flr-brb/group_vars/all/main.yml
2019-12-02 00:21:35 +01:00

429 lines
8.2 KiB
YAML

---
# ---
# NFS
# ---
nfs_server: 192.168.102.10
# Set 'fs_encrypted' to true if filesystem lives on an encrypted
# partition.
#
nfs_exports:
- src: 192.168.102.10:/data/home
path: /data/home
mount_opts: users,rsize=8192,wsize=8192,hard,intr
export_opt: rw,root_squash,sync,subtree_check
export_networks:
- 192.168.102.0/24
- 10.0.102.0/24
- 10.1.102.0/24
- 192.168.63.0/24
fs_encrypted: false
# ---
# Samba / NIS
# ---
samba_server: file-flr.flr.netz
samba_shares:
- name: Altlasten
user:
- chris
- lisa
- flr
- chris-bloemer
- ivana
- sabrina
- kamue
- frank
- kirstin
- pierre
- juergen
- name: Archiv
user:
- chris
- lisa
- flr
- chris-bloemer
- ivana
- sabrina
- kamue
- frank
- kirstin
- pierre
- juergen
- name: Buchhaltung
user:
- chris
- lisa
- chris-bloemer
- name: Buero
user:
- chris
- lisa
- flr
- chris-bloemer
- ivana
- sabrina
- kamue
- frank
- kirstin
- pierre
- juergen
- name: Buero_und_Film
user:
- chris
- lisa
- flr
- chris-bloemer
- ivana
- sabrina
- kamue
- frank
- kirstin
- pierre
- juergen
- name: Datenbank
user:
- chris
- lisa
- flr
- chris-bloemer
- ivana
- sabrina
- kamue
- frank
- kirstin
- pierre
- juergen
- name: Einzelfaelle
user:
- chris
- lisa
- flr
- chris-bloemer
- ivana
- sabrina
- kamue
- frank
- kirstin
- pierre
- juergen
- name: ESF-Teilnehmende
user:
- chris
- mara
- chris-bloemer
- kirstin
- pierre
- name: Finanzen
user:
- chris
- lisa
- chris-bloemer
- name: Foerderverein
user:
- chris
- lisa
- flr
- chris-bloemer
- ivana
- sabrina
- kamue
- frank
- kirstin
- pierre
- juergen
- name: FR
user:
- chris
- lisa
- flr
- chris-bloemer
- ivana
- sabrina
- kamue
- frank
- kirstin
- pierre
- juergen
- name: install
user:
- chris
- name: Personal
user:
- chris
- lisa
- chris-bloemer
- name: Praktikum
user:
- chris
- lisa
- flr
- chris-bloemer
- ivana
- sabrina
- kamue
- frank
- kirstin
- pierre
- juergen
- name: Pressearchiv
user:
- chris
- name: Projektarbeit
user:
- chris
- lisa
- flr
- chris-bloemer
- ivana
- sabrina
- kamue
- frank
- kirstin
- pierre
- juergen
- name: Projektverwaltung
user:
- chris
- lisa
- flr
- chris-bloemer
- ivana
- sabrina
- kamue
- frank
- kirstin
- pierre
- juergen
nis_domain: flr.netz
nis_server_address: 192.168.102.10
nis_server_name: file-flr.flr.netz
nis_common_packages:
- nis
- nscd
nis_deleted_user:
- name: test-user
nis_base_home: /data/home
nis_groups:
- name: esf
group_id: 1021
- name: buero
group_id: 1022
- name: verwaltung
group_id: 1023
nis_user:
- name: chris
groups:
- esf
- buero
- verwaltung
is_samba_user: true
password: !vault |
$ANSIBLE_VAULT;1.1;AES256
38643435653764393333613564393733666139656264343833333632373938323230393036303234
3633303562636465643930643961663165646237386664370a386362346162313037353163383365
61343263386239316164613935633062343165363863376462653165306464633136313839343962
3865353333373661390a643564386432643532396632323664383330646430613033643130626430
6139
- name: mara
groups:
- esf
is_samba_user: true
password: '20/mara_16!'
- name: lisa
groups:
- buero
is_samba_user: true
password: '20_lisa_15!'
- name: flr
groups:
- buero
is_samba_user: true
password: '20-flr-brb_18'
- name: chris-bloemer
groups:
- esf
- buero
- verwaltung
is_samba_user: true
password: '20_chris-18_bloemer!'
- name: ivana
groups:
- buero
- verwaltung
is_samba_user: true
password: '20ivana13'
- name: sabrina
groups:
- buero
is_samba_user: true
password: '20sabrina13'
- name: lotta
groups:
- buero
- verwaltung
is_samba_user: true
password: '20_lotta_15!'
- name: kamue
groups:
- buero
- verwaltung
is_samba_user: true
password: '20_katha-mue%19'
- name: frank
groups:
- buero
- verwaltung
is_samba_user: true
password: '20%th-iele_19'
- name: kirstin
groups:
- esf
- buero
- verwaltung
is_samba_user: true
password: '20_kir-17-stin!'
- name: pierre
groups:
- esf
- buero
is_samba_user: true
password: '20_pierre16!20'
- name: juergen
groups:
- buero
is_samba_user: true
password: 'juergen-20_weber%17'
- name: verwaltung
groups:
- verwaltung
is_samba_user: false
password: 'pLq3PvFRz7mx'
- name: buero
groups:
- buero
is_samba_user: false
password: 'dH3C4x7sfVj3'
# ---
# vars used by roles/ansible_dependencies
# ---
apt_ansible_dependencies:
- python
- python-apt
- python3
- python3-apt
- lsb-release
- apt-transport-https
- dbus
- sudo
- vim
- net-tools
- vlan
# ---
# vars used by roles/ansible_user
# ---
ssh_keys_admin:
- 'ssh-rsa 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 chris@luna'
- 'ssh-rsa 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 root@luna'
ansible_remote_user:
- name: local
password: $6$hJSDt2xM$mWlfc6Ve11Y7F9J3KRapYGpN7KCD1IlbelYq/jd/xuG.UfK04nl2VOHJXVPYqC3H6q3VToAyD3yPqEcwT.KPA0
shell: /bin/bash
# ---
# vars used by roles/common/tasks/basic.yml
# ---
time_zone: Europe/Berlin
locales:
- en_US.UTF-8
- de_DE.UTF-8
set_default_limit_nofile: false
# ---
# vars used by roles/common/tasks/sudoers.yml
# ---
sudo_users:
- chris
- sysadm
# /etc/sudoers
#
sudoers_defaults:
- env_reset
- mail_badpass
- 'secure_path="/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin"'
sudoers_host_aliases: []
sudoers_user_aliases: []
sudoers_cmnd_aliases: []
sudoers_runas_aliases: []
sudoers_user_privileges:
- name: root
entry: 'ALL=(ALL:ALL) ALL'
sudoers_group_privileges: []
# /etc/sudoers.d/50-user
#
sudoers_file_defaults: []
sudoers_file_host_aliases: []
sudoers_file_user_aliases: []
sudoers_file_cmnd_aliases:
- name: MOUNT
entry: '/bin/mount,/bin/umount'
sudoers_file_runas_aliases: []