Ansible Revisited
I thought I’d give Ansible another shot now it’s owned by RedHat (IBM). As kickstart is a bit limiting.
It seems a bit more robust these days, there’s less need to shell out to do the simplest tasks - probably due to the growing number of builtin modules.
Inventories seem to have matured as has Vault, which is now very simple to use - especially if you use it inline. For example, to encrypt your ssh/su/grub password you can use the following in inventory.