- risky-file-permissions (32): add explicit mode: to copy/template/file tasks, matching the umask-derived permissions they already had (0644 for configs and systemd units, 0755 for created directories) — no functional change. - var-naming (28): prefix role-scoped vars with their role name across pi_dhtsensor, pi_dhtsensor_circuitpython, pi_shairport, pi_squeezelite, pi_squeezelite_custom, pi_sispmctl, pi_standard_setup, and pi_sysdweb's sysdweb_name (shared by 9 consuming roles). Updated every dependent template, task reference, and matching inventory.yml override, and verified resolved values with ansible-inventory before/after. - Fixes a latent bug found while renaming: pi_standard_setup's "Get/Change WiFi country" tasks reused the name wifi_country for both the role default and a register, so the register silently clobbered the default before do_wifi_country ever read it. Split into distinct names so the intended default value is used. - package-latest (2): pin docker-ce/docker-compose-plugin installs in server_debian_docker to state: present. - no-handler (1): move pi_lirc's "Reboot if boot overlay changed" into a proper handler notified by the boot-overlay task. ansible-lint now passes clean at the production profile. Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
48 lines
1.3 KiB
YAML
48 lines
1.3 KiB
YAML
---
|
|
- name: Apt install python3-pip
|
|
ansible.builtin.apt:
|
|
name: python3-pip
|
|
cache_valid_time: 7200
|
|
state: present
|
|
- name: Install sysdweb
|
|
ansible.builtin.pip:
|
|
name: sysdweb
|
|
executable: pip3
|
|
extra_args: "--break-system-packages"
|
|
- name: Sysdweb user
|
|
ansible.builtin.user:
|
|
name: sysdweb
|
|
shell: /usr/bin/nologin
|
|
password: "$6$TcTD23xOXln$RxN3Kd0vJRaxffoyKqjoBJM0Q5Va6REBVZ6BOgmGXs3fTAWc7voSW5QcN35t9pfro2do0LeSaeGsrMLbArZ.2."
|
|
update_password: always
|
|
- name: Configure sysdweb user
|
|
ansible.builtin.blockinfile:
|
|
path: /etc/sysdweb.conf
|
|
create: true
|
|
mode: "0644"
|
|
marker: "# {mark} ansible user"
|
|
block: |
|
|
[DEFAULT]
|
|
users = sysdweb
|
|
- name: Configure sysdweb
|
|
ansible.builtin.blockinfile:
|
|
path: /etc/sysdweb.conf
|
|
create: true
|
|
mode: "0644"
|
|
marker: "# {mark} ansible managed for {{ pi_sysdweb_name }}"
|
|
block: |
|
|
[{{ pi_sysdweb_name }}]
|
|
title = {{ pi_sysdweb_name }}
|
|
unit = {{ pi_sysdweb_name }}.service
|
|
- name: Install systemd service file
|
|
ansible.builtin.copy:
|
|
src: sysdweb-system.service
|
|
dest: /etc/systemd/system/
|
|
mode: "0644"
|
|
- name: Enable sysdweb autostart
|
|
ansible.builtin.systemd:
|
|
name: sysdweb-system
|
|
state: restarted
|
|
enabled: "yes"
|
|
daemon_reload: "yes"
|