ldap.conf 820 B

12345678910111213141516171819202122232425262728293031
  1. #
  2. # LDAP related stuff (Salt managed)
  3. #
  4. apply Service "ldaps" {
  5. import "generic-service"
  6. check_command = "ldap"
  7. vars.ldap_address = host.vars.ldap_fqdn
  8. vars.ldap_base = "dc=ffho,dc=net"
  9. vars.ldap_ssl = true
  10. vars.ldap_v3 = true
  11. assign where host.vars.ldap_fqdn && "ldap-master" in host.vars.roles
  12. assign where host.vars.ldap_fqdn && "ldap-replica" in host.vars.roles
  13. }
  14. apply Service "ldap_syncrepl_extended" {
  15. import "generic-service"
  16. check_command = "syncrepl_extended"
  17. vars.provider = "ldaps://ldap-master.srv.in.ffho.net"
  18. vars.consumer = "ldaps://" + host.vars.ldap_fqdn
  19. vars.base_dn = "dc=ffho,dc=net"
  20. vars.bind_dn = "uid=sync-check,ou=accounts,dc=ffho,dc=net"
  21. vars.bind_password = LdapSyncReplBindPassword
  22. assign where host.vars.ldap_fqdn && "ldap-replica" in host.vars.roles
  23. }