diff --git a/tasks/cert_generate.yml b/tasks/cert_generate.yml index 2c0821bbc2a00b2ea162b72b775aa1fb2320862e..5934edd6d17d593e3a2ad89a2a8a60beb958559b 100644 --- a/tasks/cert_generate.yml +++ b/tasks/cert_generate.yml @@ -20,12 +20,12 @@ - name: Install New Cert via webroot shell: certbot certonly --expand --non-interactive --config /etc/letsencrypt/{{ cert.domain }}.ini --cert-name {{ cert.domain }} --webroot-path /var/www/html --webroot - ignore_errors: true + ignore_errors: yes when: groups.proxyserver is not defined or inventory_hostname not in groups.proxyserver - name: Install New Cert via HaProxy shell: certbot certonly --expand --non-interactive --config /etc/letsencrypt/{{ cert.domain }}.ini --http-01-port {{ port }} --preferred-challenges http-01 --cert-name {{ cert.domain }} - ignore_errors: true + ignore_errors: yes when: groups.proxyserver is defined and inventory_hostname in groups.proxyserver - name: Close Port @@ -44,7 +44,7 @@ name: '{{ item }}' state: started with_items: '{{ letsencrypt_pause_services|default([]) }}' - ignore_errors: true + ignore_errors: yes tags: - ApacheConfig diff --git a/tasks/install.yml b/tasks/install.yml index 5daea03ad75923c3537dfbc2ecadd164dc80f104..71736136fb87f14ca018542f14dd3b7545062f12 100644 --- a/tasks/install.yml +++ b/tasks/install.yml @@ -27,4 +27,4 @@ - /usr/local/bin/certbot - /usr/bin/certbot ignore_errors: yes - failed_when: false + failed_when: no diff --git a/tasks/main.yml b/tasks/main.yml index 6bca8a37ad399ad8e5f6e90da90e6de16c915030..9e5a7d0df619a35de96919fb3e4efff3e934faab 100644 --- a/tasks/main.yml +++ b/tasks/main.yml @@ -18,8 +18,8 @@ stat: path: /etc/letsencrypt/live register: letsencrypt_certs_available - failed_when: false - changed_when: false + failed_when: no + changed_when: no tags: - renew diff --git a/tasks/renew.yml b/tasks/renew.yml index 538ec6bec3ca83cb6570086b8b51b12c4c1df4dc..77c2c2e552f8115f174e59e23257c18d9fdb7c19 100644 --- a/tasks/renew.yml +++ b/tasks/renew.yml @@ -21,14 +21,14 @@ - name: Renew Existing Certs via webroot shell: certbot renew --non-interactive --webroot-path /var/www/html --webroot - ignore_errors: true + ignore_errors: yes register: renew_result changed_when: "'No renewals were attempted.' not in renew_result.stdout" when: groups.proxyserver is not defined or inventory_hostname not in groups.proxyserver - name: Renew Existing Certs via HaProxy shell: certbot renew --non-interactive --http-01-port {{ port }} --preferred-challenges http-01 - ignore_errors: true + ignore_errors: yes register: renew_result changed_when: "'No renewals were attempted.' not in renew_result.stdout" when: groups.proxyserver is defined and inventory_hostname in groups.proxyserver @@ -55,4 +55,4 @@ name: '{{ item }}' state: started with_items: '{{ letsencrypt_pause_services|default([]) }}' - ignore_errors: true + ignore_errors: yes