Separate exam-mode stuff in own role

This commit is contained in:
Raphael Dannecker 2025-03-18 14:37:13 +01:00
parent 43157dd810
commit 3d01394820
13 changed files with 493 additions and 472 deletions

View file

@ -0,0 +1,2 @@
---
vm_support: false

View file

@ -17,7 +17,6 @@
- mktorrent
- libvirt-daemon-system
- virt-manager
- firewalld
- dialog # for vm-netboot menu
state: latest
autoremove: true
@ -29,19 +28,6 @@
# insertafter: '#auth_unix_rw = "polkit"'
# notify: reload libvirtd
- name: disable firewalld-service
systemd:
name: firewalld
enabled: false
state: stopped
- name: Add virbr0 to libvirt zone
ansible.posix.firewalld:
zone: libvirt
interface: virbr0
permanent: true
state: enabled
- name: Configure pam_mount for VM bind mounts
blockinfile:
dest: /etc/security/pam_mount.conf.xml
@ -186,13 +172,6 @@
scope: global
enabled: true
- name: Permit access to usersquid from libvirt
ansible.posix.firewalld:
zone: libvirt
port: 3128/tcp
permanent: true
state: enabled
- name: Deploy sudo configurations
copy:
src: "{{ item }}"