forked from jakub/ansible
Update initial_install/roles/freeipa_client/tasks/main.yml
This commit is contained in:
@@ -1,3 +1,4 @@
|
|||||||
|
```yaml
|
||||||
---
|
---
|
||||||
- name: Install FreeIPA client packages
|
- name: Install FreeIPA client packages
|
||||||
ansible.builtin.package:
|
ansible.builtin.package:
|
||||||
@@ -9,10 +10,9 @@
|
|||||||
- oddjob-mkhomedir
|
- oddjob-mkhomedir
|
||||||
state: present
|
state: present
|
||||||
|
|
||||||
- name: Set hostname
|
- name: Set hostname (FQDN!)
|
||||||
ansible.builtin.hostname:
|
ansible.builtin.hostname:
|
||||||
name: "{{ inventory_hostname }}"
|
name: "{{ inventory_hostname }}.im.lab"
|
||||||
|
|
||||||
|
|
||||||
- name: Enroll to FreeIPA
|
- name: Enroll to FreeIPA
|
||||||
ansible.builtin.command: >
|
ansible.builtin.command: >
|
||||||
@@ -20,8 +20,10 @@
|
|||||||
--domain=im.lab
|
--domain=im.lab
|
||||||
--realm=IPA.IM.LAB
|
--realm=IPA.IM.LAB
|
||||||
--server=ipa.im.lab
|
--server=ipa.im.lab
|
||||||
--hostname={{ inventory_hostname }}
|
--hostname={{ inventory_hostname }}.im.lab
|
||||||
--mkhomedir
|
--mkhomedir
|
||||||
|
--principal=admin
|
||||||
|
--password={{ ipa_admin_password }}
|
||||||
--unattended
|
--unattended
|
||||||
args:
|
args:
|
||||||
creates: /etc/ipa/default.conf
|
creates: /etc/ipa/default.conf
|
||||||
@@ -31,7 +33,7 @@
|
|||||||
servers: ["ipa.im.lab"]
|
servers: ["ipa.im.lab"]
|
||||||
domain: im.lab
|
domain: im.lab
|
||||||
realm: IPA.IM.LAB
|
realm: IPA.IM.LAB
|
||||||
hostname: "{{ inventory_hostname }}"
|
hostname: "{{ inventory_hostname }}.im.lab"
|
||||||
no_krb5_offline_passwords: yes
|
no_krb5_offline_passwords: yes
|
||||||
notify: Restart SSSD
|
notify: Restart SSSD
|
||||||
|
|
||||||
@@ -40,3 +42,4 @@
|
|||||||
name: sssd
|
name: sssd
|
||||||
state: started
|
state: started
|
||||||
enabled: true
|
enabled: true
|
||||||
|
```
|
||||||
|
|||||||
Reference in New Issue
Block a user