Files @ 814be5def61d
Branch filter:

Location: majic-ansible-roles/roles/common/handlers/main.yml - annotation

branko
MAR-189: Added support for Debian 11 Bullseye to xmpp_server role:

- Roll-out LDAP client configuration since Bullseye does not come with
a stock one at /etc/ldap/ldap.conf that sets the trust anchor
correctly for validating LDAP server certificates.
- Drop the backports pinning in case of Bullseye (for now let's try to
keep the Buster and Bullseye at same versions for simplicity).
- Drop installation of Python apt bindings (no longer used).
- Tests for Buster and Bullseye need to be split-up a bit due to some
differences around backports etc.
---

- name: Update PAM configuration  # noqa 301
  # [301] Commands should not change things if nothing needs doing
  #   This task is invoked only if user is very specific about requiring to
  #   run the handlers manually as a way to bring the system to consistency
  #   after interrupted runs.
  command: "/usr/sbin/pam-auth-update --package"

- name: Restart SSH
  service:
    name: ssh
    state: restarted

- name: Update CA certificate cache  # noqa 301
  # [301] Commands should not change things if nothing needs doing
  #   This task is invoked only if user is very specific about requiring to
  #   run the handlers manually as a way to bring the system to consistency
  #   after interrupted runs.
  command: "/usr/sbin/update-ca-certificates --fresh"

- name: Restart ferm
  service:
    name: ferm
    state: restarted

- name: Reload systemd
  systemd:
    daemon_reload: true

- name: Restart NTP server
  service:
    name: ntp
    state: restarted
  when: ntp_servers | length > 0