- Reorganized Ansible project structure to follow best practices. - Created dedicated directories: , , , , and . - Categorized playbooks into (host-specific) and (service-specific). - Moved all roles into the directory and standardized their naming conventions. - Relocated to for better variable management. - Renamed to to reflect its global variable scope. - Created to correctly set the to the new directory. - Moved and into the directory. - Added to providing explanations for common commands. - Cleaned up directories from all individual roles to centralize version control.
45 lines
1.0 KiB
YAML
45 lines
1.0 KiB
YAML
---
|
|
- name: Converge
|
|
hosts: all
|
|
become: true
|
|
|
|
pre_tasks:
|
|
- name: Update apt cache.
|
|
package:
|
|
update_cache: true
|
|
cache_valid_time: 600
|
|
when: ansible_os_family == 'Debian'
|
|
|
|
- name: Ensure build dependencies are installed (RedHat).
|
|
package:
|
|
name:
|
|
- openssh-server
|
|
- openssh-clients
|
|
state: present
|
|
when: ansible_os_family == 'RedHat'
|
|
|
|
- name: Ensure build dependencies are installed (Fedora).
|
|
package:
|
|
name: procps
|
|
state: present
|
|
when: ansible_distribution == 'Fedora'
|
|
|
|
- name: Ensure build dependencies are installed (Debian).
|
|
package:
|
|
name:
|
|
- openssh-server
|
|
- openssh-client
|
|
state: present
|
|
when: ansible_os_family == 'Debian'
|
|
|
|
- name: Ensure auth.log file is present.
|
|
copy:
|
|
dest: /var/log/auth.log
|
|
content: ""
|
|
force: false
|
|
mode: 0644
|
|
when: ansible_distribution == 'Debian'
|
|
|
|
roles:
|
|
- role: geerlingguy.security
|