- Ensure consistent directory and file permissions on StorageBox mounts for improved container access across application and database services. - Introduce application-specific `storagebox_uid`/`gid` variables for more granular ownership control. - Enhance StorageBox mount reliability by adding systemd reload and remount handlers for configuration changes. - Add root credentials to Patroni's etcd configuration for authenticated communication. - Update all relevant documentation and deployment scripts to use the `iklimco` Docker stack name for database services. - Re-encrypt production vault secrets to include the new etcd password.
27 lines
1.1 KiB
YAML
27 lines
1.1 KiB
YAML
storagebox_account: "u469968"
|
|
storagebox_user: "{{ storagebox_account }}-sub5"
|
|
storagebox_url: "https://{{ storagebox_user }}.your-storagebox.de/"
|
|
storagebox_mount_point: "/mnt/storagebox"
|
|
storagebox_password: "{{ vault_storagebox_password }}"
|
|
storagebox_managed_directories:
|
|
- path: "{{ storagebox_mount_point }}/db"
|
|
mode: "0777"
|
|
- path: "{{ storagebox_mount_point }}/ssl"
|
|
mode: "0777"
|
|
- path: "{{ storagebox_mount_point }}/swag/config"
|
|
mode: "0777"
|
|
- path: "{{ storagebox_mount_point }}/swag/site-confs"
|
|
mode: "0777"
|
|
- path: "{{ storagebox_managed_directories_grafana_path | default(storagebox_mount_point ~ '/grafana/data') }}"
|
|
mode: "0777"
|
|
- path: "{{ storagebox_mount_point }}/precipitation/images"
|
|
mode: "0777"
|
|
|
|
iklim_password: "{{ vault_iklim_password }}"
|
|
act_runner_labels: "prod-runner:docker://catthehacker/ubuntu:act-22.04,ubuntu-24.04,{{ inventory_hostname }}"
|
|
swarm_manager_ip: "10.20.10.11"
|
|
mongodb_replset_name: "rs0"
|
|
admin_allowed_cidrs: "78.187.87.109/32 95.70.151.248/32"
|
|
admin_ssh_public_key_path: "~/.ssh/id_rsa.pub"
|
|
timezone: "Europe/Istanbul"
|