summaryrefslogtreecommitdiff
path: root/manifests/site/config.pp
blob: 0d88cb10dfbf5b73b8ca9691808c911d5229da24 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
define nginx::site::config(
  $server_name      = $name,
  $ensure           = present,
  $source           = 'template',
  $template         = 'site',
  $backend          = 'weblocal',
  $aliases          = "*.${name}",
  $cache            = false,
  $cache_levels     = '1:2',
  $cache_size       = '10m',
  $cache_inactive   = '600s',
  $cache_max_size   = '1m',
  $rate_limit       = false,
  $rate_limit_key   = '$binary_remote_addr',
  $rate_limit_zone  = $server_name,
  $rate_limit_size  = "10m",
  $rate_limit_rate  = "20r/s",
  $rate_limit_burst = '10',
  $rate_limit_delay = '1',
  $x_frame_options  = 'DENY',
){
  case $source {
    'file': {
      file { "/etc/nginx/sites-available/$name":
        source  => $ensure ? {
          'present' => "puppet:///modules/site_nginx/$name",
          default   => undef,
        },
        owner   => "root",
        group   => "root",
        mode    => '0644',
        ensure  => $ensure,
        notify  => Service["nginx"],
        require => File["/etc/nginx/sites-available"],
      }
    }
    'template': {
      file { "/etc/nginx/sites-available/$name":
        content => template("nginx/${template}.erb"),
        owner   => "root",
        group   => "root",
        mode    => '0644',
        ensure  => $ensure,
        notify  => Service["nginx"],
        require => File["/etc/nginx/sites-available"],
      }
    }
   'none': {
      file { "/etc/nginx/sites-available/$name":
        owner   => "root",
        group   => "root",
        mode    => '0644',
        ensure  => $ensure,
        notify  => Service["nginx"],
        require => File["/etc/nginx/sites-available"],
      }
    }
  }

  $link = $ensure ? {
    present => "/etc/nginx/sites-available/$name",
    default => absent,
  }

  # Symlink to enable proxy configuration
  file { "/etc/nginx/sites-enabled/$name":
    ensure  => $link,
    require => File["/etc/nginx/sites-enabled"],
    notify  => Service["nginx"],
  }
}