roles/bootstrap/tasks/main.yml

Fri, 16 Aug 2019 19:16:06 -0400

author
Meredith Howard <mhoward@roomag.org>
date
Fri, 16 Aug 2019 19:16:06 -0400
changeset 95
c4cd818d97b8
parent 88
3dbfd253c775
permissions
-rw-r--r--

no unattended-upgrades by default

---
- name: "Ansible control user"
  user:
    name: ansible
    comment: "Ansible Controller"
    home: /var/lib/ansible
    createhome: true
    append: true
    system: true
    state: present

- name: "Ansible pubkeys"
  authorized_key:
    manage_dir: true
    user: ansible
    key: "{{ item }}"
  with_file:
    - 'public_keys/ansible'

- name: "Ansible sudo"
  lineinfile:
    dest: /etc/sudoers
    state: present
    regexp: '^ansible'
    line: 'ansible ALL=(ALL) NOPASSWD: ALL'
    validate: 'visudo -cf "%s"'

mercurial