Ansible Let's Encrypt role, using dehydrated.
- Debian Jessie or newer
- NGINX (optional)
letsencrypt_user
: the user that will execute everything, default:letsencrypt
letsencrypt_basedir
: where to store certs and challenges, default:/srv/letsencrypt
letsencrypt_pk_renew
: whether to generate a new private key on every update, default:no
letsencrypt_domains
: which domains to request certs for, default:[]
letsencrypt_httpd
: enable http integration, default:none
, choices:none
,nginx
,apache2
None :-)
- hosts: servers
roles:
- { role: evgeni.letsencrypt }
MIT/Expat
Evgeni Golov evgeni@golov.de