Implement Kerberos KDC-LDAP server role.
This commit is contained in:
parent
0597d178e0
commit
18067d8df3
8 changed files with 208 additions and 2 deletions
26
roles/krb5-kdc-ldap/templates/krb5.conf
Normal file
26
roles/krb5-kdc-ldap/templates/krb5.conf
Normal file
|
@ -0,0 +1,26 @@
|
|||
[libdefaults]
|
||||
default_realm = {{ ldap_domain | upper }}
|
||||
|
||||
[realms]
|
||||
{{ ldap_domain | upper }} = {
|
||||
kdc = {{ ansible_hostname }}
|
||||
admin_server = {{ ansible_hostname }}
|
||||
database_module = LDAP
|
||||
}
|
||||
|
||||
[domain_realm]
|
||||
.{{ ldap_domain }} = {{ ldap_domain | upper }}
|
||||
{{ ldap_domain }} = {{ ldap_domain | upper }}
|
||||
|
||||
[dbdefaults]
|
||||
ldap_kerberos_container_dn = cn=kerberos,{{ basedn }}
|
||||
|
||||
[dbmodules]
|
||||
LDAP = {
|
||||
db_library = kldap
|
||||
ldap_kdc_dn = cn=kdc,cn=kerberos,{{ basedn }}
|
||||
ldap_kadmind_dn = cn=kadmin,cn=kerberos,{{ basedn }}
|
||||
ldap_service_password_file = /etc/krb5kdc/service.keyfile
|
||||
ldap_servers = ldapi:///
|
||||
ldap_conns_per_server = 5
|
||||
}
|
Loading…
Add table
Add a link
Reference in a new issue