get rid of fail2ban, it doesnt actually help
[ansible.git] / email.yml
index 91f02f9ffd99eb6af7f7b96f6515ab3add22e29b..6698af49e0b85736c0598a2e7daa8658373c2d52 100644 (file)
--- a/email.yml
+++ b/email.yml
@@ -1,8 +1,11 @@
-- hosts: all:!base_only
+- hosts: email
   roles:
   - postfix
   - journalwatch
   tasks:
   # some basic security stuff that relies on working email
-  - name: install apticron, fail2ban
-    apt: name=apticron,fail2ban state=latest
+  - name: install apticron
+    apt: name=apticron state=latest
+  # cleanup
+  - name: clean up fail2ban
+    apt: name=fail2ban state=absent purge=true