|
176 | 176 | data: "{{ lets_encrypt_challenge }}" |
177 | 177 | remaining_days: "{{ ler53_cert_remaining_days_before_renewal }}" |
178 | 178 | chain_dest: "{{ ler53_cert_dir }}/{{ ler53_intermediate_file_name }}" |
| 179 | + fullchain_dest: "{{ ler53_cert_dir }}/{{ ler53_cert_and_intermediate_file_name }}" |
179 | 180 | notify: handle services |
180 | 181 | register: lets_encrypt_validation_result |
181 | 182 |
|
|
205 | 206 | group: "{{ ler53_cert_files_group }}" |
206 | 207 | mode: "{{ ler53_cert_files_mode }}" |
207 | 208 |
|
208 | | -- name: get content of the certificate |
209 | | - command: "cat {{ ler53_cert_dir }}/{{ ler53_cert_file_name }}" |
210 | | - register: ler53_certificate_content |
211 | | - changed_when: false |
212 | | - when: ler53_intermediate_download | bool |
213 | | - |
214 | | -- name: get content of the intermediate CA |
215 | | - command: "cat {{ ler53_cert_dir }}/{{ ler53_intermediate_file_name }}" |
216 | | - register: ler53_intermediate_content |
217 | | - changed_when: false |
218 | | - when: ler53_intermediate_download | bool |
219 | | - |
220 | | -- name: create a file with the certificate and intermediate CA concatenated |
221 | | - copy: |
222 | | - content: "{{ ler53_certificate_content['stdout'] + '\n' + ler53_intermediate_content['stdout'] + '\n' }}" |
223 | | - dest: "{{ ler53_cert_dir }}/{{ ler53_cert_and_intermediate_file_name }}" |
| 209 | +- name: set the intermediate cert file permissions |
| 210 | + file: |
| 211 | + path: "{{ ler53_cert_dir }}/{{ ler53_intermediate_file_name }}" |
| 212 | + owner: "{{ ler53_cert_files_owner }}" |
| 213 | + group: "{{ ler53_cert_files_group }}" |
| 214 | + mode: "{{ ler53_cert_files_mode }}" |
| 215 | + |
| 216 | +- name: set the full cert chain file permissions |
| 217 | + file: |
| 218 | + path: "{{ ler53_cert_dir }}/{{ ler53_cert_and_intermediate_file_name }}" |
224 | 219 | owner: "{{ ler53_cert_files_owner }}" |
225 | 220 | group: "{{ ler53_cert_files_group }}" |
226 | 221 | mode: "{{ ler53_cert_files_mode }}" |
227 | | - when: ler53_intermediate_download | bool |
0 commit comments