Commit Graph

526 Commits

Author SHA1 Message Date
ynerant a82edc3e24
Firewall configuration without MASQUERADE
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
2021-02-05 20:39:25 +01:00
ynerant bbac76023c
Update masquerade configuration for the captive portal
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
2021-02-05 20:39:25 +01:00
ynerant a808e3c793
Update captive portal nginx configuration
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
2021-02-05 20:39:25 +01:00
ynerant 7e4a2d20c0
Clone nginx role from Crans
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
2021-02-05 20:39:25 +01:00
ynerant 889cb764c1
Clone certbot role from Crans
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
2021-02-05 20:39:25 +01:00
ynerant 154cbedec2
Deploy firewall config for the captive portal
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
2021-02-05 20:39:25 +01:00
ynerant ba9e60dba8
Update the nginx configuration of the captive portal
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
2021-02-05 20:39:25 +01:00
ynerant 9bd06520fb
Add reverse-proxy for Re2o on the portal VM
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
2021-02-05 20:39:25 +01:00
ynerant 6df41d16b5
Add portail VM
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
2021-02-05 20:39:20 +01:00
jeltz e02670afb0
Les caches unbound renvoie les addresses en 10/8 2021-02-05 20:38:50 +01:00
ynerant a7b073e1cc
Add captive portal firewall configuration
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
2021-02-05 20:38:50 +01:00
ynerant 89ebbd423e
Use the local firewall repository
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
2021-02-05 20:38:50 +01:00
ynerant 9af9a7bab8
Redirect the proxy IP address to intranet.auro.re by default
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
2021-02-05 20:38:49 +01:00
ynerant 5a09b77070
Resolve DNS for the accueil vlan
Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
2021-02-05 20:38:49 +01:00
jeltz 5fc2d0a3f9
Ajout d'accueil dans keepalived 2021-02-05 20:38:49 +01:00
jeltz 7cdef7ee96
Fix: keep the logs for 90 days 2021-02-05 20:38:49 +01:00
otthorn f6c9208a41 Merge pull request 'Limit floats in alerts to 2 decimal places' (#5) from human_readable_altermanager into master
continuous-integration/drone/push Build is failing Details
Reviewed-on: Aurore/ansible#5
2021-01-29 20:48:43 +01:00
otthorn c9352fb9ab Merge pull request 'Use unattended-upgrades for Debian-Security' (#4) from unattended into master
continuous-integration/drone/push Build is failing Details
Reviewed-on: Aurore/ansible#4
2021-01-29 20:42:24 +01:00
otthorn 3da5dde917 Merge pull request 'monitoring_pdu' (#3) from monitoring_pdu into master
continuous-integration/drone/push Build is failing Details
Reviewed-on: Aurore/ansible#3
2021-01-29 20:32:12 +01:00
otthorn a8af3c9c72 Merge branch 'master' into monitoring_pdu
continuous-integration/drone/push Build is failing Details
continuous-integration/drone/pr Build is failing Details
2021-01-29 20:29:28 +01:00
pz2891 eecf807b53 Delte main.yml.save
continuous-integration/drone/push Build is failing Details
continuous-integration/drone/pr Build is failing Details
2021-01-29 20:15:21 +01:00
pz2891 a12bcbc97f Correct yamlint
continuous-integration/drone/push Build is failing Details
2021-01-29 20:12:14 +01:00
otthorn 6ec89b88d8 Limit floats in alerts to 2 decimal places
continuous-integration/drone/push Build is failing Details
continuous-integration/drone/pr Build is failing Details
2021-01-29 19:33:38 +01:00
jeltz d59cb41d5e Use unattended-upgrades for Debian-Security
continuous-integration/drone/push Build is failing Details
continuous-integration/drone/pr Build is failing Details
2021-01-28 03:42:07 +01:00
pz2891 3d05acbd03 Add Loki server
continuous-integration/drone/push Build is failing Details
2021-01-26 19:18:35 +01:00
pz2891 e3ae912f44 Add prometheus-aurore to monitor all service VM and physical servers. Modifying monitoring role to exclude wireless access points when running the role on all hosts
continuous-integration/drone/push Build is failing Details
2021-01-23 22:10:57 +01:00
pz2891 bac377f634 Update alert rules of UPS
continuous-integration/drone/push Build is failing Details
2021-01-23 19:01:27 +01:00
otthorn 57d997536a Merge branch 'master' of ssh://gitea.auro.re:2222/Aurore/ansible
continuous-integration/drone/push Build is failing Details
2021-01-23 16:22:58 +01:00
otthorn be0c2f8e4a If you want to ONLY run the logrotate role 2021-01-23 16:22:36 +01:00
otthorn a3794e9f7d Merge pull request 'Logrotate' (#2) from logrotate into master
continuous-integration/drone/push Build is failing Details
Reviewed-on: Aurore/ansible#2
2021-01-23 16:16:57 +01:00
otthorn fff6ec5807 fix typo: restart -> reload
continuous-integration/drone/push Build is failing Details
continuous-integration/drone/pr Build is failing Details
2021-01-23 16:04:09 +01:00
otthorn 795ee3846f fix indent 2021-01-23 16:02:10 +01:00
otthorn e6af0f2bd7 fix typo: groupe -> group
continuous-integration/drone/pr Build is failing Details
continuous-integration/drone/push Build is failing Details
2021-01-23 15:59:03 +01:00
otthorn e1a961273d fix typo: dst -> dest
continuous-integration/drone/pr Build is failing Details
continuous-integration/drone/push Build is failing Details
2021-01-23 15:42:52 +01:00
otthorn d50288ccff fix host syntax
continuous-integration/drone/pr Build is failing Details
continuous-integration/drone/push Build is failing Details
2021-01-23 15:12:28 +01:00
otthorn 73142dbe03 Fix yaml syntax
continuous-integration/drone/push Build is failing Details
continuous-integration/drone/pr Build is failing Details
2021-01-23 14:41:25 +01:00
otthorn 43274ef2ec Add the ansible_managed var at the begining of the config file 2021-01-23 14:40:29 +01:00
otthorn 66c2ff6305 full path to logrotate for command 2021-01-23 14:37:18 +01:00
otthorn 0d9fd16030 Add logrotate to the base playbook 2021-01-23 14:35:03 +01:00
otthorn 0122a293eb Add the unify group 2021-01-23 14:34:13 +01:00
otthorn 05326c15d3 Enforce logrotate rules 2021-01-23 14:27:09 +01:00
otthorn ddd69e04c0 create logrotate role 2021-01-23 14:25:35 +01:00
pz2891 705fe953ae Monitoring of Pacaterie's UPS
continuous-integration/drone/push Build is failing Details
2021-01-22 18:20:13 +01:00
pz2891 c7a3495ae5 Alert rules for UPS
continuous-integration/drone/push Build is failing Details
2021-01-22 12:16:36 +01:00
pz2891 40d3c22276 Setup config snmp for Prometheus, to monitore Aurore's PDU
continuous-integration/drone/push Build is failing Details
2021-01-21 21:26:40 +01:00
otthorn 51681922aa Even more CNAMEs !
continuous-integration/drone/push Build is failing Details
2021-01-20 17:02:05 +01:00
otthorn 724d21485c Merge pull request 'Certbot: handlers' (#1) from handlers into master
continuous-integration/drone/push Build is failing Details
Reviewed-on: Aurore/ansible#1
2021-01-20 17:00:32 +01:00
otthorn f0e3bd78c9 use command instead of shell when you don't need sh features (pipes, env, etc...)
continuous-integration/drone/push Build is failing Details
continuous-integration/drone/pr Build is failing Details
2021-01-19 23:27:17 +01:00
otthorn 4a57dad8a6 use handlers
continuous-integration/drone/push Build is failing Details
2021-01-19 23:19:25 +01:00
otthorn 9e135e1dfd Fix ansible lint v3 -- on the right branch this time!
continuous-integration/drone/push Build is failing Details
2021-01-17 23:49:29 +01:00