| Commit message (Collapse) | Author | Age | Lines |
... | |
| |
|
| |
|
| |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
We now can use CSV values to group different (but related) SANs into one
issued certificate.
As an example, when it was migrated in #402, certificates were
configured in such a way that certbot attempted to issue one certificate
for pydis.wtf and another for *.pydis.wtf, which is obviously not
desirable.
This restores previous behaviour to group together certificates served
from the same NGINX vhost, using some Ansible filters to ensure the
`creates` option of the task matches the certbot generated directory.
|
|
|
|
| |
Files of the webserver have been migrated over.
|
| |
|
| |
|
| |
|
|
|
|
|
|
| |
| datasource | package | from | to |
| ---------- | ------- | ---- | ---- |
| docker | ghost | 5.87 | 5.88 |
|
|
|
|
| |
Signed-off-by: Joe Banks <[email protected]>
|
|
|
|
|
|
|
| |
This allows us to authenticate requests to LDAP with LDAPS and ensure a)
authenticity and b) security of the transmission.
Signed-off-by: Joe Banks <[email protected]>
|
|
|
|
|
|
|
| |
This does not configure the LDAP server but configures the environment
and installs the necessary packages, as well as configuring the firewall.
Signed-off-by: Joe Banks <[email protected]>
|
|
|
|
|
|
|
|
|
| |
This maintains previous behaviour in which the hostname would have just
been the inventory hostname, but as the hostname is being updated to the
FQDN we should explicitly set the inventory_hostname to ensure
continuity of logs.
Signed-off-by: Joe Banks <[email protected]>
|
|
|
|
| |
Signed-off-by: Joe Banks <[email protected]>
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
This prevented the IPA installation from completing, presumably because
it creates a high number of threads/subprocesses/whatever to get the
installation complete.
Regardless, with SELinux and other security tools that ship with the
Rocky security profile we are on. This should be fine. Limits are not a
security risk other than resource exhaustion which is not mission
critical here.
Signed-off-by: Joe Banks <[email protected]>
|
|
|
|
| |
Signed-off-by: Joe Banks <[email protected]>
|
|
|
|
| |
Signed-off-by: Joe Banks <[email protected]>
|
|
|
|
|
|
| |
| datasource | package | from | to |
| ---------- | ------- | ----- | ----- |
| pypi | ruff | 0.5.3 | 0.5.4 |
|
| |
|
| |
|
| |
|
| |
|
| |
|
| |
|
| |
|
| |
|
|
|
|
|
|
| |
| datasource | package | from | to |
| ---------- | ------- | ----- | ----- |
| pypi | ruff | 0.5.2 | 0.5.3 |
|
|
|
|
|
|
| |
| datasource | package | from | to |
| ---------- | ------------------------- | ------ | ------ |
| docker | quay.io/keycloak/keycloak | 25.0.1 | 25.0.2 |
|
| |
|
| |
|
|
|
|
|
|
| |
| datasource | package | from | to |
| ---------- | -------------------------------- | ------ | ------ |
| docker | quay.io/prometheus/node-exporter | v1.2.0 | v1.8.2 |
|
|
|
|
|
|
| |
| datasource | package | from | to |
| ----------------- | ----------------- | ----- | ----- |
| galaxy-collection | community.general | 8.6.2 | 9.2.0 |
|
|
|
|
|
|
|
| |
| datasource | package | from | to |
| ----------------- | ----------------- | ------ | ------ |
| galaxy-collection | community.crypto | 2.20.0 | 2.21.0 |
| galaxy-collection | community.general | 8.6.2 | 8.6.3 |
|
|
|
|
|
|
|
| |
| datasource | package | from | to |
| ---------- | ------------ | ------ | ------ |
| pypi | ansible-core | 2.17.1 | 2.17.2 |
| pypi | ruff | 0.5.1 | 0.5.2 |
|
|
|
|
|
|
| |
| datasource | package | from | to |
| ---------- | ------- | ---- | ---- |
| docker | ghost | 5.78 | 5.87 |
|
| |
|
| |
|
| |
|
| |
|
| |
|
|
|
|
|
|
|
| |
| datasource | package | from | to |
| ---------- | ------------ | ------ | ------ |
| pypi | ansible-lint | 24.6.1 | 24.7.0 |
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
|
| |
|
| |
|
| |
|
| |
|
| |
|
| |
|
| |
|
| |
|
| |
|