diff --git a/host_vars/web01.l3d.space/vars.yml b/host_vars/web01.l3d.space/vars.yml index 3812c8e..a9fa469 100644 --- a/host_vars/web01.l3d.space/vars.yml +++ b/host_vars/web01.l3d.space/vars.yml @@ -36,6 +36,13 @@ local_users: - l3d@derpy.l3d.yt - l3d@backup-rsa.l3d.yt - l3d@bsns.l3d + winkekatze: + - l3d@pinkie.l3d.yt + - l3d@mobile.l3d.yt + - l3d@backup.l3d.yt + - l3d@derpy.l3d.yt + - l3d@backup-rsa.l3d.yt + - l3d@bsns.l3d sshd__allowed_users: - "root" @@ -47,6 +54,7 @@ sshd__allowed_users: - "files" - "preview" - 'see' + - 'winkekatze' sshd__allowed_groups: - "root" @@ -58,6 +66,7 @@ sshd__allowed_groups: - "files" - "preview" - 'see' + - 'winkekatze' local_accounts: - 'l3d' @@ -66,6 +75,7 @@ local_accounts: - 'files' - 'preview' - 'see' + - 'winkekatze' acme_domain_unwant_list: [] @@ -136,6 +146,10 @@ nginx_sites: - name: 'www.xn--see-br-0xa.se' - name: 'thelaend.xn--see-br-0xa.se' - name: 'www.thelaend.xn--see-br-0xa.se' + - name: 'winkekatze.tv' + webroot: + user: 'winkekatze' + - name: 'www.winkekatze.tv' acme_notification_email: "{{ _acme_notification_email }}" diff --git a/templates/files/nginx/sites/winkekatze.tv_tls.conf b/templates/files/nginx/sites/winkekatze.tv_tls.conf new file mode 100644 index 0000000..c92b41b --- /dev/null +++ b/templates/files/nginx/sites/winkekatze.tv_tls.conf @@ -0,0 +1,17 @@ +server { + listen 443 ssl http2; + listen [::]:443 ssl http2; + + server_name winkekatze.tv; + + include snippets/tls_parameters_{{ site.name }}.snippet.conf; + include snippets/tls_certificate_{{ site.name }}.snippet.conf; + include snippets/logging_{{ site.name }}.snippet.conf; + + root /srv/www/winkekatze.tv; + + location / { + charset utf-8; + try_files $uri $uri/ =404; + } +} diff --git a/templates/files/nginx/sites/www.winkekatze.tv_tls.conf b/templates/files/nginx/sites/www.winkekatze.tv_tls.conf new file mode 100644 index 0000000..7ca6af8 --- /dev/null +++ b/templates/files/nginx/sites/www.winkekatze.tv_tls.conf @@ -0,0 +1,14 @@ +server { + listen 443 ssl http2; + listen [::]:443 ssl http2; + + server_name www.winkekatze.tv; + + include snippets/tls_parameters_{{ site.name }}.snippet.conf; + include snippets/tls_certificate_{{ site.name }}.snippet.conf; + include snippets/logging_{{ site.name }}.snippet.conf; + + location / { + return 308 https://winkekatze.tv$request_uri; + } +}