allow_override:
- All
directoryindex: 'index.php index.html'
-# - location1:
-# provider: location
-# path: '/'
-# auth_type: Digest
-# auth_name: server
-# auth_digest_provider: file
-# auth_digest_algorithm: MD5
-# auth_user_file: '/etc/httpd/htdigest'
-# auth_require: 'valid-user'
+ # - location1:
+ # provider: location
+ # path: '/'
+ # auth_type: Digest
+ # auth_name: server
+ # auth_digest_provider: file
+ # auth_digest_algorithm: MD5
+ # auth_user_file: '/etc/httpd/htdigest'
+ # auth_require: 'valid-user'
test-aamt-facebook:
servername: test-aamt-facebook.pixelpark.net
serveraliases:
php::fpm::pools:
www:
- ensure: absent
\ No newline at end of file
+ ensure: absent
apply: true
sudo: true
#
-#infra::additional_classes:
+# infra::additional_classes:
# - apache::mod::headers
# - infra::profile::apache
# - apache::mod::proxy_ajp
# - infra::profile::mysql_server
#
-#infra::profile::apache::pp_vhosts:
-####test-dev-basftoday:
+# infra::profile::apache::pp_vhosts:
+# ###test-dev-basftoday:
# servername: test-dev-basftoday-de.pixelpark.net
# ssl_cert: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem'
# ssl_key: '/etc/pki/tls/private/wildcard.pixelpark.net-key.pem'
---
aem::dispatcher::proxy_host: dev-author01-bbm.pixelpark.net
aem::dispatcher::proxy_port: 4502
-aem::dispatcher::type: author
\ No newline at end of file
+aem::dispatcher::type: author
infra::additional_classes:
- aem::author
- aem
-
---
infra::role: base
aem::dispatcher::proxy_host: dev-publish01-bbm.pixelpark.net
-aem::dispatcher::proxy_port: 4503
\ No newline at end of file
+aem::dispatcher::proxy_port: 4503
aem::author::install_options:
download_type: maven
download_uri: "com.pixelpark.aem.bbm:aem-quickstart:6.0:jar"
-#aem::author::install_mode: 'backup'
-#aem::author::install_options:
+# aem::author::install_mode: 'backup'
+# aem::author::install_options:
# download_type: 'wget'
# download_uri: 'http://tools-bbm.pixelpark.net:8081/nexus/service/local/repositories/thirdparty/content/com/pixelpark/aem/bbm/aem_base_author/0.1.0/aem_base_author-0.1.0.tar.gz'
aem::publish::install_options:
download_type: maven
download_uri: "com.pixelpark.aem.bbm:aem-quickstart:6.0:jar"
-#aem::publish::install_mode: 'backup'
-#aem::publish::install_options:
+# aem::publish::install_mode: 'backup'
+# aem::publish::install_options:
# download_type: 'wget'
# download_uri: 'http://tools-bbm.pixelpark.net:8081/nexus/service/local/repositories/thirdparty/content/com/pixelpark/aem/bbm/aem_base_publish/0.1.0/aem_base_publish-0.1.0.tar.gz'
aem::manage_oracle_java: true
aem::base_path: '/opt/aem'
aem::maven::install: true
-aem::maven::repos:
+aem::maven::repos:
- "id": "pixelpark.nexus"
"url": "http://tools-bbm.pixelpark.net:8081/nexus/content/repositories/thirdparty/"
dev-site03-bbm.pixelpark.net:
path: "/content/geometrixx-outdoors"
default_lang: en
-
aem::hosts:
dev-publish01-bbm.pixelpark.net:
ip: '77.74.232.106'
dev-dispatcher02-bbm.pixelpark.net:
ip: '77.74.232.107'
host_aliases:
- - flush02
\ No newline at end of file
+ - flush02
- FollowSymLinks
- MultiViews
allow_override:
- - None
+ - None
- preapproot:
provider: directory
path: '/var/www/bkk-express-proxy'
ssl_cert: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem'
ssl_key: '/etc/pki/tls/private/wildcard.pixelpark.net-key.pem'
ssl_chain: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem'
-# headers:
-# - 'set X-Frame-Options: sameorigin'
-# - 'set X-XSS-Protection: "1; mode=block"'
-# - 'set X-Content-Type-Options: nosniff'
+ # headers:
+ # - 'set X-Frame-Options: sameorigin'
+ # - 'set X-XSS-Protection: "1; mode=block"'
+ # - 'set X-Content-Type-Options: nosniff'
headers_ssl:
- 'always set Strict-Transport-Security "max-age=31556926"'
custom_fragment: |
- FollowSymLinks
- MultiViews
allow_override:
- - None
+ - None
- preapproot:
provider: directory
path: '/var/www/bkk-imagetool'
options:
- - None
+ - None
infra::profile::typo3::projects:
cms01:
ssl_cert: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem'
ssl_key: '/etc/pki/tls/private/wildcard.pixelpark.net-key.pem'
ssl_chain: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem'
-# redirect_dest_non_ssl: 'https://dev-cms01-meine-krankenkasse-de.pixelpark.net/'
+ # redirect_dest_non_ssl: 'https://dev-cms01-meine-krankenkasse-de.pixelpark.net/'
user: deploy.vogel
mode: '2775'
ssl_cert: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem'
ssl_key: '/etc/pki/tls/private/wildcard.pixelpark.net-key.pem'
ssl_chain: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem'
-# redirect_dest_non_ssl: 'https://dev-member01-meine-krankenkasse-de.pixelpark.net'
+ # redirect_dest_non_ssl: 'https://dev-member01-meine-krankenkasse-de.pixelpark.net'
user: deploy.vogel
mode: '2775'
setenv:
ssl_cert: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem'
ssl_key: '/etc/pki/tls/private/wildcard.pixelpark.net-key.pem'
ssl_chain: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem'
-# redirect_dest_non_ssl: 'https://dev-info01-meine-krankenkasse-de.pixelpark.net'
+ # redirect_dest_non_ssl: 'https://dev-info01-meine-krankenkasse-de.pixelpark.net'
user: deploy.vogel
mode: '2775'
setenv:
apply: true
sudo: true
-mcollective::core_libdir: '/usr/share/mcollective/plugins/'
\ No newline at end of file
+mcollective::core_libdir: '/usr/share/mcollective/plugins/'
serveraliases:
- test-www-anmeldung02-bmas-de.pixelpark.net
cert_servername: 'wildcard.pixelpark.net'
- cert_customer: 'pixelpark'
+ cert_customer: 'pixelpark'
ssl_cert: '/etc/ssl/certs/wildcard.pixelpark.net-cert.pem'
ssl_key: '/etc/ssl/private/wildcard.pixelpark.net-key.pem'
ssl_chain: '/etc/ssl/certs/wildcard.pixelpark.net-cert.pem'
- www-g20-bmas.pixelpark.net
cert_servername: 'www.g20ewg.org'
cert_customer: 'bmas'
- cert_servername: 'www.g20ewg.org'
- cert_customer: 'bmas'
+ # cert_servername: 'www.g20ewg.org'
+ # cert_customer: 'bmas'
ssl_cert: '/etc/pki/tls/certs/www.g20ewg.org-cert.pem'
ssl_chain: '/etc/pki/tls/certs/www.g20ewg.org-cert.pem'
ssl_key: '/etc/pki/tls/private/www.g20ewg.org-key.pem'
solr::cores:
drupal:
- replace: true # Can trigger a restart from Solr if a change is found
+ replace: true # Can trigger a restart from Solr if a change is found
protwords_src_file: /srv/www/gf.sgb2.info/profiles/openatrium/modules/init/features/init_search/solr-conf/5.x/protwords.txt
schema_src_file: /srv/www/gf.sgb2.info/profiles/openatrium/modules/init/features/init_search/solr-conf/5.x/schema.xml
solrconfig_src_file: /srv/www/gf.sgb2.info/profiles/openatrium/modules/init/features/init_search/solr-conf/5.x/solrconfig.xml
php::extensions:
gd: {}
mbstring: {}
-# pecl-uploadprogress: {} -> benoetigt remi
+ # pecl-uploadprogress: {} -> benoetigt remi
mysqlnd: {}
opcache: {}
ssl_cert: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
ssl_chain: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
ssl_key: /etc/pki/tls/private/wildcard.pixelpark.net-key.pem
- #SetEnvIf User-Agent ".*MSIE.*" nokeepalive ssl-unclean-shutdown downgrade-1.0 force-response-1.0
+ # SetEnvIf User-Agent ".*MSIE.*" nokeepalive ssl-unclean-shutdown downgrade-1.0 force-response-1.0
mode: '2775'
directories:
- location1:
ssl_cert: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
ssl_chain: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
ssl_key: /etc/pki/tls/private/wildcard.pixelpark.net-key.pem
- #SetEnvIf User-Agent ".*MSIE.*" nokeepalive ssl-unclean-shutdown downgrade-1.0 force-response-1.0
+ # SetEnvIf User-Agent ".*MSIE.*" nokeepalive ssl-unclean-shutdown downgrade-1.0 force-response-1.0
mode: '2775'
directories:
- location1:
infra::profile::apache::htdigest:
server:
- www: ENC[PKCS7,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]
\ No newline at end of file
+ www: ENC[PKCS7,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]
solr::cores:
drupal:
- replace: true # Can trigger a restart from Solr if a change is found
+ replace: true # Can trigger a restart from Solr if a change is found
protwords_src_file: /srv/www/gf.sgb2.info/profiles/openatrium/modules/init/features/init_search/solr-conf/5.x/protwords.txt
schema_src_file: /srv/www/gf.sgb2.info/profiles/openatrium/modules/init/features/init_search/solr-conf/5.x/schema.xml
solrconfig_src_file: /srv/www/gf.sgb2.info/profiles/openatrium/modules/init/features/init_search/solr-conf/5.x/solrconfig.xml
php::extensions:
gd: {}
mbstring: {}
-# pecl-uploadprogress: {} -> benoetigt remi
+ # pecl-uploadprogress: {} -> benoetigt remi
mysqlnd: {}
opcache: {}
ssl_cert: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
ssl_chain: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
ssl_key: /etc/pki/tls/private/wildcard.pixelpark.net-key.pem
- #SetEnvIf User-Agent ".*MSIE.*" nokeepalive ssl-unclean-shutdown downgrade-1.0 force-response-1.0
+ # SetEnvIf User-Agent ".*MSIE.*" nokeepalive ssl-unclean-shutdown downgrade-1.0 force-response-1.0
mode: '2775'
directories:
- directory_root:
auth_digest_algorithm: MD5
auth_user_file: '/etc/httpd/htdigest'
auth_require: 'valid-user'
-# rewrites:
-# - http_to_https:
-# comment: 'Alles auf https umleiten'
-# rewrite_cond:
-# - '%%{ich-trickse}{HTTPS} !=on'
-# rewrite_rule:
-# - ^(.*)$ https://gf.sgb2.info$1 [R=301,L]
+ # rewrites:
+ # - http_to_https:
+ # comment: 'Alles auf https umleiten'
+ # rewrite_cond:
+ # - '%%{ich-trickse}{HTTPS} !=on'
+ # rewrite_rule:
+ # - ^(.*)$ https://gf.sgb2.info$1 [R=301,L]
php_admin_value:
post_max_size: 128M
upload_max_filesize: 128M
servername: old-www-gf-sgb2-info.pixelpark.net
ssl: true
cert_servername: 'wildcard.pixelpark.net'
- cert_customer: 'pixelpark'
+ cert_customer: 'pixelpark'
ssl_cert: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
ssl_chain: /etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem
ssl_key: /etc/pki/tls/private/wildcard.pixelpark.net-key.pem
- #SetEnvIf User-Agent ".*MSIE.*" nokeepalive ssl-unclean-shutdown downgrade-1.0 force-response-1.0
+ # SetEnvIf User-Agent ".*MSIE.*" nokeepalive ssl-unclean-shutdown downgrade-1.0 force-response-1.0
mode: '2775'
directories:
- directory_root:
auth_digest_provider: file
auth_digest_algorithm: MD5
auth_user_file: '/etc/httpd/htdigest'
- auth_require: 'valid-user'
\ No newline at end of file
+ auth_require: 'valid-user'
jenkins_deploy:
priority: "06"
content: |
- jenkins ALL=(apache) NOPASSWD: ALL
\ No newline at end of file
+ jenkins ALL=(apache) NOPASSWD: ALL
solr::cores:
drupal:
- replace: true # Can trigger a restart from Solr if a change is found
+ replace: true # Can trigger a restart from Solr if a change is found
protwords_src_file: /srv/www/gf.sgb2.info/profiles/openatrium/modules/init/features/init_search/solr-conf/5.x/protwords.txt
schema_src_file: /srv/www/gf.sgb2.info/profiles/openatrium/modules/init/features/init_search/solr-conf/5.x/schema.xml
solrconfig_src_file: /srv/www/gf.sgb2.info/profiles/openatrium/modules/init/features/init_search/solr-conf/5.x/solrconfig.xml
php::extensions:
gd: {}
mbstring: {}
-# pecl-uploadprogress: {} -> benoetigt remi
+ # pecl-uploadprogress: {} -> benoetigt remi
mysqlnd: {}
opcache: {}
ssl_cert: /etc/pki/tls/certs/extranet.sgb2.info-cert.pem
ssl_chain: /etc/pki/tls/certs/extranet.sgb2.info-cert.pem
ssl_key: /etc/pki/tls/private/extranet.sgb2.info-key.pem
- #SetEnvIf User-Agent ".*MSIE.*" nokeepalive ssl-unclean-shutdown downgrade-1.0 force-response-1.0
+ # SetEnvIf User-Agent ".*MSIE.*" nokeepalive ssl-unclean-shutdown downgrade-1.0 force-response-1.0
rewrites:
- http_to_https:
comment: 'Alles auf https umleiten'
php_admin_value:
post_max_size: 128M
upload_max_filesize: 128M
- memory_limit: 512M
\ No newline at end of file
+ memory_limit: 512M
php::fpm::pools:
www:
- ensure: absent
\ No newline at end of file
+ ensure: absent
---
infra::role: base
infra::additional_classes:
-# - infra::profile::apache_php
+ # - infra::profile::apache_php
- infra::profile::typo3
- mysql::server::backup
- infra::profile::mysql_server
memcached::listen_ip: '127.0.0.1'
php::fpm::pools:
- fachkraefte-offensive: # Pool for pdfgenerator - pdf.fachkraefte-offensive.de
+ fachkraefte-offensive: # Pool for pdfgenerator - pdf.fachkraefte-offensive.de
listen: '/var/run/php5-fpm-fachkraefte-offensive.sock'
listen_owner: apache
listen_group: apache
pm_max_requests: '10000'
pm_status_path: '/php-fpm-status'
ping_path: '/ping'
- ping_response: 'pong'
+ ping_response: 'pong'
request_terminate_timeout: '5m'
request_slowlog_timeout: '10s'
slowlog: '/var/log/php-fpm/fachkraefte-offensive-slow.log'
- '%%{ich-trickse}{REQUEST_URI} "!^/pdfgenerator"'
rewrite_rule:
- '^(.*)$ http://www.fachkraefte-offensive.de [R=301,L]'
-# custom_fragment: 'ProxyPassMatch ^/(.*\.php(/.*)?)$ fcgi://127.0.0.1:9000/srv/www/pdfgenerator/$1'
+ # custom_fragment: 'ProxyPassMatch ^/(.*\.php(/.*)?)$ fcgi://127.0.0.1:9000/srv/www/pdfgenerator/$1'
directories:
- directory_docroot:
provider: 'directory'
- psyga.inqa-check.de
- personalplanung.inqa-check.de
- www.personalplanung.inqa-check.de
-# Pixelpark Addressen
+ # Pixelpark Addressen
- www-psyga-inqa-check-de.pixelpark.net
- www-personalplaner-inqa-check-de.pixelpark.net
cert_servername: 'wildcard.inqa-check.de'
db_pass: ENC[PKCS7,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]
db_user: inqacheck
db_name: inqacheck
- manage_typo3_project: false # selbe docroot wie inqacheck
+ manage_typo3_project: false # selbe docroot wie inqacheck
ip: 217.66.58.169
servername: unternehmenscheck.fachkraefte-offensive.de
serveraliases:
-# Pixelpark Addressen
+ # Pixelpark Addressen
- unternehmenscheck-fachkraefte-offensive-de.pixelpark.net
cert_servername: 'wildcard.pixelpark.net'
cert_customer: 'pixelpark'
db_pass: ENC[PKCS7,MIIBiQYJKoZIhvcNAQcDoIIBejCCAXYCAQAxggEhMIIBHQIBADAFMAACAQEwDQYJKoZIhvcNAQEBBQAEggEAoXhIE3LScKk47IO4nXcrbgQNQgsyD75DJhaURzgI2hCfp1RwhpINzL8py6SILYxcibhEyZWUAPf3jVqr2epjeiDH0DsemNUdjCrr58xGW8RVLOkdd9VQJSOsbSWPBaFpd835bf4HTiuC4SV0KIwtcZTY2l72EZ0YftoV0q/sKONgiZfhWvmE7uJ2fq0gADiSh24kj/q+1ySJ9vvB2ZxkzVs/ny7GUA7X9dORgVEXoZRXs3nesoXnqpjfkXmQlKu4+oapoRQ1EPtaWa0cHffTiKGOEdX1LsAIqb3iSjxIoyZM9gtUM2sYqSXgKdOOlZVjaxgQH0E7eVRBwrhgx6Vp/zBMBgkqhkiG9w0BBwEwHQYJYIZIAWUDBAEqBBDEiAzKKvLBnRd1nJZGmUzZgCDQmTbjzrxht7u+aEbfPNJjxhHY7EM+ChE2NQV6V5iSmg==]
db_user: inqacheck
db_name: inqacheck
- manage_typo3_project: false # selbe docroot wie inqacheck
+ manage_typo3_project: false # selbe docroot wie inqacheck
ip: 217.66.58.171
servername: beschaeftigtencheck.fachkraefte-offensive.de
serveraliases:
-# Pixelpark Addressen
+ # Pixelpark Addressen
- beschaeftigtencheck-fachkraefte-offensive-de.pixelpark.net
cert_servername: 'wildcard.pixelpark.net'
cert_customer: 'pixelpark'
ip: 217.66.58.172
servername: www.fis-netzwerk.de
serveraliases:
-# Pixelpark Addressen
+ # Pixelpark Addressen
- www-fis-netzwerk-de.pixelpark.net
- fis-netzwerk.de
cert_servername: 'www.fis-netzwerk.de'
docroot: /srv/www/mikrokredit
port: 80
docroot_owner: apache
- servername: test-www-mein-mikrokredit-de.pixelpark.net
+ servername: test-www-mein-mikrokredit-de.pixelpark.net
directories:
- directory_root:
provider: directory
---
infra::additional_classes:
- - accounts
\ No newline at end of file
+ - accounts
---
infra::additional_classes:
- - accounts
\ No newline at end of file
+ - accounts
infra::additional_classes:
- accounts
- pp_mcollective
-
---
infra::additional_classes:
- accounts
-
---
infra::additional_classes:
- - accounts
\ No newline at end of file
+ - accounts
---
infra::additional_classes:
- - accounts
\ No newline at end of file
+ - accounts
---
-infra::role: base
\ No newline at end of file
+infra::role: base
---
infra::additional_classes:
- pp_mcollective
-
---
infra::additional_classes:
- accounts
-
---
infra::role: base
-#infra::additional_classes:
+# infra::additional_classes:
# - httpd
# - vivenio::app_server::tomcat
# - vivenio::webserver::apache
- 0.0.0.0:443
extendedStatus: true
worker: true
-
-
+
vivenio::webserver::apache::host_servername: test-www-anmeldung-bmas-de.pixelpark.net
vivenio::webserver::apache::ssl: true
vivenio::webserver::apache::ssl_cert: /www/conf/certs/test-www-anmeldung-bmas-de.pixelpark.net
text: Postgres Datenbank fuer Applikation
java:
color: red
- text: Tomcat Java Applikation Vivenio
\ No newline at end of file
+ text: Tomcat Java Applikation Vivenio
infra::additional_classes:
- accounts
# - pp_mcollective
-
infra::additional_classes:
- accounts
# - pp_mcollective
-
+---
accounts::users:
jenkins:
apply: true
---
infra::role: base
-#infra::additional_classes:
+# infra::additional_classes:
# - httpd
# - vivenio
# - vivenio::app_server::tomcat
infra::additional_classes:
- accounts
- pp_mcollective
-
matthias.schmidt:
apply: true
sylvia.egger:
- apply: true
+ apply: true
sudo::configs:
cmd_alias:
becomeApache:
priority: "07"
content: |
- jenkins ALL=(apache) NOPASSWD: ALL
-
+ jenkins ALL=(apache) NOPASSWD: ALL
nodejs::manage_package_repo: false
ensure: absent
xymon::disk_warnlevel: 80
-xymon::disk_paniclevel: 90
\ No newline at end of file
+xymon::disk_paniclevel: 90
infra::profile::typo3::projects:
wissenschaftsjahr:
- version: '7.6.18' # dummy value
+ version: '7.6.18' # dummy value
db_pass: ENC[PKCS7,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]
- manage_typo3_project: false # on-top vhost for all wissenschaftsjahr vhosts
+ manage_typo3_project: false # on-top vhost for all wissenschaftsjahr vhosts
servername: test-web02-bmbf.pixelpark.net
fallbackresource: '/2016-17/service/seite-nicht-gefunden.html'
error_documents:
ssl_cert: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem'
ssl_key: '/etc/pki/tls/private/wildcard.pixelpark.net-key.pem'
ssl_chain: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem'
- minute: '*' # jede Minute Cron Job
+ minute: '*' # jede Minute Cron Job
directories:
- location1:
provider: location
post_max_size: '50M'
upload_max_filesize: '50M'
-infra::profile::flow::manage_php: false # managed by typo3
+infra::profile::flow::manage_php: false # managed by typo3
infra::profile::flow::projects:
wissen-flow:
version: '3.2.2'
ssl_key: '/etc/pki/tls/private/wildcard.pixelpark.net-key.pem'
ssl_chain: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem'
user: service.typo3
- setflow_context: false # we overwrite the default flow context
+ setflow_context: false # we overwrite the default flow context
setenv:
- 'FLOW_CONTEXT Development'
innodb_log_buffer_size: 16M
query_cache_type: 0
default-storage-engine: INNODB
- innodb_file_per_table: ON
+ innodb_file_per_table: 'ON'
infra::profile::apache::htdigest:
server:
infra::profile::typo3::projects:
wissenschaftsjahr:
- version: '7.6.18' # dummy value
+ version: '7.6.18' # dummy value
db_pass: ENC[PKCS7,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] # dummy value
- manage_typo3_project: false # on-top vhost for all wissenschaftsjahr vhosts
+ manage_typo3_project: false # on-top vhost for all wissenschaftsjahr vhosts
servername: www.wissenschaftsjahr.de
serveraliases:
- wissenschaftsjahr.de
ssl_cert: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem'
ssl_key: '/etc/pki/tls/private/wildcard.pixelpark.net-key.pem'
ssl_chain: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem'
- minute: '*' # jede Minute Cron Job
+ minute: '*' # jede Minute Cron Job
directories:
- location1:
provider: location
post_max_size: '50M'
upload_max_filesize: '50M'
-infra::profile::flow::manage_php: false # managed by typo3
+infra::profile::flow::manage_php: false # managed by typo3
infra::profile::flow::projects:
wissen-flow:
version: '3.2.2'
ssl_key: '/etc/pki/tls/private/wildcard.pixelpark.net-key.pem'
ssl_chain: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem'
user: service.typo3
- setflow_context: false # we overwrite the default flow context
+ setflow_context: false # we overwrite the default flow context
setenv:
- 'FLOW_CONTEXT Development'
priority: "06"
content: |
jenkins ALL=(apache) NOPASSWD: ALL
-
+
infra::role: base
infra::additional_classes:
- infra::profile::typo3
alias: '/logs'
path: '/var/log/httpd'
access_log_format: urchinpp_xf4
- ssl_real: false # because we are behind lb
-# ssl_cert: '/etc/pki/tls/certs/www.bundeshaushalt-info.de-cert.pem'
-# ssl_key: '/etc/pki/tls/private/www.bundeshaushalt-info.de-key.pem'
-# ssl_chain: '/etc/pki/tls/certs/www.bundeshaushalt-info.de-cert.pem'
+ ssl_real: false # because we are behind lb
+ # ssl_cert: '/etc/pki/tls/certs/www.bundeshaushalt-info.de-cert.pem'
+ # ssl_key: '/etc/pki/tls/private/www.bundeshaushalt-info.de-key.pem'
+ # ssl_chain: '/etc/pki/tls/certs/www.bundeshaushalt-info.de-cert.pem'
directories:
- directory2:
provider: directory
becomeApache:
priority: "06"
content: |
- jenkins ALL=(apache) NOPASSWD: ALL
+ jenkins ALL=(apache) NOPASSWD: ALL
infra::role: base
infra::additional_classes:
ssl_cert: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem'
ssl_chain: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem'
ssl_key: '/etc/pki/tls/private/wildcard.pixelpark.net-key.pem'
- #directories:
+ # directories:
# - location1:
# provider: location
# path: '/'
---
infra::role: base
+
infra::additional_classes:
-# - infra::profile::galera_cluster
-# - infra::profile::mysql_server
+ # - infra::profile::galera_cluster
+ # - infra::profile::mysql_server
- logstash
mysql::server::override_options:
mysqld:
- innodb_file_per_table: ON
+ innodb_file_per_table: 'ON'
mysql::server::backup::backupdir: /var/lib/backup/mysql
---
infra::role: base
infra::additional_classes:
-# - infra::profile::galera_cluster
-# - infra::profile::mysql_server
+ # - infra::profile::galera_cluster
+ # - infra::profile::mysql_server
- logstash
mysql::server::override_options:
mysqld:
- innodb_file_per_table: ON
+ innodb_file_per_table: 'ON'
mysql::server::backup::backupdir: /var/lib/backup/mysql
---
infra::role: base
-#infra::additional_classes: #disabled until merge of https://github.com/puppetlabs/puppetlabs-mysql/pull/920
- #- infra::profile::mysql_server # disabled until merge of https://github.com/puppetlabs/puppetlabs-mysql/pull/920
+# infra::additional_classes: #disabled until merge of https://github.com/puppetlabs/puppetlabs-mysql/pull/920
+# - infra::profile::mysql_server # disabled until merge of https://github.com/puppetlabs/puppetlabs-mysql/pull/920
mysql::server::override_options:
mysqld:
---
infra::role: base
infra::additional_classes:
-# - infra::profile::galera_cluster
-# - infra::profile::mysql_server
+ # - infra::profile::galera_cluster
+ # - infra::profile::mysql_server
- logstash
mysql::server::override_options:
mysqld:
- innodb_file_per_table: ON
+ innodb_file_per_table: 'ON'
mysql::server::backup::backupdir: /var/lib/backup/mysql
---
-infra::role: base
\ No newline at end of file
+infra::role: base
user: ADMINPORTAL
password: hee3eeK4Gouyii5a
host: '%'
-mysql::server::backup::backupdir: /var/lib/backup/mysql
\ No newline at end of file
+mysql::server::backup::backupdir: /var/lib/backup/mysql
---
-infra::role: base
\ No newline at end of file
+infra::role: base
jenkins ALL=(ALL) NOPASSWD: ALL
infra::role: base
-#infra::additional_classes: # disabled until merge of https://github.com/puppetlabs/puppetlabs-mysql/pull/920
- #- infra::profile::mysql_server # disabled until merge of https://github.com/puppetlabs/puppetlabs-mysql/pull/920
+# infra::additional_classes: # disabled until merge of https://github.com/puppetlabs/puppetlabs-mysql/pull/920
+# - infra::profile::mysql_server # disabled until merge of https://github.com/puppetlabs/puppetlabs-mysql/pull/920
mysql::server::override_options:
mysqld:
---
-infra::role: base
\ No newline at end of file
+infra::role: base
---
infra::role: base
infra::additional_classes:
-# - infra::profile::galera_cluster
-# - infra::profile::mysql_server
+ # - infra::profile::galera_cluster
+ # - infra::profile::mysql_server
- logstash
galera::repo::yum_mariadb_baseurl: "http://repo.pixelpark.com/Linux/yum/mariadb/10.1/centos/%{operatingsystemmajrelease}/%{architecture}/"
infra::profile::galera_cluster::override_options:
mysqld:
- innodb_file_per_table: ON
+ innodb_file_per_table: 'ON'
wait_timeout: '600'
interactive_timeout: '600'
max_allowed_packet: '128M'
---
infra::role: base
infra::additional_classes:
-# - infra::profile::galera_cluster
-# - infra::profile::mysql_server
+ # - infra::profile::galera_cluster
+ # - infra::profile::mysql_server
- logstash
galera::repo::yum_mariadb_baseurl: "http://repo.pixelpark.com/Linux/yum/mariadb/10.1/centos/%{operatingsystemmajrelease}/%{architecture}/"
infra::profile::galera_cluster::override_options:
mysqld:
- innodb_file_per_table: ON
+ innodb_file_per_table: 'ON'
wait_timeout: '600'
interactive_timeout: '600'
max_allowed_packet: '128M'
---
infra::role: base
infra::additional_classes:
-# - infra::profile::galera_cluster
-# - infra::profile::mysql_server
+ # - infra::profile::galera_cluster
+ # - infra::profile::mysql_server
- logstash
galera::repo::yum_mariadb_baseurl: "http://repo.pixelpark.com/Linux/yum/mariadb/10.1/centos/%{operatingsystemmajrelease}/%{architecture}/"
infra::profile::galera_cluster::override_options:
mysqld:
- innodb_file_per_table: ON
+ innodb_file_per_table: 'ON'
wait_timeout: '600'
interactive_timeout: '600'
max_allowed_packet: '128M'
---
-infra::role: base
\ No newline at end of file
+infra::role: base
---
-infra::role: base
\ No newline at end of file
+infra::role: base
---
-infra::role: base
\ No newline at end of file
+infra::role: base
---
-infra::role: base
\ No newline at end of file
+infra::role: base
+---
accounts::users:
jenkins:
apply: true
- grwo4:
comment: 'Ueber die Gruenderwoche'
rewrite_rule:
- - ^/ueber/index.php$ https://www.gruenderwoche.de/ueber-die-gruenderwoche/ [R=301,L]
+ - ^/ueber/index.php$ https://www.gruenderwoche.de/ueber-die-gruenderwoche/ [R=301,L]
- grwo5:
comment: 'Partnerbereich'
rewrite_rule:
- - ^/partner/partnerbereich/index.php$ https://www.gruenderwoche.de/partnerbereich/ [R=301,L]
+ - ^/partner/partnerbereich/index.php$ https://www.gruenderwoche.de/partnerbereich/ [R=301,L]
- grwo6:
comment: 'Fuer Partner und Foerderer'
rewrite_rule:
- grwo13:
comment: 'Ansprechpartner'
rewrite_rule:
- - ^/partner/ansprechpartner/index.php$ https://www.gruenderwoche.de/service/ansprechpartner/ [R=301,L]
+ - ^/partner/ansprechpartner/index.php$ https://www.gruenderwoche.de/service/ansprechpartner/ [R=301,L]
- grwo14:
comment: 'Als Partner registrieren'
rewrite_rule:
- - ^/partner/registrierung.php$ https://www.gruenderwoche.de/fuer-partner-und-foerderer/als-partner-registrieren/ [R=301,L]
+ - ^/partner/registrierung.php$ https://www.gruenderwoche.de/fuer-partner-und-foerderer/als-partner-registrieren/ [R=301,L]
- grwo15:
comment: 'Veranstaltungsideen'
rewrite_rule:
php::dev: true
php::pear: true
-apache::timeout: 1800 # temporary for migration
+apache::timeout: 1800 # temporary for migration
infra::profile::apache::htdigest:
server:
www: ENC[PKCS7,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]
---
-infra::role: base_for_old_systems # because we don't need xymon
+infra::role: base_for_old_systems # because we don't need xymon
infra::additional_classes:
- accounts
accounts::users:
---
-infra::role: base_for_old_systems # because we don't need xymon
+infra::role: base_for_old_systems # because we don't need xymon
infra::additional_classes:
- accounts
accounts::users:
---
infra::additional_classes:
- accounts
-
---
-infra::role: base_for_old_systems # because we don't need xymon
+infra::role: base_for_old_systems # because we don't need xymon
infra::additional_classes:
- accounts
accounts::users:
infra::additional_classes:
- accounts
- pp_mcollective
-
---
infra::role: base
-#infra::additional_classes:
+# infra::additional_classes:
# - logstash
logstash::generic_resource:
catalina:
resource: file
- order: 10 # Input
+ order: 10 # Input
parameters:
path: '/opt/gsb/active/rls-tomcat/logs/catalina.out'
type: catalina-tomcat
- "%{customer}"
webapp:
resource: file
- order: 10 # Input
+ order: 10 # Input
parameters:
path: '/opt/gsb/active/rls-tomcat/logs/webapp-replicationliveserver.log'
type: webapp
---
-infra::role: base_for_old_systems # because we don't need xymon
+infra::role: base_for_old_systems # because we don't need xymon
infra::additional_classes:
- accounts
accounts::users:
---
-infra::role: base_for_old_systems # because we don't need xymon
+infra::role: base_for_old_systems # because we don't need xymon
infra::additional_classes:
- accounts
accounts::users:
mailman::language: 'en'
mailman::mta: 'Postfix'
mailman::smtp_max_rcpts: '50'
-mailman::enable_service: true
httpd::webserver:
test-listserv-bmwi-de-tmp.pixelpark.net:
xymon::disks:
'/boot':
- ignore: true
\ No newline at end of file
+ ignore: true
+---
accounts::users:
jenkins:
apply: true
php::fpm::pools:
www:
- ensure: absent
\ No newline at end of file
+ ensure: absent
log-bin: 'binlog'
binlog-format: 'MIXED'
binlog-ignore-db: 'performance_schema, information_schema'
-
solr::version: 6.3.0
solr::cloud: true
solr::cloudmembers:
- - search01-buschjaeger-de.pixelpark.net:2181
- - search02-buschjaeger-de.pixelpark.net:2181
- - search03-buschjaeger-de.pixelpark.net:2181
- - search04-buschjaeger-de.pixelpark.net:2181
-# We create empty core,because we get Config from Zookeeper, Read https://intra.pixelpark.com/confluence/x/khd1Ag how to move config files to zookeeper
+ - search01-buschjaeger-de.pixelpark.net:2181
+ - search02-buschjaeger-de.pixelpark.net:2181
+ - search03-buschjaeger-de.pixelpark.net:2181
+ - search04-buschjaeger-de.pixelpark.net:2181
+ # We create empty core,because we get Config from Zookeeper, Read https://intra.pixelpark.com/confluence/x/khd1Ag how to move config files to zookeeper
solr::cores:
german: {}
austrian: {}
- busch-jaeger.de
- www.busch-jaeger.com
- busch-jaeger.com
- # Pixelpark Aliase
+ # Pixelpark Aliase
- web-buschjaeger-de.pixelpark.net
- web01-buschjaeger-de.pixelpark.net
- web02-buschjaeger-de.pixelpark.net
apply: true
### SFTP Accounts ###
-#infra::profile::apache::pp_vhosts:
+# infra::profile::apache::pp_vhosts:
# update.busch-jaeger.de:
# ip: 93.188.107.176
# docroot: '/var/www/html/update.busch-jaeger.de'
apply: true
### SFTP Accounts ###
-#infra::profile::apache::pp_vhosts:
+# infra::profile::apache::pp_vhosts:
# update.busch-jaeger.de:
# ip: 93.188.107.177
# docroot: '/var/www/html/update.busch-jaeger.de'
---
-infra::role: base_for_old_systems # because we don't need xymon
+infra::role: base_for_old_systems # because we don't need xymon
infra::additional_classes:
- accounts
-# Disable because of extra 7.3 download path
-# - repo::redhat::zfs
+ # Disable because of extra 7.3 download path
+ # - repo::redhat::zfs
- infra::profile::aem::author
infra::profile::cron::cronjobs:
zfs_rotation:
user: root
- command: '/usr/local/sbin/zfs_rotation.sh datapool 2592000' # 30 days
+ command: '/usr/local/sbin/zfs_rotation.sh datapool 2592000' # 30 days
minute: 0
hour: 2
- description: ZFS Snapshot
\ No newline at end of file
+ description: ZFS Snapshot
- 'application/x-javascript application/javascript application/ecmascript'
- 'application/rss+xml'
- 'application/json'
- - 'image/svg+xml' # new
+ - 'image/svg+xml' # new
apache::log_formats:
lb_combined: '%%{ich-trickse}{X-Forwarded-For}i %l %u %t \"%r\" %>s %b \"%%{ich-trickse}{Referer}i\" \"%%{ich-trickse}{User-Agent}i\"'
---
epel::epel_baseurl: "https://repo.pixelpark.com/Linux/yum/epel/%{operatingsystemmajrelease}/$basearch"
-epel::epel_mirrorlist: absent
\ No newline at end of file
+epel::epel_mirrorlist: absent
+---
mcollective::connector: rabbitmq
mcollective::securityprovider: ssl
mcollective::classesfile: "%{puppet_vardir}/state/classes.txt"
mcollective::ssl_server_private: puppet:///mco_dir/mcollective-servers-key.pem
mcollective::ssl_client_certs: puppet:///mco_dir/clients
mcollective::core_libdir: '/usr/libexec/mcollective'
-
\ No newline at end of file
---
-
mysql::server::remove_default_accounts: true
-
-
mysql::server::backup::backupuser: backup
mysql::server::backup::backuppassword: ENC[PKCS7,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]
mysql::server::backup::backupdir: /srv/backup/mysql
mysql::server::backup::backuprotate: 3
mysql::server::backup::maxallowedpacket: '512M'
-
mysql::server::backup::file_per_database: true
mysql::server::backup::time:
- '21'
- - '30'
\ No newline at end of file
+ - '30'
ntp::servers:
- time01.pixelpark.com
- time02.pixelpark.com
- - time03.pixelpark.com
\ No newline at end of file
+ - time03.pixelpark.com
php::manage_repos: false
php::dev: false
php::composer: false
-php::pear: false
\ No newline at end of file
+php::pear: false
repo::redhat::centos::updates_baseurl: 'https://repo.pixelpark.com/Linux/yum/centos/$releasever/updates/$basearch/'
repo::redhat::centos::extra_baseurl: 'https://repo.pixelpark.com/Linux/yum/centos/$releasever/extras/$basearch/'
-repo::redhat::passenger::baseurl: 'https://repo.pixelpark.com/Linux/yum/phusionpassenger/el/$releasever/$basearch'
\ No newline at end of file
+repo::redhat::passenger::baseurl: 'https://repo.pixelpark.com/Linux/yum/phusionpassenger/el/$releasever/$basearch'
---
-rvm::key_server: 'hkp://keys.gnupg.net:80'
\ No newline at end of file
+rvm::key_server: 'hkp://keys.gnupg.net:80'
# Fix some versions
zabbix::repo::zabbix_version: 2.4
-zabbix::agent::zabbix_version: 2.4
\ No newline at end of file
+zabbix::agent::zabbix_version: 2.4