fetch_idrac_credentials.yml 1.5 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647
  1. # Copyright 2021 Dell Inc. or its subsidiaries. All Rights Reserved.
  2. #
  3. # Licensed under the Apache License, Version 2.0 (the "License");
  4. # you may not use this file except in compliance with the License.
  5. # You may obtain a copy of the License at
  6. #
  7. # http://www.apache.org/licenses/LICENSE-2.0
  8. #
  9. # Unless required by applicable law or agreed to in writing, software
  10. # distributed under the License is distributed on an "AS IS" BASIS,
  11. # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  12. # See the License for the specific language governing permissions and
  13. # limitations under the License.
  14. ---
  15. - name: Check if {{ login_input_filename }} file is encrypted
  16. command: cat {{ login_input_filename }}
  17. changed_when: false
  18. no_log: true
  19. register: config_content
  20. run_once: true
  21. - name: Decrpyt {{ login_input_filename }}
  22. command: >-
  23. ansible-vault decrypt {{ login_input_filename }}
  24. --vault-password-file {{ login_vault_filename }}
  25. when: "'$ANSIBLE_VAULT;' in config_content.stdout"
  26. changed_when: false
  27. run_once: true
  28. - name: Include variable file {{ login_input_filename }}
  29. include_vars: "{{ login_input_filename }}"
  30. no_log: true
  31. run_once: true
  32. - name: Encrypt {{ login_input_filename }}
  33. command: >-
  34. ansible-vault encrypt {{ login_input_filename }}
  35. --vault-password-file {{ login_vault_filename }}
  36. changed_when: false
  37. when: "'$ANSIBLE_VAULT;' in config_content.stdout"
  38. run_once: true
  39. - name: Update {{ login_input_filename }} permission
  40. file:
  41. path: "{{ login_input_filename }}"
  42. mode: "{{ file_permission }}"