* Fix server address * Force server certificate check * Use client certificates for authenticating to LDAP
11 lines
342 B
Django/Jinja
11 lines
342 B
Django/Jinja
ldap_servers: {% for server in ldap_server %}ldaps://{{ server }} {% endfor %}
|
|
|
|
ldap_search_base: {{ ldap_basedn }}
|
|
|
|
ldap_tls_check_peer: yes
|
|
ldap_tls_cacert_file: {{ tls_bundle }}
|
|
|
|
ldap_use_sasl: yes
|
|
ldap_mech: EXTERNAL
|
|
ldap_tls_cert: {{ tls_certs }}/{{ inventory_hostname }}.crt
|
|
ldap_tls_key: {{ tls_private }}/{{ inventory_hostname }}.key
|