7516fe142f
* Ansible: move to Ansible 3.4.0 which uses ansible-base 2.10.10 * Docs: add a note about ansible upgrade post 2.9.x * CI: ensure ansible is removed before ansible 3.x is installed to avoid pip failures * Ansible: use newer ansible-lint * Fix ansible-lint 5.0.11 found issues * syntax issues * risky-file-permissions * var-naming * role-name * molecule tests * Mitogen: use 0.3.0rc1 which adds support for ansible 2.10+ * Pin ansible-base to 2.10.11 to get package fix on RHEL8
22 lines
894 B
YAML
22 lines
894 B
YAML
---
|
|
- name: set bastion host IP and port
|
|
set_fact:
|
|
bastion_ip: "{{ hostvars[groups['bastion'][0]]['ansible_host'] | d(hostvars[groups['bastion'][0]]['ansible_ssh_host']) }}"
|
|
bastion_port: "{{ hostvars[groups['bastion'][0]]['ansible_port'] | d(hostvars[groups['bastion'][0]]['ansible_ssh_port']) | d(22) }}"
|
|
delegate_to: localhost
|
|
connection: local
|
|
|
|
# As we are actually running on localhost, the ansible_ssh_user is your local user when you try to use it directly
|
|
# To figure out the real ssh user, we delegate this task to the bastion and store the ansible_user in real_user
|
|
- name: Store the current ansible_user in the real_user fact
|
|
set_fact:
|
|
real_user: "{{ ansible_user }}"
|
|
|
|
- name: create ssh bastion conf
|
|
become: false
|
|
delegate_to: localhost
|
|
connection: local
|
|
template:
|
|
src: ssh-bastion.conf
|
|
dest: "{{ playbook_dir }}/ssh-bastion.conf"
|
|
mode: 0640
|