Fixed ca cert check removal from ldap::auth on CentOS 6.

This commit is contained in:
Timo Mkinen 2011-11-30 16:46:25 +02:00
parent 0abe627f54
commit 8e8515543d

View file

@ -34,7 +34,8 @@ class ldap::auth inherits ldap::client {
augeas { "nslcd-conf": augeas { "nslcd-conf":
changes => [ "set pagesize 500", changes => [ "set pagesize 500",
"set ssl on", "set ssl on",
"set tls_reqcert never", ], "set tls_reqcert never",
"rm tls_cacertdir", ],
onlyif => [ "get pagesize != 500", onlyif => [ "get pagesize != 500",
"get ssl != on", "get ssl != on",
"get tls_reqcert != never", ], "get tls_reqcert != never", ],
@ -44,7 +45,8 @@ class ldap::auth inherits ldap::client {
} }
augeas { "pam-ldap-conf": augeas { "pam-ldap-conf":
changes => [ "set ssl on", changes => [ "set ssl on",
"set pam_password exop", ], "set pam_password exop",
"rm tls_cacertdir", ],
onlyif => [ "get ssl != on", onlyif => [ "get ssl != on",
"get pam_password != exop", ], "get pam_password != exop", ],
incl => "/etc/pam_ldap.conf", incl => "/etc/pam_ldap.conf",