Updated all templates to use instance variables
This commit is contained in:
parent
a0c854d3c0
commit
dc51af1ca2
113 changed files with 527 additions and 522 deletions
|
@ -1,2 +1,2 @@
|
|||
puppet/admin@<%= kerberos_realm %> ci */*@<%= kerberos_realm %>
|
||||
smbkrb5pwd/<%= homename %>@<%= kerberos_realm %> ac *@<%= kerberos_realm %>
|
||||
puppet/admin@<%= @kerberos_realm %> ci */*@<%= @kerberos_realm %>
|
||||
smbkrb5pwd/<%= @homename %>@<%= @kerberos_realm %> ac *@<%= @kerberos_realm %>
|
||||
|
|
|
@ -4,9 +4,9 @@
|
|||
kdc_tcp_ports = 88
|
||||
|
||||
[realms]
|
||||
<%= kerberos_realm %> = {
|
||||
database_module = ldap.<%= kerberos_realm.downcase %>
|
||||
key_stash_file = /srv/kerberos/.k5.<%= kerberos_realm %>
|
||||
<%= @kerberos_realm %> = {
|
||||
database_module = ldap.<%= @kerberos_realm.downcase %>
|
||||
key_stash_file = /srv/kerberos/.k5.<%= @kerberos_realm %>
|
||||
max_life = 24h 0m 0s
|
||||
max_renewable_life = 7d 0h 0m 0s
|
||||
master_key_type = aes256-cts-hmac-sha1-96
|
||||
|
@ -14,14 +14,14 @@
|
|||
}
|
||||
|
||||
[dbdefaults]
|
||||
ldap_kerberos_container_dn = "ou=system,<%= ldap_basedn %>"
|
||||
ldap_kerberos_container_dn = "ou=system,<%= @ldap_basedn %>"
|
||||
|
||||
[dbmodules]
|
||||
ldap.<%= kerberos_realm.downcase %> = {
|
||||
ldap.<%= @kerberos_realm.downcase %> = {
|
||||
db_library = kldap
|
||||
ldap_kerberos_container_dn = ou=system,<%= ldap_basedn %>
|
||||
ldap_kdc_dn = "uid=krb5admin,ou=system,<%= ldap_basedn %>"
|
||||
ldap_kadmind_dn = "uid=krb5admin,ou=system,<%= ldap_basedn %>"
|
||||
ldap_service_password_file = "/srv/kerberos/.ldap.<%= kerberos_realm %>"
|
||||
ldap_servers = "<%= ldap_server.join(" ") %>"
|
||||
ldap_kerberos_container_dn = ou=system,<%= @ldap_basedn %>
|
||||
ldap_kdc_dn = "uid=krb5admin,ou=system,<%= @ldap_basedn %>"
|
||||
ldap_kadmind_dn = "uid=krb5admin,ou=system,<%= @ldap_basedn %>"
|
||||
ldap_service_password_file = "/srv/kerberos/.ldap.<%= @kerberos_realm %>"
|
||||
ldap_servers = "<%= @ldap_server.join(" ") %>"
|
||||
}
|
||||
|
|
|
@ -4,9 +4,9 @@
|
|||
kdc_tcp_ports = 88
|
||||
|
||||
[realms]
|
||||
<%= kerberos_realm %> = {
|
||||
database_name = /srv/kerberos/db.<%= kerberos_realm %>
|
||||
key_stash_file = /srv/kerberos/.k5.<%= kerberos_realm %>
|
||||
<%= @kerberos_realm %> = {
|
||||
database_name = /srv/kerberos/db.<%= @kerberos_realm %>
|
||||
key_stash_file = /srv/kerberos/.k5.<%= @kerberos_realm %>
|
||||
max_life = 24h 0m 0s
|
||||
max_renewable_life = 7d 0h 0m 0s
|
||||
master_key_type = aes256-cts-hmac-sha1-96
|
||||
|
|
|
@ -1,26 +1,26 @@
|
|||
[libdefaults]
|
||||
default_realm = <%= kerberos_realm %>
|
||||
default_realm = <%= @kerberos_realm %>
|
||||
dns_lookup_realm = false
|
||||
dns_lookup_kdc = false
|
||||
ticket_lifetime = 24h
|
||||
forwardable = yes
|
||||
|
||||
[domain_realm]
|
||||
<%= kerberos_realm.downcase %> = <%= kerberos_realm %>
|
||||
.<%= kerberos_realm.downcase %> = <%= kerberos_realm %>
|
||||
<%= @kerberos_realm.downcase %> = <%= @kerberos_realm %>
|
||||
.<%= @kerberos_realm.downcase %> = <%= @kerberos_realm %>
|
||||
|
||||
[realms]
|
||||
<%= kerberos_realm -%> = {
|
||||
<% kerberos_kdc.each do |kdc| -%>
|
||||
<%= @kerberos_realm -%> = {
|
||||
<% @kerberos_kdc.each do |kdc| -%>
|
||||
kdc = <%= kdc %>
|
||||
<% end -%>
|
||||
admin_server = <% if has_variable?('kerberos_kadmin') %><%= kerberos_kadmin %><% else %><%= kerberos_kdc[0] %><% end %>
|
||||
<% if has_variable?('kerberos_kpasswd') -%>
|
||||
kpasswd_server = <%= kerberos_kpasswd %>
|
||||
admin_server = <% if @kerberos_kadmin %><%= @kerberos_kadmin %><% else %><%= @kerberos_kdc[0] %><% end %>
|
||||
<% if @kerberos_kpasswd -%>
|
||||
kpasswd_server = <%= @kerberos_kpasswd %>
|
||||
<% end -%>
|
||||
}
|
||||
|
||||
<% if kernel == 'Linux' -%>
|
||||
<% if @kernel == 'Linux' -%>
|
||||
[appdefaults]
|
||||
pam = {
|
||||
debug = false
|
||||
|
|
Loading…
Add table
Add a link
Reference in a new issue