forked from ISTI-ansible-roles/ansible-roles
18 lines
761 B
YAML
18 lines
761 B
YAML
---
|
|
ipa_server_install: False
|
|
ipa_server_use_dns: True
|
|
|
|
ipa_server_domain: example.org
|
|
ipa_server_realm: '{{ ipa_server_domain | upper }}'
|
|
|
|
ipa_server_packages:
|
|
- ipa-server
|
|
|
|
ipa_server_dns_packages:
|
|
- ipa-server-dns
|
|
|
|
ipa_installation_options: '--external-cert-file=/etc/pki/ipa/{{ ipa_letsencrypt_ca_filename }} --external-cert-file={{ letsencrypt_acme_certs_dir }}/fullchain --external-cert=file={{ letsencrypt_acme_certs_dir }}/privkey -r {{ ipa_server_realm }} -n {{ ipa_server_domain }} -a {{ ipa_admin_password }} -p {{ ipa_manager_password }} --hostname={{ ansible_fqdn }} -U --setup-dns --no-forwarders --no-reverse --zonemgr=s2i2s-master@isti.cnr.it'
|
|
|
|
ipa_ssl_letsencrypt_managed: True
|
|
ipa_letsencrypt_ca_filename: lets-encrypt-x3-cross-signed.pem
|