429 lines
8.2 KiB
YAML
429 lines
8.2 KiB
YAML
---
|
|
|
|
# ---
|
|
# NFS
|
|
# ---
|
|
|
|
nfs_server: 192.168.102.10
|
|
|
|
# Set 'fs_encrypted' to true if filesystem lives on an encrypted
|
|
# partition.
|
|
#
|
|
nfs_exports:
|
|
- src: 192.168.102.10:/data/home
|
|
path: /data/home
|
|
mount_opts: users,rsize=8192,wsize=8192,hard,intr
|
|
export_opt: rw,root_squash,sync,subtree_check
|
|
export_networks:
|
|
- 192.168.102.0/24
|
|
- 10.0.102.0/24
|
|
- 10.1.102.0/24
|
|
- 192.168.63.0/24
|
|
fs_encrypted: false
|
|
|
|
# ---
|
|
# Samba / NIS
|
|
# ---
|
|
|
|
samba_server: file-flr.flr.netz
|
|
|
|
samba_shares:
|
|
- name: Altlasten
|
|
user:
|
|
- chris
|
|
- lisa
|
|
- flr
|
|
- chris-bloemer
|
|
- ivana
|
|
- sabrina
|
|
- kamue
|
|
- frank
|
|
- kirstin
|
|
- pierre
|
|
- juergen
|
|
- name: Archiv
|
|
user:
|
|
- chris
|
|
- lisa
|
|
- flr
|
|
- chris-bloemer
|
|
- ivana
|
|
- sabrina
|
|
- kamue
|
|
- frank
|
|
- kirstin
|
|
- pierre
|
|
- juergen
|
|
- name: Buchhaltung
|
|
user:
|
|
- chris
|
|
- lisa
|
|
- chris-bloemer
|
|
- name: Buero
|
|
user:
|
|
- chris
|
|
- lisa
|
|
- flr
|
|
- chris-bloemer
|
|
- ivana
|
|
- sabrina
|
|
- kamue
|
|
- frank
|
|
- kirstin
|
|
- pierre
|
|
- juergen
|
|
- name: Buero_und_Film
|
|
user:
|
|
- chris
|
|
- lisa
|
|
- flr
|
|
- chris-bloemer
|
|
- ivana
|
|
- sabrina
|
|
- kamue
|
|
- frank
|
|
- kirstin
|
|
- pierre
|
|
- juergen
|
|
- name: Datenbank
|
|
user:
|
|
- chris
|
|
- lisa
|
|
- flr
|
|
- chris-bloemer
|
|
- ivana
|
|
- sabrina
|
|
- kamue
|
|
- frank
|
|
- kirstin
|
|
- pierre
|
|
- juergen
|
|
- name: Einzelfaelle
|
|
user:
|
|
- chris
|
|
- lisa
|
|
- flr
|
|
- chris-bloemer
|
|
- ivana
|
|
- sabrina
|
|
- kamue
|
|
- frank
|
|
- kirstin
|
|
- pierre
|
|
- juergen
|
|
- name: ESF-Teilnehmende
|
|
user:
|
|
- chris
|
|
- mara
|
|
- chris-bloemer
|
|
- kirstin
|
|
- pierre
|
|
- name: Finanzen
|
|
user:
|
|
- chris
|
|
- lisa
|
|
- chris-bloemer
|
|
- name: Foerderverein
|
|
user:
|
|
- chris
|
|
- lisa
|
|
- flr
|
|
- chris-bloemer
|
|
- ivana
|
|
- sabrina
|
|
- kamue
|
|
- frank
|
|
- kirstin
|
|
- pierre
|
|
- juergen
|
|
- name: FR
|
|
user:
|
|
- chris
|
|
- lisa
|
|
- flr
|
|
- chris-bloemer
|
|
- ivana
|
|
- sabrina
|
|
- kamue
|
|
- frank
|
|
- kirstin
|
|
- pierre
|
|
- juergen
|
|
- name: install
|
|
user:
|
|
- chris
|
|
- name: Personal
|
|
user:
|
|
- chris
|
|
- lisa
|
|
- chris-bloemer
|
|
- name: Praktikum
|
|
user:
|
|
- chris
|
|
- lisa
|
|
- flr
|
|
- chris-bloemer
|
|
- ivana
|
|
- sabrina
|
|
- kamue
|
|
- frank
|
|
- kirstin
|
|
- pierre
|
|
- juergen
|
|
- name: Pressearchiv
|
|
user:
|
|
- chris
|
|
- name: Projektarbeit
|
|
user:
|
|
- chris
|
|
- lisa
|
|
- flr
|
|
- chris-bloemer
|
|
- ivana
|
|
- sabrina
|
|
- kamue
|
|
- frank
|
|
- kirstin
|
|
- pierre
|
|
- juergen
|
|
- name: Projektverwaltung
|
|
user:
|
|
- chris
|
|
- lisa
|
|
- flr
|
|
- chris-bloemer
|
|
- ivana
|
|
- sabrina
|
|
- kamue
|
|
- frank
|
|
- kirstin
|
|
- pierre
|
|
- juergen
|
|
|
|
nis_domain: flr.netz
|
|
|
|
nis_server_address: 192.168.102.10
|
|
|
|
nis_server_name: file-flr.flr.netz
|
|
|
|
nis_common_packages:
|
|
- nis
|
|
- nscd
|
|
|
|
nis_deleted_user:
|
|
- name: test-user
|
|
|
|
|
|
nis_base_home: /data/home
|
|
|
|
nis_groups:
|
|
- name: esf
|
|
group_id: 1021
|
|
- name: buero
|
|
group_id: 1022
|
|
- name: verwaltung
|
|
group_id: 1023
|
|
|
|
nis_user:
|
|
- name: chris
|
|
groups:
|
|
- esf
|
|
- buero
|
|
- verwaltung
|
|
is_samba_user: true
|
|
password: !vault |
|
|
$ANSIBLE_VAULT;1.1;AES256
|
|
38643435653764393333613564393733666139656264343833333632373938323230393036303234
|
|
3633303562636465643930643961663165646237386664370a386362346162313037353163383365
|
|
61343263386239316164613935633062343165363863376462653165306464633136313839343962
|
|
3865353333373661390a643564386432643532396632323664383330646430613033643130626430
|
|
6139
|
|
|
|
- name: mara
|
|
groups:
|
|
- esf
|
|
is_samba_user: true
|
|
password: '20/mara_16!'
|
|
|
|
- name: lisa
|
|
groups:
|
|
- buero
|
|
is_samba_user: true
|
|
password: '20_lisa_15!'
|
|
|
|
- name: flr
|
|
groups:
|
|
- buero
|
|
is_samba_user: true
|
|
password: '20-flr-brb_18'
|
|
|
|
- name: chris-bloemer
|
|
groups:
|
|
- esf
|
|
- buero
|
|
- verwaltung
|
|
is_samba_user: true
|
|
password: '20_chris-18_bloemer!'
|
|
|
|
- name: ivana
|
|
groups:
|
|
- buero
|
|
- verwaltung
|
|
is_samba_user: true
|
|
password: '20ivana13'
|
|
|
|
- name: sabrina
|
|
groups:
|
|
- buero
|
|
is_samba_user: true
|
|
password: '20sabrina13'
|
|
|
|
- name: lotta
|
|
groups:
|
|
- buero
|
|
- verwaltung
|
|
is_samba_user: true
|
|
password: '20_lotta_15!'
|
|
|
|
- name: kamue
|
|
groups:
|
|
- buero
|
|
- verwaltung
|
|
is_samba_user: true
|
|
password: '20_katha-mue%19'
|
|
|
|
- name: frank
|
|
groups:
|
|
- buero
|
|
- verwaltung
|
|
is_samba_user: true
|
|
password: '20%th-iele_19'
|
|
|
|
- name: kirstin
|
|
groups:
|
|
- esf
|
|
- buero
|
|
- verwaltung
|
|
is_samba_user: true
|
|
password: '20_kir-17-stin!'
|
|
|
|
- name: pierre
|
|
groups:
|
|
- esf
|
|
- buero
|
|
is_samba_user: true
|
|
password: '20_pierre16!20'
|
|
|
|
- name: juergen
|
|
groups:
|
|
- buero
|
|
is_samba_user: true
|
|
password: 'juergen-20_weber%17'
|
|
|
|
- name: verwaltung
|
|
groups:
|
|
- verwaltung
|
|
is_samba_user: false
|
|
password: 'pLq3PvFRz7mx'
|
|
|
|
- name: buero
|
|
groups:
|
|
- buero
|
|
is_samba_user: false
|
|
password: 'dH3C4x7sfVj3'
|
|
|
|
|
|
|
|
# ---
|
|
# vars used by roles/ansible_dependencies
|
|
# ---
|
|
|
|
apt_ansible_dependencies:
|
|
- python
|
|
- python-apt
|
|
- python3
|
|
- python3-apt
|
|
- lsb-release
|
|
- apt-transport-https
|
|
- dbus
|
|
- sudo
|
|
- vim
|
|
- net-tools
|
|
- vlan
|
|
|
|
|
|
# ---
|
|
# vars used by roles/ansible_user
|
|
# ---
|
|
|
|
ssh_keys_admin:
|
|
- 'ssh-rsa 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 chris@luna'
|
|
- 'ssh-rsa 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 root@luna'
|
|
|
|
ansible_remote_user:
|
|
- name: local
|
|
password: $6$hJSDt2xM$mWlfc6Ve11Y7F9J3KRapYGpN7KCD1IlbelYq/jd/xuG.UfK04nl2VOHJXVPYqC3H6q3VToAyD3yPqEcwT.KPA0
|
|
shell: /bin/bash
|
|
|
|
|
|
|
|
# ---
|
|
# vars used by roles/common/tasks/basic.yml
|
|
# ---
|
|
|
|
time_zone: Europe/Berlin
|
|
|
|
locales:
|
|
- en_US.UTF-8
|
|
- de_DE.UTF-8
|
|
|
|
set_default_limit_nofile: false
|
|
|
|
|
|
# ---
|
|
# vars used by roles/common/tasks/sudoers.yml
|
|
# ---
|
|
|
|
sudo_users:
|
|
- chris
|
|
- sysadm
|
|
|
|
|
|
# /etc/sudoers
|
|
#
|
|
sudoers_defaults:
|
|
- env_reset
|
|
- mail_badpass
|
|
- 'secure_path="/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin"'
|
|
|
|
sudoers_host_aliases: []
|
|
|
|
sudoers_user_aliases: []
|
|
|
|
sudoers_cmnd_aliases: []
|
|
|
|
sudoers_runas_aliases: []
|
|
|
|
sudoers_user_privileges:
|
|
- name: root
|
|
entry: 'ALL=(ALL:ALL) ALL'
|
|
|
|
sudoers_group_privileges: []
|
|
|
|
|
|
|
|
# /etc/sudoers.d/50-user
|
|
#
|
|
sudoers_file_defaults: []
|
|
|
|
sudoers_file_host_aliases: []
|
|
|
|
sudoers_file_user_aliases: []
|
|
|
|
sudoers_file_cmnd_aliases:
|
|
- name: MOUNT
|
|
entry: '/bin/mount,/bin/umount'
|
|
|
|
sudoers_file_runas_aliases: []
|
|
|