nis/roles/common/tasks/sudoers-pc.yml
2023-04-13 01:51:29 +02:00

39 lines
904 B
YAML

---
- name: (sudoers-pc.yml) update specific sudoers configuration files (/etc/sudoers.d/)
template:
src: etc/sudoers.d/50-user.pc.j2
dest: /etc/sudoers.d/50-user
validate: visudo -cf %s
owner: root
group: root
mode: 0440
tags:
- sudoers-file-configuration
- name: (sudoers-pc.yml) update global sudoers configuration file
template:
src: etc/sudoers.pc.j2
dest: /etc/sudoers
owner: root
group: root
mode: 0440
validate: visudo -cf %s
tags:
- sudoers-global-configuration
#- name: (sudoers-pc.yml) Ensure all sudo_users are in sudo group
# user:
# name: "{{ item }}"
# groups: sudo
# append: yes
# with_items: "{{ sudo_pc_users }}"
# tags:
# - sudo-users
- name: (sudoers-pc.yml) Ensure all sudo_users are in sudo group
shell: usermod -a -G sudo "{{ item }}"
with_items: "{{ sudo_pc_users }}"
tags:
- sudo-users