
# Add the repository into source list
|
||||||
- name: Configure Gitlab repository
|
- name: Configure Gitlab repository
|
||||||
apt_repository:
|
apt_repository:
|
||||||
repo: deb https://packages.gitlab.com/runner/gitlab-runner/debian/ buster main
|
repo: "deb https://packages.gitlab.com/runner/gitlab-runner/debian/ {{ ansible_distribution_release }} main"
|
||||||
state: present
|
state: present
|
||||||
|
|
||||||
- name: Install gitlab-runner
|
- name: Install gitlab-runner
|
||||||
|
|
|
@ -37,7 +37,7 @@
|
||||||
lineinfile:
|
lineinfile:
|
||||||
path: /etc/default/irker
|
path: /etc/default/irker
|
||||||
regexp: ^IRKER_OPTIONS=
|
regexp: ^IRKER_OPTIONS=
|
||||||
line: IRKER_OPTIONS="-n {{ irker.name }} -d warning"
|
line: IRKER_OPTIONS="-n {{ irker.name }}"
|
||||||
create: true
|
create: true
|
||||||
owner: root
|
owner: root
|
||||||
group: root
|
group: root
|
||||||
|
|
Loading…
Reference in New Issue