X-Git-Url: https://git.realraum.at/?a=blobdiff_plain;f=ansible%2Fhost_vars%2Ftorwaechter%2Fmain.yml;h=d6929b3060ce7c7fe5e73928fedb7522e0f75f61;hb=75a77cd6f7833ee10d9649822b3557ca6513ccf9;hp=926b903aab769a4bdc0d64a762ea98e721696744;hpb=23867d487ab86bf9feb0817c365698c051abc213;p=noc.git diff --git a/ansible/host_vars/torwaechter/main.yml b/ansible/host_vars/torwaechter/main.yml index 926b903..d6929b3 100644 --- a/ansible/host_vars/torwaechter/main.yml +++ b/ansible/host_vars/torwaechter/main.yml @@ -1,4 +1,6 @@ --- +ssh_users_tuergit: "{{ user_groups.noc | union(['fgenesis','ruru']) }}" + openwrt_arch: x86 openwrt_target: geode openwrt_output_image_suffixes: @@ -7,6 +9,7 @@ openwrt_output_image_suffixes: openwrt_packages_extra: - "-dropbear" + - hwclock - flashrom - git - kmod-usb-acm @@ -30,11 +33,15 @@ openwrt_mixin: /usr/local/bin/authorized_keys.sh: mode: '0755' - file: "{{ global_artifacts_dir }}/{{ inventory_hostname }}/authorized_keys.sh" + file: "{{ global_files_dir }}/{{ inventory_hostname }}/authorized_keys.sh" /usr/local/bin/update-keys-from-stdin.sh: mode: '0755' - file: "{{ global_artifacts_dir }}/{{ inventory_hostname }}/update-keys-from-stdin.sh" + file: "{{ global_files_dir }}/{{ inventory_hostname }}/update-keys-from-stdin.sh" + + /etc/sudoers.d/tuergitflash: + mode: '0440' + file: "{{ global_files_dir }}/{{ inventory_hostname }}/tuergitflash" /etc/ssh/sshd_config: content: | @@ -57,16 +64,10 @@ openwrt_mixin: AuthorizedKeysCommandUser tuergit /etc/ssh/authorized_keys.d/root: - content: |- - {% for key in noc_ssh_keys %} - {{ key }} - {% endfor %} + content: "{{ ssh_users_root | user_ssh_keys(users) | join('\n') }}\n" /etc/ssh/authorized_keys.d/tuergit: - content: |- - {% for key in noc_ssh_keys %} - {{ key }} - {% endfor %} + content: "{{ ssh_users_tuergit | user_ssh_keys(users) | join('\n') }}\n" openwrt_uci: system: