|
@@ -24,10 +24,13 @@
|
24
|
24
|
creates=/usr/lib/znc/znc.pem
|
25
|
25
|
notify: restart znc
|
26
|
26
|
|
27
|
|
-- name: Update certificate renwal cron job
|
28
|
|
- lineinfile: dest=/etc/cron.monthly/letsencrypt-renew state=present
|
29
|
|
- line="cat /etc/letsencrypt/live/{{ domain }}/{privkey,fullchain}.pem > /usr/lib/znc/znc.pem; chown znc.znc /usr/lib/znc/znc.pem; chmod 640 /usr/lib/znc/znc.pem; service znc restart"
|
30
|
|
- insertafter="EOF"
|
|
27
|
+- name: Update post-certificate-renewal task
|
|
28
|
+ template:
|
|
29
|
+ src: etc_letsencrypt_postrenew_znc.sh.j2
|
|
30
|
+ dest: /etc/letsencrypt/postrenew/znc.sh
|
|
31
|
+ owner: root
|
|
32
|
+ group: root
|
|
33
|
+ mode: 0755
|
31
|
34
|
|
32
|
35
|
- name: Ensure znc user and group can read cert
|
33
|
36
|
file: path=/usr/lib/znc/znc.pem group=znc owner=znc mode=640
|