Run playbooks that are allowed — not whatever the model types.
Ansible connections bind inventory and playbooks into governed workflow steps. A run uses an allowlisted playbook, secret-referenced credentials and tenant policy. Chat does not get a free ansible-playbook shell.
What Ansible does here
Catalog-gated `ansible` connector. Appears only when the tenant is entitled and the connector is deployed. Playbooks stay on an allowlist; empty allowlist fails closed.
Connections in admin
Register an Ansible connection per tenant. Credentials stay in secret-service, not in the graph JSON.
Allowlisted playbooks
Only playbooks and inventories listed on the connection can run. Unknown paths are rejected.
Run, plan, syntax-check
Capabilities cover run, check-mode plan, syntax-check, job status, cancel and an allowlisted rollback playbook.
AWX where configured
A connection can target allowlisted AWX job templates. Local playbook runs and AWX jobs share the same policy envelope.
Workspaces
Playbook files live in a workspace with published revisions. A run can pin a published snapshot instead of ad-hoc files.
From a workflow step
The canvas tool node selects the Ansible connector, connection and playbook. Governance still applies before execution.
Explore more
Ansible workspaces
Versioned playbook trees, published revisions and starter scenarios for a connection.
SSH
SSH connections store host, port, user and secret-referenced keys. Workflows run allowlisted command profiles. Free-form ssh.execute-command is disabled; use ssh.execute-profile.
VPN
VPN connections (IPsec, SSTP or WireGuard, client or server role) sit in the same governed catalog as SSH and Ansible. Typical path: gateway first, then SSH or playbooks on the far side.
Connectors
The platform composes tools, capabilities and connections: MCP, REST, SQL, GitHub, SSH, Ansible and other deployed connectors. Calls go through tenant policy and secret references.
Ready to move beyond the chatbot?
Build AI that understands your business, follows your processes, finishes the work — and keeps token spend under your control.