ansible/group_vars/sssd.yml

22 lines
734 B
YAML

---
glob_sssd:
primary:
domain: ldap-adm.adm.crans.org
enumerate: "true"
servers:
- "ldaps://{{ query('ldap', 'ip4', 'ldap-adm', 'adm') }}/"
- "ldaps://{{ query('ldap', 'ip4', 'sam', 'adm') }}/"
- "ldaps://{{ query('ldap', 'ip4', 'daniel', 'adm') }}/"
- "ldaps://{{ query('ldap', 'ip4', 'jack', 'adm') }}/"
base: "dc=crans,dc=org"
secondary:
domain: re2o-ldap.adm.crans.org
enumerate: "false"
servers:
- "ldaps://{{ query('ldap', 'ip4', 're2o-ldap', 'adm') }}/"
- "ldaps://{{ query('ldap', 'ip4', 'terenez', 'adm') }}/"
base: "dc=crans,dc=org"
bind:
dn: "{{ vault.sssd.secondary_ldap.binddn }}"
passwd: "{{ vault.sssd.secondary_ldap.bindpass }}"