REFACTOR: harden_ssh task refactored according to ansible-lint
This commit is contained in:
@@ -1,16 +1,24 @@
|
||||
---
|
||||
|
||||
- name: Configure ssh-server daemon
|
||||
copy:
|
||||
src: ../files/hardened_sshd.conf
|
||||
ansible.builtin.copy:
|
||||
src: "{{ role_path }}/files/hardened_sshd.conf"
|
||||
dest: /etc/ssh/sshd_config.d/hardened_sshd.conf
|
||||
mode: u=rw,g=r,o=r
|
||||
notify: restart sshd
|
||||
notify: restart ssh-server
|
||||
when: ansible_facts['distribution'] == 'Ubuntu'
|
||||
|
||||
- name: Configure ssh-server daemon
|
||||
ansible.builtin.copy:
|
||||
src: "{{ role_path }}/files/hardened_sshd.conf"
|
||||
dest: /etc/ssh/sshd_config.d/hardened_sshd.conf
|
||||
mode: u=rw,g=r,o=r
|
||||
notify: restart sshd-server
|
||||
when: ansible_facts['distribution'] == 'Debian'
|
||||
|
||||
- name: Configure ssh client
|
||||
remote_user: ansible
|
||||
copy:
|
||||
src: ../files/hardened_ssh.conf
|
||||
ansible.builtin.copy:
|
||||
src: "{{ role_path }}/files/hardened_ssh.conf"
|
||||
dest: /etc/ssh/ssh_config.d/hardened_ssh.conf
|
||||
mode: u=rw,g=r,o=r
|
||||
mode: u=rw,g=r,o=r
|
||||
|
||||
Reference in New Issue
Block a user