added option to remove ssh public keys from auth (ssh_auth.absent)
This commit is contained in:
parent
94d53d5ee7
commit
4a8393dca9
@ -24,6 +24,8 @@ users:
|
||||
pubkey: PUBLICKEY
|
||||
ssh_auth:
|
||||
- PUBLICKEY
|
||||
ssh_auth.absent:
|
||||
- PUBLICKEY_TO_BE_REMOVED
|
||||
|
||||
## Absent user
|
||||
cuser:
|
||||
|
@ -123,6 +123,17 @@ ssh_auth_{{ name }}_{{ loop.index0 }}:
|
||||
{% endfor %}
|
||||
{% endif %}
|
||||
|
||||
{% if 'ssh_auth.absent' in user %}
|
||||
{% for auth in user['ssh_auth.absent'] %}
|
||||
ssh_auth_delete_{{ name }}_{{ loop.index0 }}:
|
||||
ssh_auth.absent:
|
||||
- user: {{ name }}
|
||||
- name: {{ auth }}
|
||||
- require:
|
||||
- file: {{ name }}_user
|
||||
- user: {{ name }}_user
|
||||
{% endfor %}
|
||||
{% endif %}
|
||||
|
||||
{% if 'sudouser' in user and user['sudouser'] %}
|
||||
{% if not used_sudo %}
|
||||
|
Loading…
Reference in New Issue
Block a user