2013-05-18 21:07:10 +00:00
|
|
|
---
|
|
|
|
- name: install pam_url
|
2017-10-09 00:37:39 +02:00
|
|
|
package: name=pam_url state=present
|
2013-05-21 20:15:34 +00:00
|
|
|
tags:
|
|
|
|
- packages
|
2015-11-09 17:55:30 +00:00
|
|
|
when: ansible_distribution_major_version|int < 22
|
|
|
|
|
|
|
|
- name: install pam_url
|
|
|
|
dnf: name=pam_url state=present
|
|
|
|
tags:
|
|
|
|
- packages
|
|
|
|
when: ansible_distribution_major_version|int > 21
|
2013-05-18 21:07:10 +00:00
|
|
|
|
|
|
|
- name: /etc/pki/tls/private/totpcgi.pem
|
2015-09-25 18:16:23 +00:00
|
|
|
copy: src="{{ private }}/files/2fa-certs/keys/{{ inventory_hostname }}.pem" dest=/etc/pki/tls/private/totpcgi.pem mode=0400
|
2013-05-21 20:15:34 +00:00
|
|
|
tags:
|
|
|
|
- config
|
2013-05-18 21:07:10 +00:00
|
|
|
|
|
|
|
- name: /etc/pki/tls/private/totpcgi-ca.cert
|
2015-09-25 18:16:23 +00:00
|
|
|
copy: src="{{ private }}/files/2fa-certs/keys/ca.crt" dest=/etc/pki/tls/private/totpcgi-ca.cert mode=0400
|
2013-05-21 20:15:34 +00:00
|
|
|
tags:
|
|
|
|
- config
|
2013-05-18 21:07:10 +00:00
|
|
|
|
|
|
|
- name: /etc/pam_url.conf - split for staging/phx2/everyone else
|
2014-01-01 19:15:11 +00:00
|
|
|
template: src={{ item }} dest=/etc/pam_url.conf mode=0644
|
2013-05-18 21:07:10 +00:00
|
|
|
with_first_found:
|
2014-01-01 19:15:11 +00:00
|
|
|
- "{{ files }}/2fa/pam_url.conf.{{ inventory_hostname }}"
|
|
|
|
- "{{ files }}/2fa/pam_url.conf.{{ ansible_domain }}"
|
2014-11-04 02:21:34 +00:00
|
|
|
- "{{ files }}/2fa/pam_url.conf.{{ datacenter }}"
|
2014-01-01 19:15:11 +00:00
|
|
|
- "{{ files }}/2fa/pam_url.conf.j2"
|
2013-05-21 20:15:34 +00:00
|
|
|
tags:
|
|
|
|
- config
|
2013-05-18 21:07:10 +00:00
|
|
|
|
|
|
|
- name: /etc/pam.d/sudo
|
2016-07-05 16:20:26 +00:00
|
|
|
copy: src={{ item }} dest=/etc/pam.d/sudo mode=0644
|
2013-05-18 21:07:10 +00:00
|
|
|
with_first_found:
|
2016-07-05 16:20:26 +00:00
|
|
|
- "{{ files }}/2fa/sudo.pam.{{ inventory_hostname }}"
|
|
|
|
- "{{ files }}/2fa/sudo.pam.{{ ansible_domain }}"
|
|
|
|
- "{{ files }}/2fa/sudo.pam"
|
2013-05-21 20:15:34 +00:00
|
|
|
tags:
|
|
|
|
- config
|
2013-05-18 21:07:10 +00:00
|
|
|
|
|
|
|
|