3d654427ac
✨ Add host cleanuri-api to HTTPS forwarding
2022-09-15 18:09:16 +02:00
24929a36bc
✨ Add a role to set up cleanuri (uritools)
2022-09-15 18:09:16 +02:00
7b0506c235
Merge pull request ' 🐛 Fix proxy site template' ( !82 ) from fix-apache-template into master
...
Reviewed-on: https://gitea.n39.eu/Netz39_Admin/netz39-infra-ansible/pulls/82
Reviewed-by: dkdent <dkdent@netz39.de>
2022-09-14 21:29:40 +00:00
b9488e19db
🐛 Fix proxy site template
...
These are errors from a bodged PR (my bad) that has been merged too early.
2022-09-14 23:25:41 +02:00
6452e4a277
Merge pull request ' ⬆️ Bump power-meter-pulse-gateway to 0.3.0' ( !81 ) from power-meter-pulse-gateway-0.3.0 into master
...
Reviewed-on: https://gitea.n39.eu/Netz39_Admin/netz39-infra-ansible/pulls/81
Reviewed-by: dkdent <dkdent@netz39.de>
Reviewed-by: Alexander Dahl <alex@netz39.de>
2022-09-09 16:15:47 +00:00
8b885729c9
⬆️ Bump power-meter-pulse-gateway to 0.3.0
...
https://github.com/netz39/power-meter-pulse-gateway/releases/tag/v0.3.0
2022-09-09 15:00:23 +02:00
b76ffa2e3e
Merge pull request ' 🎨 Improve configuration for setup-http-site-proxy and merge http-setup-dehydrated' ( !80 ) from condense-roles into master
...
Reviewed-on: https://gitea.n39.eu/Netz39_Admin/netz39-infra-ansible/pulls/80
Reviewed-by: dkdent <dkdent@netz39.de>
2022-09-08 17:18:34 +00:00
182feeca58
🔥 Remove role setup-http-dehydrated
...
This feature is now provided by setup-http-site-proxy
2022-09-08 15:45:39 +02:00
e3020b6d71
✨ Enable setup-http-site-proxy with missing proxy target
...
If no proxy port is defined, only the dehydrated HTTP endpoint is created
and the HTTPS endpoint returns 404.
2022-09-08 15:43:54 +02:00
c4af7754b2
✨ Use variables to configure dehydrated locations
...
These variables match https://github.com/24367dfa/ansible-role-dehydrated
2022-09-08 15:41:36 +02:00
ac46e1dd7c
Merge pull request ' 🐛 Fix that known_hosts are discarded on container update' ( !77 ) from nodered-known_hosts into master
...
Reviewed-on: https://gitea.n39.eu/Netz39_Admin/netz39-infra-ansible/pulls/77
Reviewed-by: dkdent <dkdent@netz39.de>
2022-09-06 23:36:23 +00:00
a5f9d11f8a
Merge pull request ' 🚚 Move entities-validation service to krypton' ( !78 ) from entities-validation into master
...
Reviewed-on: https://gitea.n39.eu/Netz39_Admin/netz39-infra-ansible/pulls/78
Reviewed-by: dkdent <dkdent@netz39.de>
2022-09-06 23:35:47 +00:00
a805886cda
Merge pull request ' 🐛 Fix template in setup-http-dehydrated when IPv6 is missing' ( !79 ) from dehydrated-site-v6 into master
...
Reviewed-on: https://gitea.n39.eu/Netz39_Admin/netz39-infra-ansible/pulls/79
Reviewed-by: dkdent <dkdent@netz39.de>
2022-09-06 23:35:33 +00:00
4da338f0ad
🐛 Fix template in setup-http-dehydrated when IPv6 is missing
2022-09-06 21:02:48 +02:00
feaf052f65
🚚 Move entities validation service from pottwal to krypton
...
This is a service handling member data, so it moves to krypton.
2022-09-06 20:31:27 +02:00
2802784e7a
✨ Add HTTPS ingress to krypton
2022-09-06 20:14:04 +02:00
e22f0a4fb0
🐛 Fix that known_hosts are discarded on container update
2022-09-06 20:02:46 +02:00
8617f84f9d
Merge pull request ' ✨ Allow to mark HTTPS sites as "local"' ( !76 ) from https-ingress-filter into master
...
Reviewed-on: https://gitea.n39.eu/Netz39_Admin/netz39-infra-ansible/pulls/76
Reviewed-by: dkdent <dkdent@netz39.de>
2022-09-06 17:40:28 +00:00
7ad2a5685a
🔧 Define local HTTPS sites
2022-09-06 19:39:51 +02:00
965538141d
✨ Allow to define a host for local access
...
If a host is defined as local, HTTPS traffic will not be forwared.
The LetsEncrypt proxy is still available.
2022-09-06 19:39:51 +02:00
6653129652
🔨 Refactor host statements to objects
2022-09-06 19:39:51 +02:00
e2138d5c3b
Merge pull request ' 🔧 Configure HTTPS ingress for pottwal' ( !73 ) from pottwal-ingress into master
...
Reviewed-on: https://gitea.n39.eu/Netz39_Admin/netz39-infra-ansible/pulls/73
Reviewed-by: dkdent <dkdent@netz39.de>
2022-09-06 17:11:38 +00:00
6ccca9b552
Merge pull request ' 🔧 Configure HTTPS ingress for radon' ( !67 ) from radon-ingress into master
...
Reviewed-on: https://gitea.n39.eu/Netz39_Admin/netz39-infra-ansible/pulls/67
Reviewed-by: dkdent <dkdent@netz39.de>
2022-09-06 17:11:14 +00:00
020e5a4dd8
Add call to apache-letsencrypt role
2022-09-06 17:57:10 +02:00
8549d50d03
Add call to penguineer.dehydrated_cron role
2022-09-06 17:57:10 +02:00
664dc648c5
Add ingress for pwr-meter-pulse-gw-19i.svc.n39.eu
2022-09-06 17:57:10 +02:00
0efede818a
Add ingress for rabbitmq.n39.eu
2022-09-06 17:57:10 +02:00
5be0c410b1
Add ingress for nodered.n39.eu
2022-09-06 17:57:10 +02:00
a651aa047f
Add dehydrated role
2022-09-06 17:57:10 +02:00
60e58e6b6a
Add apache role
2022-09-06 17:57:10 +02:00
cc43557511
🔧 Block external access to docker containers
...
This needs to go through ingress now!
2022-09-06 17:55:58 +02:00
76c5cdb3e1
✨ Add roles for ingress and cert management
2022-09-06 17:55:58 +02:00
0d3907d332
Merge pull request ' ✨ Add a role to allow letsencrypt access in Apache2' ( !72 ) from apache-letsencrypt into master
...
Reviewed-on: https://gitea.n39.eu/Netz39_Admin/netz39-infra-ansible/pulls/72
Reviewed-by: dkdent <dkdent@netz39.de>
2022-09-06 15:54:30 +00:00
b5b6594136
Merge pull request ' 🚑 Fix that power meter messages are not persistent' ( !75 ) from power-meter-pulse-gateway-0.2.1 into master
...
Reviewed-on: https://gitea.n39.eu/Netz39_Admin/netz39-infra-ansible/pulls/75
Reviewed-by: dkdent <dkdent@netz39.de>
2022-09-06 15:54:16 +00:00
bd9910a9fb
Merge pull request ' 🔧 Setup Apache proxy pass for sites with invalid URIs' ( !74 ) from apache-slash-decoding into master
...
Reviewed-on: https://gitea.n39.eu/Netz39_Admin/netz39-infra-ansible/pulls/74
Reviewed-by: dkdent <dkdent@netz39.de>
2022-09-06 15:54:04 +00:00
f3d115874a
⬆️ Bump power-meter-pulse-gateway to 0.2.1
2022-09-06 16:37:43 +02:00
f9197221c8
🔧 Setup Apache proxy pass for sites with invalid URIs
...
This is a setup according to https://www.rabbitmq.com/management.html#proxy
which solves a problem with RabbitMQ encoding vhost names in a non-standard
way.
As this setting does not hurt other sites, we can introduce it into the
general template.
2022-09-06 15:35:50 +02:00
1fe6526898
✨ Add a role to allow letsencrypt access in Apache2
2022-09-06 14:31:52 +02:00
17d7aa704a
Merge pull request ' ⬆️ Bump clean_uri (uritools) to 0.4.1' ( !71 ) from uritools-0.4.1 into master
...
Reviewed-on: https://gitea.n39.eu/Netz39_Admin/netz39-infra-ansible/pulls/71
Reviewed-by: dkdent <dkdent@netz39.de>
2022-09-05 21:13:24 +00:00
f16cfe0a55
⬆️ Bump clean_uri (uritools) to 0.4.1
...
Security update of a dependency by GitHub Dependabot
2022-09-02 13:24:33 +02:00
3240d34c0d
Merge pull request 'Setup HTTPS Ingress on holmium' ( !63 ) from https-ingress into master
...
Reviewed-on: https://gitea.n39.eu/Netz39_Admin/netz39-infra-ansible/pulls/63
Reviewed-by: dkdent <dkdent@netz39.de>
2022-08-30 12:24:33 +00:00
b87f20f00d
Merge pull request 'Add FFMD DNS container to provide secondary DNS server' ( !69 ) from ffmd-dns2 into master
...
Reviewed-on: https://gitea.n39.eu/Netz39_Admin/netz39-infra-ansible/pulls/69
Reviewed-by: dkdent <dkdent@netz39.de>
2022-08-30 12:23:49 +00:00
aae7372d60
Merge pull request ' ⬆️ Bump dokuwiki to 20220731' ( !70 ) from dokuwiki-20220731 into master
...
Reviewed-on: https://gitea.n39.eu/Netz39_Admin/netz39-infra-ansible/pulls/70
Reviewed-by: dkdent <dkdent@netz39.de>
2022-08-30 12:20:48 +00:00
2ca1fcf3a0
⬆️ Bump dokuwiki to 20220731
...
This is really the first stable release in two years.
2022-08-30 14:20:14 +02:00
addad5d6d3
Add FFMD DNS container to provide secondary DNS server
2022-08-28 13:17:04 +02:00
c455245c6f
Add section in README to explain HTTPS ingress setup
2022-08-27 23:19:17 +02:00
734fbd1d75
Call nginx-https-ingress role for holmium
2022-08-27 20:32:56 +02:00
68619b80b5
Add role to setup nginx with HTTPS forward capabilities
2022-08-27 20:32:56 +02:00
75a84d1d43
Merge pull request 'Remove OpenHab' ( !68 ) from remove-openhab into master
...
Reviewed-on: https://gitea.n39.eu/Netz39_Admin/netz39-infra-ansible/pulls/68
Reviewed-by: dkdent <dkdent@netz39.de>
2022-08-27 18:31:46 +00:00
0da60fd545
Remove openhab
2022-08-27 18:27:35 +02:00