big comment because is not finish

This commit is contained in:
Adrien Reslinger 2020-10-17 01:52:10 +02:00
parent 18c328c8aa
commit d71dda4ff8

View file

@ -16,68 +16,68 @@
state: present state: present
update_cache: yes update_cache: yes
- name: Configure wireguard # - name: Configure wireguard
block: # block:
- name: Retreive private key # - name: Retreive private key
block: # block:
- name: Retreive private key # - name: Retreive private key
shell: > # shell: >
cat /etc/wireguard/privatekey # cat /etc/wireguard/privatekey
register: wireguard_private_key # register: wireguard_private_key
rescue: # rescue:
- name: Generate private key # - name: Generate private key
shell: > # shell: >
set -o pipefail && wg genkey | tee /etc/wireguard/privatekey # set -o pipefail && wg genkey | tee /etc/wireguard/privatekey
register: wireguard_private_key # register: wireguard_private_key
always: # always:
- name: Fix permission on /etc/wireguard/privatekey # - name: Fix permission on /etc/wireguard/privatekey
file: # file:
path: "/etc/wireguard/privatekey" # path: "/etc/wireguard/privatekey"
owner: root # owner: root
group: root # group: root
mode: 0600 # mode: 0600
#
- name: Retreive public key # - name: Retreive public key
block: # block:
- name: Retreive public key # - name: Retreive public key
shell: > # shell: >
cat /etc/wireguard/publickey # cat /etc/wireguard/publickey
register: wireguard_public_key # register: wireguard_public_key
rescue: # rescue:
- name: Generate public key # - name: Generate public key
shell: > # shell: >
set -o pipefail && cat /etc/wireguard/privatekey | wg pubkey | tee /etc/wireguard/publickey # set -o pipefail && cat /etc/wireguard/privatekey | wg pubkey | tee /etc/wireguard/publickey
register: wireguard_public_key # register: wireguard_public_key
always: # always:
- name: Fix permission on /etc/wireguard/publickey # - name: Fix permission on /etc/wireguard/publickey
file: # file:
path: "/etc/wireguard/publickey" # path: "/etc/wireguard/publickey"
owner: root # owner: root
group: root # group: root
mode: 0600 # mode: 0600
#
- name: Set keys pair variable # - name: Set keys pair variable
set_facts: # set_facts:
wireguard_public_key: '{{ wireguard_public_key.stdout }}' # wireguard_public_key: '{{ wireguard_public_key.stdout }}'
wireguard_private_key: '{{ wireguard_private_key.stdout }}' # wireguard_private_key: '{{ wireguard_private_key.stdout }}'
#
- name: Install WireGuard configuration files # - name: Install WireGuard configuration files
template: # template:
src: "etc/wireguard/wireguard.conf.j2" # src: "etc/wireguard/wireguard.conf.j2"
dest: "/etc/wireguard/{{ wireguard_interface }}.conf" # dest: "/etc/wireguard/{{ wireguard_interface }}.conf"
owner: root # owner: root
group: root # group: root
mode: 0644 # mode: 0644
#
- name: Enable Wireguard service # - name: Enable Wireguard service
service: # service:
name: "wg-quick@{{ wireguard_interface }}" # name: "wg-quick@{{ wireguard_interface }}"
enabled: yes # enabled: yes
state: restarted # state: restarted
when: # when:
- skip_conf|false # - skip_conf|false
tags: # tags:
- wireguard-conf # - wireguard-conf
#
tags: tags:
- wireguard - wireguard