Update create_user_ssh/main.yml
This commit is contained in:
parent
974f5b71b7
commit
1d62c23490
|
@ -1,40 +1,19 @@
|
|||
---
|
||||
- name: Add user | Debian based OS
|
||||
user:
|
||||
- name: Create New User
|
||||
hosts: all
|
||||
become: true
|
||||
gather_facts: false
|
||||
vars:
|
||||
# Define your username and password here that you want to create on target hosts.
|
||||
username: hola
|
||||
userpass: password
|
||||
supergroup: sudoers
|
||||
tasks:
|
||||
- name: Create User
|
||||
ansible.builtin.user:
|
||||
name: "{{ username }}"
|
||||
groups: sudo,shadow
|
||||
shell: /bin/bash
|
||||
append: yes
|
||||
generate_ssh_key: yes
|
||||
ssh_key_bits: 4096
|
||||
ssh_key_file: .ssh/id_rsa
|
||||
when: ansible_os_family == "Debian"
|
||||
|
||||
- name: Add user | Redhat based OS
|
||||
user:
|
||||
name: "{{ username }}"
|
||||
groups: wheel
|
||||
shell: /bin/bash
|
||||
append: yes
|
||||
generate_ssh_key: yes
|
||||
ssh_key_bits: 4096
|
||||
ssh_key_file: .ssh/id_rsa
|
||||
when: ansible_os_family == "RedHat"
|
||||
|
||||
- name: Sudo | add to sudoers file and validate
|
||||
lineinfile:
|
||||
dest: /etc/sudoers
|
||||
state: present
|
||||
regexp: '^{{ username }} '
|
||||
# line: '{{username}} ALL=(ALL) NOPASSWD:ALL'
|
||||
line: "{{ username }} ALL=(ALL) {{ 'NOPASSWD:' if ( default_sudo_nopass|d(true)|bool ) else '' }}ALL"
|
||||
validate: 'visudo -cf %s'
|
||||
environment:
|
||||
PATH: /usr/sbin:/usr/local/sbin:/sbin
|
||||
#environment fixes Redhat issue of hard-coded path to visudo
|
||||
|
||||
- name: SSH Keys | Add authorized key for ssh key authentication
|
||||
authorized_key:
|
||||
user: "{{ username }}"
|
||||
state: present
|
||||
key: "{{ lookup('file', lookup('env','HOME') + '/.ssh/id_rsa.pub') }}"
|
||||
shell: /bin/bash
|
||||
password: "{{ userpass | password_hash('sha512') }}"
|
||||
update_password: on_create
|
||||
groups: "{{ super_group }}"
|
||||
append: yes
|
||||
|
|
Loading…
Reference in New Issue