File tree Expand file tree Collapse file tree 1 file changed +21
-0
lines changed
ansible/roles/compute_init/files Expand file tree Collapse file tree 1 file changed +21
-0
lines changed Original file line number Diff line number Diff line change 287
287
enabled : true
288
288
state : started
289
289
290
+ - name : Set locked memory limits on user-facing nodes
291
+ lineinfile :
292
+ path : /etc/security/limits.conf
293
+ regexp : ' \* soft memlock unlimited'
294
+ line : " * soft memlock unlimited"
295
+
296
+ - name : Configure sshd pam module
297
+ blockinfile :
298
+ path : /etc/pam.d/sshd
299
+ insertafter : ' account\s+required\s+pam_nologin.so'
300
+ block : |
301
+ account sufficient pam_access.so
302
+ account required pam_slurm.so
303
+
304
+ - name : Configure login access control
305
+ blockinfile :
306
+ path : /etc/security/access.conf
307
+ block : |
308
+ +:adm:ALL
309
+ -:ALL:ALL
310
+
290
311
- name : Ensure node is resumed
291
312
# TODO: consider if this is always safe for all job states?
292
313
command : scontrol update state=resume nodename={{ ansible_hostname }}
You can’t perform that action at this time.
0 commit comments