ansible-role-vsftpd/defaults/main.yml

40 lines
1.2 KiB
YAML

---
vsftpd_server_enabled: True
vsftpd_anonymous_enable: "NO"
vsftpd_local_enable: "YES"
vsftpd_write_enable: "YES"
vsftpd_local_umask: "077"
vsftpd_dirmessage_enable: "YES"
vsftpd_connect_from_port_20: "YES"
vsftpd_ls_recurse_enable: "NO"
vsftpd_local_root: /dev/null
vsftpd_writeable_chroot: "NO"
vsftpd_pasv_min_port: 49152
vsftpd_pasv_max_port: 65534
vsftpd_global_config_dir: /etc/vsftpd
vsftpd_user_config_enabled: False
vsftpd_user_config_dir: '{{ vsftpd_global_config_dir }}/users'
vsftpd_chroot_list_enable: "YES"
vsftpd_chroot_list_file: '{{ vsftpd_global_config_dir }}/chroot_list'
vsftpd_chroot_passwd_enable: "NO"
vsftpd_chroot_local_user: "NO"
vsftpd_iptables_rules: True
vsftpd_iptables_allowed_hosts:
- 0.0.0.0/0
vsftp_chrooted_users: []
# - { login: 'user1', conf: [ 'local_umask=022', 'local_root=/some/foo/path' ] }
# - { login: 'user2' }
vsftpd_manage_valid_shells: False
vsftpd_valid_shell: '/bin/true'
vsftpd_tls_enabled: True
vsftpd_force_tls: True
vsftpd_require_ssl_reuse: "YES"
vsftpd_tls_letsencrypt: True
vsftpd_ssl_ca_certificate: '{{ letsencrypt_acme_certs_dir }}/fullchain'
vsftpd_ssl_certificate: '{{ letsencrypt_acme_certs_dir }}/cert'
vsftpd_ssl_certificate_key: '{{ letsencrypt_acme_certs_dir }}/privkey'