sudo, fix to current lint standards.

This commit is contained in:
me
2026-10-02 11:11:38 -07:00
parent 18a875e842
commit 502cec92f3
+6 -5
View File
@@ -2,32 +2,33 @@
# Ensure the proper users have sudo access. # Ensure the proper users have sudo access.
- name: General | Account Management | Sudo | Copy Ansible - name: General | Account Management | Sudo | Copy Ansible
copy: ansible.builtin.copy:
src: sudo/sudoers_ansible src: sudo/sudoers_ansible
dest: "{{ sudoers_install_dir }}" dest: "{{ sudoers_install_dir }}"
owner: root owner: root
group: "{{ root_group }}" group: "{{ root_group }}"
mode: 0440 mode: "0440"
- name: General | Account Management | Sudo | Copy Sudo Group - name: General | Account Management | Sudo | Copy Sudo Group
copy: ansible.builtin.copy:
src: sudo/sudoers_sudo src: sudo/sudoers_sudo
dest: "{{ sudoers_install_dir }}" dest: "{{ sudoers_install_dir }}"
owner: root owner: root
group: "{{ root_group }}" group: "{{ root_group }}"
mode: 0440 mode: "0440"
# Disable these two lines in openSUSE default configuration. # Disable these two lines in openSUSE default configuration.
#Defaults targetpw # ask for the password of the target user i.e. root #Defaults targetpw # ask for the password of the target user i.e. root
#ALL ALL=(ALL) ALL # WARNING! Only use this together with 'Defaults targetpw'! #ALL ALL=(ALL) ALL # WARNING! Only use this together with 'Defaults targetpw'!
- name: General | Account Management | Sudo | Disable openSUSE Root PW Prompt - name: General | Account Management | Sudo | Disable openSUSE Root PW Prompt
lineinfile: ansible.builtin.lineinfile:
path: "{{ sudoers_config }}" path: "{{ sudoers_config }}"
regexp: '{{ item.key }}' regexp: '{{ item.key }}'
line: '{{ item.value }} # MANAGED BY ANSIBLE' line: '{{ item.value }} # MANAGED BY ANSIBLE'
state: present state: present
create: true create: true
backup: true backup: true
mode: "644"
loop: loop:
- { "key": '^[\#]?Defaults targetpw', "value": '#Defaults targetpw'} - { "key": '^[\#]?Defaults targetpw', "value": '#Defaults targetpw'}
- { "key": '^[\#]?ALL ALL\=\(ALL\) ALL', "value": '#ALL ALL=(ALL) ALL'} - { "key": '^[\#]?ALL ALL\=\(ALL\) ALL', "value": '#ALL ALL=(ALL) ALL'}