We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
2 parents 76b384d + 4b84af2 commit d3e36dcCopy full SHA for d3e36dc
etc/kayobe/ansible/wazuh-secrets.yml
@@ -15,13 +15,15 @@
15
state: directory
16
17
- name: Template new secrets
18
+ no_log: True
19
template:
20
src: wazuh-secrets.yml.j2
21
dest: "{{ wazuh_secrets_path }}"
- notify: Please encrypt keys
22
23
- handlers:
24
- - name: Please encrypt keys
25
- debug:
26
- msg: >-
27
- Please encrypt the keys using Ansible Vault.
+ - name: In-place encrypt wazuh-secrets
+ copy:
+ content: "{{ lookup('ansible.builtin.file', wazuh_secrets_path) | ansible.builtin.vault(ansible_vault_password) }}"
+ dest: "{{ wazuh_secrets_path }}"
+ decrypt: false
28
+ vars:
29
+ ansible_vault_password: "{{ lookup('ansible.builtin.env', 'KAYOBE_VAULT_PASSWORD') }}"
0 commit comments