Skip to content
Snippets Groups Projects

Compare revisions

Changes are shown as if the source revision was being merged into the target revision. Learn more about comparing revisions.

Source

Select target project
No results found

Target

Select target project
  • hpc-team/HPCasCode
  • chines/ansible_cluster_in_a_box
2 results
Show changes
Showing
with 88 additions and 9 deletions
dn: cn=monitor,ou=People,dc=erc,dc=monash,dc=edu,dc=au
objectClass: inetOrgPerson
cn: binddn
sn: binddn
userPassword: {{ ldapBindDNHash.stdout }}
\ No newline at end of file
dn: olcOverlay=ppolicy,olcDatabase={2}bdb,cn=config dn: olcOverlay=ppolicy,{{ dbname }},cn=config
olcOverlay: ppolicy olcOverlay: ppolicy
objectClass: olcOverlayConfig objectClass: olcOverlayConfig
objectClass: olcPPolicyConfig objectClass: olcPPolicyConfig
olcPPolicyHashCleartext: TRUE olcPPolicyHashCleartext: TRUE
olcPPolicyUseLockout: FALSE olcPPolicyUseLockout: FALSE
olcPPolicyDefault: cn=default,ou=pwpolicies,{{ ldapDomain }} olcPPolicyDefault: cn=default,ou=pwpolicies,{{ ldapBase }}
dn: ou=pwpolicies,{{ ldapDomain }} dn: ou=pwpolicies,{{ ldapBase }}
objectClass: organizationalUnit objectClass: organizationalUnit
objectClass: top objectClass: top
ou: pwpolicies ou: pwpolicies
dn: {{ ldapAccountBase }}
objectClass: organizationalUnit
dn: olcOverlay=refint,{{ dbname }},cn=config
objectClass: olcConfig
objectClass: olcOverlayConfig
objectClass: olcRefintConfig
objectClass: top
olcOverlay: refint
olcRefintAttribute: memberof member manager owner
dn: {{ ldapDomain }} dn: {{ ldapBase }}
objectClass: dcObject objectClass: dcObject
objectClass: organization objectClass: organization
o: {{ ansible_domain }} o: {{ ansible_domain }}
......
dn: cn=config dn: cn=config
replace: olcTLSCACertificateFile replace: olcTLSCACertificateFile
olcTLSCACertificateFile: /etc/openldap/certs/cacert.pem olcTLSCACertificateFile: {{ ldapCAChainDest }}
- -
replace: olcTLSCertificateFile replace: olcTLSCertificateFile
olcTLSCertificateFile: /etc/openldap/certs/ldapcert.pem olcTLSCertificateFile: {{ ldapCertDest }}
- -
replace: olcTLSCertificateKeyFile replace: olcTLSCertificateKeyFile
olcTLSCertificateKeyFile: /etc/openldap/certs/ldapkey.pem olcTLSCertificateKeyFile: {{ ldapKeyDest }}
dn: {{ dbname }},cn=config
changetype: modify
replace: olcSecurity
olcSecurity: tls=1
---
ldapDir: "/etc/openldap"
module_path: "/usr/lib64/openldap/"
...@@ -3,3 +3,6 @@ ...@@ -3,3 +3,6 @@
- openldap-servers - openldap-servers
- openldap-clients - openldap-clients
- openssl - openssl
dbname: olcDatabase={2}bdb
ldapuser: ldap
ldapgroup: ldap
...@@ -3,3 +3,6 @@ ...@@ -3,3 +3,6 @@
- openldap-servers - openldap-servers
- openldap-clients - openldap-clients
- openssl - openssl
dbname: olcDatabase={2}bdb
ldapuser: ldap
ldapgroup: ldap
---
system_packages:
- openldap-servers
- openldap-clients
- openssl
dbname: olcDatabase={2}bdb
ldapuser: ldap
ldapgroup: ldap
---
system_packages:
- openldap-servers
- openldap-clients
- openssl
ldapuser: ldap
ldapgroup: ldap
dbname: olcDatabase={2}hdb
---
ldapDir: "/etc/ldap"
module_path: "/usr/lib/ldap"
---
system_packages:
- slapd
- ldap-utils
- openssl
ldapuser: openldap
ldapgroup: openldap
dbname: olcDatabase={1}hdb
---
system_packages:
- slapd
- ldap-utils
- openssl
ldapuser: openldap
ldapgroup: openldap
dbname: olcDatabase={1}mdb
---
ldapDir: "/etc/ldap"
module_path: "/usr/lib/ldap"
---
system_packages:
- slapd
- ldap-utils
- openssl
ldapuser: openldap
ldapgroup: openldap
dbname: olcDatabase={1}mdb
--- ---
ldapuser: ldap ldapCertDest: "{{ ldapDir }}/ssl/certs/ldapcert.pem"
ldapgroup: ldap ldapKeyDest: "{{ ldapDir }}/ssl/private/ldapkey.pem"
ldapCAChainDest: "{{ ldapDir }}/ssl/certs/cacert.pem"
ldapCARootDest: "{{ ldapDir }}/ssl/certs/ca_cert.pem"