zuul-jobs/roles/add-build-sshkey
Andreas Jaeger 2026f1825b Use main.yaml, not .yml
There are over 490 .yaml files but only a few .yml, let's rename to be
consistent.

Add a test to block .yml files.

Change-Id: I2f1354de82f231154d926b51d9812b1e9c1a6202
2020-04-20 17:44:49 +02:00
..
library Fix noqa warning 2018-10-28 14:31:23 +01:00
tasks Support ssh-enabled windows hosts in add-build-sshkey 2020-04-07 11:12:26 +02:00
vars Use main.yaml, not .yml 2020-04-20 17:44:49 +02:00
README.rst add-build-sshkey: remove previously authorized build-sshkey 2019-05-20 13:23:02 +00:00
__init__.py add-build-sshkey: Remove only the master key 2018-09-05 09:26:35 -07:00

README.rst

Generate and install a build-local SSH key on all hosts

This role is intended to be run on the Zuul Executor at the start of every job. It generates an SSH keypair and installs the public key in the authorized_keys file of every host in the inventory. It then removes the Zuul master key from this job's SSH agent so that the original key used to log into all of the hosts is no longer accessible (any per-project keys, if present, remain available), then adds the newly generated private key.

Role Variables

Where to put the newly-generated SSH private key.