ansible-role-mongodb/tasks/auth_initialization.yml

77 lines
2.0 KiB
YAML

---
- name: Use different mongod.conf for auth initialization
template:
src: mongod_init.conf.j2
dest: /etc/mongod.conf
owner: root
group: root
mode: 0644
notify:
- mongodb restart
- wait when mongodb is started on localhost
- name: Flush all handlers at this point
meta: flush_handlers
- name: create administrative user "{{ mongodb_user_admin_name }}"
mongodb_user:
database: admin
name: "{{ item.name }}"
password: "{{ item.password }}"
update_password: "{{ mongodb_user_update_password }}"
roles: "{{ item.roles }}"
login_port: "{{ mongodb_net_port }}"
with_items:
- {
name: "{{ mongodb_user_admin_name }}",
password: "{{ mongodb_user_admin_password }}",
roles: "userAdminAnyDatabase"
}
no_log: true
- name: create administrative user "{{ mongodb_root_admin_name }}"
mongodb_user:
database: admin
name: "{{ item.name }}"
password: "{{ item.password }}"
update_password: "{{ mongodb_user_update_password }}"
roles: "{{ item.roles }}"
login_port: "{{ mongodb_net_port }}"
with_items:
- {
name: "{{ mongodb_root_admin_name }}",
password: "{{ mongodb_root_admin_password }}",
roles: "root"
}
no_log: true
- name: create backup user "{{ mongodb_root_backup_name }}"
mongodb_user:
database: admin
name: "{{ item.name }}"
password: "{{ item.password }}"
update_password: "{{ mongodb_user_update_password }}"
roles: "{{ item.roles }}"
login_port: "{{ mongodb_net_port }}"
with_items:
- {
name: "{{ mongodb_root_backup_name }}",
password: "{{ mongodb_root_backup_password }}",
roles: "backup,clusterMonitor"
}
no_log: true
- name: Move back mongod.conf
template:
src: mongod.conf.j2
dest: /etc/mongod.conf
owner: root
group: root
mode: 0644
notify:
- mongodb restart
- wait when mongodb is started
- name: Flush all handlers at this point
meta: flush_handlers