From fb7ccac69eb02084ea57827e23b4d628c25601bf Mon Sep 17 00:00:00 2001 From: handreas <andreas.hamacher@monash.edu> Date: Wed, 29 Apr 2020 01:31:19 +0000 Subject: [PATCH] config for test ldap Former-commit-id: 575318ac2cb7cadf2248324a7479fe89ed2431c1 --- CICD/vars/ldapConfig.yml | 82 ++++++++++++++++------------------------ 1 file changed, 33 insertions(+), 49 deletions(-) diff --git a/CICD/vars/ldapConfig.yml b/CICD/vars/ldapConfig.yml index 3ccb6e0f..011f9a26 100644 --- a/CICD/vars/ldapConfig.yml +++ b/CICD/vars/ldapConfig.yml @@ -1,50 +1,34 @@ --- -ldapServerHostIpLine: "118.138.241.196 hpcldap0.erc.monash.edu.au" -ldapCaCertContents: | - -----BEGIN CERTIFICATE----- - MIIGODCCBCCgAwIBAgIJAJPlOnRdsYibMA0GCSqGSIb3DQEBCwUAMIGoMQswCQYD - VQQGEwJBVTERMA8GA1UECAwIVmljdG9yaWExEDAOBgNVBAcMB0NsYXl0b24xIDAe - BgNVBAoMF01vbmFzaCBlUmVzZWFyY2ggQ2VudGVyMREwDwYDVQQLDAhIUEMgVGVh - bTEeMBwGA1UEAwwVTWVSQyBIUEMgVGVhbSBSb290IENBMR8wHQYJKoZIhvcNAQkB - FhBoZWxwQG1hc3NpdmUub3JnMB4XDTE1MDgxOTAyNDczOFoXDTM1MDgxNDAyNDcz - OFowgagxCzAJBgNVBAYTAkFVMREwDwYDVQQIDAhWaWN0b3JpYTEQMA4GA1UEBwwH - Q2xheXRvbjEgMB4GA1UECgwXTW9uYXNoIGVSZXNlYXJjaCBDZW50ZXIxETAPBgNV - BAsMCEhQQyBUZWFtMR4wHAYDVQQDDBVNZVJDIEhQQyBUZWFtIFJvb3QgQ0ExHzAd - BgkqhkiG9w0BCQEWEGhlbHBAbWFzc2l2ZS5vcmcwggIiMA0GCSqGSIb3DQEBAQUA - A4ICDwAwggIKAoICAQDJxc194E9MGucoutUvmVvT04D6M3S7LlySwQ5XJd4ec22z - csmpoEep+IPVjChVKTN0mRYagAlh5UZ6VYtNA29Lkd4GC5Q2IAlrR9+pgXupuD5v - Qv1pFGEuWEPp5PHn4053gYtdVQ0pZQ7ytkVqSW5TJPNcR9AwHpW7JuQkU1jRGCO0 - t8dthC1msT62UnfjXStznjATm+M253y5PF4IquGb1K6ArR79Os2Ds78NeLyZ24vC - ik2AA6QpzkOZOLzRZLyWn4Gdz/jyblZP/A/zjM83symIdn3dv0wC8A3hZsHP771X - tw2f6uyiXPftiJt0YuPQdw9kdbDda0Dp7UwiTdaUdzBsQYUGuCQhw3T3NurPZu83 - K4ftVnIez9VO+5buJQxX0dc0/w0fwIZVtMesdMt+08x6Cf9nVmDrheArTKYWOq0r - 5eNntg16JAVBixRMwiV+KL4VP/pSKXQK2a9WptzEjVHLSsN0oMAoHkBVz47fSIdD - O79jYak+yvPORMkqd0iwMnt0F+wg9JrMVhhCmU5vdqgwQy60LCHn23IX7x821YTt - inQM43FsvRCAwWabWinn1prPHLpzaeMgE0wSVBtd4CvPqQ0fW5HJjdOjzyKRim8d - 1jN+1opa7CbcM2byfUU0yd1wU4jp5DSeZokV8ECr43pUymcc2dJwmTNApcg92wID - AQABo2MwYTAdBgNVHQ4EFgQUJ4sfHiRrNF3i/yAaV+OnIvfOAwgwHwYDVR0jBBgw - FoAUJ4sfHiRrNF3i/yAaV+OnIvfOAwgwDwYDVR0TAQH/BAUwAwEB/zAOBgNVHQ8B - Af8EBAMCAYYwDQYJKoZIhvcNAQELBQADggIBAF/gyOaUKw0AUxfoWfC4+hsD/QFg - h+GvOTrT+xA5Z8qpaPJDJijVQ8zAVFRyUsZZ9ZXe+QkIqP1WXnX0ROeDJ3LRnaoO - Vq/jy1OratWDsoNCvhjY5ZY2eZh2CXQVj40BD6iZJpfgNayDsId7wUKTraBaZ+k4 - NXu65f6objeIx8febnazV7s9C0Ola2fpdv7/JmiiizFMn62codyztA6J9+HXirc5 - Pq+RKVqPvBEWRi2LKAsbOubFklXTwe8cTwmMFUT2BPp6gpwIXtaSOpBQX/Ynthp5 - LRGU/koLZSKAeYIoUPH4pJHe89fpgtOuKBjRlOFdnUjJ90xIh2dyZm3G4JyINwKF - HrdGsu+RunUtE1AfT5S21ilcSjqLvQUfciWEyRcnmAyi/9o7upJlQCNGcPy3l5kJ - VdpRBtmVK08k1S9HtvQvqY82fDEnbxzFOla2uPDQ3sE1LodvY4KUZrA9ML3EUyeG - F5mvvhUOSMkmB8VouE2gt0g4rFXtHL6nHQ7rr1Ha/xcm/dVQY4e4Z43OYEflRkNV - R6VdSNWq3Voh4ASrLfuv4/5Mbt5BnLKvzvnZVeNmJIh2Rc/eYfao1K7K6siAUhP2 - ONklIbbx/WISO5Vchcw65DclkEBZos2KqRoMb/Rxn5sFIvRWgrXvzw39o8agWO0K - 9jGyW0SYdK9x4Qxn - -----END CERTIFICATE----- -ldapCaCertFile: /etc/ssl/certs/cacert.crt -ldapDomain: "erc.monash.edu.au" -ldapURI: "ldaps://hpcldap0.erc.monash.edu.au:636" -ldapROURI: "ldaps://hpcldap1.erc.monash.edu.au:636" -ldapBindDN: "cn=ldapuser,ou=People,dc=erc,dc=monash,dc=edu,dc=au" -ldapBindDNPassword: "thisisafakepassword" -ldapManagerDN: "cn=Manager,dc=erc,dc=monash,dc=edu,dc=au" -ldapBase: "dc=erc,dc=monash,dc=edu,dc=au" -ldapGroupBase: "ou=Groups,dc=erc,dc=monash,dc=edu,dc=au" -ldapRfc2307Pam: "" -ldap_access_filter: "(&(objectClass=posixAccount)(memberOf=cn=m3,ou=aclgroups,dc=erc,dc=monash,dc=edu,dc=au))" +#ldapServerHostIpLine: "118.138.235.140 hpcldaptest.example.com" +ldapServerHostName: hpcldaptest.example.com +ldapServerIP: 118.138.235.140 +#ldapCaCertFile: /etc/ssl/certs/cacert.crt +#ldapDomain: "cicd.test.au" +#ldapDomain: "dc=cicd,dc=hpccicd,dc=cloud,dc=au" +#ldapBase: "dc=cicd,dc=test,dc=au" +#ldapURI: "ldaps://hpcldap0.erc.monash.edu.au:636" +#ldapROURI: "ldaps://hpcldap1.erc.monash.edu.au:636" +#ldapBindDN: "cn=ldapuser,ou=People,dc=erc,dc=monash,dc=edu,dc=au" +#ldapBindDNPassword: "thisisafakepassword" +#ldapManagerDN: "cn=Manager,dc=erc,dc=monash,dc=edu,dc=au" +#ldapBase: "dc=erc,dc=monash,dc=edu,dc=au" +#ldapGroupBase: "ou=Groups,dc=erc,dc=monash,dc=edu,dc=au" +#ldapRfc2307Pam: "" +#ldap_access_filter: "(&(objectClass=posixAccount)(memberOf=cn=m3,ou=aclgroups,dc=erc,dc=monash,dc=edu,dc=au))" + +# variables for the server role +#ou=aclgroups,dc=erc,dc=monash,dc=edu,dc=au +#ldapAclGroupBase: "ou=aclgroups,{{ ldapDomain }}" +#ldapUserBase: "ou=People,{{ ldapDomain }}" +#ldapManager: "cn=Manager,{{ ldapDomain }}" +#ldapBindDN: "cn=ldapuser,ou=People,{{ ldapDomain }}" +#ldapGroupBase: "ou=Groups,{{ ldapDomain }}" +#ldapAccountBase: "ou=Accounts,{{ ldapDomain }}" + +#ldapDomain: "dc=example,dc=com" +ldapDomain: "example.com" +#ldapBase: "dc=cicd,dc=test,dc=au" +ldapURI: "ldap://hpcldaptest.example.com" +ldapBindDN: "cn=read-only-admin,dc=example,dc=com" +#ldap_access_filter: "(&(objectClass=posixAccount)(memberOf=ou=People,ou=People,dc=example,dc=com))" +ldap_access_filter: "(&(objectClass=posixAccount))" \ No newline at end of file -- GitLab