Compare commits
9 Commits
| Author | SHA1 | Date |
|---|---|---|
|
|
6f2b4a8d66 | 6 years ago |
|
|
4969aaf8f8 | 6 years ago |
|
|
b63e041f01 | 6 years ago |
|
|
609e46c9d5 | 6 years ago |
|
|
2fb8d4cdb4 | 6 years ago |
|
|
1a9085ed1a | 6 years ago |
|
|
9c7e889c3e | 6 years ago |
|
|
6b1d55b944 | 6 years ago |
|
|
bf6245174b | 6 years ago |
@ -1,12 +0,0 @@ |
||||
--- |
||||
- hosts: localhost |
||||
tasks: |
||||
|
||||
- name: 'Call "id"' |
||||
command: id |
||||
|
||||
- name: Copy a file |
||||
copy: src=test.txt dest=/tmp/test.txt backup=yes |
||||
|
||||
- name: 'Call "cat /tmp/test.txt"' |
||||
command: cat /tmp/test.txt |
||||
@ -0,0 +1,5 @@ |
||||
--- |
||||
- hosts: all |
||||
roles: |
||||
- dokuwiki_inventory |
||||
|
||||
@ -1,7 +1,2 @@ |
||||
ntp_servers: |
||||
- 0.debian.pool.ntp.org |
||||
- 1.debian.pool.ntp.org |
||||
- 2.debian.pool.ntp.org |
||||
|
||||
ntp_package_name : ntp |
||||
ntp_service_name : ntp |
||||
|
||||
@ -0,0 +1,2 @@ |
||||
--- |
||||
ssh_service_name: ssh |
||||
@ -1,29 +0,0 @@ |
||||
--- |
||||
- hosts: sysd |
||||
|
||||
tasks: |
||||
|
||||
- name: Install NTP |
||||
package: |
||||
name: "{{ ntp_package_name }}" |
||||
state: latest |
||||
|
||||
- name: Template Config |
||||
template: |
||||
src: "{{ ntp_package_name }}.conf.j2" |
||||
dest: "/etc/{{ ntp_package_name }}.conf" |
||||
mode: 0644 |
||||
owner: root |
||||
group: root |
||||
backup: yes |
||||
|
||||
- name: Restart Service |
||||
service: |
||||
name: "{{ ntp_service_name }}" |
||||
state: restarted |
||||
|
||||
- name: Ensure Running |
||||
service: |
||||
name: "{{ ntp_service_name }}" |
||||
state: started |
||||
enabled: yes |
||||
@ -0,0 +1,9 @@ |
||||
--- |
||||
- hosts: all |
||||
roles: |
||||
- hosts |
||||
- ssh-keyonly |
||||
|
||||
- hosts: sysd |
||||
roles: |
||||
- ntp |
||||
@ -0,0 +1,2 @@ |
||||
--- |
||||
doku_path: /var/lib/dokuwiki/data/pages/inventory |
||||
@ -0,0 +1,21 @@ |
||||
--- |
||||
- name: Create Inventory Folder |
||||
local_action: |
||||
module: file |
||||
path: "{{ doku_path }}" |
||||
state: directory |
||||
mode: 0755 |
||||
run_once: True |
||||
|
||||
- name: Write Wiki Page |
||||
local_action: |
||||
module: template |
||||
src: host.j2 |
||||
dest: "{{ doku_path }}/{{ inventory_hostname }}.txt" |
||||
|
||||
- name: Write Index Page |
||||
local_action: |
||||
module: template |
||||
src: start.j2 |
||||
dest: "{{ doku_path }}/start.txt" |
||||
run_once: True |
||||
@ -0,0 +1,32 @@ |
||||
====== {{ inventory_hostname }} ====== |
||||
* FQDN: {{ ansible_fqdn }} -- {{ ansible_default_ipv4.address }} |
||||
* Product: **{{ ansible_system_vendor|default("N/A") }}** {{ ansible_product_name|default("N/A") }} (S/N: {{ ansible_product_serial }}), {{ ansible_form_factor }} |
||||
* Virtualization: {{ ansible_virtualization_role }} / {{ ansible_virtualization_type }} |
||||
* CPUs: {{ ansible_processor_vcpus }} ( {{ ansible_processor_count }} x {{ ansible_processor_cores }} Cores x {{ ansible_processor_threads_per_core }} Threads ) |
||||
* CPU-Type: {{ ansible_processor[2] }} |
||||
* RAM: {{ ansible_memtotal_mb }} MB |
||||
* Swap: {{ "%0.2f" % (ansible_swaptotal_mb / 1024) }} GB |
||||
* OS: {{ ansible_distribution }} {{ ansible_distribution_version }} |
||||
* Kernel: {{ ansible_kernel }} |
||||
* Init: {{ ansible_service_mgr }} |
||||
* IPs: |
||||
* IPv4: {{ ansible_all_ipv4_addresses|join(', ') }} |
||||
* IPv6: {{ ansible_all_ipv6_addresses|join(', ') }} |
||||
|
||||
|
||||
Mountpoints: |
||||
| Source | Mountpoint | Filesystem | |
||||
{% for m in ansible_mounts %} |
||||
| ''{{ m.device }}'' | ''{{ m.mount }}'' | ''{{ m.fstype }}'' | |
||||
{% endfor %} |
||||
|
||||
* AppArmor: {{ ansible_apparmor.status }} |
||||
* SE-Linux: {{ ansible_selinux.status }} |
||||
* SSH-Host-Keys: |
||||
* DSA: ''{{ ansible_ssh_host_key_dsa_public|default("N/A") }}'' |
||||
* RSA: ''{{ ansible_ssh_host_key_rsa_public|default("N/A") }}'' |
||||
* ECDSA: ''{{ ansible_ssh_host_key_ecdsa_public|default("N/A") }}'' |
||||
* Ed25519: ''{{ ansible_ssh_host_key_ed25519_public|default("N/A") }}'' |
||||
|
||||
---- |
||||
//{{ ansible_managed }}// |
||||
@ -0,0 +1,4 @@ |
||||
{% for h in hostvars|sort %} |
||||
* [[ {{ h }} ]] |
||||
{% endfor %} |
||||
|
||||
@ -0,0 +1,27 @@ |
||||
--- |
||||
- name: Detect domain name |
||||
set_fact: |
||||
domainname: "{{ ansible_dns.domain|default(False) or ansible_dns.search.0|default(False) or ansible_domain|default(False) or 'invalid'}}" |
||||
|
||||
- name: Add name/IP to hosts file |
||||
lineinfile: |
||||
dest: /etc/hosts |
||||
regexp: '^{{ ansible_default_ipv4.address }}' |
||||
line: '{{ ansible_default_ipv4.address }} {{ ansible_hostname }}.{{ domainname }} {{ ansible_hostname }}' |
||||
backup: yes |
||||
|
||||
- name: Clean/remove 127.0.1.1 |
||||
lineinfile: |
||||
dest: /etc/hosts |
||||
regexp: '^127.0.1.1' |
||||
state: absent |
||||
backup: yes |
||||
|
||||
- name: Ensure 127.0.0.1 localhost |
||||
lineinfile: |
||||
dest: /etc/hosts |
||||
regexp: '127.0.0.1' |
||||
line: '127.0.0.1 localhost localhost.localdomain' |
||||
insertbefore: BOF |
||||
backup: yes |
||||
|
||||
@ -0,0 +1,4 @@ |
||||
ntp_servers: |
||||
- 0.debian.pool.ntp.org |
||||
- 1.debian.pool.ntp.org |
||||
- 2.debian.pool.ntp.org |
||||
@ -0,0 +1,25 @@ |
||||
--- |
||||
- name: Install NTP |
||||
package: |
||||
name: "{{ ntp_package_name }}" |
||||
state: latest |
||||
|
||||
- name: Template Config |
||||
template: |
||||
src: "etc/{{ ntp_package_name }}.conf.j2" |
||||
dest: "/etc/{{ ntp_package_name }}.conf" |
||||
mode: 0644 |
||||
owner: root |
||||
group: root |
||||
backup: yes |
||||
|
||||
- name: Restart Service |
||||
service: |
||||
name: "{{ ntp_service_name }}" |
||||
state: restarted |
||||
|
||||
- name: Ensure Running |
||||
service: |
||||
name: "{{ ntp_service_name }}" |
||||
state: started |
||||
enabled: yes |
||||
@ -0,0 +1,2 @@ |
||||
--- |
||||
ssh_service_name: sshd |
||||
@ -0,0 +1,18 @@ |
||||
--- |
||||
- name: "Set «PermitRootLogin» to «without-password»" |
||||
lineinfile: |
||||
dest: /etc/ssh/sshd_config |
||||
regexp: '^#? *PermitRootLogin' |
||||
line: "PermitRootLogin without-password" |
||||
backup: yes |
||||
register: sshconfigchanged |
||||
|
||||
|
||||
- name: Restart sshd |
||||
service: |
||||
name: "{{ ssh_service_name }}" |
||||
state: restarted |
||||
sleep: 5 |
||||
when: sshconfigchanged is changed |
||||
|
||||
|
||||
Loading…
Reference in new issue