--- - name: Create Mastodon folder file: path: "{{ mastodon_composer_folder }}" state: directory - name: Create Mastodon database folder file: path: "{{ mastodon_composer_folder }}/database" state: directory - name: Create Mastodon postgresql folder file: path: "{{ mastodon_composer_folder }}/database/postgresql" state: directory - name: Create Mastodon redis folder file: path: "{{ mastodon_composer_folder }}/database/redis" state: directory - name: Create Mastodon elasticsearch folder file: path: "{{ mastodon_composer_folder }}/database/elasticsearch" owner: 1000 state: directory - name: Create Mastodon web folder file: path: "{{ mastodon_composer_folder }}/web" owner: 991 group: 991 state: directory - name: Create Mastodon web public folder file: path: "{{ mastodon_composer_folder }}/web/public" owner: 991 group: 991 state: directory - name: Create Mastodon web system folder file: path: "{{ mastodon_composer_folder }}/web/system" owner: 991 group: 991 state: directory - name: Copy Dockerfile from Mastodon repo copy: src: files/Dockerfile dest: "{{ mastodon_composer_folder }}/Dockerfile" - name: Ensure mastodon folder exists file: path: "{{ mastodon_composer_folder }}" state: directory - name: Create docker-compose.yaml file template: src: templates/docker-compose.yml.j2 dest: "{{ mastodon_composer_folder }}/docker-compose.yml" - name: Ensure mastodon application configuration is present template: src: templates/application.env.j2 dest: "{{ mastodon_composer_folder }}/application.env.production" mode: 0600 - name: Ensure mastodon database configuration is present template: src: templates/database.env.j2 dest: "{{ mastodon_composer_folder }}/database.env.production" mode: 0600 - name: Generate secret key shell: docker-compose run --rm web bundle exec rake secret args: chdir: "{{ mastodon_composer_folder }}" register: secret_key_cmd when: mastodon_secret_key_base == '' - name: Set mastodon_secret_key_base set_fact: mastodon_secret_key_base: "{{ secret_key_cmd.stdout }}" when: mastodon_secret_key_base == '' - name: Add secret key to Mastodon config lineinfile: path: "{{ mastodon_composer_folder }}/application.env.production" line: "SECRET_KEY_BASE={{ mastodon_secret_key_base }}" regexp: "^SECRET_KEY_BASE=" backup: yes mode: 0600 - name: Generate OTP secret key shell: docker-compose run --rm web bundle exec rake secret args: chdir: "{{ mastodon_composer_folder }}" register: otp_key_cmd when: mastodon_otp_secret == '' - name: Set mastodon_otp_secret set_fact: mastodon_otp_secret: "{{ otp_key_cmd.stdout }}" when: mastodon_otp_secret == '' - name: Add OTP key to Mastodon config lineinfile: path: "{{ mastodon_composer_folder }}/application.env.production" line: "OTP_SECRET={{ mastodon_otp_secret }}" regexp: "^OTP_SECRET=" backup: yes mode: 0600 - name: Generate Paperclip secret key shell: docker-compose run --rm web bundle exec rake secret args: chdir: "{{ mastodon_composer_folder }}" register: paperclip_key_cmd when: mastodon_paperclip_secret == '' - name: Set mastodon_paperclip_secret set_fact: mastodon_paperclip_secret: "{{ otppaperclip_key_cmd_key_cmd.stdout }}" when: mastodon_paperclip_secret == '' - name: Add Paperclip key to Mastodon config lineinfile: path: "{{ mastodon_composer_folder }}/application.env.production" line: "PAPERCLIP_SECRET={{ mastodon_paperclip_secret }}" regexp: "^PAPERCLIP_SECRET=" backup: yes mode: 0600 - name: Generate VAPID keypair shell: 'docker-compose run --rm web bundle exec rake mastodon:webpush:generate_vapid_key' args: chdir: "{{ mastodon_composer_folder }}" register: vapid_key_cmd when: vapid_public_key == '' - name: Set vapid_public_key set_fact: vapid_public_key: "{{ vapid_key_cmd.stdout_lines[1] }}" when: vapid_public_key == '' - name: Set vapid_private_key set_fact: vapid_private_key: "{{ vapid_key_cmd.stdout_lines[0] }}" when: vapid_private_key == '' - name: Add Paperclip private key to Mastodon config lineinfile: path: "{{ mastodon_composer_folder }}/application.env.production" line: "{{ vapid_private_key }}" regexp: "^VAPID_PRIVATE_KEY=" mode: 0600 backup: yes - name: Add Paperclip public key to Mastodon config lineinfile: path: "{{ mastodon_composer_folder }}/application.env.production" line: "{{ vapid_public_key }}" regexp: "^VAPID_PUBLIC_KEY=" mode: 0600 backup: yes - name: Build Mastodon container to include secrets community.docker.docker_compose: project_name: mastodon project_src: "{{ mastodon_composer_folder }}/" state: present stopped: true build: true - name: Start mastodon_redis_1 container docker_container: name: mastodon_redis_1 state: started - name: Start mastodon_redis-volatile_1 container docker_container: name: mastodon_redis-volatile_1 state: started - name: Start mastodon_postgresql_1 container docker_container: name: mastodon_postgresql_1 state: started # CREATE USER mastodon CREATEDB; - name: Set up database shell: "docker-compose -f '{{ mastodon_composer_folder }}/docker-compose.yml' run --rm shell bundle exec rake db:setup && echo 'Database ready' > /var/lib/mastodon_db_setup" args: creates: /var/lib/mastodon_db_setup chdir: "{{ mastodon_composer_folder }}" when: mastodon_initial_setup - name: Migrate database shell: "docker-compose -f '{{ mastodon_composer_folder }}/docker-compose.yml' run --rm shell bundle exec rake db:migrate && echo 'Database migrated' > /var/lib/mastodon_db_migrated" args: creates: /var/lib/mastodon_db_migrated chdir: "{{ mastodon_composer_folder }}" when: not mastodon_initial_setup - name: Build Mastodon container to include secrets community.docker.docker_compose: project_name: mastodon project_src: "{{ mastodon_composer_folder }}/" state: present stopped: false build: true - name: Create initial user shell: "docker-compose -f /opt/mastodon/docker-compose.yml run --rm shell bin/tootctl accounts create '{{ mastodon_owner }}' --email '{{ mastodon_owner_email }}' --confirmed --role Owner && echo 'Owner account created' > /var/lib/mastodon_owner_created" args: creates: /var/lib/mastodon_owner_created chdir: "{{ mastodon_composer_folder }}" register: owner_result when: mastodon_initial_setup - name: Show owner password debug: var: owner_result when: mastodon_initial_setup # ToDo: (adelgado) Systemd units # ToDo: (adelgado) Scheduled jobs for tootctl media remove and tootctl preview_cards remove