Un site publie sa passerelle, son protocole et son groupe de connexion. Les retaper sur chaque poste, c'est se tromper un jour sur le seul champ qui décide du service joint. Un préréglage est un profil PARTIEL, sans identifiant ni secret : c'est ce qui lui permet de circuler. Les répertoires sont lus dans l'ordre et le plus tardif gagne sur un même identifiant, pour qu'un site corrige un gabarit livré sans modifier de fichier suivi, donc sans conflit au prochain pull. Un fichier illisible est signalé et sauté : sinon la panne se lit « aucun préréglage » alors qu'il y en a dix. Un profil AnyConnect porte déjà les trois balises utiles, il est donc lu directement. Vérifié : 19 tests unitaires. --- EN --- A site publishes its gateway, protocol and connection group. Retyping them on every machine means getting the one field that decides which service you reach wrong some day. A preset is a PARTIAL profile, with no username and no secret: that is what lets it be handed around. Directories are read in order and the latest wins on the same identifier, so a site can fix a shipped template without editing a tracked file, and without a conflict on the next pull. An unreadable file is reported and skipped: otherwise the fault reads as "no preset" when ten exist. An AnyConnect profile already carries the three useful tags, so it is read directly. Checked: 19 unit tests. Assisted-by: Claude Opus 5
16 lines
464 B
JSON
16 lines
464 B
JSON
[
|
|
{
|
|
"preset": "example_ssl_vpn",
|
|
"label": "Example campus SSL VPN (template)",
|
|
"hint": "Cisco AnyConnect gateway with an authentication group",
|
|
"driver": "openconnect",
|
|
"server": "ssl.vpn.example-campus.net",
|
|
"port": 443,
|
|
"oc_protocol": "anyconnect",
|
|
"oc_authgroup": "CampusSSL",
|
|
"oc_sso": false,
|
|
"oc_password_len": 0,
|
|
"routes": [],
|
|
"default_route": false
|
|
}
|
|
]
|