mirror of
				https://gitlab.sectorq.eu/jaydee/ansible.git
				synced 2025-10-30 18:01:11 +01:00 
			
		
		
		
	upt playbook
This commit is contained in:
		| @@ -1,4 +1,4 @@ | ||||
| - hosts: morefine | ||||
| - hosts: raspberry | ||||
|   name: Install omv | ||||
|   become: true | ||||
|   tasks: | ||||
| @@ -100,3 +100,22 @@ | ||||
|         name: nslcd.service | ||||
|         state: restarted | ||||
|          | ||||
|     - name: Creating a file with content | ||||
|       copy: | ||||
|         dest: "/usr/local/bin/fetchSSHKeysFromLDAP" | ||||
|         content: | | ||||
|           #!/usr/bin/bash | ||||
|           ldapsearch  -x '(&(objectClass=ldapPublicKey)(cn='"$1"'))' 'sshPublicKey' |     sed -n '/^ /{H;d};/sshPublicKey:/x;$g;s/\n *//g;s/sshPublicKey: //gp'   | ||||
|  | ||||
|     - name: Reconfigure sshd | ||||
|       ansible.builtin.lineinfile: | ||||
|         path: /etc/ssh/sshd_config | ||||
|         regexp: "^#AuthorizedKeysCommand *" | ||||
|         line: "AuthorizedKeysCommand /usr/local/bin/fetchSSHKeysFromLDAP" | ||||
|  | ||||
|     - name: Reconfigure sshd | ||||
|       ansible.builtin.lineinfile: | ||||
|         path: /etc/ssh/sshd_config | ||||
|         regexp: "^#AuthorizedKeysCommandUser *" | ||||
|         line: "AuthorizedKeysCommandUser root" | ||||
|          | ||||
		Reference in New Issue
	
	Block a user
	 jaydee
					jaydee