Changeset - c57216d35a63
[Not reviewed]
0 1 0
x - 21 months ago 2023-08-22 14:17:24
xbr@c3l.lu
feat: initial_gw_setup, copy fastd peers
1 file changed with 10 insertions and 1 deletions:
0 comments (0 inline, 0 general)
gateway/initial_gw_setup.yml
Show inline comments
 
@@ -118,50 +118,59 @@
 
        src: "{{ server_config_dir }}/dnsmasq/fflux.j2"
 
        dest: /etc/dnsmasq.d/fflux
 
        owner: root
 
        group: root
 
        mode: "0644"
 

	
 
    # fastd
 
    - name: Create the fflux dir inside of fastd
 
      ansible.builtin.file:
 
        path: /etc/fastd/fflux
 
        state: directory
 
        mode: "0755"
 
    - name: Setup fastd (fflux) config w/ MAC address
 
      ansible.builtin.template:
 
        src: "{{ server_config_dir }}/fastd/fastd.conf.j2"
 
        dest: /etc/fastd/fflux/fastd.conf
 
        owner: root
 
        group: root
 
        mode: "0644"
 
    - name: Create peers-gw directory in fastd/fflux
 
      ansible.builtin.file:
 
        path: /etc/fastd/fflux/peers-gw
 
        state: directory
 
        mode: "0755"
 
    # TODO: copy peers
 
    - name: List all peers but ourselves
 
      ansible.builtin.find:
 
        path: "{{ server_config_dir }}/fastd/peers-gw/"
 
        excludes: "{{ inventory_hostname }}"
 
      delegate_to: localhost
 
      register: peers_to_copy
 
    - name: Copy fastd peers
 
      ansible.builtin.copy:
 
        src: "{{ item.path }}"
 
        dest: /etc/fastd/fflux/peers-gw/
 
      with_items: "{{ peers_to_copy.files }}"
 
    - name: Copy fastd blacklist script
 
      ansible.builtin.copy:
 
        src: "{{ server_scripts_dir }}/fastd-blacklist.sh"
 
        dest: /etc/fastd/fflux/fastd-blacklist.sh
 
        owner: root
 
        group: root
 
        mode: "0755"
 
    - name: Set fastd to autostart all
 
      ansible.builtin.copy:
 
        src: "{{ server_config_dir }}/fastd/fastd"
 
        dest: /etc/default/fastd
 
        owner: root
 
        group: root
 
        mode: "0644"
 
    - name: Start fastd
 
      ansible.builtin.service:
 
        name: "fastd"
 
        state: "started"
 
        enabled: "true"
 

	
 

	
 
    # OpenVPN
 
    - name: Remove client directory
 
      ansible.builtin.file:
0 comments (0 inline, 0 general)