From f59c8931c3dd13f143570dee54bca6b5d63023fd Mon Sep 17 00:00:00 2001 From: Scott Dodson Date: Fri, 4 Mar 2016 11:46:19 -0500 Subject: Lock down generated certs dir --- roles/openshift_node_certificates/tasks/main.yml | 1 + 1 file changed, 1 insertion(+) diff --git a/roles/openshift_node_certificates/tasks/main.yml b/roles/openshift_node_certificates/tasks/main.yml index b54811414..c9a7a40c8 100644 --- a/roles/openshift_node_certificates/tasks/main.yml +++ b/roles/openshift_node_certificates/tasks/main.yml @@ -3,6 +3,7 @@ file: path: "{{ openshift_generated_configs_dir }}" state: directory + mode: 0700 when: nodes_needing_certs | length > 0 - name: Generate the node client config -- cgit v1.2.3