410a915a8a
This paves the way for installing other roles into `roles/galaxy` using `ansible-galaxy`, similar to how it's done in: - https://github.com/spantaleev/gitea-docker-ansible-deploy - https://github.com/spantaleev/nextcloud-docker-ansible-deploy In the near future, we'll be removing a lot of the shared role code from here and using upstream roles for it. Some of the core `matrix-*` roles have already been extracted out into other reusable roles: - https://github.com/devture/com.devture.ansible.role.postgres - https://github.com/devture/com.devture.ansible.role.systemd_docker_base - https://github.com/devture/com.devture.ansible.role.timesync - https://github.com/devture/com.devture.ansible.role.vars_preserver - https://github.com/devture/com.devture.ansible.role.playbook_runtime_messages - https://github.com/devture/com.devture.ansible.role.playbook_help We just need to migrate to those.
31 lines
1.2 KiB
YAML
31 lines
1.2 KiB
YAML
---
|
|
|
|
- name: Determine well-known files to check (Matrix)
|
|
ansible.builtin.set_fact:
|
|
well_known_file_checks:
|
|
- path: /.well-known/matrix/client
|
|
purpose: Client Discovery
|
|
cors: true
|
|
follow_redirects: "{{ matrix_nginx_proxy_self_check_well_known_matrix_client_follow_redirects }}"
|
|
validate_certs: "{{ matrix_nginx_proxy_self_check_validate_certificates }}"
|
|
|
|
- when: matrix_well_known_matrix_server_enabled | bool
|
|
block:
|
|
- ansible.builtin.set_fact:
|
|
well_known_file_check_matrix_server:
|
|
path: /.well-known/matrix/server
|
|
purpose: Server Discovery
|
|
cors: false
|
|
follow_redirects: safe
|
|
validate_certs: "{{ matrix_nginx_proxy_self_check_validate_certificates }}"
|
|
|
|
- name: Determine domains that we require certificates for (ma1sd)
|
|
ansible.builtin.set_fact:
|
|
well_known_file_checks: "{{ well_known_file_checks + [well_known_file_check_matrix_server] }}"
|
|
|
|
- name: Perform well-known checks
|
|
ansible.builtin.include_tasks: "{{ role_path }}/tasks/self_check_well_known_file.yml"
|
|
with_items: "{{ well_known_file_checks }}"
|
|
loop_control:
|
|
loop_var: well_known_file_check
|