revert parts of "506fa8da8d" (explanation inline) #217
1 changed files with 4 additions and 1 deletions
|
@ -53,6 +53,9 @@
|
||||||
block: |
|
block: |
|
||||||
{{ item.username }} ALL=(ALL) {{ 'NOPASSWD:' if (item.allow_passwordless_sudo | d(false)) else '' }}ALL
|
{{ item.username }} ALL=(ALL) {{ 'NOPASSWD:' if (item.allow_passwordless_sudo | d(false)) else '' }}ALL
|
||||||
validate: 'visudo -cf %s'
|
validate: 'visudo -cf %s'
|
||||||
|
owner: root
|
||||||
|
group: root
|
||||||
|
mode: "0644"
|
||||||
loop: '{{ users }}'
|
loop: '{{ users }}'
|
||||||
when: item.allow_sudo|default(false) and item.allow_sudo is defined
|
when: item.allow_sudo|default(false) and item.allow_sudo is defined
|
||||||
no_log: true
|
no_log: true
|
||||||
|
@ -60,7 +63,7 @@
|
||||||
- name: Ensure users are removed from sudoers # ungetestet
|
- name: Ensure users are removed from sudoers # ungetestet
|
||||||
ansible.builtin.file:
|
ansible.builtin.file:
|
||||||
path: "/etc/sudoers.d/users-sudo-{{ item.username }}"
|
path: "/etc/sudoers.d/users-sudo-{{ item.username }}"
|
||||||
state: "{{ item.state | default('present') }}"
|
state: absent
|
||||||
loop: '{{ users }}'
|
loop: '{{ users }}'
|
||||||
when: (item.allow_sudo|default(false) and item.allow_sudo is defined) and ("absent" in item.state)
|
when: (item.allow_sudo|default(false) and item.allow_sudo is defined) and ("absent" in item.state)
|
||||||
no_log: true
|
no_log: true
|
||||||
|
|
Loading…
Reference in a new issue