OpenCloud Role
Deploy OpenCloud as a Podman quadlet.
Variables
| Variable | Type | Options | Default | Description |
|---|---|---|---|---|
podman_user | string | --- | {{ ansible_user }} | system user for rootless podman operations |
opencloud_network_enabled | bool | true, false | true | create and manage the podman network |
opencloud_network_name | string | --- | opencloud-internal | podman network name |
opencloud_bind_ip | string | --- | 127.0.0.1 | host IP to bind exposed ports to |
opencloud_port_map_enabled | bool | true, false | true | expose container ports on the host |
opencloud_port_map | list of string | --- | ["9200:9200"] | host:container port mappings |
opencloud_version | string | --- | 7.5.0 | container image version |
opencloud_autoupdate | bool | true, false | true | enable podman auto-update for this container |
opencloud_domain | string | --- | "" | external domain for the OpenCloud instance |
opencloud_admin_password | string | --- | "" | admin user password |
opencloud_log_level | string | --- | info | OpenCloud log level |
opencloud_csp_oidc_origin | string | --- | "" | OIDC origin for Content Security Policy |
opencloud_collabora_enabled | bool | true, false | false | deploy Collabora Online for document editing |
opencloud_collabora_version | string | --- | 26.04.3.1.1 | Collabora container image version |
opencloud_collabora_url | string | --- | "" | browser-facing URL for the Collabora editor |
opencloud_collabora_admin_username | string | --- | admin | Collabora admin username |
opencloud_collabora_admin_password | string | --- | "" | Collabora admin password |
opencloud_collabora_ssl_enable | bool | true, false | true | enable SSL in Collabora |
opencloud_collabora_ssl_verification | bool | true, false | true | enable SSL certificate verification in Collabora |
opencloud_collabora_ssl_termination | bool | true, false | true | enable SSL termination in Collabora |
opencloud_collabora_home_mode | bool | true, false | false | enable Collabora home mode |
opencloud_radicale_enabled | bool | true, false | false | deploy Radicale CalDAV/CardDAV server |
opencloud_radicale_version | string | --- | v3.7.8 | Radicale container image version |
opencloud_oidc_clients | list of dict | --- | {{ opencloud_standard_clients + opencloud_custom_clients }} | merged list of standard and custom OIDC clients |
opencloud_extra_files | list of dict | --- | [] | arbitrary file entries with src (controller path) or source (target path), dest, optional mount, mode, and template |
opencloud_extra_dirs | list of dict | --- | [] | arbitrary directory entries with src (controller directory) or source (target path), dest, optional mount and mode |
opencloud_entrypoint | string | --- | "" | optional OpenCloud container entrypoint override |
opencloud_collabora_entrypoint | string | --- | "" | optional Collabora container entrypoint override |
opencloud_collabora_proof_key_entrypoint | string | --- | "" | optional Collabora proof-key container entrypoint override |
opencloud_radicale_entrypoint | string | --- | "" | optional Radicale container entrypoint override |
opencloud_proxy_enabled | bool | true, false | false | enable HTTP proxy for image pulls |
opencloud_proxy_http | string | --- | "" | HTTP proxy URL |
opencloud_proxy_https | string | --- | "" | HTTPS proxy URL |
opencloud_proxy_no_proxy | string | --- | "" | comma-separated list of proxy exclusions |
opencloud_proxy_env | list of string | --- | [] | generated proxy environment entries |
opencloud_network_driver | string | --- | bridge | podman network driver |
opencloud_environment_vars | dict | --- | {} | extra environment variables injected into the container |
opencloud_standard_clients | list of dict | --- | [{"id":"web","name":"OpenCloud Web App","trusted":true,"secret":""},{"id":"OpenCloudDesktop","name":"OpenCloud Desktop Client","trusted":false,"secret":"","application_type":"native"},{"id":"OpenCloudAndroid","name":"OpenCloud Android App","trusted":false,"secret":"","application_type":"native"},{"id":"OpenCloudIOS","name":"OpenCloud iOS App","trusted":false,"secret":"","application_type":"native"}] | built-in OIDC client definitions |
opencloud_custom_clients | list of dict | --- | [] | additional OIDC client definitions from inventory |