We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent 0276fc9 commit 65029a2Copy full SHA for 65029a2
etc/kayobe/ansible/wazuh-secrets.yml
@@ -26,13 +26,16 @@
26
wazuh_password: "{{ random_password.stdout }}"
27
28
- name: Template new secrets
29
+ no_log: True
30
template:
31
src: wazuh-secrets.yml.j2
32
dest: "{{ wazuh_secrets_path }}"
- notify: Please encrypt keys
33
34
- handlers:
35
- - name: Please encrypt keys
36
- debug:
37
- msg: >-
38
- Please encrypt the keys using Ansible Vault.
+ - name: In-place encrypt wazuh-secrets
+ copy:
+ content: "{{ lookup('ansible.builtin.file', wazuh_secrets_path) | ansible.builtin.vault(ansible_vault_password) }}"
+ dest: "{{ wazuh_secrets_path }}"
+ decrypt: false
39
+ vars:
40
+ ansible_vault_password: "{{ lookup('ansible.builtin.env', 'KAYOBE_VAULT_PASSWORD') }}"
41
+
0 commit comments