Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
10 changes: 10 additions & 0 deletions ansible/roles/reprepro/defaults/main.yml
Original file line number Diff line number Diff line change
Expand Up @@ -165,6 +165,16 @@ reprepro__gpg_snapshot_name: 'gnupg.tar'
# be archived.
reprepro__gpg_snapshot_path: '{{ secret + "/reprepro/snapshots/" + inventory_hostname }}'


# .. envvar:: reprepro__gpg_snapshot_keep [[[
#
# Wether gpg snapshots should be created and downloaded to the Ansible
# controller. This should only be disabled the backup is kept another way.
#
# When disabling the snapshot, after using them, the old gnupg.tar files should
# be removed, otherwise the role might revert to an old snapshot state.
reprepro__gpg_snapshot_keep: true

# ]]]
# .. envvar:: reprepro__gpg_key_type [[[
#
Expand Down
5 changes: 4 additions & 1 deletion ansible/roles/reprepro/tasks/configure_gnupg.yml
Original file line number Diff line number Diff line change
Expand Up @@ -71,13 +71,16 @@
group: '{{ reprepro__group }}'
mode: '0600'
register: reprepro__register_gpg_archive
when: reprepro__gpg_snapshot_keep

- name: Upload ~/.gnupg archive to Ansible Controller
ansible.builtin.fetch: # noqa no-handler
src: '{{ reprepro__home + "/" + reprepro__gpg_snapshot_name }}'
dest: '{{ reprepro__gpg_snapshot_path + "/" + reprepro__gpg_snapshot_name }}'
flat: True
when: reprepro__register_gpg_archive is changed
when:
- reprepro__gpg_snapshot_keep
- reprepro__register_gpg_archive is changed

- name: Remove old automatic signing key
ansible.builtin.file: # noqa no-handler
Expand Down
Loading