Skip to content
Snippets Groups Projects
Commit d4fc7b81 authored by Nils Olof Paulsson's avatar Nils Olof Paulsson
Browse files

Merge branch 'test' into 'production'

Test

See merge request !12
parents b1d46681 b57d2c8f
No related branches found
No related tags found
1 merge request!12Test
Pipeline #130867 passed
...@@ -15,10 +15,12 @@ class egg::nginx () { ...@@ -15,10 +15,12 @@ class egg::nginx () {
notify => Service['nginx'], notify => Service['nginx'],
} }
file { '/etc/nginx/conf.d/egg.conf': file { '/etc/nginx/conf.d/egg.conf':
ensure => 'present', ensure => 'present',
source => "puppet:///modules/${module_name}/egg.conf", content => epp("${module_name}/egg.conf.epp", {
notify => Service['nginx'], cert_name => $hostname,
require => Package['nginx'], }),
notify => Service['nginx'],
require => Package['nginx'],
} }
# Housekeeping # Housekeeping
...@@ -31,9 +33,19 @@ class egg::nginx () { ...@@ -31,9 +33,19 @@ class egg::nginx () {
zone => 'liu', zone => 'liu',
service => 'http', service => 'http',
} }
firewalld_service { 'Allow https from liu Zone':
ensure => present,
zone => 'liu',
service => 'https',
}
firewalld_service { 'Allow http in the public Zone': firewalld_service { 'Allow http in the public Zone':
ensure => present, ensure => present,
zone => 'public', zone => 'public',
service => 'http', service => 'http',
} }
firewalld_service { 'Allow https from public Zone':
ensure => present,
zone => 'public',
service => 'https',
}
} }
<%- | String[1] $cert_name,
| -%>
server { server {
server_name teman.it.liu.se; server_name teman.it.liu.se;
root /var/www/teman; root /var/www/teman;
...@@ -34,8 +36,8 @@ server { ...@@ -34,8 +36,8 @@ server {
listen 443 ssl ; listen 443 ssl ;
server_name egg.it.liu.se; server_name egg.it.liu.se;
ssl_certificate /etc/pki/tls/certs/letsencrypt-cert_chain-egg.devel.it.liu.se.pem ; ssl_certificate /etc/pki/tls/certs/letsencrypt-cert_chain-<%= $cert_name %>.pem ;
ssl_certificate_key /etc/pki/tls/private/letsencrypt-egg.devel.it.liu.se.key ; ssl_certificate_key /etc/pki/tls/private/letsencrypt-<%= $cert_name %>.key ;
client_max_body_size 0; client_max_body_size 0;
......
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment