|
|
@ -45,16 +45,15 @@ runcmd: |
|
|
# Fix file permissions |
|
|
# Fix file permissions |
|
|
- [ "chown", "-R", "nicolas:nicolas", "/home/nicolas" ] |
|
|
- [ "chown", "-R", "nicolas:nicolas", "/home/nicolas" ] |
|
|
# Configure HAProxy |
|
|
# Configure HAProxy |
|
|
- [ "systemctl", "enable", "firewalld" ] |
|
|
|
|
|
- [ "systemctl", "start", "firewalld" ] |
|
|
|
|
|
- [ "setsebool", "-P", "haproxy_connect_any=1" ] |
|
|
- [ "setsebool", "-P", "haproxy_connect_any=1" ] |
|
|
- [ "systemctl", "enable", "haproxy" ] |
|
|
- [ "systemctl", "enable", "haproxy" ] |
|
|
- [ "systemctl", "restart", "haproxy" ] |
|
|
- [ "systemctl", "restart", "haproxy" ] |
|
|
- [ "firewall-cmd", "--add-service=http", "--permanent" ] |
|
|
- [ "firewall-offline-cmd", "--add-service=http" ] |
|
|
- [ "firewall-cmd", "--add-service=https", "--permanent" ] |
|
|
- [ "firewall-offline-cmd", "--add-service=https" ] |
|
|
- [ "firewall-cmd", "--add-port=6443/tcp", "--permanent" ] |
|
|
- [ "firewall-offline-cmd", "--add-port=6443/tcp" ] |
|
|
- [ "firewall-cmd", "--add-port=22623/tcp", "--permanent" ] |
|
|
- [ "firewall-offline-cmd", "--add-port=22623/tcp" ] |
|
|
- [ "firewall-cmd", "--reload" ] |
|
|
- [ "systemctl", "enable", "firewalld" ] |
|
|
|
|
|
- [ "systemctl", "start", "firewalld" ] |
|
|
|
|
|
|
|
|
write_files: |
|
|
write_files: |
|
|
- path: /root/.bashrc |
|
|
- path: /root/.bashrc |
|
|
|