2021-02-03 10:43:08 -05:00
|
|
|
---
|
2021-12-17 17:34:54 -05:00
|
|
|
|
2021-12-17 17:11:49 -05:00
|
|
|
- name: Template postgresql-13.conf file
|
|
|
|
template:
|
2021-12-17 17:34:54 -05:00
|
|
|
src: /srv/newsblur/docker/postgres/postgresql-13.conf.j2
|
2022-01-07 10:07:19 -05:00
|
|
|
dest: /srv/newsblur/docker/postgres/postgres.conf
|
2021-12-17 17:11:49 -05:00
|
|
|
notify: reload postgres
|
|
|
|
register: updated_config
|
|
|
|
|
2022-01-07 10:07:19 -05:00
|
|
|
- name: Ensure postgres archive directory
|
|
|
|
become: yes
|
|
|
|
file:
|
|
|
|
path: /srv/newsblur/docker/volumes/postgres/archive
|
|
|
|
state: directory
|
|
|
|
mode: 0777
|
|
|
|
|
2022-02-03 13:21:06 -05:00
|
|
|
- name: Ensure postgres backup directory
|
|
|
|
become: yes
|
|
|
|
file:
|
2022-02-03 15:49:55 -05:00
|
|
|
path: /srv/newsblur/backups
|
2022-02-03 13:21:06 -05:00
|
|
|
state: directory
|
|
|
|
mode: 0777
|
2022-04-30 07:24:46 -04:00
|
|
|
|
|
|
|
- name: Start postgres basebackup on secondary
|
|
|
|
become: yes
|
|
|
|
docker_container:
|
|
|
|
name: postgres
|
|
|
|
image: postgres:13
|
|
|
|
state: started
|
|
|
|
container_default_behavior: no_defaults
|
|
|
|
command: pg_basebackup -h db-postgres.service.nyc1.consul -p 5432 -U newsblur -D /var/lib/postgresql/main -Fp -R -Xs -P -c fast
|
|
|
|
networks_cli_compatible: yes
|
|
|
|
network_mode: default
|
|
|
|
networks:
|
|
|
|
- name: newsblurnet
|
|
|
|
aliases:
|
|
|
|
- postgres
|
|
|
|
ports:
|
|
|
|
- 5432:5432
|
|
|
|
volumes:
|
|
|
|
- /srv/newsblur/docker/volumes/postgres:/var/lib/postgresql
|
|
|
|
- /srv/newsblur/docker/postgres/postgres.conf:/etc/postgresql/postgresql.conf
|
|
|
|
- /srv/newsblur/docker/postgres/postgres_hba-13.conf:/etc/postgresql/pg_hba.conf
|
|
|
|
- /srv/newsblur/backups/:/var/lib/postgresql/backup/
|
|
|
|
restart_policy: unless-stopped
|
|
|
|
when: (inventory_hostname | regex_replace('[0-9]+', '')) in ['db-postgres-secondary']
|
|
|
|
|
2021-12-13 17:09:37 -05:00
|
|
|
- name: Start postgres docker containers
|
2021-02-23 18:37:56 -05:00
|
|
|
become: yes
|
2021-02-03 10:43:08 -05:00
|
|
|
docker_container:
|
|
|
|
name: postgres
|
2021-12-17 17:34:54 -05:00
|
|
|
image: postgres:13
|
2021-02-03 10:43:08 -05:00
|
|
|
state: started
|
2021-12-13 17:09:37 -05:00
|
|
|
container_default_behavior: no_defaults
|
2022-01-07 10:07:19 -05:00
|
|
|
command: postgres -c config_file=/etc/postgresql/postgresql.conf
|
2021-02-03 10:43:08 -05:00
|
|
|
env:
|
2022-01-07 10:07:19 -05:00
|
|
|
# POSTGRES_USER: "{{ postgres_user }}" # Don't auto-create newsblur, manually add it
|
2021-12-17 17:34:54 -05:00
|
|
|
POSTGRES_PASSWORD: "{{ postgres_password }}"
|
2021-12-13 17:09:37 -05:00
|
|
|
hostname: "{{ inventory_hostname }}"
|
|
|
|
networks_cli_compatible: yes
|
|
|
|
network_mode: default
|
|
|
|
networks:
|
|
|
|
- name: newsblurnet
|
|
|
|
aliases:
|
2021-12-17 16:53:28 -05:00
|
|
|
- postgres
|
2021-02-03 10:43:08 -05:00
|
|
|
ports:
|
2021-12-13 17:09:37 -05:00
|
|
|
- 5432:5432
|
2021-02-03 10:43:08 -05:00
|
|
|
volumes:
|
2021-12-17 16:53:28 -05:00
|
|
|
- /srv/newsblur/docker/volumes/postgres:/var/lib/postgresql
|
2022-01-07 10:07:19 -05:00
|
|
|
- /srv/newsblur/docker/postgres/postgres.conf:/etc/postgresql/postgresql.conf
|
2021-12-17 17:11:49 -05:00
|
|
|
- /srv/newsblur/docker/postgres/postgres_hba-13.conf:/etc/postgresql/pg_hba.conf
|
2022-01-07 10:07:19 -05:00
|
|
|
- /srv/newsblur/backups/:/var/lib/postgresql/backup/
|
2021-12-13 17:09:37 -05:00
|
|
|
restart_policy: unless-stopped
|
2022-04-30 07:24:46 -04:00
|
|
|
when: (inventory_hostname | regex_replace('[0-9]+', '')) in ['db-postgres-primary', 'db-postgres']
|
2021-06-07 15:44:59 -04:00
|
|
|
|
2022-01-07 10:07:19 -05:00
|
|
|
- name: Ensure newsblur role in postgres
|
|
|
|
shell: >
|
|
|
|
sleep 5;
|
|
|
|
docker exec postgres createuser -s newsblur -U postgres;
|
|
|
|
docker exec postgres createdb newsblur -U newsblur;
|
|
|
|
register: ensure_role
|
|
|
|
changed_when:
|
|
|
|
- "ensure_role.rc == 0"
|
|
|
|
failed_when:
|
|
|
|
- "'already exists' not in ensure_role.stderr"
|
|
|
|
- "ensure_role.rc != 0"
|
|
|
|
|
2021-12-17 16:53:28 -05:00
|
|
|
- name: Register postgres in consul
|
|
|
|
tags: consul
|
|
|
|
become: yes
|
|
|
|
template:
|
|
|
|
src: consul_service.json
|
|
|
|
dest: /etc/consul.d/postgres.json
|
|
|
|
notify:
|
|
|
|
- reload consul
|
2021-06-27 14:11:14 -06:00
|
|
|
|
2022-02-03 15:41:35 -05:00
|
|
|
- name: Copy common secrets
|
|
|
|
copy:
|
|
|
|
src: /srv/secrets-newsblur/settings/common_settings.py
|
|
|
|
dest: /srv/newsblur/newsblur_web/local_settings.py
|
|
|
|
register: app_changed
|
|
|
|
|
2021-06-18 14:57:29 -06:00
|
|
|
- name: Add sanity checkers cronjob for disk usage
|
2021-06-07 15:44:59 -04:00
|
|
|
become: yes
|
2021-06-18 14:57:29 -06:00
|
|
|
cron:
|
|
|
|
name: disk_usage_sanity_checker
|
2021-06-25 11:42:21 -06:00
|
|
|
user: root
|
|
|
|
cron_file: /etc/cron.hourly/disk_usage_sanity_checker
|
2021-06-27 13:24:07 -06:00
|
|
|
job: >-
|
|
|
|
docker pull newsblur/newsblur_python3:latest;
|
2021-06-25 11:46:09 -06:00
|
|
|
docker run --rm -it
|
|
|
|
OUTPUT=$(eval sudo df / | head -n 2 | tail -1);
|
2021-06-18 14:57:29 -06:00
|
|
|
-v /srv/newsblur:/srv/newsblur
|
2021-06-25 11:42:21 -06:00
|
|
|
--network=newsblurnet
|
|
|
|
--hostname {{ ansible_hostname }}
|
2021-06-25 11:46:09 -06:00
|
|
|
newsblur/newsblur_python3 /srv/newsblur/utils/monitor_disk_usage.py $OUTPUT
|
2021-06-19 12:35:28 -06:00
|
|
|
|
2022-02-04 13:55:23 -05:00
|
|
|
- name: Add postgres backup log
|
|
|
|
become: yes
|
|
|
|
file:
|
|
|
|
path: /var/log/postgres_backup.log
|
|
|
|
state: touch
|
|
|
|
mode: 0777
|
|
|
|
owner: 1000
|
|
|
|
group: 1001
|
|
|
|
|
2021-06-19 12:35:28 -06:00
|
|
|
- name: Add postgres backup
|
|
|
|
cron:
|
|
|
|
name: postgres backup
|
|
|
|
minute: "0"
|
|
|
|
hour: "4"
|
2022-04-30 06:51:11 -04:00
|
|
|
job: /srv/newsblur/docker/postgres/backup_postgres.sh >> /var/log/postgres_backup.log 2>&1
|
2022-02-03 15:41:35 -05:00
|
|
|
|