Minor fixes to allow for Traefik without SSL
This commit is contained in:
		| @@ -38,7 +38,7 @@ matrix_playbook_traefik_role_enabled: true | |||||||
| # installed in another way. | # installed in another way. | ||||||
| matrix_playbook_traefik_labels_enabled: "{{ matrix_playbook_reverse_proxy_type in ['playbook-installed-traefik', 'other-traefik-container'] }}" | matrix_playbook_traefik_labels_enabled: "{{ matrix_playbook_reverse_proxy_type in ['playbook-installed-traefik', 'other-traefik-container'] }}" | ||||||
|  |  | ||||||
| matrix_playbook_traefik_certs_dumper_role_enabled: "{{ matrix_playbook_reverse_proxy_type in ['playbook-installed-traefik', 'other-traefik-container'] }}" | matrix_playbook_traefik_certs_dumper_role_enabled: "{{ (matrix_playbook_reverse_proxy_type == 'playbook-installed-traefik' and devture_traefik_config_entrypoint_web_secure_enabled) or matrix_playbook_reverse_proxy_type == 'other-traefik-container' }}" | ||||||
|  |  | ||||||
| # Controls the additional network that reverse-proxyable services will be connected to. | # Controls the additional network that reverse-proxyable services will be connected to. | ||||||
| matrix_playbook_reverse_proxyable_services_additional_network: "{{ devture_traefik_container_network if devture_traefik_enabled else '' }}" | matrix_playbook_reverse_proxyable_services_additional_network: "{{ devture_traefik_container_network if devture_traefik_enabled else '' }}" | ||||||
|   | |||||||
| @@ -273,16 +273,19 @@ matrix_homeserver_app_service_config_files_auto: [] | |||||||
| # Valid options and a description of their behavior: | # Valid options and a description of their behavior: | ||||||
| # | # | ||||||
| # - `playbook-installed-traefik` | # - `playbook-installed-traefik` | ||||||
| #     - the playbook will install devture-traefik for SSL termination | #     - the playbook will install devture-traefik | ||||||
|  | #     - Traefik will do SSL termination, unless you disable it (e.g. `devture_traefik_config_entrypoint_web_secure_enabled: false`) | ||||||
| #     - it will also install matrix-nginx-proxy in local-only mode, while we migrate the rest of the services to a Traefik-native mode of working | #     - it will also install matrix-nginx-proxy in local-only mode, while we migrate the rest of the services to a Traefik-native mode of working | ||||||
| # | # | ||||||
| # - `playbook-installed-nginx` | # - `playbook-installed-nginx` | ||||||
| #     - the playbook will install matrix-nginx-proxy and do SSL termination with Certbot | #     - the playbook will install matrix-nginx-proxy | ||||||
|  | #     - matrix-nginx-proxy will do SSL termination with Certbot, unless you change that (see `matrix_ssl_retrieval_method`) | ||||||
| # | # | ||||||
| # - `other-traefik-container` | # - `other-traefik-container` | ||||||
| #     - Traefik will be used, but it's not installed by this playbook. | #     - this playbook will not install Traefik | ||||||
| #     - you should make sure it's compatible with what the playbook would have configured (web, web-secure, matrix-federation entrypoints, etc.) | #     - nevertheless, the playbook expects that you would install Traefik yourself via other means | ||||||
| #     - you may wish to set `matrix_playbook_reverse_proxyable_services_additional_network` to the name of your Traefik network | #     - you should make sure your Traefik configuration is compatible with what the playbook would have configured (web, web-secure, matrix-federation entrypoints, etc.) | ||||||
|  | #     - you need to set `matrix_playbook_reverse_proxyable_services_additional_network` to the name of your Traefik network | ||||||
| #     - you may wish to enable `devture_traefik_certs_dumper_enabled` and point it to your Traefik's SSL certificates (`devture_traefik_certs_dumper_ssl_dir_path`) | #     - you may wish to enable `devture_traefik_certs_dumper_enabled` and point it to your Traefik's SSL certificates (`devture_traefik_certs_dumper_ssl_dir_path`) | ||||||
| # | # | ||||||
| # - `other-nginx-non-container` | # - `other-nginx-non-container` | ||||||
|   | |||||||
		Reference in New Issue
	
	Block a user