Fixed ca cert check removal from ldap::auth on CentOS 6.
This commit is contained in:
parent
0abe627f54
commit
8e8515543d
1 changed files with 4 additions and 2 deletions
|
@ -34,7 +34,8 @@ class ldap::auth inherits ldap::client {
|
||||||
augeas { "nslcd-conf":
|
augeas { "nslcd-conf":
|
||||||
changes => [ "set pagesize 500",
|
changes => [ "set pagesize 500",
|
||||||
"set ssl on",
|
"set ssl on",
|
||||||
"set tls_reqcert never", ],
|
"set tls_reqcert never",
|
||||||
|
"rm tls_cacertdir", ],
|
||||||
onlyif => [ "get pagesize != 500",
|
onlyif => [ "get pagesize != 500",
|
||||||
"get ssl != on",
|
"get ssl != on",
|
||||||
"get tls_reqcert != never", ],
|
"get tls_reqcert != never", ],
|
||||||
|
@ -44,7 +45,8 @@ class ldap::auth inherits ldap::client {
|
||||||
}
|
}
|
||||||
augeas { "pam-ldap-conf":
|
augeas { "pam-ldap-conf":
|
||||||
changes => [ "set ssl on",
|
changes => [ "set ssl on",
|
||||||
"set pam_password exop", ],
|
"set pam_password exop",
|
||||||
|
"rm tls_cacertdir", ],
|
||||||
onlyif => [ "get ssl != on",
|
onlyif => [ "get ssl != on",
|
||||||
"get pam_password != exop", ],
|
"get pam_password != exop", ],
|
||||||
incl => "/etc/pam_ldap.conf",
|
incl => "/etc/pam_ldap.conf",
|
||||||
|
|
Loading…
Add table
Add a link
Reference in a new issue