summaryrefslogtreecommitdiffstats
path: root/roles/openvpn
Commit message (Collapse)AuthorAgeFilesLines
...
* fixing logic for openvpn package install w/dnfTim Flink2015-11-262-2/+2
|
* Add hosts file and vpn ccd for mdapi01Kevin Fenzi2015-11-171-0/+2
|
* Install the openvpn client package with dnf on F22+Pierre-Yves Chibon2015-11-171-0/+10
|
* Fix indentationPierre-Yves Chibon2015-11-171-7/+7
|
* Install the package with dnf on F22+Pierre-Yves Chibon2015-11-171-0/+9
|
* Tag the fix-routes.sh playPatrick Uiterwijk2015-11-041-0/+2
|
* Move fix-routes.sh to openvpn base and run it on restartPatrick Uiterwijk2015-11-043-3/+4
| | | | Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com>
* Add mirrorlist-ibiblio02 vpn ccdPatrick Uiterwijk2015-10-251-0/+2
|
* Running the script doesnt work yet. But we still want the script.Patrick Uiterwijk2015-10-231-2/+2
| | | | Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com>
* Make fix-routes not terminate with status 2 if it fixed itPatrick Uiterwijk2015-10-231-1/+1
| | | | | | | | This will make openvpn think something went wrong and terminate the connection. I did this to make it easily visible when running with ansible, but in this case it messes things up. Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com>
* Add script to OpenVPN for VPN route fixingPatrick Uiterwijk2015-10-233-0/+18
| | | | | | | This will make sure that always after a start/restart the VPN routes are created Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com>
* Disable persist-tun for openvpnPatrick Uiterwijk2015-10-212-2/+0
| | | | | | | | | | | | | | | | This should solve the issue where RHEL7 machines that get a network hiccup need an OpenVPN restart to restore their routes. The code is broken in the current upstream OpenVPN release, such that it does tear down some of the routes during a ping-restart (when the connection is dropped due to network hiccups), but the reconnection code does not restore the routes. I am working on an upstream patch to fix this, but in the meantime disabling persist-tun will make sure that OpenVPN does the entire initialization upon reconnection, which makes sure that all routes are created. Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com>
* Add first cut at a infinote server (config to come)Kevin Fenzi2015-10-091-0/+1
|
* Add CCD files for statscache-web.Ralph Bean2015-10-092-0/+4
|
* Add proxy12 on ibiblio05Patrick Uiterwijk2015-10-091-0/+2
|
* Add ccd file tooKevin Fenzi2015-10-061-0/+2
|
* add a batcave ccdStephen Smoogen2015-09-281-0/+2
|
* Move all puppet_private stuff to ansible private so we can stop using puppet ↵Kevin Fenzi2015-09-253-7/+7
| | | | private.
* ccd files for new autocloud prod web nodes.Ralph Bean2015-09-242-0/+3
|
* add ccd file for mm-crawler03Kevin Fenzi2015-09-031-0/+1
|
* Rename ccd file correctly this time.Kevin Fenzi2015-08-311-0/+0
|
* Initial cut of new darkserver02 instance.Kevin Fenzi2015-08-311-2/+1
|
* more removal of ibiblio01Stephen Smoogen2015-08-191-1/+1
|
* Add mm-frontend02Patrick Uiterwijk2015-07-281-0/+1
| | | | Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com>
* Add openvpn file for ibiblio05Kevin Fenzi2015-07-271-0/+2
|
* Add a pile of bodhi2 production instances.Kevin Fenzi2015-07-212-0/+4
|
* Add ipsilon0* ccd files...Patrick Uiterwijk2015-07-152-0/+4
| | | | Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com>
* Add vpn on koschei01Kevin Fenzi2015-06-241-0/+2
|
* First rough cut at a people01. Many bugfixes ahead I am sure.Kevin Fenzi2015-06-161-0/+2
|
* Change all instances of ansible_distribution_major_version to filter to int ↵Kevin Fenzi2015-05-271-2/+2
| | | | for comparisons.
* Helps if you put these in the right directory. ;( OopsKevin Fenzi2015-05-112-0/+0
|
* Add ccd openvpn files for pagureKevin Fenzi2015-05-112-0/+2
|
* Finish moving backup03->backup01Kevin Fenzi2015-05-082-3/+1
|
* Add vpn ccd file for torrent01Kevin Fenzi2015-05-011-0/+2
|
* add backup01 filesStephen Smoogen2015-05-011-0/+2
|
* mirrormanager 2 production instances.Kevin Fenzi2015-04-241-0/+1
|
* This is now fixed in a systemd update in rhel7.1 so drop the workaroundKevin Fenzi2015-04-221-16/+1
|
* Work around rhel 7.1 systemd template bug: ↵Kevin Fenzi2015-03-261-2/+17
| | | | https://bugzilla.redhat.com/show_bug.cgi?id=1206007
* and we have more nagiosStephen Smoogen2015-03-231-0/+2
|
* Add ccd file for proxy10Kevin Fenzi2015-02-181-0/+2
|
* Make dedicatedsolutions01 use its right vpn addressRicky Elrod2015-01-071-0/+1
| | | | Signed-off-by: Ricky Elrod <codeblock@fedoraproject.org>
* ccd for mirrorlist-dedicatedsolutionsRicky Elrod2015-01-071-0/+2
| | | | Signed-off-by: Ricky Elrod <codeblock@fedoraproject.org>
* Does this need quotes?Kevin Fenzi2014-12-151-2/+2
|
* Try this one.Kevin Fenzi2014-12-151-2/+2
|
* Split this out to see if we can debug it some.Kevin Fenzi2014-12-151-2/+9
|
* We aren't in phx2 anymore toto.Kevin Fenzi2014-11-141-0/+0
|
* Add mirrorlist-host1plus to the mixKevin Fenzi2014-11-141-0/+2
|
* add ccd file *here* insteadRicky Elrod2014-11-111-0/+2
| | | | Signed-off-by: Ricky Elrod <codeblock@fedoraproject.org>
* Update state from installed/removed to present/absent for yum module as per ↵Praveen Kumar2014-11-053-3/+3
| | | | latest documents -> http://docs.ansible.com/yum_module.html
* Sync openvpn ccd files from puppet -> ansibleKevin Fenzi2014-10-092-0/+2
|