ldap-adm → wall-e

main
_shirenn 2022-11-28 11:39:08 +01:00
parent 826d9e68bc
commit 4a633de452
13 changed files with 19 additions and 19 deletions

View File

@ -3,7 +3,7 @@ glob_ldap:
uri: 'ldap://re2o-ldap.adm.crans.org/' uri: 'ldap://re2o-ldap.adm.crans.org/'
users_base: 'cn=Utilisateurs,dc=crans,dc=org' users_base: 'cn=Utilisateurs,dc=crans,dc=org'
servers: servers:
- "{{ query('ldap', 'ip4', 'ldap-adm', 'adm') }}" - "{{ query('ldap', 'ip4', 'wall-e', 'adm') }}"
- "{{ query('ldap', 'ip4', 'sam', 'adm') }}" - "{{ query('ldap', 'ip4', 'sam', 'adm') }}"
- "{{ query('ldap', 'ip4', 'daniel', 'adm') }}" - "{{ query('ldap', 'ip4', 'daniel', 'adm') }}"
- "{{ query('ldap', 'ip4', 'jack', 'adm') }}" - "{{ query('ldap', 'ip4', 'jack', 'adm') }}"

View File

@ -12,4 +12,4 @@ glob_service_ssh_known_hosts:
frequency: "*/10 * * * *" frequency: "*/10 * * * *"
config: config:
ldap: ldap:
server: "ldaps://{{ query('ldap', 'ip4', 'ldap-adm', 'adm') }}" server: "ldaps://{{ query('ldap', 'ip4', 'wall-e', 'adm') }}"

View File

@ -13,7 +13,7 @@ glob_service_prometheus_target:
options: "" options: ""
config: config:
ldap: ldap:
server: "ldaps://{{ query('ldap', 'ip4', 'ldap-adm', 'adm') }}" server: "ldaps://{{ query('ldap', 'ip4', 'wall-e', 'adm') }}"
glob_ninjabot: glob_ninjabot:
config: config:

View File

@ -1,6 +1,6 @@
--- ---
glob_slapd: glob_slapd:
master_ip: "{{ query('ldap', 'ip4', 'ldap-adm', 'adm') }}" master_ip: "{{ query('ldap', 'ip4', 'wall-e', 'adm') }}"
regex: "^(role:(dhcp|dns|dns-primary|dns-secondary|ftp|gitlab|miroir|ntp|pve|radius|backup)|ecdsa-sha2-nistp256:.*|ssh-(ed25519|dss|rsa):.*|description:.*|location:.*)$" regex: "^(role:(dhcp|dns|dns-primary|dns-secondary|ftp|gitlab|miroir|ntp|pve|radius|backup)|ecdsa-sha2-nistp256:.*|ssh-(ed25519|dss|rsa):.*|description:.*|location:.*)$"
replication_credentials: "{{ vault.slapd.main.replication_credentials }}" replication_credentials: "{{ vault.slapd.main.replication_credentials }}"
private_key: "{{ vault.slapd.main.private_key }}" private_key: "{{ vault.slapd.main.private_key }}"

View File

@ -1,10 +1,10 @@
--- ---
glob_sssd: glob_sssd:
primary: primary:
domain: ldap-adm.adm.crans.org domain: wall-e.adm.crans.org
enumerate: "true" enumerate: "true"
servers: servers:
- "ldaps://{{ query('ldap', 'ip4', 'ldap-adm', 'adm') }}/" - "ldaps://{{ query('ldap', 'ip4', 'wall-e', 'adm') }}/"
- "ldaps://{{ query('ldap', 'ip4', 'sam', 'adm') }}/" - "ldaps://{{ query('ldap', 'ip4', 'sam', 'adm') }}/"
- "ldaps://{{ query('ldap', 'ip4', 'daniel', 'adm') }}/" - "ldaps://{{ query('ldap', 'ip4', 'daniel', 'adm') }}/"
- "ldaps://{{ query('ldap', 'ip4', 'jack', 'adm') }}/" - "ldaps://{{ query('ldap', 'ip4', 'jack', 'adm') }}/"

View File

@ -18,7 +18,7 @@ glob_service_proxmox_user:
config: config:
ldap: ldap:
admin: admin:
uri: "ldaps://{{ query('ldap', 'ip4', 'ldap-adm', 'adm') }}/" uri: "ldaps://{{ query('ldap', 'ip4', 'wall-e', 'adm') }}/"
userBase: "ou=passwd,dc=crans,dc=org" userBase: "ou=passwd,dc=crans,dc=org"
realm: "pam" realm: "pam"
dependencies: dependencies:

View File

@ -12,7 +12,7 @@ glob_service_proxmox_user:
config: config:
ldap: ldap:
admin: admin:
uri: "ldaps://{{ query('ldap', 'ip4', 'ldap-adm', 'adm') }}/" uri: "ldaps://{{ query('ldap', 'ip4', 'wall-e', 'adm') }}/"
userBase: "ou=passwd,dc=crans,dc=org" userBase: "ou=passwd,dc=crans,dc=org"
realm: "pam" realm: "pam"
user: user:

View File

@ -63,7 +63,7 @@ loc_wireguard:
loc_service_proxy: loc_service_proxy:
config: config:
ldap: ldap:
- server: "ldaps://{{ query('ldap', 'ip4', 'ldap-adm', 'adm') }}/" - server: "ldaps://{{ query('ldap', 'ip4', 'wall-e', 'adm') }}/"
protocol: "proxy" protocol: "proxy"
filter: ".adm.crans.org" filter: ".adm.crans.org"
proxy: proxy:

View File

@ -1,7 +0,0 @@
---
interfaces:
adm: ens18
loc_slapd:
ip: "{{ query('ldap', 'ip', 'ldap-adm', 'adm') | ipv4 | first }}"
replica: false

View File

@ -29,7 +29,7 @@ loc_wireguard:
loc_service_proxy: loc_service_proxy:
config: config:
ldap: ldap:
- server: "ldaps://{{ query('ldap', 'ip4', 'ldap-adm', 'adm') }}/" - server: "ldaps://{{ query('ldap', 'ip4', 'wall-e', 'adm') }}/"
- server: "ldaps://{{ query('ldap', 'ip4', 'ft', 'adm') }}/" - server: "ldaps://{{ query('ldap', 'ip4', 'ft', 'adm') }}/"
protocol: "proxy" protocol: "proxy"
filter: ".adm.crans.org" filter: ".adm.crans.org"

View File

@ -30,7 +30,7 @@ loc_wireguard:
loc_service_proxy: loc_service_proxy:
config: config:
ldap: ldap:
- server: "ldaps://{{ query('ldap', 'ip4', 'ldap-adm', 'adm') }}/" - server: "ldaps://{{ query('ldap', 'ip4', 'wall-e', 'adm') }}/"
- server: "ldaps://{{ query('ldap', 'ip4', 'thot', 'adm') }}/" - server: "ldaps://{{ query('ldap', 'ip4', 'thot', 'adm') }}/"
protocol: "proxy" protocol: "proxy"
filter: ".adm.crans.org" filter: ".adm.crans.org"

View File

@ -0,0 +1,7 @@
---
interfaces:
adm: ens18
loc_slapd:
ip: "{{ query('ldap', 'ip', 'wall-e', 'adm') | ipv4 | first }}"
replica: false

2
hosts
View File

@ -242,7 +242,7 @@ helloworld.adm.crans.org
daniel.adm.crans.org daniel.adm.crans.org
ft.adm.crans.org ft.adm.crans.org
jack.adm.crans.org jack.adm.crans.org
ldap-adm.adm.crans.org wall-e.adm.crans.org
sam.adm.crans.org sam.adm.crans.org
sputnik.adm.crans.org sputnik.adm.crans.org
thot.adm.crans.org thot.adm.crans.org