3
0
forked from jakub/ansible

Update initial_install/roles/freeipa_client/tasks/main.yml

This commit is contained in:
2026-04-24 14:43:37 +00:00
parent becc21ff9e
commit 9d9695a7b3
@@ -1,6 +1,6 @@
```yaml
--- ---
- name: Install FreeIPA client packages
* name: Install FreeIPA client packages
ansible.builtin.package: ansible.builtin.package:
name: name:
- freeipa-client - freeipa-client
@@ -10,11 +10,11 @@
- oddjob-mkhomedir - oddjob-mkhomedir
state: present state: present
- name: Set hostname (FQDN!) * name: Set hostname (FQDN)
ansible.builtin.hostname: ansible.builtin.hostname:
name: "{{ inventory_hostname }}.im.lab" name: "{{ inventory_hostname }}.im.lab"
- name: Enroll to FreeIPA * name: Enroll to FreeIPA
ansible.builtin.command: > ansible.builtin.command: >
ipa-client-install ipa-client-install
--domain=im.lab --domain=im.lab
@@ -28,18 +28,18 @@
args: args:
creates: /etc/ipa/default.conf creates: /etc/ipa/default.conf
- name: Configure SSSD * name: Configure SSSD
freeipa.ansible_freeipa.ipaclient_setup_sssd: freeipa.ansible_freeipa.ipaclient_setup_sssd:
servers: ["ipa.im.lab"] servers:
- ipa.im.lab
domain: im.lab domain: im.lab
realm: IPA.IM.LAB realm: IPA.IM.LAB
hostname: "{{ inventory_hostname }}.im.lab" hostname: "{{ inventory_hostname }}.im.lab"
no_krb5_offline_passwords: yes no_krb5_offline_passwords: true
notify: Restart SSSD notify: Restart SSSD
- name: Enable and start SSSD * name: Enable and start SSSD
ansible.builtin.service: ansible.builtin.service:
name: sssd name: sssd
state: started state: started
enabled: true enabled: true
```