From c9a2b9bf93d89916950938643bedbce841668cc2 Mon Sep 17 00:00:00 2001 From: Scott Dodson Date: Wed, 17 Feb 2016 14:06:56 -0500 Subject: Don't make config files world readable --- roles/openshift_node/tasks/main.yml | 3 +++ 1 file changed, 3 insertions(+) (limited to 'roles/openshift_node') diff --git a/roles/openshift_node/tasks/main.yml b/roles/openshift_node/tasks/main.yml index acf2f74e3..43253d72b 100644 --- a/roles/openshift_node/tasks/main.yml +++ b/roles/openshift_node/tasks/main.yml @@ -84,6 +84,9 @@ dest: "{{ openshift_node_config_file }}" src: node.yaml.v1.j2 backup: true + owner: root + group: root + mode: 0600 notify: - restart node -- cgit v1.2.3