ansible/host_vars/re2o.cachan-adm.crans.org.yml

52 lines
1.6 KiB
YAML

---
interfaces:
cachan_adm: ens18
cachan_srv_nat: ens19
loc_re2o:
owner: root
group: _nounou
version: crans
settings_local_owner: www-data
settings_local_group: _nounou
django_secret_key: "{{ vault.re2o_django_secret_key }}"
aes_key: "{{ vault.re2o_aes_key }}"
admins:
- ('Root', 'root@crans.org')
allowed_hosts:
- "{{ query('ldap', 'ip', 're2o', 'cachan-adm') | ipv4 | first }}"
- "[{{ query('ldap', 'ip', 're2o', 'cachan-adm') | ipv6 | first }}]"
- "{{ query('ldap', 'ip', 'c3po', 'adm') | ipv4 | first }}"
- "[{{ query('ldap', 'ip', 'c3po', 'adm') | ipv6 | first }}]"
- re2o.cachan-adm.crans.org
- intranet.cachan-adm.crans.org
- re2o.adm.crans.org
- re2o.crans.org
- intranet.crans.org
from_email: "root@crans.org"
ldap:
master_password: "{{ vault.ldap_master_password }}"
uri: "ldap://{{ query('ldap', 'ip', 're2o-ldap', 'cachan-adm') | ipv4 | first }}/"
dn: "cn=admin,dc=crans,dc=org"
database:
password: "{{ vault.re2o_db_password }}"
uri: "{{ query('ldap', 'ip', 'gulp', 'cachan-adm') | ipv4 | first }}"
loc_nginx:
real_ip_from:
- "172.17.0.0/16"
- "fd00:0:0:3000::/56"
loc_re2o_front:
server_names:
- "{{ query('ldap', 'ip', 're2o', 'cachan-adm') | ipv4 | first }}"
- "[{{ query('ldap', 'ip', 're2o', 'cachan-adm') | ipv6 | first }}]"
- "{{ query('ldap', 'ip', 'c3po', 'adm') | ipv4 | first }}"
- "[{{ query('ldap', 'ip', 'c3po', 'adm') | ipv6 | first }}]"
- re2o.cachan-adm.crans.org
- intranet.cachan-adm.crans.org
- re2o.adm.crans.org
- re2o.crans.org
- intranet.crans.org