From d7354c291e2a6a9de1c771363475d3434bc47b09 Mon Sep 17 00:00:00 2001 From: iRaven Date: Mon, 28 Oct 2024 13:13:47 -0500 Subject: [PATCH] Update linux/compliance.yaml --- linux/compliance.yaml | 18 ++++++++++++------ 1 file changed, 12 insertions(+), 6 deletions(-) diff --git a/linux/compliance.yaml b/linux/compliance.yaml index 5694c5b..dc0876e 100644 --- a/linux/compliance.yaml +++ b/linux/compliance.yaml @@ -23,9 +23,12 @@ path: /home/ansible/.ssh state: directory - name: Add deployment user's SSH key. - shell: - cmd: echo "{{ ansiblesvc_key }}" > /home/ansible/.ssh/authorized_keys - creates: /home/ansible/.ssh/authorized_keys + copy: + content: "{{ ansiblesvc_key }}" + dest: /home/ansible/.ssh/authorized_keys + # shell: + # cmd: echo "{{ ansiblesvc_key }}" > /home/ansible/.ssh/authorized_keys + # creates: /home/ansible/.ssh/authorized_keys # Give ansible sudo rights with no password required. - name: Install sudo if not already installed. @@ -68,9 +71,12 @@ path: /home/nhadmin/.ssh state: directory - name: Add nhadmin user's SSH key. - shell: - cmd: echo "{{ nhadmin_key }}" > /home/nhadmin/.ssh/authorized_keys - creates: /home/nhadmin/.ssh/authorized_keys + copy: + content: "{{ nhadmin_key }}" + dest: /home/nhadmin/.ssh/authorized_keys + # shell: + # cmd: echo "{{ nhadmin_key }}" > /home/nhadmin/.ssh/authorized_keys + # creates: /home/nhadmin/.ssh/authorized_keys # SSH config updating - name: Update SSH configuration to disallow root login and disable password authentication.