rewrite ssl cert generation

This commit is contained in:
ace
2024-03-19 14:04:46 +03:00
parent 6f18db44d2
commit 6149198f61
12 changed files with 384 additions and 40 deletions

View File

@ -16,7 +16,7 @@ patroni_deps_packages:
# Patroni variables
patroni_package_name: "patroni"
patroni_package: "{{ patroni_package_name }}={{ patroni_version }}-{{ patroni_version_build }}"
patroni_version_build: "1.pgdg{{ ansible_distribution_version}}0+1"
patroni_version_build: "2.pgdg{{ ansible_distribution_version}}0+1"
patroni_unit_name: "patroni"
patroni_config_name: "config.yml"
@ -35,5 +35,5 @@ patroni_postgresql_bin_dir: "/usr/lib/postgresql/{{ patroni_postgresql_major_ver
patroni_postgresql_unit_name: "postgresql@{{ patroni_postgresql_major_version}}-{{ patroni_postgresql_cluster_name }}"
# SSL variables
patroni_ssl_update_ca_command: "update-ca-certificates --fresh"
patroni_ssl_ca_trust_dir: "/usr/local/share/ca-certificates"
patroni_cacert_update_ca_trust_command: "update-ca-certificates --fresh"
patroni_cacert_ca_trust_dir: "/usr/local/share/ca-certificates"

View File

@ -16,7 +16,7 @@ patroni_deps_packages:
# Patroni variables
patroni_package_name: "patroni"
patroni_package: "{{ patroni_package_name }}={{ patroni_version }}-{{ patroni_version_build }}"
patroni_version_build: "1.pgdg{{ ansible_distribution_version}}0+1"
patroni_version_build: "2.pgdg{{ ansible_distribution_version}}0+1"
patroni_unit_name: "patroni"
patroni_config_name: "config.yml"
@ -35,5 +35,5 @@ patroni_postgresql_bin_dir: "/usr/lib/postgresql/{{ patroni_postgresql_major_ver
patroni_postgresql_unit_name: "postgresql@{{ patroni_postgresql_major_version}}-{{ patroni_postgresql_cluster_name }}"
# SSL variables
patroni_ssl_update_ca_command: "update-ca-certificates --fresh"
patroni_ssl_ca_trust_dir: "/usr/local/share/ca-certificates"
patroni_cacert_update_ca_trust_command: "update-ca-certificates --fresh"
patroni_cacert_ca_trust_dir: "/usr/local/share/ca-certificates"

View File

@ -32,5 +32,5 @@ patroni_postgresql_bin_dir: "/usr/pgsql-{{ patroni_postgresql_major_version }}/b
patroni_postgresql_unit_name: "postgresql-{{ patroni_postgresql_major_version }}"
# SSL variables
patroni_ssl_update_ca_command: "update-ca-trust extract"
patroni_ssl_ca_trust_dir: "/etc/pki/ca-trust/source/anchors"
patroni_cacert_update_ca_trust_command: "update-ca-trust extract"
patroni_cacert_ca_trust_dir: "/etc/pki/ca-trust/source/anchors"

View File

@ -16,7 +16,7 @@ patroni_deps_packages:
# Patroni variables
patroni_package_name: "patroni"
patroni_package: "{{ patroni_package_name }}={{ patroni_version }}-{{ patroni_version_build }}"
patroni_version_build: "1.pgdg{{ ansible_distribution_version}}+1"
patroni_version_build: "2.pgdg{{ ansible_distribution_version}}+1"
patroni_unit_name: "patroni"
patroni_config_name: "config.yml"
@ -35,5 +35,5 @@ patroni_postgresql_bin_dir: "/usr/lib/postgresql/{{ patroni_postgresql_major_ver
patroni_postgresql_unit_name: "postgresql@{{ patroni_postgresql_major_version}}-{{ patroni_postgresql_cluster_name }}"
# SSL variables
patroni_ssl_update_ca_command: "update-ca-certificates --fresh"
patroni_ssl_ca_trust_dir: "/usr/local/share/ca-certificates"
patroni_cacert_update_ca_trust_command: "update-ca-certificates --fresh"
patroni_cacert_ca_trust_dir: "/usr/local/share/ca-certificates"

View File

@ -16,7 +16,7 @@ patroni_deps_packages:
# Patroni variables
patroni_package_name: "patroni"
patroni_package: "{{ patroni_package_name }}={{ patroni_version }}-{{ patroni_version_build }}"
patroni_version_build: "1.pgdg{{ ansible_distribution_version}}+1"
patroni_version_build: "2.pgdg{{ ansible_distribution_version}}+1"
patroni_unit_name: "patroni"
patroni_config_name: "config.yml"
@ -35,5 +35,5 @@ patroni_postgresql_bin_dir: "/usr/lib/postgresql/{{ patroni_postgresql_major_ver
patroni_postgresql_unit_name: "postgresql@{{ patroni_postgresql_major_version}}-{{ patroni_postgresql_cluster_name }}"
# SSL variables
patroni_ssl_update_ca_command: "update-ca-certificates --fresh"
patroni_ssl_ca_trust_dir: "/usr/local/share/ca-certificates"
patroni_cacert_update_ca_trust_command: "update-ca-certificates --fresh"
patroni_cacert_ca_trust_dir: "/usr/local/share/ca-certificates"