2015-05-28 11:32:57 +02:00
|
|
|
---
|
2015-10-14 18:22:30 +02:00
|
|
|
apache_service_enabled: True
|
2015-05-28 11:32:57 +02:00
|
|
|
apache_user: www-data
|
2017-02-02 15:04:39 +01:00
|
|
|
apache_pkg_state: latest
|
2015-05-28 11:32:57 +02:00
|
|
|
apache_group: '{{ apache_user }}'
|
2017-02-02 14:52:04 +01:00
|
|
|
apache_from_ppa: False
|
|
|
|
apache_ppa_repo: 'ppa:ondrej/apache2'
|
2015-05-28 11:32:57 +02:00
|
|
|
|
2015-10-14 18:22:30 +02:00
|
|
|
# Possible choices: event, prefork (the old ones), worker (the threaded version), itm
|
|
|
|
apache_mpm_mode: worker
|
|
|
|
|
2015-05-28 11:32:57 +02:00
|
|
|
apache_packages:
|
|
|
|
- apache2
|
|
|
|
- apache2-utils
|
|
|
|
- libapache2-mod-xsendfile
|
|
|
|
- unzip
|
|
|
|
- zip
|
|
|
|
|
2017-02-02 15:02:56 +01:00
|
|
|
apache_modules_packages:
|
|
|
|
- 'apache2-mpm-{{ apache_mpm_mode }}'
|
|
|
|
|
2015-10-14 18:22:30 +02:00
|
|
|
# Only one can be present at the same time. It needs to be listed as the last one
|
|
|
|
apache_worker_modules:
|
|
|
|
# - { name: 'mpm_itm', state: 'absent' }
|
|
|
|
- { name: 'mpm_event', state: 'absent' }
|
|
|
|
- { name: 'mpm_prefork', state: 'absent' }
|
2017-02-01 20:02:05 +01:00
|
|
|
- { name: 'mpm_{{ apache_mpm_mode }}', state: 'present' }
|
2015-10-14 18:22:30 +02:00
|
|
|
|
2017-03-22 17:38:46 +01:00
|
|
|
# apache RPAF is needed to obtain the real client addresses when behind a reverse proxy
|
|
|
|
apache_rpaf_install: False
|
|
|
|
|
2015-05-28 11:32:57 +02:00
|
|
|
apache_default_modules:
|
|
|
|
- headers
|
|
|
|
- rewrite
|
|
|
|
- expires
|
|
|
|
- xsendfile
|
|
|
|
|
2015-07-14 17:43:27 +02:00
|
|
|
apache_ssl_modules_enabled: True
|
|
|
|
apache_ssl_modules:
|
|
|
|
- ssl
|
|
|
|
- socache_shmcb
|
|
|
|
apache_http_proxy_modules_enabled: False
|
|
|
|
apache_http_proxy_modules:
|
|
|
|
- proxy
|
|
|
|
- proxy_ajp
|
|
|
|
- proxy_http
|
|
|
|
|
2016-04-04 17:59:59 +02:00
|
|
|
apache_status_module: True
|
|
|
|
apache_status_location: '/server-status'
|
|
|
|
apache_status_allowed_hosts:
|
|
|
|
- 127.0.0.1/8
|
|
|
|
|
|
|
|
apache_info_module: True
|
|
|
|
apache_info_location: '/server-info'
|
|
|
|
apache_info_allowed_hosts:
|
|
|
|
- 127.0.0.1/8
|
|
|
|
|
2015-05-28 11:32:57 +02:00
|
|
|
apache_basic_auth: False
|
|
|
|
apache_basic_auth_single_file: True
|
|
|
|
apache_basic_auth_dir: /etc/apache2/auth
|
|
|
|
apache_basic_auth_file: '{{ apache_basic_auth_dir }}/htpasswd'
|
|
|
|
|
|
|
|
apache_basic_auth_modules:
|
|
|
|
- auth_basic
|
|
|
|
- authn_file
|
|
|
|
- authz_user
|
|
|
|
|
|
|
|
# Put them in a vault file. auth_file is optional. Not used when apache_basic_auth_single_file is true
|
|
|
|
# apache_basic_users:
|
|
|
|
# - { username:'', password:'', state:'present,absent', auth_file:'path_to_file' }
|
|
|
|
|
2016-01-26 19:51:14 +01:00
|
|
|
#
|
2016-02-02 17:40:01 +01:00
|
|
|
apache_additional_packages: False
|
|
|
|
apache_additional_packages_list:
|
2016-01-26 19:51:14 +01:00
|
|
|
# - libapache2-mod-uwsgi
|
|
|
|
# - ...
|
2015-07-14 17:43:27 +02:00
|
|
|
#
|
|
|
|
# Set this variable to load the modules you need
|
2016-02-02 17:40:01 +01:00
|
|
|
apache_additional_modules: False
|
|
|
|
apache_additional_modules_list:
|
2015-07-14 17:43:27 +02:00
|
|
|
# -
|
|
|
|
# -
|
2016-04-22 18:01:58 +02:00
|
|
|
|
2016-04-22 18:27:51 +02:00
|
|
|
apache_letsencrypt_managed: True
|
2016-04-22 18:01:58 +02:00
|
|
|
apache_letsencrypt_proxy_modules:
|
|
|
|
- proxy
|
|
|
|
- proxy_http
|
|
|
|
|
|
|
|
apache_letsencrypt_proxy_conf:
|
|
|
|
- letsencrypt-proxy.conf
|