Modify naming in the cloud resources and client config files

This commit is contained in:
Jack Ivanov 2019-02-25 15:20:13 +01:00
parent 98a1867c0e
commit f8db81fa8b
5 changed files with 20 additions and 32 deletions

View file

@ -16,13 +16,13 @@
- name: Create AlgoVPN Server - name: Create AlgoVPN Server
azure_rm_deployment: azure_rm_deployment:
state: present state: present
deployment_name: "AlgoVPN-{{ algo_server_name }}" deployment_name: "{{ algo_server_name }}"
template: "{{ lookup('file', 'deployment.json') }}" template: "{{ lookup('file', 'deployment.json') }}"
secret: "{{ secret }}" secret: "{{ secret }}"
tenant: "{{ tenant }}" tenant: "{{ tenant }}"
client_id: "{{ client_id }}" client_id: "{{ client_id }}"
subscription_id: "{{ subscription_id }}" subscription_id: "{{ subscription_id }}"
resource_group_name: "AlgoVPN-{{ algo_server_name }}" resource_group_name: "{{ algo_server_name }}"
parameters: parameters:
AlgoServerName: AlgoServerName:
value: "{{ algo_server_name }}" value: "{{ algo_server_name }}"

View file

@ -21,9 +21,7 @@ Resources:
InstanceTenancy: default InstanceTenancy: default
Tags: Tags:
- Key: Name - Key: Name
Value: Algo Value: !Ref AWS::StackName
- Key: Environment
Value: Algo
VPCIPv6: VPCIPv6:
Type: AWS::EC2::VPCCidrBlock Type: AWS::EC2::VPCCidrBlock
@ -35,22 +33,18 @@ Resources:
Type: AWS::EC2::InternetGateway Type: AWS::EC2::InternetGateway
Properties: Properties:
Tags: Tags:
- Key: Environment
Value: Algo
- Key: Name - Key: Name
Value: Algo Value: !Ref AWS::StackName
Subnet: Subnet:
Type: AWS::EC2::Subnet Type: AWS::EC2::Subnet
Properties: Properties:
CidrBlock: 172.16.254.0/23 CidrBlock: 172.16.254.0/23
MapPublicIpOnLaunch: false MapPublicIpOnLaunch: false
Tags:
- Key: Environment
Value: Algo
- Key: Name
Value: Algo
VpcId: !Ref VPC VpcId: !Ref VPC
Tags:
- Key: Name
Value: !Ref AWS::StackName
VPCGatewayAttachment: VPCGatewayAttachment:
Type: AWS::EC2::VPCGatewayAttachment Type: AWS::EC2::VPCGatewayAttachment
@ -63,10 +57,8 @@ Resources:
Properties: Properties:
VpcId: !Ref VPC VpcId: !Ref VPC
Tags: Tags:
- Key: Environment
Value: Algo
- Key: Name - Key: Name
Value: Algo Value: !Ref AWS::StackName
Route: Route:
Type: AWS::EC2::Route Type: AWS::EC2::Route
@ -140,9 +132,7 @@ Resources:
CidrIp: 0.0.0.0/0 CidrIp: 0.0.0.0/0
Tags: Tags:
- Key: Name - Key: Name
Value: Algo Value: !Ref AWS::StackName
- Key: Environment
Value: Algo
EC2Instance: EC2Instance:
Type: AWS::EC2::Instance Type: AWS::EC2::Instance
@ -181,9 +171,7 @@ Resources:
cfn-signal -e $? --stack ${AWS::StackName} --resource EC2Instance --region ${AWS::Region} cfn-signal -e $? --stack ${AWS::StackName} --resource EC2Instance --region ${AWS::Region}
Tags: Tags:
- Key: Name - Key: Name
Value: Algo Value: !Ref AWS::StackName
- Key: Environment
Value: Algo
ElasticIP: ElasticIP:
Type: AWS::EC2::EIP Type: AWS::EC2::EIP

View file

@ -8,8 +8,8 @@
- name: Network configured - name: Network configured
gce_net: gce_net:
name: "algo-net-{{ algo_server_name }}" name: "{{ algo_server_name }}"
fwname: "algo-net-{{ algo_server_name }}-fw" fwname: "{{ algo_server_name }}-fw"
allowed: "udp:500,4500,{{ wireguard_port }};tcp:22" allowed: "udp:500,4500,{{ wireguard_port }};tcp:22"
state: "present" state: "present"
mode: auto mode: auto
@ -45,7 +45,7 @@
credentials_file: "{{ credentials_file_path }}" credentials_file: "{{ credentials_file_path }}"
project_id: "{{ project_id }}" project_id: "{{ project_id }}"
metadata: '{"ssh-keys":"ubuntu:{{ ssh_public_key_lookup }}"}' metadata: '{"ssh-keys":"ubuntu:{{ ssh_public_key_lookup }}"}'
network: "algo-net-{{ algo_server_name }}" network: "{{ algo_server_name }}"
tags: tags:
- "environment-algo" - "environment-algo"
register: google_vm register: google_vm

View file

@ -85,7 +85,7 @@ Save the embedded CA cert and encrypted user PKCS12 file.
$ErrorActionPreference = "Stop" $ErrorActionPreference = "Stop"
$VpnServerAddress = "{{ IP_subject_alt_name }}" $VpnServerAddress = "{{ IP_subject_alt_name }}"
$VpnName = "Algo VPN {{ IP_subject_alt_name }} IKEv2" $VpnName = "AlgoVPN {{ algo_server_name }} IKEv2"
$VpnUser = "{{ item.0 }}" $VpnUser = "{{ item.0 }}"
$CaCertificateBase64 = "{{ PayloadContentCA }}" $CaCertificateBase64 = "{{ PayloadContentCA }}"
$UserPkcs12Base64 = "{{ item.1.stdout }}" $UserPkcs12Base64 = "{{ item.1.stdout }}"

View file

@ -112,7 +112,7 @@
<key>PayloadDescription</key> <key>PayloadDescription</key>
<string>Configures VPN settings</string> <string>Configures VPN settings</string>
<key>PayloadDisplayName</key> <key>PayloadDisplayName</key>
<string>VPN</string> <string>{{ algo_server_name }}</string>
<key>PayloadIdentifier</key> <key>PayloadIdentifier</key>
<string>com.apple.vpn.managed.{{ VPN_PayloadIdentifier }}</string> <string>com.apple.vpn.managed.{{ VPN_PayloadIdentifier }}</string>
<key>PayloadType</key> <key>PayloadType</key>
@ -129,7 +129,7 @@
<integer>0</integer> <integer>0</integer>
</dict> </dict>
<key>UserDefinedName</key> <key>UserDefinedName</key>
<string>Algo VPN {{ IP_subject_alt_name }} IKEv2</string> <string>AlgoVPN {{ algo_server_name }} IKEv2</string>
<key>VPNType</key> <key>VPNType</key>
<string>IKEv2</string> <string>IKEv2</string>
</dict> </dict>
@ -145,7 +145,7 @@
<key>PayloadDescription</key> <key>PayloadDescription</key>
<string>Adds a PKCS#12-formatted certificate</string> <string>Adds a PKCS#12-formatted certificate</string>
<key>PayloadDisplayName</key> <key>PayloadDisplayName</key>
<string>{{ item.0 }}.p12</string> <string>{{ algo_server_name }}</string>
<key>PayloadIdentifier</key> <key>PayloadIdentifier</key>
<string>com.apple.security.pkcs12.{{ pkcs12_PayloadCertificateUUID }}</string> <string>com.apple.security.pkcs12.{{ pkcs12_PayloadCertificateUUID }}</string>
<key>PayloadType</key> <key>PayloadType</key>
@ -165,7 +165,7 @@
<key>PayloadDescription</key> <key>PayloadDescription</key>
<string>Adds a CA root certificate</string> <string>Adds a CA root certificate</string>
<key>PayloadDisplayName</key> <key>PayloadDisplayName</key>
<string>{{ IP_subject_alt_name }}</string> <string>{{ algo_server_name }}</string>
<key>PayloadIdentifier</key> <key>PayloadIdentifier</key>
<string>com.apple.security.root.{{ CA_PayloadIdentifier }}</string> <string>com.apple.security.root.{{ CA_PayloadIdentifier }}</string>
<key>PayloadType</key> <key>PayloadType</key>
@ -177,11 +177,11 @@
</dict> </dict>
</array> </array>
<key>PayloadDisplayName</key> <key>PayloadDisplayName</key>
<string>{{ IP_subject_alt_name }} IKEv2</string> <string>AlgoVPN {{ algo_server_name }} IKEv2</string>
<key>PayloadIdentifier</key> <key>PayloadIdentifier</key>
<string>donut.local.{{ 500000 | random | to_uuid | upper }}</string> <string>donut.local.{{ 500000 | random | to_uuid | upper }}</string>
<key>PayloadOrganization</key> <key>PayloadOrganization</key>
<string>Algo VPN</string> <string>AlgoVPN</string>
<key>PayloadRemovalDisallowed</key> <key>PayloadRemovalDisallowed</key>
<false/> <false/>
<key>PayloadType</key> <key>PayloadType</key>