---

- name: reload ssh
  service:
    name: ssh
    state: reloaded

- name: update trusted ca debian
  command: /usr/sbin/update-ca-certificates
  when: ansible_os_family == "Debian"

# handlers for etckeeper
- name: Record changes in etckeeper
  shell: |-
    if etckeeper unclean
    then
      etckeeper commit '{{ etckeeper_message }}'
    fi