Skip to content

Commit b692b44

Browse files
committed
broker: add missing become: on task demanding root priv
1 parent 75481ba commit b692b44

File tree

2 files changed

+2
-0
lines changed

2 files changed

+2
-0
lines changed

roles/amq_streams_broker/defaults/main.yml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -100,6 +100,7 @@ amq_streams_broker_tls_truststore_password: PLEASE_CHANGEME_IAMNOTGOOD_FOR_PRODU
100100
# Truststore for Clients
101101
amq_streams_broker_tls_truststore_client_dir: /tmp
102102
amq_streams_broker_tls_truststore_client: client.truststore.jks
103+
amq_streams_broker_tls_truststore_client_require_priv_escalation: yes
103104
amq_streams_broker_tls_truststore_client_location: /opt
104105
amq_streams_broker_tls_truststore_client_password: PLEASE_CHANGEME_IAMNOTGOOD_FOR_PRODUCTION
105106
amq_streams_broker_admin_cli_log4j_opts: " "

roles/amq_streams_broker/tasks/cli/bootstrap.yml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -24,6 +24,7 @@
2424
- not bootstrap_server_port is defined
2525

2626
- name: "Copy Client Truststore with certificates"
27+
become: "{{ amq_streams_broker_tls_truststore_client_require_priv_escalation }}"
2728
ansible.builtin.copy:
2829
src: "{{ amq_streams_broker_tls_truststore_client_dir }}/{{ amq_streams_broker_tls_truststore_client }}"
2930
dest: "{{ amq_streams_broker_tls_truststore_client_location }}/{{ amq_streams_broker_tls_truststore_client }}"

0 commit comments

Comments
 (0)