{"id":229,"sha1":"8b4dcf9d98bcf3881c8a1a431dd2765ca80dbfb5","playbook":{"id":3,"items":{"plays":37,"tasks":589,"results":576,"hosts":7,"files":222,"records":0},"arguments":{"version":null,"verbosity":0,"private_key_file":null,"remote_user":null,"connection":"openstack.osa.ssh","timeout":null,"ssh_common_args":null,"sftp_extra_args":null,"scp_extra_args":null,"ssh_extra_args":null,"ask_pass":false,"connection_password_file":null,"force_handlers":true,"flush_cache":false,"become":false,"become_method":"sudo","become_user":null,"become_ask_pass":false,"become_password_file":null,"tags":["all"],"skip_tags":[],"check":false,"diff":false,"inventory":["/home/zuul/src/opendev.org/openstack/openstack-ansible/inventory/dynamic_inventory.py","/home/zuul/src/opendev.org/openstack/openstack-ansible/inventory/inventory.ini","/etc/openstack_deploy/inventory.ini"],"listhosts":false,"subset":null,"extra_vars":"Not saved by ARA as configured by 'ignored_arguments'","vault_ids":[],"ask_vault_pass":false,"vault_password_files":[],"forks":4,"module_path":null,"syntax":false,"listtasks":false,"listtags":false,"step":false,"start_at_task":null,"args":["setup-infrastructure.yml"]},"labels":[{"id":1,"name":"check:False"},{"id":2,"name":"tags:all"}],"started":"2025-12-08T13:50:33.014895Z","ended":"2025-12-08T13:57:00.819740Z","duration":"00:06:27.804845","name":null,"ansible_version":"2.18.6","client_version":"1.7.4","python_version":"3.12.11","server_version":"1.7.4","status":"completed","path":"/home/zuul/src/opendev.org/openstack/openstack-ansible/playbooks/setup-infrastructure.yml","controller":"aio1.openstack.local","user":"root"},"content":"---\n# Copyright 2024, Cleura AB\n#\n# Licensed under the Apache License, Version 2.0 (the \"License\");\n# you may not use this file except in compliance with the License.\n# You may obtain a copy of the License at\n#\n#     http://www.apache.org/licenses/LICENSE-2.0\n#\n# Unless required by applicable law or agreed to in writing, software\n# distributed under the License is distributed on an \"AS IS\" BASIS,\n# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.\n# See the License for the specific language governing permissions and\n# limitations under the License.\n\n- name: Create the system group\n  ansible.builtin.group:\n    name: \"{{ httpd_service_group_name }}\"\n    state: \"present\"\n    system: \"yes\"\n\n- name: Create the system user\n  ansible.builtin.user:\n    name: \"{{ httpd_service_user_name }}\"\n    group: \"{{ httpd_service_group_name }}\"\n    comment: \"Apache Web Server user\"\n    shell: \"/usr/bin/false\"\n    system: \"yes\"\n    createhome: \"yes\"\n    home: \"{{ httpd_service_home_folder }}\"\n\n- name: Default and vhosts root directory setup\n  vars:\n    _vhost_document_roots: >-\n      {{\n        (\n          httpd_vhosts | selectattr('state', 'defined') | selectattr('state', 'eq', 'present') +\n          httpd_vhosts | selectattr('state', 'undefined')\n        ) | selectattr('document_root', 'defined') | map(attribute='document_root') | map('community.general.dict_kv', 'path')\n      }}\n    _default_paths:\n      - path: \"{{ httpd_conf_dir }}/sites-available\"\n        mode: \"0750\"\n      - path: \"{{ httpd_service_home_folder }}\"\n        mode: \"0750\"\n        condition: \"{{ ansible_facts['os_family'] | lower == 'debian' }}\"\n  ansible.builtin.file:\n    path: \"{{ item.path }}\"\n    state: \"{{ item.state | default('directory') }}\"\n    owner: \"{{ httpd_service_user_name }}\"\n    group: \"{{ httpd_service_group_name }}\"\n    mode: \"{{ item.mode | default('0755') }}\"\n  with_items: \"{{ _default_paths + _vhost_document_roots }}\"\n  when:\n    - item.condition | default(true)\n\n- name: Create SSL CA for self-generated certificates\n  ansible.builtin.include_role:\n    name: pki\n    tasks_from: main_ca.yml\n    apply:\n      tags:\n        - httpd-install\n        - pki\n  vars:\n    pki_setup_host: \"{{ httpd_pki_setup_host }}\"\n    pki_dir: \"{{ httpd_pki_dir }}\"\n    pki_create_ca: \"{{ httpd_pki_create_ca }}\"\n    pki_authorities: \"{{ httpd_pki_authorities }}\"\n    pki_regen_ca: \"{{ httpd_pki_regen_ca }}\"\n  when:\n    - httpd_pki_create_ca | bool\n    - httpd_pki_authorities | length > 0\n  tags:\n    - httpd-install\n    - pki\n\n- name: Install SSL CA for self-generated certificates\n  ansible.builtin.include_role:\n    name: pki\n    tasks_from: main_ca_install.yml\n    apply:\n      tags:\n        - httpd-install\n        - pki\n  vars:\n    pki_setup_host: \"{{ httpd_pki_setup_host }}\"\n    pki_dir: \"{{ httpd_pki_dir }}\"\n    pki_install_ca: \"{{ httpd_pki_install_ca }}\"\n  when:\n    - httpd_pki_create_ca | bool\n    - httpd_pki_install_ca | length > 0\n  tags:\n    - httpd-install\n    - pki\n","created":"2025-12-08T13:50:35.307797Z","updated":"2025-12-08T13:50:35.307810Z","path":"/home/zuul/src/opendev.org/openstack/ansible-role-httpd/tasks/httpd_pre_install.yml"}