ansible-collection-famedly-.../tasks/crypto.yml
2019-02-15 03:10:38 +01:00

33 lines
819 B
YAML

---
- name: Install singedjson
pip:
name: signedjson
- name: Create signing key
matrix_signing_key:
path: "{{ matrix_synapse_signing_key_path }}"
notify:
- "restart matrix-synapse"
- name: create DH parameters
openssl_dhparam:
path: "{{ matrix_synapse_dh_path }}"
owner: synapse
- name: Write server's certificate and private key
block:
- name: Write certificate
copy:
content: "{{ matrix_synapse_tls_cert }}"
dest: "{{ matrix_synapse_tls_cert_path }}"
owner: synapse
group: synapse
mode: "0644"
- name: Write keyfile
copy:
content: "{{ matrix_synapse_tls_key }}"
dest: "{{ matrix_synapse_tls_key_path }}"
owner: synapse
group: synapse
mode: "0600"
when: not matrix_synapse_skip_tls