aboutsummaryrefslogtreecommitdiffstats
path: root/roles/space_server/tasks
diff options
context:
space:
mode:
authorEmil Renner Berthing <esmil@labitat.dk>2017-11-18 19:34:34 +0100
committerEmil Renner Berthing <esmil@labitat.dk>2017-11-18 19:36:08 +0100
commit505f69ee1540581eef2465dc420525213d278473 (patch)
tree018b20a4586ec1cdf12fff5157f19970767e6436 /roles/space_server/tasks
parent5517f9fcf84ad5043ae7e45da2b592c56a3e8e94 (diff)
downloadlabitat-ansible-505f69ee1540581eef2465dc420525213d278473.tar.gz
labitat-ansible-505f69ee1540581eef2465dc420525213d278473.tar.xz
labitat-ansible-505f69ee1540581eef2465dc420525213d278473.zip
space_server: radius: clean up configuration
Disable all the unused auth methods
Diffstat (limited to 'roles/space_server/tasks')
-rw-r--r--roles/space_server/tasks/radius.yml13
1 files changed, 10 insertions, 3 deletions
diff --git a/roles/space_server/tasks/radius.yml b/roles/space_server/tasks/radius.yml
index 3226d2e..9d494b3 100644
--- a/roles/space_server/tasks/radius.yml
+++ b/roles/space_server/tasks/radius.yml
@@ -22,8 +22,11 @@
- name: Disable default site
file:
- path: '/etc/raddb/sites-enabled/default'
+ path: '/etc/raddb/sites-enabled/{{ item }}'
state: absent
+ with_items:
+ - default
+ - inner-tunnel
notify:
- restart radiusd
- name: Configure radiusd
@@ -37,6 +40,7 @@
- radiusd.conf
- mods-available/eap
- sites-available/labitat
+ - sites-available/labitat-inner
notify:
- restart radiusd
- name: Configure radius clients
@@ -50,12 +54,15 @@
- restart radiusd
- name: Enable labitat site
file:
- path: '/etc/raddb/sites-enabled/labitat'
+ path: '/etc/raddb/sites-enabled/{{ item }}'
state: link
- src: '../sites-available/labitat'
+ src: '../sites-available/{{ item }}'
owner: root
group: radiusd
force: yes
+ with_items:
+ - labitat
+ - labitat-inner
notify:
- restart radiusd