From 50d998849b5f6fa8c2a693bc315d5c98fe62fec5 Mon Sep 17 00:00:00 2001 From: Kevin Fenzi Date: Sat, 19 Oct 2019 16:44:03 +0000 Subject: [PATCH] basessh: We need these conditions to apply to CentOS as well as RedHat due to maintainer test instances. Signed-off-by: Kevin Fenzi --- roles/basessh/templates/sshd_config | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/roles/basessh/templates/sshd_config b/roles/basessh/templates/sshd_config index ef21ee0dc4..7ec4a855e1 100644 --- a/roles/basessh/templates/sshd_config +++ b/roles/basessh/templates/sshd_config @@ -2,7 +2,7 @@ Protocol 2 Port {{ sshd_port }} -{% if ansible_distribution_major_version == "6" and ansible_distribution == 'RedHat' %} +{% if ansible_distribution_major_version == "6" %} KexAlgorithms diffie-hellman-group-exchange-sha256 MACs hmac-sha2-512,hmac-sha2-256 Ciphers aes256-ctr,aes192-ctr,aes128-ctr @@ -31,9 +31,9 @@ AllowAgentForwarding no X11Forwarding no PermitTunnel no -{% if ansible_distribution_major_version == "6" and ansible_distribution == 'RedHat' %} +{% if ansible_distribution_major_version == "6" %} UsePrivilegeSeparation yes -{% elif ansible_distribution_major_version == "7" and ansible_distribution == 'RedHat' %} +{% elif ansible_distribution_major_version == "7" %} UsePrivilegeSeparation sandbox {% endif %}