Compare commits
16 Commits
initial-vm
...
6a900ecbc4
Author | SHA1 | Date | |
---|---|---|---|
6a900ecbc4
|
|||
400ce1590e
|
|||
00cad09f37
|
|||
d005032c97
|
|||
69e609d522
|
|||
46303021f5
|
|||
2506402fae
|
|||
51a0ca3938
|
|||
e1c0eb6265
|
|||
2bba6dfa85
|
|||
04e660c838
|
|||
97995a95dd
|
|||
f75abf978a
|
|||
0a479039e2
|
|||
edbd1cd9f9
|
|||
72d3bded74
|
2
.github/workflows/infra.yaml
vendored
2
.github/workflows/infra.yaml
vendored
@@ -72,4 +72,4 @@ jobs:
|
|||||||
PROXMOX_TOKEN_ID: ${{ secrets.PROXMOX_TOKEN_ID }}
|
PROXMOX_TOKEN_ID: ${{ secrets.PROXMOX_TOKEN_ID }}
|
||||||
PROXMOX_TOKEN_SECRET: ${{ secrets.PROXMOX_TOKEN_SECRET }}
|
PROXMOX_TOKEN_SECRET: ${{ secrets.PROXMOX_TOKEN_SECRET }}
|
||||||
SSH_PUBLIC: ${{ secrets.SSH_PUBLIC }}
|
SSH_PUBLIC: ${{ secrets.SSH_PUBLIC }}
|
||||||
run: ansible-playbook --inventory ./inventory ${{ steps.playbooks.outputs.to_run }}
|
run: ansible-playbook --inventory ./inventory ${{ steps.playbooks.outputs.to_run }} -vv
|
||||||
|
@@ -1,5 +1,5 @@
|
|||||||
- name: Provision joplin Proxmox VM
|
- name: Provision cloud Proxmox VM
|
||||||
hosts: joplin
|
hosts: cloud
|
||||||
connection: ansible.builtin.local
|
connection: ansible.builtin.local
|
||||||
gather_facts: false
|
gather_facts: false
|
||||||
vars:
|
vars:
|
||||||
@@ -77,16 +77,22 @@
|
|||||||
community.general.proxmox_kvm:
|
community.general.proxmox_kvm:
|
||||||
state: started
|
state: started
|
||||||
register: start
|
register: start
|
||||||
- name: Wait 3 min # Initial apt update, apt upgrade, cloud-init
|
- name: Wait 1 min # Initial apt update, apt upgrade, cloud-init
|
||||||
ansible.builtin.wait_for:
|
ansible.builtin.wait_for:
|
||||||
timeout: 180
|
timeout: 60
|
||||||
|
|
||||||
# VM Configuration
|
# VM Configuration
|
||||||
- name: Resize disk
|
- name: Resize root disk
|
||||||
community.general.proxmox_disk:
|
community.general.proxmox_disk:
|
||||||
disk: scsi0
|
disk: scsi0
|
||||||
size: 64G
|
size: 16
|
||||||
state: resized
|
state: resized
|
||||||
|
- name: Create data disk
|
||||||
|
community.general.proxmox_disk:
|
||||||
|
disk: scsi1
|
||||||
|
backup: true
|
||||||
|
storage: nvme
|
||||||
|
size: 2048
|
||||||
- name: Update VM
|
- name: Update VM
|
||||||
community.general.proxmox_kvm:
|
community.general.proxmox_kvm:
|
||||||
update: true
|
update: true
|
47
infra/cloud/0001_initialise_playbook.yaml
Normal file
47
infra/cloud/0001_initialise_playbook.yaml
Normal file
@@ -0,0 +1,47 @@
|
|||||||
|
- name: Initialise VM
|
||||||
|
hosts: cloud
|
||||||
|
gather_facts: false
|
||||||
|
tasks:
|
||||||
|
- name: Wait for connection
|
||||||
|
ansible.builtin.wait_for_connection:
|
||||||
|
timeout: 300
|
||||||
|
- name: Install system packages
|
||||||
|
ansible.builtin.apt:
|
||||||
|
update_cache: true
|
||||||
|
pkg:
|
||||||
|
- qemu-guest-agent
|
||||||
|
- parted
|
||||||
|
become: true
|
||||||
|
- name: Enable qemu-guest-agent
|
||||||
|
ansible.builtin.systemd:
|
||||||
|
name: qemu-guest-agent
|
||||||
|
state: started
|
||||||
|
enabled: true
|
||||||
|
become: true
|
||||||
|
|
||||||
|
- name: Create data partition
|
||||||
|
community.general.parted:
|
||||||
|
device: /dev/disk/by-path/pci-0000:00:05.0-scsi-0:0:0:1
|
||||||
|
label: gpt
|
||||||
|
name: data
|
||||||
|
number: 1
|
||||||
|
state: present
|
||||||
|
become: true
|
||||||
|
- name: Create data filesystem
|
||||||
|
community.general.filesystem:
|
||||||
|
dev: /dev/disk/by-path/pci-0000:00:05.0-scsi-0:0:0:1-part1
|
||||||
|
fstype: ext4
|
||||||
|
become: true
|
||||||
|
- name: Mount data partition
|
||||||
|
ansible.posix.mount:
|
||||||
|
src: /dev/disk/by-path/pci-0000:00:05.0-scsi-0:0:0:1-part1
|
||||||
|
path: /mnt/data
|
||||||
|
fstype: ext4
|
||||||
|
state: mounted
|
||||||
|
become: true
|
||||||
|
- name: Set data partition permissions
|
||||||
|
ansible.builtin.file:
|
||||||
|
path: /mnt/data
|
||||||
|
owner: debian
|
||||||
|
group: debian
|
||||||
|
become: true
|
47
infra/cloud/0002_docker_playbook.yaml
Normal file
47
infra/cloud/0002_docker_playbook.yaml
Normal file
@@ -0,0 +1,47 @@
|
|||||||
|
- name: Install software
|
||||||
|
hosts: cloud
|
||||||
|
gather_facts: false
|
||||||
|
tasks:
|
||||||
|
- name: Wait for connection
|
||||||
|
ansible.builtin.wait_for_connection:
|
||||||
|
timeout: 300
|
||||||
|
- name: Install dependencies
|
||||||
|
ansible.builtin.apt:
|
||||||
|
update_cache: true
|
||||||
|
pkg:
|
||||||
|
- curl
|
||||||
|
- python3-apt
|
||||||
|
- gpg
|
||||||
|
become: true
|
||||||
|
- name: Add docker key
|
||||||
|
ansible.builtin.apt_key:
|
||||||
|
url: https://download.docker.com/linux/debian/gpg
|
||||||
|
keyring: /etc/apt/keyrings/docker.gpg
|
||||||
|
become: true
|
||||||
|
- name: Add docker repo
|
||||||
|
ansible.builtin.apt_repository:
|
||||||
|
repo: deb [arch=amd64 signed-by=/etc/apt/keyrings/docker.gpg] https://download.docker.com/linux/debian bookworm stable
|
||||||
|
become: true
|
||||||
|
- name: Install docker
|
||||||
|
ansible.builtin.apt:
|
||||||
|
update_cache: true
|
||||||
|
pkg:
|
||||||
|
- docker-ce
|
||||||
|
- docker-ce-cli
|
||||||
|
- containerd.io
|
||||||
|
- docker-buildx-plugin
|
||||||
|
- docker-compose-plugin
|
||||||
|
become: true
|
||||||
|
- name: Add user to docker group
|
||||||
|
ansible.builtin.user:
|
||||||
|
user: debian
|
||||||
|
groups:
|
||||||
|
- docker
|
||||||
|
append: true
|
||||||
|
become: true
|
||||||
|
- name: Enable docker
|
||||||
|
ansible.builtin.systemd:
|
||||||
|
name: docker
|
||||||
|
state: started
|
||||||
|
enabled: true
|
||||||
|
become: true
|
24
infra/cloud/0003_app_playbook.yaml
Normal file
24
infra/cloud/0003_app_playbook.yaml
Normal file
@@ -0,0 +1,24 @@
|
|||||||
|
- name: Deploy app
|
||||||
|
hosts: cloud
|
||||||
|
gather_facts: false
|
||||||
|
vars:
|
||||||
|
project_src: /home/debian/cloud
|
||||||
|
module_defaults:
|
||||||
|
community.docker.docker_compose:
|
||||||
|
project_src: "{{ project_src }}"
|
||||||
|
tasks:
|
||||||
|
- name: Wait for connection
|
||||||
|
ansible.builtin.wait_for_connection:
|
||||||
|
timeout: 300
|
||||||
|
- name: Copy project
|
||||||
|
ansible.builtin.copy:
|
||||||
|
directory_mode: true
|
||||||
|
src: ./cloud
|
||||||
|
mode: "0744"
|
||||||
|
dest: "{{ project_src }}"
|
||||||
|
- name: Docker compose down
|
||||||
|
community.docker.docker_compose:
|
||||||
|
state: absent
|
||||||
|
- name: Docker compose up
|
||||||
|
community.docker.docker_compose:
|
||||||
|
state: present
|
5
infra/cloud/cloud/docker-compose.yaml
Normal file
5
infra/cloud/cloud/docker-compose.yaml
Normal file
@@ -0,0 +1,5 @@
|
|||||||
|
version: "3"
|
||||||
|
|
||||||
|
services:
|
||||||
|
test:
|
||||||
|
image: nginx
|
@@ -1,25 +0,0 @@
|
|||||||
- name: Setup Software
|
|
||||||
hosts: joplin
|
|
||||||
gather_facts: false
|
|
||||||
tasks:
|
|
||||||
- name: Wait for connection
|
|
||||||
ansible.builtin.wait_for_connection:
|
|
||||||
timeout: 300
|
|
||||||
- name: Test some stuff
|
|
||||||
ansible.builtin.shell: |
|
|
||||||
touch ~/hmm
|
|
||||||
echo test > ~/test
|
|
||||||
echo test2 >> ~/test
|
|
||||||
mkdir ~/dir
|
|
||||||
touch ~/dir/testing
|
|
||||||
- name: Install some stuff
|
|
||||||
ansible.builtin.apt:
|
|
||||||
update_cache: true
|
|
||||||
name: qemu-guest-agent
|
|
||||||
become: true
|
|
||||||
- name: Enable some stuff
|
|
||||||
ansible.builtin.systemd:
|
|
||||||
name: qemu-guest-agent
|
|
||||||
state: started
|
|
||||||
enabled: true
|
|
||||||
become: true
|
|
@@ -8,9 +8,9 @@ proxmox:
|
|||||||
pve2.mgmt.home.local.koval.net:
|
pve2.mgmt.home.local.koval.net:
|
||||||
managed:
|
managed:
|
||||||
children:
|
children:
|
||||||
joplin:
|
cloud:
|
||||||
hosts:
|
hosts:
|
||||||
joplin2.srv.home.local.koval.net:
|
cloud.srv.home.local.koval.net:
|
||||||
vars:
|
vars:
|
||||||
ansible_user: debian
|
ansible_user: debian
|
||||||
ansible_ssh_private_key_file: ~/.ssh/id_rsa
|
ansible_ssh_private_key_file: ~/.ssh/id_rsa
|
||||||
|
Reference in New Issue
Block a user