2021-07-17 19:57:50 +02:00
---
2022-08-06 11:20:05 +02:00
### mrlesmithjr.ansible-manage-lvm
lvm_groups :
- vgname : vg_docker
disks :
2022-08-08 21:26:56 +02:00
- /dev/disk/by-id/scsi-0QEMU_QEMU_HARDDISK_drive-scsi1
2022-08-06 11:20:05 +02:00
create : true
lvnames :
2022-08-25 22:22:11 +02:00
- lvname : docker
2022-08-06 11:20:05 +02:00
size : +100%FREE
create : true
filesystem : xfs
mount : true
mntp : /var/lib/docker
manage_lvm : true
pvresize_to_max : true
2022-08-25 22:22:11 +02:00
### mgrote.restic
2023-04-20 14:38:30 +02:00
restic_folders_to_backup : "/ /var/lib/docker /mnt/oci-registry" # --one-file-system ist gesetzt, also werden weitere Dateisysteme nicht eingeschlossen, es sei denn sie werden hier explizit angegeben
2022-08-25 22:22:11 +02:00
### mgrote.docker-compose-inline
compose_owner : "docker-user"
compose_group : "docker-user"
compose_file_permissions : "644"
compose_dir_permissions : "755"
compose_dest_basedir : "/docker"
compose_src_basedir : "{{ inventory_dir }}/docker-compose"
compose_files :
2021-07-19 20:18:48 +02:00
- name : homer
2021-07-20 10:14:07 +02:00
state : present
2022-08-25 22:22:11 +02:00
- name : drone
2022-03-06 14:10:30 +01:00
state : present
2022-08-25 22:22:11 +02:00
- name : nextcloud
2022-03-06 14:10:30 +01:00
state : present
2022-08-25 22:22:11 +02:00
network : traefik
2023-04-14 12:20:34 +02:00
- name : httpd
2022-03-06 14:10:30 +01:00
state : present
2022-08-25 22:22:11 +02:00
- name : unifi-controller
2022-01-22 22:28:30 +01:00
state : present
2022-08-25 22:22:11 +02:00
- name : miniflux
2022-07-16 10:54:37 +02:00
state : present
2022-08-25 22:22:11 +02:00
network : traefik
- name : traefik
2022-08-12 22:38:25 +02:00
state : present
2022-08-25 22:22:11 +02:00
network : traefik
- name : navidrome
2022-08-06 11:20:05 +02:00
state : present
2022-08-25 22:22:11 +02:00
network : traefik
2023-03-21 19:00:37 +01:00
- name : watchtower
state : present
2023-08-02 20:38:26 +02:00
- name : routeros-config-export
state : present
2023-04-20 14:38:30 +02:00
- name : registry
state : present
network : traefik
2023-05-12 08:18:45 +02:00
- name : whoami
2023-10-14 22:33:08 +02:00
state : absent
2023-05-12 08:18:45 +02:00
network : traefik
2021-07-20 10:42:30 +02:00
### oefenweb.ufw
2022-08-25 22:22:11 +02:00
ufw_rules :
2021-07-20 10:42:30 +02:00
- rule : allow
to_port : 22
protocol : tcp
comment : 'ssh'
2021-10-06 10:18:23 +02:00
from_ip : 0.0 .0 .0 /0
2022-08-25 22:22:11 +02:00
# docker network inspect $(docker network ls -q)|grep -E "IPv(4|6)A" | grep -v \"\" | sort -h
2022-05-20 11:55:15 +02:00
- rule : allow
2022-08-25 22:22:11 +02:00
from_ip : 192.168 .0 .0 /16
comment : 'docker networks'
- rule : allow
from_ip : 172.0 .0 .0 /8
comment : 'docker networks'