Skip to content
This repository was archived by the owner on Dec 26, 2020. It is now read-only.

Commit 2c2e5a6

Browse files
committed
Do not use shell when not needed + Lint whitespaces
1 parent 789ef8f commit 2c2e5a6

File tree

1 file changed

+2
-2
lines changed

1 file changed

+2
-2
lines changed

tasks/main.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -72,7 +72,7 @@
7272
when: ansible_distribution == 'Debian' or ansible_distribution == 'Ubuntu'
7373

7474
- name: check if ssh_password module is already installed
75-
shell: "semodule -l| grep ssh_password"
75+
shell: "semodule -l | grep ssh_password"
7676
register: ssh_password_module
7777
failed_when: false
7878
changed_when: false
@@ -100,7 +100,7 @@
100100

101101
# The following tasks only get executed when selinux is in state enforcing, UsePam is "yes" and the ssh_password module is installed.
102102
- name: remove selinux-policy when Pam is used, because Allowing sshd to read the shadow file directly is considered a potential security risk (http://danwalsh.livejournal.com/12333.html)
103-
shell: semodule -r ssh_password
103+
command: semodule -r ssh_password
104104
when: ssh_use_pam and ssh_password_module.stdout.find('ssh_password') == 0
105105

106106
when: sestatus.rc == 0

0 commit comments

Comments
 (0)