diff --git a/ansible/roles/sshd/tasks/configure.yml b/ansible/roles/sshd/tasks/configure.yml index 377b3d745..359d782f6 100644 --- a/ansible/roles/sshd/tasks/configure.yml +++ b/ansible/roles/sshd/tasks/configure.yml @@ -3,19 +3,20 @@ - name: Ensure drop in directory exists file: - path: /etc/ssh/sshd_config.d/*.conf + path: /etc/ssh/sshd_config.d/ state: directory owner: root group: root mode: 700 become: true -- name: Ensure drop in directory is included +- name: Ensure drop in configuration is included blockinfile: dest: /etc/ssh/sshd_config - content: | - # To modify the system-wide sshd configuration, create a *.conf file under - # /etc/ssh/sshd_config.d/ which will be automatically included below + content: | + # To modify the system-wide sshd configuration, create .conf + # files under /etc/ssh/sshd_config.d/ which will be automatically + # included below. Include /etc/ssh/sshd_config.d/*.conf state: present insertafter: "# default value."