|
|
|
@ -73,7 +73,7 @@
|
|
|
|
|
ansible.builtin.command:
|
|
|
|
|
cmd: "mkcert -cert-file {{ demoapp_cert_temp_dir.path }}/demoapp.pem -key-file {{ demoapp_cert_temp_dir.path }}/demoapp.key.pem {{ oidc_urls.demoapp.host }}"
|
|
|
|
|
environment:
|
|
|
|
|
CAROOT: "{{ mkcert_caroot | default(omit) }}"
|
|
|
|
|
CAROOT: "{{ mkcert_caroot | default('') }}"
|
|
|
|
|
|
|
|
|
|
- name: Move demo application certificate and key to target
|
|
|
|
|
ansible.builtin.copy:
|
|
|
|
@ -163,5 +163,11 @@
|
|
|
|
|
dest: /etc/systemd/system/cacert-demoapp.service
|
|
|
|
|
owner: root
|
|
|
|
|
group: root
|
|
|
|
|
mode: "0640"
|
|
|
|
|
mode: "0644"
|
|
|
|
|
notify: demoapp_systemd_reload
|
|
|
|
|
|
|
|
|
|
- name: Ensure service is started
|
|
|
|
|
ansible.builtin.systemd:
|
|
|
|
|
state: started
|
|
|
|
|
name: cacert-demoapp
|
|
|
|
|
enabled: true
|
|
|
|
|