feat: add openldap role

- add basic openldap role
- manage certificates for openldap
This commit is contained in:
Ben Vincent 2024-06-30 13:06:44 +10:00
parent 856a3901ac
commit e6f243ef60
2 changed files with 17 additions and 0 deletions

View File

@ -0,0 +1,7 @@
---
# additional altnames
profiles::pki::vault::alt_names:
- ldap.main.unkin.net
- ldap.service.consul
- ldap.query.consul
- "ldap.service.%{facts.country}-%{facts.region}.consul"

View File

@ -0,0 +1,10 @@
# a role to deploy an openldap master
class roles::infra::auth::openldap {
if $facts['firstrun'] {
include profiles::defaults
include profiles::firstrun::init
}else{
include profiles::defaults
include profiles::base
}
}