This shows you the differences between two versions of the page.
| Both sides previous revision Previous revision Next revision | Previous revision | ||
|
сервис_ansible [2026/02/09 12:07] val [Ansible и SOPS] |
сервис_ansible [2026/03/02 13:18] (current) val [Ansible и Hashicorp Vault] |
||
|---|---|---|---|
| Line 756: | Line 756: | ||
| ~/openvpn1# ###ansible-vault decrypt openvpn1/files/server.key | ~/openvpn1# ###ansible-vault decrypt openvpn1/files/server.key | ||
| - | ~/openvpn1# ansible-vault encrypt_string strongpassword | + | |
| + | ~/openvpn1# less inventory.yaml | ||
| + | |||
| + | ~/openvpn1# ansible-vault encrypt_string strongpassword #или 123 | ||
| </code><code> | </code><code> | ||
| New vault password (default): 12345678 | New vault password (default): 12345678 | ||
| Line 806: | Line 809: | ||
| ansible_ssh_user: "{{ openvpn1_arr.username }}" | ansible_ssh_user: "{{ openvpn1_arr.username }}" | ||
| ansible_ssh_pass: "{{ openvpn1_arr.password }}" | ansible_ssh_pass: "{{ openvpn1_arr.password }}" | ||
| - | ansible_sudo_pass: "{{ openvpn1_arr.password }}" | + | #ansible_sudo_pass: "{{ openvpn1_arr.password }}" |
| ... | ... | ||
| </code><code> | </code><code> | ||
| Line 830: | Line 833: | ||
| ... | ... | ||
| - | ~/openvpn1# sops exec-file --no-fifo inventory.yaml 'ansible-playbook openvpn1.yaml -i {}' | + | ~/openvpn1# sops exec-file --no-fifo inventory.yaml 'ansible-playbook openvpn1.yaml -i {} -e "variable_host=test_nodes"' |
| </code> | </code> | ||
| ==== Фрагмент роли с условиями и отладкой ==== | ==== Фрагмент роли с условиями и отладкой ==== | ||