mirror of
https://github.com/rocky-linux/infrastructure
synced 2024-11-29 00:16:32 +00:00
8dc0268a50
This release adds support for privileges and roles for the initial IPA team accounts.
49 lines
1.4 KiB
YAML
49 lines
1.4 KiB
YAML
---
|
|
# Creates the first set of users for the IdM Infrastructure. This
|
|
# should create both regular and admin accounts for separation of
|
|
# privilege.
|
|
- name: "Creating Initial Accounts"
|
|
freeipa.ansible_freeipa.ipauser:
|
|
ipaadmin_password: "{{ ipaadmin_password }}"
|
|
name: "{{ item.name }}"
|
|
first: "{{ item.first }}"
|
|
last: "{{ item.last }}"
|
|
email: "{{ item.email }}"
|
|
password: "{{ item.password }}"
|
|
title: "{{ item.title }}"
|
|
loginshell: "{{ item.loginshell }}"
|
|
update_password: on_create
|
|
loop: "{{ users }}"
|
|
tags:
|
|
- users
|
|
|
|
- name: "Creating Initial Admin Accounts"
|
|
freeipa.ansible_freeipa.ipauser:
|
|
ipaadmin_password: "{{ ipaadmin_password }}"
|
|
name: "{{ item.name }}"
|
|
first: "{{ item.first }}"
|
|
last: "{{ item.last }}"
|
|
email: "{{ item.email }}"
|
|
password: "{{ item.password }}"
|
|
title: "{{ item.title }}"
|
|
loginshell: "{{ item.loginshell }}"
|
|
update_password: on_create
|
|
loop: "{{ adminusers }}"
|
|
tags:
|
|
- users
|
|
|
|
- name: "Creating Service Accounts"
|
|
freeipa.ansible_freeipa.ipauser:
|
|
ipaadmin_password: "{{ ipaadmin_password }}"
|
|
name: "{{ item.name }}"
|
|
first: "{{ item.first }}"
|
|
last: "{{ item.last }}"
|
|
email: "{{ item.email }}"
|
|
password: "{{ item.password }}"
|
|
title: "{{ item.title }}"
|
|
loginshell: "{{ item.loginshell }}"
|
|
update_password: on_create
|
|
loop: "{{ svcusers }}"
|
|
tags:
|
|
- users
|