Skip to content
Snippets Groups Projects
Select Git revision
  • f99666b61cec992cb5a05b357fa6ef0e15508fb4
  • master default
2 results

tls_cert.yml

Blame
  • tls_cert.yml 442 B
    ---
    
    - include: 'tls_cert_Debian.yml'
      when: ansible_os_family == 'Debian'
    
    - include: 'tls_cert_OpenBSD.yml'
      when: ansible_os_family == 'OpenBSD'
    
    - name: Check if dhparams exists and its length
      ignore_errors: yes
      dhparams:
        path: /etc/ssl/dhparams.pem
      register: tls_dhparams
    
    - name: Generate dhparams (this will take a while)
      when: tls_dhparams.bits < 2048
      command: /usr/bin/openssl dhparam -out /etc/ssl/dhparams.pem 2048