env-ansible/local.yml

62 lines
1.6 KiB
YAML

---
# Harmonize my systems rather than doing everything manually. :)
# Setup of any device connected to this repo.
- name: Main | Default Setup
hosts: localhost
connection: local
become: true
pre_tasks:
- include: facts/general/system.yml
- include: facts/general/package.yml
- include: facts/general/service.yml
- include: facts/general/user.yml
tasks:
- include: tasks/general/software/packages.yml
- include: facts/general/gather.yml
- include: tasks/general/acct_mgmt/groups.yml
- include: tasks/general/acct_mgmt/users.yml
- include: tasks/general/acct_mgmt/sudo.yml
- include: tasks/general/acct_mgmt/keys.yml
- include: tasks/general/acct_mgmt/mounts.yml
- include: tasks/general/cron/ansible.yml
- include: tasks/general/software/harden.yml
ignore_errors: yes
# Additional setup for systems with GUI.
- name: Main | Workstation UI Setup
hosts: workstation
connection: local
become: true
pre_tasks:
- include: facts/workstation/system.yml
- include: facts/workstation/package.yml
tasks:
- include: tasks/linux/software/flatpaks.yml
when: ansible_system == "Linux" and
flatpak_distro == "true"
- shell: echo "Not implemented yet. :("
when: ansible_system == "Linux" and
flatpak_distro != "true"
- include: tasks/freebsd/software/gui.yml
when: ansible_system == "FreeBSD"
# Create reports to analyze security.
- name: Main | Hardness Tests
hosts: localhost
connection: local
become: true
tasks:
- include: tasks/general/tests/lynis.yml