File tree Expand file tree Collapse file tree 1 file changed +21
-0
lines changed
ansible/roles/compute_init/files Expand file tree Collapse file tree 1 file changed +21
-0
lines changed Original file line number Diff line number Diff line change 287287 enabled : true
288288 state : started
289289
290+ - name : Set locked memory limits on user-facing nodes
291+ lineinfile :
292+ path : /etc/security/limits.conf
293+ regexp : ' \* soft memlock unlimited'
294+ line : " * soft memlock unlimited"
295+
296+ - name : Configure sshd pam module
297+ blockinfile :
298+ path : /etc/pam.d/sshd
299+ insertafter : ' account\s+required\s+pam_nologin.so'
300+ block : |
301+ account sufficient pam_access.so
302+ account required pam_slurm.so
303+
304+ - name : Configure login access control
305+ blockinfile :
306+ path : /etc/security/access.conf
307+ block : |
308+ +:adm:ALL
309+ -:ALL:ALL
310+
290311 - name : Ensure node is resumed
291312 # TODO: consider if this is always safe for all job states?
292313 command : scontrol update state=resume nodename={{ ansible_hostname }}
You can’t perform that action at this time.
0 commit comments