]> Frank Brehm's Git Trees - pixelpark/hiera.git/commitdiff
init setup web01-deutsche-wohnen-com
authorSascha Strassheim <sascha.strassheim@pixelpark.com>
Mon, 23 Oct 2017 13:56:48 +0000 (15:56 +0200)
committerSascha Strassheim <sascha.strassheim@pixelpark.com>
Mon, 23 Oct 2017 13:56:48 +0000 (15:56 +0200)
customer/deuwo/web01-deutsche-wohnen-com.pixelpark.net.yaml

index 3b0442d3c925d4f4820fbb228ffd4a4ad755de38..25d65782186811a21497f6a2bc2bdfc27323162f 100644 (file)
@@ -1,2 +1,76 @@
 ---
 infra::role: base
+infra::additional_classes:
+  - infra::profile::typo3
+  - infra::profile::mysql_server
+  - infra::profile::postfix
+
+accounts::users:
+  jenkins:
+    apply: true
+  stephan.vits:
+    apply: true
+    sudo: true
+  thomas.bussmeyer:
+    apply: true
+    sudo: true
+  markus.baumann:
+    apply: true
+    sudo: true
+  christian.schoenherr:
+    apply: true
+    sudo: true
+
+sudo::configs:
+  jenkins_deploy:
+    priority: "06"
+    content: |
+      jenkins ALL=(apache) NOPASSWD: ALL
+
+php::extensions:
+  gd: {}
+  opcache: {}
+  mysqlnd: {}
+  soap: {}
+  mbstring: {}
+  zip: {}
+  xml: {}
+
+mysql::server::root_password: ENC[PKCS7,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]
+mysql::server::backup::backuppassword: ENC[PKCS7,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]
+
+infra::profile::apache::htdigest:
+  server:
+    www: ENC[PKCS7,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]
+
+infra::profile::typo3::projects_composer_monolith:
+  deuwo:
+    db_pass: ENC[PKCS7,MIIBiQYJKoZIhvcNAQcDoIIBejCCAXYCAQAxggEhMIIBHQIBADAFMAACAQEwDQYJKoZIhvcNAQEBBQAEggEAiivPVamdV0XcijfM2iTUv1yFC2/zlbDyGJJXSjHNwFA9rLftTFpdbodQspPnxuoq5HGZv2KSYljMCzPuGlRGBDnurcOvRdwMHeD1HBOR38rbICpBeNzeN8ti/F0oayeth+syWEChWReTrsp0SluTFTCYEUVd/ZReTL/lLdniG3xGJAyrIuWzkRnHTz5AxBqMIGwClqF9bCdg2/Q6Yks78Ww3o9+ION0XXJURH87H6UDyFm6IAR1J7NRqvPirY6tfAEKTo9luBB+AIR8uI17BA+8DjJxEy1PIa3MJDM6ql3pcNcJN68rpxKfVVUuHNsKnXub8mnM2pctS0Fvw9z2OTjBMBgkqhkiG9w0BBwEwHQYJYIZIAWUDBAEqBBAdac3hJfxDzdQ1hGpfDkG9gCCDfZq/2bUTFn2kRKpOUHECcuzvmdMIU1Ui2ZlA+ToVRQ==]
+    db_user: deuwo
+    db_name: deuwo
+    servername: web01-deutsche-wohnen-com.pixelpark.net
+    # Change Cert
+    cert_servername: 'wildcard.pixelpark.net'
+    cert_customer: 'pixelpark'
+    ssl_cert: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
+    ssl_chain: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
+    ssl_key: /etc/pki/tls/private/wildcard.pixelpark.net-key.pem
+    directories:
+      - provider: location
+        path: '/'
+        auth_type: Digest
+        auth_name: server
+        auth_digest_provider: file
+        auth_digest_algorithm: MD5
+        auth_user_file: '/etc/httpd/htdigest'
+        auth_require: 'valid-user'
+        require:
+          - local
+    rewrites:
+      - comment: 'http to https'
+        rewrite_cond:
+          - '%%{ich-trickse}{HTTPS} !=on'
+        rewrite_rule:
+          - '(.*) https://%%{ich-trickse}{HTTP_HOST}%%{ich-trickse}{REQUEST_URI} [R=301,L]'
+    php_admin_value:
+      max_input_vars: '1500'