added option to remove ssh public keys from auth (ssh_auth.absent)

This commit is contained in:
7oku 2014-08-03 01:40:27 +02:00
parent 94d53d5ee7
commit 4a8393dca9
2 changed files with 13 additions and 0 deletions

View File

@ -24,6 +24,8 @@ users:
pubkey: PUBLICKEY
ssh_auth:
- PUBLICKEY
ssh_auth.absent:
- PUBLICKEY_TO_BE_REMOVED
## Absent user
cuser:

View File

@ -123,6 +123,17 @@ ssh_auth_{{ name }}_{{ loop.index0 }}:
{% endfor %}
{% endif %}
{% if 'ssh_auth.absent' in user %}
{% for auth in user['ssh_auth.absent'] %}
ssh_auth_delete_{{ name }}_{{ loop.index0 }}:
ssh_auth.absent:
- user: {{ name }}
- name: {{ auth }}
- require:
- file: {{ name }}_user
- user: {{ name }}_user
{% endfor %}
{% endif %}
{% if 'sudouser' in user and user['sudouser'] %}
{% if not used_sudo %}