Ansible playbook for base and initial configuration of web server hosting my personal websites.
Go to file
Alan Orth 48978407b8
roles/nginx: Move HTTP Strict Transport Security toggle to vhosts
This is really a per-site setting, so it doesn't make sense to have
a role default. Anyways, HSTS is kinda tricky and potentially dang-
erous, so unless a vhost explicitly sets it to "yes" we shouldn't
enable it.

Note: also switch from using a boolean to using a string; it is st-
ill declarative, but at least now I don't have to guess whether it
is being treated as a bool or not.

Signed-off-by: Alan Orth <alan.orth@gmail.com>
2015-09-27 00:24:58 +03:00
group_vars group_vars/all: Update TLS cipher suite 2015-09-02 15:11:57 +03:00
host_vars host_vars/web06: Update to WordPress 4.3.1 2015-09-16 10:32:14 +03:00
misc-plays Add miscellaneous playbook to change the provisioning user's password 2015-06-01 14:27:58 +03:00
roles roles/nginx: Move HTTP Strict Transport Security toggle to vhosts 2015-09-27 00:24:58 +03:00
vars Allow Debian hosts to run Ubuntu stuff 2015-08-23 00:02:39 +03:00
.gitignore .gitignore: Ignore Vagrant directory 2015-05-24 23:00:48 +03:00
LICENSE Add copy of GPLv3 license 2015-05-08 15:59:15 +03:00
README.md README.md: Minor syntax cleanups 2015-09-26 23:37:09 +03:00
site.yml Add site yml file 2014-08-25 13:21:00 +03:00
web.yml Allow Debian hosts to run Ubuntu stuff 2015-08-23 00:02:39 +03:00

Ansible Playbook

Ansible playbook for base and initial configuration of web server hosting my personal websites. After successful execution of this playbook, however, there is still some manual work to import databases, copy site content, etc.

Assumptions

Before you can run this, a few things are assumed:

  • You have a clean, minimal Debian 8 host up and running
  • You have a user account with password-less SSH access to the machine
  • You have sudo privileges on the remote host
  • You have created a hosts file with something like:
[web]
web01

Use

Once you've satisfied the the above assumptions, you can execute:

$ ansible-playbook web.yml -i hosts -K

License

Copyright (C) 2014 - 2015 Alan Orth

The contents of this repository are free software: you can redistribute it and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation, either version 3 of the License, or (at your option) any later version.

This program is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for more details.

You should have received a copy of the GNU General Public License along with this program. If not, see http://www.gnu.org/licenses/.