ansible/group_vars/sssd.yml

22 lines
786 B
YAML

---
glob_sssd:
primary:
domain: tealc.adm.crans.org
enumerate: "true"
servers:
- "ldaps://{{ query('ldap','ip','tealc','adm') | ipv4 | first }}/"
- "ldaps://{{ query('ldap','ip','sam','adm') | ipv4 | first }}/"
- "ldaps://{{ query('ldap','ip','daniel','adm') | ipv4 | first }}/"
- "ldaps://{{ query('ldap','ip','jack','adm') | ipv4 | first }}/"
base: "dc=crans,dc=org"
secondary:
domain: re2o-ldap.adm.crans.org
enumerate: "false"
servers:
- "ldaps://{{ query('ldap','ip','re2o-ldap','adm') | ipv4 | first }}/"
- "ldaps://{{ query('ldap','ip','terenez','adm') | ipv4 | first }}/"
base: "dc=crans,dc=org"
bind:
dn: "cn=nslcd,ou=service-users,dc=crans,dc=org"
passwd: "{{ vault.ldap_nslcd_passwd }}"