From ca89571a9ff3c545b58e33dd2870015453114658 Mon Sep 17 00:00:00 2001 From: yohan <783b8c87@scimetis.net> Date: Sat, 21 Oct 2023 10:52:38 +0200 Subject: [PATCH] Improve gen_bootstrap.yml. --- gen_bootstrap.yml | 9 ++++++--- 1 file changed, 6 insertions(+), 3 deletions(-) diff --git a/gen_bootstrap.yml b/gen_bootstrap.yml index 7fff1f2..c197fa4 100755 --- a/gen_bootstrap.yml +++ b/gen_bootstrap.yml @@ -23,7 +23,7 @@ - name: Download secrets.tar.gz.enc ansible.builtin.get_url: url: "https://{{ CLOUD_SERVER }}/s/{{ KEY }}/download?path=%2F&files=secrets.tar.gz.enc" - dest: /root/secrets.tar.gz.enc + dest: /mnt/volumes/tmp_duplicity_workdir/data/secrets.tar.gz.enc - name: Install openssh-client ansible.builtin.package: @@ -37,11 +37,14 @@ mode: '0700' - name: Extract from secrets.tar.gz.enc - shell: "openssl enc -aes-256-cbc -md md5 -pass env:SECRETS_ARCHIVE_PASSPHRASE -d -in /root/secrets.tar.gz.enc | tar -zxv -C /root/" + shell: "openssl enc -aes-256-cbc -md md5 -pass env:SECRETS_ARCHIVE_PASSPHRASE -d -in /root/secrets.tar.gz.enc | tar -zxv -C /mnt/volumes/tmp_duplicity_workdir/data" - name: Change SSH private key permissions ansible.builtin.file: path: /root/.ssh/id_rsa mode: '0400' - + - name: Retrieve documentation + ansible.builtin.get_url: + url: "https://{{ CLOUD_SERVER }}/s/{{ DOC_KEY }}/download" + dest: /mnt/volumes/tmp_duplicity_workdir/data/Documentation.md