diff options
Diffstat (limited to 'zarb-ml/mageia-sysadm/2010-November/000569.html')
-rw-r--r-- | zarb-ml/mageia-sysadm/2010-November/000569.html | 112 |
1 files changed, 112 insertions, 0 deletions
diff --git a/zarb-ml/mageia-sysadm/2010-November/000569.html b/zarb-ml/mageia-sysadm/2010-November/000569.html new file mode 100644 index 000000000..15666e3c8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000569.html @@ -0,0 +1,112 @@ +<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2//EN"> +<HTML> + <HEAD> + <TITLE> [Mageia-sysadm] [264] update binddn and password file + </TITLE> + <LINK REL="Index" HREF="index.html" > + <LINK REL="made" HREF="mailto:mageia-sysadm%40mageia.org?Subject=Re%3A%20%5BMageia-sysadm%5D%20%5B264%5D%20update%20binddn%20and%20password%20file&In-Reply-To=%3C20101117151307.5AEA53FC09%40valstar.mageia.org%3E"> + <META NAME="robots" CONTENT="index,nofollow"> + <META http-equiv="Content-Type" content="text/html; charset=us-ascii"> + <LINK REL="Previous" HREF="000568.html"> + <LINK REL="Next" HREF="000570.html"> + </HEAD> + <BODY BGCOLOR="#ffffff"> + <H1>[Mageia-sysadm] [264] update binddn and password file</H1> + <B>root at mageia.org</B> + <A HREF="mailto:mageia-sysadm%40mageia.org?Subject=Re%3A%20%5BMageia-sysadm%5D%20%5B264%5D%20update%20binddn%20and%20password%20file&In-Reply-To=%3C20101117151307.5AEA53FC09%40valstar.mageia.org%3E" + TITLE="[Mageia-sysadm] [264] update binddn and password file">root at mageia.org + </A><BR> + <I>Wed Nov 17 16:13:07 CET 2010</I> + <P><UL> + <LI>Previous message: <A HREF="000568.html">[Mageia-sysadm] [263] - adapt the script to our infrastructure ( ie, use our domain, and create the directory holding the key ) +</A></li> + <LI>Next message: <A HREF="000570.html">[Mageia-sysadm] [265] - add a proto module for taking care of pam ( need pam_ldap, etc support, and a review of the pam config file too ) +</A></li> + <LI> <B>Messages sorted by:</B> + <a href="date.html#569">[ date ]</a> + <a href="thread.html#569">[ thread ]</a> + <a href="subject.html#569">[ subject ]</a> + <a href="author.html#569">[ author ]</a> + </LI> + </UL> + <HR> +<!--beginarticle--> +<PRE>Revision: 264 +Author: boklm +Date: 2010-11-17 16:13:07 +0100 (Wed, 17 Nov 2010) +Log Message: +----------- +update binddn and password file + +Modified Paths: +-------------- + puppet/modules/restrictshell/manifests/init.pp + puppet/modules/restrictshell/templates/ldap-sshkey2file.py + +Modified: puppet/modules/restrictshell/manifests/init.pp +=================================================================== +--- puppet/modules/restrictshell/manifests/init.pp 2010-11-17 14:28:30 UTC (rev 263) ++++ puppet/modules/restrictshell/manifests/init.pp 2010-11-17 15:13:07 UTC (rev 264) +@@ -1,10 +1,11 @@ +-#TODO: add support for pkgsubmit + class restrictshell { + $allow_svn = "0" + $allow_git = "0" + $allow_rsync = "0" + $allow_pkgsubmit = "0" + ++ $ldap_pwfile = "/etc/ldap.secret" ++ + class allow_svn_git_pkgsubmit { + $allow_svn = "1" + $allow_git = "1" + +Modified: puppet/modules/restrictshell/templates/ldap-sshkey2file.py +=================================================================== +--- puppet/modules/restrictshell/templates/ldap-sshkey2file.py 2010-11-17 14:28:30 UTC (rev 263) ++++ puppet/modules/restrictshell/templates/ldap-sshkey2file.py 2010-11-17 15:13:07 UTC (rev 264) +@@ -18,8 +18,8 @@ + random.shuffle(uris) + uri = " ".join(uris) + timeout=5 +-binddn="uid=sshkeyreader,ou=System Accounts,%s" % basedn +-pwfile="/etc/sshkeyreader.pw" ++binddn="cn=<%= fqdn %>,ou=Hosts," % basedn ++pwfile="<%= ldap_pwfile %>" + # filter out disabled accounts also + # too bad uidNumber doesn't support >= filters + filter="(&(objectClass=inetOrgPerson)(objectClass=ldapPublicKey)(objectClass=posixAccount)(sshPublicKey=*)(!(shadowExpire=*)))" +-------------- next part -------------- +An HTML attachment was scrubbed... +URL: </pipermail/mageia-sysadm/attachments/20101117/9a3e1b4a/attachment-0001.html> +</PRE> + + + + + + + + + + +<!--endarticle--> + <HR> + <P><UL> + <!--threads--> + <LI>Previous message: <A HREF="000568.html">[Mageia-sysadm] [263] - adapt the script to our infrastructure ( ie, use our domain, and create the directory holding the key ) +</A></li> + <LI>Next message: <A HREF="000570.html">[Mageia-sysadm] [265] - add a proto module for taking care of pam ( need pam_ldap, etc support, and a review of the pam config file too ) +</A></li> + <LI> <B>Messages sorted by:</B> + <a href="date.html#569">[ date ]</a> + <a href="thread.html#569">[ thread ]</a> + <a href="subject.html#569">[ subject ]</a> + <a href="author.html#569">[ author ]</a> + </LI> + </UL> + +<hr> +<a href="https://www.mageia.org/mailman/listinfo/mageia-sysadm">More information about the Mageia-sysadm +mailing list</a><br> +</body></html> |