Minor fixes to allow for Traefik without SSL
This commit is contained in:
parent
a5afa4eac9
commit
97f65e8dff
|
@ -38,7 +38,7 @@ matrix_playbook_traefik_role_enabled: true
|
||||||
# installed in another way.
|
# installed in another way.
|
||||||
matrix_playbook_traefik_labels_enabled: "{{ matrix_playbook_reverse_proxy_type in ['playbook-installed-traefik', 'other-traefik-container'] }}"
|
matrix_playbook_traefik_labels_enabled: "{{ matrix_playbook_reverse_proxy_type in ['playbook-installed-traefik', 'other-traefik-container'] }}"
|
||||||
|
|
||||||
matrix_playbook_traefik_certs_dumper_role_enabled: "{{ matrix_playbook_reverse_proxy_type in ['playbook-installed-traefik', 'other-traefik-container'] }}"
|
matrix_playbook_traefik_certs_dumper_role_enabled: "{{ (matrix_playbook_reverse_proxy_type == 'playbook-installed-traefik' and devture_traefik_config_entrypoint_web_secure_enabled) or matrix_playbook_reverse_proxy_type == 'other-traefik-container' }}"
|
||||||
|
|
||||||
# Controls the additional network that reverse-proxyable services will be connected to.
|
# Controls the additional network that reverse-proxyable services will be connected to.
|
||||||
matrix_playbook_reverse_proxyable_services_additional_network: "{{ devture_traefik_container_network if devture_traefik_enabled else '' }}"
|
matrix_playbook_reverse_proxyable_services_additional_network: "{{ devture_traefik_container_network if devture_traefik_enabled else '' }}"
|
||||||
|
|
|
@ -273,16 +273,19 @@ matrix_homeserver_app_service_config_files_auto: []
|
||||||
# Valid options and a description of their behavior:
|
# Valid options and a description of their behavior:
|
||||||
#
|
#
|
||||||
# - `playbook-installed-traefik`
|
# - `playbook-installed-traefik`
|
||||||
# - the playbook will install devture-traefik for SSL termination
|
# - the playbook will install devture-traefik
|
||||||
|
# - Traefik will do SSL termination, unless you disable it (e.g. `devture_traefik_config_entrypoint_web_secure_enabled: false`)
|
||||||
# - it will also install matrix-nginx-proxy in local-only mode, while we migrate the rest of the services to a Traefik-native mode of working
|
# - it will also install matrix-nginx-proxy in local-only mode, while we migrate the rest of the services to a Traefik-native mode of working
|
||||||
#
|
#
|
||||||
# - `playbook-installed-nginx`
|
# - `playbook-installed-nginx`
|
||||||
# - the playbook will install matrix-nginx-proxy and do SSL termination with Certbot
|
# - the playbook will install matrix-nginx-proxy
|
||||||
|
# - matrix-nginx-proxy will do SSL termination with Certbot, unless you change that (see `matrix_ssl_retrieval_method`)
|
||||||
#
|
#
|
||||||
# - `other-traefik-container`
|
# - `other-traefik-container`
|
||||||
# - Traefik will be used, but it's not installed by this playbook.
|
# - this playbook will not install Traefik
|
||||||
# - you should make sure it's compatible with what the playbook would have configured (web, web-secure, matrix-federation entrypoints, etc.)
|
# - nevertheless, the playbook expects that you would install Traefik yourself via other means
|
||||||
# - you may wish to set `matrix_playbook_reverse_proxyable_services_additional_network` to the name of your Traefik network
|
# - you should make sure your Traefik configuration is compatible with what the playbook would have configured (web, web-secure, matrix-federation entrypoints, etc.)
|
||||||
|
# - you need to set `matrix_playbook_reverse_proxyable_services_additional_network` to the name of your Traefik network
|
||||||
# - you may wish to enable `devture_traefik_certs_dumper_enabled` and point it to your Traefik's SSL certificates (`devture_traefik_certs_dumper_ssl_dir_path`)
|
# - you may wish to enable `devture_traefik_certs_dumper_enabled` and point it to your Traefik's SSL certificates (`devture_traefik_certs_dumper_ssl_dir_path`)
|
||||||
#
|
#
|
||||||
# - `other-nginx-non-container`
|
# - `other-nginx-non-container`
|
||||||
|
|
Loading…
Reference in a new issue