on_premises/roles/remote_unlock/tasks/unlock.yml

13 lines
363 B
YAML

---
- name: Unlock LUKS via dracut
ansible.builtin.raw: |
cat << EOF | unlock && /sbin/unlock-reap-success
{{ luks_passphrase }}
EOF
register: unlock
changed_when: unlock['rc'] == 0
vars:
ansible_user: root
ansible_ssh_extra_args: '-o StrictHostKeyChecking=no -o UserKnownHostsFile=/dev/null'
ansible_ssh_port: "{{ unlock_port }}"