I had to make a few more changes to get lists.pagure.io working.

I haven't pushed these to all the proxies yet, will wait until I get
+1's or revert.

commit 2359610fd4298fd9e54fbb49bdf809ff387639e5
Author: Kevin Fenzi <[email protected]>
Date:   Sat Sep 22 20:01:06 2018 +0000

    add lists.pagure.io to varnish config

diff --git a/roles/varnish/templates/proxies.vcl.j2
b/roles/varnish/templates/proxies.vcl.j2
index 121fbec..5150c36 100644
--- a/roles/varnish/templates/proxies.vcl.j2
+++ b/roles/varnish/templates/proxies.vcl.j2
@@ -282,7 +282,7 @@ sub vcl_recv {
             }
         }
     }
-    if (req.http.X-Forwarded-Server ~ "^lists.fedoraproject.org" ||
req.http.X-Forwarded-Server ~ "^lists.stg.fedoraproject.org" ||
req.http.X-Forwarded-Server ~ "^lists.fedorahosted.org" ||
req.http.X-Forwarded-Server ~ "^lists.stg.fedorahosted.org" ) {
+    if (req.http.X-Forwarded-Server ~ "^lists.fedoraproject.org" ||
req.http.X-Forwarded-Server ~ "^lists.stg.fedoraproject.org" ||
req.http.X-Forwarded-Server ~ "^lists.fedorahosted.org" ||
req.http.X-Forwarded-Server ~ "^lists.stg.fedorahosted.org" ||
req.http.X-Forwarded-Server ~ "^lists.pagure.io" ) {
         set req.backend_hint = mailman;
     }
     if (req.http.X-Forwarded-Server ~ "^apps.fedoraproject.org" ||
req.http.X-Forwarded-Server ~ "^apps.stg.fedoraproject.org") {

and

commit 3363db41b29f017d1365a91feec102d0b2a5ce7f
Author: Kevin Fenzi <[email protected]>
Date:   Sat Sep 22 19:36:58 2018 +0000

    need certbot here and it will use the right names

diff --git a/playbooks/include/proxies-websites.yml
b/playbooks/include/proxies-websites.yml
index 65597cd..d76c963 100644
--- a/playbooks/include/proxies-websites.yml
+++ b/playbooks/include/proxies-websites.yml
@@ -904,8 +904,9 @@
   - role: httpd/website
     site_name: lists.pagure.io
     sslonly: true
-    cert_name: lists.pagure.io.cert
-    SSLCertificateChainFile: lists.pagure.io.intermediate.cert
+    certbot: true
+    tags:
+    - lists.pagure.io

 # fedorahosted is retired. We have the site here so we can redirect it.

Attachment: signature.asc
Description: OpenPGP digital signature

_______________________________________________
infrastructure mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedoraproject.org/archives/list/[email protected]

Reply via email to