diff --git a/roles/sudo/templates/sudoers.j2 b/roles/sudo/templates/sudoers.j2 index dbc086bab81a19ab19b889a60e36b9969348d529..8a2525e36e774a7a4a1b42f2445ccbe2be5f6d5d 100644 --- a/roles/sudo/templates/sudoers.j2 +++ b/roles/sudo/templates/sudoers.j2 @@ -7,6 +7,8 @@ Defaults mail_badpass Defaults secure_path="/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin" # Host alias specification +User_Alias USERS= %user +User_Alias NOUNOUS= %nounou # User alias specification @@ -15,6 +17,11 @@ Defaults secure_path="/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/b # User privilege specification root ALL=(ALL:ALL) ALL +{% if 'virtu' in group_names %} +# Pour vérifier quels vms sont sur quels virtus +USERS ALL=(root:ALL) NOPASSWD:/usr/sbin/qm list + +{% endif %} # See sudoers(5) for more information on "#include" directives: #includedir /etc/sudoers.d