Before using this playbook, the target hosts must have: - Public key of control node in ~/.ssh/id_rsa.pub - Passwordless sudo enabled (see: )