openpunk-ansible/roles/tor/tasks/main.yml

30 lines
590 B
YAML

---
- name: Install torrc
template:
src: templates/torrc
dest: /etc/tor/torrc
owner: root
group: root
mode: u=rw,g=r,o=r
- name: Create Tor HS directory
file:
path: /var/lib/tor/{{ domain }}
state: directory
owner: debian-tor
group: debian-tor
mode: u=rwx,g=,o=
- name: Set Tor HS keys
copy:
src: secrets/hs_ed25519_secret_key
dest: /var/lib/tor/{{ domain }}/hs_ed25519_secret_key
owner: debian-tor
group: debian-tor
mode: u=rw,g=,o=
- name: Enable Tor Service
systemd:
name: tor
enabled: yes
state: started