zabbix_server: fix saml setting + extract idp cert

This commit is contained in:
Francois Andrieu 2023-08-14 21:25:59 +02:00
parent 8f6a5122ce
commit e264bc8cae
No known key found for this signature in database
2 changed files with 5 additions and 2 deletions

View file

@ -66,7 +66,10 @@
- name: Install IDP certificate
ansible.builtin.copy:
src: "{{ private }}/files/saml2/{{ env }}/keys/idp.crt"
content: "{{ lookup('ansible.builtin.file',
private + '/files/saml2/' + env + '/keys/idp.crt')
| regex_search('-----BEGIN CERTIFICATE-----\n[^-]*\n-----END CERTIFICATE-----',
multiline=True) }}\n"
dest: /usr/share/zabbix/conf/certs/idp.crt
mode: 0644
owner: nginx

View file

@ -52,4 +52,4 @@ $IMAGE_FORMAT_DEFAULT = IMAGE_FORMAT_PNG;
//$SSO['SP_CERT'] = 'conf/certs/sp.crt';
//$SSO['IDP_CERT'] = 'conf/certs/idp.crt';
//$SSO['SETTINGS'] = [];
$SSO_SETTINGS=['strict' => false, 'baseurl' => "https://zabbix{{ env_suffix }}.fedoraproject.org", 'use_proxy_headers' => true]
$SSO['SETTINGS'] = ['strict' => false, 'baseurl' => "https://zabbix{{ env_suffix }}.fedoraproject.org", 'use_proxy_headers' => true];