siotp/ct-ansible/playbook.yml
2021-11-24 09:21:21 +01:00

40 lines
915 B
YAML

---
- hosts: hotes
become: yes
become_user: root
tasks:
- name: création de sioadm
user:
name:sioadm
state:present
generate_ssh_key:yes
groups:sudo
append:yes
password:"{{ 'sioadm' | password_hash('sha512') }}"
password_lock:yes
- name: desinstaller le paquet wpasupplicant
apt:
name: wpasupplicant
state: absent
- name: desinstaller le paquet rpcbind
apt:
name: rpcbind
state: absent
- name: ecriture fichier resolv.conf
template:
src: erlov.conf
dest: "/etc/resolv.conf"
- name: configuration sshd_config
replace:
dest: /etc/ssh/sshd_config
regexp: '^PermitRootLogin (yes|without-password)'
regexp: '^PermitRootLogin (yes|without-password|prohibit-password)'
replace: "PermitRootLogin no"
notify: reload sshd
when: evolinux_root_disable_ssh