X-Git-Url: https://git.realraum.at/?a=blobdiff_plain;f=ansible%2Ftuer.yml;h=853a0cff8eb1cb637783179a1f35b94bd495226f;hb=f8daca62b6517dd17d40a3a0342cbd5c8ec7b6f8;hp=f5694b262e2d2b9454631d54ae5e04ec905ce1a8;hpb=519d72bff92a92df1dff20556b22277dbad2c72e;p=noc.git diff --git a/ansible/tuer.yml b/ansible/tuer.yml index f5694b2..853a0cf 100644 --- a/ansible/tuer.yml +++ b/ansible/tuer.yml @@ -66,6 +66,7 @@ - git - kmod-usb-acm - openssh-server + - openssh-sftp-server - screen - sudo - usbutils @@ -91,7 +92,7 @@ file: "{{ playbook_dir }}/files/tuer/update-keys-from-stdin.sh" /etc/ssh/sshd_config: - content: |- + content: | Port 22000 AllowUsers root tuerctl tuergit @@ -103,11 +104,13 @@ X11Forwarding no UsePrivilegeSeparation sandbox + Subsystem sftp /usr/libexec/sftp-server + Match User tuerctl AuthorizedKeysFile /dev/null AuthorizedKeysCommand /usr/local/bin/authorized_keys.sh AuthorizedKeysCommandUser tuergit - + /etc/ssh/authorized_keys.d/root: content: |-