1
1
Fork 0
mirror of https://gitlab.archlinux.org/archlinux/infrastructure.git synced 2024-05-04 03:06:03 +02:00

Remove the three dashes from all YAML documents

These are used to signal the start of the document in a stream of many
documents. As Ansible only supports one YAML document per file this is
unnecessary. About a third of our YAML documents already lacked these.
This commit is contained in:
Evangelos Foutras 2022-06-08 13:52:25 +03:00
parent 8abd2cf1fe
commit a9e0790f53
No known key found for this signature in database
GPG Key ID: 51E8B148A9999C34
234 changed files with 0 additions and 353 deletions

View File

@ -1,5 +1,3 @@
---
arch_groups:
- dev
- tu

View File

@ -1,5 +1,3 @@
---
# deploy tag 'sudo' when this changes
sudo_users:
- root

View File

@ -1,2 +1 @@
---
enable_zram_swap: true

View File

@ -1,3 +1,2 @@
---
certbot_dns_support: true
geo_mirror_domain: "geo.mirror.pkgbuild.com"

View File

@ -1,4 +1,3 @@
---
enable_zram_swap: true
configure_network: true
dhcp: true

View File

@ -1,2 +1 @@
---
configure_network: true

View File

@ -1,2 +1 @@
---
configure_network: true

View File

@ -1,4 +1,3 @@
---
archweb_db_host: "{{ hostvars['archlinux.org']['wireguard_address'] }}"
# raise tcp window limits to 32MiB

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
wireguard_address: 10.0.0.16
wireguard_public_key: 8CbVXc2+FllLpZb/sv/csHzqaOOsasJlV0gmkIzhBXo=

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
fetchmail_user: "donate@archlinux.org"
fetchmail_delivery_cmd: "/usr/local/bin/donor_import_wrapper.sh"

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
memcached_socket: "/run/memcached/aurweb.sock"
wireguard_address: 10.0.0.2

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
wireguard_address: 10.0.0.17
wireguard_public_key: i65GF9BaoTDvTXLJBpZWbuu2jV3F2mc0tH16Y6cQY1g=

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
wireguard_address: 10.0.0.19
wireguard_public_key: Y5sWHwa/Hy6A7ga6lOU8uD/i/ZHZEBlkw2EW/CFE4ys=

View File

@ -1,4 +1,3 @@
---
hostname: "build.archlinux.org"
network_interface: "enp195s0"
ipv4_address: "135.181.138.48"

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
ipv4_address: 157.90.255.107
wireguard_address: 10.0.0.33

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
ipv4_address: 168.119.240.111
ipv6_address: 2a01:4f8:c010:74d4::1

View File

@ -1,4 +1,3 @@
---
hostname: "gemini.archlinux.org"
ipv4_address: "49.12.124.107"

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
additional_addresses: ["116.203.6.156/32", "2a01:4f8:c2c:5d2d::2/64"]
wireguard_address: 10.0.0.5

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
wireguard_address: 10.0.0.36
wireguard_public_key: iiwiHp6b9fmepXLNZ0xFMWIhF2u2a8oEpQI1TTDR4zI=

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
wireguard_address: 10.0.0.13
wireguard_public_key: 0MrXhX6fmtetZ1Rnu93+rQ8yWgOmxrwyY/hXSsy98FI=

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
ipv4_address: 95.217.236.249
zram_fraction: 1.0

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
ipv4_address: 65.21.106.94
wireguard_address: 10.0.0.37

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
fail2ban_jails:
sshd: true

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
static_dns: true
wireguard_address: 10.0.0.15

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
wireguard_address: 10.0.0.31
wireguard_public_key: eCIzf+ckdWPvJYjNaxdlLRH9kq9mfJZswA8KwCmtJgQ=

View File

@ -1,4 +1,3 @@
---
mirror_domain: mirror.pkgbuild.com
mirror_debug_packages: false
archweb_mirrorcheck_locations: [20, 21]

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
ipv4_address: 95.217.220.31
wireguard_address: 10.0.0.4

View File

@ -1,4 +1,3 @@
---
hostname: "archlinux-packer"
dhcp: true

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
memcached_socket: "/run/memcached/patchwork.sock"
fetchmail_user: "patchwork@archlinux.org"

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
arch_users:
demize:

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
wireguard_address: 10.0.0.10
wireguard_public_key: 4SFiwJRHbGSDtEypEDhS6ar2jmwfBwthPSGHZ8XShXY=

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
wireguard_address: 10.0.0.25
wireguard_public_key: n11Ps2sc0Cxsi1sLaYFq7dkhlDtTnOZCGovRYbzDGR8=

View File

@ -1,4 +1,3 @@
---
hostname: "repro1.pkgbuild.com"
ipv4_address: "147.75.81.79"

View File

@ -1,5 +1,3 @@
---
filesystem: btrfs
wireguard_address: 10.0.0.6
wireguard_public_key: F2X4lMxdET35mceNtRVqSxVVbwEUVey5IjveG0yHJ0Q=

View File

@ -1,4 +1,3 @@
---
hostname: "runner2.archlinux.org"
ipv4_address: "147.75.80.217"

View File

@ -1,4 +1,3 @@
---
hostname: "secure-runner1.archlinux.org"
ipv4_address: "116.202.134.150"

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
fail2ban_jails:

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
wireguard_address: 10.0.0.11
wireguard_public_key: cRNS30527OCEgijC7FHrtdXxdNnwWsXP8F1QAoKgAFQ=

View File

@ -1,4 +1,3 @@
---
filesystem: btrfs
memcached_socket: "/run/memcached/archwiki.sock"

View File

@ -1,5 +1,3 @@
---
arch_groups:
- dev
- tu

View File

@ -1,5 +1,3 @@
---
- name: setup Keycloak server
hosts: accounts.archlinux.org
remote_user: root

View File

@ -1,5 +1,3 @@
---
- name: basic setup for all hosts
hosts: all
remote_user: root

View File

@ -1,4 +1,3 @@
---
- name: common playbook for archive-mirrors
hosts: archive_mirrors
remote_user: root

View File

@ -1,5 +1,3 @@
---
- name: "prepare postgres ssl hosts list"
hosts: archlinux.org
tasks:

View File

@ -1,5 +1,3 @@
---
- name: setup aur.archlinux.org
hosts: aur.archlinux.org
remote_user: root

View File

@ -1,5 +1,3 @@
---
- name: setup bbs.archlinux.org
hosts: bbs.archlinux.org
remote_user: root

View File

@ -1,5 +1,3 @@
---
- name: setup bugs.archlinux.org
hosts: bugs.archlinux.org
remote_user: root

View File

@ -1,5 +1,3 @@
---
- name: setup build.archlinux.org
hosts: build.archlinux.org
remote_user: root

View File

@ -1,4 +1,3 @@
---
- name: setup debuginfod.archlinux.org
hosts: debuginfod.archlinux.org
remote_user: root

View File

@ -1,5 +1,3 @@
---
- name: setup gemini.archlinux.org
hosts: gemini.archlinux.org
remote_user: root

View File

@ -1,4 +1,3 @@
---
- name: setup gitlab-runners
hosts: gitlab_runners
remote_user: root

View File

@ -1,5 +1,3 @@
---
- name: setup gitlab server
hosts: gitlab.archlinux.org
remote_user: root

View File

@ -1,5 +1,3 @@
---
- name: setup gluebuddy.archlinux.org
hosts: gluebuddy.archlinux.org
remote_user: root

View File

@ -1,5 +1,3 @@
---
- name: setup Hetzner storagebox account
hosts: localhost
gather_facts: false

View File

@ -1,5 +1,3 @@
---
- name: setup homedir.archlinux.org
hosts: homedir.archlinux.org
remote_user: root

View File

@ -1,5 +1,3 @@
---
- name: setup man.archlinux.org
hosts: man.archlinux.org
remote_user: root

View File

@ -1,5 +1,3 @@
---
- name: setup matrix
hosts: matrix.archlinux.org
remote_user: root

View File

@ -1,5 +1,3 @@
---
- name: setup hedgedoc server
hosts: md.archlinux.org
remote_user: root

View File

@ -1,4 +1,3 @@
---
- name: common playbook for mirrors
hosts: mirrors
remote_user: root

View File

@ -1,5 +1,3 @@
---
- name: setup patchwork.archlinux.org
hosts: patchwork.archlinux.org
remote_user: root

View File

@ -1,5 +1,3 @@
---
- name: setup phrik bot server
hosts: phrik.archlinux.org
remote_user: root

View File

@ -1,5 +1,3 @@
---
- name: setup quassel server
hosts: quassel.archlinux.org
remote_user: root

View File

@ -1,5 +1,3 @@
---
- name: common playbook for rebuilderd_workers
hosts: rebuilderd_workers
remote_user: root

View File

@ -1,5 +1,3 @@
---
- name: setup reproducible builds rebuilder
hosts: reproducible.archlinux.org
remote_user: root

View File

@ -1,5 +1,3 @@
---
- name: setup rsync.net account
hosts: localhost
gather_facts: false

View File

@ -1,5 +1,3 @@
---
- name: setup security.archlinux.org
hosts: security.archlinux.org
remote_user: root

View File

@ -1,5 +1,3 @@
---
- name: setup state.archlinux.org (terraform state store)
hosts: state.archlinux.org
remote_user: root

View File

@ -1,5 +1,3 @@
---
- name: prepare local storage directory
hosts: localhost
tasks:

View File

@ -1,5 +1,3 @@
---
- name: check if moreutils is installed
pacman: name=moreutils state=present

View File

@ -1,5 +1,3 @@
---
- name: ensure latest keyring
pacman:
name: archlinux-keyring

View File

@ -1,5 +1,3 @@
---
# This script is for provisioning a server for first boot.
# Care: It is not idempotent by design.

View File

@ -1,5 +1,3 @@
---
- name: Update pacman website
hosts: localhost
vars:

View File

@ -1,5 +1,3 @@
---
- name: reencrypt vault default key
hosts: localhost
tasks:

View File

@ -1,5 +1,3 @@
---
- name: reencrypt vault super key
hosts: localhost
tasks:

View File

@ -1,5 +1,3 @@
---
- name: fetch ssh hostkeys
hosts: all
gather_facts: false

View File

@ -1,5 +1,3 @@
---
- name: upgrade and reboot all hetzner servers
hosts: all,!kape_servers,!packet_net
max_fail_percentage: 0

View File

@ -1,5 +1,3 @@
---
- name: setup wiki.archlinux.org
hosts: wiki.archlinux.org
remote_user: root

View File

@ -1,3 +1,2 @@
---
- name: restart powerdns
service: name=pdns state=restarted

View File

@ -1,4 +1,3 @@
---
- name: install powerdns
pacman: name=powerdns state=present

View File

@ -1,4 +1,2 @@
---
- name: reload alertmanager
service: name=alertmanager state=reloaded

View File

@ -1,5 +1,3 @@
---
- name: install alertmanager server
pacman: name=alertmanager state=present

View File

@ -1,4 +1,3 @@
---
- name: install arch-boxes-sync.sh script dependencies
pacman: name=curl,jq,unzip state=present

View File

@ -1,2 +1 @@
---
archbuild_fs: tmpfs

View File

@ -1,5 +1,3 @@
---
- name: daemon reload
systemd:
daemon-reload: true

View File

@ -1,5 +1,3 @@
---
- name: install archbuild
pacman:
name:

View File

@ -1,5 +1,3 @@
---
archive_user_name: 'archive'
archive_user_home: '/home/archive'
archive_repo: '{{ archive_user_home }}/archive-uploader'

View File

@ -1,5 +1,3 @@
---
- name: install archivetools package
pacman: name=archivetools state=present

View File

@ -1,3 +1 @@
---
archive_dir: '/srv/archive'

View File

@ -1,5 +1,3 @@
---
- name: create ssl cert
include_role:
name: certificate

View File

@ -1,4 +1,3 @@
---
archmanweb_dir: '/srv/http/archmanweb'
archmanweb_cache_dir: '{{ archmanweb_dir }}/cache'
archmanweb_domain: 'man.archlinux.org'

View File

@ -1,4 +1,3 @@
---
- name: create ssl cert
include_role:
name: certificate

View File

@ -1,5 +1,3 @@
---
- name: create Arch Linux-specific groups
group: name="{{ item }}" state=present system=no
with_items: "{{ arch_groups }}"

View File

@ -1,4 +1,3 @@
---
archweb_dir: '/srv/http/archweb'
archweb_domain: 'archlinux.org'
archweb_alternate_domains: ['www.archlinux.org', 'master-key.archlinux.org', 'dev.archlinux.org', 'packages.archlinux.org', 'ipxe.archlinux.org', 'planet.archlinux.org']

View File

@ -1,5 +1,3 @@
---
- name: daemon reload
systemd:
daemon-reload: true

View File

@ -1,4 +1,3 @@
---
- name: run maintenance mode
include_role:
name: maintenance

View File

@ -1,4 +1,3 @@
---
archwiki_dir: '/srv/http/archwiki'
archwiki_domain: 'wiki.archlinux.org'
archwiki_nginx_conf: '/etc/nginx/nginx.d/archwiki.conf'

View File

@ -1,5 +1,3 @@
---
- name: restart php-fpm@archwiki
service: name=php-fpm@{{ archwiki_user }} state=restarted

View File

@ -1,3 +1,2 @@
---
dependencies:
- role: nginx

View File

@ -1,4 +1,3 @@
---
- name: run maintenance mode
include_role:
name: maintenance

View File

@ -1,4 +1,3 @@
---
aurweb_asgi_bind: '127.0.0.1:8000'
aurweb_domain: 'aur.archlinux.org'

Some files were not shown because too many files have changed in this diff Show More