aboutsummaryrefslogtreecommitdiffstats
path: root/opt/servers/roles/user/tasks
diff options
context:
space:
mode:
authorYujun Zhang <zhang.yujunz@zte.com.cn>2016-11-23 16:02:35 +0800
committerYujun Zhang <zhang.yujunz@zte.com.cn>2016-11-23 16:34:17 +0800
commitd1e4062604fdf9ff97959e396f6be4aac2c33478 (patch)
treee6075ed1414551b3d93f1c43a96d9bf7f6101aed /opt/servers/roles/user/tasks
parent07ee28b71118469f3946a009a126b7c21267173e (diff)
Reorganize the inventory
- update server name and spec - group servers by usage - assign roles for each group - rename role ssh to user Change-Id: Ibc0a599adfabee296510f140319889775d9ae6cc Signed-off-by: Yujun Zhang <zhang.yujunz@zte.com.cn>
Diffstat (limited to 'opt/servers/roles/user/tasks')
-rw-r--r--opt/servers/roles/user/tasks/main.yml35
1 files changed, 35 insertions, 0 deletions
diff --git a/opt/servers/roles/user/tasks/main.yml b/opt/servers/roles/user/tasks/main.yml
new file mode 100644
index 00000000..b1b5be9b
--- /dev/null
+++ b/opt/servers/roles/user/tasks/main.yml
@@ -0,0 +1,35 @@
+- name: add group qtip
+ become: true
+ group: name=qtip state=present
+- name: add qtip to sudoers without password
+ become: true
+ file:
+ src: sudoers.d-qtip
+ dest: /etc/sudoers.d/50-qtip
+ mode: 0440
+- name: add users for ssh access
+ become: true
+ user:
+ name: "{{ item.name }}"
+ comment: "{{ item.comment }}"
+ groups: "qtip"
+ append: yes
+ with_items: "{{ users }}"
+- name: create .ssh directory
+ become: true
+ file:
+ path: "/home/{{ item.name }}/.ssh"
+ state: directory
+ owner: "{{ item.name }}"
+ group: "{{ item.name }}"
+ mode: 0700
+ with_items: "{{ users }}"
+- name: authorize public key
+ become: true
+ copy:
+ src: "{{ item.name }}.authorized_keys"
+ dest: "/home/{{ item.name }}/.ssh/authorized_keys"
+ owner: "{{ item.name }}"
+ group: "{{ item.name }}"
+ mode: 0600
+ with_items: "{{ users }}"