From 3cfa3d557c267b6af7b43a08ecd464e0e720e579 Mon Sep 17 00:00:00 2001 From: Tinyblargon <76069640+Tinyblargon@users.noreply.github.com> Date: Thu, 23 Nov 2023 20:36:05 +0000 Subject: [PATCH] feat: add support for `--server` flag --- defaults/main.yml | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/defaults/main.yml b/defaults/main.yml index 30f5ff9..cc59067 100644 --- a/defaults/main.yml +++ b/defaults/main.yml @@ -15,7 +15,10 @@ certbot_create_if_missing: false certbot_create_method: standalone certbot_admin_email: email@example.com +# Parameters for conneting to a different acme compatible CA. +# Can be overwritten by individual per-cert settings. certbot_env_vars: {} +certbot_server: '' # Default webroot, overwritten by individual per-cert webroot directories certbot_webroot: /var/www/letsencrypt @@ -30,6 +33,7 @@ certbot_certs: [] # - example3.com # env_vars: # REQUESTS_CA_BUNDLE: "/etc/ssl/certs/my_root_ca.pem" +# server: https://ca.example.com/acme/acme/directory certbot_create_command: >- {{ certbot_script }} certonly --{{ certbot_create_method }} @@ -46,6 +50,8 @@ certbot_create_command: >- {{ '--post-hook /etc/letsencrypt/renewal-hooks/post/start_services' if certbot_create_standalone_stop_services and certbot_create_method == 'standalone' else '' }} + {{ ('--server ' + (cert_item.server | default(certbot_server))) + if (cert_item.server | default(certbot_server)) != '' else '' }} certbot_create_standalone_stop_services: - nginx