Mosquitto Role
Deploy the Eclipse Mosquitto MQTT broker as a Podman quadlet.
Variables
| Variable | Type | Options | Default | Description |
|---|---|---|---|---|
podman_user | string | --- | {{ ansible_user }} | system user for rootless podman operations |
mosquitto_proxy_enabled | bool | true, false | false | enable HTTP proxy for image pulls |
mosquitto_proxy_http | string | --- | "" | HTTP proxy URL |
mosquitto_proxy_https | string | --- | "" | HTTPS proxy URL |
mosquitto_proxy_no_proxy | string | --- | "" | comma-separated list of proxy exclusions |
mosquitto_proxy_env | list of string | --- | [] | generated proxy environment entries |
mosquitto_network_enabled | bool | true, false | true | create and manage the podman network |
mosquitto_network_driver | string | --- | bridge | podman network driver |
mosquitto_network_name | string | --- | mosquitto-internal | podman network name |
mosquitto_bind_ip | string | --- | 127.0.0.1 | host IP to bind exposed ports to |
mosquitto_port_map_enabled | bool | true, false | true | expose container ports on the host |
mosquitto_port_map | list of string | --- | ["1883:1883","9001:9001"] | host:container port mappings |
mosquitto_version | string | --- | 2.1-alpine | Mosquitto version identifier used in the custom image tag |
mosquitto_go_auth_version | string | --- | 3.5.0 | mosquitto-go-auth release used to build the image |
mosquitto_image | string | --- | {{ mosquitto_image_name }}:{{ mosquitto_image_tag }} | custom image name and tag |
mosquitto_image_name | string | --- | localhost/mosquitto-custom | custom image name |
mosquitto_image_tag | string | --- | {{ mosquitto_version }}-{{ mosquitto_go_auth_version }} | custom image tag |
mosquitto_autoupdate | bool | true, false | true | enable podman auto-update for this container |
mosquitto_environment_vars | dict | --- | {} | extra environment variables injected into the container |
mosquitto_pwfile_users | dict | --- | {} | map of username to password_hash for the password file |
mosquitto_users | dict | --- | {} | map of username to clear-text password; hashes are generated during deployment |
mosquitto_acl_users | dict | --- | {} | map of usernames to ACL rule objects or raw topic rules |
mosquitto_acl_patterns | list of dict | --- | [{"access":"readwrite","topic":"%u/#"}] | ACL pattern rules using %u and %c substitutions |
mosquitto_acl_rules | list of string | --- | [] | raw Mosquitto ACL lines for advanced rules |
mosquitto_go_auth_options | dict | --- | {"backends":"files","files_password_path":"/mosquitto/config/passwd","files_acl_path":"/mosquitto/config/acl"} | map passed through as auth_opt_* go-auth settings |
mosquitto_extra_files | list of dict | --- | [] | arbitrary file entries with src (controller path) or source (target path), dest, optional mount, mode, and template |
mosquitto_extra_dirs | list of dict | --- | [] | arbitrary directory entries with src (controller directory) or source (target path), dest, optional mount and mode |
mosquitto_entrypoint | string | --- | "" | optional container entrypoint override |