fix renewal
This commit is contained in:
parent
cee3332a3c
commit
0bfb4a99cd
@ -84,11 +84,8 @@
|
|||||||
- name: reload nginx to activate sites
|
- name: reload nginx to activate sites
|
||||||
service: name=nginx state=restarted
|
service: name=nginx state=restarted
|
||||||
|
|
||||||
- name: add daily letsencrypt cronjob for cert renewal based on hash of domain name to prevent hitting LE rate limits
|
- name: add daily renewal
|
||||||
cron:
|
cron:
|
||||||
name: "letsencrypt_renewal_{{ item.stdout }}"
|
name: "letsencrypt_renewal"
|
||||||
minute: "0"
|
special_time: "daily"
|
||||||
hour: "5,17"
|
job: "REQUESTS_CA_BUNDLE=/usr/local/share/ca-certificates/{{ step_bootstrap_ca_url }}.crt letsencrypt renew --force-renewal"
|
||||||
job: "REQUESTS_CA_BUNDLE=/usr/local/share/ca-certificates/{{ step_bootstrap_ca_url }}.crt letsencrypt renew --server https://{{ step_bootstrap_ca_url }}:{{ step_ca_port }}/acme/ACME/directory --cert-name {{ item.stdout }} -n --webroot -w /var/www/letsencrypt --agree-tos --email {{ step_acme_cert_contact }} && service nginx reload"
|
|
||||||
loop: "{{ extracted_domains.results }}"
|
|
||||||
when: item.stdout != ""
|
|
||||||
|
Loading…
Reference in New Issue
Block a user