Commit graph

11 commits

Author SHA1 Message Date
Alex 65af077d5a Fix iptables not liking comment on same line 2020-07-15 16:03:51 +02:00
Alex 3bf830713f don't retrieve wireguard privkeys in ansible 2020-07-15 16:03:51 +02:00
Alex 207d1fa278 Allow external VPN nodes, make multi-DC deployment work 2020-07-15 16:03:42 +02:00
Alex a4f9aa2d98 Set up wireguard in dev cluster 2020-07-15 16:03:33 +02:00
Quentin e25acda3d0 Rework file 2020-07-13 20:01:04 +02:00
Quentin 46aac4cc79 Add SSH 2020-07-13 19:58:49 +02:00
Quentin 4bd4d20533 Simplify iptables 2020-07-13 19:55:22 +02:00
Alex 351e6f13d5 Network configuration:
- Remove nomad interface (unused)
- Deactivate systemd-resolved
- Add dns_server to production nodes variables
- Add recursors option to Consul so that it can resolve outside DNS
  queries
- Use consul as a global DNS server for machines and containers, with
  the outside DNS as a fallback (see roles/consul/templates/resolv.conf.j2)
2020-06-30 17:31:35 +02:00
Quentin 7c984ae02b Add router in the list 2020-05-23 17:13:32 +02:00
Alex 78f452587a Make the net ansible section never run and add appropriate warnings 2020-05-21 14:00:47 +02:00
Quentin 61d009f18d Initial commit 2019-07-11 09:33:07 +02:00