Files
fedora-infra_ansible/playbooks/groups/bodhi2.yml
Patrick Uiterwijk 93589b84a4 Frontend runs as the bodhi user
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com>
2016-12-01 10:37:36 +00:00

50 lines
1.2 KiB
YAML

- include: "/srv/web/infra/ansible/playbooks/include/virt-create.yml myhosts=bodhi2:bodhi2-stg"
- name: make the box be real
hosts: bodhi2:bodhi2-stg
user: root
gather_facts: True
vars_files:
- /srv/web/infra/ansible/vars/global.yml
- "/srv/private/ansible/vars.yml"
- /srv/web/infra/ansible/vars/{{ ansible_distribution }}.yml
roles:
- base
- rkhunter
- nagios/client
- hosts
- fas_client
- sudo
- collectd/base
- rsyncd
- { role: openvpn/client,
when: env != "staging" }
- apache
- mod_wsgi
- role: keytab/service
owner_user: bodhi
owner_group: bodhi
service: bodhi
host: "bodhi.fedoraproject.org"
when: env == "production"
- role: keytab/service
owner_user: bodhi
owner_group: bodhi
service: bodhi
host: "bodhi.stg.fedoraproject.org"
when: env == "staging"
- { role: bodhi2/base, when: "inventory_hostname.startswith('bodhi0')" }
- { role: fedmsg/base, when: "inventory_hostname.startswith('bodhi0')" }
tasks:
- include: "{{ tasks }}/yumrepos.yml"
- include: "{{ tasks }}/2fa_client.yml"
- include: "{{ tasks }}/motd.yml"
handlers:
- include: "{{ handlers }}/restart_services.yml"