- Auto-fix FQCN, YAML formatting, jinja spacing, and free-form module syntax via ansible-lint --fix - Fix comments misplaced inside module args by the auto-fixer (bluetooth-monitor, pi_standard_setup, pi_musicmouse) - Fix notify: references left stale (lowercase) after handler names were re-cased, which would have silently broken reboot/restart handlers (pi_disable_onboard_bluetooth, pi_hifiberry_amp, pi_squeezelite, pi_standard_setup) - Fix a task in pis/debmatic-install.yml missing its module name (apt_repository), which caused a real syntax-check failure - Add missing play names, fix comment spacing, literal-compare idiom, and no-changed-when annotations - Delete unused/broken roles/better-shell-env (unreferenced, invalid YAML) - Rename all hyphenated role directories to underscore form to satisfy ansible-lint's role-name rule, updating every playbook/meta reference Remaining lint findings (var-naming, package-latest, risky-file-permissions, no-handler) intentionally left for follow-up per user decision.
11 lines
510 B
Markdown
11 lines
510 B
Markdown
# pi_standard_setup
|
|
|
|
Baseline provisioning applied to every Pi: apt update/upgrade, detects the
|
|
Pi model, adds a root SSH key, disables the SSH locale-forwarding warning,
|
|
optionally configures wifi and the hostname, and rotates the default
|
|
`pi`/`raspberry` credentials via the `keepass` lookup plugin.
|
|
|
|
**Key vars:** `wifi_ssid`, `new_hostname`, `timezone`, `wifi_country`,
|
|
`ansible_ssh_pass` (the OS-default password, used only to reach a
|
|
freshly-flashed Pi for the first time before its password is rotated)
|