Files
@ 814be5def61d
Branch filter:
Location: majic-ansible-roles/roles/common/handlers/main.yml - annotation
814be5def61d
1002 B
text/x-yaml
MAR-189: Added support for Debian 11 Bullseye to xmpp_server role:
- Roll-out LDAP client configuration since Bullseye does not come with
a stock one at /etc/ldap/ldap.conf that sets the trust anchor
correctly for validating LDAP server certificates.
- Drop the backports pinning in case of Bullseye (for now let's try to
keep the Buster and Bullseye at same versions for simplicity).
- Drop installation of Python apt bindings (no longer used).
- Tests for Buster and Bullseye need to be split-up a bit due to some
differences around backports etc.
- Roll-out LDAP client configuration since Bullseye does not come with
a stock one at /etc/ldap/ldap.conf that sets the trust anchor
correctly for validating LDAP server certificates.
- Drop the backports pinning in case of Bullseye (for now let's try to
keep the Buster and Bullseye at same versions for simplicity).
- Drop installation of Python apt bindings (no longer used).
- Tests for Buster and Bullseye need to be split-up a bit due to some
differences around backports etc.
626eadba53b7 626eadba53b7 605cdbaf9717 945973223a21 945973223a21 945973223a21 945973223a21 605cdbaf9717 626eadba53b7 626eadba53b7 2d0a09dc0e00 2d0a09dc0e00 2d0a09dc0e00 76ed37089b33 605cdbaf9717 945973223a21 945973223a21 945973223a21 945973223a21 605cdbaf9717 6d38fef46832 941f4f372672 2d0a09dc0e00 2d0a09dc0e00 2d0a09dc0e00 467a66f3ec65 467a66f3ec65 3a02e5b774b2 3a02e5b774b2 5bc6b7fb4cb5 5bc6b7fb4cb5 5bc6b7fb4cb5 5bc6b7fb4cb5 5bc6b7fb4cb5 c254c806349c | ---
- name: Update PAM configuration # noqa 301
# [301] Commands should not change things if nothing needs doing
# This task is invoked only if user is very specific about requiring to
# run the handlers manually as a way to bring the system to consistency
# after interrupted runs.
command: "/usr/sbin/pam-auth-update --package"
- name: Restart SSH
service:
name: ssh
state: restarted
- name: Update CA certificate cache # noqa 301
# [301] Commands should not change things if nothing needs doing
# This task is invoked only if user is very specific about requiring to
# run the handlers manually as a way to bring the system to consistency
# after interrupted runs.
command: "/usr/sbin/update-ca-certificates --fresh"
- name: Restart ferm
service:
name: ferm
state: restarted
- name: Reload systemd
systemd:
daemon_reload: true
- name: Restart NTP server
service:
name: ntp
state: restarted
when: ntp_servers | length > 0
|