- hosts: webservers become: True gather_facts: True vars: ssh_server_ports: "{{ vault_ssh_server_ports }}" nginx_add_header: [] roles: - role: dev-sec.os-hardening - role: dev-sec.ssh-hardening become: yes - role: dev-sec.nginx-hardening