- TLS LDAPS/STARTTLS : pont du cert step_ca (client_pki, root:root 600) vers /etc/ldap/tls lisible par openldap ; script + unité path systemd qui re-synchronise et recharge slapd au renouvellement ; olcTLS* dans cn=config ; SLAPD_SERVICES expose ldaps://. Dégrade proprement sans cert. - Organisation : intrant chezlepro_organisation (remplace « Exemple Inc »). Validé statiquement (ansible-lint, syntax) ; déploiement réel à suivre. Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com> |
||
|---|---|---|
| .. | ||
| tests | ||
| applications.py | ||
| bases_donnees.py | ||
| config_proxmox.py | ||
| domaines.py | ||
| instancier.py | ||
| inventory_gui.py | ||
| inventory_host.py | ||
| inventory_rules.py | ||
| serveurs.py | ||
| verifier_gui.py | ||