alphagate.yml 5.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253
  1. ---
  2. - hosts: 10.0.0.2
  3. gather_facts: true
  4. become: true
  5. vars_files:
  6. - "{{ inventory_dir }}/vars/vault.yaml"
  7. vars:
  8. router_ingress_interface: enp3s0
  9. router_egress_interface: tun0
  10. dns_primary: 1.1.1.1
  11. dns_secondary: 1.0.0.1
  12. dhcp_cidr: 10.0.0.0/24
  13. dhcp_domain: "home.arpa"
  14. dhcp_range_start: 10.0.0.125
  15. dhcp_range_end: 10.0.0.200
  16. dhcp_gw_default: 10.0.0.1
  17. dhcp_gw_secured: 10.0.0.2
  18. dhcp_gw_betagate: 10.0.0.10
  19. dhcp_interface: "{{ router_ingress_interface }}"
  20. status_services:
  21. - openvpn@proton
  22. - isc-dhcp-server
  23. - unbound
  24. reservations:
  25. - type: default
  26. name: alphagate
  27. mac: 00:e0:4c:68:01:ad # internal
  28. ip: 10.0.0.2
  29. - type: default
  30. name: netgearap
  31. mac: 94:a6:7e:58:3a:9f
  32. #mac: 10:da:43:8c:a3:13
  33. ip: 10.0.0.3
  34. - type: secured
  35. name: nas
  36. mac: 04:7c:16:6e:db:ab
  37. ip: 10.0.0.4
  38. - type: secured
  39. name: kodilv
  40. mac: 6c:0b:84:e1:9b:61
  41. ip: 10.0.0.5
  42. - type: secured
  43. name: kodimb
  44. mac: e4:5f:01:4f:7c:74
  45. ip: 10.0.0.6
  46. - type: secured
  47. name: kodijb
  48. mac: 00:23:24:ad:2f:72
  49. ip: 10.0.0.7
  50. - type: default
  51. name: tvheadend
  52. mac: 10:bf:48:4e:08:85
  53. ip: 10.0.0.8
  54. - type: secured
  55. name: arm
  56. mac: 10:bf:48:d4:d5:fc
  57. ip: 10.0.0.9
  58. - type: cloudflare
  59. name: betagate
  60. mac: 00:e0:4c:68:01:84
  61. ip: 10.0.0.10
  62. - type: devnull
  63. name: ipcameras
  64. mac: 9c:8e:cd:2e:51:9c
  65. ip: 10.0.0.11
  66. - type: default
  67. name: retropie
  68. mac: b8:27:eb:42:71:dc
  69. ip: 10.0.0.12
  70. - type: secured
  71. name: nebula
  72. mac: f4:4d:30:65:4d:1f
  73. ip: 10.0.0.14
  74. - type: default
  75. name: kitchen
  76. mac: 60:f2:62:61:2d:71
  77. ip: 10.0.0.15
  78. - type: default
  79. name: x10
  80. mac: b8:27:eb:7c:f3:ff
  81. ip: 10.0.0.16
  82. - type: default
  83. name: brother-print-server
  84. mac: 80:1f:02:4a:cd:cf
  85. ip: 10.0.0.17
  86. - type: default
  87. name: dellxps
  88. mac: f0:1f:af:36:0c:48
  89. ip: 10.0.0.19
  90. - type: devnull
  91. name: zoom
  92. mac: 00:12:41:ba:5c:00
  93. ip: 10.0.0.20
  94. - type: default
  95. name: ricky-laptop-eth
  96. mac: 50:a1:32:2a:fb:4c
  97. ip: 10.0.0.21
  98. - type: default
  99. name: ricky-laptop-wifi
  100. mac: 10:6f:d9:b0:1a:71
  101. ip: 10.0.0.22
  102. # will set cameras to 10.0.0.30
  103. - type: default
  104. name: nixos-laptop
  105. mac: 28:d2:44:d8:7f:95
  106. ip: 10.0.0.40
  107. # Ricky's new laptop wifi manually set to 10.0.0.41
  108. # Ricky's old laptop manually set to 10.0.0.42
  109. # Ricky's new laptop ethernet manually set to 10.0.0.43
  110. - type: betagate
  111. name: blaine-work-laptop
  112. mac: 08:3a:88:57:ab:fa
  113. ip: 10.0.0.45
  114. - type: default
  115. name: s7
  116. mac: 8c:f5:a3:6a:55:f6
  117. ip: 10.0.0.51
  118. - type: default
  119. name: lemp12-ethernet
  120. mac: f8:e4:3b:e5:3d:e5
  121. ip: 10.0.0.52
  122. - type: default
  123. name: lemp12-wifi
  124. mac: c4:d0:e3:53:ed:00
  125. ip: 10.0.0.53
  126. - type: default
  127. name: blaine-iphone
  128. mac: f0:a3:5a:95:b4:cd
  129. ip: 10.0.0.54
  130. - type: default
  131. name: xen-titanium
  132. mac: f0:57:a6:87:50:23
  133. ip: 10.0.0.55
  134. - type: secured
  135. name: t440s-eth
  136. mac: 68:f7:28:21:36:60
  137. ip: 10.0.0.56
  138. - type: secured
  139. name: t440s-wifi
  140. mac: a4:c4:94:df:2f:c3
  141. ip: 10.0.0.57
  142. # rancher server
  143. - type: default
  144. name: rancher
  145. mac: 6c:0b:84:e0:d2:a0
  146. ip: 10.0.0.60
  147. # rancher master
  148. - type: default
  149. name: rke-m01
  150. mac: 6c:0b:84:e1:9b:61
  151. ip: 10.0.0.61
  152. # rancher worker1
  153. - type: default
  154. name: rke-w01
  155. mac: 00:23:24:b4:d3:3b
  156. ip: 10.0.0.62
  157. # rancher worker2
  158. - type: default
  159. name: rke-w02
  160. mac: 00:23:24:c7:25:bf
  161. ip: 10.0.0.63
  162. # rancher worker3
  163. - type: default
  164. name: rke-w03
  165. mac: 00:23:24:c7:1d:fb
  166. ip: 10.0.0.64
  167. # extra kodi box?
  168. - type: default
  169. name: unknown
  170. mac: f8:e4:3b:bb:0c:c8
  171. ip: 10.0.0.65
  172. # MetalLB VIP
  173. - type: default
  174. name: rke
  175. mac: ff:ff:ff:ff:ff:ff # not a real box
  176. ip: 10.0.0.70
  177. - type: cloudflare
  178. name: julie-macbook-air
  179. mac: 10:b5:88:5d:70:c9
  180. ip: 10.0.0.89
  181. - type: cloudflare
  182. name: julie-macbook
  183. mac: b8:8d:12:36:f1:16
  184. ip: 10.0.0.90
  185. # Ken is using 10.0.0.91
  186. - type: devnull
  187. name: cameradvr
  188. mac: 00:12:41:12:e5:22
  189. ip: 10.0.0.158
  190. - type: devnull
  191. name: backyard-camera
  192. mac: 00:2a:2a:5c:06:9a
  193. ip: 10.0.0.173
  194. - type: default
  195. name: netgear-switch1
  196. mac: cc:40:d0:4c:3a:b6
  197. ip: 10.0.0.254
  198. roles:
  199. - role: router
  200. - role: openvpn
  201. - role: name-resolution
  202. - role: statusservices