diff --git a/tasks/cert_generate.yml b/tasks/cert_generate.yml index 022890fabe7bf4237683ec147f1673e6bbe6db2b..ba07fa51d450ce5ab4863ee333956fa404f372f6 100644 --- a/tasks/cert_generate.yml +++ b/tasks/cert_generate.yml @@ -22,12 +22,10 @@ - name: Install New Cert via webroot shell: certbot certonly --expand --non-interactive --config /etc/letsencrypt/{{ cert.domain }}.ini --cert-name {{ cert.domain }} --webroot-path /var/www/html --webroot - ignore_errors: yes when: groups.proxyserver is not defined or inventory_hostname not in groups.proxyserver - name: Install New Cert via HaProxy shell: certbot certonly --expand --non-interactive --config /etc/letsencrypt/{{ cert.domain }}.ini --http-01-port {{ port }} --preferred-challenges http-01 --cert-name {{ cert.domain }} - ignore_errors: yes when: groups.proxyserver is defined and inventory_hostname in groups.proxyserver - name: Close Port diff --git a/tasks/renew.yml b/tasks/renew.yml index d1936beb8356ca2cf30f6ccabd5a668c1f0e5186..deb20e6d87b810d2b4d25b16931f7c63e4e3585b 100644 --- a/tasks/renew.yml +++ b/tasks/renew.yml @@ -24,14 +24,12 @@ - name: Renew Existing Certs via webroot shell: certbot renew --non-interactive --webroot-path /var/www/html --webroot - ignore_errors: yes register: renew_result changed_when: '"No renewals were attempted." not in renew_result.stdout' when: groups.proxyserver is not defined or inventory_hostname not in groups.proxyserver - name: Renew Existing Certs via HaProxy shell: certbot renew --non-interactive --http-01-port {{ port }} --preferred-challenges http-01 - ignore_errors: yes register: renew_result changed_when: '"No renewals were attempted." not in renew_result.stdout' when: groups.proxyserver is defined and inventory_hostname in groups.proxyserver