This commit is contained in:
Michael Grote 2024-01-25 20:12:48 +01:00
parent 41e7e7371c
commit 2a2c20478e
3 changed files with 3 additions and 48 deletions

View file

@ -76,7 +76,9 @@ compose_files:
network: traefik
- name: statping-ng
state: present
- name: gitea-act-runner
state: present
### oefenweb.ufw
ufw_rules:
- rule: allow

View file

@ -1,45 +0,0 @@
---
### mrlesmithjr.ansible-manage-lvm
lvm_groups:
- vgname: vg_docker
disks:
- /dev/disk/by-id/scsi-0QEMU_QEMU_HARDDISK_drive-scsi1
create: true
lvnames:
- lvname: docker
size: +100%FREE
create: true
filesystem: xfs
mount: true
mntp: /var/lib/docker
manage_lvm: true
pvresize_to_max: true
### mgrote_restic
restic_folders_to_backup: "/ /var/lib/docker" # --one-file-system ist gesetzt, also werden weitere Dateisysteme nicht eingeschlossen, es sei denn sie werden hier explizit angegeben
### mgrote_docker-compose-inline
compose_owner: "docker-user"
compose_group: "docker-user"
compose_file_permissions: "644"
compose_dir_permissions: "755"
compose_dest_basedir: "/docker"
compose_src_basedir: "{{ inventory_dir }}/docker-compose"
compose_files:
- name: gitea-act-runner
state: present
### oefenweb.ufw
ufw_rules:
- rule: allow
to_port: 22
protocol: tcp
comment: 'ssh'
from_ip: 0.0.0.0/0
# docker network inspect $(docker network ls -q)|grep -E "IPv(4|6)A" | grep -v \"\" | sort -h
- rule: allow
from_ip: 192.168.0.0/16
comment: 'docker networks'
- rule: allow
from_ip: 172.0.0.0/8
comment: 'docker networks'

View file

@ -15,7 +15,6 @@ all:
docker:
hosts:
docker10.mgrote.net:
docker11.mgrote.net:
vmtest:
hosts:
vm-test-2204.mgrote.net:
@ -44,7 +43,6 @@ all:
pve5.mgrote.net:
gitea.mgrote.net:
docker10.mgrote.net:
docker11.mgrote.net:
pbs.mgrote.net:
blocky.mgrote.net:
test: