diff options
author | Yujun Zhang <zhang.yujunz@zte.com.cn> | 2016-11-23 16:02:35 +0800 |
---|---|---|
committer | Yujun Zhang <zhang.yujunz@zte.com.cn> | 2016-11-23 16:34:17 +0800 |
commit | d1e4062604fdf9ff97959e396f6be4aac2c33478 (patch) | |
tree | e6075ed1414551b3d93f1c43a96d9bf7f6101aed /opt/servers/roles/user/tasks | |
parent | 07ee28b71118469f3946a009a126b7c21267173e (diff) |
Reorganize the inventory
- update server name and spec
- group servers by usage
- assign roles for each group
- rename role ssh to user
Change-Id: Ibc0a599adfabee296510f140319889775d9ae6cc
Signed-off-by: Yujun Zhang <zhang.yujunz@zte.com.cn>
Diffstat (limited to 'opt/servers/roles/user/tasks')
-rw-r--r-- | opt/servers/roles/user/tasks/main.yml | 35 |
1 files changed, 35 insertions, 0 deletions
diff --git a/opt/servers/roles/user/tasks/main.yml b/opt/servers/roles/user/tasks/main.yml new file mode 100644 index 00000000..b1b5be9b --- /dev/null +++ b/opt/servers/roles/user/tasks/main.yml @@ -0,0 +1,35 @@ +- name: add group qtip + become: true + group: name=qtip state=present +- name: add qtip to sudoers without password + become: true + file: + src: sudoers.d-qtip + dest: /etc/sudoers.d/50-qtip + mode: 0440 +- name: add users for ssh access + become: true + user: + name: "{{ item.name }}" + comment: "{{ item.comment }}" + groups: "qtip" + append: yes + with_items: "{{ users }}" +- name: create .ssh directory + become: true + file: + path: "/home/{{ item.name }}/.ssh" + state: directory + owner: "{{ item.name }}" + group: "{{ item.name }}" + mode: 0700 + with_items: "{{ users }}" +- name: authorize public key + become: true + copy: + src: "{{ item.name }}.authorized_keys" + dest: "/home/{{ item.name }}/.ssh/authorized_keys" + owner: "{{ item.name }}" + group: "{{ item.name }}" + mode: 0600 + with_items: "{{ users }}" |