4
0
Fork 0

with_items to loop

Signed-off-by: Mark Bolwell <mark.bollyuk@gmail.com>
This commit is contained in:
Mark Bolwell 2023-01-25 11:36:12 +00:00
parent 9fe177f9ce
commit 10a6a2e0dd
No known key found for this signature in database
GPG key ID: 1DE02A772D0908F9
4 changed files with 10 additions and 6 deletions

View file

@ -62,7 +62,9 @@
mode: "0600"
owner: root
group: root
loop: tipc # note the item used in the template
loop:
- tipc
# note the item used in the template
- name: "3.1.3 | PATCH | Ensure TIPC is disabled | blacklist"
ansible.builtin.lineinfile:

View file

@ -21,7 +21,8 @@
ansible.builtin.systemd:
name: "{{ item }}"
masked: true
loop: firewalld
loop:
- firewalld
when:
- item in ansible_facts.packages
- rhel9cis_firewall == 'nftables'
@ -30,7 +31,8 @@
ansible.builtin.systemd:
name: "{{ item }}"
masked: true
loop: nftables
loop:
- nftables
when:
- item in ansible_facts.packages
- rhel9cis_firewall == 'firewalld'

View file

@ -36,7 +36,7 @@
regexp: "{{ item.regexp }}"
line: "{{ item.line }}"
notify: Restart auditd
with_items:
loop:
- { regexp: '^admin_space_left_action', line: 'admin_space_left_action = {{ rhel9cis_auditd.admin_space_left_action }}' }
- { regexp: '^action_mail_acct', line: 'action_mail_acct = {{ rhel9cis_auditd.action_mail_acct }}' }
- { regexp: '^space_left_action', line: 'space_left_action = {{ rhel9cis_auditd.space_left_action }}' }

View file

@ -20,7 +20,7 @@
regexp: "{{ item.regexp }}"
line: "{{ item.line }}"
notify: Restart systemd_journal_upload
with_items:
loop:
- { regexp: 'URL=', line: 'URL={{ rhel9cis_journal_upload_url }}'}
- { regexp: 'ServerKeyFile=', line: 'ServerKeyFile={{ rhel9cis_journal_upload_serverkeyfile }}'}
- { regexp: 'ServerCertificateFile=', line: 'ServerCertificateFile={{ rhel9cis_journal_servercertificatefile }}'}
@ -154,7 +154,7 @@
regexp: "{{ item.regexp }}"
line: "{{ item.line }}"
notify: Restart systemd_journal_upload
with_items:
loop:
- { regexp: '^#SystemMaxUse=|^SystemMaxUse=', line: 'SystemMaxUse={{ rhel9cis_journald_systemmaxuse }}'}
- { regexp: '^#SystemKeepFree=|^SystemKeepFree=', line: 'SystemKeepFree={{ rhel9cis_journald_systemkeepfree }}' }
- { regexp: '^#RuntimeMaxUse=|^RuntimeMaxUse=', line: 'RuntimeMaxUse={{ rhel9cis_journald_runtimemaxuse }}'}