# SPDX-FileCopyrightText: 2026 Slavi Pantaleev # # SPDX-License-Identifier: AGPL-3.0-or-later --- - name: Prepare Matrix Authentication Service Molecule tests hosts: all become: true vars_files: - "{{ lookup('env', 'MOLECULE_PROJECT_DIRECTORY') }}/../../../molecule-shared/vars.yml" - "{{ lookup('env', 'MOLECULE_PROJECT_DIRECTORY') }}/../../../molecule-shared/playbook-context.yml" gather_facts: true tasks: - name: Ensure apt cache is updated ansible.builtin.apt: update_cache: true cache_valid_time: 600 when: ansible_facts['os_family'] == 'Debian' - name: Ensure required packages are installed ansible.builtin.package: name: - python3-requests - fuse-overlayfs state: present - name: Ensure Docker is installed ansible.builtin.include_role: name: ansible-role-docker vars: docker_daemon_options: storage-driver: fuse-overlayfs - name: Ensure the matrix group exists ansible.builtin.group: name: "{{ matrix_group_name }}" gid: "{{ matrix_user_gid }}" state: present - name: Ensure the matrix user exists ansible.builtin.user: name: "{{ matrix_user_name }}" uid: "{{ matrix_user_uid }}" group: "{{ matrix_group_name }}" create_home: false system: true state: present - name: Ensure the base data path exists ansible.builtin.file: path: "{{ matrix_base_data_path }}" state: directory owner: "{{ matrix_user_name }}" group: "{{ matrix_group_name }}" mode: "0750" - name: Ensure the private container network exists ansible.builtin.command: argv: - docker - network - create - "{{ matrix_authentication_service_container_network }}" register: matrix_authentication_service_molecule_network changed_when: matrix_authentication_service_molecule_network.rc == 0 failed_when: - matrix_authentication_service_molecule_network.rc != 0 - "'already exists' not in matrix_authentication_service_molecule_network.stderr" - name: Ensure Postgres is running ansible.builtin.include_tasks: file: "{{ lookup('env', 'MOLECULE_PROJECT_DIRECTORY') }}/../../../molecule-shared/tasks/postgres.yml" vars: molecule_shared_postgres_network: "{{ matrix_authentication_service_container_network }}" molecule_shared_postgres_database: "{{ matrix_authentication_service_config_database_database }}" molecule_shared_postgres_username: "{{ matrix_authentication_service_config_database_username }}" molecule_shared_postgres_password: "{{ matrix_authentication_service_config_database_password }}" # MAS does not need a successful homeserver request to expose discovery, but providing # its configured endpoint makes the scenario independent of future startup checks. - name: Ensure the homeserver stub is running ansible.builtin.include_tasks: file: "{{ lookup('env', 'MOLECULE_PROJECT_DIRECTORY') }}/../../../molecule-shared/tasks/homeserver-stub.yml" vars: molecule_shared_stub_network: "{{ matrix_authentication_service_container_network }}" molecule_shared_stub_server_name: molecule.local