remove apt keys specifically from embedded database

This commit is contained in:
Jérémy Lecour 2021-05-06 13:43:59 +02:00 committed by Jérémy Lecour
parent 403ea45eeb
commit 58bf79218f
15 changed files with 18 additions and 128 deletions

View file

@ -1,17 +1,10 @@
--- ---
- name: Look for /etc/apt/trusted.gpg
stat:
path: /etc/apt/trusted.gpg
register: apt_trusted_gpg
tags:
- apt
- name: Evolix embedded GPG key is absent - name: Evolix embedded GPG key is absent
apt_key: apt_key:
id: "B8612B5D" id: "B8612B5D"
keyring: /etc/apt/trusted.gpg
state: absent state: absent
when: apt_trusted_gpg.stat.exists
tags: tags:
- apt - apt

View file

@ -8,19 +8,11 @@
- elasticsearch - elasticsearch
- packages - packages
- name: Look for /etc/apt/trusted.gpg
stat:
path: /etc/apt/trusted.gpg
register: apt_trusted_gpg
tags:
- elasticsearch
- packages
- name: Elastic embedded GPG key is absent - name: Elastic embedded GPG key is absent
apt_key: apt_key:
id: "D88E42B4" id: "D88E42B4"
keyring: /etc/apt/trusted.gpg
state: absent state: absent
when: apt_trusted_gpg.stat.exists
tags: tags:
- elasticsearch - elasticsearch
- packages - packages

View file

@ -37,16 +37,11 @@
- name: HPE Smart Storage Administrator (ssacli) is present - name: HPE Smart Storage Administrator (ssacli) is present
block: block:
- name: Look for /etc/apt/trusted.gpg - name: HPE GPG embedded key is absent
stat:
path: /etc/apt/trusted.gpg
register: apt_trusted_gpg
- name: HPE GPG is absent in embedded database
apt_key: apt_key:
id: "26C2B797" id: "26C2B797"
keyring: /etc/apt/trusted.gpg
state: absent state: absent
when: apt_trusted_gpg.stat.exists
- name: HPE GPG key is installed - name: HPE GPG key is installed
copy: copy:
@ -106,18 +101,12 @@
- name: MegaRAID SAS package is present - name: MegaRAID SAS package is present
block: block:
- name: Look for /etc/apt/trusted.gpg
stat:
path: /etc/apt/trusted.gpg
register: apt_trusted_gpg
- name: HWRaid embedded GPG key is absent - name: HWRaid embedded GPG key is absent
apt_key: apt_key:
id: "23B3D3B4" id: "23B3D3B4"
keyring: /etc/apt/trusted.gpg
state: absent state: absent
when: when: ansible_distribution_major_version is version('9', '>=')
- apt_trusted_gpg.stat.exists
- ansible_distribution_major_version is version('9', '>=')
- name: HWRaid GPG key is installed - name: HWRaid GPG key is installed
copy: copy:

View file

@ -8,19 +8,11 @@
- filebeat - filebeat
- packages - packages
- name: Look for /etc/apt/trusted.gpg
stat:
path: /etc/apt/trusted.gpg
register: apt_trusted_gpg
tags:
- filebeat
- packages
- name: Elastic embedded GPG key is absent - name: Elastic embedded GPG key is absent
apt_key: apt_key:
id: "D88E42B4" id: "D88E42B4"
keyring: /etc/apt/trusted.gpg
state: absent state: absent
when: apt_trusted_gpg.stat.exists
tags: tags:
- filebeat - filebeat
- packages - packages

View file

@ -1,18 +1,10 @@
--- ---
- name: Look for /etc/apt/trusted.gpg
stat:
path: /etc/apt/trusted.gpg
register: apt_trusted_gpg
tags:
- packages
- fluentd
- name: Fluentd embedded GPG key is absent - name: Fluentd embedded GPG key is absent
apt_key: apt_key:
id: "AB97ACBE" id: "AB97ACBE"
keyring: /etc/apt/trusted.gpg
state: absent state: absent
when: apt_trusted_gpg.stat.exists
tags: tags:
- packages - packages
- fluentd - fluentd

View file

@ -5,16 +5,11 @@
# http://mirrors.jenkins.io/.* # http://mirrors.jenkins.io/.*
# http://jenkins.mirror.isppower.de/.* # http://jenkins.mirror.isppower.de/.*
- name: Look for /etc/apt/trusted.gpg
stat:
path: /etc/apt/trusted.gpg
register: apt_trusted_gpg
- name: Jenkins embedded GPG key is absent - name: Jenkins embedded GPG key is absent
apt_key: apt_key:
id: "D50582E6" id: "D50582E6"
keyring: /etc/apt/trusted.gpg
state: absent state: absent
when: apt_trusted_gpg.stat.exists
- name: Add Jenkins GPG key - name: Add Jenkins GPG key
copy: copy:

View file

@ -8,19 +8,11 @@
- kibana - kibana
- packages - packages
- name: Look for /etc/apt/trusted.gpg
stat:
path: /etc/apt/trusted.gpg
register: apt_trusted_gpg
tags:
- kibana
- packages
- name: Elastic embedded GPG key is absent - name: Elastic embedded GPG key is absent
apt_key: apt_key:
id: "D88E42B4" id: "D88E42B4"
keyring: /etc/apt/trusted.gpg
state: absent state: absent
when: apt_trusted_gpg.stat.exists
tags: tags:
- kibana - kibana
- packages - packages

View file

@ -8,19 +8,11 @@
- logstash - logstash
- packages - packages
- name: Look for /etc/apt/trusted.gpg
stat:
path: /etc/apt/trusted.gpg
register: apt_trusted_gpg
tags:
- logstash
- packages
- name: Elastic embedded GPG key is absent - name: Elastic embedded GPG key is absent
apt_key: apt_key:
id: "D88E42B4" id: "D88E42B4"
keyring: /etc/apt/trusted.gpg
state: absent state: absent
when: apt_trusted_gpg.stat.exists
tags: tags:
- logstash - logstash
- packages - packages

View file

@ -8,19 +8,11 @@
- metricbeat - metricbeat
- packages - packages
- name: Look for /etc/apt/trusted.gpg
stat:
path: /etc/apt/trusted.gpg
register: apt_trusted_gpg
tags:
- metricbeat
- packages
- name: Elastic embedded GPG key is absent - name: Elastic embedded GPG key is absent
apt_key: apt_key:
id: "D88E42B4" id: "D88E42B4"
keyring: /etc/apt/trusted.gpg
state: absent state: absent
when: apt_trusted_gpg.stat.exists
tags: tags:
- metricbeat - metricbeat
- packages - packages

View file

@ -1,15 +1,10 @@
--- ---
- name: Look for /etc/apt/trusted.gpg
stat:
path: /etc/apt/trusted.gpg
register: apt_trusted_gpg
- name: MongoDB embedded GPG key is absent - name: MongoDB embedded GPG key is absent
apt_key: apt_key:
id: "B8612B5D" id: "B8612B5D"
keyring: /etc/apt/trusted.gpg
state: absent state: absent
when: apt_trusted_gpg.stat.exists
- name: Add MongoDB GPG key - name: Add MongoDB GPG key
copy: copy:

View file

@ -1,15 +1,10 @@
--- ---
- name: Look for /etc/apt/trusted.gpg
stat:
path: /etc/apt/trusted.gpg
register: apt_trusted_gpg
- name: NewRelic embedded GPG key is absent - name: NewRelic embedded GPG key is absent
apt_key: apt_key:
id: "548C16BF" id: "548C16BF"
keyring: /etc/apt/trusted.gpg
state: absent state: absent
when: apt_trusted_gpg.stat.exists
- name: Add NewRelic GPG key - name: Add NewRelic GPG key
copy: copy:

View file

@ -9,20 +9,11 @@
- packages - packages
- nodejs - nodejs
- name: Look for /etc/apt/trusted.gpg
stat:
path: /etc/apt/trusted.gpg
register: apt_trusted_gpg
tags:
- system
- packages
- nodejs
- name: NodeJS embedded GPG key is absent - name: NodeJS embedded GPG key is absent
apt_key: apt_key:
id: "68576280" id: "68576280"
keyring: /etc/apt/trusted.gpg
state: absent state: absent
when: apt_trusted_gpg.stat.exists
tags: tags:
- system - system
- packages - packages

View file

@ -1,20 +1,10 @@
--- ---
- name: Look for /etc/apt/trusted.gpg
stat:
path: /etc/apt/trusted.gpg
register: apt_trusted_gpg
tags:
- system
- packages
- nodejs
- yarn
- name: NodeJS embedded GPG key is absent - name: NodeJS embedded GPG key is absent
apt_key: apt_key:
id: "86E50310" id: "86E50310"
keyring: /etc/apt/trusted.gpg
state: absent state: absent
when: apt_trusted_gpg.stat.exists
tags: tags:
- system - system
- packages - packages

View file

@ -3,16 +3,11 @@
- set_fact: - set_fact:
percona__apt_config_package_file: "percona-release_latest.{{ ansible_distribution_release }}_all.deb" percona__apt_config_package_file: "percona-release_latest.{{ ansible_distribution_release }}_all.deb"
- name: Look for /etc/apt/trusted.gpg
stat:
path: /etc/apt/trusted.gpg
register: apt_trusted_gpg
- name: Percona embedded GPG key is absent - name: Percona embedded GPG key is absent
apt_key: apt_key:
id: "8507EFA5" id: "8507EFA5"
keyring: /etc/apt/trusted.gpg
state: absent state: absent
when: apt_trusted_gpg.stat.exists
- name: Add Percona GPG key - name: Add Percona GPG key
copy: copy:

View file

@ -13,16 +13,11 @@
repo: "deb http://apt.postgresql.org/pub/repos/apt/ {{ansible_distribution_release}}-pgdg main" repo: "deb http://apt.postgresql.org/pub/repos/apt/ {{ansible_distribution_release}}-pgdg main"
update_cache: yes update_cache: yes
- name: Look for /etc/apt/trusted.gpg
stat:
path: /etc/apt/trusted.gpg
register: apt_trusted_gpg
- name: PGDG embedded GPG key is absent - name: PGDG embedded GPG key is absent
apt_key: apt_key:
id: "ACCC4CF8" id: "ACCC4CF8"
keyring: /etc/apt/trusted.gpg
state: absent state: absent
when: apt_trusted_gpg.stat.exists
- name: Add PGDG GPG key - name: Add PGDG GPG key
copy: copy: