97b4d79ed5
* feat: make kubernetes owner parametrized * docs: update hardening guide with configuration for CIS 1.1.19 * fix: set etcd data directory permissions to be compliant to CIS 1.1.12
16 lines
516 B
YAML
16 lines
516 B
YAML
---
|
|
- name: User | Create User Group
|
|
group:
|
|
name: "{{ user.group|default(user.name) }}"
|
|
system: "{{ user.system|default(omit) }}"
|
|
|
|
- name: User | Create User
|
|
user:
|
|
comment: "{{ user.comment|default(omit) }}"
|
|
createhome: "{{ user.createhome|default(omit) }}"
|
|
group: "{{ user.group|default(user.name) }}"
|
|
home: "{{ user.home|default(omit) }}"
|
|
shell: "{{ user.shell|default(omit) }}"
|
|
name: "{{ user.name }}"
|
|
system: "{{ user.system|default(omit) }}"
|
|
when: kube_owner != "root"
|