ansible-roles/roles/sudo/tasks/main.yml

14 lines
446 B
YAML
Raw Normal View History

2021-12-01 19:13:34 +01:00
---
- name: Setup default sudo access
2021-12-07 20:00:26 +01:00
template: src=admins.j2 dest=/etc/sudoers.d/admins owner=root group=root mode=440 #validate='visudo -cf %s'
tags: sudo
- name: Remove old sudo file
file: path=/etc/sudoers.d/fws state=absent
2021-12-01 19:13:34 +01:00
tags: sudo
- name: Ensure sudo provider is only files in nss
lineinfile: dest=/etc/nsswitch.conf regexp="^sudoers{{ ':' }}.+" line="sudoers{{ ':' }} files"
when: ad_auth | default(False)
tags: sudo