Drop custom Caddy log file, fall back to journald
Caddy failed to start because the caddy user could not open /var/log/caddy/auth.e-cosplay.fr.log. Rather than manage a dedicated log directory + permissions, remove the custom `log` block from the vhost so Caddy logs to stderr, which systemd captures via journald (read with `journalctl -u caddy -f`). Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
This commit is contained in:
@@ -110,15 +110,6 @@
|
|||||||
owner: root
|
owner: root
|
||||||
group: root
|
group: root
|
||||||
|
|
||||||
- name: Ensure /var/log/caddy directory exists
|
|
||||||
ansible.builtin.file:
|
|
||||||
path: /var/log/caddy
|
|
||||||
state: directory
|
|
||||||
mode: "0755"
|
|
||||||
owner: caddy
|
|
||||||
group: caddy
|
|
||||||
ignore_errors: true
|
|
||||||
|
|
||||||
- name: Deploy Caddy vhost for {{ auth_domain }}
|
- name: Deploy Caddy vhost for {{ auth_domain }}
|
||||||
ansible.builtin.template:
|
ansible.builtin.template:
|
||||||
src: e-auth.conf.j2
|
src: e-auth.conf.j2
|
||||||
|
|||||||
@@ -9,11 +9,4 @@
|
|||||||
encode gzip zstd
|
encode gzip zstd
|
||||||
|
|
||||||
reverse_proxy 127.0.0.1:{{ keycloak_local_port }}
|
reverse_proxy 127.0.0.1:{{ keycloak_local_port }}
|
||||||
|
|
||||||
log {
|
|
||||||
output file /var/log/caddy/{{ auth_domain }}.log {
|
|
||||||
roll_size 10mb
|
|
||||||
roll_keep 10
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
}
|
||||||
|
|||||||
Reference in New Issue
Block a user