Keep sanitized Compose sources in-repo with a confirmation-gated Ansible playbook, add repo-wide validation, tighten runbook ownership/STOP/review metadata, and archive stale research docs. Co-authored-by: Cursor <cursoragent@cursor.com>
19 lines
555 B
INI
19 lines
555 B
INI
[defaults]
|
|
inventory = inventory/hosts.yml
|
|
roles_path = roles
|
|
interpreter_python = auto_silent
|
|
stdout_callback = default
|
|
bin_ansible_callbacks = True
|
|
retry_files_enabled = False
|
|
host_key_checking = True
|
|
|
|
[privilege_escalation]
|
|
become = True
|
|
become_method = sudo
|
|
become_ask_pass = False
|
|
|
|
[ssh_connection]
|
|
# Keep SSH control sockets inside the repo (gitignored .ansible/) so playbook
|
|
# runs work in sandboxed/CI environments without touching ~/.ansible.
|
|
ssh_args = -C -o ControlMaster=auto -o ControlPersist=60s -o ControlPath=.ansible/ssh-control/%h-%p-%r
|