commit e2dcb77fffcccfc849b2a91eeeeee2086235e2bf Author: lauralani Date: Tue Jan 16 15:38:30 2024 +0100 initial commit diff --git a/.gitignore b/.gitignore new file mode 100644 index 0000000..6769e21 --- /dev/null +++ b/.gitignore @@ -0,0 +1,160 @@ +# Byte-compiled / optimized / DLL files +__pycache__/ +*.py[cod] +*$py.class + +# C extensions +*.so + +# Distribution / packaging +.Python +build/ +develop-eggs/ +dist/ +downloads/ +eggs/ +.eggs/ +lib/ +lib64/ +parts/ +sdist/ +var/ +wheels/ +share/python-wheels/ +*.egg-info/ +.installed.cfg +*.egg +MANIFEST + +# PyInstaller +# Usually these files are written by a python script from a template +# before PyInstaller builds the exe, so as to inject date/other infos into it. +*.manifest +*.spec + +# Installer logs +pip-log.txt +pip-delete-this-directory.txt + +# Unit test / coverage reports +htmlcov/ +.tox/ +.nox/ +.coverage +.coverage.* +.cache +nosetests.xml +coverage.xml +*.cover +*.py,cover +.hypothesis/ +.pytest_cache/ +cover/ + +# Translations +*.mo +*.pot + +# Django stuff: +*.log +local_settings.py +db.sqlite3 +db.sqlite3-journal + +# Flask stuff: +instance/ +.webassets-cache + +# Scrapy stuff: +.scrapy + +# Sphinx documentation +docs/_build/ + +# PyBuilder +.pybuilder/ +target/ + +# Jupyter Notebook +.ipynb_checkpoints + +# IPython +profile_default/ +ipython_config.py + +# pyenv +# For a library or package, you might want to ignore these files since the code is +# intended to run in multiple environments; otherwise, check them in: +# .python-version + +# pipenv +# According to pypa/pipenv#598, it is recommended to include Pipfile.lock in version control. +# However, in case of collaboration, if having platform-specific dependencies or dependencies +# having no cross-platform support, pipenv may install dependencies that don't work, or not +# install all needed dependencies. +#Pipfile.lock + +# poetry +# Similar to Pipfile.lock, it is generally recommended to include poetry.lock in version control. +# This is especially recommended for binary packages to ensure reproducibility, and is more +# commonly ignored for libraries. +# https://python-poetry.org/docs/basic-usage/#commit-your-poetrylock-file-to-version-control +#poetry.lock + +# pdm +# Similar to Pipfile.lock, it is generally recommended to include pdm.lock in version control. +#pdm.lock +# pdm stores project-wide configurations in .pdm.toml, but it is recommended to not include it +# in version control. +# https://pdm.fming.dev/#use-with-ide +.pdm.toml + +# PEP 582; used by e.g. github.com/David-OConnor/pyflow and github.com/pdm-project/pdm +__pypackages__/ + +# Celery stuff +celerybeat-schedule +celerybeat.pid + +# SageMath parsed files +*.sage.py + +# Environments +.env +.venv +env/ +venv/ +ENV/ +env.bak/ +venv.bak/ + +# Spyder project settings +.spyderproject +.spyproject + +# Rope project settings +.ropeproject + +# mkdocs documentation +/site + +# mypy +.mypy_cache/ +.dmypy.json +dmypy.json + +# Pyre type checker +.pyre/ + +# pytype static type analyzer +.pytype/ + +# Cython debug symbols +cython_debug/ + +# PyCharm +# JetBrains specific template is maintained in a separate JetBrains.gitignore that can +# be found at https://github.com/github/gitignore/blob/main/Global/JetBrains.gitignore +# and can be added to the global gitignore or merged into this file. For a more nuclear +# option (not recommended) you can uncomment the following to ignore the entire idea folder. +#.idea/ \ No newline at end of file diff --git a/Makefile b/Makefile new file mode 100644 index 0000000..97b8e55 --- /dev/null +++ b/Makefile @@ -0,0 +1,18 @@ +.PHONY: all venv clean + +ALL_TARGETS := venv + +PYTHON_BIN?=python3 + +all: $(ALL_TARGETS) + +venv: venv/bin/activate + +venv/bin/activate: requirements.txt + test -d venv || $(PYTHON_BIN) -m venv venv + . venv/bin/activate; pip install --upgrade pip wheel + . venv/bin/activate; pip install --trusted-host pypi.org --trusted-host pypi.python.org --trusted-host files.pythonhosted.org -r requirements.txt + touch venv/bin/activate + +clean: + test -d venv && rm -rf venv || exit 0 \ No newline at end of file diff --git a/host_vars/auth-dns-01.test.lauka-home.net.yml b/host_vars/auth-dns-01.test.lauka-home.net.yml new file mode 100644 index 0000000..e69de29 diff --git a/host_vars/auth-dns-02.test.lauka-home.net.yml b/host_vars/auth-dns-02.test.lauka-home.net.yml new file mode 100644 index 0000000..e69de29 diff --git a/host_vars/auth-dns-03.test.lauka-home.net.yml b/host_vars/auth-dns-03.test.lauka-home.net.yml new file mode 100644 index 0000000..e69de29 diff --git a/host_vars/dns.0xbe.be.yml b/host_vars/dns.0xbe.be.yml new file mode 100644 index 0000000..e69de29 diff --git a/host_vars/dns.itslaura.eu.yml b/host_vars/dns.itslaura.eu.yml new file mode 100644 index 0000000..e69de29 diff --git a/host_vars/dns.lauka.net.yml b/host_vars/dns.lauka.net.yml new file mode 100644 index 0000000..e69de29 diff --git a/production.yaml b/production.yaml new file mode 100644 index 0000000..5d78a08 --- /dev/null +++ b/production.yaml @@ -0,0 +1,7 @@ +primaries: + hosts: + dns.lauka.net: +dbservers: + hosts: + dns.itslaura.eu: + dns.0xbe.be: \ No newline at end of file diff --git a/readme.md b/readme.md new file mode 100644 index 0000000..a3584b8 --- /dev/null +++ b/readme.md @@ -0,0 +1 @@ +# ansible-public-dns \ No newline at end of file diff --git a/requirements.in b/requirements.in new file mode 100644 index 0000000..3ca5142 --- /dev/null +++ b/requirements.in @@ -0,0 +1,2 @@ +ansible +pip-tools \ No newline at end of file diff --git a/requirements.txt b/requirements.txt new file mode 100644 index 0000000..d62e6af --- /dev/null +++ b/requirements.txt @@ -0,0 +1,53 @@ +# +# This file is autogenerated by pip-compile with Python 3.9 +# by the following command: +# +# pip-compile --output-file=requirements.txt requirements.in +# +ansible==8.7.0 + # via -r requirements.in +ansible-core==2.15.8 + # via ansible +build==1.0.3 + # via pip-tools +cffi==1.16.0 + # via cryptography +click==8.1.7 + # via pip-tools +cryptography==41.0.7 + # via ansible-core +importlib-metadata==7.0.1 + # via build +importlib-resources==5.0.7 + # via ansible-core +jinja2==3.1.3 + # via ansible-core +markupsafe==2.1.3 + # via jinja2 +packaging==23.2 + # via + # ansible-core + # build +pip-tools==7.3.0 + # via -r requirements.in +pycparser==2.21 + # via cffi +pyproject-hooks==1.0.0 + # via build +pyyaml==6.0.1 + # via ansible-core +resolvelib==1.0.1 + # via ansible-core +tomli==2.0.1 + # via + # build + # pip-tools + # pyproject-hooks +wheel==0.42.0 + # via pip-tools +zipp==3.17.0 + # via importlib-metadata + +# The following packages are considered to be unsafe in a requirements file: +# pip +# setuptools diff --git a/roles/powerdns-install/tasks/main.yml b/roles/powerdns-install/tasks/main.yml new file mode 100644 index 0000000..8267908 --- /dev/null +++ b/roles/powerdns-install/tasks/main.yml @@ -0,0 +1,17 @@ +- name: Create /etc/apt/keyrings directory + ansible.builtin.file: + path: /etc/apt/keyrings + state: directory + mode: '0755' + +- name: Download PowerDNS Repo Signing Key + ansible.builtin.get_url: + url: https://repo.powerdns.com/FD380FBB-pub.asc + dest: /etc/apt/keyrings/auth-48-pub.asc + mode: '0644' + +- name: Add PowerDNS Repository + ansible.builtin.apt_repository: + repo: deb [signed-by=/etc/apt/keyrings/auth-48-pub.asc arch=amd64] http://repo.powerdns.com/debian bookworm-auth-48 main + state: present + diff --git a/staging.yaml b/staging.yaml new file mode 100644 index 0000000..01871f7 --- /dev/null +++ b/staging.yaml @@ -0,0 +1,7 @@ +primaries: + hosts: + auth-dns-01.test.lauka-home.net: +dbservers: + hosts: + auth-dns-02.test.lauka-home.net: + auth-dns-03.test.lauka-home.net: \ No newline at end of file