diff --git a/ansible/deploy.yaml b/ansible/deploy.yaml index d5db168befc89adcdcf5d7bcae7b6c8007afacae..adbfe27cb5b599fba644037f1753bf0a10c2ccf4 100644 --- a/ansible/deploy.yaml +++ b/ansible/deploy.yaml @@ -82,15 +82,12 @@ tasks: - name: ensure database is created postgresql_db: name={{dbname}} - - name: ensure user has access to database postgresql_user: db={{dbname}} name={{dbuser}} password={{dbpassword}} priv=ALL - - name: ensure user does not have unnecessary privilege postgresql_user: name={{dbuser}} role_attr_flags=NOSUPERUSER,NOCREATEDB - - name: ensure no other user can access the database -postgresql_privs: db={{dbname}} role=PUBLIC type=database priv=ALL state=absent + postgresql_privs: db={{dbname}} role=PUBLIC type=database priv=ALL state=absent # # Stop web server(s) #