ansible-lint recommendations
activate privilege escalation when changing users
This commit is contained in:
@@ -1,9 +1,10 @@
|
|||||||
---
|
---
|
||||||
|
|
||||||
- name: Copy SSH config/keys
|
- name: Copy SSH config/keys
|
||||||
|
become: true
|
||||||
|
become_user: "{{ main_user }}"
|
||||||
copy:
|
copy:
|
||||||
src: "ssh/"
|
src: "ssh/"
|
||||||
dest: "~/.ssh/"
|
dest: "~/.ssh/"
|
||||||
mode: "0600"
|
mode: "0600"
|
||||||
directory_mode: true
|
directory_mode: true
|
||||||
become_user: "{{ main_user }}"
|
|
||||||
|
|||||||
@@ -1,16 +1,18 @@
|
|||||||
---
|
---
|
||||||
|
|
||||||
- name: Create .tfvars_token_dtsv
|
- name: Create .tfvars_token_dtsv
|
||||||
|
become: true
|
||||||
|
become_user: "{{ main_user }}"
|
||||||
template:
|
template:
|
||||||
src: "tfvars_token.j2"
|
src: "tfvars_token.j2"
|
||||||
dest: "~/.tfvars_token_dtsv"
|
dest: "~/.tfvars_token_dtsv"
|
||||||
mode: "0640"
|
mode: "0640"
|
||||||
become_user: "{{ main_user }}"
|
|
||||||
|
|
||||||
- name: Add .tfvars_token to .bash_profile
|
- name: Add .tfvars_token to .bash_profile
|
||||||
|
become: true
|
||||||
|
become_user: "{{ main_user }}"
|
||||||
lineinfile:
|
lineinfile:
|
||||||
path: "~/.bash_profile"
|
path: "~/.bash_profile"
|
||||||
create: true
|
create: true
|
||||||
line: "source ~/.tfvars_token_dtsv"
|
line: "source ~/.tfvars_token_dtsv"
|
||||||
mode: "0644"
|
mode: "0644"
|
||||||
become_user: "{{ main_user }}"
|
|
||||||
|
|||||||
@@ -27,10 +27,11 @@
|
|||||||
cache_valid_time: 3600
|
cache_valid_time: 3600
|
||||||
|
|
||||||
- name: Set PostgreSQL parameters
|
- name: Set PostgreSQL parameters
|
||||||
|
become: true
|
||||||
|
become_user: postgres
|
||||||
community.postgresql.postgresql_set:
|
community.postgresql.postgresql_set:
|
||||||
name: "{{ item.name }}"
|
name: "{{ item.name }}"
|
||||||
value: "{{ item.value }}"
|
value: "{{ item.value }}"
|
||||||
become_user: postgres
|
|
||||||
register: postgresql_set
|
register: postgresql_set
|
||||||
loop: "{{ pgsql_config }}"
|
loop: "{{ pgsql_config }}"
|
||||||
notify: Restart postgresql
|
notify: Restart postgresql
|
||||||
|
|||||||
Reference in New Issue
Block a user