From 281689e50649cb8be93d480b1487aeff1d8ef265 Mon Sep 17 00:00:00 2001 From: Alan Orth Date: Thu, 20 Dec 2018 09:36:43 +0200 Subject: [PATCH] roles/common: Use an Ansible fact for Ubuntu packages --- roles/common/tasks/packages_Ubuntu.yml | 10 +++++++--- 1 file changed, 7 insertions(+), 3 deletions(-) diff --git a/roles/common/tasks/packages_Ubuntu.yml b/roles/common/tasks/packages_Ubuntu.yml index 4110803..093d2ec 100644 --- a/roles/common/tasks/packages_Ubuntu.yml +++ b/roles/common/tasks/packages_Ubuntu.yml @@ -8,9 +8,9 @@ - name: Upgrade base OS apt: upgrade=dist update_cache=yes - - name: Install base packages - apt: pkg={{ item }} - loop: + - name: Set Ubuntu base packages + set_fact: + ubuntu_base_packages: - git - tmux - iotop @@ -28,6 +28,10 @@ - unzip - apt-transport-https # for https support in apt + - name: Install base packages + apt: pkg={{ ubuntu_base_packages }} state=present update_cache=yes + loop: + - name: Security hardening (CIS Benchmark 1.0) apt: pkg={{ item }} state=absent purge=yes loop: