120547b1b8
Add community.openwrt collection, dlink host to inventory, openwrt role with system/network/firewall tasks, and two playbooks: dlink-init.yml for one-time bootstrap from factory IP, and openwrt.yml for ongoing idempotent configuration. Network: MGMT untagged + LAN (vlan2) tagged on WAN port trunk to MikroTik ether3. Firewall zones replace factory WAN/LAN with mgmt (input ACCEPT) and lan (forward ACCEPT, AP mode).
20 lines
505 B
YAML
20 lines
505 B
YAML
---
|
|
- name: Preflight — verify connectivity
|
|
ansible.builtin.import_tasks: preflight.yml
|
|
|
|
- name: System configuration
|
|
ansible.builtin.import_tasks: system.yml
|
|
|
|
- name: Network configuration
|
|
ansible.builtin.import_tasks: network.yml
|
|
|
|
- name: Firewall configuration
|
|
ansible.builtin.import_tasks: firewall.yml
|
|
|
|
- name: Wireless configuration
|
|
ansible.builtin.import_tasks: wireless.yml
|
|
|
|
- name: Package management
|
|
ansible.builtin.import_tasks: packages.yml
|
|
when: openwrt_packages | length > 0
|