Hide keyboard shortcuts

Hot-keys on this page

r m x p   toggle line displays

j k   next/prev highlighted chunk

0   (zero) top of page

1   (one) first highlighted chunk

1

2

3

4

5

6

7

8

9

10

11

12

13

14

15

16

17

18

19

20

21

22

23

24

25

26

27

28

29

30

31

32

33

34

35

36

37

38

39

40

41

42

43

44

45

46

47

48

49

50

51

52

53

54

55

56

57

58

59

60

61

62

63

64

65

66

67

68

69

70

71

72

73

74

75

76

77

78

79

80

81

82

83

84

85

86

87

88

89

90

91

92

93

94

95

# (c) 2012-2014, Michael DeHaan <michael.dehaan@gmail.com> 

# 

# This file is part of Ansible 

# 

# Ansible is free software: you can redistribute it and/or modify 

# it under the terms of the GNU General Public License as published by 

# the Free Software Foundation, either version 3 of the License, or 

# (at your option) any later version. 

# 

# Ansible is distributed in the hope that it will be useful, 

# but WITHOUT ANY WARRANTY; without even the implied warranty of 

# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the 

# GNU General Public License for more details. 

# 

# You should have received a copy of the GNU General Public License 

# along with Ansible. If not, see <http://www.gnu.org/licenses/>. 

 

# Make coding more python3-ish 

from __future__ import (absolute_import, division, print_function) 

__metaclass__ = type 

 

from ansible import constants as C 

from ansible.errors import AnsibleParserError 

from ansible.playbook.attribute import FieldAttribute 

 

try: 

from __main__ import display 

except ImportError: 

from ansible.utils.display import Display 

display = Display() 

 

 

class Become: 

 

# Privilege escalation 

_become = FieldAttribute(isa='bool') 

_become_method = FieldAttribute(isa='string') 

_become_user = FieldAttribute(isa='string') 

_become_flags = FieldAttribute(isa='string') 

 

def __init__(self): 

super(Become, self).__init__() 

 

def _detect_privilege_escalation_conflict(self, ds): 

 

# Fail out if user specifies conflicting privilege escalations 

has_become = 'become' in ds or 'become_user'in ds 

has_sudo = 'sudo' in ds or 'sudo_user' in ds 

has_su = 'su' in ds or 'su_user' in ds 

 

51 ↛ 52line 51 didn't jump to line 52, because the condition on line 51 was never true if has_become: 

msg = 'The become params ("become", "become_user") and' 

if has_sudo: 

raise AnsibleParserError('%s sudo params ("sudo", "sudo_user") cannot be used together' % msg) 

elif has_su: 

raise AnsibleParserError('%s su params ("su", "su_user") cannot be used together' % msg) 

57 ↛ 58line 57 didn't jump to line 58, because the condition on line 57 was never true elif has_sudo and has_su: 

raise AnsibleParserError('sudo params ("sudo", "sudo_user") and su params ("su", "su_user") cannot be used together') 

 

def _preprocess_data_become(self, ds): 

"""Preprocess the playbook data for become attributes 

 

This is called from the Base object's preprocess_data() method which 

in turn is called pretty much anytime any sort of playbook object 

(plays, tasks, blocks, etc) is created. 

""" 

 

self._detect_privilege_escalation_conflict(ds) 

 

# Privilege escalation, backwards compatibility for sudo/su 

71 ↛ 72line 71 didn't jump to line 72, because the condition on line 71 was never true if 'sudo' in ds or 'sudo_user' in ds: 

ds['become_method'] = 'sudo' 

if 'sudo' in ds: 

ds['become'] = ds['sudo'] 

del ds['sudo'] 

 

if 'sudo_user' in ds: 

ds['become_user'] = ds['sudo_user'] 

del ds['sudo_user'] 

 

display.deprecated("Instead of sudo/sudo_user, use become/become_user and make sure become_method is 'sudo' (default)", '2.6') 

 

83 ↛ 84line 83 didn't jump to line 84, because the condition on line 83 was never true elif 'su' in ds or 'su_user' in ds: 

ds['become_method'] = 'su' 

if 'su' in ds: 

ds['become'] = ds['su'] 

del ds['su'] 

 

if 'su_user' in ds: 

ds['become_user'] = ds['su_user'] 

del ds['su_user'] 

 

display.deprecated("Instead of su/su_user, use become/become_user and set become_method to 'su' (default is sudo)", '2.6') 

 

return ds