Compare commits
8 Commits
v0.0.3k-fr
...
v0.0.3s-jm
Author | SHA1 | Date | |
---|---|---|---|
|
a57998f5de | ||
|
262b7bdb13 | ||
|
c45dc50d12 | ||
|
d1116a91c3 | ||
|
9c8dca44c9 | ||
|
ce3b6e0a77 | ||
|
a03298ed54 | ||
|
80b54a50df |
@@ -1,21 +1,20 @@
|
|||||||
file:
|
file:
|
||||||
/etc/wireguard/wg0.conf:
|
/etc/wireguard/wg0.conf:
|
||||||
exists: true
|
exists: true
|
||||||
mode: "0644"
|
mode: "0600"
|
||||||
owner: root
|
owner: root
|
||||||
group: root
|
group: root
|
||||||
filetype: file
|
filetype: file
|
||||||
contains:
|
contains: []
|
||||||
- AllowedIPs = 10.0.0.2/32, 172.16.128.0/24
|
|
||||||
package:
|
package:
|
||||||
wireguard:
|
wireguard:
|
||||||
installed: true
|
installed: true
|
||||||
versions:
|
versions:
|
||||||
- 1.0.20210223-1
|
- 1.0.20210914-1
|
||||||
wireguard-tools:
|
wireguard-tools:
|
||||||
installed: true
|
installed: true
|
||||||
versions:
|
versions:
|
||||||
- 1.0.20210223-1
|
- 1.0.20210914-1+b1
|
||||||
service:
|
service:
|
||||||
wg-quick@wg0:
|
wg-quick@wg0:
|
||||||
enabled: true
|
enabled: true
|
||||||
|
@@ -1,7 +1,8 @@
|
|||||||
file:
|
file:
|
||||||
/etc/wireguard/wg0.conf:
|
/etc/wireguard/wg0.conf:
|
||||||
exists: true
|
exists: true
|
||||||
mode: "0644"
|
mode: "0600"
|
||||||
|
size: 374
|
||||||
owner: root
|
owner: root
|
||||||
group: root
|
group: root
|
||||||
filetype: file
|
filetype: file
|
||||||
@@ -10,11 +11,11 @@ package:
|
|||||||
wireguard:
|
wireguard:
|
||||||
installed: true
|
installed: true
|
||||||
versions:
|
versions:
|
||||||
- 1.0.20210223-1
|
- 1.0.20210914-1
|
||||||
wireguard-tools:
|
wireguard-tools:
|
||||||
installed: true
|
installed: true
|
||||||
versions:
|
versions:
|
||||||
- 1.0.20210223-1
|
- 1.0.20210914-1+b1
|
||||||
service:
|
service:
|
||||||
isc-dhcp-server:
|
isc-dhcp-server:
|
||||||
enabled: true
|
enabled: true
|
||||||
|
@@ -22,6 +22,8 @@
|
|||||||
192.168.99.14 s-nas.gsb.adm
|
192.168.99.14 s-nas.gsb.adm
|
||||||
192.168.99.15 s-san.gsb.adm
|
192.168.99.15 s-san.gsb.adm
|
||||||
192.168.99.16 s-fog.gsb.adm
|
192.168.99.16 s-fog.gsb.adm
|
||||||
|
192.168.99.20 s-kea1.gsb.adm
|
||||||
|
192.168.99.21 s-kea2.gsb.adm
|
||||||
192.168.99.50 s-lb-bd.gsb.adm
|
192.168.99.50 s-lb-bd.gsb.adm
|
||||||
192.168.99.101 s-lb-web1.gsb.adm
|
192.168.99.101 s-lb-web1.gsb.adm
|
||||||
192.168.99.102 s-lb-web2.gsb.adm
|
192.168.99.102 s-lb-web2.gsb.adm
|
||||||
|
@@ -21,6 +21,8 @@
|
|||||||
192.168.99.12 r-int.gsb.adm
|
192.168.99.12 r-int.gsb.adm
|
||||||
192.168.99.13 r-ext.gsb.adm
|
192.168.99.13 r-ext.gsb.adm
|
||||||
192.168.99.14 s-nas.gsb.adm
|
192.168.99.14 s-nas.gsb.adm
|
||||||
|
192.168.99.20 s-kea1.gsb.adm
|
||||||
|
192.168.99.21 s-kea2.gsb.adm
|
||||||
192.168.99.50 s-lb-bd.gsb.adm
|
192.168.99.50 s-lb-bd.gsb.adm
|
||||||
192.168.99.101 s-lb-web1.gsb.adm
|
192.168.99.101 s-lb-web1.gsb.adm
|
||||||
192.168.99.102 s-lb-web2.gsb.adm
|
192.168.99.102 s-lb-web2.gsb.adm
|
||||||
|
@@ -5,7 +5,7 @@
|
|||||||
;
|
;
|
||||||
$TTL 604800
|
$TTL 604800
|
||||||
@ IN SOA s-infra.gsb.lan. root.s-infra.gsb.lan. (
|
@ IN SOA s-infra.gsb.lan. root.s-infra.gsb.lan. (
|
||||||
2023051000 ; Serial
|
2024011500 ; Serial
|
||||||
7200 ; Refresh
|
7200 ; Refresh
|
||||||
86400 ; Retry
|
86400 ; Retry
|
||||||
8419200 ; Expire
|
8419200 ; Expire
|
||||||
@@ -27,6 +27,8 @@ s-mon IN A 172.16.0.8
|
|||||||
s-itil IN A 172.16.0.9
|
s-itil IN A 172.16.0.9
|
||||||
s-elk IN A 172.16.0.11
|
s-elk IN A 172.16.0.11
|
||||||
s-gestsup IN A 172.16.0.17
|
s-gestsup IN A 172.16.0.17
|
||||||
|
s-kea1 IN A 172.16.0.20
|
||||||
|
s-kea2 IN A 172.16.0.21
|
||||||
r-int IN A 172.16.0.254
|
r-int IN A 172.16.0.254
|
||||||
r-int-lnk IN A 192.168.200.254
|
r-int-lnk IN A 192.168.200.254
|
||||||
r-ext IN A 192.168.200.253
|
r-ext IN A 192.168.200.253
|
||||||
|
@@ -5,7 +5,7 @@
|
|||||||
;
|
;
|
||||||
$TTL 604800
|
$TTL 604800
|
||||||
@ IN SOA s-infra.gsb.lan. root.s-infra.gsb.lan. (
|
@ IN SOA s-infra.gsb.lan. root.s-infra.gsb.lan. (
|
||||||
2023040501 ; Serial
|
2024011500 ; Serial
|
||||||
7200 ; Refresh
|
7200 ; Refresh
|
||||||
86400 ; Retry
|
86400 ; Retry
|
||||||
8419200 ; Expire
|
8419200 ; Expire
|
||||||
@@ -21,10 +21,12 @@ $TTL 604800
|
|||||||
7.0 IN PTR s-nxc.gsb.lan.
|
7.0 IN PTR s-nxc.gsb.lan.
|
||||||
8.0 IN PTR s-mon.gsb.lan.
|
8.0 IN PTR s-mon.gsb.lan.
|
||||||
9.0 IN PTR s-itil.gsb.lan.
|
9.0 IN PTR s-itil.gsb.lan.
|
||||||
|
20.0 IN PTR s-kea1.gsb.lan.
|
||||||
|
21.0 IN PTR s-kea2.gsb.lan.
|
||||||
101.1 IN PTR s-web1
|
101.1 IN PTR s-web1
|
||||||
101.2 IN PTR s-web2
|
101.2 IN PTR s-web2
|
||||||
100.10 IN PTR s-lb
|
100.10 IN PTR s-lb
|
||||||
100.10 IN PTR s-lb.gsb.lan
|
100.10 IN PTR s-lb.gsb.lan
|
||||||
11.0 IN PTR s-elk.gsb.lan.
|
11.0 IN PTR s-elk.gsb.lan.
|
||||||
17.0 IN PTR s-gestsup.lan
|
17.0 IN PTR s-gestsup.lan
|
||||||
254.0 IN PTR r-int.gsb.lan.
|
254.0 IN PTR r-int.gsb.lan.
|
||||||
|
@@ -42,7 +42,7 @@ tftpAdvOpts=''
|
|||||||
sslpath='/opt/fog/snapins/ssl/'
|
sslpath='/opt/fog/snapins/ssl/'
|
||||||
backupPath='/home/'
|
backupPath='/home/'
|
||||||
armsupport='0'
|
armsupport='0'
|
||||||
php_ver='8.2'
|
php_ver='7.4'
|
||||||
#php_verAdds='-7.4'
|
#php_verAdds='-7.4'
|
||||||
sslprivkey='/opt/fog/snapins/ssl//.srvprivate.key'
|
sslprivkey='/opt/fog/snapins/ssl//.srvprivate.key'
|
||||||
sendreports='Y'
|
sendreports='Y'
|
||||||
|
26
roles/post/files/interfaces.s-kea1
Normal file
26
roles/post/files/interfaces.s-kea1
Normal file
@@ -0,0 +1,26 @@
|
|||||||
|
# This file describes the network interfaces available on your system
|
||||||
|
# and how to activate them. For more information, see interfaces(5).
|
||||||
|
|
||||||
|
# The loopback network interface
|
||||||
|
auto lo
|
||||||
|
iface lo inet loopback
|
||||||
|
|
||||||
|
# cote N-adm
|
||||||
|
allow-hotplug enp0s3
|
||||||
|
iface enp0s3 inet static
|
||||||
|
address 192.168.99.20
|
||||||
|
netmask 255.255.255.0
|
||||||
|
gateway 192.168.99.99
|
||||||
|
|
||||||
|
|
||||||
|
# cote N-infra
|
||||||
|
allow-hotplug enp0s8
|
||||||
|
iface enp0s8 inet static
|
||||||
|
address 172.16.0.20
|
||||||
|
netmask 255.255.255.0
|
||||||
|
|
||||||
|
#cote N-user
|
||||||
|
allow-hotplug enp0s9
|
||||||
|
iface enp0s9 inet static
|
||||||
|
address 172.16.64.20
|
||||||
|
netmask 255.255.255.0
|
26
roles/post/files/interfaces.s-kea2
Normal file
26
roles/post/files/interfaces.s-kea2
Normal file
@@ -0,0 +1,26 @@
|
|||||||
|
# This file describes the network interfaces available on your system
|
||||||
|
# and how to activate them. For more information, see interfaces(5).
|
||||||
|
|
||||||
|
# The loopback network interface
|
||||||
|
auto lo
|
||||||
|
iface lo inet loopback
|
||||||
|
|
||||||
|
# cote N-adm
|
||||||
|
allow-hotplug enp0s3
|
||||||
|
iface enp0s3 inet static
|
||||||
|
address 192.168.99.21
|
||||||
|
netmask 255.255.255.0
|
||||||
|
gateway 192.168.99.99
|
||||||
|
|
||||||
|
|
||||||
|
# cote N-infra
|
||||||
|
allow-hotplug enp0s8
|
||||||
|
iface enp0s8 inet static
|
||||||
|
address 172.16.0.21
|
||||||
|
netmask 255.255.255.0
|
||||||
|
|
||||||
|
#cote N-user
|
||||||
|
allow-hotplug enp0s9
|
||||||
|
iface enp0s9 inet static
|
||||||
|
address 172.16.64.21
|
||||||
|
netmask 255.255.255.0
|
@@ -5,10 +5,10 @@
|
|||||||
roles:
|
roles:
|
||||||
- base
|
- base
|
||||||
- goss
|
- goss
|
||||||
- dhcp-fog
|
#- dhcp-fog
|
||||||
- ssh-cli
|
# - ssh-cli
|
||||||
- snmp-agent
|
# - snmp-agent
|
||||||
# - syslog-cli
|
# - syslog-cli
|
||||||
# - fog
|
# - fog
|
||||||
- - journald-snd
|
#- - journald-snd
|
||||||
- post
|
- post
|
||||||
|
@@ -100,6 +100,10 @@ elif [[ "${vm}" == "s-nxc" ]] ; then
|
|||||||
create_if "${vm}" "n-adm" "n-infra"
|
create_if "${vm}" "n-adm" "n-infra"
|
||||||
elif [[ "${vm}" == "s-fog" ]] ; then
|
elif [[ "${vm}" == "s-fog" ]] ; then
|
||||||
create_if "${vm}" "n-adm" "n-infra" "n-user"
|
create_if "${vm}" "n-adm" "n-infra" "n-user"
|
||||||
|
elif [[ "${vm}" == "s-kea1" ]] ; then
|
||||||
|
create_if "${vm}" "n-adm" "n-infra" "n-user"
|
||||||
|
elif [[ "${vm}" == "s-kea2" ]] ; then
|
||||||
|
create_if "${vm}" "n-adm" "n-infra" "n-user"
|
||||||
elif [[ "${vm}" == "s-dns-ext" ]] ; then
|
elif [[ "${vm}" == "s-dns-ext" ]] ; then
|
||||||
create_if "${vm}" "n-adm" "n-dmz"
|
create_if "${vm}" "n-adm" "n-dmz"
|
||||||
elif [[ "${vm}" == "s-web-ext" ]] ; then
|
elif [[ "${vm}" == "s-web-ext" ]] ; then
|
||||||
|
@@ -102,6 +102,22 @@ elseif ($args[0] -eq "s-fog") {
|
|||||||
create_if $args[0] "int" 3 "n-user"
|
create_if $args[0] "int" 3 "n-user"
|
||||||
}
|
}
|
||||||
|
|
||||||
|
elseif ($args[0] -eq "s-kea1") {
|
||||||
|
|
||||||
|
create_vm $args[0]
|
||||||
|
create_if $args[0] "int" 1 "n-adm"
|
||||||
|
create_if $args[0] "int" 2 "n-infra"
|
||||||
|
create_if $args[0] "int" 3 "n-user"
|
||||||
|
}
|
||||||
|
|
||||||
|
elseif ($args[0] -eq "s-kea2") {
|
||||||
|
|
||||||
|
create_vm $args[0]
|
||||||
|
create_if $args[0] "int" 1 "n-adm"
|
||||||
|
create_if $args[0] "int" 2 "n-infra"
|
||||||
|
create_if $args[0] "int" 3 "n-user"
|
||||||
|
}
|
||||||
|
|
||||||
elseif ($args[0] -eq "s-agence") {
|
elseif ($args[0] -eq "s-agence") {
|
||||||
|
|
||||||
create_vm $args[0]
|
create_vm $args[0]
|
||||||
|
Reference in New Issue
Block a user