diff --git a/inventory-sample.yml b/inventory-sample.yml index 81b7386..91967e2 100644 --- a/inventory-sample.yml +++ b/inventory-sample.yml @@ -2,5 +2,9 @@ all: vars: domain: "{{ ansible_domain }}" + security_defaultuser_login_disable: false + kde_desktop_pkg: + - akonadi-backend-sqlite + hosts: localhost: diff --git a/roles/lmn_security/defaults/main.yml b/roles/lmn_security/defaults/main.yml new file mode 100644 index 0000000..fef2163 --- /dev/null +++ b/roles/lmn_security/defaults/main.yml @@ -0,0 +1,2 @@ +--- +security_defaultuser_login_disable: true diff --git a/roles/lmn_security/tasks/main.yml b/roles/lmn_security/tasks/main.yml index 7dca7cc..e6ef7a3 100644 --- a/roles/lmn_security/tasks/main.yml +++ b/roles/lmn_security/tasks/main.yml @@ -18,6 +18,7 @@ ansible.builtin.user: name: ansible password_lock: true + when: security_defaultuser_login_disable - name: Limit SSH access to user ansible ansible.builtin.blockinfile: