97b4d79ed5
* feat: make kubernetes owner parametrized * docs: update hardening guide with configuration for CIS 1.1.19 * fix: set etcd data directory permissions to be compliant to CIS 1.1.12
15 lines
360 B
YAML
15 lines
360 B
YAML
---
|
|
- name: CNI | make sure /opt/cni/bin exists
|
|
file:
|
|
path: /opt/cni/bin
|
|
state: directory
|
|
mode: 0755
|
|
owner: "{{ kube_owner }}"
|
|
recurse: true
|
|
|
|
- name: CNI | Copy cni plugins
|
|
unarchive:
|
|
src: "{{ local_release_dir }}/cni-plugins-linux-{{ image_arch }}-{{ cni_version }}.tgz"
|
|
dest: "/opt/cni/bin"
|
|
mode: 0755
|
|
remote_src: yes
|