Skip to content

Commit 82f8362

Browse files
committed
feature: user sudoers module
1 parent 2483cc2 commit 82f8362

File tree

1 file changed

+9
-8
lines changed

1 file changed

+9
-8
lines changed

roles/prepare/tasks/main.yml

Lines changed: 9 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -20,14 +20,6 @@
2020
state: present
2121
key: "{{ lookup('file', '{{ ssh_key_dir }}/{{ deploy_user }}_id_rsa.pub') }}"
2222

23-
- name: Create /etc/sudoers.d directory
24-
ansible.builtin.file:
25-
path: /etc/sudoers.d
26-
state: directory
27-
owner: root
28-
group: root
29-
mode: "0750"
30-
3123
- name: "Deploy user permissions"
3224
ansible.builtin.copy:
3325
dest: "/etc/sudoers.d/{{ deploy_user }}"
@@ -37,6 +29,15 @@
3729
mode: "0600"
3830
validate: "/usr/sbin/visudo --check --file=%s"
3931

32+
- name: Ansible user permissions in sudoers
33+
community.general.sudoers:
34+
name: Ansible rules
35+
host: ALL
36+
commands: ALL
37+
noexec: false
38+
nopassword: true
39+
user: "{{ ansible_user }}"
40+
4041
- name: Change SSHD port
4142
ansible.builtin.lineinfile:
4243
dest: /etc/ssh/sshd_config

0 commit comments

Comments
 (0)