30 lines
1.1 KiB
Markdown
30 lines
1.1 KiB
Markdown
# Ansible Methodology
|
|
|
|
Ansible performs host, operating-system, hypervisor, database, and network-device checks. The GitLab job reads targets from the root `assets.yml` inventory and credentials from environment-scoped GitLab File variables.
|
|
|
|
## Contents
|
|
|
|
- `Dockerfile`: Kubernetes-executor image with Ansible integrations.
|
|
- `playbooks/`: suites, platform examples, templates, and raw report generation.
|
|
- `run.sh`: execute, normalize, and render one Ansible run.
|
|
- `scripts/normalize.py`: convert native Ansible reports to the common schema.
|
|
- `fixtures/sample-output.json`: adapter and renderer validation input.
|
|
|
|
## Invocation
|
|
|
|
GitLab runs this methodology when `RUN_ANSIBLE=true`. For local use from the repository root:
|
|
|
|
```bash
|
|
ANSIBLE_VARS_FILE=/secure/vars.yml ./methodologies/ansible/run.sh --limit linux_vms
|
|
```
|
|
|
|
In CI, `scripts/build-secrets.py` assembles individual GitLab variables
|
|
(`ANSIBLE_USER`, `ANSIBLE_PASSWORD`, ...) into that vars file, so a committed
|
|
secrets file is never required.
|
|
|
|
Build the image with:
|
|
|
|
```bash
|
|
./methodologies/ansible/scripts/build-image.sh
|
|
```
|