fixed bootstrap of chat jail, added rctl limit config stuff

This commit is contained in:
2024-12-15 18:48:41 +01:00
parent 862f2567b1
commit 7b60d8bf8c
10 changed files with 84 additions and 13 deletions

View File

@@ -71,29 +71,37 @@
reload: true
- name: Install doas config
ansible.builtin.copy:
src: roles/server/files/doas.conf
copy:
src: doas.conf
dest: /usr/local/etc/doas.conf
owner: root
group: wheel
mode: '0600'
- name: Install knot resolver config
ansible.builtin.copy:
src: roles/server/files/kresd.conf
copy:
src: kresd.conf
dest: /usr/local/etc/knot-resolver/kresd.conf
owner: root
group: wheel
mode: '0644'
- name: Install knot resolv.conf
ansible.builtin.copy:
src: roles/server/files/resolv.conf
copy:
src: resolv.conf
dest: /etc/resolv.conf
owner: root
group: wheel
mode: '0644'
- name: Install rctl rule set
copy:
src: rctl.conf
dest: /etc/rctl.conf
owner: root
group: wheel
mode: '0644'
- name: Install /etc/hosts file
copy:
src: hosts
@@ -127,3 +135,8 @@
value: "YES"
notify: start kresd
- name: enable rctl
community.general.sysrc:
name: rctl_enable
value: "YES"
notify: start rctl