1
0
mirror of https://github.com/geerlingguy/ansible-for-devops.git synced 2024-05-19 06:50:03 +00:00
Files
geerlingguy-ansible-for-devops/https-self-signed/provisioning/tasks/self-signed-cert.yml
2017-12-23 00:13:53 -06:00

23 lines
817 B
YAML

---
- name: Ensure directory exists for local self-signed TLS certs.
file:
path: "{{ certificate_dir }}/{{ server_hostname }}"
state: directory
- name: Generate an OpenSSL private key.
openssl_privatekey:
path: "{{ certificate_dir }}/{{ server_hostname }}/privkey.pem"
- name: Generate an OpenSSL CSR.
openssl_csr:
path: "/etc/ssl/private/{{ server_hostname }}.csr"
privatekey_path: "{{ certificate_dir }}/{{ server_hostname }}/privkey.pem"
common_name: "{{ server_hostname }}"
- name: Generate a Self Signed OpenSSL certificate.
openssl_certificate:
path: "{{ certificate_dir }}/{{ server_hostname }}/fullchain.pem"
privatekey_path: "{{ certificate_dir }}/{{ server_hostname }}/privkey.pem"
csr_path: /etc/ssl/private/{{ server_hostname }}.csr
provider: selfsigned