mirror of
https://github.com/de-it-krachten/ansible-role-sudo
synced 2026-05-14 03:51:43 +00:00
No description
- Jinja 100%
# [1.4.0](https://github.com/de-it-krachten/ansible-role-sudo/compare/v1.3.0...v1.4.0) (2026-03-15) ### Features * Added support for Fedora 43 ([ |
||
|---|---|---|
| .github/workflows | ||
| defaults | ||
| meta | ||
| molecule/default | ||
| tasks | ||
| .ansible-lint | ||
| .cicd | ||
| .cicd.overwrite | ||
| .collections | ||
| .gitignore | ||
| .releaserc.yml | ||
| .roles | ||
| .yamllint | ||
| CHANGELOG.md | ||
| README.md | ||
ansible-role-sudo
Installs/configures sudo with optional hardening
Dependencies
Roles
None
Collections
None
Platforms
Supported platforms
- Red Hat Enterprise Linux 81
- Red Hat Enterprise Linux 91
- Red Hat Enterprise Linux 101
- RockyLinux 8
- RockyLinux 9
- RockyLinux 10
- OracleLinux 8
- OracleLinux 9
- OracleLinux 10
- AlmaLinux 8
- AlmaLinux 9
- AlmaLinux 10
- Debian 11 (Bullseye)
- Debian 12 (Bookworm)
- Debian 13 (Trixie)
- Ubuntu 20.04 LTS
- Ubuntu 22.04 LTS
- Ubuntu 24.04 LTS
- Fedora 42
- Fedora 43
Note: 1 : no automated testing is performed on these platforms
Role Variables
defaults/main.yml
# List of audi packages
sudo_packages:
- sudo
# Sudo log file
sudo_logfile: /var/log/sudo.log
# Timeout before re-authentication
sudo_timestamp_timeout: 5
# Perform sudo hardening rules (CIS1/2)
sudo_hardening: false
Example Playbook
molecule/default/converge.yml
- name: sample playbook for role 'sudo'
hosts: all
become: 'yes'
vars:
molecule_driver: '{{ lookup(''env'', ''MOLECULE_DRIVER_NAME'') }}'
sudo_hardening: true
tasks:
- name: Include role 'sudo'
ansible.builtin.include_role:
name: sudo