Compare commits

..

No commits in common. "4d0146d6c28812bb0e482a892422791490d1205d" and "b316d0baf8df8f0a555eebb1d9bcbc88369b038d" have entirely different histories.

3 changed files with 25 additions and 15 deletions

View File

@ -59,8 +59,6 @@ write_files:
sleep 20
if [ "$RUN_MIGRATIONS" = "true" ]; then
$COMPOSE exec -T php php bin/console doctrine:migrations:migrate --no-interaction || true
# Erst-Befüllung (idempotent: überspringt, wenn admin@vcard4reseller.de existiert)
$COMPOSE exec -T php php bin/console app:seed || true
fi
$COMPOSE exec -T php php bin/console cache:clear || true
runcmd:

View File

@ -1,28 +1,32 @@
# DNS über die Hetzner Cloud DNS API (manage_dns = true) gleicher Cloud-Token,
# DNS ist inzwischen in die Cloud-API integriert. Die Zone muss bereits in
# Hetzner DNS existieren (Lookup per Name).
# Optional: DNS-Records über die Hetzner DNS API anlegen (manage_dns = true).
# Voraussetzung: Zone liegt bei Hetzner DNS, separater DNS-API-Token.
data "hcloud_zone" "zone" {
data "hetznerdns_zone" "zone" {
count = var.manage_dns ? 1 : 0
name = var.dns_zone_name
}
# Portal-Domain (Apex "@" wenn domain == zone, sonst Subdomain-Teil) Caddy
resource "hcloud_zone_rrset" "portal" {
locals {
# Relativer Record-Name: "@" wenn Portal == Zone, sonst der Subdomain-Teil
portal_record_name = var.domain == var.dns_zone_name ? "@" : replace(var.domain, ".${var.dns_zone_name}", "")
}
# Portal-Domain Caddy
resource "hetznerdns_record" "portal" {
count = var.manage_dns ? 1 : 0
zone = data.hcloud_zone.zone[0].id
name = var.domain == var.dns_zone_name ? "@" : replace(var.domain, ".${var.dns_zone_name}", "")
zone_id = data.hetznerdns_zone.zone[0].id
name = local.portal_record_name
type = "A"
value = hcloud_server.caddy.ipv4_address
ttl = 300
records = [{ value = hcloud_server.caddy.ipv4_address }]
}
# Wildcard für Firmen-Subdomains (KONZEPT §11) Caddy (On-Demand-TLS)
resource "hcloud_zone_rrset" "wildcard" {
resource "hetznerdns_record" "wildcard" {
count = var.manage_dns ? 1 : 0
zone = data.hcloud_zone.zone[0].id
zone_id = data.hetznerdns_zone.zone[0].id
name = "*"
type = "A"
value = hcloud_server.caddy.ipv4_address
ttl = 300
records = [{ value = hcloud_server.caddy.ipv4_address }]
}

View File

@ -3,7 +3,11 @@ terraform {
required_providers {
hcloud = {
source = "hetznercloud/hcloud"
version = "~> 1.64" # >= 1.64 für integriertes DNS (hcloud_zone_rrset)
version = "~> 1.48"
}
hetznerdns = {
source = "germanbrew/hetznerdns"
version = "~> 3.0"
}
}
}
@ -11,3 +15,7 @@ terraform {
provider "hcloud" {
token = var.hcloud_token
}
provider "hetznerdns" {
api_token = var.hetzner_dns_token
}