ansible/playbooks/ssh.yml

19 lines
697 B
YAML
Raw Permalink Normal View History

2021-12-12 05:56:26 +01:00
#!/usr/bin/env ansible-playbook
---
- hosts: all,!unifi
2021-12-12 05:56:26 +01:00
vars:
openssh_users_ca_public_key:
"ecdsa-sha2-nistp384 AAAAE2VjZHNhLXNoYTItbmlzdHAzODQAAAAIbmlzdHAzODQAAAB\
hBIpT7d7WeR88bs53KkNkZNOzkPJ7CQ5Ui6Wl9LXzAjjIdH+hKJieBMHrKew7+kzxGYaTqXW\
F1fQWsACG6aniy7VZpsdgTaNw7qr9frGfmo950V7IlU6w1HRc5c+3oVBWpg=="
2021-12-12 05:56:26 +01:00
openssh_authorized_principals:
- any
- "{{ inventory_hostname }}"
openssh_whitelist_groups: "{{ ['adherent']
if inventory_hostname == 'camelot.adm.auro.re'
else [] }}"
openssh_allow_passwords: "{{ inventory_hostname == 'camelot.adm.auro.re' }}"
2021-12-12 05:56:26 +01:00
roles:
- openssh_server
...