Add media vpn setup

This commit is contained in:
Sonny Bakker 2024-08-03 21:03:07 +02:00
parent cf061d3779
commit 7c4dd0d3c2
25 changed files with 257 additions and 66 deletions

View file

@ -12,8 +12,10 @@
mode: '0644'
state: directory
loop:
- '{{ vpn_private_key_path }}'
- '{{ vpn_public_key_path }}'
- '{{ vpn_default.private_key_path }}'
- '{{ vpn_default.public_key_path }}'
- '{{ vpn_media.private_key_path }}'
- '{{ vpn_media.public_key_path }}'
- name: copy wireguard credentials
become: true
@ -25,12 +27,20 @@
mode: '0640'
loop:
- {
dest: '{{ vpn_public_key_path }}',
src: 'files/{{ platform }}/wireguard/{{ platform }}.pub',
dest: '{{ vpn_default.public_key_path }}',
src: 'files/{{ platform }}/wireguard/default/{{ platform }}.pub',
}
- {
dest: '{{ vpn_private_key_path }}',
src: 'files/{{ platform }}/wireguard/{{ platform }}.key',
dest: '{{ vpn_default.private_key_path }}',
src: 'files/{{ platform }}/wireguard/default/{{ platform }}.key',
}
- {
dest: '{{ vpn_media.public_key_path }}',
src: 'files/{{ platform }}/wireguard/media/{{ platform }}.pub',
}
- {
dest: '{{ vpn_media.private_key_path }}',
src: 'files/{{ platform }}/wireguard/media/{{ platform }}.key',
}
- name: copy wireguard preshared keys
@ -41,7 +51,7 @@
owner: root
group: systemd-network
mode: '0640'
loop: '{{ vpn_peers }}'
loop: '{{ vpn_default.peers + vpn_media.peers }}'
- block:
- name: setup desktop network configuration
@ -65,6 +75,15 @@
src: 'templates/desktop/network/wg0.netdev.j2',
dest: '/etc/systemd/network/40-wg0.netdev',
}
- {
src: 'templates/desktop/network/wg1.network.j2',
dest: '/etc/systemd/network/40-wg1.network',
}
- {
src: 'templates/desktop/network/wg1.netdev.j2',
dest: '/etc/systemd/network/40-wg1.netdev',
}
- name: remove leftover configuration files
become: true
file:
@ -101,6 +120,14 @@
src: 'templates/laptop/network/wg0.netdev.j2',
dest: '/etc/systemd/network/40-wg0.netdev',
}
- {
src: 'templates/laptop/network/wg1.network.j2',
dest: '/etc/systemd/network/40-wg1.network',
}
- {
src: 'templates/laptop/network/wg1.netdev.j2',
dest: '/etc/systemd/network/40-wg1.netdev',
}
- name: remove leftover configuration files
become: true