diff --git a/renew-certs.yaml b/renew-certs.yaml index 937e35376729f1244b19ab7a9fb5e7b18caddd1e..89be60d4ebfff869abec951825f0b913ed6f67ba 100644 --- a/renew-certs.yaml +++ b/renew-certs.yaml @@ -2,8 +2,6 @@ - name: Generate keys and certificates hosts: - localhost - connection: local - become: false gather_facts: false vars: email: hostmaster@shore.co.il @@ -121,14 +119,12 @@ - name: Create ACME challenge directory delegate_to: ns4 - become: true file: path: /var/www/www.shore.co.il/.well-known/acme-challenge state: directory - name: Copy http-01 site challenge delegate_to: ns4 - become: true with_dict: | {{ acme_site_challenge['challenge_data'] }} copy: @@ -159,7 +155,6 @@ - name: Copy site key, certificate to server delegate_to: ns4 - become: true with_items: - src: *site_key_src dest: /var/ssl/site.key @@ -244,14 +239,12 @@ - name: Create ACME challenge directory delegate_to: host01 - become: true file: path: /var/www/www.shore.co.il/.well-known/acme-challenge state: directory - name: Copy http-01 host challenge delegate_to: host01 - become: true with_dict: | {{ acme_host_challenge['challenge_data'] }} copy: @@ -282,7 +275,6 @@ - name: Copy host key, certificate to server delegate_to: host01 - become: true with_items: - src: *host_key_src dest: /var/ssl/site.key @@ -367,14 +359,12 @@ - name: Create ACME challenge directory delegate_to: host01 - become: true file: path: /var/www/mail.shore.co.il/.well-known/acme-challenge state: directory - name: Copy http-01 mail challenge delegate_to: host01 - become: true with_dict: | {{ acme_mail_challenge['challenge_data'] }} copy: @@ -405,7 +395,6 @@ - name: Copy mail key, certificate to server delegate_to: host01 - become: true with_items: - src: *mail_key_src dest: /var/ssl/mail.key @@ -550,7 +539,6 @@ - kodi - name: Generate Diffie-Hellman parameters on host01 - become: true delegate_to: host01 community.crypto.openssl_dhparam: force: true @@ -567,7 +555,6 @@ - dhparams - name: Generate Diffie-Hellman parameters on ns4 - become: true delegate_to: ns4 community.crypto.openssl_dhparam: force: true @@ -582,7 +569,6 @@ - dhparams - name: Generate Diffie-Hellman parameters on kodi - become: true delegate_to: kodi community.crypto.openssl_dhparam: force: true