2023-08-23 14:15:21 +02:00
|
|
|
#!/bin/bash
|
|
|
|
|
|
|
|
set -e
|
|
|
|
|
|
|
|
# on fresh install remove cdrom-repo and install sudo if not available
|
|
|
|
[ -s /usr/bin/sudo ] || su -c "sed -i '/cdrom/d' /etc/apt/sources.list ; apt update ; apt -y install sudo"
|
|
|
|
# add user to sudo group it not
|
|
|
|
if ! id | grep -q '(sudo)'
|
|
|
|
then
|
|
|
|
su -c "/usr/sbin/usermod -a -G sudo ${USER}"
|
|
|
|
# use sudo group and restart this script
|
|
|
|
exec sg sudo -c "bash $0"
|
|
|
|
exit $?
|
|
|
|
fi
|
|
|
|
|
|
|
|
which ansible >/dev/null 2>&1 || sudo apt-get -y install ansible git
|
2023-08-23 16:25:20 +02:00
|
|
|
#sudo ansible-galaxy collection list | grep -q community.general || sudo ansible-galaxy collection install community.general
|
|
|
|
sudo ansible-galaxy collection install community.general
|
2023-08-23 14:15:21 +02:00
|
|
|
|
|
|
|
cd
|
|
|
|
rm -rf $(hostname -s)-git
|
|
|
|
mkdir $(hostname -s)-git
|
|
|
|
cd $(hostname -s)-git
|
|
|
|
|
|
|
|
|
|
|
|
for playbook in $PLAYBOOKS
|
|
|
|
do
|
|
|
|
git clone https://gitea.ds9.dedyn.io/olli/${playbook}.git
|
|
|
|
[ -s /etc/dohardening ] || rm -f ${playbook}/hardening.yml
|
|
|
|
sudo ansible-playbook --connection=local --inventory $(hostname), --limit $(hostname) ${playbook}/*.yml
|
|
|
|
done
|