ci / audit (push) Successful in 46s
Idempotent role: install fleet User CA public key + TrustedUserCAKeys drop-in, validate sshd -t, reload. Sectestbed wave first, prod under CR. https://projects.knownelement.com/issues/385
9 lines
256 B
YAML
9 lines
256 B
YAML
---
|
|
# ssh_ca_onboard.yml — fleet SSH certificate CA rollout [#385]
|
|
# Targets: sectestbed wave first (compliance lab #379), then prod under CR.
|
|
- name: Onboard hosts to the fleet SSH certificate CA
|
|
hosts: all
|
|
gather_facts: false
|
|
roles:
|
|
- ssh_ca
|