ansible/roles/saslauthd/templates/saslauthd.conf.j2
Timo Makinen a293945d04 saslauthd: Fix LDAP mech
* Fix server address
* Force server certificate check
* Use client certificates for authenticating to LDAP
2021-03-11 17:01:24 +00:00

11 lines
342 B
Django/Jinja

ldap_servers: {% for server in ldap_server %}ldaps://{{ server }} {% endfor %}
ldap_search_base: {{ ldap_basedn }}
ldap_tls_check_peer: yes
ldap_tls_cacert_file: {{ tls_bundle }}
ldap_use_sasl: yes
ldap_mech: EXTERNAL
ldap_tls_cert: {{ tls_certs }}/{{ inventory_hostname }}.crt
ldap_tls_key: {{ tls_private }}/{{ inventory_hostname }}.key