- risky-file-permissions (32): add explicit mode: to copy/template/file tasks, matching the umask-derived permissions they already had (0644 for configs and systemd units, 0755 for created directories) — no functional change. - var-naming (28): prefix role-scoped vars with their role name across pi_dhtsensor, pi_dhtsensor_circuitpython, pi_shairport, pi_squeezelite, pi_squeezelite_custom, pi_sispmctl, pi_standard_setup, and pi_sysdweb's sysdweb_name (shared by 9 consuming roles). Updated every dependent template, task reference, and matching inventory.yml override, and verified resolved values with ansible-inventory before/after. - Fixes a latent bug found while renaming: pi_standard_setup's "Get/Change WiFi country" tasks reused the name wifi_country for both the role default and a register, so the register silently clobbered the default before do_wifi_country ever read it. Split into distinct names so the intended default value is used. - package-latest (2): pin docker-ce/docker-compose-plugin installs in server_debian_docker to state: present. - no-handler (1): move pi_lirc's "Reboot if boot overlay changed" into a proper handler notified by the boot-overlay task. ansible-lint now passes clean at the production profile. Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
46 lines
1.1 KiB
YAML
46 lines
1.1 KiB
YAML
---
|
|
- name: Install packages required for squeeze server
|
|
ansible.builtin.apt:
|
|
name:
|
|
- libsox-fmt-all
|
|
- libflac-dev
|
|
- libfaad2
|
|
- libmad0
|
|
- perl-openssl-defaults
|
|
- libnet-ssleay-perl
|
|
- libio-socket-ssl-perl
|
|
- nasm
|
|
- build-essential
|
|
- iptables-persistent
|
|
cache_valid_time: 7200
|
|
state: present
|
|
- name: Copy squeezeserver package
|
|
ansible.builtin.copy:
|
|
src: logitechmediaserver_8.4.0_arm.deb
|
|
dest: /tmp
|
|
mode: "0644"
|
|
- name: Install squeezeserver package
|
|
ansible.builtin.apt:
|
|
deb: /tmp/logitechmediaserver_8.4.0_arm.deb
|
|
- name: Enable sysdweb autostart
|
|
ansible.builtin.systemd:
|
|
name: logitechmediaserver
|
|
state: started
|
|
enabled: "yes"
|
|
- name: Add to sysdweb
|
|
ansible.builtin.include_role:
|
|
name: pi_sysdweb
|
|
vars:
|
|
pi_sysdweb_name: logitechmediaserver
|
|
- name: Forward port 80 to 9000
|
|
ansible.builtin.iptables:
|
|
table: nat
|
|
chain: PREROUTING
|
|
in_interface: eth0
|
|
protocol: tcp
|
|
match: tcp
|
|
destination_port: "80"
|
|
jump: REDIRECT
|
|
to_ports: "9000"
|
|
comment: Redirect web traffic to port 9000
|