1
1
Fork 0
mirror of https://gitlab.archlinux.org/archlinux/infrastructure.git synced 2024-05-08 12:06:03 +02:00

Add ansible.builtin qualification to become_method

ansible-lint 6.19.0 started complaining about this:

   schema[tasks]: 'become_method' must be one of the currently available
   values: ansible.builtin.runas, ansible.builtin.su,
           ansible.builtin.sudo, ansible.netcommon.enable,
           community.general.doas, community.general.dzdo,
           community.general.ksu, community.general.machinectl,
           community.general.pbrun, community.general.pfexec,
           community.general.pmrun, community.general.sesu,
           community.general.sudosu, containers.podman.podman_unshare
This commit is contained in:
Evangelos Foutras 2023-09-22 23:38:23 +03:00
parent 76a5560c24
commit d480317909
No known key found for this signature in database
GPG Key ID: 51E8B148A9999C34
7 changed files with 27 additions and 27 deletions

View File

@ -11,13 +11,13 @@
postgresql_db: db=hedgedoc
become: true
become_user: postgres
become_method: su
become_method: ansible.builtin.su
- name: Add hedgedoc postgres user
postgresql_user: db=hedgedoc name=hedgedoc password={{ vault_postgres_users.hedgedoc }} encrypted=true
become: true
become_user: postgres
become_method: su
become_method: ansible.builtin.su
- name: Make nginx log dir
file: path=/var/log/nginx/{{ hedgedoc_domain }} state=directory owner=root group=root mode=0755

View File

@ -5,14 +5,14 @@
postgresql_user: name="{{ vault_keycloak_db_user }}" password="{{ vault_keycloak_db_password }}"
become: true
become_user: postgres
become_method: su
become_method: ansible.builtin.su
no_log: true
- name: Create keycloak db
postgresql_db: name="{{ keycloak_db_name }}" owner="{{ vault_keycloak_db_user }}"
become: true
become_user: postgres
become_method: su
become_method: ansible.builtin.su
- name: Template keycloak config
template: src=keycloak.conf.j2 dest=/etc/keycloak/keycloak.conf owner=root group=keycloak mode=640

View File

@ -57,7 +57,7 @@
- {username: "{{ vault_mailman_web_db_user }}", password: "{{ vault_mailman_web_db_password }}"}
become: true
become_user: postgres
become_method: su
become_method: ansible.builtin.su
no_log: true
- name: Create {mailman,mailman-web} db
@ -67,7 +67,7 @@
- {db: mailman-web, owner: "{{ vault_mailman_web_db_user }}"}
become: true
become_user: postgres
become_method: su
become_method: ansible.builtin.su
- name: Run Django management tasks # noqa no-changed-when
command: django-admin {{ item }} --pythonpath /etc/webapps/mailman-web --settings settings

View File

@ -55,7 +55,7 @@
creates: '{{ item }}/bin/python'
become: true
become_user: synapse
become_method: sudo
become_method: ansible.builtin.sudo
with_items:
- /var/lib/synapse/venv
- /var/lib/synapse/venv-pantalaimon
@ -70,7 +70,7 @@
virtualenv: '{{ item }}'
become: true
become_user: synapse
become_method: sudo
become_method: ansible.builtin.sudo
with_items:
- /var/lib/synapse/venv
- /var/lib/synapse/venv-pantalaimon
@ -84,7 +84,7 @@
virtualenv: /var/lib/synapse/venv
become: true
become_user: synapse
become_method: sudo
become_method: ansible.builtin.sudo
register: synapse_pip
notify:
- Restart synapse
@ -98,7 +98,7 @@
virtualenv: /var/lib/synapse/venv-pantalaimon
become: true
become_user: synapse
become_method: sudo
become_method: ansible.builtin.sudo
notify:
- Restart pantalaimon
@ -110,7 +110,7 @@
force: true
become: true
become_user: synapse
become_method: sudo
become_method: ansible.builtin.sudo
register: mjolnir_git
notify:
- Restart mjolnir
@ -120,7 +120,7 @@
path: /var/lib/synapse/mjolnir
become: true
become_user: synapse
become_method: sudo
become_method: ansible.builtin.sudo
when: mjolnir_git.changed
- name: Build mjolnir # noqa no-changed-when
@ -129,7 +129,7 @@
chdir: /var/lib/synapse/mjolnir
become: true
become_user: synapse
become_method: sudo
become_method: ansible.builtin.sudo
when: mjolnir_git.changed
- name: Install mjolnir antispam module
@ -140,7 +140,7 @@
virtualenv: /var/lib/synapse/venv
become: true
become_user: synapse
become_method: sudo
become_method: ansible.builtin.sudo
when: synapse_pip.changed or mjolnir_git.changed
notify:
- Restart synapse
@ -153,7 +153,7 @@
force: true
become: true
become_user: synapse
become_method: sudo
become_method: ansible.builtin.sudo
register: irc_git
notify:
- Restart matrix-appservice-irc
@ -163,7 +163,7 @@
path: /var/lib/synapse/matrix-appservice-irc
become: true
become_user: synapse
become_method: sudo
become_method: ansible.builtin.sudo
when: irc_git.changed
- name: Build matrix-appservice-irc # noqa no-changed-when
@ -172,7 +172,7 @@
chdir: /var/lib/synapse/matrix-appservice-irc
become: true
become_user: synapse
become_method: sudo
become_method: ansible.builtin.sudo
when: irc_git.changed
- name: Install pg_hba.conf
@ -184,19 +184,19 @@
postgresql_db: db=synapse lc_collate=C lc_ctype=C template=template0
become: true
become_user: postgres
become_method: su
become_method: ansible.builtin.su
- name: Add synapse postgres user
postgresql_user: db=synapse user=synapse password={{ vault_postgres_users.synapse }}
become: true
become_user: postgres
become_method: su
become_method: ansible.builtin.su
- name: Add irc postgres db
postgresql_db: db=irc
become: true
become_user: postgres
become_method: su
become_method: ansible.builtin.su
- name: Create synapse config dir
file: path={{ item }} state=directory owner=root group=synapse mode=0750

View File

@ -20,7 +20,7 @@
- name: Initialize postgres
become: true
become_user: postgres
become_method: su
become_method: ansible.builtin.su
command: initdb --locale C.UTF-8 -E UTF8 -D '/var/lib/postgres/data'
args:
chdir: /var/lib/postgres
@ -58,7 +58,7 @@
postgresql_user: name=postgres password={{ vault_postgres_users.postgres }} encrypted=yes
become: true
become_user: postgres
become_method: su
become_method: ansible.builtin.su
- name: Install postgres cert renewal hook
template: src=letsencrypt.hook.d.j2 dest=/etc/letsencrypt/hook.d/postgres owner=root group=root mode=0755

View File

@ -5,18 +5,18 @@
postgresql_db: db=quassel
become: true
become_user: postgres
become_method: su
become_method: ansible.builtin.su
- name: Add quassel postgres user
postgresql_user: db=quassel name=quassel password={{ vault_postgres_users.quassel }} encrypted=true
become: true
become_user: postgres
become_method: su
become_method: ansible.builtin.su
- name: Initialize quassel
become: true
become_user: quassel
become_method: sudo
become_method: ansible.builtin.sudo
expect:
command: quasselcore --configdir=/var/lib/quassel --select-backend=PostgreSQL
responses:

View File

@ -2,7 +2,7 @@
postgresql_db: db="{{ terraform_db }}"
become: true
become_user: postgres
become_method: su
become_method: ansible.builtin.su
- name: Create terraform state db user
postgresql_user:
@ -13,4 +13,4 @@
priv: "ALL"
become: true
become_user: postgres
become_method: su
become_method: ansible.builtin.su