keycloak: Adjust directory permissions

This patch reduces the permissions on the install directory to just the root user and also fixes the ansible-lint issue for specifying the `mode`.
For all container mounted volumes, the ansible-lint rule is disabled, as the container takes care of the permissions etc.
This commit is contained in:
saibotk 2020-09-26 21:33:31 +02:00
parent d821a1646b
commit 69d1b5f8f7
No known key found for this signature in database
GPG key ID: A3299C587D5DF523

View file

@ -33,6 +33,9 @@
file:
path: "{{ item }}"
state: directory
mode: '0700'
owner: 'root'
group: 'root'
with_items:
- "{{ keycloak_install_location }}"
tags:
@ -40,7 +43,7 @@
become: true
- name: Create data directory
file:
file: # noqa 208 # Container manages permissions on its own
path: "{{ item }}"
state: directory
setype: "container_file_t"