Added acl list to kerberos admin server.
This commit is contained in:
parent
9def142f98
commit
b6ef635bec
2 changed files with 11 additions and 0 deletions
|
@ -142,6 +142,16 @@ class kerberos::server inherits kerberos::client {
|
|||
subscribe => File["/etc/krb5.conf"],
|
||||
}
|
||||
|
||||
file { "/var/kerberos/krb5kdc/kadm5.acl":
|
||||
ensure => present,
|
||||
content => template("kerberos/kadm5.acl.erb"),
|
||||
mode => "0600",
|
||||
owner => "root",
|
||||
group => "root",
|
||||
require => Package["krb5-server"],
|
||||
notify => Service["kadmin"],
|
||||
}
|
||||
|
||||
service { "kadmin":
|
||||
ensure => running,
|
||||
enable => true,
|
||||
|
|
1
kerberos/templates/kadm5.acl.erb
Normal file
1
kerberos/templates/kadm5.acl.erb
Normal file
|
@ -0,0 +1 @@
|
|||
puppet/admin@<%= kerberos_realm %> ci */*@<%= kerberos_realm %>
|
Loading…
Add table
Reference in a new issue