From 5f25887e6afc3b1402df827d2615dc30e7e0f9e6 Mon Sep 17 00:00:00 2001 From: HgO Date: Sun, 14 Jun 2020 14:21:50 +0200 Subject: [PATCH] add ssl-cert group for mumble-server user --- defaults/main.yml | 2 +- tasks/murmur.yml | 10 ++++++++++ templates/mumble-server.ini.j2 | 2 +- 3 files changed, 12 insertions(+), 2 deletions(-) diff --git a/defaults/main.yml b/defaults/main.yml index df3a52a..266757c 100644 --- a/defaults/main.yml +++ b/defaults/main.yml @@ -20,7 +20,7 @@ murmur_database: # port: 3306 # prefix: "murmur_" murmur_ice: "tcp -h 127.0.0.1 -p 6502" -# murmur_icesecret_read: "somesecret" +# murmur_ice_secret_read: "somesecret" # murmur_ice_secret_write: "anothersecret" murmur_autoban_attempts: 10 murmur_autoban_timeframe: 120 diff --git a/tasks/murmur.yml b/tasks/murmur.yml index b52b5d2..f2f5a9a 100644 --- a/tasks/murmur.yml +++ b/tasks/murmur.yml @@ -4,6 +4,16 @@ state: present register: murmur_installed +- name: Append ssl-cert group to {{ murmur_owner }} user + user: + name: "{{ murmur_owner }}" + state: present + groups: + - "{{ acme_ssl_group }}" + append: yes + system: yes + notify: restart murmur + - name: Copy Murmur config file template: src: mumble-server.ini.j2 diff --git a/templates/mumble-server.ini.j2 b/templates/mumble-server.ini.j2 index a4e1063..2d643ce 100644 --- a/templates/mumble-server.ini.j2 +++ b/templates/mumble-server.ini.j2 @@ -94,7 +94,7 @@ icesecretread={{ murmur_ice_secret_read | to_json }} {% if murmur_ice_secret_write is defined %} icesecretwrite={{ murmur_ice_secret_write | to_json }} {% else %} -icesecretwrite= +;icesecretwrite= {% endif %} ; If you want to expose Murmur's experimental gRPC API, you