Skip to content
Snippets Groups Projects
Commit d0a44e3f authored by Thomas Schneider's avatar Thomas Schneider
Browse files

*: Fix risky-file-permissions ansible-lint issues

parent 2f3f37d8
No related branches found
No related tags found
1 merge request!4Update CI to reasonable versions and fix resulting issues
Pipeline #4787 failed
...@@ -9,6 +9,9 @@ ...@@ -9,6 +9,9 @@
template: template:
src: default.j2 src: default.j2
dest: /etc/default/prometheus-alertmanager dest: /etc/default/prometheus-alertmanager
owner: root
group: root
mode: "0644"
notify: notify:
- Restart alertmanager - Restart alertmanager
tags: tags:
...@@ -18,6 +21,9 @@ ...@@ -18,6 +21,9 @@
template: template:
src: alertmanager.yml.j2 src: alertmanager.yml.j2
dest: /etc/prometheus/alertmanager.yml dest: /etc/prometheus/alertmanager.yml
owner: root
group: root
mode: "0644"
notify: notify:
- Reload alertmanager - Reload alertmanager
tags: tags:
......
...@@ -23,6 +23,9 @@ ...@@ -23,6 +23,9 @@
template: template:
src: prometheus-mysqld-exporter.j2 src: prometheus-mysqld-exporter.j2
dest: /etc/default/prometheus-mysqld-exporter dest: /etc/default/prometheus-mysqld-exporter
owner: root
group: root
mode: "0644"
notify: notify:
- Restart mysqld_exporter - Restart mysqld_exporter
tags: tags:
...@@ -34,6 +37,9 @@ ...@@ -34,6 +37,9 @@
template: template:
src: scrape.yml.j2 src: scrape.yml.j2
dest: "/etc/prometheus/scrape/mysqld_{{ ansible_fqdn }}.yml" dest: "/etc/prometheus/scrape/mysqld_{{ ansible_fqdn }}.yml"
owner: root
group: root
mode: "0644"
delegate_to: "{{ prometheus_host }}" delegate_to: "{{ prometheus_host }}"
tags: tags:
- prometheus - prometheus
......
...@@ -44,6 +44,9 @@ ...@@ -44,6 +44,9 @@
template: template:
src: prometheus-node-exporter.j2 src: prometheus-node-exporter.j2
dest: /etc/default/prometheus-node-exporter dest: /etc/default/prometheus-node-exporter
owner: root
group: root
mode: "0644"
notify: notify:
- Restart node_exporter - Restart node_exporter
tags: tags:
...@@ -55,6 +58,9 @@ ...@@ -55,6 +58,9 @@
template: template:
src: scrape.yml.j2 src: scrape.yml.j2
dest: "/etc/prometheus/scrape/node_{{ ansible_fqdn }}.yml" dest: "/etc/prometheus/scrape/node_{{ ansible_fqdn }}.yml"
owner: root
group: root
mode: "0644"
delegate_to: "{{ prometheus_host }}" delegate_to: "{{ prometheus_host }}"
tags: tags:
- prometheus - prometheus
......
...@@ -12,6 +12,9 @@ ...@@ -12,6 +12,9 @@
template: template:
src: default-prometheus.j2 src: default-prometheus.j2
dest: /etc/default/prometheus dest: /etc/default/prometheus
owner: root
group: root
mode: "0644"
notify: notify:
- Restart prometheus - Restart prometheus
tags: tags:
...@@ -23,6 +26,9 @@ ...@@ -23,6 +26,9 @@
src: prometheus.yml.j2 src: prometheus.yml.j2
dest: /etc/prometheus/prometheus.yml dest: /etc/prometheus/prometheus.yml
validate: "promtool check config %s" validate: "promtool check config %s"
owner: root
group: root
mode: "0644"
notify: notify:
- Reload prometheus - Reload prometheus
tags: tags:
...@@ -33,6 +39,9 @@ ...@@ -33,6 +39,9 @@
file: file:
path: "/etc/prometheus/{{ item }}" path: "/etc/prometheus/{{ item }}"
state: directory state: directory
owner: root
group: root
mode: "0755"
with_items: with_items:
- alertmanagers - alertmanagers
- rules - rules
...@@ -46,6 +55,9 @@ ...@@ -46,6 +55,9 @@
src: "rules.yml.j2" src: "rules.yml.j2"
dest: "/etc/prometheus/rules/ansible_rules.yml" dest: "/etc/prometheus/rules/ansible_rules.yml"
validate: "promtool check rules %s" validate: "promtool check rules %s"
owner: root
group: root
mode: "0644"
notify: notify:
- Reload prometheus - Reload prometheus
tags: tags:
......
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment