make TLS optional

This commit is contained in:
ace 2024-04-09 16:19:46 +03:00
parent 55e2796059
commit 4ab67d12f7
Signed by: ace
GPG Key ID: 2C08973DD37A76FD

View File

@ -14,19 +14,19 @@ pgbouncer_max_db_connections: 1000
pgbouncer_default_pool_size: 20
pgbouncer_reserve_pool_size: 5
pgbouncer_default_pool_mode: "session"
pgbouncer_ignore_startup_parameters: "extra_float_digits,geqo"
pgbouncer_ignore_startup_parameters: "extra_float_digits,geqo,search_path"
pgbouncer_auth_type: "hba"
pgbouncer_auth_user: "{{ pgbouncer_postgresql_superuser_username }}"
pgbouncer_auth_hba_file: "{{ pgbouncer_postgresql_config_cluster_dir }}/pg_hba.conf"
pgbouncer_auth_file_name: "userlist.txt"
pgbouncer_auth_file: "{{ pgbouncer_conf_dir }}/{{ pgbouncer_auth_file_name }}"
pgbouncer_admin_users: "postgres"
pgbouncer_client_tls_sslmode: "require"
pgbouncer_client_tls_sslmode: "prefer"
pgbouncer_client_tls_key_file: "/etc/pki/tls/private/cert.key"
pgbouncer_client_tls_cert_file: "/etc/pki/tls/cert/cert.crt"
pgbouncer_client_tls_protocols: "tlsv1.3"
pgbouncer_client_tls_ciphers: "secure"
pgbouncer_server_tls_sslmode: "require"
pgbouncer_server_tls_sslmode: "prefer"
pgbouncer_server_tls_key_file: "/etc/pki/tls/private/cert.key"
pgbouncer_server_tls_cert_file: "/etc/pki/tls/cert/cert.crt"
pgbouncer_server_tls_protocols: "tlsv1.3"