84d5a653c5
- Modified network interface settings for gw-mbr.oopen.de, changing IP addresses and adding an alias for IPMI. - Refactored network interface configuration for o28.oopen.de, consolidating and updating device settings, including bridge configurations and DNS settings. - Added new user 'farina' to samba_user in zapata.opp.netz.yml. - Updated hosts file to include new entries for ak-plan.oopen.de and adjusted existing entries for clarity. - Created new host variable files for ak-plan.oopen.de, cl-ndm.oopen.de, and psono-ndm.oopen.de with comprehensive configurations for systemd-resolved and cron jobs.
294 lines
9.1 KiB
YAML
294 lines
9.1 KiB
YAML
---
|
|
|
|
# ---
|
|
# vars used by roles/ansible_dependencies
|
|
# ---
|
|
|
|
|
|
# ---
|
|
# vars used by roles/ansible_user
|
|
# ---
|
|
|
|
|
|
# ---
|
|
# vars used by roles/common/tasks/basic.yml
|
|
# ---
|
|
|
|
|
|
# ---
|
|
# vars used by roles/common/tasks/sshd.yml
|
|
# ---
|
|
|
|
|
|
# ---
|
|
# vars used by apt.yml
|
|
# ---
|
|
|
|
|
|
# ---
|
|
# vars used by roles/common/tasks/users.yml
|
|
# ---
|
|
|
|
extra_user:
|
|
|
|
- name: kaya
|
|
user_id: 1002
|
|
group_id: 1002
|
|
password: $6$t9gheUvd$hFTJ5mp0bdu4Hc5zGmS6HuSAfFOc4QRROLX4wnCauLjwTxUtvhgeLDlL5YkjGfiWOCEe84krH4op0DdKjTJWG/
|
|
shell: /bin/bash
|
|
ssh_keys:
|
|
- 'ssh-rsa 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 xayax@xAyAx-imac.local'
|
|
|
|
- name: lalix
|
|
user_id: 1003
|
|
group_id: 1003
|
|
password: $6$RKaAbxOz$LxvjoVclfkgo99VwmXi9cIhVmUdTNT.T0/pZAH9GNtFEQn5NoOak/DHTHHG9kn58soDRuhEAup1x4T2jG.Js0/
|
|
shell: /bin/bash
|
|
ssh_keys:
|
|
- 'ssh-rsa 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 felix@Wilmas-iMac.local'
|
|
|
|
- name: mariette
|
|
user_id: 1004
|
|
group_id: 1004
|
|
password: $6$QiYW4uMG$9bOGhsON8SnOSIC4.UTXhVpCpebcJNInI3t1JPhR7979D3CpoKroK7dXPAxGfDigrkxBwcqju..PuvCUqtshw1
|
|
shell: /bin/bash
|
|
ssh_keys:
|
|
- 'ssh-rsa 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 chris@luna'
|
|
|
|
- name: annette
|
|
user_id: 1006
|
|
group_id: 1006
|
|
password: $6$r7PHitZp$v4Av3Q/U1wJ/Bvndr10TU89nMYrsBwb4xOgqu.JTbnVGoubkOlwU6RCUNGGXqfwRo0UqprhXMvP0l5HoHL3271
|
|
shell: /bin/bash
|
|
ssh_keys:
|
|
- 'ssh-rsa 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 chris@luna'
|
|
|
|
|
|
# ---
|
|
# vars used by roles/common/tasks/systemd-resolved.yml
|
|
# ---
|
|
|
|
systemd_resolved: true
|
|
|
|
# CyberGhost - Schnelle Verbindung mit Keine-Logs-Datenschutzrichtlinie
|
|
# Primäre DNS-Adresse: 38.132.106.139
|
|
# Sekundäre DNS-Adresse: 194.187.251.67
|
|
#
|
|
# Cloudflare (USA) Bester kostenloser DNS-Server für Gaming mit zuverlässigen Verbindungen
|
|
# primäre DNS-Adresse
|
|
# IPv4: 1.1.1.1
|
|
# IPv6: 2606:4700:4700::1111
|
|
# sekundäre DNS-Adresse
|
|
# IPv4: 1.0.0.1
|
|
# IPv6: 2606:4700:4700::1001
|
|
#
|
|
# Google (USA) Public DNS - Großartige Kombination aus Geschwindigkeit und Sicherheit
|
|
# primäre DNS-Adresse
|
|
# IPv4: 8.8.8.8
|
|
# IPv6: 2001:4860:4860::8888
|
|
# sekundäre DNS-Adresse
|
|
# IPv4: 8.8.4.4
|
|
# IPv6: 2001:4860:4860::8844
|
|
#
|
|
# Quad9 (CH) - Blockiert mühelos schädliche Seiten und verhindert Phishing-Betrug
|
|
# primäre DNS-Adresse
|
|
# IPv4: 9.9.9.9
|
|
# IPv6: 2620:fe::fe
|
|
# sekundäre DNS-Adresse
|
|
# IPv4: 149.112.112.112
|
|
# IPv6: 2620:fe::9
|
|
#
|
|
# OpenNIC - https://www.opennic.org/
|
|
# IPv4: 195.10.195.195 - ns31.de
|
|
# IPv4: 94.16.114.254 - ns28.de
|
|
# IPv4: 51.254.162.59 - ns9.de
|
|
# IPv4: 194.36.144.87 - ns29.de
|
|
# IPv6: 2a00:f826:8:2::195 - ns31.de
|
|
#
|
|
# Freifunk München (normales DNS, DNS-over-TLS und DNS-over-HTTPS)
|
|
# IPv4: 5.1.66.255
|
|
# IPv6: 2001:678:e68:f000::
|
|
# Servername für DNS-over-TLS: dot.ffmuc.net
|
|
# IPv4: 185.150.99.255
|
|
# IPv6: 2001:678:ed0:f000::
|
|
# Servername für DNS-over-TLS: dot.ffmuc.net
|
|
# für iOS 14+: DoT-Server-Konfiguration (unsigniert, vom PrHdb)
|
|
resolved_nameserver:
|
|
- 192.168.52.1
|
|
|
|
# search domains
|
|
#
|
|
# If there are more than one search domains, then specify them here in the order in which
|
|
# the resolver should also search them
|
|
#
|
|
#resolved_domains: []
|
|
resolved_domains:
|
|
- ~.
|
|
- wf.netz
|
|
|
|
resolved_dnssec: false
|
|
|
|
# dns.as250.net: 194.150.168.168
|
|
#
|
|
resolved_fallback_nameserver:
|
|
- 194.150.168.168
|
|
|
|
|
|
# ---
|
|
# vars used by roles/common/tasks/users-systemfiles.yml
|
|
# ---
|
|
|
|
|
|
# ---
|
|
# vars used by roles/common/tasks/webadmin-user.yml
|
|
# ---
|
|
|
|
|
|
# ---
|
|
# vars used by roles/common/tasks/sudoers.yml
|
|
# ---
|
|
#
|
|
# see: roles/common/tasks/vars
|
|
|
|
|
|
# ---
|
|
# vars used by roles/common/tasks/caching-nameserver.yml
|
|
# ---
|
|
|
|
|
|
# ---
|
|
# vars used by roles/common/tasks/git.yml
|
|
# ---
|
|
#
|
|
# see: roles/common/tasks/vars
|
|
|
|
|
|
# ---
|
|
# vars used by roles/common/tasks/nfs.yml
|
|
# ---
|
|
|
|
|
|
# ---
|
|
# vars used by roles/common/tasks/samba-config-server.yml
|
|
# vars used by roles/common/tasks/samba-user.yml
|
|
# ---
|
|
|
|
samba_server_ip: 192.168.52.10
|
|
samba_server_cidr_prefix: 24
|
|
|
|
samba_workgroup: WF
|
|
|
|
samba_netbios_name: ANITA
|
|
|
|
samba_groups:
|
|
- name: users
|
|
group_id: 100
|
|
- name: archive
|
|
group_id: 1020
|
|
- name: intern
|
|
group_id: 1030
|
|
|
|
samba_user:
|
|
|
|
- name: annette
|
|
groups:
|
|
- users
|
|
- intern
|
|
password: '20.18-annette%'
|
|
|
|
- name: axel
|
|
groups:
|
|
- archive
|
|
- users
|
|
- intern
|
|
password: 'axel123'
|
|
|
|
- name: chris
|
|
groups:
|
|
- users
|
|
- archive
|
|
- intern
|
|
password: !vault |
|
|
$ANSIBLE_VAULT;1.1;AES256
|
|
63643330373231636537366333326630333265303265653933613835656262323863363038653234
|
|
3462653135633266373439626263356636646637643035340a653466356235346663626163306363
|
|
61313164643061306433643738643563303036646334376536626531383965303036386162393832
|
|
6631333038306462610a356535633265633563633962333137326533633834636331343562633765
|
|
3631
|
|
|
|
- name: kaya
|
|
groups:
|
|
- users
|
|
- intern
|
|
password: 'kaya123'
|
|
|
|
- name: lalix
|
|
groups:
|
|
- users
|
|
- intern
|
|
password: 'lalix123'
|
|
|
|
- name: mariette
|
|
groups:
|
|
- users
|
|
- intern
|
|
password: 'mariette123'
|
|
|
|
- name: sysadm
|
|
groups:
|
|
- users
|
|
- archive
|
|
- intern
|
|
password: !vault |
|
|
$ANSIBLE_VAULT;1.1;AES256
|
|
31306162383164643133623335323736323837613435333430363336353032323565633130353733
|
|
3363646437363062313763636333356436666331396131370a393762363931626166326530373261
|
|
62616332643232663432613662646134613539323861383436636364633562646138646538343863
|
|
6530336565363934330a363063653533396666373730663062363633363634363337323039363231
|
|
3130
|
|
|
|
base_home: /home
|
|
|
|
samba_homes_virusfilter: true
|
|
|
|
samba_shares:
|
|
|
|
- name: archiv
|
|
path: /data/samba/archiv
|
|
group_valid_users: users
|
|
group_write_list: archive
|
|
file_create_mask: !!str 664
|
|
dir_create_mask: !!str 2775
|
|
vfs_object_virusfilter: true
|
|
vfs_object_recycle: true
|
|
recycle_path: '@Recycle'
|
|
|
|
- name: daten2
|
|
path: /data/samba/daten2
|
|
group_valid_users: users
|
|
group_write_list: users
|
|
file_create_mask: !!str 664
|
|
dir_create_mask: !!str 2775
|
|
vfs_object_virusfilter: true
|
|
vfs_object_recycle: true
|
|
recycle_path: '@Recycle'
|
|
|
|
- name: verwaltung
|
|
path: /data/samba/archiv
|
|
group_valid_users: intern
|
|
group_write_list: intern
|
|
file_create_mask: !!str 664
|
|
dir_create_mask: !!str 2775
|
|
vfs_object_virusfilter: true
|
|
vfs_object_recycle: true
|
|
recycle_path: '@Recycle'
|
|
|
|
|
|
# ==============================
|
|
|
|
|
|
# ---
|
|
# vars used by scripts/reset_root_passwd.yml
|
|
# ---
|
|
|