]> Frank Brehm's Git Trees - pixelpark/hiera.git/commitdiff
spk-blog wordpress + apache_php
authorAndreas Gerstenberg <gerstenberg@pixelpark.com>
Tue, 20 Feb 2018 15:18:57 +0000 (16:18 +0100)
committerAndreas Gerstenberg <gerstenberg@pixelpark.com>
Tue, 20 Feb 2018 15:18:57 +0000 (16:18 +0100)
customer/spk-blog/dev-sparkasseblog01.sparkasse.local.yaml

index 63072ff9d116d2a6bd26811ff58255796ec793b8..41049e6d9a521266cfe31ffc204be3898bf334bf 100644 (file)
@@ -23,6 +23,7 @@ sudo::configs:
 
 infra::additional_classes:
   - infra::profile::wordpress
+  - infra::profile::apache_php
   - apache::mod::headers
   - infra::profile::cron
 
@@ -91,6 +92,7 @@ infra::profile::wordpress::projects:
     setenvif:
       - "HTTPS on HTTPS=on"
 
+infra::profile::apache::pp_vhosts:
   insideforum:
     docroot: /var/www/sparkasseblog
     servername: dev-insideforum.sparkasseblog.de
@@ -101,18 +103,10 @@ infra::profile::wordpress::projects:
     ssl_cert: '/etc/pki/tls/certs/sparkasseblog.de-cert.pem'
     ssl_key: '/etc/pki/tls/private/sparkasseblog.de-key.pem'
     ssl_chain: '/etc/pki/tls/certs/sparkasseblog.de-cert.pem'
-        custom_fragment: |
-          # Webclient Cert Config
-          SSLVerifyClient require
-          SSLCACertificateFile    "/etc/pki/tls/certs/spk-root-ca.pem"
-          SSLCARevocationFile     "/etc/pki/tls/certs/spk-cacrl.pem"
-          SSLCARevocationCheck    "chain"
-          SSLVerifyClient         optional
-          SSLVerifyDepth          2
-#    ssl_verify_client: optional
-#    ssl_crl: '/etc/pki/tls/certs/spk-cacrl.pem'
-#    ssl_ca: '/etc/pki/tls/certs/spk-root-ca.pem'
-#    ssl_verify_depth: '2'
+    ssl_verify_client: optional
+    ssl_crl: '/etc/pki/tls/certs/spk-cacrl.pem'
+    ssl_ca: '/etc/pki/tls/certs/spk-root-ca.pem'
+    ssl_verify_depth: '2'
     directories:
       - location1:
         provider: location