From 3919e5e3be06f5b14021340f9a21e48e7938606c Mon Sep 17 00:00:00 2001 From: Henrry Pulgarin <39854568+Henrrypg@users.noreply.github.com> Date: Wed, 17 Jul 2024 13:50:16 -0500 Subject: [PATCH] fix: disable protected mode in redis 7.2 (#41) --- roles/redis_7_2/defaults/main.yml | 1 + roles/redis_7_2/templates/etc/redis/redis.conf.j2 | 2 +- roles/storage_backups/defaults/main.yml | 3 +-- 3 files changed, 3 insertions(+), 3 deletions(-) diff --git a/roles/redis_7_2/defaults/main.yml b/roles/redis_7_2/defaults/main.yml index e008683..78a5523 100644 --- a/roles/redis_7_2/defaults/main.yml +++ b/roles/redis_7_2/defaults/main.yml @@ -12,6 +12,7 @@ # REDIS_PASSWORD: REDIS_BIND_IP: 127.0.0.1 +REDIS_ENABLE_PROTECTED_MODE: "no" REDIS_PERSISTENCE_DIR: /var/lib/redis REDIS_MEMORY_LIMIT: 512mb REDIS_MAX_MEMORY_POLICY: allkeys-lru diff --git a/roles/redis_7_2/templates/etc/redis/redis.conf.j2 b/roles/redis_7_2/templates/etc/redis/redis.conf.j2 index 2bd794b..e8aa6d2 100644 --- a/roles/redis_7_2/templates/etc/redis/redis.conf.j2 +++ b/roles/redis_7_2/templates/etc/redis/redis.conf.j2 @@ -91,7 +91,7 @@ bind {{ REDIS_BIND_IP }} # you are sure you want clients from other hosts to connect to Redis # even if no authentication is configured, nor a specific set of interfaces # are explicitly listed using the "bind" directive. -protected-mode yes +protected-mode {{ REDIS_ENABLE_PROTECTED_MODE }} # Accept connections on the specified port, default is 6379 (IANA #815344). # If port 0 is specified Redis will not listen on a TCP socket. diff --git a/roles/storage_backups/defaults/main.yml b/roles/storage_backups/defaults/main.yml index 3df76f2..cf34b92 100644 --- a/roles/storage_backups/defaults/main.yml +++ b/roles/storage_backups/defaults/main.yml @@ -47,6 +47,5 @@ STORAGE_BACKUPS_AZURE_CONTAINER_NAME: "{{ STORAGE_BACKUPS_TYPE_OPTIONS.AZURE_CON STORAGE_BACKUPS_AZURE_PATH: "{{ STORAGE_BACKUPS_TYPE_OPTIONS.AZURE_PATH | default('SET ME PLEASE') }}" STORAGE_BACKUPS_AZURE_CONTAINER_SAS_TOKEN: "{{ STORAGE_BACKUPS_TYPE_OPTIONS.AZURE_CONTAINER_SAS_TOKEN | default('SET ME PLEASE') }}" STORAGE_BACKUPS_AZURE_ACCOUNT_NAME: "{{ STORAGE_BACKUPS_TYPE_OPTIONS.AZURE_ACCOUNT_NAME | default('SET ME PLEASE') }}" -STORAGE_BACKUPS_AZURE_REMOTE_DEST: https://{{ STORAGE_BACKUPS_AZURE_ACCOUNT_NAME }}.blob.core.windows.net/{{ STORAGE_BACKUPS_AZURE_CONTAINER_NAME }}/{{ STORAGE_BACKUPS_AZURE_PATH - }}/{{ item | basename }} # noqa yaml[line-length] +STORAGE_BACKUPS_AZURE_REMOTE_DEST: https://{{ STORAGE_BACKUPS_AZURE_ACCOUNT_NAME }}.blob.core.windows.net/{{ STORAGE_BACKUPS_AZURE_CONTAINER_NAME }}/{{ STORAGE_BACKUPS_AZURE_PATH }}/{{ item | basename }} # noqa yaml[line-length] STORAGE_BACKUPS_AZURE_COMMAND: azcopy cp '{{ item }}' '{{ STORAGE_BACKUPS_AZURE_REMOTE_DEST }}?{{ STORAGE_BACKUPS_AZURE_CONTAINER_SAS_TOKEN }}'