Update initial_install/roles/freeipa_client/tasks/main.yml
This commit is contained in:
@@ -1,45 +1,46 @@
|
||||
```yaml
|
||||
---
|
||||
|
||||
* name: Install FreeIPA client packages
|
||||
- name: Install FreeIPA client packages
|
||||
ansible.builtin.package:
|
||||
name:
|
||||
- freeipa-client
|
||||
- sssd
|
||||
- sssd-tools
|
||||
- oddjob
|
||||
- oddjob-mkhomedir
|
||||
state: present
|
||||
name:
|
||||
- freeipa-client
|
||||
- sssd
|
||||
- sssd-tools
|
||||
- oddjob
|
||||
- oddjob-mkhomedir
|
||||
state: present
|
||||
|
||||
* name: Set hostname (FQDN)
|
||||
- name: Set hostname (FQDN)
|
||||
ansible.builtin.hostname:
|
||||
name: "{{ inventory_hostname }}.im.lab"
|
||||
name: "{{ inventory_hostname }}.im.lab"
|
||||
|
||||
* name: Enroll to FreeIPA
|
||||
- name: Enroll to FreeIPA
|
||||
ansible.builtin.command: >
|
||||
ipa-client-install
|
||||
--domain=im.lab
|
||||
--realm=IPA.IM.LAB
|
||||
--server=ipa.im.lab
|
||||
--hostname={{ inventory_hostname }}.im.lab
|
||||
--mkhomedir
|
||||
--principal=admin
|
||||
--password={{ ipa_admin_password }}
|
||||
--unattended
|
||||
ipa-client-install
|
||||
--domain=im.lab
|
||||
--realm=IPA.IM.LAB
|
||||
--server=ipa.im.lab
|
||||
--hostname={{ inventory_hostname }}.im.lab
|
||||
--mkhomedir
|
||||
--principal=admin
|
||||
--password={{ ipa_admin_password }}
|
||||
--unattended
|
||||
args:
|
||||
creates: /etc/ipa/default.conf
|
||||
creates: /etc/ipa/default.conf
|
||||
|
||||
* name: Configure SSSD
|
||||
- name: Configure SSSD
|
||||
freeipa.ansible_freeipa.ipaclient_setup_sssd:
|
||||
servers:
|
||||
- ipa.im.lab
|
||||
domain: im.lab
|
||||
realm: IPA.IM.LAB
|
||||
hostname: "{{ inventory_hostname }}.im.lab"
|
||||
no_krb5_offline_passwords: true
|
||||
servers:
|
||||
- ipa.im.lab
|
||||
domain: im.lab
|
||||
realm: IPA.IM.LAB
|
||||
hostname: "{{ inventory_hostname }}.im.lab"
|
||||
no_krb5_offline_passwords: true
|
||||
notify: Restart SSSD
|
||||
|
||||
* name: Enable and start SSSD
|
||||
- name: Enable and start SSSD
|
||||
ansible.builtin.service:
|
||||
name: sssd
|
||||
state: started
|
||||
enabled: true
|
||||
name: sssd
|
||||
state: started
|
||||
enabled: true
|
||||
```
|
||||
|
||||
Reference in New Issue
Block a user