diff --git a/config.cfg b/config.cfg index 2348265..197b62b 100644 --- a/config.cfg +++ b/config.cfg @@ -5,13 +5,13 @@ # secp384r1 # secp521r1 easyrsa_dir: /opt/easy-rsa-ipsec -easyrsa_curve: secp384r1 +easyrsa_curve: prime256v1 easyrsa_ca_expire: 3650 easyrsa_cert_expire: 3650 easyrsa_p12_export_password: vpn # if True re-init all existing certificates. Boolean -easyrsa_reinit_existent: True +easyrsa_reinit_existent: False # Domain or ip server_name: www.ivlis.me diff --git a/vpn.yml b/vpn.yml index 63edd40..c3ce851 100644 --- a/vpn.yml +++ b/vpn.yml @@ -126,6 +126,7 @@ with_together: - "{{ users }}" - "{{ PayloadContent.results }}" + no_log: True - name: Fetch users P12 fetch: src=/{{ easyrsa_dir }}/easyrsa3//pki/private/{{ item }}.p12 dest=configs/{{ server_name }}_{{ item }}.p12 flat=yes