dotfiles/tasks/security.yml

28 lines
589 B
YAML

- name: "Install security-related packages"
aur:
skip_installed: true
name: "{{ item }}"
become: true
become_user: aur_builder
when: "item not in installed_packages.stdout_lines"
with_items:
- 'qomui'
- 'wireguard-arch'
- 'wireguard-tools'
- 'opensnitch-git'
- copy:
src: ./files/assh.yml
dest: "{{ home }}/.ssh/assh.yml"
mode: 0644
owner: "{{ user }}"
- copy:
src: ./files/opensnitch.json
dest: "{{ home }}/.opensnitch/ui-config.json"
mode: 0644
owner: "{{ user }}"
- service:
name: "opensnitchd"
enabled: true