|
|
|
@ -18,13 +18,13 @@ |
|
|
|
|
group: root |
|
|
|
|
mode: "{{ item.mode }}" |
|
|
|
|
loop: |
|
|
|
|
- { src: blacklist.dat, dest: blacklist.dat, mode: "644" } |
|
|
|
|
- { src: ldap.conf, dest: ldap.conf, mode: "600" } |
|
|
|
|
- { src: modules.conf, dest: modules.conf, mode: "644" } |
|
|
|
|
- { src: proftpd.conf, dest: proftpd.conf, mode: "644" } |
|
|
|
|
- { src: sql.conf, dest: sql.conf, mode: "600" } |
|
|
|
|
- { src: tls.conf, dest: tls.conf, mode: "644" } |
|
|
|
|
- { src: virtuals.conf, dest: virtuals.conf, mode: "644" } |
|
|
|
|
- { src: blacklist.dat, dest: blacklist.dat, mode: "644" } |
|
|
|
|
- { src: ldap.conf, dest: ldap.conf, mode: "600" } |
|
|
|
|
- { src: modules.conf, dest: modules.conf, mode: "644" } |
|
|
|
|
- { src: proftpd.conf, dest: proftpd.conf, mode: "644" } |
|
|
|
|
- { src: sql.conf, dest: sql.conf, mode: "600" } |
|
|
|
|
- { src: tls.conf, dest: tls.conf, mode: "644" } |
|
|
|
|
- { src: virtuals.conf, dest: virtuals.conf, mode: "644" } |
|
|
|
|
|
|
|
|
|
- name: create dhparams.pem |
|
|
|
|
# will not regenerated every playbook run |
|
|
|
@ -33,7 +33,7 @@ |
|
|
|
|
openssl dhparam |
|
|
|
|
-outform PEM -2|-5 |
|
|
|
|
1024|1536|2048|3072|4096|6144|7680|8192 |
|
|
|
|
>> /etc/proftpd/dhparams.pem |
|
|
|
|
> /etc/proftpd/dhparams.pem |
|
|
|
|
creates: /etc/proftpd/dhparams.pem |
|
|
|
|
|
|
|
|
|
- name: restart and enable proftpd |
|
|
|
|