1
1
mirror of https://gitlab.archlinux.org/archlinux/infrastructure.git synced 2025-01-18 08:06:16 +01:00
infrastructure/playbooks/tasks/reencrypt-vault-key.yml
2020-07-08 18:37:52 +02:00

11 lines
502 B
YAML

---
- name: reencrypt vault key
hosts: 127.0.0.1
tasks:
- name: check if moreutils is installed
pacman: name=moreutils state=present
- name: reencrypt vault key
shell: set -o pipefail && gpg --decrypt --batch --quiet "{{ playbook_dir }}/../../misc/vault-password.gpg" | gpg --batch --armor --encrypt --output - {% for userid in root_gpgkeys %}--recipient {{ userid }} {% endfor %} | sponge "{{ playbook_dir }}/../../misc/vault-password.gpg"
changed_when: false