Updated all templates to use instance variables

This commit is contained in:
Ossi Salmi 2013-05-05 00:07:55 +03:00
parent a0c854d3c0
commit dc51af1ca2
113 changed files with 527 additions and 522 deletions

View file

@ -1,2 +1,2 @@
puppet/admin@<%= kerberos_realm %> ci */*@<%= kerberos_realm %>
smbkrb5pwd/<%= homename %>@<%= kerberos_realm %> ac *@<%= kerberos_realm %>
puppet/admin@<%= @kerberos_realm %> ci */*@<%= @kerberos_realm %>
smbkrb5pwd/<%= @homename %>@<%= @kerberos_realm %> ac *@<%= @kerberos_realm %>

View file

@ -4,9 +4,9 @@
kdc_tcp_ports = 88
[realms]
<%= kerberos_realm %> = {
database_module = ldap.<%= kerberos_realm.downcase %>
key_stash_file = /srv/kerberos/.k5.<%= kerberos_realm %>
<%= @kerberos_realm %> = {
database_module = ldap.<%= @kerberos_realm.downcase %>
key_stash_file = /srv/kerberos/.k5.<%= @kerberos_realm %>
max_life = 24h 0m 0s
max_renewable_life = 7d 0h 0m 0s
master_key_type = aes256-cts-hmac-sha1-96
@ -14,14 +14,14 @@
}
[dbdefaults]
ldap_kerberos_container_dn = "ou=system,<%= ldap_basedn %>"
ldap_kerberos_container_dn = "ou=system,<%= @ldap_basedn %>"
[dbmodules]
ldap.<%= kerberos_realm.downcase %> = {
ldap.<%= @kerberos_realm.downcase %> = {
db_library = kldap
ldap_kerberos_container_dn = ou=system,<%= ldap_basedn %>
ldap_kdc_dn = "uid=krb5admin,ou=system,<%= ldap_basedn %>"
ldap_kadmind_dn = "uid=krb5admin,ou=system,<%= ldap_basedn %>"
ldap_service_password_file = "/srv/kerberos/.ldap.<%= kerberos_realm %>"
ldap_servers = "<%= ldap_server.join(" ") %>"
ldap_kerberos_container_dn = ou=system,<%= @ldap_basedn %>
ldap_kdc_dn = "uid=krb5admin,ou=system,<%= @ldap_basedn %>"
ldap_kadmind_dn = "uid=krb5admin,ou=system,<%= @ldap_basedn %>"
ldap_service_password_file = "/srv/kerberos/.ldap.<%= @kerberos_realm %>"
ldap_servers = "<%= @ldap_server.join(" ") %>"
}

View file

@ -4,9 +4,9 @@
kdc_tcp_ports = 88
[realms]
<%= kerberos_realm %> = {
database_name = /srv/kerberos/db.<%= kerberos_realm %>
key_stash_file = /srv/kerberos/.k5.<%= kerberos_realm %>
<%= @kerberos_realm %> = {
database_name = /srv/kerberos/db.<%= @kerberos_realm %>
key_stash_file = /srv/kerberos/.k5.<%= @kerberos_realm %>
max_life = 24h 0m 0s
max_renewable_life = 7d 0h 0m 0s
master_key_type = aes256-cts-hmac-sha1-96

View file

@ -1,26 +1,26 @@
[libdefaults]
default_realm = <%= kerberos_realm %>
default_realm = <%= @kerberos_realm %>
dns_lookup_realm = false
dns_lookup_kdc = false
ticket_lifetime = 24h
forwardable = yes
[domain_realm]
<%= kerberos_realm.downcase %> = <%= kerberos_realm %>
.<%= kerberos_realm.downcase %> = <%= kerberos_realm %>
<%= @kerberos_realm.downcase %> = <%= @kerberos_realm %>
.<%= @kerberos_realm.downcase %> = <%= @kerberos_realm %>
[realms]
<%= kerberos_realm -%> = {
<% kerberos_kdc.each do |kdc| -%>
<%= @kerberos_realm -%> = {
<% @kerberos_kdc.each do |kdc| -%>
kdc = <%= kdc %>
<% end -%>
admin_server = <% if has_variable?('kerberos_kadmin') %><%= kerberos_kadmin %><% else %><%= kerberos_kdc[0] %><% end %>
<% if has_variable?('kerberos_kpasswd') -%>
kpasswd_server = <%= kerberos_kpasswd %>
admin_server = <% if @kerberos_kadmin %><%= @kerberos_kadmin %><% else %><%= @kerberos_kdc[0] %><% end %>
<% if @kerberos_kpasswd -%>
kpasswd_server = <%= @kerberos_kpasswd %>
<% end -%>
}
<% if kernel == 'Linux' -%>
<% if @kernel == 'Linux' -%>
[appdefaults]
pam = {
debug = false