10 Commits

Author SHA1 Message Date
c4294b55a6 firewall service management has nothing to do here 2025-09-22 16:32:27 +02:00
c92c54ff3b switch to fqmn 2023-01-20 12:32:15 +01:00
3cdcabd1ac wrong indent 2022-09-22 16:24:28 +02:00
071637a3f8 ajout https 2022-09-22 16:21:42 +02:00
37a75cef65 correct useless indent 2022-04-25 15:05:46 +02:00
b7a25b85b0 cleanup 2021-09-14 09:25:41 +02:00
c3e30f8e9f ok for centos8 2021-05-10 16:43:49 +02:00
e3e35d6dcd rajout install firewalld et dep 2021-04-19 17:10:04 +02:00
00a50bf543 add firewalld dep + block 2021-04-19 16:46:51 +02:00
20fc81cf83 branch solution 2021-03-16 21:07:11 +01:00
3 changed files with 23 additions and 101 deletions

View File

@@ -1,27 +0,0 @@
## Installer apache
**Prérequis**: index.txt et vhost.conf déployé sur cours.opendoor.fr
**Tâche**: déployer un serveur apache à l'aide d'ansible
**Condition**: déploiement d'un serveur apache
**Norme**: playbook et ansible-playbook
**Préparation:**
- Récupèrez sur le pilote les fichiers https://cours.opendoor.fr/Fichiers/SIB/index.html et vhost.conf
- Renommez le fichier index.txt sera renommé en index.html
**Pratique**: Écrire le playbook permettant sur la machine **centos** uniquement:
2. d'installer le serveur apache
3. d'ouvrir le parefeu
4. de créer le répertoire correspondant au documentRoot
5. de déployer le fichier /srv/vhost.conf dans /etc/httpd/conf.d/
6. de déployer le fichier /srv/index.html dans le répertoire correspondant au documentRoot
7. d'activer le service
8. de lancer le service
9. de supprimer les fichiers à l'étape #1
**Validation**: on doit pouvoir se connecter en http sur la machine cible

View File

@@ -4,12 +4,12 @@
tasks:
- name: install apache
yum:
ansible.builtin.package:
name: httpd
state: present
- name: conf httpd
template:
ansible.builtin.template:
src: vhost.conf
dest: /etc/httpd/conf.d/vhost.conf
mode: 0640
@@ -17,26 +17,37 @@
group: apache
- name: activate apache
service:
ansible.builtin.service:
name: httpd
enabled: yes
state: started
- name: open firewall port
firewalld:
service: http
permanent: yes
immediate: yes
state: enabled
ignore_errors: true
- name: setup firewall
block:
- name: install firewalld packages
ansible.builtin.package:
name:
- python3-firewall
- firewalld
state: present
- name: open firewall port
ansible.posix.firewalld:
service: "{{ item }}"
permanent: yes
immediate: yes
state: enabled
loop:
- http
- https
- name: create documentroot
file:
ansible.builtin.file:
name: /var/www/html/example.org/
state: directory
- name: copy index file
template:
ansible.builtin.template:
src: index.txt
dest: /var/www/html/example.org/index.html
mode: 0644

View File

@@ -1,62 +0,0 @@
---
- name: install apache via ansible playbook
CHANGEME: centos
pre_tasks:
- name: get ressources
CHANGEME:
url: "{{ item }}"
dest: /tmp
loop:
- https://cours.opendoor.fr/Fichiers/SIB/index.txt
- https://cours.opendoor.fr/Fichiers/SIB/vhost.conf
CHANGEME: localhost
become: false
CHANGEME_tasks:
- name: cleanup
file:
path: "{{ item }}"
state: absent
CHANGEME:
- /tmp/index.txt
- /tmp/vhost.conf
CHANGEME: false
tasks:
- name: install apache
CHANGEME:
name: httpd
state: present
- name: conf httpd
CHANGEME:
CHANGEME: /tmp/vhost.conf
CHANGEME: /etc/httpd/conf.d/vhost.conf
mode: 0640
owner: root
group: apache
- name: activate apache
CHANGEME:
name: httpd
enabled: yes
state: started
- name: open firewall port
firewalld:
CHANGEME: http
permanent: yes
immediate: yes
state: enabled
- name: create documentroot
CHANGEME:
name: /var/www/html/orsys.fr
state: CHANGEME
- name: copy index file
CHANGEME:
src: /tmp/index.txt
CHANGEMEdest: /var/www/html/orsys.fr/index.html
mode: 0644