Refactor: Organize Ansible project structure
- Reorganized Ansible project structure to follow best practices. - Created dedicated directories: , , , , and . - Categorized playbooks into (host-specific) and (service-specific). - Moved all roles into the directory and standardized their naming conventions. - Relocated to for better variable management. - Renamed to to reflect its global variable scope. - Created to correctly set the to the new directory. - Moved and into the directory. - Added to providing explanations for common commands. - Cleaned up directories from all individual roles to centralize version control.
This commit is contained in:
29
roles/linux_config_init/.travis.yml
Normal file
29
roles/linux_config_init/.travis.yml
Normal file
@@ -0,0 +1,29 @@
|
||||
---
|
||||
language: python
|
||||
python: "2.7"
|
||||
|
||||
# Use the new container infrastructure
|
||||
sudo: false
|
||||
|
||||
# Install ansible
|
||||
addons:
|
||||
apt:
|
||||
packages:
|
||||
- python-pip
|
||||
|
||||
install:
|
||||
# Install ansible
|
||||
- pip install ansible
|
||||
|
||||
# Check ansible version
|
||||
- ansible --version
|
||||
|
||||
# Create ansible.cfg with correct roles_path
|
||||
- printf '[defaults]\nroles_path=../' >ansible.cfg
|
||||
|
||||
script:
|
||||
# Basic role syntax check
|
||||
- ansible-playbook tests/test.yml -i tests/inventory --syntax-check
|
||||
|
||||
notifications:
|
||||
webhooks: https://galaxy.ansible.com/api/v1/notifications/
|
||||
2
roles/linux_config_init/defaults/main.yml
Normal file
2
roles/linux_config_init/defaults/main.yml
Normal file
@@ -0,0 +1,2 @@
|
||||
---
|
||||
# defaults file for linux_config_tinker
|
||||
5
roles/linux_config_init/handlers/main.yml
Normal file
5
roles/linux_config_init/handlers/main.yml
Normal file
@@ -0,0 +1,5 @@
|
||||
---
|
||||
- name: networking restart
|
||||
service:
|
||||
name: networking
|
||||
state: restarted
|
||||
17
roles/linux_config_init/tasks/bashrc_copy.yml
Normal file
17
roles/linux_config_init/tasks/bashrc_copy.yml
Normal file
@@ -0,0 +1,17 @@
|
||||
---
|
||||
- name: Copy /root/.bashrc
|
||||
template:
|
||||
src: ../templates/bashrc
|
||||
dest: /root/.bashrc
|
||||
owner: root
|
||||
group: root
|
||||
mode: '0644'
|
||||
|
||||
|
||||
- name: Copy /home/{{ user }}/.bashrc
|
||||
template:
|
||||
src: ../templates/bashrc
|
||||
dest: /home/{{ user }}/.bashrc
|
||||
owner: "{{ user }}"
|
||||
group: "{{ user }}"
|
||||
mode: '0644'
|
||||
27
roles/linux_config_init/tasks/create_user.yml
Normal file
27
roles/linux_config_init/tasks/create_user.yml
Normal file
@@ -0,0 +1,27 @@
|
||||
---
|
||||
- name: Adding user
|
||||
ansible.builtin.user:
|
||||
name: "{{ user }}"
|
||||
uid: "{{ uid }}"
|
||||
shell: /bin/bash
|
||||
groups: sudo
|
||||
|
||||
- name: Setting ssh key
|
||||
ansible.builtin.blockinfile:
|
||||
state: present
|
||||
owner: "{{ user }}"
|
||||
group: "{{ user }}"
|
||||
insertafter: EOF
|
||||
path: /home/{{ user }}/.ssh/authorized_keys
|
||||
mode: "0644"
|
||||
create: true
|
||||
block: |
|
||||
{{ ssh_key }}
|
||||
when: ssh_key is defined
|
||||
|
||||
- name: Set permissions to .ssh folder
|
||||
ansible.builtin.file:
|
||||
path: /home/{{ user }}/.ssh
|
||||
owner: "{{ user }}"
|
||||
group: "{{ user }}"
|
||||
mode: "0711"
|
||||
13
roles/linux_config_init/tasks/hostname_set.yml
Normal file
13
roles/linux_config_init/tasks/hostname_set.yml
Normal file
@@ -0,0 +1,13 @@
|
||||
---
|
||||
- name: Copy /etc/hosts
|
||||
template:
|
||||
src: ../templates/etc_hosts
|
||||
dest: /etc/hosts
|
||||
owner: root
|
||||
group: root
|
||||
mode: '0664'
|
||||
|
||||
|
||||
- name: Set a hostname
|
||||
ansible.builtin.hostname:
|
||||
name: "{{ host }}"
|
||||
18
roles/linux_config_init/tasks/main.yml
Normal file
18
roles/linux_config_init/tasks/main.yml
Normal file
@@ -0,0 +1,18 @@
|
||||
---
|
||||
# tasks file for linux_config_init
|
||||
- name: System settings
|
||||
ansible.builtin.include_tasks: "{{ item }}"
|
||||
loop:
|
||||
- sudoer_no_passwd.yml
|
||||
- create_user.yml
|
||||
- bashrc_copy.yml
|
||||
- timezone.yml
|
||||
- resolvconf_copy.yml
|
||||
|
||||
- name: Set Pernament IP
|
||||
ansible.builtin.include_tasks: set_perma_ip.yml
|
||||
when: set_ip
|
||||
|
||||
- name: Set Hostname
|
||||
ansible.builtin.include_tasks: hostname_set.yml
|
||||
when: set_hostname
|
||||
8
roles/linux_config_init/tasks/resolvconf_copy.yml
Normal file
8
roles/linux_config_init/tasks/resolvconf_copy.yml
Normal file
@@ -0,0 +1,8 @@
|
||||
---
|
||||
- name: Copy /templates/resolvconf
|
||||
template:
|
||||
src: ../templates/resolvconf
|
||||
dest: /etc/resolv.conf
|
||||
owner: root
|
||||
group: root
|
||||
mode: '0644'
|
||||
9
roles/linux_config_init/tasks/set_perma_ip.yml
Normal file
9
roles/linux_config_init/tasks/set_perma_ip.yml
Normal file
@@ -0,0 +1,9 @@
|
||||
---
|
||||
- name: Copy /etc/network/interfaces
|
||||
template:
|
||||
src: ../templates/etc_network_interface
|
||||
dest: /etc/network/interfaces
|
||||
owner: root
|
||||
group: root
|
||||
mode: '0644'
|
||||
notify: networking restart
|
||||
8
roles/linux_config_init/tasks/sudoer_no_passwd.yml
Normal file
8
roles/linux_config_init/tasks/sudoer_no_passwd.yml
Normal file
@@ -0,0 +1,8 @@
|
||||
---
|
||||
- name: No password for sudo
|
||||
become: true
|
||||
community.general.sudoers:
|
||||
nopassword: true
|
||||
commands: ALL
|
||||
user: "{{ user }}"
|
||||
name: No password for sudo
|
||||
3
roles/linux_config_init/tasks/timezone.yml
Normal file
3
roles/linux_config_init/tasks/timezone.yml
Normal file
@@ -0,0 +1,3 @@
|
||||
- name: Set timezone to Europe/Prague
|
||||
community.general.timezone:
|
||||
name: Europe/Prague
|
||||
113
roles/linux_config_init/templates/bashrc
Normal file
113
roles/linux_config_init/templates/bashrc
Normal file
@@ -0,0 +1,113 @@
|
||||
# ~/.bashrc: executed by bash(1) for non-login shells.
|
||||
# see /usr/share/doc/bash/examples/startup-files (in the package bash-doc)
|
||||
# for examples
|
||||
|
||||
# If not running interactively, don't do anything
|
||||
case $- in
|
||||
*i*) ;;
|
||||
*) return;;
|
||||
esac
|
||||
|
||||
# don't put duplicate lines or lines starting with space in the history.
|
||||
# See bash(1) for more options
|
||||
HISTCONTROL=ignoreboth
|
||||
|
||||
# append to the history file, don't overwrite it
|
||||
shopt -s histappend
|
||||
|
||||
# for setting history length see HISTSIZE and HISTFILESIZE in bash(1)
|
||||
HISTSIZE=1000
|
||||
HISTFILESIZE=2000
|
||||
|
||||
# check the window size after each command and, if necessary,
|
||||
# update the values of LINES and COLUMNS.
|
||||
shopt -s checkwinsize
|
||||
|
||||
# If set, the pattern "**" used in a pathname expansion context will
|
||||
# match all files and zero or more directories and subdirectories.
|
||||
#shopt -s globstar
|
||||
|
||||
# make less more friendly for non-text input files, see lesspipe(1)
|
||||
#[ -x /usr/bin/lesspipe ] && eval "$(SHELL=/bin/sh lesspipe)"
|
||||
|
||||
# set variable identifying the chroot you work in (used in the prompt below)
|
||||
if [ -z "${debian_chroot:-}" ] && [ -r /etc/debian_chroot ]; then
|
||||
debian_chroot=$(cat /etc/debian_chroot)
|
||||
fi
|
||||
|
||||
# set a fancy prompt (non-color, unless we know we "want" color)
|
||||
case "$TERM" in
|
||||
xterm-color|*-256color) color_prompt=yes;;
|
||||
esac
|
||||
|
||||
# uncomment for a colored prompt, if the terminal has the capability; turned
|
||||
# off by default to not distract the user: the focus in a terminal window
|
||||
# should be on the output of commands, not on the prompt
|
||||
#force_color_prompt=yes
|
||||
|
||||
if [ -n "$force_color_prompt" ]; then
|
||||
if [ -x /usr/bin/tput ] && tput setaf 1 >&/dev/null; then
|
||||
# We have color support; assume it's compliant with Ecma-48
|
||||
# (ISO/IEC-6429). (Lack of such support is extremely rare, and such
|
||||
# a case would tend to support setf rather than setaf.)
|
||||
color_prompt=yes
|
||||
else
|
||||
color_prompt=
|
||||
fi
|
||||
fi
|
||||
|
||||
if [ "$color_prompt" = yes ]; then
|
||||
PS1='${debian_chroot:+($debian_chroot)}\[\033[01;32m\]\u@\h\[\033[00m\]:\[\033[01;34m\]\w\[\033[00m\]\$ '
|
||||
else
|
||||
PS1='${debian_chroot:+($debian_chroot)}\u@\h:\w\$ '
|
||||
fi
|
||||
unset color_prompt force_color_prompt
|
||||
|
||||
# If this is an xterm set the title to user@host:dir
|
||||
case "$TERM" in
|
||||
xterm*|rxvt*)
|
||||
PS1="\[\e]0;${debian_chroot:+($debian_chroot)}\u@\h: \w\a\]$PS1"
|
||||
;;
|
||||
*)
|
||||
;;
|
||||
esac
|
||||
|
||||
# enable color support of ls and also add handy aliases
|
||||
if [ -x /usr/bin/dircolors ]; then
|
||||
test -r ~/.dircolors && eval "$(dircolors -b ~/.dircolors)" || eval "$(dircolors -b)"
|
||||
alias ls='ls --color=auto'
|
||||
#alias dir='dir --color=auto'
|
||||
#alias vdir='vdir --color=auto'
|
||||
|
||||
alias grep='grep --color=auto'
|
||||
alias fgrep='fgrep --color=auto'
|
||||
alias egrep='egrep --color=auto'
|
||||
fi
|
||||
|
||||
# colored GCC warnings and errors
|
||||
#export GCC_COLORS='error=01;31:warning=01;35:note=01;36:caret=01;32:locus=01:quote=01'
|
||||
|
||||
# some more ls aliases
|
||||
alias ll='ls -lah'
|
||||
alias la='ls -A'
|
||||
alias l='ls -CF'
|
||||
|
||||
# Alias definitions.
|
||||
# You may want to put all your additions into a separate file like
|
||||
# ~/.bash_aliases, instead of adding them here directly.
|
||||
# See /usr/share/doc/bash-doc/examples in the bash-doc package.
|
||||
|
||||
if [ -f ~/.bash_aliases ]; then
|
||||
. ~/.bash_aliases
|
||||
fi
|
||||
|
||||
# enable programmable completion features (you don't need to enable
|
||||
# this, if it's already enabled in /etc/bash.bashrc and /etc/profile
|
||||
# sources /etc/bash.bashrc).
|
||||
if ! shopt -oq posix; then
|
||||
if [ -f /usr/share/bash-completion/bash_completion ]; then
|
||||
. /usr/share/bash-completion/bash_completion
|
||||
elif [ -f /etc/bash_completion ]; then
|
||||
. /etc/bash_completion
|
||||
fi
|
||||
fi
|
||||
10
roles/linux_config_init/templates/etc_hosts
Normal file
10
roles/linux_config_init/templates/etc_hosts
Normal file
@@ -0,0 +1,10 @@
|
||||
127.0.0.1 localhost.localdomain localhost
|
||||
{{ ip }} {{ host }}
|
||||
# The following lines are desirable for IPv6 capable hosts
|
||||
|
||||
::1 ip6-localhost ip6-loopback
|
||||
fe00::0 ip6-localnet
|
||||
ff00::0 ip6-mcastprefix
|
||||
ff02::1 ip6-allnodes
|
||||
ff02::2 ip6-allrouters
|
||||
ff02::3 ip6-allhosts
|
||||
16
roles/linux_config_init/templates/etc_network_interface
Normal file
16
roles/linux_config_init/templates/etc_network_interface
Normal file
@@ -0,0 +1,16 @@
|
||||
auto lo
|
||||
iface lo inet loopback
|
||||
|
||||
auto {{ in_face }}
|
||||
iface {{ in_face }} inet static
|
||||
address {{ ip }}/24
|
||||
|
||||
{% if ip_admin is defined %}
|
||||
iface {{ in_face }} inet static
|
||||
address {{ ip_admin }}/24
|
||||
{% endif %}
|
||||
|
||||
{% if gateway is defined %}
|
||||
gateway {{ gateway }}
|
||||
{% endif %}
|
||||
source /etc/network/interfaces.d/*
|
||||
2
roles/linux_config_init/templates/resolvconf
Normal file
2
roles/linux_config_init/templates/resolvconf
Normal file
@@ -0,0 +1,2 @@
|
||||
nameserver 192.168.100.6
|
||||
nameserver 8.8.8.8
|
||||
2
roles/linux_config_init/vars/main.yml
Normal file
2
roles/linux_config_init/vars/main.yml
Normal file
@@ -0,0 +1,2 @@
|
||||
---
|
||||
# vars file for linux_config_tinker
|
||||
Reference in New Issue
Block a user