Update to 2021-03-03 09:00

master
Daniel Berteaud 3 years ago
parent c6571386d2
commit 3893ee5285
  1. 6
      roles/crowdsec/tasks/conf.yml
  2. 2
      roles/crowdsec/tasks/directories.yml
  3. 1
      roles/crowdsec/templates/config.yaml.j2
  4. 3
      roles/crowdsec/templates/dev.yaml.j2

@ -31,7 +31,7 @@
register: cs_lapi_credentials
delegate_to: "{{ cs_lapi_server }}"
- set_fact: cs_lapi_credentials_yaml={{ cs_lapi_credentials.stdout | from_yaml }}
- copy: content={{ cs_lapi_credentials_yaml.password }} dest=/etc/crowdsec/meta/lapi_pass mode=600
- copy: content={{ cs_lapi_credentials_yaml.password }} dest={{ cs_root_dir }}/meta/lapi_pass mode=600
- set_fact: cs_lapi_pass={{ cs_lapi_credentials_yaml.password }}
tags: cs
@ -44,8 +44,8 @@
command: cscli capi register -o raw -f /dev/stdout
register: cs_capi_credentials
- set_fact: cs_capi_credentials_yaml={{ cs_capi_credentials.stdout | from_yaml }}
- copy: content={{ cs_capi_credentials_yaml.login }} dest=/etc/crowdsec/meta/capi_user mode=600
- copy: content={{ cs_capi_credentials_yaml.password }} dest=/etc/crowdsec/meta/capi_pass mode=600
- copy: content={{ cs_capi_credentials_yaml.login }} dest={{ cs_root_dir }}/meta/capi_user mode=600
- copy: content={{ cs_capi_credentials_yaml.password }} dest={{ cs_root_dir }}/meta/capi_pass mode=600
- set_fact: cs_capi_user={{ cs_capi_credentials_yaml.login }}
- set_fact: cs_capi_pass={{ cs_capi_credentials_yaml.password }}
tags: cs

@ -8,7 +8,7 @@
- dir: "{{ cs_root_dir }}"
- dir: "{{ cs_root_dir }}/meta"
mode: 700
- dir: "{{ cs_root_dir }}/backups"
- dir: "{{ cs_root_dir }}/backup"
mode: 700
- dir: "{{ cs_root_dir }}/data"
- dir: /etc/crowdsec/parsers/s00-raw

@ -34,6 +34,7 @@ db_config:
host: {{ cs_db_server }}
port: {{ cs_db_port }}
{% else %}
type: sqlite
db_path: {{ cs_root_dir }}/data/crowdsec.db
{% endif %}
flush:

@ -21,6 +21,7 @@ cscli:
db_config:
log_level: info
type: sqlite
db_path: {{ cs_root_dir }}/data/dev.db
flush:
max_items: 1000
@ -30,6 +31,8 @@ api:
client:
insecure_skip_verify: false
credentials_path: /etc/crowdsec/local_api_credentials.yaml
server:
profiles_path: /etc/crowdsec/profiles.yaml
prometheus:
enabled: false

Loading…
Cancel
Save