- Apr 04, 2018
-
-
Thomas Woerner authored
The support for external cert files is not complete yet. Please have a look at the example inventory file inventory/hosts.replica and also the install and uninstall playbook files install-replica.yml and uninstall-replica.yml
-
Thomas Woerner authored
b29db07c3b3d8937f53684fdbba985fec525d69d by Christian Heimes Replace custom file_exists() and dir_exists() functions with proper functions from Python's stdlib. The change also gets rid of pylint's invalid bad-python3-import error, https://github.com/PyCQA/pylint/issues/1565
-
- Feb 21, 2018
-
-
Thomas Woerner authored
tasks.create_tmpfiles_dirs does not support options for FreeIPA 4.5
-
Thomas Woerner authored
Introduce setup files that copy roles to relevant directories
-
- Feb 13, 2018
-
-
Juan Antonio Osorio Robles authored
This enables easy installation of these roles through pip.
-
- Feb 09, 2018
-
-
Thomas Woerner authored
options.kasp_db_file is used in dns.install_check if options.dnssec_master is enabled. kasp_db_file defauts to None and is only a supported option in the post deployment ipa-dns-install script. Therefore it is suffient to set it to None.
-
Thomas Woerner authored
A new section has been added to configure firewalld automatically as the last step of the server installation. A new switch has been added to be able to turn firewalld configuration off: ipaserver_no_firewalld. It defaults to no.
-
Thomas Woerner authored
The client role is used also while installing the server. There has been an issue where the server installation has not been complete because of a playbook termination in the client. This has been fixed and the client and also the server are fully configured in the server installation.
-
Thomas Woerner authored
Currently only contains the ansible requirement: ansible>=2.4.1.0
-
Thomas Woerner authored
With FreeIPA 4.5 the functions save_state and configure_nisdomain have gotten new options. A version check has been added to ipaextras and ipanss to make sure that the modules are also working with FreeIPA 4.4.
-
Thomas Woerner authored
The roles ipaconf, krb5 and sssd have been using GPLv2+ in the license meta information while everything else is GPLv3. Therefore the license meta information has been changed to GPLv3.
-
Thomas Woerner authored
server install force and allow_zone_overlap fixes
-
Scott Poore authored
force and allow_zone_overlap options were missing from a couple places. Signed-off-by:
Scott Poore <spoore@redhat.com>
-
- Feb 01, 2018
-
-
Thomas Woerner authored
-
Thomas Woerner authored
-
Thomas Woerner authored
-
Thomas Woerner authored
-
Thomas Woerner authored
-
Thomas Woerner authored
-
Thomas Woerner authored
-
Thomas Woerner authored
-
Thomas Woerner authored
This is needed to fix the installation without configuring the dns server in the IPA server.
-
Thomas Woerner authored
The relative import of the distribution specific vars files requires to use is not working. {{ role_path }} needs to be used to force the load of the proper files.
-
Thomas Woerner authored
-
Thomas Woerner authored
The server role has different setting names: - groups.ipaserver: groups.ipaservers - ipaserver_domain: ipaclient_domain - ipaserver_realm: ipaclient_realm Both need to be supported to be able to sue the client role within the server role, but also standalone.
-
Thomas Woerner authored
-
Thomas Woerner authored
-
Thomas Woerner authored
-
- Jan 31, 2018
-
-
Thomas Woerner authored
-
- Jan 30, 2018
-
-
Thomas Woerner authored
forward_policy needs to be None for the DNS check for proper initialization if the user is not providing another forward_policy value. forward_policy will be set in the DNS check. no_dnssec_validation is enabled in the DNS check if the forwarders do not provide DNSSEC validation. Therefore this needs to be handed over to the dns installation later on. New return values for forward_policy and no_dnssec_validation have been added to the ipaserver_test module.
-
- Jan 29, 2018
-
-
Thomas Woerner authored
-
Thomas Woerner authored
-
Thomas Woerner authored
-
Thomas Woerner authored
The client settings are: ipaclient_mkhomedir ipaclient_no_ntp ipaclient_ssh_trust_dns ipaclient_no_ssh ipaclient_no_sshd ipaclient_no_dns_sshfp
-
Thomas Woerner authored
ipaserver_password has been renamed to ipaadmin_password ipaserver_dm_password has been renamed to ipadm_password
-
Thomas Woerner authored
With using the name password for the password return it will be hidden automatically and an error message will still be visible.
-
Thomas Woerner authored
-
Thomas Woerner authored
-
Thomas Woerner authored
-
Thomas Woerner authored
There is no way to repair a server installation like it is possible with a client.
-