2023-03-15 08:58:12 +00:00
|
|
|
- name: "Set up a self-hosted server"
|
|
|
|
hosts: "{{ target if target is defined else 'mash_servers' }}"
|
|
|
|
become: true
|
|
|
|
|
|
|
|
roles:
|
|
|
|
# This role has no tasks at all
|
|
|
|
- role: galaxy/com.devture.ansible.role.playbook_help
|
|
|
|
|
|
|
|
# This role has no tasks at all
|
|
|
|
- role: galaxy/com.devture.ansible.role.systemd_docker_base
|
|
|
|
|
|
|
|
- when: mash_playbook_docker_installation_enabled | bool
|
|
|
|
role: galaxy/geerlingguy.docker
|
|
|
|
vars:
|
|
|
|
docker_install_compose: false
|
|
|
|
tags:
|
|
|
|
- setup-docker
|
|
|
|
- setup-all
|
|
|
|
- install-docker
|
|
|
|
- install-all
|
|
|
|
|
|
|
|
- when: devture_docker_sdk_for_python_installation_enabled | bool
|
|
|
|
role: galaxy/com.devture.ansible.role.docker_sdk_for_python
|
|
|
|
tags:
|
|
|
|
- setup-docker
|
|
|
|
- setup-all
|
|
|
|
- install-docker
|
|
|
|
- install-all
|
|
|
|
|
|
|
|
- when: devture_timesync_installation_enabled | bool
|
|
|
|
role: galaxy/com.devture.ansible.role.timesync
|
|
|
|
tags:
|
|
|
|
- setup-timesync
|
|
|
|
- setup-all
|
|
|
|
- install-timesync
|
|
|
|
- install-all
|
|
|
|
|
|
|
|
- role: mash/playbook_base
|
|
|
|
|
2023-03-18 11:24:46 +00:00
|
|
|
- role: galaxy/swap
|
|
|
|
|
2023-03-18 20:47:41 +00:00
|
|
|
- when: system_security_ssh_enabled | bool
|
|
|
|
role: galaxy/ssh
|
2023-03-18 19:50:27 +00:00
|
|
|
|
2023-03-18 20:47:41 +00:00
|
|
|
- when: system_security_fail2ban_enabled | bool
|
|
|
|
role: galaxy/fail2ban
|
2023-03-18 20:04:44 +00:00
|
|
|
|
2023-03-15 08:58:12 +00:00
|
|
|
# This role exposes various tags (setup-postgres, setup-all, upgrade-postgres, import-postgres, etc.), so we don't tag it here.
|
|
|
|
- role: galaxy/com.devture.ansible.role.postgres
|
|
|
|
|
2023-03-17 14:40:08 +00:00
|
|
|
- role: galaxy/com.devture.ansible.role.postgres_backup
|
|
|
|
|
2023-03-15 08:58:12 +00:00
|
|
|
- role: galaxy/com.devture.ansible.role.container_socket_proxy
|
|
|
|
|
|
|
|
- role: galaxy/com.devture.ansible.role.traefik
|
|
|
|
|
2023-03-24 16:01:21 +00:00
|
|
|
- role: galaxy/adguard_home
|
|
|
|
|
2023-03-17 12:25:31 +00:00
|
|
|
- role: galaxy/collabora_online
|
|
|
|
|
2023-03-18 17:27:24 +00:00
|
|
|
- role: galaxy/docker_registry
|
2023-03-19 07:14:12 +00:00
|
|
|
- role: galaxy/docker_registry_browser
|
2023-03-19 08:04:10 +00:00
|
|
|
- role: galaxy/docker_registry_purger
|
2023-03-18 17:27:24 +00:00
|
|
|
|
2023-03-24 08:58:39 +00:00
|
|
|
- role: galaxy/firezone
|
|
|
|
|
2023-03-20 06:40:15 +00:00
|
|
|
- role: galaxy/focalboard
|
|
|
|
|
2023-03-16 16:26:06 +00:00
|
|
|
- role: galaxy/gitea
|
|
|
|
|
2023-03-20 17:14:45 +00:00
|
|
|
- role: galaxy/grafana
|
|
|
|
|
2023-03-15 08:58:12 +00:00
|
|
|
- role: galaxy/miniflux
|
|
|
|
|
2023-03-19 20:10:42 +00:00
|
|
|
- role: galaxy/hubsite
|
|
|
|
|
2023-03-17 09:39:04 +00:00
|
|
|
- role: galaxy/nextcloud
|
|
|
|
|
2023-03-17 13:48:15 +00:00
|
|
|
- role: galaxy/peertube
|
2023-03-17 13:43:45 +00:00
|
|
|
|
2023-03-20 15:54:01 +00:00
|
|
|
- role: galaxy/prometheus
|
2023-03-17 22:13:30 +00:00
|
|
|
- role: galaxy/prometheus_node_exporter
|
2023-03-20 15:54:01 +00:00
|
|
|
- role: galaxy/prometheus_blackbox_exporter
|
2023-03-17 22:13:30 +00:00
|
|
|
|
2023-03-15 08:58:12 +00:00
|
|
|
- role: galaxy/radicale
|
|
|
|
|
2023-03-17 21:27:52 +00:00
|
|
|
- role: galaxy/redmine
|
|
|
|
|
2023-03-17 13:43:45 +00:00
|
|
|
- role: galaxy/redis
|
|
|
|
|
2023-03-23 09:32:59 +00:00
|
|
|
- role: galaxy/syncthing
|
|
|
|
|
2023-03-16 10:05:21 +00:00
|
|
|
- role: galaxy/vaultwarden
|
|
|
|
|
2023-03-15 08:58:12 +00:00
|
|
|
- role: galaxy/uptime_kuma
|
|
|
|
|
2023-03-16 16:26:06 +00:00
|
|
|
- role: galaxy/com.devture.ansible.role.woodpecker_ci_server
|
|
|
|
- role: galaxy/com.devture.ansible.role.woodpecker_ci_agent
|
|
|
|
|
2023-03-20 09:03:59 +00:00
|
|
|
- role: galaxy/aux
|
|
|
|
|
2023-03-15 08:58:12 +00:00
|
|
|
- when: devture_systemd_service_manager_enabled | bool
|
|
|
|
role: galaxy/com.devture.ansible.role.systemd_service_manager
|
|
|
|
|
|
|
|
# This is pretty much last, because we want it to better serve as a "last known good configuration".
|
|
|
|
# See: https://github.com/spantaleev/matrix-docker-ansible-deploy/pull/2217#issuecomment-1301487601
|
|
|
|
- when: devture_playbook_state_preserver_enabled | bool
|
|
|
|
role: galaxy/com.devture.ansible.role.playbook_state_preserver
|
|
|
|
tags:
|
|
|
|
- setup-all
|
|
|
|
- install-all
|
|
|
|
|
|
|
|
- role: galaxy/com.devture.ansible.role.playbook_runtime_messages
|