diff options
author | Matthieu Saulnier <fantom@fedoraproject.org> | 2023-04-22 06:28:52 +0200 |
---|---|---|
committer | Matthieu Saulnier <fantom@fedoraproject.org> | 2023-04-22 06:28:52 +0200 |
commit | 2c25771d47fcef49a67ec89918b90ff009ae8192 (patch) | |
tree | a80738be3067fac7988e9b903e123a876976f499 /roles/phpworker/tasks/crt.yml | |
parent | 7d2f5f0a6f2c54344e313572c6ffda65e7e5b4e4 (diff) | |
download | playbooks-ansible-2c25771d47fcef49a67ec89918b90ff009ae8192.tar.gz playbooks-ansible-2c25771d47fcef49a67ec89918b90ff009ae8192.tar.xz playbooks-ansible-2c25771d47fcef49a67ec89918b90ff009ae8192.zip |
Remove server certificate for PHP
Diffstat (limited to 'roles/phpworker/tasks/crt.yml')
-rw-r--r-- | roles/phpworker/tasks/crt.yml | 40 |
1 files changed, 0 insertions, 40 deletions
diff --git a/roles/phpworker/tasks/crt.yml b/roles/phpworker/tasks/crt.yml index 15916e4..bd9c542 100644 --- a/roles/phpworker/tasks/crt.yml +++ b/roles/phpworker/tasks/crt.yml @@ -1,43 +1,3 @@ -- name: Installation des fichiers certificat pour php - copy: - src: "certs/{{ maindomain }}.{{ ansible_hostname }}.php.{{ crtversion }}.crt" - dest: "/etc/pki/tls/certs/{{ maindomain }}.php.crt" - owner: root - group: root - mode: 0644 - tags: keys - -- name: Installation du fichier dhparam pour php - copy: - src: "certs/dhparam-4096.{{ ansible_hostname }}.{{ crtversion }}.pem" - dest: "/etc/pki/tls/certs/dhparam-4096.{{ ansible_hostname }}.php.pem" - owner: root - group: root - mode: 0644 - tags: keys - -- name: Installation des fichiers clé pour php - copy: - src: "certs/{{ maindomain }}.{{ ansible_hostname }}.php.{{ crtversion }}.key" - dest: "/etc/pki/tls/private/{{ maindomain }}.php.key" - owner: root - group: root - mode: 0400 - tags: keys - -- name: Format PEM - command: openssl x509 -in {{ maindomain }}.php.crt -out {{ maindomain }}.php.crt.tmp -outform PEM - args: - chdir: /etc/pki/tls/certs/ - tags: keys - -- name: Mise à jour du fichier fullchain.pem - shell: cat '{{ maindomain }}'.php.crt.tmp mon-ca.crt dhparam-4096.{{ ansible_hostname }}.php.pem > '{{ maindomain }}'.php.fullchain.crt - args: - chdir: /etc/pki/tls/certs/ - executable: /usr/bin/zsh - tags: keys - # x509 client - name: Installation du certificat client copy: |