diff --git a/playbooks/ssh-certs/deploy-host-certs.yml b/playbooks/ssh-certs/deploy-host-certs.yml index c2e5735..155711b 100644 --- a/playbooks/ssh-certs/deploy-host-certs.yml +++ b/playbooks/ssh-certs/deploy-host-certs.yml @@ -82,6 +82,8 @@ Match User root Address 127.0.0.1,::1,192.168.0.71,192.168.0.72,192.168.0.73,192.168.0.74,192.168.0.75,192.168.0.89 PermitRootLogin yes PubkeyAuthentication yes + # Включаем root в белый список только для условий этого матча: + AllowUsers root marker: "# {mark} ANSIBLE MANAGED ROOT ACCESS for proxmoxes BLOCK #" create: true mode: '0600'