Skip to content

Use SQL to instantly query Ansible resources. Open source CLI. No DB required.

License

Notifications You must be signed in to change notification settings

turbot/steampipe-plugin-ansible

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

18 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

image

Ansible Plugin for Steampipe

Use SQL to query configurations from the Ansible playbooks.

Quick start

Install

Download and install the latest Ansible plugin:

steampipe plugin install ansible

Configure your config file.

Configure your file paths in ~/.steampipe/config/ansible.spc:

connection "ansible" {
  plugin = "ansible"

  # Defaults to CWD
  playbook_file_paths  = [ "*.yml", "*.yaml" ]
  inventory_file_paths = [ "/etc/ansible/hosts", "~/.ansible/hosts" ]
}

Run steampipe:

steampipe query

List all playbooks that use privilege escalation:

select
  name,
  hosts,
  jsonb_pretty(tasks) as tasks
from
  ansible_playbook
where
  become;
+----------+-------------+----------------------------------------------------------+
| name     | hosts       | tasks                                                    |
+----------+-------------+----------------------------------------------------------+
| Playbook | web_servers | [                                                        |
|          |             |     {                                                    |
|          |             |         "yum": {                                         |
|          |             |             "name": "httpd",                             |
|          |             |             "state": "latest"                            |
|          |             |         },                                               |
|          |             |         "name": "ensure apache is at the latest version" |
|          |             |     },                                                   |
|          |             |     {                                                    |
|          |             |         "name": "ensure apache is running",              |
|          |             |         "service": {                                     |
|          |             |             "name": "httpd",                             |
|          |             |             "state": "started"                           |
|          |             |         }                                                |
|          |             |     }                                                    |
|          |             | ]                                                        |
+----------+-------------+----------------------------------------------------------+

Engines

This plugin is available for the following engines:

Engine Description
Steampipe The Steampipe CLI exposes APIs and services as a high-performance relational database, giving you the ability to write SQL-based queries to explore dynamic data. Mods extend Steampipe's capabilities with dashboards, reports, and controls built with simple HCL. The Steampipe CLI is a turnkey solution that includes its own Postgres database, plugin management, and mod support.
Postgres FDW Steampipe Postgres FDWs are native Postgres Foreign Data Wrappers that translate APIs to foreign tables. Unlike Steampipe CLI, which ships with its own Postgres server instance, the Steampipe Postgres FDWs can be installed in any supported Postgres database version.
SQLite Extension Steampipe SQLite Extensions provide SQLite virtual tables that translate your queries into API calls, transparently fetching information from your API or service as you request it.
Export Steampipe Plugin Exporters provide a flexible mechanism for exporting information from cloud services and APIs. Each exporter is a stand-alone binary that allows you to extract data using Steampipe plugins without a database.
Turbot Pipes Turbot Pipes is the only intelligence, automation & security platform built specifically for DevOps. Pipes provide hosted Steampipe database instances, shared dashboards, snapshots, and more.

Developing

Prerequisites:

Clone:

git clone https://github.com/turbot/steampipe-plugin-ansible.git
cd steampipe-plugin-ansible

Build, which automatically installs the new version to your ~/.steampipe/plugins directory:

make

Configure the plugin:

cp config/* ~/.steampipe/config
vi ~/.steampipe/config/ansible.spc

Try it!

steampipe query
> .inspect ansible

Further reading:

Open Source & Contributing

This repository is published under the Apache 2.0 (source code) and CC BY-NC-ND (docs) licenses. Please see our code of conduct. We look forward to collaborating with you!

Steampipe is a product produced from this open source software, exclusively by Turbot HQ, Inc. It is distributed under our commercial terms. Others are allowed to make their own distribution of the software, but cannot use any of the Turbot trademarks, cloud services, etc. You can learn more in our Open Source FAQ.

Get Involved

Join #steampipe on Slack →

Want to help but don't know where to start? Pick up one of the help wanted issues: