Go to file
Jonathan Rosser a254facacf Install self-signed certificate before certbot has run for the first time
This patch changes the logic for generating a self signed certificate to
also run when letsencrypt is being used. This temporary self signed cert
is generated before haproxy is restarted with its full configuration, and
before certbot has been run to generate the initial LE cert.

This is necessary because haproxy will not start correctly if it is
configured to use an ssl certificate but none is present. This would
be the case with the previous code before certbot has run for the first
time.

This patch also removes the task which stops haproxy before running certbot.
It is no longer necessary to do this as haproxy is able to start correctly
using the initial self-signed cert.

Change-Id: I6591243737b3a1bb369393439e1c44929f2f945b
2020-05-07 13:14:51 +00:00
2018-06-20 16:29:56 +08:00
2019-05-14 11:47:47 +02:00
2018-10-30 07:58:42 +00:00
2019-04-19 19:45:03 +00:00
2016-08-21 17:00:50 +01:00
2016-09-27 16:02:41 +00:00
2019-09-26 08:36:44 +00:00
2020-04-14 20:50:38 +08:00
2020-04-14 20:50:38 +08:00
2020-04-14 20:50:38 +08:00

Team and repository tags

image

OpenStack-Ansible HAProxy server

Documentation for the project can be found at:

https://docs.openstack.org/openstack-ansible-haproxy_server/latest

Release notes for the project can be found at:

https://docs.openstack.org/releasenotes/openstack-ansible-haproxy_server/

The project source code repository is located at:

https://opendev.org/openstack/openstack-ansible-haproxy_server/

The project home is at:

https://launchpad.net/openstack-ansible

The project bug tracker is located at:

https://bugs.launchpad.net/openstack-ansible

Description
Role haproxy_server for OpenStack-Ansible
Readme 5.1 MiB
Languages
Jinja 69%
Python 31%