@@ -14,7 +14,7 @@ ldaptoolbox_openldap_apt_validate_certs: "true"
14
14
15
15
# Packages
16
16
ldaptoolbox_openldap_packages_base : openldap-ltb, openldap-ltb-contrib-overlays, openldap-ltb-mdb-utils
17
- ldaptoolbox_openldap_packages_dependencies : libcrack2, curl
17
+ ldaptoolbox_openldap_packages_dependencies : libcrack2, curl, gpg
18
18
ldaptoolbox_openldap_packages_state : present
19
19
20
20
# Filesystem
@@ -25,7 +25,7 @@ ldaptoolbox_openldap_configuration_prefix: "config"
25
25
ldaptoolbox_openldap_configuration_owner : ldap
26
26
ldaptoolbox_openldap_configuration_group : ldap
27
27
ldaptoolbox_openldap_configuration_mode : 0600
28
- ldaptoolbox_openldap_sslgroup : " {{ 'root' if ansible_os_family == 'RedHat' else 'ssl-cert' }}"
28
+ ldaptoolbox_openldap_sslgroup : " {{ 'root' }}"
29
29
30
30
# OpenLDAP LTB CLI command path
31
31
ldaptoolbox_openldap_slapd_cli_cmd : /usr/local/openldap/sbin/slapd-cli
@@ -48,9 +48,7 @@ ldaptoolbox_openldap_custom_schema_list: []
48
48
ldaptoolbox_openldap_schema_dir : /usr/local/openldap/etc/openldap/schema
49
49
50
50
# Certificates
51
- ldaptoolbox_openldap_olcTLSCACertificateFile : " {{ '' if ansible_os_family == 'RedHat' else '/etc/ssl/certs/ca-certificates.crt' }}"
52
- ldaptoolbox_openldap_olcTLSCertificateFile : " {{ '' if ansible_os_family == 'RedHat' else '/etc/ssl/certs/ssl-cert-snakeoil.pem' }}"
53
- ldaptoolbox_openldap_olcTLSCertificateKeyFile : " {{ '' if ansible_os_family == 'RedHat' else '/etc/ssl/private/ssl-cert-snakeoil.key' }}"
51
+ ldaptoolbox_openldap_olcTLSCipherSuite : " TLSv1.3:TLSv1.2"
54
52
ldaptoolbox_openldap_olcTLSProtocolMin : 3.3
55
53
56
54
# Log level
0 commit comments