[re2o-ldap] Deploy re2o-ldap-replica on re2o-dev, use terenez as main server

Signed-off-by: Yohann D'ANELLO <ynerant@crans.org>
certbot_on_virtu
Yohann D'ANELLO 2021-05-27 17:52:00 +02:00
parent f0698dddcd
commit 610bcfbe23
Signed by: _ynerant
GPG Key ID: 3A75C55819C8CF85
5 changed files with 17 additions and 3 deletions

View File

@ -4,7 +4,7 @@ glob_re2o_ldap_replica:
username: replicator
password: "{{ vault.ldap_replication_re2o_credentials }}"
suffix: dc=crans,dc=org
url: "ldaps://{{ query('ldap', 'ip', 're2o-ldap', 'adm') | ipv4 | first }}:636"
url: "ldaps://{{ query('ldap', 'ip', 'terenez', 'adm') | ipv4 | first }}:636"
root_password_hash: "{{ vault.ldap_master_password_hash }}"
certificate: "{{ vault.ldap_re2o_certificate }}"
private_key: "{{ vault.ldap_re2o_private_key }}"

View File

@ -2,3 +2,6 @@
interfaces:
adm: eth0
srv_nat: eth1
loc_re2o_ldap_replica:
url: "ldaps://{{ query('ldap', 'ip', 'yson-partou', 'adm') | ipv4 | first }}:636"

View File

@ -0,0 +1,3 @@
---
interfaces:
adm: eth0

5
hosts
View File

@ -158,8 +158,9 @@ radius
re2o.adm.crans.org
re2o.cachan-adm.crans.org
[re2o_ldap_replica:children]
adh_server
[re2o_ldap_replica]
re2o-dev.adm.crans.org
yson-partou.adm.crans.org
[reverseproxy]
hodaur.adm.crans.org

View File

@ -0,0 +1,7 @@
#!/usr/bin/env ansible-playbook
---
- hosts: re2o_ldap_replica
vars:
re2o_ldap_replica: "{{ glob_re2o_ldap_replica | default({}) | combine(loc_re2o_ldap_replica | default({})) }}"
roles:
- re2o-ldap-replica