|
|
@ -10,7 +10,11 @@ KEYSIZE="{{ letsencrypt_key_size | default('4096') }}" |
|
|
|
HOOK=/usr/{{ (ansible_os_family == 'Debian') | ternary('local/','') }}bin/dehydrated_hooks |
|
|
|
HOOK=/usr/{{ (ansible_os_family == 'Debian') | ternary('local/','') }}bin/dehydrated_hooks |
|
|
|
RENEW_DAYS="{{ letsencrypt_renew_days | default('30') }}" |
|
|
|
RENEW_DAYS="{{ letsencrypt_renew_days | default('30') }}" |
|
|
|
PRIVATE_KEY_RENEW="yes" |
|
|
|
PRIVATE_KEY_RENEW="yes" |
|
|
|
|
|
|
|
{% if letsencrypt_preferred_chain is not defined %} |
|
|
|
PREFERRED_CHAIN="{{ letsencrypt_openssl_version.stdout is version('1.1', '>=') | ternary('ISRG Root X1','issuer= /C=US/O=Internet Security Research Group/CN=ISRG Root X1') }}" |
|
|
|
PREFERRED_CHAIN="{{ letsencrypt_openssl_version.stdout is version('1.1', '>=') | ternary('ISRG Root X1','issuer= /C=US/O=Internet Security Research Group/CN=ISRG Root X1') }}" |
|
|
|
|
|
|
|
{% elif letsencrypt_preferred_chain != 'default' %} |
|
|
|
|
|
|
|
PREFERRED_CHAIN={{ letsencrypt_preferred_chain | quote }} |
|
|
|
|
|
|
|
{% endif %} |
|
|
|
{% if letsencrypt_key_algo | default('rsa') in ['rsa', 'prime256v1', 'secp384r1' ] %} |
|
|
|
{% if letsencrypt_key_algo | default('rsa') in ['rsa', 'prime256v1', 'secp384r1' ] %} |
|
|
|
KEY_ALGO={{ letsencrypt_key_algo | default('rsa') }} |
|
|
|
KEY_ALGO={{ letsencrypt_key_algo | default('rsa') }} |
|
|
|
{% endif %} |
|
|
|
{% endif %} |
|
|
|