Zolfa
c03b9af325
roles/ca_cert: new role!
New role to automate generation and issuing of certificate using a
`ca_manager` server.
Code is more sintentic and concise, and we avoid duplications.
5 years ago
Zolfa
fafcb7151f
fixup! Give Variable a Scope Refactoring
5 years ago
Zolfa
33b61bf032
roles/openvpn: add defaults
server_fqdn: {{ ansible_hostname }}.{{ domain }} specification in
defaults/main.yaml
5 years ago
Zolfa
392eddeca8
roles/openvpn: updates and improvements
- TLSv1.3 mandatory
- Pushed routes not hardcoded but defined by `routes` list
- TLS Private Key ED25519 instead of RSA
- Signing request refactored
- Topology switched from `net30` to `subnet`
- Ready for separated user and server CA
- Server certificate validity is assessed
- `tls_int` and `packages` tags added.
5 years ago
Andrea Cimbalo
b0c90d61ba
Add fullchain template
6 years ago
Edoardo Putti
e5e615a7c8
integrate debug in ca-dialog
move debug messages from roles in task ca-dialog
6 years ago
Edoardo Putti
bd1aa8edd6
set default values for paths to openvpn files
6 years ago
Edoardo Putti
f4d861dd58
setup ca with fullchain for openvpn
7 years ago
Edoardo Putti
858402d8a4
update openvpn role, ssh_server role
7 years ago
Edoardo Putti
6a49fde5bd
format nicely debug messages in openvpn role
7 years ago
Edoardo Putti
2168f7bd8c
use ca_dialog in openvpn role
7 years ago
Andrea Cimbalo
2bd959ebe2
add vpn
8 years ago