projects
/
ansible.git
/ blobdiff
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
tree
raw
|
inline
| side by side
fix pattern
[ansible.git]
/
roles
/
apache
/
tasks
/
main.yml
diff --git
a/roles/apache/tasks/main.yml
b/roles/apache/tasks/main.yml
index 6fb5b54d85ad107154816c238b1aa73bf47f8d2e..6878845d87552c709d8c52abd25322272d01945c 100644
(file)
--- a/
roles/apache/tasks/main.yml
+++ b/
roles/apache/tasks/main.yml
@@
-35,6
+35,7
@@
- php5.conf
- security.conf
- defaults.conf
- php5.conf
- security.conf
- defaults.conf
+ - caching.conf
notify: apache
- name: enable config files
command: a2enconf {{ item }}
notify: apache
- name: enable config files
command: a2enconf {{ item }}
@@
-44,6
+45,7
@@
- ssl
- security
- defaults
- ssl
- security
- defaults
+ - caching
notify: apache
- name: disable config files
command: a2disconf {{ item }}
notify: apache
- name: disable config files
command: a2disconf {{ item }}
@@
-67,9
+69,14
@@
content: |
[Unit]
After=network-online.target
content: |
[Unit]
After=network-online.target
-- name: sysconfig to disable DAD
+ Wants=network-online.target
+ [Service]
+ Restart=on-failure
+- name: cleanup old sysconfig
+ file: path=/etc/sysctl.d/50-no-dad.conf state=absent
+- name: sysconfig to fix IPv6 listening
copy:
copy:
- dest: /etc/sysctl.d/50-
no-dad
.conf
+ dest: /etc/sysctl.d/50-
ipv6-listen
.conf
content: |
content: |
- #
Disable DAD so network-online.target works for IPv6
- net.ipv6.
conf.all.accept_dad=0
+ #
Allow binding to IPv6 address before we got that address
+ net.ipv6.
ip_nonlocal_bind=1