From 46c69fdbe84b10d1da48c36e08bcb8226affb729 Mon Sep 17 00:00:00 2001 From: Zack Cerza Date: Mon, 27 Jun 2016 12:46:53 -0600 Subject: [PATCH] Disable become for repo cloning (2.x method) Signed-off-by: Zack Cerza --- roles/users/tasks/update_keys.yml | 12 +----------- 1 file changed, 1 insertion(+), 11 deletions(-) diff --git a/roles/users/tasks/update_keys.yml b/roles/users/tasks/update_keys.yml index 418b024..49cdbf6 100644 --- a/roles/users/tasks/update_keys.yml +++ b/roles/users/tasks/update_keys.yml @@ -3,14 +3,6 @@ set_fact: pubkey_users: "{{ managed_users|list + managed_admin_users|list }}" -# The following set_fact calls are apparently necessary to avoid using sudo on -# localhost to clone the keys repo. -- set_fact: - ansible_become_orig: "{{ ansible_become }}" - -- set_fact: - ansible_become: false - - name: Clone the keys repo local_action: module: git @@ -19,13 +11,11 @@ depth: 1 force: yes dest: "{{ keys_repo_path }}" + become: false when: keys_repo is defined connection: local run_once: true -- set_fact: - ansible_become: "{{ ansible_become_orig }}" - - name: Update authorized_keys using the keys repo authorized_key: user: "{{ item.name }}" -- 2.39.5